#CVSS10
September 22, 2026 at 12:57 PM
Arista VeloCloud Orchestrator hits KEV with a max-severity unauthenticated RCE (CVE-2026-93952, CVSS 10.0). CISA deadline… https://0daynews.com/articles/2026-09-23-arista-velocloud-cve-2026-93952-cvss10-kev/?utm_source=bluesky&utm_medium=organic_social&utm_campaign=always_on&utm_content=hub-3403
September 23, 2026 at 2:31 PM
Ubiquiti patches 25 UniFi OS vulnerabilities, including critical CVE‑2026‑50746 with CVSS10, a move that may affect global network security in the #USA #CyberSecurity https://thecyberexpress.com/cve-2026-50746-ubiquiti-unifi-os-vulnerability/
CVE-2026-50746: Ubiquiti Fixes Critical UniFi OS Flaws
Ubiquiti patches CVE-2026-50746 and 24 more UniFi OS vulnerabilities. Update UniFi Connect, Talk, Access, Protect and Network now.
thecyberexpress.com
July 11, 2026 at 3:36 AM
Reactのサーバーコンポーネント(RSC)に脆弱性(CVE-2025-55182)が発見されたらしいので記事を書きました。

ReactにCVSS10の脆弱性、サーバーサイドでのデシリアライズに欠陥が存在し攻撃者はHTTPリクエストのみで任意のコードを実行可能 - osumiakari.jp
www.osumiakari.jp/articles/202... #news #ニュース #React #ReactJS #Nextjs #React2Shell #CVE202555182
ReactにCVSS10の脆弱性、サーバーサイドでのデシリアライズに欠陥が存在し攻撃者はHTTPリクエストのみで任意のコードを実行可能
Next.jsにも影響が及ぶ、修正版が既に提供済みであるため速やかなアップデートを
www.osumiakari.jp
December 4, 2025 at 10:02 AM
PyTorch 2.3.1 リリース、バグ修正リリース
PyTorch 分散 RPC フレームワークに重大な脆弱性 ( CVE-2024-5480 CVSS10 Critical )
対策:アップデートはこちら👉 github.com/pytorch/pyto...
Releases · pytorch/pytorch
Tensors and Dynamic neural networks in Python with strong GPU acceleration - pytorch/pytorch
github.com
June 8, 2024 at 10:53 AM
My heart has got a Privilege Escalation vulnerability that’s a CVSS10. All versions…
The Attack Vector (AV) is definitely rated as “Physical”.
Looking for that special red teamer preform a “pentest” tonight.
February 14, 2025 at 4:27 PM
SAP earned a perfect CVSS 10.0 score by accidentally forgetting authorization checks in Commerce Cloud. Cue the mad rush to install patches before attackers help themselves.

#SAPEngineers #CVSS10
August 12, 2026 at 11:50 AM
ReactにCVSS10の脆弱性、サーバーサイドでのデシリアライズに欠陥が存在し攻撃者はHTTPリクエストのみで任意のコードを実行可能 www.osumiakari.jp/articles/202...
ReactにCVSS10の脆弱性、サーバーサイドでのデシリアライズに欠陥が存在し攻撃者はHTTPリクエストのみで任意のコードを実行可能
Next.jsにも影響が及ぶ、修正版が既に提供済みであるため速やかなアップデートを
www.osumiakari.jp
December 4, 2025 at 11:49 AM
CVSS 10.0 in PTC Windchill PDMLink and FlexPLM
CVSS 10.0 in PTC Windchill PDMLink and FlexPLM
There is a critical vulnerability in PTC's Windchill PDMLink and FlexPLM: https://community.ptc.com/t5/Windchill/Critical-vulnerability-CVSS10-0/m-p/1059587 https://support.eacpds.com/hc/en-us/art...
reddit.com
March 22, 2026 at 11:42 PM
September 19, 2026 at 2:00 PM
September 19, 2026 at 6:01 PM
🚨 A critical CVSS 10.0 "RufRoot" vulnerability highlights the need for immediate patching and secure configuration reviews.

🌐 spoofguard.io/blog/en/spoo...

#Vulnerability #CVSS10 #ThreatIntelligence #PatchManagement #SpoofGuard #InfoSec

Try it for FREE. 🆓
Spoofing Detection: CVSS 10 RufRoot Flaw Revealed | Spoofguard.io
✓ Spoofing detection helps organizations respond to the CVSS 10.0 RufRoot flaw. Learn the risks and best protection strategies.
spoofguard.io
July 30, 2026 at 6:10 AM
PyTorch 分散 RPC フレームワークに重大な脆弱性 ( CVE-2024-5480 CVSS10 Critical ) が発見され、強化学習、モデル並列処理などの分散トレーニング シナリオで使用されており、機械学習モデルと機密データが潜在的なRCE攻撃にさらされるリスクがあります。
huntr.com/bounties/398...
huntr - The world’s first bug bounty platform for AI/ML
The world’s first bug bounty platform for AI/ML
huntr.com
June 8, 2024 at 5:35 AM
Cisco ISE zero-day (CVE-2026-76460, CVSS 10.0) — auth bypass, active exploitation confirmed, no mitigations short of… https://0daynews.com/articles/2026-09-17-cisco-ise-cve-2026-76460-cvss10-auth-bypass/?utm_source=bluesky&utm_medium=organic_social&utm_campaign=always_on&utm_content=hub-2336
September 17, 2026 at 12:30 PM
Critical CVSS 10 GitLab file-read flaw (CVE-2026-85706) under active exploit — upgrade now. #GitLab #Security #Vulnerability #CVSS10 #Cybersecurity #DevSecOps thedailytechfeed.com/gitlab-patch...
September 11, 2026 at 4:33 PM
ぎとらぼがCVSS10とかいう激ヤバパッチリリースを出してきやがったので残業です
September 11, 2026 at 10:29 AM
CVSS 10.0 unauthenticated RCE in SAP Extended Passport Processing — September Security Patch Day is out. Not a drill. #infosec https://0daynews.com/articles/2026-09-10-sap-september-patch-day-epp-cvss10-rce/?utm_source=bluesky&utm_medium=organic_social&utm_campaign=always_on&utm_content=hub-1648
September 12, 2026 at 2:15 AM
SAP September patch day: unauthenticated RCE in Extended Passport Processing scores CVSS 10.0. Multiple additional critical… https://0daynews.com/articles/2026-09-10-sap-september-patch-day-epp-cvss10-rce/?utm_source=bluesky&utm_medium=organic_social&utm_campaign=always_on&utm_content=hub-1647
September 12, 2026 at 1:00 AM
ServiceNow Patches Three CVSS 10.0 Flaws in AI Platform — ServiceNow patches three CVSS 10.0 AI Platform flaws. Self-hosted customers must update now; hosted instances were auto-patched August 28. https://0daynews.com/articles/2026-08-29-servicenow-three-cvss10-ai-platform-flaws
August 31, 2026 at 4:00 AM
ServiceNow Patches Three CVSS 10.0 Flaws in AI Platform https://0daynews.com/articles/2026-08-29-servicenow-three-cvss10-ai-platform-flaws
August 30, 2026 at 12:00 PM
August 21, 2026 at 10:20 AM
Arista patched a CVSS 10.0 VeloCloud bug that allows unauthenticated command injection. Naturally, CISA has to force admins to actually fix it.

#cvss10 #patchorpay
July 28, 2026 at 11:42 AM