Blog

"Prevention is cheaper than a breach"

Live Vulnerability Intelligence

Threat Database

Search CVEs, inspect descriptions, and open detail pages with AI-assisted technical context.

Total15,581
Critical940
High3,162
Medium11,246
Reset
Showing 2881-2900 of 15581 records
Threat Entry Updated 2026-02-20

CVE-2026-0408 - EX5000 Plugin

A path traversal vulnerability in NETGEAR WiFi range extenders allows an attacker with LAN authentication to access the router's IP and review the contents of the dynamically generated webproc file, which records the username and password submitted to the router GUI.

PLUGIN EX5000

CVE-2026-0408

MEDIUM CVSS 6.1 2026-01-13
Threat Entry Updated 2026-02-20

CVE-2026-0407 - EX5000 Plugin

An insufficient authentication vulnerability in NETGEAR WiFi range extenders allows a network adjacent attacker with WiFi authentication or a physical Ethernet port connection to bypass the authentication process and access the admin panel.

PLUGIN EX5000

CVE-2026-0407

MEDIUM CVSS 6.1 2026-01-13
Threat Entry Updated 2026-02-20

CVE-2026-0406 - XR1000v2 Plugin

An insufficient input validation vulnerability in the NETGEAR XR1000v2 allows attackers connected to the router's LAN to execute OS command injections.

PLUGIN XR1000v2

CVE-2026-0406

MEDIUM CVSS 6.1 2026-01-13
Threat Entry Updated 2026-02-12

CVE-2026-0405 - RBE970 Plugin

An authentication bypass vulnerability in NETGEAR Orbi devices allows users connected to the local network to access the router web interface as an admin.

PLUGIN RBE970

CVE-2026-0405

MEDIUM CVSS 6.1 2026-01-13
Threat Entry Updated 2026-02-12

CVE-2026-0404 - RBRE960 Plugin

An insufficient input validation vulnerability in NETGEAR Orbi devices' DHCPv6 functionality allows network adjacent attackers authenticated over WiFi or on LAN to execute OS command injections on the router. DHCPv6 is not enabled by default.

PLUGIN RBRE960

CVE-2026-0404

MEDIUM CVSS 4.8 2026-01-13
Threat Entry Updated 2026-02-20

CVE-2026-0403 - RBRE960 Plugin

An insufficient input validation vulnerability in NETGEAR Orbi routers allows attackers connected to the router's LAN to execute OS command injections.

PLUGIN RBRE960

CVE-2026-0403

LOW CVSS 1.1 2026-01-13
Threat Entry Updated 2026-01-22

CVE-2026-0892 - Firefox Plugin

Memory safety bugs present in Firefox 146 and Thunderbird 146. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 147 and Thunderbird < 147.

PLUGIN Firefox

CVE-2026-0892

CRITICAL CVSS 9.8 2026-01-13
Threat Entry Updated 2026-01-22

CVE-2026-0891 - Firefox ESR Plugin

Memory safety bugs present in Firefox ESR 140.6, Thunderbird ESR 140.6, Firefox 146 and Thunderbird 146. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 147, Firefox ESR < 140.7, Thunderbird < 147, and Thunderbird < 140.7.

PLUGIN Firefox ESR

CVE-2026-0891

HIGH CVSS 8.1 2026-01-13
Scroll to top