Junglewise

Weekly report

Most vulnerable technologies: week of 24 to 30 August 2026 (week 35)

Final report, published . It does not change.

In the week of 24 to 30 August 2026, Junglewise Threat Intelligence recorded 2,819 new vulnerabilities: 331 critical, 968 high and 10 exploited in the wild. The most vulnerable technology was Google Chrome, with 327 vulnerabilities (44 critical), followed by Linux Kernel (249) and Pip Nltk (33).

New vulnerabilities
2,819
Critical
331
Exploited in the wild
10
Technologies affected
1,154

Ranking

Technologies ranked by exploited, critical and high severity vulnerabilities
#TechnologyVulnsCriticalHighExploitedMax CVSSMost severe
1Google Chrome
Google
327447709.8
2Linux Kernel
Linux
24941118110
3Pip Nltk
Pip
3361809.8
4DrayTek VigorSwitch FX2120
DrayTek
2922509.8
5DrayTek VigorSwitch G1280
DrayTek
2922509.8
6DrayTek VigorSwitch G1282
DrayTek
2922509.8
7DrayTek VigorSwitch G2100
DrayTek
2922509.8
8DrayTek VigorSwitch G2121
DrayTek
2922509.8
9DrayTek VigorSwitch G2280x
DrayTek
2922509.8
10DrayTek VigorSwitch G2282x
DrayTek
2922509.8
11DrayTek VigorSwitch G2540x
DrayTek
2922509.8
12DrayTek VigorSwitch G2540xs
DrayTek
2922509.8
13DrayTek VigorSwitch G2542x
DrayTek
2922509.8
14DrayTek VigorSwitch P1280
DrayTek
2922509.8
15DrayTek VigorSwitch P1281x
DrayTek
2922509.8
16DrayTek VigorSwitch P1282
DrayTek
2922509.8
17DrayTek VigorSwitch P2100
DrayTek
2922509.8
18DrayTek VigorSwitch P2121
DrayTek
2922509.8
19DrayTek VigorSwitch P2280x
DrayTek
2922509.8
20DrayTek VigorSwitch P2282x
DrayTek
2922509.8
21DrayTek VigorSwitch P2540x
DrayTek
2922509.8
22DrayTek VigorSwitch P2540xs
DrayTek
2922509.8
23DrayTek VigorSwitch P2542x
DrayTek
2922509.8
24DrayTek VigorSwitch P2542xh
DrayTek
2922509.8
25DrayTek VigorSwitch PQ2121x
DrayTek
2922509.8

Most affected vendors

  1. 1.Google333 vulnerabilities, 44 critical, 0 exploited
  2. 2.Linux249 vulnerabilities, 41 critical, 1 exploited
  3. 3.Pip51 vulnerabilities, 10 critical, 0 exploited
  4. 4.Ubiquiti22 vulnerabilities, 22 critical, 0 exploited
  5. 5.DrayTek40 vulnerabilities, 3 critical, 0 exploited
  6. 6.Adobe41 vulnerabilities, 3 critical, 0 exploited
  7. 7.Microsoft35 vulnerabilities, 7 critical, 1 exploited
  8. 8.Go37 vulnerabilities, 5 critical, 1 exploited
  9. 9.Jahlives34 vulnerabilities, 4 critical, 0 exploited
  10. 10.Apache24 vulnerabilities, 7 critical, 0 exploited

Most severe vulnerabilities

How this is built

Junglewise Threat Intelligence collects vulnerabilities from NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories, and matches each one to the technologies and vendors it affects. Dates are the date a vulnerability was published, in UTC.

Technologies are ranked by a score: 10 points for each vulnerability exploited in the wild, 5 for each critical, 2 for each high and 1 for every vulnerability. A vulnerability counts once for every technology it affects, so one advisory can appear under several products.

The pages are rebuilt from the database every hour. Frozen weekly and monthly reports never change once published, so they can be cited.

Use this data

The same data is at https://junglewise.ai/threats/weekly/2026-08-24.json, for scripts and language models. It is free to reuse under CC BY 4.0 with a link back to this page.

Cite as: Junglewise Threat Intelligence, "Most vulnerable technologies: week of 24 to 30 August 2026 (week 35)", https://junglewise.ai/threats/weekly/2026-08-24, 26 September 2026.