CVE Weekly Report — Week of Aug 3 – August 9, 2026
2026-W32
1
Total CVEs
0
Critical
1
High
0
Actively exploited
1 CVE is actively exploited (CISA KEV) this week. Patch these immediately: CVE-2026-65400
🔴 Critical CVEs (0)
No CVEs in this category this week.
🟠 High CVEs (3)
| CVE | Product | CVSS | KEV | Description | Published |
|---|---|---|---|---|---|
| CVE-2026-65400 | macOS | 7.1 | KEV | An authentication issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.9, macOS… | Aug 6 |
| CVE-2026-15307 | Django | 8.8 | — | An issue was discovered in Django 5.2 before 5.2.17 and 6.0 before 6.0.8. GeoDjango spatial lookups optimistically parse… | Aug 4 |
| CVE-2026-14587 | Neo4j | 7.5 | — | Neo4j's Bolt modern handshake decoder treats an overlong capability bit mask the same way it treats a truncated bit mask… | Aug 5 |
🟡 Medium CVEs (3)
| CVE | Product | CVSS | KEV | Description | Published |
|---|---|---|---|---|---|
| CVE-2026-15830 | Django | 5.3 | — | An issue was discovered in Django 5.2 before 5.2.17 and 6.0 before 6.0.8. GeoDjango's `django.contrib.gis.geos.GEOSGeome… | Aug 4 |
| CVE-2026-15337 | Django | 5.3 | — | An issue was discovered in Django 5.2 before 5.2.17 and 6.0 before 6.0.8. `django.utils.translation.check_for_language()… | Aug 4 |
| CVE-2026-15920 | Django | 6.1 | — | An issue was discovered in Django 5.2 before 5.2.17 and 6.0 before 6.0.8. `django.contrib.admin.utils.display_for_field(… | Aug 4 |
