##
Updated at UTC 2026-09-11T00:28:27.102909
| CVE | CVSS | EPSS | Posts | Repos | Nuclei | Updated | Description |
|---|---|---|---|---|---|---|---|
| CVE-2026-88044 | 9.1 | 0.00% | 2 | 0 | 2026-09-10T22:47:10 | ## Summary `serve/start` accepts protocol options in a per-server `proxyOpt` ob | |
| CVE-2026-88045 | 7.5 | 0.00% | 2 | 0 | 2026-09-10T22:45:14 | ## Summary In streamed multipart mode, `serve s3` passes the request's declared | |
| CVE-2026-87011 | 7.5 | 0.34% | 2 | 0 | 2026-09-10T22:45:10 | ## Summary The OIDC back-channel logout endpoint is unauthenticated by design, | |
| CVE-2026-87958 | 8.1 | 0.00% | 2 | 0 | 2026-09-10T22:17:04.760000 | IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.5 is vulnerable to a deni | |
| CVE-2026-86093 | 7.5 | 0.00% | 2 | 0 | 2026-09-10T22:17:04.620000 | IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.5 could allow an attacker | |
| CVE-2026-84889 | 8.8 | 0.00% | 2 | 0 | 2026-09-10T22:17:04.347000 | IBM Langflow OSS 1.0.0 through 1.10.3 could allow a remote authenticated attacke | |
| CVE-2026-82107 | 9.6 | 0.00% | 2 | 0 | 2026-09-10T22:17:04.220000 | IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated a | |
| CVE-2026-82100 | 9.6 | 0.00% | 2 | 0 | 2026-09-10T22:17:04.090000 | IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated a | |
| CVE-2026-81940 | 8.8 | 0.00% | 2 | 0 | 2026-09-10T22:17:03.083000 | IBM Langflow OSS 1.0.0 through 1.11.5 could allow a remote authenticated attacke | |
| CVE-2026-19646 | 9.1 | 0.00% | 2 | 0 | 2026-09-10T22:16:55.697000 | IBM Common Licensing Agent 9.0, Agent 9.0.0.1, Agent 9.0.0.2, ART 9.0, ART 9.0.0 | |
| CVE-2026-41870 | 8.8 | 0.43% | 1 | 0 | 2026-09-10T21:32:31 | Missing Authorization, Improper Control of Generation of Code ('Code Injection') | |
| CVE-2026-89054 | 8.2 | 0.00% | 2 | 0 | 2026-09-10T21:31:41 | A missing authorization vulnerability in OpenNMS Horizon allows configuration ch | |
| CVE-2026-89086 | 9.1 | 0.00% | 2 | 0 | 2026-09-10T21:31:41 | In the jose package before 0.11.0 for OCaml, library calls to validate an RSA si | |
| CVE-2026-67277 | None | 0.43% | 4 | 0 | 2026-09-10T21:31:20 | RouterOS accepts a "related" btest connection before the corresponding primary s | |
| CVE-2026-87016 | 8.1 | 0.33% | 2 | 0 | 2026-09-10T21:23:26 | ## Summary On SQLite deployments, the lookup that maps an external identity to | |
| CVE-2026-89094 | 9.9 | 0.00% | 2 | 0 | 2026-09-10T21:17:53.160000 | Forgejo before 16.0.4 allows remote code execution via a crafted template reposi | |
| CVE-2026-53932 | 8.0 | 0.91% | 1 | 0 | 2026-09-10T20:41:33.140000 | laravel-backup-restore restores database backups made with spatie/laravel-backup | |
| CVE-2026-86060 | 0 | 0.40% | 4 | 1 | 2026-09-10T20:17:28.953000 | RouterOS contains an argument-handling flaw in the SSH login path involving user | |
| CVE-2026-87794 | 8.4 | 0.19% | 1 | 0 | 2026-09-10T19:58:20.507000 | bestzip versions 2.2.6 and 3.0.2 contain an argument injection vulnerability in | |
| CVE-2026-53939 | 9.1 | 0.20% | 1 | 0 | 2026-09-10T19:57:48.533000 | OpenIDC/cjose is a C library implementing the Javascript Object Signing and Encr | |
| CVE-2026-85704 | 3.7 | 0.27% | 1 | 0 | 2026-09-10T19:17:36.650000 | A security flaw has been discovered in ramon-victor freegpt-webui up to 098db3df | |
| CVE-2026-89046 | 8.2 | 0.00% | 2 | 0 | 2026-09-10T18:33:05 | zstd-jni versions 1.5.5-6 through 1.5.7-13 contain an out-of-bounds read vulnera | |
| CVE-2026-89042 | 9.1 | 0.00% | 2 | 0 | 2026-09-10T18:33:04 | passport-saml-encrypted through 0.1.13 makes SAML signature verification conditi | |
| CVE-2026-85228 | 9.1 | 0.00% | 2 | 0 | 2026-09-10T18:33:04 | An integer overflow in the tensor buffer validation component in Amazon Deep Jav | |
| CVE-2026-87995 | 8.7 | 0.22% | 2 | 0 | 2026-09-10T18:18:11.740000 | Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI plat | |
| CVE-2026-79323 | 7.5 | 0.33% | 1 | 0 | 2026-09-10T17:48:35.100000 | Information disclosure in the blogComments GraphQL query in Magefan Blog GraphQL | |
| CVE-2026-88889 | 7.8 | 0.00% | 2 | 0 | 2026-09-10T16:18:11.693000 | Renovate before 44.14.7 contains a command injection vulnerability in the Maven | |
| CVE-2026-88289 | 7.5 | 0.33% | 2 | 0 | 2026-09-10T16:18:10.657000 | GeoVision GV-LPC2211 V1.14 (260903) fails to validate attacker-controlled variab | |
| CVE-2026-67593 | 9.1 | 0.29% | 2 | 0 | 2026-09-10T16:17:45.273000 | A remote attacker can craft an Openwire RemoveSubscriptionInfo command to cause | |
| CVE-2026-15913 | 7.7 | 0.39% | 2 | 0 | 2026-09-10T15:53:23.707000 | In versions prior to 7.10.2 a path traversal vulnerability in theย /attachRemoteF | |
| CVE-2026-21096 | None | 0.41% | 1 | 0 | 2026-09-10T15:34:15 | Heap-based buffer overflow in JPEG decoder of libimagecodec.quram.so prior to SM | |
| CVE-2026-88890 | 8.5 | 0.00% | 2 | 0 | 2026-09-10T15:33:28 | OpenPanel through commit cd24bb8 contains an SQL injection vulnerability in the | |
| CVE-2026-88887 | 8.6 | 0.00% | 2 | 0 | 2026-09-10T15:33:28 | Renovate is a dependency update automation tool. When listing tags/digests for a | |
| CVE-2026-88891 | 8.3 | 0.00% | 2 | 0 | 2026-09-10T15:33:27 | OpenPanel fails to enforce read-only project access level on 26 of 29 mutating p | |
| CVE-2026-73786 | 7.5 | 0.33% | 1 | 1 | 2026-09-10T15:33:12 | A vulnerability in the web-based management interface of CPPM could allow an una | |
| CVE-2026-85983 | 7.8 | 0.14% | 1 | 0 | 2026-09-10T15:17:50.033000 | The Auth0 AD/LDAP Connector improperly processes a configuration value during se | |
| CVE-2026-82533 | 9.6 | 0.42% | 1 | 0 | 2026-09-10T15:17:47.593000 | DeepSeek Harness before 0.1.2-alpha.1 contains an authentication bypass vulnerab | |
| CVE-2026-6485 | 8.2 | 0.12% | 1 | 0 | 2026-09-10T15:17:39.427000 | UEFI BIOS embedded Shell could be used to bypass Secure Boot via shell commands | |
| CVE-2026-69420 | 7.8 | 0.32% | 1 | 0 | 2026-09-10T15:17:37.937000 | Heap-based buffer overflow in Windows VOLSNAP.SYS allows an authorized attacker | |
| CVE-2026-87996 | 7.7 | 0.21% | 2 | 0 | 2026-09-10T15:10:12 | ## Summary With the Playwright web loader enabled, Open WebUI checks the address | |
| CVE-2026-0307 | 0 | 0.10% | 1 | 0 | 2026-09-10T14:50:07.813000 | Multiple local privilege escalation vulnerabilities in the Palo Alto Networks Gl | |
| CVE-2026-15019 | 7.5 | 0.68% | 2 | 0 | 2026-09-10T14:39:13.757000 | The Direct Download for WooCommerce plugin for WordPress is vulnerable to Direct | |
| CVE-2026-4800 | 8.1 | 2.76% | 2 | 2 | 2026-09-10T13:20:23.210000 | Impact: The fix for CVE-2021-23337 (https://github.com/advisories/GHSA-35jh-r3h | |
| CVE-2026-39821 | 9.6 | 0.69% | 2 | 0 | 2026-09-10T13:19:50.873000 | The ToASCII and ToUnicode functions incorrectly accept Punycode-encoded labels t | |
| CVE-2026-87491 | 8.8 | 0.76% | 13 | 1 | 2026-09-10T12:49:02.630000 | Out of bounds write in V8 in Google Chrome prior to 153.0.8010.36 allowed a remo | |
| CVE-2026-19490 | 9.8 | 6.00% | 2 | 2 | 2026-09-10T12:48:10.453000 | Vulnerability in NetScaler ADC and NetScaler Gateway. This issue affects ADC: f | |
| CVE-2025-25249 | 8.1 | 1.70% | 5 | 0 | 2026-09-10T12:47:59.933000 | A heap-based buffer overflow vulnerability in Fortinet FortiOS 7.6.0 through 7.6 | |
| CVE-2026-78082 | None | 0.49% | 2 | 0 | 2026-09-10T12:31:26 | Joomla Extension - joomshaper.com - Unauthenticated SQL Injection in Property Se | |
| CVE-2026-8323 | 9.3 | 0.25% | 2 | 0 | 2026-09-10T09:31:48 | URL redirection to untrusted site ('open redirect') vulnerability in Armiya Info | |
| CVE-2026-88290 | 7.5 | 0.26% | 2 | 0 | 2026-09-10T09:31:48 | GeoVision GV-LPC2211 V1.14 (260903) allows unauthenticated clients to declare un | |
| CVE-2026-13745 | None | 0.30% | 2 | 0 | 2026-09-10T09:31:37 | A vulnerability in the Gemini CLI and associated GitHub Action allowed an unpriv | |
| CVE-2026-87931 | 9.6 | 0.45% | 2 | 0 | 2026-09-10T06:32:50 | A vulnerability has been found in Behavioral Technology Group Pavlok Behavioral | |
| CVE-2026-0310 | None | 0.34% | 6 | 0 | 2026-09-10T06:31:55 | A buffer overflow vulnerability in the XML processing functionality of Palo Alto | |
| CVE-2026-14873 | 8.0 | 0.24% | 2 | 0 | 2026-09-10T06:31:42 | The Bulk Password Reset plugin for WordPress is vulnerable to privilege escalati | |
| CVE-2026-87628 | 8.3 | 0.17% | 1 | 0 | 2026-09-10T04:18:29.850000 | Use after free in Cast in Google Chrome prior to 153.0.8010.36 allowed an adjace | |
| CVE-2026-69730 | 9.8 | 1.05% | 4 | 0 | 2026-09-10T04:18:14.773000 | Use after free in Windows DNS allows an unauthorized attacker to execute code ov | |
| CVE-2016-7255 | 7.8 | 80.97% | 2 | 5 | 2026-09-10T04:17:32.400000 | The kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 | |
| CVE-2026-19584 | 7.7 | 0.19% | 2 | 0 | 2026-09-10T03:30:27 | Velociraptor allows for the creation of notebook backups in its default enabled | |
| CVE-2026-18351 | 9.8 | 0.77% | 2 | 0 | 2026-09-10T03:30:27 | The Drag and Drop File Upload for Elementor Forms plugin for WordPress is vulner | |
| CVE-2026-19583 | 9.9 | 0.60% | 2 | 0 | 2026-09-10T03:30:26 | Velociraptor allows some sensitive artifacts to be gated by additional permissio | |
| CVE-2026-88069 | None | 0.33% | 2 | 0 | 2026-09-10T00:30:34 | Pandora contains a path traversal vulnerability in its archive extraction worker | |
| CVE-2026-79324 | 7.5 | 0.32% | 1 | 0 | 2026-09-09T21:32:03 | Missing authorization in the Address Delete controller in Mageplaza GDPR for Mag | |
| CVE-2026-79322 | 8.6 | 0.28% | 2 | 0 | 2026-09-09T21:31:56 | SQL injection in the RelatedProduct block in Mageplaza Blog for Magento 2 (magep | |
| CVE-2026-20079 | 10.0 | 74.70% | 21 | 2 | 2026-09-09T21:31:33 | A vulnerability in the web interface of Cisco Secure Firewall Management Center | |
| CVE-2026-12855 | 8.2 | 0.12% | 1 | 0 | 2026-09-09T21:17:01.313000 | Unvalidated memory boundary could result in arbitrary code execution. The vulner | |
| CVE-2026-85061 | 10.0 | 0.31% | 1 | 0 | 2026-09-09T21:09:13.080000 | MapLibre GL JS is an interactive vector tile map library for web browsers. Prior | |
| CVE-2026-87874 | 8.1 | 0.43% | 1 | 0 | 2026-09-09T20:13:26.720000 | A flaw was found in the memcached cache plugin of the community.general Ansible | |
| CVE-2026-17469 | 5.3 | 0.21% | 2 | 0 | 2026-09-09T18:32:16 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local authenticated attacker to cause | |
| CVE-2026-87929 | 9.8 | 0.29% | 2 | 0 | 2026-09-09T18:32:12 | MaxSite CMS through 109.6 ships with a hardcoded session encryption key in appli | |
| CVE-2026-87927 | 8.2 | 0.34% | 1 | 0 | 2026-09-09T18:32:12 | MaxSite CMS through 109.6 contains a local file inclusion vulnerability in the a | |
| CVE-2026-67401 | 9.9 | 0.96% | 3 | 3 | 2026-09-09T18:32:06 | A vulnerability in cPanel allows a mail-enabled account to achieve remote code e | |
| CVE-2026-83970 | 7.8 | 0.31% | 1 | 0 | 2026-09-09T17:17:48.473000 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att | |
| CVE-2026-85103 | 9.8 | 0.36% | 7 | 0 | 2026-09-09T15:35:15 | A heap-based buffer overflow in VPN certificate ASN.1 decoding may allow an unau | |
| CVE-2026-85102 | 9.8 | 0.33% | 5 | 0 | 2026-09-09T15:35:15 | Improper certificate trust validation during VPN negotiation in Check Point Quan | |
| CVE-2026-81953 | 7.8 | 0.43% | 1 | 0 | 2026-09-09T15:03:00.630000 | Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized att | |
| CVE-2026-80172 | 9.8 | 0.27% | 1 | 0 | 2026-09-09T12:32:22 | Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application | |
| CVE-2026-79641 | 7.5 | 0.67% | 1 | 0 | 2026-09-09T12:32:21 | Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application | |
| CVE-2026-87795 | 8.2 | 0.34% | 1 | 0 | 2026-09-09T12:32:12 | zstd-jni versions before 1.5.7-14 fail to validate offset and length parameters | |
| CVE-2026-79696 | None | 0.44% | 1 | 0 | 2026-09-09T09:33:06 | A Code Injection vulnerability in adk web in Google Cloud Agent Development Kit | |
| CVE-2026-16272 | 9.1 | 0.14% | 1 | 0 | 2026-09-09T09:33:00 | Use of less trusted source vulnerability in PayTR Payment and Electronic Money I | |
| CVE-2026-76009 | 8.1 | 0.52% | 2 | 0 | 2026-09-09T06:31:48 | The Next-Cart Store to WooCommerce Migration plugin for WordPress is vulnerable | |
| CVE-2026-87734 | 7.5 | 0.29% | 1 | 0 | 2026-09-09T06:31:40 | An issue was discovered in the utcp package before 0.0.6 for OCaml. Out-of-order | |
| CVE-2026-15667 | 7.5 | 0.56% | 1 | 0 | 2026-09-09T03:30:51 | The Eventin โ Event Calendar, Event Registration, Tickets & Booking (AI Powered) | |
| CVE-2026-81994 | 8.2 | 0.30% | 1 | 0 | 2026-09-08T21:34:41 | Acrobat Reader is affected by an Improperly Controlled Modification of Object Pr | |
| CVE-2026-84869 | 9.9 | 0.38% | 3 | 0 | 2026-09-08T21:34:37 | A condition in the ScreenConnect client may allow files to be transferred and ex | |
| CVE-2026-84942 | 8.7 | 0.33% | 1 | 0 | 2026-09-08T21:34:37 | Improper input validation in the Vega expression function implementation in Open | |
| CVE-2026-82007 | 7.8 | 0.23% | 1 | 0 | 2026-09-08T21:34:36 | Photoshop Desktop is affected by an Integer Overflow or Wraparound vulnerability | |
| CVE-2026-85880 | 7.8 | 0.57% | 9 | 0 | 2026-09-08T21:34:12 | Heap-based buffer overflow in Windows ALPC allows an authorized attacker to elev | |
| CVE-2026-81963 | 7.8 | 0.63% | 9 | 0 | 2026-09-08T21:34:09 | Improper link resolution before file access ('link following') in Windows Update | |
| CVE-2026-75650 | 10.0 | 2.15% | 11 | 4 | 2026-09-08T21:33:09 | Adobe Commerce is affected by an Improper Neutralization of Special Elements Use | |
| CVE-2026-86218 | 9.8 | 0.74% | 12 | 1 | 2026-09-08T21:33:02 | N-central is vulnerable to a pre-auth remote code execution This issue affects N | |
| CVE-2026-57162 | 0 | 0.35% | 1 | 0 | 2026-09-08T21:14:35.567000 | PJSIP is a free and open source multimedia communication library written in C. P | |
| CVE-2026-84372 | 9.8 | 0.41% | 1 | 0 | 2026-09-08T20:57:52 | ### Summary An improper CRLF neutralization flaw in Predis' pipeline handling o | |
| CVE-2026-86721 | 7.5 | 0.29% | 1 | 0 | 2026-09-08T19:53:13.400000 | AVideo through commit c3edcc274c contains an authorization bypass vulnerability | |
| CVE-2026-86730 | 8.8 | 0.39% | 1 | 0 | 2026-09-08T19:53:13.400000 | Craft CMS versions before 5.10.12 fail to properly cleanse string-typed field-la | |
| CVE-2026-44756 | 10.0 | 0.32% | 5 | 0 | 2026-09-08T19:12:59.557000 | A memory safety vulnerability exists in the Extended Passport Protocol (EPP) pro | |
| CVE-2026-83972 | 7.8 | 0.31% | 1 | 0 | 2026-09-08T18:34:21 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att | |
| CVE-2026-81954 | 7.8 | 0.32% | 1 | 0 | 2026-09-08T18:34:18 | Use after free in Microsoft Office Excel allows an unauthorized attacker to exec | |
| CVE-2026-83991 | 5.5 | 0.34% | 1 | 2 | 2026-09-08T18:34:14 | Missing authentication for critical function in Windows Cloud Files Mini Filter | |
| CVE-2026-80081 | 8.8 | 0.47% | 1 | 0 | 2026-09-08T18:34:00 | Use after free in Microsoft Office PowerPoint allows an unauthorized attacker to | |
| CVE-2026-69829 | 9.8 | 1.05% | 1 | 0 | 2026-09-08T18:33:17 | Heap-based buffer overflow in Windows Shell allows an unauthorized attacker to e | |
| CVE-2026-20293 | 7.1 | 0.13% | 2 | 0 | 2026-09-08T18:32:05 | A vulnerability in the Unified Extensible Firmware Interface (UEFI) Shell implem | |
| CVE-2026-82067 | 8.1 | 0.28% | 2 | 0 | 2026-09-08T18:32:04 | Improper handling of case sensitivity in the configuration validation component | |
| CVE-2026-86738 | 8.7 | 0.27% | 1 | 0 | 2026-09-08T18:32:01 | Snipe-IT versions before 8.7.0 contain a CSS injection vulnerability in the Cust | |
| CVE-2026-86728 | 7.5 | 0.32% | 1 | 0 | 2026-09-08T18:32:00 | AVideo through 29.0 contains an authentication bypass vulnerability in plugin/Pl | |
| CVE-2026-86727 | 7.5 | 0.31% | 1 | 0 | 2026-09-08T18:31:59 | AVideo through 29.0 contains an information disclosure vulnerability in plugin/L | |
| CVE-2026-86732 | 8.8 | 0.51% | 1 | 0 | 2026-09-08T18:31:59 | Craft CMS versions before 5.10.12 contain a remote code execution vulnerability | |
| CVE-2026-26084 | 9.9 | 0.24% | 1 | 0 | 2026-09-08T18:31:56 | A improper access control vulnerability in Fortinet FortiSandbox 5.0.0 through 5 | |
| CVE-2025-20701 | 8.8 | 7.77% | 1 | 2 | 2026-09-08T18:31:36 | In the Airoha Bluetooth audio SDK, there is a possible way to pair Bluetooth aud | |
| CVE-2026-33197 | 0 | 0.12% | 2 | 0 | 2026-09-08T16:18:08.077000 | AMI APTIOV contains a vulnerability in BIOS where a privileged user may cause th | |
| CVE-2026-31431 | 7.8 | 99.91% | 1 | 100 | 2026-09-08T15:13:07.273000 | In the Linux kernel, the following vulnerability has been resolved: crypto: alg | |
| CVE-2026-85012 | 8.0 | 1.06% | 2 | 0 | 2026-09-08T14:00:33.017000 | Improper neutralization of special elements used in an OS command (CWE-78) in th | |
| CVE-2026-78234 | 9.9 | 0.21% | 1 | 0 | 2026-09-08T12:31:35 | A flaw was found in hawtio-operator. The operator reads the OpenShift Service CA | |
| CVE-2026-50093 | 9.0 | 0.19% | 1 | 0 | 2026-09-08T09:35:45 | A vulnerability has been identified in Siveillance Control Pro V3.0 (All version | |
| CVE-2026-18963 | 9.1 | 3.18% | 1 | 15 | 2026-09-08T09:17:43.063000 | A flaw was found in the reset-credentials flow of the keycloak-services componen | |
| CVE-2026-86206 | None | 0.68% | 2 | 0 | 2026-09-05T21:31:26 | A vulnerability in the N-central internal API access control filter allows unaut | |
| CVE-2026-67276 | None | 0.24% | 1 | 4 | 2026-09-05T21:31:20 | RouterOS does not compare the complete RSA public key when matching an SSH authe | |
| CVE-2026-86207 | None | 0.73% | 2 | 0 | 2026-09-05T21:31:20 | An authentication bypass in N-central < 2026.3 HF 3 leads to authentication bypa | |
| CVE-2026-86090 | 7.1 | 0.25% | 1 | 0 | 2026-09-05T00:31:10 | ntopng before 6.7.260717 fails to perform authorization checks in the delete end | |
| CVE-2026-80119 | 7.8 | 0.12% | 1 | 0 | 2026-09-04T21:31:59 | PassMark PerformanceTest before 11.1 build 1012, BurnInTest before 11.1 build 10 | |
| CVE-2026-80905 | None | 0.15% | 1 | 0 | 2026-09-04T18:31:46 | In the Linux kernel, the following vulnerability has been resolved: net: tap: f | |
| CVE-2026-9317 | 8.1 | 0.68% | 1 | 0 | 2026-09-04T18:31:46 | Nango before 0.71.6 contains a missing authentication vulnerability in the runne | |
| CVE-2026-80874 | None | 0.14% | 1 | 0 | 2026-09-04T18:31:40 | In the Linux kernel, the following vulnerability has been resolved: arm64: dts: | |
| CVE-2026-17255 | 4.3 | 0.40% | 1 | 0 | 2026-09-04T18:31:40 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of | |
| CVE-2026-80872 | None | 0.15% | 1 | 0 | 2026-09-04T18:31:40 | In the Linux kernel, the following vulnerability has been resolved: ALSA: hda/t | |
| CVE-2026-17440 | 5.5 | 0.10% | 1 | 0 | 2026-09-04T18:31:40 | IBM App Connect Enterprise 13.0.1.0 through 13.0.8.1, and 12.0.1.0 through 12.0. | |
| CVE-2026-17057 | 6.5 | 0.38% | 1 | 0 | 2026-09-04T18:31:40 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of | |
| CVE-2026-16660 | 5.3 | 0.36% | 1 | 0 | 2026-09-04T18:31:39 | IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to cause a | |
| CVE-2026-75754 | None | 0.21% | 1 | 0 | 2026-09-04T03:31:07 | Missing Authentication for Critical Function, Server-Side Request Forgery (SSRF) | |
| CVE-2026-20355 | 5.9 | 0.15% | 1 | 0 | 2026-09-02T19:23:13.660000 | Multiple vulnerabilities in the Secure/Multipurpose Internet Mail Extensions (S/ | |
| CVE-2026-20354 | 5.9 | 0.15% | 1 | 0 | 2026-09-02T18:32:31 | Multiple vulnerabilities in the Secure/Multipurpose Internet Mail Extensions (S/ | |
| CVE-2026-20212 | 9.8 | 0.53% | 1 | 1 | 2026-09-02T18:32:26 | A vulnerability in the Silicon One integration for Cisco Nexus 9000 Series Switc | |
| CVE-2026-83548 | 10.0 | 4.67% | 1 | 3 | 2026-09-02T18:32:06 | A Pre-authentication SSRF vulnerability exists in the SMA1000 Appliance Work Pla | |
| CVE-2026-81578 | 9.8 | 1.62% | 4 | 2 | 2026-09-01T04:18:01.990000 | An improper access control vulnerability exists in the web management interface | |
| CVE-2026-82078 | 9.1 | 1.69% | 4 | 2 | 2026-08-31T21:31:56 | An unsafe dynamic class loading vulnerability exists in the database connection | |
| CVE-2026-77237 | 6.5 | 0.13% | 2 | 0 | 2026-08-25T16:44:12.343000 | Missing queue-set type validation in xQueueAddToSet() in the FreeRTOS-Kernel bef | |
| CVE-2026-69836 | 10.0 | 1.55% | 1 | 2 | 2026-08-25T16:08:43.290000 | Deserialization of untrusted data in Microsoft Entra ID allows an unauthorized a | |
| CVE-2026-69414 | 7.8 | 0.56% | 6 | 2 | 2026-08-19T18:32:28 | Microsoft is aware of an elevation of privilege in the Microsoft Malware Protect | |
| CVE-2026-68820 | 7.0 | 6.18% | 1 | 4 | 2026-08-16T19:17:24.183000 | Use after free in Windows Ancillary Function Driver for WinSock allows an author | |
| CVE-2026-19311 | 8.1 | 0.41% | 2 | 0 | 2026-08-12T21:31:44 | Missing authorization in the Execute Monitor API in Amazon OpenSearch Alerting p | |
| CVE-2025-14733 | 9.8 | 26.51% | 9 | 1 | 2026-08-10T21:33:00 | An Out-of-bounds Write vulnerability in WatchGuard Fireware OS may allow a remot | |
| CVE-2026-20316 | 5.3 | 11.15% | 7 | 0 | 2026-08-01T05:16:55.973000 | A vulnerability in the web interface of Cisco Secure Firewall Management Center | |
| CVE-2026-15409 | 10.0 | 83.66% | 2 | 6 | 2026-07-14T21:32:22 | A Server-side request forgery (SSRF) vulnerability has been identified in the SM | |
| CVE-2026-52774 | 6.1 | 0.51% | 1 | 1 | 2026-07-09T21:01:12 | ### Summary YesWiki's Bazar widget handler reflects the `id` `GET` parameter int | |
| CVE-2026-11387 | 9.8 | 2.21% | 2 | 2 | 2026-07-01T09:30:33 | The SMS Alert โ SMS & OTP for WooCommerce, Order Notifications & Abandoned Cart | |
| CVE-2026-43502 | 7.8 | 0.12% | 2 | 1 | 2026-06-01T18:31:32 | In the Linux kernel, the following vulnerability has been resolved: net/rds: ha | |
| CVE-2026-8510 | 7.5 | 0.21% | 1 | 0 | 2026-05-15T00:31:36 | Integer overflow in Skia in Google Chrome on Windows prior to 148.0.7778.168 all | |
| CVE-2026-33671 | 7.5 | 0.40% | 2 | 1 | 2026-03-27T21:36:14 | ### Impact `picomatch` is vulnerable to Regular Expression Denial of Service (Re | |
| CVE-2026-33186 | 9.1 | 1.56% | 2 | 1 | 2026-03-25T18:12:09 | ### Impact _What kind of vulnerability is it? Who is impacted?_ It is an **Auth | |
| CVE-2026-0915 | 7.5 | 0.59% | 2 | 1 | 2026-01-20T18:31:56 | Calling getnetbyaddr or getnetbyaddr_r with a configured nsswitch.conf that spec | |
| CVE-2019-0859 | 7.8 | 4.15% | 2 | 1 | 2025-10-22T00:32:43 | An elevation of privilege vulnerability exists in Windows when the Win32k compon | |
| CVE-2022-41352 | 9.8 | 95.48% | 2 | 4 | 2025-10-22T00:32:37 | An issue was discovered in Zimbra Collaboration (ZCS) 8.8.15 and 9.0. An attacke | |
| CVE-2025-2524 | 4.8 | 0.30% | 1 | 0 | 2025-06-17T21:31:59 | The Ninja Forms WordPress plugin before 3.10.1 does not sanitise and escape som | |
| CVE-2026-89049 | 0 | 0.00% | 4 | 0 | N/A | ||
| CVE-2026-88052 | 0 | 0.00% | 2 | 0 | N/A | ||
| CVE-2026-72898 | 0 | 94.22% | 2 | 8 | N/A | ||
| CVE-2026-73453 | 0 | 0.00% | 1 | 0 | N/A | ||
| CVE-2026-84388 | 0 | 0.00% | 2 | 0 | N/A | ||
| CVE-2026-84390 | 0 | 0.00% | 3 | 0 | N/A | ||
| CVE-2026-87911 | 0 | 0.99% | 3 | 0 | N/A | ||
| CVE-2026-85786 | 0 | 0.33% | 1 | 0 | N/A | ||
| CVE-2026-75936 | 0 | 0.44% | 1 | 0 | N/A | ||
| CVE-2026-77234 | 0 | 0.12% | 2 | 0 | N/A | ||
| CVE-2026-77236 | 0 | 0.11% | 2 | 0 | N/A | ||
| CVE-2026-77235 | 0 | 0.11% | 2 | 0 | N/A | ||
| CVE-2026-54694 | 0 | 0.28% | 1 | 0 | N/A | ||
| CVE-2026-85982 | 0 | 0.22% | 1 | 0 | N/A | ||
| CVE-2026-85083 | 0 | 0.00% | 1 | 0 | N/A | ||
| CVE-2026-53938 | 0 | 0.24% | 1 | 0 | N/A | ||
| CVE-2026-53581 | 0 | 0.33% | 2 | 0 | N/A |
updated 2026-09-10T22:47:10
2 posts
๐ด CVE-2026-88044 - Critical (9.1)
rclone is a command-line program to sync files and directories to and from different cloud storage providers. From 1.70.0 until 1.75.1, the serve/start RC interface accepts per-server proxyOpt.AuthProxy settings, and the FTP and S3 constructors in...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-88044/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ด CVE-2026-88044 - Critical (9.1)
rclone is a command-line program to sync files and directories to and from different cloud storage providers. From 1.70.0 until 1.75.1, the serve/start RC interface accepts per-server proxyOpt.AuthProxy settings, and the FTP and S3 constructors in...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-88044/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-10T22:45:14
2 posts
๐ CVE-2026-88045 - High (7.5)
rclone is a command-line program to sync files and directories to and from different cloud storage providers. From 1.75.0 until 1.75.1, the serve S3 streamed multipart path in cmd/serve/s3/multipart.go passes attacker-controlled contentLength to m...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-88045/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-88045 - High (7.5)
rclone is a command-line program to sync files and directories to and from different cloud storage providers. From 1.75.0 until 1.75.1, the serve S3 streamed multipart path in cmd/serve/s3/multipart.go passes attacker-controlled contentLength to m...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-88045/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-10T22:45:10
2 posts
๐ CVE-2026-87011 - High (7.5)
Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.9.0 until 0.11.1, the unauthenticated POST /oauth/backchannel-logout handler in backend/open_webui/utils/oauth.py fetched the OIDC discovery document and ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-87011/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-87011 - High (7.5)
Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.9.0 until 0.11.1, the unauthenticated POST /oauth/backchannel-logout handler in backend/open_webui/utils/oauth.py fetched the OIDC discovery document and ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-87011/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-10T22:17:04.760000
2 posts
๐ CVE-2026-87958 - High (8.1)
IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.5 is vulnerable to a denial of service where a specific functionality on a Db2 server can be disabled by a privileged user under certain conditions.
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-87958/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-87958 - High (8.1)
IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.5 is vulnerable to a denial of service where a specific functionality on a Db2 server can be disabled by a privileged user under certain conditions.
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-87958/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-10T22:17:04.620000
2 posts
๐ CVE-2026-86093 - High (7.5)
IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.5 could allow an attacker with the ability to control or impersonate a DRDA server endpoint to execute arbitrary commands on Db2 clients due to a stack-based buffer overflow that improperly co...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-86093/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-86093 - High (7.5)
IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.5 could allow an attacker with the ability to control or impersonate a DRDA server endpoint to execute arbitrary commands on Db2 clients due to a stack-based buffer overflow that improperly co...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-86093/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-10T22:17:04.347000
2 posts
๐ CVE-2026-84889 - High (8.8)
IBM Langflow OSS 1.0.0 through 1.10.3 could allow a remote authenticated attacker to execute arbitrary code due to improper limitation of a pathname to a restricted directory.
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-84889/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-84889 - High (8.8)
IBM Langflow OSS 1.0.0 through 1.10.3 could allow a remote authenticated attacker to execute arbitrary code due to improper limitation of a pathname to a restricted directory.
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-84889/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-10T22:17:04.220000
2 posts
๐ด CVE-2026-82107 - Critical (9.6)
IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to obtain sensitive information and bypass security restrictions due to improper authentication.
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-82107/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ด CVE-2026-82107 - Critical (9.6)
IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to obtain sensitive information and bypass security restrictions due to improper authentication.
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-82107/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-10T22:17:04.090000
2 posts
๐ด CVE-2026-82100 - Critical (9.6)
IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to cause a denial of service due to a path traversal vulnerability.
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-82100/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ด CVE-2026-82100 - Critical (9.6)
IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to cause a denial of service due to a path traversal vulnerability.
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-82100/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-10T22:17:03.083000
2 posts
๐ CVE-2026-81940 - High (8.8)
IBM Langflow OSS 1.0.0 through 1.11.5 could allow a remote authenticated attacker to execute arbitrary code due to improper neutralization of special characters in flow display names.
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-81940/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-81940 - High (8.8)
IBM Langflow OSS 1.0.0 through 1.11.5 could allow a remote authenticated attacker to execute arbitrary code due to improper neutralization of special characters in flow display names.
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-81940/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-10T22:16:55.697000
2 posts
CVE-2026-19646 (CRITICAL, CVSS 9.1) affects IBM Common Licensing 9.0.x & ART 9.0. Improper Host header validation enables remote redirection to attacker domains. No patch yet โ monitor IBM guidance. https://radar.offseq.com/threat/cve-2026-19646-cwe-1149-sei-cert-oracle-secure-coding-standard-for-java-guidelines-15-platform-9a01f253f72c9218 #OffSeq #Vuln #IBM #InfoSec
##CVE-2026-19646 (CRITICAL, CVSS 9.1) affects IBM Common Licensing 9.0.x & ART 9.0. Improper Host header validation enables remote redirection to attacker domains. No patch yet โ monitor IBM guidance. https://radar.offseq.com/threat/cve-2026-19646-cwe-1149-sei-cert-oracle-secure-coding-standard-for-java-guidelines-15-platform-9a01f253f72c9218 #OffSeq #Vuln #IBM #InfoSec
##updated 2026-09-10T21:32:31
1 posts
Apache Nutch vulnerabilities include CVE-2026-41870, an unauthenticated remote code execution flaw. See affected versions and fixes.
#ApacheNutch #RCE #CVE #Vulnerability #InfoSec #WebCrawler #CyberSecurity #PatchNow
##updated 2026-09-10T21:31:41
2 posts
๐ CVE-2026-89054 - High (8.2)
A missing authorization vulnerability in OpenNMS Horizon allows configuration changes without authentication. The Spring Security policy for the /api/v2 REST API defines authorization rules for every HTTP method except PATCH, so the shipped @patch...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-89054/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-89054 - High (8.2)
A missing authorization vulnerability in OpenNMS Horizon allows configuration changes without authentication. The Spring Security policy for the /api/v2 REST API defines authorization rules for every HTTP method except PATCH, so the shipped @patch...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-89054/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-10T21:31:41
2 posts
๐ด CVE-2026-89086 - Critical (9.1)
In the jose package before 0.11.0 for OCaml, library calls to validate an RSA signature only confirm that PKCS #1 decoding succeeds, and proceed to declare the signature valid without the required steps that involve the public key.
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-89086/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ด CVE-2026-89086 - Critical (9.1)
In the jose package before 0.11.0 for OCaml, library calls to validate an RSA signature only confirm that PKCS #1 decoding succeeds, and proceed to declare the signature valid without the required steps that involve the public key.
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-89086/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-10T21:31:20
4 posts
๐จ [CISA-2026:0910] CISA Adds 2 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0910)
CISA has added 2 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
โ ๏ธ CVE-2026-67277 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-67277)
- Name: MikroTik RouterOS Missing Authentication for Critical Function Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: MikroTik
- Product: RouterOS
- Notes: https://mikrotik.com/supportsec/september-2026-vulnerability/ ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-67277
โ ๏ธ CVE-2026-86060 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-86060)
- Name: MikroTik RouterOS Improper Neutralization of Argument Delimiters in a Command Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: MikroTik
- Product: RouterOS
- Notes: ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-86060
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260910 #cisa20260910 #cve_2026_67277 #cve_2026_86060 #cve202667277 #cve202686060
##CVE ID: CVE-2026-67277
Vendor: MikroTik
Product: RouterOS
Date Added: 2026-09-10
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-67277
๐จ [CISA-2026:0910] CISA Adds 2 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0910)
CISA has added 2 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
โ ๏ธ CVE-2026-67277 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-67277)
- Name: MikroTik RouterOS Missing Authentication for Critical Function Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: MikroTik
- Product: RouterOS
- Notes: https://mikrotik.com/supportsec/september-2026-vulnerability/ ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-67277
โ ๏ธ CVE-2026-86060 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-86060)
- Name: MikroTik RouterOS Improper Neutralization of Argument Delimiters in a Command Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: MikroTik
- Product: RouterOS
- Notes: ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-86060
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260910 #cisa20260910 #cve_2026_67277 #cve_2026_86060 #cve202667277 #cve202686060
##CVE ID: CVE-2026-67277
Vendor: MikroTik
Product: RouterOS
Date Added: 2026-09-10
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-67277
updated 2026-09-10T21:23:26
2 posts
๐ CVE-2026-87016 - High (8.1)
Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.6.41 until 0.11.1, get_user_by_oauth_sub and get_user_by_scim_external_id in backend/open_webui/models/users.py used JSON contains matching that compiled ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-87016/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-87016 - High (8.1)
Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.6.41 until 0.11.1, get_user_by_oauth_sub and get_user_by_scim_external_id in backend/open_webui/models/users.py used JSON contains matching that compiled ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-87016/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-10T21:17:53.160000
2 posts
RE: https://infosec.exchange/@cR0w/117247864965166656
CVE for this one:
https://nvd.nist.gov/vuln/detail/cve-2026-89094
sev:CRIT 9.9 - CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
##Forgejo before 16.0.4 allows remote code execution via a crafted template repository because template expansion on files in .forgejo/template is mishandled.
RE: https://infosec.exchange/@cR0w/117247864965166656
CVE for this one:
https://nvd.nist.gov/vuln/detail/cve-2026-89094
sev:CRIT 9.9 - CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
##Forgejo before 16.0.4 allows remote code execution via a crafted template repository because template expansion on files in .forgejo/template is mishandled.
updated 2026-09-10T20:41:33.140000
1 posts
CVE-2026-53932: OS command injection in laravel-backup-restore via crafted backup archives. CVSS 8. Unpatched before v1.9.4. If you restore Spatie backups, update now. Details: https://www.valtersit.com/cve/CVE-2026-53932/ #CVE #infosec #Laravel
##updated 2026-09-10T20:17:28.953000
4 posts
1 repos
๐จ [CISA-2026:0910] CISA Adds 2 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0910)
CISA has added 2 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
โ ๏ธ CVE-2026-67277 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-67277)
- Name: MikroTik RouterOS Missing Authentication for Critical Function Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: MikroTik
- Product: RouterOS
- Notes: https://mikrotik.com/supportsec/september-2026-vulnerability/ ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-67277
โ ๏ธ CVE-2026-86060 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-86060)
- Name: MikroTik RouterOS Improper Neutralization of Argument Delimiters in a Command Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: MikroTik
- Product: RouterOS
- Notes: ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-86060
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260910 #cisa20260910 #cve_2026_67277 #cve_2026_86060 #cve202667277 #cve202686060
##CVE ID: CVE-2026-86060
Vendor: MikroTik
Product: RouterOS
Date Added: 2026-09-10
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-86060
๐จ [CISA-2026:0910] CISA Adds 2 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0910)
CISA has added 2 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
โ ๏ธ CVE-2026-67277 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-67277)
- Name: MikroTik RouterOS Missing Authentication for Critical Function Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: MikroTik
- Product: RouterOS
- Notes: https://mikrotik.com/supportsec/september-2026-vulnerability/ ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-67277
โ ๏ธ CVE-2026-86060 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-86060)
- Name: MikroTik RouterOS Improper Neutralization of Argument Delimiters in a Command Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: MikroTik
- Product: RouterOS
- Notes: ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-86060
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260910 #cisa20260910 #cve_2026_67277 #cve_2026_86060 #cve202667277 #cve202686060
##CVE ID: CVE-2026-86060
Vendor: MikroTik
Product: RouterOS
Date Added: 2026-09-10
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-86060
updated 2026-09-10T19:58:20.507000
1 posts
๐ CVE-2026-87794 - High (8.4)
bestzip versions 2.2.6 and 3.0.2 contain an argument injection vulnerability in the nativeZip function that allows attackers to inject arbitrary arguments to the Info-ZIP backend. Attackers can supply a malicious destination path combined with cra...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-87794/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-10T19:57:48.533000
1 posts
๐ด CVE-2026-53939 - Critical (9.1)
OpenIDC/cjose is a C library implementing the Javascript Object Signing and Encryption (JOSE). In versions 0.6.1 through 0.6.2.5, when cjose encrypts a JWE using an AES-CBC-HMAC content-encryption algorithm (`A128CBC-HS256`, `A192CBC-HS384`, or `A...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-53939/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-10T19:17:36.650000
1 posts
CVE-2026-85704: Race condition in Freegpt Webui (Jailbreak Mode, server/config.py) allows remote attacks, but high complexity makes exploitation difficult. CVSS 3.7. Public exploit exists. No patch available.
Update or monitor immediately. More: https://www.valtersit.com/cve/CVE
##updated 2026-09-10T18:33:05
2 posts
๐ CVE-2026-89046 - High (8.2)
zstd-jni versions 1.5.5-6 through 1.5.7-13 contain an out-of-bounds read vulnerability in Zstd.getFrameContentSize that fails to validate negative srcPosition arguments. Attackers can supply negative offset values that bypass bounds checks and rea...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-89046/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-89046 - High (8.2)
zstd-jni versions 1.5.5-6 through 1.5.7-13 contain an out-of-bounds read vulnerability in Zstd.getFrameContentSize that fails to validate negative srcPosition arguments. Attackers can supply negative offset values that bypass bounds checks and rea...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-89046/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-10T18:33:04
2 posts
๐ด CVE-2026-89042 - Critical (9.1)
passport-saml-encrypted through 0.1.13 makes SAML signature verification conditional on an optional cert option, allowing attackers to bypass authentication by submitting unsigned SAML responses. Attackers can post forged SAML responses with arbit...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-89042/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ด CVE-2026-89042 - Critical (9.1)
passport-saml-encrypted through 0.1.13 makes SAML signature verification conditional on an optional cert option, allowing attackers to bypass authentication by submitting unsigned SAML responses. Attackers can post forged SAML responses with arbit...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-89042/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-10T18:33:04
2 posts
๐ด CVE-2026-85228 - Critical (9.1)
An integer overflow in the tensor buffer validation component in Amazon Deep Java Library (DJL) from 0.13.0 through 0.36.0 on all platforms might allow a remote unauthenticated actor to obtain information from adjacent process memory or cause a de...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-85228/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ด CVE-2026-85228 - Critical (9.1)
An integer overflow in the tensor buffer validation component in Amazon Deep Java Library (DJL) from 0.13.0 through 0.36.0 on all platforms might allow a remote unauthenticated actor to obtain information from adjacent process memory or cause a de...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-85228/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-10T18:18:11.740000
2 posts
๐ CVE-2026-87995 - High (8.7)
Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.8.11 until 0.11.1, src/lib/components/chat/FileNav/PortPreview.svelte rendered terminal port content in an iframe sandbox containing both allow-scripts an...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-87995/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-87995 - High (8.7)
Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.8.11 until 0.11.1, src/lib/components/chat/FileNav/PortPreview.svelte rendered terminal port content in an iframe sandbox containing both allow-scripts an...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-87995/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-10T17:48:35.100000
1 posts
๐ CVE-2026-79323 - High (7.5)
Information disclosure in the blogComments GraphQL query in Magefan Blog GraphQL for Magento 2 (magefan/module-blog-graph-ql) through 2.2.1 allows remote unauthenticated attackers to obtain blog commenter email addresses and internal customer and ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-79323/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-10T16:18:11.693000
2 posts
๐ CVE-2026-88889 - High (7.8)
Renovate before 44.14.7 contains a command injection vulnerability in the Maven Wrapper manager that allows attackers to execute arbitrary commands by specifying a malicious distributionType parameter in maven-wrapper.properties. Attackers can inj...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-88889/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-88889 - High (7.8)
Renovate before 44.14.7 contains a command injection vulnerability in the Maven Wrapper manager that allows attackers to execute arbitrary commands by specifying a malicious distributionType parameter in maven-wrapper.properties. Attackers can inj...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-88889/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-10T16:18:10.657000
2 posts
๐ CVE-2026-88289 - High (7.5)
GeoVision GV-LPC2211 V1.14 (260903) fails to validate attacker-controlled variable-length fields before copying them into fixed-size stack buffers in multiple VLSVR request handlers, allowing an unauthenticated remote attacker to crash the VLSVR s...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-88289/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-88289 - High (7.5)
GeoVision GV-LPC2211 V1.14 (260903) fails to validate attacker-controlled variable-length fields before copying them into fixed-size stack buffers in multiple VLSVR request handlers, allowing an unauthenticated remote attacker to crash the VLSVR s...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-88289/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-10T16:17:45.273000
2 posts
Critical Apache Artemis vulnerabilities, including CVE-2026-67593 and other ActiveMQ Artemis flaws, expose systems to denial of service and data exposure.
#ApacheArtemis #Cybersecurity #Vulnerabilities #ActiveMQ #CVE202667593
##Critical Apache Artemis vulnerabilities, including CVE-2026-67593 and other ActiveMQ Artemis flaws, expose systems to denial of service and data exposure.
#ApacheArtemis #Cybersecurity #Vulnerabilities #ActiveMQ #CVE202667593
##updated 2026-09-10T15:53:23.707000
2 posts
๐ CVE-2026-15913 - High (7.7)
In versions prior to 7.10.2 a path traversal vulnerability in the /attachRemoteFiles endpoint of Fortra's GoAnywhere MFT allows Web Users with both Secure Folders and Secure Mail permissions to escape their sandboxed home directory, achieving ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-15913/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-15913 - High (7.7)
In versions prior to 7.10.2 a path traversal vulnerability in the /attachRemoteFiles endpoint of Fortra's GoAnywhere MFT allows Web Users with both Secure Folders and Secure Mail permissions to escape their sandboxed home directory, achieving ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-15913/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-10T15:34:15
1 posts
CATTE OVERFLOW I REPEAT CATTE OVERFLOW THIS IS NOT A DRILL :catte:
https://nvd.nist.gov/vuln/detail/cve-2026-21096
##Heap-based buffer overflow in JPEG decoder of libimagecodec.quram.so prior to SMR Sep-2026 Release 1 allows remote attackers to execute arbitrary code.
updated 2026-09-10T15:33:28
2 posts
๐ CVE-2026-88890 - High (8.5)
OpenPanel through commit cd24bb8 contains an SQL injection vulnerability in the analytics filter builder that fails to validate profile.* filter column identifiers before interpolating them into ClickHouse WHERE clauses. An authenticated attacker ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-88890/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-88890 - High (8.5)
OpenPanel through commit cd24bb8 contains an SQL injection vulnerability in the analytics filter builder that fails to validate profile.* filter column identifiers before interpolating them into ClickHouse WHERE clauses. An authenticated attacker ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-88890/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-10T15:33:28
2 posts
CRITICAL: CVE-2026-88887 in renovatebot renovate enables open redirect โ malicious registries can steal credentials using crafted Link headers. Upgrade to 44.11.2+ ASAP. More info: https://radar.offseq.com/threat/cve-2026-88887-url-redirection-to-untrusted-site-open-redirect-in-renovatebot-renovate-875e981802aea06b #OffSeq #CVE202688887 #SupplyChain #ContainerSecurity
##CRITICAL: CVE-2026-88887 in renovatebot renovate enables open redirect โ malicious registries can steal credentials using crafted Link headers. Upgrade to 44.11.2+ ASAP. More info: https://radar.offseq.com/threat/cve-2026-88887-url-redirection-to-untrusted-site-open-redirect-in-renovatebot-renovate-875e981802aea06b #OffSeq #CVE202688887 #SupplyChain #ContainerSecurity
##updated 2026-09-10T15:33:27
2 posts
๐ CVE-2026-88891 - High (8.3)
OpenPanel fails to enforce read-only project access level on 26 of 29 mutating procedures, allowing read-level members to modify, delete, and publish project data. Attackers with explicit read-only access can delete reports and dashboards, schedul...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-88891/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-88891 - High (8.3)
OpenPanel fails to enforce read-only project access level on 26 of 29 mutating procedures, allowing read-level members to modify, delete, and publish project data. Attackers with explicit read-only access can delete reports and dashboards, schedul...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-88891/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-10T15:33:12
1 posts
1 repos
๐ CVE-2026-73786 - High (7.5)
A vulnerability in the web-based management interface of CPPM could allow an unauthenticated remote attacker to conduct a Denial-of-Service (DoS) attack. Successful exploitation could allow an attacker to cause instability and degrade performance ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-73786/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-10T15:17:50.033000
1 posts
๐ CVE-2026-85983 - High (7.8)
The Auth0 AD/LDAP Connector improperly processes a configuration value during service startup. This allows a low-privileged user on the host system to modify the connector's configuration. When the service restarts, the modified configuration can ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-85983/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-10T15:17:47.593000
1 posts
updated 2026-09-10T15:17:39.427000
1 posts
๐ CVE-2026-6485 - High (8.2)
UEFI BIOS embedded Shell could be used to bypass Secure Boot via shell commands or startup scripts.
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-6485/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-10T15:17:37.937000
1 posts
CVE-2026-69420 is a heap based buffer overflow on Windows resulting in an LPE. Couldnโt have come up with a more memey CVE for 69420 if I tried.
##updated 2026-09-10T15:10:12
2 posts
๐ CVE-2026-87996 - High (7.7)
Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.9.6 until 0.11.1, SafePlaywrightURLLoader in backend/open_webui/retrieval/web/utils.py validated a user-controlled hostname in Python and then let the Pla...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-87996/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-87996 - High (7.7)
Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.9.6 until 0.11.1, SafePlaywrightURLLoader in backend/open_webui/retrieval/web/utils.py validated a user-controlled hostname in Python and then let the Pla...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-87996/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-10T14:50:07.813000
1 posts
updated 2026-09-10T14:39:13.757000
2 posts
๐ CVE-2026-15019 - High (7.5)
The Direct Download for WooCommerce plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 1.19 via the (top-level include) function. This makes it possible for unauthenticated attackers to read the content...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-15019/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-15019 - High (7.5)
The Direct Download for WooCommerce plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 1.19 via the (top-level include) function. This makes it possible for unauthenticated attackers to read the content...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-15019/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-10T13:20:23.210000
2 posts
2 repos
๐ CSAF advisory updated (version 2.0.0)
VDE-2026-088
METTLER TOLEDO: LabX Standard and Enterprise Report on External Component Analysis - v21.4
CVE-2026-4800, CVE-2026-33186, CVE-2026-39821, CVE-2026-33671, CVE-2026-0915 (+60 more)
Changes: corrected version
HTML: https://certvde.com/en/advisories/VDE-2026-088/
CSAF JSON: https://mettler-toledo.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-088.json
๐ CSAF advisory updated (version 2.0.0)
VDE-2026-088
METTLER TOLEDO: LabX Standard and Enterprise Report on External Component Analysis - v21.4
CVE-2026-4800, CVE-2026-33186, CVE-2026-39821, CVE-2026-33671, CVE-2026-0915 (+60 more)
Changes: corrected version
HTML: https://certvde.com/en/advisories/VDE-2026-088/
CSAF JSON: https://mettler-toledo.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-088.json
updated 2026-09-10T13:19:50.873000
2 posts
๐ CSAF advisory updated (version 2.0.0)
VDE-2026-088
METTLER TOLEDO: LabX Standard and Enterprise Report on External Component Analysis - v21.4
CVE-2026-4800, CVE-2026-33186, CVE-2026-39821, CVE-2026-33671, CVE-2026-0915 (+60 more)
Changes: corrected version
HTML: https://certvde.com/en/advisories/VDE-2026-088/
CSAF JSON: https://mettler-toledo.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-088.json
๐ CSAF advisory updated (version 2.0.0)
VDE-2026-088
METTLER TOLEDO: LabX Standard and Enterprise Report on External Component Analysis - v21.4
CVE-2026-4800, CVE-2026-33186, CVE-2026-39821, CVE-2026-33671, CVE-2026-0915 (+60 more)
Changes: corrected version
HTML: https://certvde.com/en/advisories/VDE-2026-088/
CSAF JSON: https://mettler-toledo.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-088.json
updated 2026-09-10T12:49:02.630000
13 posts
1 repos
https://github.com/SneakyNachos/CVE-2026-87491-and-CVE-2026-85046-the-bagel-fell-off-the-counter
โช๏ธ Google Chrome Patches Another Zero-Day Vulnerability
๐จ๏ธ Google developers have released an update for the Chrome browser that fixes 230 vulnerabilities, including a zero-day flaw in the V8 engine (CVE-2026-87491) that is already being exploited in attacks. The bug allows a remote attacker to achieve arbitrary codeโฆ
##Google Patches Chrome Zero-Day and 229 Other Flaws in Version 153
Google released Chrome 153 to fix 230 vulnerabilities, including an actively exploited V8 zero-day (CVE-2026-87491) and five critical flaws in WebGL and Cast.
**This one is urgent, again. Actively exploited flaw and a bunch of fixes. Update Google Chrome to version 153.0.8010.36/.37 for Windows and macOS, or 153.0.8010.36 for Linux. Users of Microsoft Edge, Brave, Opera, Vivaldi, and other Chromium-based browsers. Don't delay, the tabs reopen after an update.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/google-patches-chrome-zero-day-and-229-other-flaws-in-version-153-j-p-1-x-s/gD2P6Ple2L
๐ New security advisory:
CVE-2026-87491 affects Google Chrome.
โข Impact: Significant security breach potential
โข Risk: Unauthorized access or data exposure
โข Mitigation: Apply patches within 24-48 hours
Full breakdown:
https://www.yazoul.net/advisory/cve/cve-2026-87491-chrome-v8-rce-exploited-in-the-wild
by Yazoul AI
##โ ๏ธ CRITICAL: Chrome V8 Zero-Day Exploited in the Wild Enables Code Execution Inside Sandbox
Google patched CVE-2026-87491, a zero-day out-of-bounds write in Chrome's V8 engine actively exploited in the wild. Attackers can execute arbitrary code within the browser sandbox via crafted HTML, potentially compromising any user visiting a malicious page. This is the seventh exploited Chrome zerโฆ
๐ค AI generated summary
##โช๏ธ Google Chrome Patches Another Zero-Day Vulnerability
๐จ๏ธ Google developers have released an update for the Chrome browser that fixes 230 vulnerabilities, including a zero-day flaw in the V8 engine (CVE-2026-87491) that is already being exploited in attacks. The bug allows a remote attacker to achieve arbitrary codeโฆ
##Google Patches Chrome Zero-Day and 229 Other Flaws in Version 153
Google released Chrome 153 to fix 230 vulnerabilities, including an actively exploited V8 zero-day (CVE-2026-87491) and five critical flaws in WebGL and Cast.
**This one is urgent, again. Actively exploited flaw and a bunch of fixes. Update Google Chrome to version 153.0.8010.36/.37 for Windows and macOS, or 153.0.8010.36 for Linux. Users of Microsoft Edge, Brave, Opera, Vivaldi, and other Chromium-based browsers. Don't delay, the tabs reopen after an update.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/google-patches-chrome-zero-day-and-229-other-flaws-in-version-153-j-p-1-x-s/gD2P6Ple2L
โ ๏ธ CRITICAL: Chrome V8 Zero-Day Exploited in the Wild Enables Code Execution Inside Sandbox
Google patched CVE-2026-87491, a zero-day out-of-bounds write in Chrome's V8 engine actively exploited in the wild. Attackers can execute arbitrary code within the browser sandbox via crafted HTML, potentially compromising any user visiting a malicious page. This is the seventh exploited Chrome zerโฆ
๐ค AI generated summary
##๐จ [CISA-2026:0909] CISA Adds 4 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0909)
CISA has added 4 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
โ ๏ธ CVE-2025-25249 (https://secdb.nttzen.cloud/cve/detail/CVE-2025-25249)
- Name: Fortinet Multiple Products Heap-based Buffer Overflow Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Fortinet
- Product: Multiple Products
- Notes: https://fortiguard.fortinet.com/psirt/FG-IR-25-084 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2025-25249
โ ๏ธ CVE-2026-19490 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-19490)
- Name: Citrix NetScaler Authentication Bypass Using an Alternate Path or Channel Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Citrix
- Product: NetScaler
- Notes: https://support.citrix.com/external/article/CTX696939/netscaler-adc-and-netscaler-gateway-secu.html ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-19490
โ ๏ธ CVE-2026-20079 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-20079)
- Name: Cisco Firewall Management Center Authentication Bypass Using an Alternate Path or Channel Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Cisco
- Product: Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall Management
- Notes: https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-onprem-fmc-authbypass-5JPp45V2 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-20079
โ ๏ธ CVE-2026-87491 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-87491)
- Name: Google Chromium V8 Out of Bounds Write Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Google
- Product: Chromium V8
- Notes: https://chromereleases.googleblog.com/2026/09/stable-channel-update-for-desktop_0808145027.html ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-87491
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260909 #cisa20260909 #cve_2025_25249 #cve_2026_19490 #cve_2026_20079 #cve_2026_87491 #cve202525249 #cve202619490 #cve202620079 #cve202687491
##CVE ID: CVE-2026-87491
Vendor: Google
Product: Chromium V8
Date Added: 2026-09-09
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-87491
The medium-severity vulnerability, assigned the CVE identifier CVE-2026-87491 (CVSS score: N/A), has been described as an out-of-bounds bug in V8, Chrome's JavaScript and WebAssembly engine. https://thehackernews.com/2026/09/chrome-v8-zero-day-exploited-in-wild.html
##Google Chrome #zeroday
Google is aware that an exploit for CVE-2026-87491 exists in the wild.
https://chromereleases.googleblog.com/2026/09/stable-channel-update-for-desktop_0808145027.html
##Google fixed CVE-2026-87491, an out-of-bounds write in Chrome V8 exploited in the wild via crafted HTML. It enables arbitrary code execution inside the sandbox with risk of heap corruption and memory disclosure. Patch to version 153 immediately and hunt for anomalous browser activity. #ChromeSecurity #ZeroDay #ThreatIntel
https://cyberworldops.eu/en/chrome-v8-zero-day-exploited-in-active-attacks-update-to-version-153
##Google patched a Chrome zero-day, CVE-2026-87491, exploited in the wild. Chrome 153 fixes 230 flaws including critical WebGL bugs. Update now.
#Chrome #ZeroDay #Google #CyberSecurity #CVE #V8 #BrowserSecurity #Infosec
##updated 2026-09-10T12:48:10.453000
2 posts
2 repos
๐จ [CISA-2026:0909] CISA Adds 4 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0909)
CISA has added 4 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
โ ๏ธ CVE-2025-25249 (https://secdb.nttzen.cloud/cve/detail/CVE-2025-25249)
- Name: Fortinet Multiple Products Heap-based Buffer Overflow Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Fortinet
- Product: Multiple Products
- Notes: https://fortiguard.fortinet.com/psirt/FG-IR-25-084 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2025-25249
โ ๏ธ CVE-2026-19490 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-19490)
- Name: Citrix NetScaler Authentication Bypass Using an Alternate Path or Channel Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Citrix
- Product: NetScaler
- Notes: https://support.citrix.com/external/article/CTX696939/netscaler-adc-and-netscaler-gateway-secu.html ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-19490
โ ๏ธ CVE-2026-20079 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-20079)
- Name: Cisco Firewall Management Center Authentication Bypass Using an Alternate Path or Channel Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Cisco
- Product: Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall Management
- Notes: https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-onprem-fmc-authbypass-5JPp45V2 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-20079
โ ๏ธ CVE-2026-87491 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-87491)
- Name: Google Chromium V8 Out of Bounds Write Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Google
- Product: Chromium V8
- Notes: https://chromereleases.googleblog.com/2026/09/stable-channel-update-for-desktop_0808145027.html ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-87491
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260909 #cisa20260909 #cve_2025_25249 #cve_2026_19490 #cve_2026_20079 #cve_2026_87491 #cve202525249 #cve202619490 #cve202620079 #cve202687491
##CVE ID: CVE-2026-19490
Vendor: Citrix
Product: NetScaler
Date Added: 2026-09-09
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-19490
updated 2026-09-10T12:47:59.933000
5 posts
Fortinet CVE-2025-25249, an unauthenticated heap-based buffer overflow RCE, is being exploited at scale to deploy PivotC2 RAT. CISA added it to KEV on 2026-09-09 with remediation due 2026-09-12. Unpatched Fortinet perimeter devices should be assumed compromised and investigated for RAT persistence. #Fortinet #PivotC2 #ThreatIntel
https://cyberworldops.eu/en/fortinet-cve-2025-25249-exploited-at-scale-to-install-pivotc2-rat
##Fortinet CVE-2025-25249, an unauthenticated heap-based buffer overflow RCE, is being exploited at scale to deploy PivotC2 RAT. CISA added it to KEV on 2026-09-09 with remediation due 2026-09-12. Unpatched Fortinet perimeter devices should be assumed compromised and investigated for RAT persistence. #Fortinet #PivotC2 #ThreatIntel
https://cyberworldops.eu/en/fortinet-cve-2025-25249-exploited-at-scale-to-install-pivotc2-rat
##๐จ [CISA-2026:0909] CISA Adds 4 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0909)
CISA has added 4 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
โ ๏ธ CVE-2025-25249 (https://secdb.nttzen.cloud/cve/detail/CVE-2025-25249)
- Name: Fortinet Multiple Products Heap-based Buffer Overflow Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Fortinet
- Product: Multiple Products
- Notes: https://fortiguard.fortinet.com/psirt/FG-IR-25-084 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2025-25249
โ ๏ธ CVE-2026-19490 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-19490)
- Name: Citrix NetScaler Authentication Bypass Using an Alternate Path or Channel Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Citrix
- Product: NetScaler
- Notes: https://support.citrix.com/external/article/CTX696939/netscaler-adc-and-netscaler-gateway-secu.html ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-19490
โ ๏ธ CVE-2026-20079 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-20079)
- Name: Cisco Firewall Management Center Authentication Bypass Using an Alternate Path or Channel Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Cisco
- Product: Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall Management
- Notes: https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-onprem-fmc-authbypass-5JPp45V2 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-20079
โ ๏ธ CVE-2026-87491 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-87491)
- Name: Google Chromium V8 Out of Bounds Write Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Google
- Product: Chromium V8
- Notes: https://chromereleases.googleblog.com/2026/09/stable-channel-update-for-desktop_0808145027.html ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-87491
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260909 #cisa20260909 #cve_2025_25249 #cve_2026_19490 #cve_2026_20079 #cve_2026_87491 #cve202525249 #cve202619490 #cve202620079 #cve202687491
##CVE ID: CVE-2025-25249
Vendor: Fortinet
Product: Multiple Products
Date Added: 2026-09-09
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2025-25249
CVE-2025-25249 Exploitation Delivers PivotC2, a FortiGate Post-Exploitation RAT
#CVE_2025_25249 #PivotC2
https://socradar.io/blog/cve-2025-25249-pivotc2-fortigate-rat/
updated 2026-09-10T12:31:26
2 posts
CVE-2026-78082: SP Property extension for Joomla v1.0.0-4.1.3 suffers CRITICAL SQL injection (CVSS 9.3). Unauthenticated attackers can extract DB data via blind injection. Patch status unknown โ check vendor guidance. https://radar.offseq.com/threat/cve-2026-78082-cwe-89-improper-neutralization-of-special-elements-used-in-an-sql-command-in-b1e5ff60df4f2663 #OffSeq #Joomla #SQLi #Infosec
##CVE-2026-78082: SP Property extension for Joomla v1.0.0-4.1.3 suffers CRITICAL SQL injection (CVSS 9.3). Unauthenticated attackers can extract DB data via blind injection. Patch status unknown โ check vendor guidance. https://radar.offseq.com/threat/cve-2026-78082-cwe-89-improper-neutralization-of-special-elements-used-in-an-sql-command-in-b1e5ff60df4f2663 #OffSeq #Joomla #SQLi #Infosec
##updated 2026-09-10T09:31:48
2 posts
๐ด CVE-2026-8323 - Critical (9.3)
URL redirection to untrusted site ('open redirect') vulnerability in Armiya Information Technologies Ltd. Co. Access Control System allows Fake the Source of Data.
This issue affects Access Control System: before Versiyon 2.
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-8323/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ด CVE-2026-8323 - Critical (9.3)
URL redirection to untrusted site ('open redirect') vulnerability in Armiya Information Technologies Ltd. Co. Access Control System allows Fake the Source of Data.
This issue affects Access Control System: before Versiyon 2.
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-8323/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-10T09:31:48
2 posts
๐ CVE-2026-88290 - High (7.5)
GeoVision GV-LPC2211 V1.14 (260903) allows unauthenticated clients to declare unbounded VLSVR frame lengths and indefinitely delay blocking receives, allowing remote exhaustion of memory, connection, and worker resources.
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-88290/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-88290 - High (7.5)
GeoVision GV-LPC2211 V1.14 (260903) allows unauthenticated clients to declare unbounded VLSVR frame lengths and indefinitely delay blocking receives, allowing remote exhaustion of memory, connection, and worker resources.
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-88290/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-10T09:31:37
2 posts
CVE-2026-13745: CRITICAL vuln (CVSS 9.2) in Google Cloud Gemini CLI allows arbitrary code execution via untrusted .env files overriding GEMINI_CLI_HOME. Review .env file usage & restrict access. More info: https://radar.offseq.com/threat/cve-2026-13745-cwe-20-improper-input-validation-in-google-cloud-gemini-cli-2874a8a8cddc669d #OffSeq #GoogleCloud #Vulnerability #InfoSec
##CVE-2026-13745: CRITICAL vuln (CVSS 9.2) in Google Cloud Gemini CLI allows arbitrary code execution via untrusted .env files overriding GEMINI_CLI_HOME. Review .env file usage & restrict access. More info: https://radar.offseq.com/threat/cve-2026-13745-cwe-20-improper-input-validation-in-google-cloud-gemini-cli-2874a8a8cddc669d #OffSeq #GoogleCloud #Vulnerability #InfoSec
##updated 2026-09-10T06:32:50
2 posts
CVE-2026-87931 | CRITICAL buffer overflow in Pavlok Behavioral Conditioning Wearable (Apple Notification Center Service Event Handler). Exploitable locally, no patch or vendor response. Limit device network access. Details: https://radar.offseq.com/threat/cve-2026-87931-buffer-overflow-in-behavioral-technology-group-pavlok-behavioral-conditioning-wearable-98a2d4c4edee7864 #OffSeq #CVE202687931 #IoTSecurity
##CVE-2026-87931 | CRITICAL buffer overflow in Pavlok Behavioral Conditioning Wearable (Apple Notification Center Service Event Handler). Exploitable locally, no patch or vendor response. Limit device network access. Details: https://radar.offseq.com/threat/cve-2026-87931-buffer-overflow-in-behavioral-technology-group-pavlok-behavioral-conditioning-wearable-98a2d4c4edee7864 #OffSeq #CVE202687931 #IoTSecurity
##updated 2026-09-10T06:31:55
6 posts
CVE-2026-0310: PAN-OS Buffer Overflow Can Enable Root RCE on PA-Series Firewalls
#CVE_2026_0310
https://socprime.com/blog/cve-2026-0310-analysis/
CVE-2026-0310: PAN-OS Buffer Overflow Can Enable Root RCE on PA-Series Firewalls
#CVE_2026_0310
https://socprime.com/blog/cve-2026-0310-analysis/
RE: https://infosec.exchange/@cR0w/117241961119105876
Seriously, maybe take a good look at CVE-2026-0310.
CVSS-BT: 7.2 / **CVSS-B: 9.2** (CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:L/SI:L/SA:N/E:U/AU:N/R:U/V:D/RE:M/U:Red)
A new PAN-OS buffer overflow flaw, tracked as CVE-2026-0310, exposes firewalls to remote code execution. Patch your network devices immediately.
#PANOS #BufferOverflow #CVE20260310 #Cybersecurity #PaloAltoNetworks
##RE: https://infosec.exchange/@cR0w/117236916712662443
lol. lmao even.
##Broadcom has a long list of advisories today for high and medium-severity vulnerabilities https://support.broadcom.com/web/ecx/security-advisory #Broadcom #Linux
Palo Alto:
Palo Alto has several advisories, one of them critical:
CRITICAL: CVE-2026-0310 PAN-OS: Buffer Overflow Vulnerability via XML Processing https://security.paloaltonetworks.com/CVE-2026-0310
More: https://security.paloaltonetworks.com/
Cisco:
CRITICAL: CVE-2026-20079: Cisco Secure Firewall Management Center Software Authentication Bypass Vulnerability https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-onprem-fmc-authbypass-5JPp45V2 @TalosSecurity #Cisco
Dell:
A Dell release that impacts multiple CVEs: Security Update for Dell PowerScale OneFS Multiple Third-Party Component Vulnerabilities https://www.dell.com/support/kbdoc/en-us/000474822/dsa-2026-237-security-update-for-dell-powerscale-onefs-multiple-third-party-component-vulnerabilities #Dell
Posted yesterday:
Apple:
Several releases were posted yesterday https://support.apple.com/en-us/100100 #Apple #iOS
AMD:
AMD: Linux GPU Driver NULL Pointer Dereference https://www.amd.com/en/resources/product-security/bulletin/amd-sb-6034.html #AMD
Adobe:
Adobe has a long list of updates here https://helpx.adobe.com/security/security-bulletin.html #Adobe #infosec #vulnerability
##updated 2026-09-10T06:31:42
2 posts
๐ CVE-2026-14873 - High (8)
The Bulk Password Reset plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 1.3.3. This is due to the plugin not properly validating a user's identity prior to updating their detail...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-14873/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-14873 - High (8)
The Bulk Password Reset plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 1.3.3. This is due to the plugin not properly validating a user's identity prior to updating their detail...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-14873/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-10T04:18:29.850000
1 posts
CVE-2026-87628: CRITICAL use-after-free in Chrome's Cast (<153.0.8010.36) enables adjacent code execution outside the sandbox. Patch status unconfirmed. Check the vendor advisory: https://radar.offseq.com/threat/cve-2026-87628-use-after-free-in-google-chrome-1e9eb757633453cf #OffSeq #Chrome #Vuln #CVE202687628
##updated 2026-09-10T04:18:14.773000
4 posts
Esecuzione remota di programmi (RCE) da remoto senza autenticazione sui server DNS di Microsoft.
Problema risolto con gli ultimi aggiornamenti.
Quasi tutti i Domain Controller hanno un server DNS a bordo e la vulnerabilitร รจ sfruttabile con richieste DNS, quindi non bloccabili da un normale firewall.
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69730
##@pkprotoplasm the infamous phrase is used on the FAQ of the MSRC advisory. the NIST description is even more generic.
https://msrc.microsoft.com/update-guide/en-US/advisory/CVE-2026-69730
##@pkprotoplasm the infamous phrase is used on the FAQ of the MSRC advisory. the NIST description is even more generic.
https://msrc.microsoft.com/update-guide/en-US/advisory/CVE-2026-69730
##Meanwhile CVE-2026-69829 is a CVSS 9.8 heap overflow in Windows Shell letting unauthenticated attackers run code over a network. I called the mechanics. I drew the diagram. I made a spreadsheet.
Patch CVE-2026-81963, CVE-2026-85880, CVE-2026-69730, and CVE-2026-69829 immediately โ yes, right now, before you ask if it can wait until Friday.
Reward: You've received the Tunnel Vision Debuff. It cannot be cleansed.
#ZeroDay #Microsoft #WindowsUpdate #PrivilegeEscalation #CyberSecurity (2/2)
##updated 2026-09-10T04:17:32.400000
2 posts
5 repos
https://github.com/yuvatia/page-table-exploitation
https://github.com/bbolmin/cve-2016-7255_x86_x64
https://github.com/FSecureLABS/CVE-2016-7255
CVE-2016-7255 - Changed to Known Ransomware Status
Microsoft Win32k Privilege Escalation VulnerabilityVendor: MicrosoftProduct: Win32kMicrosoft Win32k kernel-mode driver fails to properly handle objects in memory which allows for privilege escalation. Successful exploitation allows an attacker to run code in kernel mode.Status changed from Unknown to Known for ransomware campaign usage.Flip detected on: September 09, 2026 at 14:08:17 UTCDate https://nvd.nist.gov/vuln/detail/CVE-2016-7255
##CVE-2016-7255 - Changed to Known Ransomware Status
Microsoft Win32k Privilege Escalation VulnerabilityVendor: MicrosoftProduct: Win32kMicrosoft Win32k kernel-mode driver fails to properly handle objects in memory which allows for privilege escalation. Successful exploitation allows an attacker to run code in kernel mode.Status changed from Unknown to Known for ransomware campaign usage.Flip detected on: September 09, 2026 at 14:08:17 UTCDate https://nvd.nist.gov/vuln/detail/CVE-2016-7255
##updated 2026-09-10T03:30:27
2 posts
๐ CVE-2026-19584 - High (7.7)
Velociraptor allows for the creation of notebook backups in its default enabled daily backup feature. When Velociraptor restores the backup, the notebook cell content is interpolated into a template with no ACL checks. This allows a malicious user...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-19584/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-19584 - High (7.7)
Velociraptor allows for the creation of notebook backups in its default enabled daily backup feature. When Velociraptor restores the backup, the notebook cell content is interpolated into a template with no ACL checks. This allows a malicious user...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-19584/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-10T03:30:27
2 posts
CVE-2026-18351 (CRITICAL): addonsorg Drag and Drop File Upload for Elementor Forms <=1.6.0 lets unauthenticated attackers upload arbitrary files โ enabling RCE. Restrict or disable plugin use until remediation. https://radar.offseq.com/threat/cve-2026-18351-cwe-434-unrestricted-upload-of-file-with-dangerous-type-in-addonsorg-drag-and-drop-file-158dc74bccbdf605 #OffSeq #WordPress #Vuln #RCE
##CVE-2026-18351 (CRITICAL): addonsorg Drag and Drop File Upload for Elementor Forms <=1.6.0 lets unauthenticated attackers upload arbitrary files โ enabling RCE. Restrict or disable plugin use until remediation. https://radar.offseq.com/threat/cve-2026-18351-cwe-434-unrestricted-upload-of-file-with-dangerous-type-in-addonsorg-drag-and-drop-file-158dc74bccbdf605 #OffSeq #WordPress #Vuln #RCE
##updated 2026-09-10T03:30:26
2 posts
CVE-2026-19583: CRITICAL vuln in Rapid7 Velociraptor (<0.77.2) allows users w/ artifact scheduling rights to execute privileged artifacts like Linux.Sys.BashShell โ risking full compromise. Restrict permissions, monitor activity. https://radar.offseq.com/threat/cve-2026-19583-cwe-732-incorrect-permission-assignment-for-critical-resource-in-rapid7-velociraptor-f6df828b1d19e549 #OffSeq #Vuln #Infosec
##CVE-2026-19583: CRITICAL vuln in Rapid7 Velociraptor (<0.77.2) allows users w/ artifact scheduling rights to execute privileged artifacts like Linux.Sys.BashShell โ risking full compromise. Restrict permissions, monitor activity. https://radar.offseq.com/threat/cve-2026-19583-cwe-732-incorrect-permission-assignment-for-critical-resource-in-rapid7-velociraptor-f6df828b1d19e549 #OffSeq #Vuln #Infosec
##updated 2026-09-10T00:30:34
2 posts
CVE-2026-88069: Path traversal in pandora-analysis pandora (<=1.12.7) allows attackers to overwrite system/app files via crafted archives. Severity: CRITICAL (CVSS 9.3). No patch confirmed โ monitor vendor updates. https://radar.offseq.com/threat/cve-2026-88069-cwe-22-improper-limitation-of-a-pathname-to-a-restricted-directory-path-traversal-in-87b56121b9b3446f #OffSeq #CVE202688069 #vuln #infosec
##CVE-2026-88069: Path traversal in pandora-analysis pandora (<=1.12.7) allows attackers to overwrite system/app files via crafted archives. Severity: CRITICAL (CVSS 9.3). No patch confirmed โ monitor vendor updates. https://radar.offseq.com/threat/cve-2026-88069-cwe-22-improper-limitation-of-a-pathname-to-a-restricted-directory-path-traversal-in-87b56121b9b3446f #OffSeq #CVE202688069 #vuln #infosec
##updated 2026-09-09T21:32:03
1 posts
๐ CVE-2026-79324 - High (7.5)
Missing authorization in the Address Delete controller in Mageplaza GDPR for Magento 2 (mageplaza/module-gdpr) through 4.2.9 allows remote unauthenticated attackers to delete any customer's saved address, and to erase all stored addresses by itera...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-79324/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-09T21:31:56
2 posts
๐ CVE-2026-79322 - High (8.6)
SQL injection in the RelatedProduct block in Mageplaza Blog for Magento 2 (mageplaza/magento-2-blog-extension) through 4.3.2 allows remote unauthenticated attackers to execute arbitrary SQL commands and read arbitrary database contents via the id ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-79322/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-79322 - High (8.6)
SQL injection in the RelatedProduct block in Mageplaza Blog for Magento 2 (mageplaza/magento-2-blog-extension) through 4.3.2 allows remote unauthenticated attackers to execute arbitrary SQL commands and read arbitrary database contents via the id ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-79322/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-09T21:31:33
21 posts
2 repos
Cisco Talos reports active exploitation of CVE-2026-20079 and CVE-2026-20316 in Cisco Secure Firewall Management Center by Qilin ransomware, credential-theft actors, and Sandworm-linked groups. The auth bypass provides root command execution and the static credential exposure broadens initial access.
#CiscoFMC #ThreatIntelligence #VulnerabilityManagement #Qilin
https://cyberworldops.eu/en/cisco-fmc-zero-auth-flaws-exploited-by-qilin-ransomware-and-sandworm
##Cisco FMC Under Attack as Sandworm and Qilin Exploit Critical Vulnerabilities to Reach Protected Networks + Video
A New Warning for Enterprise Defenders Cisco Secure Firewall Management Center is facing a serious security crisis after Cisco Talos confirmed active exploitation of two vulnerabilities that can give attackers a foothold inside vulnerable environments. The flaws, tracked as CVE-2026-20079 and CVE-2026-20316, are being abused in real-world attacks involvingโฆ
##๐ข Cisco confirme l'exploitation active de CVE-2026-20079, faille critique dans Secure FMC
BleepingComputer, publiรฉ le 9 septembre 2026. Cisco a officiellement confirmรฉ l'exploitation active de CVE-2026-20079, une vulnรฉrabilitรฉ d'authentification bypass de sรฉvรฉritรฉ maximale (CVSS 10.0) affectant son logiciel Cisco Secure Firewall Management Centerโฆ
๐ cyberveille : https://cyberveille.ch/posts/2026-09-10-cisco-confirme-l-exploitation-active-de-cve-2026-20079-faille-critique-dans-secure-fmc/
๐ source : https://www.bleepingcomputer.com/news/security/cisco-confirms-cve-2026-20079-secure-fmc-flaw-exploited-in-attacks/
๐ข vรฉrification factuelle haute
#CISAKEV #CiscoSecureFMC #Cyberveille
The vulnerability has a maximum CVSS score of 10.0 and allows unauthenticated, remote attackers to bypass authentication and execute scripts and commands as root on vulnerable devices. https://www.bleepingcomputer.com/news/security/cisco-confirms-cve-2026-20079-secure-fmc-flaw-exploited-in-attacks/
##Cisco Secure Firewall Management Center Under Active Attack
Cisco Talos warns of active exploitation of two vulnerabilities (CVE-2026-20079 and CVE-2026-20316) in Secure Firewall Management Center, allowing attackers to gain root access and deploy malware like Cyclops Blink and Qilin ransomware.
**If you run Cisco Secure Firewall Management Center (versions 7.0.x, 7.1.x, or 7.2โ7.7), apply Cisco's emergency patches for CVE-2026-20079 and CVE-2026-20316 right away. Make sure the management interface is reachable only from trusted internal networks, never the internet. Because these flaws are already being exploited, also check for unexpected files in /var/sf/bin/ and the Tomcat webroot. Then plan to install Cisco's hardening update due to be released in the week of September 14.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/cisco-secure-firewall-management-center-under-active-attack-3-p-v-c-6/gD2P6Ple2L
Cisco confirmed active exploitation of CVE-2026-20079, a CVSS 10.0 authentication bypass in Secure FMC. Unauthenticated remote attackers can execute commands as root via crafted HTTP requests, compromising firewall management. Immediate patching and exposure review are critical. #CiscoFmc #AuthBypass #CriticalVulnerability
https://cyberworldops.eu/en/cisco-secure-fmc-authentication-bypass-exploited-for-root-access
##Cisco Secure Firewall Crisis Deepens as CVE-2026-20079 Becomes an Actively Exploited Root-Level Threat + Video
A Maximum-Severity Flaw Has Crossed the Line A critical warning is now hanging over organizations that rely on Cisco Secure Firewall Management Center (FMC): a vulnerability once described as having no evidence of exploitation has now been confirmed as actively abused in real-world attacks. Tracked as CVE-2026-20079, the flaw carries the maximum possible CVSSโฆ
##Cisco confirms CVE-2026-20079 Secure FMC flaw exploited in attacks https://www.bleepingcomputer.com/news/security/cisco-confirms-cve-2026-20079-secure-fmc-flaw-exploited-in-attacks/
##Cisco confirms CVE-2026-20079 Secure FMC flaw exploited in attacks
Cisco has confirmed that a maximum-severity authentication bypass vulnerability tracked as CVE-2026-20079 in its Secure Firewall Management Center...
๐๏ธ [Bleepingcomputer] https://link.is.it/y6fb5Q
##Cisco Talos reports active exploitation of CVE-2026-20079 and CVE-2026-20316 in Cisco Secure Firewall Management Center by Qilin ransomware, credential-theft actors, and Sandworm-linked groups. The auth bypass provides root command execution and the static credential exposure broadens initial access.
#CiscoFMC #ThreatIntelligence #VulnerabilityManagement #Qilin
https://cyberworldops.eu/en/cisco-fmc-zero-auth-flaws-exploited-by-qilin-ransomware-and-sandworm
##The vulnerability has a maximum CVSS score of 10.0 and allows unauthenticated, remote attackers to bypass authentication and execute scripts and commands as root on vulnerable devices. https://www.bleepingcomputer.com/news/security/cisco-confirms-cve-2026-20079-secure-fmc-flaw-exploited-in-attacks/
##Cisco Secure Firewall Management Center Under Active Attack
Cisco Talos warns of active exploitation of two vulnerabilities (CVE-2026-20079 and CVE-2026-20316) in Secure Firewall Management Center, allowing attackers to gain root access and deploy malware like Cyclops Blink and Qilin ransomware.
**If you run Cisco Secure Firewall Management Center (versions 7.0.x, 7.1.x, or 7.2โ7.7), apply Cisco's emergency patches for CVE-2026-20079 and CVE-2026-20316 right away. Make sure the management interface is reachable only from trusted internal networks, never the internet. Because these flaws are already being exploited, also check for unexpected files in /var/sf/bin/ and the Tomcat webroot. Then plan to install Cisco's hardening update due to be released in the week of September 14.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/cisco-secure-firewall-management-center-under-active-attack-3-p-v-c-6/gD2P6Ple2L
Cisco confirmed active exploitation of CVE-2026-20079, a CVSS 10.0 authentication bypass in Secure FMC. Unauthenticated remote attackers can execute commands as root via crafted HTTP requests, compromising firewall management. Immediate patching and exposure review are critical. #CiscoFmc #AuthBypass #CriticalVulnerability
https://cyberworldops.eu/en/cisco-secure-fmc-authentication-bypass-exploited-for-root-access
##Cisco confirms CVE-2026-20079 Secure FMC flaw exploited in attacks https://www.bleepingcomputer.com/news/security/cisco-confirms-cve-2026-20079-secure-fmc-flaw-exploited-in-attacks/
##Cisco confirms CVE-2026-20079 Secure FMC flaw exploited in attacks
Cisco has confirmed that a maximum-severity authentication bypass vulnerability tracked as CVE-2026-20079 in its Secure Firewall Management Center...
๐๏ธ [Bleepingcomputer] https://link.is.it/y6fb5Q
##Cisco Talos is actively tracking the exploitation of two vulnerabilities in Ciscoโs Secure Firewall Management Center (FMC) Software. First, CVE-2026-20079 is an authentication bypass vulnerability in unpatched instances of Ciscoโs Secure FMC Software, which allows an unauthenticated, remote attacker to bypass authentications and execute scripts on impacted devices to obtain root access to the underlying operating system. Second, CVE-2026-20316 is a vulnerability that allows a remote attacker to log in using a low-privileged account.
https://blog.talosintelligence.com/fmc-ongoing-exploitation/
##๐จ [CISA-2026:0909] CISA Adds 4 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0909)
CISA has added 4 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
โ ๏ธ CVE-2025-25249 (https://secdb.nttzen.cloud/cve/detail/CVE-2025-25249)
- Name: Fortinet Multiple Products Heap-based Buffer Overflow Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Fortinet
- Product: Multiple Products
- Notes: https://fortiguard.fortinet.com/psirt/FG-IR-25-084 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2025-25249
โ ๏ธ CVE-2026-19490 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-19490)
- Name: Citrix NetScaler Authentication Bypass Using an Alternate Path or Channel Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Citrix
- Product: NetScaler
- Notes: https://support.citrix.com/external/article/CTX696939/netscaler-adc-and-netscaler-gateway-secu.html ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-19490
โ ๏ธ CVE-2026-20079 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-20079)
- Name: Cisco Firewall Management Center Authentication Bypass Using an Alternate Path or Channel Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Cisco
- Product: Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall Management
- Notes: https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-onprem-fmc-authbypass-5JPp45V2 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-20079
โ ๏ธ CVE-2026-87491 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-87491)
- Name: Google Chromium V8 Out of Bounds Write Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Google
- Product: Chromium V8
- Notes: https://chromereleases.googleblog.com/2026/09/stable-channel-update-for-desktop_0808145027.html ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-87491
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260909 #cisa20260909 #cve_2025_25249 #cve_2026_19490 #cve_2026_20079 #cve_2026_87491 #cve202525249 #cve202619490 #cve202620079 #cve202687491
##CVE ID: CVE-2026-20079
Vendor: Cisco
Product: Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall Management
Date Added: 2026-09-09
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-20079
Cisco Talos warns of Cisco FMC vulnerabilities actively exploited in the wild. Attackers chain CVE-2026-20079 and CVE-2026-20316 to deploy ransomware.
##Broadcom has a long list of advisories today for high and medium-severity vulnerabilities https://support.broadcom.com/web/ecx/security-advisory #Broadcom #Linux
Palo Alto:
Palo Alto has several advisories, one of them critical:
CRITICAL: CVE-2026-0310 PAN-OS: Buffer Overflow Vulnerability via XML Processing https://security.paloaltonetworks.com/CVE-2026-0310
More: https://security.paloaltonetworks.com/
Cisco:
CRITICAL: CVE-2026-20079: Cisco Secure Firewall Management Center Software Authentication Bypass Vulnerability https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-onprem-fmc-authbypass-5JPp45V2 @TalosSecurity #Cisco
Dell:
A Dell release that impacts multiple CVEs: Security Update for Dell PowerScale OneFS Multiple Third-Party Component Vulnerabilities https://www.dell.com/support/kbdoc/en-us/000474822/dsa-2026-237-security-update-for-dell-powerscale-onefs-multiple-third-party-component-vulnerabilities #Dell
Posted yesterday:
Apple:
Several releases were posted yesterday https://support.apple.com/en-us/100100 #Apple #iOS
AMD:
AMD: Linux GPU Driver NULL Pointer Dereference https://www.amd.com/en/resources/product-security/bulletin/amd-sb-6034.html #AMD
Adobe:
Adobe has a long list of updates here https://helpx.adobe.com/security/security-bulletin.html #Adobe #infosec #vulnerability
##updated 2026-09-09T21:17:01.313000
1 posts
CVE-2026-12855: HIGH-severity vuln in InsydeH2O firmware (HP). Local attackers with high privileges may execute arbitrary code due to improper input validation. No patch yet โ restrict local admin access. https://radar.offseq.com/threat/cve-2026-12855-cwe-20-improper-input-validation-in-insyde-software-insydeh2o-96c11fc7beb122a7 #OffSeq #Vulnerability #Firmware #Infosec
##updated 2026-09-09T21:09:13.080000
1 posts
A critical MapLibre XSS vulnerability allows zero-click code execution in 2.7M weekly downloads. Discover how CVE-2026-85061 works and how to patch now.
#MapLibre #XSS #CVE202685061 #WebSecurity #InfoSec #CyberSecurity #OpenSource
##updated 2026-09-09T20:13:26.720000
1 posts
๐ CVE-2026-87874 - High (8.1)
A flaw was found in the memcached cache plugin of the community.general Ansible
collection. Although its documentation states that records are stored in JSON
format, the plugin performs no explicit serialization and relies on
python-memcached, whi...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-87874/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-09T18:32:16
2 posts
CVE-2026-17469: IBM i (7.3-7.6) DoS via off-by-one write in LPD queue parser. Local authenticated attacker can crash the service. CVSS 5.3. No patch yet. Lock down LPD access & monitor. Details: https://www.valtersit.com/cve/CVE-2026-17469/ #CVE #IBM #infosec
##CVE-2026-17469: IBM i (7.3-7.6) DoS via off-by-one write in LPD queue parser. Local authenticated attacker can crash the service. CVSS 5.3. No patch yet. Lock down LPD access & monitor. Details: https://www.valtersit.com/cve/CVE-2026-17469/ #CVE #IBM #infosec
##updated 2026-09-09T18:32:12
2 posts
๐ด CVE-2026-87929 - Critical (9.8)
MaxSite CMS through 109.6 ships with a hardcoded session encryption key in application/config/config.php that is never changed during installation, allowing unauthenticated attackers to forge administrator session cookies. Attackers can mint a mal...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-87929/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ด CVE-2026-87929 - Critical (9.8)
MaxSite CMS through 109.6 ships with a hardcoded session encryption key in application/config/config.php that is never changed during installation, allowing unauthenticated attackers to forge administrator session cookies. Attackers can mint a mal...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-87929/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-09T18:32:12
1 posts
๐ CVE-2026-87927 - High (8.2)
MaxSite CMS through 109.6 contains a local file inclusion vulnerability in the ajax and require-maxsite dispatchers that allows unauthenticated attackers to execute privileged handler files by supplying base64-encoded path traversal sequences. Att...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-87927/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-09T18:32:06
3 posts
3 repos
https://github.com/axedos/CVE-2026-67401
https://github.com/jithinkrishnanrs/CVE-2026-67401-cPanel-EmailTrack-SQLi
I can't imagine trying to manage cPanel on the public Internet in 2026, especially on shared systems.
https://nvd.nist.gov/vuln/detail/cve-2026-67401
sev:CRIT 9.9 - CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
##A vulnerability in cPanel allows a mail-enabled account to achieve remote code execution as root through SQLi in EmailTrack component
https://thecybersecguru.com/news/cve-2026-67401-cpanel-emailtrack/
##A critical CVE-2026-67401 cPanel SQL injection flaw in EmailTrack allows authenticated users to gain full control of the server. Patch your system today.
#cPanel #SQLInjection #CVE202667401 #Cybersecurity #Vulnerability
##updated 2026-09-09T17:17:48.473000
1 posts
I'm also quickly going to mention this, explicitly not as a complaint but as a good case study of a well chosen "SHOULD" & why should is better than must here:
https://www.cve.org/ResourcesSupport/AllResources/CNARules#section_5-1_Required_CVE_Record_Content
5.1.1 SHOULD contain sufficient information to uniquely identify the Vulnerability and distinguish it from similar Vulnerabilities.
This, uh, will be a bit of an issue with https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-83972 & https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-83970 . You it actually doesn't matter. The fix is the same, fucking update. And it doesn't matter if you got owned through -83972 or -83970, given the current firehose. It's actually one of those cases where I'd be happy to relax the "one record per vuln" rule, in no world does the differentiation of these two matter to anyone.
##updated 2026-09-09T15:35:15
7 posts
Check Point patched two critical VPN certificate handling flaws, CVE-2026-85102 and CVE-2026-85103, both rated 9.8. They allow unauthenticated remote code execution, making internet-facing VPN gateways an immediate target. Review exposure, apply patches, and investigate for signs of compromise. #CyberSecurity #CheckPoint #VPN #RCE
https://cyberworldops.eu/en/check-point-patches-two-critical-vpn-certificate-flaws-allowing
##Check Point Rushes to Patch Two Critical VPN Vulnerabilities With 98 CVSS Scores + Video
A Serious Warning for Security Gateway Operators Check Point has moved quickly to patch two critical vulnerabilities affecting its VPN certificate-processing technology, closing a potentially dangerous path that could allow an unauthenticated remote attacker to execute code on vulnerable security infrastructure. The flaws, tracked as CVE-2026-85102 and CVE-2026-85103, wereโฆ
##Check Point patched two critical VPN certificate handling flaws, CVE-2026-85102 and CVE-2026-85103, both rated 9.8. They allow unauthenticated remote code execution, making internet-facing VPN gateways an immediate target. Review exposure, apply patches, and investigate for signs of compromise. #CyberSecurity #CheckPoint #VPN #RCE
https://cyberworldops.eu/en/check-point-patches-two-critical-vpn-certificate-flaws-allowing
##[Action Required] - Critical Security Advisory: VPN Vulnerabilities CVE-2026-85102 and CVE-2026-8510
Check Point research team has identified and remediated two critical VPN-related vulnerabilities, CVE-2026-85102 and CVE-2026-85103, which could potentially allow unauthenticated remote code execution under specific conditions. These issues were discovered internally, and we have no indication of active exploitation.
#CheckPoint #CheckPointSoftwareTechnologies #VPN #vulnerability
##It has been :zero_percent: days since an ASN.1 decoding vuln.
It has been :zero_percent: days since an overflow vuln in a corp VPN.
It has been :zero_percent: days since a vuln with "Quantum" in the system name.
They are all the same vuln.
https://nvd.nist.gov/vuln/detail/cve-2026-85103
##A heap-based buffer overflow in VPN certificate ASN.1 decoding may allow an unauthenticated remote attacker to execute arbitrary code on Check Point Quantum Security Management and Quantum Security Gateway systems.
Check Point fixed critical Check Point VPN vulnerabilities. Update gateways to prevent remote code execution under CVE-2026-85102 and CVE-2026-85103.
##CRITICAL CVE-2026-85103 in Check Point Quantum Security Gateway: Heap-based buffer overflow in VPN certificate ASN.1 decoding allows unauthenticated RCE. Patch pending โ monitor vendor. https://radar.offseq.com/threat/cve-2026-85103-cwe-122-heap-based-buffer-overflow-in-checkpoint-quantum-security-gateway-769c0bcac8d0fa47 #OffSeq #CheckPoint #infosec #Vuln
##updated 2026-09-09T15:35:15
5 posts
Check Point patched two critical VPN certificate handling flaws, CVE-2026-85102 and CVE-2026-85103, both rated 9.8. They allow unauthenticated remote code execution, making internet-facing VPN gateways an immediate target. Review exposure, apply patches, and investigate for signs of compromise. #CyberSecurity #CheckPoint #VPN #RCE
https://cyberworldops.eu/en/check-point-patches-two-critical-vpn-certificate-flaws-allowing
##Check Point Rushes to Patch Two Critical VPN Vulnerabilities With 98 CVSS Scores + Video
A Serious Warning for Security Gateway Operators Check Point has moved quickly to patch two critical vulnerabilities affecting its VPN certificate-processing technology, closing a potentially dangerous path that could allow an unauthenticated remote attacker to execute code on vulnerable security infrastructure. The flaws, tracked as CVE-2026-85102 and CVE-2026-85103, wereโฆ
##Check Point patched two critical VPN certificate handling flaws, CVE-2026-85102 and CVE-2026-85103, both rated 9.8. They allow unauthenticated remote code execution, making internet-facing VPN gateways an immediate target. Review exposure, apply patches, and investigate for signs of compromise. #CyberSecurity #CheckPoint #VPN #RCE
https://cyberworldops.eu/en/check-point-patches-two-critical-vpn-certificate-flaws-allowing
##[Action Required] - Critical Security Advisory: VPN Vulnerabilities CVE-2026-85102 and CVE-2026-8510
Check Point research team has identified and remediated two critical VPN-related vulnerabilities, CVE-2026-85102 and CVE-2026-85103, which could potentially allow unauthenticated remote code execution under specific conditions. These issues were discovered internally, and we have no indication of active exploitation.
#CheckPoint #CheckPointSoftwareTechnologies #VPN #vulnerability
##Check Point fixed critical Check Point VPN vulnerabilities. Update gateways to prevent remote code execution under CVE-2026-85102 and CVE-2026-85103.
##updated 2026-09-09T15:03:00.630000
1 posts
https://db.gcve.eu/vuln/cve-2026-81953
Microsoft Excel Remote Code Execution Vulnerability
looks inside
##Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
updated 2026-09-09T12:32:22
1 posts
Dell SCG 5.0 (pre-5.36.00.00) hit by CRITICAL vuln (CVE-2026-80172, CVSS 9.8): unauthenticated attackers can reuse requests to gain admin access. Upgrade required to patch. https://radar.offseq.com/threat/cve-2026-80172-cwe-345-insufficient-verification-of-data-authenticity-in-dell-secure-connect-gateway-cfd172772d8d2f2f #OffSeq #CVE202680172 #Dell #Infosec
##updated 2026-09-09T12:32:21
1 posts
๐ CVE-2026-79641 - High (7.5)
Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A low privileged a...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-79641/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-09T12:32:12
1 posts
๐ CVE-2026-87795 - High (8.2)
zstd-jni versions before 1.5.7-14 fail to validate offset and length parameters in the ZstdDictCompress constructor, allowing out-of-bounds memory reads. Attackers can supply untrusted offset or length values to read native heap memory into the co...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-87795/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-09T09:33:06
1 posts
CVE-2026-79696: Critical code injection (CVSS 10.0) in Google Cloud ADK for Python (2.0.0 โ 2.6.0). Unauth RCE possible via crafted session replay in pytest-enabled Cloud Run & GKE. Patch or update now. https://radar.offseq.com/threat/cve-2026-79696-cwe-184-incomplete-list-of-disallowed-inputs-in-google-cloud-agent-development-kit-adk-3b96714136b44311 #OffSeq #CVE #CloudSecurity #Python
##updated 2026-09-09T09:33:00
1 posts
CVE-2026-16272 (CVSS 9.1, CRITICAL) in PayTR Virtual Pos iFrame API (v9x) WHMCS Module v9.0.0: Use of less trusted source can compromise confidentiality and integrity. No patch yet โ restrict access and monitor vendor updates. https://radar.offseq.com/threat/cve-2026-16272-cwe-348-use-of-less-trusted-source-in-paytr-payment-and-electronic-money-institution-04a905be1a132f6a #OffSeq #CVE2026_16272 #infosec
##updated 2026-09-09T06:31:48
2 posts
๐ CVE-2026-76009 - High (8.1)
The Next-Cart Store to WooCommerce Migration plugin for WordPress is vulnerable to Authentication Bypass in all versions up to, and including, 3.9.8 via the `NCWM_Kitconnect::run()` function. This is due to the plugin registering the `/wp-json/nex...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76009/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-76009 (HIGH): Next-Cart Store to WooCommerce Migration โค3.9.8 exposes an auth bypass via REST API. Attackers can execute arbitrary SQL & delete files โ full site compromise possible. Patch status unknown. Details: https://radar.offseq.com/threat/cve-2026-76009-cwe-287-improper-authentication-in-martinnguyen1990-next-cart-store-to-woocommerce-e35aad4a96ee528d #OffSeq #WordPress #Vuln #Infosec
##updated 2026-09-09T06:31:40
1 posts
๐ CVE-2026-87734 - High (7.5)
An issue was discovered in the utcp package before 0.0.6 for OCaml. Out-of-order segment reassembly allows remote denial of service.
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-87734/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-09T03:30:51
1 posts
CVE-2026-15667: HIGH-severity LFI in Eventin WordPress plugin (โค4.1.22). Contributors can include arbitrary PHP via 'event_layout', risking code execution. Restrict privileges & await patch. https://radar.offseq.com/threat/cve-2026-15667-cwe-98-improper-control-of-filename-for-includerequire-statement-in-php-program-php-b89bc3860052e068 #OffSeq #WordPress #Vuln #LFI
##updated 2026-09-08T21:34:41
1 posts
๐ CVE-2026-81994 - High (8.2)
Acrobat Reader is affected by an Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') vulnerability that could lead to arbitrary file system read. An attacker could exploit this vulnerability to access sensitiv...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-81994/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-08T21:34:37
3 posts
ConnectWise ScreenConnect #zeroday CVE-2026-84869
Huntress article: https://www.huntress.com/blog/rogue-screenconnect-installations
Canadian Centre for Cyber Security: https://www.cyber.gc.ca/en/alerts-advisories/connectwise-security-advisory-av26-903
Open-source reporting indicates that CVE-2026-84869 is being exploited in the wild.
ConnectWise is silent on exploitation status: https://www.connectwise.com/company/trust/security-bulletins/2026-09-08-screenconnect-bulletin
##WTF
https://github.com/ConnectWise-Advisories/Disclosures/blob/main/CVE-2026-84869/README.md
##Earlier versions of ScreenConnect Client Support and Access sessions contained a client-side file-transfer handling condition in which file-transfer actions could be processed through an active remote session without proper authorization or Host confirmation. Under certain circumstances, this could allow files to be transferred to and executed on the Host client system, including through elevated execution actions. ScreenConnect servers are not impacted. Disabling file-transfer permissions for affected sessions may reduce exposure until the update is applied.
๐ด CVE-2026-84869 - Critical (9.9)
A condition in the ScreenConnect client may allow files to be transferred and executed through an active remote session without authorization or Host confirmation in certain circumstances. ScreenConnect servers are not impacted.
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-84869/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-08T21:34:37
1 posts
๐ CVE-2026-84942 - High (8.7)
Improper input validation in the Vega expression function implementation in OpenSearch Dashboards allows a remote authenticated actor with dashboard write permissions to execute arbitrary JavaScript in the context of other users' browser sessions ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-84942/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-08T21:34:36
1 posts
๐ CVE-2026-82007 - High (7.8)
Photoshop Desktop is affected by an Integer Overflow or Wraparound vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a ma...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-82007/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-08T21:34:12
9 posts
New.
Press release:
CISA Releases Updated Insider Threat Guide With New Insights to Mitigate Physical and Cyber Threats https://www.cisa.gov/news-events/news/cisa-releases-updated-insider-threat-guide-new-insights-mitigate-physical-and-cyber-threats
The guide: https://www.cisa.gov/resources-tools/resources/insider-threat-mitigation-guide
Updates to the Kev catalogue:
- CVE-2026-85880: Microsoft Windows Heap-Based Buffer Overflow Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-85880 #Microsoft #Windows
- CVE-2026-86218: N-able N-central Static Code Injection Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-86218
- CVE-2026-81963: Microsoft Windows Link Following Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-81963
- CVE-2026-75650: Adobe Commerce and Magento Improper Neutralization of Special Elements Used in a Template Engine Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-75650 #Adobe
Yesterday:
Joint advisory: China-Based Artificial Intelligence Companies Conducting Industrial-Scale Distillation Campaigns Against U.S. AI Companies https://www.cisa.gov/news-events/cybersecurity-advisories/aa26-251a #CISA #infosec #vulnerability
##**Latest Global Briefing: September 9, 2026**
**Cybersecurity:** Microsoft's September Patch Tuesday revealed nearly 1000 vulnerabilities, with CISA flagging two exploited zero-days (CVE-2026-81963, CVE-2026-85880) requiring urgent patching by federal agencies. The FBI also announced a new strategy to enhance cyberattack disruptions.
**Technology:** Dell Technologies reported surging Q2 FY 2027 earnings driven by high AI server demand, with OpenAI exploring AI infrastructure-as-a-service.
**Geopolitics:** Tensions heightened in the Middle East as US forces destroyed five Iranian oil tankers following IRGC attacks on a US Navy warship. Separately, 12 nations implemented trade bans on goods from Israeli settlements.
##๐จ [CISA-2026:0908] CISA Adds 4 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0908)
CISA has added 4 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
โ ๏ธ CVE-2026-75650 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-75650)
- Name: Adobe Commerce and Magento Improper Neutralization of Special Elements Used in a Template Engine Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Adobe
- Product: Commerce and Magento
- Notes: https://helpx.adobe.com/security/products/magento/apsb26-146.html ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-75650
โ ๏ธ CVE-2026-81963 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-81963)
- Name: Microsoft Windows Link Following Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Microsoft
- Product: Windows
- Notes: https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2026-81963 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-81963
โ ๏ธ CVE-2026-85880 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85880)
- Name: Microsoft Windows Heap-Based Buffer Overflow Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Microsoft
- Product: Windows
- Notes: https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2026-85880 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-85880
โ ๏ธ CVE-2026-86218 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-86218)
- Name: N-able N-central Static Code Injection Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: N-able
- Product: N-central
- Notes: https://status.n-able.com/2026/09/06/n-central-2026-3-hotfix-4-cve-2026-86218/ ; https://me.n-able.com/s/security-advisory/aArVy0000002Ld3KAE/cve202686218-preauthentication-remote-code-execution ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-86218
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260908 #cisa20260908 #cve_2026_75650 #cve_2026_81963 #cve_2026_85880 #cve_2026_86218 #cve202675650 #cve202681963 #cve202685880 #cve202686218
##Microsoft Patches 966 Vulnerabilities in September 2026 Update Including Two Actively Exploited Zero-Days
Microsoft's September 2026 Patch Tuesday fixed 966 flaws, its largest ever. The patch package includes 105 critical bugs and two actively exploited zero-days (CVE-2026-81963 and CVE-2026-85880). The critical flaws cluster in Windows network services (DNS, DHCP, RRAS, Netlogon), Office file parsing, imaging/graphics components, and Azure/Entra cloud services. Microsoft is attributing the surge in volume to AI-assisted vulnerability discovery.
**Patch the Windows OS first for the two zero-days, CVE-2026-81963 in the Windows Update Stack and CVE-2026-85880 in ALPC, both already exploited in attacks to gain SYSTEM privileges. Next, patch internet-reachable and domain-joined Windows servers: DNS, DHCP, RRAS, Netlogon, Kerberos and the Key Distribution Center, Services for NFS, Deployment Services, Failover Cluster and SSTP all carry critical remote code execution flaws. Then move through Outlook, Word, Excel, and Office, followed by SQL Server, SharePoint Server, and Exchange. Windows Hello, Secure Kernel Mode, Credential Guard, and VBS should follow for anything holding credentials or running as a security boundary. Everything else can follow in the normal cycle, but plan for it to take longer than usual: almost no organization can test and deploy this volume in a single window.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/microsoft-patch-tuesday-for-september-2026-snort-rules-and-prominent-b-vulnerabilities-b-r-c-i-1-g/gD2P6Ple2L
Meanwhile CVE-2026-69829 is a CVSS 9.8 heap overflow in Windows Shell letting unauthenticated attackers run code over a network. I called the mechanics. I drew the diagram. I made a spreadsheet.
Patch CVE-2026-81963, CVE-2026-85880, CVE-2026-69730, and CVE-2026-69829 immediately โ yes, right now, before you ask if it can wait until Friday.
Reward: You've received the Tunnel Vision Debuff. It cannot be cleansed.
#ZeroDay #Microsoft #WindowsUpdate #PrivilegeEscalation #CyberSecurity (2/2)
##๐ New Achievement! Stand In The Fire One More Time, I Dare You!
NINE HUNDRED AND SEVENTY-FOUR vulnerabilities. Microsoft dropped 974 patches this Patch Tuesday and you are STILL standing in the bad stuff. CVE-2026-81963 and CVE-2026-85880, both CVSS 7.8, are being actively exploited RIGHT NOW against the Windows Update Stack and Windows Advanced Local Procedure Call โ privilege escalation, in the wild, before disclosure. (1/2)
##CVE ID: CVE-2026-85880
Vendor: Microsoft
Product: Windows
Date Added: 2026-09-08
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-85880
Microsoft's September 2026 Patch Tuesday fixes two zero-day flaws, CVE-2026-81963 and CVE-2026-85880, both exploited in the wild.
#PatchTuesday #ZeroDay #Microsoft #Windows #CyberSecurity #CVE #Infosec #VulnerabilityManagement
##Only two 0days this month for MS? Bummer.
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-81963
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-85880
##updated 2026-09-08T21:34:09
9 posts
New.
Press release:
CISA Releases Updated Insider Threat Guide With New Insights to Mitigate Physical and Cyber Threats https://www.cisa.gov/news-events/news/cisa-releases-updated-insider-threat-guide-new-insights-mitigate-physical-and-cyber-threats
The guide: https://www.cisa.gov/resources-tools/resources/insider-threat-mitigation-guide
Updates to the Kev catalogue:
- CVE-2026-85880: Microsoft Windows Heap-Based Buffer Overflow Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-85880 #Microsoft #Windows
- CVE-2026-86218: N-able N-central Static Code Injection Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-86218
- CVE-2026-81963: Microsoft Windows Link Following Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-81963
- CVE-2026-75650: Adobe Commerce and Magento Improper Neutralization of Special Elements Used in a Template Engine Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-75650 #Adobe
Yesterday:
Joint advisory: China-Based Artificial Intelligence Companies Conducting Industrial-Scale Distillation Campaigns Against U.S. AI Companies https://www.cisa.gov/news-events/cybersecurity-advisories/aa26-251a #CISA #infosec #vulnerability
##**Latest Global Briefing: September 9, 2026**
**Cybersecurity:** Microsoft's September Patch Tuesday revealed nearly 1000 vulnerabilities, with CISA flagging two exploited zero-days (CVE-2026-81963, CVE-2026-85880) requiring urgent patching by federal agencies. The FBI also announced a new strategy to enhance cyberattack disruptions.
**Technology:** Dell Technologies reported surging Q2 FY 2027 earnings driven by high AI server demand, with OpenAI exploring AI infrastructure-as-a-service.
**Geopolitics:** Tensions heightened in the Middle East as US forces destroyed five Iranian oil tankers following IRGC attacks on a US Navy warship. Separately, 12 nations implemented trade bans on goods from Israeli settlements.
##๐จ [CISA-2026:0908] CISA Adds 4 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0908)
CISA has added 4 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
โ ๏ธ CVE-2026-75650 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-75650)
- Name: Adobe Commerce and Magento Improper Neutralization of Special Elements Used in a Template Engine Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Adobe
- Product: Commerce and Magento
- Notes: https://helpx.adobe.com/security/products/magento/apsb26-146.html ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-75650
โ ๏ธ CVE-2026-81963 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-81963)
- Name: Microsoft Windows Link Following Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Microsoft
- Product: Windows
- Notes: https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2026-81963 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-81963
โ ๏ธ CVE-2026-85880 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85880)
- Name: Microsoft Windows Heap-Based Buffer Overflow Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Microsoft
- Product: Windows
- Notes: https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2026-85880 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-85880
โ ๏ธ CVE-2026-86218 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-86218)
- Name: N-able N-central Static Code Injection Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: N-able
- Product: N-central
- Notes: https://status.n-able.com/2026/09/06/n-central-2026-3-hotfix-4-cve-2026-86218/ ; https://me.n-able.com/s/security-advisory/aArVy0000002Ld3KAE/cve202686218-preauthentication-remote-code-execution ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-86218
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260908 #cisa20260908 #cve_2026_75650 #cve_2026_81963 #cve_2026_85880 #cve_2026_86218 #cve202675650 #cve202681963 #cve202685880 #cve202686218
##Microsoft Patches 966 Vulnerabilities in September 2026 Update Including Two Actively Exploited Zero-Days
Microsoft's September 2026 Patch Tuesday fixed 966 flaws, its largest ever. The patch package includes 105 critical bugs and two actively exploited zero-days (CVE-2026-81963 and CVE-2026-85880). The critical flaws cluster in Windows network services (DNS, DHCP, RRAS, Netlogon), Office file parsing, imaging/graphics components, and Azure/Entra cloud services. Microsoft is attributing the surge in volume to AI-assisted vulnerability discovery.
**Patch the Windows OS first for the two zero-days, CVE-2026-81963 in the Windows Update Stack and CVE-2026-85880 in ALPC, both already exploited in attacks to gain SYSTEM privileges. Next, patch internet-reachable and domain-joined Windows servers: DNS, DHCP, RRAS, Netlogon, Kerberos and the Key Distribution Center, Services for NFS, Deployment Services, Failover Cluster and SSTP all carry critical remote code execution flaws. Then move through Outlook, Word, Excel, and Office, followed by SQL Server, SharePoint Server, and Exchange. Windows Hello, Secure Kernel Mode, Credential Guard, and VBS should follow for anything holding credentials or running as a security boundary. Everything else can follow in the normal cycle, but plan for it to take longer than usual: almost no organization can test and deploy this volume in a single window.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/microsoft-patch-tuesday-for-september-2026-snort-rules-and-prominent-b-vulnerabilities-b-r-c-i-1-g/gD2P6Ple2L
Meanwhile CVE-2026-69829 is a CVSS 9.8 heap overflow in Windows Shell letting unauthenticated attackers run code over a network. I called the mechanics. I drew the diagram. I made a spreadsheet.
Patch CVE-2026-81963, CVE-2026-85880, CVE-2026-69730, and CVE-2026-69829 immediately โ yes, right now, before you ask if it can wait until Friday.
Reward: You've received the Tunnel Vision Debuff. It cannot be cleansed.
#ZeroDay #Microsoft #WindowsUpdate #PrivilegeEscalation #CyberSecurity (2/2)
##๐ New Achievement! Stand In The Fire One More Time, I Dare You!
NINE HUNDRED AND SEVENTY-FOUR vulnerabilities. Microsoft dropped 974 patches this Patch Tuesday and you are STILL standing in the bad stuff. CVE-2026-81963 and CVE-2026-85880, both CVSS 7.8, are being actively exploited RIGHT NOW against the Windows Update Stack and Windows Advanced Local Procedure Call โ privilege escalation, in the wild, before disclosure. (1/2)
##CVE ID: CVE-2026-81963
Vendor: Microsoft
Product: Windows
Date Added: 2026-09-08
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-81963
Microsoft's September 2026 Patch Tuesday fixes two zero-day flaws, CVE-2026-81963 and CVE-2026-85880, both exploited in the wild.
#PatchTuesday #ZeroDay #Microsoft #Windows #CyberSecurity #CVE #Infosec #VulnerabilityManagement
##Only two 0days this month for MS? Bummer.
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-81963
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-85880
##updated 2026-09-08T21:33:09
11 posts
4 repos
https://github.com/jithinkrishnanrs/stylesmuggler-ioc-toolkit
https://github.com/dinosn/cve-2026-75650-magento-validation-lab
https://github.com/disrex-group/stylesmuggler-adobe-patches
https://github.com/disrex-group/stylesmuggler-adobe-patches-mageos
If you want to learn more about the latest zero-day #Magento exploit (StyleSmuggler), this a great read: https://www.graycore.io/case-studies/CVE-2026-75650-style-smuggler
##Executive alert: CVE-2026-75650 actively threatens Adobe Commerce and Magento infrastructure. Review board-ready risk evaluation protocols, asset integrity measures, and strategic remediation steps to protect your enterprise value today.
##Critical CVE-2026-75650 alert for Adobe Commerce and Magento. Active CISA KEV exploitation requires immediate template parsing audits and endpoint hardening. Access our technical forensic brief to secure your enterprise perimeter today.
##If you want to learn more about the latest zero-day #Magento exploit (StyleSmuggler), this a great read: https://www.graycore.io/case-studies/CVE-2026-75650-style-smuggler
##Executive alert: CVE-2026-75650 actively threatens Adobe Commerce and Magento infrastructure. Review board-ready risk evaluation protocols, asset integrity measures, and strategic remediation steps to protect your enterprise value today.
##Critical CVE-2026-75650 alert for Adobe Commerce and Magento. Active CISA KEV exploitation requires immediate template parsing audits and endpoint hardening. Access our technical forensic brief to secure your enterprise perimeter today.
##New.
Press release:
CISA Releases Updated Insider Threat Guide With New Insights to Mitigate Physical and Cyber Threats https://www.cisa.gov/news-events/news/cisa-releases-updated-insider-threat-guide-new-insights-mitigate-physical-and-cyber-threats
The guide: https://www.cisa.gov/resources-tools/resources/insider-threat-mitigation-guide
Updates to the Kev catalogue:
- CVE-2026-85880: Microsoft Windows Heap-Based Buffer Overflow Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-85880 #Microsoft #Windows
- CVE-2026-86218: N-able N-central Static Code Injection Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-86218
- CVE-2026-81963: Microsoft Windows Link Following Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-81963
- CVE-2026-75650: Adobe Commerce and Magento Improper Neutralization of Special Elements Used in a Template Engine Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-75650 #Adobe
Yesterday:
Joint advisory: China-Based Artificial Intelligence Companies Conducting Industrial-Scale Distillation Campaigns Against U.S. AI Companies https://www.cisa.gov/news-events/cybersecurity-advisories/aa26-251a #CISA #infosec #vulnerability
##๐จ [CISA-2026:0908] CISA Adds 4 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0908)
CISA has added 4 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
โ ๏ธ CVE-2026-75650 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-75650)
- Name: Adobe Commerce and Magento Improper Neutralization of Special Elements Used in a Template Engine Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Adobe
- Product: Commerce and Magento
- Notes: https://helpx.adobe.com/security/products/magento/apsb26-146.html ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-75650
โ ๏ธ CVE-2026-81963 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-81963)
- Name: Microsoft Windows Link Following Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Microsoft
- Product: Windows
- Notes: https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2026-81963 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-81963
โ ๏ธ CVE-2026-85880 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85880)
- Name: Microsoft Windows Heap-Based Buffer Overflow Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Microsoft
- Product: Windows
- Notes: https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2026-85880 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-85880
โ ๏ธ CVE-2026-86218 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-86218)
- Name: N-able N-central Static Code Injection Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: N-able
- Product: N-central
- Notes: https://status.n-able.com/2026/09/06/n-central-2026-3-hotfix-4-cve-2026-86218/ ; https://me.n-able.com/s/security-advisory/aArVy0000002Ld3KAE/cve202686218-preauthentication-remote-code-execution ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-86218
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260908 #cisa20260908 #cve_2026_75650 #cve_2026_81963 #cve_2026_85880 #cve_2026_86218 #cve202675650 #cve202681963 #cve202685880 #cve202686218
##Magento : la faille zero-day StyleSmuggler est corrigรฉe, mais des boutiques sont dรฉjร piratรฉes https://www.it-connect.fr/magento-adobe-commerce-faille-zero-day-stylesmuggler-cve-2026-75650/ #ActuCybersรฉcuritรฉ #Cybersรฉcuritรฉ #Vulnรฉrabilitรฉ #Adobe
##Adobe releases September 2026 patches for multiple products
Adobe's September 2026 security updates patch vulnerabilities across eight product families: Commerce/Magento, ColdFusion, Campaign Classic, Acrobat/Reader, Experience Manager, Photoshop, Illustrator, and Animate. The flaws could allow arbitrary code execution, privilege escalation, security feature bypass, file system read/write, memory exposure, and denial-of-service. The most urgent is CVE-2026-75650 (CVSS 10.0) in Adobe Commerce and Magento Open Source, an unauthenticated template-engine flaw already exploited in the wild and fixed by a separate out-of-band hotfix on September 7 that must be applied in addition to the September update.
**If you run Adobe Commerce or Magento Open Source, apply the out-of-band hotfix for CVE-2026-75650 immediately! Adobe is aware of this flaw being exploited in the wild, it carries a CVSS score of 10.0, and it can be triggered without authentication. Next, update ColdFusion and Adobe Campaign Classic, both of which received Adobe's highest priority rating and contain critical flaws that could lead to arbitrary code execution. Then apply the September Adobe Commerce security update, which is separate from the hotfix and must be installed in addition to it. After that, update Adobe Experience Manager and Acrobat and Reader. Finally, update Photoshop, Illustrator, and Animate. If you can't update right away, restrict network access to Commerce, ColdFusion, Campaign Classic, and Experience Manager servers, and avoid opening untrusted PDFs and untrusted image or project files in Acrobat, Reader, Photoshop, Illustrator, and Animate until patches are applied.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/adobe-releases-september-2026-patches-for-multiple-products-9-j-d-0-x/gD2P6Ple2L
CVE ID: CVE-2026-75650
Vendor: Adobe
Product: Commerce and Magento
Date Added: 2026-09-08
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-75650
updated 2026-09-08T21:33:02
12 posts
1 repos
Discover the severe N-central CVE-2026-86218 vulnerability allowing unauthenticated RCE. Learn about N-able HF4 patches, CISA mandates, and threat actors.
#Ncentral #CVE202686218 #CyberSecurity #ZeroDay #Vulnerability
##N-Able Patches N-Central Zero-Day Exploited in the Wild
N-Able released an emergency hotfix for a remote code execution vulnerability (CVE-2026-86218) in N-Central that attackers are actively exploiting to gain full administrative control over RMM servers and downstream client endpoints.
**If you run on-premises N-able N-central, upgrade immediately to version 2026.3.1.14 (2026.3 Hotfix 4). Make sure to keep the management console off the open internet behind a VPN or firewall allowlist limited to trusted admin networks. Since attackers may have already gained access, check for unfamiliar administrator accounts, unknown scripts or scheduled jobs and strange outbound connections, and change all passwords and keys used by or stored on the N-central server.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/n-able-patches-n-central-zero-day-exploited-in-the-wild-q-5-t-1-1/gD2P6Ple2L
โ ๏ธ CRITICAL: N-able N-central Pre-Auth RCE Flaw Exploited in the Wild
CVE-2026-86218 is a critical pre-auth RCE in N-able N-central being actively exploited in the wild. Any organization running N-central is vulnerable to unauthenticated remote code execution. Federal agencies are mandated to patch by September 11, 2026.
๐ค AI generated summary
##Discover the severe N-central CVE-2026-86218 vulnerability allowing unauthenticated RCE. Learn about N-able HF4 patches, CISA mandates, and threat actors.
#Ncentral #CVE202686218 #CyberSecurity #ZeroDay #Vulnerability
##N-Able Patches N-Central Zero-Day Exploited in the Wild
N-Able released an emergency hotfix for a remote code execution vulnerability (CVE-2026-86218) in N-Central that attackers are actively exploiting to gain full administrative control over RMM servers and downstream client endpoints.
**If you run on-premises N-able N-central, upgrade immediately to version 2026.3.1.14 (2026.3 Hotfix 4). Make sure to keep the management console off the open internet behind a VPN or firewall allowlist limited to trusted admin networks. Since attackers may have already gained access, check for unfamiliar administrator accounts, unknown scripts or scheduled jobs and strange outbound connections, and change all passwords and keys used by or stored on the N-central server.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/n-able-patches-n-central-zero-day-exploited-in-the-wild-q-5-t-1-1/gD2P6Ple2L
โ ๏ธ CRITICAL: N-able N-central Pre-Auth RCE Flaw Exploited in the Wild
CVE-2026-86218 is a critical pre-auth RCE in N-able N-central being actively exploited in the wild. Any organization running N-central is vulnerable to unauthenticated remote code execution. Federal agencies are mandated to patch by September 11, 2026.
๐ค AI generated summary
##New.
Press release:
CISA Releases Updated Insider Threat Guide With New Insights to Mitigate Physical and Cyber Threats https://www.cisa.gov/news-events/news/cisa-releases-updated-insider-threat-guide-new-insights-mitigate-physical-and-cyber-threats
The guide: https://www.cisa.gov/resources-tools/resources/insider-threat-mitigation-guide
Updates to the Kev catalogue:
- CVE-2026-85880: Microsoft Windows Heap-Based Buffer Overflow Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-85880 #Microsoft #Windows
- CVE-2026-86218: N-able N-central Static Code Injection Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-86218
- CVE-2026-81963: Microsoft Windows Link Following Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-81963
- CVE-2026-75650: Adobe Commerce and Magento Improper Neutralization of Special Elements Used in a Template Engine Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-75650 #Adobe
Yesterday:
Joint advisory: China-Based Artificial Intelligence Companies Conducting Industrial-Scale Distillation Campaigns Against U.S. AI Companies https://www.cisa.gov/news-events/cybersecurity-advisories/aa26-251a #CISA #infosec #vulnerability
##N-able released Hotfix 4 for CVE-2026-86218, a pre-auth RCE in on-prem N-central with CVSS 4.0 10.0. All builds before 2026.3.1.14 are vulnerable, including Hotfix 3. RMM pre-auth RCE is high-value for initial access, prioritize patching and internet exposure review. #NAble #NCentral #RemoteCodeExecution
https://cyberworldops.eu/en/n-able-fixes-critical-pre-auth-rce-in-n-central-as-exploitation
##๐จ [CISA-2026:0908] CISA Adds 4 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0908)
CISA has added 4 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
โ ๏ธ CVE-2026-75650 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-75650)
- Name: Adobe Commerce and Magento Improper Neutralization of Special Elements Used in a Template Engine Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Adobe
- Product: Commerce and Magento
- Notes: https://helpx.adobe.com/security/products/magento/apsb26-146.html ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-75650
โ ๏ธ CVE-2026-81963 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-81963)
- Name: Microsoft Windows Link Following Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Microsoft
- Product: Windows
- Notes: https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2026-81963 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-81963
โ ๏ธ CVE-2026-85880 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85880)
- Name: Microsoft Windows Heap-Based Buffer Overflow Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Microsoft
- Product: Windows
- Notes: https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2026-85880 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-85880
โ ๏ธ CVE-2026-86218 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-86218)
- Name: N-able N-central Static Code Injection Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: N-able
- Product: N-central
- Notes: https://status.n-able.com/2026/09/06/n-central-2026-3-hotfix-4-cve-2026-86218/ ; https://me.n-able.com/s/security-advisory/aArVy0000002Ld3KAE/cve202686218-preauthentication-remote-code-execution ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-86218
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260908 #cisa20260908 #cve_2026_75650 #cve_2026_81963 #cve_2026_85880 #cve_2026_86218 #cve202675650 #cve202681963 #cve202685880 #cve202686218
##CISA added CVE-2026-86218 to KEV after confirmed active exploitation. The N-able N-central static code injection allows pre-auth RCE with CVSS 9.8, exposing centralized management infrastructure. Patch and hunt for pre-patch compromise. #Nable #NCentral #RemoteCodeExecution
https://cyberworldops.eu/en/actively-exploited-n-able-n-central-flaw-enables-pre-authentication
##N-able didn't beat around the bush:
##Since our post 9/5/2026, 08:11:00 UTC a third independent researcher disclosed to N-able a new vulnerabilityโ one that has been exploited in the wild and is unrelated to the previously disclosed CVEs.
This critical zero-day vulnerability, CVE-2026-86218, could allow pre-authenticated access to the N-central server if exploited.
CVE ID: CVE-2026-86218
Vendor: N-able
Product: N-central
Date Added: 2026-09-08
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-86218
updated 2026-09-08T21:14:35.567000
1 posts
CVE-2026-57162: Stack buffer overflow in PJSIP SRTP/SDES when processing crafted crypto attributes during SDP negotiation. CVSS: N/A, unpatched. If you use SRTP with SDES keying, you are exposed. Patch immediately. Details: https://www.valtersit.com/cve/CVE-2026-57162/ #CVE #info
##updated 2026-09-08T20:57:52
1 posts
Details and PoC for CVE-2026-84372 are publicly disclosed. This Predis command injection flaw via CRLF smuggling allows complete cluster compromise.
#Predis #CommandInjection #CVE202684372 #Cybersecurity #Vulnerability
##updated 2026-09-08T19:53:13.400000
1 posts
๐ CVE-2026-86721 - High (7.5)
AVideo through commit c3edcc274c contains an authorization bypass vulnerability where a session cookie named 'key' with value 'value' overrides the $_REQUEST['key'] parameter in saveLive.php and related endpoints. Attackers can publish to any user...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-86721/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-08T19:53:13.400000
1 posts
๐ CVE-2026-86730 - High (8.8)
Craft CMS versions before 5.10.12 fail to properly cleanse string-typed field-layout elements, allowing authenticated control-panel users to inject Yii2 behavior attachments and event handlers. Attackers can post field-layout tab elements as JSON ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-86730/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-08T19:12:59.557000
5 posts
The SAP OVERPASS vulnerability (CVE-2026-44756) scores a perfect CVSS 10.0, letting attackers seize SAP servers before login. Patch Note 3747649 now.
#SAP #OVERPASS #CVE202644756 #CyberSecurity #RCE #Onapsis #InfoSec
##The SAP OVERPASS vulnerability (CVE-2026-44756) scores a perfect CVSS 10.0, letting attackers seize SAP servers before login. Patch Note 3747649 now.
#SAP #OVERPASS #CVE202644756 #CyberSecurity #RCE #Onapsis #InfoSec
##https://thecybersecguru.com/news/sap-overpass-cve-2026-44756/
##The vulnerability, tracked as CVE-2026-44756 (CVSS score: 10.0), has been described as a case of memory corruption. Discovered and reported by SAP security company Onapsis, it has been codenamed OVERPASS. https://thehackernews.com/2026/09/sap-patches-cvss-100-kernel-flaw.html
##๐ New Achievement! OVERPASS: The SAP Kernel Speedrun!
Patch compliance policy activated. Scanning enterprise environment. Detecting CVE-2026-44756, a CVSS 10/10 memory corruption flaw in SAP Extended Passport Processing, dubbed OVERPASS. Policy requires acknowledgment of impact: unauthenticated remote attackers may execute arbitrary system commands, drain database credentials and password hashes, hijack live user sessions, and rewrite configurations and SAP binaries. (1/2)
##updated 2026-09-08T18:34:21
1 posts
I'm also quickly going to mention this, explicitly not as a complaint but as a good case study of a well chosen "SHOULD" & why should is better than must here:
https://www.cve.org/ResourcesSupport/AllResources/CNARules#section_5-1_Required_CVE_Record_Content
5.1.1 SHOULD contain sufficient information to uniquely identify the Vulnerability and distinguish it from similar Vulnerabilities.
This, uh, will be a bit of an issue with https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-83972 & https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-83970 . You it actually doesn't matter. The fix is the same, fucking update. And it doesn't matter if you got owned through -83972 or -83970, given the current firehose. It's actually one of those cases where I'd be happy to relax the "one record per vuln" rule, in no world does the differentiation of these two matter to anyone.
##updated 2026-09-08T18:34:18
1 posts
I explicitly don't want to complain about MSRC here, this is a bigger topic, but I am a bit confused here:
Compare these two:
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-81954 - AV:L,UI:R
Q: According to the CVSS metric, user interaction is required (UI:R). What interaction would the user have to do?
A: An attacker must send a user a malicious Office file and convince them to open it.
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-80081 - AV:N,UI:R
Q: How could an attacker exploit this vulnerability?
A: An attacker could send a specially crafted PowerPoint presentation containing malicious linked media to a target user. The user would need to open the presentation, start the slideshow, and allow the linked content. Successful exploitation could allow the attacker to execute code on the user's system. Authentication is not required.
To me the attack flow looks equivalent wrt to attacker location. We can argue about #2 being actually harder to execute, having more social engineering prerequisites... which is why it totally makes sense for #2 to scored higher on CVSS as it's apparently network & the other one local.
##updated 2026-09-08T18:34:14
1 posts
2 repos
https://github.com/ZeroDayVPN/CVE-2026-83991-WriteUP-and-PoC
https://github.com/karollooool/CVE-2026-83991-writeup-and-poc
CVE-2026-83991: Windows Cloud Files access-check bypass https://github.com/karollooool/CVE-2026-83991-writeup-and-poc
##updated 2026-09-08T18:34:00
1 posts
I explicitly don't want to complain about MSRC here, this is a bigger topic, but I am a bit confused here:
Compare these two:
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-81954 - AV:L,UI:R
Q: According to the CVSS metric, user interaction is required (UI:R). What interaction would the user have to do?
A: An attacker must send a user a malicious Office file and convince them to open it.
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-80081 - AV:N,UI:R
Q: How could an attacker exploit this vulnerability?
A: An attacker could send a specially crafted PowerPoint presentation containing malicious linked media to a target user. The user would need to open the presentation, start the slideshow, and allow the linked content. Successful exploitation could allow the attacker to execute code on the user's system. Authentication is not required.
To me the attack flow looks equivalent wrt to attacker location. We can argue about #2 being actually harder to execute, having more social engineering prerequisites... which is why it totally makes sense for #2 to scored higher on CVSS as it's apparently network & the other one local.
##updated 2026-09-08T18:33:17
1 posts
Meanwhile CVE-2026-69829 is a CVSS 9.8 heap overflow in Windows Shell letting unauthenticated attackers run code over a network. I called the mechanics. I drew the diagram. I made a spreadsheet.
Patch CVE-2026-81963, CVE-2026-85880, CVE-2026-69730, and CVE-2026-69829 immediately โ yes, right now, before you ask if it can wait until Friday.
Reward: You've received the Tunnel Vision Debuff. It cannot be cleansed.
#ZeroDay #Microsoft #WindowsUpdate #PrivilegeEscalation #CyberSecurity (2/2)
##updated 2026-09-08T18:32:05
2 posts
#Cisco only had one for #PatchTuesday? CVE-2026-20293 Cisco UCS and UCS-Based Appliances UEFI Shell Secure Boot Bypass Vulnerability
The Cisco PSIRT is aware that proof-of-concept exploit code is available for the vulnerability described in this advisory.
It appears to be related to Eclypsium research into UEFI shell vulnerabilities from 2025:
##New advisories from Cisco addressing two high and medium-severity vulnerabilities.
New: CVE-2026-20293: Cisco UCS and UCS-Based Appliances UEFI Shell Secure Boot Bypass Vulnerability https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ucs-uefi-sb-bypass-eb6xC5GW
Known: CVE-2026-20354 and CVE-2026-20355: Cisco Secure Email Secure/Multipurpose Internet Mail Extensions Ciphertext Decryption Vulnerabilities @TalosSecurity #infosec #vulnerability #Cisco
##updated 2026-09-08T18:32:04
2 posts
MongoDB fixed 24 MongoDB Server vulnerabilities, including a critical auth bypass (CVE-2026-82067) and unauthenticated denial of service flaws. Patch now.
#MongoDB #Vulnerability #CVE #DatabaseSecurity #DenialOfService #InfoSec #PatchNow #CyberSecurity #MongoDBServer #AppSec
##MongoDB fixed 24 MongoDB Server vulnerabilities, including a critical auth bypass (CVE-2026-82067) and unauthenticated denial of service flaws. Patch now.
#MongoDB #Vulnerability #CVE #DatabaseSecurity #DenialOfService #InfoSec #PatchNow #CyberSecurity #MongoDBServer #AppSec
##updated 2026-09-08T18:32:01
1 posts
๐ CVE-2026-86738 - High (8.7)
Snipe-IT versions before 8.7.0 contain a CSS injection vulnerability in the Custom CSS field due to incomplete sanitization that reverses HTML encoding on greater-than and double-quote characters. Superusers can plant malicious CSS payloads using ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-86738/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-08T18:32:00
1 posts
๐ CVE-2026-86728 - High (7.5)
AVideo through 29.0 contains an authentication bypass vulnerability in plugin/PlayLists/epg.json.php that exposes live-stream keys and private EPG schedules to unauthenticated users. Attackers can request the endpoint with sequential user or playl...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-86728/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-08T18:31:59
1 posts
๐ CVE-2026-86727 - High (7.5)
AVideo through 29.0 contains an information disclosure vulnerability in plugin/Live/stats.json.php that allows unauthenticated attackers to retrieve stream keys and m3u8 URLs by accessing the endpoint without authentication. Attackers can enumerat...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-86727/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-08T18:31:59
1 posts
๐ CVE-2026-86732 - High (8.8)
Craft CMS versions before 5.10.12 contain a remote code execution vulnerability in the element-index endpoint that allows authenticated content editors to instantiate arbitrary classes through the criteria parameter. Attackers can inject a malicio...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-86732/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-08T18:31:56
1 posts
Fortinet fixed three critical Fortinet vulnerabilities. Attackers can exploit CVE-2026-84390 and CVE-2026-26084 to access corporate data.
#Fortinet #Vulnerabilities #Cybersecurity #InfoSec #PatchManagement
##updated 2026-09-08T18:31:36
1 posts
2 repos
https://github.com/x0jac0b0x/skullcandy-dime3-cve-2025-20701
๐ข CVE-2025-20701 : Les รฉcouteurs Skullcandy Dime 3 vulnรฉrables au dรฉtournement Bluetooth
Le 9 septembre 2026, BleepingComputer relaie un avis du CERT/CC de l'Universitรฉ Carnegie Mellon concernant une vulnรฉrabilitรฉ affectant les รฉcouteurs sans fil Skullcandy Dime 3 (modรจle S2DCW). La faille, identifiรฉe sous CVE-2025-20701, est prรฉsente dans leโฆ
๐ cyberveille : https://cyberveille.ch/posts/2026-09-10-cve-2025-20701-les-ecouteurs-skullcandy-dime-3-vulnerables-au-detournement-bluetooth/
๐ source : https://www.bleepingcomputer.com/news/security/skullcandy-dime-3-earbuds-expose-users-to-bluetooth-hijacking/
๐ก vรฉrification factuelle moyenne
#Bluetooth #SkullcandyDime3 #Cyberveille
updated 2026-09-08T16:18:08.077000
2 posts
A critical Secure Boot bypass vulnerability via a UEFI Shell flaw exposes servers to code execution. Discover how CVE-2026-33197 impacts devices.
#SecureBoot #UEFI #Vulnerability #Cybersecurity #CVE202633197
##A critical Secure Boot bypass vulnerability via a UEFI Shell flaw exposes servers to code execution. Discover how CVE-2026-33197 impacts devices.
#SecureBoot #UEFI #Vulnerability #Cybersecurity #CVE202633197
##updated 2026-09-08T15:13:07.273000
1 posts
100 repos
https://github.com/MrAriaNet/cPanel-Fix
https://github.com/yandex-cloud-examples/yc-mk8s-copy-fail-mitigation
https://github.com/EynaExp/Copy-Fail-CVE-2026-31431-modernized
https://github.com/Juguitos/copy-fail
https://github.com/rootsecdev/cve_2026_31431
https://github.com/Boos4721/copyfail-rs
https://github.com/atgreen/block-copyfail
https://github.com/badsectorlabs/copyfail-go
https://github.com/Xerxes-2/CVE-2026-31431-rs
https://github.com/sec17br/CVE-2026-31431-Copy-Fail
https://github.com/infiniroot/ansible-mitigate-copyfail-dirtyfrag
https://github.com/SeanRickerd/cve-2026-31431
https://github.com/shadowabi/CVE-2026-31431-CopyFail-Universal-LPE
https://github.com/Dullpurple-sloop726/CVE-2026-31431-Linux-Copy-Fail
https://github.com/bigwario/copy-fail-CVE-2026-31431-C
https://github.com/ben-slates/CVE-2026-31431-Exploit
https://github.com/ZephrFish/CopyFail-CVE-2026-31431
https://github.com/TheMalwareGuardian/CVE-2026-31431
https://github.com/mym0us3r/COPY-FAIL-Detection-with-Wazuh-4.14.4
https://github.com/erlangparasu/mitigate_cve_2026_31431-sh
https://github.com/Webhosting4U/Copy-Fail_Detect_and_mitigate_CVE-2026-31431
https://github.com/g1nt0n1x/copy-fail-CVE-2026-31431-shell
https://github.com/Sl4cK0TH/CVE-2026-31431-PoC
https://github.com/KaraZajac/DIRTYFAIL
https://github.com/mahdi13830510/CVE-2026-31431-mitigation-suite
https://github.com/mrunalp/block-copyfail
https://github.com/JuanBindez/CVE-2026-31431
https://github.com/Smarttfoxx/copyfail
https://github.com/JnamerZ/CopyFail-CVE-2026-31431
https://github.com/rvzsec/CVE-2026-31431
https://github.com/Iamliuxiaozhen/copy_fail
https://github.com/ErdemOzgen/copy-fail-cve-2026-31431
https://github.com/nisec-eric/cve-2026-31431
https://github.com/Dabbleam/CVE-2026-31431-mitigation
https://github.com/adityasingh108/CVE-2026-31431-Metasploit-exploit
https://github.com/xeloxa/copyfail-exploit
https://github.com/povzayd/CVE-2026-31431
https://github.com/abdelkabirouadoukou/CVE-2026-31431-Analysis-and-Fix
https://github.com/pedromizz/copy-fail
https://github.com/cyber-joker/copy-fail-python
https://github.com/adampielak/CVE-2026-31431_SCA_WAZUH
https://github.com/ExploitEoom/CVE-2026-31431
https://github.com/scriptzteam/Paranoid-Copy-Fail-CVE-2026-31431
https://github.com/iss4cf0ng/CVE-2026-31431-Linux-Copy-Fail
https://github.com/cs8425/copy-fail-go
https://github.com/kinryulabs/rootpacket-cve-2026-31431
https://github.com/Percivalll/Copy-Fail-CVE-2026-31431-Kubernetes-PoC
https://github.com/pyroceper/copy-fail-CVE-2026-31431
https://github.com/wgnet/wg.copyfail.patch
https://github.com/samanzamani/copy-fail-checker
https://github.com/diemoeve/copyfail-rs
https://github.com/tgies/copy-fail-c
https://github.com/painoob/Copy-Fail-Exploit-CVE-2026-31431
https://github.com/liamromanis101/CVE-2026-31431-Copy-Fail---Vulnerability-Detection-Script
https://github.com/0xBlackash/CVE-2026-31431
https://github.com/Shotafry/CopyFail-Exploits-CVE-2026-31431
https://github.com/desultory/CVE-2026-31431
https://github.com/XsanFlip/CVE-2026-31431-Patch
https://github.com/sgkdev/page_inject
https://github.com/0xShe/CVE-2026-31431
https://github.com/b5null/CVE-2026-31431-C
https://github.com/luotian2/CVE-2026-31431
https://github.com/insomnisec/Detections-CVE-2026-31431
https://github.com/yuspring/cve-2026-31431-poc
https://github.com/malwarekid/CVE-2026-31431
https://github.com/aestechno/cve-2026-31431-ansible
https://github.com/beatbeast007/Linux-CopyFail-C-Version-CVE-2026-31431
https://github.com/4xura/CVE-2026-31431-Copy-Fail
https://github.com/qi4L/CVE-2026-31431-Container-Escape
https://github.com/Percivalll/Copy-Fail-CVE-2026-31431-Statically-PoC
https://github.com/Crihexe/copy-fail-tiny-elf-CVE-2026-31431
https://github.com/Qengineering/RK35xx-CopyFail-Hotfix
https://github.com/AdityaBhatt3010/CVE-2026-31431
https://github.com/Huchangzhi/autorootlinux
https://github.com/M4xSec/CVE-2026-31431-RCE-Exploit
https://github.com/guiimoraes/CVE-2026-31431
https://github.com/theori-io/copy-fail-CVE-2026-31431
https://github.com/philfry/cve-2026-31431-ftrace
https://github.com/AliHzSec/CVE-2026-31431
https://github.com/sammwyy/copyfail-rs
https://github.com/kadir/copy-fail-CVE-2026-31431-IOC
https://github.com/wuwu001/CVE-2026-31431-exploit
https://github.com/sgkdev/ptrace_may_dream
https://github.com/sudoytang/copyfail-arm64
https://github.com/ochebotar/copy-fail-CVE-2026-31431-detection-probe
https://github.com/kvakirsanov/CVE-2026-31431-live-process-code-injection
https://github.com/jbnetwork-git/copy-fail-check
https://github.com/wesmar/CVE-2026-31431
https://github.com/gagaltotal/cve-2026-31431-copy-fail
https://github.com/KanbaraAkihito/CVE-2026-31431-copyfail-rs
https://github.com/cozystack/copy-fail-blocker
https://github.com/novysodope/copy-fail-CVE-2026-31431-C
https://github.com/haydenjames/CVE-2026-31431-check
https://github.com/Alfredooe/CVE-2026-31431
https://github.com/Sndav/CVE-2026-31431-Advanced-Exploit
https://github.com/pascal-gujer/CVE-2026-31431
https://github.com/MartinPham/copy-fail-CVE-2026-31431-php
https://github.com/hans362/CVE-2026-31431-Copy-Fail-Container-Escape
This article examines why Copy Fail (CVE-2026-31431) breaks container assumptions and provides a small, safe Python check to determine whether your nodes can reach the vulnerable kernel path
##updated 2026-09-08T14:00:33.017000
2 posts
CVE-2026-85012 - OS command injection in the Amazon CodeCatalyst blueprints SDK
Bulletin ID: 2026-095-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 09/03/2026 10:00 AM PDT
Description:
Amazon CodeCatalyst blueprints are reusable project templates that generate a software proj...
https://aws.amazon.com/security/security-bulletins/rss/2026-095-aws/
##CVE-2026-85012 - OS command injection in the Amazon CodeCatalyst blueprints SDK
Bulletin ID: 2026-095-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 09/03/2026 10:00 AM PDT
Description:
Amazon CodeCatalyst blueprints are reusable project templates that generate a software proj...
https://aws.amazon.com/security/security-bulletins/rss/2026-095-aws/
##updated 2026-09-08T12:31:35
1 posts
A critical Hawtio Operator vulnerability, tracked as CVE-2026-78234, allows in-cluster service impersonation. Discover the impact and mitigation steps.
#HawtioOperator #CVE202678234 #Kubernetes #OpenShift #Vulnerability
##updated 2026-09-08T09:35:45
1 posts
Two critical Siemens vulnerabilities (CVE-2026-18963, CVE-2026-50093) allow account takeover and root access. See affected versions and fixes.
#Siemens #CyberSecurity #ICS #OTSecurity #CVE #IndustrialEdge #Vulnerability #InfoSec
##updated 2026-09-08T09:17:43.063000
1 posts
15 repos
https://github.com/ynsmroztas/KeySniper
https://github.com/kyos-public/keycloak-cve-2026-18963-hunt
https://github.com/T0w0T/POC-CVE-2026-18963
https://github.com/alt3kx/CVE-2026-18963
https://github.com/Snizi/CVE-2026-18963-Exploit
https://github.com/prot0tw/Keycloak_CVE-2026-18963_PoC
https://github.com/0xlyvio/CVE-2026-18963-keycloak
https://github.com/minh3102011/CVE-2026-18963_analyst
https://github.com/gman0x00/keycloak-CVE-2026-18963
https://github.com/Red-Darkin/CVE-2026-18963-keycloak
https://github.com/debugactiveprocess/CVE-2026-18963
https://github.com/M4xSec/My-Exploits
https://github.com/BlackHatExploitation/Exploit-For-CVE-2026-18963
Two critical Siemens vulnerabilities (CVE-2026-18963, CVE-2026-50093) allow account takeover and root access. See affected versions and fixes.
#Siemens #CyberSecurity #ICS #OTSecurity #CVE #IndustrialEdge #Vulnerability #InfoSec
##updated 2026-09-05T21:31:26
2 posts
N-able didn't beat around the bush:
##Since our post 9/5/2026, 08:11:00 UTC a third independent researcher disclosed to N-able a new vulnerabilityโ one that has been exploited in the wild and is unrelated to the previously disclosed CVEs.
This critical zero-day vulnerability, CVE-2026-86218, could allow pre-authenticated access to the N-central server if exploited.
New.
Rapid7: CVE-2026-86206, CVE-2026-86207: N-able N-central Authentication Bypass (FIXED) https://www.rapid7.com/blog/post/ve-cve-2026-86206-cve-2026-86207-n-able-n-central-authentication-bypass-fixed/ @Rapid7Official #infosec #vulnerability #threatresearch
##updated 2026-09-05T21:31:20
1 posts
4 repos
https://github.com/dinosn/mikrotrick-poc
https://github.com/BlackHatExploitation/exploit-mikrotik-2026
CVE-2026-67276: MikroTik RouterOS SSH Zero-Day Exploited in Router Takeover Attacks
#CVE_2026_67276
https://socprime.com/blog/cve-2026-67276-mikrotik-routeros-ssh-zero-day/
updated 2026-09-05T21:31:20
2 posts
N-able didn't beat around the bush:
##Since our post 9/5/2026, 08:11:00 UTC a third independent researcher disclosed to N-able a new vulnerabilityโ one that has been exploited in the wild and is unrelated to the previously disclosed CVEs.
This critical zero-day vulnerability, CVE-2026-86218, could allow pre-authenticated access to the N-central server if exploited.
New.
Rapid7: CVE-2026-86206, CVE-2026-86207: N-able N-central Authentication Bypass (FIXED) https://www.rapid7.com/blog/post/ve-cve-2026-86206-cve-2026-86207-n-able-n-central-authentication-bypass-fixed/ @Rapid7Official #infosec #vulnerability #threatresearch
##updated 2026-09-05T00:31:10
1 posts
CVE-2026-86090: ntopng auth bypass lets non-admin users delete all alert endpoints, silencing critical notifications. CVSS 7.1. No patch yet. Audit your instance now. Details: https://www.valtersit.com/cve/CVE-2026-86090/ #CVE #infosec #ntopng
##updated 2026-09-04T21:31:59
1 posts
CVE-2026-80119: Info disclosure in Directio64.sys lets unauthenticated local attackers dump physical memory via crafted IOCTL. CVSS 7.8. Unpatched. Update PassMark tools or restrict driver access. Details: https://www.valtersit.com/cve/CVE-2026-80119/ #CVE #infosec #cybersecurity
##updated 2026-09-04T18:31:46
1 posts
CVE-2026-80905: Linux kernel net: tap bug mishandles VLAN-tagged frames, corrupting transport_header. Potential for network disruption or security bypass. Unpatchedโact now. CVSS N/A. Details: https://www.valtersit.com/cve/CVE-2026-80905/ Update kernel immediately. #CVE #Linux #i
##updated 2026-09-04T18:31:46
1 posts
CVE-2026-9317: Nango <0.71.6 has a missing auth flaw in its runner tRPC server. Attackers can send requests to the unpatched start procedure, bypassing RUNNER_SECRET_KEY to trigger RCE. CVSS 8.1. Patch or isolate the runner port immediately. https://www.valtersit.com/cve/CVE-2026
##updated 2026-09-04T18:31:40
1 posts
CVE-2026-80874: Linux kernel arm64 Renesas flawโinline ECC carveouts not reserved, risking DRAM corruption via memory access. Unpatched. If you run affected kernels, isolate or patch ASAP. Details: https://www.valtersit.com/cve/CVE-2026-80874/ #CVE #Linux #infosec
##updated 2026-09-04T18:31:40
1 posts
CVE-2026-17255: DoS in IBM i (7.3-7.6) via malformed ICMPv6 Router Advertisements. Remote crash risk, CVSS 4.3. No patch confirmed. Review firewall rules & disable IPv6 if unused. Details: https://www.valtersit.com/cve/CVE-2026-17255/ #CVE #IBM #infosec
##updated 2026-09-04T18:31:40
1 posts
CVE-2026-80872: Linux kernel ALSA tas2781 driver risks use-after-free during unbindโasync firmware callback can outlive private HDA state. Local impact, no CVSS yet. Patch status unknown, so audit & update when fix lands. Full details: https://www.valtersit.com/cve/CVE-2026-80872
##updated 2026-09-04T18:31:40
1 posts
CVE-2026-17440: IBM App Connect Enterprise & Integration Bus for z/OS affected by DoS via uncontrolled recursion. CVSS 5.5. Local attacker can crash services. No patch yetโmonitor and limit local access. Details: https://www.valtersit.com/cve/CVE-2026-17440/ #CVE #IBM #cybersecur
##updated 2026-09-04T18:31:40
1 posts
CVE-2026-17057: IBM i (7.3-7.6) missing auth for critical functions. Remote DoS + data integrity risk. CVSS 6.5. No patch availableโassume exposed. Lock down network access & monitor logs now. https://www.valtersit.com/cve/CVE-2026-17057/ #CVE #IBM #cybersecurity
##updated 2026-09-04T18:31:39
1 posts
CVE-2026-16660: IBM Db2 Mirror for i (7.4-7.6) has an out-of-bounds read flaw. Remote attackers can trigger a DoS. CVSS 5.3. No patch yet. Details: https://www.valtersit.com/cve/CVE-2026-16660/ Monitor and harden access now. #CVE #IBM #infosec
##updated 2026-09-04T03:31:07
1 posts
RCE z uprawnieniami roota. Krytyczna podatnoลฤ (CVSS 10.0) w ASUS Control Center Enterprise
Firma ASUS w najnowszym biuletynie bezpieczeลstwa poinformowaลa o wykryciu krytycznej luki w popularnym oprogramowaniu ASUS Control Center Enterprise (ACC). Podatnoลฤ oznaczona identyfikatorem CVE-2026-75754 otrzymaลa maksymalnฤ ocenฤ 10.0 w skali CVSS 4.0. TLDR: ลwiadczy to o tym, ลผe potencjalny atakujฤ cy moลผe w ลatwy sposรณb, caลkowicie zdalnie oraz bez koniecznoลci jakiejkolwiek interakcji...
##updated 2026-09-02T19:23:13.660000
1 posts
New advisories from Cisco addressing two high and medium-severity vulnerabilities.
New: CVE-2026-20293: Cisco UCS and UCS-Based Appliances UEFI Shell Secure Boot Bypass Vulnerability https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ucs-uefi-sb-bypass-eb6xC5GW
Known: CVE-2026-20354 and CVE-2026-20355: Cisco Secure Email Secure/Multipurpose Internet Mail Extensions Ciphertext Decryption Vulnerabilities @TalosSecurity #infosec #vulnerability #Cisco
##updated 2026-09-02T18:32:31
1 posts
New advisories from Cisco addressing two high and medium-severity vulnerabilities.
New: CVE-2026-20293: Cisco UCS and UCS-Based Appliances UEFI Shell Secure Boot Bypass Vulnerability https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ucs-uefi-sb-bypass-eb6xC5GW
Known: CVE-2026-20354 and CVE-2026-20355: Cisco Secure Email Secure/Multipurpose Internet Mail Extensions Ciphertext Decryption Vulnerabilities @TalosSecurity #infosec #vulnerability #Cisco
##updated 2026-09-02T18:32:26
1 posts
1 repos
Krytyczna luka w przeลฤ cznikach Cisco Nexus 9000 [CVE-2026-20212]. RCE bez uwierzytelnienia i dostฤp do roota
Firma Cisco opublikowaลa biuletyn bezpieczeลstwa opisujฤ cy krytycznฤ lukฤ w przeลฤ cznikach Nexus serii 9000 opartych na ukลadach Silicon One. Podatnoลฤ zostaลa oznaczona jako CVE-2026-20212 i oceniona na 9.8 (Critical) w skali CVSS v3.1. Umoลผliwia nieuwierzytelnionemu uลผytkownikowi zdalne wykonanie kodu z uprawnieniami roota. Poprawki bezpieczeลstwa sฤ juลผ dostฤpne, zalecamy niezwลocznฤ aktualizacjฤ oprogramowania. ...
##updated 2026-09-02T18:32:06
1 posts
3 repos
https://github.com/HORKimhab/CVE-2026-83548-CVE-2026-83549
https://github.com/xcoy0te/CVE-2026-83548-checker
https://github.com/xoessie/CVE-2026-83548-SonicWall-SMA1000-Analysis
SonicWall VPN-Router (Closed-Source) wird aktiv angegriffen
Appliances der SMA1000 Serie des amerikanischen Herstellers SonicWall stehen gerade unter Beschuss. Die Boxen sollen eigentlich fรผr einen sicheren Fernzugang per VPN ins Intranet sorgen. Ja, es hรคtte so schรถn sein kรถnnen. Die Angreifer verketten zwei unterschiedliche "Sicherheitslรผcken", um sich unbefugten Zugang in das Unternehmensnetzwerk dahinter zu verschaffen. Weshalb habe ich "Sicherheitslรผcken" in Anfรผhrungszeichen geschrieben? Weil es hier wieder mal streng riecht - nach Hintertรผr. Die erste Zero-day Schwachstelle CVE-2026-83548 (10 von 10) entsteht durch ... Weiterlesen:
#0day #backdoor #cybercrime #exploits #firewall #hersteller #router #UnplugTrump #vorbeugen #wissen #zeroday
##updated 2026-09-01T04:18:01.990000
4 posts
2 repos
๐ข Exploitation IA ร grande รฉchelle de PaperCut via CVE-2026-81578 et CVE-2026-82078
Cet article prรฉsente l'analyse technique d'une campagne d'exploitation active de serveurs PaperCut exposรฉs sur Internet, utilisant les vulnรฉrabilitรฉs CVE-2026-81578 et CVE-2026-82078.
๐ cyberveille : https://cyberveille.ch/posts/2026-09-10-exploitation-ia-a-grande-echelle-de-papercut-via-cve-2026-81578-et-cve-2026-82078/
๐ source : https://blackpointcyber.com/blog/death-by-a-thousand-papercuts-ai-driven-exploitation-at-scale/
๐ข vรฉrification factuelle haute
#PaperCut #AIAssistedExploitation #Cyberveille
Which is to say, a real person directed this nonsense.
"On 31 August 2026, a likely Russian-speaking malicious cyber actor (MCA) used 45.142.193.132 and artificial intelligence (AI) to develop, test, and use exploits for PaperCut NG/MF (CVE-2026-81578 and CVE-2026-82078)."
GreyNoise: Agents Gone Wild: An AI-Orchestrated Global Campaign Against PaperCut NG/MF https://www.greynoise.io/blog/ai-orchestrated-campaign-against-papercut-ng-mf @greynoise #infosec #cyberattack #bot
##https://thecybersecguru.com/news/ai-swarm-papercut-attack-440-servers/
##GreyNoise: Agents Gone Wild: An AI-Orchestrated Global Campaign Against PaperCut NG/MF
##On 31 August 2026, a likely Russian-speaking malicious cyber actor (MCA) used 45.142.193.132 and artificial intelligence (AI) to develop, test, and use exploits for PaperCut NG/MF (CVE-2026-81578 and CVE-2026-82078).
https://www.greynoise.io/blog/ai-orchestrated-campaign-against-papercut-ng-mf
updated 2026-08-31T21:31:56
4 posts
2 repos
๐ข Exploitation IA ร grande รฉchelle de PaperCut via CVE-2026-81578 et CVE-2026-82078
Cet article prรฉsente l'analyse technique d'une campagne d'exploitation active de serveurs PaperCut exposรฉs sur Internet, utilisant les vulnรฉrabilitรฉs CVE-2026-81578 et CVE-2026-82078.
๐ cyberveille : https://cyberveille.ch/posts/2026-09-10-exploitation-ia-a-grande-echelle-de-papercut-via-cve-2026-81578-et-cve-2026-82078/
๐ source : https://blackpointcyber.com/blog/death-by-a-thousand-papercuts-ai-driven-exploitation-at-scale/
๐ข vรฉrification factuelle haute
#PaperCut #AIAssistedExploitation #Cyberveille
Which is to say, a real person directed this nonsense.
"On 31 August 2026, a likely Russian-speaking malicious cyber actor (MCA) used 45.142.193.132 and artificial intelligence (AI) to develop, test, and use exploits for PaperCut NG/MF (CVE-2026-81578 and CVE-2026-82078)."
GreyNoise: Agents Gone Wild: An AI-Orchestrated Global Campaign Against PaperCut NG/MF https://www.greynoise.io/blog/ai-orchestrated-campaign-against-papercut-ng-mf @greynoise #infosec #cyberattack #bot
##https://thecybersecguru.com/news/ai-swarm-papercut-attack-440-servers/
##GreyNoise: Agents Gone Wild: An AI-Orchestrated Global Campaign Against PaperCut NG/MF
##On 31 August 2026, a likely Russian-speaking malicious cyber actor (MCA) used 45.142.193.132 and artificial intelligence (AI) to develop, test, and use exploits for PaperCut NG/MF (CVE-2026-81578 and CVE-2026-82078).
https://www.greynoise.io/blog/ai-orchestrated-campaign-against-papercut-ng-mf
updated 2026-08-25T16:44:12.343000
2 posts
Issue with FreeRTOS-Kernel - CVE-2026-77234, CVE-2026-77235, CVE-2026-77236, CVE-2026-77237
Bulletin ID: 2026-086-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/21/2026 10:30 AM PDT
Description:
FreeRTOS-Kernel is a real-time operating system kernel for microcontrollers and small micro...
https://aws.amazon.com/security/security-bulletins/rss/2026-086-aws/
##Issue with FreeRTOS-Kernel - CVE-2026-77234, CVE-2026-77235, CVE-2026-77236, CVE-2026-77237
Bulletin ID: 2026-086-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/21/2026 10:30 AM PDT
Description:
FreeRTOS-Kernel is a real-time operating system kernel for microcontrollers and small micro...
https://aws.amazon.com/security/security-bulletins/rss/2026-086-aws/
##updated 2026-08-25T16:08:43.290000
1 posts
2 repos
The @gcve BCP-07 KEV format has been updated to allow the Withdrawn and Reasserted KEV Assertions.
This allows to support case like CVE-2026-69836 .
๐ https://gcve.eu/bcp/gcve-bcp-07/#withdrawn-and-reasserted-kev-assertions
#cve #gcve #kev #cybersecurity #vulnerabilitymanagement #vulnerability
##updated 2026-08-19T18:32:28
6 posts
2 repos
Researcher Nightmare-Eclipse has released ShieldCrash, a PoC claiming to bypass Microsoft's fix for CVE-2026-69414, a privilege escalation flaw in Defender's Malware Protection Engine. Public exploit code may increase abuse; verify the patch blocks the technique and monitor for exploitation. #CyberSecurity #Vulnerability #ThreatIntel #MicrosoftDefender
https://cyberworldops.eu/en/shieldcrash-poc-claims-to-bypass-microsoft-s-fix-for-defender
##CRITICAL: ShieldCrash zero-day (CVE-2026-69414) exploits Microsoft Defender on patched Windows (Sept 2026), enabling privilege escalation to System and SAM dumping. No patch yet. Monitor for Defender anomalies. https://radar.offseq.com/threat/new-shieldcrash-zero-day-exploit-targets-microsoft-defender-c4e918e12bdbcf86 #OffSeq #ZeroDay #MicrosoftDefender #Infosec
##Researcher Nightmare-Eclipse has released ShieldCrash, a PoC claiming to bypass Microsoft's fix for CVE-2026-69414, a privilege escalation flaw in Defender's Malware Protection Engine. Public exploit code may increase abuse; verify the patch blocks the technique and monitor for exploitation. #CyberSecurity #Vulnerability #ThreatIntel #MicrosoftDefender
https://cyberworldops.eu/en/shieldcrash-poc-claims-to-bypass-microsoft-s-fix-for-defender
##CRITICAL: ShieldCrash zero-day (CVE-2026-69414) exploits Microsoft Defender on patched Windows (Sept 2026), enabling privilege escalation to System and SAM dumping. No patch yet. Monitor for Defender anomalies. https://radar.offseq.com/threat/new-shieldcrash-zero-day-exploit-targets-microsoft-defender-c4e918e12bdbcf86 #OffSeq #ZeroDay #MicrosoftDefender #Infosec
##Chaotic Eclipse released ShieldCrash PoC, described as a patch bypass for CVE-2026-69414 ShieldBreak in Microsoft Malware Protection Engine. If valid, Defender privilege escalation remains exploitable despite the official fix, requiring re-validation of mitigations. #ShieldBreak #MicrosoftDefender #PatchBypass
https://cyberworldops.eu/en/microsoft-defender-shieldcrash-poc-claims-to-bypass-the-shieldbreak
##A Windows Defender 0day has public PoC exploit code. ShieldCrash reads files as SYSTEM on all supported Windows versions.
#WindowsDefender #0day #CVE #ShieldCrash #CyberSecurity #Windows #PoC #Infosec
##updated 2026-08-16T19:17:24.183000
1 posts
4 repos
https://github.com/ubitquity/Windows-WinSock-UAF-Mitigation
https://github.com/fevar54/CVE-2026-68820-Mitigation-PoC-
Microsoft patched 398 vulnerabilities, 42 rated Critical. CVE-2026-68820 in afd.sys is actively exploited and added to CISA KEV, enabling local privilege escalation to SYSTEM. Prioritize Kernel and RCE flaws in this cycle. #PatchTuesday #WindowsSecurity #CisaKev
https://cyberworldops.eu/en/microsoft-fixes-398-vulnerabilities-as-exploited-windows-kernel-flaw
##updated 2026-08-12T21:31:44
2 posts
CVE-2026-19311- Missing Authorization in OpenSearch Alerting Plugin
Bulletin ID: 2026-078-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/12/2026 11:30 AM PDT
Description:
OpenSearch is a community-driven, open-source search and analytics suite. We identified CVE...
https://aws.amazon.com/security/security-bulletins/rss/2026-078-aws/
##CVE-2026-19311- Missing Authorization in OpenSearch Alerting Plugin
Bulletin ID: 2026-078-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/12/2026 11:30 AM PDT
Description:
OpenSearch is a community-driven, open-source search and analytics suite. We identified CVE...
https://aws.amazon.com/security/security-bulletins/rss/2026-078-aws/
##updated 2026-08-10T21:33:00
9 posts
1 repos
๐ New Achievement! WatchGuard Out, Ransomware In!
Patch Notes v0.0.0 (Unplanned Release): REMOVED โ the assumption that your perimeter firewall was keeping anyone out. ADDED โ unauthenticated remote code execution via CVE-2025-14733, a critical out-of-bounds write in the Fireware OS iked process affecting versions 11.x, 12.x, and 2025.1 through 2025.1.3. KNOWN ISSUE โ ransomware gangs are already shipping this feature to your network. (1/2)
##CISA Warns WatchGuard Firebox RCE Is Being Exploited by Ransomware Attackers + Video
A Critical Firewall Vulnerability Has Become a Real-World Threat A serious warning is emerging for organizations that rely on WatchGuard Firebox appliances to protect their networks. The vulnerability tracked as CVE-2025-14733 is a critical out-of-bounds write flaw in the Fireware OS iked process that can allow an unauthenticated remote attacker to execute arbitrary code. WatchGuardโฆ
##CVE-2025-14733: CRITICAL RCE in WatchGuard Firebox (Fireware OS 11.x+, 12.x+, 2025.1 โ 2025.1.3) exploited by ransomware. Patch ASAP! Review VPN configs, monitor for IOCs. Details: https://radar.offseq.com/threat/cisa-watchguard-rce-flaw-now-exploited-in-ransomware-attacks-43ee9be28a996ee8 #OffSeq #WatchGuard #Ransomware #Infosec
##CISA confirmed CVE-2025-14733, a critical WatchGuard Firebox RCE, is being exploited in ransomware attacks. Edge firewalls are high-value targets because compromise enables network-wide access. Patch immediately and audit exposed interfaces for post-exploitation activity. #WatchGuard #Ransomware #CisaKev
https://cyberworldops.eu/en/cisa-confirms-watchguard-firebox-rce-is-being-used-in-ransomware
##Ransomware gangs exploit WatchGuard firewall flaw
Ransomware gangs are exploiting a critical vulnerability in WatchGuard Firebox firewalls, allowing them to execute malicious code remotely with ease. This flaw, known as CVE-2025-14733, affects various Fireware OS versions and could leave your network exposed to low-complexity attacks.
##๐ New Achievement! WatchGuard Out, Ransomware In!
Patch Notes v0.0.0 (Unplanned Release): REMOVED โ the assumption that your perimeter firewall was keeping anyone out. ADDED โ unauthenticated remote code execution via CVE-2025-14733, a critical out-of-bounds write in the Fireware OS iked process affecting versions 11.x, 12.x, and 2025.1 through 2025.1.3. KNOWN ISSUE โ ransomware gangs are already shipping this feature to your network. (1/2)
##CVE-2025-14733: CRITICAL RCE in WatchGuard Firebox (Fireware OS 11.x+, 12.x+, 2025.1 โ 2025.1.3) exploited by ransomware. Patch ASAP! Review VPN configs, monitor for IOCs. Details: https://radar.offseq.com/threat/cisa-watchguard-rce-flaw-now-exploited-in-ransomware-attacks-43ee9be28a996ee8 #OffSeq #WatchGuard #Ransomware #Infosec
##CISA confirmed CVE-2025-14733, a critical WatchGuard Firebox RCE, is being exploited in ransomware attacks. Edge firewalls are high-value targets because compromise enables network-wide access. Patch immediately and audit exposed interfaces for post-exploitation activity. #WatchGuard #Ransomware #CisaKev
https://cyberworldops.eu/en/cisa-confirms-watchguard-firebox-rce-is-being-used-in-ransomware
##CVE-2025-14733 - Changed to Known Ransomware Status
WatchGuard Firebox Out of Bounds Write VulnerabilityVendor: WatchGuardProduct: FireboxWatchGuard Fireware OS iked process contains an out of bounds write vulnerability in the OS iked process. This vulnerability may allow a remote unauthenticated attacker to execute arbitrary code and affects both the mobile user VPN with IKEv2 and the branch office VPN using IKEv2 when configured with a https://nvd.nist.gov/vuln/detail/CVE-2025-14733
##updated 2026-08-01T05:16:55.973000
7 posts
Cisco Talos reports active exploitation of CVE-2026-20079 and CVE-2026-20316 in Cisco Secure Firewall Management Center by Qilin ransomware, credential-theft actors, and Sandworm-linked groups. The auth bypass provides root command execution and the static credential exposure broadens initial access.
#CiscoFMC #ThreatIntelligence #VulnerabilityManagement #Qilin
https://cyberworldops.eu/en/cisco-fmc-zero-auth-flaws-exploited-by-qilin-ransomware-and-sandworm
##Cisco FMC Under Attack as Sandworm and Qilin Exploit Critical Vulnerabilities to Reach Protected Networks + Video
A New Warning for Enterprise Defenders Cisco Secure Firewall Management Center is facing a serious security crisis after Cisco Talos confirmed active exploitation of two vulnerabilities that can give attackers a foothold inside vulnerable environments. The flaws, tracked as CVE-2026-20079 and CVE-2026-20316, are being abused in real-world attacks involvingโฆ
##Cisco Secure Firewall Management Center Under Active Attack
Cisco Talos warns of active exploitation of two vulnerabilities (CVE-2026-20079 and CVE-2026-20316) in Secure Firewall Management Center, allowing attackers to gain root access and deploy malware like Cyclops Blink and Qilin ransomware.
**If you run Cisco Secure Firewall Management Center (versions 7.0.x, 7.1.x, or 7.2โ7.7), apply Cisco's emergency patches for CVE-2026-20079 and CVE-2026-20316 right away. Make sure the management interface is reachable only from trusted internal networks, never the internet. Because these flaws are already being exploited, also check for unexpected files in /var/sf/bin/ and the Tomcat webroot. Then plan to install Cisco's hardening update due to be released in the week of September 14.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/cisco-secure-firewall-management-center-under-active-attack-3-p-v-c-6/gD2P6Ple2L
Cisco Talos reports active exploitation of CVE-2026-20079 and CVE-2026-20316 in Cisco Secure Firewall Management Center by Qilin ransomware, credential-theft actors, and Sandworm-linked groups. The auth bypass provides root command execution and the static credential exposure broadens initial access.
#CiscoFMC #ThreatIntelligence #VulnerabilityManagement #Qilin
https://cyberworldops.eu/en/cisco-fmc-zero-auth-flaws-exploited-by-qilin-ransomware-and-sandworm
##Cisco Secure Firewall Management Center Under Active Attack
Cisco Talos warns of active exploitation of two vulnerabilities (CVE-2026-20079 and CVE-2026-20316) in Secure Firewall Management Center, allowing attackers to gain root access and deploy malware like Cyclops Blink and Qilin ransomware.
**If you run Cisco Secure Firewall Management Center (versions 7.0.x, 7.1.x, or 7.2โ7.7), apply Cisco's emergency patches for CVE-2026-20079 and CVE-2026-20316 right away. Make sure the management interface is reachable only from trusted internal networks, never the internet. Because these flaws are already being exploited, also check for unexpected files in /var/sf/bin/ and the Tomcat webroot. Then plan to install Cisco's hardening update due to be released in the week of September 14.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/cisco-secure-firewall-management-center-under-active-attack-3-p-v-c-6/gD2P6Ple2L
Cisco Talos is actively tracking the exploitation of two vulnerabilities in Ciscoโs Secure Firewall Management Center (FMC) Software. First, CVE-2026-20079 is an authentication bypass vulnerability in unpatched instances of Ciscoโs Secure FMC Software, which allows an unauthenticated, remote attacker to bypass authentications and execute scripts on impacted devices to obtain root access to the underlying operating system. Second, CVE-2026-20316 is a vulnerability that allows a remote attacker to log in using a low-privileged account.
https://blog.talosintelligence.com/fmc-ongoing-exploitation/
##Cisco Talos warns of Cisco FMC vulnerabilities actively exploited in the wild. Attackers chain CVE-2026-20079 and CVE-2026-20316 to deploy ransomware.
##updated 2026-07-14T21:32:22
2 posts
6 repos
https://github.com/Ch4120N/CVE-2026-15409
https://github.com/tc4dy/CVE-2026-15409-15410-Framework
https://github.com/HORKimhab/CVE-2026-15409
https://github.com/MrRawBit/SonicWall-SMA1000-Zero-Day-IoC-Check
๐ต๏ธโโ๏ธ SonicWall SMA1000 (CVE-2026-15409): SSRF to Erlang RCE chained into automated DCSync from the appliance https://hunt.io/blog/sonicwall-sma1000-uk-council-attack
##๐ต๏ธโโ๏ธ SonicWall SMA1000 (CVE-2026-15409): SSRF to Erlang RCE chained into automated DCSync from the appliance https://hunt.io/blog/sonicwall-sma1000-uk-council-attack
##updated 2026-07-09T21:01:12
1 posts
1 repos
CVE-2026-52774: YesWiki < 4.6.6 has a stored XSS via the Bazar widget's id parameter, exploitable without auth. CVSS 6.1. No patch confirmed. Update immediately or restrict access. Details: https://www.valtersit.com/cve/CVE-2026-52774/ #CVE #infosec #YesWiki
##updated 2026-07-01T09:30:33
2 posts
2 repos
https://github.com/1beelze/CVE-2026-11387
https://github.com/abraxas/CVE-2026-11387-WooCommerce-SMS-OTP
โผ๏ธ CVE-2026-11387: A critical improper-authentication flaw in the WordPress plugin SMS Alert โ SMS & OTP for WooCommerce, Order Notifications & Abandoned Cart Recovery.
GitHub: https://github.com/abraxas/CVE-2026-11387-WooCommerce-SMS-OTP
##โผ๏ธ CVE-2026-11387: A critical improper-authentication flaw in the WordPress plugin SMS Alert โ SMS & OTP for WooCommerce, Order Notifications & Abandoned Cart Recovery.
GitHub: https://github.com/abraxas/CVE-2026-11387-WooCommerce-SMS-OTP
##updated 2026-06-01T18:31:32
2 posts
1 repos
ZcopyReaper (CVE-2026-43502) nous avons dรฉployรฉ cette nuit les mesures de contournement.
Toutes nos VM ont รฉtรฉ redรฉmarrรฉes en moins dโune heure.
๐ En savoir plus sur nos offres d'infogรฉrance : https://bearstech.com/contact
Merci ร @Octopuce et @evolix pour votre collaboration sur ce sujet.
##ZcopyReaper (CVE-2026-43502) nous avons dรฉployรฉ cette nuit les mesures de contournement.
Toutes nos VM ont รฉtรฉ redรฉmarrรฉes en moins dโune heure.
๐ En savoir plus sur nos offres d'infogรฉrance : https://bearstech.com/contact
Merci ร @Octopuce et @evolix pour votre collaboration sur ce sujet.
##updated 2026-05-15T00:31:36
1 posts
[Action Required] - Critical Security Advisory: VPN Vulnerabilities CVE-2026-85102 and CVE-2026-8510
Check Point research team has identified and remediated two critical VPN-related vulnerabilities, CVE-2026-85102 and CVE-2026-85103, which could potentially allow unauthenticated remote code execution under specific conditions. These issues were discovered internally, and we have no indication of active exploitation.
#CheckPoint #CheckPointSoftwareTechnologies #VPN #vulnerability
##updated 2026-03-27T21:36:14
2 posts
1 repos
๐ CSAF advisory updated (version 2.0.0)
VDE-2026-088
METTLER TOLEDO: LabX Standard and Enterprise Report on External Component Analysis - v21.4
CVE-2026-4800, CVE-2026-33186, CVE-2026-39821, CVE-2026-33671, CVE-2026-0915 (+60 more)
Changes: corrected version
HTML: https://certvde.com/en/advisories/VDE-2026-088/
CSAF JSON: https://mettler-toledo.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-088.json
๐ CSAF advisory updated (version 2.0.0)
VDE-2026-088
METTLER TOLEDO: LabX Standard and Enterprise Report on External Component Analysis - v21.4
CVE-2026-4800, CVE-2026-33186, CVE-2026-39821, CVE-2026-33671, CVE-2026-0915 (+60 more)
Changes: corrected version
HTML: https://certvde.com/en/advisories/VDE-2026-088/
CSAF JSON: https://mettler-toledo.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-088.json
updated 2026-03-25T18:12:09
2 posts
1 repos
๐ CSAF advisory updated (version 2.0.0)
VDE-2026-088
METTLER TOLEDO: LabX Standard and Enterprise Report on External Component Analysis - v21.4
CVE-2026-4800, CVE-2026-33186, CVE-2026-39821, CVE-2026-33671, CVE-2026-0915 (+60 more)
Changes: corrected version
HTML: https://certvde.com/en/advisories/VDE-2026-088/
CSAF JSON: https://mettler-toledo.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-088.json
๐ CSAF advisory updated (version 2.0.0)
VDE-2026-088
METTLER TOLEDO: LabX Standard and Enterprise Report on External Component Analysis - v21.4
CVE-2026-4800, CVE-2026-33186, CVE-2026-39821, CVE-2026-33671, CVE-2026-0915 (+60 more)
Changes: corrected version
HTML: https://certvde.com/en/advisories/VDE-2026-088/
CSAF JSON: https://mettler-toledo.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-088.json
updated 2026-01-20T18:31:56
2 posts
1 repos
https://github.com/Terra-Nova83/CVE-2026-0915-json-Patch.-V2.0
๐ CSAF advisory updated (version 2.0.0)
VDE-2026-088
METTLER TOLEDO: LabX Standard and Enterprise Report on External Component Analysis - v21.4
CVE-2026-4800, CVE-2026-33186, CVE-2026-39821, CVE-2026-33671, CVE-2026-0915 (+60 more)
Changes: corrected version
HTML: https://certvde.com/en/advisories/VDE-2026-088/
CSAF JSON: https://mettler-toledo.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-088.json
๐ CSAF advisory updated (version 2.0.0)
VDE-2026-088
METTLER TOLEDO: LabX Standard and Enterprise Report on External Component Analysis - v21.4
CVE-2026-4800, CVE-2026-33186, CVE-2026-39821, CVE-2026-33671, CVE-2026-0915 (+60 more)
Changes: corrected version
HTML: https://certvde.com/en/advisories/VDE-2026-088/
CSAF JSON: https://mettler-toledo.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-088.json
updated 2025-10-22T00:32:43
2 posts
1 repos
CVE-2019-0859 - Changed to Known Ransomware Status
Microsoft Win32k Privilege Escalation VulnerabilityVendor: MicrosoftProduct: Win32kMicrosoft Win32k fails to properly handle objects in memory causing privilege escalation. Successful exploitation allows an attacker to run code in kernel mode.Status changed from Unknown to Known for ransomware campaign usage.Flip detected on: September 09, 2026 at 14:08:17 UTCDate Added to KEV: 2021-11-03View https://nvd.nist.gov/vuln/detail/CVE-2019-0859
##CVE-2019-0859 - Changed to Known Ransomware Status
Microsoft Win32k Privilege Escalation VulnerabilityVendor: MicrosoftProduct: Win32kMicrosoft Win32k fails to properly handle objects in memory causing privilege escalation. Successful exploitation allows an attacker to run code in kernel mode.Status changed from Unknown to Known for ransomware campaign usage.Flip detected on: September 09, 2026 at 14:08:17 UTCDate Added to KEV: 2021-11-03View https://nvd.nist.gov/vuln/detail/CVE-2019-0859
##updated 2025-10-22T00:32:37
2 posts
4 repos
https://github.com/dafrax/cve-2022-41352-zimbra-rce
https://github.com/segfault-it/cve-2022-41352
CVE-2022-41352 - Changed to Known Ransomware Status
Synacor Zimbra Collaboration Suite (ZCS) Arbitrary File Upload VulnerabilityVendor: SynacorProduct: Zimbra Collaboration Suite (ZCS)Synacor Zimbra Collaboration Suite (ZCS) allows an attacker to upload arbitrary files using cpio package to gain incorrect access to any other user accounts.Status changed from Unknown to Known for ransomware campaign usage.Flip detected on: September 09, 2026 https://nvd.nist.gov/vuln/detail/CVE-2022-41352
##CVE-2022-41352 - Changed to Known Ransomware Status
Synacor Zimbra Collaboration Suite (ZCS) Arbitrary File Upload VulnerabilityVendor: SynacorProduct: Zimbra Collaboration Suite (ZCS)Synacor Zimbra Collaboration Suite (ZCS) allows an attacker to upload arbitrary files using cpio package to gain incorrect access to any other user accounts.Status changed from Unknown to Known for ransomware campaign usage.Flip detected on: September 09, 2026 https://nvd.nist.gov/vuln/detail/CVE-2022-41352
##updated 2025-06-17T21:31:59
1 posts
CVE-2025-25249 Exploitation Delivers PivotC2, a FortiGate Post-Exploitation RAT
#CVE_2025_25249 #PivotC2
https://socradar.io/blog/cve-2025-25249-pivotc2-fortigate-rat/
๐ด CVE-2026-89049 - Critical (9.9)
A server-side request forgery issue due to improper validation of equivalent address representations in the port forwarding to remote hosts functionality in Amazon AWS Systems Manager Agent (SSM Agent) before 3.3.4851.0 on all platforms might allo...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-89049/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-89049 - Server-side request forgery in the Session Manager port forwarding functionality in AWS Systems Manager Agent
Bulletin ID: 2026-107-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 09/10/2026 11:30 AM PDT
Description:
AWS Systems Manager Agent (SSM Agent) is software that runs on managed nodes (EC2 instances...
https://aws.amazon.com/security/security-bulletins/rss/2026-107-aws/
##๐ด CVE-2026-89049 - Critical (9.9)
A server-side request forgery issue due to improper validation of equivalent address representations in the port forwarding to remote hosts functionality in Amazon AWS Systems Manager Agent (SSM Agent) before 3.3.4851.0 on all platforms might allo...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-89049/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-89049 - Server-side request forgery in the Session Manager port forwarding functionality in AWS Systems Manager Agent
Bulletin ID: 2026-107-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 09/10/2026 11:30 AM PDT
Description:
AWS Systems Manager Agent (SSM Agent) is software that runs on managed nodes (EC2 instances...
https://aws.amazon.com/security/security-bulletins/rss/2026-107-aws/
##๐ CVE-2026-88052 - High (7.8)
Tesseract is an open source OCR engine. In version 5.5.3 and earlier, UNICHARSET::load_via_fgets in src/ccutil/unicharset.cpp trusts the declared unichar count as a loop bound and uses id as an unchecked index into the unichars vector. unichar_ins...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-88052/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-88052 - High (7.8)
Tesseract is an open source OCR engine. In version 5.5.3 and earlier, UNICHARSET::load_via_fgets in src/ccutil/unicharset.cpp trusts the declared unichar count as a loop bound and uses id as an unchecked index into the unichars vector. unichar_ins...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-88052/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##2 posts
8 repos
https://github.com/EQSTLab/CVE-2026-72898
https://github.com/0xBlackash/CVE-2026-72898
https://github.com/ubitquity/Metabase-Setup-Endpoint-SQLi-Fix
https://github.com/4minx/CVE-2026-72898
https://github.com/VuxNx/CVE-2026-72898
https://github.com/d-maggipinto/CVE-2026-72898-metabase-sqli
โ ๏ธAlerte CERT-FRโ ๏ธ
Le CERT-FR a connaissance de nombreuses compromissions de Metabase vulnรฉrables ร l'injection SQL CVE-2026-72898.
##โ ๏ธAlerte CERT-FRโ ๏ธ
Le CERT-FR a connaissance de nombreuses compromissions de Metabase vulnรฉrables ร l'injection SQL CVE-2026-72898.
##Arista Networks Arbitrary RCE Vulnerability
Arista EOS์์ P4Runtime๊ฐ ํ์ฑํ๋ ํน์ ๊ตฌ์ฑ์ ๋ํด ์ธ์ฆ ์์ด ์๊ฒฉ ์ฝ๋ ์คํ์ด ๊ฐ๋ฅํ CVE-2026-73453์ด ๊ณต๊ฐ๋๋ค. ๊ณต๊ฒฉ์๋ P4Runtime ์ธ์ ์ด๊ธฐํ ๊ณผ์ ์ ์ ์ฑ ํจํท์ผ๋ก ์ค์์น์ ์์ ํ ๊ด๋ฆฌ์ ๊ถํ์ ํ๋ํ ์ ์์ผ๋ฉฐ, CVSS v3.1 ์ ์๋ 10.0์ด๋ค. ๋ค๋ง P4Runtime๋ ๊ธฐ๋ณธ์ ์ผ๋ก ๋นํ์ฑํ๋์ด ์์ผ๋ฏ๋ก, ์ด์์๋ `show p4-runtime`์ผ๋ก ๋ ธ์ถ ์ฌ๋ถ๋ฅผ ์ฐ์ ์ ๊ฒํด์ผ ํ๋ค. ์ํฅ๋ฐ๋ ํ๊ฒฝ์ mTLS์ gNSI Authz๋ฅผ ์ ์ฉํ๊ณ , EOS 4.36.2Fยท4.35.6Mยท4...
https://www.arista.com/en/support/advisories-notices/security-advisory/24730-security-advisory-0174
##Fortinet Patches Critical Authentication Bypass and Proxy Flaws Across Product Line
Fortinet patched 10 vulnerabilities, including two critical flaws (CVE-2026-84390 and CVE-2026-84388) that allow unauthenticated attackers to bypass authentication in FortiMonitorOnSight and proxy browser traffic via a Chrome extension.
**If you use Fortinet products, patch ASAP. Prioritise FortiMonitorOnSight and the Privileged Access Agent Chrome extension, then review everything else and update to the latest stable versions such as FortiOS and FortiProxy 7.6.7. After patching, check your logs for reused or forged JWTs and any unusual traffic from admin machines.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/fortinet-patches-critical-authentication-bypass-and-proxy-flaws-across-product-line-t-c-t-4-1/gD2P6Ple2L
Fortinet Patches Critical Authentication Bypass and Proxy Flaws Across Product Line
Fortinet patched 10 vulnerabilities, including two critical flaws (CVE-2026-84390 and CVE-2026-84388) that allow unauthenticated attackers to bypass authentication in FortiMonitorOnSight and proxy browser traffic via a Chrome extension.
**If you use Fortinet products, patch ASAP. Prioritise FortiMonitorOnSight and the Privileged Access Agent Chrome extension, then review everything else and update to the latest stable versions such as FortiOS and FortiProxy 7.6.7. After patching, check your logs for reused or forged JWTs and any unusual traffic from admin machines.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/fortinet-patches-critical-authentication-bypass-and-proxy-flaws-across-product-line-t-c-t-4-1/gD2P6Ple2L
Fortinet Patches Critical Authentication Bypass and Proxy Flaws Across Product Line
Fortinet patched 10 vulnerabilities, including two critical flaws (CVE-2026-84390 and CVE-2026-84388) that allow unauthenticated attackers to bypass authentication in FortiMonitorOnSight and proxy browser traffic via a Chrome extension.
**If you use Fortinet products, patch ASAP. Prioritise FortiMonitorOnSight and the Privileged Access Agent Chrome extension, then review everything else and update to the latest stable versions such as FortiOS and FortiProxy 7.6.7. After patching, check your logs for reused or forged JWTs and any unusual traffic from admin machines.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/fortinet-patches-critical-authentication-bypass-and-proxy-flaws-across-product-line-t-c-t-4-1/gD2P6Ple2L
Fortinet Patches Critical Authentication Bypass and Proxy Flaws Across Product Line
Fortinet patched 10 vulnerabilities, including two critical flaws (CVE-2026-84390 and CVE-2026-84388) that allow unauthenticated attackers to bypass authentication in FortiMonitorOnSight and proxy browser traffic via a Chrome extension.
**If you use Fortinet products, patch ASAP. Prioritise FortiMonitorOnSight and the Privileged Access Agent Chrome extension, then review everything else and update to the latest stable versions such as FortiOS and FortiProxy 7.6.7. After patching, check your logs for reused or forged JWTs and any unusual traffic from admin machines.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/fortinet-patches-critical-authentication-bypass-and-proxy-flaws-across-product-line-t-c-t-4-1/gD2P6Ple2L
Fortinet fixed three critical Fortinet vulnerabilities. Attackers can exploit CVE-2026-84390 and CVE-2026-26084 to access corporate data.
#Fortinet #Vulnerabilities #Cybersecurity #InfoSec #PatchManagement
##CVE-2026-87911 (CVSS 9.6): CRITICAL OS command injection in AWS Labs postgres MCP Server (<1.1.7). Unauthenticated attackers can execute OS commands via crafted SQL. Upgrade to 1.1.7+ ASAP. https://radar.offseq.com/threat/cve-2026-87911-cwe-78-improper-neutralization-of-special-elements-used-in-an-os-command-os-command-5896283731c57124 #OffSeq #AWS #PostgreSQL #Vuln
##CVE-2026-87911 (CVSS 9.6): CRITICAL OS command injection in AWS Labs postgres MCP Server (<1.1.7). Unauthenticated attackers can execute OS commands via crafted SQL. Upgrade to 1.1.7+ ASAP. https://radar.offseq.com/threat/cve-2026-87911-cwe-78-improper-neutralization-of-special-elements-used-in-an-os-command-os-command-5896283731c57124 #OffSeq #AWS #PostgreSQL #Vuln
##๐ด CVE-2026-87911 - Critical (9.6)
An OS command injection weakness in the read-only enforcement of the SQL validation component in Amazon awslabs postgres-mcp-server before 1.1.7 might allow an unauthenticated actor to execute operating system commands on the host of a self-manage...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-87911/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-85786: DoS via crafted compressed Ion data in Amazon ion-java <1.12.1. Expansion bomb bypasses GZIP opt-out (CVE-2026-75936). CVSS 7.5. Update to 1.12.1 now. https://www.valtersit.com/cve/CVE-2026-85786/ #CVE #infosec #AWS
##CVE-2026-85786: DoS via crafted compressed Ion data in Amazon ion-java <1.12.1. Expansion bomb bypasses GZIP opt-out (CVE-2026-75936). CVSS 7.5. Update to 1.12.1 now. https://www.valtersit.com/cve/CVE-2026-85786/ #CVE #infosec #AWS
##Issue with FreeRTOS-Kernel - CVE-2026-77234, CVE-2026-77235, CVE-2026-77236, CVE-2026-77237
Bulletin ID: 2026-086-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/21/2026 10:30 AM PDT
Description:
FreeRTOS-Kernel is a real-time operating system kernel for microcontrollers and small micro...
https://aws.amazon.com/security/security-bulletins/rss/2026-086-aws/
##Issue with FreeRTOS-Kernel - CVE-2026-77234, CVE-2026-77235, CVE-2026-77236, CVE-2026-77237
Bulletin ID: 2026-086-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/21/2026 10:30 AM PDT
Description:
FreeRTOS-Kernel is a real-time operating system kernel for microcontrollers and small micro...
https://aws.amazon.com/security/security-bulletins/rss/2026-086-aws/
##Issue with FreeRTOS-Kernel - CVE-2026-77234, CVE-2026-77235, CVE-2026-77236, CVE-2026-77237
Bulletin ID: 2026-086-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/21/2026 10:30 AM PDT
Description:
FreeRTOS-Kernel is a real-time operating system kernel for microcontrollers and small micro...
https://aws.amazon.com/security/security-bulletins/rss/2026-086-aws/
##Issue with FreeRTOS-Kernel - CVE-2026-77234, CVE-2026-77235, CVE-2026-77236, CVE-2026-77237
Bulletin ID: 2026-086-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/21/2026 10:30 AM PDT
Description:
FreeRTOS-Kernel is a real-time operating system kernel for microcontrollers and small micro...
https://aws.amazon.com/security/security-bulletins/rss/2026-086-aws/
##Issue with FreeRTOS-Kernel - CVE-2026-77234, CVE-2026-77235, CVE-2026-77236, CVE-2026-77237
Bulletin ID: 2026-086-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/21/2026 10:30 AM PDT
Description:
FreeRTOS-Kernel is a real-time operating system kernel for microcontrollers and small micro...
https://aws.amazon.com/security/security-bulletins/rss/2026-086-aws/
##Issue with FreeRTOS-Kernel - CVE-2026-77234, CVE-2026-77235, CVE-2026-77236, CVE-2026-77237
Bulletin ID: 2026-086-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/21/2026 10:30 AM PDT
Description:
FreeRTOS-Kernel is a real-time operating system kernel for microcontrollers and small micro...
https://aws.amazon.com/security/security-bulletins/rss/2026-086-aws/
##๐ด CVE-2026-54694 - Critical (9.6)
SkillTree is a micro-learning gamification platform. Prior to version 4.4.2, two independent code flaws combine into a single exploitable attack chain, with three distinct exploitation paths of escalating impact. `StringHighlighter.js` builds an H...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-54694/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ด CVE-2026-85982 - Critical (9)
The Auth0 AD/LDAP Connector is vulnerable to stored Cross-Site Scripting (XSS) issues due to improper HTML encoding of data in search results and updater log content displayed in the admin panel. An authenticated user with privileges to modify dir...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-85982/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CISA advisory ICSA-26-251-01 documents CVE-2026-85083 in CareCam Pro ANJIA AJL33PC0801: hard-coded bootloader credential allows privileged access with physical presence. It enables firmware modification and persistent compromise, undermining trust in affected deployments. #HardcodedCredentials #IotSecurity #FirmwareSecurity
https://cyberworldops.eu/en/hard-coded-bootloader-credential-exposes-carecam-pro-camera-to-full
##๐ CVE-2026-53938 - High (8.2)
OpenIDC/cjose is a C library implementing the Javascript Object Signing and Encryption (JOSE). Prior to version 0.6.2.5, cjose's JWE decryption path for the AES Key Wrap key-management algorithms (`alg` = `A128KW`, `A192KW`, `A256KW`) does not val...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-53938/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-53581 (CRITICAL, CVSS 9.0): OPNsense core <26.1.9 NTP module path traversal lets privileged users overwrite files as root. Upgrade to 26.1.9+ & backend 26.4_20+ now. https://radar.offseq.com/threat/cve-2026-53581-cwe-22-improper-limitation-of-a-pathname-to-a-restricted-directory-path-traversal-in-35f8611179753b8a #OffSeq #OPNsense #Vuln #PathTraversal
##๐ด CVE-2026-53581 - Critical (9)
OPNsense is a FreeBSD based firewall and routing platform. Prior to version 26.1.9 of opnsense/core and version 26.4_20 of BE/opnsense/core, a path traversal vulnerability in the NTP configuration module allows an attacker to overwrite arbitrary f...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-53581/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##