<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0" xmlns:intruder="https://cvemon.intruder.io/rss">
    <channel>
        <title><![CDATA[cvemon | CVE Trends]]></title>
        <description><![CDATA[Get the latest rankings and info for CVEs currently trending on social media]]></description>
        <link>https://cvemon.intruder.io</link>
        <image>
            <url>https://cvemon.intruder.io/og.png</url>
            <title>cvemon | CVE Trends</title>
            <link>https://cvemon.intruder.io</link>
        </image>
        <generator>RSS for Node</generator>
        <lastBuildDate>Thu, 10 Sep 2026 10:57:42 GMT</lastBuildDate>
        <atom:link href="https://cvemon.intruder.io/rss/cvetrends/latest" rel="self" type="application/rss+xml"/>
        <pubDate>Thu, 10 Sep 2026 10:17:01 GMT</pubDate>
        <item>
            <title><![CDATA[CVE-2025-25249]]></title>
            <description><![CDATA[Currently trending CVE - Hype Score: 36 - A heap-based buffer overflow vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.4.8, FortiOS 7.2.0 through 7.2.11, FortiOS 7.0.0 through 7.0.17, FortiOS 6.4 all versions, FortiSwitchManager 7.2.0 through 7.2.6, FortiSwitchManager 7.0.0 through 7.0.5 ...]]></description>
            <link>https://cvemon.intruder.io/cves/CVE-2025-25249</link>
            <guid isPermaLink="true">https://cvemon.intruder.io/cves/CVE-2025-25249</guid>
            <pubDate>Thu, 10 Sep 2026 10:17:01 GMT</pubDate>
            <enclosure url="https://cvemon.intruder.io/og.png" length="0" type="image/png"/>
            <intruder:rank>1</intruder:rank>
            <intruder:hypeScore>36</intruder:hypeScore>
            <intruder:cveUrl>https://cvemon.intruder.io/cves/CVE-2025-25249</intruder:cveUrl>
        </item>
        <item>
            <title><![CDATA[CVE-2026-85880]]></title>
            <description><![CDATA[Currently trending CVE - Hype Score: 14 - Heap-based buffer overflow in Windows ALPC allows an authorized attacker to elevate privileges locally.]]></description>
            <link>https://cvemon.intruder.io/cves/CVE-2026-85880</link>
            <guid isPermaLink="true">https://cvemon.intruder.io/cves/CVE-2026-85880</guid>
            <pubDate>Thu, 10 Sep 2026 10:17:01 GMT</pubDate>
            <enclosure url="https://cvemon.intruder.io/og.png" length="0" type="image/png"/>
            <intruder:rank>2</intruder:rank>
            <intruder:hypeScore>14</intruder:hypeScore>
            <intruder:cveUrl>https://cvemon.intruder.io/cves/CVE-2026-85880</intruder:cveUrl>
        </item>
        <item>
            <title><![CDATA[CVE-2026-87491]]></title>
            <description><![CDATA[Currently trending CVE - Hype Score: 10 - Out of bounds write in V8 in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)]]></description>
            <link>https://cvemon.intruder.io/cves/CVE-2026-87491</link>
            <guid isPermaLink="true">https://cvemon.intruder.io/cves/CVE-2026-87491</guid>
            <pubDate>Thu, 10 Sep 2026 10:17:01 GMT</pubDate>
            <enclosure url="https://cvemon.intruder.io/og.png" length="0" type="image/png"/>
            <intruder:rank>3</intruder:rank>
            <intruder:hypeScore>10</intruder:hypeScore>
            <intruder:cveUrl>https://cvemon.intruder.io/cves/CVE-2026-87491</intruder:cveUrl>
        </item>
        <item>
            <title><![CDATA[CVE-2026-86060]]></title>
            <description><![CDATA[Currently trending CVE - Hype Score: 9 - RouterOS contains an argument-handling flaw in the SSH login
path involving usernames that begin with a prohibited character, allowing for the trusted RouterOS policy mask to be changed, leading to privilege escalation. Exploitation requires an unauthenticated SSH session to ...]]></description>
            <link>https://cvemon.intruder.io/cves/CVE-2026-86060</link>
            <guid isPermaLink="true">https://cvemon.intruder.io/cves/CVE-2026-86060</guid>
            <pubDate>Thu, 10 Sep 2026 10:17:01 GMT</pubDate>
            <enclosure url="https://cvemon.intruder.io/og.png" length="0" type="image/png"/>
            <intruder:rank>4</intruder:rank>
            <intruder:hypeScore>9</intruder:hypeScore>
            <intruder:cveUrl>https://cvemon.intruder.io/cves/CVE-2026-86060</intruder:cveUrl>
        </item>
        <item>
            <title><![CDATA[CVE-2026-67276]]></title>
            <description><![CDATA[Currently trending CVE - Hype Score: 9 - RouterOS does not compare the complete RSA public key when matching an SSH authentication request to an authorized user key, checking the key type and modulus but omitting the exponent. Because signature verification uses the client-supplied key, an attacker knowing an ...]]></description>
            <link>https://cvemon.intruder.io/cves/CVE-2026-67276</link>
            <guid isPermaLink="true">https://cvemon.intruder.io/cves/CVE-2026-67276</guid>
            <pubDate>Thu, 10 Sep 2026 10:17:01 GMT</pubDate>
            <enclosure url="https://cvemon.intruder.io/og.png" length="0" type="image/png"/>
            <intruder:rank>5</intruder:rank>
            <intruder:hypeScore>9</intruder:hypeScore>
            <intruder:cveUrl>https://cvemon.intruder.io/cves/CVE-2026-67276</intruder:cveUrl>
        </item>
        <item>
            <title><![CDATA[CVE-2026-85046]]></title>
            <description><![CDATA[Currently trending CVE - Hype Score: 8 - Type confusion in V8 in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)]]></description>
            <link>https://cvemon.intruder.io/cves/CVE-2026-85046</link>
            <guid isPermaLink="true">https://cvemon.intruder.io/cves/CVE-2026-85046</guid>
            <pubDate>Thu, 10 Sep 2026 10:17:01 GMT</pubDate>
            <enclosure url="https://cvemon.intruder.io/og.png" length="0" type="image/png"/>
            <intruder:rank>6</intruder:rank>
            <intruder:hypeScore>8</intruder:hypeScore>
            <intruder:cveUrl>https://cvemon.intruder.io/cves/CVE-2026-85046</intruder:cveUrl>
        </item>
        <item>
            <title><![CDATA[CVE-2026-67277]]></title>
            <description><![CDATA[Currently trending CVE - Hype Score: 8 - RouterOS accepts a "related" btest connection before the corresponding primary session has completed authentication. An unauthenticated client can use this state to start an IPv4 UDP test. With "random-data=false", the sender transmits an uninitialized tail from a kernel packet ...]]></description>
            <link>https://cvemon.intruder.io/cves/CVE-2026-67277</link>
            <guid isPermaLink="true">https://cvemon.intruder.io/cves/CVE-2026-67277</guid>
            <pubDate>Thu, 10 Sep 2026 10:17:01 GMT</pubDate>
            <enclosure url="https://cvemon.intruder.io/og.png" length="0" type="image/png"/>
            <intruder:rank>7</intruder:rank>
            <intruder:hypeScore>8</intruder:hypeScore>
            <intruder:cveUrl>https://cvemon.intruder.io/cves/CVE-2026-67277</intruder:cveUrl>
        </item>
        <item>
            <title><![CDATA[CVE-2026-67279]]></title>
            <description><![CDATA[Currently trending CVE - Hype Score: 8 - RouterOS SSH enters the connection protocol after a client-requested rekey even though user authentication was never attempted, allowing an unauthenticated client to open a session channel and send an exec request. On affected builds the server dispatches the command, enabling ...]]></description>
            <link>https://cvemon.intruder.io/cves/CVE-2026-67279</link>
            <guid isPermaLink="true">https://cvemon.intruder.io/cves/CVE-2026-67279</guid>
            <pubDate>Thu, 10 Sep 2026 10:17:01 GMT</pubDate>
            <enclosure url="https://cvemon.intruder.io/og.png" length="0" type="image/png"/>
            <intruder:rank>8</intruder:rank>
            <intruder:hypeScore>8</intruder:hypeScore>
            <intruder:cveUrl>https://cvemon.intruder.io/cves/CVE-2026-67279</intruder:cveUrl>
        </item>
        <item>
            <title><![CDATA[CVE-2026-83548]]></title>
            <description><![CDATA[Currently trending CVE - Hype Score: 2 - A Pre-authentication SSRF vulnerability exists in the SMA1000 Appliance Work Place interface due to an unintended alternate access path. A remote unauthenticated attacker could potentially exploit this vulnerability to gain unauthorized access to sensitive functionality and ...]]></description>
            <link>https://cvemon.intruder.io/cves/CVE-2026-83548</link>
            <guid isPermaLink="true">https://cvemon.intruder.io/cves/CVE-2026-83548</guid>
            <pubDate>Thu, 10 Sep 2026 10:17:01 GMT</pubDate>
            <enclosure url="https://cvemon.intruder.io/og.png" length="0" type="image/png"/>
            <intruder:rank>9</intruder:rank>
            <intruder:hypeScore>2</intruder:hypeScore>
            <intruder:cveUrl>https://cvemon.intruder.io/cves/CVE-2026-83548</intruder:cveUrl>
        </item>
        <item>
            <title><![CDATA[CVE-2026-83549]]></title>
            <description><![CDATA[Currently trending CVE - Hype Score: 2 - Post-authentication Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability has been identified in the SMA1000 Appliance Management Console (AMC) which in specific conditions could potentially enable a remote authenticated ...]]></description>
            <link>https://cvemon.intruder.io/cves/CVE-2026-83549</link>
            <guid isPermaLink="true">https://cvemon.intruder.io/cves/CVE-2026-83549</guid>
            <pubDate>Thu, 10 Sep 2026 10:17:01 GMT</pubDate>
            <enclosure url="https://cvemon.intruder.io/og.png" length="0" type="image/png"/>
            <intruder:rank>10</intruder:rank>
            <intruder:hypeScore>2</intruder:hypeScore>
            <intruder:cveUrl>https://cvemon.intruder.io/cves/CVE-2026-83549</intruder:cveUrl>
        </item>
    </channel>
</rss>