<!doctype html><html lang="en"><head><meta charset="utf-8">
<meta name="viewport" content="width=device-width,initial-scale=1">
<title>Vuln Signal Radar | CVE, KEV &amp; EPSS Signals for Defenders</title><meta name="description" content="Track public-safe CVE, KEV, EPSS, and vendor-advisory signals for defender triage with source, freshness, and safety context."><meta name="robots" content="index,follow"><link rel="canonical" href="https://vuln.signal-radar.com/"><meta property="og:type" content="website"><meta property="og:site_name" content="Signal-Radar.com"><meta property="og:title" content="Vuln Signal Radar | CVE, KEV &amp; EPSS Signals for Defenders"><meta property="og:description" content="Track public-safe CVE, KEV, EPSS, and vendor-advisory signals for defender triage with source, freshness, and safety context."><meta property="og:url" content="https://vuln.signal-radar.com/"><meta property="og:image" content="https://vuln.signal-radar.com/assets/vuln/hero-vulnerability-intelligence.webp"><meta name="twitter:card" content="summary_large_image"><meta name="twitter:title" content="Vuln Signal Radar | CVE, KEV &amp; EPSS Signals for Defenders"><meta name="twitter:description" content="Track public-safe CVE, KEV, EPSS, and vendor-advisory signals for defender triage with source, freshness, and safety context."><meta name="twitter:image" content="https://vuln.signal-radar.com/assets/vuln/hero-vulnerability-intelligence.webp"><link rel="icon" href="/assets/vuln/favicon.webp" type="image/webp"><link rel="icon" href="/assets/vuln/favicon-32.png" type="image/png" sizes="32x32"><link rel="apple-touch-icon" href="/assets/vuln/apple-touch-icon.png"><link rel="agent" href="/agent.json" type="application/json"><link rel="alternate" type="application/ld+json" href="/data/v1/graph/latest.jsonld"><link rel="stylesheet" href="/assets/vuln/dashboard.css?v=20260718-vuln-treemap-1"><link rel="stylesheet" href="/assets/preview.css?v=20260718-vuln-treemap-1"><link rel="stylesheet" href="/assets/vuln/vuln-treemap.css?v=20260718-vuln-treemap-1"></head><body>
<a class="skip-link" href="#signals" data-skip-live-feed>Live feedへ移動</a>
<div class="app-shell public-dashboard" data-public-dashboard="true">
<header class="vsr-topnav">
<a class="console-roll-link brand" href="#dashboard" data-console-roll-link data-view-link="dashboard"><span class="console-roll-link__wash" aria-hidden="true"></span><span class="console-roll-link__bracket console-roll-link__bracket--left" aria-hidden="true">[</span><span class="console-roll-link__clip"><span class="console-roll-link__label" data-scramble-text>Vuln Signal Radar</span></span><span class="console-roll-link__bracket console-roll-link__bracket--right" aria-hidden="true">]</span></a>
<nav class="top-tabs" aria-label="Primary"><a class="console-roll-link active" href="#dashboard" data-console-roll-link data-view-link="dashboard" aria-current="page"><span class="console-roll-link__wash" aria-hidden="true"></span><span class="console-roll-link__bracket console-roll-link__bracket--left" aria-hidden="true">[</span><span class="console-roll-link__clip"><span class="console-roll-link__label" data-scramble-text>Dashboard</span></span><span class="console-roll-link__bracket console-roll-link__bracket--right" aria-hidden="true">]</span></a><a class="console-roll-link" href="#signals" data-console-roll-link data-view-link="signals"><span class="console-roll-link__wash" aria-hidden="true"></span><span class="console-roll-link__bracket console-roll-link__bracket--left" aria-hidden="true">[</span><span class="console-roll-link__clip"><span class="console-roll-link__label" data-scramble-text>Signals</span></span><span class="console-roll-link__bracket console-roll-link__bracket--right" aria-hidden="true">]</span></a><a class="console-roll-link" href="#sources" data-console-roll-link data-view-link="sources"><span class="console-roll-link__wash" aria-hidden="true"></span><span class="console-roll-link__bracket console-roll-link__bracket--left" aria-hidden="true">[</span><span class="console-roll-link__clip"><span class="console-roll-link__label" data-scramble-text>Sources</span></span><span class="console-roll-link__bracket console-roll-link__bracket--right" aria-hidden="true">]</span></a><a class="console-roll-link" href="#watchlist" data-console-roll-link data-view-link="watchlist"><span class="console-roll-link__wash" aria-hidden="true"></span><span class="console-roll-link__bracket console-roll-link__bracket--left" aria-hidden="true">[</span><span class="console-roll-link__clip"><span class="console-roll-link__label" data-scramble-text>Watchlist</span></span><span class="console-roll-link__bracket console-roll-link__bracket--right" aria-hidden="true">]</span></a><a class="console-roll-link" href="#reports" data-console-roll-link data-view-link="reports"><span class="console-roll-link__wash" aria-hidden="true"></span><span class="console-roll-link__bracket console-roll-link__bracket--left" aria-hidden="true">[</span><span class="console-roll-link__clip"><span class="console-roll-link__label" data-scramble-text>Reports</span></span><span class="console-roll-link__bracket console-roll-link__bracket--right" aria-hidden="true">]</span></a><a class="console-roll-link" href="/about/" data-console-roll-link><span class="console-roll-link__wash" aria-hidden="true"></span><span class="console-roll-link__bracket console-roll-link__bracket--left" aria-hidden="true">[</span><span class="console-roll-link__clip"><span class="console-roll-link__label" data-scramble-text>About</span></span><span class="console-roll-link__bracket console-roll-link__bracket--right" aria-hidden="true">]</span></a></nav>
<section class="vsr-radar-pulse" data-vsr-radar-pulse data-status="fresh" data-mode="snapshot" data-source-state="healthy" aria-label="Defensive Priority Capsule. Snapshot freshness: FRESH. Defensive priority 100 out of 100. Deterministic snapshot ranking, not a probability of exploitation or compromise. Driver: Critical CVSS severity, 5 items. Source health: 3 of 3 sources available; state healthy. Triage Intercept is a 15-second defensive prioritization simulation. PERFECT describes game performance only, not vulnerability remediation status."><button type="button" class="vsr-pulse-freshness" data-view-link="dashboard" data-vsr-pulse-freshness title="Snapshot freshness: FRESH. Open Dashboard view."><i aria-hidden="true"></i><span>FRESH</span></button><button type="button" class="vsr-pulse-priority" data-view-link="signals" data-vsr-pulse-priority aria-label="Defensive priority 100 out of 100. Deterministic snapshot ranking, not a probability of exploitation or compromise. Open Signals view." title="Defensive priority 100 out of 100. Deterministic snapshot ranking, not a probability of exploitation or compromise. Open Signals view."><small class="vsr-pulse-priority-label"><span class="vsr-pulse-priority-label-full">PRIORITY</span><span class="vsr-pulse-priority-label-short" aria-hidden="true">PRI</span></small><strong>100</strong></button><span class="vsr-pulse-driver" data-vsr-pulse-driver title="CRIT 5">CRIT 5</span><div class="vsr-pulse-tracks" data-vsr-pulse-tracks aria-hidden="true"><span class="vsr-pulse-axis"><b>OBSERVED</b><b>REVIEW</b></span><i class="vsr-pulse-node lane-elevated shape-hexagon urgency-3 confidence-medium delay-4 speed-5"></i><i class="vsr-pulse-node lane-critical shape-diamond urgency-2 confidence-medium delay-2 speed-1"></i><i class="vsr-pulse-node lane-critical shape-diamond urgency-2 confidence-medium delay-5 speed-3"></i><i class="vsr-pulse-node lane-critical shape-diamond urgency-2 confidence-medium delay-2 speed-1"></i><i class="vsr-pulse-node lane-elevated shape-hexagon urgency-2 confidence-high delay-5 speed-3"></i><i class="vsr-pulse-node lane-critical shape-diamond urgency-2 confidence-medium delay-4 speed-4"></i></div><button type="button" class="vsr-pulse-sources" data-view-link="sources" data-vsr-pulse-sources aria-label="Source health: 3 of 3 available; healthy. Open Sources view." title="Source health: 3 of 3 available; healthy. Open Sources view.">3/3</button><button type="button" class="vsr-pulse-game-trigger" data-vsr-pulse-game-trigger aria-label="Start 15-second Triage Intercept simulation. PERFECT describes game performance only, not vulnerability remediation status." title="Start 15-second Triage Intercept simulation. PERFECT describes game performance only, not vulnerability remediation status." aria-pressed="false"><span aria-hidden="true">◇</span></button><div class="vsr-triage-shell" data-vsr-triage-shell hidden><div class="vsr-triage-meta"><strong data-vsr-triage-state>TRIAGE</strong><small aria-hidden="true">SIM</small><span data-vsr-triage-time>15.0s</span></div><div class="vsr-triage-stage" data-vsr-triage-stage tabindex="-1" aria-label="Triage Intercept simulation area"></div><div class="vsr-triage-scoreboard"><span class="sr-only" data-vsr-triage-score-label>SCORE</span><b data-vsr-triage-score>0000</b><span data-vsr-triage-combo>x1</span></div></div><template data-vsr-triage-sequence><button type="button" class="vsr-triage-object kind-target lane-1 shape-hexagon delay-3 speed-4" data-vsr-triage-object data-kind="target" data-order="0" tabindex="-1" aria-label="Defensive review target"><span class="sr-only">Defensive review target</span></button><button type="button" class="vsr-triage-object kind-target lane-3 shape-diamond delay-5 speed-4" data-vsr-triage-object data-kind="target" data-order="1" tabindex="-1" aria-label="Defensive review target"><span class="sr-only">Defensive review target</span></button><button type="button" class="vsr-triage-object kind-noise lane-3 shape-hollow_circle delay-2 speed-3" data-vsr-triage-object data-kind="noise" data-order="2" tabindex="-1" aria-label="Simulation noise"><span class="sr-only">Simulation noise</span></button><button type="button" class="vsr-triage-object kind-target lane-3 shape-diamond delay-1 speed-1" data-vsr-triage-object data-kind="target" data-order="3" tabindex="-1" aria-label="Defensive review target"><span class="sr-only">Defensive review target</span></button><button type="button" class="vsr-triage-object kind-target lane-1 shape-hexagon delay-4 speed-2" data-vsr-triage-object data-kind="target" data-order="4" tabindex="-1" aria-label="Defensive review target"><span class="sr-only">Defensive review target</span></button><button type="button" class="vsr-triage-object kind-target lane-2 shape-hexagon delay-4 speed-2" data-vsr-triage-object data-kind="target" data-order="5" tabindex="-1" aria-label="Defensive review target"><span class="sr-only">Defensive review target</span></button><button type="button" class="vsr-triage-object kind-target lane-3 shape-hexagon delay-1 speed-1" data-vsr-triage-object data-kind="target" data-order="6" tabindex="-1" aria-label="Defensive review target"><span class="sr-only">Defensive review target</span></button><button type="button" class="vsr-triage-object kind-target lane-3 shape-diamond delay-4 speed-4" data-vsr-triage-object data-kind="target" data-order="7" tabindex="-1" aria-label="Defensive review target"><span class="sr-only">Defensive review target</span></button><button type="button" class="vsr-triage-object kind-target lane-1 shape-hexagon delay-4 speed-4" data-vsr-triage-object data-kind="target" data-order="8" tabindex="-1" aria-label="Defensive review target"><span class="sr-only">Defensive review target</span></button><button type="button" class="vsr-triage-object kind-target lane-3 shape-diamond delay-4 speed-5" data-vsr-triage-object data-kind="target" data-order="9" tabindex="-1" aria-label="Defensive review target"><span class="sr-only">Defensive review target</span></button><button type="button" class="vsr-triage-object kind-noise lane-1 shape-circle delay-2 speed-3" data-vsr-triage-object data-kind="noise" data-order="10" tabindex="-1" aria-label="Simulation noise"><span class="sr-only">Simulation noise</span></button><button type="button" class="vsr-triage-object kind-noise lane-1 shape-square delay-3 speed-3" data-vsr-triage-object data-kind="noise" data-order="11" tabindex="-1" aria-label="Simulation noise"><span class="sr-only">Simulation noise</span></button><button type="button" class="vsr-triage-object kind-target lane-2 shape-diamond delay-2 speed-3" data-vsr-triage-object data-kind="target" data-order="12" tabindex="-1" aria-label="Defensive review target"><span class="sr-only">Defensive review target</span></button><button type="button" class="vsr-triage-object kind-target lane-2 shape-hexagon delay-4 speed-3" data-vsr-triage-object data-kind="target" data-order="13" tabindex="-1" aria-label="Defensive review target"><span class="sr-only">Defensive review target</span></button><button type="button" class="vsr-triage-object kind-target lane-2 shape-diamond delay-2 speed-1" data-vsr-triage-object data-kind="target" data-order="14" tabindex="-1" aria-label="Defensive review target"><span class="sr-only">Defensive review target</span></button><button type="button" class="vsr-triage-object kind-target lane-2 shape-diamond delay-4 speed-4" data-vsr-triage-object data-kind="target" data-order="15" tabindex="-1" aria-label="Defensive review target"><span class="sr-only">Defensive review target</span></button><button type="button" class="vsr-triage-object kind-target lane-1 shape-hexagon delay-2 speed-4" data-vsr-triage-object data-kind="target" data-order="16" tabindex="-1" aria-label="Defensive review target"><span class="sr-only">Defensive review target</span></button></template><span class="sr-only" aria-live="polite" aria-atomic="true" data-vsr-pulse-announcer></span></section>
</header>
<div class="dashboard-shell">
<aside class="vsr-sidebar">
<nav class="side-nav" aria-label="Dashboard sections"><a class="active" href="#dashboard" data-view-link="dashboard">▦ Overview</a><a href="#signals" data-view-link="signals">⌁ Live Feed <span id="side-feed-count">20</span></a><a href="#dashboard" data-view-link="dashboard" data-filter-shortcut="risk">♢ Risk Explorer</a><a href="#reports" data-view-link="reports">⌬ Defensive Paths</a><a href="#signals" data-view-link="signals" data-filter-shortcut="kev">⬡ KEV Tracker</a><a href="#dashboard" data-view-link="dashboard" data-filter-shortcut="epss">✣ EPSS Heatmap</a><a href="#sources" data-view-link="sources">⚭ Integrations</a><a href="#saved" data-view-link="saved">▱ Saved Views</a></nav>
<div class="side-meta" aria-label="Operational status">
<section class="side-card freshness"><h2>Data Freshness</h2><p><span class="live-dot"></span>Read-only public-safe data</p><div class="fresh-row generated-row"><span>Generated</span><div id="last-updated" class="compact-timestamp" title="Last generated 2026-08-05 20:35 JST / 2026-08-05 11:35 UTC" aria-label="Last generated 2026-08-05 20:35 JST / 2026-08-05 11:35 UTC"><strong>20:35 JST</strong><span>2026-08-05</span><small>UTC 11:35</small></div></div><div class="fresh-row"><span>Source health</span><strong>healthy</strong></div><div class="fresh-row"><span>Deploy mode</span><strong>fresh fetch</strong></div><div class="freshness-bars" id="age-histogram" aria-label="Age histogram"><div><span>0-24h</span><strong><i class="bar-fill bar-w-0"></i></strong><em>0</em></div><div><span>2-7d</span><strong><i class="bar-fill bar-w-100"></i></strong><em>20</em></div><div><span>8-30d</span><strong><i class="bar-fill bar-w-0"></i></strong><em>0</em></div><div><span>&gt;30d</span><strong><i class="bar-fill bar-w-0"></i></strong><em>0</em></div><div><span>unknown</span><strong><i class="bar-fill bar-w-0"></i></strong><em>0</em></div></div></section>
<section class="side-card archive-card"><h2>Archive</h2><p><span class="live-dot"></span>Static public-safe history surface</p><div class="fresh-row"><span>Latest run</span><strong id="archive-run-id">20260805T113552Z</strong></div><div class="fresh-row"><span>Archived CVEs</span><strong id="archive-count">1918</strong></div><div class="fresh-row"><span>Timelines</span><strong>1918</strong></div><div class="archive-links"><a href="https://vuln.signal-radar.com/archive/">Human archive</a><a href="https://vuln.signal-radar.com/data/vuln/archive/index.json" target="_blank" rel="noopener noreferrer">Archive index JSON</a><a href="https://vuln.signal-radar.com/data/vuln/archive/latest.json" target="_blank" rel="noopener noreferrer">Latest run JSON</a></div></section>
<section class="side-card"><h2>Safety Guardrails</h2><p><span class="live-dot"></span>Read-only public-safe controls are active</p><a class="inline-data-link" href="#settings" data-view-link="settings">View guardrails →</a></section>
</div>
</aside>
<main class="dashboard-main">
<section class="hero-panel view-panel" id="dashboard" data-view="dashboard">
<div class="hero-copy"><div class="demo-pill">public radar</div><h1>Prioritized Vulnerability Signals for Defenders</h1><p>Track CVE, KEV, EPSS, and vendor-advisory changes in one read-only radar—so teams can see what changed, why it matters, and what to verify next.</p></div>
<div class="radar-globe" aria-hidden="true"><span></span><span></span><span></span><i></i></div>
<div class="live-signal-map" data-live-signal-map data-node-count="7"><div class="live-signal-map-visual"><div class="live-map-heading"><span>LIVE SIGNAL MAP</span><strong>DEFENSIVE PRIORITY CIRCUIT</strong><small>LATEST STATIC SNAPSHOT</small></div><span class="live-map-disclaimer">PRIORITY ORDER · NOT AN ATTACK PATH</span><svg class="live-signal-map-svg" viewBox="0 0 780 230" aria-hidden="true" focusable="false"><defs><linearGradient id="live-map-line-gradient" x1="0" y1="0" x2="1" y2="0"><stop offset="0" stop-color="#26d9ee"/><stop offset=".56" stop-color="#6da7ff"/><stop offset="1" stop-color="#9b7cff"/></linearGradient><radialGradient id="live-map-critical-core"><stop offset="0" stop-color="#ffffff"/><stop offset=".7" stop-color="#eef8ff"/><stop offset="1" stop-color="#ff6d74"/></radialGradient></defs><text class="live-map-endpoint-label" x="8" y="207">OBSERVED</text><text class="live-map-endpoint-label" x="772" y="207" text-anchor="end">REVIEW</text><path class="live-map-echo live-map-echo-one" d="M 42 132 L 148 68 L 258 154 L 376 52 L 494 130 L 612 76 L 730 150" transform="translate(0 -6)"/><path class="live-map-echo live-map-echo-two" d="M 42 132 L 148 68 L 258 154 L 376 52 L 494 130 L 612 76 L 730 150" transform="translate(0 6)"/><path class="live-map-main-line" d="M 42 132 L 148 68 L 258 154 L 376 52 L 494 130 L 612 76 L 730 150" pathLength="1"/><g class="live-map-node severity-high recency-new_disclosure remediation-reference_unknown live-map-slot-0 is-top-urgency label-priority-1" data-slot="0"><polygon class="live-map-core" points="35,120 49,120 54,132 49,144 35,144 30,132"/><path class="live-map-terminal-branch" d="M 54 132 L 65 132 L 65 105 L 75 105"/><path class="live-map-terminal-marker open" d="M 76 101 L 82 105 L 76 109"/><text class="live-map-terminal-label" x="85" y="108">REF UNKNOWN</text><g class="live-map-evidence-pin source-nvd"><rect x="31" y="109" width="4" height="4"/></g><text class="live-map-node-label" x="42" y="83" text-anchor="middle"><tspan class="vendor" x="42">UNSPECIFIED</tspan><tspan class="product" x="42" dy="-11">CVE-2026-14270</tspan><tspan class="meta" x="42" dy="-11">CVE ×1 · EPSS P43</tspan><tspan class="state" x="42" dy="-11">NEW DISCLOSURE</tspan></text></g><g class="live-map-node severity-critical recency-new_disclosure remediation-reference_unknown live-map-slot-1 label-priority-2" data-slot="1"><polygon class="live-map-core" points="148,56 160,68 148,80 136,68"/><path class="live-map-terminal-branch" d="M 160 68 L 171 68 L 171 95 L 181 95"/><path class="live-map-terminal-marker open" d="M 182 91 L 188 95 L 182 99"/><text class="live-map-terminal-label" x="191" y="98">REF UNKNOWN</text><g class="live-map-evidence-pin source-nvd"><rect x="137" y="45" width="4" height="4"/></g><text class="live-map-node-label" x="148" y="113" text-anchor="middle"><tspan class="vendor" x="148">UNSPECIFIED</tspan><tspan class="product" x="148" dy="11">CVE-2026-65889</tspan><tspan class="meta" x="148" dy="11">CVE ×1 · EPSS P25</tspan><tspan class="state" x="148" dy="11">NEW DISCLOSURE</tspan></text></g><g class="live-map-node severity-critical recency-new_disclosure remediation-reference_unknown live-map-slot-2 label-priority-3" data-slot="2"><polygon class="live-map-core" points="258,142 270,154 258,166 246,154"/><path class="live-map-terminal-branch" d="M 270 154 L 281 154 L 281 127 L 291 127"/><path class="live-map-terminal-marker open" d="M 292 123 L 298 127 L 292 131"/><text class="live-map-terminal-label" x="301" y="130">REF UNKNOWN</text><g class="live-map-evidence-pin source-nvd"><rect x="247" y="131" width="4" height="4"/></g><text class="live-map-node-label" x="258" y="105" text-anchor="middle"><tspan class="vendor" x="258">UNSPECIFIED</tspan><tspan class="product" x="258" dy="-11">CVE-2026-65884</tspan><tspan class="meta" x="258" dy="-11">CVE ×1 · EPSS P16</tspan><tspan class="state" x="258" dy="-11">NEW DISCLOSURE</tspan></text></g><g class="live-map-node severity-critical recency-new_disclosure remediation-reference_unknown live-map-slot-3 label-priority-4" data-slot="3"><polygon class="live-map-core" points="376,40 388,52 376,64 364,52"/><path class="live-map-terminal-branch" d="M 388 52 L 399 52 L 399 79 L 409 79"/><path class="live-map-terminal-marker open" d="M 410 75 L 416 79 L 410 83"/><text class="live-map-terminal-label" x="419" y="82">REF UNKNOWN</text><g class="live-map-evidence-pin source-nvd"><rect x="365" y="29" width="4" height="4"/></g><text class="live-map-node-label" x="376" y="97" text-anchor="middle"><tspan class="vendor" x="376">UNSPECIFIED</tspan><tspan class="product" x="376" dy="11">CVE-2026-65885</tspan><tspan class="meta" x="376" dy="11">CVE ×1 · EPSS P17</tspan><tspan class="state" x="376" dy="11">NEW DISCLOSURE</tspan></text></g><g class="live-map-node severity-high recency-new_disclosure remediation-reference_unknown live-map-slot-4 label-priority-5" data-slot="4"><polygon class="live-map-core" points="487,118 501,118 506,130 501,142 487,142 482,130"/><path class="live-map-terminal-branch" d="M 506 130 L 517 130 L 517 103 L 527 103"/><path class="live-map-terminal-marker open" d="M 528 99 L 534 103 L 528 107"/><text class="live-map-terminal-label" x="537" y="106">REF UNKNOWN</text><g class="live-map-evidence-pin source-nvd"><rect x="483" y="107" width="4" height="4"/></g><g class="live-map-evidence-pin source-osv"><path d="M 494 113 L 499 108"/></g><text class="live-map-node-label" x="494" y="81" text-anchor="middle"><tspan class="vendor" x="494">UNSPECIFIED</tspan><tspan class="product" x="494" dy="-11">CVE-2026-55995</tspan><tspan class="meta" x="494" dy="-11">CVE ×1 · EPSS P17</tspan><tspan class="state" x="494" dy="-11">NEW DISCLOSURE</tspan></text></g><g class="live-map-node severity-critical recency-new_disclosure remediation-reference_unknown live-map-slot-5" data-slot="5"><polygon class="live-map-core" points="612,64 624,76 612,88 600,76"/><path class="live-map-terminal-branch" d="M 624 76 L 635 76 L 635 103 L 645 103"/><path class="live-map-terminal-marker open" d="M 646 99 L 652 103 L 646 107"/><text class="live-map-terminal-label" x="655" y="106">REF UNKNOWN</text><g class="live-map-evidence-pin source-nvd"><rect x="601" y="53" width="4" height="4"/></g></g><g class="live-map-node severity-medium recency-new_disclosure remediation-reference_present live-map-slot-6" data-slot="6"><circle class="live-map-core" cx="730" cy="150" r="11"/><path class="live-map-terminal-branch" d="M 741 150 L 753 150 L 753 123 L 763 123"/><rect class="live-map-terminal-marker closed" x="763" y="120" width="7" height="7"/><text class="live-map-terminal-label" x="772" y="116" text-anchor="end">REMEDIATION REF</text><g class="live-map-evidence-pin source-nvd"><rect x="719" y="128" width="4" height="4"/></g><g class="live-map-evidence-pin source-vendor-advisory"><rect x="728" y="128" width="4" height="4"/></g></g></svg></div><p class="sr-only">Latest static defensive priority circuit. This is a review-priority visualization, not an attack path. 7 product clusters are shown. The highest urgency cluster is CVE-2026-14270, with 1 CVE, 0 KEV-listed records, EPSS percentile 43, and remediation reference unknown. 0 displayed clusters contain KEV-listed records. The highest displayed EPSS percentile is 43. 4 critical clusters have unknown remediation references. The largest displayed cluster is CVE-2026-14270, with 1 CVE.</p></div>
</section>
<section class="status-strip view-panel" id="status-strip" data-view="dashboard"><span class="status-chip on">indexable public surface</span><span class="status-chip on">read-only dataset</span><span class="status-chip on">public-safe sources</span><span class="status-chip on">external execution disabled</span><span class="status-chip on">auto remediation disabled</span></section>
<section class="private-stat-grid view-panel" id="private-stat-grid" data-view="dashboard"><article class="stat-card "><span class="stat-icon"><img src="/assets/vuln/kpi-new-cves.webp" alt="" aria-hidden="true" loading="lazy" decoding="async"></span><div><small>Tracked CVEs</small><strong>20</strong><em>20 new in 7d</em></div></article><article class="stat-card critical"><span class="stat-icon"><img src="/assets/vuln/kpi-critical.webp" alt="" aria-hidden="true" loading="lazy" decoding="async"></span><div><small>Critical</small><strong>5</strong><em>canonical CVSS</em></div></article><article class="stat-card kev"><span class="stat-icon"><img src="/assets/vuln/kpi-kev.webp" alt="" aria-hidden="true" loading="lazy" decoding="async"></span><div><small>Known Exploited</small><strong>0</strong><em>KEV observed</em></div></article><article class="stat-card epss"><span class="stat-icon"><img src="/assets/vuln/kpi-high-epss.webp" alt="" aria-hidden="true" loading="lazy" decoding="async"></span><div><small>High EPSS percentile (≥70)</small><strong>0</strong><em>EPSS percentile observed</em></div></article><article class="stat-card "><span class="stat-icon"><img src="/assets/vuln/kpi-monitored-vendors.webp" alt="" aria-hidden="true" loading="lazy" decoding="async"></span><div><small>Monitored Vendors</small><strong>1</strong><em>from current data</em></div></article></section>
<section class="filter-toolbar view-panel" data-view="dashboard signals reports" aria-label="Signal filters">
<div class="filter-group search-group"><label class="feed-search" for="feed-search"><span aria-hidden="true">⌕</span><input id="feed-search" type="search" autocomplete="off" aria-label="Search live feed" placeholder="Search in live feed..."><kbd aria-hidden="true">⌘K</kbd></label></div>
<div class="filter-group chip-group" role="group" aria-label="Quick filters"><button class="filter-chip critical" data-severity-chip="CRITICAL" type="button" aria-label="Filter Critical severity">Critical</button><button class="filter-chip high" data-severity-chip="HIGH" type="button" aria-label="Filter High severity">High</button><button class="filter-chip kev" id="kev-chip" type="button" aria-label="Filter KEV listed">KEV</button><button class="filter-chip epss" id="epss-chip" type="button" aria-label="Filter EPSS percentile 70 or higher">EPSS ≥70</button></div>
<div class="filter-group action-group"><button class="clear-button" id="filter-reset" type="button">Clear all</button><button class="icon-button" data-save-view type="button" aria-label="Save view">⚙</button></div>
<div class="filter-group select-group" role="group" aria-label="Structured filters"><select id="severity-filter" aria-label="Severity filter"><option value="all">Severity All</option><option value="CRITICAL">Critical</option><option value="HIGH">High</option><option value="MEDIUM">Medium</option><option value="LOW">Low</option><option value="NONE">None</option><option value="UNKNOWN">Unknown</option></select>
<select id="kev-filter" aria-label="KEV filter"><option value="all">KEV All</option><option value="yes">KEV listed</option><option value="no">Not listed</option></select>
<select id="source-filter" aria-label="Source filter"><option value="all">Source All</option><option value="NVD">NVD</option><option value="OSV">OSV</option><option value="CISA KEV">CISA KEV</option><option value="Vendor Advisory">Vendor Advisory</option></select>
<select id="vendor-filter" aria-label="Vendor filter"><option value="all">Vendor</option></select><select id="product-filter" aria-label="Product filter"><option value="all">Product</option></select><select id="time-filter" aria-label="Time range"><option value="all">Any time</option><option value="today">Today</option><option value="week">This week</option></select><select id="sort-select" aria-label="Sort"><option value="priority">Sort Priority</option><option value="updated">Observed</option><option value="epss">EPSS percentile</option><option value="cvss">CVSS Severity</option></select></div>
</section>
<section class="panel vuln-treemap-panel view-panel" data-view="dashboard signals" data-vuln-treemap-root data-menu-open="false" aria-labelledby="vuln-treemap-title"><header class="vuln-treemap-head"><div class="vuln-treemap-title"><span class="vuln-treemap-kicker"><i aria-hidden="true"></i>VULNERABILITY TREEMAP</span><h2 id="vuln-treemap-title">DEFENSIVE PRIORITY SURFACE</h2><p>Stable CVE grouping for defensive triage. Area changes by display mode; severity remains encoded by color.</p></div><div class="vuln-treemap-status" role="status" aria-live="polite"><span><i aria-hidden="true"></i>LATEST STATIC SNAPSHOT</span><small data-vuln-treemap-status-detail>2026-08-05 11:35 UTC / 2026-08-05 20:35 JST</small></div><button type="button" class="vuln-treemap-menu-trigger" data-vuln-treemap-toggle aria-expanded="false" aria-controls="vuln-treemap-content" aria-label="Open defensive priority surface"><span class="vuln-treemap-menu-trigger__copy" aria-hidden="true"><small>VULN MAP</small><strong data-vuln-treemap-menu-state>OPEN</strong></span><span class="vuln-treemap-menu-trigger__icon" aria-hidden="true"><i data-menu-line="top"></i><i data-menu-line="middle"></i><i data-menu-line="bottom"></i></span></button></header><div id="vuln-treemap-content" class="vuln-treemap-content" data-vuln-treemap-content aria-hidden="true" inert><div class="vuln-treemap-content__inner" data-vuln-treemap-inner><div class="vuln-treemap-command-bar" data-surface-reveal><div><span>DISPLAY MODE</span><small data-vuln-treemap-mode-label>DEFENSIVE PRIORITY</small></div><div class="vuln-treemap-mode-switch" role="group" aria-label="Vulnerability treemap mode"><button type="button" data-vuln-treemap-mode="priority" aria-pressed="true">Priority <kbd>P</kbd></button><button type="button" data-vuln-treemap-mode="pressure" aria-pressed="false">Pressure <kbd>E</kbd></button></div></div><div class="vuln-treemap-body" data-surface-reveal><div class="vuln-treemap-viewport" data-vuln-treemap-viewport role="group" aria-label="Defensive priority CVE treemap. Use Tab or arrow keys to navigate tiles."><div class="vuln-treemap-grid" aria-hidden="true"></div><div data-vuln-treemap-groups aria-hidden="true"></div><div data-vuln-treemap-tiles></div><div class="vuln-treemap-tooltip" data-vuln-treemap-tooltip id="vuln-treemap-tooltip" role="tooltip" hidden></div><div class="vuln-treemap-empty" data-vuln-treemap-empty role="status" hidden><strong>No vulnerability tiles match the active filters</strong><p>The feed, priority queue, and dashboard remain available.</p><button type="button" data-vuln-treemap-clear>Clear filters</button></div></div></div><footer class="vuln-treemap-foot" data-surface-reveal><div class="vuln-treemap-legend" aria-label="Vulnerability treemap legend"><span class="is-critical"><i></i>Critical</span><span class="is-high"><i></i>High</span><span class="is-medium"><i></i>Medium</span><span class="is-low"><i></i>Low</span><span class="is-unknown"><i></i>Unknown</span><span class="is-kev"><i></i>KEV marker</span><span class="is-epss"><i></i>EPSS glow</span><span class="is-confidence"><i></i>Edge = evidence confidence</span></div><p>Area shows defensive priority or exploit-signal pressure. This is a public-safe static snapshot, not an inventory or exposure measurement.</p><span class="vuln-treemap-keyboard-note">Tab / Arrows navigate · Enter opens · Esc closes · P / E mode</span></footer></div></div></section>
<section class="dashboard-grid-mvp view-panel" id="signals" data-view="dashboard signals">
<div class="panel live-feed-panel view-panel" data-view="dashboard signals"><div class="panel-head"><h2 id="live-feed-heading" tabindex="-1">Live Vulnerability Feed <span class="live-label">READ-ONLY</span></h2><div class="feed-status"><span id="feed-result-count" role="status" aria-live="polite" aria-atomic="true">20 signals</span><a href="#signals" data-view-link="signals">View all signals →</a></div></div><div id="live-feed" class="live-feed"><article class="feed-row" data-signal-id="CVE-2026-65884"><span class="observed">2026-08-05</span><span class="live-dot"></span><div class="feed-title"><button class="linklike signal-focus-target" type="button" data-open-detail="CVE-2026-65884" data-signal-id="CVE-2026-65884" data-focus-role="primary" data-signal-focus-target aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="CVE-2026-65884, CRITICAL, -, open vulnerability detail">CVE-2026-65884</button><strong>defensive priority signal</strong></div><span class="severity-pill critical">CRITICAL</span><span class="epss-cell">EPSS <strong>0.0025 (16)</strong></span><span><span class="badge blue">NEW</span></span><span class="product-cell">-</span><span class="summary-cell">NVD: Joomla Extension - balbooa.com - Privilege Escalation in Gridbox &lt; 2.20.2 - The registration method allows users provided usergroup ID… <a class="handoff-link" href="https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65884.md" target="_blank" rel="noopener noreferrer">Handoff</a></span><button class="bookmark" type="button" data-bookmark="CVE-2026-65884" data-signal-id="CVE-2026-65884" data-focus-role="bookmark" aria-pressed="false" aria-label="Save CVE-2026-65884 to local watchlist">♡</button><button class="kebab" type="button" data-open-detail="CVE-2026-65884" data-signal-id="CVE-2026-65884" data-focus-role="more" aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="Open detail for CVE-2026-65884">⋮</button></article><article class="feed-row" data-signal-id="CVE-2026-65885"><span class="observed">2026-08-05</span><span class="live-dot"></span><div class="feed-title"><button class="linklike signal-focus-target" type="button" data-open-detail="CVE-2026-65885" data-signal-id="CVE-2026-65885" data-focus-role="primary" data-signal-focus-target aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="CVE-2026-65885, CRITICAL, -, open vulnerability detail">CVE-2026-65885</button><strong>defensive priority signal</strong></div><span class="severity-pill critical">CRITICAL</span><span class="epss-cell">EPSS <strong>0.0025 (17)</strong></span><span><span class="badge blue">NEW</span></span><span class="product-cell">-</span><span class="summary-cell">NVD: Joomla Extension - balbooa.com - Authenticated arbitrary file upload in Gridbox &lt; 2.20.2 - File upload methods allows authenticated at… <a class="handoff-link" href="https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65885.md" target="_blank" rel="noopener noreferrer">Handoff</a></span><button class="bookmark" type="button" data-bookmark="CVE-2026-65885" data-signal-id="CVE-2026-65885" data-focus-role="bookmark" aria-pressed="false" aria-label="Save CVE-2026-65885 to local watchlist">♡</button><button class="kebab" type="button" data-open-detail="CVE-2026-65885" data-signal-id="CVE-2026-65885" data-focus-role="more" aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="Open detail for CVE-2026-65885">⋮</button></article><article class="feed-row" data-signal-id="CVE-2026-0667"><span class="observed">2026-08-05</span><span class="live-dot"></span><div class="feed-title"><button class="linklike signal-focus-target" type="button" data-open-detail="CVE-2026-0667" data-signal-id="CVE-2026-0667" data-focus-role="primary" data-signal-focus-target aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="CVE-2026-0667, CRITICAL, -, open vulnerability detail">CVE-2026-0667</button><strong>defensive priority signal</strong></div><span class="severity-pill critical">CRITICAL</span><span class="epss-cell">EPSS <strong>0.0037 (30)</strong></span><span><span class="badge blue">NEW</span></span><span class="product-cell">-</span><span class="summary-cell">NVD: CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability that could cause arbitrary code execution, denial of servi… <a class="handoff-link" href="https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-0667.md" target="_blank" rel="noopener noreferrer">Handoff</a></span><button class="bookmark" type="button" data-bookmark="CVE-2026-0667" data-signal-id="CVE-2026-0667" data-focus-role="bookmark" aria-pressed="false" aria-label="Save CVE-2026-0667 to local watchlist">♡</button><button class="kebab" type="button" data-open-detail="CVE-2026-0667" data-signal-id="CVE-2026-0667" data-focus-role="more" aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="Open detail for CVE-2026-0667">⋮</button></article><article class="feed-row" data-signal-id="CVE-2026-65889"><span class="observed">2026-08-05</span><span class="live-dot"></span><div class="feed-title"><button class="linklike signal-focus-target" type="button" data-open-detail="CVE-2026-65889" data-signal-id="CVE-2026-65889" data-focus-role="primary" data-signal-focus-target aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="CVE-2026-65889, CRITICAL, -, open vulnerability detail">CVE-2026-65889</button><strong>defensive priority signal</strong></div><span class="severity-pill critical">CRITICAL</span><span class="epss-cell">EPSS <strong>0.0032 (25)</strong></span><span><span class="badge blue">NEW</span></span><span class="product-cell">-</span><span class="summary-cell">NVD: Joomla Extension - balbooa.com - Unauthenticated recursive directory deletion &lt; 2.20.2 - The generateNewApp method allows actors to re… <a class="handoff-link" href="https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65889.md" target="_blank" rel="noopener noreferrer">Handoff</a></span><button class="bookmark" type="button" data-bookmark="CVE-2026-65889" data-signal-id="CVE-2026-65889" data-focus-role="bookmark" aria-pressed="false" aria-label="Save CVE-2026-65889 to local watchlist">♡</button><button class="kebab" type="button" data-open-detail="CVE-2026-65889" data-signal-id="CVE-2026-65889" data-focus-role="more" aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="Open detail for CVE-2026-65889">⋮</button></article><article class="feed-row" data-signal-id="CVE-2026-65890"><span class="observed">2026-08-05</span><span class="live-dot"></span><div class="feed-title"><button class="linklike signal-focus-target" type="button" data-open-detail="CVE-2026-65890" data-signal-id="CVE-2026-65890" data-focus-role="primary" data-signal-focus-target aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="CVE-2026-65890, CRITICAL, -, open vulnerability detail">CVE-2026-65890</button><strong>defensive priority signal</strong></div><span class="severity-pill critical">CRITICAL</span><span class="epss-cell">EPSS <strong>0.0024 (15)</strong></span><span><span class="badge blue">NEW</span></span><span class="product-cell">-</span><span class="summary-cell">NVD: Joomla Extension - balbooa.com - Unauthenticated SQL injection in Gridbox &lt; 2.20.2 - Multiple SQLi vectors allow unauthenticated actor… <a class="handoff-link" href="https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65890.md" target="_blank" rel="noopener noreferrer">Handoff</a></span><button class="bookmark" type="button" data-bookmark="CVE-2026-65890" data-signal-id="CVE-2026-65890" data-focus-role="bookmark" aria-pressed="false" aria-label="Save CVE-2026-65890 to local watchlist">♡</button><button class="kebab" type="button" data-open-detail="CVE-2026-65890" data-signal-id="CVE-2026-65890" data-focus-role="more" aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="Open detail for CVE-2026-65890">⋮</button></article><article class="feed-row" data-signal-id="CVE-2026-14270"><span class="observed">2026-08-05</span><span class="live-dot"></span><div class="feed-title"><button class="linklike signal-focus-target" type="button" data-open-detail="CVE-2026-14270" data-signal-id="CVE-2026-14270" data-focus-role="primary" data-signal-focus-target aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="CVE-2026-14270, HIGH, -, open vulnerability detail">CVE-2026-14270</button><strong>defensive priority signal</strong></div><span class="severity-pill high">HIGH</span><span class="epss-cell">EPSS <strong>0.0055 (43)</strong></span><span><span class="badge blue">NEW</span></span><span class="product-cell">-</span><span class="summary-cell">NVD: The Extra Checkout Options (addon for Extra Product Options &amp; Add-Ons for WooCommerce) plugin for WordPress is vulnerable to Arbitrary… <a class="handoff-link" href="https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-14270.md" target="_blank" rel="noopener noreferrer">Handoff</a></span><button class="bookmark" type="button" data-bookmark="CVE-2026-14270" data-signal-id="CVE-2026-14270" data-focus-role="bookmark" aria-pressed="false" aria-label="Save CVE-2026-14270 to local watchlist">♡</button><button class="kebab" type="button" data-open-detail="CVE-2026-14270" data-signal-id="CVE-2026-14270" data-focus-role="more" aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="Open detail for CVE-2026-14270">⋮</button></article><article class="feed-row" data-signal-id="CVE-2026-65944"><span class="observed">2026-08-05</span><span class="live-dot"></span><div class="feed-title"><button class="linklike signal-focus-target" type="button" data-open-detail="CVE-2026-65944" data-signal-id="CVE-2026-65944" data-focus-role="primary" data-signal-focus-target aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="CVE-2026-65944, HIGH, -, open vulnerability detail">CVE-2026-65944</button><strong>defensive priority signal</strong></div><span class="severity-pill high">HIGH</span><span class="epss-cell">EPSS <strong>0.0013 (3)</strong></span><span><span class="badge blue">NEW</span></span><span class="product-cell">-</span><span class="summary-cell">NVD: Joomla Extension - rolandd.com - CSRF vectors in AJAX endpoint handlers RO CSVI &lt; 9.11.0 <a class="handoff-link" href="https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65944.md" target="_blank" rel="noopener noreferrer">Handoff</a></span><button class="bookmark" type="button" data-bookmark="CVE-2026-65944" data-signal-id="CVE-2026-65944" data-focus-role="bookmark" aria-pressed="false" aria-label="Save CVE-2026-65944 to local watchlist">♡</button><button class="kebab" type="button" data-open-detail="CVE-2026-65944" data-signal-id="CVE-2026-65944" data-focus-role="more" aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="Open detail for CVE-2026-65944">⋮</button></article><article class="feed-row" data-signal-id="CVE-2026-55995"><span class="observed">2026-08-05</span><span class="live-dot"></span><div class="feed-title"><button class="linklike signal-focus-target" type="button" data-open-detail="CVE-2026-55995" data-signal-id="CVE-2026-55995" data-focus-role="primary" data-signal-focus-target aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="CVE-2026-55995, HIGH, -, open vulnerability detail">CVE-2026-55995</button><strong>defensive priority signal</strong></div><span class="severity-pill high">HIGH</span><span class="epss-cell">EPSS <strong>0.0025 (17)</strong></span><span><span class="badge blue">NEW</span></span><span class="product-cell">-</span><span class="summary-cell">NVD: A Double Free vulnerability in open-iscsi allows an unauthenticated MITM attacker to cause DoS. NVD: This issue affects open-iscsi: fr… <a class="handoff-link" href="https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-55995.md" target="_blank" rel="noopener noreferrer">Handoff</a></span><button class="bookmark" type="button" data-bookmark="CVE-2026-55995" data-signal-id="CVE-2026-55995" data-focus-role="bookmark" aria-pressed="false" aria-label="Save CVE-2026-55995 to local watchlist">♡</button><button class="kebab" type="button" data-open-detail="CVE-2026-55995" data-signal-id="CVE-2026-55995" data-focus-role="more" aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="Open detail for CVE-2026-55995">⋮</button></article><article class="feed-row" data-signal-id="CVE-2026-14354"><span class="observed">2026-08-05</span><span class="live-dot"></span><div class="feed-title"><button class="linklike signal-focus-target" type="button" data-open-detail="CVE-2026-14354" data-signal-id="CVE-2026-14354" data-focus-role="primary" data-signal-focus-target aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="CVE-2026-14354, HIGH, -, open vulnerability detail">CVE-2026-14354</button><strong>defensive priority signal</strong></div><span class="severity-pill high">HIGH</span><span class="epss-cell">EPSS <strong>0.0012 (2)</strong></span><span><span class="badge blue">NEW</span></span><span class="product-cell">-</span><span class="summary-cell">NVD: CWE-522 Insufficiently Protected Credentials vulnerability exists that could cause authentication bypass and unauthorized credential m… <a class="handoff-link" href="https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-14354.md" target="_blank" rel="noopener noreferrer">Handoff</a></span><button class="bookmark" type="button" data-bookmark="CVE-2026-14354" data-signal-id="CVE-2026-14354" data-focus-role="bookmark" aria-pressed="false" aria-label="Save CVE-2026-14354 to local watchlist">♡</button><button class="kebab" type="button" data-open-detail="CVE-2026-14354" data-signal-id="CVE-2026-14354" data-focus-role="more" aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="Open detail for CVE-2026-14354">⋮</button></article><article class="feed-row" data-signal-id="CVE-2026-44944"><span class="observed">2026-08-05</span><span class="live-dot"></span><div class="feed-title"><button class="linklike signal-focus-target" type="button" data-open-detail="CVE-2026-44944" data-signal-id="CVE-2026-44944" data-focus-role="primary" data-signal-focus-target aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="CVE-2026-44944, HIGH, -, open vulnerability detail">CVE-2026-44944</button><strong>defensive priority signal</strong></div><span class="severity-pill high">HIGH</span><span class="epss-cell">EPSS <strong>0.0009 (1)</strong></span><span><span class="badge blue">NEW</span></span><span class="product-cell">-</span><span class="summary-cell">NVD: An Incorrect Authorization vulnerability in open-iscsi allows unprivilidged local users to use the isscsiuio control socket. NVD: This… <a class="handoff-link" href="https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-44944.md" target="_blank" rel="noopener noreferrer">Handoff</a></span><button class="bookmark" type="button" data-bookmark="CVE-2026-44944" data-signal-id="CVE-2026-44944" data-focus-role="bookmark" aria-pressed="false" aria-label="Save CVE-2026-44944 to local watchlist">♡</button><button class="kebab" type="button" data-open-detail="CVE-2026-44944" data-signal-id="CVE-2026-44944" data-focus-role="more" aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="Open detail for CVE-2026-44944">⋮</button></article><article class="feed-row" data-signal-id="CVE-2026-12927"><span class="observed">2026-08-05</span><span class="live-dot"></span><div class="feed-title"><button class="linklike signal-focus-target" type="button" data-open-detail="CVE-2026-12927" data-signal-id="CVE-2026-12927" data-focus-role="primary" data-signal-focus-target aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="CVE-2026-12927, HIGH, -, open vulnerability detail">CVE-2026-12927</button><strong>defensive priority signal</strong></div><span class="severity-pill high">HIGH</span><span class="epss-cell">EPSS <strong>0.0020 (10)</strong></span><span><span class="badge blue">NEW</span></span><span class="product-cell">-</span><span class="summary-cell">NVD: CWE-787 Out-of-bounds write vulnerability exists that could cause loss of data or potentially risk arbitrary code execution when a mal… <a class="handoff-link" href="https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-12927.md" target="_blank" rel="noopener noreferrer">Handoff</a></span><button class="bookmark" type="button" data-bookmark="CVE-2026-12927" data-signal-id="CVE-2026-12927" data-focus-role="bookmark" aria-pressed="false" aria-label="Save CVE-2026-12927 to local watchlist">♡</button><button class="kebab" type="button" data-open-detail="CVE-2026-12927" data-signal-id="CVE-2026-12927" data-focus-role="more" aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="Open detail for CVE-2026-12927">⋮</button></article><article class="feed-row" data-signal-id="CVE-2026-65943"><span class="observed">2026-08-05</span><span class="live-dot"></span><div class="feed-title"><button class="linklike signal-focus-target" type="button" data-open-detail="CVE-2026-65943" data-signal-id="CVE-2026-65943" data-focus-role="primary" data-signal-focus-target aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="CVE-2026-65943, HIGH, -, open vulnerability detail">CVE-2026-65943</button><strong>defensive priority signal</strong></div><span class="severity-pill high">HIGH</span><span class="epss-cell">EPSS <strong>0.0023 (14)</strong></span><span><span class="badge blue">NEW</span></span><span class="product-cell">-</span><span class="summary-cell">NVD: Joomla Extension - rolandd.com - Unauthenticated directory creation RO CSVI &lt; 9.11.0 <a class="handoff-link" href="https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65943.md" target="_blank" rel="noopener noreferrer">Handoff</a></span><button class="bookmark" type="button" data-bookmark="CVE-2026-65943" data-signal-id="CVE-2026-65943" data-focus-role="bookmark" aria-pressed="false" aria-label="Save CVE-2026-65943 to local watchlist">♡</button><button class="kebab" type="button" data-open-detail="CVE-2026-65943" data-signal-id="CVE-2026-65943" data-focus-role="more" aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="Open detail for CVE-2026-65943">⋮</button></article><article class="feed-row" data-signal-id="CVE-2026-50641"><span class="observed">2026-08-05</span><span class="live-dot"></span><div class="feed-title"><button class="linklike signal-focus-target" type="button" data-open-detail="CVE-2026-50641" data-signal-id="CVE-2026-50641" data-focus-role="primary" data-signal-focus-target aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="CVE-2026-50641, HIGH, -, open vulnerability detail">CVE-2026-50641</button><strong>defensive priority signal</strong></div><span class="severity-pill high">HIGH</span><span class="epss-cell">EPSS <strong>0.0016 (6)</strong></span><span><span class="badge blue">NEW</span></span><span class="product-cell">-</span><span class="summary-cell">NVD: Streamsoft Business Intelligence (BI) stores users&#x27; passwords in plaintext form in the database This issue was fixed in version 6.8.0… <a class="handoff-link" href="https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-50641.md" target="_blank" rel="noopener noreferrer">Handoff</a></span><button class="bookmark" type="button" data-bookmark="CVE-2026-50641" data-signal-id="CVE-2026-50641" data-focus-role="bookmark" aria-pressed="false" aria-label="Save CVE-2026-50641 to local watchlist">♡</button><button class="kebab" type="button" data-open-detail="CVE-2026-50641" data-signal-id="CVE-2026-50641" data-focus-role="more" aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="Open detail for CVE-2026-50641">⋮</button></article><article class="feed-row" data-signal-id="CVE-2026-44943"><span class="observed">2026-08-05</span><span class="live-dot"></span><div class="feed-title"><button class="linklike signal-focus-target" type="button" data-open-detail="CVE-2026-44943" data-signal-id="CVE-2026-44943" data-focus-role="primary" data-signal-focus-target aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="CVE-2026-44943, MEDIUM, -, open vulnerability detail">CVE-2026-44943</button><strong>defensive priority signal</strong></div><span class="severity-pill medium">MEDIUM</span><span class="epss-cell">EPSS <strong>0.0033 (26)</strong></span><span><span class="badge blue">NEW</span></span><span class="product-cell">-</span><span class="summary-cell">NVD: An Improper Limitation of a Pathname to a Restricted Directory (&#x27;Path Traversal&#x27;) vulnerability in open-iscsi allows remote MITM attac… <a class="handoff-link" href="https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-44943.md" target="_blank" rel="noopener noreferrer">Handoff</a></span><button class="bookmark" type="button" data-bookmark="CVE-2026-44943" data-signal-id="CVE-2026-44943" data-focus-role="bookmark" aria-pressed="false" aria-label="Save CVE-2026-44943 to local watchlist">♡</button><button class="kebab" type="button" data-open-detail="CVE-2026-44943" data-signal-id="CVE-2026-44943" data-focus-role="more" aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="Open detail for CVE-2026-44943">⋮</button></article><article class="feed-row" data-signal-id="CVE-2026-16751"><span class="observed">2026-08-05</span><span class="live-dot"></span><div class="feed-title"><button class="linklike signal-focus-target" type="button" data-open-detail="CVE-2026-16751" data-signal-id="CVE-2026-16751" data-focus-role="primary" data-signal-focus-target aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="CVE-2026-16751, MEDIUM, -, open vulnerability detail">CVE-2026-16751</button><strong>defensive priority signal</strong></div><span class="severity-pill medium">MEDIUM</span><span class="epss-cell">EPSS <strong>0.0029 (22)</strong></span><span><span class="badge blue">NEW</span></span><span class="product-cell">-</span><span class="summary-cell">NVD: Authorization Bypass in the emergency recovery approval component in Ente Technologies Ente Museum Server allows an authenticated atta… <a class="handoff-link" href="https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-16751.md" target="_blank" rel="noopener noreferrer">Handoff</a></span><button class="bookmark" type="button" data-bookmark="CVE-2026-16751" data-signal-id="CVE-2026-16751" data-focus-role="bookmark" aria-pressed="false" aria-label="Save CVE-2026-16751 to local watchlist">♡</button><button class="kebab" type="button" data-open-detail="CVE-2026-16751" data-signal-id="CVE-2026-16751" data-focus-role="more" aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="Open detail for CVE-2026-16751">⋮</button></article><article class="feed-row" data-signal-id="CVE-2026-65891"><span class="observed">2026-08-05</span><span class="live-dot"></span><div class="feed-title"><button class="linklike signal-focus-target" type="button" data-open-detail="CVE-2026-65891" data-signal-id="CVE-2026-65891" data-focus-role="primary" data-signal-focus-target aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="CVE-2026-65891, MEDIUM, -, open vulnerability detail">CVE-2026-65891</button><strong>defensive priority signal</strong></div><span class="severity-pill medium">MEDIUM</span><span class="epss-cell">EPSS <strong>0.0019 (9)</strong></span><span><span class="badge blue">NEW</span></span><span class="product-cell">-</span><span class="summary-cell">NVD: Joomla Extension - joomlacontenteditor.net - Creation of hidden files and unintended file overwrite via rename function in Joomla Cont… <a class="handoff-link" href="https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65891.md" target="_blank" rel="noopener noreferrer">Handoff</a></span><button class="bookmark" type="button" data-bookmark="CVE-2026-65891" data-signal-id="CVE-2026-65891" data-focus-role="bookmark" aria-pressed="false" aria-label="Save CVE-2026-65891 to local watchlist">♡</button><button class="kebab" type="button" data-open-detail="CVE-2026-65891" data-signal-id="CVE-2026-65891" data-focus-role="more" aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="Open detail for CVE-2026-65891">⋮</button></article><article class="feed-row" data-signal-id="CVE-2026-66400"><span class="observed">2026-08-05</span><span class="live-dot"></span><div class="feed-title"><button class="linklike signal-focus-target" type="button" data-open-detail="CVE-2026-66400" data-signal-id="CVE-2026-66400" data-focus-role="primary" data-signal-focus-target aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="CVE-2026-66400, MEDIUM, -, open vulnerability detail">CVE-2026-66400</button><strong>defensive priority signal</strong></div><span class="severity-pill medium">MEDIUM</span><span class="epss-cell">EPSS <strong>0.0015 (5)</strong></span><span><span class="badge blue">NEW</span></span><span class="product-cell">-</span><span class="summary-cell">NVD: Grav Login Plugin versions before 3.8.13 contain an insufficient session expiration vulnerability in TokenStorage.php where the findTr… <a class="handoff-link" href="https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-66400.md" target="_blank" rel="noopener noreferrer">Handoff</a></span><button class="bookmark" type="button" data-bookmark="CVE-2026-66400" data-signal-id="CVE-2026-66400" data-focus-role="bookmark" aria-pressed="false" aria-label="Save CVE-2026-66400 to local watchlist">♡</button><button class="kebab" type="button" data-open-detail="CVE-2026-66400" data-signal-id="CVE-2026-66400" data-focus-role="more" aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="Open detail for CVE-2026-66400">⋮</button></article><article class="feed-row" data-signal-id="CVE-2026-65946"><span class="observed">2026-08-05</span><span class="live-dot"></span><div class="feed-title"><button class="linklike signal-focus-target" type="button" data-open-detail="CVE-2026-65946" data-signal-id="CVE-2026-65946" data-focus-role="primary" data-signal-focus-target aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="CVE-2026-65946, MEDIUM, -, open vulnerability detail">CVE-2026-65946</button><strong>defensive priority signal</strong></div><span class="severity-pill medium">MEDIUM</span><span class="epss-cell">EPSS <strong>0.0015 (5)</strong></span><span><span class="badge blue">NEW</span></span><span class="product-cell">-</span><span class="summary-cell">NVD: Joomla Extension - rolandd.com - XSS vectors in AJAX endpoint handlers RO CSVI &lt; 9.11.0 <a class="handoff-link" href="https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65946.md" target="_blank" rel="noopener noreferrer">Handoff</a></span><button class="bookmark" type="button" data-bookmark="CVE-2026-65946" data-signal-id="CVE-2026-65946" data-focus-role="bookmark" aria-pressed="false" aria-label="Save CVE-2026-65946 to local watchlist">♡</button><button class="kebab" type="button" data-open-detail="CVE-2026-65946" data-signal-id="CVE-2026-65946" data-focus-role="more" aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="Open detail for CVE-2026-65946">⋮</button></article><article class="feed-row" data-signal-id="CVE-2026-18174"><span class="observed">2026-08-05</span><span class="live-dot"></span><div class="feed-title"><button class="linklike signal-focus-target" type="button" data-open-detail="CVE-2026-18174" data-signal-id="CVE-2026-18174" data-focus-role="primary" data-signal-focus-target aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="CVE-2026-18174, MEDIUM, -, open vulnerability detail">CVE-2026-18174</button><strong>defensive priority signal</strong></div><span class="severity-pill medium">MEDIUM</span><span class="epss-cell">EPSS <strong>0.0019 (9)</strong></span><span><span class="badge blue">NEW</span></span><span class="product-cell">-</span><span class="summary-cell">NVD: @fastify/forwarded resolves client addresses from the X-Forwarded-For header. NVD: In versions before 3.0.2, when the header contains… <a class="handoff-link" href="https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-18174.md" target="_blank" rel="noopener noreferrer">Handoff</a></span><button class="bookmark" type="button" data-bookmark="CVE-2026-18174" data-signal-id="CVE-2026-18174" data-focus-role="bookmark" aria-pressed="false" aria-label="Save CVE-2026-18174 to local watchlist">♡</button><button class="kebab" type="button" data-open-detail="CVE-2026-18174" data-signal-id="CVE-2026-18174" data-focus-role="more" aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="Open detail for CVE-2026-18174">⋮</button></article><article class="feed-row" data-signal-id="CVE-2026-33385"><span class="observed">2026-08-05</span><span class="live-dot"></span><div class="feed-title"><button class="linklike signal-focus-target" type="button" data-open-detail="CVE-2026-33385" data-signal-id="CVE-2026-33385" data-focus-role="primary" data-signal-focus-target aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="CVE-2026-33385, MEDIUM, -, open vulnerability detail">CVE-2026-33385</button><strong>defensive priority signal</strong></div><span class="severity-pill medium">MEDIUM</span><span class="epss-cell">EPSS <strong>0.0024 (15)</strong></span><span><span class="badge blue">NEW</span></span><span class="product-cell">-</span><span class="summary-cell">NVD: A Blind SQL injection vulnerability has been identified in Quick.CMS. NVD: Improper neutralization of input provided by a high-privile… <a class="handoff-link" href="https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-33385.md" target="_blank" rel="noopener noreferrer">Handoff</a></span><button class="bookmark" type="button" data-bookmark="CVE-2026-33385" data-signal-id="CVE-2026-33385" data-focus-role="bookmark" aria-pressed="false" aria-label="Save CVE-2026-33385 to local watchlist">♡</button><button class="kebab" type="button" data-open-detail="CVE-2026-33385" data-signal-id="CVE-2026-33385" data-focus-role="more" aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="Open detail for CVE-2026-33385">⋮</button></article></div><noscript><div class="noscript-feed"><h3>Public-safe defensive signals</h3><ul><li><a href="https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-65884/" target="_blank" rel="noopener noreferrer">CVE-2026-65884</a> <span class="severity-pill critical">CRITICAL</span> <span>CVSS 10.0</span> <span>-</span><p>NVD: Joomla Extension - balbooa.com - Privilege Escalation in Gridbox &lt; 2.20.2 - The registration method allows users provided usergroup IDs, allowing unauthenticated actors to register new accounts with administrative permissions.</p><p>An attacker may cross a privilege boundary and gain more access than intended; CVSS 10.0 (CRITICAL); EPSS percentile 16; sources: NVD.</p></li><li><a href="https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-65885/" target="_blank" rel="noopener noreferrer">CVE-2026-65885</a> <span class="severity-pill critical">CRITICAL</span> <span>CVSS 9.4</span> <span>-</span><p>NVD: Joomla Extension - balbooa.com - Authenticated arbitrary file upload in Gridbox &lt; 2.20.2 - File upload methods allows authenticated attackers to upload arbitrary files. NVD: Turns into an authenticated RCE if combined with CVE-2026-65884 as the required account can be created by the attacker.</p><p>An attacker may be able to run code or commands on affected systems; CVSS 9.4 (CRITICAL); EPSS percentile 17; sources: NVD.</p></li><li><a href="https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-0667/" target="_blank" rel="noopener noreferrer">CVE-2026-0667</a> <span class="severity-pill critical">CRITICAL</span> <span>CVSS 9.3</span> <span>-</span><p>NVD: CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability that could cause arbitrary code execution, denial of service and loss of confidentiality &amp; integrity when communicating over the Modbus TCP protocol.</p><p>An attacker may be able to run code or commands on affected systems; CVSS 9.3 (CRITICAL); EPSS percentile 30; sources: NVD.</p></li><li><a href="https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-65889/" target="_blank" rel="noopener noreferrer">CVE-2026-65889</a> <span class="severity-pill critical">CRITICAL</span> <span>CVSS 9.2</span> <span>-</span><p>NVD: Joomla Extension - balbooa.com - Unauthenticated recursive directory deletion &lt; 2.20.2 - The generateNewApp method allows actors to recursively delete directories.</p><p>This critical severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for critical severity review; CVSS 9.2 (CRITICAL); EPSS percentile 25; sources: NVD.</p></li><li><a href="https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-65890/" target="_blank" rel="noopener noreferrer">CVE-2026-65890</a> <span class="severity-pill critical">CRITICAL</span> <span>CVSS 9.2</span> <span>-</span><p>NVD: Joomla Extension - balbooa.com - Unauthenticated SQL injection in Gridbox &lt; 2.20.2 - Multiple SQLi vectors allow unauthenticated actors to inject SQL in queries.</p><p>An attacker may be able to read or change database-backed application data; CVSS 9.2 (CRITICAL); EPSS percentile 15; sources: NVD.</p></li><li><a href="https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-14270/" target="_blank" rel="noopener noreferrer">CVE-2026-14270</a> <span class="severity-pill high">HIGH</span> <span>CVSS 8.8</span> <span>-</span><p>NVD: The Extra Checkout Options (addon for Extra Product Options &amp; Add-Ons for WooCommerce) plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 2.3.2. NVD: This is due to missing authorization and nonce validation in the eco_save_settings() function, which allows low-privileged authenticated users to modify the tc_eco_custom_file_types upload allowlist setting, combined with insufficient authorization on the... NVD: This makes it possible for authenticated attackers, with Subscriber-level access and above, to allow PHP uploads, upload a PHP file using the frontend upload nonce exposed on cart and checkout pages, and achieve remote code execution.</p><p>An attacker may be able to run code or commands on affected systems; CVSS 8.8 (HIGH); EPSS percentile 43; sources: NVD.</p></li><li><a href="https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-65944/" target="_blank" rel="noopener noreferrer">CVE-2026-65944</a> <span class="severity-pill high">HIGH</span> <span>CVSS 8.8</span> <span>-</span><p>NVD: Joomla Extension - rolandd.com - CSRF vectors in AJAX endpoint handlers RO CSVI &lt; 9.11.0</p><p>This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review; CVSS 8.8 (HIGH); EPSS percentile 3; sources: NVD.</p></li><li><a href="https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-55995/" target="_blank" rel="noopener noreferrer">CVE-2026-55995</a> <span class="severity-pill high">HIGH</span> <span>CVSS 8.7</span> <span>-</span><p>NVD: A Double Free vulnerability in open-iscsi allows an unauthenticated MITM attacker to cause DoS. NVD: This issue affects open-iscsi: from ? NVD: through 56718d4e9d1a4f51c30697b5c0534144bb41c9bb.</p><p>The affected service may become unavailable or unreliable; CVSS 8.7 (HIGH); EPSS percentile 17; sources: NVD, OSV.</p></li><li><a href="https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-14354/" target="_blank" rel="noopener noreferrer">CVE-2026-14354</a> <span class="severity-pill high">HIGH</span> <span>CVSS 8.7</span> <span>-</span><p>NVD: CWE-522 Insufficiently Protected Credentials vulnerability exists that could cause authentication bypass and unauthorized credential modification, potentially leading to compromise of managed devices, when a local privileged attacker leverages weaknesses in...</p><p>This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authentication boundary review; CVSS 8.7 (HIGH); EPSS percentile 2; sources: NVD.</p></li><li><a href="https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-44944/" target="_blank" rel="noopener noreferrer">CVE-2026-44944</a> <span class="severity-pill high">HIGH</span> <span>CVSS 8.5</span> <span>-</span><p>NVD: An Incorrect Authorization vulnerability in open-iscsi allows unprivilidged local users to use the isscsiuio control socket. NVD: This issue affects open-iscsi: from ? NVD: through 668ca1df9c9a1e9bdd5c999ae1d67c9c8909237e.</p><p>This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authentication boundary review · local exposure; CVSS 8.5 (HIGH); EPSS percentile 1; sources: NVD, OSV.</p></li><li><a href="https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-12927/" target="_blank" rel="noopener noreferrer">CVE-2026-12927</a> <span class="severity-pill high">HIGH</span> <span>CVSS 8.4</span> <span>-</span><p>NVD: CWE-787 Out-of-bounds write vulnerability exists that could cause loss of data or potentially risk arbitrary code execution when a malicious CGF file is imported to IGSS Definition.</p><p>An attacker may be able to run code or commands on affected systems; CVSS 8.4 (HIGH); EPSS percentile 10; sources: NVD.</p></li><li><a href="https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-65943/" target="_blank" rel="noopener noreferrer">CVE-2026-65943</a> <span class="severity-pill high">HIGH</span> <span>CVSS 7.5</span> <span>-</span><p>NVD: Joomla Extension - rolandd.com - Unauthenticated directory creation RO CSVI &lt; 9.11.0</p><p>This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review; CVSS 7.5 (HIGH); EPSS percentile 14; sources: NVD.</p></li><li><a href="https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-50641/" target="_blank" rel="noopener noreferrer">CVE-2026-50641</a> <span class="severity-pill high">HIGH</span> <span>CVSS 7.1</span> <span>-</span><p>NVD: Streamsoft Business Intelligence (BI) stores users&#x27; passwords in plaintext form in the database This issue was fixed in version 6.8.0.0, users were also requested to change their password on the first login.</p><p>This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review; CVSS 7.1 (HIGH); EPSS percentile 6; sources: NVD.</p></li><li><a href="https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-44943/" target="_blank" rel="noopener noreferrer">CVE-2026-44943</a> <span class="severity-pill medium">MEDIUM</span> <span>CVSS 6.9</span> <span>-</span><p>NVD: An Improper Limitation of a Pathname to a Restricted Directory (&#x27;Path Traversal&#x27;) vulnerability in open-iscsi allows remote MITM attackers to create root-owned files outside the database and inject lines into the record. NVD: This issue affects open-iscsi: from through 668ca1df9c9a1e9bdd5c999ae1d67c9c8909237e. OSV: remote limited file-write as root via discovery in open-iscsi</p><p>An attacker may gain root or administrative-level privileges on affected systems; CVSS 6.9 (MEDIUM); EPSS percentile 26; sources: NVD, OSV.</p></li><li><a href="https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-16751/" target="_blank" rel="noopener noreferrer">CVE-2026-16751</a> <span class="severity-pill medium">MEDIUM</span> <span>CVSS 6.5</span> <span>-</span><p>NVD: Authorization Bypass in the emergency recovery approval component in Ente Technologies Ente Museum Server allows an authenticated attacker configured as a victim&#x27;s emergency contact to bypass the configured recovery waiting period and take over the victim&#x27;s...</p><p>This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authenticated boundary; CVSS 6.5 (MEDIUM); EPSS percentile 22; sources: NVD.</p></li><li><a href="https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-65891/" target="_blank" rel="noopener noreferrer">CVE-2026-65891</a> <span class="severity-pill medium">MEDIUM</span> <span>CVSS 6.5</span> <span>-</span><p>NVD: Joomla Extension - joomlacontenteditor.net - Creation of hidden files and unintended file overwrite via rename function in Joomla Content Editor (JCE) &lt; 2.20.2 - Improper input validation in the file rename functionality allowed an authenticated user with... NVD: The issue also allowed existing files at the destination path to be unintentionally replaced.</p><p>This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authenticated boundary; CVSS 6.5 (MEDIUM); EPSS percentile 9; sources: NVD.</p></li><li><a href="https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-66400/" target="_blank" rel="noopener noreferrer">CVE-2026-66400</a> <span class="severity-pill medium">MEDIUM</span> <span>CVSS 6.3</span> <span>-</span><p>NVD: Grav Login Plugin versions before 3.8.13 contain an insufficient session expiration vulnerability in TokenStorage.php where the findTriplet() method fails to properly validate Remember Me token timestamps. NVD: Attackers with a captured Remember Me cookie can authenticate indefinitely instead of the configured timeout period, as the expiry check compares an array to a scalar value which always evaluates incorrectly in PHP.</p><p>This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for defensive exposure review; CVSS 6.3 (MEDIUM); EPSS percentile 5; sources: NVD.</p></li><li><a href="https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-65946/" target="_blank" rel="noopener noreferrer">CVE-2026-65946</a> <span class="severity-pill medium">MEDIUM</span> <span>CVSS 6.1</span> <span>-</span><p>NVD: Joomla Extension - rolandd.com - XSS vectors in AJAX endpoint handlers RO CSVI &lt; 9.11.0</p><p>This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for XSS risk; CVSS 6.1 (MEDIUM); EPSS percentile 5; sources: NVD.</p></li><li><a href="https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-18174/" target="_blank" rel="noopener noreferrer">CVE-2026-18174</a> <span class="severity-pill medium">MEDIUM</span> <span>CVSS 5.3</span> <span>-</span><p>NVD: @fastify/forwarded resolves client addresses from the X-Forwarded-For header. NVD: In versions before 3.0.2, when the header contains two or more comma separated entries, the parser trims only space characters and does not strip horizontal tabs, even though RFC 7230 defines optional whitespace as both space and tab. NVD: As a result, an entry padded with a tab keeps the literal tab in the resolved address string.</p><p>This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for defensive exposure review; CVSS 5.3 (MEDIUM); EPSS percentile 9; sources: NVD, OSV.</p></li><li><a href="https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-33385/" target="_blank" rel="noopener noreferrer">CVE-2026-33385</a> <span class="severity-pill medium">MEDIUM</span> <span>CVSS 5.1</span> <span>-</span><p>NVD: A Blind SQL injection vulnerability has been identified in Quick.CMS. NVD: Improper neutralization of input provided by a high-privileged user into multiple fields in administration panel allows for Blind SQL Injection attacks. NVD: The vendor states that this administration panel already allows for significant modification capabilities.</p><p>An attacker may be able to read or change database-backed application data; CVSS 5.1 (MEDIUM); EPSS percentile 15; sources: NVD.</p></li></ul></div></noscript><div id="empty-state" class="empty-state" tabindex="-1" hidden></div><div class="feed-legend"><span class="severity-legend"><span class="critical-dot"></span>Critical <span class="high-dot"></span>High <span class="medium-dot"></span>Medium <span class="low-dot"></span>Low <span class="badge mini">KEV</span>Known Exploited <span class="badge mini blue">NEW</span>Newly Observed</span><span class="feed-shortcut-controls"><span class="keyboard-hint">J / K Move · ↑ / ↓ Move · Enter Open · Esc Close</span><button id="keyboard-shortcuts-toggle" class="keyboard-shortcuts-toggle" type="button" aria-pressed="true">Shortcuts ON</button></span></div></div>
<aside class="panel priority-panel view-panel" data-view="dashboard signals"><div class="panel-head"><h2>Top Risks <span>(Priority Queue)</span></h2><a href="#signals" data-view-link="signals">View all →</a></div><div id="priority-queue"><button class="risk-row" type="button" data-open-detail="CVE-2026-65884" data-signal-id="CVE-2026-65884" data-focus-role="priority" aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="Priority 1, CVE-2026-65884, CRITICAL, score 100, open detail"><span class="rank">1</span><span><strong>CVE-2026-65884</strong><small>-</small><small>CRITICAL CVSS · official reference present</small></span><span class="score-bar"><i class="bar-fill bar-w-100"></i><em>100</em></span></button><button class="risk-row" type="button" data-open-detail="CVE-2026-65885" data-signal-id="CVE-2026-65885" data-focus-role="priority" aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="Priority 2, CVE-2026-65885, CRITICAL, score 94, open detail"><span class="rank">2</span><span><strong>CVE-2026-65885</strong><small>-</small><small>CRITICAL CVSS · official reference present</small></span><span class="score-bar"><i class="bar-fill bar-w-94"></i><em>94</em></span></button><button class="risk-row" type="button" data-open-detail="CVE-2026-0667" data-signal-id="CVE-2026-0667" data-focus-role="priority" aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="Priority 3, CVE-2026-0667, CRITICAL, score 93, open detail"><span class="rank">3</span><span><strong>CVE-2026-0667</strong><small>-</small><small>CRITICAL CVSS · official reference present</small></span><span class="score-bar"><i class="bar-fill bar-w-93"></i><em>93</em></span></button><button class="risk-row" type="button" data-open-detail="CVE-2026-65889" data-signal-id="CVE-2026-65889" data-focus-role="priority" aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="Priority 4, CVE-2026-65889, CRITICAL, score 92, open detail"><span class="rank">4</span><span><strong>CVE-2026-65889</strong><small>-</small><small>CRITICAL CVSS · official reference present</small></span><span class="score-bar"><i class="bar-fill bar-w-92"></i><em>92</em></span></button><button class="risk-row" type="button" data-open-detail="CVE-2026-65890" data-signal-id="CVE-2026-65890" data-focus-role="priority" aria-haspopup="dialog" aria-controls="detail-drawer" aria-expanded="false" aria-label="Priority 5, CVE-2026-65890, CRITICAL, score 92, open detail"><span class="rank">5</span><span><strong>CVE-2026-65890</strong><small>-</small><small>CRITICAL CVSS · official reference present</small></span><span class="score-bar"><i class="bar-fill bar-w-92"></i><em>92</em></span></button></div></aside>
</section>
<section class="agent-surface-grid view-panel" data-view="dashboard sources"><article class="panel agent-panel"><div class="panel-head"><h2>Agent Access <span>Agent Data Surface</span></h2></div><p class="muted">Read-only static JSON for humans and AI agents. This is a data contract, not an execution surface.</p><div class="agent-link-grid"><a href="/archive/" target="_blank" rel="noopener noreferrer">Human Archive</a><a href="/data/v1/priority-queue.json" target="_blank" rel="noopener noreferrer">Priority Queue JSON</a><a href="/data/v1/diff/latest.json" target="_blank" rel="noopener noreferrer">Latest Diff Feed</a><a href="/data/v1/graph/latest.jsonld" target="_blank" rel="noopener noreferrer">Knowledge Graph</a><a href="/.well-known/rirastafab-trust.json" target="_blank" rel="noopener noreferrer">Trust Layer</a><a href="/data/v1/proof/latest.json" target="_blank" rel="noopener noreferrer">Proof Metadata</a><a href="/data/v1/proof/canonical-policy.json" target="_blank" rel="noopener noreferrer">Canonical Policy</a><a href="/data/v1/proof/canonical-envelope.json" target="_blank" rel="noopener noreferrer">Canonical Envelope</a><a href="/data/v1/proof/canonical-envelope-index.json" target="_blank" rel="noopener noreferrer">Envelope Index</a><a href="/data/v1/proof/eas-typed-payload.json" target="_blank" rel="noopener noreferrer">EAS Typed Payload</a><a href="/data/v1/attestations/vuln-signal-ledger.json" target="_blank" rel="noopener noreferrer">Attestation Ledger</a><a href="https://vuln.signal-radar.com/data/vuln/items/CVE-2026-65884.json" target="_blank" rel="noopener noreferrer">Signal Item JSON</a><a href="/data/v1/remediation-handoff/index.json" target="_blank" rel="noopener noreferrer">Remediation Handoff</a><a href="/agent.json" target="_blank" rel="noopener noreferrer">Agent Manifest</a><a href="/.well-known/signal-radar.json" target="_blank" rel="noopener noreferrer">Static Manifest</a><a href="/data/v1/schema/signal-item.schema.json" target="_blank" rel="noopener noreferrer">Schema</a></div><div class="trust-card-grid"><span><strong>Knowledge Graph / JSON-LD</strong><em>links CVE signals, sources, affected products, and provenance</em></span><span><strong>Local-first Vault</strong><em>browser-only personal review context; import/export/clear supported</em></span><span><strong>RirastaFab Trust Layer</strong><em>hash-only integrity metadata, canonical envelopes, and proof endpoints</em></span><span><strong>Canonical Envelope</strong><em>attestation-ready preflight metadata without onchain submission</em></span></div><p class="muted compact-copy">Agents should start with /agent.json, validate the signal item schema, use the JSON-LD graph for provenance, and treat the Local Vault as private browser state that is never uploaded.</p><div class="agent-rule-grid"><span><strong>WebMCP read-only tools</strong>Enabled</span><span><strong>Runtime server endpoints</strong>None</span><span><strong>Static agent JSON</strong>Enabled</span></div><div class="agent-rule-row"><strong>Allowed</strong><span>search / list / get / summarize / prioritize</span></div><div class="agent-rule-row disabled"><strong>Disabled</strong><span>scan / patch / exploit / external execution / auto remediation</span></div><p class="timestamp-note">Last generated: 2026-08-05 11:35 UTC / 2026-08-05 20:35 JST. Observed dates are per-source signal timestamps.</p></article><article class="panel agent-panel agent-insight-panel" data-agent-insight-stack><section class="agent-insight-section diff-panel"><div class="panel-head"><h2>Latest Changes <span>Diff Feed</span></h2></div><div class="diff-mode"><strong>previous successful latest</strong><span>public snapshot comparison</span></div><p class="muted">40 public-safe changes since the previous successful snapshot.</p><div class="diff-count-grid" aria-label="Latest diff summary"><div><span>Added</span><strong>20</strong></div><div><span>Changed</span><strong>0</strong></div><div><span>Removed</span><strong>20</strong></div></div><div class="diff-change-notes" aria-label="What changed"><strong>What changed</strong><ul><li>CVE-2026-0667: newly added to the public-safe set.</li><li>CVE-2026-12927: newly added to the public-safe set.</li><li>CVE-2026-14270: newly added to the public-safe set.</li><li>37 more public-safe changes in the JSON feed.</li></ul></div><div class="fresh-row"><span>Previous snapshot</span><strong>2026-08-05 06:12 UTC / 2026-08-05 15:12 JST</strong></div><div class="fresh-row"><span>Items compared</span><strong>20 -> 20</strong></div><div class="fresh-row"><span>Feed generated</span><strong>2026-08-05 11:35 UTC / 2026-08-05 20:35 JST</strong></div><a class="inline-data-link" href="/data/v1/diff/latest.json" target="_blank" rel="noopener noreferrer">Open latest diff feed</a></section><section class="agent-insight-section enrichment-panel"><div class="panel-head"><h2>Enrichment Coverage <span>partial</span></h2></div><p class="muted">Coverage is shown from the current public dataset. CPE, PURL, and canonical vendor/product are partial and may be unknown.</p><div class="coverage-source-grid"><div><span>NVD</span><strong>20</strong></div><div><span>Vendor Advisory</span><strong>20</strong></div><div><span>OSV</span><strong>4</strong></div><div><span>CISA KEV</span><strong>0</strong></div></div><div class="coverage-partial-grid"><div><span>Affected products</span><strong>0</strong><em>partial</em></div><div><span>CPE</span><strong>0</strong><em>partial</em></div><div><span>PURL</span><strong>0</strong><em>partial</em></div><div><span>Canonical vendor/product</span><strong>0</strong><em>partial</em></div></div></section></article></section>
<section class="analytics-grid view-panel" data-view="dashboard"><div class="panel chart-panel"><h2>Observed Buckets <span>(current snapshot)</span></h2><div id="risk-trend"><p class="snapshot-note compact"><img src="/assets/vuln/empty-report.svg" alt="" aria-hidden="true">Current snapshot only. Historical trend appears after multiple generated runs.</p><div><span>2026-08-05</span><strong><i class="bar-fill bar-w-100"></i></strong><em>20</em></div></div></div><div class="panel chart-panel"><h2>Severity Distribution</h2><div id="severity-distribution"><div class="donut" data-label="Total 20"><svg viewBox="0 0 42 42" aria-hidden="true"><circle class="donut-bg" cx="21" cy="21" r="15.9155"></circle><circle class="donut-segment donut-critical" cx="21" cy="21" r="15.9155" pathLength="100" stroke-dasharray="25.00 75.00" stroke-dashoffset="-0.00"></circle><circle class="donut-segment donut-high" cx="21" cy="21" r="15.9155" pathLength="100" stroke-dasharray="40.00 60.00" stroke-dashoffset="-25.00"></circle><circle class="donut-segment donut-medium" cx="21" cy="21" r="15.9155" pathLength="100" stroke-dasharray="35.00 65.00" stroke-dashoffset="-65.00"></circle></svg></div><ul><li><span class="legend-dot critical"></span>CRITICAL <strong>5</strong></li><li><span class="legend-dot high"></span>HIGH <strong>8</strong></li><li><span class="legend-dot medium"></span>MEDIUM <strong>7</strong></li><li><span class="legend-dot low"></span>LOW <strong>0</strong></li><li><span class="legend-dot none"></span>NONE <strong>0</strong></li><li><span class="legend-dot unknown"></span>UNKNOWN <strong>0</strong></li></ul></div></div><div class="panel chart-panel signal-map"><h2>Source Distribution <span>(current snapshot)</span></h2><div id="activity-map"><div class="region-bars source-bars"><div><span>NVD</span><strong><i class="bar-fill bar-w-100"></i></strong><em>20</em></div><div><span>Vendor Advisory</span><strong><i class="bar-fill bar-w-100"></i></strong><em>20</em></div><div><span>OSV</span><strong><i class="bar-fill bar-w-20"></i></strong><em>4</em></div></div></div></div></section>
<section class="panel vendor-panel view-panel" data-view="dashboard sources"><div class="panel-head"><h2>Monitored Vendors</h2><a href="#sources" data-view-link="sources">View all vendors →</a></div><p class="muted vendor-note">Vendor distribution from the current public snapshot. Neutral badges are not official vendor logos.</p><div id="vendor-cards" class="vendor-cards"><button class="vendor-card" data-vendor="Unspecified vendor" type="button"><span class="vendor-logo"><img src="/assets/vuln/vendor-generic.svg" alt="" aria-hidden="true"></span><strong>Unspecified vendor</strong><small>20 CVEs</small><em>snapshot</em></button></div></section>
<section class="panel utility-view local-vault-panel view-panel" id="watchlist" data-view="watchlist"><h2 id="watchlist-heading" tabindex="-1">Local-first Personal Data Vault</h2><p class="muted">A browser-only vault for human review context. It stores vendor / product / package / CPE prefix / saved signals / muted signals / preferences in localStorage, supports import/export/clear, validates shape on import, and never uploads data.</p><div class="vault-form" aria-label="Local vault watch fields"><input id="vault-vendor" placeholder="Vendor" aria-label="Vault vendor"><input id="vault-product" placeholder="Product" aria-label="Vault product"><input id="vault-package" placeholder="Package" aria-label="Vault package"><input id="vault-cpe" placeholder="CPE prefix" aria-label="Vault CPE prefix"><button id="vault-add" type="button">Add</button></div><div class="vault-actions" role="group" aria-label="Local vault actions"><button id="vault-export" type="button">Export Vault JSON</button><label class="vault-import-label" for="vault-import">Import Vault JSON</label><input id="vault-import" type="file" accept="application/json,.json"><button id="vault-clear" type="button">Clear Vault</button></div><div id="vault-summary" class="vault-summary"></div><div id="watchlist-view"><p id="watchlist-empty" class="empty-copy" tabindex="-1"><img src="/assets/vuln/empty-watchlist.svg" alt="" aria-hidden="true">No watched signals yet. Use the heart control on a signal row to add one.</p></div></section>
<section class="panel utility-view view-panel" id="saved" data-view="saved"><h2 id="saved-views-heading" tabindex="-1">Saved Views</h2><p class="muted">Save and reapply local filter sets. Nothing is uploaded.</p><div class="save-view-row"><input id="saved-view-name" placeholder="View name" aria-label="Saved view name"><button data-save-view type="button">Save current view</button></div><div id="saved-views"><p id="saved-views-empty" class="empty-copy" tabindex="-1">No saved views. Enter a name and save the current filters.</p></div></section>
<section class="panel utility-view view-panel" id="reports" data-view="reports"><h2>Read-only Triage Report Preview</h2><p class="muted">Generated from the current filters. Defensive checklist only; no exploit or scanning detail.</p><div class="export-actions" role="group" aria-label="Export report"><button id="export-json" type="button">Export JSON</button><span class="button-gap" aria-hidden="true"></span><button id="export-csv" type="button">Export CSV</button></div><div id="report-summary" class="report-summary"><article><span>Filtered signals</span><strong>20</strong></article><article><span>Top priority candidate</span><strong>CVE-2026-65884</strong></article><article><span>Critical / High</span><strong>5 / 8</strong></article><article><span>Safety mode</span><strong>read-only, public indexable, public-safe</strong></article></div><details class="raw-json-details"><summary>Raw JSON details</summary><pre id="report-preview">{
  &quot;count&quot;: 20,
  &quot;defensive_checklist&quot;: [
    &quot;Confirm affected products&quot;,
    &quot;Review official source references&quot;,
    &quot;Prioritize KEV, critical CVSS, and high EPSS percentile items&quot;,
    &quot;Record human confirmation&quot;
  ],
  &quot;mode&quot;: &quot;read_only_public_beta_dashboard&quot;,
  &quot;safety&quot;: {
    &quot;procedural_detail&quot;: false,
    &quot;public_launch&quot;: true,
    &quot;scanner_execution&quot;: false
  },
  &quot;severity_distribution&quot;: {
    &quot;CRITICAL&quot;: 5,
    &quot;HIGH&quot;: 8,
    &quot;LOW&quot;: 0,
    &quot;MEDIUM&quot;: 7,
    &quot;NONE&quot;: 0,
    &quot;UNKNOWN&quot;: 0
  },
  &quot;top_risk&quot;: &quot;CVE-2026-65884&quot;
}</pre></details></section>
<section class="panel utility-view view-panel" id="sources" data-view="sources"><h2>Source Status</h2><div id="source-status" class="source-status-grid"><article><strong>NVD</strong><span>20 signals</span><small>Last observed: 2026-08-05</small><small>Status: healthy</small></article><article><strong>EPSS</strong><span>20 signals</span><small>Last observed: 2026-08-05</small><small>Status: healthy</small></article><article><strong>OSV</strong><span>4 signals</span><small>Last observed: 2026-08-05</small><small>Status: healthy</small></article><article><strong>CISA KEV</strong><span>0 signals</span><small>Last observed: 2026-08-05</small><small>Status: not observed</small></article><article><strong>Vendor Advisory</strong><span>20 signals</span><small>Last observed: 2026-08-05</small><small>Status: observed</small></article></div></section>
<section class="panel utility-view view-panel" id="settings" data-view="settings"><h2>Safety Guardrails</h2><div class="settings-grid"><div class="setting-card read-only"><i aria-hidden="true"></i><strong>Public indexing</strong><span>Enabled</span></div><div class="setting-card read-only"><i aria-hidden="true"></i><strong>Read-only surface</strong><span>Enabled</span></div><div class="setting-card locked"><i aria-hidden="true"></i><strong>Deploy controls</strong><span>Codex managed deploy only</span></div><div class="setting-card disabled"><i aria-hidden="true"></i><strong>External notification</strong><span>Disabled</span></div><div class="setting-card disabled"><i aria-hidden="true"></i><strong>Auto remediation</strong><span>Disabled</span></div><div class="setting-card read-only"><i aria-hidden="true"></i><strong>Runtime server endpoints</strong><span>None</span></div><div class="setting-card read-only"><i aria-hidden="true"></i><strong>WebMCP read-only tools</strong><span>Enabled</span></div><div class="setting-card read-only"><i aria-hidden="true"></i><strong>Static agent JSON</strong><span>Enabled</span></div></div></section>
</main>
</div>
<footer class="status-footer"><span class="status-footer__brand">© 2026 <a class="console-roll-link" href="https://signal-radar.com/" data-console-roll-link target="_blank" rel="noopener noreferrer"><span class="console-roll-link__wash" aria-hidden="true"></span><span class="console-roll-link__bracket console-roll-link__bracket--left" aria-hidden="true">[</span><span class="console-roll-link__clip"><span class="console-roll-link__label" data-scramble-text>Signal-Radar.com</span></span><span class="console-roll-link__bracket console-roll-link__bracket--right" aria-hidden="true">]</span></a></span><a class="console-roll-link" href="/about/" data-console-roll-link><span class="console-roll-link__wash" aria-hidden="true"></span><span class="console-roll-link__bracket console-roll-link__bracket--left" aria-hidden="true">[</span><span class="console-roll-link__clip"><span class="console-roll-link__label" data-scramble-text>About</span></span><span class="console-roll-link__bracket console-roll-link__bracket--right" aria-hidden="true">]</span></a><a class="console-roll-link" href="/about/#contact" data-console-roll-link><span class="console-roll-link__wash" aria-hidden="true"></span><span class="console-roll-link__bracket console-roll-link__bracket--left" aria-hidden="true">[</span><span class="console-roll-link__clip"><span class="console-roll-link__label" data-scramble-text>Contact</span></span><span class="console-roll-link__bracket console-roll-link__bracket--right" aria-hidden="true">]</span></a><a class="console-roll-link" href="/about/#data-policy" data-console-roll-link><span class="console-roll-link__wash" aria-hidden="true"></span><span class="console-roll-link__bracket console-roll-link__bracket--left" aria-hidden="true">[</span><span class="console-roll-link__clip"><span class="console-roll-link__label" data-scramble-text>Data Policy</span></span><span class="console-roll-link__bracket console-roll-link__bracket--right" aria-hidden="true">]</span></a><a class="console-roll-link" href="#sources" data-console-roll-link data-view-link="sources"><span class="console-roll-link__wash" aria-hidden="true"></span><span class="console-roll-link__bracket console-roll-link__bracket--left" aria-hidden="true">[</span><span class="console-roll-link__clip"><span class="console-roll-link__label" data-scramble-text>Data sources</span></span><span class="console-roll-link__bracket console-roll-link__bracket--right" aria-hidden="true">]</span></a><a class="console-roll-link" href="#reports" data-console-roll-link data-view-link="reports"><span class="console-roll-link__wash" aria-hidden="true"></span><span class="console-roll-link__bracket console-roll-link__bracket--left" aria-hidden="true">[</span><span class="console-roll-link__clip"><span class="console-roll-link__label" data-scramble-text>Report preview</span></span><span class="console-roll-link__bracket console-roll-link__bracket--right" aria-hidden="true">]</span></a><a class="console-roll-link" href="#settings" data-console-roll-link data-view-link="settings"><span class="console-roll-link__wash" aria-hidden="true"></span><span class="console-roll-link__bracket console-roll-link__bracket--left" aria-hidden="true">[</span><span class="console-roll-link__clip"><span class="console-roll-link__label" data-scramble-text>Guardrails</span></span><span class="console-roll-link__bracket console-roll-link__bracket--right" aria-hidden="true">]</span></a><span><span class="live-dot"></span>Data sources: <strong id="source-count">3</strong></span><span>Times: UTC / JST</span></footer>
<aside class="detail-drawer" id="detail-drawer" role="dialog" aria-modal="true" aria-hidden="true" aria-labelledby="detail-drawer-title"><div id="drawer-content"></div></aside>
</div>
<template id="vuln-fallback-data">{"index": {"archive": {"append_only": true, "archive_index_url": "https://vuln.signal-radar.com/data/vuln/archive/index.json", "archive_latest_url": "https://vuln.signal-radar.com/data/vuln/archive/latest.json", "archive_version": "v0.1", "archived_cve_count": 1918, "item_count": 20, "latest_run_id": "20260805T113552Z", "latest_run_index_url": "https://vuln.signal-radar.com/data/vuln/archive/runs/20260805T113552Z/index.json", "latest_run_manifest_url": "https://vuln.signal-radar.com/data/vuln/archive/runs/20260805T113552Z/manifest.json", "public_archive_cve_page_count": 1918, "public_archive_url": "https://vuln.signal-radar.com/archive/", "timeline_count": 1918, "webmcp_future_contract": {"annotations": {"readOnlyHint": true, "untrustedContentHint": true}, "api": "document.modelContext", "auto_remediation_allowed": false, "cross_origin_exposure_allowed": false, "deploy_allowed": false, "enabled": true, "endpoint": null, "exposed_to": [], "external_execution_allowed": false, "fallback_api": "navigator.modelContext", "fetch_allowed": false, "github_issue_creation_allowed": false, "mode": "browser_imperative_progressive_enhancement", "mutation_allowed": false, "notes": "Browser WebMCP tools are registered only when document.modelContext or navigator.modelContext is available. They read existing public-safe static JSON and perform no network fetch, deploy, scan, patch, or mutation.", "planned": false, "scan_allowed": false, "tool_output_max_items": 10, "tool_output_target_max_chars": 1500, "tools": ["vuln_signal_search", "vuln_signal_get_item", "vuln_signal_list_priority"]}}, "archive_index_url": "https://vuln.signal-radar.com/data/vuln/archive/index.json", "archive_latest_url": "https://vuln.signal-radar.com/data/vuln/archive/latest.json", "auto_remediation_allowed": false, "automated_public_launch_generation": true, "automated_publication_mode": true, "automated_publication_mode_deprecated": "public launch is complete; static generation remains read-only and safety-gated", "external_execution_allowed": false, "generated_at": "2026-08-05T11:35:52.472520+00:00", "human_review": {"required_for_external_action": true, "required_for_public_launch": false, "required_for_read_only_view": false, "required_for_signal_radar_integration": true}, "human_review_required": false, "indexing_allowed": true, "items": [{"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-14270/", "cvss_score": 8.8, "cvss_severity": "HIGH", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-14270.json", "defensive_priority": "Continuous monitoring candidate", "epss_percentile": 0.42799, "epss_score": 0.00548, "exposure_hint": "authenticated boundary", "human_consequence": "An attacker may be able to run code or commands on affected systems.", "human_impact_label": "code execution review · authenticated boundary", "human_risk_summary": "CVE-2026-14270: An attacker may be able to run code or commands on affected systems.", "id": "CVE-2026-14270", "impact_tags": ["code execution review", "authenticated boundary review"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes code execution review · authenticated boundary. Possible impact: An attacker may be able to run code or commands on affected systems.", "public_human_summary": "NVD: The Extra Checkout Options (addon for Extra Product Options & Add-Ons for WooCommerce) plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 2.3.2. NVD: This is due to missing authorization and nonce validation in the eco_save_settings() function, which allows low-privileged authenticated users to modify the tc_eco_custom_file_types upload allowlist setting, combined with insufficient authorization on the... NVD: This makes it possible for authenticated attackers, with Subscriber-level access and above, to allow PHP uploads, upload a PHP file using the frontend upload nonce exposed on cart and checkout pages, and achieve remote code execution.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes code execution review · authenticated boundary. Possible impact: An attacker may be able to run code or commands on affected systems.; CVSS 8.8 (HIGH); EPSS percentile 43; not listed in KEV; Patch confirmed by source text; fixed version context: version; sources: NVD.", "public_safe_summary": "NVD: The Extra Checkout Options (addon for Extra Product Options & Add-Ons for WooCommerce) plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 2.3.2. NVD: This is due to missing authorization and nonce validation in the eco_save_settings() function, which allows low-privileged authenticated users to modify the tc_eco_custom_file_types upload allowlist setting, combined with insufficient authorization on the... NVD: This makes it possible for authenticated attackers, with Subscriber-level access and above, to allow PHP uploads, upload a PHP file using the frontend upload nonce exposed on cart and checkout pages, and achieve remote code execution.", "public_status": "public_safe", "published_at": "2026-07-29T12:16:35.697", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-14270-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-14270.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-14270.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-14270"], "sort_priority": 88.42799, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: The Extra Checkout Options (addon for Extra Product Options & Add-Ons for WooCommerce) plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 2.3.2. NVD: This is due to missing authorization and nonce validation in the eco_save_settings() function, which allows low-privileged authenticated users to modify the tc_eco_custom_file_types upload allowlist setting, combined with insufficient authorization on the... NVD: This makes it possible for authenticated attackers, with Subscriber-level access and above, to allow PHP uploads, upload a PHP file using the frontend upload nonce exposed on cart and checkout pages, and achieve remote code execution.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://codecanyon.net/item/extra-checkout-options-addon-for-extra-product-options/20439659"}, {"source": "Reference", "type": "reference", "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/a929efaf-80a1-45c1-9426-6c5b45a66530?source=cve"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-14270"}], "source_published_impact": "Source describes code execution review · authenticated boundary. Possible impact: An attacker may be able to run code or commands on affected systems.", "source_published_remediation": "Patch confirmed by source text; fixed version context: version.", "source_published_summary": "NVD: The Extra Checkout Options (addon for Extra Product Options & Add-Ons for WooCommerce) plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 2.3.2. NVD: This is due to missing authorization and nonce validation in the eco_save_settings() function, which allows low-privileged authenticated users to modify the tc_eco_custom_file_types upload allowlist setting, combined with insufficient authorization on the... NVD: This makes it possible for authenticated attackers, with Subscriber-level access and above, to allow PHP uploads, upload a PHP file using the frontend upload nonce exposed on cart and checkout pages, and achieve remote code execution.", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-14270 is a defensive prioritization candidate. NVD lists CVSS severity as HIGH. CVSS score is 8.8. EPSS score is 0.0055 with percentile 0.4280. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-14270 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 8.8, "disclosure_freshness": 0.9613, "epss_percentile": 0.42799, "epss_score": 0.00548, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-14270", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T14:01:30.413000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 42.799, "priority_area": 88.428, "published_at": "2026-07-29T12:16:35.697000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "high", "source_count": 2}, "updated_at": "2026-07-30T14:01:30.413", "urgency_reasons": ["CVSS HIGH", "vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "An attacker may be able to run code or commands on affected systems; CVSS 8.8 (HIGH); EPSS percentile 43; sources: NVD."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-0667/", "cvss_score": 9.3, "cvss_severity": "CRITICAL", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-0667.json", "defensive_priority": "Priority review candidate", "epss_percentile": 0.29569, "epss_score": 0.00369, "exposure_hint": "exposure unknown", "human_consequence": "An attacker may be able to run code or commands on affected systems.", "human_impact_label": "code execution review · service availability risk", "human_risk_summary": "CVE-2026-0667: An attacker may be able to run code or commands on affected systems.", "id": "CVE-2026-0667", "impact_tags": ["code execution review", "service availability review"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes code execution review · service availability risk. Possible impact: An attacker may be able to run code or commands on affected systems.", "public_human_summary": "NVD: CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability that could cause arbitrary code execution, denial of service and loss of confidentiality & integrity when communicating over the Modbus TCP protocol.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes code execution review · service availability risk. Possible impact: An attacker may be able to run code or commands on affected systems.; CVSS 9.3 (CRITICAL); EPSS percentile 30; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability that could cause arbitrary code execution, denial of service and loss of confidentiality & integrity when communicating over the Modbus TCP protocol.", "public_status": "public_safe", "published_at": "2026-07-29T13:17:29.180", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-0667-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-0667.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-0667.md", "scan_allowed": false}, "remediation_urls": ["https://download.se.com/files?p_Doc_Ref=SEVD-2026-041-01&p_enDocType=Security+and+Safety+Notice&p_File_Name=SEVD-2026-041-01.pdf"], "sort_priority": 93.29569, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability that could cause arbitrary code execution, denial of service and loss of confidentiality & integrity when communicating over the Modbus TCP protocol.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://download.se.com/files?p_Doc_Ref=SEVD-2026-041-01&p_enDocType=Security+and+Safety+Notice&p_File_Name=SEVD-2026-041-01.pdf"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-0667"}], "source_published_impact": "Source describes code execution review · service availability risk. Possible impact: An attacker may be able to run code or commands on affected systems.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability that could cause arbitrary code execution, denial of service and loss of confidentiality & integrity when communicating over the Modbus TCP protocol.", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-0667 is a defensive prioritization candidate. NVD lists CVSS severity as CRITICAL. CVSS score is 9.3. EPSS score is 0.0037 with percentile 0.2957. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-0667 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 9.3, "disclosure_freshness": 0.9615, "epss_percentile": 0.29569, "epss_score": 0.00369, "evidence_confidence": 0.8333, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-0667", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T16:43:03.817000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 29.569, "priority_area": 93.2957, "published_at": "2026-07-29T13:17:29.180000Z", "remediation_reference_count": 1, "schema_version": "vuln-treemap-node-v1", "severity": "critical", "source_count": 3}, "updated_at": "2026-07-30T16:43:03.817", "urgency_reasons": ["CVSS CRITICAL", "vendor advisory present", "recent update", "remediation reference present"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "An attacker may be able to run code or commands on affected systems; CVSS 9.3 (CRITICAL); EPSS percentile 30; sources: NVD."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-12927/", "cvss_score": 8.4, "cvss_severity": "HIGH", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-12927.json", "defensive_priority": "Continuous monitoring candidate", "epss_percentile": 0.1015, "epss_score": 0.00201, "exposure_hint": "exposure unknown", "human_consequence": "An attacker may be able to run code or commands on affected systems.", "human_impact_label": "code execution review", "human_risk_summary": "CVE-2026-12927: An attacker may be able to run code or commands on affected systems.", "id": "CVE-2026-12927", "impact_tags": ["code execution review"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes code execution review. Possible impact: An attacker may be able to run code or commands on affected systems.", "public_human_summary": "NVD: CWE-787 Out-of-bounds write vulnerability exists that could cause loss of data or potentially risk arbitrary code execution when a malicious CGF file is imported to IGSS Definition.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes code execution review. Possible impact: An attacker may be able to run code or commands on affected systems.; CVSS 8.4 (HIGH); EPSS percentile 10; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: CWE-787 Out-of-bounds write vulnerability exists that could cause loss of data or potentially risk arbitrary code execution when a malicious CGF file is imported to IGSS Definition.", "public_status": "public_safe", "published_at": "2026-07-29T13:17:36.300", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-12927-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-12927.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-12927.md", "scan_allowed": false}, "remediation_urls": ["https://download.se.com/files?p_Doc_Ref=SEVD-2026-195-01&p_enDocType=Security+and+Safety+Notice&p_File_Name=SEVD-2026-195-01.pdf"], "sort_priority": 84.1015, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: CWE-787 Out-of-bounds write vulnerability exists that could cause loss of data or potentially risk arbitrary code execution when a malicious CGF file is imported to IGSS Definition.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://download.se.com/files?p_Doc_Ref=SEVD-2026-195-01&p_enDocType=Security+and+Safety+Notice&p_File_Name=SEVD-2026-195-01.pdf"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-12927"}], "source_published_impact": "Source describes code execution review. Possible impact: An attacker may be able to run code or commands on affected systems.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: CWE-787 Out-of-bounds write vulnerability exists that could cause loss of data or potentially risk arbitrary code execution when a malicious CGF file is imported to IGSS Definition.", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-12927 is a defensive prioritization candidate. NVD lists CVSS severity as HIGH. CVSS score is 8.4. EPSS score is 0.0020 with percentile 0.1015. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-12927 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 8.4, "disclosure_freshness": 0.9615, "epss_percentile": 0.1015, "epss_score": 0.00201, "evidence_confidence": 0.8333, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-12927", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T16:43:03.817000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 10.15, "priority_area": 84.1015, "published_at": "2026-07-29T13:17:36.300000Z", "remediation_reference_count": 1, "schema_version": "vuln-treemap-node-v1", "severity": "high", "source_count": 3}, "updated_at": "2026-07-30T16:43:03.817", "urgency_reasons": ["CVSS HIGH", "vendor advisory present", "recent update", "remediation reference present"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "An attacker may be able to run code or commands on affected systems; CVSS 8.4 (HIGH); EPSS percentile 10; sources: NVD."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-14354/", "cvss_score": 8.7, "cvss_severity": "HIGH", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-14354.json", "defensive_priority": "Continuous monitoring candidate", "epss_percentile": 0.01912, "epss_score": 0.00117, "exposure_hint": "exposure unknown", "human_consequence": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authentication boundary review.", "human_impact_label": "authentication boundary review", "human_risk_summary": "CVE-2026-14354: This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authentication boundary review.", "id": "CVE-2026-14354", "impact_tags": ["authentication boundary review"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes authentication boundary review. Possible impact: This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authentication boundary review.", "public_human_summary": "NVD: CWE-522 Insufficiently Protected Credentials vulnerability exists that could cause authentication bypass and unauthorized credential modification, potentially leading to compromise of managed devices, when a local privileged attacker leverages weaknesses in...", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes authentication boundary review. Possible impact: This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authentication boundary review.; CVSS 8.7 (HIGH); EPSS percentile 2; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: CWE-522 Insufficiently Protected Credentials vulnerability exists that could cause authentication bypass and unauthorized credential modification, potentially leading to compromise of managed devices, when a local privileged attacker leverages weaknesses in...", "public_status": "public_safe", "published_at": "2026-07-29T13:17:42.723", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-14354-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-14354.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-14354.md", "scan_allowed": false}, "remediation_urls": ["https://download.se.com/files?p_Doc_Ref=SEVD-2026-195-02&p_enDocType=Security+and+Safety+Notice&p_File_Name=SEVD-2026-195-02.pdf"], "sort_priority": 87.01912, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: CWE-522 Insufficiently Protected Credentials vulnerability exists that could cause authentication bypass and unauthorized credential modification, potentially leading to compromise of managed devices, when a local privileged attacker leverages weaknesses in...", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://download.se.com/files?p_Doc_Ref=SEVD-2026-195-02&p_enDocType=Security+and+Safety+Notice&p_File_Name=SEVD-2026-195-02.pdf"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-14354"}], "source_published_impact": "Source describes authentication boundary review. Possible impact: This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authentication boundary review.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: CWE-522 Insufficiently Protected Credentials vulnerability exists that could cause authentication bypass and unauthorized credential modification, potentially leading to compromise of managed devices, when a local privileged attacker leverages weaknesses in...", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-14354 is a defensive prioritization candidate. NVD lists CVSS severity as HIGH. CVSS score is 8.7. EPSS score is 0.0012 with percentile 0.0191. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-14354 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 8.7, "disclosure_freshness": 0.9615, "epss_percentile": 0.01912, "epss_score": 0.00117, "evidence_confidence": 0.8333, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-14354", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T16:43:03.817000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 6.0, "priority_area": 87.0191, "published_at": "2026-07-29T13:17:42.723000Z", "remediation_reference_count": 1, "schema_version": "vuln-treemap-node-v1", "severity": "high", "source_count": 3}, "updated_at": "2026-07-30T16:43:03.817", "urgency_reasons": ["CVSS HIGH", "vendor advisory present", "recent update", "remediation reference present"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authentication boundary review; CVSS 8.7 (HIGH); EPSS percentile 2; sources: NVD."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-33385/", "cvss_score": 5.1, "cvss_severity": "MEDIUM", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-33385.json", "defensive_priority": "Routine monitoring candidate", "epss_percentile": 0.1523, "epss_score": 0.0024, "exposure_hint": "exposure unknown", "human_consequence": "An attacker may be able to read or change database-backed application data.", "human_impact_label": "SQL injection risk", "human_risk_summary": "CVE-2026-33385: An attacker may be able to read or change database-backed application data.", "id": "CVE-2026-33385", "impact_tags": ["SQL injection risk"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes SQL injection risk. Possible impact: An attacker may be able to read or change database-backed application data.", "public_human_summary": "NVD: A Blind SQL injection vulnerability has been identified in Quick.CMS. NVD: Improper neutralization of input provided by a high-privileged user into multiple fields in administration panel allows for Blind SQL Injection attacks. NVD: The vendor states that this administration panel already allows for significant modification capabilities.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes SQL injection risk. Possible impact: An attacker may be able to read or change database-backed application data.; CVSS 5.1 (MEDIUM); EPSS percentile 15; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: A Blind SQL injection vulnerability has been identified in Quick.CMS. NVD: Improper neutralization of input provided by a high-privileged user into multiple fields in administration panel allows for Blind SQL Injection attacks. NVD: The vendor states that this administration panel already allows for significant modification capabilities.", "public_status": "public_safe", "published_at": "2026-07-29T13:18:08.400", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-33385-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-33385.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-33385.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-33385"], "sort_priority": 51.1523, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: A Blind SQL injection vulnerability has been identified in Quick.CMS. NVD: Improper neutralization of input provided by a high-privileged user into multiple fields in administration panel allows for Blind SQL Injection attacks. NVD: The vendor states that this administration panel already allows for significant modification capabilities.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://cert.pl/posts/2026/07/CVE-2026-33385/"}, {"source": "Reference", "type": "reference", "url": "https://opensolution.org/home.html"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-33385"}], "source_published_impact": "Source describes SQL injection risk. Possible impact: An attacker may be able to read or change database-backed application data.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: A Blind SQL injection vulnerability has been identified in Quick.CMS. NVD: Improper neutralization of input provided by a high-privileged user into multiple fields in administration panel allows for Blind SQL Injection attacks. NVD: The vendor states that this administration panel already allows for significant modification capabilities.", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-33385 is a defensive prioritization candidate. NVD lists CVSS severity as MEDIUM. CVSS score is 5.1. EPSS score is 0.0024 with percentile 0.1523. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-33385 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 5.1, "disclosure_freshness": 0.9615, "epss_percentile": 0.1523, "epss_score": 0.0024, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-33385", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T19:09:20.717000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 15.23, "priority_area": 51.1523, "published_at": "2026-07-29T13:18:08.400000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "medium", "source_count": 2}, "updated_at": "2026-07-30T19:09:20.717", "urgency_reasons": ["vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "An attacker may be able to read or change database-backed application data; CVSS 5.1 (MEDIUM); EPSS percentile 15; sources: NVD."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-44943/", "cvss_score": 6.9, "cvss_severity": "MEDIUM", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-44943.json", "defensive_priority": "Routine monitoring candidate", "epss_percentile": 0.25549, "epss_score": 0.0033, "exposure_hint": "exposure unknown", "human_consequence": "An attacker may gain root or administrative-level privileges on affected systems.", "human_impact_label": "admin privilege risk · path traversal review", "human_risk_summary": "CVE-2026-44943: An attacker may gain root or administrative-level privileges on affected systems.", "id": "CVE-2026-44943", "impact_tags": ["admin privilege risk", "path traversal review"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes admin privilege risk · path traversal review. Possible impact: An attacker may gain root or administrative-level privileges on affected systems.", "public_human_summary": "NVD: An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in open-iscsi allows remote MITM attackers to create root-owned files outside the database and inject lines into the record. NVD: This issue affects open-iscsi: from through 668ca1df9c9a1e9bdd5c999ae1d67c9c8909237e. OSV: remote limited file-write as root via discovery in open-iscsi", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes admin privilege risk · path traversal review. Possible impact: An attacker may gain root or administrative-level privileges on affected systems.; CVSS 6.9 (MEDIUM); EPSS percentile 26; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD, OSV.", "public_safe_summary": "NVD: An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in open-iscsi allows remote MITM attackers to create root-owned files outside the database and inject lines into the record. NVD: This issue affects open-iscsi: from through 668ca1df9c9a1e9bdd5c999ae1d67c9c8909237e. OSV: remote limited file-write as root via discovery in open-iscsi", "public_status": "public_safe", "published_at": "2026-07-29T13:18:45.967", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-44943-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-44943.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-44943.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-44943", "https://osv.dev/vulnerability/CVE-2026-44943"], "sort_priority": 69.25549, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD / OSV description; unsafe procedural detail is not shown.", "source_label": "NVD, OSV, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in open-iscsi allows remote MITM attackers to create root-owned files outside the database and inject lines into the record. NVD: This issue affects open-iscsi: from through 668ca1df9c9a1e9bdd5c999ae1d67c9c8909237e. OSV: remote limited file-write as root via discovery in open-iscsi", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "OSV", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://bugzilla.suse.com/show_bug.cgi?id=CVE-2026-44943"}, {"source": "Reference", "type": "reference", "url": "https://github.com/open-iscsi/open-iscsi/commit/668ca1df9c9a1e9bdd5c999ae1d67c9c8909237e"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-44943"}, {"source": "Official Reference", "type": "reference", "url": "https://osv.dev/vulnerability/CVE-2026-44943"}], "source_published_impact": "Source describes admin privilege risk · path traversal review. Possible impact: An attacker may gain root or administrative-level privileges on affected systems.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in open-iscsi allows remote MITM attackers to create root-owned files outside the database and inject lines into the record. NVD: This issue affects open-iscsi: from through 668ca1df9c9a1e9bdd5c999ae1d67c9c8909237e. OSV: remote limited file-write as root via discovery in open-iscsi", "sources": ["NVD", "OSV", "Vendor Advisory"], "summary": "CVE-2026-44943 is a defensive prioritization candidate. NVD lists CVSS severity as MEDIUM. CVSS score is 6.9. EPSS score is 0.0033 with percentile 0.2555. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-44943 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 6.9, "disclosure_freshness": 0.9615, "epss_percentile": 0.25549, "epss_score": 0.0033, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-44943", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T16:43:03.817000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 25.549, "priority_area": 69.2555, "published_at": "2026-07-29T13:18:45.967000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "medium", "source_count": 4}, "updated_at": "2026-07-30T16:43:03.817", "urgency_reasons": ["vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "An attacker may gain root or administrative-level privileges on affected systems; CVSS 6.9 (MEDIUM); EPSS percentile 26; sources: NVD, OSV."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-44944/", "cvss_score": 8.5, "cvss_severity": "HIGH", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-44944.json", "defensive_priority": "Continuous monitoring candidate", "epss_percentile": 0.00653, "epss_score": 0.00093, "exposure_hint": "local exposure", "human_consequence": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authentication boundary review · local exposure.", "human_impact_label": "authentication boundary review · local exposure", "human_risk_summary": "CVE-2026-44944: This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authentication boundary review · local exposure.", "id": "CVE-2026-44944", "impact_tags": ["authentication boundary review", "local exposure relevant"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes authentication boundary review · local exposure. Possible impact: This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authentication boundary review · local exposure.", "public_human_summary": "NVD: An Incorrect Authorization vulnerability in open-iscsi allows unprivilidged local users to use the isscsiuio control socket. NVD: This issue affects open-iscsi: from ? NVD: through 668ca1df9c9a1e9bdd5c999ae1d67c9c8909237e.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes authentication boundary review · local exposure. Possible impact: This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authentication boundary review · local exposure.; CVSS 8.5 (HIGH); EPSS percentile 1; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD, OSV.", "public_safe_summary": "NVD: An Incorrect Authorization vulnerability in open-iscsi allows unprivilidged local users to use the isscsiuio control socket. NVD: This issue affects open-iscsi: from ? NVD: through 668ca1df9c9a1e9bdd5c999ae1d67c9c8909237e.", "public_status": "public_safe", "published_at": "2026-07-29T13:18:46.113", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-44944-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-44944.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-44944.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-44944", "https://osv.dev/vulnerability/CVE-2026-44944"], "sort_priority": 85.00653, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD / OSV description; unsafe procedural detail is not shown.", "source_label": "NVD, OSV, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: An Incorrect Authorization vulnerability in open-iscsi allows unprivilidged local users to use the isscsiuio control socket. NVD: This issue affects open-iscsi: from ? NVD: through 668ca1df9c9a1e9bdd5c999ae1d67c9c8909237e.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "OSV", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://bugzilla.suse.com/show_bug.cgi?id=CVE-2026-44944"}, {"source": "Reference", "type": "reference", "url": "https://github.com/open-iscsi/open-iscsi/commit/668ca1df9c9a1e9bdd5c999ae1d67c9c8909237e"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-44944"}, {"source": "Official Reference", "type": "reference", "url": "https://osv.dev/vulnerability/CVE-2026-44944"}], "source_published_impact": "Source describes authentication boundary review · local exposure. Possible impact: This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authentication boundary review · local exposure.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: An Incorrect Authorization vulnerability in open-iscsi allows unprivilidged local users to use the isscsiuio control socket. NVD: This issue affects open-iscsi: from ? NVD: through 668ca1df9c9a1e9bdd5c999ae1d67c9c8909237e.", "sources": ["NVD", "OSV", "Vendor Advisory"], "summary": "CVE-2026-44944 is a defensive prioritization candidate. NVD lists CVSS severity as HIGH. CVSS score is 8.5. EPSS score is 0.0009 with percentile 0.0065. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-44944 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 8.5, "disclosure_freshness": 0.9615, "epss_percentile": 0.00653, "epss_score": 0.00093, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-44944", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T16:43:03.817000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 6.0, "priority_area": 85.0065, "published_at": "2026-07-29T13:18:46.113000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "high", "source_count": 4}, "updated_at": "2026-07-30T16:43:03.817", "urgency_reasons": ["CVSS HIGH", "vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authentication boundary review · local exposure; CVSS 8.5 (HIGH); EPSS percentile 1; sources: NVD, OSV."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-50641/", "cvss_score": 7.1, "cvss_severity": "HIGH", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-50641.json", "defensive_priority": "Continuous monitoring candidate", "epss_percentile": 0.05664, "epss_score": 0.0016, "exposure_hint": "exposure unknown", "human_consequence": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.", "human_impact_label": "high severity review", "human_risk_summary": "CVE-2026-50641: This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.", "id": "CVE-2026-50641", "impact_tags": [], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.", "public_human_summary": "NVD: Streamsoft Business Intelligence (BI) stores users' passwords in plaintext form in the database This issue was fixed in version 6.8.0.0, users were also requested to change their password on the first login.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.; CVSS 7.1 (HIGH); EPSS percentile 6; not listed in KEV; Patch confirmed by source text; fixed version context: version; sources: NVD.", "public_safe_summary": "NVD: Streamsoft Business Intelligence (BI) stores users' passwords in plaintext form in the database This issue was fixed in version 6.8.0.0, users were also requested to change their password on the first login.", "public_status": "public_safe", "published_at": "2026-07-29T13:18:53.053", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-50641-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-50641.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-50641.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-50641"], "sort_priority": 71.05664, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: Streamsoft Business Intelligence (BI) stores users' passwords in plaintext form in the database This issue was fixed in version 6.8.0.0, users were also requested to change their password on the first login.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://cert.pl/posts/2026/07/CVE-2026-50641"}, {"source": "Reference", "type": "reference", "url": "https://www.streamsoft.pl/business-intelligence/"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-50641"}], "source_published_impact": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.", "source_published_remediation": "Patch confirmed by source text; fixed version context: version.", "source_published_summary": "NVD: Streamsoft Business Intelligence (BI) stores users' passwords in plaintext form in the database This issue was fixed in version 6.8.0.0, users were also requested to change their password on the first login.", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-50641 is a defensive prioritization candidate. NVD lists CVSS severity as HIGH. CVSS score is 7.1. EPSS score is 0.0016 with percentile 0.0566. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-50641 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 7.1, "disclosure_freshness": 0.9615, "epss_percentile": 0.05664, "epss_score": 0.0016, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-50641", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T19:11:24.687000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 6.0, "priority_area": 71.0566, "published_at": "2026-07-29T13:18:53.053000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "high", "source_count": 2}, "updated_at": "2026-07-30T19:11:24.687", "urgency_reasons": ["CVSS HIGH", "vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review; CVSS 7.1 (HIGH); EPSS percentile 6; sources: NVD."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-65884/", "cvss_score": 10.0, "cvss_severity": "CRITICAL", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-65884.json", "defensive_priority": "Priority review candidate", "epss_percentile": 0.16281, "epss_score": 0.00249, "exposure_hint": "exposure unknown", "human_consequence": "An attacker may cross a privilege boundary and gain more access than intended.", "human_impact_label": "privilege escalation risk", "human_risk_summary": "CVE-2026-65884: An attacker may cross a privilege boundary and gain more access than intended.", "id": "CVE-2026-65884", "impact_tags": ["privilege boundary review"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes privilege escalation risk. Possible impact: An attacker may cross a privilege boundary and gain more access than intended.", "public_human_summary": "NVD: Joomla Extension - balbooa.com - Privilege Escalation in Gridbox < 2.20.2 - The registration method allows users provided usergroup IDs, allowing unauthenticated actors to register new accounts with administrative permissions.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes privilege escalation risk. Possible impact: An attacker may cross a privilege boundary and gain more access than intended.; CVSS 10.0 (CRITICAL); EPSS percentile 16; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: Joomla Extension - balbooa.com - Privilege Escalation in Gridbox < 2.20.2 - The registration method allows users provided usergroup IDs, allowing unauthenticated actors to register new accounts with administrative permissions.", "public_status": "public_safe", "published_at": "2026-07-29T13:19:10.677", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65884-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65884.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65884.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-65884"], "sort_priority": 100.16281, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: Joomla Extension - balbooa.com - Privilege Escalation in Gridbox < 2.20.2 - The registration method allows users provided usergroup IDs, allowing unauthenticated actors to register new accounts with administrative permissions.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://mysites.guru/blog/gridbox-23-critical-vulnerabilities/"}, {"source": "Reference", "type": "reference", "url": "https://www.balbooa.com/gridbox"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-65884"}], "source_published_impact": "Source describes privilege escalation risk. Possible impact: An attacker may cross a privilege boundary and gain more access than intended.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: Joomla Extension - balbooa.com - Privilege Escalation in Gridbox < 2.20.2 - The registration method allows users provided usergroup IDs, allowing unauthenticated actors to register new accounts with administrative permissions.", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-65884 is a defensive prioritization candidate. NVD lists CVSS severity as CRITICAL. CVSS score is 10.0. EPSS score is 0.0025 with percentile 0.1628. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-65884 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 10.0, "disclosure_freshness": 0.9615, "epss_percentile": 0.16281, "epss_score": 0.00249, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-65884", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T14:06:56.363000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 16.281, "priority_area": 100.1628, "published_at": "2026-07-29T13:19:10.677000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "critical", "source_count": 2}, "updated_at": "2026-07-30T14:06:56.363", "urgency_reasons": ["CVSS CRITICAL", "vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "An attacker may cross a privilege boundary and gain more access than intended; CVSS 10.0 (CRITICAL); EPSS percentile 16; sources: NVD."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-65885/", "cvss_score": 9.4, "cvss_severity": "CRITICAL", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-65885.json", "defensive_priority": "Priority review candidate", "epss_percentile": 0.1657, "epss_score": 0.00251, "exposure_hint": "authenticated boundary", "human_consequence": "An attacker may be able to run code or commands on affected systems.", "human_impact_label": "code execution review · authenticated boundary", "human_risk_summary": "CVE-2026-65885: An attacker may be able to run code or commands on affected systems.", "id": "CVE-2026-65885", "impact_tags": ["code execution review", "authenticated boundary review"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes code execution review · authenticated boundary. Possible impact: An attacker may be able to run code or commands on affected systems.", "public_human_summary": "NVD: Joomla Extension - balbooa.com - Authenticated arbitrary file upload in Gridbox < 2.20.2 - File upload methods allows authenticated attackers to upload arbitrary files. NVD: Turns into an authenticated RCE if combined with CVE-2026-65884 as the required account can be created by the attacker.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes code execution review · authenticated boundary. Possible impact: An attacker may be able to run code or commands on affected systems.; CVSS 9.4 (CRITICAL); EPSS percentile 17; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: Joomla Extension - balbooa.com - Authenticated arbitrary file upload in Gridbox < 2.20.2 - File upload methods allows authenticated attackers to upload arbitrary files. NVD: Turns into an authenticated RCE if combined with CVE-2026-65884 as the required account can be created by the attacker.", "public_status": "public_safe", "published_at": "2026-07-29T13:19:10.820", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65885-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65885.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65885.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-65885"], "sort_priority": 94.1657, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: Joomla Extension - balbooa.com - Authenticated arbitrary file upload in Gridbox < 2.20.2 - File upload methods allows authenticated attackers to upload arbitrary files. NVD: Turns into an authenticated RCE if combined with CVE-2026-65884 as the required account can be created by the attacker.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://mysites.guru/blog/gridbox-23-critical-vulnerabilities/"}, {"source": "Reference", "type": "reference", "url": "https://www.balbooa.com/gridbox"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-65885"}], "source_published_impact": "Source describes code execution review · authenticated boundary. Possible impact: An attacker may be able to run code or commands on affected systems.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: Joomla Extension - balbooa.com - Authenticated arbitrary file upload in Gridbox < 2.20.2 - File upload methods allows authenticated attackers to upload arbitrary files. NVD: Turns into an authenticated RCE if combined with CVE-2026-65884 as the required account can be created by the attacker.", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-65885 is a defensive prioritization candidate. NVD lists CVSS severity as CRITICAL. CVSS score is 9.4. EPSS score is 0.0025 with percentile 0.1657. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-65885 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 9.4, "disclosure_freshness": 0.9615, "epss_percentile": 0.1657, "epss_score": 0.00251, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-65885", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T14:06:56.363000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 16.57, "priority_area": 94.1657, "published_at": "2026-07-29T13:19:10.820000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "critical", "source_count": 2}, "updated_at": "2026-07-30T14:06:56.363", "urgency_reasons": ["CVSS CRITICAL", "vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "An attacker may be able to run code or commands on affected systems; CVSS 9.4 (CRITICAL); EPSS percentile 17; sources: NVD."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-65891/", "cvss_score": 6.5, "cvss_severity": "MEDIUM", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-65891.json", "defensive_priority": "Routine monitoring candidate", "epss_percentile": 0.09481, "epss_score": 0.00195, "exposure_hint": "authenticated boundary", "human_consequence": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authenticated boundary.", "human_impact_label": "authenticated boundary", "human_risk_summary": "CVE-2026-65891: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authenticated boundary.", "id": "CVE-2026-65891", "impact_tags": ["authenticated boundary review"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes authenticated boundary. Possible impact: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authenticated boundary.", "public_human_summary": "NVD: Joomla Extension - joomlacontenteditor.net - Creation of hidden files and unintended file overwrite via rename function in Joomla Content Editor (JCE) < 2.20.2 - Improper input validation in the file rename functionality allowed an authenticated user with... NVD: The issue also allowed existing files at the destination path to be unintentionally replaced.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes authenticated boundary. Possible impact: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authenticated boundary.; CVSS 6.5 (MEDIUM); EPSS percentile 9; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: Joomla Extension - joomlacontenteditor.net - Creation of hidden files and unintended file overwrite via rename function in Joomla Content Editor (JCE) < 2.20.2 - Improper input validation in the file rename functionality allowed an authenticated user with... NVD: The issue also allowed existing files at the destination path to be unintentionally replaced.", "public_status": "public_safe", "published_at": "2026-07-29T13:19:10.980", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65891-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65891.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65891.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-65891"], "sort_priority": 65.09481, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: Joomla Extension - joomlacontenteditor.net - Creation of hidden files and unintended file overwrite via rename function in Joomla Content Editor (JCE) < 2.20.2 - Improper input validation in the file rename functionality allowed an authenticated user with... NVD: The issue also allowed existing files at the destination path to be unintentionally replaced.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://www.joomlacontenteditor.net/"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-65891"}], "source_published_impact": "Source describes authenticated boundary. Possible impact: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authenticated boundary.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: Joomla Extension - joomlacontenteditor.net - Creation of hidden files and unintended file overwrite via rename function in Joomla Content Editor (JCE) < 2.20.2 - Improper input validation in the file rename functionality allowed an authenticated user with... NVD: The issue also allowed existing files at the destination path to be unintentionally replaced.", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-65891 is a defensive prioritization candidate. NVD lists CVSS severity as MEDIUM. CVSS score is 6.5. EPSS score is 0.0019 with percentile 0.0948. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-65891 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 6.5, "disclosure_freshness": 0.9615, "epss_percentile": 0.09481, "epss_score": 0.00195, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-65891", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T14:17:03.483000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 9.481, "priority_area": 65.0948, "published_at": "2026-07-29T13:19:10.980000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "medium", "source_count": 2}, "updated_at": "2026-07-30T14:17:03.483", "urgency_reasons": ["vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authenticated boundary; CVSS 6.5 (MEDIUM); EPSS percentile 9; sources: NVD."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-65943/", "cvss_score": 7.5, "cvss_severity": "HIGH", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-65943.json", "defensive_priority": "Continuous monitoring candidate", "epss_percentile": 0.14165, "epss_score": 0.00232, "exposure_hint": "exposure unknown", "human_consequence": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.", "human_impact_label": "high severity review", "human_risk_summary": "CVE-2026-65943: This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.", "id": "CVE-2026-65943", "impact_tags": [], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.", "public_human_summary": "NVD: Joomla Extension - rolandd.com - Unauthenticated directory creation RO CSVI < 9.11.0", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.; CVSS 7.5 (HIGH); EPSS percentile 14; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: Joomla Extension - rolandd.com - Unauthenticated directory creation RO CSVI < 9.11.0", "public_status": "public_safe", "published_at": "2026-07-29T13:19:11.087", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65943-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65943.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65943.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-65943"], "sort_priority": 75.14165, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: Joomla Extension - rolandd.com - Unauthenticated directory creation RO CSVI < 9.11.0", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://rolandd.com/products/ro-csvi"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-65943"}], "source_published_impact": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: Joomla Extension - rolandd.com - Unauthenticated directory creation RO CSVI < 9.11.0", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-65943 is a defensive prioritization candidate. NVD lists CVSS severity as HIGH. CVSS score is 7.5. EPSS score is 0.0023 with percentile 0.1416. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-65943 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 7.5, "disclosure_freshness": 0.9615, "epss_percentile": 0.14165, "epss_score": 0.00232, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-65943", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T14:06:56.363000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 14.165, "priority_area": 75.1416, "published_at": "2026-07-29T13:19:11.087000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "high", "source_count": 2}, "updated_at": "2026-07-30T14:06:56.363", "urgency_reasons": ["CVSS HIGH", "vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review; CVSS 7.5 (HIGH); EPSS percentile 14; sources: NVD."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-65944/", "cvss_score": 8.8, "cvss_severity": "HIGH", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-65944.json", "defensive_priority": "Continuous monitoring candidate", "epss_percentile": 0.03057, "epss_score": 0.0013, "exposure_hint": "exposure unknown", "human_consequence": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.", "human_impact_label": "high severity review", "human_risk_summary": "CVE-2026-65944: This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.", "id": "CVE-2026-65944", "impact_tags": [], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.", "public_human_summary": "NVD: Joomla Extension - rolandd.com - CSRF vectors in AJAX endpoint handlers RO CSVI < 9.11.0", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.; CVSS 8.8 (HIGH); EPSS percentile 3; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: Joomla Extension - rolandd.com - CSRF vectors in AJAX endpoint handlers RO CSVI < 9.11.0", "public_status": "public_safe", "published_at": "2026-07-29T13:19:11.190", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65944-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65944.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65944.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-65944"], "sort_priority": 88.03057, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: Joomla Extension - rolandd.com - CSRF vectors in AJAX endpoint handlers RO CSVI < 9.11.0", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://rolandd.com/products/ro-csvi"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-65944"}], "source_published_impact": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: Joomla Extension - rolandd.com - CSRF vectors in AJAX endpoint handlers RO CSVI < 9.11.0", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-65944 is a defensive prioritization candidate. NVD lists CVSS severity as HIGH. CVSS score is 8.8. EPSS score is 0.0013 with percentile 0.0306. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-65944 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 8.8, "disclosure_freshness": 0.9615, "epss_percentile": 0.03057, "epss_score": 0.0013, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-65944", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T14:17:03.647000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 6.0, "priority_area": 88.0306, "published_at": "2026-07-29T13:19:11.190000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "high", "source_count": 2}, "updated_at": "2026-07-30T14:17:03.647", "urgency_reasons": ["CVSS HIGH", "vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review; CVSS 8.8 (HIGH); EPSS percentile 3; sources: NVD."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-65946/", "cvss_score": 6.1, "cvss_severity": "MEDIUM", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-65946.json", "defensive_priority": "Routine monitoring candidate", "epss_percentile": 0.04577, "epss_score": 0.00149, "exposure_hint": "exposure unknown", "human_consequence": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for XSS risk.", "human_impact_label": "XSS risk", "human_risk_summary": "CVE-2026-65946: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for XSS risk.", "id": "CVE-2026-65946", "impact_tags": ["XSS risk"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes XSS risk. Possible impact: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for XSS risk.", "public_human_summary": "NVD: Joomla Extension - rolandd.com - XSS vectors in AJAX endpoint handlers RO CSVI < 9.11.0", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes XSS risk. Possible impact: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for XSS risk.; CVSS 6.1 (MEDIUM); EPSS percentile 5; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: Joomla Extension - rolandd.com - XSS vectors in AJAX endpoint handlers RO CSVI < 9.11.0", "public_status": "public_safe", "published_at": "2026-07-29T13:19:11.293", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65946-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65946.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65946.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-65946"], "sort_priority": 61.04577, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: Joomla Extension - rolandd.com - XSS vectors in AJAX endpoint handlers RO CSVI < 9.11.0", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://rolandd.com/products/ro-csvi"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-65946"}], "source_published_impact": "Source describes XSS risk. Possible impact: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for XSS risk.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: Joomla Extension - rolandd.com - XSS vectors in AJAX endpoint handlers RO CSVI < 9.11.0", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-65946 is a defensive prioritization candidate. NVD lists CVSS severity as MEDIUM. CVSS score is 6.1. EPSS score is 0.0015 with percentile 0.0458. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-65946 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 6.1, "disclosure_freshness": 0.9615, "epss_percentile": 0.04577, "epss_score": 0.00149, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-65946", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T14:06:56.363000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 6.0, "priority_area": 61.0458, "published_at": "2026-07-29T13:19:11.293000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "medium", "source_count": 2}, "updated_at": "2026-07-30T14:06:56.363", "urgency_reasons": ["vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for XSS risk; CVSS 6.1 (MEDIUM); EPSS percentile 5; sources: NVD."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-16751/", "cvss_score": 6.5, "cvss_severity": "MEDIUM", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-16751.json", "defensive_priority": "Routine monitoring candidate", "epss_percentile": 0.21758, "epss_score": 0.00295, "exposure_hint": "authenticated boundary", "human_consequence": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authenticated boundary.", "human_impact_label": "authenticated boundary", "human_risk_summary": "CVE-2026-16751: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authenticated boundary.", "id": "CVE-2026-16751", "impact_tags": ["authenticated boundary review"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes authenticated boundary. Possible impact: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authenticated boundary.", "public_human_summary": "NVD: Authorization Bypass in the emergency recovery approval component in Ente Technologies Ente Museum Server allows an authenticated attacker configured as a victim's emergency contact to bypass the configured recovery waiting period and take over the victim's...", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes authenticated boundary. Possible impact: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authenticated boundary.; CVSS 6.5 (MEDIUM); EPSS percentile 22; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: Authorization Bypass in the emergency recovery approval component in Ente Technologies Ente Museum Server allows an authenticated attacker configured as a victim's emergency contact to bypass the configured recovery waiting period and take over the victim's...", "public_status": "public_safe", "published_at": "2026-07-29T14:16:28.683", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-16751-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-16751.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-16751.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-16751"], "sort_priority": 65.21758, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: Authorization Bypass in the emergency recovery approval component in Ente Technologies Ente Museum Server allows an authenticated attacker configured as a victim's emergency contact to bypass the configured recovery waiting period and take over the victim's...", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://github.com/ente/ente/tree/v2.0.34"}, {"source": "Reference", "type": "reference", "url": "https://vokecyber.com/blog/cve-2026-16751-ente-emergency-recovery-bypass"}, {"source": "Reference", "type": "reference", "url": "https://vokecyber.com/research/cve-2026-16751-ente-emergency-recovery-bypass"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-16751"}], "source_published_impact": "Source describes authenticated boundary. Possible impact: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authenticated boundary.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: Authorization Bypass in the emergency recovery approval component in Ente Technologies Ente Museum Server allows an authenticated attacker configured as a victim's emergency contact to bypass the configured recovery waiting period and take over the victim's...", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-16751 is a defensive prioritization candidate. NVD lists CVSS severity as MEDIUM. CVSS score is 6.5. EPSS score is 0.0029 with percentile 0.2176. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-16751 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 6.5, "disclosure_freshness": 0.9617, "epss_percentile": 0.21758, "epss_score": 0.00295, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-16751", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T19:11:24.687000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 21.758, "priority_area": 65.2176, "published_at": "2026-07-29T14:16:28.683000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "medium", "source_count": 2}, "updated_at": "2026-07-30T19:11:24.687", "urgency_reasons": ["vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authenticated boundary; CVSS 6.5 (MEDIUM); EPSS percentile 22; sources: NVD."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-18174/", "cvss_score": 5.3, "cvss_severity": "MEDIUM", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-18174.json", "defensive_priority": "Routine monitoring candidate", "epss_percentile": 0.09205, "epss_score": 0.00193, "exposure_hint": "exposure unknown", "human_consequence": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for defensive exposure review.", "human_impact_label": "defensive exposure review", "human_risk_summary": "CVE-2026-18174: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for defensive exposure review.", "id": "CVE-2026-18174", "impact_tags": [], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for defensive exposure review.", "public_human_summary": "NVD: @fastify/forwarded resolves client addresses from the X-Forwarded-For header. NVD: In versions before 3.0.2, when the header contains two or more comma separated entries, the parser trims only space characters and does not strip horizontal tabs, even though RFC 7230 defines optional whitespace as both space and tab. NVD: As a result, an entry padded with a tab keeps the literal tab in the resolved address string.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for defensive exposure review.; CVSS 5.3 (MEDIUM); EPSS percentile 9; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD, OSV.", "public_safe_summary": "NVD: @fastify/forwarded resolves client addresses from the X-Forwarded-For header. NVD: In versions before 3.0.2, when the header contains two or more comma separated entries, the parser trims only space characters and does not strip horizontal tabs, even though RFC 7230 defines optional whitespace as both space and tab. NVD: As a result, an entry padded with a tab keeps the literal tab in the resolved address string.", "public_status": "public_safe", "published_at": "2026-07-29T14:16:28.790", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-18174-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-18174.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-18174.md", "scan_allowed": false}, "remediation_urls": ["https://cna.openjsf.org/security-advisories.html", "https://github.com/fastify/forwarded/security/advisories/GHSA-2849-m2w7-xm8f"], "sort_priority": 53.09205, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD / OSV description; unsafe procedural detail is not shown.", "source_label": "NVD, OSV, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: @fastify/forwarded resolves client addresses from the X-Forwarded-For header. NVD: In versions before 3.0.2, when the header contains two or more comma separated entries, the parser trims only space characters and does not strip horizontal tabs, even though RFC 7230 defines optional whitespace as both space and tab. NVD: As a result, an entry padded with a tab keeps the literal tab in the resolved address string.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "OSV", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://cna.openjsf.org/security-advisories.html"}, {"source": "Reference", "type": "reference", "url": "https://github.com/fastify/forwarded/security/advisories/GHSA-2849-m2w7-xm8f"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-18174"}, {"source": "Official Reference", "type": "reference", "url": "https://osv.dev/vulnerability/CVE-2026-18174"}], "source_published_impact": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for defensive exposure review.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: @fastify/forwarded resolves client addresses from the X-Forwarded-For header. NVD: In versions before 3.0.2, when the header contains two or more comma separated entries, the parser trims only space characters and does not strip horizontal tabs, even though RFC 7230 defines optional whitespace as both space and tab. NVD: As a result, an entry padded with a tab keeps the literal tab in the resolved address string.", "sources": ["NVD", "OSV", "Vendor Advisory"], "summary": "CVE-2026-18174 is a defensive prioritization candidate. NVD lists CVSS severity as MEDIUM. CVSS score is 5.3. EPSS score is 0.0019 with percentile 0.0921. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-18174 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 5.3, "disclosure_freshness": 0.9617, "epss_percentile": 0.09205, "epss_score": 0.00193, "evidence_confidence": 0.8333, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-18174", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T16:43:03.817000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 9.205, "priority_area": 53.0921, "published_at": "2026-07-29T14:16:28.790000Z", "remediation_reference_count": 2, "schema_version": "vuln-treemap-node-v1", "severity": "medium", "source_count": 6}, "updated_at": "2026-07-30T16:43:03.817", "urgency_reasons": ["vendor advisory present", "recent update", "remediation reference present"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for defensive exposure review; CVSS 5.3 (MEDIUM); EPSS percentile 9; sources: NVD, OSV."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-55995/", "cvss_score": 8.7, "cvss_severity": "HIGH", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-55995.json", "defensive_priority": "Continuous monitoring candidate", "epss_percentile": 0.16635, "epss_score": 0.00252, "exposure_hint": "exposure unknown", "human_consequence": "The affected service may become unavailable or unreliable.", "human_impact_label": "service availability risk", "human_risk_summary": "CVE-2026-55995: The affected service may become unavailable or unreliable.", "id": "CVE-2026-55995", "impact_tags": ["service availability review"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes service availability risk. Possible impact: The affected service may become unavailable or unreliable.", "public_human_summary": "NVD: A Double Free vulnerability in open-iscsi allows an unauthenticated MITM attacker to cause DoS. NVD: This issue affects open-iscsi: from ? NVD: through 56718d4e9d1a4f51c30697b5c0534144bb41c9bb.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes service availability risk. Possible impact: The affected service may become unavailable or unreliable.; CVSS 8.7 (HIGH); EPSS percentile 17; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD, OSV.", "public_safe_summary": "NVD: A Double Free vulnerability in open-iscsi allows an unauthenticated MITM attacker to cause DoS. NVD: This issue affects open-iscsi: from ? NVD: through 56718d4e9d1a4f51c30697b5c0534144bb41c9bb.", "public_status": "public_safe", "published_at": "2026-07-29T14:16:31.423", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-55995-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-55995.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-55995.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-55995", "https://osv.dev/vulnerability/CVE-2026-55995"], "sort_priority": 87.16635, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD / OSV description; unsafe procedural detail is not shown.", "source_label": "NVD, OSV, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: A Double Free vulnerability in open-iscsi allows an unauthenticated MITM attacker to cause DoS. NVD: This issue affects open-iscsi: from ? NVD: through 56718d4e9d1a4f51c30697b5c0534144bb41c9bb.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "OSV", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://bugzilla.suse.com/show_bug.cgi?id=CVE-2026-55995"}, {"source": "Reference", "type": "reference", "url": "https://github.com/open-iscsi/open-isns/commit/56718d4e9d1a4f51c30697b5c0534144bb41c9bb"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-55995"}, {"source": "Official Reference", "type": "reference", "url": "https://osv.dev/vulnerability/CVE-2026-55995"}], "source_published_impact": "Source describes service availability risk. Possible impact: The affected service may become unavailable or unreliable.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: A Double Free vulnerability in open-iscsi allows an unauthenticated MITM attacker to cause DoS. NVD: This issue affects open-iscsi: from ? NVD: through 56718d4e9d1a4f51c30697b5c0534144bb41c9bb.", "sources": ["NVD", "OSV", "Vendor Advisory"], "summary": "CVE-2026-55995 is a defensive prioritization candidate. NVD lists CVSS severity as HIGH. CVSS score is 8.7. EPSS score is 0.0025 with percentile 0.1663. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-55995 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 8.7, "disclosure_freshness": 0.9617, "epss_percentile": 0.16635, "epss_score": 0.00252, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-55995", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T16:43:03.817000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 16.635, "priority_area": 87.1663, "published_at": "2026-07-29T14:16:31.423000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "high", "source_count": 4}, "updated_at": "2026-07-30T16:43:03.817", "urgency_reasons": ["CVSS HIGH", "vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "The affected service may become unavailable or unreliable; CVSS 8.7 (HIGH); EPSS percentile 17; sources: NVD, OSV."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-65889/", "cvss_score": 9.2, "cvss_severity": "CRITICAL", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-65889.json", "defensive_priority": "Priority review candidate", "epss_percentile": 0.24779, "epss_score": 0.00323, "exposure_hint": "exposure unknown", "human_consequence": "This critical severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for critical severity review.", "human_impact_label": "critical severity review", "human_risk_summary": "CVE-2026-65889: This critical severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for critical severity review.", "id": "CVE-2026-65889", "impact_tags": [], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "This critical severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for critical severity review.", "public_human_summary": "NVD: Joomla Extension - balbooa.com - Unauthenticated recursive directory deletion < 2.20.2 - The generateNewApp method allows actors to recursively delete directories.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "This critical severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for critical severity review.; CVSS 9.2 (CRITICAL); EPSS percentile 25; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: Joomla Extension - balbooa.com - Unauthenticated recursive directory deletion < 2.20.2 - The generateNewApp method allows actors to recursively delete directories.", "public_status": "public_safe", "published_at": "2026-07-29T14:16:33.757", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65889-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65889.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65889.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-65889"], "sort_priority": 92.24779, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: Joomla Extension - balbooa.com - Unauthenticated recursive directory deletion < 2.20.2 - The generateNewApp method allows actors to recursively delete directories.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://mysites.guru/blog/gridbox-23-critical-vulnerabilities/"}, {"source": "Reference", "type": "reference", "url": "https://www.balbooa.com/gridbox"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-65889"}], "source_published_impact": "This critical severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for critical severity review.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: Joomla Extension - balbooa.com - Unauthenticated recursive directory deletion < 2.20.2 - The generateNewApp method allows actors to recursively delete directories.", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-65889 is a defensive prioritization candidate. NVD lists CVSS severity as CRITICAL. CVSS score is 9.2. EPSS score is 0.0032 with percentile 0.2478. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-65889 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 9.2, "disclosure_freshness": 0.9617, "epss_percentile": 0.24779, "epss_score": 0.00323, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-65889", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T14:06:56.363000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 24.779, "priority_area": 92.2478, "published_at": "2026-07-29T14:16:33.757000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "critical", "source_count": 2}, "updated_at": "2026-07-30T14:06:56.363", "urgency_reasons": ["CVSS CRITICAL", "vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "This critical severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for critical severity review; CVSS 9.2 (CRITICAL); EPSS percentile 25; sources: NVD."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-65890/", "cvss_score": 9.2, "cvss_severity": "CRITICAL", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-65890.json", "defensive_priority": "Priority review candidate", "epss_percentile": 0.1476, "epss_score": 0.00237, "exposure_hint": "exposure unknown", "human_consequence": "An attacker may be able to read or change database-backed application data.", "human_impact_label": "SQL injection risk", "human_risk_summary": "CVE-2026-65890: An attacker may be able to read or change database-backed application data.", "id": "CVE-2026-65890", "impact_tags": ["SQL injection risk"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes SQL injection risk. Possible impact: An attacker may be able to read or change database-backed application data.", "public_human_summary": "NVD: Joomla Extension - balbooa.com - Unauthenticated SQL injection in Gridbox < 2.20.2 - Multiple SQLi vectors allow unauthenticated actors to inject SQL in queries.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes SQL injection risk. Possible impact: An attacker may be able to read or change database-backed application data.; CVSS 9.2 (CRITICAL); EPSS percentile 15; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: Joomla Extension - balbooa.com - Unauthenticated SQL injection in Gridbox < 2.20.2 - Multiple SQLi vectors allow unauthenticated actors to inject SQL in queries.", "public_status": "public_safe", "published_at": "2026-07-29T14:16:33.883", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65890-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65890.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65890.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-65890"], "sort_priority": 92.1476, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: Joomla Extension - balbooa.com - Unauthenticated SQL injection in Gridbox < 2.20.2 - Multiple SQLi vectors allow unauthenticated actors to inject SQL in queries.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://mysites.guru/blog/gridbox-23-critical-vulnerabilities/"}, {"source": "Reference", "type": "reference", "url": "https://www.balbooa.com/gridbox"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-65890"}], "source_published_impact": "Source describes SQL injection risk. Possible impact: An attacker may be able to read or change database-backed application data.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: Joomla Extension - balbooa.com - Unauthenticated SQL injection in Gridbox < 2.20.2 - Multiple SQLi vectors allow unauthenticated actors to inject SQL in queries.", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-65890 is a defensive prioritization candidate. NVD lists CVSS severity as CRITICAL. CVSS score is 9.2. EPSS score is 0.0024 with percentile 0.1476. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-65890 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 9.2, "disclosure_freshness": 0.9617, "epss_percentile": 0.1476, "epss_score": 0.00237, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-65890", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T14:06:56.363000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 14.76, "priority_area": 92.1476, "published_at": "2026-07-29T14:16:33.883000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "critical", "source_count": 2}, "updated_at": "2026-07-30T14:06:56.363", "urgency_reasons": ["CVSS CRITICAL", "vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "An attacker may be able to read or change database-backed application data; CVSS 9.2 (CRITICAL); EPSS percentile 15; sources: NVD."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-66400/", "cvss_score": 6.3, "cvss_severity": "MEDIUM", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-66400.json", "defensive_priority": "Routine monitoring candidate", "epss_percentile": 0.04881, "epss_score": 0.00152, "exposure_hint": "exposure unknown", "human_consequence": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for defensive exposure review.", "human_impact_label": "defensive exposure review", "human_risk_summary": "CVE-2026-66400: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for defensive exposure review.", "id": "CVE-2026-66400", "impact_tags": [], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for defensive exposure review.", "public_human_summary": "NVD: Grav Login Plugin versions before 3.8.13 contain an insufficient session expiration vulnerability in TokenStorage.php where the findTriplet() method fails to properly validate Remember Me token timestamps. NVD: Attackers with a captured Remember Me cookie can authenticate indefinitely instead of the configured timeout period, as the expiry check compares an array to a scalar value which always evaluates incorrectly in PHP.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for defensive exposure review.; CVSS 6.3 (MEDIUM); EPSS percentile 5; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: Grav Login Plugin versions before 3.8.13 contain an insufficient session expiration vulnerability in TokenStorage.php where the findTriplet() method fails to properly validate Remember Me token timestamps. NVD: Attackers with a captured Remember Me cookie can authenticate indefinitely instead of the configured timeout period, as the expiry check compares an array to a scalar value which always evaluates incorrectly in PHP.", "public_status": "public_safe", "published_at": "2026-07-29T14:16:34.017", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-66400-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-66400.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-66400.md", "scan_allowed": false}, "remediation_urls": ["https://github.com/getgrav/grav/security/advisories/GHSA-mj78-8gwc-vxjj"], "sort_priority": 63.04881, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: Grav Login Plugin versions before 3.8.13 contain an insufficient session expiration vulnerability in TokenStorage.php where the findTriplet() method fails to properly validate Remember Me token timestamps. NVD: Attackers with a captured Remember Me cookie can authenticate indefinitely instead of the configured timeout period, as the expiry check compares an array to a scalar value which always evaluates incorrectly in PHP.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://github.com/getgrav/grav/security/advisories/GHSA-mj78-8gwc-vxjj"}, {"source": "Reference", "type": "reference", "url": "https://www.vulncheck.com/advisories/grav-login-plugin-before-insufficient-session-expiration"}, {"source": "Reference", "type": "reference", "url": "https://github.com/getgrav/grav/security/advisories/GHSA-mj78-8gwc-vxjj"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-66400"}], "source_published_impact": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for defensive exposure review.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: Grav Login Plugin versions before 3.8.13 contain an insufficient session expiration vulnerability in TokenStorage.php where the findTriplet() method fails to properly validate Remember Me token timestamps. NVD: Attackers with a captured Remember Me cookie can authenticate indefinitely instead of the configured timeout period, as the expiry check compares an array to a scalar value which always evaluates incorrectly in PHP.", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-66400 is a defensive prioritization candidate. NVD lists CVSS severity as MEDIUM. CVSS score is 6.3. EPSS score is 0.0015 with percentile 0.0488. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-66400 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 6.3, "disclosure_freshness": 0.9617, "epss_percentile": 0.04881, "epss_score": 0.00152, "evidence_confidence": 0.8333, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-66400", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T16:41:25.650000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 6.0, "priority_area": 63.0488, "published_at": "2026-07-29T14:16:34.017000Z", "remediation_reference_count": 1, "schema_version": "vuln-treemap-node-v1", "severity": "medium", "source_count": 3}, "updated_at": "2026-07-30T16:41:25.650", "urgency_reasons": ["vendor advisory present", "recent update", "remediation reference present"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for defensive exposure review; CVSS 6.3 (MEDIUM); EPSS percentile 5; sources: NVD."}], "manual_public_launch_required": false, "public_launch_allowed": true, "public_safe_export_generated": true, "radar": "vuln", "read_only_static_data": true, "schema_url": "https://vuln.signal-radar.com/data/vuln/schema.json", "schema_version": "v0.1", "search_console_registered": true, "signal_radar_integration_allowed": false, "webmcp_future_contract": {"annotations": {"readOnlyHint": true, "untrustedContentHint": true}, "api": "document.modelContext", "auto_remediation_allowed": false, "cross_origin_exposure_allowed": false, "deploy_allowed": false, "enabled": true, "endpoint": null, "exposed_to": [], "external_execution_allowed": false, "fallback_api": "navigator.modelContext", "fetch_allowed": false, "github_issue_creation_allowed": false, "mode": "browser_imperative_progressive_enhancement", "mutation_allowed": false, "notes": "Browser WebMCP tools are registered only when document.modelContext or navigator.modelContext is available. They read existing public-safe static JSON and perform no network fetch, deploy, scan, patch, or mutation.", "planned": false, "scan_allowed": false, "tool_output_max_items": 10, "tool_output_target_max_chars": 1500, "tools": ["vuln_signal_search", "vuln_signal_get_item", "vuln_signal_list_priority"]}}, "itemsById": {"CVE-2026-0667": {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-0667/", "cvss_score": 9.3, "cvss_severity": "CRITICAL", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-0667.json", "defensive_priority": "Priority review candidate", "epss_percentile": 0.29569, "epss_score": 0.00369, "exposure_hint": "exposure unknown", "human_consequence": "An attacker may be able to run code or commands on affected systems.", "human_impact_label": "code execution review · service availability risk", "human_risk_summary": "CVE-2026-0667: An attacker may be able to run code or commands on affected systems.", "id": "CVE-2026-0667", "impact_tags": ["code execution review", "service availability review"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes code execution review · service availability risk. Possible impact: An attacker may be able to run code or commands on affected systems.", "public_human_summary": "NVD: CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability that could cause arbitrary code execution, denial of service and loss of confidentiality & integrity when communicating over the Modbus TCP protocol.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes code execution review · service availability risk. Possible impact: An attacker may be able to run code or commands on affected systems.; CVSS 9.3 (CRITICAL); EPSS percentile 30; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability that could cause arbitrary code execution, denial of service and loss of confidentiality & integrity when communicating over the Modbus TCP protocol.", "public_status": "public_safe", "published_at": "2026-07-29T13:17:29.180", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-0667-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-0667.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-0667.md", "scan_allowed": false}, "remediation_urls": ["https://download.se.com/files?p_Doc_Ref=SEVD-2026-041-01&p_enDocType=Security+and+Safety+Notice&p_File_Name=SEVD-2026-041-01.pdf"], "sort_priority": 93.29569, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability that could cause arbitrary code execution, denial of service and loss of confidentiality & integrity when communicating over the Modbus TCP protocol.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://download.se.com/files?p_Doc_Ref=SEVD-2026-041-01&p_enDocType=Security+and+Safety+Notice&p_File_Name=SEVD-2026-041-01.pdf"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-0667"}], "source_published_impact": "Source describes code execution review · service availability risk. Possible impact: An attacker may be able to run code or commands on affected systems.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability that could cause arbitrary code execution, denial of service and loss of confidentiality & integrity when communicating over the Modbus TCP protocol.", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-0667 is a defensive prioritization candidate. NVD lists CVSS severity as CRITICAL. CVSS score is 9.3. EPSS score is 0.0037 with percentile 0.2957. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-0667 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 9.3, "disclosure_freshness": 0.9615, "epss_percentile": 0.29569, "epss_score": 0.00369, "evidence_confidence": 0.8333, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-0667", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T16:43:03.817000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 29.569, "priority_area": 93.2957, "published_at": "2026-07-29T13:17:29.180000Z", "remediation_reference_count": 1, "schema_version": "vuln-treemap-node-v1", "severity": "critical", "source_count": 3}, "updated_at": "2026-07-30T16:43:03.817", "urgency_reasons": ["CVSS CRITICAL", "vendor advisory present", "recent update", "remediation reference present"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "An attacker may be able to run code or commands on affected systems; CVSS 9.3 (CRITICAL); EPSS percentile 30; sources: NVD."}, "CVE-2026-12927": {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-12927/", "cvss_score": 8.4, "cvss_severity": "HIGH", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-12927.json", "defensive_priority": "Continuous monitoring candidate", "epss_percentile": 0.1015, "epss_score": 0.00201, "exposure_hint": "exposure unknown", "human_consequence": "An attacker may be able to run code or commands on affected systems.", "human_impact_label": "code execution review", "human_risk_summary": "CVE-2026-12927: An attacker may be able to run code or commands on affected systems.", "id": "CVE-2026-12927", "impact_tags": ["code execution review"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes code execution review. Possible impact: An attacker may be able to run code or commands on affected systems.", "public_human_summary": "NVD: CWE-787 Out-of-bounds write vulnerability exists that could cause loss of data or potentially risk arbitrary code execution when a malicious CGF file is imported to IGSS Definition.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes code execution review. Possible impact: An attacker may be able to run code or commands on affected systems.; CVSS 8.4 (HIGH); EPSS percentile 10; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: CWE-787 Out-of-bounds write vulnerability exists that could cause loss of data or potentially risk arbitrary code execution when a malicious CGF file is imported to IGSS Definition.", "public_status": "public_safe", "published_at": "2026-07-29T13:17:36.300", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-12927-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-12927.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-12927.md", "scan_allowed": false}, "remediation_urls": ["https://download.se.com/files?p_Doc_Ref=SEVD-2026-195-01&p_enDocType=Security+and+Safety+Notice&p_File_Name=SEVD-2026-195-01.pdf"], "sort_priority": 84.1015, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: CWE-787 Out-of-bounds write vulnerability exists that could cause loss of data or potentially risk arbitrary code execution when a malicious CGF file is imported to IGSS Definition.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://download.se.com/files?p_Doc_Ref=SEVD-2026-195-01&p_enDocType=Security+and+Safety+Notice&p_File_Name=SEVD-2026-195-01.pdf"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-12927"}], "source_published_impact": "Source describes code execution review. Possible impact: An attacker may be able to run code or commands on affected systems.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: CWE-787 Out-of-bounds write vulnerability exists that could cause loss of data or potentially risk arbitrary code execution when a malicious CGF file is imported to IGSS Definition.", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-12927 is a defensive prioritization candidate. NVD lists CVSS severity as HIGH. CVSS score is 8.4. EPSS score is 0.0020 with percentile 0.1015. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-12927 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 8.4, "disclosure_freshness": 0.9615, "epss_percentile": 0.1015, "epss_score": 0.00201, "evidence_confidence": 0.8333, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-12927", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T16:43:03.817000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 10.15, "priority_area": 84.1015, "published_at": "2026-07-29T13:17:36.300000Z", "remediation_reference_count": 1, "schema_version": "vuln-treemap-node-v1", "severity": "high", "source_count": 3}, "updated_at": "2026-07-30T16:43:03.817", "urgency_reasons": ["CVSS HIGH", "vendor advisory present", "recent update", "remediation reference present"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "An attacker may be able to run code or commands on affected systems; CVSS 8.4 (HIGH); EPSS percentile 10; sources: NVD."}, "CVE-2026-14270": {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-14270/", "cvss_score": 8.8, "cvss_severity": "HIGH", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-14270.json", "defensive_priority": "Continuous monitoring candidate", "epss_percentile": 0.42799, "epss_score": 0.00548, "exposure_hint": "authenticated boundary", "human_consequence": "An attacker may be able to run code or commands on affected systems.", "human_impact_label": "code execution review · authenticated boundary", "human_risk_summary": "CVE-2026-14270: An attacker may be able to run code or commands on affected systems.", "id": "CVE-2026-14270", "impact_tags": ["code execution review", "authenticated boundary review"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes code execution review · authenticated boundary. Possible impact: An attacker may be able to run code or commands on affected systems.", "public_human_summary": "NVD: The Extra Checkout Options (addon for Extra Product Options & Add-Ons for WooCommerce) plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 2.3.2. NVD: This is due to missing authorization and nonce validation in the eco_save_settings() function, which allows low-privileged authenticated users to modify the tc_eco_custom_file_types upload allowlist setting, combined with insufficient authorization on the... NVD: This makes it possible for authenticated attackers, with Subscriber-level access and above, to allow PHP uploads, upload a PHP file using the frontend upload nonce exposed on cart and checkout pages, and achieve remote code execution.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes code execution review · authenticated boundary. Possible impact: An attacker may be able to run code or commands on affected systems.; CVSS 8.8 (HIGH); EPSS percentile 43; not listed in KEV; Patch confirmed by source text; fixed version context: version; sources: NVD.", "public_safe_summary": "NVD: The Extra Checkout Options (addon for Extra Product Options & Add-Ons for WooCommerce) plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 2.3.2. NVD: This is due to missing authorization and nonce validation in the eco_save_settings() function, which allows low-privileged authenticated users to modify the tc_eco_custom_file_types upload allowlist setting, combined with insufficient authorization on the... NVD: This makes it possible for authenticated attackers, with Subscriber-level access and above, to allow PHP uploads, upload a PHP file using the frontend upload nonce exposed on cart and checkout pages, and achieve remote code execution.", "public_status": "public_safe", "published_at": "2026-07-29T12:16:35.697", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-14270-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-14270.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-14270.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-14270"], "sort_priority": 88.42799, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: The Extra Checkout Options (addon for Extra Product Options & Add-Ons for WooCommerce) plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 2.3.2. NVD: This is due to missing authorization and nonce validation in the eco_save_settings() function, which allows low-privileged authenticated users to modify the tc_eco_custom_file_types upload allowlist setting, combined with insufficient authorization on the... NVD: This makes it possible for authenticated attackers, with Subscriber-level access and above, to allow PHP uploads, upload a PHP file using the frontend upload nonce exposed on cart and checkout pages, and achieve remote code execution.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://codecanyon.net/item/extra-checkout-options-addon-for-extra-product-options/20439659"}, {"source": "Reference", "type": "reference", "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/a929efaf-80a1-45c1-9426-6c5b45a66530?source=cve"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-14270"}], "source_published_impact": "Source describes code execution review · authenticated boundary. Possible impact: An attacker may be able to run code or commands on affected systems.", "source_published_remediation": "Patch confirmed by source text; fixed version context: version.", "source_published_summary": "NVD: The Extra Checkout Options (addon for Extra Product Options & Add-Ons for WooCommerce) plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 2.3.2. NVD: This is due to missing authorization and nonce validation in the eco_save_settings() function, which allows low-privileged authenticated users to modify the tc_eco_custom_file_types upload allowlist setting, combined with insufficient authorization on the... NVD: This makes it possible for authenticated attackers, with Subscriber-level access and above, to allow PHP uploads, upload a PHP file using the frontend upload nonce exposed on cart and checkout pages, and achieve remote code execution.", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-14270 is a defensive prioritization candidate. NVD lists CVSS severity as HIGH. CVSS score is 8.8. EPSS score is 0.0055 with percentile 0.4280. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-14270 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 8.8, "disclosure_freshness": 0.9613, "epss_percentile": 0.42799, "epss_score": 0.00548, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-14270", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T14:01:30.413000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 42.799, "priority_area": 88.428, "published_at": "2026-07-29T12:16:35.697000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "high", "source_count": 2}, "updated_at": "2026-07-30T14:01:30.413", "urgency_reasons": ["CVSS HIGH", "vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "An attacker may be able to run code or commands on affected systems; CVSS 8.8 (HIGH); EPSS percentile 43; sources: NVD."}, "CVE-2026-14354": {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-14354/", "cvss_score": 8.7, "cvss_severity": "HIGH", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-14354.json", "defensive_priority": "Continuous monitoring candidate", "epss_percentile": 0.01912, "epss_score": 0.00117, "exposure_hint": "exposure unknown", "human_consequence": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authentication boundary review.", "human_impact_label": "authentication boundary review", "human_risk_summary": "CVE-2026-14354: This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authentication boundary review.", "id": "CVE-2026-14354", "impact_tags": ["authentication boundary review"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes authentication boundary review. Possible impact: This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authentication boundary review.", "public_human_summary": "NVD: CWE-522 Insufficiently Protected Credentials vulnerability exists that could cause authentication bypass and unauthorized credential modification, potentially leading to compromise of managed devices, when a local privileged attacker leverages weaknesses in...", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes authentication boundary review. Possible impact: This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authentication boundary review.; CVSS 8.7 (HIGH); EPSS percentile 2; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: CWE-522 Insufficiently Protected Credentials vulnerability exists that could cause authentication bypass and unauthorized credential modification, potentially leading to compromise of managed devices, when a local privileged attacker leverages weaknesses in...", "public_status": "public_safe", "published_at": "2026-07-29T13:17:42.723", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-14354-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-14354.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-14354.md", "scan_allowed": false}, "remediation_urls": ["https://download.se.com/files?p_Doc_Ref=SEVD-2026-195-02&p_enDocType=Security+and+Safety+Notice&p_File_Name=SEVD-2026-195-02.pdf"], "sort_priority": 87.01912, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: CWE-522 Insufficiently Protected Credentials vulnerability exists that could cause authentication bypass and unauthorized credential modification, potentially leading to compromise of managed devices, when a local privileged attacker leverages weaknesses in...", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://download.se.com/files?p_Doc_Ref=SEVD-2026-195-02&p_enDocType=Security+and+Safety+Notice&p_File_Name=SEVD-2026-195-02.pdf"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-14354"}], "source_published_impact": "Source describes authentication boundary review. Possible impact: This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authentication boundary review.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: CWE-522 Insufficiently Protected Credentials vulnerability exists that could cause authentication bypass and unauthorized credential modification, potentially leading to compromise of managed devices, when a local privileged attacker leverages weaknesses in...", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-14354 is a defensive prioritization candidate. NVD lists CVSS severity as HIGH. CVSS score is 8.7. EPSS score is 0.0012 with percentile 0.0191. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-14354 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 8.7, "disclosure_freshness": 0.9615, "epss_percentile": 0.01912, "epss_score": 0.00117, "evidence_confidence": 0.8333, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-14354", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T16:43:03.817000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 6.0, "priority_area": 87.0191, "published_at": "2026-07-29T13:17:42.723000Z", "remediation_reference_count": 1, "schema_version": "vuln-treemap-node-v1", "severity": "high", "source_count": 3}, "updated_at": "2026-07-30T16:43:03.817", "urgency_reasons": ["CVSS HIGH", "vendor advisory present", "recent update", "remediation reference present"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authentication boundary review; CVSS 8.7 (HIGH); EPSS percentile 2; sources: NVD."}, "CVE-2026-16751": {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-16751/", "cvss_score": 6.5, "cvss_severity": "MEDIUM", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-16751.json", "defensive_priority": "Routine monitoring candidate", "epss_percentile": 0.21758, "epss_score": 0.00295, "exposure_hint": "authenticated boundary", "human_consequence": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authenticated boundary.", "human_impact_label": "authenticated boundary", "human_risk_summary": "CVE-2026-16751: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authenticated boundary.", "id": "CVE-2026-16751", "impact_tags": ["authenticated boundary review"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes authenticated boundary. Possible impact: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authenticated boundary.", "public_human_summary": "NVD: Authorization Bypass in the emergency recovery approval component in Ente Technologies Ente Museum Server allows an authenticated attacker configured as a victim's emergency contact to bypass the configured recovery waiting period and take over the victim's...", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes authenticated boundary. Possible impact: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authenticated boundary.; CVSS 6.5 (MEDIUM); EPSS percentile 22; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: Authorization Bypass in the emergency recovery approval component in Ente Technologies Ente Museum Server allows an authenticated attacker configured as a victim's emergency contact to bypass the configured recovery waiting period and take over the victim's...", "public_status": "public_safe", "published_at": "2026-07-29T14:16:28.683", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-16751-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-16751.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-16751.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-16751"], "sort_priority": 65.21758, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: Authorization Bypass in the emergency recovery approval component in Ente Technologies Ente Museum Server allows an authenticated attacker configured as a victim's emergency contact to bypass the configured recovery waiting period and take over the victim's...", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://github.com/ente/ente/tree/v2.0.34"}, {"source": "Reference", "type": "reference", "url": "https://vokecyber.com/blog/cve-2026-16751-ente-emergency-recovery-bypass"}, {"source": "Reference", "type": "reference", "url": "https://vokecyber.com/research/cve-2026-16751-ente-emergency-recovery-bypass"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-16751"}], "source_published_impact": "Source describes authenticated boundary. Possible impact: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authenticated boundary.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: Authorization Bypass in the emergency recovery approval component in Ente Technologies Ente Museum Server allows an authenticated attacker configured as a victim's emergency contact to bypass the configured recovery waiting period and take over the victim's...", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-16751 is a defensive prioritization candidate. NVD lists CVSS severity as MEDIUM. CVSS score is 6.5. EPSS score is 0.0029 with percentile 0.2176. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-16751 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 6.5, "disclosure_freshness": 0.9617, "epss_percentile": 0.21758, "epss_score": 0.00295, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-16751", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T19:11:24.687000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 21.758, "priority_area": 65.2176, "published_at": "2026-07-29T14:16:28.683000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "medium", "source_count": 2}, "updated_at": "2026-07-30T19:11:24.687", "urgency_reasons": ["vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authenticated boundary; CVSS 6.5 (MEDIUM); EPSS percentile 22; sources: NVD."}, "CVE-2026-18174": {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-18174/", "cvss_score": 5.3, "cvss_severity": "MEDIUM", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-18174.json", "defensive_priority": "Routine monitoring candidate", "epss_percentile": 0.09205, "epss_score": 0.00193, "exposure_hint": "exposure unknown", "human_consequence": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for defensive exposure review.", "human_impact_label": "defensive exposure review", "human_risk_summary": "CVE-2026-18174: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for defensive exposure review.", "id": "CVE-2026-18174", "impact_tags": [], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for defensive exposure review.", "public_human_summary": "NVD: @fastify/forwarded resolves client addresses from the X-Forwarded-For header. NVD: In versions before 3.0.2, when the header contains two or more comma separated entries, the parser trims only space characters and does not strip horizontal tabs, even though RFC 7230 defines optional whitespace as both space and tab. NVD: As a result, an entry padded with a tab keeps the literal tab in the resolved address string.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for defensive exposure review.; CVSS 5.3 (MEDIUM); EPSS percentile 9; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD, OSV.", "public_safe_summary": "NVD: @fastify/forwarded resolves client addresses from the X-Forwarded-For header. NVD: In versions before 3.0.2, when the header contains two or more comma separated entries, the parser trims only space characters and does not strip horizontal tabs, even though RFC 7230 defines optional whitespace as both space and tab. NVD: As a result, an entry padded with a tab keeps the literal tab in the resolved address string.", "public_status": "public_safe", "published_at": "2026-07-29T14:16:28.790", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-18174-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-18174.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-18174.md", "scan_allowed": false}, "remediation_urls": ["https://cna.openjsf.org/security-advisories.html", "https://github.com/fastify/forwarded/security/advisories/GHSA-2849-m2w7-xm8f"], "sort_priority": 53.09205, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD / OSV description; unsafe procedural detail is not shown.", "source_label": "NVD, OSV, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: @fastify/forwarded resolves client addresses from the X-Forwarded-For header. NVD: In versions before 3.0.2, when the header contains two or more comma separated entries, the parser trims only space characters and does not strip horizontal tabs, even though RFC 7230 defines optional whitespace as both space and tab. NVD: As a result, an entry padded with a tab keeps the literal tab in the resolved address string.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "OSV", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://cna.openjsf.org/security-advisories.html"}, {"source": "Reference", "type": "reference", "url": "https://github.com/fastify/forwarded/security/advisories/GHSA-2849-m2w7-xm8f"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-18174"}, {"source": "Official Reference", "type": "reference", "url": "https://osv.dev/vulnerability/CVE-2026-18174"}], "source_published_impact": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for defensive exposure review.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: @fastify/forwarded resolves client addresses from the X-Forwarded-For header. NVD: In versions before 3.0.2, when the header contains two or more comma separated entries, the parser trims only space characters and does not strip horizontal tabs, even though RFC 7230 defines optional whitespace as both space and tab. NVD: As a result, an entry padded with a tab keeps the literal tab in the resolved address string.", "sources": ["NVD", "OSV", "Vendor Advisory"], "summary": "CVE-2026-18174 is a defensive prioritization candidate. NVD lists CVSS severity as MEDIUM. CVSS score is 5.3. EPSS score is 0.0019 with percentile 0.0921. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-18174 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 5.3, "disclosure_freshness": 0.9617, "epss_percentile": 0.09205, "epss_score": 0.00193, "evidence_confidence": 0.8333, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-18174", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T16:43:03.817000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 9.205, "priority_area": 53.0921, "published_at": "2026-07-29T14:16:28.790000Z", "remediation_reference_count": 2, "schema_version": "vuln-treemap-node-v1", "severity": "medium", "source_count": 6}, "updated_at": "2026-07-30T16:43:03.817", "urgency_reasons": ["vendor advisory present", "recent update", "remediation reference present"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for defensive exposure review; CVSS 5.3 (MEDIUM); EPSS percentile 9; sources: NVD, OSV."}, "CVE-2026-33385": {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-33385/", "cvss_score": 5.1, "cvss_severity": "MEDIUM", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-33385.json", "defensive_priority": "Routine monitoring candidate", "epss_percentile": 0.1523, "epss_score": 0.0024, "exposure_hint": "exposure unknown", "human_consequence": "An attacker may be able to read or change database-backed application data.", "human_impact_label": "SQL injection risk", "human_risk_summary": "CVE-2026-33385: An attacker may be able to read or change database-backed application data.", "id": "CVE-2026-33385", "impact_tags": ["SQL injection risk"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes SQL injection risk. Possible impact: An attacker may be able to read or change database-backed application data.", "public_human_summary": "NVD: A Blind SQL injection vulnerability has been identified in Quick.CMS. NVD: Improper neutralization of input provided by a high-privileged user into multiple fields in administration panel allows for Blind SQL Injection attacks. NVD: The vendor states that this administration panel already allows for significant modification capabilities.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes SQL injection risk. Possible impact: An attacker may be able to read or change database-backed application data.; CVSS 5.1 (MEDIUM); EPSS percentile 15; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: A Blind SQL injection vulnerability has been identified in Quick.CMS. NVD: Improper neutralization of input provided by a high-privileged user into multiple fields in administration panel allows for Blind SQL Injection attacks. NVD: The vendor states that this administration panel already allows for significant modification capabilities.", "public_status": "public_safe", "published_at": "2026-07-29T13:18:08.400", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-33385-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-33385.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-33385.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-33385"], "sort_priority": 51.1523, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: A Blind SQL injection vulnerability has been identified in Quick.CMS. NVD: Improper neutralization of input provided by a high-privileged user into multiple fields in administration panel allows for Blind SQL Injection attacks. NVD: The vendor states that this administration panel already allows for significant modification capabilities.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://cert.pl/posts/2026/07/CVE-2026-33385/"}, {"source": "Reference", "type": "reference", "url": "https://opensolution.org/home.html"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-33385"}], "source_published_impact": "Source describes SQL injection risk. Possible impact: An attacker may be able to read or change database-backed application data.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: A Blind SQL injection vulnerability has been identified in Quick.CMS. NVD: Improper neutralization of input provided by a high-privileged user into multiple fields in administration panel allows for Blind SQL Injection attacks. NVD: The vendor states that this administration panel already allows for significant modification capabilities.", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-33385 is a defensive prioritization candidate. NVD lists CVSS severity as MEDIUM. CVSS score is 5.1. EPSS score is 0.0024 with percentile 0.1523. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-33385 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 5.1, "disclosure_freshness": 0.9615, "epss_percentile": 0.1523, "epss_score": 0.0024, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-33385", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T19:09:20.717000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 15.23, "priority_area": 51.1523, "published_at": "2026-07-29T13:18:08.400000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "medium", "source_count": 2}, "updated_at": "2026-07-30T19:09:20.717", "urgency_reasons": ["vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "An attacker may be able to read or change database-backed application data; CVSS 5.1 (MEDIUM); EPSS percentile 15; sources: NVD."}, "CVE-2026-44943": {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-44943/", "cvss_score": 6.9, "cvss_severity": "MEDIUM", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-44943.json", "defensive_priority": "Routine monitoring candidate", "epss_percentile": 0.25549, "epss_score": 0.0033, "exposure_hint": "exposure unknown", "human_consequence": "An attacker may gain root or administrative-level privileges on affected systems.", "human_impact_label": "admin privilege risk · path traversal review", "human_risk_summary": "CVE-2026-44943: An attacker may gain root or administrative-level privileges on affected systems.", "id": "CVE-2026-44943", "impact_tags": ["admin privilege risk", "path traversal review"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes admin privilege risk · path traversal review. Possible impact: An attacker may gain root or administrative-level privileges on affected systems.", "public_human_summary": "NVD: An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in open-iscsi allows remote MITM attackers to create root-owned files outside the database and inject lines into the record. NVD: This issue affects open-iscsi: from through 668ca1df9c9a1e9bdd5c999ae1d67c9c8909237e. OSV: remote limited file-write as root via discovery in open-iscsi", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes admin privilege risk · path traversal review. Possible impact: An attacker may gain root or administrative-level privileges on affected systems.; CVSS 6.9 (MEDIUM); EPSS percentile 26; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD, OSV.", "public_safe_summary": "NVD: An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in open-iscsi allows remote MITM attackers to create root-owned files outside the database and inject lines into the record. NVD: This issue affects open-iscsi: from through 668ca1df9c9a1e9bdd5c999ae1d67c9c8909237e. OSV: remote limited file-write as root via discovery in open-iscsi", "public_status": "public_safe", "published_at": "2026-07-29T13:18:45.967", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-44943-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-44943.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-44943.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-44943", "https://osv.dev/vulnerability/CVE-2026-44943"], "sort_priority": 69.25549, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD / OSV description; unsafe procedural detail is not shown.", "source_label": "NVD, OSV, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in open-iscsi allows remote MITM attackers to create root-owned files outside the database and inject lines into the record. NVD: This issue affects open-iscsi: from through 668ca1df9c9a1e9bdd5c999ae1d67c9c8909237e. OSV: remote limited file-write as root via discovery in open-iscsi", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "OSV", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://bugzilla.suse.com/show_bug.cgi?id=CVE-2026-44943"}, {"source": "Reference", "type": "reference", "url": "https://github.com/open-iscsi/open-iscsi/commit/668ca1df9c9a1e9bdd5c999ae1d67c9c8909237e"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-44943"}, {"source": "Official Reference", "type": "reference", "url": "https://osv.dev/vulnerability/CVE-2026-44943"}], "source_published_impact": "Source describes admin privilege risk · path traversal review. Possible impact: An attacker may gain root or administrative-level privileges on affected systems.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in open-iscsi allows remote MITM attackers to create root-owned files outside the database and inject lines into the record. NVD: This issue affects open-iscsi: from through 668ca1df9c9a1e9bdd5c999ae1d67c9c8909237e. OSV: remote limited file-write as root via discovery in open-iscsi", "sources": ["NVD", "OSV", "Vendor Advisory"], "summary": "CVE-2026-44943 is a defensive prioritization candidate. NVD lists CVSS severity as MEDIUM. CVSS score is 6.9. EPSS score is 0.0033 with percentile 0.2555. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-44943 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 6.9, "disclosure_freshness": 0.9615, "epss_percentile": 0.25549, "epss_score": 0.0033, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-44943", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T16:43:03.817000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 25.549, "priority_area": 69.2555, "published_at": "2026-07-29T13:18:45.967000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "medium", "source_count": 4}, "updated_at": "2026-07-30T16:43:03.817", "urgency_reasons": ["vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "An attacker may gain root or administrative-level privileges on affected systems; CVSS 6.9 (MEDIUM); EPSS percentile 26; sources: NVD, OSV."}, "CVE-2026-44944": {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-44944/", "cvss_score": 8.5, "cvss_severity": "HIGH", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-44944.json", "defensive_priority": "Continuous monitoring candidate", "epss_percentile": 0.00653, "epss_score": 0.00093, "exposure_hint": "local exposure", "human_consequence": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authentication boundary review · local exposure.", "human_impact_label": "authentication boundary review · local exposure", "human_risk_summary": "CVE-2026-44944: This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authentication boundary review · local exposure.", "id": "CVE-2026-44944", "impact_tags": ["authentication boundary review", "local exposure relevant"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes authentication boundary review · local exposure. Possible impact: This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authentication boundary review · local exposure.", "public_human_summary": "NVD: An Incorrect Authorization vulnerability in open-iscsi allows unprivilidged local users to use the isscsiuio control socket. NVD: This issue affects open-iscsi: from ? NVD: through 668ca1df9c9a1e9bdd5c999ae1d67c9c8909237e.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes authentication boundary review · local exposure. Possible impact: This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authentication boundary review · local exposure.; CVSS 8.5 (HIGH); EPSS percentile 1; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD, OSV.", "public_safe_summary": "NVD: An Incorrect Authorization vulnerability in open-iscsi allows unprivilidged local users to use the isscsiuio control socket. NVD: This issue affects open-iscsi: from ? NVD: through 668ca1df9c9a1e9bdd5c999ae1d67c9c8909237e.", "public_status": "public_safe", "published_at": "2026-07-29T13:18:46.113", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-44944-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-44944.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-44944.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-44944", "https://osv.dev/vulnerability/CVE-2026-44944"], "sort_priority": 85.00653, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD / OSV description; unsafe procedural detail is not shown.", "source_label": "NVD, OSV, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: An Incorrect Authorization vulnerability in open-iscsi allows unprivilidged local users to use the isscsiuio control socket. NVD: This issue affects open-iscsi: from ? NVD: through 668ca1df9c9a1e9bdd5c999ae1d67c9c8909237e.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "OSV", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://bugzilla.suse.com/show_bug.cgi?id=CVE-2026-44944"}, {"source": "Reference", "type": "reference", "url": "https://github.com/open-iscsi/open-iscsi/commit/668ca1df9c9a1e9bdd5c999ae1d67c9c8909237e"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-44944"}, {"source": "Official Reference", "type": "reference", "url": "https://osv.dev/vulnerability/CVE-2026-44944"}], "source_published_impact": "Source describes authentication boundary review · local exposure. Possible impact: This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authentication boundary review · local exposure.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: An Incorrect Authorization vulnerability in open-iscsi allows unprivilidged local users to use the isscsiuio control socket. NVD: This issue affects open-iscsi: from ? NVD: through 668ca1df9c9a1e9bdd5c999ae1d67c9c8909237e.", "sources": ["NVD", "OSV", "Vendor Advisory"], "summary": "CVE-2026-44944 is a defensive prioritization candidate. NVD lists CVSS severity as HIGH. CVSS score is 8.5. EPSS score is 0.0009 with percentile 0.0065. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-44944 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 8.5, "disclosure_freshness": 0.9615, "epss_percentile": 0.00653, "epss_score": 0.00093, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-44944", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T16:43:03.817000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 6.0, "priority_area": 85.0065, "published_at": "2026-07-29T13:18:46.113000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "high", "source_count": 4}, "updated_at": "2026-07-30T16:43:03.817", "urgency_reasons": ["CVSS HIGH", "vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authentication boundary review · local exposure; CVSS 8.5 (HIGH); EPSS percentile 1; sources: NVD, OSV."}, "CVE-2026-50641": {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-50641/", "cvss_score": 7.1, "cvss_severity": "HIGH", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-50641.json", "defensive_priority": "Continuous monitoring candidate", "epss_percentile": 0.05664, "epss_score": 0.0016, "exposure_hint": "exposure unknown", "human_consequence": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.", "human_impact_label": "high severity review", "human_risk_summary": "CVE-2026-50641: This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.", "id": "CVE-2026-50641", "impact_tags": [], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.", "public_human_summary": "NVD: Streamsoft Business Intelligence (BI) stores users' passwords in plaintext form in the database This issue was fixed in version 6.8.0.0, users were also requested to change their password on the first login.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.; CVSS 7.1 (HIGH); EPSS percentile 6; not listed in KEV; Patch confirmed by source text; fixed version context: version; sources: NVD.", "public_safe_summary": "NVD: Streamsoft Business Intelligence (BI) stores users' passwords in plaintext form in the database This issue was fixed in version 6.8.0.0, users were also requested to change their password on the first login.", "public_status": "public_safe", "published_at": "2026-07-29T13:18:53.053", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-50641-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-50641.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-50641.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-50641"], "sort_priority": 71.05664, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: Streamsoft Business Intelligence (BI) stores users' passwords in plaintext form in the database This issue was fixed in version 6.8.0.0, users were also requested to change their password on the first login.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://cert.pl/posts/2026/07/CVE-2026-50641"}, {"source": "Reference", "type": "reference", "url": "https://www.streamsoft.pl/business-intelligence/"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-50641"}], "source_published_impact": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.", "source_published_remediation": "Patch confirmed by source text; fixed version context: version.", "source_published_summary": "NVD: Streamsoft Business Intelligence (BI) stores users' passwords in plaintext form in the database This issue was fixed in version 6.8.0.0, users were also requested to change their password on the first login.", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-50641 is a defensive prioritization candidate. NVD lists CVSS severity as HIGH. CVSS score is 7.1. EPSS score is 0.0016 with percentile 0.0566. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-50641 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 7.1, "disclosure_freshness": 0.9615, "epss_percentile": 0.05664, "epss_score": 0.0016, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-50641", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T19:11:24.687000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 6.0, "priority_area": 71.0566, "published_at": "2026-07-29T13:18:53.053000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "high", "source_count": 2}, "updated_at": "2026-07-30T19:11:24.687", "urgency_reasons": ["CVSS HIGH", "vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review; CVSS 7.1 (HIGH); EPSS percentile 6; sources: NVD."}, "CVE-2026-55995": {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-55995/", "cvss_score": 8.7, "cvss_severity": "HIGH", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-55995.json", "defensive_priority": "Continuous monitoring candidate", "epss_percentile": 0.16635, "epss_score": 0.00252, "exposure_hint": "exposure unknown", "human_consequence": "The affected service may become unavailable or unreliable.", "human_impact_label": "service availability risk", "human_risk_summary": "CVE-2026-55995: The affected service may become unavailable or unreliable.", "id": "CVE-2026-55995", "impact_tags": ["service availability review"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes service availability risk. Possible impact: The affected service may become unavailable or unreliable.", "public_human_summary": "NVD: A Double Free vulnerability in open-iscsi allows an unauthenticated MITM attacker to cause DoS. NVD: This issue affects open-iscsi: from ? NVD: through 56718d4e9d1a4f51c30697b5c0534144bb41c9bb.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes service availability risk. Possible impact: The affected service may become unavailable or unreliable.; CVSS 8.7 (HIGH); EPSS percentile 17; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD, OSV.", "public_safe_summary": "NVD: A Double Free vulnerability in open-iscsi allows an unauthenticated MITM attacker to cause DoS. NVD: This issue affects open-iscsi: from ? NVD: through 56718d4e9d1a4f51c30697b5c0534144bb41c9bb.", "public_status": "public_safe", "published_at": "2026-07-29T14:16:31.423", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-55995-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-55995.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-55995.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-55995", "https://osv.dev/vulnerability/CVE-2026-55995"], "sort_priority": 87.16635, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD / OSV description; unsafe procedural detail is not shown.", "source_label": "NVD, OSV, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: A Double Free vulnerability in open-iscsi allows an unauthenticated MITM attacker to cause DoS. NVD: This issue affects open-iscsi: from ? NVD: through 56718d4e9d1a4f51c30697b5c0534144bb41c9bb.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "OSV", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://bugzilla.suse.com/show_bug.cgi?id=CVE-2026-55995"}, {"source": "Reference", "type": "reference", "url": "https://github.com/open-iscsi/open-isns/commit/56718d4e9d1a4f51c30697b5c0534144bb41c9bb"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-55995"}, {"source": "Official Reference", "type": "reference", "url": "https://osv.dev/vulnerability/CVE-2026-55995"}], "source_published_impact": "Source describes service availability risk. Possible impact: The affected service may become unavailable or unreliable.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: A Double Free vulnerability in open-iscsi allows an unauthenticated MITM attacker to cause DoS. NVD: This issue affects open-iscsi: from ? NVD: through 56718d4e9d1a4f51c30697b5c0534144bb41c9bb.", "sources": ["NVD", "OSV", "Vendor Advisory"], "summary": "CVE-2026-55995 is a defensive prioritization candidate. NVD lists CVSS severity as HIGH. CVSS score is 8.7. EPSS score is 0.0025 with percentile 0.1663. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-55995 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 8.7, "disclosure_freshness": 0.9617, "epss_percentile": 0.16635, "epss_score": 0.00252, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-55995", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T16:43:03.817000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 16.635, "priority_area": 87.1663, "published_at": "2026-07-29T14:16:31.423000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "high", "source_count": 4}, "updated_at": "2026-07-30T16:43:03.817", "urgency_reasons": ["CVSS HIGH", "vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "The affected service may become unavailable or unreliable; CVSS 8.7 (HIGH); EPSS percentile 17; sources: NVD, OSV."}, "CVE-2026-65884": {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-65884/", "cvss_score": 10.0, "cvss_severity": "CRITICAL", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-65884.json", "defensive_priority": "Priority review candidate", "epss_percentile": 0.16281, "epss_score": 0.00249, "exposure_hint": "exposure unknown", "human_consequence": "An attacker may cross a privilege boundary and gain more access than intended.", "human_impact_label": "privilege escalation risk", "human_risk_summary": "CVE-2026-65884: An attacker may cross a privilege boundary and gain more access than intended.", "id": "CVE-2026-65884", "impact_tags": ["privilege boundary review"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes privilege escalation risk. Possible impact: An attacker may cross a privilege boundary and gain more access than intended.", "public_human_summary": "NVD: Joomla Extension - balbooa.com - Privilege Escalation in Gridbox < 2.20.2 - The registration method allows users provided usergroup IDs, allowing unauthenticated actors to register new accounts with administrative permissions.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes privilege escalation risk. Possible impact: An attacker may cross a privilege boundary and gain more access than intended.; CVSS 10.0 (CRITICAL); EPSS percentile 16; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: Joomla Extension - balbooa.com - Privilege Escalation in Gridbox < 2.20.2 - The registration method allows users provided usergroup IDs, allowing unauthenticated actors to register new accounts with administrative permissions.", "public_status": "public_safe", "published_at": "2026-07-29T13:19:10.677", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65884-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65884.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65884.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-65884"], "sort_priority": 100.16281, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: Joomla Extension - balbooa.com - Privilege Escalation in Gridbox < 2.20.2 - The registration method allows users provided usergroup IDs, allowing unauthenticated actors to register new accounts with administrative permissions.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://mysites.guru/blog/gridbox-23-critical-vulnerabilities/"}, {"source": "Reference", "type": "reference", "url": "https://www.balbooa.com/gridbox"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-65884"}], "source_published_impact": "Source describes privilege escalation risk. Possible impact: An attacker may cross a privilege boundary and gain more access than intended.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: Joomla Extension - balbooa.com - Privilege Escalation in Gridbox < 2.20.2 - The registration method allows users provided usergroup IDs, allowing unauthenticated actors to register new accounts with administrative permissions.", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-65884 is a defensive prioritization candidate. NVD lists CVSS severity as CRITICAL. CVSS score is 10.0. EPSS score is 0.0025 with percentile 0.1628. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-65884 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 10.0, "disclosure_freshness": 0.9615, "epss_percentile": 0.16281, "epss_score": 0.00249, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-65884", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T14:06:56.363000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 16.281, "priority_area": 100.1628, "published_at": "2026-07-29T13:19:10.677000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "critical", "source_count": 2}, "updated_at": "2026-07-30T14:06:56.363", "urgency_reasons": ["CVSS CRITICAL", "vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "An attacker may cross a privilege boundary and gain more access than intended; CVSS 10.0 (CRITICAL); EPSS percentile 16; sources: NVD."}, "CVE-2026-65885": {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-65885/", "cvss_score": 9.4, "cvss_severity": "CRITICAL", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-65885.json", "defensive_priority": "Priority review candidate", "epss_percentile": 0.1657, "epss_score": 0.00251, "exposure_hint": "authenticated boundary", "human_consequence": "An attacker may be able to run code or commands on affected systems.", "human_impact_label": "code execution review · authenticated boundary", "human_risk_summary": "CVE-2026-65885: An attacker may be able to run code or commands on affected systems.", "id": "CVE-2026-65885", "impact_tags": ["code execution review", "authenticated boundary review"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes code execution review · authenticated boundary. Possible impact: An attacker may be able to run code or commands on affected systems.", "public_human_summary": "NVD: Joomla Extension - balbooa.com - Authenticated arbitrary file upload in Gridbox < 2.20.2 - File upload methods allows authenticated attackers to upload arbitrary files. NVD: Turns into an authenticated RCE if combined with CVE-2026-65884 as the required account can be created by the attacker.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes code execution review · authenticated boundary. Possible impact: An attacker may be able to run code or commands on affected systems.; CVSS 9.4 (CRITICAL); EPSS percentile 17; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: Joomla Extension - balbooa.com - Authenticated arbitrary file upload in Gridbox < 2.20.2 - File upload methods allows authenticated attackers to upload arbitrary files. NVD: Turns into an authenticated RCE if combined with CVE-2026-65884 as the required account can be created by the attacker.", "public_status": "public_safe", "published_at": "2026-07-29T13:19:10.820", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65885-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65885.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65885.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-65885"], "sort_priority": 94.1657, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: Joomla Extension - balbooa.com - Authenticated arbitrary file upload in Gridbox < 2.20.2 - File upload methods allows authenticated attackers to upload arbitrary files. NVD: Turns into an authenticated RCE if combined with CVE-2026-65884 as the required account can be created by the attacker.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://mysites.guru/blog/gridbox-23-critical-vulnerabilities/"}, {"source": "Reference", "type": "reference", "url": "https://www.balbooa.com/gridbox"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-65885"}], "source_published_impact": "Source describes code execution review · authenticated boundary. Possible impact: An attacker may be able to run code or commands on affected systems.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: Joomla Extension - balbooa.com - Authenticated arbitrary file upload in Gridbox < 2.20.2 - File upload methods allows authenticated attackers to upload arbitrary files. NVD: Turns into an authenticated RCE if combined with CVE-2026-65884 as the required account can be created by the attacker.", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-65885 is a defensive prioritization candidate. NVD lists CVSS severity as CRITICAL. CVSS score is 9.4. EPSS score is 0.0025 with percentile 0.1657. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-65885 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 9.4, "disclosure_freshness": 0.9615, "epss_percentile": 0.1657, "epss_score": 0.00251, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-65885", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T14:06:56.363000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 16.57, "priority_area": 94.1657, "published_at": "2026-07-29T13:19:10.820000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "critical", "source_count": 2}, "updated_at": "2026-07-30T14:06:56.363", "urgency_reasons": ["CVSS CRITICAL", "vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "An attacker may be able to run code or commands on affected systems; CVSS 9.4 (CRITICAL); EPSS percentile 17; sources: NVD."}, "CVE-2026-65889": {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-65889/", "cvss_score": 9.2, "cvss_severity": "CRITICAL", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-65889.json", "defensive_priority": "Priority review candidate", "epss_percentile": 0.24779, "epss_score": 0.00323, "exposure_hint": "exposure unknown", "human_consequence": "This critical severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for critical severity review.", "human_impact_label": "critical severity review", "human_risk_summary": "CVE-2026-65889: This critical severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for critical severity review.", "id": "CVE-2026-65889", "impact_tags": [], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "This critical severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for critical severity review.", "public_human_summary": "NVD: Joomla Extension - balbooa.com - Unauthenticated recursive directory deletion < 2.20.2 - The generateNewApp method allows actors to recursively delete directories.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "This critical severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for critical severity review.; CVSS 9.2 (CRITICAL); EPSS percentile 25; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: Joomla Extension - balbooa.com - Unauthenticated recursive directory deletion < 2.20.2 - The generateNewApp method allows actors to recursively delete directories.", "public_status": "public_safe", "published_at": "2026-07-29T14:16:33.757", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65889-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65889.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65889.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-65889"], "sort_priority": 92.24779, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: Joomla Extension - balbooa.com - Unauthenticated recursive directory deletion < 2.20.2 - The generateNewApp method allows actors to recursively delete directories.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://mysites.guru/blog/gridbox-23-critical-vulnerabilities/"}, {"source": "Reference", "type": "reference", "url": "https://www.balbooa.com/gridbox"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-65889"}], "source_published_impact": "This critical severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for critical severity review.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: Joomla Extension - balbooa.com - Unauthenticated recursive directory deletion < 2.20.2 - The generateNewApp method allows actors to recursively delete directories.", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-65889 is a defensive prioritization candidate. NVD lists CVSS severity as CRITICAL. CVSS score is 9.2. EPSS score is 0.0032 with percentile 0.2478. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-65889 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 9.2, "disclosure_freshness": 0.9617, "epss_percentile": 0.24779, "epss_score": 0.00323, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-65889", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T14:06:56.363000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 24.779, "priority_area": 92.2478, "published_at": "2026-07-29T14:16:33.757000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "critical", "source_count": 2}, "updated_at": "2026-07-30T14:06:56.363", "urgency_reasons": ["CVSS CRITICAL", "vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "This critical severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for critical severity review; CVSS 9.2 (CRITICAL); EPSS percentile 25; sources: NVD."}, "CVE-2026-65890": {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-65890/", "cvss_score": 9.2, "cvss_severity": "CRITICAL", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-65890.json", "defensive_priority": "Priority review candidate", "epss_percentile": 0.1476, "epss_score": 0.00237, "exposure_hint": "exposure unknown", "human_consequence": "An attacker may be able to read or change database-backed application data.", "human_impact_label": "SQL injection risk", "human_risk_summary": "CVE-2026-65890: An attacker may be able to read or change database-backed application data.", "id": "CVE-2026-65890", "impact_tags": ["SQL injection risk"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes SQL injection risk. Possible impact: An attacker may be able to read or change database-backed application data.", "public_human_summary": "NVD: Joomla Extension - balbooa.com - Unauthenticated SQL injection in Gridbox < 2.20.2 - Multiple SQLi vectors allow unauthenticated actors to inject SQL in queries.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes SQL injection risk. Possible impact: An attacker may be able to read or change database-backed application data.; CVSS 9.2 (CRITICAL); EPSS percentile 15; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: Joomla Extension - balbooa.com - Unauthenticated SQL injection in Gridbox < 2.20.2 - Multiple SQLi vectors allow unauthenticated actors to inject SQL in queries.", "public_status": "public_safe", "published_at": "2026-07-29T14:16:33.883", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65890-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65890.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65890.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-65890"], "sort_priority": 92.1476, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: Joomla Extension - balbooa.com - Unauthenticated SQL injection in Gridbox < 2.20.2 - Multiple SQLi vectors allow unauthenticated actors to inject SQL in queries.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://mysites.guru/blog/gridbox-23-critical-vulnerabilities/"}, {"source": "Reference", "type": "reference", "url": "https://www.balbooa.com/gridbox"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-65890"}], "source_published_impact": "Source describes SQL injection risk. Possible impact: An attacker may be able to read or change database-backed application data.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: Joomla Extension - balbooa.com - Unauthenticated SQL injection in Gridbox < 2.20.2 - Multiple SQLi vectors allow unauthenticated actors to inject SQL in queries.", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-65890 is a defensive prioritization candidate. NVD lists CVSS severity as CRITICAL. CVSS score is 9.2. EPSS score is 0.0024 with percentile 0.1476. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-65890 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 9.2, "disclosure_freshness": 0.9617, "epss_percentile": 0.1476, "epss_score": 0.00237, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-65890", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T14:06:56.363000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 14.76, "priority_area": 92.1476, "published_at": "2026-07-29T14:16:33.883000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "critical", "source_count": 2}, "updated_at": "2026-07-30T14:06:56.363", "urgency_reasons": ["CVSS CRITICAL", "vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "An attacker may be able to read or change database-backed application data; CVSS 9.2 (CRITICAL); EPSS percentile 15; sources: NVD."}, "CVE-2026-65891": {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-65891/", "cvss_score": 6.5, "cvss_severity": "MEDIUM", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-65891.json", "defensive_priority": "Routine monitoring candidate", "epss_percentile": 0.09481, "epss_score": 0.00195, "exposure_hint": "authenticated boundary", "human_consequence": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authenticated boundary.", "human_impact_label": "authenticated boundary", "human_risk_summary": "CVE-2026-65891: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authenticated boundary.", "id": "CVE-2026-65891", "impact_tags": ["authenticated boundary review"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes authenticated boundary. Possible impact: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authenticated boundary.", "public_human_summary": "NVD: Joomla Extension - joomlacontenteditor.net - Creation of hidden files and unintended file overwrite via rename function in Joomla Content Editor (JCE) < 2.20.2 - Improper input validation in the file rename functionality allowed an authenticated user with... NVD: The issue also allowed existing files at the destination path to be unintentionally replaced.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes authenticated boundary. Possible impact: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authenticated boundary.; CVSS 6.5 (MEDIUM); EPSS percentile 9; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: Joomla Extension - joomlacontenteditor.net - Creation of hidden files and unintended file overwrite via rename function in Joomla Content Editor (JCE) < 2.20.2 - Improper input validation in the file rename functionality allowed an authenticated user with... NVD: The issue also allowed existing files at the destination path to be unintentionally replaced.", "public_status": "public_safe", "published_at": "2026-07-29T13:19:10.980", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65891-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65891.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65891.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-65891"], "sort_priority": 65.09481, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: Joomla Extension - joomlacontenteditor.net - Creation of hidden files and unintended file overwrite via rename function in Joomla Content Editor (JCE) < 2.20.2 - Improper input validation in the file rename functionality allowed an authenticated user with... NVD: The issue also allowed existing files at the destination path to be unintentionally replaced.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://www.joomlacontenteditor.net/"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-65891"}], "source_published_impact": "Source describes authenticated boundary. Possible impact: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authenticated boundary.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: Joomla Extension - joomlacontenteditor.net - Creation of hidden files and unintended file overwrite via rename function in Joomla Content Editor (JCE) < 2.20.2 - Improper input validation in the file rename functionality allowed an authenticated user with... NVD: The issue also allowed existing files at the destination path to be unintentionally replaced.", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-65891 is a defensive prioritization candidate. NVD lists CVSS severity as MEDIUM. CVSS score is 6.5. EPSS score is 0.0019 with percentile 0.0948. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-65891 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 6.5, "disclosure_freshness": 0.9615, "epss_percentile": 0.09481, "epss_score": 0.00195, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-65891", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T14:17:03.483000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 9.481, "priority_area": 65.0948, "published_at": "2026-07-29T13:19:10.980000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "medium", "source_count": 2}, "updated_at": "2026-07-30T14:17:03.483", "urgency_reasons": ["vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authenticated boundary; CVSS 6.5 (MEDIUM); EPSS percentile 9; sources: NVD."}, "CVE-2026-65943": {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-65943/", "cvss_score": 7.5, "cvss_severity": "HIGH", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-65943.json", "defensive_priority": "Continuous monitoring candidate", "epss_percentile": 0.14165, "epss_score": 0.00232, "exposure_hint": "exposure unknown", "human_consequence": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.", "human_impact_label": "high severity review", "human_risk_summary": "CVE-2026-65943: This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.", "id": "CVE-2026-65943", "impact_tags": [], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.", "public_human_summary": "NVD: Joomla Extension - rolandd.com - Unauthenticated directory creation RO CSVI < 9.11.0", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.; CVSS 7.5 (HIGH); EPSS percentile 14; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: Joomla Extension - rolandd.com - Unauthenticated directory creation RO CSVI < 9.11.0", "public_status": "public_safe", "published_at": "2026-07-29T13:19:11.087", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65943-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65943.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65943.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-65943"], "sort_priority": 75.14165, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: Joomla Extension - rolandd.com - Unauthenticated directory creation RO CSVI < 9.11.0", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://rolandd.com/products/ro-csvi"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-65943"}], "source_published_impact": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: Joomla Extension - rolandd.com - Unauthenticated directory creation RO CSVI < 9.11.0", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-65943 is a defensive prioritization candidate. NVD lists CVSS severity as HIGH. CVSS score is 7.5. EPSS score is 0.0023 with percentile 0.1416. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-65943 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 7.5, "disclosure_freshness": 0.9615, "epss_percentile": 0.14165, "epss_score": 0.00232, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-65943", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T14:06:56.363000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 14.165, "priority_area": 75.1416, "published_at": "2026-07-29T13:19:11.087000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "high", "source_count": 2}, "updated_at": "2026-07-30T14:06:56.363", "urgency_reasons": ["CVSS HIGH", "vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review; CVSS 7.5 (HIGH); EPSS percentile 14; sources: NVD."}, "CVE-2026-65944": {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-65944/", "cvss_score": 8.8, "cvss_severity": "HIGH", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-65944.json", "defensive_priority": "Continuous monitoring candidate", "epss_percentile": 0.03057, "epss_score": 0.0013, "exposure_hint": "exposure unknown", "human_consequence": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.", "human_impact_label": "high severity review", "human_risk_summary": "CVE-2026-65944: This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.", "id": "CVE-2026-65944", "impact_tags": [], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.", "public_human_summary": "NVD: Joomla Extension - rolandd.com - CSRF vectors in AJAX endpoint handlers RO CSVI < 9.11.0", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.; CVSS 8.8 (HIGH); EPSS percentile 3; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: Joomla Extension - rolandd.com - CSRF vectors in AJAX endpoint handlers RO CSVI < 9.11.0", "public_status": "public_safe", "published_at": "2026-07-29T13:19:11.190", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65944-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65944.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65944.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-65944"], "sort_priority": 88.03057, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: Joomla Extension - rolandd.com - CSRF vectors in AJAX endpoint handlers RO CSVI < 9.11.0", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://rolandd.com/products/ro-csvi"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-65944"}], "source_published_impact": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: Joomla Extension - rolandd.com - CSRF vectors in AJAX endpoint handlers RO CSVI < 9.11.0", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-65944 is a defensive prioritization candidate. NVD lists CVSS severity as HIGH. CVSS score is 8.8. EPSS score is 0.0013 with percentile 0.0306. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-65944 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 8.8, "disclosure_freshness": 0.9615, "epss_percentile": 0.03057, "epss_score": 0.0013, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-65944", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T14:17:03.647000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 6.0, "priority_area": 88.0306, "published_at": "2026-07-29T13:19:11.190000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "high", "source_count": 2}, "updated_at": "2026-07-30T14:17:03.647", "urgency_reasons": ["CVSS HIGH", "vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review; CVSS 8.8 (HIGH); EPSS percentile 3; sources: NVD."}, "CVE-2026-65946": {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-65946/", "cvss_score": 6.1, "cvss_severity": "MEDIUM", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-65946.json", "defensive_priority": "Routine monitoring candidate", "epss_percentile": 0.04577, "epss_score": 0.00149, "exposure_hint": "exposure unknown", "human_consequence": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for XSS risk.", "human_impact_label": "XSS risk", "human_risk_summary": "CVE-2026-65946: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for XSS risk.", "id": "CVE-2026-65946", "impact_tags": ["XSS risk"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes XSS risk. Possible impact: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for XSS risk.", "public_human_summary": "NVD: Joomla Extension - rolandd.com - XSS vectors in AJAX endpoint handlers RO CSVI < 9.11.0", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes XSS risk. Possible impact: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for XSS risk.; CVSS 6.1 (MEDIUM); EPSS percentile 5; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: Joomla Extension - rolandd.com - XSS vectors in AJAX endpoint handlers RO CSVI < 9.11.0", "public_status": "public_safe", "published_at": "2026-07-29T13:19:11.293", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65946-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65946.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65946.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-65946"], "sort_priority": 61.04577, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: Joomla Extension - rolandd.com - XSS vectors in AJAX endpoint handlers RO CSVI < 9.11.0", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://rolandd.com/products/ro-csvi"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-65946"}], "source_published_impact": "Source describes XSS risk. Possible impact: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for XSS risk.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: Joomla Extension - rolandd.com - XSS vectors in AJAX endpoint handlers RO CSVI < 9.11.0", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-65946 is a defensive prioritization candidate. NVD lists CVSS severity as MEDIUM. CVSS score is 6.1. EPSS score is 0.0015 with percentile 0.0458. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-65946 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 6.1, "disclosure_freshness": 0.9615, "epss_percentile": 0.04577, "epss_score": 0.00149, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-65946", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T14:06:56.363000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 6.0, "priority_area": 61.0458, "published_at": "2026-07-29T13:19:11.293000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "medium", "source_count": 2}, "updated_at": "2026-07-30T14:06:56.363", "urgency_reasons": ["vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for XSS risk; CVSS 6.1 (MEDIUM); EPSS percentile 5; sources: NVD."}, "CVE-2026-66400": {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-66400/", "cvss_score": 6.3, "cvss_severity": "MEDIUM", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-66400.json", "defensive_priority": "Routine monitoring candidate", "epss_percentile": 0.04881, "epss_score": 0.00152, "exposure_hint": "exposure unknown", "human_consequence": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for defensive exposure review.", "human_impact_label": "defensive exposure review", "human_risk_summary": "CVE-2026-66400: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for defensive exposure review.", "id": "CVE-2026-66400", "impact_tags": [], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for defensive exposure review.", "public_human_summary": "NVD: Grav Login Plugin versions before 3.8.13 contain an insufficient session expiration vulnerability in TokenStorage.php where the findTriplet() method fails to properly validate Remember Me token timestamps. NVD: Attackers with a captured Remember Me cookie can authenticate indefinitely instead of the configured timeout period, as the expiry check compares an array to a scalar value which always evaluates incorrectly in PHP.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for defensive exposure review.; CVSS 6.3 (MEDIUM); EPSS percentile 5; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: Grav Login Plugin versions before 3.8.13 contain an insufficient session expiration vulnerability in TokenStorage.php where the findTriplet() method fails to properly validate Remember Me token timestamps. NVD: Attackers with a captured Remember Me cookie can authenticate indefinitely instead of the configured timeout period, as the expiry check compares an array to a scalar value which always evaluates incorrectly in PHP.", "public_status": "public_safe", "published_at": "2026-07-29T14:16:34.017", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-66400-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-66400.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-66400.md", "scan_allowed": false}, "remediation_urls": ["https://github.com/getgrav/grav/security/advisories/GHSA-mj78-8gwc-vxjj"], "sort_priority": 63.04881, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: Grav Login Plugin versions before 3.8.13 contain an insufficient session expiration vulnerability in TokenStorage.php where the findTriplet() method fails to properly validate Remember Me token timestamps. NVD: Attackers with a captured Remember Me cookie can authenticate indefinitely instead of the configured timeout period, as the expiry check compares an array to a scalar value which always evaluates incorrectly in PHP.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://github.com/getgrav/grav/security/advisories/GHSA-mj78-8gwc-vxjj"}, {"source": "Reference", "type": "reference", "url": "https://www.vulncheck.com/advisories/grav-login-plugin-before-insufficient-session-expiration"}, {"source": "Reference", "type": "reference", "url": "https://github.com/getgrav/grav/security/advisories/GHSA-mj78-8gwc-vxjj"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-66400"}], "source_published_impact": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for defensive exposure review.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: Grav Login Plugin versions before 3.8.13 contain an insufficient session expiration vulnerability in TokenStorage.php where the findTriplet() method fails to properly validate Remember Me token timestamps. NVD: Attackers with a captured Remember Me cookie can authenticate indefinitely instead of the configured timeout period, as the expiry check compares an array to a scalar value which always evaluates incorrectly in PHP.", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-66400 is a defensive prioritization candidate. NVD lists CVSS severity as MEDIUM. CVSS score is 6.3. EPSS score is 0.0015 with percentile 0.0488. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-66400 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 6.3, "disclosure_freshness": 0.9617, "epss_percentile": 0.04881, "epss_score": 0.00152, "evidence_confidence": 0.8333, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-66400", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T16:41:25.650000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 6.0, "priority_area": 63.0488, "published_at": "2026-07-29T14:16:34.017000Z", "remediation_reference_count": 1, "schema_version": "vuln-treemap-node-v1", "severity": "medium", "source_count": 3}, "updated_at": "2026-07-30T16:41:25.650", "urgency_reasons": ["vendor advisory present", "recent update", "remediation reference present"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for defensive exposure review; CVSS 6.3 (MEDIUM); EPSS percentile 5; sources: NVD."}}, "readModel": {"ageDistribution": {"0-24h": 0, "2-7d": 20, "8-30d": 0, ">30d": 0, "unknown": 0}, "enrichmentCoverage": {"affected_products": 0, "canonical_vendor_product": 0, "coverage_label": "partial", "cpe": 0, "purl": 0, "sources": {"CISA KEV": 0, "NVD": 20, "OSV": 4, "Vendor Advisory": 20}}, "feedItems": [{"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-65884/", "cvss_score": 10.0, "cvss_severity": "CRITICAL", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-65884.json", "defensive_priority": "Priority review candidate", "epss_percentile": 0.16281, "epss_score": 0.00249, "exposure_hint": "exposure unknown", "human_consequence": "An attacker may cross a privilege boundary and gain more access than intended.", "human_impact_label": "privilege escalation risk", "human_risk_summary": "CVE-2026-65884: An attacker may cross a privilege boundary and gain more access than intended.", "id": "CVE-2026-65884", "impact_tags": ["privilege boundary review"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes privilege escalation risk. Possible impact: An attacker may cross a privilege boundary and gain more access than intended.", "public_human_summary": "NVD: Joomla Extension - balbooa.com - Privilege Escalation in Gridbox < 2.20.2 - The registration method allows users provided usergroup IDs, allowing unauthenticated actors to register new accounts with administrative permissions.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes privilege escalation risk. Possible impact: An attacker may cross a privilege boundary and gain more access than intended.; CVSS 10.0 (CRITICAL); EPSS percentile 16; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: Joomla Extension - balbooa.com - Privilege Escalation in Gridbox < 2.20.2 - The registration method allows users provided usergroup IDs, allowing unauthenticated actors to register new accounts with administrative permissions.", "public_status": "public_safe", "published_at": "2026-07-29T13:19:10.677", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65884-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65884.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65884.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-65884"], "sort_priority": 100.16281, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: Joomla Extension - balbooa.com - Privilege Escalation in Gridbox < 2.20.2 - The registration method allows users provided usergroup IDs, allowing unauthenticated actors to register new accounts with administrative permissions.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://mysites.guru/blog/gridbox-23-critical-vulnerabilities/"}, {"source": "Reference", "type": "reference", "url": "https://www.balbooa.com/gridbox"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-65884"}], "source_published_impact": "Source describes privilege escalation risk. Possible impact: An attacker may cross a privilege boundary and gain more access than intended.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: Joomla Extension - balbooa.com - Privilege Escalation in Gridbox < 2.20.2 - The registration method allows users provided usergroup IDs, allowing unauthenticated actors to register new accounts with administrative permissions.", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-65884 is a defensive prioritization candidate. NVD lists CVSS severity as CRITICAL. CVSS score is 10.0. EPSS score is 0.0025 with percentile 0.1628. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-65884 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 10.0, "disclosure_freshness": 0.9615, "epss_percentile": 0.16281, "epss_score": 0.00249, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-65884", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T14:06:56.363000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 16.281, "priority_area": 100.1628, "published_at": "2026-07-29T13:19:10.677000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "critical", "source_count": 2}, "updated_at": "2026-07-30T14:06:56.363", "urgency_reasons": ["CVSS CRITICAL", "vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "An attacker may cross a privilege boundary and gain more access than intended; CVSS 10.0 (CRITICAL); EPSS percentile 16; sources: NVD."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-65885/", "cvss_score": 9.4, "cvss_severity": "CRITICAL", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-65885.json", "defensive_priority": "Priority review candidate", "epss_percentile": 0.1657, "epss_score": 0.00251, "exposure_hint": "authenticated boundary", "human_consequence": "An attacker may be able to run code or commands on affected systems.", "human_impact_label": "code execution review · authenticated boundary", "human_risk_summary": "CVE-2026-65885: An attacker may be able to run code or commands on affected systems.", "id": "CVE-2026-65885", "impact_tags": ["code execution review", "authenticated boundary review"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes code execution review · authenticated boundary. Possible impact: An attacker may be able to run code or commands on affected systems.", "public_human_summary": "NVD: Joomla Extension - balbooa.com - Authenticated arbitrary file upload in Gridbox < 2.20.2 - File upload methods allows authenticated attackers to upload arbitrary files. NVD: Turns into an authenticated RCE if combined with CVE-2026-65884 as the required account can be created by the attacker.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes code execution review · authenticated boundary. Possible impact: An attacker may be able to run code or commands on affected systems.; CVSS 9.4 (CRITICAL); EPSS percentile 17; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: Joomla Extension - balbooa.com - Authenticated arbitrary file upload in Gridbox < 2.20.2 - File upload methods allows authenticated attackers to upload arbitrary files. NVD: Turns into an authenticated RCE if combined with CVE-2026-65884 as the required account can be created by the attacker.", "public_status": "public_safe", "published_at": "2026-07-29T13:19:10.820", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65885-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65885.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65885.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-65885"], "sort_priority": 94.1657, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: Joomla Extension - balbooa.com - Authenticated arbitrary file upload in Gridbox < 2.20.2 - File upload methods allows authenticated attackers to upload arbitrary files. NVD: Turns into an authenticated RCE if combined with CVE-2026-65884 as the required account can be created by the attacker.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://mysites.guru/blog/gridbox-23-critical-vulnerabilities/"}, {"source": "Reference", "type": "reference", "url": "https://www.balbooa.com/gridbox"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-65885"}], "source_published_impact": "Source describes code execution review · authenticated boundary. Possible impact: An attacker may be able to run code or commands on affected systems.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: Joomla Extension - balbooa.com - Authenticated arbitrary file upload in Gridbox < 2.20.2 - File upload methods allows authenticated attackers to upload arbitrary files. NVD: Turns into an authenticated RCE if combined with CVE-2026-65884 as the required account can be created by the attacker.", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-65885 is a defensive prioritization candidate. NVD lists CVSS severity as CRITICAL. CVSS score is 9.4. EPSS score is 0.0025 with percentile 0.1657. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-65885 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 9.4, "disclosure_freshness": 0.9615, "epss_percentile": 0.1657, "epss_score": 0.00251, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-65885", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T14:06:56.363000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 16.57, "priority_area": 94.1657, "published_at": "2026-07-29T13:19:10.820000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "critical", "source_count": 2}, "updated_at": "2026-07-30T14:06:56.363", "urgency_reasons": ["CVSS CRITICAL", "vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "An attacker may be able to run code or commands on affected systems; CVSS 9.4 (CRITICAL); EPSS percentile 17; sources: NVD."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-0667/", "cvss_score": 9.3, "cvss_severity": "CRITICAL", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-0667.json", "defensive_priority": "Priority review candidate", "epss_percentile": 0.29569, "epss_score": 0.00369, "exposure_hint": "exposure unknown", "human_consequence": "An attacker may be able to run code or commands on affected systems.", "human_impact_label": "code execution review · service availability risk", "human_risk_summary": "CVE-2026-0667: An attacker may be able to run code or commands on affected systems.", "id": "CVE-2026-0667", "impact_tags": ["code execution review", "service availability review"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes code execution review · service availability risk. Possible impact: An attacker may be able to run code or commands on affected systems.", "public_human_summary": "NVD: CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability that could cause arbitrary code execution, denial of service and loss of confidentiality & integrity when communicating over the Modbus TCP protocol.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes code execution review · service availability risk. Possible impact: An attacker may be able to run code or commands on affected systems.; CVSS 9.3 (CRITICAL); EPSS percentile 30; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability that could cause arbitrary code execution, denial of service and loss of confidentiality & integrity when communicating over the Modbus TCP protocol.", "public_status": "public_safe", "published_at": "2026-07-29T13:17:29.180", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-0667-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-0667.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-0667.md", "scan_allowed": false}, "remediation_urls": ["https://download.se.com/files?p_Doc_Ref=SEVD-2026-041-01&p_enDocType=Security+and+Safety+Notice&p_File_Name=SEVD-2026-041-01.pdf"], "sort_priority": 93.29569, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability that could cause arbitrary code execution, denial of service and loss of confidentiality & integrity when communicating over the Modbus TCP protocol.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://download.se.com/files?p_Doc_Ref=SEVD-2026-041-01&p_enDocType=Security+and+Safety+Notice&p_File_Name=SEVD-2026-041-01.pdf"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-0667"}], "source_published_impact": "Source describes code execution review · service availability risk. Possible impact: An attacker may be able to run code or commands on affected systems.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability that could cause arbitrary code execution, denial of service and loss of confidentiality & integrity when communicating over the Modbus TCP protocol.", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-0667 is a defensive prioritization candidate. NVD lists CVSS severity as CRITICAL. CVSS score is 9.3. EPSS score is 0.0037 with percentile 0.2957. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-0667 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 9.3, "disclosure_freshness": 0.9615, "epss_percentile": 0.29569, "epss_score": 0.00369, "evidence_confidence": 0.8333, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-0667", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T16:43:03.817000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 29.569, "priority_area": 93.2957, "published_at": "2026-07-29T13:17:29.180000Z", "remediation_reference_count": 1, "schema_version": "vuln-treemap-node-v1", "severity": "critical", "source_count": 3}, "updated_at": "2026-07-30T16:43:03.817", "urgency_reasons": ["CVSS CRITICAL", "vendor advisory present", "recent update", "remediation reference present"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "An attacker may be able to run code or commands on affected systems; CVSS 9.3 (CRITICAL); EPSS percentile 30; sources: NVD."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-65889/", "cvss_score": 9.2, "cvss_severity": "CRITICAL", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-65889.json", "defensive_priority": "Priority review candidate", "epss_percentile": 0.24779, "epss_score": 0.00323, "exposure_hint": "exposure unknown", "human_consequence": "This critical severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for critical severity review.", "human_impact_label": "critical severity review", "human_risk_summary": "CVE-2026-65889: This critical severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for critical severity review.", "id": "CVE-2026-65889", "impact_tags": [], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "This critical severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for critical severity review.", "public_human_summary": "NVD: Joomla Extension - balbooa.com - Unauthenticated recursive directory deletion < 2.20.2 - The generateNewApp method allows actors to recursively delete directories.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "This critical severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for critical severity review.; CVSS 9.2 (CRITICAL); EPSS percentile 25; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: Joomla Extension - balbooa.com - Unauthenticated recursive directory deletion < 2.20.2 - The generateNewApp method allows actors to recursively delete directories.", "public_status": "public_safe", "published_at": "2026-07-29T14:16:33.757", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65889-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65889.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65889.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-65889"], "sort_priority": 92.24779, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: Joomla Extension - balbooa.com - Unauthenticated recursive directory deletion < 2.20.2 - The generateNewApp method allows actors to recursively delete directories.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://mysites.guru/blog/gridbox-23-critical-vulnerabilities/"}, {"source": "Reference", "type": "reference", "url": "https://www.balbooa.com/gridbox"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-65889"}], "source_published_impact": "This critical severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for critical severity review.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: Joomla Extension - balbooa.com - Unauthenticated recursive directory deletion < 2.20.2 - The generateNewApp method allows actors to recursively delete directories.", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-65889 is a defensive prioritization candidate. NVD lists CVSS severity as CRITICAL. CVSS score is 9.2. EPSS score is 0.0032 with percentile 0.2478. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-65889 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 9.2, "disclosure_freshness": 0.9617, "epss_percentile": 0.24779, "epss_score": 0.00323, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-65889", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T14:06:56.363000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 24.779, "priority_area": 92.2478, "published_at": "2026-07-29T14:16:33.757000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "critical", "source_count": 2}, "updated_at": "2026-07-30T14:06:56.363", "urgency_reasons": ["CVSS CRITICAL", "vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "This critical severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for critical severity review; CVSS 9.2 (CRITICAL); EPSS percentile 25; sources: NVD."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-65890/", "cvss_score": 9.2, "cvss_severity": "CRITICAL", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-65890.json", "defensive_priority": "Priority review candidate", "epss_percentile": 0.1476, "epss_score": 0.00237, "exposure_hint": "exposure unknown", "human_consequence": "An attacker may be able to read or change database-backed application data.", "human_impact_label": "SQL injection risk", "human_risk_summary": "CVE-2026-65890: An attacker may be able to read or change database-backed application data.", "id": "CVE-2026-65890", "impact_tags": ["SQL injection risk"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes SQL injection risk. Possible impact: An attacker may be able to read or change database-backed application data.", "public_human_summary": "NVD: Joomla Extension - balbooa.com - Unauthenticated SQL injection in Gridbox < 2.20.2 - Multiple SQLi vectors allow unauthenticated actors to inject SQL in queries.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes SQL injection risk. Possible impact: An attacker may be able to read or change database-backed application data.; CVSS 9.2 (CRITICAL); EPSS percentile 15; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: Joomla Extension - balbooa.com - Unauthenticated SQL injection in Gridbox < 2.20.2 - Multiple SQLi vectors allow unauthenticated actors to inject SQL in queries.", "public_status": "public_safe", "published_at": "2026-07-29T14:16:33.883", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65890-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65890.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65890.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-65890"], "sort_priority": 92.1476, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: Joomla Extension - balbooa.com - Unauthenticated SQL injection in Gridbox < 2.20.2 - Multiple SQLi vectors allow unauthenticated actors to inject SQL in queries.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://mysites.guru/blog/gridbox-23-critical-vulnerabilities/"}, {"source": "Reference", "type": "reference", "url": "https://www.balbooa.com/gridbox"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-65890"}], "source_published_impact": "Source describes SQL injection risk. Possible impact: An attacker may be able to read or change database-backed application data.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: Joomla Extension - balbooa.com - Unauthenticated SQL injection in Gridbox < 2.20.2 - Multiple SQLi vectors allow unauthenticated actors to inject SQL in queries.", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-65890 is a defensive prioritization candidate. NVD lists CVSS severity as CRITICAL. CVSS score is 9.2. EPSS score is 0.0024 with percentile 0.1476. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-65890 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 9.2, "disclosure_freshness": 0.9617, "epss_percentile": 0.1476, "epss_score": 0.00237, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-65890", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T14:06:56.363000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 14.76, "priority_area": 92.1476, "published_at": "2026-07-29T14:16:33.883000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "critical", "source_count": 2}, "updated_at": "2026-07-30T14:06:56.363", "urgency_reasons": ["CVSS CRITICAL", "vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "An attacker may be able to read or change database-backed application data; CVSS 9.2 (CRITICAL); EPSS percentile 15; sources: NVD."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-14270/", "cvss_score": 8.8, "cvss_severity": "HIGH", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-14270.json", "defensive_priority": "Continuous monitoring candidate", "epss_percentile": 0.42799, "epss_score": 0.00548, "exposure_hint": "authenticated boundary", "human_consequence": "An attacker may be able to run code or commands on affected systems.", "human_impact_label": "code execution review · authenticated boundary", "human_risk_summary": "CVE-2026-14270: An attacker may be able to run code or commands on affected systems.", "id": "CVE-2026-14270", "impact_tags": ["code execution review", "authenticated boundary review"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes code execution review · authenticated boundary. Possible impact: An attacker may be able to run code or commands on affected systems.", "public_human_summary": "NVD: The Extra Checkout Options (addon for Extra Product Options & Add-Ons for WooCommerce) plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 2.3.2. NVD: This is due to missing authorization and nonce validation in the eco_save_settings() function, which allows low-privileged authenticated users to modify the tc_eco_custom_file_types upload allowlist setting, combined with insufficient authorization on the... NVD: This makes it possible for authenticated attackers, with Subscriber-level access and above, to allow PHP uploads, upload a PHP file using the frontend upload nonce exposed on cart and checkout pages, and achieve remote code execution.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes code execution review · authenticated boundary. Possible impact: An attacker may be able to run code or commands on affected systems.; CVSS 8.8 (HIGH); EPSS percentile 43; not listed in KEV; Patch confirmed by source text; fixed version context: version; sources: NVD.", "public_safe_summary": "NVD: The Extra Checkout Options (addon for Extra Product Options & Add-Ons for WooCommerce) plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 2.3.2. NVD: This is due to missing authorization and nonce validation in the eco_save_settings() function, which allows low-privileged authenticated users to modify the tc_eco_custom_file_types upload allowlist setting, combined with insufficient authorization on the... NVD: This makes it possible for authenticated attackers, with Subscriber-level access and above, to allow PHP uploads, upload a PHP file using the frontend upload nonce exposed on cart and checkout pages, and achieve remote code execution.", "public_status": "public_safe", "published_at": "2026-07-29T12:16:35.697", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-14270-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-14270.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-14270.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-14270"], "sort_priority": 88.42799, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: The Extra Checkout Options (addon for Extra Product Options & Add-Ons for WooCommerce) plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 2.3.2. NVD: This is due to missing authorization and nonce validation in the eco_save_settings() function, which allows low-privileged authenticated users to modify the tc_eco_custom_file_types upload allowlist setting, combined with insufficient authorization on the... NVD: This makes it possible for authenticated attackers, with Subscriber-level access and above, to allow PHP uploads, upload a PHP file using the frontend upload nonce exposed on cart and checkout pages, and achieve remote code execution.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://codecanyon.net/item/extra-checkout-options-addon-for-extra-product-options/20439659"}, {"source": "Reference", "type": "reference", "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/a929efaf-80a1-45c1-9426-6c5b45a66530?source=cve"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-14270"}], "source_published_impact": "Source describes code execution review · authenticated boundary. Possible impact: An attacker may be able to run code or commands on affected systems.", "source_published_remediation": "Patch confirmed by source text; fixed version context: version.", "source_published_summary": "NVD: The Extra Checkout Options (addon for Extra Product Options & Add-Ons for WooCommerce) plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 2.3.2. NVD: This is due to missing authorization and nonce validation in the eco_save_settings() function, which allows low-privileged authenticated users to modify the tc_eco_custom_file_types upload allowlist setting, combined with insufficient authorization on the... NVD: This makes it possible for authenticated attackers, with Subscriber-level access and above, to allow PHP uploads, upload a PHP file using the frontend upload nonce exposed on cart and checkout pages, and achieve remote code execution.", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-14270 is a defensive prioritization candidate. NVD lists CVSS severity as HIGH. CVSS score is 8.8. EPSS score is 0.0055 with percentile 0.4280. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-14270 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 8.8, "disclosure_freshness": 0.9613, "epss_percentile": 0.42799, "epss_score": 0.00548, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-14270", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T14:01:30.413000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 42.799, "priority_area": 88.428, "published_at": "2026-07-29T12:16:35.697000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "high", "source_count": 2}, "updated_at": "2026-07-30T14:01:30.413", "urgency_reasons": ["CVSS HIGH", "vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "An attacker may be able to run code or commands on affected systems; CVSS 8.8 (HIGH); EPSS percentile 43; sources: NVD."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-65944/", "cvss_score": 8.8, "cvss_severity": "HIGH", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-65944.json", "defensive_priority": "Continuous monitoring candidate", "epss_percentile": 0.03057, "epss_score": 0.0013, "exposure_hint": "exposure unknown", "human_consequence": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.", "human_impact_label": "high severity review", "human_risk_summary": "CVE-2026-65944: This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.", "id": "CVE-2026-65944", "impact_tags": [], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.", "public_human_summary": "NVD: Joomla Extension - rolandd.com - CSRF vectors in AJAX endpoint handlers RO CSVI < 9.11.0", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.; CVSS 8.8 (HIGH); EPSS percentile 3; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: Joomla Extension - rolandd.com - CSRF vectors in AJAX endpoint handlers RO CSVI < 9.11.0", "public_status": "public_safe", "published_at": "2026-07-29T13:19:11.190", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65944-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65944.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65944.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-65944"], "sort_priority": 88.03057, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: Joomla Extension - rolandd.com - CSRF vectors in AJAX endpoint handlers RO CSVI < 9.11.0", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://rolandd.com/products/ro-csvi"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-65944"}], "source_published_impact": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: Joomla Extension - rolandd.com - CSRF vectors in AJAX endpoint handlers RO CSVI < 9.11.0", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-65944 is a defensive prioritization candidate. NVD lists CVSS severity as HIGH. CVSS score is 8.8. EPSS score is 0.0013 with percentile 0.0306. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-65944 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 8.8, "disclosure_freshness": 0.9615, "epss_percentile": 0.03057, "epss_score": 0.0013, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-65944", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T14:17:03.647000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 6.0, "priority_area": 88.0306, "published_at": "2026-07-29T13:19:11.190000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "high", "source_count": 2}, "updated_at": "2026-07-30T14:17:03.647", "urgency_reasons": ["CVSS HIGH", "vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review; CVSS 8.8 (HIGH); EPSS percentile 3; sources: NVD."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-55995/", "cvss_score": 8.7, "cvss_severity": "HIGH", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-55995.json", "defensive_priority": "Continuous monitoring candidate", "epss_percentile": 0.16635, "epss_score": 0.00252, "exposure_hint": "exposure unknown", "human_consequence": "The affected service may become unavailable or unreliable.", "human_impact_label": "service availability risk", "human_risk_summary": "CVE-2026-55995: The affected service may become unavailable or unreliable.", "id": "CVE-2026-55995", "impact_tags": ["service availability review"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes service availability risk. Possible impact: The affected service may become unavailable or unreliable.", "public_human_summary": "NVD: A Double Free vulnerability in open-iscsi allows an unauthenticated MITM attacker to cause DoS. NVD: This issue affects open-iscsi: from ? NVD: through 56718d4e9d1a4f51c30697b5c0534144bb41c9bb.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes service availability risk. Possible impact: The affected service may become unavailable or unreliable.; CVSS 8.7 (HIGH); EPSS percentile 17; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD, OSV.", "public_safe_summary": "NVD: A Double Free vulnerability in open-iscsi allows an unauthenticated MITM attacker to cause DoS. NVD: This issue affects open-iscsi: from ? NVD: through 56718d4e9d1a4f51c30697b5c0534144bb41c9bb.", "public_status": "public_safe", "published_at": "2026-07-29T14:16:31.423", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-55995-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-55995.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-55995.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-55995", "https://osv.dev/vulnerability/CVE-2026-55995"], "sort_priority": 87.16635, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD / OSV description; unsafe procedural detail is not shown.", "source_label": "NVD, OSV, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: A Double Free vulnerability in open-iscsi allows an unauthenticated MITM attacker to cause DoS. NVD: This issue affects open-iscsi: from ? NVD: through 56718d4e9d1a4f51c30697b5c0534144bb41c9bb.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "OSV", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://bugzilla.suse.com/show_bug.cgi?id=CVE-2026-55995"}, {"source": "Reference", "type": "reference", "url": "https://github.com/open-iscsi/open-isns/commit/56718d4e9d1a4f51c30697b5c0534144bb41c9bb"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-55995"}, {"source": "Official Reference", "type": "reference", "url": "https://osv.dev/vulnerability/CVE-2026-55995"}], "source_published_impact": "Source describes service availability risk. Possible impact: The affected service may become unavailable or unreliable.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: A Double Free vulnerability in open-iscsi allows an unauthenticated MITM attacker to cause DoS. NVD: This issue affects open-iscsi: from ? NVD: through 56718d4e9d1a4f51c30697b5c0534144bb41c9bb.", "sources": ["NVD", "OSV", "Vendor Advisory"], "summary": "CVE-2026-55995 is a defensive prioritization candidate. NVD lists CVSS severity as HIGH. CVSS score is 8.7. EPSS score is 0.0025 with percentile 0.1663. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-55995 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 8.7, "disclosure_freshness": 0.9617, "epss_percentile": 0.16635, "epss_score": 0.00252, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-55995", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T16:43:03.817000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 16.635, "priority_area": 87.1663, "published_at": "2026-07-29T14:16:31.423000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "high", "source_count": 4}, "updated_at": "2026-07-30T16:43:03.817", "urgency_reasons": ["CVSS HIGH", "vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "The affected service may become unavailable or unreliable; CVSS 8.7 (HIGH); EPSS percentile 17; sources: NVD, OSV."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-14354/", "cvss_score": 8.7, "cvss_severity": "HIGH", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-14354.json", "defensive_priority": "Continuous monitoring candidate", "epss_percentile": 0.01912, "epss_score": 0.00117, "exposure_hint": "exposure unknown", "human_consequence": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authentication boundary review.", "human_impact_label": "authentication boundary review", "human_risk_summary": "CVE-2026-14354: This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authentication boundary review.", "id": "CVE-2026-14354", "impact_tags": ["authentication boundary review"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes authentication boundary review. Possible impact: This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authentication boundary review.", "public_human_summary": "NVD: CWE-522 Insufficiently Protected Credentials vulnerability exists that could cause authentication bypass and unauthorized credential modification, potentially leading to compromise of managed devices, when a local privileged attacker leverages weaknesses in...", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes authentication boundary review. Possible impact: This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authentication boundary review.; CVSS 8.7 (HIGH); EPSS percentile 2; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: CWE-522 Insufficiently Protected Credentials vulnerability exists that could cause authentication bypass and unauthorized credential modification, potentially leading to compromise of managed devices, when a local privileged attacker leverages weaknesses in...", "public_status": "public_safe", "published_at": "2026-07-29T13:17:42.723", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-14354-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-14354.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-14354.md", "scan_allowed": false}, "remediation_urls": ["https://download.se.com/files?p_Doc_Ref=SEVD-2026-195-02&p_enDocType=Security+and+Safety+Notice&p_File_Name=SEVD-2026-195-02.pdf"], "sort_priority": 87.01912, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: CWE-522 Insufficiently Protected Credentials vulnerability exists that could cause authentication bypass and unauthorized credential modification, potentially leading to compromise of managed devices, when a local privileged attacker leverages weaknesses in...", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://download.se.com/files?p_Doc_Ref=SEVD-2026-195-02&p_enDocType=Security+and+Safety+Notice&p_File_Name=SEVD-2026-195-02.pdf"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-14354"}], "source_published_impact": "Source describes authentication boundary review. Possible impact: This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authentication boundary review.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: CWE-522 Insufficiently Protected Credentials vulnerability exists that could cause authentication bypass and unauthorized credential modification, potentially leading to compromise of managed devices, when a local privileged attacker leverages weaknesses in...", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-14354 is a defensive prioritization candidate. NVD lists CVSS severity as HIGH. CVSS score is 8.7. EPSS score is 0.0012 with percentile 0.0191. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-14354 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 8.7, "disclosure_freshness": 0.9615, "epss_percentile": 0.01912, "epss_score": 0.00117, "evidence_confidence": 0.8333, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-14354", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T16:43:03.817000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 6.0, "priority_area": 87.0191, "published_at": "2026-07-29T13:17:42.723000Z", "remediation_reference_count": 1, "schema_version": "vuln-treemap-node-v1", "severity": "high", "source_count": 3}, "updated_at": "2026-07-30T16:43:03.817", "urgency_reasons": ["CVSS HIGH", "vendor advisory present", "recent update", "remediation reference present"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authentication boundary review; CVSS 8.7 (HIGH); EPSS percentile 2; sources: NVD."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-44944/", "cvss_score": 8.5, "cvss_severity": "HIGH", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-44944.json", "defensive_priority": "Continuous monitoring candidate", "epss_percentile": 0.00653, "epss_score": 0.00093, "exposure_hint": "local exposure", "human_consequence": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authentication boundary review · local exposure.", "human_impact_label": "authentication boundary review · local exposure", "human_risk_summary": "CVE-2026-44944: This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authentication boundary review · local exposure.", "id": "CVE-2026-44944", "impact_tags": ["authentication boundary review", "local exposure relevant"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes authentication boundary review · local exposure. Possible impact: This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authentication boundary review · local exposure.", "public_human_summary": "NVD: An Incorrect Authorization vulnerability in open-iscsi allows unprivilidged local users to use the isscsiuio control socket. NVD: This issue affects open-iscsi: from ? NVD: through 668ca1df9c9a1e9bdd5c999ae1d67c9c8909237e.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes authentication boundary review · local exposure. Possible impact: This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authentication boundary review · local exposure.; CVSS 8.5 (HIGH); EPSS percentile 1; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD, OSV.", "public_safe_summary": "NVD: An Incorrect Authorization vulnerability in open-iscsi allows unprivilidged local users to use the isscsiuio control socket. NVD: This issue affects open-iscsi: from ? NVD: through 668ca1df9c9a1e9bdd5c999ae1d67c9c8909237e.", "public_status": "public_safe", "published_at": "2026-07-29T13:18:46.113", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-44944-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-44944.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-44944.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-44944", "https://osv.dev/vulnerability/CVE-2026-44944"], "sort_priority": 85.00653, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD / OSV description; unsafe procedural detail is not shown.", "source_label": "NVD, OSV, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: An Incorrect Authorization vulnerability in open-iscsi allows unprivilidged local users to use the isscsiuio control socket. NVD: This issue affects open-iscsi: from ? NVD: through 668ca1df9c9a1e9bdd5c999ae1d67c9c8909237e.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "OSV", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://bugzilla.suse.com/show_bug.cgi?id=CVE-2026-44944"}, {"source": "Reference", "type": "reference", "url": "https://github.com/open-iscsi/open-iscsi/commit/668ca1df9c9a1e9bdd5c999ae1d67c9c8909237e"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-44944"}, {"source": "Official Reference", "type": "reference", "url": "https://osv.dev/vulnerability/CVE-2026-44944"}], "source_published_impact": "Source describes authentication boundary review · local exposure. Possible impact: This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authentication boundary review · local exposure.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: An Incorrect Authorization vulnerability in open-iscsi allows unprivilidged local users to use the isscsiuio control socket. NVD: This issue affects open-iscsi: from ? NVD: through 668ca1df9c9a1e9bdd5c999ae1d67c9c8909237e.", "sources": ["NVD", "OSV", "Vendor Advisory"], "summary": "CVE-2026-44944 is a defensive prioritization candidate. NVD lists CVSS severity as HIGH. CVSS score is 8.5. EPSS score is 0.0009 with percentile 0.0065. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-44944 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 8.5, "disclosure_freshness": 0.9615, "epss_percentile": 0.00653, "epss_score": 0.00093, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-44944", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T16:43:03.817000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 6.0, "priority_area": 85.0065, "published_at": "2026-07-29T13:18:46.113000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "high", "source_count": 4}, "updated_at": "2026-07-30T16:43:03.817", "urgency_reasons": ["CVSS HIGH", "vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authentication boundary review · local exposure; CVSS 8.5 (HIGH); EPSS percentile 1; sources: NVD, OSV."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-12927/", "cvss_score": 8.4, "cvss_severity": "HIGH", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-12927.json", "defensive_priority": "Continuous monitoring candidate", "epss_percentile": 0.1015, "epss_score": 0.00201, "exposure_hint": "exposure unknown", "human_consequence": "An attacker may be able to run code or commands on affected systems.", "human_impact_label": "code execution review", "human_risk_summary": "CVE-2026-12927: An attacker may be able to run code or commands on affected systems.", "id": "CVE-2026-12927", "impact_tags": ["code execution review"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes code execution review. Possible impact: An attacker may be able to run code or commands on affected systems.", "public_human_summary": "NVD: CWE-787 Out-of-bounds write vulnerability exists that could cause loss of data or potentially risk arbitrary code execution when a malicious CGF file is imported to IGSS Definition.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes code execution review. Possible impact: An attacker may be able to run code or commands on affected systems.; CVSS 8.4 (HIGH); EPSS percentile 10; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: CWE-787 Out-of-bounds write vulnerability exists that could cause loss of data or potentially risk arbitrary code execution when a malicious CGF file is imported to IGSS Definition.", "public_status": "public_safe", "published_at": "2026-07-29T13:17:36.300", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-12927-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-12927.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-12927.md", "scan_allowed": false}, "remediation_urls": ["https://download.se.com/files?p_Doc_Ref=SEVD-2026-195-01&p_enDocType=Security+and+Safety+Notice&p_File_Name=SEVD-2026-195-01.pdf"], "sort_priority": 84.1015, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: CWE-787 Out-of-bounds write vulnerability exists that could cause loss of data or potentially risk arbitrary code execution when a malicious CGF file is imported to IGSS Definition.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://download.se.com/files?p_Doc_Ref=SEVD-2026-195-01&p_enDocType=Security+and+Safety+Notice&p_File_Name=SEVD-2026-195-01.pdf"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-12927"}], "source_published_impact": "Source describes code execution review. Possible impact: An attacker may be able to run code or commands on affected systems.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: CWE-787 Out-of-bounds write vulnerability exists that could cause loss of data or potentially risk arbitrary code execution when a malicious CGF file is imported to IGSS Definition.", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-12927 is a defensive prioritization candidate. NVD lists CVSS severity as HIGH. CVSS score is 8.4. EPSS score is 0.0020 with percentile 0.1015. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-12927 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 8.4, "disclosure_freshness": 0.9615, "epss_percentile": 0.1015, "epss_score": 0.00201, "evidence_confidence": 0.8333, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-12927", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T16:43:03.817000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 10.15, "priority_area": 84.1015, "published_at": "2026-07-29T13:17:36.300000Z", "remediation_reference_count": 1, "schema_version": "vuln-treemap-node-v1", "severity": "high", "source_count": 3}, "updated_at": "2026-07-30T16:43:03.817", "urgency_reasons": ["CVSS HIGH", "vendor advisory present", "recent update", "remediation reference present"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "An attacker may be able to run code or commands on affected systems; CVSS 8.4 (HIGH); EPSS percentile 10; sources: NVD."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-65943/", "cvss_score": 7.5, "cvss_severity": "HIGH", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-65943.json", "defensive_priority": "Continuous monitoring candidate", "epss_percentile": 0.14165, "epss_score": 0.00232, "exposure_hint": "exposure unknown", "human_consequence": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.", "human_impact_label": "high severity review", "human_risk_summary": "CVE-2026-65943: This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.", "id": "CVE-2026-65943", "impact_tags": [], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.", "public_human_summary": "NVD: Joomla Extension - rolandd.com - Unauthenticated directory creation RO CSVI < 9.11.0", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.; CVSS 7.5 (HIGH); EPSS percentile 14; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: Joomla Extension - rolandd.com - Unauthenticated directory creation RO CSVI < 9.11.0", "public_status": "public_safe", "published_at": "2026-07-29T13:19:11.087", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65943-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65943.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65943.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-65943"], "sort_priority": 75.14165, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: Joomla Extension - rolandd.com - Unauthenticated directory creation RO CSVI < 9.11.0", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://rolandd.com/products/ro-csvi"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-65943"}], "source_published_impact": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: Joomla Extension - rolandd.com - Unauthenticated directory creation RO CSVI < 9.11.0", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-65943 is a defensive prioritization candidate. NVD lists CVSS severity as HIGH. CVSS score is 7.5. EPSS score is 0.0023 with percentile 0.1416. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-65943 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 7.5, "disclosure_freshness": 0.9615, "epss_percentile": 0.14165, "epss_score": 0.00232, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-65943", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T14:06:56.363000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 14.165, "priority_area": 75.1416, "published_at": "2026-07-29T13:19:11.087000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "high", "source_count": 2}, "updated_at": "2026-07-30T14:06:56.363", "urgency_reasons": ["CVSS HIGH", "vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review; CVSS 7.5 (HIGH); EPSS percentile 14; sources: NVD."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-50641/", "cvss_score": 7.1, "cvss_severity": "HIGH", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-50641.json", "defensive_priority": "Continuous monitoring candidate", "epss_percentile": 0.05664, "epss_score": 0.0016, "exposure_hint": "exposure unknown", "human_consequence": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.", "human_impact_label": "high severity review", "human_risk_summary": "CVE-2026-50641: This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.", "id": "CVE-2026-50641", "impact_tags": [], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.", "public_human_summary": "NVD: Streamsoft Business Intelligence (BI) stores users' passwords in plaintext form in the database This issue was fixed in version 6.8.0.0, users were also requested to change their password on the first login.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.; CVSS 7.1 (HIGH); EPSS percentile 6; not listed in KEV; Patch confirmed by source text; fixed version context: version; sources: NVD.", "public_safe_summary": "NVD: Streamsoft Business Intelligence (BI) stores users' passwords in plaintext form in the database This issue was fixed in version 6.8.0.0, users were also requested to change their password on the first login.", "public_status": "public_safe", "published_at": "2026-07-29T13:18:53.053", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-50641-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-50641.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-50641.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-50641"], "sort_priority": 71.05664, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: Streamsoft Business Intelligence (BI) stores users' passwords in plaintext form in the database This issue was fixed in version 6.8.0.0, users were also requested to change their password on the first login.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://cert.pl/posts/2026/07/CVE-2026-50641"}, {"source": "Reference", "type": "reference", "url": "https://www.streamsoft.pl/business-intelligence/"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-50641"}], "source_published_impact": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review.", "source_published_remediation": "Patch confirmed by source text; fixed version context: version.", "source_published_summary": "NVD: Streamsoft Business Intelligence (BI) stores users' passwords in plaintext form in the database This issue was fixed in version 6.8.0.0, users were also requested to change their password on the first login.", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-50641 is a defensive prioritization candidate. NVD lists CVSS severity as HIGH. CVSS score is 7.1. EPSS score is 0.0016 with percentile 0.0566. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-50641 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 7.1, "disclosure_freshness": 0.9615, "epss_percentile": 0.05664, "epss_score": 0.0016, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-50641", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T19:11:24.687000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 6.0, "priority_area": 71.0566, "published_at": "2026-07-29T13:18:53.053000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "high", "source_count": 2}, "updated_at": "2026-07-30T19:11:24.687", "urgency_reasons": ["CVSS HIGH", "vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "This high severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for high severity review; CVSS 7.1 (HIGH); EPSS percentile 6; sources: NVD."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-44943/", "cvss_score": 6.9, "cvss_severity": "MEDIUM", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-44943.json", "defensive_priority": "Routine monitoring candidate", "epss_percentile": 0.25549, "epss_score": 0.0033, "exposure_hint": "exposure unknown", "human_consequence": "An attacker may gain root or administrative-level privileges on affected systems.", "human_impact_label": "admin privilege risk · path traversal review", "human_risk_summary": "CVE-2026-44943: An attacker may gain root or administrative-level privileges on affected systems.", "id": "CVE-2026-44943", "impact_tags": ["admin privilege risk", "path traversal review"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes admin privilege risk · path traversal review. Possible impact: An attacker may gain root or administrative-level privileges on affected systems.", "public_human_summary": "NVD: An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in open-iscsi allows remote MITM attackers to create root-owned files outside the database and inject lines into the record. NVD: This issue affects open-iscsi: from through 668ca1df9c9a1e9bdd5c999ae1d67c9c8909237e. OSV: remote limited file-write as root via discovery in open-iscsi", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes admin privilege risk · path traversal review. Possible impact: An attacker may gain root or administrative-level privileges on affected systems.; CVSS 6.9 (MEDIUM); EPSS percentile 26; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD, OSV.", "public_safe_summary": "NVD: An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in open-iscsi allows remote MITM attackers to create root-owned files outside the database and inject lines into the record. NVD: This issue affects open-iscsi: from through 668ca1df9c9a1e9bdd5c999ae1d67c9c8909237e. OSV: remote limited file-write as root via discovery in open-iscsi", "public_status": "public_safe", "published_at": "2026-07-29T13:18:45.967", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-44943-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-44943.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-44943.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-44943", "https://osv.dev/vulnerability/CVE-2026-44943"], "sort_priority": 69.25549, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD / OSV description; unsafe procedural detail is not shown.", "source_label": "NVD, OSV, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in open-iscsi allows remote MITM attackers to create root-owned files outside the database and inject lines into the record. NVD: This issue affects open-iscsi: from through 668ca1df9c9a1e9bdd5c999ae1d67c9c8909237e. OSV: remote limited file-write as root via discovery in open-iscsi", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "OSV", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://bugzilla.suse.com/show_bug.cgi?id=CVE-2026-44943"}, {"source": "Reference", "type": "reference", "url": "https://github.com/open-iscsi/open-iscsi/commit/668ca1df9c9a1e9bdd5c999ae1d67c9c8909237e"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-44943"}, {"source": "Official Reference", "type": "reference", "url": "https://osv.dev/vulnerability/CVE-2026-44943"}], "source_published_impact": "Source describes admin privilege risk · path traversal review. Possible impact: An attacker may gain root or administrative-level privileges on affected systems.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in open-iscsi allows remote MITM attackers to create root-owned files outside the database and inject lines into the record. NVD: This issue affects open-iscsi: from through 668ca1df9c9a1e9bdd5c999ae1d67c9c8909237e. OSV: remote limited file-write as root via discovery in open-iscsi", "sources": ["NVD", "OSV", "Vendor Advisory"], "summary": "CVE-2026-44943 is a defensive prioritization candidate. NVD lists CVSS severity as MEDIUM. CVSS score is 6.9. EPSS score is 0.0033 with percentile 0.2555. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-44943 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 6.9, "disclosure_freshness": 0.9615, "epss_percentile": 0.25549, "epss_score": 0.0033, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-44943", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T16:43:03.817000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 25.549, "priority_area": 69.2555, "published_at": "2026-07-29T13:18:45.967000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "medium", "source_count": 4}, "updated_at": "2026-07-30T16:43:03.817", "urgency_reasons": ["vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "An attacker may gain root or administrative-level privileges on affected systems; CVSS 6.9 (MEDIUM); EPSS percentile 26; sources: NVD, OSV."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-16751/", "cvss_score": 6.5, "cvss_severity": "MEDIUM", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-16751.json", "defensive_priority": "Routine monitoring candidate", "epss_percentile": 0.21758, "epss_score": 0.00295, "exposure_hint": "authenticated boundary", "human_consequence": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authenticated boundary.", "human_impact_label": "authenticated boundary", "human_risk_summary": "CVE-2026-16751: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authenticated boundary.", "id": "CVE-2026-16751", "impact_tags": ["authenticated boundary review"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes authenticated boundary. Possible impact: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authenticated boundary.", "public_human_summary": "NVD: Authorization Bypass in the emergency recovery approval component in Ente Technologies Ente Museum Server allows an authenticated attacker configured as a victim's emergency contact to bypass the configured recovery waiting period and take over the victim's...", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes authenticated boundary. Possible impact: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authenticated boundary.; CVSS 6.5 (MEDIUM); EPSS percentile 22; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: Authorization Bypass in the emergency recovery approval component in Ente Technologies Ente Museum Server allows an authenticated attacker configured as a victim's emergency contact to bypass the configured recovery waiting period and take over the victim's...", "public_status": "public_safe", "published_at": "2026-07-29T14:16:28.683", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-16751-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-16751.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-16751.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-16751"], "sort_priority": 65.21758, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: Authorization Bypass in the emergency recovery approval component in Ente Technologies Ente Museum Server allows an authenticated attacker configured as a victim's emergency contact to bypass the configured recovery waiting period and take over the victim's...", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://github.com/ente/ente/tree/v2.0.34"}, {"source": "Reference", "type": "reference", "url": "https://vokecyber.com/blog/cve-2026-16751-ente-emergency-recovery-bypass"}, {"source": "Reference", "type": "reference", "url": "https://vokecyber.com/research/cve-2026-16751-ente-emergency-recovery-bypass"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-16751"}], "source_published_impact": "Source describes authenticated boundary. Possible impact: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authenticated boundary.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: Authorization Bypass in the emergency recovery approval component in Ente Technologies Ente Museum Server allows an authenticated attacker configured as a victim's emergency contact to bypass the configured recovery waiting period and take over the victim's...", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-16751 is a defensive prioritization candidate. NVD lists CVSS severity as MEDIUM. CVSS score is 6.5. EPSS score is 0.0029 with percentile 0.2176. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-16751 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 6.5, "disclosure_freshness": 0.9617, "epss_percentile": 0.21758, "epss_score": 0.00295, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-16751", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T19:11:24.687000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 21.758, "priority_area": 65.2176, "published_at": "2026-07-29T14:16:28.683000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "medium", "source_count": 2}, "updated_at": "2026-07-30T19:11:24.687", "urgency_reasons": ["vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authenticated boundary; CVSS 6.5 (MEDIUM); EPSS percentile 22; sources: NVD."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-65891/", "cvss_score": 6.5, "cvss_severity": "MEDIUM", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-65891.json", "defensive_priority": "Routine monitoring candidate", "epss_percentile": 0.09481, "epss_score": 0.00195, "exposure_hint": "authenticated boundary", "human_consequence": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authenticated boundary.", "human_impact_label": "authenticated boundary", "human_risk_summary": "CVE-2026-65891: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authenticated boundary.", "id": "CVE-2026-65891", "impact_tags": ["authenticated boundary review"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes authenticated boundary. Possible impact: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authenticated boundary.", "public_human_summary": "NVD: Joomla Extension - joomlacontenteditor.net - Creation of hidden files and unintended file overwrite via rename function in Joomla Content Editor (JCE) < 2.20.2 - Improper input validation in the file rename functionality allowed an authenticated user with... NVD: The issue also allowed existing files at the destination path to be unintentionally replaced.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes authenticated boundary. Possible impact: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authenticated boundary.; CVSS 6.5 (MEDIUM); EPSS percentile 9; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: Joomla Extension - joomlacontenteditor.net - Creation of hidden files and unintended file overwrite via rename function in Joomla Content Editor (JCE) < 2.20.2 - Improper input validation in the file rename functionality allowed an authenticated user with... NVD: The issue also allowed existing files at the destination path to be unintentionally replaced.", "public_status": "public_safe", "published_at": "2026-07-29T13:19:10.980", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65891-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65891.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65891.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-65891"], "sort_priority": 65.09481, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: Joomla Extension - joomlacontenteditor.net - Creation of hidden files and unintended file overwrite via rename function in Joomla Content Editor (JCE) < 2.20.2 - Improper input validation in the file rename functionality allowed an authenticated user with... NVD: The issue also allowed existing files at the destination path to be unintentionally replaced.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://www.joomlacontenteditor.net/"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-65891"}], "source_published_impact": "Source describes authenticated boundary. Possible impact: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authenticated boundary.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: Joomla Extension - joomlacontenteditor.net - Creation of hidden files and unintended file overwrite via rename function in Joomla Content Editor (JCE) < 2.20.2 - Improper input validation in the file rename functionality allowed an authenticated user with... NVD: The issue also allowed existing files at the destination path to be unintentionally replaced.", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-65891 is a defensive prioritization candidate. NVD lists CVSS severity as MEDIUM. CVSS score is 6.5. EPSS score is 0.0019 with percentile 0.0948. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-65891 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 6.5, "disclosure_freshness": 0.9615, "epss_percentile": 0.09481, "epss_score": 0.00195, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-65891", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T14:17:03.483000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 9.481, "priority_area": 65.0948, "published_at": "2026-07-29T13:19:10.980000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "medium", "source_count": 2}, "updated_at": "2026-07-30T14:17:03.483", "urgency_reasons": ["vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for authenticated boundary; CVSS 6.5 (MEDIUM); EPSS percentile 9; sources: NVD."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-66400/", "cvss_score": 6.3, "cvss_severity": "MEDIUM", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-66400.json", "defensive_priority": "Routine monitoring candidate", "epss_percentile": 0.04881, "epss_score": 0.00152, "exposure_hint": "exposure unknown", "human_consequence": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for defensive exposure review.", "human_impact_label": "defensive exposure review", "human_risk_summary": "CVE-2026-66400: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for defensive exposure review.", "id": "CVE-2026-66400", "impact_tags": [], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for defensive exposure review.", "public_human_summary": "NVD: Grav Login Plugin versions before 3.8.13 contain an insufficient session expiration vulnerability in TokenStorage.php where the findTriplet() method fails to properly validate Remember Me token timestamps. NVD: Attackers with a captured Remember Me cookie can authenticate indefinitely instead of the configured timeout period, as the expiry check compares an array to a scalar value which always evaluates incorrectly in PHP.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for defensive exposure review.; CVSS 6.3 (MEDIUM); EPSS percentile 5; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: Grav Login Plugin versions before 3.8.13 contain an insufficient session expiration vulnerability in TokenStorage.php where the findTriplet() method fails to properly validate Remember Me token timestamps. NVD: Attackers with a captured Remember Me cookie can authenticate indefinitely instead of the configured timeout period, as the expiry check compares an array to a scalar value which always evaluates incorrectly in PHP.", "public_status": "public_safe", "published_at": "2026-07-29T14:16:34.017", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-66400-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-66400.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-66400.md", "scan_allowed": false}, "remediation_urls": ["https://github.com/getgrav/grav/security/advisories/GHSA-mj78-8gwc-vxjj"], "sort_priority": 63.04881, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: Grav Login Plugin versions before 3.8.13 contain an insufficient session expiration vulnerability in TokenStorage.php where the findTriplet() method fails to properly validate Remember Me token timestamps. NVD: Attackers with a captured Remember Me cookie can authenticate indefinitely instead of the configured timeout period, as the expiry check compares an array to a scalar value which always evaluates incorrectly in PHP.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://github.com/getgrav/grav/security/advisories/GHSA-mj78-8gwc-vxjj"}, {"source": "Reference", "type": "reference", "url": "https://www.vulncheck.com/advisories/grav-login-plugin-before-insufficient-session-expiration"}, {"source": "Reference", "type": "reference", "url": "https://github.com/getgrav/grav/security/advisories/GHSA-mj78-8gwc-vxjj"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-66400"}], "source_published_impact": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for defensive exposure review.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: Grav Login Plugin versions before 3.8.13 contain an insufficient session expiration vulnerability in TokenStorage.php where the findTriplet() method fails to properly validate Remember Me token timestamps. NVD: Attackers with a captured Remember Me cookie can authenticate indefinitely instead of the configured timeout period, as the expiry check compares an array to a scalar value which always evaluates incorrectly in PHP.", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-66400 is a defensive prioritization candidate. NVD lists CVSS severity as MEDIUM. CVSS score is 6.3. EPSS score is 0.0015 with percentile 0.0488. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-66400 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 6.3, "disclosure_freshness": 0.9617, "epss_percentile": 0.04881, "epss_score": 0.00152, "evidence_confidence": 0.8333, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-66400", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T16:41:25.650000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 6.0, "priority_area": 63.0488, "published_at": "2026-07-29T14:16:34.017000Z", "remediation_reference_count": 1, "schema_version": "vuln-treemap-node-v1", "severity": "medium", "source_count": 3}, "updated_at": "2026-07-30T16:41:25.650", "urgency_reasons": ["vendor advisory present", "recent update", "remediation reference present"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for defensive exposure review; CVSS 6.3 (MEDIUM); EPSS percentile 5; sources: NVD."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-65946/", "cvss_score": 6.1, "cvss_severity": "MEDIUM", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-65946.json", "defensive_priority": "Routine monitoring candidate", "epss_percentile": 0.04577, "epss_score": 0.00149, "exposure_hint": "exposure unknown", "human_consequence": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for XSS risk.", "human_impact_label": "XSS risk", "human_risk_summary": "CVE-2026-65946: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for XSS risk.", "id": "CVE-2026-65946", "impact_tags": ["XSS risk"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes XSS risk. Possible impact: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for XSS risk.", "public_human_summary": "NVD: Joomla Extension - rolandd.com - XSS vectors in AJAX endpoint handlers RO CSVI < 9.11.0", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes XSS risk. Possible impact: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for XSS risk.; CVSS 6.1 (MEDIUM); EPSS percentile 5; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: Joomla Extension - rolandd.com - XSS vectors in AJAX endpoint handlers RO CSVI < 9.11.0", "public_status": "public_safe", "published_at": "2026-07-29T13:19:11.293", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65946-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65946.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65946.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-65946"], "sort_priority": 61.04577, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: Joomla Extension - rolandd.com - XSS vectors in AJAX endpoint handlers RO CSVI < 9.11.0", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://rolandd.com/products/ro-csvi"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-65946"}], "source_published_impact": "Source describes XSS risk. Possible impact: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for XSS risk.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: Joomla Extension - rolandd.com - XSS vectors in AJAX endpoint handlers RO CSVI < 9.11.0", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-65946 is a defensive prioritization candidate. NVD lists CVSS severity as MEDIUM. CVSS score is 6.1. EPSS score is 0.0015 with percentile 0.0458. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-65946 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 6.1, "disclosure_freshness": 0.9615, "epss_percentile": 0.04577, "epss_score": 0.00149, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-65946", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T14:06:56.363000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 6.0, "priority_area": 61.0458, "published_at": "2026-07-29T13:19:11.293000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "medium", "source_count": 2}, "updated_at": "2026-07-30T14:06:56.363", "urgency_reasons": ["vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for XSS risk; CVSS 6.1 (MEDIUM); EPSS percentile 5; sources: NVD."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-18174/", "cvss_score": 5.3, "cvss_severity": "MEDIUM", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-18174.json", "defensive_priority": "Routine monitoring candidate", "epss_percentile": 0.09205, "epss_score": 0.00193, "exposure_hint": "exposure unknown", "human_consequence": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for defensive exposure review.", "human_impact_label": "defensive exposure review", "human_risk_summary": "CVE-2026-18174: This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for defensive exposure review.", "id": "CVE-2026-18174", "impact_tags": [], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for defensive exposure review.", "public_human_summary": "NVD: @fastify/forwarded resolves client addresses from the X-Forwarded-For header. NVD: In versions before 3.0.2, when the header contains two or more comma separated entries, the parser trims only space characters and does not strip horizontal tabs, even though RFC 7230 defines optional whitespace as both space and tab. NVD: As a result, an entry padded with a tab keeps the literal tab in the resolved address string.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for defensive exposure review.; CVSS 5.3 (MEDIUM); EPSS percentile 9; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD, OSV.", "public_safe_summary": "NVD: @fastify/forwarded resolves client addresses from the X-Forwarded-For header. NVD: In versions before 3.0.2, when the header contains two or more comma separated entries, the parser trims only space characters and does not strip horizontal tabs, even though RFC 7230 defines optional whitespace as both space and tab. NVD: As a result, an entry padded with a tab keeps the literal tab in the resolved address string.", "public_status": "public_safe", "published_at": "2026-07-29T14:16:28.790", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-18174-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-18174.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-18174.md", "scan_allowed": false}, "remediation_urls": ["https://cna.openjsf.org/security-advisories.html", "https://github.com/fastify/forwarded/security/advisories/GHSA-2849-m2w7-xm8f"], "sort_priority": 53.09205, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD / OSV description; unsafe procedural detail is not shown.", "source_label": "NVD, OSV, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: @fastify/forwarded resolves client addresses from the X-Forwarded-For header. NVD: In versions before 3.0.2, when the header contains two or more comma separated entries, the parser trims only space characters and does not strip horizontal tabs, even though RFC 7230 defines optional whitespace as both space and tab. NVD: As a result, an entry padded with a tab keeps the literal tab in the resolved address string.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "OSV", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://cna.openjsf.org/security-advisories.html"}, {"source": "Reference", "type": "reference", "url": "https://github.com/fastify/forwarded/security/advisories/GHSA-2849-m2w7-xm8f"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-18174"}, {"source": "Official Reference", "type": "reference", "url": "https://osv.dev/vulnerability/CVE-2026-18174"}], "source_published_impact": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for defensive exposure review.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: @fastify/forwarded resolves client addresses from the X-Forwarded-For header. NVD: In versions before 3.0.2, when the header contains two or more comma separated entries, the parser trims only space characters and does not strip horizontal tabs, even though RFC 7230 defines optional whitespace as both space and tab. NVD: As a result, an entry padded with a tab keeps the literal tab in the resolved address string.", "sources": ["NVD", "OSV", "Vendor Advisory"], "summary": "CVE-2026-18174 is a defensive prioritization candidate. NVD lists CVSS severity as MEDIUM. CVSS score is 5.3. EPSS score is 0.0019 with percentile 0.0921. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-18174 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 5.3, "disclosure_freshness": 0.9617, "epss_percentile": 0.09205, "epss_score": 0.00193, "evidence_confidence": 0.8333, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-18174", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T16:43:03.817000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 9.205, "priority_area": 53.0921, "published_at": "2026-07-29T14:16:28.790000Z", "remediation_reference_count": 2, "schema_version": "vuln-treemap-node-v1", "severity": "medium", "source_count": 6}, "updated_at": "2026-07-30T16:43:03.817", "urgency_reasons": ["vendor advisory present", "recent update", "remediation reference present"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "This medium severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for defensive exposure review; CVSS 5.3 (MEDIUM); EPSS percentile 9; sources: NVD, OSV."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-33385/", "cvss_score": 5.1, "cvss_severity": "MEDIUM", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-33385.json", "defensive_priority": "Routine monitoring candidate", "epss_percentile": 0.1523, "epss_score": 0.0024, "exposure_hint": "exposure unknown", "human_consequence": "An attacker may be able to read or change database-backed application data.", "human_impact_label": "SQL injection risk", "human_risk_summary": "CVE-2026-33385: An attacker may be able to read or change database-backed application data.", "id": "CVE-2026-33385", "impact_tags": ["SQL injection risk"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes SQL injection risk. Possible impact: An attacker may be able to read or change database-backed application data.", "public_human_summary": "NVD: A Blind SQL injection vulnerability has been identified in Quick.CMS. NVD: Improper neutralization of input provided by a high-privileged user into multiple fields in administration panel allows for Blind SQL Injection attacks. NVD: The vendor states that this administration panel already allows for significant modification capabilities.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes SQL injection risk. Possible impact: An attacker may be able to read or change database-backed application data.; CVSS 5.1 (MEDIUM); EPSS percentile 15; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: A Blind SQL injection vulnerability has been identified in Quick.CMS. NVD: Improper neutralization of input provided by a high-privileged user into multiple fields in administration panel allows for Blind SQL Injection attacks. NVD: The vendor states that this administration panel already allows for significant modification capabilities.", "public_status": "public_safe", "published_at": "2026-07-29T13:18:08.400", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-33385-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-33385.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-33385.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-33385"], "sort_priority": 51.1523, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: A Blind SQL injection vulnerability has been identified in Quick.CMS. NVD: Improper neutralization of input provided by a high-privileged user into multiple fields in administration panel allows for Blind SQL Injection attacks. NVD: The vendor states that this administration panel already allows for significant modification capabilities.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://cert.pl/posts/2026/07/CVE-2026-33385/"}, {"source": "Reference", "type": "reference", "url": "https://opensolution.org/home.html"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-33385"}], "source_published_impact": "Source describes SQL injection risk. Possible impact: An attacker may be able to read or change database-backed application data.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: A Blind SQL injection vulnerability has been identified in Quick.CMS. NVD: Improper neutralization of input provided by a high-privileged user into multiple fields in administration panel allows for Blind SQL Injection attacks. NVD: The vendor states that this administration panel already allows for significant modification capabilities.", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-33385 is a defensive prioritization candidate. NVD lists CVSS severity as MEDIUM. CVSS score is 5.1. EPSS score is 0.0024 with percentile 0.1523. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-33385 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 5.1, "disclosure_freshness": 0.9615, "epss_percentile": 0.1523, "epss_score": 0.0024, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-33385", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T19:09:20.717000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 15.23, "priority_area": 51.1523, "published_at": "2026-07-29T13:18:08.400000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "medium", "source_count": 2}, "updated_at": "2026-07-30T19:09:20.717", "urgency_reasons": ["vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "An attacker may be able to read or change database-backed application data; CVSS 5.1 (MEDIUM); EPSS percentile 15; sources: NVD."}], "footerStats": {"dataSources": 3, "itemCount": 20}, "generatedAt": "2026-08-05T11:35:52.472520+00:00", "observedBuckets": {"2026-08-05": 20}, "reportPreview": {"count": 20, "defensive_checklist": ["Confirm affected products", "Review official source references", "Prioritize KEV, critical CVSS, and high EPSS percentile items", "Record human confirmation"], "mode": "read_only_public_beta_dashboard", "safety": {"procedural_detail": false, "public_launch": true, "scanner_execution": false}, "severity_distribution": {"CRITICAL": 5, "HIGH": 8, "LOW": 0, "MEDIUM": 7, "NONE": 0, "UNKNOWN": 0}, "top_risk": "CVE-2026-65884"}, "severityDistribution": {"CRITICAL": 5, "HIGH": 8, "LOW": 0, "MEDIUM": 7, "NONE": 0, "UNKNOWN": 0}, "sourceDistribution": {"NVD": 20, "OSV": 4, "Vendor Advisory": 20}, "sourceHealth": {"deploy_mode": "fresh_fetch", "errors": [], "generated_at": "2026-08-05T11:32:09.395078+00:00", "normalized_count": 20, "note": "Latest public surface was generated from a successful safety-gated source fetch.", "public_safe_count": 20, "source_counts": {"epss": 20, "nvd": 20, "osv": 4}, "source_error_count": 0, "status": "healthy", "summary_available": true}, "sourceStatus": [{"count": 20, "errorType": null, "lastObserved": "2026-08-05", "name": "NVD", "status": "healthy"}, {"count": 20, "errorType": null, "lastObserved": "2026-08-05", "name": "EPSS", "status": "healthy"}, {"count": 4, "errorType": null, "lastObserved": "2026-08-05", "name": "OSV", "status": "healthy"}, {"count": 0, "errorType": null, "lastObserved": "2026-08-05", "name": "CISA KEV", "status": "not observed"}, {"count": 20, "errorType": null, "lastObserved": "2026-08-05", "name": "Vendor Advisory", "status": "observed"}], "topRisks": [{"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-65884/", "cvss_score": 10.0, "cvss_severity": "CRITICAL", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-65884.json", "defensive_priority": "Priority review candidate", "epss_percentile": 0.16281, "epss_score": 0.00249, "exposure_hint": "exposure unknown", "human_consequence": "An attacker may cross a privilege boundary and gain more access than intended.", "human_impact_label": "privilege escalation risk", "human_risk_summary": "CVE-2026-65884: An attacker may cross a privilege boundary and gain more access than intended.", "id": "CVE-2026-65884", "impact_tags": ["privilege boundary review"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes privilege escalation risk. Possible impact: An attacker may cross a privilege boundary and gain more access than intended.", "public_human_summary": "NVD: Joomla Extension - balbooa.com - Privilege Escalation in Gridbox < 2.20.2 - The registration method allows users provided usergroup IDs, allowing unauthenticated actors to register new accounts with administrative permissions.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes privilege escalation risk. Possible impact: An attacker may cross a privilege boundary and gain more access than intended.; CVSS 10.0 (CRITICAL); EPSS percentile 16; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: Joomla Extension - balbooa.com - Privilege Escalation in Gridbox < 2.20.2 - The registration method allows users provided usergroup IDs, allowing unauthenticated actors to register new accounts with administrative permissions.", "public_status": "public_safe", "published_at": "2026-07-29T13:19:10.677", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65884-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65884.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65884.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-65884"], "sort_priority": 100.16281, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: Joomla Extension - balbooa.com - Privilege Escalation in Gridbox < 2.20.2 - The registration method allows users provided usergroup IDs, allowing unauthenticated actors to register new accounts with administrative permissions.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://mysites.guru/blog/gridbox-23-critical-vulnerabilities/"}, {"source": "Reference", "type": "reference", "url": "https://www.balbooa.com/gridbox"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-65884"}], "source_published_impact": "Source describes privilege escalation risk. Possible impact: An attacker may cross a privilege boundary and gain more access than intended.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: Joomla Extension - balbooa.com - Privilege Escalation in Gridbox < 2.20.2 - The registration method allows users provided usergroup IDs, allowing unauthenticated actors to register new accounts with administrative permissions.", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-65884 is a defensive prioritization candidate. NVD lists CVSS severity as CRITICAL. CVSS score is 10.0. EPSS score is 0.0025 with percentile 0.1628. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-65884 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 10.0, "disclosure_freshness": 0.9615, "epss_percentile": 0.16281, "epss_score": 0.00249, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-65884", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T14:06:56.363000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 16.281, "priority_area": 100.1628, "published_at": "2026-07-29T13:19:10.677000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "critical", "source_count": 2}, "updated_at": "2026-07-30T14:06:56.363", "urgency_reasons": ["CVSS CRITICAL", "vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "An attacker may cross a privilege boundary and gain more access than intended; CVSS 10.0 (CRITICAL); EPSS percentile 16; sources: NVD."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-65885/", "cvss_score": 9.4, "cvss_severity": "CRITICAL", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-65885.json", "defensive_priority": "Priority review candidate", "epss_percentile": 0.1657, "epss_score": 0.00251, "exposure_hint": "authenticated boundary", "human_consequence": "An attacker may be able to run code or commands on affected systems.", "human_impact_label": "code execution review · authenticated boundary", "human_risk_summary": "CVE-2026-65885: An attacker may be able to run code or commands on affected systems.", "id": "CVE-2026-65885", "impact_tags": ["code execution review", "authenticated boundary review"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes code execution review · authenticated boundary. Possible impact: An attacker may be able to run code or commands on affected systems.", "public_human_summary": "NVD: Joomla Extension - balbooa.com - Authenticated arbitrary file upload in Gridbox < 2.20.2 - File upload methods allows authenticated attackers to upload arbitrary files. NVD: Turns into an authenticated RCE if combined with CVE-2026-65884 as the required account can be created by the attacker.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes code execution review · authenticated boundary. Possible impact: An attacker may be able to run code or commands on affected systems.; CVSS 9.4 (CRITICAL); EPSS percentile 17; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: Joomla Extension - balbooa.com - Authenticated arbitrary file upload in Gridbox < 2.20.2 - File upload methods allows authenticated attackers to upload arbitrary files. NVD: Turns into an authenticated RCE if combined with CVE-2026-65884 as the required account can be created by the attacker.", "public_status": "public_safe", "published_at": "2026-07-29T13:19:10.820", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65885-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65885.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65885.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-65885"], "sort_priority": 94.1657, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: Joomla Extension - balbooa.com - Authenticated arbitrary file upload in Gridbox < 2.20.2 - File upload methods allows authenticated attackers to upload arbitrary files. NVD: Turns into an authenticated RCE if combined with CVE-2026-65884 as the required account can be created by the attacker.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://mysites.guru/blog/gridbox-23-critical-vulnerabilities/"}, {"source": "Reference", "type": "reference", "url": "https://www.balbooa.com/gridbox"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-65885"}], "source_published_impact": "Source describes code execution review · authenticated boundary. Possible impact: An attacker may be able to run code or commands on affected systems.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: Joomla Extension - balbooa.com - Authenticated arbitrary file upload in Gridbox < 2.20.2 - File upload methods allows authenticated attackers to upload arbitrary files. NVD: Turns into an authenticated RCE if combined with CVE-2026-65884 as the required account can be created by the attacker.", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-65885 is a defensive prioritization candidate. NVD lists CVSS severity as CRITICAL. CVSS score is 9.4. EPSS score is 0.0025 with percentile 0.1657. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-65885 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 9.4, "disclosure_freshness": 0.9615, "epss_percentile": 0.1657, "epss_score": 0.00251, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-65885", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T14:06:56.363000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 16.57, "priority_area": 94.1657, "published_at": "2026-07-29T13:19:10.820000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "critical", "source_count": 2}, "updated_at": "2026-07-30T14:06:56.363", "urgency_reasons": ["CVSS CRITICAL", "vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "An attacker may be able to run code or commands on affected systems; CVSS 9.4 (CRITICAL); EPSS percentile 17; sources: NVD."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-0667/", "cvss_score": 9.3, "cvss_severity": "CRITICAL", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-0667.json", "defensive_priority": "Priority review candidate", "epss_percentile": 0.29569, "epss_score": 0.00369, "exposure_hint": "exposure unknown", "human_consequence": "An attacker may be able to run code or commands on affected systems.", "human_impact_label": "code execution review · service availability risk", "human_risk_summary": "CVE-2026-0667: An attacker may be able to run code or commands on affected systems.", "id": "CVE-2026-0667", "impact_tags": ["code execution review", "service availability review"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes code execution review · service availability risk. Possible impact: An attacker may be able to run code or commands on affected systems.", "public_human_summary": "NVD: CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability that could cause arbitrary code execution, denial of service and loss of confidentiality & integrity when communicating over the Modbus TCP protocol.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes code execution review · service availability risk. Possible impact: An attacker may be able to run code or commands on affected systems.; CVSS 9.3 (CRITICAL); EPSS percentile 30; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability that could cause arbitrary code execution, denial of service and loss of confidentiality & integrity when communicating over the Modbus TCP protocol.", "public_status": "public_safe", "published_at": "2026-07-29T13:17:29.180", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-0667-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-0667.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-0667.md", "scan_allowed": false}, "remediation_urls": ["https://download.se.com/files?p_Doc_Ref=SEVD-2026-041-01&p_enDocType=Security+and+Safety+Notice&p_File_Name=SEVD-2026-041-01.pdf"], "sort_priority": 93.29569, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability that could cause arbitrary code execution, denial of service and loss of confidentiality & integrity when communicating over the Modbus TCP protocol.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://download.se.com/files?p_Doc_Ref=SEVD-2026-041-01&p_enDocType=Security+and+Safety+Notice&p_File_Name=SEVD-2026-041-01.pdf"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-0667"}], "source_published_impact": "Source describes code execution review · service availability risk. Possible impact: An attacker may be able to run code or commands on affected systems.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability that could cause arbitrary code execution, denial of service and loss of confidentiality & integrity when communicating over the Modbus TCP protocol.", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-0667 is a defensive prioritization candidate. NVD lists CVSS severity as CRITICAL. CVSS score is 9.3. EPSS score is 0.0037 with percentile 0.2957. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-0667 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 9.3, "disclosure_freshness": 0.9615, "epss_percentile": 0.29569, "epss_score": 0.00369, "evidence_confidence": 0.8333, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-0667", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T16:43:03.817000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 29.569, "priority_area": 93.2957, "published_at": "2026-07-29T13:17:29.180000Z", "remediation_reference_count": 1, "schema_version": "vuln-treemap-node-v1", "severity": "critical", "source_count": 3}, "updated_at": "2026-07-30T16:43:03.817", "urgency_reasons": ["CVSS CRITICAL", "vendor advisory present", "recent update", "remediation reference present"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "An attacker may be able to run code or commands on affected systems; CVSS 9.3 (CRITICAL); EPSS percentile 30; sources: NVD."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-65889/", "cvss_score": 9.2, "cvss_severity": "CRITICAL", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-65889.json", "defensive_priority": "Priority review candidate", "epss_percentile": 0.24779, "epss_score": 0.00323, "exposure_hint": "exposure unknown", "human_consequence": "This critical severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for critical severity review.", "human_impact_label": "critical severity review", "human_risk_summary": "CVE-2026-65889: This critical severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for critical severity review.", "id": "CVE-2026-65889", "impact_tags": [], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "This critical severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for critical severity review.", "public_human_summary": "NVD: Joomla Extension - balbooa.com - Unauthenticated recursive directory deletion < 2.20.2 - The generateNewApp method allows actors to recursively delete directories.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "This critical severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for critical severity review.; CVSS 9.2 (CRITICAL); EPSS percentile 25; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: Joomla Extension - balbooa.com - Unauthenticated recursive directory deletion < 2.20.2 - The generateNewApp method allows actors to recursively delete directories.", "public_status": "public_safe", "published_at": "2026-07-29T14:16:33.757", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65889-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65889.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65889.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-65889"], "sort_priority": 92.24779, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: Joomla Extension - balbooa.com - Unauthenticated recursive directory deletion < 2.20.2 - The generateNewApp method allows actors to recursively delete directories.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://mysites.guru/blog/gridbox-23-critical-vulnerabilities/"}, {"source": "Reference", "type": "reference", "url": "https://www.balbooa.com/gridbox"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-65889"}], "source_published_impact": "This critical severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for critical severity review.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: Joomla Extension - balbooa.com - Unauthenticated recursive directory deletion < 2.20.2 - The generateNewApp method allows actors to recursively delete directories.", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-65889 is a defensive prioritization candidate. NVD lists CVSS severity as CRITICAL. CVSS score is 9.2. EPSS score is 0.0032 with percentile 0.2478. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-65889 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 9.2, "disclosure_freshness": 0.9617, "epss_percentile": 0.24779, "epss_score": 0.00323, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-65889", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T14:06:56.363000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 24.779, "priority_area": 92.2478, "published_at": "2026-07-29T14:16:33.757000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "critical", "source_count": 2}, "updated_at": "2026-07-30T14:06:56.363", "urgency_reasons": ["CVSS CRITICAL", "vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "This critical severity issue needs human triage to confirm exposure, affected versions, and vendor guidance for critical severity review; CVSS 9.2 (CRITICAL); EPSS percentile 25; sources: NVD."}, {"affected_label": "-", "affected_products": [], "canonical_url": "https://vuln.signal-radar.com/vuln/public-candidate/CVE-2026-65890/", "cvss_score": 9.2, "cvss_severity": "CRITICAL", "data_url": "https://vuln.signal-radar.com/data/vuln/items/CVE-2026-65890.json", "defensive_priority": "Priority review candidate", "epss_percentile": 0.1476, "epss_score": 0.00237, "exposure_hint": "exposure unknown", "human_consequence": "An attacker may be able to read or change database-backed application data.", "human_impact_label": "SQL injection risk", "human_risk_summary": "CVE-2026-65890: An attacker may be able to read or change database-backed application data.", "id": "CVE-2026-65890", "impact_tags": ["SQL injection risk"], "kev": false, "kev_date_added": null, "observed_at": "2026-08-05T11:32:09.387600+00:00", "product": null, "public_human_impact": "Source describes SQL injection risk. Possible impact: An attacker may be able to read or change database-backed application data.", "public_human_summary": "NVD: Joomla Extension - balbooa.com - Unauthenticated SQL injection in Gridbox < 2.20.2 - Multiple SQLi vectors allow unauthenticated actors to inject SQL in queries.", "public_human_what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "public_human_why_it_matters": "Source describes SQL injection risk. Possible impact: An attacker may be able to read or change database-backed application data.; CVSS 9.2 (CRITICAL); EPSS percentile 15; not listed in KEV; Remediation reference present; patch status requires confirmation in the linked advisory; sources: NVD.", "public_safe_summary": "NVD: Joomla Extension - balbooa.com - Unauthenticated SQL injection in Gridbox < 2.20.2 - Multiple SQLi vectors allow unauthenticated actors to inject SQL in queries.", "public_status": "public_safe", "published_at": "2026-07-29T14:16:33.883", "redaction_notes": ["source-published defensive context retained", "vulnerability class, impact, affected context, and remediation references remain displayable"], "remediation_handoff": {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65890-codex-prompt.md", "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65890.json", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65890.md", "scan_allowed": false}, "remediation_urls": ["https://nvd.nist.gov/vuln/detail/CVE-2026-65890"], "sort_priority": 92.1476, "source_copy_policy": {"allowed": "source-published defensive facts, vulnerability class, impact, affected context, version and remediation facts", "excluded": "exploit procedures, exploit strings, shell commands, scanner instructions, procedural bypass detail, and reproduction material", "summary": "Official or semi-official source descriptions may be summarized for defensive triage; exploit-enabling procedure is removed."}, "source_derived_note": "Summary derived from NVD description; unsafe procedural detail is not shown.", "source_label": "NVD, Vendor Advisory", "source_published_affected": "Affected product or version requires source confirmation.", "source_published_description": "NVD: Joomla Extension - balbooa.com - Unauthenticated SQL injection in Gridbox < 2.20.2 - Multiple SQLi vectors allow unauthenticated actors to inject SQL in queries.", "source_published_evidence_refs": [{"source": "NVD", "type": "source_description", "url": null}, {"source": "Reference", "type": "reference", "url": "https://mysites.guru/blog/gridbox-23-critical-vulnerabilities/"}, {"source": "Reference", "type": "reference", "url": "https://www.balbooa.com/gridbox"}, {"source": "Official Reference", "type": "reference", "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-65890"}], "source_published_impact": "Source describes SQL injection risk. Possible impact: An attacker may be able to read or change database-backed application data.", "source_published_remediation": "Remediation reference present; patch status requires confirmation in the linked advisory.", "source_published_summary": "NVD: Joomla Extension - balbooa.com - Unauthenticated SQL injection in Gridbox < 2.20.2 - Multiple SQLi vectors allow unauthenticated actors to inject SQL in queries.", "sources": ["NVD", "Vendor Advisory"], "summary": "CVE-2026-65890 is a defensive prioritization candidate. NVD lists CVSS severity as CRITICAL. CVSS score is 9.2. EPSS score is 0.0024 with percentile 0.1476. Known exploited catalog status is not listed in NVD for this record. Use official advisories and vendor remediation references for defensive review.", "summary_ja": null, "title": "CVE-2026-65890 defensive priority signal", "title_ja": null, "translation": null, "treemap": {"cvss_score": 9.2, "disclosure_freshness": 0.9617, "epss_percentile": 0.1476, "epss_score": 0.00237, "evidence_confidence": 0.6667, "fallbacks": ["group:unmapped"], "group_key": "unmapped", "group_label": "UNMAPPED", "id": "cve:CVE-2026-65890", "kev": false, "kev_date_added": null, "last_modified": "2026-07-30T14:06:56.363000Z", "observation_freshness": 1.0, "observed_at": "2026-08-05T11:32:09.387600Z", "pressure_area": 14.76, "priority_area": 92.1476, "published_at": "2026-07-29T14:16:33.883000Z", "remediation_reference_count": 0, "schema_version": "vuln-treemap-node-v1", "severity": "critical", "source_count": 2}, "updated_at": "2026-07-30T14:06:56.363", "urgency_reasons": ["CVSS CRITICAL", "vendor advisory present", "recent update"], "vendor": null, "what_to_verify": "Confirm affected product/version, vendor advisory, patch or mitigation, and exposure.", "why_it_matters": "An attacker may be able to read or change database-backed application data; CVSS 9.2 (CRITICAL); EPSS percentile 15; sources: NVD."}], "vendorDistribution": {"Unspecified vendor": 20}}, "wellKnown": {"archive_index_url": "https://vuln.signal-radar.com/data/vuln/archive/index.json", "archive_latest_url": "https://vuln.signal-radar.com/data/vuln/archive/latest.json", "auto_remediation_allowed": false, "data_index_url": "https://vuln.signal-radar.com/data/vuln/index.json", "external_execution_allowed": false, "generated_at": "2026-08-05T11:35:52.472520+00:00", "github_issue_creation_allowed": false, "indexing_allowed": true, "machine_readable_surface": {"knowledge_graph_jsonld": {"content_type": "application/ld+json", "description": "JSON-LD graph of radar signals, source links, affected products, and trust metadata for agent-side provenance checks.", "enabled": true, "expected_shape": "@context plus @graph containing radar-specific vulnerability signal nodes", "primary_endpoint": "https://vuln.signal-radar.com/data/v1/graph/latest.jsonld", "well_known_endpoint": "https://vuln.signal-radar.com/.well-known/signal-graph.jsonld"}, "local_first_personal_data_vault": {"capabilities": ["import", "export", "clear", "shape validation"], "contains_public_signal_source_data": false, "description": "Browser-local vault for personal review context such as vendors, products, packages, CPE prefixes, saved signals, muted signals, and preferences.", "enabled": true, "network_behavior": "no fetch, XMLHttpRequest, sendBeacon, WebSocket, or EventSource", "server_sync": false, "storage": "localStorage"}, "purpose": "Expose public-safe vulnerability signals in formats that humans can inspect and AI agents can consume without mutation or external execution.", "rirastafab_trust_layer": {"attestation_ledger": "https://vuln.signal-radar.com/data/v1/attestations/vuln-signal-ledger.json", "canonical_envelope_index": "https://vuln.signal-radar.com/data/v1/proof/canonical-envelope-index.json", "description": "Read-only proof surface with hash-only integrity metadata, canonical envelopes, signed-JSON readiness, EAS preflight metadata, and attestation ledger endpoints.", "enabled": true, "external_submission_performed": false, "proof_latest": "https://vuln.signal-radar.com/data/v1/proof/latest.json", "proof_level": "hash-only", "trust_manifest": "https://vuln.signal-radar.com/.well-known/rirastafab-trust.json"}, "safety_boundary": {"auto_remediation_allowed": false, "external_execution_allowed": false, "github_issue_creation_allowed": false, "patch_allowed": false, "read_only": true, "runtime_server_endpoints": [], "scan_allowed": false}}, "mcp_http_endpoint": null, "pages_functions_enabled": false, "public_launch_allowed": true, "radar": "vuln", "read_only_static_data": true, "remediation_handoff": {"base_path": "/data/v1/remediation-handoff", "index_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/index.json", "item_count": 20, "packs": [{"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65884-codex-prompt.md", "cve_id": "CVE-2026-65884", "epss_percentile": 0.16281, "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65884.json", "kev_status": "not_listed", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65884.md", "product": null, "recommended_route": "vendor_patch_or_mitigation", "scan_allowed": false, "severity": "CRITICAL", "vendor": null}, {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65885-codex-prompt.md", "cve_id": "CVE-2026-65885", "epss_percentile": 0.1657, "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65885.json", "kev_status": "not_listed", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65885.md", "product": null, "recommended_route": "vendor_patch_or_mitigation", "scan_allowed": false, "severity": "CRITICAL", "vendor": null}, {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-0667-codex-prompt.md", "cve_id": "CVE-2026-0667", "epss_percentile": 0.29569, "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-0667.json", "kev_status": "not_listed", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-0667.md", "product": null, "recommended_route": "vendor_patch_or_mitigation", "scan_allowed": false, "severity": "CRITICAL", "vendor": null}, {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65889-codex-prompt.md", "cve_id": "CVE-2026-65889", "epss_percentile": 0.24779, "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65889.json", "kev_status": "not_listed", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65889.md", "product": null, "recommended_route": "vendor_patch_or_mitigation", "scan_allowed": false, "severity": "CRITICAL", "vendor": null}, {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65890-codex-prompt.md", "cve_id": "CVE-2026-65890", "epss_percentile": 0.1476, "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65890.json", "kev_status": "not_listed", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65890.md", "product": null, "recommended_route": "vendor_patch_or_mitigation", "scan_allowed": false, "severity": "CRITICAL", "vendor": null}, {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-14270-codex-prompt.md", "cve_id": "CVE-2026-14270", "epss_percentile": 0.42799, "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-14270.json", "kev_status": "not_listed", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-14270.md", "product": null, "recommended_route": "vendor_patch_or_mitigation", "scan_allowed": false, "severity": "HIGH", "vendor": null}, {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65944-codex-prompt.md", "cve_id": "CVE-2026-65944", "epss_percentile": 0.03057, "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65944.json", "kev_status": "not_listed", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65944.md", "product": null, "recommended_route": "vendor_patch_or_mitigation", "scan_allowed": false, "severity": "HIGH", "vendor": null}, {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-55995-codex-prompt.md", "cve_id": "CVE-2026-55995", "epss_percentile": 0.16635, "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-55995.json", "kev_status": "not_listed", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-55995.md", "product": null, "recommended_route": "vendor_patch_or_mitigation", "scan_allowed": false, "severity": "HIGH", "vendor": null}, {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-14354-codex-prompt.md", "cve_id": "CVE-2026-14354", "epss_percentile": 0.01912, "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-14354.json", "kev_status": "not_listed", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-14354.md", "product": null, "recommended_route": "vendor_patch_or_mitigation", "scan_allowed": false, "severity": "HIGH", "vendor": null}, {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-44944-codex-prompt.md", "cve_id": "CVE-2026-44944", "epss_percentile": 0.00653, "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-44944.json", "kev_status": "not_listed", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-44944.md", "product": null, "recommended_route": "vendor_patch_or_mitigation", "scan_allowed": false, "severity": "HIGH", "vendor": null}, {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-12927-codex-prompt.md", "cve_id": "CVE-2026-12927", "epss_percentile": 0.1015, "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-12927.json", "kev_status": "not_listed", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-12927.md", "product": null, "recommended_route": "vendor_patch_or_mitigation", "scan_allowed": false, "severity": "HIGH", "vendor": null}, {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65943-codex-prompt.md", "cve_id": "CVE-2026-65943", "epss_percentile": 0.14165, "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65943.json", "kev_status": "not_listed", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65943.md", "product": null, "recommended_route": "vendor_patch_or_mitigation", "scan_allowed": false, "severity": "HIGH", "vendor": null}, {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-50641-codex-prompt.md", "cve_id": "CVE-2026-50641", "epss_percentile": 0.05664, "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-50641.json", "kev_status": "not_listed", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-50641.md", "product": null, "recommended_route": "vendor_patch_or_mitigation", "scan_allowed": false, "severity": "HIGH", "vendor": null}, {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-44943-codex-prompt.md", "cve_id": "CVE-2026-44943", "epss_percentile": 0.25549, "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-44943.json", "kev_status": "not_listed", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-44943.md", "product": null, "recommended_route": "vendor_patch_or_mitigation", "scan_allowed": false, "severity": "MEDIUM", "vendor": null}, {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-16751-codex-prompt.md", "cve_id": "CVE-2026-16751", "epss_percentile": 0.21758, "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-16751.json", "kev_status": "not_listed", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-16751.md", "product": null, "recommended_route": "vendor_patch_or_mitigation", "scan_allowed": false, "severity": "MEDIUM", "vendor": null}, {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65891-codex-prompt.md", "cve_id": "CVE-2026-65891", "epss_percentile": 0.09481, "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65891.json", "kev_status": "not_listed", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65891.md", "product": null, "recommended_route": "vendor_patch_or_mitigation", "scan_allowed": false, "severity": "MEDIUM", "vendor": null}, {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-66400-codex-prompt.md", "cve_id": "CVE-2026-66400", "epss_percentile": 0.04881, "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-66400.json", "kev_status": "not_listed", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-66400.md", "product": null, "recommended_route": "vendor_patch_or_mitigation", "scan_allowed": false, "severity": "MEDIUM", "vendor": null}, {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65946-codex-prompt.md", "cve_id": "CVE-2026-65946", "epss_percentile": 0.04577, "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65946.json", "kev_status": "not_listed", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-65946.md", "product": null, "recommended_route": "vendor_patch_or_mitigation", "scan_allowed": false, "severity": "MEDIUM", "vendor": null}, {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-18174-codex-prompt.md", "cve_id": "CVE-2026-18174", "epss_percentile": 0.09205, "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-18174.json", "kev_status": "not_listed", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-18174.md", "product": null, "recommended_route": "vendor_patch_or_mitigation", "scan_allowed": false, "severity": "MEDIUM", "vendor": null}, {"auto_remediation_allowed": false, "codex_prompt_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-33385-codex-prompt.md", "cve_id": "CVE-2026-33385", "epss_percentile": 0.1523, "external_execution_allowed": false, "human_approval_required": true, "json_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-33385.json", "kev_status": "not_listed", "markdown_url": "https://vuln.signal-radar.com/data/v1/remediation-handoff/CVE-2026-33385.md", "product": null, "recommended_route": "vendor_patch_or_mitigation", "scan_allowed": false, "severity": "MEDIUM", "vendor": null}], "runtime_endpoint": false}, "runtime_endpoints": [], "schema_url": "https://vuln.signal-radar.com/data/vuln/schema.json", "schema_version": "v0.1", "search_console_registered": true, "signal_radar_integration_allowed": false, "source_health": {"deploy_mode": "fresh_fetch", "errors": [], "generated_at": "2026-08-05T11:32:09.395078+00:00", "normalized_count": 20, "note": "Latest public surface was generated from a successful safety-gated source fetch.", "public_safe_count": 20, "source_counts": {"epss": 20, "nvd": 20, "osv": 4}, "source_error_count": 0, "status": "healthy", "summary_available": true}, "trust_layer": {"attestation_ledger_envelope_url": "https://vuln.signal-radar.com/data/v1/proof/envelopes/attestation-ledger.json", "attestation_ledger_url": "https://vuln.signal-radar.com/data/v1/attestations/vuln-signal-ledger.json", "canonical_envelope_index_url": "https://vuln.signal-radar.com/data/v1/proof/canonical-envelope-index.json", "canonical_envelope_url": "https://vuln.signal-radar.com/data/v1/proof/canonical-envelope.json", "canonical_policy_url": "https://vuln.signal-radar.com/data/v1/proof/canonical-policy.json", "canonicalization_profile": "json-sort-keys-no-whitespace-v0", "eas_candidate_url": "https://vuln.signal-radar.com/data/v1/proof/eas-candidate.json", "eas_dry_run_status": "local_only", "eas_encoder_dry_run_url": "https://vuln.signal-radar.com/data/v1/proof/eas-encoder-dry-run.json", "eas_encoder_mode": "local_shape_check", "eas_mode": "reserved_offchain", "eas_preflight_url": "https://vuln.signal-radar.com/data/v1/proof/eas-preflight.json", "eas_rc_status": "frozen", "eas_rc_status_url": "https://vuln.signal-radar.com/data/v1/proof/eas-rc-status.json", "eas_schema_mapping_url": "https://vuln.signal-radar.com/data/v1/proof/eas-schema-mapping.json", "eas_schema_registration_status": "not_registered", "eas_sdk_adapter_contract_url": "https://vuln.signal-radar.com/data/v1/proof/eas-sdk-adapter-contract.json", "eas_sdk_encode_dry_run_url": "https://vuln.signal-radar.com/data/v1/proof/eas-sdk-encode-dry-run.json", "eas_sdk_execution_status": "not_available", "eas_status": "not_enabled", "eas_submission_status": "not_submitted", "eas_typed_payload_url": "https://vuln.signal-radar.com/data/v1/proof/eas-typed-payload.json", "external_call_performed": false, "manifest_url": "https://vuln.signal-radar.com/.well-known/rirastafab-trust.json", "proof_archive_index_url": "https://vuln.signal-radar.com/data/v1/proof/archive-index.json", "proof_latest_envelope_url": "https://vuln.signal-radar.com/data/v1/proof/envelopes/proof-latest.json", "proof_latest_url": "https://vuln.signal-radar.com/data/v1/proof/latest.json", "proof_level": "hash-only", "public_key_status": "not_available_until_signature_enabled", "public_key_url": "https://vuln.signal-radar.com/data/v1/proof/public-key.json", "remediation_proof_status": "not_enabled", "signal_graph_url": "https://vuln.signal-radar.com/data/v1/graph/latest.jsonld", "signature_algorithm": "Ed25519", "signature_status": "not_enabled", "signature_target_url": "https://vuln.signal-radar.com/data/v1/proof/canonical-envelope-index.json", "signed_json_ready": true, "signed_json_status_url": "https://vuln.signal-radar.com/data/v1/proof/signed-json-status.json", "signing_target_status": "preflight_frozen", "source_health_url": "https://vuln.signal-radar.com/data/v1/source-health.json", "status": "public_indexable", "trust_layer_eas_version": "0.3-rc", "trust_layer_version": "0.1", "trust_manifest_envelope_url": "https://vuln.signal-radar.com/data/v1/proof/envelopes/trust-manifest.json", "well_known_signal_graph_url": "https://vuln.signal-radar.com/.well-known/signal-graph.jsonld"}, "webmcp_runtime": {"annotations": {"readOnlyHint": true, "untrustedContentHint": true}, "api": "document.modelContext", "auto_remediation_allowed": false, "cross_origin_exposure_allowed": false, "deploy_allowed": false, "enabled": true, "endpoint": null, "exposed_to": [], "external_execution_allowed": false, "fallback_api": "navigator.modelContext", "fetch_allowed": false, "github_issue_creation_allowed": false, "mode": "browser_imperative_progressive_enhancement", "mutation_allowed": false, "planned": false, "scan_allowed": false, "tool_output_max_items": 10, "tool_output_target_max_chars": 1500, "tools": ["vuln_signal_search", "vuln_signal_get_item", "vuln_signal_list_priority"]}, "worker_enabled": false}}</template>
<script src="/assets/vuln/gsap.min.js?v=20260718-vuln-treemap-1" defer></script><script src="/assets/vuln/d3-hierarchy.min.js?v=20260718-vuln-treemap-1" defer></script><script src="/assets/vuln/vuln-treemap.js?v=20260718-vuln-treemap-1" defer></script><script src="/assets/vuln/dashboard.js?v=20260718-vuln-treemap-1" defer></script><script src="/assets/vuln/ScrambleTextPlugin.min.js?v=20260718-vuln-treemap-1" defer></script><script src="/assets/vuln/motion-links.js?v=20260718-vuln-treemap-1" defer></script>
</body></html>