Newly released CVEs across every platform — sleek to read, verbose on demand, and served raw as markdown for AI and agent ingestion. Severity reads as depth: the deeper the contact, the graver the threat.
Depth = severity + exploitation
CVE-2026-24073High· 7.8Memory corruption when processing decode statistics due to insufficient validation of offset against structure size.
CVE-2026-24081High· 7.4Transient DOS when processing a channel map with insufficient used channels and adaptive frequency hopping is fully enabled.
CVE-2026-24075High· 7.8Memory Corruption when multiple threads issue concurrent IOCTL requests to the device control handler due to improper synchronization and race conditions.
CVE-2026-24074High· 7.8Memory Corruption when processing data with large offset and length values exceeds buffer limits during data copy operations.
CVE-2026-25261Medium· 6.7Memory corruption while processing rear sensor IOCTL calls.
CVE-2025-59607High· 7.8Memory Corruption when copying large input data exceeds normal allocation limits.
CVE-2026-25281High· 7.4Transient DOS when processing large or numerous request buffers without sufficient memory allocation validation.
CVE-2026-25275High· 7.5Transient DOS when processing authentication frames with invalid FILS information element header lengths.
CVE-2026-25282High· 7.9Transient DOS when processing unverified data from a neighboring system causes out of bound memory access.
CVE-2026-25278High· 7.8Memory Corruption when processing I2C transfer requests due to a race condition between memory allocation and data copying.
CVE-2026-25290High· 7.8Memory Corruption when validating large data buffers from external sources using addition to check buffer length.
CVE-2026-25284High· 7.3Information Disclosure when a pointer is reused after being deallocated.
CVE-2026-25283High· 8.8Memory Corruption when copying unverified data from an external source exceeds the allocated buffer size.
CVE-2026-25294High· 7.4Transient DOS while parsing frame during channel usage.
CVE-2026-25280High· 7.8Memory corruption when processing escape handling flow with insufficient user buffer sizes.
A summary of everything that shipped over the last two weeks — the whole corpus is open, agents get change feeds, alias resolution and EPSS movers, and the data now includes CVE.org, vendor CSAF, aggregated exploits and per-source scores.
A step-by-step guide to plugging VulnSea into automated and agentic workflows — poll the delta, triage without burning tokens, match an SBOM, and let an MCP-native model do the reasoning.
CVE and 0day intelligence that reads like an instrument — built for analysts and AI agents alike. Here's what it does and where it's going.