4 vulnerabilities across 3 products scored HIGH or above on July 22, 2026.
- ๐ด CRITICAL: 1
- ๐ HIGH: 3
Exploit Status Upgrades
The following CVEs from previous bulletins have been upgraded based on new exploit intelligence:
- [UPGRADED] CVE-2026-63770 (glanceapp/glance) โ F1: theoretical โ poc, AAS: 9.0 โ 11.5 (HIGH โ HIGH). Originally in 2026-07-20 bulletin.
- [UPGRADED] CVE-2026-45695 (kopia/kopia) โ F1: exploitable โ functional, AAS: 11.1 โ 13.1 (HIGH โ CRITICAL). Originally in 2026-07-16 bulletin.
- [UPGRADED] CVE-2026-55579 (pheditor/pheditor) โ F1: exploitable โ functional, AAS: 10.9 โ 12.9 (HIGH โ CRITICAL). Originally in 2026-07-16 bulletin.
- [UPGRADED] CVE-2026-54526 (argoproj/argo-workflows) โ F1: exploitable โ itw, AAS: 9.8 โ 12.8 (HIGH โ CRITICAL). Originally in 2026-07-16 bulletin.
๐ด [CRITICAL] check_point/security_management
1 CVE | CVSS 3.1: 9.1 | AAS 12.0
cpe:2.3:a:checkpoint:security_management:*:*:*:*:*:*:*:*
Check Point Security Management and Multi-Domain Security Management are affected by a critical authentication bypass vulnerability (CVE-2026-62144, CVSS 9.1) that allows an unauthenticated remote attacker to execute administrative commands on the Management Server and potentially on managed Security Gateways. A proof-of-concept exploit is available, increasing the urgency for remediation. Organizations running Check Point Security Management infrastructure should immediately review the vendor advisory at https://support.checkpoint.com/results/sk/sk185152, apply available patches, and ensure Management Server access is restricted to trusted clients only.
- ๐ด CVE-2026-62144 (CVSS 3.1: 9.1)
๐ [HIGH] n8n-io/n8n
2 CVEs | CVSS 4.0: 8.9 | AAS 10.7
cpe:2.3:a:n8n-io:n8n:*:*:*:*:*:*:*:*
n8n workflow automation platform versions prior to 2.30.1 and 2.29.8 are affected by two high-severity vulnerabilities (CVSS 8.9), including at least one privilege escalation flaw where low-privileged users can obtain full administrative API access through improperly scoped JWT tokens issued via the Token Exchange module, enabling role escalation, user creation, and user deletion. These issues are considered exploitable and affect any instance with both the Token Exchange feature and Public API enabled. Organizations self-hosting n8n should upgrade immediately to version 2.30.1 or 2.29.8 and review the advisory at https://github.com/n8n-io/n8n/security/advisories/GHSA-777w-rpr6-c52h for additional mitigation guidance.
- ๐ CVE-2026-65595 (CVSS 4.0: 8.9)
- ๐ CVE-2026-65016 (CVSS 4.0: 7.7)
๐ [HIGH] mongodb/mongodb_server
1 CVE | CVSS 4.0: 9.2 | AAS 10.2
cpe:2.3:a:mongodb:mongodb_server:*:*:*:*:*:*:*:*
MongoDB Server is affected by a high-severity memory corruption vulnerability (CVE-2026-13072, CVSS 9.2) in aggregation pipeline processing when compute mode is explicitly enabled on a standalone mongod instance. Insufficient validation of externally sourced BSON data can lead to process termination or other unintended behavior, and the issue is considered exploitable. Organizations running standalone mongod instances with compute mode enabled should consult the vendor advisory at https://jira.mongodb.org/browse/SERVER-128494 for affected versions and available patches; those not using this non-default configuration are not impacted.
- ๐ CVE-2026-13072 (CVSS 4.0: 9.2)