← Back to the live CVE advisory feed

CVE-2026-19685: Product identification pending

Severity
7.1 (HIGH)
Vendor
REDHAT
Patch status
Unknown
Published
2026-08-24T17:17:21.907
Modified
2026-08-24T21:16:49.700

Why it matters

High-severity vulnerability requiring prioritized review.

Recommended admin actions

  • Review and patch based on exposure, asset criticality, and business impact.
  • Treat internet-facing systems as higher priority.

Technical summary

NetworkManager did not apply the private_user restriction to the 802-1x.ca-path and phase2-ca-path directory-valued connection properties. This incomplete fix for CVE-2025-9615 allows an unprivileged local user to point a private WPA-Enterprise (802.1X) connection profile's CA path at an attacker-controlled directory, bypassing server certificate validation and enabling credential theft via a rogue access point.

CVE data is sourced from NVD/CNA records and optional enrichment. Validate against the vendor advisory before taking production action.

VULNERABILITY PULSE

LAST UPDATED: AUG 25, 2026 12:00 AM UTC
312 RECORDS
SECURE FEED ACTIVE
AFFECTED PRODUCT ACTION
CVE-2026-77995
miniOrange OAuth Client extension for Joomla
Reporter: SECURITY
10
CRITICAL
VIEW RECORD
CVE-2025-36939
Product identification pending
Reporter: DSAP-VULN-MANAGEMENT
10
CRITICAL
VIEW RECORD
CVE-2026-66897
Product identification pending
Reporter: SECURITY
9.9
CRITICAL
VIEW RECORD
CVE-2026-32559
UltimateAI
Reporter: AUDIT
9.9
CRITICAL
VIEW RECORD
CVE-2026-28165
Digits
Reporter: AUDIT
9.8
CRITICAL
VIEW RECORD
CVE-2026-32558
Affiliate Pro – Affiliate Program for WooCommerce & WordPress
Reporter: AUDIT
9.8
CRITICAL
VIEW RECORD
CVE-2026-66587
WP Cafe Pro PATCH
Reporter: AUDIT
9.8
CRITICAL
VIEW RECORD
CVE-2026-66648
Jawn
Reporter: AUDIT
9.8
CRITICAL
VIEW RECORD
CVE-2026-66650
FreightCo
Reporter: AUDIT
9.8
CRITICAL
VIEW RECORD
CVE-2026-32563
ACPT (Pro) – Custom Post Types Plugin for WordPress
Reporter: AUDIT
9.8
CRITICAL
VIEW RECORD
CVE-2026-78262
WP Project Manager PATCH
Reporter: AUDIT
9.8
CRITICAL
VIEW RECORD
CVE-2026-78265
The Events Calendar PATCH
Reporter: AUDIT
9.8
CRITICAL
VIEW RECORD
CVE-2026-78267
TranslatePress PATCH
Reporter: AUDIT
9.8
CRITICAL
VIEW RECORD
CVE-2026-78387
ransomlook
Reporter: 5A6E4751-2F3F-4070-9419-94FB35B644E8
9.4
CRITICAL
VIEW RECORD
CVE-2026-39975
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
9.4
CRITICAL
VIEW RECORD
CVE-2026-78555
ransomlook
Reporter: 5A6E4751-2F3F-4070-9419-94FB35B644E8
9.4
CRITICAL
VIEW RECORD
CVE-2026-78207
Product identification pending PATCH
Reporter: DISCLOSURE
9.3
CRITICAL
VIEW RECORD
CVE-2026-78167
ipTIME T16000M
Reporter: CNA
9.3
CRITICAL
VIEW RECORD
CVE-2026-78211
Product identification pending
Reporter: TWCERT
9.3
CRITICAL
VIEW RECORD
CVE-2026-77994
Page Builder CK extension for Joomla
Reporter: SECURITY
9.3
CRITICAL
VIEW RECORD
CVE-2026-32551
Woo Essential
Reporter: AUDIT
9.3
CRITICAL
VIEW RECORD
CVE-2026-78365
Prospero Flow CRM
Reporter: 4DAA8CEA-433A-44BD-9456-53B127FC289A
9.3
CRITICAL
VIEW RECORD
CVE-2026-67602
Product identification pending PATCH
Reporter: DISCLOSURE
9.3
CRITICAL
VIEW RECORD
CVE-2026-76070
NC63
Reporter: DISCLOSURE
9.3
CRITICAL
VIEW RECORD
CVE-2026-76071
NC63
Reporter: DISCLOSURE
9.3
CRITICAL
VIEW RECORD
CVE-2026-77915
Product identification pending PATCH
Reporter: DISCLOSURE
9.3
CRITICAL
VIEW RECORD
CVE-2026-71914
VigorAP 918R
Reporter: DISCLOSURE
9.3
CRITICAL
VIEW RECORD
CVE-2026-71921
VigorSwitch G2540xs
Reporter: DISCLOSURE
9.3
CRITICAL
VIEW RECORD
CVE-2026-76835
oauth2-proxy
Reporter: DISCLOSURE
9.3
CRITICAL
VIEW RECORD
CVE-2026-32554
WooBeWoo Product Filter Pro
Reporter: AUDIT
9.3
CRITICAL
VIEW RECORD
CVE-2026-32555
Boost
Reporter: AUDIT
9.3
CRITICAL
VIEW RECORD
CVE-2026-78370
ransomlook
Reporter: 5A6E4751-2F3F-4070-9419-94FB35B644E8
9.2
CRITICAL
VIEW RECORD
CVE-2026-78372
ransomlook
Reporter: 5A6E4751-2F3F-4070-9419-94FB35B644E8
9.2
CRITICAL
VIEW RECORD
CVE-2026-77635
cakephp PATCH
Reporter: SECURITY-ADVISORIES
9.2
CRITICAL
VIEW RECORD
CVE-2026-59564
Product identification pending
Reporter: CVE
9.1
CRITICAL
VIEW RECORD
CVE-2026-59568
Product identification pending
Reporter: CVE
9.1
CRITICAL
VIEW RECORD
CVE-2026-19874
Metal Gear Online 3
Reporter: CRET
9.1
CRITICAL
VIEW RECORD
CVE-2026-77337
authentication PATCH
Reporter: SECURITY-ADVISORIES
9.1
CRITICAL
VIEW RECORD
CVE-2026-78168
ipTIME T24000M
Reporter: CNA
8.9
HIGH
VIEW RECORD
CVE-2026-19200
Product identification pending
Reporter: CVE
8.9
HIGH
VIEW RECORD
CVE-2026-30864
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.9
HIGH
VIEW RECORD
CVE-2026-78314
DIAEnergie
Reporter: 759F5E80-C8E1-4224-BEAD-956D7B33C98B
8.8
HIGH
VIEW RECORD
CVE-2026-78315
DIAEnergie
Reporter: 759F5E80-C8E1-4224-BEAD-956D7B33C98B
8.8
HIGH
VIEW RECORD
CVE-2026-78316
DIAEnergie
Reporter: 759F5E80-C8E1-4224-BEAD-956D7B33C98B
8.8
HIGH
VIEW RECORD
CVE-2026-78317
DIAEnergie
Reporter: 759F5E80-C8E1-4224-BEAD-956D7B33C98B
8.8
HIGH
VIEW RECORD
CVE-2026-59565
Product identification pending
Reporter: CVE
8.8
HIGH
VIEW RECORD
CVE-2026-59567
Product identification pending
Reporter: CVE
8.8
HIGH
VIEW RECORD
CVE-2026-76842
mercadopago
Reporter: DISCLOSURE
8.8
HIGH
VIEW RECORD
CVE-2026-78369
ransomlook
Reporter: 5A6E4751-2F3F-4070-9419-94FB35B644E8
8.8
HIGH
VIEW RECORD
CVE-2026-78376
Product identification pending
Reporter: SECALERT
8.8
HIGH
VIEW RECORD
CVE-2026-78391
ransomlook
Reporter: 5A6E4751-2F3F-4070-9419-94FB35B644E8
8.8
HIGH
VIEW RECORD
CVE-2026-13212
Product identification pending
Reporter: VULNERABILITIES
8.8
HIGH
VIEW RECORD
CVE-2025-36940
Product identification pending
Reporter: DSAP-VULN-MANAGEMENT
8.8
HIGH
VIEW RECORD
CVE-2026-71933
VigorSwitch G2540xs
Reporter: DISCLOSURE
8.8
HIGH
VIEW RECORD
CVE-2026-78551
ransomlook
Reporter: 5A6E4751-2F3F-4070-9419-94FB35B644E8
8.8
HIGH
VIEW RECORD
CVE-2026-32560
MagicAI for WordPress – AI Text, Image, Chat, Code, and Voice Generator
Reporter: AUDIT
8.8
HIGH
VIEW RECORD
CVE-2026-32561
Booking Hub
Reporter: AUDIT
8.8
HIGH
VIEW RECORD
CVE-2026-78206
Product identification pending PATCH
Reporter: DISCLOSURE
8.7
HIGH
VIEW RECORD
CVE-2026-78208
Product identification pending PATCH
Reporter: DISCLOSURE
8.7
HIGH
VIEW RECORD
CVE-2026-78212
Product identification pending
Reporter: TWCERT
8.7
HIGH
VIEW RECORD
CVE-2026-78255
Neo
Reporter: 5A6E4751-2F3F-4070-9419-94FB35B644E8
8.7
HIGH
VIEW RECORD
CVE-2026-76841
Product identification pending PATCH
Reporter: DISCLOSURE
8.7
HIGH
VIEW RECORD
CVE-2026-76847
act
Reporter: DISCLOSURE
8.7
HIGH
VIEW RECORD
CVE-2026-76848
typeorm
Reporter: DISCLOSURE
8.7
HIGH
VIEW RECORD
CVE-2026-78380
ransomlook
Reporter: 5A6E4751-2F3F-4070-9419-94FB35B644E8
8.7
HIGH
VIEW RECORD
CVE-2026-78386
ransomlook
Reporter: 5A6E4751-2F3F-4070-9419-94FB35B644E8
8.7
HIGH
VIEW RECORD
CVE-2026-78416
Product identification pending PATCH
Reporter: 7004884B-51E2-48E8-B4A2-5CA29E80453E
8.7
HIGH
VIEW RECORD
CVE-2026-71922
VigorSwitch G2540xs
Reporter: DISCLOSURE
8.7
HIGH
VIEW RECORD
CVE-2026-76073
label-studio
Reporter: DISCLOSURE
8.7
HIGH
VIEW RECORD
CVE-2026-76836
AzuraCast
Reporter: DISCLOSURE
8.7
HIGH
VIEW RECORD
CVE-2026-9254
Archer BE800 V1
Reporter: F23511DB-6C3E-4E32-A477-6AA17D310630
8.7
HIGH
VIEW RECORD
CVE-2026-40877
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.7
HIGH
VIEW RECORD
CVE-2026-78169
HiPER 1250GW
Reporter: CNA
8.6
HIGH
VIEW RECORD
CVE-2026-28171
WooCommerce File Approval
Reporter: AUDIT
8.6
HIGH
VIEW RECORD
CVE-2026-32477
ShopBuilder Pro – Elementor WooCommerce Builder Addons
Reporter: AUDIT
8.6
HIGH
VIEW RECORD
CVE-2026-71904
VigorAP 918R
Reporter: DISCLOSURE
8.6
HIGH
VIEW RECORD
CVE-2026-71905
VigorAP 918R
Reporter: DISCLOSURE
8.6
HIGH
VIEW RECORD
CVE-2026-71906
VigorAP 918R
Reporter: DISCLOSURE
8.6
HIGH
VIEW RECORD
CVE-2026-71907
VigorAP 918R
Reporter: DISCLOSURE
8.6
HIGH
VIEW RECORD
CVE-2026-71908
VigorAP 918R
Reporter: DISCLOSURE
8.6
HIGH
VIEW RECORD
CVE-2026-71909
VigorAP 918R
Reporter: DISCLOSURE
8.6
HIGH
VIEW RECORD
CVE-2026-71910
VigorAP 918R
Reporter: DISCLOSURE
8.6
HIGH
VIEW RECORD
CVE-2026-71911
VigorAP 918R
Reporter: DISCLOSURE
8.6
HIGH
VIEW RECORD
CVE-2026-71912
VigorAP 918R
Reporter: DISCLOSURE
8.6
HIGH
VIEW RECORD
CVE-2026-71913
VigorAP 918R
Reporter: DISCLOSURE
8.6
HIGH
VIEW RECORD
CVE-2026-71915
VigorSwitch G2540xs
Reporter: DISCLOSURE
8.6
HIGH
VIEW RECORD
CVE-2026-71916
VigorSwitch G2540xs
Reporter: DISCLOSURE
8.6
HIGH
VIEW RECORD
CVE-2026-71917
VigorSwitch G2540xs
Reporter: DISCLOSURE
8.6
HIGH
VIEW RECORD
CVE-2026-71918
VigorSwitch G2540xs
Reporter: DISCLOSURE
8.6
HIGH
VIEW RECORD
CVE-2026-71919
VigorSwitch G2540xs
Reporter: DISCLOSURE
8.6
HIGH
VIEW RECORD
CVE-2026-71923
VigorSwitch G2540xs
Reporter: DISCLOSURE
8.6
HIGH
VIEW RECORD
CVE-2026-71924
VigorSwitch G2540xs
Reporter: DISCLOSURE
8.6
HIGH
VIEW RECORD
CVE-2026-71925
VigorSwitch G2540xs
Reporter: DISCLOSURE
8.6
HIGH
VIEW RECORD
CVE-2026-71926
VigorSwitch G2540xs
Reporter: DISCLOSURE
8.6
HIGH
VIEW RECORD
CVE-2026-71927
VigorSwitch G2540xs
Reporter: DISCLOSURE
8.6
HIGH
VIEW RECORD
CVE-2026-71928
VigorSwitch G2540xs
Reporter: DISCLOSURE
8.6
HIGH
VIEW RECORD
CVE-2026-71929
Product identification pending
Reporter: DISCLOSURE
8.6
HIGH
VIEW RECORD
CVE-2026-71930
Product identification pending
Reporter: DISCLOSURE
8.6
HIGH
VIEW RECORD
CVE-2026-71931
Product identification pending
Reporter: DISCLOSURE
8.6
HIGH
VIEW RECORD
CVE-2026-71934
Product identification pending
Reporter: DISCLOSURE
8.6
HIGH
VIEW RECORD

About the Vulnerability Pulse CVE Feed

The Vulnerability Pulse feed tracks live CVE advisories sourced from the National Vulnerability Database and vendor security disclosures. It is designed for SOC analysts, IT administrators, and security teams who need a fast, filterable view of current vulnerabilities without digging through raw NVD data.

How to Use the CVE Advisory Tracker

Use the severity filters to narrow results to Critical or High priority vulnerabilities. Filter by vendor to focus on software and hardware relevant to your environment. Export to CSV for reporting, ticketing, or patch prioritization workflows.

What Is a CVE Advisory?

A CVE (Common Vulnerabilities and Exposures) advisory is a public disclosure of a security vulnerability assigned a unique identifier by MITRE. Advisories include severity scores (CVSS), affected versions, and remediation guidance. Monitoring CVE advisories is a core function of vulnerability management programs and SOC operations.

CVE Analysis & Writeups

For in-depth analysis of specific vulnerabilities, visit the IT Knowledge Bases blog for CVE breakdowns, exploitation analysis, and remediation guidance written for security practitioners.