Weakness and search-intent cluster
Curated intelligence cluster
Unclassified vulnerabilities
0 of 6 pages in this cluster are on CISA's KEV catalog.
Pages
6
Ransomware-linked
0
confirmed
Public PoC
6
repositories found
6 pages · showing 1–6 · sorted by kev listed ↓
| Title | Vendor | Signals | |||||
|---|---|---|---|---|---|---|---|
| CVE-2026-66587 | WordPress WP Cafe Pro plugin < 3.0.15 - Local File Inclusion vulnerability | WPCafe | n/a | 2026-08-24 | 0% | 9.8 | 2 |
| CVE-2026-59335 | Case-Sensitive Authorization Check Bypass via Identity Zone ID Case Manipulation Leads to Full UAA Compromise | Cloud Foundry | n/a | 2026-08-25 | n/a | 8.7 | 1 |
| CVE-2026-21752 | HCL Hive is affected by a use of vulnerable third-party components | HCLSoftware | n/a | 2026-08-24 | 0% | 7.5 | 5 |
| CVE-2026-19851 | Use of Default Password vulnerability affecting Tuleap Enterprise Edition from 17.0 through 17.5 | Dassault Systèmes | n/a | 2026-08-25 | 0% | 7.7 | 5 |
| CVE-2026-18349 | SAMA5D44 Fault Injection Vulnerability | Microchip | n/a | 2026-08-24 | 0% | 7.3 | 6 |
| CVE-2026-15469 | Hard-coded Mesh Group Private Key in TP-Link Deco XE75, XE5300, and WE10800 | TP-Link Systems Inc. | n/a | 2026-08-24 | 0% | 7.7 | 5 |
Field coverage across these 6 pages: KEV listing date 0 · CVSS base score 6 · publication date 6 · EPSS 5 · threat-intel signals 0. Rows with no value on the column being sorted are listed last in both directions rather than counted as zero.
Reading a row
- ransomware
- CISA records known use in ransomware campaigns. Varies across this index, which is why it is on the row.
- PoC
- Public proof-of-concept repositories this deployment found on GitHub, and how many.
- EPSS
- FIRST's estimate of the probability the CVE is exploited in the next 30 days. Present on every record here.
- CVSS
- Base score, from scored sources only. "n/a" means no source scored it — not that the score is low.