Critical2
High1
Medium2
Exploited (KEV)0
All recent CVEs
| CVE | CVSS | Severity | Product | Summary | Published |
|---|---|---|---|---|---|
| CVE-2026-31848 | 9.8 | critical | nebula300plus firmware | Nexxt Solutions Nebula 300+ firmware through version 12.01.01.37 uses the ecos_pw cookie for authentication, which | 166d ago |
| CVE-2026-31851 | 9.8 | critical | nebula300plus firmware | Nexxt Solutions Nebula 300+ firmware through version 12.01.01.37 does not implement rate limiting or account locko | 166d ago |
| CVE-2026-31847 | 8.8 | high | nebula300plus firmware | Hidden functionality in the /goform/setSysTools endpoint in Nexxt Solutions Nebula 300+ firmware through version 1 | 166d ago |
| CVE-2026-31849 | 6.5 | medium | nebula300plus firmware | Nexxt Solutions Nebula 300+ firmware through version 12.01.01.37 does not implement CSRF protections on state-chan | 166d ago |
| CVE-2026-31850 | 4.9 | medium | nebula300plus firmware | Nexxt Solutions Nebula 300+ firmware through version 12.01.01.37 stores sensitive information, including administr | 166d ago |