Arc
Starred
Recent All chats
/cve-triageCompare Critical and High CVEs for Q2 and Q3, and flag any Critical ones we’re exposed to. Output as .docx.
cve-q3-2026.csvvendor-advisories.pdfasset-inventory.xlsx
Critical disclosures rose to 41 in Q3, up from 26 in Q2, and have run above High every week since week 7’s vendor patch cycle. Two of the Critical CVEs affect products in your asset inventory:
| CVE | Product | Vector | Status |
|---|---|---|---|
| 2026-98417 | Ferncastle Forms plugin | Network, auth required | Patched |
| 2026-98452 | Quillgate Proxy | Network, no auth | Awaiting fix |
Recommend prioritising CVE-2026-98452: no authentication required and no vendor patch yet. The full report is ready to review:
CVE Severity Trends: Q2 vs Q3 2026Document · .docx
Type a message…
OverviewSearchFilesArtefacts
CVE Severity Trends: Q2 vs Q3 2026v1 of 1 · .docxShare
Weekly count of newly disclosed CVEs for widely deployed enterprise software in Q3 2026, by CVSS severity band, from the tracked advisory feed, with Q2 totals for comparison.
Critical vs High severity CVEs by week, Q3 2026
High (CVSS 7.0–8.9)Critical (CVSS 9.0–10.0)
Reading the chart
What it shows