{
  "day": "2026-05-24",
  "boundary": "UTC calendar day",
  "published_count": 64,
  "by_severity": {
    "CRITICAL": 0,
    "HIGH": 26,
    "MEDIUM": 16,
    "LOW": 22
  },
  "kev_count": 0,
  "exploit_reference_count": 1,
  "awaiting_enrichment_count": 0,
  "ranking": "Sort: (1) KEV membership, descending. (2) EPSS score, descending. (3) CVSS base score, descending. (4) CVE ID, ascending. CVEs lacking EPSS or CVSS data sort below those that have it within their KEV tier and are labeled AWAITING ENRICHMENT. Missing scores are never imputed.",
  "results": [
    {
      "rank": 1,
      "cve_id": "CVE-2026-9388",
      "cvss_base": 8.9,
      "cvss_severity": "HIGH",
      "epss_score": 0.0209,
      "epss_percentile": 0.80112,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Totolink",
      "product": "A8000RU",
      "cwe": "CWE-77",
      "title": "Totolink A8000RU Web Management cstecgi.cgi setScheduleCfg os command injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9388"
    },
    {
      "rank": 2,
      "cve_id": "CVE-2026-9384",
      "cvss_base": 8.9,
      "cvss_severity": "HIGH",
      "epss_score": 0.01732,
      "epss_percentile": 0.75788,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Totolink",
      "product": "A8000RU",
      "cwe": "CWE-77",
      "title": "Totolink A8000RU Web Management cstecgi.cgi setDiagnosisCfg os command injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9384"
    },
    {
      "rank": 3,
      "cve_id": "CVE-2026-9385",
      "cvss_base": 8.9,
      "cvss_severity": "HIGH",
      "epss_score": 0.01732,
      "epss_percentile": 0.75786,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Totolink",
      "product": "A8000RU",
      "cwe": "CWE-77",
      "title": "Totolink A8000RU Web Management cstecgi.cgi setTracerouteCfg os command injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9385"
    },
    {
      "rank": 4,
      "cve_id": "CVE-2026-9386",
      "cvss_base": 8.9,
      "cvss_severity": "HIGH",
      "epss_score": 0.01732,
      "epss_percentile": 0.75788,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Totolink",
      "product": "A8000RU",
      "cwe": "CWE-77",
      "title": "Totolink A8000RU Web Management cstecgi.cgi setLanguageCfg os command injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9386"
    },
    {
      "rank": 5,
      "cve_id": "CVE-2026-9387",
      "cvss_base": 8.9,
      "cvss_severity": "HIGH",
      "epss_score": 0.01732,
      "epss_percentile": 0.75785,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Totolink",
      "product": "A8000RU",
      "cwe": "CWE-77",
      "title": "Totolink A8000RU Web Management cstecgi.cgi setUpgradeFW os command injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9387"
    },
    {
      "rank": 6,
      "cve_id": "CVE-2026-9404",
      "cvss_base": 8.9,
      "cvss_severity": "HIGH",
      "epss_score": 0.01732,
      "epss_percentile": 0.75788,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Totolink",
      "product": "A8000RU",
      "cwe": "CWE-77",
      "title": "Totolink A8000RU Web Management cstecgi.cgi setDdnsCfg os command injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9404"
    },
    {
      "rank": 7,
      "cve_id": "CVE-2026-9405",
      "cvss_base": 8.9,
      "cvss_severity": "HIGH",
      "epss_score": 0.01732,
      "epss_percentile": 0.75786,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Totolink",
      "product": "A8000RU",
      "cwe": "CWE-77",
      "title": "Totolink A8000RU Web Management cstecgi.cgi setGameSpeedCfg os command injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9405"
    },
    {
      "rank": 8,
      "cve_id": "CVE-2026-9406",
      "cvss_base": 8.9,
      "cvss_severity": "HIGH",
      "epss_score": 0.01732,
      "epss_percentile": 0.75786,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Totolink",
      "product": "A8000RU",
      "cwe": "CWE-77",
      "title": "Totolink A8000RU Web Management cstecgi.cgi setRemoteCfg os command injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9406"
    },
    {
      "rank": 9,
      "cve_id": "CVE-2026-9407",
      "cvss_base": 8.9,
      "cvss_severity": "HIGH",
      "epss_score": 0.01732,
      "epss_percentile": 0.75786,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Totolink",
      "product": "A8000RU",
      "cwe": "CWE-77",
      "title": "Totolink A8000RU Web Management cstecgi.cgi setFirewallType os command injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9407"
    },
    {
      "rank": 10,
      "cve_id": "CVE-2026-9367",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.01657,
      "epss_percentile": 0.74704,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NousResearch",
      "product": "hermes-agent",
      "cwe": "CWE-77",
      "title": "NousResearch hermes-agent terminal_tool approval.py detect_dangerous_command os command injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9367"
    },
    {
      "rank": 11,
      "cve_id": "CVE-2026-9347",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": 0.01519,
      "epss_percentile": 0.72532,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Edimax",
      "product": "EW-7438RPn",
      "cwe": "CWE-77",
      "title": "Edimax EW-7438RPn webs formWizSurvey os command injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9347"
    },
    {
      "rank": 12,
      "cve_id": "CVE-2026-9359",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": 0.01398,
      "epss_percentile": 0.70263,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Edimax",
      "product": "EW-7438RPn",
      "cwe": "CWE-74",
      "title": "Edimax EW-7438RPn POST Request formHwSet command injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9359"
    },
    {
      "rank": 13,
      "cve_id": "CVE-2026-9378",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": 0.01171,
      "epss_percentile": 0.64925,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Edimax",
      "product": "BR-6675nD",
      "cwe": "CWE-74",
      "title": "Edimax BR-6675nD POST Request formHwSet command injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9378"
    },
    {
      "rank": 14,
      "cve_id": "CVE-2026-9361",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": 0.01158,
      "epss_percentile": 0.64552,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Edimax",
      "product": "EW-7438RPn",
      "cwe": "CWE-74",
      "title": "Edimax EW-7438RPn POST Request formAccep formAccept command injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9361"
    },
    {
      "rank": 15,
      "cve_id": "CVE-2026-9362",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": 0.01158,
      "epss_percentile": 0.64553,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Edimax",
      "product": "EW-7438RPn",
      "cwe": "CWE-74",
      "title": "Edimax EW-7438RPn Setting formConnectionSetting command injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9362"
    },
    {
      "rank": 16,
      "cve_id": "CVE-2026-9363",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": 0.01158,
      "epss_percentile": 0.64551,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Edimax",
      "product": "EW-7438RPn",
      "cwe": "CWE-74",
      "title": "Edimax EW-7438RPn POST Request formEZCHNwlanSetu formEZCHNwlanSetup command injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9363"
    },
    {
      "rank": 17,
      "cve_id": "CVE-2026-9379",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": 0.01158,
      "epss_percentile": 0.64551,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Edimax",
      "product": "BR-6675nD",
      "cwe": "CWE-74",
      "title": "Edimax BR-6675nD POST Request formWpsStart command injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9379"
    },
    {
      "rank": 18,
      "cve_id": "CVE-2026-9400",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": 0.01158,
      "epss_percentile": 0.64555,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Edimax",
      "product": "BR-6675nD",
      "cwe": "CWE-74",
      "title": "Edimax BR-6675nD POST Request formUSBStorage command injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9400"
    },
    {
      "rank": 19,
      "cve_id": "CVE-2026-9402",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": 0.01158,
      "epss_percentile": 0.64555,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Edimax",
      "product": "BR-6675nD",
      "cwe": "CWE-74",
      "title": "Edimax BR-6675nD POST Request formWlanMP command injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9402"
    },
    {
      "rank": 20,
      "cve_id": "CVE-2026-9351",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00676,
      "epss_percentile": 0.49425,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NousResearch",
      "product": "hermes-agent",
      "cwe": "CWE-22",
      "title": "NousResearch hermes-agent read_file Tool file_tools.py _is_blocked_device path traversal",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9351"
    },
    {
      "rank": 21,
      "cve_id": "CVE-2026-9345",
      "cvss_base": 7.4,
      "cvss_severity": "HIGH",
      "epss_score": 0.00542,
      "epss_percentile": 0.43241,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Edimax",
      "product": "EW-7438RPn",
      "cwe": "CWE-119",
      "title": "Edimax EW-7438RPn webs formWizSurvey buffer overflow",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9345"
    },
    {
      "rank": 22,
      "cve_id": "CVE-2026-9382",
      "cvss_base": 7.4,
      "cvss_severity": "HIGH",
      "epss_score": 0.00542,
      "epss_percentile": 0.43241,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Edimax",
      "product": "BR-6675nD",
      "cwe": "CWE-119",
      "title": "Edimax BR-6675nD POST Request formPPTPSetup buffer overflow",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9382"
    },
    {
      "rank": 23,
      "cve_id": "CVE-2026-4372",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00479,
      "epss_percentile": 0.39512,
      "kev": false,
      "kev_due_at": null,
      "vendor": "huggingface",
      "product": "huggingface/transformers",
      "cwe": "CWE-502",
      "title": "Arbitrary Remote Code Execution via `_attn_implementation_internal` Config Injection in huggingface/transformers",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-4372"
    },
    {
      "rank": 24,
      "cve_id": "CVE-2026-48829",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00455,
      "epss_percentile": 0.37929,
      "kev": false,
      "kev_due_at": null,
      "vendor": "GNU",
      "product": "GNU SASL",
      "cwe": "CWE-476",
      "title": "In GNU SASL before 2.2.3, DIGEST-MD5 has a NULL pointer dereference affecting both clients and servers, via a known token with no accompanying = character. This occurs in lib/digest-md5/getsubopt.c.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48829"
    },
    {
      "rank": 25,
      "cve_id": "CVE-2026-9397",
      "cvss_base": 8.2,
      "cvss_severity": "HIGH",
      "epss_score": 0.00454,
      "epss_percentile": 0.37866,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Besen",
      "product": "BS20 EV Charging Station",
      "cwe": "CWE-266",
      "title": "Besen BS20 EV Charging Station OTA Update Installation improper authorization",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9397"
    },
    {
      "rank": 26,
      "cve_id": "CVE-2026-9344",
      "cvss_base": 7.4,
      "cvss_severity": "HIGH",
      "epss_score": 0.00445,
      "epss_percentile": 0.37223,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Edimax",
      "product": "EW-7438RPn",
      "cwe": "CWE-119",
      "title": "Edimax EW-7438RPn webs formWpsStart stack-based overflow",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9344"
    },
    {
      "rank": 27,
      "cve_id": "CVE-2026-9346",
      "cvss_base": 7.4,
      "cvss_severity": "HIGH",
      "epss_score": 0.00445,
      "epss_percentile": 0.37221,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Edimax",
      "product": "EW-7438RPn",
      "cwe": "CWE-119",
      "title": "Edimax EW-7438RPn webs formWirelessTbl buffer overflow",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9346"
    },
    {
      "rank": 28,
      "cve_id": "CVE-2026-9348",
      "cvss_base": 7.4,
      "cvss_severity": "HIGH",
      "epss_score": 0.00445,
      "epss_percentile": 0.37221,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Edimax",
      "product": "EW-7438RPn",
      "cwe": "CWE-119",
      "title": "Edimax EW-7438RPn webs mp stack-based overflow",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9348"
    },
    {
      "rank": 29,
      "cve_id": "CVE-2026-9360",
      "cvss_base": 7.4,
      "cvss_severity": "HIGH",
      "epss_score": 0.00445,
      "epss_percentile": 0.37223,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Edimax",
      "product": "EW-7438RPn",
      "cwe": "CWE-119",
      "title": "Edimax EW-7438RPn POST Request formwlencrypt24g buffer overflow",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9360"
    },
    {
      "rank": 30,
      "cve_id": "CVE-2026-9380",
      "cvss_base": 7.4,
      "cvss_severity": "HIGH",
      "epss_score": 0.00445,
      "epss_percentile": 0.37224,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Edimax",
      "product": "BR-6675nD",
      "cwe": "CWE-119",
      "title": "Edimax BR-6675nD POST Request formL2TPSetup buffer overflow",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9380"
    },
    {
      "rank": 31,
      "cve_id": "CVE-2026-9381",
      "cvss_base": 7.4,
      "cvss_severity": "HIGH",
      "epss_score": 0.00445,
      "epss_percentile": 0.37222,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Edimax",
      "product": "BR-6675nD",
      "cwe": "CWE-119",
      "title": "Edimax BR-6675nD POST Request formPPPoESetup buffer overflow",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9381"
    },
    {
      "rank": 32,
      "cve_id": "CVE-2026-9393",
      "cvss_base": 7.4,
      "cvss_severity": "HIGH",
      "epss_score": 0.00445,
      "epss_percentile": 0.37223,
      "kev": false,
      "kev_due_at": null,
      "vendor": "H3C",
      "product": "Magic B0",
      "cwe": "CWE-119",
      "title": "H3C Magic B0 aspForm Edit_BasicSSID_5G buffer overflow",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9393"
    },
    {
      "rank": 33,
      "cve_id": "CVE-2026-9399",
      "cvss_base": 7.4,
      "cvss_severity": "HIGH",
      "epss_score": 0.00445,
      "epss_percentile": 0.37222,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Edimax",
      "product": "BR-6675nD",
      "cwe": "CWE-119",
      "title": "Edimax BR-6675nD POST Request formsetPPPoE buffer overflow",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9399"
    },
    {
      "rank": 34,
      "cve_id": "CVE-2026-9401",
      "cvss_base": 7.4,
      "cvss_severity": "HIGH",
      "epss_score": 0.00445,
      "epss_percentile": 0.37221,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Edimax",
      "product": "BR-6675nD",
      "cwe": "CWE-119",
      "title": "Edimax BR-6675nD POST Request formWanTcpipSetup buffer overflow",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9401"
    },
    {
      "rank": 35,
      "cve_id": "CVE-2026-9403",
      "cvss_base": 7.4,
      "cvss_severity": "HIGH",
      "epss_score": 0.00445,
      "epss_percentile": 0.37221,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Edimax",
      "product": "BR-6675nD",
      "cwe": "CWE-119",
      "title": "Edimax BR-6675nD POST Request formWlSiteSurvey buffer overflow",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9403"
    },
    {
      "rank": 36,
      "cve_id": "CVE-2026-9389",
      "cvss_base": 7.4,
      "cvss_severity": "HIGH",
      "epss_score": 0.00438,
      "epss_percentile": 0.3664,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Tenda",
      "product": "F456",
      "cwe": "CWE-119",
      "title": "Tenda F456 L7Im frmL7ImForm buffer overflow",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9389"
    },
    {
      "rank": 37,
      "cve_id": "CVE-2026-9371",
      "cvss_base": 2.9,
      "cvss_severity": "LOW",
      "epss_score": 0.00437,
      "epss_percentile": 0.36562,
      "kev": false,
      "kev_due_at": null,
      "vendor": "ItzCrazyKns",
      "product": "Vane",
      "cwe": "CWE-287",
      "title": "ItzCrazyKns Vane API route.ts missing authentication",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9371"
    },
    {
      "rank": 38,
      "cve_id": "CVE-2026-9349",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.0041,
      "epss_percentile": 0.34299,
      "kev": false,
      "kev_due_at": null,
      "vendor": "calcom",
      "product": "cal.diy",
      "cwe": "CWE-200",
      "title": "calcom cal.diy Generic React API bookings-single-view.getServerSideProps.tsx getServerSideProps information disclosure",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9349"
    },
    {
      "rank": 39,
      "cve_id": "CVE-2026-9368",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.0038,
      "epss_percentile": 0.31324,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NousResearch",
      "product": "hermes-agent",
      "cwe": "CWE-264",
      "title": "NousResearch hermes-agent Environment Variable code_execution_tool.py execute_code sandbox",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9368"
    },
    {
      "rank": 40,
      "cve_id": "CVE-2026-9373",
      "cvss_base": 6.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00357,
      "epss_percentile": 0.28983,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "JeecgBoot",
      "cwe": "CWE-287",
      "title": "JeecgBoot OpenAPI Endpoint call improper authentication",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9373"
    },
    {
      "rank": 41,
      "cve_id": "CVE-2026-9354",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00336,
      "epss_percentile": 0.26676,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NousResearch",
      "product": "hermes-agent",
      "cwe": "CWE-74",
      "title": "NousResearch hermes-agent Slack Agent/Mattermost Agent escape output",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9354"
    },
    {
      "rank": 42,
      "cve_id": "CVE-2026-9358",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": 0.00325,
      "epss_percentile": 0.2547,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "postcss-selector-parser",
      "cwe": "CWE-404",
      "title": "postcss-selector-parser AST Serialization container.js toString recursion",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9358"
    },
    {
      "rank": 43,
      "cve_id": "CVE-2026-9365",
      "cvss_base": 2.9,
      "cvss_severity": "LOW",
      "epss_score": 0.00319,
      "epss_percentile": 0.24795,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "Ettercap",
      "cwe": "CWE-119",
      "title": "Ettercap GG Dissector ec_gg.c FUNC_DECODER heap-based overflow",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9365"
    },
    {
      "rank": 44,
      "cve_id": "CVE-2026-9353",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00305,
      "epss_percentile": 0.23166,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NousResearch",
      "product": "hermes-agent",
      "cwe": "CWE-74",
      "title": "NousResearch hermes-agent Skills Guard Multi-Word Prompt skills_guard.py injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9353"
    },
    {
      "rank": 45,
      "cve_id": "CVE-2026-9366",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00305,
      "epss_percentile": 0.23165,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NousResearch",
      "product": "hermes-agent",
      "cwe": "CWE-74",
      "title": "NousResearch hermes-agent prompt_builder.py _scan_context_content injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9366"
    },
    {
      "rank": 46,
      "cve_id": "CVE-2026-3515",
      "cvss_base": 8.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00298,
      "epss_percentile": 0.22425,
      "kev": false,
      "kev_due_at": null,
      "vendor": "prefecthq",
      "product": "prefecthq/prefect",
      "cwe": "CWE-88",
      "title": "Argument Injection in prefecthq/prefect",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-3515"
    },
    {
      "rank": 47,
      "cve_id": "CVE-2026-9398",
      "cvss_base": 1.3,
      "cvss_severity": "LOW",
      "epss_score": 0.00294,
      "epss_percentile": 0.22007,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Besen",
      "product": "BS20 EV Charging Station",
      "cwe": "CWE-287",
      "title": "Besen BS20 EV Charging Station BLE/WiFi authentication replay",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9398"
    },
    {
      "rank": 48,
      "cve_id": "CVE-2026-9352",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00286,
      "epss_percentile": 0.21186,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NousResearch",
      "product": "hermes-agent",
      "cwe": "CWE-200",
      "title": "NousResearch hermes-agent Messaging Gateway local.py _make_run_env information disclosure",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9352"
    },
    {
      "rank": 49,
      "cve_id": "CVE-2026-9357",
      "cvss_base": 2,
      "cvss_severity": "LOW",
      "epss_score": 0.00279,
      "epss_percentile": 0.20482,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "vBulletin",
      "cwe": "CWE-79",
      "title": "vBulletin Login cross site scripting",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9357"
    },
    {
      "rank": 50,
      "cve_id": "CVE-2026-9350",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00278,
      "epss_percentile": 0.20344,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NousResearch",
      "product": "hermes-agent",
      "cwe": "CWE-862",
      "title": "NousResearch hermes-agent Batch Runner approval.py check_all_command_guards authorization",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9350"
    },
    {
      "rank": 51,
      "cve_id": "CVE-2026-9372",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00278,
      "epss_percentile": 0.20345,
      "kev": false,
      "kev_due_at": null,
      "vendor": "ItzCrazyKns",
      "product": "Vane",
      "cwe": "CWE-918",
      "title": "ItzCrazyKns Vane Model Provider API route.ts server-side request forgery",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9372"
    },
    {
      "rank": 52,
      "cve_id": "CVE-2026-9396",
      "cvss_base": 2.9,
      "cvss_severity": "LOW",
      "epss_score": 0.00268,
      "epss_percentile": 0.19055,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Besen",
      "product": "BS20 EV Charging Station",
      "cwe": "CWE-1021",
      "title": "Besen BS20 EV Charging Station Firmware Version Check ui layer",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9396"
    },
    {
      "rank": 53,
      "cve_id": "CVE-2026-9355",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00254,
      "epss_percentile": 0.17155,
      "kev": false,
      "kev_due_at": null,
      "vendor": "SourceCodester",
      "product": "Hospitals Patient Records Management System",
      "cwe": "CWE-74",
      "title": "SourceCodester Hospitals Patient Records Management System Master.php save_patient_history sql injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9355"
    },
    {
      "rank": 54,
      "cve_id": "CVE-2026-9356",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00254,
      "epss_percentile": 0.17149,
      "kev": false,
      "kev_due_at": null,
      "vendor": "SourceCodester",
      "product": "Hospitals Patient Records Management System",
      "cwe": "CWE-74",
      "title": "SourceCodester Hospitals Patient Records Management System manage_history.php sql injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9356"
    },
    {
      "rank": 55,
      "cve_id": "CVE-2026-9364",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00254,
      "epss_percentile": 0.17141,
      "kev": false,
      "kev_due_at": null,
      "vendor": "projectworlds",
      "product": "Online Art Gallery Shop",
      "cwe": "CWE-74",
      "title": "projectworlds Online Art Gallery Shop adminHome.php sql injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9364"
    },
    {
      "rank": 56,
      "cve_id": "CVE-2026-9383",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00254,
      "epss_percentile": 0.17155,
      "kev": false,
      "kev_due_at": null,
      "vendor": "itsourcecode",
      "product": "Electronic Judging System",
      "cwe": "CWE-74",
      "title": "itsourcecode Electronic Judging System login.php sql injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9383"
    },
    {
      "rank": 57,
      "cve_id": "CVE-2026-9376",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": 0.00252,
      "epss_percentile": 0.16927,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "JPress",
      "cwe": "CWE-266",
      "title": "JPress UCenter Article Submission Endpoint doWriteSave improper authorization",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9376"
    },
    {
      "rank": 58,
      "cve_id": "CVE-2026-9369",
      "cvss_base": 1.9,
      "cvss_severity": "LOW",
      "epss_score": 0.00229,
      "epss_percentile": 0.13921,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NousResearch",
      "product": "hermes-agent",
      "cwe": "CWE-697",
      "title": "NousResearch hermes-agent CLI web-dashboard web_server.py _discover_dashboard_plugins comparison",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9369"
    },
    {
      "rank": 59,
      "cve_id": "CVE-2026-9370",
      "cvss_base": 2.9,
      "cvss_severity": "LOW",
      "epss_score": 0.00202,
      "epss_percentile": 0.10471,
      "kev": false,
      "kev_due_at": null,
      "vendor": "ulisesbocchio",
      "product": "jasypt-spring-boot",
      "cwe": "CWE-759",
      "title": "ulisesbocchio jasypt-spring-boot Password Hash SimpleGCMConfig.java getSecretKeySaltGenerator hash predictable salt",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9370"
    },
    {
      "rank": 60,
      "cve_id": "CVE-2026-9377",
      "cvss_base": 1.9,
      "cvss_severity": "LOW",
      "epss_score": 0.00202,
      "epss_percentile": 0.10463,
      "kev": false,
      "kev_due_at": null,
      "vendor": "SourceCodester",
      "product": "SUP Online Shopping",
      "cwe": "CWE-79",
      "title": "SourceCodester SUP Online Shopping productedit.php cross site scripting",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9377"
    },
    {
      "rank": 61,
      "cve_id": "CVE-2026-9374",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00195,
      "epss_percentile": 0.0956,
      "kev": false,
      "kev_due_at": null,
      "vendor": "yangzongzhuan",
      "product": "RuoYi-Vue",
      "cwe": "CWE-284",
      "title": "yangzongzhuan RuoYi-Vue Common Upload Endpoint upload FileUploadUtils.upload unrestricted upload",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9374"
    },
    {
      "rank": 62,
      "cve_id": "CVE-2026-9394",
      "cvss_base": 1.3,
      "cvss_severity": "LOW",
      "epss_score": 0.00192,
      "epss_percentile": 0.09254,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Besen",
      "product": "BS20 EV Charging Station",
      "cwe": "CWE-521",
      "title": "Besen BS20 EV Charging Station Bluetooth Low Energy weak password",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9394"
    },
    {
      "rank": 63,
      "cve_id": "CVE-2026-48832",
      "cvss_base": 3.5,
      "cvss_severity": "LOW",
      "epss_score": 0.00186,
      "epss_percentile": 0.08482,
      "kev": false,
      "kev_due_at": null,
      "vendor": "SPIP",
      "product": "SPIP",
      "cwe": "CWE-601",
      "title": "action/cookie.php in ecrire in SPIP before 4.4.15 is prone to an open redirect vulnerability.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48832"
    },
    {
      "rank": 64,
      "cve_id": "CVE-2026-9395",
      "cvss_base": 2,
      "cvss_severity": "LOW",
      "epss_score": 0.00158,
      "epss_percentile": 0.05533,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Besen",
      "product": "BS20 EV Charging Station",
      "cwe": "CWE-522",
      "title": "Besen BS20 EV Charging Station BLE/UDP insufficiently protected credentials",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9395"
    }
  ],
  "transactions": [
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-4372",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-4372 (huggingface/transformers). Public exploit reference added."
    }
  ],
  "attribution": "CVE Program, NVD (NIST), CISA KEV, FIRST EPSS, OSV. See /security/methodology/."
}
