Vulnerability management cycle

Scan v1 2026-10-02T01:47:00+00:00 · rescan v2 2026-10-02T01:56:30+00:00 · EPSS snapshot 2026-10-01 · CISA KEV catalog 2026.10.01

PriorityOpen beforeOpen after
P1120
P2330
P3186
P4523

Fixed 106 (92.2 %), new 0, risk accepted 0, reopened 0, gating 0.

PriorityStatusHostFindingCVSSEPSSKEVOwnerDueWhy
P2fixedwebDebian: Security Advisory (DSA-6201-1)9.80.0250noweb team2026-11-01P2: CVSS 9.8 >= 9.0 (EPSS 0.03)
P2fixedwebDebian: Security Advisory (DSA-6281-1)9.80.0113noweb team2026-11-01P2: CVSS 9.8 >= 9.0 (EPSS 0.01)
P2fixedwebDebian: Security Advisory (DSA-5726-1)9.10.0186noweb team2026-11-01P2: CVSS 9.1 >= 9.0 (EPSS 0.02)
P2fixedwebDebian: Security Advisory (DSA-5962-1)8.20.0137noweb team2026-11-01P2: CVSS 8.2 >= 7.0 on a criticality-3 asset (EPSS 0.01)
P2fixedwebDebian: Security Advisory (DLA-4784-1)8.20.0089noweb team2026-11-01P2: CVSS 8.2 >= 7.0 on a criticality-3 asset (EPSS 0.01)
P1fixedwebDebian: Security Advisory (DSA-5724-1)8.10.9951noweb team2026-10-09P1: EPSS 1.00 >= 0.10 and CVSS 8.1 >= 7.0
P2fixedwebDebian: Security Advisory (DSA-6278-1)8.10.0340noweb team2026-11-01P2: CVSS 8.1 >= 7.0 on a criticality-3 asset (EPSS 0.03)
P2fixedwebDebian: Security Advisory (DSA-6326-1)8.10.0270noweb team2026-11-01P2: CVSS 8.1 >= 7.0 on a criticality-3 asset (EPSS 0.03)
P2fixedwebDebian: Security Advisory (DLA-4667-1)8.10.0236noweb team2026-11-01P2: CVSS 8.1 >= 7.0 on a criticality-3 asset (EPSS 0.02)
P1fixedwebDebian: Security Advisory (DSA-5514-1)7.80.8142yesweb team2026-10-09P1: a CVE is in CISA KEV (EPSS 0.81)
P2fixedwebDebian: Security Advisory (DSA-5611-1)7.80.0479noweb team2026-11-01P2: CVSS 7.8 >= 7.0 on a criticality-3 asset (EPSS 0.05)
P2fixedwebDebian: Security Advisory (DLA-4772-1)7.80.0039noweb team2026-11-01P2: CVSS 7.8 >= 7.0 on a criticality-3 asset (EPSS 0.00)
P2fixedwebDebian: Security Advisory (DSA-5532-1)7.50.0333noweb team2026-11-01P2: CVSS 7.5 >= 7.0 on a criticality-3 asset (EPSS 0.03)
P1fixedwebDebian: Security Advisory (DSA-5764-1)7.50.6658noweb team2026-10-09P1: EPSS 0.67 >= 0.10 and CVSS 7.5 >= 7.0
P1fixedwebDebian: Security Advisory (DSA-6113-1)7.50.5245noweb team2026-10-09P1: EPSS 0.52 >= 0.10 and CVSS 7.5 >= 7.0
P2fixedwebDebian: Security Advisory (DSA-6204-1)7.50.0125noweb team2026-11-01P2: CVSS 7.5 >= 7.0 on a criticality-3 asset (EPSS 0.01)
P2fixedwebDebian: Security Advisory (DSA-6293-1)7.50.0079noweb team2026-11-01P2: CVSS 7.5 >= 7.0 on a criticality-3 asset (EPSS 0.01)
P4fixedwebDebian: Security Advisory (DSA-5868-1)6.80.0772noweb team2027-03-31P4: CVSS 6.8 >= floor 4.0 (EPSS 0.08)
P3fixedwebDebian: Security Advisory (DSA-5586-1)6.50.9355noweb team2026-12-31P3: EPSS 0.94 >= 0.10 (CVSS 6.5)
P4fixedwebDebian: Security Advisory (DSA-6131-1)5.90.0036noweb team2027-03-31P4: CVSS 5.9 >= floor 4.0 (EPSS 0.00)
P3openwebMissing Linux Kernel mitigations for 'SSB - Speculative Store Bypass' hardware vulnerabilities5.50.6063noweb team2026-12-31P3: EPSS 0.61 >= 0.10 (CVSS 5.5)
P4fixedwebDebian: Security Advisory (DSA-5863-1)5.30.0111noweb team2027-03-31P4: CVSS 5.3 >= floor 4.0 (EPSS 0.01)
P4fixedwebDebian: Security Advisory (DSA-5867-1)5.30.0129noweb team2027-03-31P4: CVSS 5.3 >= floor 4.0 (EPSS 0.01)
P4fixedwebDebian: Security Advisory (DSA-6140-1)5.30.0063noweb team2027-03-31P4: CVSS 5.3 >= floor 4.0 (EPSS 0.01)
P4fixedwebDebian: Security Advisory (DSA-5650-1)5.00.0224noweb team2027-03-31P4: CVSS 5.0 >= floor 4.0 (EPSS 0.02)
P3fixedwebDebian: Security Advisory (DSA-5673-1)5.00.8833noweb team2026-12-31P3: EPSS 0.88 >= 0.10 (CVSS 5.0)
P4fixedwebDebian: Security Advisory (DSA-5678-1)5.00.0131noweb team2027-03-31P4: CVSS 5.0 >= floor 4.0 (EPSS 0.01)
P4fixedwebDebian: Security Advisory (DSA-5895-1)5.00.0065noweb team2027-03-31P4: CVSS 5.0 >= floor 4.0 (EPSS 0.01)
P4fixedwebDebian: Security Advisory (DSA-5902-1)5.00.0054noweb team2027-03-31P4: CVSS 5.0 >= floor 4.0 (EPSS 0.01)
P4fixedwebDebian: Security Advisory (DSA-6015-1)5.00.0200noweb team2027-03-31P4: CVSS 5.0 >= floor 4.0 (EPSS 0.02)
P4fixedwebDebian: Security Advisory (DSA-6294-1)5.00.0019noweb team2027-03-31P4: CVSS 5.0 >= floor 4.0 (EPSS 0.00)
P4fixedwebDebian: Security Advisory (DSA-6335-1)5.00.0400noweb team2027-03-31P4: CVSS 5.0 >= floor 4.0 (EPSS 0.04)
P4fixedwebDebian: Security Advisory (DLA-4783-1)5.0unknownnoweb team2027-03-31P4: CVSS 5.0 >= floor 4.0 (EPSS unknown)
P4fixedwebDebian: Security Advisory (DLA-4795-1)5.00.0182noweb team2027-03-31P4: CVSS 5.0 >= floor 4.0 (EPSS 0.02)
P4openwebMissing Linux Kernel mitigations for 'Speculative Return Stack Overflow (SRSO)' hardware vulnerability (INCEPTION, AMD-SB-7005)4.70.0730noweb team2027-03-31P4: CVSS 4.7 >= floor 4.0 (EPSS 0.07)
P4fixedwebDebian: Security Advisory (DSA-5931-1)4.70.0120noweb team2027-03-31P4: CVSS 4.7 >= floor 4.0 (EPSS 0.01)
infoinfowebMissing Linux Kernel mitigations for 'TSA' hardware vulnerabilities (AMD-SB-7029)3.80.0049noweb team-info: CVSS 3.8 below floor 4.0 (EPSS 0.00)
infoinfowebWeak MAC Algorithm(s) Supported (SSH)2.6unknownnoweb team-info: CVSS 2.6 below floor 4.0 (EPSS unknown)
infoinfowebTCP Timestamps Information Disclosure2.6unknownnoweb team-info: CVSS 2.6 below floor 4.0 (EPSS unknown)
P3openwebICMP Timestamp Reply Information Disclosure2.10.3215noweb team2026-12-31P3: EPSS 0.32 >= 0.10 (CVSS 2.1)
P2fixedfilesDebian: Security Advisory (DSA-6201-1)9.80.0250noinfrastructure team2026-11-01P2: CVSS 9.8 >= 9.0 (EPSS 0.03)
P2fixedfilesDebian: Security Advisory (DSA-6281-1)9.80.0113noinfrastructure team2026-11-01P2: CVSS 9.8 >= 9.0 (EPSS 0.01)
P2fixedfilesDebian: Security Advisory (DSA-5726-1)9.10.0186noinfrastructure team2026-11-01P2: CVSS 9.1 >= 9.0 (EPSS 0.02)
P3fixedfilesDebian: Security Advisory (DSA-5962-1)8.20.0137noinfrastructure team2026-12-31P3: CVSS 8.2 >= 7.0 (EPSS 0.01)
P1fixedfilesDebian: Security Advisory (DSA-5724-1)8.10.9951noinfrastructure team2026-10-09P1: EPSS 1.00 >= 0.10 and CVSS 8.1 >= 7.0
P1fixedfilesDebian: Security Advisory (DSA-5514-1)7.80.8142yesinfrastructure team2026-10-09P1: a CVE is in CISA KEV (EPSS 0.81)
P3fixedfilesDebian: Security Advisory (DSA-5611-1)7.80.0479noinfrastructure team2026-12-31P3: CVSS 7.8 >= 7.0 (EPSS 0.05)
P3fixedfilesDebian: Security Advisory (DLA-4772-1)7.80.0039noinfrastructure team2026-12-31P3: CVSS 7.8 >= 7.0 (EPSS 0.00)
P3fixedfilesDebian: Security Advisory (DSA-5532-1)7.50.0333noinfrastructure team2026-12-31P3: CVSS 7.5 >= 7.0 (EPSS 0.03)
P1fixedfilesDebian: Security Advisory (DSA-5764-1)7.50.6658noinfrastructure team2026-10-09P1: EPSS 0.67 >= 0.10 and CVSS 7.5 >= 7.0
P1fixedfilesDebian: Security Advisory (DSA-6113-1)7.50.5245noinfrastructure team2026-10-09P1: EPSS 0.52 >= 0.10 and CVSS 7.5 >= 7.0
P3fixedfilesDebian: Security Advisory (DSA-6204-1)7.50.0125noinfrastructure team2026-12-31P3: CVSS 7.5 >= 7.0 (EPSS 0.01)
P3fixedfilesDebian: Security Advisory (DSA-6293-1)7.50.0079noinfrastructure team2026-12-31P3: CVSS 7.5 >= 7.0 (EPSS 0.01)
P4fixedfilesDebian: Security Advisory (DSA-5868-1)6.80.0772noinfrastructure team2027-03-31P4: CVSS 6.8 >= floor 4.0 (EPSS 0.08)
P3fixedfilesDebian: Security Advisory (DSA-5586-1)6.50.9355noinfrastructure team2026-12-31P3: EPSS 0.94 >= 0.10 (CVSS 6.5)
P4fixedfilesAnonymous FTP Login Reporting6.40.0708noinfrastructure team2027-03-31P4: CVSS 6.4 >= floor 4.0 (EPSS 0.07)
P3openfilesMissing Linux Kernel mitigations for 'SSB - Speculative Store Bypass' hardware vulnerabilities5.50.6063noinfrastructure team2026-12-31P3: EPSS 0.61 >= 0.10 (CVSS 5.5)
P4fixedfilesDebian: Security Advisory (DSA-5863-1)5.30.0111noinfrastructure team2027-03-31P4: CVSS 5.3 >= floor 4.0 (EPSS 0.01)
P4fixedfilesDebian: Security Advisory (DSA-5867-1)5.30.0129noinfrastructure team2027-03-31P4: CVSS 5.3 >= floor 4.0 (EPSS 0.01)
P4fixedfilesDebian: Security Advisory (DSA-6140-1)5.30.0063noinfrastructure team2027-03-31P4: CVSS 5.3 >= floor 4.0 (EPSS 0.01)
P4fixedfilesDebian: Security Advisory (DSA-5650-1)5.00.0224noinfrastructure team2027-03-31P4: CVSS 5.0 >= floor 4.0 (EPSS 0.02)
P3fixedfilesDebian: Security Advisory (DSA-5673-1)5.00.8833noinfrastructure team2026-12-31P3: EPSS 0.88 >= 0.10 (CVSS 5.0)
P4fixedfilesDebian: Security Advisory (DSA-5678-1)5.00.0131noinfrastructure team2027-03-31P4: CVSS 5.0 >= floor 4.0 (EPSS 0.01)
P4fixedfilesDebian: Security Advisory (DSA-5895-1)5.00.0065noinfrastructure team2027-03-31P4: CVSS 5.0 >= floor 4.0 (EPSS 0.01)
P4fixedfilesDebian: Security Advisory (DSA-5902-1)5.00.0054noinfrastructure team2027-03-31P4: CVSS 5.0 >= floor 4.0 (EPSS 0.01)
P4fixedfilesDebian: Security Advisory (DSA-6015-1)5.00.0200noinfrastructure team2027-03-31P4: CVSS 5.0 >= floor 4.0 (EPSS 0.02)
P4fixedfilesDebian: Security Advisory (DSA-6294-1)5.00.0019noinfrastructure team2027-03-31P4: CVSS 5.0 >= floor 4.0 (EPSS 0.00)
P4fixedfilesDebian: Security Advisory (DSA-6335-1)5.00.0400noinfrastructure team2027-03-31P4: CVSS 5.0 >= floor 4.0 (EPSS 0.04)
P4fixedfilesDebian: Security Advisory (DLA-4783-1)5.0unknownnoinfrastructure team2027-03-31P4: CVSS 5.0 >= floor 4.0 (EPSS unknown)
P4fixedfilesDebian: Security Advisory (DLA-4795-1)5.00.0182noinfrastructure team2027-03-31P4: CVSS 5.0 >= floor 4.0 (EPSS 0.02)
P4fixedfilesFTP Unencrypted Cleartext Login4.8unknownnoinfrastructure team2027-03-31P4: CVSS 4.8 >= floor 4.0 (EPSS unknown)
P4openfilesMissing Linux Kernel mitigations for 'Speculative Return Stack Overflow (SRSO)' hardware vulnerability (INCEPTION, AMD-SB-7005)4.70.0730noinfrastructure team2027-03-31P4: CVSS 4.7 >= floor 4.0 (EPSS 0.07)
P4fixedfilesDebian: Security Advisory (DSA-5931-1)4.70.0120noinfrastructure team2027-03-31P4: CVSS 4.7 >= floor 4.0 (EPSS 0.01)
infoinfofilesMissing Linux Kernel mitigations for 'TSA' hardware vulnerabilities (AMD-SB-7029)3.80.0049noinfrastructure team-info: CVSS 3.8 below floor 4.0 (EPSS 0.00)
infoinfofilesWeak MAC Algorithm(s) Supported (SSH)2.6unknownnoinfrastructure team-info: CVSS 2.6 below floor 4.0 (EPSS unknown)
infoinfofilesTCP Timestamps Information Disclosure2.6unknownnoinfrastructure team-info: CVSS 2.6 below floor 4.0 (EPSS unknown)
P3openfilesICMP Timestamp Reply Information Disclosure2.10.3215noinfrastructure team2026-12-31P3: EPSS 0.32 >= 0.10 (CVSS 2.1)
P2fixeddbDebian: Security Advisory (DSA-5949-1)9.80.0180nodata team2026-11-01P2: CVSS 9.8 >= 9.0 (EPSS 0.02)
P2fixeddbDebian: Security Advisory (DSA-6201-1)9.80.0250nodata team2026-11-01P2: CVSS 9.8 >= 9.0 (EPSS 0.03)
P2fixeddbDebian: Security Advisory (DSA-6281-1)9.80.0113nodata team2026-11-01P2: CVSS 9.8 >= 9.0 (EPSS 0.01)
P2fixeddbDebian: Security Advisory (DSA-5726-1)9.10.0186nodata team2026-11-01P2: CVSS 9.1 >= 9.0 (EPSS 0.02)
P2fixeddbDebian: Security Advisory (DSA-5553-1)8.80.0432nodata team2026-11-01P2: CVSS 8.8 >= 7.0 on a criticality-3 asset (EPSS 0.04)
P2fixeddbDebian: Security Advisory (DSA-5812-1)8.80.0439nodata team2026-11-01P2: CVSS 8.8 >= 7.0 on a criticality-3 asset (EPSS 0.04)
P2fixeddbDebian: Security Advisory (DSA-5962-1)8.20.0137nodata team2026-11-01P2: CVSS 8.2 >= 7.0 on a criticality-3 asset (EPSS 0.01)
P1fixeddbDebian: Security Advisory (DSA-5724-1)8.10.9951nodata team2026-10-09P1: EPSS 1.00 >= 0.10 and CVSS 8.1 >= 7.0
P2fixeddbDebian: Security Advisory (DSA-5623-1)8.00.0181nodata team2026-11-01P2: CVSS 8.0 >= 7.0 on a criticality-3 asset (EPSS 0.02)
P1fixeddbDebian: Security Advisory (DSA-5514-1)7.80.8142yesdata team2026-10-09P1: a CVE is in CISA KEV (EPSS 0.81)
P2fixeddbDebian: Security Advisory (DSA-5611-1)7.80.0479nodata team2026-11-01P2: CVSS 7.8 >= 7.0 on a criticality-3 asset (EPSS 0.05)
P2fixeddbDebian: Security Advisory (DSA-5884-1)7.80.0035nodata team2026-11-01P2: CVSS 7.8 >= 7.0 on a criticality-3 asset (EPSS 0.00)
P2fixeddbDebian: Security Advisory (DLA-4772-1)7.80.0039nodata team2026-11-01P2: CVSS 7.8 >= 7.0 on a criticality-3 asset (EPSS 0.00)
P2fixeddbDebian: Security Advisory (DSA-5532-1)7.50.0333nodata team2026-11-01P2: CVSS 7.5 >= 7.0 on a criticality-3 asset (EPSS 0.03)
P2fixeddbDebian: Security Advisory (DSA-5745-1)7.50.0157nodata team2026-11-01P2: CVSS 7.5 >= 7.0 on a criticality-3 asset (EPSS 0.02)
P1fixeddbDebian: Security Advisory (DSA-5764-1)7.50.6658nodata team2026-10-09P1: EPSS 0.67 >= 0.10 and CVSS 7.5 >= 7.0
P2fixeddbDebian: Security Advisory (DSA-5979-1)7.50.0133nodata team2026-11-01P2: CVSS 7.5 >= 7.0 on a criticality-3 asset (EPSS 0.01)
P1fixeddbDebian: Security Advisory (DSA-6113-1)7.50.5245nodata team2026-10-09P1: EPSS 0.52 >= 0.10 and CVSS 7.5 >= 7.0
P2fixeddbDebian: Security Advisory (DSA-6204-1)7.50.0125nodata team2026-11-01P2: CVSS 7.5 >= 7.0 on a criticality-3 asset (EPSS 0.01)
P2fixeddbDebian: Security Advisory (DSA-6293-1)7.50.0079nodata team2026-11-01P2: CVSS 7.5 >= 7.0 on a criticality-3 asset (EPSS 0.01)
P2fixeddbDebian: Security Advisory (DSA-5951-1)7.00.0043nodata team2026-11-01P2: CVSS 7.0 >= 7.0 on a criticality-3 asset (EPSS 0.00)
P4fixeddbDebian: Security Advisory (DSA-5868-1)6.80.0772nodata team2027-03-31P4: CVSS 6.8 >= floor 4.0 (EPSS 0.08)
P3fixeddbDebian: Security Advisory (DSA-5586-1)6.50.9355nodata team2026-12-31P3: EPSS 0.94 >= 0.10 (CVSS 6.5)
P3opendbMissing Linux Kernel mitigations for 'SSB - Speculative Store Bypass' hardware vulnerabilities5.50.6063nodata team2026-12-31P3: EPSS 0.61 >= 0.10 (CVSS 5.5)
P4fixeddbDebian: Security Advisory (DSA-5863-1)5.30.0111nodata team2027-03-31P4: CVSS 5.3 >= floor 4.0 (EPSS 0.01)
P4fixeddbDebian: Security Advisory (DSA-5867-1)5.30.0129nodata team2027-03-31P4: CVSS 5.3 >= floor 4.0 (EPSS 0.01)
P4fixeddbDebian: Security Advisory (DSA-6140-1)5.30.0063nodata team2027-03-31P4: CVSS 5.3 >= floor 4.0 (EPSS 0.01)
P4fixeddbDebian: Security Advisory (DSA-5650-1)5.00.0224nodata team2027-03-31P4: CVSS 5.0 >= floor 4.0 (EPSS 0.02)
P3fixeddbDebian: Security Advisory (DSA-5673-1)5.00.8833nodata team2026-12-31P3: EPSS 0.88 >= 0.10 (CVSS 5.0)
P4fixeddbDebian: Security Advisory (DSA-5678-1)5.00.0131nodata team2027-03-31P4: CVSS 5.0 >= floor 4.0 (EPSS 0.01)
P4fixeddbDebian: Security Advisory (DSA-5895-1)5.00.0065nodata team2027-03-31P4: CVSS 5.0 >= floor 4.0 (EPSS 0.01)
P4fixeddbDebian: Security Advisory (DSA-5902-1)5.00.0054nodata team2027-03-31P4: CVSS 5.0 >= floor 4.0 (EPSS 0.01)
P4fixeddbDebian: Security Advisory (DSA-5990-1)5.0unknownnodata team2027-03-31P4: CVSS 5.0 >= floor 4.0 (EPSS unknown)
P4fixeddbDebian: Security Advisory (DSA-6015-1)5.00.0200nodata team2027-03-31P4: CVSS 5.0 >= floor 4.0 (EPSS 0.02)
P4fixeddbDebian: Security Advisory (DSA-6132-1)5.00.0132nodata team2027-03-31P4: CVSS 5.0 >= floor 4.0 (EPSS 0.01)
P4fixeddbDebian: Security Advisory (DSA-6269-1)5.00.0101nodata team2027-03-31P4: CVSS 5.0 >= floor 4.0 (EPSS 0.01)
P4fixeddbDebian: Security Advisory (DSA-6294-1)5.00.0019nodata team2027-03-31P4: CVSS 5.0 >= floor 4.0 (EPSS 0.00)
P4fixeddbDebian: Security Advisory (DSA-6335-1)5.00.0400nodata team2027-03-31P4: CVSS 5.0 >= floor 4.0 (EPSS 0.04)
P4fixeddbDebian: Security Advisory (DLA-4740-1)5.00.0101nodata team2027-03-31P4: CVSS 5.0 >= floor 4.0 (EPSS 0.01)
P4fixeddbDebian: Security Advisory (DLA-4783-1)5.0unknownnodata team2027-03-31P4: CVSS 5.0 >= floor 4.0 (EPSS unknown)
P4fixeddbDebian: Security Advisory (DLA-4795-1)5.00.0182nodata team2027-03-31P4: CVSS 5.0 >= floor 4.0 (EPSS 0.02)
P4opendbMissing Linux Kernel mitigations for 'Speculative Return Stack Overflow (SRSO)' hardware vulnerability (INCEPTION, AMD-SB-7005)4.70.0730nodata team2027-03-31P4: CVSS 4.7 >= floor 4.0 (EPSS 0.07)
P4fixeddbDebian: Security Advisory (DSA-5931-1)4.70.0120nodata team2027-03-31P4: CVSS 4.7 >= floor 4.0 (EPSS 0.01)
infoinfodbMissing Linux Kernel mitigations for 'TSA' hardware vulnerabilities (AMD-SB-7029)3.80.0049nodata team-info: CVSS 3.8 below floor 4.0 (EPSS 0.00)
infoinfodbWeak MAC Algorithm(s) Supported (SSH)2.6unknownnodata team-info: CVSS 2.6 below floor 4.0 (EPSS unknown)
infoinfodbTCP Timestamps Information Disclosure2.6unknownnodata team-info: CVSS 2.6 below floor 4.0 (EPSS unknown)
P3opendbICMP Timestamp Reply Information Disclosure2.10.3215nodata team2026-12-31P3: EPSS 0.32 >= 0.10 (CVSS 2.1)