{
  "day": "2026-06-07",
  "boundary": "UTC calendar day",
  "published_count": 23,
  "by_severity": {
    "CRITICAL": 0,
    "HIGH": 1,
    "MEDIUM": 9,
    "LOW": 13
  },
  "kev_count": 0,
  "exploit_reference_count": 0,
  "awaiting_enrichment_count": 0,
  "ranking": "Sort: (1) KEV membership, descending. (2) EPSS score, descending. (3) CVSS base score, descending. (4) CVE ID, ascending. CVEs lacking EPSS or CVSS data sort below those that have it within their KEV tier and are labeled AWAITING ENRICHMENT. Missing scores are never imputed.",
  "results": [
    {
      "rank": 1,
      "cve_id": "CVE-2026-11451",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.02027,
      "epss_percentile": 0.7946,
      "kev": false,
      "kev_due_at": null,
      "vendor": "GL.iNet",
      "product": "GL-MT3000",
      "cwe": "CWE-74",
      "title": "GL.iNet GL-MT3000 FTP Protocol glc snprintf command injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-11451"
    },
    {
      "rank": 2,
      "cve_id": "CVE-2026-11452",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.01681,
      "epss_percentile": 0.75076,
      "kev": false,
      "kev_due_at": null,
      "vendor": "GL.iNet",
      "product": "GL-MT3000",
      "cwe": "CWE-74",
      "title": "GL.iNet GL-MT3000 SET_USER_PWD glc FUN_0042e200 command injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-11452"
    },
    {
      "rank": 3,
      "cve_id": "CVE-2026-11448",
      "cvss_base": 5.1,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.01582,
      "epss_percentile": 0.73559,
      "kev": false,
      "kev_due_at": null,
      "vendor": "GL.iNet",
      "product": "GL-MT3000",
      "cwe": "CWE-74",
      "title": "GL.iNet GL-MT3000 Minidlna Service rpc realpath command injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-11448"
    },
    {
      "rank": 4,
      "cve_id": "CVE-2026-11450",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.01572,
      "epss_percentile": 0.73414,
      "kev": false,
      "kev_due_at": null,
      "vendor": "GL.iNet",
      "product": "GL-MT3000",
      "cwe": "CWE-74",
      "title": "GL.iNet GL-MT3000 Path Normalization dlopen command injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-11450"
    },
    {
      "rank": 5,
      "cve_id": "CVE-2026-11449",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.01102,
      "epss_percentile": 0.63108,
      "kev": false,
      "kev_due_at": null,
      "vendor": "GL.iNet",
      "product": "GL-MT3000",
      "cwe": "CWE-74",
      "title": "GL.iNet GL-MT3000 LuCI JSON-RPC rpc rpc_sys command injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-11449"
    },
    {
      "rank": 6,
      "cve_id": "CVE-2026-11447",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": 0.01073,
      "epss_percentile": 0.62273,
      "kev": false,
      "kev_due_at": null,
      "vendor": "GL.iNet",
      "product": "GL-MT3000",
      "cwe": "CWE-74",
      "title": "GL.iNet GL-MT3000 MTK Backend iwinfo.so iwinfo_backend command injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-11447"
    },
    {
      "rank": 7,
      "cve_id": "CVE-2026-11455",
      "cvss_base": 1.3,
      "cvss_severity": "LOW",
      "epss_score": 0.00936,
      "epss_percentile": 0.5804,
      "kev": false,
      "kev_due_at": null,
      "vendor": "FoundationAgents",
      "product": "MetaGPT",
      "cwe": "CWE-74",
      "title": "FoundationAgents MetaGPT common.py check_cmd_exists command injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-11455"
    },
    {
      "rank": 8,
      "cve_id": "CVE-2026-49494",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00542,
      "epss_percentile": 0.43209,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Xcitium (formerly Comodo Security Solutions)",
      "product": "Comodo Internet Security",
      "cwe": "CWE-191",
      "title": "Xcitium Client Security / Comodo Internet Security Remote Denial of Service",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49494"
    },
    {
      "rank": 9,
      "cve_id": "CVE-2026-11457",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00329,
      "epss_percentile": 0.25872,
      "kev": false,
      "kev_due_at": null,
      "vendor": "erzhongxmu",
      "product": "JeeWMS",
      "cwe": "CWE-74",
      "title": "erzhongxmu JeeWMS JimuReport test-connection Endpoint testConnection injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-11457"
    },
    {
      "rank": 10,
      "cve_id": "CVE-2026-11467",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": 0.00323,
      "epss_percentile": 0.25164,
      "kev": false,
      "kev_due_at": null,
      "vendor": "jishenghua",
      "product": "jshERP",
      "cwe": "CWE-22",
      "title": "jishenghua jshERP addAccountHeadAndDetail Endpoint AccountHeadService.java path traversal",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-11467"
    },
    {
      "rank": 11,
      "cve_id": "CVE-2026-11463",
      "cvss_base": 2.9,
      "cvss_severity": "LOW",
      "epss_score": 0.00313,
      "epss_percentile": 0.24159,
      "kev": false,
      "kev_due_at": null,
      "vendor": "USCiLab",
      "product": "Cereal",
      "cwe": "CWE-843",
      "title": "USCiLab Cereal Shared Pointer type confusion",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-11463"
    },
    {
      "rank": 12,
      "cve_id": "CVE-2026-11460",
      "cvss_base": 2.9,
      "cvss_severity": "LOW",
      "epss_score": 0.00311,
      "epss_percentile": 0.23847,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Boost",
      "product": "Serialization",
      "cwe": "CWE-20",
      "title": "Boost Serialization improper validation of specified type of input",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-11460"
    },
    {
      "rank": 13,
      "cve_id": "CVE-2026-11462",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00294,
      "epss_percentile": 0.22015,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Chengdu Everbrite Network Technology",
      "product": "BeikeShop",
      "cwe": "CWE-266",
      "title": "Chengdu Everbrite Network Technology BeikeShop Stripe Plugin StripeController.php callback improper authorization",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-11462"
    },
    {
      "rank": 14,
      "cve_id": "CVE-2026-11458",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00292,
      "epss_percentile": 0.21844,
      "kev": false,
      "kev_due_at": null,
      "vendor": "erzhongxmu",
      "product": "JeeWMS",
      "cwe": "CWE-200",
      "title": "erzhongxmu JeeWMS Boot Actuator Endpoint actuator information disclosure",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-11458"
    },
    {
      "rank": 15,
      "cve_id": "CVE-2026-11456",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.0026,
      "epss_percentile": 0.17859,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Chanjet",
      "product": "CRM",
      "cwe": "CWE-74",
      "title": "Chanjet CRM HTTP GET Request jxf_dump_systable.php sql injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-11456"
    },
    {
      "rank": 16,
      "cve_id": "CVE-2026-11466",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": 0.00253,
      "epss_percentile": 0.16995,
      "kev": false,
      "kev_due_at": null,
      "vendor": "zilliztech",
      "product": "deep-searcher",
      "cwe": "CWE-266",
      "title": "zilliztech deep-searcher collection_router.py CollectionRouter.invoke access control",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-11466"
    },
    {
      "rank": 17,
      "cve_id": "CVE-2026-11469",
      "cvss_base": 2,
      "cvss_severity": "LOW",
      "epss_score": 0.00232,
      "epss_percentile": 0.1429,
      "kev": false,
      "kev_due_at": null,
      "vendor": "jishenghua",
      "product": "jshERP",
      "cwe": "CWE-918",
      "title": "jishenghua jshERP platformConfig Add Endpoint PlatformConfigService.java insertPlatformConfig server-side request forgery",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-11469"
    },
    {
      "rank": 18,
      "cve_id": "CVE-2026-11461",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": 0.00225,
      "epss_percentile": 0.1339,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NousResearch",
      "product": "hermes-agent",
      "cwe": "CWE-285",
      "title": "NousResearch hermes-agent resume Endpoint hermes_state.py resolve_session_by_title authorization",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-11461"
    },
    {
      "rank": 19,
      "cve_id": "CVE-2026-11464",
      "cvss_base": 1.3,
      "cvss_severity": "LOW",
      "epss_score": 0.0022,
      "epss_percentile": 0.12846,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "JeecgBoot",
      "cwe": "CWE-200",
      "title": "JeecgBoot User List Endpoint SysUserController.java queryPageList information disclosure",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-11464"
    },
    {
      "rank": 20,
      "cve_id": "CVE-2026-11465",
      "cvss_base": 1.3,
      "cvss_severity": "LOW",
      "epss_score": 0.0022,
      "epss_percentile": 0.12756,
      "kev": false,
      "kev_due_at": null,
      "vendor": "songquanpeng",
      "product": "one-api",
      "cwe": "CWE-840",
      "title": "songquanpeng one-api Redemption Code Top-Up Endpoint redemption.go Redeem logic error",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-11465"
    },
    {
      "rank": 21,
      "cve_id": "CVE-2026-11468",
      "cvss_base": 1.9,
      "cvss_severity": "LOW",
      "epss_score": 0.00214,
      "epss_percentile": 0.12113,
      "kev": false,
      "kev_due_at": null,
      "vendor": "SourceCodester",
      "product": "Hospitals Patient Records Management System",
      "cwe": "CWE-79",
      "title": "SourceCodester Hospitals Patient Records Management System page room_types cross site scripting",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-11468"
    },
    {
      "rank": 22,
      "cve_id": "CVE-2026-11453",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": 0.00193,
      "epss_percentile": 0.093,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Tiobon",
      "product": "Employee Self-Service System",
      "cwe": "CWE-74",
      "title": "Tiobon Employee Self-Service System Login Endpoint BlogSearch.aspx sql injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-11453"
    },
    {
      "rank": 23,
      "cve_id": "CVE-2026-11459",
      "cvss_base": 1.9,
      "cvss_severity": "LOW",
      "epss_score": 0.00106,
      "epss_percentile": 0.0127,
      "kev": false,
      "kev_due_at": null,
      "vendor": "SecureAge",
      "product": "CatchPulse",
      "cwe": "CWE-200",
      "title": "SecureAge CatchPulse IOCTL saappctl.sys information disclosure",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-11459"
    }
  ],
  "transactions": [
    {
      "type": "DUE_DATE_PASSED",
      "cve_id": "CVE-2026-45247",
      "detail": "DUE DATE PASSED — CVE-2026-45247 (Mirasvit Full Page Cache Warmer for Magento 2). CISA remediation deadline was June 6, 2026; still in catalog."
    }
  ],
  "attribution": "CVE Program, NVD (NIST), CISA KEV, FIRST EPSS, OSV. See /security/methodology/."
}
