{
  "meta": {
    "generated": "2026-07-22T09:09:04.530Z",
    "schemaVersion": "1.0",
    "source": "https://defend.network",
    "docs": "https://defend.network/api/",
    "license": "CC BY 4.0",
    "licenseUrl": "https://creativecommons.org/licenses/by/4.0/",
    "attribution": "Data by defend.network (https://defend.network), licensed CC BY 4.0. Underlying CVE facts from NVD (NIST), the CISA KEV catalog, and FIRST.org EPSS.",
    "count": 39,
    "window": "CVEs with dated activity on or after 2026-07-15 (last 7 days, UTC): CISA KEV dateAdded, a daily briefing covering the CVE, or a weekly report publication listing it."
  },
  "cves": [
    {
      "id": "CVE-2008-4128",
      "product": "Cisco IOS",
      "exploitation": "kev-confirmed",
      "status": "active",
      "verification": "verified",
      "kev": true,
      "permalink": "https://defend.network/cve/CVE-2008-4128.html",
      "kevDateAdded": "2026-07-13",
      "kevDueDate": "2026-07-16",
      "cvss": {
        "score": 4.3,
        "severity": "MEDIUM",
        "source": "NVD CVSS 3.1",
        "version": "3.1",
        "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N"
      },
      "epss": {
        "score": 0.23857,
        "percentile": 0.97582,
        "date": "2026-07-21"
      },
      "references": [
        "http://www.securityfocus.com/bid/31218",
        "https://exchange.xforce.ibmcloud.com/vulnerabilities/45226",
        "https://www.exploit-db.com/exploits/6476"
      ],
      "lastUpdated": "2026-07-14T05:16:15.780"
    },
    {
      "id": "CVE-2021-27137",
      "product": "Dd-Wrt",
      "exploitation": "kev-confirmed",
      "status": "active",
      "verification": "verified",
      "kev": true,
      "permalink": "https://defend.network/cve/CVE-2021-27137.html",
      "kevDateAdded": "2026-07-21",
      "kevDueDate": "2026-07-24",
      "cvss": {
        "score": 8.1,
        "severity": "HIGH",
        "source": "NVD CVSS 3.1",
        "version": "3.1",
        "vector": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H"
      },
      "epss": {
        "score": 0.05447,
        "percentile": 0.91861,
        "date": "2026-07-21"
      },
      "references": [
        "https://svn.dd-wrt.com/changeset/45724",
        "https://securityaffairs.com/193290/uncategorized/iot-botnet-c0xmo-adds-competitor-killing-capability.html",
        "https://ssd-disclosure.com/ssd-advisory-dd-wrt-upnp-buffer-overflow/"
      ],
      "lastUpdated": "2026-07-22T05:17:07.330"
    },
    {
      "id": "CVE-2023-4346",
      "product": "KNX Association KNX Protocol Connection Authorization Option 1",
      "exploitation": "kev-confirmed",
      "status": "active",
      "verification": "verified",
      "kev": true,
      "permalink": "https://defend.network/cve/CVE-2023-4346.html",
      "kevDateAdded": "2026-07-15",
      "kevDueDate": "2026-07-29",
      "cvss": {
        "score": 7.5,
        "severity": "HIGH",
        "source": "NVD CVSS 3.1",
        "version": "3.1",
        "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"
      },
      "epss": {
        "score": 0.00855,
        "percentile": 0.54365,
        "date": "2026-07-21"
      },
      "references": [
        "https://www.cisa.gov/news-events/ics-advisories/icsa-23-236-01",
        "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2023-4346"
      ],
      "lastUpdated": "2026-07-16T05:16:16.603"
    },
    {
      "id": "CVE-2025-67038",
      "product": "Lantronix EDS5000",
      "exploitation": "kev-confirmed",
      "status": "active",
      "verification": "verified",
      "kev": true,
      "permalink": "https://defend.network/cve/CVE-2025-67038.html",
      "kevDateAdded": "2026-06-23",
      "kevDueDate": "2026-06-26",
      "cvss": {
        "score": 9.8,
        "severity": "CRITICAL",
        "source": "NVD CVSS 3.1",
        "version": "3.1",
        "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
      },
      "epss": {
        "score": 0.00889,
        "percentile": 0.55389,
        "date": "2026-07-21"
      },
      "references": [
        "https://www.cisa.gov/news-events/ics-advisories/icsa-26-069-02",
        "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2025-67038"
      ],
      "lastUpdated": "2026-07-06T12:39:49.570"
    },
    {
      "id": "CVE-2026-0257",
      "product": "Palo Alto Networks PAN-OS",
      "exploitation": "kev-confirmed",
      "status": "active",
      "verification": "verified",
      "kev": true,
      "permalink": "https://defend.network/cve/CVE-2026-0257.html",
      "kevDateAdded": "2026-05-29",
      "kevDueDate": "2026-06-01",
      "cvss": {
        "score": 9.1,
        "severity": "CRITICAL",
        "source": "NVD CVSS 3.1",
        "version": "3.1",
        "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N"
      },
      "epss": {
        "score": 0.86678,
        "percentile": 0.99722,
        "date": "2026-07-21"
      },
      "references": [
        "https://security.paloaltonetworks.com/CVE-2026-0257",
        "https://cert-portal.siemens.com/productcert/html/ssa-967325.html",
        "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-0257"
      ],
      "lastUpdated": "2026-06-17T10:10:37.953"
    },
    {
      "id": "CVE-2026-0770",
      "product": "Langflow",
      "exploitation": "kev-confirmed",
      "status": "active",
      "verification": "verified",
      "kev": true,
      "permalink": "https://defend.network/cve/CVE-2026-0770.html",
      "kevDateAdded": "2026-07-21",
      "kevDueDate": "2026-07-24",
      "cvss": {
        "score": 9.8,
        "severity": "CRITICAL",
        "source": "NVD CVSS 3.0",
        "version": "3.0",
        "vector": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
      },
      "epss": {
        "score": 0.10371,
        "percentile": 0.95225,
        "date": "2026-07-21"
      },
      "references": [
        "https://www.zerodayinitiative.com/advisories/ZDI-26-036/",
        "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-0770"
      ],
      "lastUpdated": "2026-07-22T05:17:08.693"
    },
    {
      "id": "CVE-2026-12569",
      "product": "PTC Windchill And FlexPLM",
      "exploitation": "kev-confirmed",
      "status": "active",
      "verification": "verified",
      "kev": true,
      "permalink": "https://defend.network/cve/CVE-2026-12569.html",
      "kevDateAdded": "2026-06-25",
      "kevDueDate": "2026-06-28",
      "cvss": {
        "score": 9.8,
        "severity": "CRITICAL",
        "source": "NVD CVSS 3.1",
        "version": "3.1",
        "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
      },
      "epss": {
        "score": 0.01247,
        "percentile": 0.66054,
        "date": "2026-07-21"
      },
      "references": [
        "https://www.ptc.com/en/support/article/CS473270",
        "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-12569"
      ],
      "lastUpdated": "2026-06-30T18:16:43.113"
    },
    {
      "id": "CVE-2026-15409",
      "product": "SonicWall SMA1000 Appliances",
      "exploitation": "kev-confirmed",
      "status": "active",
      "verification": "verified",
      "kev": true,
      "permalink": "https://defend.network/cve/CVE-2026-15409.html",
      "kevDateAdded": "2026-07-14",
      "kevDueDate": "2026-07-17",
      "cvss": {
        "score": 10,
        "severity": "CRITICAL",
        "source": "NVD CVSS 3.1",
        "version": "3.1",
        "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H"
      },
      "epss": {
        "score": 0.01266,
        "percentile": 0.66544,
        "date": "2026-07-21"
      },
      "references": [
        "https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2026-0008",
        "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-15409"
      ],
      "lastUpdated": "2026-07-16T05:16:18.293"
    },
    {
      "id": "CVE-2026-15410",
      "product": "SonicWall SMA1000 Appliances",
      "exploitation": "kev-confirmed",
      "status": "active",
      "verification": "verified",
      "kev": true,
      "permalink": "https://defend.network/cve/CVE-2026-15410.html",
      "kevDateAdded": "2026-07-14",
      "kevDueDate": "2026-07-17",
      "cvss": {
        "score": 7.2,
        "severity": "HIGH",
        "source": "NVD CVSS 3.1",
        "version": "3.1",
        "vector": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H"
      },
      "epss": {
        "score": 0.01486,
        "percentile": 0.71201,
        "date": "2026-07-21"
      },
      "references": [
        "https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2026-0008",
        "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-15410"
      ],
      "lastUpdated": "2026-07-16T05:16:18.470"
    },
    {
      "id": "CVE-2026-15718",
      "product": "Mozilla Firefox",
      "exploitation": "none",
      "status": "none",
      "verification": "verified",
      "kev": false,
      "permalink": "https://defend.network/cve/CVE-2026-15718.html",
      "cvss": {
        "score": 4.3,
        "severity": "MEDIUM",
        "source": "NVD CVSS 3.1",
        "version": "3.1",
        "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N"
      },
      "epss": {
        "score": 0.00156,
        "percentile": 0.05253,
        "date": "2026-07-21"
      },
      "references": [
        "https://www.mozilla.org/security/advisories/mfsa2026-67/",
        "https://bugzilla.mozilla.org/show_bug.cgi?id=2045443",
        "https://www.mozilla.org/security/advisories/mfsa2026-70/"
      ],
      "lastUpdated": "2026-07-21T13:17:02.267"
    },
    {
      "id": "CVE-2026-15719",
      "product": "Mozilla Firefox",
      "exploitation": "none",
      "status": "none",
      "verification": "verified",
      "kev": false,
      "permalink": "https://defend.network/cve/CVE-2026-15719.html",
      "cvss": {
        "score": 5.4,
        "severity": "MEDIUM",
        "source": "NVD CVSS 3.1",
        "version": "3.1",
        "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N"
      },
      "epss": {
        "score": 0.00133,
        "percentile": 0.03245,
        "date": "2026-07-21"
      },
      "references": [
        "https://www.mozilla.org/security/advisories/mfsa2026-67/",
        "https://bugzilla.mozilla.org/show_bug.cgi?id=2043820",
        "https://www.mozilla.org/security/advisories/mfsa2026-69/"
      ],
      "lastUpdated": "2026-07-21T13:17:02.470"
    },
    {
      "id": "CVE-2026-20230",
      "product": "Cisco Unified Communications Manager",
      "exploitation": "kev-confirmed",
      "status": "active",
      "verification": "verified",
      "kev": true,
      "permalink": "https://defend.network/cve/CVE-2026-20230.html",
      "kevDateAdded": "2026-06-25",
      "kevDueDate": "2026-06-28",
      "cvss": {
        "score": 8.6,
        "severity": "HIGH",
        "source": "NVD CVSS 3.1",
        "version": "3.1",
        "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:H/A:N"
      },
      "epss": {
        "score": 0.41694,
        "percentile": 0.98537,
        "date": "2026-07-21"
      },
      "references": [
        "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cucm-ssrf-cXPnHcW",
        "https://denizhalil.com/2026/06/12/cve-2026-20230-cisco-unified-cm-ssrf/",
        "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-20230"
      ],
      "lastUpdated": "2026-07-01T18:15:24.060"
    },
    {
      "id": "CVE-2026-20253",
      "product": "Splunk Enterprise",
      "exploitation": "kev-confirmed",
      "status": "active",
      "verification": "verified",
      "kev": true,
      "permalink": "https://defend.network/cve/CVE-2026-20253.html",
      "kevDateAdded": "2026-06-18",
      "kevDueDate": "2026-06-21",
      "cvss": {
        "score": 9.8,
        "severity": "CRITICAL",
        "source": "NVD CVSS 3.1",
        "version": "3.1",
        "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
      },
      "epss": {
        "score": 0.88171,
        "percentile": 0.99752,
        "date": "2026-07-21"
      },
      "references": [
        "https://advisory.splunk.com/advisories/SVD-2026-0603",
        "https://labs.watchtowr.com/why-use-app-level-auth-when-every-database-has-auth-splunk-enterprise-cve-2026-20253-pre-auth-rce/",
        "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-20253"
      ],
      "lastUpdated": "2026-06-19T06:17:01.950"
    },
    {
      "id": "CVE-2026-20262",
      "product": "Cisco Catalyst SD-WAN Manager",
      "exploitation": "kev-confirmed",
      "status": "active",
      "verification": "verified",
      "kev": true,
      "permalink": "https://defend.network/cve/CVE-2026-20262.html",
      "kevDateAdded": "2026-06-15",
      "kevDueDate": "2026-06-29",
      "cvss": {
        "score": 6.5,
        "severity": "MEDIUM",
        "source": "NVD CVSS 3.1",
        "version": "3.1",
        "vector": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N"
      },
      "epss": {
        "score": 0.07683,
        "percentile": 0.93939,
        "date": "2026-07-21"
      },
      "references": [
        "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-arbfw-c2rZvQ",
        "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-20262"
      ],
      "lastUpdated": "2026-06-17T13:20:04.900"
    },
    {
      "id": "CVE-2026-25089",
      "product": "Fortinet FortiSandbox",
      "exploitation": "kev-confirmed",
      "status": "active",
      "verification": "verified",
      "kev": true,
      "permalink": "https://defend.network/cve/CVE-2026-25089.html",
      "kevDateAdded": "2026-07-16",
      "kevDueDate": "2026-07-19",
      "cvss": {
        "score": 9.8,
        "severity": "CRITICAL",
        "source": "NVD CVSS 3.1",
        "version": "3.1",
        "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
      },
      "epss": {
        "score": 0.36135,
        "percentile": 0.98311,
        "date": "2026-07-21"
      },
      "references": [
        "https://fortiguard.fortinet.com/psirt/FG-IR-26-141",
        "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-25089"
      ],
      "lastUpdated": "2026-07-17T05:16:38.687"
    },
    {
      "id": "CVE-2026-32201",
      "product": "Microsoft SharePoint Server",
      "exploitation": "kev-confirmed",
      "status": "active",
      "verification": "verified",
      "kev": true,
      "permalink": "https://defend.network/cve/CVE-2026-32201.html",
      "kevDateAdded": "2026-04-14",
      "kevDueDate": "2026-04-28",
      "cvss": {
        "score": 6.5,
        "severity": "MEDIUM",
        "source": "NVD CVSS 3.1",
        "version": "3.1",
        "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N"
      },
      "epss": {
        "score": 0.21476,
        "percentile": 0.97347,
        "date": "2026-07-21"
      },
      "references": [
        "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-32201",
        "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-32201"
      ],
      "lastUpdated": "2026-06-17T10:35:20.103"
    },
    {
      "id": "CVE-2026-34908",
      "product": "Ubiquiti UniFi OS",
      "exploitation": "kev-confirmed",
      "status": "active",
      "verification": "verified",
      "kev": true,
      "permalink": "https://defend.network/cve/CVE-2026-34908.html",
      "kevDateAdded": "2026-06-23",
      "kevDueDate": "2026-06-26",
      "cvss": {
        "score": 10,
        "severity": "CRITICAL",
        "source": "NVD CVSS 3.1",
        "version": "3.1",
        "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H"
      },
      "epss": {
        "score": 0.02452,
        "percentile": 0.8262,
        "date": "2026-07-21"
      },
      "references": [
        "https://community.ui.com/releases/Security-Advisory-Bulletin-064-064/84811c09-4cf4-42ab-bd61-cc994445963b",
        "https://www.pwndefend.com/2026/06/09/cve-2026-34910-exploitation-itw-building-a-botnet-mirai/",
        "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-34908"
      ],
      "lastUpdated": "2026-06-24T14:50:41.720"
    },
    {
      "id": "CVE-2026-34909",
      "product": "Ubiquiti UniFi OS",
      "exploitation": "kev-confirmed",
      "status": "active",
      "verification": "verified",
      "kev": true,
      "permalink": "https://defend.network/cve/CVE-2026-34909.html",
      "kevDateAdded": "2026-06-23",
      "kevDueDate": "2026-06-26",
      "cvss": {
        "score": 10,
        "severity": "CRITICAL",
        "source": "NVD CVSS 3.1",
        "version": "3.1",
        "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H"
      },
      "epss": {
        "score": 0.02269,
        "percentile": 0.81139,
        "date": "2026-07-21"
      },
      "references": [
        "https://community.ui.com/releases/Security-Advisory-Bulletin-064-064/84811c09-4cf4-42ab-bd61-cc994445963b",
        "https://www.pwndefend.com/2026/06/09/cve-2026-34910-exploitation-itw-building-a-botnet-mirai/",
        "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-34909"
      ],
      "lastUpdated": "2026-06-24T14:49:53.287"
    },
    {
      "id": "CVE-2026-34910",
      "product": "Ubiquiti UniFi OS",
      "exploitation": "kev-confirmed",
      "status": "active",
      "verification": "verified",
      "kev": true,
      "permalink": "https://defend.network/cve/CVE-2026-34910.html",
      "kevDateAdded": "2026-06-23",
      "kevDueDate": "2026-06-26",
      "cvss": {
        "score": 10,
        "severity": "CRITICAL",
        "source": "NVD CVSS 3.1",
        "version": "3.1",
        "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H"
      },
      "epss": {
        "score": 0.78555,
        "percentile": 0.99541,
        "date": "2026-07-21"
      },
      "references": [
        "https://community.ui.com/releases/Security-Advisory-Bulletin-064-064/84811c09-4cf4-42ab-bd61-cc994445963b",
        "https://www.pwndefend.com/2026/06/09/cve-2026-34910-exploitation-itw-building-a-botnet-mirai/",
        "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-34910"
      ],
      "lastUpdated": "2026-06-24T14:49:47.237"
    },
    {
      "id": "CVE-2026-39808",
      "product": "Fortinet FortiSandbox",
      "exploitation": "kev-confirmed",
      "status": "active",
      "verification": "verified",
      "kev": true,
      "permalink": "https://defend.network/cve/CVE-2026-39808.html",
      "kevDateAdded": "2026-07-16",
      "kevDueDate": "2026-07-19",
      "cvss": {
        "score": 9.8,
        "severity": "CRITICAL",
        "source": "NVD CVSS 3.1",
        "version": "3.1",
        "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
      },
      "epss": {
        "score": 0.84158,
        "percentile": 0.99668,
        "date": "2026-07-21"
      },
      "references": [
        "https://fortiguard.fortinet.com/psirt/FG-IR-26-100",
        "https://github.com/samu-delucas/CVE-2026-39808",
        "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-39808"
      ],
      "lastUpdated": "2026-07-17T05:16:38.870"
    },
    {
      "id": "CVE-2026-42533",
      "product": "NGINX / F5",
      "exploitation": "none",
      "status": "none",
      "verification": "verified",
      "kev": false,
      "permalink": "https://defend.network/cve/CVE-2026-42533.html",
      "cvss": {
        "score": 8.1,
        "severity": "HIGH",
        "source": "NVD CVSS 3.1",
        "version": "3.1",
        "vector": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H"
      },
      "epss": {
        "score": 0.0083,
        "percentile": 0.53564,
        "date": "2026-07-21"
      },
      "references": [
        "https://my.f5.com/manage/s/article/K000162097"
      ],
      "lastUpdated": "2026-07-16T05:16:19.247"
    },
    {
      "id": "CVE-2026-44747",
      "product": "SAP NetWeaver Application Server ABAP",
      "exploitation": "none",
      "status": "none",
      "verification": "verified",
      "kev": false,
      "permalink": "https://defend.network/cve/CVE-2026-44747.html",
      "cvss": {
        "score": 9.9,
        "severity": "CRITICAL",
        "source": "NVD CVSS 3.1",
        "version": "3.1",
        "vector": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H"
      },
      "epss": {
        "score": 0.00439,
        "percentile": 0.3565,
        "date": "2026-07-21"
      },
      "references": [
        "https://me.sap.com/notes/3747367",
        "https://url.sap/sapsecuritypatchday"
      ],
      "lastUpdated": "2026-07-15T05:16:39.023"
    },
    {
      "id": "CVE-2026-45659",
      "product": "Microsoft SharePoint Server",
      "exploitation": "kev-confirmed",
      "status": "active",
      "verification": "verified",
      "kev": true,
      "permalink": "https://defend.network/cve/CVE-2026-45659.html",
      "kevDateAdded": "2026-07-01",
      "kevDueDate": "2026-07-04",
      "cvss": {
        "score": 8.8,
        "severity": "HIGH",
        "source": "NVD CVSS 3.1",
        "version": "3.1",
        "vector": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
      },
      "epss": {
        "score": 0.03219,
        "percentile": 0.86834,
        "date": "2026-07-21"
      },
      "references": [
        "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-45659",
        "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-45659"
      ],
      "lastUpdated": "2026-07-02T12:16:47.143"
    },
    {
      "id": "CVE-2026-46817",
      "product": "Oracle E-Business Suite",
      "exploitation": "kev-confirmed",
      "status": "active",
      "verification": "verified",
      "kev": true,
      "permalink": "https://defend.network/cve/CVE-2026-46817.html",
      "kevDateAdded": "2026-07-15",
      "kevDueDate": "2026-07-18",
      "cvss": {
        "score": 9.8,
        "severity": "CRITICAL",
        "source": "NVD CVSS 3.1",
        "version": "3.1",
        "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
      },
      "epss": {
        "score": 0.01045,
        "percentile": 0.60378,
        "date": "2026-07-21"
      },
      "references": [
        "https://www.oracle.com/security-alerts/cspumay2026.html",
        "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-46817"
      ],
      "lastUpdated": "2026-07-21T10:10:00.103"
    },
    {
      "id": "CVE-2026-48282",
      "product": "Adobe ColdFusion",
      "exploitation": "kev-confirmed",
      "status": "active",
      "verification": "verified",
      "kev": true,
      "permalink": "https://defend.network/cve/CVE-2026-48282.html",
      "kevDateAdded": "2026-07-07",
      "kevDueDate": "2026-07-10",
      "cvss": {
        "score": 10,
        "severity": "CRITICAL",
        "source": "NVD CVSS 3.1",
        "version": "3.1",
        "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H"
      },
      "epss": {
        "score": 0.28583,
        "percentile": 0.97927,
        "date": "2026-07-21"
      },
      "references": [
        "https://helpx.adobe.com/security/products/coldfusion/apsb26-68.html",
        "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-48282"
      ],
      "lastUpdated": "2026-07-08T14:58:28.690"
    },
    {
      "id": "CVE-2026-48558",
      "product": "Simple-Help Simplehelp",
      "exploitation": "kev-confirmed",
      "status": "active",
      "verification": "verified",
      "kev": true,
      "permalink": "https://defend.network/cve/CVE-2026-48558.html",
      "kevDateAdded": "2026-06-29",
      "kevDueDate": "2026-07-02",
      "cvss": {
        "score": 10,
        "severity": "CRITICAL",
        "source": "NVD CVSS 3.1",
        "version": "3.1",
        "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H"
      },
      "epss": {
        "score": 0.0116,
        "percentile": 0.63645,
        "date": "2026-07-21"
      },
      "references": [
        "https://simple-help.com/security/simplehelp-security-update-2026-05",
        "https://horizon3.ai/attack-research/disclosures/cve-2026-48558-simplehelp-authentication-bypass-iocs/",
        "https://blackpointcyber.com/blog/a-djinn-in-the-machine-taskweavers-node-js-intrusion-chain/"
      ],
      "lastUpdated": "2026-06-30T13:03:11.437"
    },
    {
      "id": "CVE-2026-48907",
      "product": "Widget Factory Joomla Content Editor",
      "exploitation": "kev-confirmed",
      "status": "active",
      "verification": "verified",
      "kev": true,
      "permalink": "https://defend.network/cve/CVE-2026-48907.html",
      "kevDateAdded": "2026-06-16",
      "kevDueDate": "2026-06-19",
      "cvss": {
        "score": 9.8,
        "severity": "CRITICAL",
        "source": "NVD CVSS 3.1",
        "version": "3.1",
        "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
      },
      "epss": {
        "score": 0.80425,
        "percentile": 0.9958,
        "date": "2026-07-21"
      },
      "references": [
        "https://www.joomlacontenteditor.net/news/jce-security-update-and-a-free-patch-for-older-sites",
        "https://www.joomlacontenteditor.net/",
        "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-48907"
      ],
      "lastUpdated": "2026-06-17T14:06:35.153"
    },
    {
      "id": "CVE-2026-48908",
      "product": "JoomShaper SP Page Builder",
      "exploitation": "kev-confirmed",
      "status": "active",
      "verification": "verified",
      "kev": true,
      "permalink": "https://defend.network/cve/CVE-2026-48908.html",
      "kevDateAdded": "2026-07-07",
      "kevDueDate": "2026-07-10",
      "cvss": {
        "score": 9.8,
        "severity": "CRITICAL",
        "source": "NVD CVSS 3.1",
        "version": "3.1",
        "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
      },
      "epss": {
        "score": 0.01569,
        "percentile": 0.72649,
        "date": "2026-07-21"
      },
      "references": [
        "https://mysites.guru/blog/sp-page-builder-zero-day-uploadcustomicon-rce/",
        "https://www.joomshaper.com/page-builder",
        "https://extensions.joomla.org/extension/sp-page-builder/"
      ],
      "lastUpdated": "2026-07-08T13:57:42.590"
    },
    {
      "id": "CVE-2026-48939",
      "product": "Joomlic Icagenda",
      "exploitation": "kev-confirmed",
      "status": "active",
      "verification": "verified",
      "kev": true,
      "permalink": "https://defend.network/cve/CVE-2026-48939.html",
      "kevDateAdded": "2026-07-10",
      "kevDueDate": "2026-07-13",
      "cvss": {
        "score": 9.8,
        "severity": "CRITICAL",
        "source": "NVD CVSS 3.1",
        "version": "3.1",
        "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
      },
      "epss": {
        "score": 0.01505,
        "percentile": 0.71553,
        "date": "2026-07-21"
      },
      "references": [
        "https://github.com/Polosss/By-Poloss..-..CVE-2026-48939",
        "https://mysites.guru/blog/icagenda-zero-day-file-upload-rce/",
        "https://www.icagenda.com/"
      ],
      "lastUpdated": "2026-07-11T05:16:34.140"
    },
    {
      "id": "CVE-2026-50522",
      "product": "Microsoft Sharepoint Server",
      "exploitation": "source-reported",
      "status": "active",
      "verification": "verified",
      "kev": false,
      "permalink": "https://defend.network/cve/CVE-2026-50522.html",
      "cvss": {
        "score": 9.8,
        "severity": "CRITICAL",
        "source": "NVD CVSS 3.1",
        "version": "3.1",
        "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
      },
      "epss": {
        "score": 0.20346,
        "percentile": 0.97203,
        "date": "2026-07-21"
      },
      "references": [
        "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-50522"
      ],
      "lastUpdated": "2026-07-15T15:12:34.507"
    },
    {
      "id": "CVE-2026-54420",
      "product": "LiteSpeed CPanel Plugin",
      "exploitation": "kev-confirmed",
      "status": "active",
      "verification": "verified",
      "kev": true,
      "permalink": "https://defend.network/cve/CVE-2026-54420.html",
      "kevDateAdded": "2026-06-15",
      "kevDueDate": "2026-06-18",
      "cvss": {
        "score": 8.5,
        "severity": "HIGH",
        "source": "NVD CVSS 3.1",
        "version": "3.1",
        "vector": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H"
      },
      "epss": {
        "score": 0.01261,
        "percentile": 0.6641,
        "date": "2026-07-21"
      },
      "references": [
        "https://blog.litespeedtech.com/2026/06/01/security-update-for-litespeed-cpanel-plugin-2/",
        "https://www.litespeedtech.com/products/litespeed-web-server/control-panel-support/cpanel",
        "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-54420"
      ],
      "lastUpdated": "2026-06-17T10:58:13.830"
    },
    {
      "id": "CVE-2026-55255",
      "product": "Langflow",
      "exploitation": "kev-confirmed",
      "status": "active",
      "verification": "verified",
      "kev": true,
      "permalink": "https://defend.network/cve/CVE-2026-55255.html",
      "kevDateAdded": "2026-07-07",
      "kevDueDate": "2026-07-10",
      "cvss": {
        "score": 8.4,
        "severity": "HIGH",
        "source": "NVD CVSS 3.1",
        "version": "3.1",
        "vector": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:L"
      },
      "epss": {
        "score": 0.0056,
        "percentile": 0.42931,
        "date": "2026-07-21"
      },
      "references": [
        "https://github.com/langflow-ai/langflow/security/advisories/GHSA-qrpv-q767-xqq2",
        "https://github.com/langflow-ai/langflow/commit/2c9f498d664a3c32698b57d7c5e752625291060e"
      ],
      "lastUpdated": "2026-07-08T13:39:12.593"
    },
    {
      "id": "CVE-2026-56155",
      "product": "Microsoft Active Directory Federation Services",
      "exploitation": "kev-confirmed",
      "status": "active",
      "verification": "verified",
      "kev": true,
      "permalink": "https://defend.network/cve/CVE-2026-56155.html",
      "kevDateAdded": "2026-07-14",
      "kevDueDate": "2026-07-28",
      "cvss": {
        "score": 7.8,
        "severity": "HIGH",
        "source": "NVD CVSS 3.1",
        "version": "3.1",
        "vector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
      },
      "epss": {
        "score": 0.00379,
        "percentile": 0.30287,
        "date": "2026-07-21"
      },
      "references": [
        "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-56155",
        "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-56155"
      ],
      "lastUpdated": "2026-07-15T14:18:24.010"
    },
    {
      "id": "CVE-2026-56164",
      "product": "Microsoft SharePoint Server",
      "exploitation": "kev-confirmed",
      "status": "active",
      "verification": "verified",
      "kev": true,
      "permalink": "https://defend.network/cve/CVE-2026-56164.html",
      "kevDateAdded": "2026-07-14",
      "kevDueDate": "2026-07-17",
      "cvss": {
        "score": 9.8,
        "severity": "CRITICAL",
        "source": "NVD CVSS 3.1",
        "version": "3.1",
        "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
      },
      "epss": {
        "score": 0.05601,
        "percentile": 0.92056,
        "date": "2026-07-21"
      },
      "references": [
        "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-56164",
        "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-56164"
      ],
      "lastUpdated": "2026-07-14T21:10:41.693"
    },
    {
      "id": "CVE-2026-56290",
      "product": "Joomlack Page Builder",
      "exploitation": "kev-confirmed",
      "status": "active",
      "verification": "verified",
      "kev": true,
      "permalink": "https://defend.network/cve/CVE-2026-56290.html",
      "kevDateAdded": "2026-07-07",
      "kevDueDate": "2026-07-10",
      "cvss": {
        "score": 9.8,
        "severity": "CRITICAL",
        "source": "NVD CVSS 3.1",
        "version": "3.1",
        "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
      },
      "epss": {
        "score": 0.02912,
        "percentile": 0.85485,
        "date": "2026-07-21"
      },
      "references": [
        "https://forum.joomlack.fr/index.php/page-builder-ck/21627-nouvelle-version-de-pbck-et-joomla-3",
        "https://mysites.guru/blog/pagebuilderck-unauthenticated-file-upload-rce/",
        "https://www.joomlack.fr/"
      ],
      "lastUpdated": "2026-07-08T13:37:08.977"
    },
    {
      "id": "CVE-2026-56291",
      "product": "Balbooa Forms",
      "exploitation": "kev-confirmed",
      "status": "active",
      "verification": "verified",
      "kev": true,
      "permalink": "https://defend.network/cve/CVE-2026-56291.html",
      "kevDateAdded": "2026-07-10",
      "kevDueDate": "2026-07-13",
      "cvss": {
        "score": 9.8,
        "severity": "CRITICAL",
        "source": "NVD CVSS 3.1",
        "version": "3.1",
        "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
      },
      "epss": {
        "score": 0.08635,
        "percentile": 0.94515,
        "date": "2026-07-21"
      },
      "references": [
        "https://mysites.guru/blog/balbooa-forms-unauthenticated-file-upload-flaw/",
        "https://www.balbooa.com/joomla-forms",
        "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-56291"
      ],
      "lastUpdated": "2026-07-11T05:16:34.310"
    },
    {
      "id": "CVE-2026-58644",
      "product": "Microsoft SharePoint",
      "exploitation": "kev-confirmed",
      "status": "active",
      "verification": "verified",
      "kev": true,
      "permalink": "https://defend.network/cve/CVE-2026-58644.html",
      "kevDateAdded": "2026-07-16",
      "kevDueDate": "2026-07-19",
      "cvss": {
        "score": 9.8,
        "severity": "CRITICAL",
        "source": "NVD CVSS 3.1",
        "version": "3.1",
        "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
      },
      "epss": {
        "score": 0.01465,
        "percentile": 0.70792,
        "date": "2026-07-21"
      },
      "references": [
        "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-58644",
        "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-58644"
      ],
      "lastUpdated": "2026-07-17T05:16:40.470"
    },
    {
      "id": "CVE-2026-60137",
      "product": "WordPress Core",
      "exploitation": "kev-confirmed",
      "status": "active",
      "verification": "verified",
      "kev": true,
      "permalink": "https://defend.network/cve/CVE-2026-60137.html",
      "kevDateAdded": "2026-07-21",
      "kevDueDate": "2026-08-04",
      "cvss": {
        "score": 5.9,
        "severity": "MEDIUM",
        "source": "NVD CVSS 3.1",
        "version": "3.1",
        "vector": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N"
      },
      "epss": {
        "score": 0.04026,
        "percentile": 0.89474,
        "date": "2026-07-21"
      },
      "references": [
        "https://github.com/WordPress/wordpress-develop/security/advisories/GHSA-fpp7-x2x2-2mjf",
        "https://wordpress.org/news/2026/07/wordpress-7-0-2-release/",
        "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-60137"
      ],
      "lastUpdated": "2026-07-22T05:17:11.750"
    },
    {
      "id": "CVE-2026-63030",
      "product": "WordPress Core",
      "exploitation": "kev-confirmed",
      "status": "active",
      "verification": "verified",
      "kev": true,
      "permalink": "https://defend.network/cve/CVE-2026-63030.html",
      "kevDateAdded": "2026-07-21",
      "kevDueDate": "2026-07-24",
      "cvss": {
        "score": 9.8,
        "severity": "CRITICAL",
        "source": "NVD CVSS 3.1",
        "version": "3.1",
        "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
      },
      "epss": {
        "score": 0.08946,
        "percentile": 0.94679,
        "date": "2026-07-21"
      },
      "references": [
        "https://github.com/WordPress/wordpress-develop/security/advisories/GHSA-ff9f-jf42-662q",
        "https://wordpress.org/news/2026/07/wordpress-7-0-2-release/",
        "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-63030"
      ],
      "lastUpdated": "2026-07-22T05:17:11.910"
    }
  ]
}
