{"schema_version":1,"title":"Most vulnerable technologies: week of 20 to 26 July 2026 (week 30)","summary":"In the week of 20 to 26 July 2026, Junglewise Threat Intelligence recorded 3,115 new vulnerabilities: 345 critical, 984 high and 1 exploited in the wild. The most vulnerable technology was Oracle Coherence, with 98 vulnerabilities (62 critical), followed by Linux Kernel (255) and Oracle WebCenter Content (42).","url":"https://junglewise.ai/threats/weekly/2026-07-20","json_url":"https://junglewise.ai/threats/weekly/2026-07-20.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/weekly/2026-07-20","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","method":"Technologies are ranked by 10 points per vulnerability exploited in the wild, 5 per critical, 2 per high and 1 per vulnerability, over vulnerabilities published in the period (UTC). A vulnerability counts for every technology it affects.","kind":"week","period":{"end":"2026-07-26","start":"2026-07-20"},"totals":{"high":984,"critical":345,"exploited":1,"technologies":1241,"vulnerabilities":3115},"notable":[{"cve":"CVE-2026-16232","cvss":9.8,"slug":"cve-2026-16232-check-point-smartconsole-authentication-bypass-in-login-process","title":"Check Point SmartConsole authentication bypass in login process","severity":"critical","exploited":true,"published_at":"2026-07-22T14:17:15.513+00:00","url":"https://junglewise.ai/threats/cve-2026-16232-check-point-smartconsole-authentication-bypass-in-login-process"},{"cve":"CVE-2026-47668","cvss":10,"epss":0.0388,"slug":"cve-2026-47668-dbgate-remote-code-execution-in-json-script-runner","title":"DbGate remote code execution in JSON script runner","severity":"critical","exploited":false,"published_at":"2026-07-23T18:16:53.35+00:00","url":"https://junglewise.ai/threats/cve-2026-47668-dbgate-remote-code-execution-in-json-script-runner"},{"cve":"CVE-2026-46412","cvss":10,"epss":0.0077,"slug":"cve-2026-46412-beproduct-beproduct-nestjs-auth-malicious-code-injection-via-npm","title":"BeProduct @beproduct/nestjs-auth malicious code injection via npm supply chain attack","severity":"critical","exploited":false,"published_at":"2026-07-20T16:17:01+00:00","url":"https://junglewise.ai/threats/cve-2026-46412-beproduct-beproduct-nestjs-auth-malicious-code-injection-via-npm"},{"cve":"CVE-2026-66012","cvss":10,"slug":"cve-2026-66012-siyuan-missing-authorization-in-mcp-kernel-endpoint","title":"SiYuan missing authorization in MCP kernel endpoint","severity":"critical","exploited":false,"published_at":"2026-07-25T11:17:19.053+00:00","url":"https://junglewise.ai/threats/cve-2026-66012-siyuan-missing-authorization-in-mcp-kernel-endpoint"},{"cvss":10,"slug":"pheditor-authentication-bypass-in-forced-password-change-flow-b0aed4a4","title":"Pheditor authentication bypass in forced password-change flow","severity":"critical","exploited":false,"published_at":"2026-07-24T21:54:24+00:00","url":"https://junglewise.ai/threats/pheditor-authentication-bypass-in-forced-password-change-flow-b0aed4a4"},{"cvss":10,"slug":"microsoft-prompty-ssti-to-rce-in-nunjucks-renderer-68952e1f","title":"Microsoft Prompty SSTI to RCE in Nunjucks Renderer","severity":"critical","exploited":false,"published_at":"2026-07-24T16:23:59+00:00","url":"https://junglewise.ai/threats/microsoft-prompty-ssti-to-rce-in-nunjucks-renderer-68952e1f"},{"cve":"CVE-2026-58630","cvss":10,"slug":"cve-2026-58630-microsoft-azure-app-service-privilege-escalation","title":"Microsoft Azure App Service privilege escalation","severity":"critical","exploited":false,"published_at":"2026-07-24T15:18:47.847+00:00","url":"https://junglewise.ai/threats/cve-2026-58630-microsoft-azure-app-service-privilege-escalation"},{"cve":"CVE-2026-57106","cvss":10,"slug":"cve-2026-57106-microsoft-purview-data-governance-ssrf-in-data-quality","title":"Microsoft Purview Data Governance SSRF in Data Quality","severity":"critical","exploited":false,"published_at":"2026-07-24T15:18:39.633+00:00","url":"https://junglewise.ai/threats/cve-2026-57106-microsoft-purview-data-governance-ssrf-in-data-quality"},{"cve":"CVE-2026-56163","cvss":10,"slug":"cve-2026-56163-microsoft-azure-kubernetes-service-missing-authentication","title":"Microsoft Azure Kubernetes Service missing authentication privilege escalation","severity":"critical","exploited":false,"published_at":"2026-07-24T15:18:33.03+00:00","url":"https://junglewise.ai/threats/cve-2026-56163-microsoft-azure-kubernetes-service-missing-authentication"},{"cve":"CVE-2026-62825","cvss":10,"slug":"cve-2026-62825-microsoft-azure-key-vault-improper-authentication-privilege","title":"Microsoft Azure Key Vault improper authentication privilege escalation","severity":"critical","exploited":false,"published_at":"2026-07-24T01:17:47.03+00:00","url":"https://junglewise.ai/threats/cve-2026-62825-microsoft-azure-key-vault-improper-authentication-privilege"}],"vendors":[{"hub":true,"high":502,"name":"Oracle","rank":1,"slug":"oracle","critical":200,"exploited":0,"vulnerabilities":1044,"url":"https://junglewise.ai/threats/vendors/oracle"},{"hub":true,"high":0,"name":"Linux","rank":2,"slug":"linux","critical":0,"exploited":0,"vulnerabilities":255,"url":"https://junglewise.ai/threats/vendors/linux"},{"hub":true,"high":27,"name":"Npm","rank":3,"slug":"npm","critical":8,"exploited":0,"vulnerabilities":91,"url":"https://junglewise.ai/threats/vendors/npm"},{"hub":true,"high":19,"name":"Go","rank":4,"slug":"go","critical":4,"exploited":0,"vulnerabilities":76,"url":"https://junglewise.ai/threats/vendors/go"},{"hub":true,"high":24,"name":"N8n","rank":5,"slug":"n8n","critical":0,"exploited":0,"vulnerabilities":57,"url":"https://junglewise.ai/threats/vendors/n8n"},{"hub":true,"high":17,"name":"Pip","rank":6,"slug":"pip","critical":6,"exploited":0,"vulnerabilities":31,"url":"https://junglewise.ai/threats/vendors/pip"},{"hub":true,"high":0,"name":"SolarWinds","rank":7,"slug":"solarwinds","critical":14,"exploited":0,"vulnerabilities":15,"url":"https://junglewise.ai/threats/vendors/solarwinds"},{"hub":true,"high":4,"name":"Microsoft","rank":8,"slug":"microsoft","critical":11,"exploited":0,"vulnerabilities":20,"url":"https://junglewise.ai/threats/vendors/microsoft"},{"hub":true,"high":9,"name":"Gitea","rank":9,"slug":"gitea","critical":2,"exploited":0,"vulnerabilities":44,"url":"https://junglewise.ai/threats/vendors/gitea"},{"hub":true,"high":0,"name":"Mozilla","rank":10,"slug":"mozilla","critical":0,"exploited":0,"vulnerabilities":65,"url":"https://junglewise.ai/threats/vendors/mozilla"}],"generated_at":"2026-09-26T10:07:00.179841+00:00","technologies":[{"hub":true,"top":[{"cve":"CVE-2026-60217","cvss":10,"slug":"cve-2026-60217-oracle-coherence-remote-compromise-in-core-component","title":"Oracle Coherence remote compromise in Core component","severity":"critical","exploited":false,"published_at":"2026-07-21T22:17:23.207+00:00","url":"https://junglewise.ai/threats/cve-2026-60217-oracle-coherence-remote-compromise-in-core-component"},{"cve":"CVE-2026-60308","cvss":9.8,"slug":"cve-2026-60308-oracle-coherence-remote-compromise-in-core-component","title":"Oracle Coherence remote compromise in Core component","severity":"critical","exploited":false,"published_at":"2026-07-21T22:17:33.49+00:00","url":"https://junglewise.ai/threats/cve-2026-60308-oracle-coherence-remote-compromise-in-core-component"},{"cve":"CVE-2026-60306","cvss":9.8,"slug":"cve-2026-60306-oracle-coherence-remote-compromise-in-core-component","title":"Oracle Coherence remote compromise in Core component","severity":"critical","exploited":false,"published_at":"2026-07-21T22:17:33.263+00:00","url":"https://junglewise.ai/threats/cve-2026-60306-oracle-coherence-remote-compromise-in-core-component"}],"high":21,"name":"Oracle Coherence","rank":1,"slug":"coherence","score":450,"vendor":{"name":"Oracle","slug":"oracle"},"critical":62,"max_cvss":10,"max_epss":null,"exploited":0,"vulnerabilities":98,"url":"https://junglewise.ai/threats/technologies/coherence"},{"hub":true,"top":[{"cve":"CVE-2026-64320","cvss":8.2,"slug":"cve-2026-64320-linux-kernel-nvmet-out-of-bounds-heap-read-in-discovery-get-log","title":"Linux Kernel nvmet out-of-bounds heap read in Discovery Get Log Page","severity":"info","exploited":false,"published_at":"2026-07-25T10:17:13.407+00:00","url":"https://junglewise.ai/threats/cve-2026-64320-linux-kernel-nvmet-out-of-bounds-heap-read-in-discovery-get-log"},{"cve":"CVE-2026-64502","cvss":7.8,"slug":"cve-2026-64502-linux-kernel-heap-overflow-in-ad-sigma-delta-adc-driver","title":"Linux Kernel heap overflow in ad_sigma_delta ADC driver","severity":"info","exploited":false,"published_at":"2026-07-25T10:17:36.2+00:00","url":"https://junglewise.ai/threats/cve-2026-64502-linux-kernel-heap-overflow-in-ad-sigma-delta-adc-driver"},{"cve":"CVE-2026-64469","cvss":7.8,"slug":"cve-2026-64469-linux-kernel-use-after-free-in-binder-thread-release","title":"Linux Kernel use-after-free in binder_thread_release","severity":"info","exploited":false,"published_at":"2026-07-25T10:17:32.247+00:00","url":"https://junglewise.ai/threats/cve-2026-64469-linux-kernel-use-after-free-in-binder-thread-release"}],"high":0,"name":"Linux Kernel","rank":2,"slug":"kernel","score":255,"vendor":{"name":"Linux","slug":"linux"},"critical":0,"max_cvss":8.2,"max_epss":null,"exploited":0,"vulnerabilities":255,"url":"https://junglewise.ai/threats/technologies/kernel"},{"hub":true,"top":[{"cve":"CVE-2026-60644","cvss":10,"slug":"cve-2026-60644-oracle-webcenter-content-remote-compromise-in-web-content","title":"Oracle WebCenter Content remote compromise in Web Content Management","severity":"critical","exploited":false,"published_at":"2026-07-21T22:18:05.193+00:00","url":"https://junglewise.ai/threats/cve-2026-60644-oracle-webcenter-content-remote-compromise-in-web-content"},{"cve":"CVE-2026-60663","cvss":9.9,"slug":"cve-2026-60663-oracle-webcenter-content-takeover-in-web-content-management","title":"Oracle WebCenter Content takeover in Web Content Management","severity":"critical","exploited":false,"published_at":"2026-07-21T22:18:07.15+00:00","url":"https://junglewise.ai/threats/cve-2026-60663-oracle-webcenter-content-takeover-in-web-content-management"},{"cve":"CVE-2026-60435","cvss":9.8,"slug":"cve-2026-60435-oracle-webcenter-content-remote-compromise-in-content-server","title":"Oracle WebCenter Content remote compromise in Content Server","severity":"critical","exploited":false,"published_at":"2026-07-21T22:17:45.947+00:00","url":"https://junglewise.ai/threats/cve-2026-60435-oracle-webcenter-content-remote-compromise-in-content-server"}],"high":36,"name":"Oracle WebCenter Content","rank":3,"slug":"webcenter-content","score":144,"vendor":{"name":"Oracle","slug":"oracle"},"critical":6,"max_cvss":10,"max_epss":null,"exploited":0,"vulnerabilities":42,"url":"https://junglewise.ai/threats/technologies/webcenter-content"},{"hub":true,"top":[{"cvss":8.9,"slug":"n8n-account-takeover-in-token-exchange-embed-login-d457736c","title":"n8n account takeover in Token Exchange Embed Login","severity":"high","exploited":false,"published_at":"2026-07-22T22:04:54+00:00","url":"https://junglewise.ai/threats/n8n-account-takeover-in-token-exchange-embed-login-d457736c"},{"cvss":8.9,"slug":"n8n-toctou-race-condition-in-git-node-clone-operation-1ccac220","title":"n8n TOCTOU race condition in Git node clone operation","severity":"high","exploited":false,"published_at":"2026-07-22T12:32:18+00:00","url":"https://junglewise.ai/threats/n8n-toctou-race-condition-in-git-node-clone-operation-1ccac220"},{"cvss":8.9,"slug":"n8n-privilege-escalation-and-code-execution-in-token-exchange-module-e189b3bb","title":"n8n privilege escalation and code execution in Token Exchange module","severity":"high","exploited":false,"published_at":"2026-07-22T12:32:17+00:00","url":"https://junglewise.ai/threats/n8n-privilege-escalation-and-code-execution-in-token-exchange-module-e189b3bb"}],"high":24,"name":"N8n","rank":4,"slug":"n8n","score":106,"vendor":{"name":"N8n","slug":"n8n"},"critical":0,"max_cvss":8.9,"max_epss":0.0069,"exploited":0,"vulnerabilities":58,"url":"https://junglewise.ai/threats/technologies/n8n"},{"hub":true,"top":[{"cve":"CVE-2026-60389","cvss":10,"slug":"cve-2026-60389-oracle-service-delivery-platform-remote-compromise-in-messaging","title":"Oracle Service Delivery Platform remote compromise in Messaging Enabler","severity":"critical","exploited":false,"published_at":"2026-07-21T22:17:41.717+00:00","url":"https://junglewise.ai/threats/cve-2026-60389-oracle-service-delivery-platform-remote-compromise-in-messaging"},{"cve":"CVE-2026-60379","cvss":10,"slug":"cve-2026-60379-oracle-service-delivery-platform-remote-compromise-in-messaging","title":"Oracle Service Delivery Platform remote compromise in Messaging Enabler","severity":"critical","exploited":false,"published_at":"2026-07-21T22:17:40.597+00:00","url":"https://junglewise.ai/threats/cve-2026-60379-oracle-service-delivery-platform-remote-compromise-in-messaging"},{"cve":"CVE-2026-60381","cvss":9.9,"slug":"cve-2026-60381-oracle-service-delivery-platform-compromise-in-messaging-enabler","title":"Oracle Service Delivery Platform compromise in Messaging Enabler","severity":"critical","exploited":false,"published_at":"2026-07-21T22:17:40.827+00:00","url":"https://junglewise.ai/threats/cve-2026-60381-oracle-service-delivery-platform-compromise-in-messaging-enabler"}],"high":3,"name":"Oracle Service Delivery Platform","rank":5,"slug":"service-delivery-platform","score":106,"vendor":{"name":"Oracle","slug":"oracle"},"critical":16,"max_cvss":10,"max_epss":null,"exploited":0,"vulnerabilities":20,"url":"https://junglewise.ai/threats/technologies/service-delivery-platform"},{"hub":true,"top":[{"cve":"CVE-2026-60206","cvss":9.9,"slug":"cve-2026-60206-oracle-weblogic-server-takeover-via-saml-in-core-component","title":"Oracle WebLogic Server takeover via SAML in Core component","severity":"critical","exploited":false,"published_at":"2026-07-21T22:17:21.953+00:00","url":"https://junglewise.ai/threats/cve-2026-60206-oracle-weblogic-server-takeover-via-saml-in-core-component"},{"cve":"CVE-2026-60294","cvss":9.8,"slug":"cve-2026-60294-oracle-weblogic-server-remote-compromise-in-core-component","title":"Oracle WebLogic Server remote compromise in Core component","severity":"critical","exploited":false,"published_at":"2026-07-21T22:17:31.94+00:00","url":"https://junglewise.ai/threats/cve-2026-60294-oracle-weblogic-server-remote-compromise-in-core-component"},{"cve":"CVE-2026-60292","cvss":9.8,"slug":"cve-2026-60292-oracle-weblogic-server-remote-compromise-in-core-component","title":"Oracle WebLogic Server remote compromise in Core component","severity":"critical","exploited":false,"published_at":"2026-07-21T22:17:31.713+00:00","url":"https://junglewise.ai/threats/cve-2026-60292-oracle-weblogic-server-remote-compromise-in-core-component"}],"high":12,"name":"Oracle WebLogic Server","rank":6,"slug":"weblogic-server","score":102,"vendor":{"name":"Oracle","slug":"oracle"},"critical":11,"max_cvss":9.9,"max_epss":null,"exploited":0,"vulnerabilities":23,"url":"https://junglewise.ai/threats/technologies/weblogic-server"},{"hub":true,"top":[{"cve":"CVE-2026-28321","cvss":9.1,"slug":"cve-2026-28321-solarwinds-serv-u-broken-access-control-privilege-escalation","title":"SolarWinds Serv-U broken access control privilege escalation","severity":"critical","exploited":false,"published_at":"2026-07-21T16:17:10.293+00:00","url":"https://junglewise.ai/threats/cve-2026-28321-solarwinds-serv-u-broken-access-control-privilege-escalation"},{"cve":"CVE-2026-28317","cvss":9.1,"slug":"cve-2026-28317-solarwinds-serv-u-privilege-escalation-via-idor","title":"SolarWinds Serv-U privilege escalation via IDOR","severity":"critical","exploited":false,"published_at":"2026-07-21T16:17:10.157+00:00","url":"https://junglewise.ai/threats/cve-2026-28317-solarwinds-serv-u-privilege-escalation-via-idor"},{"cve":"CVE-2026-28316","cvss":9.1,"slug":"cve-2026-28316-solarwinds-serv-u-idor-privilege-escalation-to-root","title":"SolarWinds Serv-U IDOR privilege escalation to root","severity":"critical","exploited":false,"published_at":"2026-07-21T16:17:09.943+00:00","url":"https://junglewise.ai/threats/cve-2026-28316-solarwinds-serv-u-idor-privilege-escalation-to-root"}],"high":0,"name":"SolarWinds Serv-U","rank":7,"slug":"serv-u","score":85,"vendor":{"name":"SolarWinds","slug":"solarwinds"},"critical":14,"max_cvss":9.1,"max_epss":null,"exploited":0,"vulnerabilities":15,"url":"https://junglewise.ai/threats/technologies/serv-u"},{"hub":true,"top":[{"cve":"CVE-2026-60360","cvss":10,"slug":"cve-2026-60360-oracle-unified-directory-remote-compromise-in-oud-core","title":"Oracle Unified Directory remote compromise in OUD Core","severity":"critical","exploited":false,"published_at":"2026-07-21T22:17:39.293+00:00","url":"https://junglewise.ai/threats/cve-2026-60360-oracle-unified-directory-remote-compromise-in-oud-core"},{"cve":"CVE-2026-60429","cvss":9.9,"slug":"cve-2026-60429-oracle-unified-directory-compromise-in-oud-core","title":"Oracle Unified Directory compromise in OUD Core","severity":"critical","exploited":false,"published_at":"2026-07-21T22:17:45.357+00:00","url":"https://junglewise.ai/threats/cve-2026-60429-oracle-unified-directory-compromise-in-oud-core"},{"cve":"CVE-2026-60422","cvss":9.9,"slug":"cve-2026-60422-oracle-unified-directory-security-bypass-in-oud-core","title":"Oracle Unified Directory security bypass in OUD Core","severity":"critical","exploited":false,"published_at":"2026-07-21T22:17:44.557+00:00","url":"https://junglewise.ai/threats/cve-2026-60422-oracle-unified-directory-security-bypass-in-oud-core"}],"high":16,"name":"Oracle Unified Directory","rank":8,"slug":"unified-directory","score":84,"vendor":{"name":"Oracle","slug":"oracle"},"critical":6,"max_cvss":10,"max_epss":null,"exploited":0,"vulnerabilities":22,"url":"https://junglewise.ai/threats/technologies/unified-directory"},{"hub":true,"top":[{"cve":"CVE-2026-60524","cvss":9.9,"slug":"cve-2026-60524-oracle-webcenter-enterprise-capture-remote-takeover-in-client","title":"Oracle WebCenter Enterprise Capture remote takeover in Client Bundle","severity":"critical","exploited":false,"published_at":"2026-07-21T22:17:52.067+00:00","url":"https://junglewise.ai/threats/cve-2026-60524-oracle-webcenter-enterprise-capture-remote-takeover-in-client"},{"cve":"CVE-2026-60461","cvss":9.9,"slug":"cve-2026-60461-oracle-webcenter-enterprise-capture-remote-code-execution-in","title":"Oracle WebCenter Enterprise Capture remote code execution in Client Bundle","severity":"critical","exploited":false,"published_at":"2026-07-21T22:17:48.53+00:00","url":"https://junglewise.ai/threats/cve-2026-60461-oracle-webcenter-enterprise-capture-remote-code-execution-in"},{"cve":"CVE-2026-60459","cvss":9.9,"slug":"cve-2026-60459-oracle-webcenter-enterprise-capture-compromise-in-client-bundle","title":"Oracle WebCenter Enterprise Capture compromise in Client Bundle","severity":"critical","exploited":false,"published_at":"2026-07-21T22:17:48.31+00:00","url":"https://junglewise.ai/threats/cve-2026-60459-oracle-webcenter-enterprise-capture-compromise-in-client-bundle"}],"high":3,"name":"Oracle WebCenter Enterprise Capture","rank":9,"slug":"webcenter-enterprise-capture","score":75,"vendor":{"name":"Oracle","slug":"oracle"},"critical":11,"max_cvss":9.9,"max_epss":null,"exploited":0,"vulnerabilities":14,"url":"https://junglewise.ai/threats/technologies/webcenter-enterprise-capture"},{"hub":true,"top":[{"cve":"CVE-2026-58443","cvss":9.6,"slug":"cve-2026-58443-gitea-public-only-token-scope-bypass-in-pull-request-updates","title":"Gitea public-only token scope bypass in pull request updates","severity":"critical","exploited":false,"published_at":"2026-07-21T20:38:06+00:00","url":"https://junglewise.ai/threats/cve-2026-58443-gitea-public-only-token-scope-bypass-in-pull-request-updates"},{"cve":"CVE-2026-56750","cvss":9.1,"slug":"cve-2026-56750-gitea-insufficient-session-expiration-in-remember-me-auth-token","title":"Gitea insufficient session expiration in Remember-Me auth token","severity":"critical","exploited":false,"published_at":"2026-07-21T20:20:21+00:00","url":"https://junglewise.ai/threats/cve-2026-56750-gitea-insufficient-session-expiration-in-remember-me-auth-token"},{"cve":"CVE-2026-56654","cvss":8.8,"slug":"cve-2026-56654-gitea-privilege-escalation-via-access-token-scope-escalation-in","title":"Gitea privilege escalation via access token scope escalation in API","severity":"high","exploited":false,"published_at":"2026-07-21T20:24:25+00:00","url":"https://junglewise.ai/threats/cve-2026-56654-gitea-privilege-escalation-via-access-token-scope-escalation-in"}],"high":9,"name":"Gitea","rank":10,"slug":"gitea","score":72,"vendor":{"name":"Gitea","slug":"gitea"},"critical":2,"max_cvss":9.6,"max_epss":null,"exploited":0,"vulnerabilities":44,"url":"https://junglewise.ai/threats/technologies/gitea"},{"hub":true,"top":[{"cvss":9.8,"slug":"budibase-rest-datasource-credential-theft-via-cross-origin-leak-82cdb532","title":"Budibase REST datasource credential theft via cross-origin leak","severity":"critical","exploited":false,"published_at":"2026-07-24T21:22:51+00:00","url":"https://junglewise.ai/threats/budibase-rest-datasource-credential-theft-via-cross-origin-leak-82cdb532"},{"cvss":9.8,"slug":"budibase-oidc-sso-account-takeover-via-unverified-email-linking-194a7c08","title":"Budibase OIDC SSO account takeover via unverified email linking","severity":"critical","exploited":false,"published_at":"2026-07-24T21:17:39+00:00","url":"https://junglewise.ai/threats/budibase-oidc-sso-account-takeover-via-unverified-email-linking-194a7c08"},{"cvss":9.6,"slug":"budibase-sql-injection-in-mysql-integration-810e2ec1","title":"Budibase SQL injection in MySQL integration","severity":"critical","exploited":false,"published_at":"2026-07-24T21:15:02+00:00","url":"https://junglewise.ai/threats/budibase-sql-injection-in-mysql-integration-810e2ec1"}],"high":11,"name":"Npm @Budibase/Server","rank":11,"slug":"budibase-server","score":67,"vendor":{"name":"Npm","slug":"npm"},"critical":3,"max_cvss":9.8,"max_epss":0.0057,"exploited":0,"vulnerabilities":30,"url":"https://junglewise.ai/threats/technologies/budibase-server"},{"hub":true,"top":[{"cve":"CVE-2026-58443","cvss":9.6,"slug":"cve-2026-58443-gitea-public-only-token-scope-bypass-in-pull-request-updates","title":"Gitea public-only token scope bypass in pull request updates","severity":"critical","exploited":false,"published_at":"2026-07-21T20:38:06+00:00","url":"https://junglewise.ai/threats/cve-2026-58443-gitea-public-only-token-scope-bypass-in-pull-request-updates"},{"cve":"CVE-2026-56750","cvss":9.1,"slug":"cve-2026-56750-gitea-insufficient-session-expiration-in-remember-me-auth-token","title":"Gitea insufficient session expiration in Remember-Me auth token","severity":"critical","exploited":false,"published_at":"2026-07-21T20:20:21+00:00","url":"https://junglewise.ai/threats/cve-2026-56750-gitea-insufficient-session-expiration-in-remember-me-auth-token"},{"cve":"CVE-2026-56654","cvss":8.8,"slug":"cve-2026-56654-gitea-privilege-escalation-via-access-token-scope-escalation-in","title":"Gitea privilege escalation via access token scope escalation in API","severity":"high","exploited":false,"published_at":"2026-07-21T20:24:25+00:00","url":"https://junglewise.ai/threats/cve-2026-56654-gitea-privilege-escalation-via-access-token-scope-escalation-in"}],"high":8,"name":"Go Code.gitea.io/Gitea","rank":12,"slug":"code-gitea-io-gitea","score":62,"vendor":{"name":"Go","slug":"go"},"critical":2,"max_cvss":9.6,"max_epss":null,"exploited":0,"vulnerabilities":36,"url":"https://junglewise.ai/threats/technologies/code-gitea-io-gitea"},{"hub":true,"top":[{"cve":"CVE-2026-16368","cvss":8.8,"slug":"cve-2026-16368-mozilla-firefox-incorrect-boundary-conditions-in-webassembly","title":"Mozilla Firefox incorrect boundary conditions in WebAssembly","severity":"info","exploited":false,"published_at":"2026-07-21T13:17:05.36+00:00","url":"https://junglewise.ai/threats/cve-2026-16368-mozilla-firefox-incorrect-boundary-conditions-in-webassembly"},{"cve":"CVE-2026-16367","cvss":8.8,"slug":"cve-2026-16367-mozilla-firefox-sandbox-escape-in-disability-access-apis","title":"Mozilla Firefox sandbox escape in Disability Access APIs","severity":"info","exploited":false,"published_at":"2026-07-21T13:17:05.24+00:00","url":"https://junglewise.ai/threats/cve-2026-16367-mozilla-firefox-sandbox-escape-in-disability-access-apis"},{"cve":"CVE-2026-16362","cvss":8.8,"slug":"cve-2026-16362-mozilla-firefox-use-after-free-in-webrtc-audio-video-component","title":"Mozilla Firefox use-after-free in WebRTC Audio/Video component","severity":"info","exploited":false,"published_at":"2026-07-21T13:17:04.733+00:00","url":"https://junglewise.ai/threats/cve-2026-16362-mozilla-firefox-use-after-free-in-webrtc-audio-video-component"}],"high":0,"name":"Mozilla Firefox","rank":13,"slug":"firefox","score":60,"vendor":{"name":"Mozilla","slug":"mozilla"},"critical":0,"max_cvss":8.8,"max_epss":null,"exploited":0,"vulnerabilities":60,"url":"https://junglewise.ai/threats/technologies/firefox"},{"hub":true,"top":[{"cve":"CVE-2026-61146","cvss":9.9,"slug":"cve-2026-61146-oracle-commerce-guided-search-compromise-in-content-acquisition","title":"Oracle Commerce Guided Search compromise in Content Acquisition System","severity":"critical","exploited":false,"published_at":"2026-07-21T22:18:45.99+00:00","url":"https://junglewise.ai/threats/cve-2026-61146-oracle-commerce-guided-search-compromise-in-content-acquisition"},{"cve":"CVE-2026-61161","cvss":9.8,"slug":"cve-2026-61161-oracle-commerce-guided-search-compromise-in-endeca-application","title":"Oracle Commerce Guided Search compromise in Endeca Application Controller","severity":"critical","exploited":false,"published_at":"2026-07-21T22:18:47.687+00:00","url":"https://junglewise.ai/threats/cve-2026-61161-oracle-commerce-guided-search-compromise-in-endeca-application"},{"cve":"CVE-2026-61145","cvss":9.8,"slug":"cve-2026-61145-oracle-commerce-guided-search-takeover-in-content-acquisition","title":"Oracle Commerce Guided Search takeover in Content Acquisition System","severity":"critical","exploited":false,"published_at":"2026-07-21T22:18:45.88+00:00","url":"https://junglewise.ai/threats/cve-2026-61145-oracle-commerce-guided-search-takeover-in-content-acquisition"}],"high":11,"name":"Oracle Commerce Guided Search","rank":14,"slug":"commerce-guided-search","score":59,"vendor":{"name":"Oracle","slug":"oracle"},"critical":4,"max_cvss":9.9,"max_epss":null,"exploited":0,"vulnerabilities":17,"url":"https://junglewise.ai/threats/technologies/commerce-guided-search"},{"hub":true,"top":[{"cve":"CVE-2026-60358","cvss":10,"slug":"cve-2026-60358-oracle-access-manager-compromise-in-authentication-engine","title":"Oracle Access Manager compromise in Authentication Engine","severity":"critical","exploited":false,"published_at":"2026-07-21T22:17:39.057+00:00","url":"https://junglewise.ai/threats/cve-2026-60358-oracle-access-manager-compromise-in-authentication-engine"},{"cve":"CVE-2026-60333","cvss":9.9,"slug":"cve-2026-60333-oracle-access-manager-takeover-via-authentication-engine","title":"Oracle Access Manager takeover via Authentication Engine","severity":"critical","exploited":false,"published_at":"2026-07-21T22:17:36.36+00:00","url":"https://junglewise.ai/threats/cve-2026-60333-oracle-access-manager-takeover-via-authentication-engine"},{"cve":"CVE-2026-61065","cvss":9.8,"slug":"cve-2026-61065-oracle-access-manager-compromise-in-authentication-engine","title":"Oracle Access Manager compromise in Authentication Engine","severity":"critical","exploited":false,"published_at":"2026-07-21T22:18:37.313+00:00","url":"https://junglewise.ai/threats/cve-2026-61065-oracle-access-manager-compromise-in-authentication-engine"}],"high":7,"name":"Oracle Access Manager","rank":15,"slug":"access-manager","score":59,"vendor":{"name":"Oracle","slug":"oracle"},"critical":6,"max_cvss":10,"max_epss":null,"exploited":0,"vulnerabilities":15,"url":"https://junglewise.ai/threats/technologies/access-manager"},{"hub":true,"top":[{"cve":"CVE-2026-46994","cvss":9.8,"slug":"cve-2026-46994-oracle-enterprise-manager-base-platform-takeover-in-agent-next","title":"Oracle Enterprise Manager Base Platform takeover in Agent Next Gen","severity":"critical","exploited":false,"published_at":"2026-07-21T22:17:04.663+00:00","url":"https://junglewise.ai/threats/cve-2026-46994-oracle-enterprise-manager-base-platform-takeover-in-agent-next"},{"cve":"CVE-2026-46989","cvss":9.1,"slug":"cve-2026-46989-oracle-enterprise-manager-base-platform-vulnerability-in-ui","title":"Oracle Enterprise Manager Base Platform vulnerability in UI Framework","severity":"critical","exploited":false,"published_at":"2026-07-21T22:17:04.037+00:00","url":"https://junglewise.ai/threats/cve-2026-46989-oracle-enterprise-manager-base-platform-vulnerability-in-ui"},{"cve":"CVE-2026-47004","cvss":8.8,"slug":"cve-2026-47004-oracle-enterprise-manager-base-platform-takeover-in-self-update","title":"Oracle Enterprise Manager Base Platform takeover in Self Update Framework","severity":"high","exploited":false,"published_at":"2026-07-21T22:17:05.797+00:00","url":"https://junglewise.ai/threats/cve-2026-47004-oracle-enterprise-manager-base-platform-takeover-in-self-update"}],"high":12,"name":"Oracle Enterprise Manager Base Platform","rank":16,"slug":"enterprise-manager-base-platform","score":57,"vendor":{"name":"Oracle","slug":"oracle"},"critical":2,"max_cvss":9.8,"max_epss":null,"exploited":0,"vulnerabilities":23,"url":"https://junglewise.ai/threats/technologies/enterprise-manager-base-platform"},{"hub":true,"top":[{"cve":"CVE-2026-47410","cvss":9.8,"epss":0.0064,"slug":"cve-2026-47410-mervinpraison-praisonai-platform-hardcoded-jwt-secret","title":"MervinPraison PraisonAI Platform hardcoded JWT secret","severity":"critical","exploited":false,"published_at":"2026-07-21T17:17:09.773+00:00","url":"https://junglewise.ai/threats/cve-2026-47410-mervinpraison-praisonai-platform-hardcoded-jwt-secret"},{"cve":"CVE-2026-47407","cvss":9.8,"slug":"cve-2026-47407-mervinpraison-praisonai-platform-idor-and-privilege-escalation","title":"MervinPraison PraisonAI Platform IDOR and privilege escalation","severity":"critical","exploited":false,"published_at":"2026-07-21T17:17:09.363+00:00","url":"https://junglewise.ai/threats/cve-2026-47407-mervinpraison-praisonai-platform-idor-and-privilege-escalation"},{"cve":"CVE-2026-47416","cvss":9.6,"epss":0.0036,"slug":"cve-2026-47416-mervinpraison-praisonai-platform-privilege-escalation-in","title":"MervinPraison PraisonAI Platform privilege escalation in workspace members endpoint","severity":"critical","exploited":false,"published_at":"2026-07-21T18:17:00.563+00:00","url":"https://junglewise.ai/threats/cve-2026-47416-mervinpraison-praisonai-platform-privilege-escalation-in"}],"high":10,"name":"Pip Praisonai-Platform","rank":17,"slug":"praisonai-platform","score":56,"vendor":{"name":"Pip","slug":"pip"},"critical":4,"max_cvss":9.8,"max_epss":0.0064,"exploited":0,"vulnerabilities":16,"url":"https://junglewise.ai/threats/technologies/praisonai-platform"},{"hub":true,"top":[{"cve":"CVE-2026-60163","cvss":8.4,"slug":"cve-2026-60163-oracle-mysql-group-replication-plugin-takeover-vulnerability","title":"Oracle MySQL Group Replication Plugin takeover vulnerability","severity":"high","exploited":false,"published_at":"2026-07-21T22:17:17.003+00:00","url":"https://junglewise.ai/threats/cve-2026-60163-oracle-mysql-group-replication-plugin-takeover-vulnerability"},{"cve":"CVE-2026-60315","cvss":8.2,"slug":"cve-2026-60315-oracle-mysql-server-and-cluster-denial-of-service-in-x-plugin","title":"Oracle MySQL Server and Cluster denial of service in X Plugin","severity":"high","exploited":false,"published_at":"2026-07-21T22:17:34.283+00:00","url":"https://junglewise.ai/threats/cve-2026-60315-oracle-mysql-server-and-cluster-denial-of-service-in-x-plugin"},{"cve":"CVE-2026-61094","cvss":7.2,"slug":"cve-2026-61094-oracle-mysql-server-and-mysql-cluster-compromise-in-replication","title":"Oracle MySQL Server and MySQL Cluster compromise in Replication component","severity":"high","exploited":false,"published_at":"2026-07-21T22:18:40.443+00:00","url":"https://junglewise.ai/threats/cve-2026-61094-oracle-mysql-server-and-mysql-cluster-compromise-in-replication"}],"high":4,"name":"Oracle MySQL Cluster","rank":18,"slug":"mysql-cluster","score":51,"vendor":{"name":"Oracle","slug":"oracle"},"critical":0,"max_cvss":8.4,"max_epss":null,"exploited":0,"vulnerabilities":43,"url":"https://junglewise.ai/threats/technologies/mysql-cluster"},{"hub":true,"top":[{"cve":"CVE-2026-61146","cvss":9.9,"slug":"cve-2026-61146-oracle-commerce-guided-search-compromise-in-content-acquisition","title":"Oracle Commerce Guided Search compromise in Content Acquisition System","severity":"critical","exploited":false,"published_at":"2026-07-21T22:18:45.99+00:00","url":"https://junglewise.ai/threats/cve-2026-61146-oracle-commerce-guided-search-compromise-in-content-acquisition"},{"cve":"CVE-2026-61161","cvss":9.8,"slug":"cve-2026-61161-oracle-commerce-guided-search-compromise-in-endeca-application","title":"Oracle Commerce Guided Search compromise in Endeca Application Controller","severity":"critical","exploited":false,"published_at":"2026-07-21T22:18:47.687+00:00","url":"https://junglewise.ai/threats/cve-2026-61161-oracle-commerce-guided-search-compromise-in-endeca-application"},{"cve":"CVE-2026-61145","cvss":9.8,"slug":"cve-2026-61145-oracle-commerce-guided-search-takeover-in-content-acquisition","title":"Oracle Commerce Guided Search takeover in Content Acquisition System","severity":"critical","exploited":false,"published_at":"2026-07-21T22:18:45.88+00:00","url":"https://junglewise.ai/threats/cve-2026-61145-oracle-commerce-guided-search-takeover-in-content-acquisition"}],"high":10,"name":"Oracle Commerce Experience Manager","rank":19,"slug":"commerce-experience-manager","score":50,"vendor":{"name":"Oracle","slug":"oracle"},"critical":3,"max_cvss":9.9,"max_epss":null,"exploited":0,"vulnerabilities":15,"url":"https://junglewise.ai/threats/technologies/commerce-experience-manager"},{"hub":true,"top":[{"cve":"CVE-2026-60163","cvss":8.4,"slug":"cve-2026-60163-oracle-mysql-group-replication-plugin-takeover-vulnerability","title":"Oracle MySQL Group Replication Plugin takeover vulnerability","severity":"high","exploited":false,"published_at":"2026-07-21T22:17:17.003+00:00","url":"https://junglewise.ai/threats/cve-2026-60163-oracle-mysql-group-replication-plugin-takeover-vulnerability"},{"cve":"CVE-2026-60315","cvss":8.2,"slug":"cve-2026-60315-oracle-mysql-server-and-cluster-denial-of-service-in-x-plugin","title":"Oracle MySQL Server and Cluster denial of service in X Plugin","severity":"high","exploited":false,"published_at":"2026-07-21T22:17:34.283+00:00","url":"https://junglewise.ai/threats/cve-2026-60315-oracle-mysql-server-and-cluster-denial-of-service-in-x-plugin"},{"cve":"CVE-2026-61094","cvss":7.2,"slug":"cve-2026-61094-oracle-mysql-server-and-mysql-cluster-compromise-in-replication","title":"Oracle MySQL Server and MySQL Cluster compromise in Replication component","severity":"high","exploited":false,"published_at":"2026-07-21T22:18:40.443+00:00","url":"https://junglewise.ai/threats/cve-2026-61094-oracle-mysql-server-and-mysql-cluster-compromise-in-replication"}],"high":4,"name":"Oracle MySQL Server","rank":20,"slug":"mysql-server","score":49,"vendor":{"name":"Oracle","slug":"oracle"},"critical":0,"max_cvss":8.4,"max_epss":null,"exploited":0,"vulnerabilities":41,"url":"https://junglewise.ai/threats/technologies/mysql-server"},{"hub":true,"top":[{"cve":"CVE-2026-60463","cvss":9.8,"slug":"cve-2026-60463-oracle-webcenter-content-imaging-remote-takeover-in-core","title":"Oracle WebCenter Content: Imaging remote takeover in Core component","severity":"critical","exploited":false,"published_at":"2026-07-21T22:17:48.743+00:00","url":"https://junglewise.ai/threats/cve-2026-60463-oracle-webcenter-content-imaging-remote-takeover-in-core"},{"cve":"CVE-2026-60503","cvss":8.8,"slug":"cve-2026-60503-oracle-webcenter-content-imaging-takeover-via-core-component","title":"Oracle WebCenter Content: Imaging takeover via Core component","severity":"high","exploited":false,"published_at":"2026-07-21T22:17:51.37+00:00","url":"https://junglewise.ai/threats/cve-2026-60503-oracle-webcenter-content-imaging-takeover-via-core-component"},{"cve":"CVE-2026-60472","cvss":8.8,"slug":"cve-2026-60472-oracle-webcenter-content-imaging-takeover-via-core-component","title":"Oracle WebCenter Content: Imaging takeover via Core component","severity":"high","exploited":false,"published_at":"2026-07-21T22:17:49.76+00:00","url":"https://junglewise.ai/threats/cve-2026-60472-oracle-webcenter-content-imaging-takeover-via-core-component"}],"high":13,"name":"Oracle WebCenter Content: Imaging","rank":21,"slug":"webcenter-content-imaging","score":45,"vendor":{"name":"Oracle","slug":"oracle"},"critical":1,"max_cvss":9.8,"max_epss":null,"exploited":0,"vulnerabilities":14,"url":"https://junglewise.ai/threats/technologies/webcenter-content-imaging"},{"hub":true,"top":[{"cve":"CVE-2026-60366","cvss":10,"slug":"cve-2026-60366-oracle-platform-security-for-java-remote-compromise-in","title":"Oracle Platform Security for Java remote compromise in Centralized Thirdparty Jars","severity":"critical","exploited":false,"published_at":"2026-07-22T23:16:35.757+00:00","url":"https://junglewise.ai/threats/cve-2026-60366-oracle-platform-security-for-java-remote-compromise-in"},{"cve":"CVE-2026-60369","cvss":9.9,"slug":"cve-2026-60369-oracle-platform-security-for-java-compromise-in-centralized","title":"Oracle Platform Security for Java compromise in Centralized Thirdparty Jars","severity":"critical","exploited":false,"published_at":"2026-07-22T23:16:36.087+00:00","url":"https://junglewise.ai/threats/cve-2026-60369-oracle-platform-security-for-java-compromise-in-centralized"},{"cve":"CVE-2026-60372","cvss":9.8,"slug":"cve-2026-60372-oracle-platform-security-for-java-remote-compromise-in","title":"Oracle Platform Security for Java remote compromise in Centralized Thirdparty Jars","severity":"critical","exploited":false,"published_at":"2026-07-22T23:16:36.42+00:00","url":"https://junglewise.ai/threats/cve-2026-60372-oracle-platform-security-for-java-remote-compromise-in"}],"high":7,"name":"Oracle Platform Security for Java","rank":22,"slug":"platform-security-for-java","score":45,"vendor":{"name":"Oracle","slug":"oracle"},"critical":4,"max_cvss":10,"max_epss":null,"exploited":0,"vulnerabilities":11,"url":"https://junglewise.ai/threats/technologies/platform-security-for-java"},{"hub":true,"top":[{"cve":"CVE-2026-66041","cvss":8.8,"slug":"cve-2026-66041-ffmpeg-heap-out-of-bounds-write-in-vf-quirc-filter","title":"FFmpeg heap out-of-bounds write in vf_quirc filter","severity":"high","exploited":false,"published_at":"2026-07-24T20:18:21.24+00:00","url":"https://junglewise.ai/threats/cve-2026-66041-ffmpeg-heap-out-of-bounds-write-in-vf-quirc-filter"},{"cve":"CVE-2026-66040","cvss":8.8,"slug":"cve-2026-66040-ffmpeg-heap-out-of-bounds-write-in-png-and-apng-encoders","title":"FFmpeg heap out-of-bounds write in PNG and APNG encoders","severity":"high","exploited":false,"published_at":"2026-07-24T20:18:21.063+00:00","url":"https://junglewise.ai/threats/cve-2026-66040-ffmpeg-heap-out-of-bounds-write-in-png-and-apng-encoders"},{"cve":"CVE-2026-66039","cvss":8.8,"slug":"cve-2026-66039-ffmpeg-signed-integer-overflow-in-mace6-audio-decoder","title":"FFmpeg signed integer overflow in MACE6 audio decoder","severity":"high","exploited":false,"published_at":"2026-07-24T20:18:20.88+00:00","url":"https://junglewise.ai/threats/cve-2026-66039-ffmpeg-signed-integer-overflow-in-mace6-audio-decoder"}],"high":14,"name":"FFmpeg","rank":23,"slug":"ffmpeg","score":44,"vendor":{"name":"Ffmpeg","slug":"ffmpeg"},"critical":0,"max_cvss":8.8,"max_epss":null,"exploited":0,"vulnerabilities":16,"url":"https://junglewise.ai/threats/technologies/ffmpeg"},{"hub":true,"top":[{"cve":"CVE-2026-61010","cvss":8.8,"slug":"cve-2026-61010-oracle-process-manufacturing-systems-takeover-in-internal","title":"Oracle Process Manufacturing Systems takeover in Internal Operations","severity":"high","exploited":false,"published_at":"2026-07-21T22:18:32.907+00:00","url":"https://junglewise.ai/threats/cve-2026-61010-oracle-process-manufacturing-systems-takeover-in-internal"},{"cve":"CVE-2026-60901","cvss":8.8,"slug":"cve-2026-60901-oracle-project-intelligence-takeover-in-internal-operations","title":"Oracle Project Intelligence takeover in Internal Operations","severity":"high","exploited":false,"published_at":"2026-07-21T22:18:25.91+00:00","url":"https://junglewise.ai/threats/cve-2026-60901-oracle-project-intelligence-takeover-in-internal-operations"},{"cve":"CVE-2026-60678","cvss":8.8,"slug":"cve-2026-60678-oracle-general-ledger-compromise-in-internal-operations","title":"Oracle General Ledger compromise in Internal Operations","severity":"high","exploited":false,"published_at":"2026-07-21T22:18:08.793+00:00","url":"https://junglewise.ai/threats/cve-2026-60678-oracle-general-ledger-compromise-in-internal-operations"}],"high":10,"name":"Oracle E-Business Suite","rank":24,"slug":"e-business-suite","score":41,"vendor":{"name":"Oracle","slug":"oracle"},"critical":0,"max_cvss":8.8,"max_epss":null,"exploited":0,"vulnerabilities":21,"url":"https://junglewise.ai/threats/technologies/e-business-suite"},{"hub":true,"top":[{"cve":"CVE-2026-60552","cvss":9.9,"slug":"cve-2026-60552-oracle-webcenter-sites-remote-compromise-and-takeover","title":"Oracle WebCenter Sites remote compromise and takeover","severity":"critical","exploited":false,"published_at":"2026-07-21T22:17:55.183+00:00","url":"https://junglewise.ai/threats/cve-2026-60552-oracle-webcenter-sites-remote-compromise-and-takeover"},{"cve":"CVE-2026-61140","cvss":9.8,"slug":"cve-2026-61140-oracle-webcenter-sites-remote-compromise-and-takeover","title":"Oracle WebCenter Sites remote compromise and takeover","severity":"critical","exploited":false,"published_at":"2026-07-21T22:18:45.3+00:00","url":"https://junglewise.ai/threats/cve-2026-61140-oracle-webcenter-sites-remote-compromise-and-takeover"},{"cve":"CVE-2026-60555","cvss":9.8,"slug":"cve-2026-60555-oracle-webcenter-sites-remote-compromise-in-webcenter-sites","title":"Oracle WebCenter Sites remote compromise in WebCenter Sites component","severity":"critical","exploited":false,"published_at":"2026-07-21T22:17:55.517+00:00","url":"https://junglewise.ai/threats/cve-2026-60555-oracle-webcenter-sites-remote-compromise-in-webcenter-sites"}],"high":5,"name":"Oracle WebCenter Sites","rank":25,"slug":"webcenter-sites","score":40,"vendor":{"name":"Oracle","slug":"oracle"},"critical":4,"max_cvss":9.9,"max_epss":null,"exploited":0,"vulnerabilities":10,"url":"https://junglewise.ai/threats/technologies/webcenter-sites"}],"previous":{"key":"2026-07-13","top":"Microsoft Windows 11","period":{"end":"2026-07-19","start":"2026-07-13"},"totals":{"high":1009,"critical":161,"exploited":14,"technologies":1272,"vulnerabilities":2803},"url":"https://junglewise.ai/threats/weekly/2026-07-13"},"next":{"key":"2026-07-27","top":"Google Chrome","period":{"end":"2026-08-02","start":"2026-07-27"},"totals":{"high":426,"critical":114,"exploited":7,"technologies":1027,"vulnerabilities":2117},"url":"https://junglewise.ai/threats/weekly/2026-07-27"}}