VulnSea

Daily digest

Wednesday 19 August 2026

243 new CVEs this day, in line with the recent average. Severity skewed high: 42 critical and 104 high, 60% of the total. 17 arrived with exploitation evidence or public exploit code already attached. CISA added one CVE to the Known Exploited Vulnerabilities catalog. Wireshark Foundation was the most-affected vendor with 15.

243
New CVEs
42
Critical
1
KEV additions
2
Records changed

Added to CISA KEV

Confirmed exploitation in the wild — federal remediation deadlines attach to these.

New this day, ranked by depth score

The 12 that matter most of the 243 published.

CVE-2026-19490Critical· 9.8CISA KEVPoC
1mo ago

Vulnerability in NetScaler ADC and NetScaler Gateway. This issue affects ADC: from 14.1 through 73.32 and from 13.1 through 63.21; Gateway: from 14.1 through 73.32 and from 13.1 through 63.21.

Vulnerability in NetScaler ADC and NetScaler Gateway. This issue affects ADC: from 14.1 through 73.32 and from 13.1 through 63.21; Gateway: from 14.1 through 73.32 and from 13.1 through 63.21.

Hadalcitrix · netscaler_application_delivery_controllerEPSS 5.6%via NVD
CVE-2026-53546Critical· 9.6PoC
1mo ago

Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities

Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities. Prior to 2.3.2, the terminal WebSocket accepts a user-controlled hostConfig.id and src/backend/ssh/host-resolver.ts resolves th…

AbyssalTermix-SSH · TermixEPSS 0.44%via NVD
CVE-2026-71960Critical· 9.1PoC
1mo ago

Cudy WR3000 2.0 running firmware before 2.5.24 contains a hard-coded JWT HMAC signing secret vulnerability in the Mosquitto MQTT broker's authentication plugin that allows unauthenticated attackers to forge valid JWT tokens by extracting…

Cudy WR3000 2.0 running firmware before 2.5.24 contains a hard-coded JWT HMAC signing secret vulnerability in the Mosquitto MQTT broker's authentication plugin that allows unauthenticated attackers to forge valid JWT tokens by extracting…

AbyssalShenzhen Cudy Technology Co., Ltd. · WR3000 2.0EPSS 0.54%via NVD
CVE-2026-55194High· 8.7PoC
1mo ago

FreeRDP is a free implementation of the Remote Desktop Protocol

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.27.0, rpc_client_recv_fragment in libfreerdp/core/gateway/rpc_client.c ensures the response reassembly stream capacity using only the server-declared alloc_hint …

MidnightFreeRDP · FreeRDPEPSS 0.46%via NVD
CVE-2026-76003Critical· 9.9
1mo ago

A weakness has been identified in UTT HiPER 1200GW up to 2.5.3-170306

A weakness has been identified in UTT HiPER 1200GW up to 2.5.3-170306. Affected is the function strcpy of the file /goform/formGroupConfig. Executing a manipulation of the argument timestart can lead to stack-based buffer overflow. The a…

MidnightEPSS 0.46%via NVD
CVE-2026-55089Critical· 9.9
1mo ago

Etherpad is a real-time collaborative editor

Etherpad is a real-time collaborative editor. From 2.1.0 until 3.1.0, Etherpad's src/node/handler/APIHandler.ts authorizes requests to /api/2/* in the authorization_code OAuth path by using requiredClaims with the admin claim. This check…

MidnightEPSS 0.44%via NVD
CVE-2026-51366Critical· 9.9
1mo ago

SQL Injection vulnerability in Bottinelli Informatica Vedo Suite v.1.2.5 allows a remote attacker to execute arbitrary code via the api_vedo/chat endpoint and the utente_chat parameter

SQL Injection vulnerability in Bottinelli Informatica Vedo Suite v.1.2.5 allows a remote attacker to execute arbitrary code via the api_vedo/chat endpoint and the utente_chat parameter

MidnightEPSS 0.55%via NVD
CVE-2026-20317Critical· 10.0
1mo ago

Cisco Secure Workload Software Security Hardening Release August 2026 - Improper Authentication Vulnerabilities

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Workload engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that ad…

MidnightCisco · Cisco Secure WorkloadEPSS 0.44%via CSAF
CVE-2026-20315Critical· 10.0
1mo ago

Cisco Secure Workload Software Security Hardening Release August 2026 - Improper Access Control Vulnerabilities

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Workload engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that ad…

MidnightCisco · Cisco Secure WorkloadEPSS 0.41%via CSAF
CVE-2026-20231Critical· 9.9
1mo ago

Cisco Secure Workload Software Security Hardening Release August 2026 - Improper Neutralization of Special Elements Vulnerabilities

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Workload engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that ad…

MidnightCisco · Cisco Secure WorkloadEPSS 0.50%via CSAF
CVE-2026-53545Critical· 9.8
1mo ago

Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities

Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities. Prior to 2.3.2, the DELETE /ssh/tunnel/disconnect/:tunnelName teardown path in src/backend/ssh/tunnel.ts interpolates endpointP…

MidnightEPSS 0.54%via NVD
CVE-2026-53451Critical· 9.8
1mo ago

Ground Station is a browser-based suite for satellite tracking, SDR reception, hardware control, and telemetry decoding

Ground Station is a browser-based suite for satellite tracking, SDR reception, hardware control, and telemetry decoding. Prior to version 0.4.13, the unauthenticated save-waterfall-snapshot Socket.IO command passes attacker-controlled sn…

MidnightEPSS 0.86%via NVD

Most-changed records

Existing CVEs whose severity, score, KEV or exploitation status moved.

  • CVE-2026-64849mlflow: MLflow: Unauthenticated full-read SSRF in webhook delivery: _validate_webhook_url bypassed via unvalidated HTTP redirects (and DNS …75
  • CVE-2026-33824Double free in Windows IKE Extension allows an unauthorized attacker to execute code over a network.93

Most-affected vendors

By CVEs published in the period.