##
Updated at UTC 2026-09-25T00:51:40.542367
| CVE | CVSS | EPSS | Posts | Repos | Nuclei | Updated | Description |
|---|---|---|---|---|---|---|---|
| CVE-2026-86858 | None | 0.00% | 2 | 0 | 2026-09-24T21:32:59 | ServiceNow has remediated an improper access control security issue that was ide | |
| CVE-2026-93289 | 7.5 | 0.00% | 2 | 0 | 2026-09-24T21:32:59 | The affected products are vulnerable to command injection attack that could allo | |
| CVE-2026-86857 | None | 0.00% | 2 | 0 | 2026-09-24T21:32:58 | ServiceNow has remediated an authorization bypass security issue that was identi | |
| CVE-2026-93354 | 8.1 | 0.00% | 2 | 0 | 2026-09-24T21:32:58 | Taskview Community before 1.56.0 contains a missing authentication vulnerability | |
| CVE-2026-93291 | 9.4 | 0.00% | 2 | 0 | 2026-09-24T21:32:58 | Omni C20 lacks proper certificate validation which could allow an attacker to pe | |
| CVE-2026-86859 | None | 0.00% | 2 | 0 | 2026-09-24T21:32:57 | ServiceNow has remediated an authorization bypass security issue that was identi | |
| CVE-2026-71362 | 9.1 | 2.33% | 3 | 1 | 2026-09-24T21:32:31 | Adobe Commerce is affected by an Incorrect Authorization vulnerability that coul | |
| CVE-2026-5430 | 10.0 | 0.37% | 3 | 1 | 2026-09-24T21:32:26 | The JWT authentication mechanism accepts tokens signed with algorithms other tha | |
| CVE-2026-81630 | 8.1 | 0.00% | 4 | 0 | 2026-09-24T21:25:27.050000 | The Botslab G980H dash camera firmware does not adequately verify the authentici | |
| CVE-2026-85496 | 8.8 | 0.00% | 2 | 0 | 2026-09-24T21:25:27.050000 | The Botslab G980H dash camera firmware generates session identifiers using a sma | |
| CVE-2026-84399 | 8.8 | 0.00% | 2 | 0 | 2026-09-24T21:25:27.050000 | The Botslab G980H dash camera firmware contains an authorization vulnerability i | |
| CVE-2026-82566 | 8.8 | 0.00% | 2 | 0 | 2026-09-24T21:25:27.050000 | The Botslab G980H dash camera firmware contains a session management vulnerabili | |
| CVE-2026-95699 | 9.6 | 0.00% | 2 | 0 | 2026-09-24T21:25:27.050000 | Prior to 9/18/2026, the iSteamX mobile application's AWS policy could grant auth | |
| CVE-2026-88419 | 8.8 | 0.48% | 1 | 0 | 2026-09-24T21:25:27.050000 | An unrestricted upload of files with a dangerous type in the thumbnail-upload en | |
| CVE-2026-93345 | 7.5 | 0.49% | 1 | 0 | 2026-09-24T21:18:58.180000 | MikroTik RouterOS before 7.25beta4 contains an improper input validation vulnera | |
| CVE-2026-61674 | 0 | 0.85% | 1 | 0 | 2026-09-24T21:16:28.120000 | Fluent Bit is a fast and lightweight logs, metrics, and traces processor for Lin | |
| CVE-2026-97359 | 10.0 | 0.00% | 2 | 0 | 2026-09-24T21:08:55.030000 | HFS2 version 2.4.0 and earlier contains a template injection vulnerability in th | |
| CVE-2026-97055 | 8.1 | 0.41% | 1 | 0 | 2026-09-24T21:08:55.030000 | SigNoz from v0.8.0 before v0.143.0 defaults the JWT tokenizer signing secret (to | |
| CVE-2026-86860 | 0 | 0.00% | 2 | 0 | 2026-09-24T21:00:46.893000 | ServiceNow has remediated a missing authorization vulnerability that was identif | |
| CVE-2026-13016 | 0 | 0.00% | 2 | 0 | 2026-09-24T21:00:46.893000 | ServiceNow has remediated a SQL injection vulnerability that was identified in t | |
| CVE-2026-95519 | 7.8 | 0.00% | 1 | 0 | 2026-09-24T21:00:46.893000 | A flaw was found in rpm. An attacker can supply a crafted manifest file that, wh | |
| CVE-2026-97059 | 8.2 | 0.00% | 1 | 0 | 2026-09-24T21:00:46.893000 | DCMTK through 3.7.0 contains a heap over-read vulnerability in ConcatenationLoad | |
| CVE-2026-81549 | 9.6 | 0.00% | 1 | 0 | 2026-09-24T19:41:16.513000 | IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated a | |
| CVE-2026-81545 | 8.8 | 0.00% | 1 | 0 | 2026-09-24T19:41:16.513000 | IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated a | |
| CVE-2026-81552 | 8.8 | 0.00% | 1 | 0 | 2026-09-24T19:41:16.513000 | IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated a | |
| CVE-2026-78308 | 9.8 | 0.35% | 2 | 0 | 2026-09-24T19:39:45.600000 | Improper Authentication vulnerability in DIAEnergie allows Authentication Bypass | |
| CVE-2026-57590 | 8.1 | 0.18% | 1 | 0 | 2026-09-24T19:36:39.327000 | A missing authorization vulnerability exists in the Task Group APIs of Apache Do | |
| CVE-2026-56737 | 8.1 | 0.00% | 1 | 0 | 2026-09-24T19:29:30 | ### Summary The public two-factor verification endpoint `POST /check` logs a use | |
| CVE-2026-93425 | 9.9 | 0.00% | 1 | 0 | 2026-09-24T18:19:07.280000 | Dokploy is a free, self-hostable Platform as a Service (PaaS). Prior to 0.29.13, | |
| CVE-2026-6928 | 9.8 | 0.45% | 1 | 0 | 2026-09-24T16:17:10.010000 | IBM Concert 1.0.0 through 3.0.0 references or accesses memory after it has been | |
| CVE-2026-81548 | 8.8 | 0.00% | 1 | 0 | 2026-09-24T15:31:42 | IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated a | |
| CVE-2026-81547 | 8.8 | 0.00% | 1 | 0 | 2026-09-24T15:31:42 | IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated a | |
| CVE-2026-82093 | 8.8 | 0.00% | 1 | 0 | 2026-09-24T15:31:42 | IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated a | |
| CVE-2026-90959 | 8.1 | 0.00% | 1 | 0 | 2026-09-24T15:31:42 | A path traversal vulnerability was found in pulpcore. The content upload API acc | |
| CVE-2026-97362 | 7.5 | 0.00% | 1 | 0 | 2026-09-24T15:31:42 | HFS2 version 2.4.0 and earlier contains a denial of service vulnerability that a | |
| CVE-2026-58008 | 8.1 | 0.00% | 1 | 0 | 2026-09-24T15:31:41 | Stack-based buffer overflow vulnerability in Altera Trusted Firmware on HPS allo | |
| CVE-2026-58007 | 8.1 | 0.00% | 1 | 0 | 2026-09-24T15:31:41 | Untrusted pointer dereference vulnerability in Altera Trusted Firmware on HPS al | |
| CVE-2026-77874 | 8.6 | 0.00% | 1 | 0 | 2026-09-24T15:31:41 | IBM Enterprise Build of Quarkus 3.27.1 through 3.27.5.SP1, and 3.33.1 through 3. | |
| CVE-2026-81539 | 8.8 | 0.00% | 1 | 0 | 2026-09-24T15:31:41 | IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated a | |
| CVE-2026-97057 | 7.5 | 0.00% | 1 | 0 | 2026-09-24T15:31:40 | redis-parser through 3.0.0 fails to validate the multi-bulk length value in RESP | |
| CVE-2026-97360 | 10.0 | 0.00% | 1 | 0 | 2026-09-24T15:31:40 | HFS2 version 2.4.0 and earlier contains an unauthenticated arbitrary file access | |
| CVE-2026-95521 | 7.8 | 0.00% | 1 | 0 | 2026-09-24T15:31:35 | A command injection flaw was found in rpm. Installing or rebuilding a source RPM | |
| CVE-2026-19072 | 9.9 | 0.00% | 2 | 0 | 2026-09-24T15:31:29 | Velociraptor stores the compiled VQL in the hunt object internally to avoid havi | |
| CVE-2026-85682 | 8.8 | 0.14% | 1 | 0 | 2026-09-24T15:17:46.703000 | The YOP Poll plugin for WordPress is vulnerable to Origin Validation Error in al | |
| CVE-2026-89078 | 9.9 | 0.36% | 1 | 0 | 2026-09-24T15:03:53.487000 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 19.2 | |
| CVE-2026-93577 | 9.9 | 0.43% | 1 | 0 | 2026-09-24T15:03:53.487000 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 19.2 | |
| CVE-2026-81537 | 8.8 | 0.98% | 1 | 0 | 2026-09-24T14:51:56.593000 | IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated a | |
| CVE-2026-81208 | 7.7 | 0.23% | 1 | 0 | 2026-09-24T14:51:56.593000 | IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow an authenticated user to | |
| CVE-2026-12227 | 9.8 | 0.77% | 2 | 2 | 2026-09-24T12:31:29 | The Visual Composer Website Builder plugin for WordPress is vulnerable to Local | |
| CVE-2026-80513 | 7.5 | 0.20% | 1 | 0 | 2026-09-24T12:31:23 | The wpForo Forum WordPress plugin before 3.1.6 does not restrict which classes m | |
| CVE-2026-77193 | 7.5 | 0.36% | 1 | 0 | 2026-09-24T09:32:00 | The eesy_ID2WP – Publish InDesign HTML5 plugin for WordPress is vulnerable to Pa | |
| CVE-2026-97185 | 7.8 | 0.13% | 1 | 0 | 2026-09-24T09:32:00 | A flaw was found in GIMP. When processing a specially crafted GIMPressionist pre | |
| CVE-2026-78312 | 9.1 | 0.34% | 1 | 0 | 2026-09-24T09:32:00 | Path Traversal in DIAEnergie. This issue affects DIAEnergie: before 1.11.00.022 | |
| CVE-2026-78311 | 8.8 | 0.24% | 1 | 0 | 2026-09-24T09:32:00 | SQL Injection vulnerability in DIAEnergie. This issue affects DIAEnergie: befor | |
| CVE-2026-78309 | 8.8 | 0.24% | 1 | 0 | 2026-09-24T09:32:00 | SQL Injection vulnerability in DIAEnergie. This issue affects DIAEnergie: befor | |
| CVE-2026-18467 | 9.8 | 0.39% | 2 | 0 | 2026-09-24T03:30:34 | The Paytium: Mollie payment forms & donations plugin for WordPress is vulnerable | |
| CVE-2026-96891 | 9.8 | 0.65% | 1 | 0 | 2026-09-24T03:30:34 | A vulnerability was identified in D-Link DIR-825 3.00b32. Affected is the functi | |
| CVE-2026-70125 | 8.8 | 0.44% | 1 | 0 | 2026-09-24T00:30:34 | Microsoft Outlook Remote Code Execution Vulnerability | |
| CVE-2026-19125 | 8.1 | 0.64% | 1 | 1 | 2026-09-24T00:30:29 | The EthPress – Web3 Login plugin for WordPress is vulnerable to Authentication B | |
| CVE-2026-93352 | 9.8 | 0.62% | 2 | 0 | 2026-09-24T00:30:29 | Laravel-Mediable 7.0.0 before 7.0.2 contains an incomplete patch for CVE-2026-49 | |
| CVE-2026-81536 | 7.7 | 0.28% | 1 | 0 | 2026-09-24T00:30:29 | IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated a | |
| CVE-2026-80423 | 8.8 | 0.33% | 1 | 0 | 2026-09-24T00:30:29 | IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated a | |
| CVE-2026-86583 | 8.8 | 0.33% | 1 | 0 | 2026-09-24T00:30:29 | The Import and export users and customers plugin for WordPress is vulnerable to | |
| CVE-2026-75887 | 7.5 | 0.36% | 1 | 0 | 2026-09-24T00:30:26 | A flaw was found in the OpenShift console. An unauthenticated attacker can explo | |
| CVE-2026-6730 | 9.8 | 0.44% | 1 | 0 | 2026-09-23T21:31:08 | IBM Concert 1.0.0 through 3.0.0 is vulnerable to a buffer overflow, caused by im | |
| CVE-2026-87899 | None | 0.53% | 1 | 0 | 2026-09-23T21:31:03 | Execution with unnecessary privileges in cPanel allows remote authenticated user | |
| CVE-2026-18162 | 9.8 | 0.48% | 1 | 0 | 2026-09-23T19:17:28.687000 | IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remot | |
| CVE-2026-18169 | 9.9 | 0.53% | 1 | 0 | 2026-09-23T18:17:07.270000 | IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remot | |
| CVE-2026-91818 | 7.8 | 0.12% | 1 | 0 | 2026-09-23T17:58:26.570000 | A use-after-free vulnerability exists in Foxit PDF Editor/Reader’s JavaScript ha | |
| CVE-2026-19599 | 9.9 | 2.86% | 2 | 0 | 2026-09-23T15:30:51 | ZohoCorp ManageEngine OpManager MSP versions 12.8.709 and below were vulnerable | |
| CVE-2026-91811 | 7.8 | 0.12% | 1 | 0 | 2026-09-23T09:30:37 | A heap-based out-of-bounds write vulnerability exists in Foxit PDF Editor/Reader | |
| CVE-2026-91809 | 7.8 | 0.12% | 1 | 0 | 2026-09-23T09:30:30 | A use-after-free vulnerability exists in Foxit PDF Editor/Reader’s handling of m | |
| CVE-2026-74849 | 9.8 | 4.61% | 1 | 0 | 2026-09-23T04:17:44.340000 | Zohocorp ManageEngine ADSelfService Plus versions before build 7001 are vulnerab | |
| CVE-2026-96257 | 10.0 | 0.58% | 1 | 0 | 2026-09-23T03:30:35 | A flaw has been found in Fast FAC1203R Gigabit Edition 2.0.4. Affected by this i | |
| CVE-2026-18163 | 9.8 | 0.51% | 1 | 0 | 2026-09-23T00:31:21 | IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remot | |
| CVE-2026-19202 | None | 0.25% | 1 | 0 | 2026-09-23T00:31:15 | A caching flaw in the toolbox-core package of the mcp-toolbox-sdk-python SDK cau | |
| CVE-2026-81642 | 9.8 | 0.80% | 1 | 1 | 2026-09-22T21:31:54 | In NLnet Labs Unbound up to and including 1.26.0, a vulnerability was found in t | |
| CVE-2026-77987 | None | 0.89% | 1 | 0 | 2026-09-22T21:31:40 | A server-side request forgery (SSRF) vulnerability was identified in the noteboo | |
| CVE-2026-88020 | 6.1 | 0.27% | 1 | 0 | 2026-09-22T21:31:39 | Autonomy Logic OpenPLC 3 is susceptible to an improper neutralization of input d | |
| CVE-2026-28324 | 9.8 | 0.65% | 3 | 0 | 2026-09-22T21:31:34 | SolarWinds Observability Self-Hosted was found to be affected by an unauthentica | |
| CVE-2026-87121 | 9.8 | 0.53% | 2 | 0 | 2026-09-22T21:31:34 | lwIP TCP/IP Stack MQTT is vulnerable to an out-of-bounds write, which may allow | |
| CVE-2026-94127 | 9.8 | 1.29% | 16 | 2 | 2026-09-22T21:31:17 | When a BIG-IP APM access policy and an OAuth profile is configured on a virtual | |
| CVE-2026-93616 | 9.8 | 2.42% | 12 | 2 | 2026-09-22T21:31:15 | A directory traversal and file upload vulnerability allows an unauthenticated at | |
| CVE-2026-93952 | 10.0 | 0.90% | 8 | 0 | 2026-09-22T21:31:14 | VeloCloud Orchestrator (VCO) on-prem has a security issue where this issue may a | |
| CVE-2026-85102 | 9.8 | 0.99% | 11 | 0 | 2026-09-22T21:30:40 | Improper certificate trust validation during VPN negotiation in Check Point Quan | |
| CVE-2026-77322 | 7.5 | 0.52% | 1 | 0 | 2026-09-22T20:34:31 | ### Summary The WebSocket transport allocates a buffer from the frame payload l | |
| CVE-2026-84388 | 9.6 | 0.38% | 1 | 1 | 2026-09-22T19:09:58.680000 | A improper restriction of rendered ui layers or frames vulnerability in Fortinet | |
| CVE-2026-89275 | 10.0 | 1.25% | 1 | 0 | 2026-09-22T18:33:43 | Adobe Campaign Classic (ACC) is affected by an Improper Control of Generation of | |
| CVE-2026-95675 | 9.8 | 3.91% | 1 | 1 | 2026-09-22T15:32:43 | D-Link DAP-1360 firmware version 6.14 and earlier contains an unauthenticated re | |
| CVE-2026-65113 | 9.8 | 0.61% | 1 | 0 | 2026-09-22T15:32:43 | NVIDIA Infrastructure Controller for Linux contains a vulnerability where an att | |
| CVE-2026-7273 | 8.8 | 1.29% | 2 | 0 | 2026-09-22T12:10:51.067000 | A stack-based buffer overflow vulnerability in the CGI program of Zyxel GS1900-4 | |
| CVE-2026-12249 | 9.0 | 0.14% | 1 | 0 | 2026-09-21T22:27:11 | An issue was discovered in Canonical ADSys upstream versions through v0.16.2. Du | |
| CVE-2026-80521 | 7.8 | 0.17% | 1 | 1 | 2026-09-21T14:17:20.193000 | In the Linux kernel, the following vulnerability has been resolved: af_unix: Un | |
| CVE-2026-93958 | 9.1 | 2.70% | 1 | 1 | 2026-09-20T03:30:31 | A vulnerability was found in D-Link R95 BE9500_1.00.16. This vulnerability affec | |
| CVE-2026-82892 | 8.1 | 0.62% | 1 | 0 | 2026-09-18T21:32:35 | IBM Guardium Data Protection 12.2 could allow a remote attacker to execute arbit | |
| CVE-2026-93485 | 7.1 | 0.28% | 1 | 2 | 2026-09-18T06:32:17 | Improper neutralization of input during web page generation ('cross-site scripti | |
| CVE-2026-76460 | 10.0 | 14.03% | 1 | 1 | 2026-09-16T21:33:00 | A vulnerability in an API of Cisco Identity Services Engine (ISE) could allow an | |
| CVE-2026-43783 | 7.8 | 0.13% | 1 | 1 | 2026-09-15T00:31:13 | A race condition was addressed with improved locking. This issue is fixed in mac | |
| CVE-2026-9176 | 6.7 | 0.16% | 2 | 0 | 2026-09-10T21:31:46 | IBM WebSphere Application Server 9.0, and 8.5 is vulnerable to a security bypass | |
| CVE-2026-85103 | 9.8 | 3.65% | 1 | 0 | 2026-09-10T04:18:18.390000 | A heap-based buffer overflow in VPN certificate ASN.1 decoding may allow an unau | |
| CVE-2026-50093 | 9.0 | 0.32% | 1 | 0 | 2026-09-08T09:35:45 | A vulnerability has been identified in Siveillance Control Pro V3.0 (All version | |
| CVE-2026-43499 | 7.8 | 0.28% | 1 | 100 | 2026-09-08T09:35:29 | In the Linux kernel, the following vulnerability has been resolved: rtmutex: Us | |
| CVE-2026-86296 | 10.0 | 1.44% | 4 | 0 | 2026-09-07T12:30:36 | A vulnerability was determined in D-Link DIR-822A A_101. This vulnerability affe | |
| CVE-2026-78306 | None | 0.23% | 1 | 2 | 2026-08-24T09:33:52 | DJI drones expose an unauthenticated DUML command interface over Bluetooth that | |
| CVE-2026-59310 | 9.8 | 2.56% | 1 | 2 | 2026-08-19T04:17:24.940000 | VMware vCenter contains a directory traversal vulnerability in the Syslog server | |
| CVE-2026-55040 | 9.1 | 17.54% | 1 | 5 | template | 2026-08-19T04:17:23.540000 | Weak authentication in Microsoft Office SharePoint allows an unauthorized attack |
| CVE-2026-33824 | 9.8 | 1.62% | 1 | 2 | 2026-08-18T18:31:46 | Double free in Windows IKE Extension allows an unauthorized attacker to execute | |
| CVE-2026-46345 | 8.4 | 0.20% | 1 | 0 | 2026-08-17T17:54:44 | **Relevant Products/Components:** * `trestle/core/commands/author/jinja.py` * ` | |
| CVE-2026-68820 | 7.0 | 0.33% | 1 | 4 | 2026-08-16T19:17:24.183000 | Use after free in Windows Ancillary Function Driver for WinSock allows an author | |
| CVE-2026-65660 | 6.5 | 1.19% | 4 | 0 | 2026-08-11T18:31:43 | Improper control of generation of code ('code injection') in Microsoft Office Sh | |
| CVE-2026-63077 | 9.8 | 9.76% | 3 | 6 | 2026-08-05T18:32:31 | In JetBrains TeamCity before 2026.1.3, 2025.11.7 unauthenticated remote code exe | |
| CVE-2026-15830 | 5.3 | 0.76% | 1 | 0 | 2026-08-04T18:31:31 | An issue was discovered in Django 5.2 before 5.2.17 and 6.0 before 6.0.8. GeoDja | |
| CVE-2026-59309 | 9.8 | 0.61% | 1 | 0 | 2026-07-30T15:31:54 | VMware vCenter contains an authentication bypass vulnerability in the VMware Dir | |
| CVE-2025-68686 | 5.9 | 29.60% | 1 | 0 | 2026-07-27T18:31:25 | An Exposure of Sensitive Information to an Unauthorized Actor vulnerability [CWE | |
| CVE-2026-48842 | 8.1 | 0.89% | 1 | 0 | 2026-07-24T10:10:00.197000 | Roundcube Webmail 1.6.x before 1.6.16 and 1.7.x before 1.7.1 has Pre-authenticat | |
| CVE-2026-50522 | 9.8 | 3.04% | 1 | 5 | 2026-07-23T15:44:10.873000 | Deserialization of untrusted data in Microsoft Office SharePoint allows an unaut | |
| CVE-2026-49972 | 8.8 | 1.08% | 1 | 0 | 2026-07-15T19:17:24.827000 | Laravel-Mediable before 7.0.0 contains a file upload vulnerability that allows u | |
| CVE-2025-68788 | 0 | 0.21% | 1 | 0 | 2026-07-14T13:18:00.363000 | In the Linux kernel, the following vulnerability has been resolved: fsnotify: d | |
| CVE-2026-45659 | 8.8 | 2.70% | 1 | 2 | 2026-07-01T21:35:53 | Deserialization of untrusted data in Microsoft Office SharePoint allows an autho | |
| CVE-2026-23239 | 7.8 | 0.10% | 2 | 0 | 2026-06-17T10:21:09.960000 | In the Linux kernel, the following vulnerability has been resolved: espintcp: F | |
| CVE-2024-0244 | 9.8 | 1.38% | 1 | 0 | 2026-06-17T06:53:04.567000 | Buffer overflow in CPCA PCFAX number process of Office Multifunction Printers an | |
| CVE-2020-4428 | 9.1 | 61.69% | 1 | 0 | 2026-06-17T03:19:58.553000 | IBM Data Risk Manager 2.0.1, 2.0.2, 2.0.3, and 2.0.4 could allow a remote authen | |
| CVE-2026-46439 | 7.8 | 0.27% | 1 | 0 | 2026-05-28T19:01:39 | A High severity Server-Side Template Injection (SSTI) vulnerability exists in th | |
| CVE-2026-41091 | 7.8 | 0.44% | 1 | 4 | 2026-05-20T18:31:35 | Improper link resolution before file access ('link following') in Microsoft Defe | |
| CVE-2026-21513 | 8.8 | 15.64% | 1 | 0 | 2026-03-27T21:32:39 | Protection mechanism failure in MSHTML Framework allows an unauthorized attacker | |
| CVE-2026-21525 | 6.2 | 4.80% | 1 | 0 | 2026-03-27T21:31:32 | Null pointer dereference in Windows Remote Access Connection Manager allows an u | |
| CVE-2026-21519 | 7.8 | 2.46% | 1 | 0 | 2026-02-10T21:31:29 | Access of resource using incompatible type ('type confusion') in Desktop Window | |
| CVE-2026-20805 | 5.5 | 7.20% | 1 | 6 | 2026-01-13T21:31:44 | Exposure of sensitive information to an unauthorized actor in Desktop Windows Ma | |
| CVE-2020-4427 | 9.8 | 70.03% | 1 | 0 | template | 2025-11-04T00:30:30 | IBM Data Risk Manager 2.0.1, 2.0.2, 2.0.3, 2.0.4, 2.0.5, and 2.0.6 could allow a |
| CVE-2025-4632 | 9.8 | 24.30% | 1 | 2 | 2025-10-22T00:34:22 | Improper limitation of a pathname to a restricted directory vulnerability in Sam | |
| CVE-2023-48788 | 9.8 | 98.45% | 1 | 1 | template | 2025-10-22T00:34:05 | A improper neutralization of special elements used in an sql command ('sql injec |
| CVE-2023-20118 | 7.2 | 54.11% | 2 | 0 | 2025-10-22T00:33:50 | A vulnerability in the web-based management interface of Cisco Small Business Ro | |
| CVE-2022-42475 | 9.8 | 99.47% | 1 | 9 | template | 2025-10-22T00:32:38 | A heap-based buffer overflow vulnerability [CWE-122] in FortiOS SSL-VPN 7.2.0 th |
| CVE-2021-44168 | 7.8 | 0.87% | 1 | 1 | 2025-10-22T00:32:27 | A download of code without integrity check vulnerability in the "execute restore | |
| CVE-2024-20260 | 8.6 | 0.59% | 1 | 0 | 2024-10-23T18:33:16 | A vulnerability in the VPN and management web servers of the Cisco Adaptive Secu | |
| CVE-2026-61821 | 0 | 0.38% | 1 | 0 | N/A | ||
| CVE-2026-96883 | 0 | 0.00% | 2 | 0 | N/A | ||
| CVE-2026-91766 | 0 | 0.00% | 2 | 0 | N/A | ||
| CVE-2026-87902 | 0 | 2.88% | 12 | 14 | N/A | ||
| CVE-2026-63203 | 0 | 0.00% | 1 | 0 | N/A | ||
| CVE-2026-77581 | 0 | 0.00% | 1 | 0 | N/A | ||
| CVE-2026-94545 | 0 | 0.00% | 2 | 2 | N/A | ||
| CVE-2026-84739 | 0 | 0.00% | 1 | 0 | N/A | ||
| CVE-2026-96419 | 0 | 0.00% | 1 | 0 | N/A | ||
| CVE-2026-78902 | 0 | 0.00% | 1 | 0 | N/A | ||
| CVE-2026-67231 | 0 | 0.25% | 1 | 0 | N/A | ||
| CVE-2026-88804 | 0 | 0.00% | 1 | 0 | N/A | ||
| CVE-2026-69184 | 0 | 0.68% | 1 | 0 | N/A | ||
| CVE-2024-85880 | 0 | 0.00% | 1 | 0 | N/A | ||
| CVE-2024-85046 | 0 | 0.00% | 1 | 0 | N/A | ||
| CVE-2024-87491 | 0 | 0.00% | 1 | 0 | N/A | ||
| CVE-2026-89090 | 0 | 0.52% | 1 | 0 | N/A | ||
| CVE-2026-85279 | 0 | 0.21% | 1 | 0 | N/A |
updated 2026-09-24T21:32:59
2 posts
Hack and patch more ServiceNow shit.
https://support.servicenow.com/kb?id=kb_article_view&sysparm_article=KB3159623
##On September 24, 2026, ServiceNow issued CVE-2026-86857, CVE-2026-86858, CVE-2026-13016, CVE-2026-86859, and CVE-2026-86860.
Each of these security issues was identified through internal security testing, customer security assessments, or reports submitted through ServiceNow's responsible disclosure and bug bounty programs and was remediated independently. For security issues identified through responsible disclosure, researchers may choose to publish their findings.
ServiceNow did not identify evidence of malicious exploitation related to these issues.
Hack and patch more ServiceNow shit.
https://support.servicenow.com/kb?id=kb_article_view&sysparm_article=KB3159623
##On September 24, 2026, ServiceNow issued CVE-2026-86857, CVE-2026-86858, CVE-2026-13016, CVE-2026-86859, and CVE-2026-86860.
Each of these security issues was identified through internal security testing, customer security assessments, or reports submitted through ServiceNow's responsible disclosure and bug bounty programs and was remediated independently. For security issues identified through responsible disclosure, researchers may choose to publish their findings.
ServiceNow did not identify evidence of malicious exploitation related to these issues.
updated 2026-09-24T21:32:59
2 posts
🟠 CVE-2026-93289 - High (7.5)
The affected products are vulnerable to command injection attack that could allow an unauthenticated attacker to execute system commands during the pairing process.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93289/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-93289 - High (7.5)
The affected products are vulnerable to command injection attack that could allow an unauthenticated attacker to execute system commands during the pairing process.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93289/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T21:32:58
2 posts
Hack and patch more ServiceNow shit.
https://support.servicenow.com/kb?id=kb_article_view&sysparm_article=KB3159623
##On September 24, 2026, ServiceNow issued CVE-2026-86857, CVE-2026-86858, CVE-2026-13016, CVE-2026-86859, and CVE-2026-86860.
Each of these security issues was identified through internal security testing, customer security assessments, or reports submitted through ServiceNow's responsible disclosure and bug bounty programs and was remediated independently. For security issues identified through responsible disclosure, researchers may choose to publish their findings.
ServiceNow did not identify evidence of malicious exploitation related to these issues.
Hack and patch more ServiceNow shit.
https://support.servicenow.com/kb?id=kb_article_view&sysparm_article=KB3159623
##On September 24, 2026, ServiceNow issued CVE-2026-86857, CVE-2026-86858, CVE-2026-13016, CVE-2026-86859, and CVE-2026-86860.
Each of these security issues was identified through internal security testing, customer security assessments, or reports submitted through ServiceNow's responsible disclosure and bug bounty programs and was remediated independently. For security issues identified through responsible disclosure, researchers may choose to publish their findings.
ServiceNow did not identify evidence of malicious exploitation related to these issues.
updated 2026-09-24T21:32:58
2 posts
🟠 CVE-2026-93354 - High (8.1)
Taskview Community before 1.56.0 contains a missing authentication vulnerability that allows unauthenticated attackers to register arbitrary OAuth clients and take over user accounts by exploiting the OAuth 2.0 Dynamic Client Registration endpoint...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93354/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-93354 - High (8.1)
Taskview Community before 1.56.0 contains a missing authentication vulnerability that allows unauthenticated attackers to register arbitrary OAuth clients and take over user accounts by exploiting the OAuth 2.0 Dynamic Client Registration endpoint...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93354/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T21:32:58
2 posts
🔴 CVE-2026-93291 - Critical (9.4)
Omni C20 lacks proper certificate validation which could allow an attacker to perform a man-in-the-middle attack which could allow them to execute arbitrary code.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93291/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-93291 - Critical (9.4)
Omni C20 lacks proper certificate validation which could allow an attacker to perform a man-in-the-middle attack which could allow them to execute arbitrary code.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93291/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T21:32:57
2 posts
Hack and patch more ServiceNow shit.
https://support.servicenow.com/kb?id=kb_article_view&sysparm_article=KB3159623
##On September 24, 2026, ServiceNow issued CVE-2026-86857, CVE-2026-86858, CVE-2026-13016, CVE-2026-86859, and CVE-2026-86860.
Each of these security issues was identified through internal security testing, customer security assessments, or reports submitted through ServiceNow's responsible disclosure and bug bounty programs and was remediated independently. For security issues identified through responsible disclosure, researchers may choose to publish their findings.
ServiceNow did not identify evidence of malicious exploitation related to these issues.
Hack and patch more ServiceNow shit.
https://support.servicenow.com/kb?id=kb_article_view&sysparm_article=KB3159623
##On September 24, 2026, ServiceNow issued CVE-2026-86857, CVE-2026-86858, CVE-2026-13016, CVE-2026-86859, and CVE-2026-86860.
Each of these security issues was identified through internal security testing, customer security assessments, or reports submitted through ServiceNow's responsible disclosure and bug bounty programs and was remediated independently. For security issues identified through responsible disclosure, researchers may choose to publish their findings.
ServiceNow did not identify evidence of malicious exploitation related to these issues.
updated 2026-09-24T21:32:31
3 posts
1 repos
🚨 [CISA-2026:0924] CISA Adds 2 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0924)
CISA has added 2 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2026-5430 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-5430)
- Name: WSO2 Multiple Products Path Traversal Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: WSO2
- Product: Multiple Products
- Notes: https://security.docs.wso2.com/en/latest/security-announcements/security-advisories/2026/WSO2-2026-5328/ ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-5430
⚠️ CVE-2026-71362 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-71362)
- Name: Adobe Commerce and Magento Incorrect Authorization Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Adobe
- Product: Commerce and Magento
- Notes: https://helpx.adobe.com/security/products/magento/apsb26-92.html ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-71362
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260924 #cisa20260924 #cve_2026_5430 #cve_2026_71362 #cve20265430 #cve202671362
##🚨 [CISA-2026:0924] CISA Adds 2 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0924)
CISA has added 2 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2026-5430 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-5430)
- Name: WSO2 Multiple Products Path Traversal Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: WSO2
- Product: Multiple Products
- Notes: https://security.docs.wso2.com/en/latest/security-announcements/security-advisories/2026/WSO2-2026-5328/ ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-5430
⚠️ CVE-2026-71362 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-71362)
- Name: Adobe Commerce and Magento Incorrect Authorization Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Adobe
- Product: Commerce and Magento
- Notes: https://helpx.adobe.com/security/products/magento/apsb26-92.html ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-71362
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260924 #cisa20260924 #cve_2026_5430 #cve_2026_71362 #cve20265430 #cve202671362
##CVE ID: CVE-2026-71362
Vendor: Adobe
Product: Commerce and Magento
Date Added: 2026-09-24
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-71362
updated 2026-09-24T21:32:26
3 posts
1 repos
🚨 [CISA-2026:0924] CISA Adds 2 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0924)
CISA has added 2 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2026-5430 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-5430)
- Name: WSO2 Multiple Products Path Traversal Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: WSO2
- Product: Multiple Products
- Notes: https://security.docs.wso2.com/en/latest/security-announcements/security-advisories/2026/WSO2-2026-5328/ ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-5430
⚠️ CVE-2026-71362 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-71362)
- Name: Adobe Commerce and Magento Incorrect Authorization Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Adobe
- Product: Commerce and Magento
- Notes: https://helpx.adobe.com/security/products/magento/apsb26-92.html ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-71362
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260924 #cisa20260924 #cve_2026_5430 #cve_2026_71362 #cve20265430 #cve202671362
##🚨 [CISA-2026:0924] CISA Adds 2 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0924)
CISA has added 2 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2026-5430 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-5430)
- Name: WSO2 Multiple Products Path Traversal Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: WSO2
- Product: Multiple Products
- Notes: https://security.docs.wso2.com/en/latest/security-announcements/security-advisories/2026/WSO2-2026-5328/ ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-5430
⚠️ CVE-2026-71362 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-71362)
- Name: Adobe Commerce and Magento Incorrect Authorization Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Adobe
- Product: Commerce and Magento
- Notes: https://helpx.adobe.com/security/products/magento/apsb26-92.html ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-71362
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260924 #cisa20260924 #cve_2026_5430 #cve_2026_71362 #cve20265430 #cve202671362
##CVE ID: CVE-2026-5430
Vendor: WSO2
Product: Multiple Products
Date Added: 2026-09-24
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-5430
updated 2026-09-24T21:25:27.050000
4 posts
Botslab G980H dash cams are affected by CVE-2026-81630 (CRITICAL, CVSS 9.2): Firmware authenticity is not cryptographically verified, enabling remote code execution if updates are intercepted. Avoid untrusted networks until a patch is released. https://radar.offseq.com/threat/cve-2026-81630-cwe-345-insufficient-verification-of-data-authenticity-in-botslab-g980h-23022026fbd9ffd9 #OffSeq #CVE202681630 #IoTSecurity
##🟠 CVE-2026-81630 - High (8.1)
The Botslab G980H dash camera firmware does not adequately verify the authenticity of firmware updates. The update process retrieves firmware through an unprotected connection and relies on an integrity value supplied with the firmware instead of ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-81630/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##Botslab G980H dash cams are affected by CVE-2026-81630 (CRITICAL, CVSS 9.2): Firmware authenticity is not cryptographically verified, enabling remote code execution if updates are intercepted. Avoid untrusted networks until a patch is released. https://radar.offseq.com/threat/cve-2026-81630-cwe-345-insufficient-verification-of-data-authenticity-in-botslab-g980h-23022026fbd9ffd9 #OffSeq #CVE202681630 #IoTSecurity
##🟠 CVE-2026-81630 - High (8.1)
The Botslab G980H dash camera firmware does not adequately verify the authenticity of firmware updates. The update process retrieves firmware through an unprotected connection and relies on an integrity value supplied with the firmware instead of ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-81630/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T21:25:27.050000
2 posts
🟠 CVE-2026-85496 - High (8.8)
The Botslab G980H dash camera firmware generates session identifiers using a small sequential value space rather than a suitably unpredictable source. An unauthenticated attacker with adjacent network access and knowledge that an active session ex...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-85496/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-85496 - High (8.8)
The Botslab G980H dash camera firmware generates session identifiers using a small sequential value space rather than a suitably unpredictable source. An unauthenticated attacker with adjacent network access and knowledge that an active session ex...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-85496/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T21:25:27.050000
2 posts
🟠 CVE-2026-84399 - High (8.8)
The Botslab G980H dash camera firmware contains an authorization vulnerability in its session based command functionality. The product does not sufficiently associate an authenticated session with the client connection that established it, and sub...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84399/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-84399 - High (8.8)
The Botslab G980H dash camera firmware contains an authorization vulnerability in its session based command functionality. The product does not sufficiently associate an authenticated session with the client connection that established it, and sub...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84399/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T21:25:27.050000
2 posts
🟠 CVE-2026-82566 - High (8.8)
The Botslab G980H dash camera firmware contains a session management vulnerability in which authentication state can remain valid after the associated client connection has been terminated or replaced. Under certain connection conditions, a newly ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-82566/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-82566 - High (8.8)
The Botslab G980H dash camera firmware contains a session management vulnerability in which authentication state can remain valid after the associated client connection has been terminated or replaced. Under certain connection conditions, a newly ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-82566/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T21:25:27.050000
2 posts
🔴 CVE-2026-95699 - Critical (9.6)
Prior to 9/18/2026, the iSteamX mobile application's AWS policy could grant authenticated users access to wildcard MQTT topics, which can expose other users' device data and allow the attacker to start and stop other connected users' devices. This...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-95699/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-95699 - Critical (9.6)
Prior to 9/18/2026, the iSteamX mobile application's AWS policy could grant authenticated users access to wildcard MQTT topics, which can expose other users' device data and allow the attacker to start and stop other connected users' devices. This...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-95699/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T21:25:27.050000
1 posts
🟠 CVE-2026-88419 - High (8.8)
An unrestricted upload of files with a dangerous type in the thumbnail-upload endpoint (/index.php?m=member&f=article&v=thumbUpload) of WuzhiCMS 5.0.0 allows an authenticated low-privileged member to upload a crafted .php file and execute arbitrar...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-88419/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T21:18:58.180000
1 posts
🟠 CVE-2026-93345 - High (7.5)
MikroTik RouterOS before 7.25beta4 contains an improper input validation vulnerability in the labelled-VPN NLRI iterators of the routing service that allows an unauthenticated on-path attacker to crash the BGP service by sending a malformed MP_REA...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93345/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T21:16:28.120000
1 posts
Technical details and a PoC for a critical Fluent Bit vulnerability (CVE-2026-61674) are public. Patch this Fluent Bit vulnerability to prevent RCE attacks.
#FluentBit #CVE202661674 #BufferOverflow #RCE #Cybersecurity #InfoSec
##updated 2026-09-24T21:08:55.030000
2 posts
CVE-2026-97359 - Critical unauthenticated RCE in HFS2 (<= 2.4.0) via template injection in multipart uploads. CVSS 10.0. Mitigate immediately. #CVE #infosec #cybersecurity
##🔴 CVE-2026-97359 - Critical (10)
HFS2 version 2.4.0 and earlier contains a template injection vulnerability in the multipart upload handler that allows unauthenticated attackers to achieve remote code execution by embedding malicious template syntax in a filename. Attackers can c...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97359/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T21:08:55.030000
1 posts
🟠 CVE-2026-97055 - High (8.1)
SigNoz from v0.8.0 before v0.143.0 defaults the JWT tokenizer signing secret (tokenizer::jwt::secret, set via SIGNOZ_TOKENIZER_JWT_SECRET or the deprecated SIGNOZ_JWT_SECRET) to an empty string, and Config.Validate() does not reject the empty valu...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97055/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T21:00:46.893000
2 posts
Hack and patch more ServiceNow shit.
https://support.servicenow.com/kb?id=kb_article_view&sysparm_article=KB3159623
##On September 24, 2026, ServiceNow issued CVE-2026-86857, CVE-2026-86858, CVE-2026-13016, CVE-2026-86859, and CVE-2026-86860.
Each of these security issues was identified through internal security testing, customer security assessments, or reports submitted through ServiceNow's responsible disclosure and bug bounty programs and was remediated independently. For security issues identified through responsible disclosure, researchers may choose to publish their findings.
ServiceNow did not identify evidence of malicious exploitation related to these issues.
Hack and patch more ServiceNow shit.
https://support.servicenow.com/kb?id=kb_article_view&sysparm_article=KB3159623
##On September 24, 2026, ServiceNow issued CVE-2026-86857, CVE-2026-86858, CVE-2026-13016, CVE-2026-86859, and CVE-2026-86860.
Each of these security issues was identified through internal security testing, customer security assessments, or reports submitted through ServiceNow's responsible disclosure and bug bounty programs and was remediated independently. For security issues identified through responsible disclosure, researchers may choose to publish their findings.
ServiceNow did not identify evidence of malicious exploitation related to these issues.
updated 2026-09-24T21:00:46.893000
2 posts
Hack and patch more ServiceNow shit.
https://support.servicenow.com/kb?id=kb_article_view&sysparm_article=KB3159623
##On September 24, 2026, ServiceNow issued CVE-2026-86857, CVE-2026-86858, CVE-2026-13016, CVE-2026-86859, and CVE-2026-86860.
Each of these security issues was identified through internal security testing, customer security assessments, or reports submitted through ServiceNow's responsible disclosure and bug bounty programs and was remediated independently. For security issues identified through responsible disclosure, researchers may choose to publish their findings.
ServiceNow did not identify evidence of malicious exploitation related to these issues.
Hack and patch more ServiceNow shit.
https://support.servicenow.com/kb?id=kb_article_view&sysparm_article=KB3159623
##On September 24, 2026, ServiceNow issued CVE-2026-86857, CVE-2026-86858, CVE-2026-13016, CVE-2026-86859, and CVE-2026-86860.
Each of these security issues was identified through internal security testing, customer security assessments, or reports submitted through ServiceNow's responsible disclosure and bug bounty programs and was remediated independently. For security issues identified through responsible disclosure, researchers may choose to publish their findings.
ServiceNow did not identify evidence of malicious exploitation related to these issues.
updated 2026-09-24T21:00:46.893000
1 posts
🟠 CVE-2026-95519 - High (7.8)
A flaw was found in rpm. An attacker can supply a crafted manifest file that, when processed by a user or automation using `rpm -q -p` or similar manifest-processing flows, leads to arbitrary code execution. This occurs because manifest entries ar...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-95519/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T21:00:46.893000
1 posts
🟠 CVE-2026-97059 - High (8.2)
DCMTK through 3.7.0 contains a heap over-read vulnerability in ConcatenationLoader that copies pixel data frames without validating the PixelData buffer length against the declared NumberOfFrames. Attackers can craft malicious DICOM instances decl...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97059/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T19:41:16.513000
1 posts
🔴 CVE-2026-81549 - Critical (9.6)
IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to obtain sensitive information due to improper validation of the X-Forwarded-Proto header.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-81549/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T19:41:16.513000
1 posts
🟠 CVE-2026-81545 - High (8.8)
IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-81545/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T19:41:16.513000
1 posts
🟠 CVE-2026-81552 - High (8.8)
IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary commands due to improper neutralization of environment variables.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-81552/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T19:39:45.600000
2 posts
🔴 CVE-2026-78308 - Critical (9.8)
Improper Authentication vulnerability in DIAEnergie allows Authentication Bypass.
This issue affects DIAEnergie: before 1.11.00.022.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-78308/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-78308 | CRITICAL | DIAEnergie (<1.11.00.022): Improper Authentication lets attackers bypass auth controls. Patch urgently when available. https://radar.offseq.com/threat/cve-2026-78308-cwe-287-improper-authentication-in-deltaww-diaenergie-6cc9f25ab57e2374 #OffSeq #ICS #Vulnerability #Cybersecurity
##updated 2026-09-24T19:36:39.327000
1 posts
🟠 CVE-2026-57590 - High (8.1)
A missing authorization vulnerability exists in the Task Group APIs of Apache DolphinScheduler. The affected APIs do not properly verify whether the authenticated user has permission to access the project associated with the target Task Group.
...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-57590/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T19:29:30
1 posts
🟠 CVE-2026-56737 - High (8.1)
phpMyFAQ is an open source FAQ web application. Versions 3.2.0 through 4.1.5 contain an authentication bypass in its public two-factor authentication verification flow: an unauthenticated attacker can submit an account’s numeric user ID and a va...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-56737/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T18:19:07.280000
1 posts
🔴 CVE-2026-93425 - Critical (9.9)
Dokploy is a free, self-hostable Platform as a Service (PaaS). Prior to 0.29.13, the patch.readRepoDirectories tRPC procedure passes the user-controlled repoPath value from apps/dokploy/server/api/routers/patch.ts into a shell command in packages/...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93425/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T16:17:10.010000
1 posts
IBM Concert v1.0.0 – 3.0.0 hit by CRITICAL use-after-free bug (CVE-2026-6928, CVSS 9.8). Remote code execution & full compromise possible; no patch confirmed. Monitor IBM advisories. https://radar.offseq.com/threat/cve-2026-6928-cwe-416-use-after-free-in-ibm-concert-2eb5c8a4bd6982d7 #OffSeq #Vuln #IBM #CVE20266928 #Infosec
##updated 2026-09-24T15:31:42
1 posts
🟠 CVE-2026-81548 - High (8.8)
IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-81548/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T15:31:42
1 posts
🟠 CVE-2026-81547 - High (8.8)
IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary commands due to path traversal.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-81547/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T15:31:42
1 posts
🟠 CVE-2026-82093 - High (8.8)
IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary code due to unsafe deserialization of untrusted data.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-82093/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T15:31:42
1 posts
🟠 CVE-2026-90959 - High (8.1)
A path traversal vulnerability was found in pulpcore. The content upload API accepts a 'file_url' parameter that allows users with file repository privileges to specify a local file URL for Pulp to download and store. A URL scheme validation check...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90959/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T15:31:42
1 posts
🟠 CVE-2026-97362 - High (7.5)
HFS2 version 2.4.0 and earlier contains a denial of service vulnerability that allows unauthenticated attackers to cause a complete and persistent loss of availability by sending a single crafted request. Attackers can trigger a hung serving threa...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97362/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T15:31:41
1 posts
🟠 CVE-2026-58008 - High (8.1)
Stack-based buffer overflow vulnerability in Altera Trusted Firmware on HPS allows Exploitation of Improperly Configured or Implemented Memory Protections.
This issue affects Trusted Firmware: through socfpga_v2.14.0.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-58008/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T15:31:41
1 posts
🟠 CVE-2026-58007 - High (8.1)
Untrusted pointer dereference vulnerability in Altera Trusted Firmware on HPS allows Exploitation of Improperly Configured or Implemented Memory Protections.
This issue affects Trusted Firmware: through socfpga_v2.14.0.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-58007/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T15:31:41
1 posts
🟠 CVE-2026-77874 - High (8.6)
IBM Enterprise Build of Quarkus 3.27.1 through 3.27.5.SP1, and 3.33.1 through 3.33.3.SP1 is vulnerable to SQL injection. A remote unauthenticated attacker could send specially crafted SQL statements, which could allow the attacker to view, add, mo...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77874/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T15:31:41
1 posts
🟠 CVE-2026-81539 - High (8.8)
IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary code due to improper neutralization of special elements used in an OS command.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-81539/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T15:31:40
1 posts
🟠 CVE-2026-97057 - High (7.5)
redis-parser through 3.0.0 fails to validate the multi-bulk length value in RESP protocol parsing, allowing attackers to trigger an uncaught RangeError by supplying an excessively large declared length. A malicious or compromised Redis endpoint ca...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97057/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T15:31:40
1 posts
🔴 CVE-2026-97360 - Critical (10)
HFS2 version 2.4.0 and earlier contains an unauthenticated arbitrary file access vulnerability that allows unauthenticated attackers to read, write, append, and delete files anywhere the HFS service account has filesystem access outside the shared...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97360/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T15:31:35
1 posts
🟠 CVE-2026-95521 - High (7.8)
A command injection flaw was found in rpm. Installing or rebuilding a source RPM whose source or spec file basenames contain a %() macro construct causes rpm to execute an attacker-controlled shell command via popen() while relocating the source f...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-95521/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T15:31:29
2 posts
🔴 CVE-2026-19072 - Critical (9.9)
Velociraptor stores the compiled VQL in the hunt object internally to avoid having to recompile the artifacts for each endpoint in the hunt. Although the field "compiled_collector_args" is an internal field, Velociraptor allowed the field to be se...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-19072/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-19072 (CRITICAL, CVSS 9.9) impacts Rapid7 Velociraptor <0.77.2. 'Investigator' role can escalate to admin by injecting arbitrary VQL via API. Patch by upgrading to 0.77.2+. Details: https://radar.offseq.com/threat/cve-2026-19072-cwe-1269-product-released-in-non-release-configuration-in-rapid7-velociraptor-1faa73dd4a3adad9 #OffSeq #Velociraptor #CVE #Infosec
##updated 2026-09-24T15:17:46.703000
1 posts
🟠 CVE-2026-85682 - High (8.8)
The YOP Poll plugin for WordPress is vulnerable to Origin Validation Error in all versions up to, and including, 7.0.10. This is due to the plugin transmitting a wp_rest nonce to window.opener via postMessage() with a wildcard targetOrigin. This m...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-85682/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T15:03:53.487000
1 posts
🔴 CVE-2026-89078 - Critical (9.9)
GitLab has remediated an issue in GitLab CE/EE affecting all versions from 19.2 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1 that under certain conditions could have allowed an authenticated user to execute arbitrary code on the GitLa...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89078/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T15:03:53.487000
1 posts
Toutes nos instances GitLab sont à jour en version 19.4.1 depuis hier soir à 22h.
Il faut mettre à jour rapidement : cette nouvelle version corrige 2 CVE évaluées à 9,9 (CVE-2026-93577 et CVE-2026-84739).
En savoir plus sur nos offres 👇
https://gitlab-saas.bearstech.com/
updated 2026-09-24T14:51:56.593000
1 posts
🟠 CVE-2026-81537 - High (8.8)
IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary code due to OS command injection.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-81537/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T14:51:56.593000
1 posts
🟠 CVE-2026-81208 - High (7.7)
IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow an authenticated user to access sensitive information due to improper handling of encrypted credentials. An attacker could exploit this vulnerability to obtain credentials intended for other ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-81208/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T12:31:29
2 posts
2 repos
https://github.com/Hassham1/CVE-2026-12227-visualcomposer-lfi-poc
🔴 CVE-2026-12227 - Critical (9.8)
The Visual Composer Website Builder plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 45.16.0 via the `vcv-template` parameter. This makes it possible for unauthenticated attackers to include and exec...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-12227/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##Visual Composer Website Builder plugin ≤45.16.0 hit by CRITICAL LFI (CVE-2026-12227). Unauthenticated attackers can execute arbitrary PHP files via 'vcv-template'. Patch unconfirmed. Mitigate & monitor now: https://radar.offseq.com/threat/cve-2026-12227-cwe-98-improper-control-of-filename-for-includerequire-statement-in-php-program-php-ed037e731eb4a3e7 #OffSeq #WordPress #Vuln #LFI
##updated 2026-09-24T12:31:23
1 posts
🟠 CVE-2026-80513 - High (7.5)
The wpForo Forum WordPress plugin before 3.1.6 does not restrict which classes may be instantiated when it deserializes a user-supplied profile field value, allowing authenticated users with Subscriber-level access and above to inject a PHP Object...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-80513/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T09:32:00
1 posts
🟠 CVE-2026-77193 - High (7.5)
The eesy_ID2WP – Publish InDesign HTML5 plugin for WordPress is vulnerable to Path Traversal in all versions up to, and including, 1.0.3 via the `id2wp_path` parameter. This makes it possible for unauthenticated attackers to read the contents of...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77193/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T09:32:00
1 posts
🟠 CVE-2026-97185 - High (7.8)
A flaw was found in GIMP. When processing a specially crafted GIMPressionist preset file, the plug-in does not properly validate vector indices before writing into fixed-size arrays. This can lead to an out-of-bounds write, corrupting memory. An a...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97185/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T09:32:00
1 posts
🔴 CVE-2026-78312 - Critical (9.1)
Path Traversal in DIAEnergie.
This issue affects DIAEnergie: before 1.11.00.022.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-78312/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T09:32:00
1 posts
🟠 CVE-2026-78311 - High (8.8)
SQL Injection vulnerability in DIAEnergie.
This issue affects DIAEnergie: before 1.11.00.022.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-78311/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T09:32:00
1 posts
🟠 CVE-2026-78309 - High (8.8)
SQL Injection vulnerability in DIAEnergie.
This issue affects DIAEnergie: before 1.11.00.022.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-78309/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T03:30:34
2 posts
🔴 CVE-2026-18467 - Critical (9.8)
The Paytium: Mollie payment forms & donations plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 5.0.3. The 5.0.3 patch introduced a wp_hash()/hash_equals() signature gate on the pt-paytium-user-data f...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-18467/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-18467: CRITICAL privilege escalation in Paytium: Mollie payment forms (≤5.0.3). Unauthenticated users can create admin accounts via exploited payment forms. Restrict forms or disable plugin until full fix. https://radar.offseq.com/threat/cve-2026-18467-cwe-269-improper-privilege-management-in-paytiumsupport-paytium-mollie-payment-forms-816d892a2e04a4c5 #OffSeq #WordPress #CVE202618467 #Security
##updated 2026-09-24T03:30:34
1 posts
🔴 CVE-2026-96891 - Critical (9.8)
A vulnerability was identified in D-Link DIR-825 3.00b32. Affected is the function tunnel_set_params of the file tunnel.c of the component rp-l2tp. The manipulation of the argument peer_hostname leads to out-of-bounds write. The attack may be in...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-96891/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T00:30:34
1 posts
🟠 CVE-2026-70125 - High (8.8)
Microsoft Outlook Remote Code Execution Vulnerability
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-70125/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T00:30:29
1 posts
1 repos
🟠 CVE-2026-19125 - High (8.1)
The EthPress – Web3 Login plugin for WordPress is vulnerable to Authentication Bypass in all versions up to, and including, 2.3.5. This is due to the verify_login() function in app/Login.php containing a missing return statement in the signature...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-19125/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T00:30:29
2 posts
plank laravel-mediable <7.0.2 has a CRITICAL vuln (CVE-2026-93352): .pht files not blocked, allowing unauthenticated RCE. Upgrade to 7.0.2+ ASAP. https://radar.offseq.com/threat/cve-2026-93352-unrestricted-upload-of-file-with-dangerous-type-in-plank-laravel-mediable-969ae75c94489a3a #OffSeq #CVE202693352 #RCE #Laravel #Infosec
##🔴 CVE-2026-93352 - Critical (9.8)
Laravel-Mediable 7.0.0 before 7.0.2 contains an incomplete patch for CVE-2026-49972 in which the .pht extension is absent from the forbidden_extensions blocklist in config/mediable.php. The blocklist introduced to address CVE-2026-49972 includes p...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93352/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T00:30:29
1 posts
🟠 CVE-2026-81536 - High (7.7)
IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to obtain sensitive information due to an XML external entity (XXE) injection.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-81536/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T00:30:29
1 posts
🟠 CVE-2026-80423 - High (8.8)
IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to obtain sensitive information due to the exposure of namespace-wide secrets via accessible file mounts.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-80423/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T00:30:29
1 posts
🟠 CVE-2026-86583 - High (8.8)
The Import and export users and customers plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 2.4.17 via the plugin's own export and re-import workflow. The vulnerability exists because the exporter wri...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-86583/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T00:30:26
1 posts
🟠 CVE-2026-75887 - High (7.5)
A flaw was found in the OpenShift console. An unauthenticated attacker can exploit a path traversal vulnerability by manipulating the `lng` and `ns` query parameters in the `/locales/resource.json` endpoint. This allows the attacker to read sensit...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-75887/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-23T21:31:08
1 posts
Buffer overflow (CVE-2026-6730) in IBM Concert 1.0.0-3.0.0 (CVSS 9.8, CRITICAL) lets local users execute arbitrary code. No patch yet — restrict local access, check vendor updates. https://radar.offseq.com/threat/cve-2026-6730-cwe-120-buffer-copy-without-checking-size-of-input-classic-buffer-overflow-in-ibm-concert-cf9a07df005d3ecc #OffSeq #IBM #Vuln #CyberSecurity
##updated 2026-09-23T21:31:03
1 posts
cPanel patched critical cPanel security vulnerabilities including CVE-2026-87899. Update cPanel and WP Toolkit now to prevent privilege escalation.
#cPanel #WHM #WPToolkit #PrivilegeEscalation #Cybersecurity #Infosec #CVE202687899
##updated 2026-09-23T19:17:28.687000
1 posts
CVE-2026-18162: IBM FTM for RedHat OpenShift v4.0.6.0 has a CRITICAL code injection flaw (CVSS 9.8). Remote attackers can execute arbitrary code via improper input neutralization. No patch yet — monitor vendor updates. https://radar.offseq.com/threat/cve-2026-18162-cwe-94-improper-control-of-generation-of-code-code-injection-in-ibm-financial-7385d789acb1bf6d #OffSeq #CVE202618162 #IBM #RCE
##updated 2026-09-23T18:17:07.270000
1 posts
CVE-2026-18169: CRITICAL path traversal in IBM FTM for RedHat OpenShift 4.0.6.0 (CVSS 9.9) 🕵️♂️. Authenticated attackers can access sensitive info via symlink abuse. Restrict access & monitor logs. Patch status unknown. https://radar.offseq.com/threat/cve-2026-18169-cwe-22-improper-limitation-of-a-pathname-to-a-restricted-directory-path-traversal-in-871a1d481ef78ea0 #OffSeq #IBM #CVE202618169 #Infosec
##updated 2026-09-23T17:58:26.570000
1 posts
🟠 CVE-2026-91818 - High (7.8)
A use-after-free vulnerability exists in Foxit PDF Editor/Reader’s JavaScript handling of PDF annotations. Reentrant page-event processing during annotation enumeration may release the associated page object, which is subsequently accessed, resu...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-91818/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-23T15:30:51
2 posts
ManageEngine security vulnerabilities expose servers to remote code execution. Patch these OpManager vulnerabilities and CVE-2026-19599 to secure your network.
#ManageEngine #Cybersecurity #CVE202619599 #OpManager #Infosec #Vulnerability
##CVE-2026-19599: CRITICAL RCE in ManageEngine OpManager MSP (<12.8.711). Improper OS command neutralization enables remote command execution (CVSS 9.9). Upgrade to 12.8.711+ ASAP. https://radar.offseq.com/threat/cve-2026-19599-cwe-78-improper-neutralization-of-special-elements-used-in-an-os-command-os-command-d62870fccbe1d229 #OffSeq #Vuln #InfoSec #RCE
##updated 2026-09-23T09:30:37
1 posts
🟠 CVE-2026-91811 - High (7.8)
A heap-based out-of-bounds write vulnerability exists in Foxit PDF Editor/Reader’s PRC parser due to insufficient validation of vertex indices in triangular fan texture meshes. Successful exploitation could result in memory corruption and an app...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-91811/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-23T09:30:30
1 posts
🟠 CVE-2026-91809 - High (7.8)
A use-after-free vulnerability exists in Foxit PDF Editor/Reader’s handling of malformed PDF form fields. Improper validation during field-name traversal may cause the application to access a released object, resulting in an application crash.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-91809/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-23T04:17:44.340000
1 posts
A critical ManageEngine ADSelfService Plus vulnerability (CVE-2026-74849) allows system compromise. Update to build 7001 to secure your endpoints.
#ManageEngine #ADSelfServicePlus #CVE202674849 #Cybersecurity #Infosec #RCE
##updated 2026-09-23T03:30:35
1 posts
Fast FAC1203R Gigabit Edition v2.0.4 hit by CRITICAL stack-based buffer overflow (CVE-2026-96257). Remote, unauthenticated RCE possible. Exploit is public, no patch exists — restrict access to Device Discovery Service now. https://radar.offseq.com/threat/cve-2026-96257-stack-based-buffer-overflow-in-fast-fac1203r-gigabit-edition-4657d2bb397c7614 #OffSeq #CVE #Infosec
##updated 2026-09-23T00:31:21
1 posts
CVE-2026-18163 (CRITICAL, CVSS 9.8): IBM FTM for RedHat OpenShift v4.0.6.0 has a deserialization vulnerability enabling remote code execution without auth. Restrict access & monitor activity. Patch status unconfirmed. https://radar.offseq.com/threat/cve-2026-18163-cwe-502-deserialization-of-untrusted-data-in-ibm-financial-transaction-manager-ftm-for-0a85c82f9c689e03 #OffSeq #CVE202618163 #IBM #InfoSec 🛡️
##updated 2026-09-23T00:31:15
1 posts
CVE-2026-19202: CRITICAL vuln in Google mcp-toolbox-sdk-python (v0 – 1.1.0). Shared cache flaw lets Google ID tokens be reused across audiences — risk of token replay & impersonation. Patch pending. Details: https://radar.offseq.com/threat/cve-2026-19202-cwe-524-use-of-a-shared-cache-with-insufficient-key-granularity-in-google-mcp-toolbox-9bc343c3bcd3d35b #OffSeq #infosec #CVE202619202 #Python
##updated 2026-09-22T21:31:54
1 posts
1 repos
updated 2026-09-22T21:31:40
1 posts
Go hack more GitHub shit.
https://nvd.nist.gov/vuln/detail/cve-2026-77987
A server-side request forgery (SSRF) vulnerability was identified in the notebook viewer of GitHub Enterprise Server. The notebook viewer validated the scheme and host of a user-supplied URL but did not validate the port, allowing requests to be directed to internal services listening on other ports of the same appliance. Response bodies were not returned to the requester, but response timing acted as an oracle that allowed instance secrets to be extracted character by character. An extracted secret could then be used in a separate interaction with an internal service to obtain remote code execution on the appliance. Exploitation required network access to the instance and was unauthenticated when private mode was disabled, or required any authenticated user when private mode was enabled. This vulnerability affected GitHub Enterprise Server versions 3.17 through 3.22 and was fixed in versions 3.22.1, 3.21.6, 3.20.8, 3.19.12, 3.18.15, and 3.17.21. This vulnerability was reported through the GitHub Bug Bounty program.
sev:CRIT 9.3 - CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
updated 2026-09-22T21:31:39
1 posts
CISA reports CVE-2026-88020, XSS in OpenPLC Runtime v3 6.1. Theft of an operator session cookie can enable state-changing requests and PLC-level control. Exposure of OT web interfaces significantly raises impact. #IcsSecurity #OtSecurity #Xss
https://cyberworldops.eu/en/openplc-web-flaw-could-turn-a-stolen-session-into-industrial-process
##updated 2026-09-22T21:31:34
3 posts
SolarWinds patched three RCE flaws in Observability Self-Hosted, including CVE-2026-28324 (CVSS 9.8) exploitable without authentication. Monitoring hosts hold broad access, so RCE risks full environment compromise and persistence. Patch and restrict exposure now. #SolarWinds #RemoteCodeExecution #PatchManagement
https://cyberworldops.eu/en/three-solarwinds-rce-flaws-expose-monitoring-and-access-control
##SolarWinds Observability vulnerabilities allow RCE via CVE-2026-28324. Update to version 2026.2.3 to secure your monitoring infrastructure today.
#SolarWinds #Cybersecurity #CVE202628324 #CVE202628325 #RCE #Infosec
##https://www.solarwinds.com/trust-center/security-advisories/cve-2026-28324
SolarWinds Observability Self-Hosted was found to be affected by an unauthenticated remote code execution vulnerability due to the insufficient integrity checks. Installations configured in a non-default and non-secure configuration are affected.
sev:CRIT 9.8 - AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
updated 2026-09-22T21:31:34
2 posts
Go hack more MQTT shit.
##🔴 CVE-2026-87121 - Critical (9.8)
lwIP TCP/IP Stack MQTT is vulnerable to an out-of-bounds write, which may allow an attacker to gain full code execution on the device.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-87121/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-22T21:31:17
16 posts
2 repos
https://github.com/watchtowrlabs/watchTowr-vs-f5-bigip-PreAuth-RCE-CVE-2026-94127
‼️[POC] CVE-2026-94127: When a BIG-IP APM access policy and an OAuth profile are configured on a virtual server, specific malicious traffic can lead to remote code execution (RCE)
GitHub: https://github.com/watchtowrlabs/watchTowr-vs-f5-bigip-PreAuth-RCE-CVE-2026-94127/
##WatchTower posted this yesterday:
WatchTower: Is This A Joke? In The Auth Header? (F5 BIG-IP UnAuth Heap-Overflow to RCE CVE-2026-94127) https://labs.watchtowr.com/is-this-a-joke-in-the-auth-header-f5-big-ip-unauth-heap-overflow-to-rce-cve-2026-94127/ #infosec #vulnerability
##New.
Picus: CVE-2026-94127 Explained: F5 BIG-IP APM Heap Overflow Attack https://www.picussecurity.com/resource/blog/cve-2026-94127-explained-f5-big-ip-apm-heap-overflow-attack #infosec #threatresearch
##Is This A Joke? In The Auth Header? (F5 BIG-IP UnAuth Heap-Overflow to RCE CVE-2026-94127)
#CVE_2026_94127
https://labs.watchtowr.com/is-this-a-joke-in-the-auth-header-f5-big-ip-unauth-heap-overflow-to-rce-cve-2026-94127/
Is This A Joke? In The Auth Header? (#F5 BIG-IP UnAuth Heap-Overflow to #RCE CVE-2026-94127)
##Is This A Joke? In The Auth Header? (F5 BIG-IP UnAuth Heap-Overflow to RCE CVE-2026-94127) - watchTowr Labs https://labs.watchtowr.com/is-this-a-joke-in-the-auth-header-f5-big-ip-unauth-heap-overflow-to-rce-cve-2026-94127/
##🏆 New Achievement! Terms and Conditions of Your Own Destruction!
LOOTBOX DISCLAIMER: By operating F5 BIG-IP APM versions 21.1.0, 17.5.0–17.5.1, or 17.1.0–17.1.3, you have automatically entered our Unauthenticated Remote Code Execution Sweepstakes. Prizes are awarded via CVE-2026-94127, targeting the OAuth Authorization Server component. Odds of receiving a prize are classified as "active exploitation." The System does not guarantee prize desirability. (1/3)
##F5 BIG-IP APM (OAuth Authorization Server) is facing a CRITICAL RCE zero-day, CVE-2026-94127, with active exploitation. Versions 21.1.0, 17.5.0 – 17.5.1, 17.1.0 – 17.1.3 affected. Apply hotfixes now. Details: https://radar.offseq.com/threat/critical-f5-big-ip-vulnerability-exploited-as-zero-day-024f528e7ee83eed #OffSeq #F5 #ZeroDay #Infosec
##F5 patched CVE-2026-94127, a heap-based buffer overflow in BIG-IP APM when operating as OAuth Authorization Server, enabling remote code execution. Active zero-day exploitation poses high risk of full appliance compromise. Patch immediately and review for crafted malicious traffic. #F5BigIp #ZeroDay #RemoteCodeExecution
https://cyberworldops.eu/en/actively-exploited-big-ip-apm-flaw-gives-remote-attackers-a-path-to
##Der Hersteller F5 veröffentlichte ein Advisory zu einer ausgenutzten Zero-Day Schwachstelle in seinem Produkt BIG-IP Access Policy Manager (APM) zur sicheren Zugriffsteuerung und Anwendungszugriff: CVE-2026-94127, CVSS-Score 9.8/10 ("kritisch")
F5 gibt an, dass die Schwachstelle bereits aktiv ausgenutzt wird. IT-Sicherheitsverantwortliche sollten unverzüglich die Patchstände prüfen und, sofern erforderlich, die verfügbaren Engineering Hotfixes einspielen.
##CVE-2026-94127: Critical zero-day in F5 BIG-IP APM exploited for RCE on OAuth Authorization Servers. Patch urgently or use F5's iRule mitigation. Monitor for OAuth auth failures and TMM SIGABRTs. https://radar.offseq.com/threat/f5-patches-big-ip-apm-zero-day-flaw-exploited-in-rce-attacks-191545153729ae57 #OffSeq #F5 #ZeroDay #RCE #Vuln
##🚨 [CISA-2026:0922] CISA Adds 4 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0922)
CISA has added 4 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2026-85102 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85102)
- Name: Check Point Multiple Products Improper Certificate Validation Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Check Point
- Product: Multiple Products
- Notes: https://support.checkpoint.com/results/sk/sk1000117 ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-85102
⚠️ CVE-2026-93616 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93616)
- Name: Check Point Multiple Products Path Traversal Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Check Point
- Product: Multiple Products
- Notes: https://support.checkpoint.com/results/sk/sk1000171/ ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-93616
⚠️ CVE-2026-93952 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93952)
- Name: Arista VeloCloud Orchestrator Improper Input Validation Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Arista
- Product: VeloCloud Orchestrator
- Notes: https://www.arista.com/en/support/advisories-notices/security-advisory/24765-security-advisory-0183 ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-93952
⚠️ CVE-2026-94127 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-94127)
- Name: F5 BIG-IP APM Heap-based Buffer Overflow Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: F5
- Product: BIG-IP APM
- Notes: For temporary mitigation to allow for proactive forensic triage, apply the vendor-provided iRule. Once completed, install the final vendor patch as soon as possible. For more information please see: https://my.f5.com/manage/s/article/K000162605 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-94127
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260922 #cisa20260922 #cve_2026_85102 #cve_2026_93616 #cve_2026_93952 #cve_2026_94127 #cve202685102 #cve202693616 #cve202693952 #cve202694127
##When it rains, it pours. F5 BIG-IP APM also has an exploited CVE!
https://ifin.network/t/f5-big-ip-cve-2026-94127-rce-exploited/855
##CVE ID: CVE-2026-94127
Vendor: F5
Product: BIG-IP APM
Date Added: 2026-09-22
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-94127
An exploited BIG-IP APM vulnerability tracked as CVE-2026-94127 allows RCE attacks. Secure your BIG-IP APM vulnerability deployments with new F5 hotfixes.
#F5 #BIGIP #CVE202694127 #Cybersecurity #InfoSec #RCE #Vulnerability
##EITW 0day in F5 APM.
https://my.f5.com/manage/s/article/K000162605
##When a BIG-IP APM access policy and an OAuth profile are configured on a virtual server, specific malicious traffic can lead to remote code execution (RCE). (CVE-2026-94127)
This vulnerability allows an unauthenticated attacker to perform RCE. The BIG-IP system in Appliance mode is also vulnerable. This is a data plane issue; there is no control plane exposure.
updated 2026-09-22T21:31:15
12 posts
2 repos
https://github.com/Nebula-Consulting-Limited/CVE-2026-93616-PoC
Check Point VPN Gateways and Management Server Flaws Actively Exploited
Check Point confirmed active exploitation of three critical vulnerabilities (CVE-2026-85102, CVE-2026-85103, and CVE-2026-93616) affecting VPN gateways and management servers, prompting a 72-hour US federal remediation deadline.
**If you run Check Point Security Gateways, Spark Firewalls or Security Management Servers, patch immediately to LivePatch Take 26 or the latest Jumbo Hotfix. Older unsupported versions R80 through R81.10 must be upgraded first. Make sure the management server's web interface is reachable only from trusted internal networks. Patching isn't enough, since attackers have been active since September 12: check your VPN logs for unknown sessions and internal LDAP scanning, and if you find anything suspicious, treat the device as compromised and escalate to your incident response team.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/check-point-vpn-gateways-and-management-server-flaws-actively-exploited-k-i-7-j-s/gD2P6Ple2L
Até 30 de junho, a Check Point confirma ataques ativos a falhas críticas em seus produtos, recomendando atualização urgente. Piratas informáticos exploram vulnerabilidades nos certificados de VPN do Security Gateway (CVE-2026-85102) e no serviço web de Management (CVE-2026-93616), permitindo a execução remota de código sem autenticação prévia. 🚨
##Check Point confirms active exploitation of CVE-2026-85102, unauthenticated RCE in Security Gateway VPN negotiation, and CVE-2026-93616, path traversal leading to script execution on management systems. Internet-exposed gateways and management planes should be patched and reviewed for compromise immediately. #CheckPoint #ThreatIntel #VpnSecurity
https://cyberworldops.eu/en/active-attacks-turn-check-point-vpn-and-management-flaws-into-an
##Checkpoint / CVE-2026-93616: https://support.checkpoint.com/results/sk/sk1000171/
Soooo, it is always fun to translate a vendor advisory into real facts. Here, checkpoint says "Directory Traversal and File upload allows execution of arbitrary script", and provide, as an example:
login(loginRequest=LoginRequest{authenticationInfo=AuthenticationInfoBase{username='abcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdababcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcd'}
And: "if a core dump file was generated at the same time as the login attempt [...]"
Sorry guys, but you are totally misleading whoever is trying to qualify/understand your adivsory. Security vendors should really be accountable of whatever they deliver. I am not even mentioning 1. the triviality of the findings, 2. everything is running as root.
They also discovered that ASN.1 parsing requires extensive fuzzing (https://support.checkpoint.com/results/sk/sk1000118).
I was expected more from checkpoint, but at least they provide a bit more info than the other "similar" vendors.
##🚨 [CISA-2026:0922] CISA Adds 4 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0922)
CISA has added 4 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2026-85102 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85102)
- Name: Check Point Multiple Products Improper Certificate Validation Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Check Point
- Product: Multiple Products
- Notes: https://support.checkpoint.com/results/sk/sk1000117 ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-85102
⚠️ CVE-2026-93616 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93616)
- Name: Check Point Multiple Products Path Traversal Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Check Point
- Product: Multiple Products
- Notes: https://support.checkpoint.com/results/sk/sk1000171/ ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-93616
⚠️ CVE-2026-93952 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93952)
- Name: Arista VeloCloud Orchestrator Improper Input Validation Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Arista
- Product: VeloCloud Orchestrator
- Notes: https://www.arista.com/en/support/advisories-notices/security-advisory/24765-security-advisory-0183 ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-93952
⚠️ CVE-2026-94127 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-94127)
- Name: F5 BIG-IP APM Heap-based Buffer Overflow Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: F5
- Product: BIG-IP APM
- Notes: For temporary mitigation to allow for proactive forensic triage, apply the vendor-provided iRule. Once completed, install the final vendor patch as soon as possible. For more information please see: https://my.f5.com/manage/s/article/K000162605 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-94127
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260922 #cisa20260922 #cve_2026_85102 #cve_2026_93616 #cve_2026_93952 #cve_2026_94127 #cve202685102 #cve202693616 #cve202693952 #cve202694127
###CyberSecurity #ZeroDay #CheckPoint #Vulnerability #ActiveExploitation #PatchedOrPerish (3/3)
##Meanwhile a second zero-day, CVE-2026-93616, materialized in Security Management with its own handful of pinpointed hits.
Policy dictates we inform you patches now exist for both CVE-2026-85102 and CVE-2026-93616. Policy does not require we feel bad about what happens next if you ignore them. Install both immediately.
Reward: Compliance logged. Outcome: your problem. (2/3)
##Check Point has disclosed a zero-day (in Security Management Server) and marked an older bug also as exploited in the wild (in Site-to-Site VPN)
##CVE ID: CVE-2026-93616
Vendor: Check Point
Product: Multiple Products
Date Added: 2026-09-22
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-93616
🚨 Check Point patches Management Server zero-day exploited in attacks
⠀
Check Point has released fixes for CVE-2026-93616, a vulnerability that allows unauthenticated attackers to upload and execute arbitrary scripts on affected management servers.
⠀
The company says a small number of customers have already been attacked.
⠀
Affected products include:
• Security Management Server
• Multi-Domain Security Management Server
• Log Server
• Multi-Domain Log Server
• SmartEvent
⠀
The vulnerability carries a CVSS score of 9.8.
⠀
Check Point advises installing the applicable fixes, restricting management access to trusted IP addresses, and checking for signs of exploitation.
⠀
LivePatch Take 28/29 does not fix this vulnerability.
A critical exploited Check Point Management vulnerability (CVE-2026-93616) allows attackers to execute arbitrary scripts. Secure your servers now.
#CheckPoint #CVE202693616 #Cybersecurity #InfoSec #Vulnerability #RCE
##Check Point Quantum Security Management is affected by CVE-2026-93616 (CRITICAL, CVSS 9.8): unauthenticated attackers can upload & execute scripts via path traversal. Restrict access & monitor activity until patch info is released. https://radar.offseq.com/threat/cve-2026-93616-cwe-22-improper-limitation-of-a-pathname-to-a-restricted-directory-path-traversal-in-4344dfa6a4d98182 #OffSeq #CheckPoint #CyberAlert
##updated 2026-09-22T21:31:14
8 posts
Arista Networks Patches Critical VeloCloud Orchestrator Zero-Day Exploited in the Wild
Arista Networks disclosed a critical CVSS 10.0 vulnerability (CVE-2026-93952) in VeloCloud Orchestrator On-Prem that is being actively exploited to gain unauthenticated remote access to orchestrator hosts and managed edge devices.
**If you run VeloCloud Orchestrator On-Prem, this is urgent. Make sure its web interface is not reachable from the internet and is accessible only from trusted admin networks, then update right away to a fixed version (5.2.3.16, 6.4.2.8 or later). Attackers are already using this flaw to take full control without any password. After patching, look for the hidden file /usr/local/sbin/.vcnode.js or the x-vc-opt header in your web logs, and if you find either, treat the orchestrator and every connected Edge device as compromised.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/arista-networks-patches-critical-velocloud-orchestrator-zero-day-exploited-in-the-wild-4-k-v-7-w/gD2P6Ple2L
CVE-2026-93952: CRITICAL zero-day in Arista VeloCloud Orchestrator (on-prem <5.2.3.16, <6.4.2.8) is actively exploited. Remote attackers can access privileged functions w/o creds. Patch now — review logs for signs of compromise. https://radar.offseq.com/threat/arista-urges-immediate-patching-of-exploited-vco-zero-day-0c28c2caa003025a #OffSeq #Arista #ZeroDay #Infosec
##Arista confirmed active exploitation of a CVSS 10 VeloCloud Orchestrator vulnerability (CVE-2026-93952) affecting certificate-based SD-WAN setups. Patch now.
#VeloCloud #Arista #CVE202693952 #SDWAN #Vulnerability #CyberSecurity
##Completing our tour of new known-exploited vulns today, here is Arista's perfect-10.
https://ifin.network/t/arista-cve-2026-93952-auth-bypass-exploited-in-the-wild/856
##🚨 [CISA-2026:0922] CISA Adds 4 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0922)
CISA has added 4 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2026-85102 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85102)
- Name: Check Point Multiple Products Improper Certificate Validation Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Check Point
- Product: Multiple Products
- Notes: https://support.checkpoint.com/results/sk/sk1000117 ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-85102
⚠️ CVE-2026-93616 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93616)
- Name: Check Point Multiple Products Path Traversal Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Check Point
- Product: Multiple Products
- Notes: https://support.checkpoint.com/results/sk/sk1000171/ ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-93616
⚠️ CVE-2026-93952 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93952)
- Name: Arista VeloCloud Orchestrator Improper Input Validation Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Arista
- Product: VeloCloud Orchestrator
- Notes: https://www.arista.com/en/support/advisories-notices/security-advisory/24765-security-advisory-0183 ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-93952
⚠️ CVE-2026-94127 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-94127)
- Name: F5 BIG-IP APM Heap-based Buffer Overflow Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: F5
- Product: BIG-IP APM
- Notes: For temporary mitigation to allow for proactive forensic triage, apply the vendor-provided iRule. Once completed, install the final vendor patch as soon as possible. For more information please see: https://my.f5.com/manage/s/article/K000162605 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-94127
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260922 #cisa20260922 #cve_2026_85102 #cve_2026_93616 #cve_2026_93952 #cve_2026_94127 #cve202685102 #cve202693616 #cve202693952 #cve202694127
##CVE ID: CVE-2026-93952
Vendor: Arista
Product: VeloCloud Orchestrator
Date Added: 2026-09-22
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-93952
Arista disclosed active exploitation of CVE-2026-93952, a CVSS 10.0 unauthenticated flaw in on-prem VeloCloud Orchestrator with certificate authentication enabled. Compromise of the management plane risks full SD-WAN Edge control and lateral movement. Isolate exposed instances and hunt for abuse. #VeloCloud #ThreatIntel #InfoSec
https://cyberworldops.eu/en/active-attacks-target-certificate-enabled-velocloud-orchestrator
##🏆 New Achievement! Exceeds Expectations (Except Security)!
Thank you for joining us for your annual review, Arista VeloCloud Orchestrator team. Uptime? Stellar. Throughput? Impressive. Unauthorized remote access granted to unauthenticated strangers due to CVE-2026-93952, a CVSS 10.0 critical improper-input-validation flaw currently being actively exploited in the wild? That's a "needs improvement," and frankly it drags down the whole scorecard.
Full system compromise is on the table. (1/2)
##updated 2026-09-22T21:30:40
11 posts
Check Point VPN Gateways and Management Server Flaws Actively Exploited
Check Point confirmed active exploitation of three critical vulnerabilities (CVE-2026-85102, CVE-2026-85103, and CVE-2026-93616) affecting VPN gateways and management servers, prompting a 72-hour US federal remediation deadline.
**If you run Check Point Security Gateways, Spark Firewalls or Security Management Servers, patch immediately to LivePatch Take 26 or the latest Jumbo Hotfix. Older unsupported versions R80 through R81.10 must be upgraded first. Make sure the management server's web interface is reachable only from trusted internal networks. Patching isn't enough, since attackers have been active since September 12: check your VPN logs for unknown sessions and internal LDAP scanning, and if you find anything suspicious, treat the device as compromised and escalate to your incident response team.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/check-point-vpn-gateways-and-management-server-flaws-actively-exploited-k-i-7-j-s/gD2P6Ple2L
Até 30 de junho, a Check Point confirma ataques ativos a falhas críticas em seus produtos, recomendando atualização urgente. Piratas informáticos exploram vulnerabilidades nos certificados de VPN do Security Gateway (CVE-2026-85102) e no serviço web de Management (CVE-2026-93616), permitindo a execução remota de código sem autenticação prévia. 🚨
##Check Point confirms active exploitation of CVE-2026-85102, unauthenticated RCE in Security Gateway VPN negotiation, and CVE-2026-93616, path traversal leading to script execution on management systems. Internet-exposed gateways and management planes should be patched and reviewed for compromise immediately. #CheckPoint #ThreatIntel #VpnSecurity
https://cyberworldops.eu/en/active-attacks-turn-check-point-vpn-and-management-flaws-into-an
##Check Point warns of hackers exploiting Security Gateway VPN RCE flaw
Cybersecurity company Check Point has confirmed active exploitation of CVE-2026-85102, a pre-authentication remote code execution (RCE)...
🔗️ [Bleepingcomputer] https://link.is.it/iSJtsD
##🚨 [CISA-2026:0922] CISA Adds 4 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0922)
CISA has added 4 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2026-85102 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85102)
- Name: Check Point Multiple Products Improper Certificate Validation Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Check Point
- Product: Multiple Products
- Notes: https://support.checkpoint.com/results/sk/sk1000117 ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-85102
⚠️ CVE-2026-93616 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93616)
- Name: Check Point Multiple Products Path Traversal Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Check Point
- Product: Multiple Products
- Notes: https://support.checkpoint.com/results/sk/sk1000171/ ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-93616
⚠️ CVE-2026-93952 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93952)
- Name: Arista VeloCloud Orchestrator Improper Input Validation Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Arista
- Product: VeloCloud Orchestrator
- Notes: https://www.arista.com/en/support/advisories-notices/security-advisory/24765-security-advisory-0183 ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-93952
⚠️ CVE-2026-94127 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-94127)
- Name: F5 BIG-IP APM Heap-based Buffer Overflow Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: F5
- Product: BIG-IP APM
- Notes: For temporary mitigation to allow for proactive forensic triage, apply the vendor-provided iRule. Once completed, install the final vendor patch as soon as possible. For more information please see: https://my.f5.com/manage/s/article/K000162605 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-94127
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260922 #cisa20260922 #cve_2026_85102 #cve_2026_93616 #cve_2026_93952 #cve_2026_94127 #cve202685102 #cve202693616 #cve202693952 #cve202694127
###CyberSecurity #ZeroDay #CheckPoint #Vulnerability #ActiveExploitation #PatchedOrPerish (3/3)
##Meanwhile a second zero-day, CVE-2026-93616, materialized in Security Management with its own handful of pinpointed hits.
Policy dictates we inform you patches now exist for both CVE-2026-85102 and CVE-2026-93616. Policy does not require we feel bad about what happens next if you ignore them. Install both immediately.
Reward: Compliance logged. Outcome: your problem. (2/3)
##Check Point has disclosed a zero-day (in Security Management Server) and marked an older bug also as exploited in the wild (in Site-to-Site VPN)
##CVE ID: CVE-2026-85102
Vendor: Check Point
Product: Multiple Products
Date Added: 2026-09-22
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-85102
Two Check Point critical vulnerabilities are now listed as exploited in the wild.
##An exploited Check Point VPN vulnerability allows remote code execution. Patch this Check Point VPN vulnerability now to block active in-the-wild attacks.
#CheckPoint #CVE202685102 #VPN #Cybersecurity #Infosec #ZeroDay
##updated 2026-09-22T20:34:31
1 posts
🟠 CVE-2026-77322 - High (7.5)
SIPGO is a library for writing SIP services in the GO language. Prior to 1.4.3, WSConnection.Read in sip/transport_ws.go creates a wsutil.Reader without setting MaxFrameSize, allowing NextFrame to accept a client-controlled header.Length before Pa...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77322/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-22T19:09:58.680000
1 posts
1 repos
New advisory
CRITICAL: CVE-2026-84388: Fortinet Fortipam Chrome Extension: https://app.opencve.io/cve/?vendor=fortinet&product=fortipam_chrome_extension #Fortinet #Chrome #infosec #vulnerability
##updated 2026-09-22T18:33:43
1 posts
🔴 CVE-2026-89275 - Critical (10)
Adobe Campaign Classic (ACC) is affected by an Improper Control of Generation of Code ('Code Injection') vulnerability that could result in arbitrary code execution in the context of the current user. An attacker could exploit this vulnerability t...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89275/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-22T15:32:43
1 posts
1 repos
Technical details and a PoC for the D-Link DAP-1360 vulnerability (CVE-2026-95675) are public. Learn how this unauthenticated flaw impacts legacy routers.
#DLink #DAP1360 #CVE202695675 #RCE #RouterSecurity #Cybersecurity
##updated 2026-09-22T15:32:43
1 posts
NVIDIA patched critical NVIDIA Infrastructure Controller vulnerabilities across Linux builds. Learn how CVE-2026-65113 impacts systems and update now.
#NVIDIA #Cybersecurity #CVE202665113 #LinuxSecurity #Infosec #DataCenter
##updated 2026-09-22T12:10:51.067000
2 posts
Zyxel GS1900 Switches Targeted by Chinese Threat Actor in Data Theft Campaign
Zyxel GS1900 series switches are under active exploitation by a Chinese threat actor using a high-severity buffer overflow (CVE-2026-7273) to steal sensitive data from nearly 1,000 devices worldwide. The campaign has compromised government records and relies on unpatched firmware and default credentials to gain system control.
**If you have Zyxel GS1900 series switches, make sure their management interface is isolated from the internet, accessible from trusted networks only and all default passwords are changed. Then update the firmware to version 2.90(xxxx.2)C0 or later ASAP and check the switches for signs of breach. Attackers are actively exploiting this flaw.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/zyxel-gs1900-switches-targeted-by-chinese-threat-actor-in-data-theft-campaign-y-6-z-t-u/gD2P6Ple2L
The vulnerability, tracked as CVE-2026-7273 (CVSS score: 8.8), is a stack-based buffer overflow vulnerability that could result in arbitrary operating system (OS) command execution. https://thehackernews.com/2026/09/zyxel-and-veeam-flaws-under-active.html
##updated 2026-09-21T22:27:11
1 posts
Canonical Patches Critical Trust Store Poisoning Flaw in ADSys
Canonical patched a critical vulnerability (CVE-2026-12249) in ADSys that allows attackers to poison the Ubuntu system trust store by intercepting unencrypted certificate enrollment requests. This flaw enables persistent decryption of TLS traffic and full compromise of encrypted communications on affected hosts.
**If you manage Ubuntu machines connected to Active Directory through ADSys, update ADSys to version 0.16.3 or later on all of them. Oder versions fetch certificates over unencrypted HTTP and let an attacker plant a fake root certificate that exposes all encrypted traffic on the machine. After updating, check each machine's trusted certificates for any unfamiliar root certificates and remove them, since a machine that was already compromised stays exposed even after the patch.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/canonical-patches-critical-trust-store-poisoning-flaw-in-adsys-e-j-r-d-v/gD2P6Ple2L
updated 2026-09-21T14:17:20.193000
1 posts
1 repos
https://thecybersecguru.com/news/cve-2026-80521-ubuntu-kernel-container-escape/
##updated 2026-09-20T03:30:31
1 posts
1 repos
D-Link warns of two major bugs with public POCs
CVE-2026-86296: https://supportannouncement.us.dlink.com/security/publication.aspx?name=SAP10516
CVE-2026-93958: https://supportannouncement.us.dlink.com/security/publication.aspx?name=SAP10518
##updated 2026-09-18T21:32:35
1 posts
CVE-2026-82892: IBM Guardium Data Protection 12.2 OS command injection allows remote arbitrary command execution. CVSS 8.1, no patch yet. Isolate exposed instances now. https://www.valtersit.com/cve/CVE-2026-82892/ #CVE #infosec #IBM
##updated 2026-09-18T06:32:17
1 posts
2 repos
Details and PoC exploit code for a critical WordPress stored XSS are public. Learn how CVE-2026-93485 enables RCE and patch WordPress today.
#WordPress #CVE202693485 #StoredXSS #RCE #Cybersecurity #Infosec
https://securityonline.info/wordpress-stored-xss-poc/?utm_source=mastodon&utm_medium=jetpack_social
##updated 2026-09-16T21:33:00
1 posts
1 repos
(CISA TS-MAN) The Cyber Mind TSUITE Brief: CVE-2026-76460 – Cisco Identity Services Engine Incorrect Use of Privileged APIs Vulnerability
Analyze the technical mechanics of CVE-2026-76460 with our Cisco TSUITE brief, covering Cisco ISE authentication bypass, path traversal vectors, and endpoint hardening....
##updated 2026-09-15T00:31:13
1 posts
1 repos
Details and PoC for the critical macOS DesktopServicesHelper vulnerability are public. Learn how CVE-2026-43783 enables root access.
#macOS #CVE202643783 #AppleSecurity #Cybersecurity #Infosec #PrivilegeEscalation
##updated 2026-09-10T21:31:46
2 posts
CVE-2026-91766: PHP had the redirect credential leak curl fixed in 2018 https://daubois.dev/blog/cve-2026-91766-php-http-redirect-credential-leak/
##CVE-2026-91766: PHP had the redirect credential leak curl fixed in 2018 https://daubois.dev/blog/cve-2026-91766-php-http-redirect-credential-leak/
##updated 2026-09-10T04:18:18.390000
1 posts
Check Point VPN Gateways and Management Server Flaws Actively Exploited
Check Point confirmed active exploitation of three critical vulnerabilities (CVE-2026-85102, CVE-2026-85103, and CVE-2026-93616) affecting VPN gateways and management servers, prompting a 72-hour US federal remediation deadline.
**If you run Check Point Security Gateways, Spark Firewalls or Security Management Servers, patch immediately to LivePatch Take 26 or the latest Jumbo Hotfix. Older unsupported versions R80 through R81.10 must be upgraded first. Make sure the management server's web interface is reachable only from trusted internal networks. Patching isn't enough, since attackers have been active since September 12: check your VPN logs for unknown sessions and internal LDAP scanning, and if you find anything suspicious, treat the device as compromised and escalate to your incident response team.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/check-point-vpn-gateways-and-management-server-flaws-actively-exploited-k-i-7-j-s/gD2P6Ple2L
updated 2026-09-08T09:35:45
1 posts
Siemens Patches Root-Level File Upload Flaw in Siveillance Control OIS Module
Siemens patched a critical root-level file upload vulnerability (CVE-2026-50093) in the Siveillance Control OIS web module that affects physical security management systems worldwide.
**If you use Siemens Siveillance Control or Control Pro, make sure all these systems are isolated from the internet and the OIS web module is reachable only from trusted internal networks. Then update right away to the fixed version for your edition.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/siemens-patches-root-level-file-upload-flaw-in-siveillance-control-ois-module-t-9-0-l-g/gD2P6Ple2L
updated 2026-09-08T09:35:29
1 posts
100 repos
https://github.com/ankitrawatgit/iQOO-Z9_5G-vivo-T3_5G-Root-GhostLock
https://github.com/veygax/HORiZonstack
https://github.com/fusiondrive/CVE-2026-43499-ZFOLD4
https://github.com/mobilehackinglab/ghostlock-a17
https://github.com/soralis0912/CVE-2026-43499-aristotle-apk
https://github.com/Bugel/cve-2026-43499-m3q-azf1
https://github.com/oopnv70-lab/ghostlock-aak-apk
https://github.com/cuteaplane/GhostLock-for-OnePlus15T
https://github.com/1ndevelopment/ghostlock-s26
https://github.com/yijiacloud/ghostlock-cve-2026-43499-4.19-k40
https://github.com/fusiondrive/CVE-2026-43499-S24U
https://github.com/accessmodifier364/cve-2026-43499-firetv-sheldonp-writeup
https://github.com/233laoliu/mt6985-CVE-2026-43499
https://github.com/Wtrwx/smt878u-ionstack-poc
https://github.com/pimpamebanihah/cve-2026-43499-app.so
https://github.com/HORKimhab/CVE-2026-43499
https://github.com/XiaoBaiLovesStirring/ghostlock-k419-adapter
https://github.com/ccp-p/ghostlock-cve-2026-43499-4.19-k40
https://github.com/yijiacloud/GhostLock-OPPO-PCKM00
https://github.com/Petalrain224/CVE-2026-43499-Redmi-Turbo5
https://github.com/zzzxxxxxxxxxx/GhostLock-GOT-W29
https://github.com/snothin/ghostlock-s26
https://github.com/Linuxoid-cn/Mi8E5-Unlocker-by-CVE-2026-43499
https://github.com/NanoTurtle1145/root-my-s24
https://github.com/2932796375github/CVE-2026-43499_OPPO-MT6835
https://github.com/dnlid/CVE-2026-43499
https://github.com/XingChenRS/CyberMeowfiaNS
https://github.com/ctn-Qvo/CVE-2026-43499-so-build
https://github.com/xianwan1314/CVE-2026-43499-Poc-Analysis
https://github.com/Bobikl/CVE-2026-43499-T807D
https://github.com/ctn-Qvo/auto_extract_offsets
https://github.com/TheAndersMadsen/humane-aipin-ghostlock
https://github.com/SammyEnigma/CVE-2026-43499-S26
https://github.com/caspy123/CVE-2026-43499
https://github.com/JoinChang/ghostlock-oneplus
https://github.com/YuKongA/ghostlock-app
https://github.com/Colorful-glassblock/duchamp-root
https://github.com/PeronGH/ghostlock-selinux-disabler
https://github.com/joehquak/Mi8E5-Unlocker-by-CVE-2026-43499
https://github.com/yakidango-official/GhostLock-H80GT
https://github.com/0xBlackash/CVE-2026-43499
https://github.com/k-o-n-t-o-r/ghostlock-sabrina
https://github.com/hackyangwen-lgtm/rmg-s9180-fzg1
https://github.com/x-spy/CVE-2026-43499-popsicle
https://github.com/MiaPatsune/cve-2026-43499
https://github.com/oopnv70-lab/ghostlock-honor-aak
https://github.com/ReBiliBin/ghostlock-oppo-watch3pro
https://github.com/hui191/cve-2026-43499-aak-an00
https://github.com/NothingFumo/ghostlock-aresin
https://github.com/pubglite55/oppo-ghostlock
https://github.com/CatXiaoShi/cve-2026-43499
https://github.com/soralis0912/CVE-2026-43499-warhol-root
https://github.com/zenyxx-xd/RootMyVivo
https://github.com/p2p3p/GhostLock-for-OnePlus
https://github.com/knowlily/cve-2026-43499-honor
https://github.com/mumaosong/cve-2026-43499-CyberMeowfia
https://github.com/HYCQAQ/Logitech-G-Cloud-GhostLock-CVE-2026-43499
https://github.com/wxxsfxyzm/GhostLock-Galaxy
https://github.com/Thiasap/oppo-pgem10-ghostlock
https://github.com/dmcdtc/openvz-cve-patch-2026
https://github.com/tc3650/CVE-2026-43499-armv7
https://github.com/inforcqb/CVE-2026-43499-pja110
https://github.com/Linuxoid-cn/CVE-2026-43499-Poc-Analysis
https://github.com/boxiaolanya2008/CVE-2026-43499-Neo11Plus
https://github.com/hybLOVE/iqoo-temp-root
https://github.com/huaguiqi/asus-i005-cve-2026-43499
https://github.com/BuSung-dev/Root-My-Galaxy
https://github.com/onesmiledx/CVE-2026-43499
https://github.com/dorlow/hazel-cve-2026-43499
https://github.com/woshimaniubi8/CVE-2026-43499-root-KernelSU
https://github.com/No-22-Github/UnPlus
https://github.com/gitchw/ghostlock-cve-2026-43499
https://github.com/justsoman/CVE-2026-43499-jinghu
https://github.com/zhubaohe123/ghostlock-kit
https://github.com/oopnv70-lab/ghostlock-apk
https://github.com/gagaltotal/CVE-2026-43499-PoC-Scanner
https://github.com/Bartixxx32/CVE-2026-43499-OnePlus15
https://github.com/MobiusM/CVE-2026-43499
https://github.com/R0rt1z2/GhostLock
https://github.com/Cxyofficial/x200-cve-2026-43499
https://github.com/fusiondrive/CVE-2026-43499-A36
https://github.com/fancyzll/CVE-2026-43499_OPPO-MT6835
https://github.com/jason5545/ghostlock-myron-tw
https://github.com/xiaohj233/ghostlock-x200-root
https://github.com/eroorvbsyes-hotmail/CVE-2026-43499_x86_Exploit
https://github.com/sarabpal-dev/IonStack-S22U
https://github.com/sorrow404Null/CVE-2026-43499-RMX5200
https://github.com/WitAqua-tools/Root-My-Device
https://github.com/Meowkis/tcp-zerocopy-sm
https://github.com/CakesTwix/Android-CVE-2026-43499
https://github.com/Bailan766/rmx3888-cve-2026-43499-config
https://github.com/xrzcc/s26-m1q-ghostlock-selinux
https://github.com/datfooldive/ghostlock-emerald
https://github.com/lkeld/CVE-2026-43499-poc
https://github.com/alex193a/Root-My-Pixel
https://github.com/slapah/ghostlock-h8q
https://github.com/soralis0912/CVE-2026-43499-pmg110-root
https://github.com/wzhdgithub/GhostLock
updated 2026-09-07T12:30:36
4 posts
⚪️ D-Link Warns of Unpatched Zero-Day Flaw in DIR-822A Routers
🗨️ D-Link has warned of a critical zero-day vulnerability (CVE-2026-86296) affecting end-of-life DIR-822A dual-band routers. The issue allows an unauthenticated local attacker to cause a denial of service in the DHCP service or achieve remote code execution. No patch is currently…
##Discover the critical CVE-2026-86296 vulnerability in D-Link DIR-822A routers. Learn how this DHCP flaw allows attackers to execute arbitrary code locally.
##D-Link warns of two major bugs with public POCs
CVE-2026-86296: https://supportannouncement.us.dlink.com/security/publication.aspx?name=SAP10516
CVE-2026-93958: https://supportannouncement.us.dlink.com/security/publication.aspx?name=SAP10518
##D-Link warns of max severity zero-day bug in DIR-822A routers
D-Link warned customers of a maximum-severity vulnerability (CVE-2026-86296) with public proof-of-concept (PoC) exploit code and no patch,...
🔗️ [Bleepingcomputer] https://link.is.it/hXngI9
##updated 2026-08-24T09:33:52
1 posts
2 repos
The DJI Bluetooth vulnerability CVE-2026-78306 lets a nearby attacker send unauthenticated DUML commands to 16 drone models. Update firmware now.
#DJI #CVE202678306 #Bluetooth #DroneSecurity #DUML #CyberSecurity
https://meterpreter.org/dji-bluetooth-vulnerability/?utm_source=mastodon&utm_medium=jetpack_social
##updated 2026-08-19T04:17:24.940000
1 posts
2 repos
@nyanbinary @cR0w here's one
(from the writeup to CVE-2026-59310 from July/August).
Point at the variables in the picture that traversed your path inappropriately...
https://mobeta.fr/blog/vcenter-cve-2026-59309-cve-2026-59310/
updated 2026-08-19T04:17:23.540000
1 posts
5 repos
https://github.com/virologi-info/mssharepoint-scanner
https://github.com/l0ggg/CVE-2026-55040
https://github.com/maxprog-svg/CVE-2026-55040-Mass-Exploit
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2026-08-18T18:31:46
1 posts
2 repos
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2026-08-17T17:54:44
1 posts
🚨 EUVD-2026-66225
📊 Score: 7.7/10 (CVSS v3.1)
📦 Product: compliance-trestle, compliance-trestle
🏢 Vendor: oscal-compass
📅 Updated: 2026-09-24
📝 Trestle is vulnerable to arbitrary file write via path traversal in author generate commands (Incomplete fix of CVE-2026-46345)
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-66225
##updated 2026-08-16T19:17:24.183000
1 posts
4 repos
https://github.com/maxprog-svg/CVE-2026-68820_Mass_Exploit
https://github.com/fevar54/CVE-2026-68820-Mitigation-PoC-
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2026-08-11T18:31:43
4 posts
Microsoft Upgrades SharePoint Flaw From Spoofing to 8.8 RCE
A SharePoint Server vulnerability tracked as CVE-2026-65660 turned out to be far more serious than Microsoft first indicated. The company
🔗️ [Thecyberexpress] https://link.is.it/qUvtLM
##SharePoint CVE-2026-65660: From Anonymous Access to Pre-Auth RCE via EditingPageParser Type-Check Bypass https://blog.viettelcybersecurity.com/sharepoint_cve-2026-65660/
##https://thecybersecguru.com/news/cve-2026-65660-sharepoint-rce/
##CVE-2026-65660 reportedly enables authenticated, low-privilege attackers to execute arbitrary code remotely on SharePoint Server. Its initial spoofing classification makes accurate advisory tracking and impact reassessment especially important. #SharePointSecurity #VulnerabilityManagement #ThreatIntelligence
https://cyberworldops.eu/en/sharepoint-code-injection-flaw-opens-a-low-privilege-route-to-remote
##updated 2026-08-05T18:32:31
3 posts
6 repos
https://github.com/unveiledhistory49/teamcity-cve-2026-63077-remediation
https://github.com/AnggaTechI/CVE-2026-63077
https://github.com/bakos-sandor-nx/teamcity-cve-2026-63077-remediation
https://github.com/BoredHackerBlog/teamcity-CVE-2026-63077-pcap
CISA added CVE-2026-63077 to the KEV catalog after confirming active exploitation in ransomware operations. The flaw allows unauthenticated RCE on JetBrains TeamCity via the agent-polling protocol, putting internet-exposed build infrastructure at direct risk. #TeamCity #Ransomware #InfoSec
https://cyberworldops.eu/en/exploited-teamcity-rce-puts-build-servers-in-the-ransomware-crosshairs
##CVE-2026-63077 (CRITICAL): JetBrains TeamCity auth bypass lets unauthenticated attackers run OS commands. Ransomware gangs are actively exploiting this flaw. Patch to 2025.11.7/2026.1.3 or restrict access ASAP. Details: https://radar.offseq.com/threat/cisa-ransomware-gangs-now-exploiting-critical-teamcity-flaw-07e6c455abf6548b #OffSeq #TeamCity #CVE202663077 #Infosec
##CVE-2026-63077 - Changed to Known Ransomware Status
JetBrains TeamCity Deserialization of Untrusted Data VulnerabilityVendor: JetBrainsProduct: TeamCityJetBrains TeamCity contains a deserialization of untrusted data vulnerability that could allow unauthenticated remote code execution via the agent polling protocol.Status changed from Unknown to Known for ransomware campaign usage.Flip detected on: September 23, 2026 at 14:08:17 UTCDate Added https://nvd.nist.gov/vuln/detail/CVE-2026-63077
##updated 2026-08-04T18:31:31
1 posts
Django Fellow Report - Jacob
Jacob reviewed six Django pull requests and authored changes covering GEOS 3.10 support removal and expanded WKT depth-check coverage related to CVE-2026-15830. He also worked on security reports and Django coordination...
https://forum.djangoproject.com/t/django-fellow-report-jacob-2026/43851/39
##updated 2026-07-30T15:31:54
1 posts
@nyanbinary @cR0w here's one
(from the writeup to CVE-2026-59310 from July/August).
Point at the variables in the picture that traversed your path inappropriately...
https://mobeta.fr/blog/vcenter-cve-2026-59309-cve-2026-59310/
updated 2026-07-27T18:31:25
1 posts
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2026-07-24T10:10:00.197000
1 posts
An exploited Roundcube Webmail vulnerability allows SQL injection attacks. Learn how CVE-2026-48842 impacts servers and apply the latest patches immediately.
#Roundcube #Cybersecurity #CVE202648842 #Vulnerability #SQLInjection
##updated 2026-07-23T15:44:10.873000
1 posts
5 repos
https://github.com/4minx/CVE-2026-50522
https://github.com/ChPratik/CVE-2026-50522
https://github.com/darses/CVE-2026-50522
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2026-07-15T19:17:24.827000
1 posts
🔴 CVE-2026-93352 - Critical (9.8)
Laravel-Mediable 7.0.0 before 7.0.2 contains an incomplete patch for CVE-2026-49972 in which the .pht extension is absent from the forbidden_extensions blocklist in config/mediable.php. The blocklist introduced to address CVE-2026-49972 includes p...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93352/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-14T13:18:00.363000
1 posts
Decades-old file security flaws found in Android, Linux, macOS, and Windows
TU Graz 연구진이 Linux, Android, Windows, macOS의 파일 변경 알림 서브시스템에서 수십 년간 존재한 사이드채널 정보 유출을 발견했다. 공격자는 파일 내용이나 직접 읽기 권한 없이도 이벤트의 파일명·경로·타이밍을 관찰해 키 입력, 방문 웹사이트, 인증 프롬프트 등의 활동을 추론할 수 있다. Linux inotify 관련 CVE-2025-68788은 일부 커널 버전에서 /dev 특수 파일의 a...
##updated 2026-07-01T21:35:53
1 posts
2 repos
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2026-06-17T10:21:09.960000
2 posts
RustyTux is a public PoC for a Linux kernel privilege escalation via an ESP-in-TCP use-after-free (CVE-2026-23239). Details and exploit code are now public.
#RustyTux #LinuxKernel #PrivilegeEscalation #UseAfterFree #espintcp #LPE #PoC #CVE202623239
##RustyTux is a public PoC for a Linux kernel privilege escalation via an ESP-in-TCP use-after-free (CVE-2026-23239). Details and exploit code are now public.
#RustyTux #LinuxKernel #PrivilegeEscalation #UseAfterFree #espintcp #LPE #PoC #CVE202623239
##updated 2026-06-17T06:53:04.567000
1 posts
CVE-2024-0244: Connor Ford details how he exploited the #Canon MF753Cdw printer back when he was a #Pwn2Own contestant. Now he's on the judging side as a ZDI analyst, but Doom is still on the table. https://www.zerodayinitiative.com/blog/2026/9/23/cve-2024-0244-a-heap-buffer-overflow-in-the-canon-mf753cdw-printer
##updated 2026-06-17T03:19:58.553000
1 posts
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2026-05-28T19:01:39
1 posts
🚨 EUVD-2026-66211
📊 Score: 7.8/10 (CVSS v3.1)
📦 Product: compliance-trestle, compliance-trestle
🏢 Vendor: oscal-compass
📅 Updated: 2026-09-24
📝 Trestle SSTI in Jinja2 include tags allows arbitrary code execution (Incomplete fix of CVE-2026-46439)
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-66211
##updated 2026-05-20T18:31:35
1 posts
4 repos
https://github.com/tc4dy/CVE-2026-41091-PoC-Exploit
https://github.com/s4m98/RedSun-
https://github.com/ridhinva/defender-privilege-escalation-scanner
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2026-03-27T21:32:39
1 posts
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2026-03-27T21:31:32
1 posts
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2026-02-10T21:31:29
1 posts
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2026-01-13T21:31:44
1 posts
6 repos
https://github.com/fevar54/CVE-2026-20805-POC
https://github.com/mrk336/Inside-CVE-2026-20805-How-a-Windows-DWM-Flaw-Exposed-Sensitive-Data
https://github.com/SimoesCTT/-SCTT-2026-33-0002-DWM-Visual-Field-Singularity
https://github.com/SimoesCTT/SCTT-2026-33-0002-DWM-Visual-Field-Singularity
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2025-11-04T00:30:30
1 posts
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2025-10-22T00:34:22
1 posts
2 repos
Samsung MagicINFO Flaw Leads to a “Silent” Monero Miner — Attackers Turn a Compromised Endpoint Into Their Own Mining Rig
A previously disclosed Samsung MagicINFO vulnerability has been used in a real-world intrusion that went far beyond simple unauthorized access. Huntress researchers found attackers exploiting CVE-2025-4632, installing AnyDesk for remote access, creating a local administrator account, weakening Microsoft Defender protections, and ultimately compiling…
##updated 2025-10-22T00:34:05
1 posts
1 repos
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2025-10-22T00:33:50
2 posts
PolarEdge: Unveiling an uncovered ORB network
Discover PolarEdge, a newly identified botnet targeting edge devices via CVE-2023-20118, using a stealthy TLS backdoor.
🔗️ [Sekoia] https://link.is.it/PmRTZ9
##PolarEdge: Unveiling an uncovered ORB network
Discover PolarEdge, a newly identified botnet targeting edge devices via CVE-2023-20118, using a stealthy TLS backdoor.
🔗️ [Sekoia] https://link.is.it/PmRTZ9
##updated 2025-10-22T00:32:38
1 posts
9 repos
https://github.com/uLl0a/cve-2022-42475-poc
https://github.com/scrt/cve-2022-42475
https://github.com/Mustafa1986/cve-2022-42475-Fortinet
https://github.com/Amir-hy/cve-2022-42475
https://github.com/0xhaggis/CVE-2022-42475
https://github.com/P4x1s/CVE-2022-42475-RCE-POC
https://github.com/bryanster/ioc-cve-2022-42475
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2025-10-22T00:32:27
1 posts
1 repos
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2024-10-23T18:33:16
1 posts
Broadcom has a long list of advisories addressing some critical vulnerabilities, among others https://support.broadcom.com/web/ecx/security-advisory #Broadcom
Cisco:
This addresses high-severity CVE-2024-20260, first published in October.
Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software SSL VPN Denial of Service Vulnerability https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asaftdvirtual-dos-MuenGnYR @TalosSecurity #Cisco #infosec #vulnerability
##CVE-2026-61821 pg_partman: drop_partition_id/time allow privilege escalation to superuser via retention_schema. CVSS 8.5, unpatched. patch to 5.5.0 now https://www.valtersit.com/cve/CVE-2026-61821/ #CVE #infosec #PostgreSQL
##🟠 CVE-2026-96883 - High (8.8)
pgcollection is an open source extension to PostgreSQL. A type confusion issue in AWS pgcollection 2.0.0 through 2.1.1 might allow an authenticated remote user to execute arbitrary code as the postgres operating system user via crafted SQL stateme...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-96883/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-96883 - High (8.8)
pgcollection is an open source extension to PostgreSQL. A type confusion issue in AWS pgcollection 2.0.0 through 2.1.1 might allow an authenticated remote user to execute arbitrary code as the postgres operating system user via crafted SQL stateme...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-96883/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-91766: PHP had the redirect credential leak curl fixed in 2018 https://daubois.dev/blog/cve-2026-91766-php-http-redirect-credential-leak/
##CVE-2026-91766: PHP had the redirect credential leak curl fixed in 2018 https://daubois.dev/blog/cve-2026-91766-php-http-redirect-credential-leak/
##12 posts
14 repos
https://github.com/Lutfifakee-Project/CVE-2026-87902
https://github.com/bhideki/CVE-2026-87902
https://github.com/oliveiralimajr/CVE_2026_87902
https://github.com/nextco/wordpress-cve-2026-87902
https://github.com/ynsmroztas/WPSniper
https://github.com/rabakuku/CVE-2026-87902-A-working-PoC-for-WordPress-s-critical-path-traversal
https://github.com/tc4dy/CVE-2026-87902-Toolkit
https://github.com/Hassham1/CVE-2026-87902
https://github.com/dinosn/cve-2026-87902-wordpress-lfi-lab
https://github.com/ressl/cve-2026-87902-poc
https://github.com/abraxas/CVE-2026-87902
https://github.com/zer0dayf/CVE-2026-87902
CVE-2026-87902: Attackers Started Probing WordPress Sites Hours After the Patch
#CVE_2026_87902
https://patchstack.com/articles/cve-2026-87902-attackers-started-probing-wordpress-sites-hours-after-the-patch/
🏆 New Achievement! The Court Finds Your Server Guilty!
This tribunal has reviewed the evidence. CVE-2026-87902 — an unauthenticated path traversal flaw scoring 9.2 out of 10 — was discovered by researcher Robert Ressl and patched in WordPress 7.1.2. Attackers began probing within five hours of that patch dropping. Exhibit A: Patchstack logged the first malicious requests at 17:44 UTC on September 22. (1/3)
##Cybersecurity faces immediate threats as a critical WordPress vulnerability (CVE-2026-87902) was exploited post-disclosure (Sept 24). Ransomware attacks reached a record high in August 2026, marking a significant surge. On the technology front, Meta Connect 2026 showcased key advancements in AI and virtual reality. Geopolitically, the Ukraine war persists, with President Zelensky expressing hope for peace before winter amidst ongoing US-Iran tensions.
##Unauthenticated LFI in WordPress page-template resolution (CVE-2026-87902, CVSS 9.2) is being exploited in the wild. Under specific server and theme conditions it escalates to RCE, enabling full site compromise. Patch and review exposure immediately. #WordPress #InfoSec #RemoteCodeExecution
https://cyberworldops.eu/en/attackers-turn-wordpress-template-flaw-into-remote-code-execution
##Hackers start exploiting critical WordPress flaw for code execution
Threat actors have moved from probing WordPress sites vulnerable to CVE-2026-87902 to exploiting the flaw to write files to disk that execute shell...
🔗️ [Bleepingcomputer] https://link.is.it/xdsXDB
##🚨[POC] CVE-2026-87902: WordPress Core versions up to and including 7.1.1 are affected by a Local File Inclusion vulnerability in the locate_template() function.
GitHub: https://github.com/abraxas/CVE-2026-87902
Credit: @abraxas_null (X)
##An exploited WordPress RCE vulnerability (CVE-2026-87902) is under attack. Details and PoC exploit code are public. Patch your sites now.
#WordPress #CVE202687902 #RCE #Cybersecurity #Infosec #ZeroDay
##WordPress unauthenticated LFI to RCE PoC https://github.com/dinosn/cve-2026-87902-wordpress-lfi-lab
##新内容:《WordPress 爆出 9.2 分严重安全漏洞|CVE-2026-87902》
https://www.appinn.com/wordpress-cve-2026-87902-critical-vulnerability/
2026年9月23日,WordPress 爆出 9.2 分的严重安全漏洞,攻击者无需登录即可在服务器上运行代码。漏洞编号 CVE-2026-87902,请务必升级至最新版本 7.1.2。@appinn 根据 W3Techs 2026 年 9 月 22 日的最新统计,全球约 40.2% 的网站都在使用
WordPress patched a critical unauthenticated path traversal vulnerability (CVE-2026-87902, GHSA-7hp8-65ch-5whp, CVSS 9.2) in its page-template resolution function get_page_template(), discovered and responsibly disclosed by Robert Ressl. Under specific preconditions, such as an active theme with a top level directory starting with "page-" and a readable local PHP file usable for the pearcmd.php PEAR RCE chain, an attacker could achieve remote code execution with no authentication. WordPress 7.1.2 fixes the issue, and the patch has been backported to every supported branch back to 4.7.37, so all sites should update immediately.
https://github.com/WordPress/wordpress-develop/security/advisories/GHSA-7hp8-65ch-5whp
##WordPress 7.1.2 patches a critical WordPress RCE vulnerability (CVE-2026-87902). Update your site to prevent conditional remote code execution.
#WordPress #CVE202687902 #RCE #Cybersecurity #Infosec #WordPressSecurity
##Service notice: all hosted/maintained WP websites have been updated to the latest minor version of your current major branch (security release, CVE-2026-87902). No action needed from you!
I don't host or maintain your website? Be sure to update your WordPress ASAP. This one is critical.
Release notes → https://wordpress.org/news/2026/09/wordpress-7-1-2-release/
##🟠 CVE-2026-63203 - High (7.6)
Logto is the modern, open-source auth infrastructure for SaaS and AI apps. From 1.31.0 until 1.42.0, the Account API handlers in packages/core/src/routes/account/third-party-tokens.ts allow a caller holding a same-user access token with only the o...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-63203/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-77581 - High (8.6)
BentoPDF is a client-side PDF toolkit that is self hostable. In 2.8.6 and earlier, the certificate and timestamp CORS proxy in cloudflare/cors-proxy-worker.js uses isPrivateOrReservedHost() to validate a supplied hostname separately from the DNS r...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77581/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##2 posts
2 repos
Vercel Patches Critical Remote Code Execution Vulnerability in Next.js Image Generation Feature
Vercel patched a critical vulnerability (CVE-2026-94545) in Next.js that allows remote code execution through the ImageResponse feature. The flaw involves improper input escaping in the Satori library when processing SVG content on the Node.js runtime.
**If your web apps run Next.js 16 (versions 16.2.0 to 16.3.5), update to 16.3.6 ASAP. Don't rely on dependency scanners to flag this one, because they may miss it. If you can't update right away, make sure your developers sanitize up all user input before it reaches the social preview image feature (ImageResponse).**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/vercel-patches-critical-remote-code-execution-vulnerability-in-next-js-image-generation-feature-t-b-3-t-f/gD2P6Ple2L
Vercel fixed a critical Next.js RCE vulnerability in image generation. Update to patch this Next.js RCE vulnerability and secure your apps.
#Nextjs #CVE202694545 #RCE #Cybersecurity #WebSecurity #Vulnerability
##Toutes nos instances GitLab sont à jour en version 19.4.1 depuis hier soir à 22h.
Il faut mettre à jour rapidement : cette nouvelle version corrige 2 CVE évaluées à 9,9 (CVE-2026-93577 et CVE-2026-84739).
En savoir plus sur nos offres 👇
https://gitlab-saas.bearstech.com/
Megjelent a Wireshark 4.6.9, amely 19 sebezhetőséget és több kritikus összeomlást, végtelen ciklust és memóriaszivárgást javít. Aggódsz, hogy a profilimportálás (CVE-2026-96419) akár kódfuttatást is lehetővé tehetett — frissítettél már? Nézd meg a részleteket és a javítások listáját!
https://linuxmint.hu/hir/2026/09/a-wireshark-469-csomagelemzo-19-biztonsagi-hibat-javit
#Wireshark #CVE2026-96419 #Sharkd #ZigBee #IEEE80211 #LoRaWAN #QUIC #SMB #pcapng #hálózat #sebezhetőség #biztonság
##CVE-2026-67231: Critical flaw in rabbitmq-server trust-store plugin (CVSS 9.1) lets attackers bypass TLS client auth with forged certs if they know whitelisted issuer/serial. Patch or disable plugin ASAP. https://radar.offseq.com/threat/cve-2026-67231-cwe-295-improper-certificate-validation-in-rabbitmq-rabbitmq-server-e521f17aa9be427c #OffSeq #RabbitMQ #Vuln #TLS #InfoSec
##A critical Rancher XSS vulnerability tracked as CVE-2026-88804 exposes admin sessions. Update your clusters immediately to prevent system compromise.
#Rancher #Kubernetes #CVE202688804 #XSS #Cybersecurity #Infosec
##CVE-2026-69184 c-ares memory corruption, CVSS 7.5. Malicious DNS server can stall any app using the resolver via crafted compression pointers. Patch to 1.34.7 now. https://www.valtersit.com/cve/CVE-2026-69184/ #CVE #infosec #cybersecurity
##🏆 New Achievement! Triple Threat, Zero Regrets!
PATCH NOTES v0.0.0 — KNOWN ISSUES: A China-aligned threat group has successfully shipped a three-zero-day exploit chain targeting Google Chrome and Microsoft Windows. ADDED: coordinated weaponization across CVE-2024-85046, CVE-2024-87491, and CVE-2024-85880. FIXED: nothing on your end, apparently. DEPRECATED: the assumption that one vendor's unpatched flaw is somebody else's problem. (1/2)
##🏆 New Achievement! Triple Threat, Zero Regrets!
PATCH NOTES v0.0.0 — KNOWN ISSUES: A China-aligned threat group has successfully shipped a three-zero-day exploit chain targeting Google Chrome and Microsoft Windows. ADDED: coordinated weaponization across CVE-2024-85046, CVE-2024-87491, and CVE-2024-85880. FIXED: nothing on your end, apparently. DEPRECATED: the assumption that one vendor's unpatched flaw is somebody else's problem. (1/2)
##🏆 New Achievement! Triple Threat, Zero Regrets!
PATCH NOTES v0.0.0 — KNOWN ISSUES: A China-aligned threat group has successfully shipped a three-zero-day exploit chain targeting Google Chrome and Microsoft Windows. ADDED: coordinated weaponization across CVE-2024-85046, CVE-2024-87491, and CVE-2024-85880. FIXED: nothing on your end, apparently. DEPRECATED: the assumption that one vendor's unpatched flaw is somebody else's problem. (1/2)
##CVE-2026-89090 - Denial of service in the event stream header decoder in AWS SDK for Go v2
Bulletin ID: 2026-110-AWS
Scope: AWS
Content Type: Important (requires attention)
Publication Date: 09/11/2026 10:00 AM PDT
Description:
An issue exists in the the EventStream header decoder in AWS SDK for Go v2 in versio...
https://aws.amazon.com/security/security-bulletins/rss/2026-110-aws/
##🟠 CVE-2026-85279 - High (8.6)
Notepad++ is a free and open-source source code editor. Prior to 8.9.8, Notepad++ contains a stack buffer overflow in PluginsManager::loadPluginFromPath in PowerEditor/src/MISC/PluginsManager/PluginsManager.cpp because the plugin-supplied GetLexer...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-85279/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##