Embedded System Vulnerabilities
A focused list of vulnerabilities relevant to embedded and IoT devices.
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2026-7842 | The Infility Global Infility Global WordPress plugin before 2.15.20 for WordPress does not sanitize or validate the ord… | Medium (6.8) | 2026-06-23 | Environment Specific |
| CVE-2026-12866 | All versions of the package expr-eval are vulnerable to Code Execution via the toJSFunction() API. An attacker can exec… | Critical (9.8) | 2026-06-23 | Environment Specific |
| CVE-2026-55655 | A flaw was found in OpenSSH. A local unprivileged attacker on a Linux client host can hijack client-side X11 forwarding… | Medium (5.0) | 2026-06-23 | Environment Specific |
| CVE-2026-55654 | A flaw was found in OpenSSH. This vulnerability, a heap out-of-bounds read, occurs during the cleanup of GSSAPI (Generi… | Low (3.7) | 2026-06-23 | Environment Specific |
| CVE-2026-55653 | A flaw was found in OpenSSH. A malicious SSH server can exploit a double free vulnerability in the Diffie-Hellman Group… | Medium (4.3) | 2026-06-23 | Environment Specific |