Summary
Successful exploitation of these vulnerabilities could allow an attacker with network access to achieve remote code execution.
The following versions of Johnson Controls C-CURE 9000 and Victor application server (Update A) are affected:
- C-CURE 9000 <=v3.10.1 (CVE-2026-21655)
- victor Application Server <=v4.10 …
Summary
Successful exploitation of this vulnerability could allow an attacker to use hidden commands to disable electrical safety mechanisms or modify other stimulation output settings.
The following versions of Pulsetto Vagus Nerve Stimulator are affected:
- Pulsetto Vagus Nerve Stimulator vers:all/* (CVE-2026-18844)
Summary
Successful exploitation of these vulnerabilities could allow an attacker to access unauthorized health profile information, make changes to health information, cause a denial-of-service condition, disclose session token information, and obtain control of user accounts.
The following versions of Mira Hormone Monitor, Mira Android App …