##
Updated at UTC 2026-10-02T05:56:36.126696
| CVE | CVSS | EPSS | Posts | Repos | Nuclei | Updated | Description |
|---|---|---|---|---|---|---|---|
| CVE-2026-96658 | 9.9 | 0.00% | 3 | 0 | 2026-10-02T04:18:09.757000 | A flaw was found in Foreman. An authenticated attacker with low-level permission | |
| CVE-2026-47593 | 7.8 | 0.18% | 1 | 0 | 2026-10-02T04:18:08.737000 | NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mod | |
| CVE-2026-47592 | 7.8 | 0.19% | 1 | 0 | 2026-10-02T04:18:08.560000 | NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the | |
| CVE-2026-14378 | 9.8 | 0.00% | 2 | 2 | 2026-10-02T04:18:06.277000 | The DevKit Pro plugin for WordPress is vulnerable to Authentication Bypass Leadi | |
| CVE-2026-14157 | 0 | 0.00% | 1 | 0 | 2026-10-02T04:18:06.140000 | Use of an Externally Controlled Format String in the ASUS Router modules allow a | |
| CVE-2026-104286 | 9.8 | 0.00% | 21 | 1 | 2026-10-02T04:18:04.950000 | An improper limitation of a pathname to a restricted directory ('path traversal' | |
| CVE-2026-104480 | 0 | 0.00% | 2 | 0 | 2026-10-02T02:17:02.007000 | Discord libdave before 1.2.0 did not reject an MLS Welcome message when the resu | |
| CVE-2026-103098 | 7.5 | 0.00% | 2 | 0 | 2026-10-02T01:16:43.193000 | Transmission of a sensitive key in the URL over an unencrypted HTTP connection. | |
| CVE-2026-103097 | 7.5 | 0.00% | 2 | 0 | 2026-10-02T01:16:43.070000 | An API key is hardcoded and retrievable from the application package. Since Andr | |
| CVE-2026-103096 | 7.5 | 0.00% | 2 | 0 | 2026-10-02T01:16:42.930000 | API key is hardcoded and retrievable from the application package. Since Android | |
| CVE-2026-12540 | 8.2 | 0.00% | 2 | 0 | 2026-10-02T00:32:33 | A flaw was found in Foreman. A command injection vulnerability exists in the for | |
| CVE-2026-86345 | 9.0 | 0.00% | 4 | 0 | 2026-10-02T00:31:40 | A flaw was found in 389-ds-base. The server does not discard plaintext bytes alr | |
| CVE-2026-103765 | 9.4 | 0.00% | 2 | 0 | 2026-10-02T00:31:39 | Mooncake through 0.3.13.post1 contains a missing authentication vulnerability in | |
| CVE-2026-103764 | 9.8 | 0.00% | 4 | 0 | 2026-10-02T00:31:39 | Mooncake transfer engine before 0.3.13 contains an untrusted pointer dereference | |
| CVE-2026-86344 | 7.5 | 0.00% | 2 | 0 | 2026-10-02T00:31:39 | A flaw was found in 389-ds-base. An unauthenticated remote attacker can send a c | |
| CVE-2026-103761 | 7.5 | 0.00% | 2 | 0 | 2026-10-02T00:31:39 | Mooncake transfer engine through 0.3.13.post1 contains a memory exhaustion vulne | |
| CVE-2026-104051 | 8.2 | 0.00% | 2 | 0 | 2026-10-02T00:31:33 | PictShare before 3.7.1 contains an information disclosure vulnerability that all | |
| CVE-2026-96659 | 9.1 | 0.00% | 1 | 0 | 2026-10-02T00:17:04.627000 | A flaw was found in Foreman. This vulnerability allows an authenticated user wit | |
| CVE-2026-104018 | 8.8 | 0.00% | 2 | 0 | 2026-10-01T21:33:58 | An improper privilege management vulnerability (CWE-269) exists in the command s | |
| CVE-2026-104057 | 7.5 | 0.00% | 2 | 0 | 2026-10-01T21:33:02 | Podgrab contains an unauthenticated denial-of-service vulnerability caused by un | |
| CVE-2026-63292 | 7.5 | 0.00% | 2 | 0 | 2026-10-01T21:17:23.610000 | Stack-based buffer overflow in mod_vhost_alias in Apache Software Foundation Apa | |
| CVE-2026-97662 | 8.2 | 0.00% | 2 | 0 | 2026-10-01T20:36:52.220000 | An argument injection issue in the diff scan operation in AWS security-agent-mcp | |
| CVE-2026-12627 | 9.8 | 0.00% | 2 | 0 | 2026-10-01T20:34:26.287000 | Fortra's Core Privileged Access Manager (BoKS) contains a stack-based buffer ove | |
| CVE-2026-14316 | 8.1 | 0.00% | 1 | 0 | 2026-10-01T20:34:26.287000 | The revoked-key error path builds a human-readable failure reason using sprintf( | |
| CVE-2026-95588 | 8.6 | 0.00% | 1 | 0 | 2026-10-01T20:25:35.640000 | Unauthenticated Arbitrary File Deletion in AcyMailing SMTP Newsletter <= 11.0.5 | |
| CVE-2026-97297 | 7.6 | 0.00% | 1 | 0 | 2026-10-01T20:25:35.640000 | Subscriber Broken Access Control in Gratisfaction <= 4.6.3 versions. | |
| CVE-2026-55230 | 8.7 | 0.00% | 2 | 0 | 2026-10-01T20:17:25.737000 | Vvveb is a powerful and easy to use CMS with page builder to build websites, blo | |
| CVE-2026-68496 | 7.5 | 0.00% | 2 | 0 | 2026-10-01T19:17:24.467000 | The Smile parser in FasterXML jackson-dataformats-binary never invokes StreamRea | |
| CVE-2026-55232 | 7.6 | 0.00% | 2 | 0 | 2026-10-01T19:17:23.117000 | Vvveb is a powerful and easy to use CMS with page builder to build websites, blo | |
| CVE-2026-104059 | 8.1 | 0.00% | 2 | 0 | 2026-10-01T19:17:19.480000 | Lektor 3.3.14 and 3.4.0b15 contains a cross-site request forgery vulnerability i | |
| CVE-2026-103922 | 9.3 | 0.00% | 4 | 0 | 2026-10-01T19:17:18.760000 | Capacitor is a cross-platform native runtime for web applications. From 6.0.0 un | |
| CVE-2026-13043 | None | 0.00% | 1 | 0 | 2026-10-01T18:32:50 | A missing authentication vulnerability in the Kernel Memory Access Driver (PSKMA | |
| CVE-2026-79896 | 7.5 | 0.00% | 1 | 0 | 2026-10-01T18:32:49 | Fortra BoKS Manager contains an out-of-bounds read vulnerability in the custom T | |
| CVE-2026-86950 | 8.8 | 1.24% | 7 | 2 | 2026-10-01T18:17:28.430000 | An out-of-bounds write issue was addressed with improved bounds checking. This i | |
| CVE-2026-78210 | 0 | 0.00% | 1 | 0 | 2026-10-01T16:17:59.517000 | In affected versions of Octopus Server, users with certain scoped permission set | |
| CVE-2026-101283 | 0 | 0.43% | 1 | 0 | 2026-10-01T16:17:32.460000 | iperf3 3.20–3.21 (esnet/iperf) has a pre-auth heap buffer overflow in decrypt_rs | |
| CVE-2026-79899 | 7.9 | 0.00% | 1 | 0 | 2026-10-01T15:30:50 | Fortra BoKS Manager contains an insecure temporary file vulnerability in bccgeth | |
| CVE-2026-79898 | 9.1 | 0.00% | 1 | 0 | 2026-10-01T15:30:50 | Fortra BoKS Manager contains a command injection vulnerability in crlserver. An | |
| CVE-2026-97284 | 8.8 | 0.00% | 1 | 0 | 2026-10-01T15:30:50 | Contributor PHP Object Injection in Icegram <= 3.1.31 versions. | |
| CVE-2026-79901 | 9.9 | 0.00% | 1 | 0 | 2026-10-01T15:30:49 | In deployments using BoKS keytab management, affected versions of boks_keytabmd | |
| CVE-2026-97277 | 7.6 | 0.00% | 1 | 0 | 2026-10-01T15:30:44 | Subscriber Broken Access Control in Social Boost <= 3.6.2 versions. | |
| CVE-2026-62059 | 7.6 | 0.00% | 1 | 1 | 2026-10-01T15:30:41 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injecti | |
| CVE-2026-92966 | 9.1 | 0.00% | 1 | 1 | 2026-10-01T15:17:35.830000 | The The Appointment Booking Plugin – LatePoint | Calendar & Scheduling for WordP | |
| CVE-2024-58388 | 7.5 | 0.00% | 3 | 0 | 2026-10-01T15:17:17.347000 | Sharp (and Toshiba Tec rebranded) multifunction printers contain an unauthentica | |
| CVE-2026-66246 | 8.8 | 0.00% | 1 | 0 | 2026-10-01T15:07:27.747000 | iControl is affected by a Broken Access Control vulnerability, which could allow | |
| CVE-2026-102149 | 9.4 | 0.33% | 1 | 0 | 2026-10-01T14:17:19.140000 | Kiteworks Email Protection Gateway did not sufficiently restrict which account a | |
| CVE-2026-102106 | 9.1 | 0.64% | 1 | 0 | 2026-10-01T14:17:14.417000 | Improper authentication in a Kiteworks Email Protection Gateway administrative s | |
| CVE-2026-103655 | None | 0.00% | 1 | 0 | 2026-10-01T09:30:42 | MISP contains a vulnerability in its two-factor authentication (TOTP) verificati | |
| CVE-2025-41753 | 9.8 | 0.00% | 1 | 0 | 2026-10-01T09:30:33 | The object name of a dynamically created BACnet File Object is interpreted as a | |
| CVE-2026-47599 | 7.8 | 0.16% | 1 | 0 | 2026-10-01T04:18:18.593000 | NVIDIA GPU Display Driver for Linux contains a vulnerability in the open-source | |
| CVE-2026-13313 | None | 0.00% | 2 | 0 | 2026-10-01T03:31:14 | An Active Debug Code vulnerability in certain ASUS router models allows a remote | |
| CVE-2026-101276 | None | 0.43% | 1 | 0 | 2026-09-30T21:32:15 | iperf3 3.21 (esnet/iperf) contains a remote, unauthenticated heap use-after-free | |
| CVE-2026-92870 | 7.5 | 0.32% | 1 | 0 | 2026-09-30T20:17:37.253000 | A stack-based buffer overflow vulnerability exists in Pgpool-II, which may allow | |
| CVE-2026-62146 | 7.8 | 0.15% | 1 | 1 | 2026-09-30T20:17:34.013000 | A trust-boundary flaw in CRI-O's sandbox state persistence allows attacker-influ | |
| CVE-2026-102489 | 0 | 0.71% | 3 | 0 | 2026-09-30T19:57:08.043000 | Zammad versions 6.3.0 to 6.5.4 are vulnerable a session hijack vulnerability tha | |
| CVE-2026-102490 | 0 | 0.32% | 3 | 0 | 2026-09-30T19:57:08.043000 | All versions of Zammad including the latest alpha enable the local zammad user t | |
| CVE-2026-94545 | 0 | 0.80% | 2 | 5 | 2026-09-30T19:57:08.043000 | Satori is a library to convert HTML and CSS to SVG. Starting in version 0.0.27 a | |
| CVE-2026-79625 | 8.1 | 0.40% | 2 | 0 | 2026-09-30T19:57:08.043000 | Affected products do not properly synchronize access to their monitoring functio | |
| CVE-2026-76992 | 7.5 | 0.57% | 2 | 0 | 2026-09-30T19:57:08.043000 | The CODESYS Gateway Client allocates memory based on a size field in a gateway r | |
| CVE-2026-47591 | 7.8 | 0.18% | 1 | 0 | 2026-09-30T18:33:55 | NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode | |
| CVE-2026-47600 | 7.8 | 0.19% | 1 | 0 | 2026-09-30T18:33:50 | NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the | |
| CVE-2026-47601 | 7.8 | 0.18% | 1 | 0 | 2026-09-30T18:33:49 | NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the | |
| CVE-2026-76504 | 9.8 | 1.10% | 20 | 1 | 2026-09-30T18:33:25 | A vulnerability in the API session-based authentication management of Cisco Cata | |
| CVE-2026-10764 | 8.7 | 0.24% | 1 | 0 | 2026-09-30T17:32:07.107000 | Information disclosure in BVMS 4.5 up to 12.3 including allows man-in-the-middle | |
| CVE-2026-78902 | 6.1 | 0.30% | 1 | 0 | 2026-09-30T17:23:08.953000 | Cross Site Scripting vulnerability in Netgate pfSense 26.03.1-RELEASE allows an | |
| CVE-2026-92867 | 8.8 | 0.34% | 1 | 0 | 2026-09-30T17:16:51.120000 | An out-of-bounds write vulnerability exists in Pgpool-II , which may allow an au | |
| CVE-2026-92871 | 7.5 | 0.29% | 1 | 0 | 2026-09-30T16:47:57.730000 | A NULL pointer dereference vulnerability exists in Pgpool-II, which may allow an | |
| CVE-2026-76570 | 0 | 0.50% | 1 | 1 | 2026-09-30T16:44:39.840000 | Joomla Extension - joomcode.com - Unauthenticated SQL injection in read and writ | |
| CVE-2026-102458 | 9.8 | 0.43% | 2 | 0 | 2026-09-30T16:30:42.327000 | EasyFlow .NET developed by Digiwin has a Missing Authentication vulnerability. U | |
| CVE-2026-102455 | 9.8 | 0.51% | 1 | 0 | 2026-09-30T16:30:42.327000 | EasyFlow .NET developed by Digiwin has a Insecure Deserialization vulnerability. | |
| CVE-2026-75098 | 7.5 | 0.90% | 1 | 0 | 2026-09-30T16:18:58.363000 | The Product Designer App plugin for WordPress is vulnerable to Directory Travers | |
| CVE-2026-18782 | 9.8 | 0.58% | 1 | 1 | 2026-09-30T16:18:57.403000 | Improper neutralization of special elements used in an SQL command ('SQL injecti | |
| CVE-2026-82307 | 9.8 | 0.47% | 1 | 0 | 2026-09-30T16:18:57.403000 | Improper neutralization of special elements used in an SQL command ('SQL injecti | |
| CVE-2026-6806 | 7.5 | 0.27% | 1 | 0 | 2026-09-30T16:18:39.783000 | The Motors – Car Dealership & Classified Listings Plugin plugin for WordPress is | |
| CVE-2026-102508 | 0 | 0.13% | 1 | 0 | 2026-09-30T16:14:10.347000 | Improper Verification of Cryptographic Signature and Improper Certificate Valida | |
| CVE-2026-94002 | 7.5 | 0.43% | 1 | 0 | 2026-09-30T16:13:13.493000 | Possible memory exhaustion in SFTP clients (DefaultSftpClient) in component sshd | |
| CVE-2026-93994 | 8.1 | 0.47% | 1 | 0 | 2026-09-30T16:13:13.493000 | Apache MINA SSHD is a Java library for client-side and server-side SSH. SSH serv | |
| CVE-2026-94052 | 9.1 | 0.55% | 1 | 0 | 2026-09-30T16:13:13.493000 | A missing check in LdapPasswordAuthenticator in component sshd-ldap in Apache MI | |
| CVE-2026-62097 | 7.6 | 0.38% | 1 | 0 | 2026-09-30T15:31:44 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injecti | |
| CVE-2026-18783 | 8.8 | 0.39% | 1 | 1 | 2026-09-30T15:31:43 | Missing authentication for critical function vulnerability in Trex Digital Smart | |
| CVE-2026-97197 | 7.5 | 0.39% | 1 | 0 | 2026-09-30T15:31:38 | Unauthenticated Broken Access Control in WordPress Backup & Migration <= 1.6.0 v | |
| CVE-2026-97241 | 7.5 | 0.42% | 1 | 0 | 2026-09-30T15:31:38 | Unauthenticated Sensitive Data Exposure in BackupEase <= 2.2.2 versions. | |
| CVE-2026-97240 | 7.5 | 0.42% | 1 | 0 | 2026-09-30T15:31:38 | Unauthenticated Sensitive Data Exposure in StifLi Backup Tools <= 2.2.7 versions | |
| CVE-2026-97248 | 9.8 | 0.56% | 1 | 0 | 2026-09-30T15:31:38 | Unauthenticated PHP Object Injection in Booking Activities <= 1.18.7.1 versions. | |
| CVE-2026-97244 | 7.5 | 0.41% | 1 | 0 | 2026-09-30T15:31:38 | Contributor Path Traversal in Creator LMS <= 1.2.19 versions. | |
| CVE-2026-97274 | 9.8 | 0.51% | 1 | 0 | 2026-09-30T15:31:34 | Unauthenticated Bypass Vulnerability in OAuth Single Sign On – SSO (OAuth Client | |
| CVE-2026-97293 | 8.5 | 0.36% | 1 | 0 | 2026-09-30T14:18:18.460000 | Contributor SQL Injection in Media LIbrary Assistant <= 3.41 versions. | |
| CVE-2026-97287 | 8.5 | 0.36% | 1 | 0 | 2026-09-30T14:18:17.797000 | Contributor SQL Injection in Event Tickets <= 5.29.5 versions. | |
| CVE-2026-96837 | 8.8 | 0.73% | 1 | 0 | 2026-09-30T14:18:12.963000 | Contributor Remote Code Execution (RCE) in CartFlows <= 3.2.0 versions. | |
| CVE-2026-94053 | 9.1 | 0.55% | 1 | 0 | 2026-09-30T12:35:21 | Authentication bypass via LDAP injection in component sshd-ldap in Apache MINA S | |
| CVE-2026-77185 | 9.1 | 0.51% | 2 | 0 | 2026-09-30T12:35:16 | Authentication bypass in sshd-core in Apache MINA SSHD versions 2.0.0 to 2.19.0 | |
| CVE-2026-89294 | 7.5 | 0.65% | 1 | 0 | 2026-09-30T09:31:20 | The Simply Schedule Appointments plugin for WordPress is vulnerable to Local Fil | |
| CVE-2026-97196 | 9.1 | 0.30% | 2 | 0 | 2026-09-30T09:31:11 | Improper Validation of Unsafe Equivalence in Input vulnerability in Liquid Web / | |
| CVE-2026-103088 | 7.5 | 0.69% | 1 | 0 | 2026-09-30T03:31:41 | Handlebars.java before 4.5.5 allows directory traversal. In handlebars-springmvc | |
| CVE-2026-86131 | None | 0.33% | 3 | 0 | 2026-09-30T00:32:48 | A code injection vulnerability in WatchGuard Fireware OS's BOVPN Over TLS client | |
| CVE-2026-96587 | 10.0 | 0.34% | 1 | 0 | 2026-09-29T22:19:05.860000 | The Viidure Android application embeds permanent, plaintext cloud storage creden | |
| CVE-2026-94204 | 7.5 | 0.27% | 1 | 0 | 2026-09-29T22:19:03.923000 | The central cloud storage backend for the entire dashcam platform is misconfigur | |
| CVE-2026-84782 | 8.2 | 0.39% | 1 | 0 | 2026-09-29T21:27:41.130000 | Issue summary: The DTLS retransmission logic does not correctly handle a handsha | |
| CVE-2026-75804 | 5.3 | 0.35% | 1 | 0 | 2026-09-29T18:31:49 | Issue summary: OpenSSL QUIC stack does not enforce connection level flow control | |
| CVE-2026-88771 | 9.8 | 1.06% | 7 | 10 | 2026-09-29T04:18:01.603000 | Improper input validation vulnerability in Citrix NetScaler ADC and Citrix NetSc | |
| CVE-2026-15953 | 5.0 | 0.11% | 2 | 0 | 2026-09-28T15:32:02 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') v | |
| CVE-2026-15952 | 6.4 | 0.09% | 2 | 0 | 2026-09-28T15:31:57 | Incorrect Permission Assignment for Critical Resource vulnerability in ABB Prote | |
| CVE-2026-88772 | 8.1 | 1.30% | 8 | 7 | 2026-09-28T12:26:47.670000 | Vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway. This issue | |
| CVE-2026-100382 | None | 0.95% | 2 | 1 | 2026-09-26T00:32:22 | Improper Neutralization of Special Elements used in an OS Command ('OS Command I | |
| CVE-2026-67279 | 6.5 | 1.03% | 1 | 3 | 2026-09-25T18:32:21 | RouterOS SSH enters the connection protocol after a client-requested rekey even | |
| CVE-2026-61851 | 0 | 0.47% | 1 | 0 | 2026-09-24T21:25:27.050000 | Chartbrew is an open-source web application that can connect directly to databas | |
| CVE-2026-78806 | 5.5 | 0.11% | 1 | 0 | 2026-09-24T14:18:17.497000 | An issue in Matter Standard Specification-Implementation gap v1.5.1 Matter Proje | |
| CVE-2026-18439 | 4.3 | 0.25% | 1 | 0 | 2026-09-23T19:17:29.350000 | The Tutor LMS – eLearning and online course solution plugin for WordPress is vul | |
| CVE-2026-93616 | 9.8 | 19.65% | 2 | 2 | 2026-09-23T16:38:38.987000 | A directory traversal and file upload vulnerability allows an unauthenticated at | |
| CVE-2026-85102 | 9.8 | 7.55% | 2 | 0 | 2026-09-22T21:30:40 | Improper certificate trust validation during VPN negotiation in Check Point Quan | |
| CVE-2026-79079 | 7.8 | 0.19% | 1 | 0 | 2026-09-22T20:00:03.713000 | An issue in CrossWire Xiphos <= 4.3.2 allows a local attacker to execute arbitra | |
| CVE-2026-93556 | 0 | 0.30% | 1 | 0 | 2026-09-22T19:41:38.447000 | The ‘/password/guardarClau/recover’ endpoint accepts the ‘usuariId’ parameter, w | |
| CVE-2026-89420 | 0 | 0.47% | 1 | 0 | 2026-09-22T19:09:32.273000 | Improper Validation of Specified Quantity in Input in ZenHive mpp allows a clien | |
| CVE-2026-89422 | 0 | 0.64% | 1 | 0 | 2026-09-22T19:09:32.273000 | Key Exchange without Entity Authentication vulnerability in Erlang/OTP ssl allow | |
| CVE-2026-74765 | 6.5 | 0.52% | 1 | 0 | 2026-09-22T18:33:29 | Net::IDN::Punycode versions before 2.590 for Perl allow an out-of-bounds read vi | |
| CVE-2026-80521 | 7.8 | 0.17% | 1 | 2 | 2026-09-21T14:17:20.193000 | In the Linux kernel, the following vulnerability has been resolved: af_unix: Un | |
| CVE-2026-85046 | 8.8 | 48.88% | 1 | 8 | 2026-09-21T13:17:10.970000 | Type confusion in V8 in Google Chrome prior to 152.0.7977.82 allowed a remote at | |
| CVE-2026-63490 | 7.5 | 0.69% | 1 | 0 | 2026-09-18T20:09:01.757000 | Handlebars.java provides logic-less and semantic Mustache templates with Java. P | |
| CVE-2026-86869 | 6.5 | 0.34% | 1 | 0 | 2026-09-17T18:31:49 | An out-of-bounds write issue was addressed with improved bounds checking. This i | |
| CVE-2026-50610 | None | 0.13% | 1 | 0 | 2026-09-17T09:33:03 | A vulnerability has been identified in the Acer System Monitoring component incl | |
| CVE-2026-76460 | 10.0 | 14.03% | 1 | 1 | 2026-09-16T21:33:00 | A vulnerability in an API of Cisco Identity Services Engine (ISE) could allow an | |
| CVE-2026-76461 | 9.8 | 28.27% | 1 | 4 | 2026-09-14T21:32:49 | A vulnerability in the email parsing of Cisco AsyncOS Software for Cisco Secure | |
| CVE-2026-81578 | 9.8 | 85.17% | 1 | 2 | 2026-09-14T00:16:56.207000 | An improper access control vulnerability exists in the web management interface | |
| CVE-2026-85706 | 10.0 | 92.96% | 1 | 14 | template | 2026-09-12T12:30:50 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.7 |
| CVE-2026-75650 | 10.0 | 3.95% | 1 | 6 | 2026-09-09T05:18:07.237000 | Adobe Commerce is affected by an Improper Neutralization of Special Elements Use | |
| CVE-2026-81963 | 7.8 | 0.39% | 1 | 0 | 2026-09-08T21:34:09 | Improper link resolution before file access ('link following') in Windows Update | |
| CVE-2026-86218 | 9.8 | 12.93% | 1 | 3 | template | 2026-09-08T21:33:02 | N-central is vulnerable to a pre-auth remote code execution This issue affects N |
| CVE-2026-65669 | 9.6 | 0.88% | 1 | 0 | 2026-09-08T18:32:08 | Improper neutralization of special elements in output used by a downstream compo | |
| CVE-2026-60004 | 9.8 | 23.99% | 1 | 11 | 2026-09-08T17:56:31 | ### Summary Gitea's `diffpatch` endpoint can be abused to install and execute a | |
| CVE-2026-83548 | 10.0 | 8.76% | 1 | 3 | 2026-09-03T13:06:16.053000 | A Pre-authentication SSRF vulnerability exists in the SMA1000 Appliance Work Pla | |
| CVE-2026-83549 | 7.8 | 10.76% | 1 | 2 | 2026-09-02T18:32:06 | Post-authentication Improper Neutralization of Special Elements used in an OS Co | |
| CVE-2026-82078 | 9.1 | 61.39% | 1 | 2 | 2026-08-31T21:31:56 | An unsafe dynamic class loading vulnerability exists in the database connection | |
| CVE-2026-73570 | 8.9 | 11.74% | 3 | 10 | 2026-08-24T13:19:17.577000 | A remote code execution vulnerability exists in Zimbra Collaboration (ZCS) befor | |
| CVE-2026-72018 | 7.8 | 0.18% | 1 | 1 | 2026-08-17T06:34:07 | In the Linux kernel, the following vulnerability has been resolved: dibs: loopb | |
| CVE-2025-41738 | 7.5 | 0.39% | 1 | 0 | 2026-06-17T09:23:03.883000 | An unauthenticated remote attacker may cause the visualisation server of the COD | |
| CVE-2025-41700 | 7.8 | 0.15% | 1 | 0 | 2026-06-17T09:22:59.947000 | An unauthenticated attacker can trick a local user into executing arbitrary code | |
| CVE-2026-35273 | 9.8 | 9.44% | 1 | 4 | 2026-06-12T18:31:50 | Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleS | |
| CVE-2025-41739 | 5.9 | 0.35% | 1 | 0 | 2025-12-01T12:30:34 | An unauthenticated remote attacker, who beats a race condition, can exploit a fl | |
| CVE-2021-21975 | 7.5 | 78.29% | 1 | 10 | template | 2025-10-22T00:32:06 | Server Side Request Forgery in vRealize Operations Manager API (CVE-2021-21975) |
| CVE-2026-86360 | 0 | 0.00% | 2 | 0 | N/A | ||
| CVE-2026-63692 | 0 | 0.00% | 2 | 0 | N/A | ||
| CVE-2026-63688 | 0 | 0.00% | 2 | 0 | N/A | ||
| CVE-2026-53953 | 0 | 0.00% | 2 | 0 | N/A | ||
| CVE-2026-104020 | 0 | 0.00% | 2 | 0 | N/A | ||
| CVE-2026-87902 | 0 | 19.76% | 4 | 26 | N/A | ||
| CVE-2026-56662 | 0 | 0.00% | 2 | 0 | N/A | ||
| CVE-2026-56661 | 0 | 0.00% | 2 | 0 | N/A | ||
| CVE-2026-56660 | 0 | 0.00% | 2 | 0 | N/A | ||
| CVE-2026-92543 | 0 | 0.00% | 2 | 0 | N/A | ||
| CVE-2026-55494 | 0 | 0.75% | 1 | 1 | N/A | ||
| CVE-2026-55083 | 0 | 0.00% | 2 | 0 | N/A | ||
| CVE-2026-68495 | 0 | 0.00% | 2 | 0 | N/A | ||
| CVE-2024-76504 | 0 | 0.00% | 1 | 0 | N/A | ||
| CVE-2026-102147 | 0 | 0.43% | 1 | 0 | N/A | ||
| CVE-2026-102105 | 0 | 0.53% | 1 | 0 | N/A | ||
| CVE-2026-91881 | 0 | 0.00% | 1 | 0 | N/A | ||
| CVE-2026-102115 | 0 | 0.53% | 1 | 0 | N/A | ||
| CVE-2026-43598 | 0 | 0.00% | 1 | 0 | N/A | ||
| CVE-2026-84411 | 0 | 0.00% | 1 | 0 | N/A |
updated 2026-10-02T04:18:09.757000
3 posts
A 9.9 Foreman RCE flaw, CVE-2026-96658, lets low-privileged users run commands on Red Hat Satellite. A Viewer bug leaks root passwords.
#Foreman #RedHatSatellite #CVE202696658 #CVE202696659 #CVE202686345 #RCE #LDAP
##A 9.9 Foreman RCE flaw, CVE-2026-96658, lets low-privileged users run commands on Red Hat Satellite. A Viewer bug leaks root passwords.
#Foreman #RedHatSatellite #CVE202696658 #CVE202696659 #CVE202686345 #RCE #LDAP
##🔴 CVE-2026-96658 - Critical (9.9)
A flaw was found in Foreman. An authenticated attacker with low-level permissions can achieve remote code execution (RCE) by bypassing the safemode sandbox within the templating engine. Due to improper handling of delegated methods, an attacker ca...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-96658/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-02T04:18:08.737000
1 posts
🟠 CVE-2026-47593 - High (7.8)
NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer where an unprivileged user can cause an out-of-bounds write. A successful exploit of this vulnerability might lead to code execution, escalation of privileges,...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-47593/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-02T04:18:08.560000
1 posts
🟠 CVE-2026-47592 - High (7.8)
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer where an unprivileged user could cause an out-of-bounds read. A successful exploit of this vulnerability might lead to code execution, denial of serv...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-47592/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-02T04:18:06.277000
2 posts
2 repos
https://github.com/anoxhunterdump-ctrl/CVE-2026-14378-DevKit-Pro-Auth-Bypass
CVE-2026-14378 | CRITICAL vuln in dplugins DevKit Pro (<=2.3.0): Improper authentication lets unauth attackers gain admin access via crafted cookies & nonce. Immediate action: disable or restrict plugin. https://radar.offseq.com/threat/cve-2026-14378-cwe-287-improper-authentication-in-dplugins-devkit-pro-45d2af96cf344d90 #OffSeq #WordPress #Vuln #Infosec
##CVE-2026-14378 | CRITICAL vuln in dplugins DevKit Pro (<=2.3.0): Improper authentication lets unauth attackers gain admin access via crafted cookies & nonce. Immediate action: disable or restrict plugin. https://radar.offseq.com/threat/cve-2026-14378-cwe-287-improper-authentication-in-dplugins-devkit-pro-45d2af96cf344d90 #OffSeq #WordPress #Vuln #Infosec
##updated 2026-10-02T04:18:06.140000
1 posts
ASUS Routers hit by CRITICAL vuln: CVE-2026-14157 (CVSS 9.4). Remote authenticated users can execute arbitrary commands via crafted file upload in web interface. Restrict access, monitor closely. https://radar.offseq.com/threat/cve-2026-14157-cwe-134-use-of-externally-controlled-format-string-in-asus-router-2ad64f03a537627f #OffSeq #CVE202614157 #ASUS #Vuln #BlueTeam
##updated 2026-10-02T04:18:04.950000
21 posts
1 repos
FortiMail Zero-Day Under Attack: Critical 98 Vulnerability Lets Hackers Write Files Without Authentication + Video
Fortinet Issues Urgent Warning as Attackers Exploit FortiMail Appliances Fortinet has disclosed a critical FortiMail vulnerability that is already being exploited in the wild, putting organizations that expose the email-security platform’s management interface at immediate risk. Tracked as CVE-2026-104286, the vulnerability carries a CVSS score of 9.8 and…
##Fortinet FortiMail management interface is impacted by CVE-2026-104286 (CVSS 9.8), exploited in the wild as zero-day for unauthenticated system file writes and command execution. Internet-exposed instances face immediate full-compromise risk; isolate management and patch urgently. #Fortinet #ZeroDay #ThreatIntel
https://cyberworldops.eu/en/fortimail-zero-day-gives-unauthenticated-attackers-a-route-to-system
##Fortinet FortiMail Zero-Day Crisis: Critical CVSS 98 Vulnerability Actively Exploited to Execute Unauthorized Code + Video
Introduction Fortinet has disclosed a critical security vulnerability affecting its FortiMail email security platform, warning that attackers are actively exploiting the flaw in real-world zero-day attacks. The vulnerability, tracked as CVE-2026-104286, carries a CVSS score of 9.8, placing it among the most severe classes of vulnerabilities because…
##🔴 New security advisory:
CVE-2026-104286 affects multiple systems.
• Impact: Remote code execution or complete system compromise possible
• Risk: Attackers can gain full control of affected systems
• Mitigation: Patch immediately or isolate affected systems
Full breakdown:
https://www.yazoul.net/advisory/cve/cve-2026-104286-fortimail-path-traversal-exploited-in-the-wild
by Yazoul AI
##🚨 NEW on CISA KEV — exploited in the wild
🛡 Fortinet FortiMail
Fortinet FortiMail Path Traversal Vulnerability
CVE: CVE-2026-104286 · patch by 2026-10-04
Fortinet FortiMail contains a path traversal and an improper neutralization of NULL byte or NULL character vulnerability that may allow an unauthenticated attacker to write arbitrary files on the underlying system via crafted HTTP or HTTPS requests.
🔗 https://ninjasignal.ninja/intel/cve/CVE-2026-104286
#cybersecurity #KEV #CVE #infosec
Critical Fortinet FortiMail Vulnerability Enters CISA KEV After Active Exploitation: Unauthenticated Attackers May Achieve File Write and Remote Code Execution + Video
Introduction A critical vulnerability affecting Fortinet FortiMail appliances has been added to the CISA Known Exploited Vulnerabilities (KEV) Catalog, indicating that attackers are actively exploiting the flaw in real-world environments. The vulnerability, tracked as CVE-2026-104286, combines a path…
##https://fawkes.rocks/2026/10/02/fortimail-cve-2026-104286-zero-day-exploited-in-attacks/
##Critical FortiMail Zero-Day Under Active Attack: Fortinet Urges Immediate Mitigation + Video
Fortinet is warning customers that a critical FortiMail vulnerability is being actively exploited as a zero-day, potentially allowing unauthenticated attackers to write arbitrary files to vulnerable appliances and ultimately execute unauthorized commands or code. The flaw, tracked as CVE-2026-104286 (FG-IR-26-175), carries a CVSS score of 9.8, placing it in the critical…
##Fortinet warns of critical FortiMail flaw exploited in zero-day attacks
Fortinet is warning customers of a critical FortiMail vulnerability, tracked as CVE-2026-104286, that is being actively exploited in zero-day...
🔗️ [Bleepingcomputer] https://link.is.it/QyRWj6
##Fortinet Warns of Zero-Day Attacks Exploiting Critical FortiMail Flaw
Fortinet has issued a critical warning about zero-day attacks exploiting a severe vulnerability in its FortiMail appliances, with a CVSS score of 9.8 that allows unauthenticated attackers to write arbitrary files on the system. This flaw, tracked as CVE-2026-104286, is under active exploitation, putting FortiMail users at risk.
#ZeroDay #Fortimail #Cve2026104286 #PathTraversal #EmergingThreats
##Attackers exploit CVE-2026-104286, a 9.8 FortiMail vulnerability allowing unauthenticated file writes. CISA adds it to KEV. Apply the workaround.
#Fortinet #FortiMail #CVE2026104286 #PathTraversal #CISAKEV #ActivelyExploited #ZeroDay
##🚨 [CISA-2026:1001] CISA Adds One Known Exploited Vulnerability to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:1001)
CISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2026-104286 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-104286)
- Name: Fortinet FortiMail Path Traversal Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Fortinet
- Product: FortiMail
- Notes: https://fortiguard.fortinet.com/psirt/FG-IR-26-175 ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-104286
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20261001 #cisa20261001 #cve_2026_104286 #cve2026104286
##CVE ID: CVE-2026-104286
Vendor: Fortinet
Product: FortiMail
Date Added: 2026-10-01
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-104286
Happy #zeroday FortiMail customers
CVE-2026-104286: An improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Fortinet FortiMail 8.0.0 through 8.0.1, FortiMail 7.6.0 through 7.6.6, FortiMail 7.4.0 through 7.4.8, FortiMail 7.2.0 through 7.2.9 may allow an unauthenticated attacker to write arbitrary files on the underlying system via crafted HTTP or HTTPS requests.
##This has been reported to be exploited in the wild
Fortinet FortiMail management interface is impacted by CVE-2026-104286 (CVSS 9.8), exploited in the wild as zero-day for unauthenticated system file writes and command execution. Internet-exposed instances face immediate full-compromise risk; isolate management and patch urgently. #Fortinet #ZeroDay #ThreatIntel
https://cyberworldops.eu/en/fortimail-zero-day-gives-unauthenticated-attackers-a-route-to-system
##https://fawkes.rocks/2026/10/02/fortimail-cve-2026-104286-zero-day-exploited-in-attacks/
##Fortinet warns of critical FortiMail flaw exploited in zero-day attacks
Fortinet is warning customers of a critical FortiMail vulnerability, tracked as CVE-2026-104286, that is being actively exploited in zero-day...
🔗️ [Bleepingcomputer] https://link.is.it/QyRWj6
##Attackers exploit CVE-2026-104286, a 9.8 FortiMail vulnerability allowing unauthenticated file writes. CISA adds it to KEV. Apply the workaround.
#Fortinet #FortiMail #CVE2026104286 #PathTraversal #CISAKEV #ActivelyExploited #ZeroDay
##🚨 [CISA-2026:1001] CISA Adds One Known Exploited Vulnerability to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:1001)
CISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2026-104286 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-104286)
- Name: Fortinet FortiMail Path Traversal Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Fortinet
- Product: FortiMail
- Notes: https://fortiguard.fortinet.com/psirt/FG-IR-26-175 ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-104286
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20261001 #cisa20261001 #cve_2026_104286 #cve2026104286
##CVE ID: CVE-2026-104286
Vendor: Fortinet
Product: FortiMail
Date Added: 2026-10-01
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-104286
Happy #zeroday FortiMail customers
CVE-2026-104286: An improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Fortinet FortiMail 8.0.0 through 8.0.1, FortiMail 7.6.0 through 7.6.6, FortiMail 7.4.0 through 7.4.8, FortiMail 7.2.0 through 7.2.9 may allow an unauthenticated attacker to write arbitrary files on the underlying system via crafted HTTP or HTTPS requests.
##This has been reported to be exploited in the wild
updated 2026-10-02T02:17:02.007000
2 posts
Discord libdave CRITICAL vuln (CVE-2026-104480, CVSS 9.4): Affected versions 1.1.0 – <1.2.0 let attackers inject unauthorized members into encrypted sessions. Patch status unconfirmed — check https://radar.offseq.com/threat/cve-2026-104480-cwe-390-detection-of-error-condition-without-action-in-discord-libdave-b9a84610b93cd7e9 #OffSeq #Discord #CVE2026104480 #infosec
##Discord libdave CRITICAL vuln (CVE-2026-104480, CVSS 9.4): Affected versions 1.1.0 – <1.2.0 let attackers inject unauthorized members into encrypted sessions. Patch status unconfirmed — check https://radar.offseq.com/threat/cve-2026-104480-cwe-390-detection-of-error-condition-without-action-in-discord-libdave-b9a84610b93cd7e9 #OffSeq #Discord #CVE2026104480 #infosec
##updated 2026-10-02T01:16:43.193000
2 posts
🟠 CVE-2026-103098 - High (7.5)
Transmission of a sensitive key in the URL
over an unencrypted HTTP connection. The
request is sent over HTTP rather than HTTPS, meaning the key is transmitted in
plaintext across the network. An attacker with the ability to monitor network
traf...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-103098/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-103098 - High (7.5)
Transmission of a sensitive key in the URL
over an unencrypted HTTP connection. The
request is sent over HTTP rather than HTTPS, meaning the key is transmitted in
plaintext across the network. An attacker with the ability to monitor network
traf...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-103098/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-02T01:16:43.070000
2 posts
🟠 CVE-2026-103097 - High (7.5)
An API key is
hardcoded and retrievable from the application package. Since Android
applications can be reverse engineered, embedding sensitive API credentials
directly in the client application may allow unauthorized users to extract and
misuse t...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-103097/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-103097 - High (7.5)
An API key is
hardcoded and retrievable from the application package. Since Android
applications can be reverse engineered, embedding sensitive API credentials
directly in the client application may allow unauthorized users to extract and
misuse t...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-103097/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-02T01:16:42.930000
2 posts
🟠 CVE-2026-103096 - High (7.5)
API
key is hardcoded and retrievable from the application package. Since Android
applications can be reverse engineered, embedding sensitive API credentials
directly in the client application may allow unauthorized users to extract and
misuse the ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-103096/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-103096 - High (7.5)
API
key is hardcoded and retrievable from the application package. Since Android
applications can be reverse engineered, embedding sensitive API credentials
directly in the client application may allow unauthorized users to extract and
misuse the ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-103096/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-02T00:32:33
2 posts
🟠 CVE-2026-12540 - High (8.2)
A flaw was found in Foreman. A command injection vulnerability exists in the foreman-rake errors:fetch_log task. The request_id parameter is passed to an underlying system command (typically grep) without adequate shell neutralization. While the t...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-12540/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-12540 - High (8.2)
A flaw was found in Foreman. A command injection vulnerability exists in the foreman-rake errors:fetch_log task. The request_id parameter is passed to an underlying system command (typically grep) without adequate shell neutralization. While the t...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-12540/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-02T00:31:40
4 posts
Red Hat Directory Server 11: CVE-2026-86345 (CRITICAL, CVSS 9) allows on-path attackers to inject LDAP messages post-StartTLS, risking auth bypass. Restrict access, check Red Hat advisory https://radar.offseq.com/threat/cve-2026-86345-improper-restriction-of-communication-channel-to-intended-endpoints-in-red-hat-red-hat-bc48a6c684134ace #OffSeq #CVE202686345 #RedHat #LDAP #infosec
##🔴 CVE-2026-86345 - Critical (9)
A flaw was found in 389-ds-base. The server does not discard plaintext bytes already buffered from a client connection when negotiating StartTLS, allowing an on-path attacker to inject a crafted LDAP message that is processed after the TLS upgrade...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-86345/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##Red Hat Directory Server 11: CVE-2026-86345 (CRITICAL, CVSS 9) allows on-path attackers to inject LDAP messages post-StartTLS, risking auth bypass. Restrict access, check Red Hat advisory https://radar.offseq.com/threat/cve-2026-86345-improper-restriction-of-communication-channel-to-intended-endpoints-in-red-hat-red-hat-bc48a6c684134ace #OffSeq #CVE202686345 #RedHat #LDAP #infosec
##🔴 CVE-2026-86345 - Critical (9)
A flaw was found in 389-ds-base. The server does not discard plaintext bytes already buffered from a client connection when negotiating StartTLS, allowing an on-path attacker to inject a crafted LDAP message that is processed after the TLS upgrade...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-86345/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-02T00:31:39
2 posts
🔴 CVE-2026-103765 - Critical (9.4)
Mooncake through 0.3.13.post1 contains a missing authentication vulnerability in the HTTP metadata server /metadata handler that allows unauthenticated attackers to read, overwrite, and delete transfer engine metadata keys. Attackers can poison se...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-103765/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-103765 - Critical (9.4)
Mooncake through 0.3.13.post1 contains a missing authentication vulnerability in the HTTP metadata server /metadata handler that allows unauthenticated attackers to read, overwrite, and delete transfer engine metadata keys. Attackers can poison se...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-103765/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-02T00:31:39
4 posts
🔴 CVE-2026-103764 - Critical (9.8)
Mooncake transfer engine before 0.3.13 contains an untrusted pointer dereference in ServerSession::readHeader that allows unauthenticated attackers to read and write arbitrary process memory via the TCP transport data port. Attackers can send a cr...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-103764/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CRITICAL CVE-2026-103764 in kvcache-ai Mooncake (<0.3.13): Untrusted pointer dereference lets unauthenticated attackers read/write arbitrary memory, risking data leak & code execution. Patch to 0.3.13+ now! https://radar.offseq.com/threat/cve-2026-103764-untrusted-pointer-dereference-in-kvcache-ai-mooncake-1cbac989f2110be6 #OffSeq #CVE #Vuln #infosec
##🔴 CVE-2026-103764 - Critical (9.8)
Mooncake transfer engine before 0.3.13 contains an untrusted pointer dereference in ServerSession::readHeader that allows unauthenticated attackers to read and write arbitrary process memory via the TCP transport data port. Attackers can send a cr...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-103764/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CRITICAL CVE-2026-103764 in kvcache-ai Mooncake (<0.3.13): Untrusted pointer dereference lets unauthenticated attackers read/write arbitrary memory, risking data leak & code execution. Patch to 0.3.13+ now! https://radar.offseq.com/threat/cve-2026-103764-untrusted-pointer-dereference-in-kvcache-ai-mooncake-1cbac989f2110be6 #OffSeq #CVE #Vuln #infosec
##updated 2026-10-02T00:31:39
2 posts
🟠 CVE-2026-86344 - High (7.5)
A flaw was found in 389-ds-base. An unauthenticated remote attacker can send a complete LDAP operation followed by the first bytes of an incomplete LDAPMessage on the same connection, causing the server to hand that connection to a second worker t...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-86344/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-86344 - High (7.5)
A flaw was found in 389-ds-base. An unauthenticated remote attacker can send a complete LDAP operation followed by the first bytes of an incomplete LDAPMessage on the same connection, causing the server to hand that connection to a second worker t...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-86344/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-02T00:31:39
2 posts
🟠 CVE-2026-103761 - High (7.5)
Mooncake transfer engine through 0.3.13.post1 contains a memory exhaustion vulnerability in TransferMetadata::receivePeerNotify that allows unauthenticated attackers to grow process memory without limit. Attackers can repeatedly send notify frames...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-103761/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-103761 - High (7.5)
Mooncake transfer engine through 0.3.13.post1 contains a memory exhaustion vulnerability in TransferMetadata::receivePeerNotify that allows unauthenticated attackers to grow process memory without limit. Attackers can repeatedly send notify frames...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-103761/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-02T00:31:33
2 posts
🟠 CVE-2026-104051 - High (8.2)
PictShare before 3.7.1 contains an information disclosure vulnerability that allows unauthenticated attackers to obtain the secret delete_code and uploader metadata by calling the API::info() endpoint which returns the complete raw metadata object...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-104051/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-104051 - High (8.2)
PictShare before 3.7.1 contains an information disclosure vulnerability that allows unauthenticated attackers to obtain the secret delete_code and uploader metadata by calling the API::info() endpoint which returns the complete raw metadata object...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-104051/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-02T00:17:04.627000
1 posts
🔴 CVE-2026-96659 - Critical (9.1)
A flaw was found in Foreman. This vulnerability allows an authenticated user with low-level Viewer permissions to cause unauthorized information disclosure by submitting requests to template preview endpoints. By exploiting this issue, the user ca...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-96659/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-01T21:33:58
2 posts
🟠 CVE-2026-104018 - High (8.8)
An improper privilege management vulnerability (CWE-269) exists in the command shell of Wind River VxWorks 7 all versions up to 26.09. when configured to enforce per-user command privileges. Under certain shell operations, a command may be evaluat...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-104018/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-104018 - High (8.8)
An improper privilege management vulnerability (CWE-269) exists in the command shell of Wind River VxWorks 7 all versions up to 26.09. when configured to enforce per-user command privileges. Under certain shell operations, a command may be evaluat...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-104018/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-01T21:33:02
2 posts
🟠 CVE-2026-104057 - High (7.5)
Podgrab contains an unauthenticated denial-of-service vulnerability caused by unsynchronized concurrent access to shared maps (activePlayers and allConnections) in its WebSocket handler, where Wshandler and HandleWebsocketMessages goroutines read ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-104057/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-104057 - High (7.5)
Podgrab contains an unauthenticated denial-of-service vulnerability caused by unsynchronized concurrent access to shared maps (activePlayers and allConnections) in its WebSocket handler, where Wshandler and HandleWebsocketMessages goroutines read ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-104057/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-01T21:17:23.610000
2 posts
Apache HTTP Server 2.4.69 fixes 20 flaws, including CVE-2026-63292, a mod_vhost_alias stack overflow that may enable code execution.
#Apache #ApacheHTTPServer #httpd #CVE202663292 #CVE202657941 #CVE202659685 #PatchNow
https://securityonline.info/apache-http-server-2-4-69/?utm_source=mastodon&utm_medium=jetpack_social
##Apache HTTP Server 2.4.69 fixes 20 flaws, including CVE-2026-63292, a mod_vhost_alias stack overflow that may enable code execution.
#Apache #ApacheHTTPServer #httpd #CVE202663292 #CVE202657941 #CVE202659685 #PatchNow
https://securityonline.info/apache-http-server-2-4-69/?utm_source=mastodon&utm_medium=jetpack_social
##updated 2026-10-01T20:36:52.220000
2 posts
🟠 CVE-2026-97662 - High (8.2)
An argument injection issue in the diff scan operation in AWS security-agent-mcp-server before version 0.2.0 might allow context-dependent threat actors to create, overwrite, or truncate arbitrary files on the host outside the intended workspace d...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97662/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-97662 - High (8.2)
An argument injection issue in the diff scan operation in AWS security-agent-mcp-server before version 0.2.0 might allow context-dependent threat actors to create, overwrite, or truncate arbitrary files on the host outside the intended workspace d...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97662/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-01T20:34:26.287000
2 posts
https://www.fortra.com/security/advisories/product-security/fi-2026-017
No mention of it being EITW yet but if it is, I expect chicken-themed headlines and warez for BoKS.
sev:CRIT 9.8 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
##Fortra's Core Privileged Access Manager (BoKS) contains a stack-based buffer overflow vulnerability in boks_autoregisterd. A remote attacker with network access to the autoregistration service may be able to trigger memory corruption during client response processing.
🔴 CVE-2026-12627 - Critical (9.8)
Fortra's Core Privileged Access Manager (BoKS) contains a stack-based buffer overflow vulnerability in boks_autoregisterd. A remote attacker with network access to the autoregistration service may be able to trigger memory corruption during client...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-12627/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-01T20:34:26.287000
1 posts
🟠 CVE-2026-14316 - High (8.1)
The revoked-key error path builds a human-readable failure reason using sprintf() into a heap buffer. The allocated buffer is too small for the final formatted message. When sprintf() writes the full message, it can write past the end of the heap ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-14316/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-01T20:25:35.640000
1 posts
🟠 CVE-2026-95588 - High (8.6)
Unauthenticated Arbitrary File Deletion in AcyMailing SMTP Newsletter <= 11.0.5 versions.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-95588/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-01T20:25:35.640000
1 posts
🟠 CVE-2026-97297 - High (7.6)
Subscriber Broken Access Control in Gratisfaction <= 4.6.3 versions.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97297/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-01T20:17:25.737000
2 posts
🟠 CVE-2026-55230 - High (8.7)
Vvveb is a powerful and easy to use CMS with page builder to build websites, blogs or ecommerce stores. Prior to version 1.0.8.6, Vvveb's HTML sanitizer fails to strip event-handler attributes when a tag carries a greater-than character inside a q...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-55230/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-55230 - High (8.7)
Vvveb is a powerful and easy to use CMS with page builder to build websites, blogs or ecommerce stores. Prior to version 1.0.8.6, Vvveb's HTML sanitizer fails to strip event-handler attributes when a tag carries a greater-than character inside a q...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-55230/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-01T19:17:24.467000
2 posts
🟠 CVE-2026-68496 - High (7.5)
The Smile parser in FasterXML jackson-dataformats-binary never invokes StreamReadConstraints.validateNameLength() when decoding JSON object property names, so the maxNameLength limit is not enforced for this format. SmileParser._handleLongFieldNam...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-68496/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-68496 - High (7.5)
The Smile parser in FasterXML jackson-dataformats-binary never invokes StreamReadConstraints.validateNameLength() when decoding JSON object property names, so the maxNameLength limit is not enforced for this format. SmileParser._handleLongFieldNam...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-68496/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-01T19:17:23.117000
2 posts
🟠 CVE-2026-55232 - High (7.6)
Vvveb is a powerful and easy to use CMS with page builder to build websites, blogs or ecommerce stores. Prior to version 1.0.8.6, Vvveb's SSRF guard resolves a host with an IPv4-only function and never inspects IPv6, so any host that lacks an A re...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-55232/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-55232 - High (7.6)
Vvveb is a powerful and easy to use CMS with page builder to build websites, blogs or ecommerce stores. Prior to version 1.0.8.6, Vvveb's SSRF guard resolves a host with an IPv4-only function and never inspects IPv6, so any host that lacks an A re...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-55232/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-01T19:17:19.480000
2 posts
🟠 CVE-2026-104059 - High (8.1)
Lektor 3.3.14 and 3.4.0b15 contains a cross-site request forgery vulnerability in the admin API blueprint that allows unauthenticated attackers to perform state-changing actions by sending cross-origin requests without CSRF tokens, Origin/Referer ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-104059/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-104059 - High (8.1)
Lektor 3.3.14 and 3.4.0b15 contains a cross-site request forgery vulnerability in the admin API blueprint that allows unauthenticated attackers to perform state-changing actions by sending cross-origin requests without CSRF tokens, Origin/Referer ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-104059/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-01T19:17:18.760000
4 posts
Critical Capacitor vulnerability CVE-2026-103922 (CVSS 9.3) affects a package with 5.5M weekly downloads. Update to a patched release now.
#Capacitor #Ionic #CVE2026103922 #MobileSecurity #npm #Android #iOS
##🔴 CVE-2026-103922 - Critical (9.3)
Capacitor is a cross-platform native runtime for web applications. From 6.0.0 until 6.2.2, 7.6.9, 8.3.5, 8.4.3, and 8.5.1, the Android and iOS WebView navigation guard validates a target URL's host and scheme but not its path, allowing a victim wh...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-103922/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##Critical Capacitor vulnerability CVE-2026-103922 (CVSS 9.3) affects a package with 5.5M weekly downloads. Update to a patched release now.
#Capacitor #Ionic #CVE2026103922 #MobileSecurity #npm #Android #iOS
##🔴 CVE-2026-103922 - Critical (9.3)
Capacitor is a cross-platform native runtime for web applications. From 6.0.0 until 6.2.2, 7.6.9, 8.3.5, 8.4.3, and 8.5.1, the Android and iOS WebView navigation guard validates a target URL's host and scheme but not its path, allowing a victim wh...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-103922/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-01T18:32:50
1 posts
WatchGuard continuing the slow drip of sev:CRIT advisories.
https://psirt.watchguard.com/CVE-2026-13043/
##A missing authentication vulnerability in the Kernel Memory Access Driver (PSKMAD) used by WatchGuard endpoint security products allows a local, authenticated attacker to bypass the driver's access-control handshake and issue arbitrary privileged commands to the driver, resulting in disclosure of kernel and process memory.
updated 2026-10-01T18:32:49
1 posts
🟠 CVE-2026-79896 - High (7.5)
Fortra BoKS Manager contains an out-of-bounds read vulnerability in the custom TLS ClientHello parser used by boks_portmux. A remote unauthenticated attacker can submit a malformed ClientHello and terminate boks_portmux. Although the daemon is nor...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-79896/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-01T18:17:28.430000
7 posts
2 repos
CVE-2026-86950: The Great Glyph Grift - An in-the-wild iOS bug with a possible WhatsApp zero-click path https://lobste.rs/s/yfttkn #security
https://calif.io/research/the-great-glyph-grift
Researchers published the first public PoC for CVE-2026-86950, an Apple CoreGraphics out-of-bounds write via crafted PDF font data. The PoC shows crash and controlled write only, but Apple reports targeted exploitation in the wild, raising immediate patching priority. #AppleSecurity #CoreGraphics #VulnManagement
https://cyberworldops.eu/en/public-coregraphics-poc-raises-pressure-to-patch-apple-devices-under
##Geopolitical: Iran warned UAE following Netanyahu's visit (Sept 30) amidst regional tensions, while Russia conducted a drone strike on Ukraine's National Academy of Sciences (Sept 29).
Technology: OpenAI launched "dots" agents and GPT-6.1 Sol (Sept 29), despite shelving a prior AI model (Astra) due to safety concerns. SpaceX's Starship successfully completed its first orbital flight (Sept 28-29).
Cybersecurity: Urgent advisories were issued for actively exploited Citrix NetScaler zero-days (Sept 30), mandating federal agency patching. Apple also patched a CoreGraphics zero-day (CVE-2026-86950) used in targeted attacks (Sept 29).
###Apple released a #security update for #iOS 26, #iPadOS 26, and #macOS 26 to fix a #vulnerability in the #graphicsengine that could be exploited for sophisticated attacks. The bug, CVE-2026-86950, was discovered by Meta and could potentially allow hackers to steal personal data. A separate zero-click bug, CVE-2026-86869, was also fixed, preventing silent data theft via malicious iMessages. https://techcrunch.com/2026/09/29/still-running-ios-26-update-your-iphones-ipads-and-macs-for-this-urgent-security-fix/
##Apple released the urgent iOS 26.7.1 update to patch a critical zero-day vulnerability (CVE-2026-86950) in CoreGraphics, preventing arbitrary code execution.
##Apple Patches Actively Exploited Zero-Day in iOS 26, iPadOS 26 and macOS
Apple patched a zero-click vulnerability (CVE-2026-86950) in iOS 26 and macOS 26 that allow remote code execution and data theft, and has been exploited
**If you use an iPhone, iPad or Mac, update it right now to iOS/iPadOS 26.7.1, macOS Tahoe 26.7.1 or macOS Sequoia 15.8.1. Alterantively, where possible, move to iOS 27. Attackers are already using this flaw to take over devices and steal personal data. If you're a likely target, such as a journalist, activist or executive, consider turning on Lockdown Mode for extra protection.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/apple-patches-actively-exploited-zero-day-in-ios-26-ipados-26-and-macos-p-i-5-p-7/gD2P6Ple2L
Apple a corrigé une faille CoreGraphics exploitée pour cibler des utilisateurs d’iPhone (CVE-2026-86950) https://www.it-connect.fr/apple-cve-2026-86950-faille-zero-day-coregraphics/ #ActuCybersécurité #Cybersécurité #Vulnérabilité #Apple
##updated 2026-10-01T16:17:59.517000
1 posts
CVE-2026-78210: HIGH severity in Octopus Server (CVSS 7.1) lets users with scoped permissions execute unauthorized scripts in certain environments. Patch status unknown — minimize permissions and monitor for updates. https://radar.offseq.com/threat/cve-2026-78210-cwe-863-incorrect-authorization-in-octopus-deploy-octopus-server-50d97dfe20efe99c #OffSeq #OctopusDeploy #Vuln #CVE202678210
##updated 2026-10-01T16:17:32.460000
1 posts
CVE-2026-101283: CRITICAL heap buffer overflow in esnet iperf3 (v3.20 & v3.21). Unauthenticated attackers can trigger memory corruption via decrypt_rsa_message(). Upgrade to 3.22 ASAP. https://radar.offseq.com/threat/cve-2026-101283-cwe-122-heap-based-buffer-overflow-in-esnet-iperf3-1608d23cd8415ceb #OffSeq #CVE2026101283 #infosec #vulnerability
##updated 2026-10-01T15:30:50
1 posts
🟠 CVE-2026-79899 - High (7.9)
Fortra BoKS Manager contains an insecure temporary file vulnerability in bccgethostcert. The utility creates predictable temporary files without first setting a restrictive umask. A local user on the BoKS Master who can read files under BOKS_tmp m...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-79899/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-01T15:30:50
1 posts
🔴 CVE-2026-79898 - Critical (9.1)
Fortra BoKS Manager contains a command injection vulnerability in crlserver. An authenticated user authorized to add CRL URLs through BCC, the WSI REST or SOAP API, or the cacrl command-line interface could cause shell command substitution to be p...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-79898/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-01T15:30:50
1 posts
🟠 CVE-2026-97284 - High (8.8)
Contributor PHP Object Injection in Icegram <= 3.1.31 versions.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97284/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-01T15:30:49
1 posts
🔴 CVE-2026-79901 - Critical (9.9)
In deployments using BoKS keytab management, affected versions of boks_keytabmd generate Active Directory service-account passwords from a predictable pseudo-random sequence seeded with the current Unix timestamp. An attacker who knows the service...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-79901/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-01T15:30:44
1 posts
🟠 CVE-2026-97277 - High (7.6)
Subscriber Broken Access Control in Social Boost <= 3.6.2 versions.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97277/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-01T15:30:41
1 posts
1 repos
https://github.com/Hassham1/CVE-2026-62059-ultimate-member-sqli-poc
🟠 CVE-2026-62059 - High (7.6)
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Ultimate Member Ultimate Member ultimate-member allows Blind SQL Injection.This issue affects Ultimate Member: from n/a through 2.13.1.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-62059/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-01T15:17:35.830000
1 posts
1 repos
CVE-2026-92966: CRITICAL code injection in LatePoint Appointment Booking Plugin (<=5.7.0) for WordPress. Unauthenticated attackers can inject & execute shortcodes, risking full site compromise. Disable plugin or restrict access until patched. https://radar.offseq.com/threat/cve-2026-92966-cwe-94-improper-control-of-generation-of-code-code-injection-in-latepoint-appointment-0d4b3da3082989fe #OffSeq #WordPress #CVE202692966
##updated 2026-10-01T15:17:17.347000
3 posts
Sharp printer vulnerability CVE-2024-58388 lets attackers read files without login. PoC is public and attacks seen in the wild. Patch now.
#Sharp #ToshibaTec #CVE202458388 #PrinterSecurity #LFI #PoC #ExploitedInTheWild
##Sharp printer vulnerability CVE-2024-58388 lets attackers read files without login. PoC is public and attacks seen in the wild. Patch now.
#Sharp #ToshibaTec #CVE202458388 #PrinterSecurity #LFI #PoC #ExploitedInTheWild
##Fuck this bullshit. This 2024 CVE was just published today. Which, fine, whatever. It happens. Except it specifically says it was observed EITW in July 2024.
https://www.cve.org/CVERecord?id=CVE-2024-58388
Exploitation evidence was first observed by the Shadowserver Foundation on 2024-07-30.
Witholding a CVE for something known to be EITW for over two years is fucking bullshit. Especially when the PoC was published in June 2024:
https://pierrekim.github.io/blog/2024-06-27-sharp-mfp-17-vulnerabilities.html#pre-auth-lfi
But at least there's a Nuclei template:
##updated 2026-10-01T15:07:27.747000
1 posts
🟠 CVE-2026-66246 - High (8.8)
iControl is affected by a Broken Access Control vulnerability, which could allow an attacker to exploit missing authentication checks or insecure direct object references (IDOR), enabling privilege escalation and the unauthorized modification or d...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66246/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-01T14:17:19.140000
1 posts
Kiteworks Email Protection Gateway <9.5.1 has a CRITICAL vuln (CVE-2026-102149, CVSS 9.4): attackers can assign certificates to other user accounts, risking encrypted email exposure & unauthorized access. Await patch, consider disabling cert login. https://radar.offseq.com/threat/cve-2026-102149-cwe-306-missing-authentication-for-critical-function-in-kiteworks-email-protection-4008bd0cefe1b69f #OffSeq #CVE2026102149 #infosec
##updated 2026-10-01T14:17:14.417000
1 posts
CVE-2026-102106 (CRITICAL, CVSS 9.1): Kiteworks Email Protection Gateway (<9.5.0) suffers improper admin authentication — attackers can bypass password checks & gain full admin access. Restrict admin service access & monitor for patches. https://radar.offseq.com/threat/cve-2026-102106-cwe-287-improper-authentication-in-kiteworks-email-protection-gateway-f705d7916e63696f #OffSeq #CVE #Infosec
##updated 2026-10-01T09:30:42
1 posts
This is an interesting vuln and one that can be a great example of why a sev:CRIT may not be high priority.
sev:CRIT 9.3 - CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N
##MISP contains a vulnerability in its two-factor authentication (TOTP) verification process that permits a valid one-time code to be accepted more than once within its time-based validity window. The issue exists in the user login flow where a TOTP code is verified as a second authentication factor. Because the system did not record whether a given TOTP period had already been consumed, the same code remained valid for its entire time window (typically 30 seconds). An attacker who captures a legitimate code during a user's login could replay it to authenticate a second session as that user. Preconditions: - The target user has TOTP-based two-factor authentication enabled. - The attacker is in a position to observe or intercept the TOTP code during a legitimate login (e.g., network-level interception, shoulder surfing, or a compromised client). - The replay must occur within the TOTP validity period. Security impact: - Unauthorized account access by replaying a captured one-time code. - Potential compromise of threat-intelligence data and administrative functions accessible to the targeted user. Affected versions: <v2.5.48.
updated 2026-10-01T09:30:33
1 posts
🔒 New CSAF advisory published
VDE-2025-102
WAGO: Multiple Devices are affected by a Vulnerability in BACnet IP Stack
CVE-2025-41753
Multiple WAGO devices are affected by a vulnerability in the dynamic creation of BACnet File Objects. The object name is used as a file path without sufficient validation and is not restricted to the intend…
HTML: https://certvde.com/en/advisories/VDE-2025-102
CSAF JSON: https://wago.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2025-102.json
updated 2026-10-01T04:18:18.593000
1 posts
🟠 CVE-2026-47599 - High (7.8)
NVIDIA GPU Display Driver for Linux contains a vulnerability in the open-source kernel module where an unprivileged local user could cause improper preservation of memory access permissions during DMA mapping. A successful exploit of this vulnerab...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-47599/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-01T03:31:14
2 posts
CVE-2026-13313 (HIGH, CVSS 8.9) in ASUS routers: Authenticated attackers can enable Telnet via debug code, gaining root command execution. Restrict management access & monitor Telnet until patch info is released. https://radar.offseq.com/threat/cve-2026-13313-cwe-489-active-debug-code-in-asus-router-57f2c007e7c82b59 #OffSeq #ASUS #Infosec #Vuln
##Learn how to patch critical ASUS security vulnerabilities like CVE-2026-13313 to protect your routers and motherboards from severe network exploits.
##updated 2026-09-30T21:32:15
1 posts
CVE-2026-101276: esnet iperf3 3.21 suffers a CRITICAL remote use-after-free (CVSS 9.2). Unauthenticated attackers can trigger memory corruption or RCE. Upgrade to 3.22+ now. Details: https://radar.offseq.com/threat/cve-2026-101276-cwe-416-use-after-free-in-esnet-iperf3-8a664a87c0e694fb #OffSeq #CVE2026101276 #iperf3 #infosec
##updated 2026-09-30T20:17:37.253000
1 posts
🟠 CVE-2026-92870 - High (7.5)
A stack-based buffer overflow vulnerability exists in Pgpool-II, which may allow an unauthenticated attacker to cause abnormal process termination.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-92870/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T20:17:34.013000
1 posts
1 repos
🟠 CVE-2026-62146 - High (7.8)
A trust-boundary flaw in CRI-O's sandbox state persistence allows attacker-influenced pod metadata to overwrite CRI-O's own reserved sandbox bookkeeping; once reloaded as trusted after a restart, a later container recreate in that sandbox can expo...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-62146/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T19:57:08.043000
3 posts
Attackers exploited Zammad zero-day flaws CVE-2026-102489 and CVE-2026-102490 to gain root at DIVD. Upgrade to Zammad 7 or go offline.
#Zammad #ZeroDay #CVE2026102489 #CVE2026102490 #DIVD #AIAgent #ExploitedInTheWild
##Attackers exploited Zammad zero-day flaws CVE-2026-102489 and CVE-2026-102490 to gain root at DIVD. Upgrade to Zammad 7 or go offline.
#Zammad #ZeroDay #CVE2026102489 #CVE2026102490 #DIVD #AIAgent #ExploitedInTheWild
##🏆 New Achievement! Root in the Wild!
Observe the Zammad ticketing system in its natural habitat — quietly managing support queues, utterly unaware it carries two zero-days, CVE-2026-102489 and CVE-2026-102490, like a doomed species bearing a genetic flaw it cannot name. An autonomous AI agent, patient and efficient as a nature film's apex predator, chained the pair together: session hijack, remote code execution, root escalation — all in mere seconds. The herd had no warning. (1/2)
##updated 2026-09-30T19:57:08.043000
3 posts
Attackers exploited Zammad zero-day flaws CVE-2026-102489 and CVE-2026-102490 to gain root at DIVD. Upgrade to Zammad 7 or go offline.
#Zammad #ZeroDay #CVE2026102489 #CVE2026102490 #DIVD #AIAgent #ExploitedInTheWild
##Attackers exploited Zammad zero-day flaws CVE-2026-102489 and CVE-2026-102490 to gain root at DIVD. Upgrade to Zammad 7 or go offline.
#Zammad #ZeroDay #CVE2026102489 #CVE2026102490 #DIVD #AIAgent #ExploitedInTheWild
##🏆 New Achievement! Root in the Wild!
Observe the Zammad ticketing system in its natural habitat — quietly managing support queues, utterly unaware it carries two zero-days, CVE-2026-102489 and CVE-2026-102490, like a doomed species bearing a genetic flaw it cannot name. An autonomous AI agent, patient and efficient as a nature film's apex predator, chained the pair together: session hijack, remote code execution, root escalation — all in mere seconds. The herd had no warning. (1/2)
##updated 2026-09-30T19:57:08.043000
2 posts
5 repos
https://github.com/Hassham1/CVE-2026-94545-nextjs-og-poc
https://github.com/EQSTLab/CVE-2026-94545
https://github.com/HORKimhab/CVE-2026-94545
Next.js unauthenticated RCE PoC https://github.com/EQSTLab/CVE-2026-94545
##Details and PoC exploit code are public for CVE-2026-94545, an unauthenticated Next.js RCE in next/og. Upgrade to Next.js 16.3.6 now.
#NextJS #CVE202694545 #RCE #PoC #Satori #WebSecurity #Vercel
##updated 2026-09-30T19:57:08.043000
2 posts
🟠 CVE-2026-79625 - High (8.1)
Affected products do not properly synchronize access to their monitoring functionality. When multiple clients send concurrent requests, this may lead to incorrect reads or writes, or to corruption of internal memory structures. An authenticated re...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-79625/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔒 New CSAF advisory published
VDE-2026-097
CODESYS Control Runtime - Improper Synchronization in Monitoring
CVE-2026-79625
The monitoring functionality of affected CODESYS Control runtime systems processes read and write requests to PLC application data sent by the CODESYS Development System and other clients suc…
HTML: https://www.certvde.com/en/advisories/VDE-2026-097/
CSAF JSON: https://codesys.csaf-tp.certvde.com/.well-known/csaf/white/2026/advisory2026-12_vde-2026-097.json
updated 2026-09-30T19:57:08.043000
2 posts
🟠 CVE-2026-76992 - High (7.5)
The CODESYS Gateway Client allocates memory based on a size field in a gateway response without enforcing an appropriate upper limit. An unauthenticated remote attacker controlling a malicious gateway can exploit this behavior to trigger excessive...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-76992/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔒 New CSAF advisory published
VDE-2026-094
CODESYS Gateway Client - Uncontrolled Memory Allocation
CVE-2026-76992
The CODESYS Gateway Client (CmpGatewayClient) is used by various CODESYS products to establish PLC communication via the CODESYS Gateway.
Due to missing limits on memory allocations derived from a si…
HTML: https://www.certvde.com/en/advisories/VDE-2026-094/
CSAF JSON: https://codesys.csaf-tp.certvde.com/.well-known/csaf/white/2026/advisory2026-11_vde-2026-094.json
updated 2026-09-30T18:33:55
1 posts
🟠 CVE-2026-47591 - High (7.8)
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where an unprivileged user could bypass read-only memory protection due to incorrect authorization, enabling write access to memory marked read-only. A successfu...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-47591/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T18:33:50
1 posts
🟠 CVE-2026-47600 - High (7.8)
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer where an error-handling path could operate on an improperly initialized resource. A successful exploit of this vulnerability might lead to code execu...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-47600/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T18:33:49
1 posts
🟠 CVE-2026-47601 - High (7.8)
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the open-source kernel module DMA-BUF import path where an unprivileged local user could cause improper preservation of memory access permissions when importing a read-onl...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-47601/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T18:33:25
20 posts
1 repos
https://github.com/ShadowForge-Cyber/CVE-2026-76504-Proof-of-concept
Recent geopolitical news indicates Russia initiated a winter strike campaign targeting Ukraine's energy infrastructure on September 30. In cybersecurity, CISA added a critical Cisco Catalyst SD-WAN Manager authentication bypass flaw (CVE-2026-76504) to its Known Exploited Vulnerabilities catalog on September 30. On the technology front, Chinese hackers were reported to be impersonating AI experts to target US policy minds on October 1. Additionally, the NSA announced new post-quantum cryptography measures to safeguard national security systems on October 1.
##Cisco SD-WAN CVE-2026-76504 analysis and exploit walk-through available c/o Landon Rice on the @vulncheck team ㊙️
https://www.vulncheck.com/blog/revenge-of-the-sd-wan-cve-2026-76504
##🔵 THREAT INTELLIGENCE
CISA Adds Exploited Cisco Catalyst SD-WAN Manager Auth Bypass to KEV
Vulnerability | CRITICAL
CVEs: CVE-2026-76504
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added a critical authentication bypass flaw impacting Cisco Catalyst...
Full analysis:
https://www.yazoul.net/news/article/cisa-adds-exploited-cisco-catalyst-sd-wan-manager-auth-bypass-to-kev
by Yazoul AI
##Recent geopolitical news indicates Russia initiated a winter strike campaign targeting Ukraine's energy infrastructure on September 30. In cybersecurity, CISA added a critical Cisco Catalyst SD-WAN Manager authentication bypass flaw (CVE-2026-76504) to its Known Exploited Vulnerabilities catalog on September 30. On the technology front, Chinese hackers were reported to be impersonating AI experts to target US policy minds on October 1. Additionally, the NSA announced new post-quantum cryptography measures to safeguard national security systems on October 1.
##Cisco SD-WAN CVE-2026-76504 analysis and exploit walk-through available c/o Landon Rice on the @vulncheck team ㊙️
https://www.vulncheck.com/blog/revenge-of-the-sd-wan-cve-2026-76504
##Critical Threat Advisory: Cisco Catalyst SD-WAN Manager (CVE-2026-76504)
CISA’s active exploitation verification of CVE-2026-76504 demands an immediate, high-priority posture adjustment across all Cisco Catalyst SD-WAN Manager…...
https://thecybermind.co/2026/10/01/cve-2026-76504-catalyst-sd-wan-manager-4/
##Critical Threat Advisory: Cisco Catalyst SD-WAN Manager (CVE-2026-76504)
CISA’s active exploitation verification of CVE-2026-76504 demands an immediate, high-priority posture adjustment across all Cisco Catalyst SD-WAN Manager…...
https://thecybermind.co/2026/10/01/cve-2026-76504-catalyst-sd-wan-manager-3/
##Critical Threat Advisory: Cisco Catalyst SD-WAN Manager (CVE-2026-76504)
Strategic Threat Advisory: CVE-2026-76504 Affected Vendor & Product: Cisco - Catalyst SD-WAN Manager Vulnerability Class (CWE):...
https://thecybermind.co/2026/10/01/cve-2026-76504-catalyst-sd-wan-manager-2/
##Critical Threat Advisory: Cisco Catalyst SD-WAN Manager (CVE-2026-76504)
Threat Advisory: CVE-2026-76504 Affected Vendor/Product: Cisco - Catalyst SD-WAN Manager Vulnerability Type (CWE): N/A Operational Threat Level:...
https://thecybermind.co/2026/10/01/cve-2026-76504-catalyst-sd-wan-manager/
##Cisco Patches Actively Exploited Zero-Day in Catalyst SD-WAN Manager
Cisco released security updates for a zero-day vulnerability (CVE-2026-76504) in Catalyst SD-WAN Manager that attackers are actively exploiting to gain admin privileges. The flaw allows unauthenticated remote access to the management API through URI encoding bypasses.
**If you run Cisco Catalyst SD-WAN Manager, make sure it is isolated from the internet and reachable from trusted networks only, then patch it ASAP to the fixed version for your release (or migrate if you're on anything older than 20.9). Before patching, save an admin-tech file and check the logs for suspicious j_security_check requests or activity from viptela-reserved- accounts. If you find any, assume your whole SD-WAN network is compromised and call in incident response.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/cisco-patches-actively-exploited-zero-day-in-catalyst-sd-wan-manager-2-0-z-t-k/gD2P6Ple2L
🚨 [CISA-2026:0930] CISA Adds One Known Exploited Vulnerability to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0930)
CISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2026-76504 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76504)
- Name: Cisco Catalyst SD-WAN Manager Hex Encoding Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Cisco
- Product: Catalyst SD-WAN Manager
- Notes: https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-webauth-xr8beuuU ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-76504
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260930 #cisa20260930 #cve_2026_76504 #cve202676504
##Cisco confirmed active exploitation of CVE-2026-76504, an authentication bypass in Catalyst SD-WAN Manager API session handling. It allows unauthenticated remote admin access, enabling full control of SD-WAN fabrics. Prioritize patching and review management-plane logs for abuse. #CiscoSecurity #SdWan #AuthBypass
https://cyberworldops.eu/en/cisco-sd-wan-authentication-flaw-gives-remote-attackers-full
##🚨 Cisco warns critical SD-WAN Manager zero-day is actively exploited
CVE-2026-76504 is a critical authentication bypass affecting Cisco Catalyst SD-WAN Manager.
The flaw allows an unauthenticated remote attacker to send a crafted HTTP request that bypasses an API authentication rule and grants access with admin privileges.
⠀
The vulnerability carries a CVSS score of 9.8 and affects the product regardless of its configuration.
Cisco became aware of active exploitation in September after investigating a support case.
⠀
There are no workarounds. Administrators should install a fixed release immediately and investigate internet-facing systems for signs of compromise.
Well would you look at that; it's Cisco 0-day o'clock again.
https://ifin.network/t/cve-2026-76504-cisco-sd-wan-auth-bypass-actively-exploited/874
##CVE ID: CVE-2026-76504
Vendor: Cisco
Product: Catalyst SD-WAN Manager
Date Added: 2026-09-30
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-76504
https://fawkes.rocks/2026/09/30/cisco-sd-wan-manager-zero-day-cve-2026-76504-exploited/
##🏆 New Achievement! Unauthenticated and Loving It!
Welcome to Module 7: API Authentication and Why Your Vendor Forgot To Include It. Today's learning objective is CVE-2026-76504, a critical zero-day in Cisco Catalyst SD-WAN Manager. Attackers are actively exploiting a flaw in the API authentication mechanism to gain full administrator privileges on your systems. Without a username. Without a password. Without so much as a polite knock. (1/3)
##New advisory, new flaw.
Cisco: CRITICAL CVE-2026-76504: Cisco Catalyst SD-WAN Manager API Authentication Bypass Vulnerability https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-webauth-xr8beuuU @TalosSecurity #Cisco
More on that Cisco vulnerability:
Rapid7: Critical Cisco Catalyst SD-WAN Manager API authentication bypass exploited in the wild (CVE-2026-76504) https://www.rapid7.com/blog/post/etr-critical-cisco-catalyst-sd-wan-manager-api-authentication-bypass-exploited-in-the-wild-cve-2026-76504/ @Rapid7Official
Also:
Broadcom has several advisories today, three of them addressing critical vulnerabilities https://support.broadcom.com/web/ecx/security-advisory #Broadcom #infosec #vulnerability
##Cisco warns of new SD-WAN zero-day exploited in attacks
Cisco released security updates to address a critical zero-day in the Catalyst SD-WAN Manager (tracked as CVE-2026-76504) that attackers are...
🔗️ [Bleepingcomputer] https://link.is.it/cZgOkH
##Attackers exploit CVE-2026-76504, a 9.8 authentication bypass in Cisco SD-WAN Manager that grants admin API access. Patch now.
#Cisco #SDWAN #CVE202676504 #AuthenticationBypass #ActivelyExploited #CyberSecurity
##updated 2026-09-30T17:32:07.107000
1 posts
🟠 CVE-2026-10764 - High (8.7)
Information disclosure in BVMS 4.5 up to 12.3 including allows man-in-the-middle attackers to gain unauthorized access to sensitive data.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-10764/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T17:23:08.953000
1 posts
@hlux @bkastl Im Prinzip stimmt das mit meiner Wahrnehmung überein, vor allem im Vergleich mit Citrix, Ivanti, Fortinet, Cisco. Aber auch hier gab's neulich was Spannendes: https://www.netspi.com/blog/technical-blog/web-application-pentesting/cve-2026-78902-xss-to-rce-in-pfsense-with-one-dns-request/
##updated 2026-09-30T17:16:51.120000
1 posts
🟠 CVE-2026-92867 - High (8.8)
An out-of-bounds write vulnerability exists in Pgpool-II , which may allow an authenticated attacker to cause abnormal process termination or arbitrary code execution.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-92867/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T16:47:57.730000
1 posts
🟠 CVE-2026-92871 - High (7.5)
A NULL pointer dereference vulnerability exists in Pgpool-II, which may allow an unauthenticated attacker to cause abnormal termination of the watchdog process.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-92871/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T16:44:39.840000
1 posts
1 repos
New. This relates to CVE-2026-76570.
VulnCheck: JCTables for Joomla: When "Already Escaped" Means Injectable https://www.vulncheck.com/blog/jctables-unauthenticated-sql-rw-to-rce @vulncheck #infoec #vulnerability #SQL
##updated 2026-09-30T16:30:42.327000
2 posts
🔴 CVE-2026-102458 - Critical (9.8)
EasyFlow .NET developed by Digiwin has a Missing Authentication vulnerability. Unauthenticated remote attackers can obtain other users' plaintext passwords through a specific API.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-102458/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CRITICAL vuln in DigiWin EasyFlow .NET (CVE-2026-102458, CVSS 9.3): Missing authentication allows remote attackers to obtain plaintext passwords via API. Affects 6.6 – 6.6.19, 8.1 – 8.1.5. Patch ASAP! https://radar.offseq.com/threat/cve-2026-102458-cwe-306-missing-authentication-for-critical-function-in-digiwin-easyflow-net-3e9316754f2dea13 #OffSeq #CVE2026_102458 #infosec #appsec
##updated 2026-09-30T16:30:42.327000
1 posts
🔴 CVE-2026-102455 - Critical (9.8)
EasyFlow .NET developed by Digiwin has a Insecure Deserialization vulnerability. Unauthenticated remote attackers can execute arbitrary code on the server by sending maliciously crafted serialized content.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-102455/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T16:18:58.363000
1 posts
🟠 CVE-2026-75098 - High (7.5)
The Product Designer App plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 1.1.3 via the 'svg' parameter parameter. This makes it possible for unauthenticated attackers to read the contents of arbitrar...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-75098/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T16:18:57.403000
1 posts
1 repos
https://github.com/Hasanuyarrr/CVE-2026-18782-TREX-MES-Uygulamalarinda-SQL-Zafiyeti
🔴 CVE-2026-18782 - Critical (9.8)
Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Trex Digital Smart Manufacturing Systems Inc. Trex MES allows Command Line Execution through SQL Injection.
This issue affects Trex MES: through...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-18782/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T16:18:57.403000
1 posts
🔴 CVE-2026-82307 - Critical (9.8)
Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Dolusoft Software Technologies SOPLOG allows SQL Injection.
This issue affects SOPLOG: before Soplog 2026.9.4.1.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-82307/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T16:18:39.783000
1 posts
🟠 CVE-2026-6806 - High (7.5)
The Motors – Car Dealership & Classified Listings Plugin plugin for WordPress is vulnerable to time-based blind SQL Injection via the 'stm_lat/stm_lng' parameter in all versions up to, and including, 1.4.109 due to insufficient escaping on the u...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-6806/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T16:14:10.347000
1 posts
A critical Apache PLC4X vulnerability, CVE-2026-102508, lets attackers impersonate OPC UA servers and steal credentials. Upgrade to PLC4X 1.0.0 now.
#ApachePLC4X #PLC4X #OPCUA #CVE2026102508 #ICSSecurity #OTSecurity #PLC #Apache
##updated 2026-09-30T16:13:13.493000
1 posts
🟠 CVE-2026-94002 - High (7.5)
Possible memory exhaustion in SFTP clients (DefaultSftpClient) in component sshd-sftp in Apache MINA SSHD versions 0.9.0 to 2.19.0 and 3.0.0-M1 to 3.0.0-M5.
Apache
MINA SSHD is a Java library for client-side and server-side SSH. The sshd-sftp...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94002/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T16:13:13.493000
1 posts
🟠 CVE-2026-93994 - High (8.1)
Apache MINA SSHD is a Java library for client-side and server-side SSH. SSH servers can be configured to require multi-authentication schemes, for instance two different public keys, not just one. In OpenSSH, this would be done by setting in sshd_...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93994/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T16:13:13.493000
1 posts
🔴 CVE-2026-94052 - Critical (9.1)
A missing check in LdapPasswordAuthenticator in component sshd-ldap in Apache MINA SSHD versions 1.2.0 to 2.19.0 or 3.0.0-M1 to 3.0.0-M5 bypassed authentication checks.
Apache MINA SSHD is a Java library for client-side and server-side SSH. T...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94052/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T15:31:44
1 posts
🟠 CVE-2026-62097 - High (7.6)
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WPTasty Business Directory business-directory-plugin allows Blind SQL Injection.This issue affects Business Directory: from n/a through 6.4.27.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-62097/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T15:31:43
1 posts
1 repos
https://github.com/Hasanuyarrr/CVE-2026-18783-TREX-MES-Uygulamalarinda-Yetkisiz-Nesne-Erisimi
🟠 CVE-2026-18783 - High (8.8)
Missing authentication for critical function vulnerability in Trex Digital Smart Manufacturing Systems Inc. Trex MES allows Authentication Bypass.
This issue affects Trex MES: through 2026-09-29.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-18783/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T15:31:38
1 posts
🟠 CVE-2026-97197 - High (7.5)
Unauthenticated Broken Access Control in WordPress Backup & Migration <= 1.6.0 versions.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97197/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T15:31:38
1 posts
🟠 CVE-2026-97241 - High (7.5)
Unauthenticated Sensitive Data Exposure in BackupEase <= 2.2.2 versions.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97241/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T15:31:38
1 posts
🟠 CVE-2026-97240 - High (7.5)
Unauthenticated Sensitive Data Exposure in StifLi Backup Tools <= 2.2.7 versions.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97240/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T15:31:38
1 posts
🔴 CVE-2026-97248 - Critical (9.8)
Unauthenticated PHP Object Injection in Booking Activities <= 1.18.7.1 versions.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97248/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T15:31:38
1 posts
🟠 CVE-2026-97244 - High (7.5)
Contributor Path Traversal in Creator LMS <= 1.2.19 versions.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97244/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T15:31:34
1 posts
🔴 CVE-2026-97274 - Critical (9.8)
Unauthenticated Bypass Vulnerability in OAuth Single Sign On – SSO (OAuth Client) <= 7.1.2 versions.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97274/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T14:18:18.460000
1 posts
🟠 CVE-2026-97293 - High (8.5)
Contributor SQL Injection in Media LIbrary Assistant <= 3.41 versions.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97293/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T14:18:17.797000
1 posts
🟠 CVE-2026-97287 - High (8.5)
Contributor SQL Injection in Event Tickets <= 5.29.5 versions.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97287/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T14:18:12.963000
1 posts
🟠 CVE-2026-96837 - High (8.8)
Contributor Remote Code Execution (RCE) in CartFlows <= 3.2.0 versions.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-96837/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T12:35:21
1 posts
🔴 CVE-2026-94053 - Critical (9.1)
Authentication bypass via LDAP injection in component sshd-ldap in Apache MINA SSHD versions 1.2.0 to 2.19.0 and 3.0.0-M1 to 3.0.0-M5.
Apache MINA SSHD is a Java library for client-side and server-side SSH.
The optional sshd-ldap component p...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94053/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T12:35:16
2 posts
🔴 CVE-2026-77185 - Critical (9.1)
Authentication bypass in sshd-core in Apache MINA SSHD versions 2.0.0 to 2.19.0 and 3.0.0-M1 to 3.0.0-M5 for a certain (presumed rare) way to implement an SSH server.
Apache MINA SSHD is a Java library for client- and server-side SSH. In the s...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77185/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##Apache MINA SSHD auth bypass (CVE-2026-77185, CRITICAL, CVSS 9.1): Async public-key/hostbased auth can be skipped, risking full SSH compromise. Affected: 2.0.0 – 2.19.x, 3.0.0-M1 – M5. Patch to 2.20.0/3.0.0-M6. https://radar.offseq.com/threat/cve-2026-77185-cwe-305-authentication-bypass-by-primary-weakness-in-apache-software-foundation-apache-18a51f96ab18bde1 #OffSeq #Apache #Infosec
##updated 2026-09-30T09:31:20
1 posts
🟠 CVE-2026-89294 - High (7.5)
The Simply Schedule Appointments plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.6.12.27 via the 'ssa_locale' parameter parameter. This makes it possible for authenticated attackers, with subscrib...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89294/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T09:31:11
2 posts
🔴 CVE-2026-97196 - Critical (9.1)
Improper Validation of Unsafe Equivalence in Input vulnerability in Liquid Web / StellarWP GiveWP allows Authentication Bypass.
This issue affects GiveWP: from n/a through 4.16.9.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97196/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##GiveWP (Liquid Web/StellarWP) CRITICAL vuln (CVE-2026-97196): Improper input validation leads to auth bypass (CVSS 9.1). Affects up to 4.16.9. Patch when available. Details: https://radar.offseq.com/threat/cve-2026-97196-cwe-1289-improper-validation-of-unsafe-equivalence-in-input-in-liquid-web-stellarwp-ea2f97fd9b30ac84 #OffSeq #Vulnerability #WordPress
##updated 2026-09-30T03:31:41
1 posts
🟠 CVE-2026-103088 - High (7.5)
Handlebars.java before 4.5.5 allows directory traversal. In handlebars-springmvc 4.5.3 and 4.5.4, the path-containment fix for CVE-2026-63490 validates template locations as raw percent-encoded strings, whereas the template file is opened through ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-103088/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T00:32:48
3 posts
WatchGuard Patches Multiple Flaws, One Critical in Fireware OS
WatchGuard patched 15 Fireware OS vulnerabilities, the worst a critical code injection flaw (CVE-2026-86131) that lets a malicious remote BOVPN-over-TLS server run root commands on a connecting Firebox, along several pre-authentication remote code execution and DoS bugs in services such as fingerd, spamd, iked and samld.
**If you run WatchGuard Firebox appliances, upgrade Fireware OS to a fixed version ASAP (2026.3.2, 2026.2.3, 12.12.3, or 12.5.21 on T15/T35). There are 15 flaws, including a critical one with no workaround, so prioritize devices that use Branch Office VPN over TLS. Until you patch, make sure the firewall's management interface is reachable only from trusted admin networks, and only connect VPN tunnels to servers you fully control.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/watchguard-patches-multiple-flaws-one-critical-in-fireware-os-w-l-q-u-2/gD2P6Ple2L
WatchGuard patched CVE-2026-86131 (CVSS 9.2) in Fireware OS, allowing a malicious VPN server to achieve root RCE on connecting Firebox appliances. Unpatched edge devices risk full takeover and network compromise, so prioritize updates and review VPN peers. #WatchGuard #FirewareOS #VulnManagement
https://cyberworldops.eu/en/malicious-vpn-server-could-seize-root-control-of-watchguard-firebox
##CRITICAL RCE (CVE-2026-86131) in WatchGuard Fireware OS enables root code execution via BOVPN over TLS. Multiple high-severity flaws also patched. No known in-the-wild attacks, but update ASAP. https://radar.offseq.com/threat/watchguard-patches-critical-fireware-os-code-injection-vulnerability-36035f2a6c97cfc4 #OffSeq #Vuln #WatchGuard #PatchTuesday #InfoSec
##updated 2026-09-29T22:19:05.860000
1 posts
CISA warns the Viidure dashcam app leaks hardcoded cloud credentials (CVE-2026-96587) and public storage (CVE-2026-94204). The vendor has not responded.
#Viidure #Dashcam #CISA #CVE202696587 #HardcodedCredentials #CloudSecurity #AndroidSecurity #IoTSecurity
##updated 2026-09-29T22:19:03.923000
1 posts
CISA warns the Viidure dashcam app leaks hardcoded cloud credentials (CVE-2026-96587) and public storage (CVE-2026-94204). The vendor has not responded.
#Viidure #Dashcam #CISA #CVE202696587 #HardcodedCredentials #CloudSecurity #AndroidSecurity #IoTSecurity
##updated 2026-09-29T21:27:41.130000
1 posts
OpenSSL disclosed CVE-2026-84782, a high-severity bug in DTLS handshake retransmission that can leak unencrypted heap data to peers or crash the process. Ubuntu describes the impact as incorrect handshake behavior or denial of service. Patch affected builds and audit DTLS-exposed services. #OpenSSL #Dtls #VulnManagement
https://cyberworldops.eu/en/openssl-dtls-retransmission-bug-can-leak-heap-data-or-terminate
##updated 2026-09-29T18:31:49
1 posts
found a vuln in openssl's QUIC stack, now CVE-2026-75804.
a remote peer can make an openssl QUIC endpoint hold ~100 MB of heap per connection. the flow control window is supposed to cap that at 768 KiB. ten connections --> a gigabyte.
cause: connection-level flow control wasn't enforced, only the per-stream limit.
rated low. affects 3.4 through 4.0, fixed in 4.0.3, 3.6.5, 3.5.9 and 3.4.8.
https://openssl-library.org/news/vulnerabilities/index.html#CVE-2026-75804
#OpenSSL #QUIC #CVE #InfoSec #Security #Cybersecurity #vulnerability
##updated 2026-09-29T04:18:01.603000
7 posts
10 repos
https://github.com/bkchaudhari/NetScaler-CTX697096-Assessment-Script
https://github.com/craigsblackie/cve-2026-88771-netscaler
https://github.com/securekomodo/citrixInspector
https://github.com/techupdate24/citrix-netscaler-cve-2026-88771-rce
https://github.com/emilstahl/pitscaler
https://github.com/technion/netscaler_scanner
https://github.com/ThomasPoppelgaard/netscaler-ctx697096-checker
https://github.com/SwiftSecur/CVE-2026-88771-HuntScript
https://github.com/EXEcution-py/CVE-2026-88771-POC
https://github.com/watchtowrlabs/watchTowr-vs-Citrix-Netscaler-CVE-2026-88771
Mass exploitation of Citrix NetScaler: What we currently know
Citrix NetScaler ADC/Gateway의 치명적 취약점 CVE-2026-88771과 CVE-2026-88772(CVSS 9.5)이 실제 대규모 공격에 악용되고 있다. 인증 없이 원격 명령 실행이 가능한 취약점을 포함하며, 최소 78개 조직과 유럽·북미의 정부·핵심 인프라·금융·의료 기관이 영향을 받은 것으로 조사됐다. 공격자는 PHP 웹셸 Whipshot과 Python 터널러 Slapshot을 사용해 C2 통신 은닉, 정찰, 자격 증명 탈취를 수행한 정황이 있다. NetScaler를 VPN·원격 접...
https://www.cybersecuritydive.com/news/exploitation-citrix-netscaler-what-we-know/831780/
##oh wow that grep|sed|awk pipeline...
I keep saying this:
Parsing strings all over the place is a funny idea that #Unix had, but inherently prone to error and, frankly, horribly insecure.
LevelBlue THOR observed active exploitation of CVE-2026-88771 in Citrix NetScaler ADC and Gateway for unauthenticated command execution. Payloads establish reverse shells, create persistent superuser accounts, and hide web shells as CSS URLs while staging configs. This enables long-term persistence and credential access on edge devices. #NetScaler #Citrix #ThreatIntel
https://cyberworldops.eu/en/netscaler-attack-payloads-aim-for-superuser-persistence-and-css-masked
##Mandiant and GTIG confirm active exploitation of NetScaler zero-days CVE-2026-88771 and CVE-2026-88772 on ADC and Gateway appliances. Edge compromise can escalate to root-level network access, bypassing perimeter controls. Immediate patching and compromise hunting are required. #NetScaler #ZeroDay #ThreatIntel
https://cyberworldops.eu/en/netscaler-intrusions-turn-a-gateway-flaw-into-root-level-network
##Great IOCs on the follow up spray and pray activity on #PitScaler so far.
For context this activity definitely is not related to the inital threat actor activity in early September. This is new stuff.
##CERT-EU shares their insights on CVE-2026-88771 exploitation and provides threat hunting tips in different logs.
https://cert.europa.eu/blog/taking-execute-logging-a-bit-too-literally-cve-2026-88771
##https://thecybersecguru.com/news/citrix-netscaler-cve-2026-88772-rce/
##updated 2026-09-28T15:32:02
2 posts
CISA advisory ICSA-26-274-03 documents CVE-2026-15952 and CVE-2026-15953 in ABB PCM600 up to version 2.14. Exploitation risks Windows privilege escalation and integrity of IED project files, with direct impact on substation protection engineering. Patch and restrict engineering workstation access. #AbbPcm600 #IcsSecurity #SubstationSecurity
https://cyberworldops.eu/en/two-abb-pcm600-weaknesses-put-windows-privileges-and-project-files-at
##CISA advisory ICSA-26-274-03 documents CVE-2026-15952 and CVE-2026-15953 in ABB PCM600 up to version 2.14. Exploitation risks Windows privilege escalation and integrity of IED project files, with direct impact on substation protection engineering. Patch and restrict engineering workstation access. #AbbPcm600 #IcsSecurity #SubstationSecurity
https://cyberworldops.eu/en/two-abb-pcm600-weaknesses-put-windows-privileges-and-project-files-at
##updated 2026-09-28T15:31:57
2 posts
CISA advisory ICSA-26-274-03 documents CVE-2026-15952 and CVE-2026-15953 in ABB PCM600 up to version 2.14. Exploitation risks Windows privilege escalation and integrity of IED project files, with direct impact on substation protection engineering. Patch and restrict engineering workstation access. #AbbPcm600 #IcsSecurity #SubstationSecurity
https://cyberworldops.eu/en/two-abb-pcm600-weaknesses-put-windows-privileges-and-project-files-at
##CISA advisory ICSA-26-274-03 documents CVE-2026-15952 and CVE-2026-15953 in ABB PCM600 up to version 2.14. Exploitation risks Windows privilege escalation and integrity of IED project files, with direct impact on substation protection engineering. Patch and restrict engineering workstation access. #AbbPcm600 #IcsSecurity #SubstationSecurity
https://cyberworldops.eu/en/two-abb-pcm600-weaknesses-put-windows-privileges-and-project-files-at
##updated 2026-09-28T12:26:47.670000
8 posts
7 repos
https://github.com/securekomodo/citrixInspector
https://github.com/watchtowrlabs/watchTowr-vs-Citrix-Netscaler-CVE-2026-88772
https://github.com/murrez/CVE-2026-88772
https://github.com/emilstahl/pitscaler
https://github.com/technion/netscaler_scanner
https://github.com/ThomasPoppelgaard/netscaler-ctx697096-checker
Mass exploitation of Citrix NetScaler: What we currently know
Citrix NetScaler ADC/Gateway의 치명적 취약점 CVE-2026-88771과 CVE-2026-88772(CVSS 9.5)이 실제 대규모 공격에 악용되고 있다. 인증 없이 원격 명령 실행이 가능한 취약점을 포함하며, 최소 78개 조직과 유럽·북미의 정부·핵심 인프라·금융·의료 기관이 영향을 받은 것으로 조사됐다. 공격자는 PHP 웹셸 Whipshot과 Python 터널러 Slapshot을 사용해 C2 통신 은닉, 정찰, 자격 증명 탈취를 수행한 정황이 있다. NetScaler를 VPN·원격 접...
https://www.cybersecuritydive.com/news/exploitation-citrix-netscaler-what-we-know/831780/
##Attackers exploit Citrix NetScaler zero-day CVE-2026-88772 for root access, then hide WHIPSHOT web shells and a SLAPSHOT tunneler. Patch now.
#CitrixNetScaler #ZeroDay #CVE202688772 #CVE202688771 #WHIPSHOT #SLAPSHOT #Mandiant #CyberSecurity
https://securityonline.info/citrix-netscaler-zero-day/?utm_source=mastodon&utm_medium=jetpack_social
##Mandiant and GTIG confirm active exploitation of NetScaler zero-days CVE-2026-88771 and CVE-2026-88772 on ADC and Gateway appliances. Edge compromise can escalate to root-level network access, bypassing perimeter controls. Immediate patching and compromise hunting are required. #NetScaler #ZeroDay #ThreatIntel
https://cyberworldops.eu/en/netscaler-intrusions-turn-a-gateway-flaw-into-root-level-network
##CVE-2026-88772, a Citrix NetScaler DTLS memory overflow, is exploited in the wild. A watchTowr PoC and full details are now public. Patch NetScaler now.
#Citrix #NetScaler #CVE202688772 #DTLS #watchTowr #KEV #ZeroDay #RCE
##Two Citrix NetScaler zero-days (CVE-2026-88772/88771) gave attackers pre-auth root on the box that fronts your whole network. GTIG traced exploitation to early September, weeks before the patch existed.
Once inside, their C2 leaves from your own public IP. No strange domain, no foreign address to block. The call is coming from inside the house.
Reputation Radar #13:
https://www.reput.io/blog/reputation-radar-13
https://fawkes.rocks/2026/09/30/netscaler-cve-2026-88772-zero-day-tied-to-state-hackers/
##Nice blog post on Citrix CVE-2026-88772 exploit:
##https://thecybersecguru.com/news/citrix-netscaler-cve-2026-88772-rce/
##updated 2026-09-26T00:32:22
2 posts
1 repos
Attackers exploit CVE-2026-100382, a CVSS 10 unauthenticated MediaWiki RCE in External Data. PoC is public. Upgrade to 3.7 now.
#MediaWiki #ExternalData #CVE2026100382 #RCE #CommandInjection #ExploitedInTheWild #PoC
##[🚨 #MediaWiki vulnerable extension]
If you are running a MediaWiki instance with Extension:External_Data < v3.7, your instance is vulnerable to arbitrary file loading and #RemoteCodeExecution.
The vulnerability was apparently publicly known since August, but due to the lack of communication, instance admins learned about it due to that vulnerability being exploited en masse.
If you know and like a MediaWiki instance, you can check their Special:Version page to see if they are using the External_Data extension to warn them.
More info:
- https://lists.wikimedia.org/hyperkitty/list/mediawiki-l@lists.wikimedia.org/thread/5N55R3XNFE7BXQLGWKZI7Q4ZXZSF4C5I/
- https://www.cve.org/CVERecord?id=CVE-2026-100382
#infosec #wikipedia #wikidata #adminsys #CVE #pwned cc @mediawiki
##updated 2026-09-25T18:32:21
1 posts
3 repos
https://github.com/tc4dy/CVE-2026-67279-86060-Toolkit
Critical Threat Advisory: CVE-2026-67279 MikroTik RouterOS
Immediate CISA KEV threat advisory for CVE-2026-67279 affecting MikroTik RouterOS. Includes behavioral workflow analysis, BOD 26-04 patch compliance guidance, and multi-vendor SOC detection queries....
##updated 2026-09-24T21:25:27.050000
1 posts
CVE-2026-61851: SQL injection in Chartbrew's runQuery() - incomplete keyword blocklist lets authenticated users execute dangerous SQL. CVSS 8.8. Patch under review, no fix yet. Track it: https://www.valtersit.com/cve/CVE-2026-61851/ #CVE #infosec
##updated 2026-09-24T14:18:17.497000
1 posts
CVE-2026-78806 in Matter Project Chip V1.5.1: local attacker can leak sensitive data via PerformCommissioningStep in ChipDeviceController.cpp. CVSS 5.5, no known patch yet. Restrict local access and watch for updates. https://www.valtersit.com/cve/CVE-2026-78806/ #CVE #infosec #IoT
##updated 2026-09-23T19:17:29.350000
1 posts
CVE-2026-18439 Tutor LMS IDOR (CVSS 4.3): tutor_quiz_builder_save AJAX lets low-priv users tamper with quiz questions they shouldn't manage. Patch under review - apply when released. https://www.valtersit.com/cve/CVE-2026-18439/ #CVE #infosec #WordPress
##updated 2026-09-23T16:38:38.987000
2 posts
2 repos
From Check Point Research: Exploitation of CVE-2026-85102 and CVE-2026-93616
Check Point has observed active exploitation of two critical pre-authentication vulnerabilities with CVSS scores of 9.8 - CVE-2026-85102 and CVE-2026-93616. The flaws affect Security Gateway and Security Management products and can enable remote code execution. Fixes for both vulnerabilities are available.
#CheckPoint #CheckPointSoftwareTechnologies #CVE #CVE202685102 #CVE202693616
##📈 CVE Published in last 30 days (2026-09-01 - 2026-09-01)
See more at https://secdb.nttzen.cloud/dashboard
Total CVEs:
Severity:
- Critical: 1417
- High: 5956
- Medium: 4625
- Low: 927
- None: 1743
Status:
- : 93
- Analyzed: 3418
- Awaiting Analysis: 2780
- Deferred: 5097
- Modified: 128
- Received: 2835
- Rejected: 130
- Undergoing Analysis: 187
CISA KEVs:
- CISA-2026:0902 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0902)
- CISA-2026:0904 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0904)
- CISA-2026:0908 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0908)
- CISA-2026:0909 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0909)
- CISA-2026:0914 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0914)
- CISA-2026:0911 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0911)
- CISA-2026:0910 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0910)
- CISA-2026:0916 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0916)
- CISA-2026:0918 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0918)
- CISA-2026:0921 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0921)
- CISA-2026:0922 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0922)
- CISA-2026:0924 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0924)
- CISA-2026:0925 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0925)
- CISA-2026:0927 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0927)
- CISA-2026:0929 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0929)
- CISA-2026:0930 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0930)
Top CNAs:
- kernel.org: 2117
- VulnCheck: 1638
- GitHub, Inc.: 1424
- Microsoft Corporation: 1000
- VulDB: 900
- Oracle: 634
- WPScan: 552
- MITRE: 497
- Chrome: 467
- Wordfence: 408
Top Affected Products:
- UNKNOWN: 11109
- Microsoft Windows Server 2025: 648
- Microsoft Windows Server 2022: 611
- Microsoft Windows 11 24h2: 600
- Microsoft Windows 11 26h1: 600
- Microsoft Windows 11 25h2: 599
- Microsoft Windows Server 2019: 586
- Microsoft Windows 10 1809: 582
- Microsoft Windows 11 23h2: 574
- Microsoft Windows 10 21h2: 541
Top EPSS Score:
- CVE-2026-85706 - 91.43 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85706)
- CVE-2026-85046 - 48.88 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85046)
- CVE-2026-76461 - 28.27 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76461)
- CVE-2026-87902 - 19.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-87902)
- CVE-2026-93616 - 19.65 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93616)
- CVE-2026-76460 - 14.03 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76460)
- CVE-2026-86218 - 12.93 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-86218)
- CVE-2026-83549 - 10.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-83549)
- CVE-2026-83548 - 8.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-83548)
- CVE-2026-85102 - 7.55 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85102)
updated 2026-09-22T21:30:40
2 posts
From Check Point Research: Exploitation of CVE-2026-85102 and CVE-2026-93616
Check Point has observed active exploitation of two critical pre-authentication vulnerabilities with CVSS scores of 9.8 - CVE-2026-85102 and CVE-2026-93616. The flaws affect Security Gateway and Security Management products and can enable remote code execution. Fixes for both vulnerabilities are available.
#CheckPoint #CheckPointSoftwareTechnologies #CVE #CVE202685102 #CVE202693616
##📈 CVE Published in last 30 days (2026-09-01 - 2026-09-01)
See more at https://secdb.nttzen.cloud/dashboard
Total CVEs:
Severity:
- Critical: 1417
- High: 5956
- Medium: 4625
- Low: 927
- None: 1743
Status:
- : 93
- Analyzed: 3418
- Awaiting Analysis: 2780
- Deferred: 5097
- Modified: 128
- Received: 2835
- Rejected: 130
- Undergoing Analysis: 187
CISA KEVs:
- CISA-2026:0902 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0902)
- CISA-2026:0904 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0904)
- CISA-2026:0908 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0908)
- CISA-2026:0909 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0909)
- CISA-2026:0914 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0914)
- CISA-2026:0911 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0911)
- CISA-2026:0910 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0910)
- CISA-2026:0916 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0916)
- CISA-2026:0918 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0918)
- CISA-2026:0921 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0921)
- CISA-2026:0922 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0922)
- CISA-2026:0924 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0924)
- CISA-2026:0925 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0925)
- CISA-2026:0927 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0927)
- CISA-2026:0929 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0929)
- CISA-2026:0930 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0930)
Top CNAs:
- kernel.org: 2117
- VulnCheck: 1638
- GitHub, Inc.: 1424
- Microsoft Corporation: 1000
- VulDB: 900
- Oracle: 634
- WPScan: 552
- MITRE: 497
- Chrome: 467
- Wordfence: 408
Top Affected Products:
- UNKNOWN: 11109
- Microsoft Windows Server 2025: 648
- Microsoft Windows Server 2022: 611
- Microsoft Windows 11 24h2: 600
- Microsoft Windows 11 26h1: 600
- Microsoft Windows 11 25h2: 599
- Microsoft Windows Server 2019: 586
- Microsoft Windows 10 1809: 582
- Microsoft Windows 11 23h2: 574
- Microsoft Windows 10 21h2: 541
Top EPSS Score:
- CVE-2026-85706 - 91.43 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85706)
- CVE-2026-85046 - 48.88 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85046)
- CVE-2026-76461 - 28.27 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76461)
- CVE-2026-87902 - 19.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-87902)
- CVE-2026-93616 - 19.65 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93616)
- CVE-2026-76460 - 14.03 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76460)
- CVE-2026-86218 - 12.93 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-86218)
- CVE-2026-83549 - 10.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-83549)
- CVE-2026-83548 - 8.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-83548)
- CVE-2026-85102 - 7.55 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85102)
updated 2026-09-22T20:00:03.713000
1 posts
CVE-2026-79079 CrossWire Xiphos 4.3.2 and below: local attacker can execute arbitrary code via url.cc and menu_popup.c. CVSS 7.8. No patch yet - isolate or update when fixed. https://www.valtersit.com/cve/CVE-2026-79079/ #CVE #infosec #cybersecurity
##updated 2026-09-22T19:41:38.447000
1 posts
CVE-2026-93556: CVSS 9.8. Broken JWT validation in /password/guardarClau/recover lets unauthenticated attackers reset any password, including admin. Patch status unknown. Assume exposed and mitigate now. https://www.valtersit.com/cve/CVE-2026-93556/ #CVE #infosec #cybersecurity
##updated 2026-09-22T19:09:32.273000
1 posts
CVE-2026-89420 ZenHive mpp CVSS 4.3: improper validation lets a client with an open payment channel obtain paid resources without being charged. Patch under review. Monitor and patch when released. https://www.valtersit.com/cve/CVE-2026-89420/ #CVE #infosec #cybersecurity
##updated 2026-09-22T19:09:32.273000
1 posts
CVE-2026-89422: Erlang/OTP ssl TLS 1.3 client auth bypass. Malicious server impersonates any host, no cert required. CVSS 10. Patch under review. Audit your ssl:connect now. https://www.valtersit.com/cve/CVE-2026-89422/ #CVE #infosec #Erlang
##updated 2026-09-22T18:33:29
1 posts
CVE-2026-74765 Net::IDN::Punycode for Perl: out-of-bounds read via integer overflow in encode_punycode lets the digit index escape the 36-entry table. CVSS 6.5. Patch under review - check your deps. https://www.valtersit.com/cve/CVE-2026-74765/ #CVE #infosec #Perl
##updated 2026-09-21T14:17:20.193000
1 posts
2 repos
https://github.com/rifkyards/Container_escape-CVE-2026-80521-CVE-2026-52910
🐧 SIGINT // Ubuntu Watch — 2026-10-01
Public exploit for container-to-host root escape, CVE-2026-80521, patched upstream but not yet shipped in Ubuntu 22.04/24.04/26.04 LTS. If you run containers on Ubuntu hosts, treat this as urgent and watch for the USN, or mitigate with stricter namespace/seccomp policies now.
🔗 https://thehackernews.com/2026/09/exploit-released-for-unpatched-ubuntu.html
##updated 2026-09-21T13:17:10.970000
1 posts
8 repos
https://github.com/atiilla/CVE-2026-85046
https://github.com/SneakyNachos/CVE-2026-87491-and-CVE-2026-85046-the-bagel-fell-off-the-counter
https://github.com/SneakyNachos/CVE-2026-85046-who-put-the-silverback-guerilla-in-the-wasm
https://github.com/HORKimhab/CVE-2026-85046
📈 CVE Published in last 30 days (2026-09-01 - 2026-09-01)
See more at https://secdb.nttzen.cloud/dashboard
Total CVEs:
Severity:
- Critical: 1417
- High: 5956
- Medium: 4625
- Low: 927
- None: 1743
Status:
- : 93
- Analyzed: 3418
- Awaiting Analysis: 2780
- Deferred: 5097
- Modified: 128
- Received: 2835
- Rejected: 130
- Undergoing Analysis: 187
CISA KEVs:
- CISA-2026:0902 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0902)
- CISA-2026:0904 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0904)
- CISA-2026:0908 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0908)
- CISA-2026:0909 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0909)
- CISA-2026:0914 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0914)
- CISA-2026:0911 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0911)
- CISA-2026:0910 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0910)
- CISA-2026:0916 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0916)
- CISA-2026:0918 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0918)
- CISA-2026:0921 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0921)
- CISA-2026:0922 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0922)
- CISA-2026:0924 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0924)
- CISA-2026:0925 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0925)
- CISA-2026:0927 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0927)
- CISA-2026:0929 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0929)
- CISA-2026:0930 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0930)
Top CNAs:
- kernel.org: 2117
- VulnCheck: 1638
- GitHub, Inc.: 1424
- Microsoft Corporation: 1000
- VulDB: 900
- Oracle: 634
- WPScan: 552
- MITRE: 497
- Chrome: 467
- Wordfence: 408
Top Affected Products:
- UNKNOWN: 11109
- Microsoft Windows Server 2025: 648
- Microsoft Windows Server 2022: 611
- Microsoft Windows 11 24h2: 600
- Microsoft Windows 11 26h1: 600
- Microsoft Windows 11 25h2: 599
- Microsoft Windows Server 2019: 586
- Microsoft Windows 10 1809: 582
- Microsoft Windows 11 23h2: 574
- Microsoft Windows 10 21h2: 541
Top EPSS Score:
- CVE-2026-85706 - 91.43 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85706)
- CVE-2026-85046 - 48.88 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85046)
- CVE-2026-76461 - 28.27 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76461)
- CVE-2026-87902 - 19.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-87902)
- CVE-2026-93616 - 19.65 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93616)
- CVE-2026-76460 - 14.03 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76460)
- CVE-2026-86218 - 12.93 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-86218)
- CVE-2026-83549 - 10.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-83549)
- CVE-2026-83548 - 8.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-83548)
- CVE-2026-85102 - 7.55 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85102)
updated 2026-09-18T20:09:01.757000
1 posts
🟠 CVE-2026-103088 - High (7.5)
Handlebars.java before 4.5.5 allows directory traversal. In handlebars-springmvc 4.5.3 and 4.5.4, the path-containment fix for CVE-2026-63490 validates template locations as raw percent-encoded strings, whereas the template file is opened through ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-103088/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-17T18:31:49
1 posts
#Apple released a #security update for #iOS 26, #iPadOS 26, and #macOS 26 to fix a #vulnerability in the #graphicsengine that could be exploited for sophisticated attacks. The bug, CVE-2026-86950, was discovered by Meta and could potentially allow hackers to steal personal data. A separate zero-click bug, CVE-2026-86869, was also fixed, preventing silent data theft via malicious iMessages. https://techcrunch.com/2026/09/29/still-running-ios-26-update-your-iphones-ipads-and-macs-for-this-urgent-security-fix/
##updated 2026-09-17T09:33:03
1 posts
New Local Privilege Escalation on Acer laptops https://www.intrinsec.com/cve-2026-50610-elevation-privileges-acer-nitrosense/
##updated 2026-09-16T21:33:00
1 posts
1 repos
📈 CVE Published in last 30 days (2026-09-01 - 2026-09-01)
See more at https://secdb.nttzen.cloud/dashboard
Total CVEs:
Severity:
- Critical: 1417
- High: 5956
- Medium: 4625
- Low: 927
- None: 1743
Status:
- : 93
- Analyzed: 3418
- Awaiting Analysis: 2780
- Deferred: 5097
- Modified: 128
- Received: 2835
- Rejected: 130
- Undergoing Analysis: 187
CISA KEVs:
- CISA-2026:0902 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0902)
- CISA-2026:0904 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0904)
- CISA-2026:0908 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0908)
- CISA-2026:0909 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0909)
- CISA-2026:0914 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0914)
- CISA-2026:0911 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0911)
- CISA-2026:0910 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0910)
- CISA-2026:0916 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0916)
- CISA-2026:0918 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0918)
- CISA-2026:0921 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0921)
- CISA-2026:0922 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0922)
- CISA-2026:0924 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0924)
- CISA-2026:0925 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0925)
- CISA-2026:0927 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0927)
- CISA-2026:0929 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0929)
- CISA-2026:0930 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0930)
Top CNAs:
- kernel.org: 2117
- VulnCheck: 1638
- GitHub, Inc.: 1424
- Microsoft Corporation: 1000
- VulDB: 900
- Oracle: 634
- WPScan: 552
- MITRE: 497
- Chrome: 467
- Wordfence: 408
Top Affected Products:
- UNKNOWN: 11109
- Microsoft Windows Server 2025: 648
- Microsoft Windows Server 2022: 611
- Microsoft Windows 11 24h2: 600
- Microsoft Windows 11 26h1: 600
- Microsoft Windows 11 25h2: 599
- Microsoft Windows Server 2019: 586
- Microsoft Windows 10 1809: 582
- Microsoft Windows 11 23h2: 574
- Microsoft Windows 10 21h2: 541
Top EPSS Score:
- CVE-2026-85706 - 91.43 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85706)
- CVE-2026-85046 - 48.88 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85046)
- CVE-2026-76461 - 28.27 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76461)
- CVE-2026-87902 - 19.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-87902)
- CVE-2026-93616 - 19.65 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93616)
- CVE-2026-76460 - 14.03 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76460)
- CVE-2026-86218 - 12.93 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-86218)
- CVE-2026-83549 - 10.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-83549)
- CVE-2026-83548 - 8.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-83548)
- CVE-2026-85102 - 7.55 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85102)
updated 2026-09-14T21:32:49
1 posts
4 repos
https://github.com/S3v3n-JG/CVE-2026-76461
https://github.com/HORKimhab/CVE-2026-76461
📈 CVE Published in last 30 days (2026-09-01 - 2026-09-01)
See more at https://secdb.nttzen.cloud/dashboard
Total CVEs:
Severity:
- Critical: 1417
- High: 5956
- Medium: 4625
- Low: 927
- None: 1743
Status:
- : 93
- Analyzed: 3418
- Awaiting Analysis: 2780
- Deferred: 5097
- Modified: 128
- Received: 2835
- Rejected: 130
- Undergoing Analysis: 187
CISA KEVs:
- CISA-2026:0902 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0902)
- CISA-2026:0904 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0904)
- CISA-2026:0908 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0908)
- CISA-2026:0909 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0909)
- CISA-2026:0914 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0914)
- CISA-2026:0911 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0911)
- CISA-2026:0910 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0910)
- CISA-2026:0916 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0916)
- CISA-2026:0918 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0918)
- CISA-2026:0921 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0921)
- CISA-2026:0922 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0922)
- CISA-2026:0924 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0924)
- CISA-2026:0925 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0925)
- CISA-2026:0927 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0927)
- CISA-2026:0929 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0929)
- CISA-2026:0930 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0930)
Top CNAs:
- kernel.org: 2117
- VulnCheck: 1638
- GitHub, Inc.: 1424
- Microsoft Corporation: 1000
- VulDB: 900
- Oracle: 634
- WPScan: 552
- MITRE: 497
- Chrome: 467
- Wordfence: 408
Top Affected Products:
- UNKNOWN: 11109
- Microsoft Windows Server 2025: 648
- Microsoft Windows Server 2022: 611
- Microsoft Windows 11 24h2: 600
- Microsoft Windows 11 26h1: 600
- Microsoft Windows 11 25h2: 599
- Microsoft Windows Server 2019: 586
- Microsoft Windows 10 1809: 582
- Microsoft Windows 11 23h2: 574
- Microsoft Windows 10 21h2: 541
Top EPSS Score:
- CVE-2026-85706 - 91.43 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85706)
- CVE-2026-85046 - 48.88 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85046)
- CVE-2026-76461 - 28.27 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76461)
- CVE-2026-87902 - 19.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-87902)
- CVE-2026-93616 - 19.65 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93616)
- CVE-2026-76460 - 14.03 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76460)
- CVE-2026-86218 - 12.93 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-86218)
- CVE-2026-83549 - 10.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-83549)
- CVE-2026-83548 - 8.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-83548)
- CVE-2026-85102 - 7.55 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85102)
updated 2026-09-14T00:16:56.207000
1 posts
2 repos
eSentire's TRU team shows how a threat actor exploited an internet-facing PaperCut MF server to deploy a Java loader & a web shell. Threat actors subsequently used the web shell to deploy a trojanized Microsoft Copilot binary carrying an AdaptixC2 implant. https://www.esentire.com/blog/papercut-mf-zero-day-intrusion-java-loader-web-shell-and-adaptixc2-via-cve-2026-82078-and-cve-2026-81578?utm_content=buffer77fc6&utm_medium=social&utm_source=twitter&utm_campaign=Buffer
##updated 2026-09-12T12:30:50
1 posts
14 repos
https://github.com/guneykabel/cve-2026-85706
https://github.com/unh00k3d/cve-2026-85706
https://github.com/gabrielunknown/CVE-2026-85706
https://github.com/solivaquaant/CVE-2026-85706
https://github.com/wuyou6956-glitch/cve-2026-85706
https://github.com/ynsmroztas/GitLabSniper
https://github.com/tc4dy/CVE-2026-85706-PoC-Toolkit
https://github.com/EQSTLab/CVE-2026-85706
https://github.com/gagaltotal/CVE-2026-85706-gitlab-poc
https://github.com/plur1bu5/gitread
https://github.com/mhtsec/CVE-2026-85706
https://github.com/0xlyvio/cve-2026-85706-poc-exploit-gitlab
https://github.com/jithinkrishnanrs/gitlab-cve-2026-85706-ioc
📈 CVE Published in last 30 days (2026-09-01 - 2026-09-01)
See more at https://secdb.nttzen.cloud/dashboard
Total CVEs:
Severity:
- Critical: 1417
- High: 5956
- Medium: 4625
- Low: 927
- None: 1743
Status:
- : 93
- Analyzed: 3418
- Awaiting Analysis: 2780
- Deferred: 5097
- Modified: 128
- Received: 2835
- Rejected: 130
- Undergoing Analysis: 187
CISA KEVs:
- CISA-2026:0902 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0902)
- CISA-2026:0904 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0904)
- CISA-2026:0908 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0908)
- CISA-2026:0909 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0909)
- CISA-2026:0914 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0914)
- CISA-2026:0911 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0911)
- CISA-2026:0910 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0910)
- CISA-2026:0916 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0916)
- CISA-2026:0918 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0918)
- CISA-2026:0921 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0921)
- CISA-2026:0922 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0922)
- CISA-2026:0924 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0924)
- CISA-2026:0925 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0925)
- CISA-2026:0927 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0927)
- CISA-2026:0929 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0929)
- CISA-2026:0930 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0930)
Top CNAs:
- kernel.org: 2117
- VulnCheck: 1638
- GitHub, Inc.: 1424
- Microsoft Corporation: 1000
- VulDB: 900
- Oracle: 634
- WPScan: 552
- MITRE: 497
- Chrome: 467
- Wordfence: 408
Top Affected Products:
- UNKNOWN: 11109
- Microsoft Windows Server 2025: 648
- Microsoft Windows Server 2022: 611
- Microsoft Windows 11 24h2: 600
- Microsoft Windows 11 26h1: 600
- Microsoft Windows 11 25h2: 599
- Microsoft Windows Server 2019: 586
- Microsoft Windows 10 1809: 582
- Microsoft Windows 11 23h2: 574
- Microsoft Windows 10 21h2: 541
Top EPSS Score:
- CVE-2026-85706 - 91.43 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85706)
- CVE-2026-85046 - 48.88 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85046)
- CVE-2026-76461 - 28.27 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76461)
- CVE-2026-87902 - 19.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-87902)
- CVE-2026-93616 - 19.65 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93616)
- CVE-2026-76460 - 14.03 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76460)
- CVE-2026-86218 - 12.93 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-86218)
- CVE-2026-83549 - 10.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-83549)
- CVE-2026-83548 - 8.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-83548)
- CVE-2026-85102 - 7.55 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85102)
updated 2026-09-09T05:18:07.237000
1 posts
6 repos
https://github.com/dinosn/cve-2026-75650-magento-validation-lab
https://github.com/fortbridge/stylesmuggler
https://github.com/disrex-group/stylesmuggler-adobe-patches
https://github.com/jithinkrishnanrs/stylesmuggler-ioc-toolkit
https://github.com/abraxas/CVE-2026-75650
https://github.com/disrex-group/stylesmuggler-adobe-patches-mageos
The Magento StyleSmuggler zero-day, CVE-2026-75650, compromised at least 3,834 stores. See how Lockster attacks and how to clean up.
#Magento #StyleSmuggler #AdobeCommerce #ZeroDay #CVE202675650 #Lockster #Skimmer #Ecommerce
##updated 2026-09-08T21:34:09
1 posts
CVE-2026-81963: From a Public CBS Session to SYSTEM Code Execution https://www.coresecurity.com/blog/cve-2026-81963-public-cbs-session-system-code-execution
##updated 2026-09-08T21:33:02
1 posts
3 repos
https://github.com/Udyz/CVE-2026-86218
📈 CVE Published in last 30 days (2026-09-01 - 2026-09-01)
See more at https://secdb.nttzen.cloud/dashboard
Total CVEs:
Severity:
- Critical: 1417
- High: 5956
- Medium: 4625
- Low: 927
- None: 1743
Status:
- : 93
- Analyzed: 3418
- Awaiting Analysis: 2780
- Deferred: 5097
- Modified: 128
- Received: 2835
- Rejected: 130
- Undergoing Analysis: 187
CISA KEVs:
- CISA-2026:0902 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0902)
- CISA-2026:0904 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0904)
- CISA-2026:0908 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0908)
- CISA-2026:0909 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0909)
- CISA-2026:0914 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0914)
- CISA-2026:0911 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0911)
- CISA-2026:0910 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0910)
- CISA-2026:0916 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0916)
- CISA-2026:0918 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0918)
- CISA-2026:0921 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0921)
- CISA-2026:0922 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0922)
- CISA-2026:0924 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0924)
- CISA-2026:0925 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0925)
- CISA-2026:0927 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0927)
- CISA-2026:0929 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0929)
- CISA-2026:0930 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0930)
Top CNAs:
- kernel.org: 2117
- VulnCheck: 1638
- GitHub, Inc.: 1424
- Microsoft Corporation: 1000
- VulDB: 900
- Oracle: 634
- WPScan: 552
- MITRE: 497
- Chrome: 467
- Wordfence: 408
Top Affected Products:
- UNKNOWN: 11109
- Microsoft Windows Server 2025: 648
- Microsoft Windows Server 2022: 611
- Microsoft Windows 11 24h2: 600
- Microsoft Windows 11 26h1: 600
- Microsoft Windows 11 25h2: 599
- Microsoft Windows Server 2019: 586
- Microsoft Windows 10 1809: 582
- Microsoft Windows 11 23h2: 574
- Microsoft Windows 10 21h2: 541
Top EPSS Score:
- CVE-2026-85706 - 91.43 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85706)
- CVE-2026-85046 - 48.88 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85046)
- CVE-2026-76461 - 28.27 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76461)
- CVE-2026-87902 - 19.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-87902)
- CVE-2026-93616 - 19.65 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93616)
- CVE-2026-76460 - 14.03 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76460)
- CVE-2026-86218 - 12.93 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-86218)
- CVE-2026-83549 - 10.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-83549)
- CVE-2026-83548 - 8.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-83548)
- CVE-2026-85102 - 7.55 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85102)
updated 2026-09-08T18:32:08
1 posts
From Select to Sysadmin: Hijacking Microsoft SQL Copilot (CVE-2026-65669)
Microsoft SQL Server Management Studio(SSMS)의 SQL Copilot에서 CVE-2026-65669가 발견됐다. Copilot의 ‘읽기 전용’ 제어가 별도 권한 분리 없이 정규식 기반 차단 목록과 시스템 프롬프트에 의존해, 동적 SQL과 저장 프로시저 호출로 우회되어 임의 T-SQL 실행이 가능했다. 공격자는 데이터베이스 콘텐츠·T-SQL 파일·확장 속성의 AGENTS.md/CONSTITUTION.md에 간접 프롬프트 인젝션을 심어, 나중에 더 높은 권...
https://embracethered.com/blog/posts/2026/from-select-to-sysadmin-sql-copilot-bluehat-asia/
##updated 2026-09-08T17:56:31
1 posts
11 repos
https://github.com/yym8538/CVE-2026-60004
https://github.com/EQSTLab/CVE-2026-60004
https://github.com/imbas007/CVE-2026-60004-POC
https://github.com/HORKimhab/CVE-2026-60004
https://github.com/erberkan/CVE-2026-60004-PoC
https://github.com/shinthink/CVE-2026-60004
https://github.com/HackSpeak/CVE-2026-60004
https://github.com/0xBlackash/CVE-2026-60004
https://github.com/gagaltotal/CVE-2026-60004-poc-gitea
When you find your private Gitea server infected with #XMrigMalware cryptominer through CVE-2026-60004...
Enormous gratitude to https://www.foresh.com/posts/2026-09-15-ai-xmrig/ for writing a very concise analysis and recovery!
updated 2026-09-03T13:06:16.053000
1 posts
3 repos
https://github.com/xoessie/CVE-2026-83548-SonicWall-SMA1000-Analysis
📈 CVE Published in last 30 days (2026-09-01 - 2026-09-01)
See more at https://secdb.nttzen.cloud/dashboard
Total CVEs:
Severity:
- Critical: 1417
- High: 5956
- Medium: 4625
- Low: 927
- None: 1743
Status:
- : 93
- Analyzed: 3418
- Awaiting Analysis: 2780
- Deferred: 5097
- Modified: 128
- Received: 2835
- Rejected: 130
- Undergoing Analysis: 187
CISA KEVs:
- CISA-2026:0902 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0902)
- CISA-2026:0904 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0904)
- CISA-2026:0908 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0908)
- CISA-2026:0909 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0909)
- CISA-2026:0914 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0914)
- CISA-2026:0911 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0911)
- CISA-2026:0910 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0910)
- CISA-2026:0916 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0916)
- CISA-2026:0918 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0918)
- CISA-2026:0921 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0921)
- CISA-2026:0922 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0922)
- CISA-2026:0924 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0924)
- CISA-2026:0925 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0925)
- CISA-2026:0927 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0927)
- CISA-2026:0929 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0929)
- CISA-2026:0930 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0930)
Top CNAs:
- kernel.org: 2117
- VulnCheck: 1638
- GitHub, Inc.: 1424
- Microsoft Corporation: 1000
- VulDB: 900
- Oracle: 634
- WPScan: 552
- MITRE: 497
- Chrome: 467
- Wordfence: 408
Top Affected Products:
- UNKNOWN: 11109
- Microsoft Windows Server 2025: 648
- Microsoft Windows Server 2022: 611
- Microsoft Windows 11 24h2: 600
- Microsoft Windows 11 26h1: 600
- Microsoft Windows 11 25h2: 599
- Microsoft Windows Server 2019: 586
- Microsoft Windows 10 1809: 582
- Microsoft Windows 11 23h2: 574
- Microsoft Windows 10 21h2: 541
Top EPSS Score:
- CVE-2026-85706 - 91.43 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85706)
- CVE-2026-85046 - 48.88 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85046)
- CVE-2026-76461 - 28.27 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76461)
- CVE-2026-87902 - 19.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-87902)
- CVE-2026-93616 - 19.65 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93616)
- CVE-2026-76460 - 14.03 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76460)
- CVE-2026-86218 - 12.93 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-86218)
- CVE-2026-83549 - 10.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-83549)
- CVE-2026-83548 - 8.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-83548)
- CVE-2026-85102 - 7.55 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85102)
updated 2026-09-02T18:32:06
1 posts
2 repos
📈 CVE Published in last 30 days (2026-09-01 - 2026-09-01)
See more at https://secdb.nttzen.cloud/dashboard
Total CVEs:
Severity:
- Critical: 1417
- High: 5956
- Medium: 4625
- Low: 927
- None: 1743
Status:
- : 93
- Analyzed: 3418
- Awaiting Analysis: 2780
- Deferred: 5097
- Modified: 128
- Received: 2835
- Rejected: 130
- Undergoing Analysis: 187
CISA KEVs:
- CISA-2026:0902 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0902)
- CISA-2026:0904 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0904)
- CISA-2026:0908 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0908)
- CISA-2026:0909 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0909)
- CISA-2026:0914 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0914)
- CISA-2026:0911 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0911)
- CISA-2026:0910 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0910)
- CISA-2026:0916 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0916)
- CISA-2026:0918 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0918)
- CISA-2026:0921 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0921)
- CISA-2026:0922 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0922)
- CISA-2026:0924 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0924)
- CISA-2026:0925 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0925)
- CISA-2026:0927 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0927)
- CISA-2026:0929 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0929)
- CISA-2026:0930 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0930)
Top CNAs:
- kernel.org: 2117
- VulnCheck: 1638
- GitHub, Inc.: 1424
- Microsoft Corporation: 1000
- VulDB: 900
- Oracle: 634
- WPScan: 552
- MITRE: 497
- Chrome: 467
- Wordfence: 408
Top Affected Products:
- UNKNOWN: 11109
- Microsoft Windows Server 2025: 648
- Microsoft Windows Server 2022: 611
- Microsoft Windows 11 24h2: 600
- Microsoft Windows 11 26h1: 600
- Microsoft Windows 11 25h2: 599
- Microsoft Windows Server 2019: 586
- Microsoft Windows 10 1809: 582
- Microsoft Windows 11 23h2: 574
- Microsoft Windows 10 21h2: 541
Top EPSS Score:
- CVE-2026-85706 - 91.43 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85706)
- CVE-2026-85046 - 48.88 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85046)
- CVE-2026-76461 - 28.27 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76461)
- CVE-2026-87902 - 19.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-87902)
- CVE-2026-93616 - 19.65 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93616)
- CVE-2026-76460 - 14.03 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76460)
- CVE-2026-86218 - 12.93 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-86218)
- CVE-2026-83549 - 10.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-83549)
- CVE-2026-83548 - 8.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-83548)
- CVE-2026-85102 - 7.55 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85102)
updated 2026-08-31T21:31:56
1 posts
2 repos
eSentire's TRU team shows how a threat actor exploited an internet-facing PaperCut MF server to deploy a Java loader & a web shell. Threat actors subsequently used the web shell to deploy a trojanized Microsoft Copilot binary carrying an AdaptixC2 implant. https://www.esentire.com/blog/papercut-mf-zero-day-intrusion-java-loader-web-shell-and-adaptixc2-via-cve-2026-82078-and-cve-2026-81578?utm_content=buffer77fc6&utm_medium=social&utm_source=twitter&utm_campaign=Buffer
##updated 2026-08-24T13:19:17.577000
3 posts
10 repos
https://github.com/dahnutz/zimbra-cve-2026-73570-ir
https://github.com/HORKimhab/CVE-2026-73570
https://github.com/juanpoch/CVE-2026-73570
https://github.com/BiuTrap/CVE-2026-73570
https://github.com/INFOKOM-KI/Zimbra-CVE-2026-73570-Rules
https://github.com/gabrielunknown/CVE-2026-73570
https://github.com/0xBlackash/CVE-2026-73570
https://github.com/jishino567/CVE-2026-73570
https://fawkes.rocks/2026/10/01/zimbra-cve-2026-73570-exploited-before-public-disclosure/
##New.
Microsoft: Unauthenticated command injection on internet-facing mail servers: tracking CVE-2026-73570 https://www.microsoft.com/en-us/security/blog/2026/09/30/unauthenticated-command-injection-on-internet-facing-mail-servers-tracking-cve-2026-73570/ #Microsoft #threatresearch #infosec #vulnerability
##Zimbra CVE-2026-73570 lets one crafted email run code. Microsoft details the Zimbra command injection attacks: web shells, root access, and key theft.
#Zimbra #CVE202673570 #CommandInjection #WebShell #EmailSecurity #MailServer #Microsoft #CyberSecurity
https://securityonline.info/zimbra-cve-2026-73570-2/?utm_source=mastodon&utm_medium=jetpack_social
##updated 2026-08-17T06:34:07
1 posts
1 repos
No Time to Pwn – Can AI Find and Exploit the Linux Kernel? https://xbow.com/blog/no-time-to-pwn-cve-2026-72018
##updated 2026-06-17T09:23:03.883000
1 posts
🔒 New CSAF advisory published
VDE-2025-081
WAGO: Multiple PLCs and Communication Components are Affected by multiple Vulnerabilities leading to RCE
CVE-2025-41700, CVE-2025-41738, CVE-2025-41739
Multiple WAGO devices are affected by CODESYS Control vulnerabilities. The affected WAGO firmware versions are <4.10.0 (FW32) and <4.10.0 (70).
HTML: https://certvde.com/en/advisories/vde-2025-081
CSAF JSON: https://wago.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2025-081.json
updated 2026-06-17T09:22:59.947000
1 posts
🔒 New CSAF advisory published
VDE-2025-081
WAGO: Multiple PLCs and Communication Components are Affected by multiple Vulnerabilities leading to RCE
CVE-2025-41700, CVE-2025-41738, CVE-2025-41739
Multiple WAGO devices are affected by CODESYS Control vulnerabilities. The affected WAGO firmware versions are <4.10.0 (FW32) and <4.10.0 (70).
HTML: https://certvde.com/en/advisories/vde-2025-081
CSAF JSON: https://wago.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2025-081.json
updated 2026-06-12T18:31:50
1 posts
4 repos
https://github.com/HORKimhab/CVE-2026-35273
https://github.com/0xBlackash/CVE-2026-35273
A ShinyHunters ismét kihasználja a CVE-2026-35273 hibát, web shellt és rendszerszintű hozzáférést szerezve több tucat PeopleSoft-rendszerben. Vannak érintett felsőoktatási, egészségügyi és kormányzati szervek — téged is érinthet, ha nem telepítettétek a javítást? Olvasd el, milyen jeleket keressenek az adminok és miért sürgős a frissítés.
#ShinyHunters #PeopleSoft #CVE2026-35273 #Oracle #Mandiant #cybersecurity #adatbiztonság #webshell #incidentresponse #ITbiztonság
##updated 2025-12-01T12:30:34
1 posts
🔒 New CSAF advisory published
VDE-2025-081
WAGO: Multiple PLCs and Communication Components are Affected by multiple Vulnerabilities leading to RCE
CVE-2025-41700, CVE-2025-41738, CVE-2025-41739
Multiple WAGO devices are affected by CODESYS Control vulnerabilities. The affected WAGO firmware versions are <4.10.0 (FW32) and <4.10.0 (70).
HTML: https://certvde.com/en/advisories/vde-2025-081
CSAF JSON: https://wago.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2025-081.json
updated 2025-10-22T00:32:06
1 posts
10 repos
https://github.com/rabidwh0re/REALITY_SMASHER
https://github.com/dorkerdevil/CVE-2021-21975
https://github.com/GuayoyoCyber/CVE-2021-21975
https://github.com/Henry4E36/VMWare-vRealize-SSRF
https://github.com/zhzyker/vulmap
https://github.com/DarkFunct/exp_hub
https://github.com/Al1ex/CVE-2021-21975
https://github.com/Vulnmachines/VMWare-CVE-2021-21975
🚨 EUVD-2021-9146
📊 Score: 9.8/10 (CVSS v3.1)
📦 Product: VMware vRealize Operations
📅 Published: 2021-03-31 | Updated: 2026-10-01
📝 Server Side Request Forgery in vRealize Operations Manager API (CVE-2021-21975) prior to 8.4 may allow a malicious actor with network access to the vRealize Operations Manager API can perform a Server Side Request Forgery attack to ste...
##Dell System Update flaw CVE-2026-86360 (CVSS 9.6) could let attackers run code as root. Dell fixes five bugs in DSU 2.3.0.0. Patch now.
#Dell #DellSystemUpdate #DSU #CVE202686360 #CVE202686361 #CVE202686362 #PathTraversal
##Dell System Update flaw CVE-2026-86360 (CVSS 9.6) could let attackers run code as root. Dell fixes five bugs in DSU 2.3.0.0. Patch now.
#Dell #DellSystemUpdate #DSU #CVE202686360 #CVE202686361 #CVE202686362 #PathTraversal
##Dell Container Storage Modules vulnerabilities CVE-2026-63688 and CVE-2026-63692 (CVSS 10) allow admin takeover. Upgrade to 1.18.0.
#Dell #ContainerStorageModules #CVE202663688 #CVE202663692 #CVE202667269 #Kubernetes #StorageSecurity
##Dell Container Storage Modules vulnerabilities CVE-2026-63688 and CVE-2026-63692 (CVSS 10) allow admin takeover. Upgrade to 1.18.0.
#Dell #ContainerStorageModules #CVE202663688 #CVE202663692 #CVE202667269 #Kubernetes #StorageSecurity
##Dell Container Storage Modules vulnerabilities CVE-2026-63688 and CVE-2026-63692 (CVSS 10) allow admin takeover. Upgrade to 1.18.0.
#Dell #ContainerStorageModules #CVE202663688 #CVE202663692 #CVE202667269 #Kubernetes #StorageSecurity
##Dell Container Storage Modules vulnerabilities CVE-2026-63688 and CVE-2026-63692 (CVSS 10) allow admin takeover. Upgrade to 1.18.0.
#Dell #ContainerStorageModules #CVE202663688 #CVE202663692 #CVE202667269 #Kubernetes #StorageSecurity
##🔴 CVE-2026-53953 - Critical (9.1)
GetSimple CMS is a content management system (CMS), and GetSimple CMS CE is the community edition of that CMS. In version 3.3.22, the password reset endpoint can be accessed without authentication. When a reset request is submitted for an existing...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-53953/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-53953 - Critical (9.1)
GetSimple CMS is a content management system (CMS), and GetSimple CMS CE is the community edition of that CMS. In version 3.3.22, the password reset endpoint can be accessed without authentication. When a reset request is submitted for an existing...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-53953/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-104020 - High (7.5)
Uncontrolled recursion in the Ion reader in Amazon Ion Python before 0.15.0 might allow a remote unauthenticated actor to crash the application using the library, resulting in a denial of service, via a crafted, deeply nested Ion value.
To reme...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-104020/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-104020 - High (7.5)
Uncontrolled recursion in the Ion reader in Amazon Ion Python before 0.15.0 might allow a remote unauthenticated actor to crash the application using the library, resulting in a denial of service, via a crafted, deeply nested Ion value.
To reme...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-104020/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##4 posts
26 repos
https://github.com/tonydelouvre/CVE-2026-87902
https://github.com/bhideki/CVE-2026-87902
https://github.com/pwnVader/CVE-2026-87902-PoC-pwnVader
https://github.com/abatsakidis/wp-cve-2026-87902-checker
https://github.com/ressl/cve-2026-87902-poc
https://github.com/MRdark-ops/CVE-2026-87902
https://github.com/tc4dy/CVE-2026-87902-Toolkit
https://github.com/crowsec-edtech/CVE-2026-87902
https://github.com/dinosn/cve-2026-87902-wordpress-lfi-lab
https://github.com/zyphorixofficialmain-lab/cve-2026-87902
https://github.com/Maalfer/CVE-2026-87902-exploit
https://github.com/zer0dayf/CVE-2026-87902
https://github.com/langz337/CVE-2026-87902
https://github.com/rwxrwxs/CVE-2026-87902
https://github.com/abraxas/CVE-2026-87902
https://github.com/SVTagan/WP-CVE-2026-87902
https://github.com/rabakuku/CVE-2026-87902-A-working-PoC-for-WordPress-s-critical-path-traversal
https://github.com/ynsmroztas/WPSniper
https://github.com/oliveiralimajr/CVE_2026_87902
https://github.com/vulpecuna/CVE-2026-87902
https://github.com/HackfutSecRoot/CVE-2026-87902
https://github.com/nextco/wordpress-cve-2026-87902
https://github.com/Hassham1/CVE-2026-87902
https://github.com/Lutfifakee-Project/CVE-2026-87902
WordPress Vulnerability Could Let Attackers Execute Code on Vulnerable Websites + Video
WordPress Vulnerability Could Let Attackers Execute Code on Vulnerable Websites A Serious WordPress Security Flaw Is Now Being Exploited A newly disclosed vulnerability in WordPress could allow unauthenticated attackers to execute arbitrary PHP code on vulnerable web servers under certain conditions. The issue, tracked as CVE-2026-87902, affects WordPress versions before 7.1.2 and…
##(CISA TS+SOC) CVE-2026-87902 WORDPRESS CODE REMOTE FILE INCLUSION
Active exploitation of CVE-2026-87902 WordPress requires immediate patch deployment and forensic triage. Review integrated TSUITE + SOC intelligence assets....
##CVE-2026-87902 scored 9.2 out of 10, affected every WordPress version since 2016, and was actively exploited within 24 hours of disclosure — no login required. Most site owners never heard a word about it. That silence is the real vulnerability. Knowing your site runs WordPress is not the same as knowing what is happening to it.
#WordPress #WordPressSecurity #CyberSecurity #SecurityHardening
https://wpguy.uk/blog/cve-2026-87902-the-wordpress-flaw-most-owners-missed/
##📈 CVE Published in last 30 days (2026-09-01 - 2026-09-01)
See more at https://secdb.nttzen.cloud/dashboard
Total CVEs:
Severity:
- Critical: 1417
- High: 5956
- Medium: 4625
- Low: 927
- None: 1743
Status:
- : 93
- Analyzed: 3418
- Awaiting Analysis: 2780
- Deferred: 5097
- Modified: 128
- Received: 2835
- Rejected: 130
- Undergoing Analysis: 187
CISA KEVs:
- CISA-2026:0902 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0902)
- CISA-2026:0904 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0904)
- CISA-2026:0908 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0908)
- CISA-2026:0909 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0909)
- CISA-2026:0914 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0914)
- CISA-2026:0911 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0911)
- CISA-2026:0910 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0910)
- CISA-2026:0916 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0916)
- CISA-2026:0918 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0918)
- CISA-2026:0921 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0921)
- CISA-2026:0922 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0922)
- CISA-2026:0924 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0924)
- CISA-2026:0925 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0925)
- CISA-2026:0927 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0927)
- CISA-2026:0929 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0929)
- CISA-2026:0930 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0930)
Top CNAs:
- kernel.org: 2117
- VulnCheck: 1638
- GitHub, Inc.: 1424
- Microsoft Corporation: 1000
- VulDB: 900
- Oracle: 634
- WPScan: 552
- MITRE: 497
- Chrome: 467
- Wordfence: 408
Top Affected Products:
- UNKNOWN: 11109
- Microsoft Windows Server 2025: 648
- Microsoft Windows Server 2022: 611
- Microsoft Windows 11 24h2: 600
- Microsoft Windows 11 26h1: 600
- Microsoft Windows 11 25h2: 599
- Microsoft Windows Server 2019: 586
- Microsoft Windows 10 1809: 582
- Microsoft Windows 11 23h2: 574
- Microsoft Windows 10 21h2: 541
Top EPSS Score:
- CVE-2026-85706 - 91.43 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85706)
- CVE-2026-85046 - 48.88 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85046)
- CVE-2026-76461 - 28.27 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76461)
- CVE-2026-87902 - 19.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-87902)
- CVE-2026-93616 - 19.65 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93616)
- CVE-2026-76460 - 14.03 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76460)
- CVE-2026-86218 - 12.93 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-86218)
- CVE-2026-83549 - 10.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-83549)
- CVE-2026-83548 - 8.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-83548)
- CVE-2026-85102 - 7.55 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85102)
🔴 CVE-2026-56662 - Critical (9.6)
GetSimple CMS is a content management system (CMS), and GetSimple CMS CE is the community edition of that CMS. Prior to version 1.5, the UpdateCE update form contained no anti-CSRF token, and the POST handler performed no token or request-origin v...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-56662/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-56662 - Critical (9.6)
GetSimple CMS is a content management system (CMS), and GetSimple CMS CE is the community edition of that CMS. Prior to version 1.5, the UpdateCE update form contained no anti-CSRF token, and the POST handler performed no token or request-origin v...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-56662/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-56661 - High (7.5)
GetSimple CMS is a content management system (CMS), and GetSimple CMS CE is the community edition of that CMS. Prior to version 1.5, the update handler fetches a user-supplied URL with file_get_contents() after only format validation (FILTER_VALID...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-56661/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-56661 - High (7.5)
GetSimple CMS is a content management system (CMS), and GetSimple CMS CE is the community edition of that CMS. Prior to version 1.5, the update handler fetches a user-supplied URL with file_get_contents() after only format validation (FILTER_VALID...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-56661/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-56660 - Critical (9.1)
GetSimple CMS is a content management system (CMS), and GetSimple CMS CE is the community edition of that CMS. Prior to version 1.5, the update handler in UpdateCE.php downloads a ZIP archive and extracts its contents into the web root without val...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-56660/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-56660 - Critical (9.1)
GetSimple CMS is a content management system (CMS), and GetSimple CMS CE is the community edition of that CMS. Prior to version 1.5, the update handler in UpdateCE.php downloads a ZIP archive and extracts its contents into the web root without val...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-56660/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##RE: https://mastodon.com.pl/@grono/117361991910931158
Digging a bit into CVE-2026-92543, this one looks bad. A MITM can trivially get #docker to ignore TLS certificate issues when pulling content from a registry, allowing an attacker with control of the network to inject malicious container images to run on the target. Digest pinning and signature verification would prevent this attack.
##RE: https://mastodon.com.pl/@grono/117361991910931158
Digging a bit into CVE-2026-92543, this one looks bad. A MITM can trivially get #docker to ignore TLS certificate issues when pulling content from a registry, allowing an attacker with control of the network to inject malicious container images to run on the target. Digest pinning and signature verification would prevent this attack.
##1 posts
1 repos
https://github.com/4qu4r1um/tugtainer-1.30.2-CVE-2026-55494-and-CVE-2026-62308-to-RCE
🔴 New security advisory:
CVE-2026-55494 affects multiple systems.
• Impact: Remote code execution or complete system compromise possible
• Risk: Attackers can gain full control of affected systems
• Mitigation: Patch immediately or isolate affected systems
Full breakdown:
https://www.yazoul.net/advisory/cve/cve-2026-55494-tugtainer-agent-auth-bypass-no-secret-set-poc
by Yazoul AI
##🔴 CVE-2026-55083 - Critical (9.1)
DHIS2 is a flexible information system for data capture, management, validation, analytics and visualization. From versions 2.42.0 to before 2.42.5.1, and from versions 2.43.0 to before 2.43.0.1, DHIS2 is vulnerable to remote code execution (RCE) ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-55083/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-55083 - Critical (9.1)
DHIS2 is a flexible information system for data capture, management, validation, analytics and visualization. From versions 2.42.0 to before 2.42.5.1, and from versions 2.43.0 to before 2.43.0.1, DHIS2 is vulnerable to remote code execution (RCE) ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-55083/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-68495 - High (7.5)
The CBOR parser in FasterXML jackson-dataformats-binary never invokes StreamReadConstraints.validateNameLength() when decoding JSON object property names, so the maxNameLength limit is not enforced for this format. CBORParser._decodeLongerName() d...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-68495/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-68495 - High (7.5)
The CBOR parser in FasterXML jackson-dataformats-binary never invokes StreamReadConstraints.validateNameLength() when decoding JSON object property names, so the maxNameLength limit is not enforced for this format. CBORParser._decodeLongerName() d...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-68495/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2024-76504 is already being exploited in the wild, so you have entered the failure state before the tutorial even finished loading.
To exit this debuff, upgrade your Cisco Catalyst SD-WAN Manager to a fixed software release immediately — Cisco says so, and frankly the dungeon agrees.
Reward: You've received the Cursed Debuff: Open Admin Panel. It cannot be unequipped until you patch. (2/3)
##CVE-2026-102147: Stored XSS in Kiteworks Core (<9.5.1) rated CRITICAL (CVSS 9.3). Unauth attacker can hijack admin sessions via injected JS — admin takeover risk. No patch yet; restrict access & monitor logs. https://radar.offseq.com/threat/cve-2026-102147-cwe-79-improper-neutralization-of-input-during-web-page-generation-cross-site-de1db64f96a0fee0 #OffSeq #CVE2026102147 #AppSec ⚡️
##CVE-2026-102105: Kiteworks Email Protection Gateway <9.5.0 has a CRITICAL SSRF (CVSS 9.1) letting remote attackers access internal resources. No confirmed patch — review vendor guidance & restrict network access. https://radar.offseq.com/threat/cve-2026-102105-cwe-918-server-side-request-forgery-ssrf-in-kiteworks-email-protection-gateway-24b84c616744b5a3 #OffSeq #SSRF #Infosec #Vuln
##Dell patched critical Dell Terraform Provider vulnerabilities. CVE-2026-91881 exposes BMC traffic to attackers. Upgrade your providers to stay safe.
##Kiteworks vulnerabilities fixed in 9.5.1 include CVE-2026-102115, a 9.8 password reset flaw that enables admin account takeover. Patch now.
#Kiteworks #KiteworksVulnerabilities #CVE2026102115 #CVE2026102149 #CVE2026102147 #EmailSecurity #SSRF #PatchNow
https://securityonline.info/kiteworks-vulnerabilities/?utm_source=mastodon&utm_medium=jetpack_social
##New.
Nvidia security advisories today:
This impacts multiple CVEs: NVIDIA GPU Display Driver - September 2026 https://nvidia.custhelp.com/app/answers/detail/a_id/5861
There's more, posted yesterday https://www.nvidia.com/en-us/product-security/
AMD security bulletin: CVE-2026-43598: RCCL Vulnerability https://www.amd.com/en/resources/product-security/bulletin/amd-sb-6033.html #AMD #infosec #vulnerability #Nvidia
##https://fawkes.rocks/2026/09/30/mikrotik-routeros-cve-2026-84411-enables-pre-auth-root-rce/
##