{"sector":{"id":"healthcare","name":"Healthcare & Life Sciences","sector":"healthcare","description":"Hospitals, clinics, electronic health record (EHR) vendors, medical devices,\nand pharmaceutical R&D. Skewed toward HIPAA-relevant data exposure and\ndevice-side vulnerabilities.","visibility":"public"},"top_24h":[{"id":"879120f1-aaf9-4037-8e83-854851286bca","threat_type":"cve","title":"GitPython before 3.1.55 fails to disable environment variable expansion in Remote.create() and Submodule.add() URL handling, allowing attackers to exf","summary":"GitPython before 3.1.55 fails to disable environment variable expansion in Remote.create() and Submodule.add() URL handling, allowing attackers to exfiltrate secrets by supplying URLs containing variable references. Attackers can craft URLs with environment variable tokens that are expanded into .git/config and .gitmodules, then transmitted to attacker-controlled hosts during fetch or pull operations.","severity":"high","cvss_score":7.5,"cvss_vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","cvss_version":"3.1","tags":["nvd"],"published_at":"2026-08-13T12:17:27.337000Z","last_modified_at":"2026-08-13T13:29:55.398321Z","external_id":"CVE-2026-73622","description":"GitPython before 3.1.55 fails to disable environment variable expansion in Remote.create() and Submodule.add() URL handling, allowing attackers to exfiltrate secrets by supplying URLs containing variable references. Attackers can craft URLs with environment variable tokens that are expanded into .git/config and .gitmodules, then transmitted to attacker-controlled hosts during fetch or pull operations.","affected_products":[],"references":["https://github.com/gitpython-developers/GitPython/commit/8ac5a30519b6f4af85398b9b9d7064ff4d452da2","https://github.com/gitpython-developers/GitPython/security/advisories/GHSA-94p4-4cq8-9g67","https://www.vulncheck.com/advisories/gitpython-before-environment-variable-exfiltration-via-remote-add"],"sources":["nvd"],"score":35.0,"score_breakdown":{"technology_match":{"hit":false,"matched":[],"points":0},"keyword_match":{"hit":false,"matched":[],"points":0},"cwe_match":{"hit":true,"matched":["CWE-200"],"points":20},"cvss_threshold":{"hit":true,"threshold":6.5,"cvss_score":7.5,"points":15},"priority_boost":{"hit":false,"matched":[],"points":0},"excluded":{"hit":false,"matched":[],"points":0},"kev":{"hit":false,"points":0},"actively_exploited":{"hit":false,"points":0},"ransomware":{"hit":false,"points":0},"multi_source":{"hit":false,"source_count":1,"points":0},"package_match":{"hit":false,"matched":[],"points":0},"raw_total":35,"final_score":35.0},"calculated_at":"2026-08-13T13:29:59.181598Z"},{"id":"48b1b659-59bc-4836-a415-7e2c21a5f2a4","threat_type":"cve","title":"Flowise before 3.1.3 contains an incomplete credential redaction vulnerability in the GET /api/v1/credentials/:id endpoint that returns decrypted secr","summary":"Flowise before 3.1.3 contains an incomplete credential redaction vulnerability in the GET /api/v1/credentials/:id endpoint that returns decrypted secrets in plaintext. Authenticated users with credentials:view permission can retrieve sensitive data including database connection URLs with embedded passwords, cloud service account JSON with private keys, and API keys by calling this endpoint.","severity":"medium","cvss_score":6.5,"cvss_vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N","cvss_version":"3.1","tags":["nvd"],"published_at":"2026-08-13T12:17:24.750000Z","last_modified_at":"2026-08-13T15:31:47.890642Z","external_id":"CVE-2026-73604","description":"Flowise before 3.1.3 contains an incomplete credential redaction vulnerability in the GET /api/v1/credentials/:id endpoint that returns decrypted secrets in plaintext. Authenticated users with credentials:view permission can retrieve sensitive data including database connection URLs with embedded passwords, cloud service account JSON with private keys, and API keys by calling this endpoint.","affected_products":[],"references":["https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-rwrp-9823-p2xq","https://www.vulncheck.com/advisories/flowise-before-credential-exposure-via-api"],"sources":["nvd"],"score":35.0,"score_breakdown":{"technology_match":{"hit":false,"matched":[],"points":0},"keyword_match":{"hit":false,"matched":[],"points":0},"cwe_match":{"hit":true,"matched":["CWE-200"],"points":20},"cvss_threshold":{"hit":true,"threshold":6.5,"cvss_score":6.5,"points":15},"priority_boost":{"hit":false,"matched":[],"points":0},"excluded":{"hit":false,"matched":[],"points":0},"kev":{"hit":false,"points":0},"actively_exploited":{"hit":false,"points":0},"ransomware":{"hit":false,"points":0},"multi_source":{"hit":false,"source_count":1,"points":0},"package_match":{"hit":false,"matched":[],"points":0},"raw_total":35,"final_score":35.0},"calculated_at":"2026-08-13T15:31:56.886974Z"},{"id":"cb393d59-d284-47da-a6c3-9dcdf3d5d6b8","threat_type":"cve","title":"CWE-798: Use of Hard-coded Credentials CWE-200: Exposure of Sensitive Information to an Unauthorized Actor CWE-284: Improper Access Control","summary":"CWE-798: Use of Hard-coded Credentials CWE-200: Exposure of Sensitive Information to an Unauthorized Actor CWE-284: Improper Access Control","severity":"critical","cvss_score":9.3,"cvss_vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:L/A:N","cvss_version":"3.1","tags":["nvd"],"published_at":"2026-08-13T10:17:15.963000Z","last_modified_at":"2026-08-13T15:31:47.492731Z","external_id":"CVE-2026-59507","description":"CWE-798: Use of Hard-coded Credentials CWE-200: Exposure of Sensitive Information to an Unauthorized Actor CWE-284: Improper Access Control","affected_products":[],"references":["https://www.gov.il/en/departments/dynamiccollectors/cve_advisories_listing?skip=0"],"sources":["nvd"],"score":35.0,"score_breakdown":{"technology_match":{"hit":false,"matched":[],"points":0},"keyword_match":{"hit":false,"matched":[],"points":0},"cwe_match":{"hit":true,"matched":["CWE-798"],"points":20},"cvss_threshold":{"hit":true,"threshold":6.5,"cvss_score":9.3,"points":15},"priority_boost":{"hit":false,"matched":[],"points":0},"excluded":{"hit":false,"matched":[],"points":0},"kev":{"hit":false,"points":0},"actively_exploited":{"hit":false,"points":0},"ransomware":{"hit":false,"points":0},"multi_source":{"hit":false,"source_count":1,"points":0},"package_match":{"hit":false,"matched":[],"points":0},"raw_total":35,"final_score":35.0},"calculated_at":"2026-08-13T15:31:56.814089Z"},{"id":"ab72f066-1d75-4ee2-8f76-aca556a7ca65","threat_type":"cve","title":"CWE-200: Exposure of Sensitive Information to an Unauthorized Actor CWE-359: Exposure of Private Personal Information to an Unauthorized Actor","summary":"CWE-200: Exposure of Sensitive Information to an Unauthorized Actor CWE-359: Exposure of Private Personal Information to an Unauthorized Actor","severity":"critical","cvss_score":9.1,"cvss_vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N","cvss_version":"3.1","tags":["nvd"],"published_at":"2026-08-13T10:17:15.380000Z","last_modified_at":"2026-08-13T15:31:47.247451Z","external_id":"CVE-2026-59503","description":"CWE-200: Exposure of Sensitive Information to an Unauthorized Actor CWE-359: Exposure of Private Personal Information to an Unauthorized Actor","affected_products":[],"references":["https://www.gov.il/en/departments/dynamiccollectors/cve_advisories_listing?skip=0"],"sources":["nvd"],"score":35.0,"score_breakdown":{"technology_match":{"hit":false,"matched":[],"points":0},"keyword_match":{"hit":false,"matched":[],"points":0},"cwe_match":{"hit":true,"matched":["CWE-200"],"points":20},"cvss_threshold":{"hit":true,"threshold":6.5,"cvss_score":9.1,"points":15},"priority_boost":{"hit":false,"matched":[],"points":0},"excluded":{"hit":false,"matched":[],"points":0},"kev":{"hit":false,"points":0},"actively_exploited":{"hit":false,"points":0},"ransomware":{"hit":false,"points":0},"multi_source":{"hit":false,"source_count":1,"points":0},"package_match":{"hit":false,"matched":[],"points":0},"raw_total":35,"final_score":35.0},"calculated_at":"2026-08-13T15:31:56.864461Z"},{"id":"60af3a05-09a5-454b-9f60-2ad75962ecf1","threat_type":"cve","title":"CWE-287: Improper Authentication","summary":"CWE-287: Improper Authentication","severity":"critical","cvss_score":10.0,"cvss_vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:N","cvss_version":"3.1","tags":["nvd"],"published_at":"2026-08-13T10:17:15.017000Z","last_modified_at":"2026-08-13T15:31:47.039804Z","external_id":"CVE-2026-59500","description":"CWE-287: Improper Authentication","affected_products":[],"references":["https://www.gov.il/en/departments/dynamiccollectors/cve_advisories_listing?skip=0"],"sources":["nvd"],"score":35.0,"score_breakdown":{"technology_match":{"hit":false,"matched":[],"points":0},"keyword_match":{"hit":false,"matched":[],"points":0},"cwe_match":{"hit":true,"matched":["CWE-287"],"points":20},"cvss_threshold":{"hit":true,"threshold":6.5,"cvss_score":10.0,"points":15},"priority_boost":{"hit":false,"matched":[],"points":0},"excluded":{"hit":false,"matched":[],"points":0},"kev":{"hit":false,"points":0},"actively_exploited":{"hit":false,"points":0},"ransomware":{"hit":false,"points":0},"multi_source":{"hit":false,"source_count":1,"points":0},"package_match":{"hit":false,"matched":[],"points":0},"raw_total":35,"final_score":35.0},"calculated_at":"2026-08-13T15:31:56.856378Z"},{"id":"f46228dc-31b4-4462-9357-c52c699b2c74","threat_type":"cve","title":"CWE-200: Exposure of Sensitive\nInformation to an Unauthorized Actor","summary":"CWE-200: Exposure of Sensitive\nInformation to an Unauthorized Actor","severity":"high","cvss_score":8.6,"cvss_vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N","cvss_version":"3.1","tags":["nvd"],"published_at":"2026-08-13T10:17:14.877000Z","last_modified_at":"2026-08-13T15:31:46.977491Z","external_id":"CVE-2026-59499","description":"CWE-200: Exposure of Sensitive\nInformation to an Unauthorized Actor","affected_products":[],"references":["https://www.gov.il/en/departments/dynamiccollectors/cve_advisories_listing?skip=0"],"sources":["nvd"],"score":35.0,"score_breakdown":{"technology_match":{"hit":false,"matched":[],"points":0},"keyword_match":{"hit":false,"matched":[],"points":0},"cwe_match":{"hit":true,"matched":["CWE-200"],"points":20},"cvss_threshold":{"hit":true,"threshold":6.5,"cvss_score":8.6,"points":15},"priority_boost":{"hit":false,"matched":[],"points":0},"excluded":{"hit":false,"matched":[],"points":0},"kev":{"hit":false,"points":0},"actively_exploited":{"hit":false,"points":0},"ransomware":{"hit":false,"points":0},"multi_source":{"hit":false,"source_count":1,"points":0},"package_match":{"hit":false,"matched":[],"points":0},"raw_total":35,"final_score":35.0},"calculated_at":"2026-08-13T15:31:55.213885Z"},{"id":"9ee20d9a-011d-4a16-be01-973f61a2da76","threat_type":"cve","title":"The Customer Email Verification for WooCommerce WordPress plugin before 3.2.6 does not correctly validate the email-verification activation code, rely","summary":"The Customer Email Verification for WooCommerce WordPress plugin before 3.2.6 does not correctly validate the email-verification activation code, relying on a loose comparison that an attacker can satisfy with a crafted value type, allowing unauthenticated users to verify and take over the account of any registered user who has not yet confirmed their email address.","severity":"critical","cvss_score":9.8,"cvss_vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","cvss_version":"3.1","tags":["nvd"],"published_at":"2026-08-13T06:17:37.887000Z","last_modified_at":"2026-08-13T15:31:45.909806Z","external_id":"CVE-2026-14182","description":"The Customer Email Verification for WooCommerce WordPress plugin before 3.2.6 does not correctly validate the email-verification activation code, relying on a loose comparison that an attacker can satisfy with a crafted value type, allowing unauthenticated users to verify and take over the account of any registered user who has not yet confirmed their email address.","affected_products":[],"references":["https://wpscan.com/vulnerability/ef4e95a3-6f90-4423-9551-9ac28f7b6291/"],"sources":["nvd"],"score":35.0,"score_breakdown":{"technology_match":{"hit":false,"matched":[],"points":0},"keyword_match":{"hit":false,"matched":[],"points":0},"cwe_match":{"hit":true,"matched":["CWE-287"],"points":20},"cvss_threshold":{"hit":true,"threshold":6.5,"cvss_score":9.8,"points":15},"priority_boost":{"hit":false,"matched":[],"points":0},"excluded":{"hit":false,"matched":[],"points":0},"kev":{"hit":false,"points":0},"actively_exploited":{"hit":false,"points":0},"ransomware":{"hit":false,"points":0},"multi_source":{"hit":false,"source_count":1,"points":0},"package_match":{"hit":false,"matched":[],"points":0},"raw_total":35,"final_score":35.0},"calculated_at":"2026-08-13T15:31:55.402034Z"},{"id":"6f9b4969-5b63-47dd-b21b-6547a5006ee7","threat_type":"cve","title":"WolfStack before 25.9.2 contains a hard-coded cluster-authentication secret compiled into every build and published as a constant in src/auth/mod.rs, ","summary":"WolfStack before 25.9.2 contains a hard-coded cluster-authentication secret compiled into every build and published as a constant in src/auth/mod.rs, allowing remote unauthenticated attackers to bypass authentication by supplying this value in the X-WolfStack-Secret header to the require_auth() gate without any session, API key, or user account. Attackers can reach an affected node's management port to enumerate all Docker and LXC containers on the host and execute arbitrary commands as root inside any container via the POST /api/containers/{runtime}/{id}/exec endpoint.","severity":"critical","cvss_score":9.8,"cvss_vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","cvss_version":"3.1","tags":["nvd"],"published_at":"2026-08-12T22:17:17.600000Z","last_modified_at":"2026-08-13T14:30:42.170973Z","external_id":"CVE-2026-73519","description":"WolfStack before 25.9.2 contains a hard-coded cluster-authentication secret compiled into every build and published as a constant in src/auth/mod.rs, allowing remote unauthenticated attackers to bypass authentication by supplying this value in the X-WolfStack-Secret header to the require_auth() gate without any session, API key, or user account. Attackers can reach an affected node's management port to enumerate all Docker and LXC containers on the host and execute arbitrary commands as root inside any container via the POST /api/containers/{runtime}/{id}/exec endpoint.","affected_products":[],"references":["https://github.com/wolfsoftwaresystemsltd/WolfStack/releases?page=7#release-v25.9.2","https://github.com/wolfsoftwaresystemsltd/WolfStack/security/advisories/GHSA-r3mw-2wmq-j6jg","https://www.vulncheck.com/advisories/wolfstack-hard-coded-secret-authentication-bypass-via-x-wolfstack-secret"],"sources":["nvd"],"score":35.0,"score_breakdown":{"technology_match":{"hit":false,"matched":[],"points":0},"keyword_match":{"hit":false,"matched":[],"points":0},"cwe_match":{"hit":true,"matched":["CWE-798"],"points":20},"cvss_threshold":{"hit":true,"threshold":6.5,"cvss_score":9.8,"points":15},"priority_boost":{"hit":false,"matched":[],"points":0},"excluded":{"hit":false,"matched":[],"points":0},"kev":{"hit":false,"points":0},"actively_exploited":{"hit":false,"points":0},"ransomware":{"hit":false,"points":0},"multi_source":{"hit":false,"source_count":1,"points":0},"package_match":{"hit":false,"matched":[],"points":0},"raw_total":35,"final_score":35.0},"calculated_at":"2026-08-13T14:30:52.392433Z"},{"id":"213b14c7-ada2-48a6-98c3-dad457355dca","threat_type":"cve","title":"kin-openapi is a Go project for handling OpenAPI files. Prior to 0.144.0, ValidationHandler.Load() in openapi3filter/validation_handler.go silently re","summary":"kin-openapi is a Go project for handling OpenAPI files. Prior to 0.144.0, ValidationHandler.Load() in openapi3filter/validation_handler.go silently replaces a nil AuthenticationFunc with NoopAuthenticationFunc, which returns nil without checking credentials. This substitution causes every OpenAPI security requirement to be satisfied for unauthenticated requests when an application relies on ValidationHandler as its enforcement middleware. The no-op callback prevents the fail-closed ErrAuthenticationServiceMissing path from being reached and forwards the request to protected handlers that may require an API key, OAuth token, or another security scheme. This issue is fixed in version 0.144.0.","severity":"critical","cvss_score":9.1,"cvss_vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N","cvss_version":"3.1","tags":["nvd"],"published_at":"2026-08-12T22:17:17.443000Z","last_modified_at":"2026-08-13T13:29:54.312706Z","external_id":"CVE-2026-73501","description":"kin-openapi is a Go project for handling OpenAPI files. Prior to 0.144.0, ValidationHandler.Load() in openapi3filter/validation_handler.go silently replaces a nil AuthenticationFunc with NoopAuthenticationFunc, which returns nil without checking credentials. This substitution causes every OpenAPI security requirement to be satisfied for unauthenticated requests when an application relies on ValidationHandler as its enforcement middleware. The no-op callback prevents the fail-closed ErrAuthenticationServiceMissing path from being reached and forwards the request to protected handlers that may require an API key, OAuth token, or another security scheme. This issue is fixed in version 0.144.0.","affected_products":[],"references":["https://github.com/getkin/kin-openapi/commit/f0407d53b0730280266f454b755010e7eeb985da","https://github.com/getkin/kin-openapi/releases/tag/v0.144.0","https://github.com/getkin/kin-openapi/security/advisories/GHSA-r277-6w6q-xmqw"],"sources":["nvd"],"score":35.0,"score_breakdown":{"technology_match":{"hit":false,"matched":[],"points":0},"keyword_match":{"hit":false,"matched":[],"points":0},"cwe_match":{"hit":true,"matched":["CWE-287"],"points":20},"cvss_threshold":{"hit":true,"threshold":6.5,"cvss_score":9.1,"points":15},"priority_boost":{"hit":false,"matched":[],"points":0},"excluded":{"hit":false,"matched":[],"points":0},"kev":{"hit":false,"points":0},"actively_exploited":{"hit":false,"points":0},"ransomware":{"hit":false,"points":0},"multi_source":{"hit":false,"source_count":1,"points":0},"package_match":{"hit":false,"matched":[],"points":0},"raw_total":35,"final_score":35.0},"calculated_at":"2026-08-13T13:29:58.966176Z"},{"id":"9049190a-4c22-4287-b1d6-b3b962ec18a4","threat_type":"cve","title":"IBM DOORS Next 7.0.3 through 7.0.3 Interim Fix 018 could allow an authenticated user to bypass security logic to perform unauthorized activities.","summary":"IBM DOORS Next 7.0.3 through 7.0.3 Interim Fix 018 could allow an authenticated user to bypass security logic to perform unauthorized activities.","severity":"critical","cvss_score":10.0,"cvss_vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H","cvss_version":"3.1","tags":["nvd"],"published_at":"2026-08-12T22:17:13.600000Z","last_modified_at":"2026-08-12T23:13:31.060362Z","external_id":"CVE-2024-27253","description":"IBM DOORS Next 7.0.3 through 7.0.3 Interim Fix 018 could allow an authenticated user to bypass security logic to perform unauthorized activities.","affected_products":[],"references":["https://www.ibm.com/support/pages/node/7282705"],"sources":["nvd"],"score":35.0,"score_breakdown":{"technology_match":{"hit":false,"matched":[],"points":0},"keyword_match":{"hit":false,"matched":[],"points":0},"cwe_match":{"hit":true,"matched":["CWE-287"],"points":20},"cvss_threshold":{"hit":true,"threshold":6.5,"cvss_score":10.0,"points":15},"priority_boost":{"hit":false,"matched":[],"points":0},"excluded":{"hit":false,"matched":[],"points":0},"kev":{"hit":false,"points":0},"actively_exploited":{"hit":false,"points":0},"ransomware":{"hit":false,"points":0},"multi_source":{"hit":false,"source_count":1,"points":0},"package_match":{"hit":false,"matched":[],"points":0},"raw_total":35,"final_score":35.0},"calculated_at":"2026-08-13T02:01:12.151762Z"}],"top_7d":[{"id":"99dac8f3-7781-4dcb-8d3c-1d658f367040","threat_type":"cve","title":"HAPI FHIR is a complete implementation of the HL7 FHIR standard for healthcare interoperability in Java. Prior to 6.9.11, XhtmlParser.java imposes no ","summary":"HAPI FHIR is a complete implementation of the HL7 FHIR standard for healthcare interoperability in Java. Prior to 6.9.11, XhtmlParser.java imposes no maximum element nesting depth, so a deeply nested text.div narrative triggers unbounded recursion between parseElementInner() and parseElement(), raising a StackOverflowError. An attacker who can submit FHIR resources containing such narratives can thus crash a parsing or validation worker thread, affecting validator services and any application that parses attacker-supplied FHIR JSON or XML. This issue is fixed in version 6.9.11.","severity":"high","cvss_score":7.5,"cvss_vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","cvss_version":"3.1","tags":["nvd"],"published_at":"2026-08-07T20:16:52.457000Z","last_modified_at":"2026-08-10T15:12:36.072273Z","external_id":"CVE-2026-62296","description":"HAPI FHIR is a complete implementation of the HL7 FHIR standard for healthcare interoperability in Java. Prior to 6.9.11, XhtmlParser.java imposes no maximum element nesting depth, so a deeply nested text.div narrative triggers unbounded recursion between parseElementInner() and parseElement(), raising a StackOverflowError. An attacker who can submit FHIR resources containing such narratives can thus crash a parsing or validation worker thread, affecting validator services and any application that parses attacker-supplied FHIR JSON or XML. This issue is fixed in version 6.9.11.","affected_products":[],"references":["https://github.com/hapifhir/org.hl7.fhir.core/commit/396f447500407693d6ae1e64db59782862ca7506","https://github.com/hapifhir/org.hl7.fhir.core/security/advisories/GHSA-5v24-q6x8-hc38"],"sources":["nvd"],"score":70.0,"score_breakdown":{"technology_match":{"hit":true,"matched":["HL7 FHIR"],"points":30},"keyword_match":{"hit":true,"matched":["hl7"],"points":25},"cwe_match":{"hit":false,"matched":[],"points":0},"cvss_threshold":{"hit":true,"threshold":6.5,"cvss_score":7.5,"points":15},"priority_boost":{"hit":false,"matched":[],"points":0},"excluded":{"hit":false,"matched":[],"points":0},"kev":{"hit":false,"points":0},"actively_exploited":{"hit":false,"points":0},"ransomware":{"hit":false,"points":0},"multi_source":{"hit":false,"source_count":1,"points":0},"package_match":{"hit":false,"matched":[],"points":0},"raw_total":70,"final_score":70.0},"calculated_at":"2026-08-13T02:00:52.456650Z"},{"id":"80f6b7a6-6b79-4cdd-91cc-361a4cdb2251","threat_type":"cve","title":"HAPI FHIR is a complete implementation of the HL7 FHIR standard for healthcare interoperability in Java. Prior to 6.9.11, the JSON utility parser in o","summary":"HAPI FHIR is a complete implementation of the HL7 FHIR standard for healthcare interoperability in Java. Prior to 6.9.11, the JSON utility parser in org.hl7.fhir.utilities.json.parser.JsonParser enforces no maximum nesting depth for arrays or objects. As a result, a small but deeply nested, syntactically valid FHIR JSON document can trigger unbounded readArray() or readObject() recursion, raising a StackOverflowError before structural validation runs. An attacker who can submit JSON resources for validation can thus crash the request thread, and services that do not isolate StackOverflowError safely may experience worker loss or process instability — a denial-of-service condition. This issue is fixed in version 6.9.11.","severity":"high","cvss_score":7.5,"cvss_vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","cvss_version":"3.1","tags":["nvd"],"published_at":"2026-08-07T20:16:52.310000Z","last_modified_at":"2026-08-07T21:04:35.290235Z","external_id":"CVE-2026-62295","description":"HAPI FHIR is a complete implementation of the HL7 FHIR standard for healthcare interoperability in Java. Prior to 6.9.11, the JSON utility parser in org.hl7.fhir.utilities.json.parser.JsonParser enforces no maximum nesting depth for arrays or objects. As a result, a small but deeply nested, syntactically valid FHIR JSON document can trigger unbounded readArray() or readObject() recursion, raising a StackOverflowError before structural validation runs. An attacker who can submit JSON resources for validation can thus crash the request thread, and services that do not isolate StackOverflowError safely may experience worker loss or process instability — a denial-of-service condition. This issue is fixed in version 6.9.11.","affected_products":[],"references":["https://github.com/hapifhir/org.hl7.fhir.core/commit/396f447500407693d6ae1e64db59782862ca7506","https://github.com/hapifhir/org.hl7.fhir.core/security/advisories/GHSA-2cq7-hg49-56gc"],"sources":["nvd"],"score":70.0,"score_breakdown":{"technology_match":{"hit":true,"matched":["HL7 FHIR"],"points":30},"keyword_match":{"hit":true,"matched":["hl7"],"points":25},"cwe_match":{"hit":false,"matched":[],"points":0},"cvss_threshold":{"hit":true,"threshold":6.5,"cvss_score":7.5,"points":15},"priority_boost":{"hit":false,"matched":[],"points":0},"excluded":{"hit":false,"matched":[],"points":0},"kev":{"hit":false,"points":0},"actively_exploited":{"hit":false,"points":0},"ransomware":{"hit":false,"points":0},"multi_source":{"hit":false,"source_count":1,"points":0},"package_match":{"hit":false,"matched":[],"points":0},"raw_total":70,"final_score":70.0},"calculated_at":"2026-08-13T02:00:52.390682Z"},{"id":"13e37cc0-39fc-4c4e-bd19-f433e7878ff7","threat_type":"cve","title":"Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.","summary":"Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.","severity":"critical","cvss_score":7.0,"cvss_vector":"CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H","cvss_version":"3.1","tags":["nvd","kev","actively-exploited"],"published_at":"2026-08-11T00:00:00Z","last_modified_at":"2026-08-13T13:22:30.557343Z","external_id":"CVE-2026-68820","description":"Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.","affected_products":["cpe:2.3:o:microsoft:windows_10_1607:*:*:*:*:*:*:x64:*","cpe:2.3:o:microsoft:windows_10_1607:*:*:*:*:*:*:x86:*","cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:x64:*","cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:x86:*","cpe:2.3:o:microsoft:windows_10_21h2:*:*:*:*:*:*:*:*","cpe:2.3:o:microsoft:windows_10_22h2:*:*:*:*:*:*:*:*","cpe:2.3:o:microsoft:windows_11_23h2:*:*:*:*:*:*:*:*","cpe:2.3:o:microsoft:windows_11_24h2:*:*:*:*:*:*:*:*","cpe:2.3:o:microsoft:windows_11_25h2:*:*:*:*:*:*:*:*","cpe:2.3:o:microsoft:windows_11_26h1:*:*:*:*:*:*:*:*","cpe:2.3:o:microsoft:windows_server_2012:-:*:*:*:*:*:*:*","cpe:2.3:o:microsoft:windows_server_2012:r2:*:*:*:*:*:*:*","cpe:2.3:o:microsoft:windows_server_2016:*:*:*:*:*:*:*:*","cpe:2.3:o:microsoft:windows_server_2019:*:*:*:*:*:*:*:*","cpe:2.3:o:microsoft:windows_server_2022:*:*:*:*:*:*:*:*","cpe:2.3:o:microsoft:windows_server_2025:*:*:*:*:*:*:*:*"],"references":["https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-68820","https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-68820"],"sources":["nvd","cisa_kev"],"score":60.0,"score_breakdown":{"technology_match":{"hit":false,"matched":[],"points":0},"keyword_match":{"hit":false,"matched":[],"points":0},"cwe_match":{"hit":false,"matched":[],"points":0},"cvss_threshold":{"hit":true,"threshold":6.5,"cvss_score":7.0,"points":15},"priority_boost":{"hit":false,"matched":[],"points":0},"excluded":{"hit":false,"matched":[],"points":0},"kev":{"hit":true,"points":25},"actively_exploited":{"hit":true,"points":15},"ransomware":{"hit":false,"points":0},"multi_source":{"hit":true,"source_count":2,"points":5},"package_match":{"hit":false,"matched":[],"points":0},"raw_total":60,"final_score":60.0},"calculated_at":"2026-08-13T13:24:17.652632Z"},{"id":"2250aec3-7dcb-41a5-8d33-5efc6fb7f20e","threat_type":"cve","title":"A vulnerability in the Remote Access SSL VPN service for Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Th","summary":"A vulnerability in the Remote Access SSL VPN service for Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the device to reload unexpectedly, resulting in a denial of service (DoS) condition.&nbsp;\n\nThis vulnerability is due to insufficient error checking when processing HTTP requests. An attacker could exploit this vulnerability by sending a crafted HTTP request to the Remote Access SSL VPN service on an affected device. A successful exploit could allow the attacker to cause the affected device to reload, resulting in a DoS condition.","severity":"critical","cvss_score":8.6,"cvss_vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H","cvss_version":"3.1","tags":["nvd","kev","actively-exploited"],"published_at":"2026-08-11T00:00:00Z","last_modified_at":"2026-08-13T13:22:30.492392Z","external_id":"CVE-2026-20349","description":"A vulnerability in the Remote Access SSL VPN service for Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the device to reload unexpectedly, resulting in a denial of service (DoS) condition.&nbsp;\n\nThis vulnerability is due to insufficient error checking when processing HTTP requests. An attacker could exploit this vulnerability by sending a crafted HTTP request to the Remote Access SSL VPN service on an affected device. A successful exploit could allow the attacker to cause the affected device to reload, resulting in a DoS condition.","affected_products":["cpe:2.3:o:cisco:adaptive_security_appliance_software:9.16.1:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.16.1.28:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.16.2:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.16.2.3:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.16.2.7:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.16.2.11:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.16.2.13:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.16.2.14:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.16.3:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.16.3.3:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.16.3.14:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.16.3.15:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.16.3.19:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.16.3.23:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.16.4:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.16.4.9:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.16.4.14:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.16.4.19:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.16.4.27:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.16.4.38:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.16.4.39:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.16.4.42:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.16.4.48:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.16.4.55:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.16.4.57:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.16.4.61:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.16.4.62:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.16.4.67:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.16.4.70:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.16.4.71:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.16.4.76:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.16.4.82:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.16.4.84:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.16.4.85:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.16.4.89:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.16.4.92:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.18.1:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.18.1.3:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.18.2:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.18.2.5:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.18.2.7:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.18.2.8:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.18.3:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.18.3.39:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.18.3.46:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.18.3.53:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.18.3.55:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.18.3.56:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.18.4:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.18.4.5:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.18.4.8:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.18.4.22:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.18.4.24:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.18.4.29:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.18.4.34:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.18.4.40:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.18.4.47:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.18.4.50:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.18.4.52:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.18.4.53:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.18.4.57:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.18.4.66:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.18.4.67:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.18.4.68:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.18.4.71:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.18.4.76:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.18.4.82:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.18.4.90:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.18.4.135:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.19.1:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.19.1.5:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.19.1.9:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.19.1.12:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.19.1.18:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.19.1.22:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.19.1.24:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.19.1.27:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.19.1.28:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.19.1.31:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.19.1.37:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.19.1.38:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.19.1.42:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.20.1:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.20.1.5:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.20.2:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.20.2.10:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.20.2.21:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.20.2.22:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.20.3:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.20.3.4:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.20.3.7:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.20.3.9:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.20.3.10:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.20.3.13:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.20.3.16:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.20.3.20:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.20.4:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.20.4.7:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.20.4.10:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.20.4.14:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.20.4.19:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.20.4.22:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.20.4.28:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.20.4.30:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.20.4.34:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.20.4.46:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.22.1.1:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.22.1.2:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.22.1.3:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.22.1.6:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.22.2:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.22.2.4:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.22.2.9:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.22.2.13:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.22.2.14:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.22.2.20:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.22.2.32:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.22.3:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.22.3.5:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.23.1:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.23.1.3:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.23.1.7:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.23.1.13:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.23.1.19:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.23.1.22:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.23.1.26:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.23.1.32:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.23.1.195:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.24.1:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.24.1.5:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.24.1.9:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.24.1.11:*:*:*:*:*:*:*","cpe:2.3:o:cisco:adaptive_security_appliance_software:9.24.1.155:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.0.0:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.0.0.1:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.0.1:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.0.1.1:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.0.2:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.0.2.1:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.0.3:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.0.4:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.0.5:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.0.6:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.0.6.1:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.0.6.2:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.0.6.3:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.0.7:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.0.8:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.0.8.1:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.0.9:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.2.0:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.2.0.1:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.2.1:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.2.2:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.2.3:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.2.4:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.2.4.1:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.2.5:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.2.5.1:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.2.5.2:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.2.6:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.2.7:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.2.8:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.2.8.1:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.2.9:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.2.10:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.2.10.2:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.2.11:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.2.12:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.3.0:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.3.1:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.3.1.1:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.3.1.2:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.4.0:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.4.1:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.4.1.1:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.4.2:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.4.2.1:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.4.2.2:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.4.2.3:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.4.2.4:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.4.3:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.4.4:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.4.7:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.4.8:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.6.0:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.6.1:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.6.2:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.6.2.1:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.6.4:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.7.0:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.7.10:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.7.10.1:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.7.11:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:7.7.13:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:10.0.0:*:*:*:*:*:*:*","cpe:2.3:a:cisco:secure_firewall_threat_defense:10.0.2:*:*:*:*:*:*:*"],"references":["https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asaftd-vpn-dos-dzv4mQFF","https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-20349"],"sources":["nvd","cisa_kev"],"score":60.0,"score_breakdown":{"technology_match":{"hit":false,"matched":[],"points":0},"keyword_match":{"hit":false,"matched":[],"points":0},"cwe_match":{"hit":false,"matched":[],"points":0},"cvss_threshold":{"hit":true,"threshold":6.5,"cvss_score":8.6,"points":15},"priority_boost":{"hit":false,"matched":[],"points":0},"excluded":{"hit":false,"matched":[],"points":0},"kev":{"hit":true,"points":25},"actively_exploited":{"hit":true,"points":15},"ransomware":{"hit":false,"points":0},"multi_source":{"hit":true,"source_count":2,"points":5},"package_match":{"hit":false,"matched":[],"points":0},"raw_total":60,"final_score":60.0},"calculated_at":"2026-08-13T13:24:16.369214Z"},{"id":"7e5ceddc-35de-4cf1-b91f-0d0b670b8c7d","threat_type":"cve","title":"Metabase allows a remote, unauthenticated attacker to inject arbitrary SQL via the '/reset_password' database endpoint and gain administrator access t","summary":"Metabase allows a remote, unauthenticated attacker to inject arbitrary SQL via the '/reset_password' database endpoint and gain administrator access to the connected Metabase instance.","severity":"critical","cvss_score":10.0,"cvss_vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H","cvss_version":"3.1","tags":["nvd","kev","actively-exploited"],"published_at":"2026-08-10T18:18:53.300000Z","last_modified_at":"2026-08-13T13:22:30.617064Z","external_id":"CVE-2026-72898","description":"Metabase allows a remote, unauthenticated attacker to inject arbitrary SQL via the '/reset_password' database endpoint and gain administrator access to the connected Metabase instance.","affected_products":["cpe:2.3:a:metabase:metabase:*:*:*:*:-:*:*:*","cpe:2.3:a:metabase:metabase:*:*:*:*:enterprise:*:*:*"],"references":["https://github.com/metabase/metabase/security/advisories/GHSA-vwf4-m7j8-wcjf","https://raw.githubusercontent.com/cisagov/CSAF/develop/csaf_files/IT/white/2026/va-26-222-01.json","https://www.cve.org/CVERecord?id=CVE-2026-72898","https://www.metabase.com/blog/security-update","https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-72898"],"sources":["nvd","cisa_kev"],"score":60.0,"score_breakdown":{"technology_match":{"hit":false,"matched":[],"points":0},"keyword_match":{"hit":false,"matched":[],"points":0},"cwe_match":{"hit":false,"matched":[],"points":0},"cvss_threshold":{"hit":true,"threshold":6.5,"cvss_score":10.0,"points":15},"priority_boost":{"hit":false,"matched":[],"points":0},"excluded":{"hit":false,"matched":[],"points":0},"kev":{"hit":true,"points":25},"actively_exploited":{"hit":true,"points":15},"ransomware":{"hit":false,"points":0},"multi_source":{"hit":true,"source_count":2,"points":5},"package_match":{"hit":false,"matched":[],"points":0},"raw_total":60,"final_score":60.0},"calculated_at":"2026-08-13T13:24:21.044872Z"},{"id":"c8ad9dd2-ebcf-4caf-997c-dd845f675ae7","threat_type":"cve","title":"OpenReception's appointment booking software provides an end-to-end encrypted appointment booking platform. Prior to version 1.0.2, a TENANT_ADMIN can","summary":"OpenReception's appointment booking software provides an end-to-end encrypted appointment booking platform. Prior to version 1.0.2, a TENANT_ADMIN can store `javascript:` URLs in the tenant `links` configuration (`website`, `imprint`, `privacyStatement`). These values are returned to the patient-facing landing page via `/api/public`, hydrated into the SvelteKit Button component, and rendered as `` elements without URL-scheme filtering. A patient who clicks any such link executes the attacker's JavaScript inside the patient browser origin, where patient form data is read before client-side encryption is applied. This breaks the project's central trust claim that the server is an untrusted relay and that administrators cannot read patient data. Patient-side encryption happens after form input, so JavaScript executing in the patient origin can read or alter the plaintext before encryption is performed. Version 1.0.2 fixes the issue.","severity":"high","cvss_score":8.1,"cvss_vector":"CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:N","cvss_version":"3.1","tags":["nvd"],"published_at":"2026-08-06T22:17:10.850000Z","last_modified_at":"2026-08-07T15:59:41.463272Z","external_id":"CVE-2026-48081","description":"OpenReception's appointment booking software provides an end-to-end encrypted appointment booking platform. Prior to version 1.0.2, a TENANT_ADMIN can store `javascript:` URLs in the tenant `links` configuration (`website`, `imprint`, `privacyStatement`). These values are returned to the patient-facing landing page via `/api/public`, hydrated into the SvelteKit Button component, and rendered as `` elements without URL-scheme filtering. A patient who clicks any such link executes the attacker's JavaScript inside the patient browser origin, where patient form data is read before client-side encryption is applied. This breaks the project's central trust claim that the server is an untrusted relay and that administrators cannot read patient data. Patient-side encryption happens after form input, so JavaScript executing in the patient origin can read or alter the plaintext before encryption is performed. Version 1.0.2 fixes the issue.","affected_products":[],"references":["https://github.com/open-reception/appointment-booking-software/commit/98a107d4b4eaeab5cbb96ee0a28c2342b853eee0","https://github.com/open-reception/appointment-booking-software/security/advisories/GHSA-xpr7-wx69-mp36"],"sources":["nvd"],"score":60.0,"score_breakdown":{"technology_match":{"hit":false,"matched":[],"points":0},"keyword_match":{"hit":true,"matched":["patient"],"points":25},"cwe_match":{"hit":false,"matched":[],"points":0},"cvss_threshold":{"hit":true,"threshold":6.5,"cvss_score":8.1,"points":15},"priority_boost":{"hit":true,"matched":["patient data"],"points":20},"excluded":{"hit":false,"matched":[],"points":0},"kev":{"hit":false,"points":0},"actively_exploited":{"hit":false,"points":0},"ransomware":{"hit":false,"points":0},"multi_source":{"hit":false,"source_count":1,"points":0},"package_match":{"hit":false,"matched":[],"points":0},"raw_total":60,"final_score":60.0},"calculated_at":"2026-08-13T02:00:50.534810Z"},{"id":"87acf2de-3a46-428f-b6db-33e839ba2909","threat_type":"cve","title":"HAPI FHIR is a complete implementation of the HL7 FHIR standard for healthcare interoperability in Java. Prior to 6.9.11, the hidden scan command conc","summary":"HAPI FHIR is a complete implementation of the HL7 FHIR standard for healthcare interoperability in Java. Prior to 6.9.11, the hidden scan command concatenates attacker-controlled Implementation Guide titles, profile titles, and source references into scan.html without escaping in Scanner.java. As a result, a user who scans an attacker-supplied IG/profile and then opens or publishes the generated local/CI HTML report can trigger stored cross-site scripting, executing attacker-controlled JavaScript in the report's browser context. This issue is fixed in version 6.9.11.","severity":"medium","cvss_score":5.0,"cvss_vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N","cvss_version":"3.1","tags":["nvd"],"published_at":"2026-08-07T20:16:52.157000Z","last_modified_at":"2026-08-07T22:05:31.715424Z","external_id":"CVE-2026-62293","description":"HAPI FHIR is a complete implementation of the HL7 FHIR standard for healthcare interoperability in Java. Prior to 6.9.11, the hidden scan command concatenates attacker-controlled Implementation Guide titles, profile titles, and source references into scan.html without escaping in Scanner.java. As a result, a user who scans an attacker-supplied IG/profile and then opens or publishes the generated local/CI HTML report can trigger stored cross-site scripting, executing attacker-controlled JavaScript in the report's browser context. This issue is fixed in version 6.9.11.","affected_products":[],"references":["https://github.com/hapifhir/org.hl7.fhir.core/commit/3a9befd8845f003095ed75f4b24b9a80630275be","https://github.com/hapifhir/org.hl7.fhir.core/security/advisories/GHSA-6vcw-fq7v-4vhw"],"sources":["nvd"],"score":55.0,"score_breakdown":{"technology_match":{"hit":true,"matched":["HL7 FHIR"],"points":30},"keyword_match":{"hit":true,"matched":["hl7"],"points":25},"cwe_match":{"hit":false,"matched":[],"points":0},"cvss_threshold":{"hit":false,"threshold":6.5,"cvss_score":5.0,"points":0},"priority_boost":{"hit":false,"matched":[],"points":0},"excluded":{"hit":false,"matched":[],"points":0},"kev":{"hit":false,"points":0},"actively_exploited":{"hit":false,"points":0},"ransomware":{"hit":false,"points":0},"multi_source":{"hit":false,"source_count":1,"points":0},"package_match":{"hit":false,"matched":[],"points":0},"raw_total":55,"final_score":55.0},"calculated_at":"2026-08-13T02:00:52.447939Z"},{"id":"343388be-a6b6-4fc5-a3f7-4257f8f2f60f","threat_type":"cve","title":"By accessing unencrypted information in the device firmware, an attacker can obtain the initial login credentials for the device's web interface.","summary":"By accessing unencrypted information in the device firmware, an attacker can obtain the initial login credentials for the device's web interface.","severity":"high","cvss_score":7.5,"cvss_vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","cvss_version":"3.1","tags":["nvd"],"published_at":"2026-08-07T08:16:46.457000Z","last_modified_at":"2026-08-07T17:00:33.171395Z","external_id":"CVE-2026-49007","description":"By accessing unencrypted information in the device firmware, an attacker can obtain the initial login credentials for the device's web interface.","affected_products":[],"references":["https://support.zte.com.cn/zte-iccp-isupport-webui/bulletin/detail/460174866982035232"],"sources":["nvd"],"score":55.0,"score_breakdown":{"technology_match":{"hit":false,"matched":[],"points":0},"keyword_match":{"hit":false,"matched":[],"points":0},"cwe_match":{"hit":true,"matched":["CWE-798"],"points":20},"cvss_threshold":{"hit":true,"threshold":6.5,"cvss_score":7.5,"points":15},"priority_boost":{"hit":true,"matched":["device firmware"],"points":20},"excluded":{"hit":false,"matched":[],"points":0},"kev":{"hit":false,"points":0},"actively_exploited":{"hit":false,"points":0},"ransomware":{"hit":false,"points":0},"multi_source":{"hit":false,"source_count":1,"points":0},"package_match":{"hit":false,"matched":[],"points":0},"raw_total":55,"final_score":55.0},"calculated_at":"2026-08-13T02:00:34.481397Z"},{"id":"51071e22-349f-4b9a-a317-06002b667d31","threat_type":"cve","title":"OpenReception's appointment booking software provides an end-to-end encrypted appointment booking platform. Prior to version 1.0.5, the unauthenticate","summary":"OpenReception's appointment booking software provides an end-to-end encrypted appointment booking platform. Prior to version 1.0.5, the unauthenticated `/api/tenants/{id}/schedule` endpoint returns every non-archived channel for a tenant regardless of the channel's `isPublic` flag. Channels marked `isPublic = false` are intended to be invisible to public callers; the dashboard creates them deliberately to hide internal-only services from the patient booking UI. The schedule endpoint ignores the flag entirely and discloses channel names, descriptions, IDs, agent associations, pause status, confirmation requirements, and computed slot availability for the requested date range. The asymmetry between `addAppointmentToTunnel` (which enforces `eq(channel.isPublic, true)`) and the schedule endpoint (which does not) confirms the design intent: private channels exist as a real access boundary in the booking flow, just not in the schedule disclosure. Version 1.0.5 patches the issue.","severity":"medium","cvss_score":5.3,"cvss_vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N","cvss_version":"3.1","tags":["nvd"],"published_at":"2026-08-06T22:17:10.420000Z","last_modified_at":"2026-08-08T04:11:34.222628Z","external_id":"CVE-2026-48078","description":"OpenReception's appointment booking software provides an end-to-end encrypted appointment booking platform. Prior to version 1.0.5, the unauthenticated `/api/tenants/{id}/schedule` endpoint returns every non-archived channel for a tenant regardless of the channel's `isPublic` flag. Channels marked `isPublic = false` are intended to be invisible to public callers; the dashboard creates them deliberately to hide internal-only services from the patient booking UI. The schedule endpoint ignores the flag entirely and discloses channel names, descriptions, IDs, agent associations, pause status, confirmation requirements, and computed slot availability for the requested date range. The asymmetry between `addAppointmentToTunnel` (which enforces `eq(channel.isPublic, true)`) and the schedule endpoint (which does not) confirms the design intent: private channels exist as a real access boundary in the booking flow, just not in the schedule disclosure. Version 1.0.5 patches the issue.","affected_products":[],"references":["https://github.com/open-reception/appointment-booking-software/commit/f47320dd8a236750442a60cb32829b04e99eb8df","https://github.com/open-reception/appointment-booking-software/security/advisories/GHSA-v6fw-m2mg-5gr9"],"sources":["nvd"],"score":45.0,"score_breakdown":{"technology_match":{"hit":false,"matched":[],"points":0},"keyword_match":{"hit":true,"matched":["patient"],"points":25},"cwe_match":{"hit":true,"matched":["CWE-200"],"points":20},"cvss_threshold":{"hit":false,"threshold":6.5,"cvss_score":5.3,"points":0},"priority_boost":{"hit":false,"matched":[],"points":0},"excluded":{"hit":false,"matched":[],"points":0},"kev":{"hit":false,"points":0},"actively_exploited":{"hit":false,"points":0},"ransomware":{"hit":false,"points":0},"multi_source":{"hit":false,"source_count":1,"points":0},"package_match":{"hit":false,"matched":[],"points":0},"raw_total":45,"final_score":45.0},"calculated_at":"2026-08-13T02:00:50.491775Z"},{"id":"88f1107e-5bd9-48fb-937b-149a7617455e","threat_type":"cve","title":"OpenReception's appointment booking software provides an end-to-end encrypted appointment booking platform. Prior to version 1.0.4, the PIN-type chall","summary":"OpenReception's appointment booking software provides an end-to-end encrypted appointment booking platform. Prior to version 1.0.4, the PIN-type challenge throttle uses `emailHash` as the only key. The throttle rows live in the central `challenge_throttle` table, which is shared across all tenants. Every tenant's `/api/tenants/{id}/appointments/verify-challenge` endpoint increments the same row when a PIN response fails, and every tenant's `/api/tenants/{id}/appointments/challenge` endpoint reads the same row when deciding whether to issue a new challenge. When the same `emailHash` exists in multiple tenants on the same OpenReception instance (the same patient holding tunnels in two different clinics that share the platform), an attacker who knows the patient's email can lock out that patient on tenant B by issuing failed challenge responses against tenant A. The attacker needs no relationship to tenant B; the lockout propagates through the shared throttle row. The lockout escalates with repeated failures. The first lockout triggers at 4 failed attempts and lasts approximately 60 seconds. Subsequent failures escalate the lockout duration to 5 minutes, 30 minutes, and 60 minutes per the throttle service's escalation logic. Repeated bursts produce sustained denial of service against the targeted email. Version 1.0.4 patches the issue.","severity":"medium","cvss_score":5.8,"cvss_vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:L","cvss_version":"3.1","tags":["nvd"],"published_at":"2026-08-06T22:17:09.680000Z","last_modified_at":"2026-08-08T04:11:34.171650Z","external_id":"CVE-2026-48071","description":"OpenReception's appointment booking software provides an end-to-end encrypted appointment booking platform. Prior to version 1.0.4, the PIN-type challenge throttle uses `emailHash` as the only key. The throttle rows live in the central `challenge_throttle` table, which is shared across all tenants. Every tenant's `/api/tenants/{id}/appointments/verify-challenge` endpoint increments the same row when a PIN response fails, and every tenant's `/api/tenants/{id}/appointments/challenge` endpoint reads the same row when deciding whether to issue a new challenge. When the same `emailHash` exists in multiple tenants on the same OpenReception instance (the same patient holding tunnels in two different clinics that share the platform), an attacker who knows the patient's email can lock out that patient on tenant B by issuing failed challenge responses against tenant A. The attacker needs no relationship to tenant B; the lockout propagates through the shared throttle row. The lockout escalates with repeated failures. The first lockout triggers at 4 failed attempts and lasts approximately 60 seconds. Subsequent failures escalate the lockout duration to 5 minutes, 30 minutes, and 60 minutes per the throttle service's escalation logic. Repeated bursts produce sustained denial of service against the targeted email. Version 1.0.4 patches the issue.","affected_products":[],"references":["https://github.com/open-reception/appointment-booking-software/commit/828b5297dc4c9827f7a43841d0f839c21462185d","https://github.com/open-reception/appointment-booking-software/security/advisories/GHSA-f778-wf9x-3qf9"],"sources":["nvd"],"score":45.0,"score_breakdown":{"technology_match":{"hit":false,"matched":[],"points":0},"keyword_match":{"hit":true,"matched":["patient"],"points":25},"cwe_match":{"hit":true,"matched":["CWE-307"],"points":20},"cvss_threshold":{"hit":false,"threshold":6.5,"cvss_score":5.8,"points":0},"priority_boost":{"hit":false,"matched":[],"points":0},"excluded":{"hit":false,"matched":[],"points":0},"kev":{"hit":false,"points":0},"actively_exploited":{"hit":false,"points":0},"ransomware":{"hit":false,"points":0},"multi_source":{"hit":false,"source_count":1,"points":0},"package_match":{"hit":false,"matched":[],"points":0},"raw_total":45,"final_score":45.0},"calculated_at":"2026-08-13T02:00:50.443809Z"}],"stats":{"total_threats":103596,"critical_count":165,"high_count":15,"average_score":10.56,"sources_active":["cisa_kev","github_advisories","nvd"]}}