VulnSea

Daily digest

Sunday 9 August 2026

90 new CVEs this day, in line with the recent average. Of those, 11 critical and 9 high. 2 arrived with exploitation evidence or public exploit code already attached. MSI was the most-affected vendor with 10.

90
New CVEs
11
Critical
0
KEV additions
0
Records changed

New this day, ranked by depth score

The 12 that matter most of the 90 published.

CVE-2026-71993Critical· 9.8
1mo ago

MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the openvpn function that allows remote attackers to execute arbitrary commands on the affected device

MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the openvpn function that allows remote attackers to execute arbitrary commands on the affected device. Attackers can exploit the macfilter f…

▾ MidnightMSI · Radix AXE6600EPSS 1.4%via NVD
CVE-2026-71992Critical· 9.8
1mo ago

MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the macfilter function that allows remote attackers to execute arbitrary commands on the affected device

MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the macfilter function that allows remote attackers to execute arbitrary commands on the affected device. Attackers can exploit the macfilter…

▾ MidnightMSI · Radix AXE6600EPSS 1.4%via NVD
CVE-2026-71991Critical· 9.8
1mo ago

MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the TelnetSSH function used for Telnet configuration that allows remote attackers to execute arbitrary commands on the affected device

MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the TelnetSSH function used for Telnet configuration that allows remote attackers to execute arbitrary commands on the affected device. Attac…

▾ MidnightMSI · Radix AXE6600EPSS 1.4%via NVD
CVE-2026-71990Critical· 9.8
1mo ago

MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the TelnetSSH function used for SSH configuration that allows remote attackers to execute arbitrary commands on the affected device

MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the TelnetSSH function used for SSH configuration that allows remote attackers to execute arbitrary commands on the affected device. Attacker…

▾ MidnightMSI · Radix AXE6600EPSS 1.4%via NVD
CVE-2026-71989Critical· 9.8
1mo ago

MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the porTrigger function that allows remote attackers to execute arbitrary commands on the affected device

MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the porTrigger function that allows remote attackers to execute arbitrary commands on the affected device. Attackers can exploit this vulnera…

▾ MidnightMSI · Radix AXE6600EPSS 1.4%via NVD
CVE-2026-71988Critical· 9.8
1mo ago

MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the portFw function that allows remote attackers to execute arbitrary commands on the affected device

MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the portFw function that allows remote attackers to execute arbitrary commands on the affected device. Attackers can exploit this vulnerabili…

▾ MidnightMSI · Radix AXE6600EPSS 1.4%via NVD
CVE-2026-71987Critical· 9.8
1mo ago

MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the alg function that allows remote attackers to execute arbitrary commands on the affected device

MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the alg function that allows remote attackers to execute arbitrary commands on the affected device. Attackers can exploit this vulnerability …

▾ MidnightMSI · Radix AXE6600EPSS 1.4%via NVD
CVE-2026-71986Critical· 9.8
1mo ago

MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the dmz function that allows remote attackers to execute arbitrary commands on the affected device

MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the dmz function that allows remote attackers to execute arbitrary commands on the affected device. Attackers can exploit this vulnerability …

▾ MidnightMSI · Radix AXE6600EPSS 1.4%via NVD
CVE-2026-71985Critical· 9.8
1mo ago

MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the accesscontrol function that allows remote attackers to execute arbitrary commands on the affected device

MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the accesscontrol function that allows remote attackers to execute arbitrary commands on the affected device. Attackers can exploit this vuln…

▾ MidnightMSI · Radix AXE6600EPSS 1.4%via NVD
CVE-2026-71984Critical· 9.8
1mo ago

MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the urlfilter function that allows remote attackers to execute arbitrary commands on the affected device

MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the urlfilter function that allows remote attackers to execute arbitrary commands on the affected device. Attackers can exploit the urlfilter…

▾ MidnightMSI · Radix AXE6600EPSS 1.4%via NVD
CVE-2026-19348Critical· 9.8
1mo ago

A security flaw has been discovered in Shenzhen Aitemi M300 Wi-Fi Repeater r0-ea7890a

A security flaw has been discovered in Shenzhen Aitemi M300 Wi-Fi Repeater r0-ea7890a. Impacted is the function sprintf of the file /protocol.csp?fname=net&opt=smacfilter_conf&function=set&act=add&name=test&enable=1. Performing a manipul…

▾ MidnightEPSS 2.0%via NVD
CVE-2026-19346High· 8.8
1mo ago

A vulnerability was determined in Tenda CH22 1.0.0.1

A vulnerability was determined in Tenda CH22 1.0.0.1. This vulnerability affects the function formCertListInfo of the file /goform/CertListInfo. This manipulation of the argument Name causes command injection. The attack can be initiated…

▾ TwilightEPSS 1.6%via NVD

Most-affected vendors

By CVEs published in the period.