## Updated at UTC 2026-10-07T20:30:31.291536

Access data as JSON

CVE CVSS EPSS Posts Repos Nuclei Updated Description
CVE-2026-79806 7.8 0.11% 1 0 2026-10-07T19:17:42.637000 A privilege escalation vulnerability in the ClearPass Policy Manager OnGuard Lin
CVE-2026-79803 8.8 0.74% 1 0 2026-10-07T19:17:42.403000 A command injection vulnerability exists in the API of ClearPass Policy Manager.
CVE-2026-79800 8.8 0.55% 1 0 2026-10-07T19:17:42.033000 An authenticated path traversal vulnerability exists in the command line interfa
CVE-2026-76464 9.6 0.00% 2 0 2026-10-07T19:17:40.650000 As part of Cisco's ongoing commitment to proactive security and product quality,
CVE-2026-14911 0 0.32% 2 0 2026-10-07T19:17:35.867000 Improper Neutralization of Input During Web Page Generation (“Cross-site Scripti
CVE-2026-107219 7.5 0.00% 2 0 2026-10-07T19:17:34.287000 Excelize is a Go language library for reading and writing Microsoft Excel spread
CVE-2026-107217 7.5 0.00% 2 0 2026-10-07T19:17:33.957000 Excelize is a Go language library for reading and writing Microsoft Excel spread
CVE-2026-102255 10.0 0.00% 5 0 2026-10-07T18:33:12 A Pre-authentication SSRF vulnerability exists in the SMA1000 Appliance Work Pla
CVE-2026-76483 9.1 0.00% 2 0 2026-10-07T18:32:21 As part of Cisco's ongoing commitment to proactive security and product quality,
CVE-2026-96335 7.5 0.00% 2 0 2026-10-07T18:32:21 Missing Authorization vulnerability in WPMU DEV Forminator allows Exploiting Inc
CVE-2026-76480 9.8 0.00% 2 0 2026-10-07T18:32:21 As part of Cisco's ongoing commitment to proactive security and product quality,
CVE-2026-76472 8.8 0.00% 2 0 2026-10-07T18:32:21 As part of Cisco's ongoing commitment to proactive security and product quality,
CVE-2026-76471 9.8 0.00% 4 0 2026-10-07T18:32:21 A vulnerability in the NX-API feature of Cisco NX-OS Software could allow an una
CVE-2026-76470 8.8 0.00% 2 0 2026-10-07T18:32:21 As part of Cisco's ongoing commitment to proactive security and product quality,
CVE-2026-76499 9.8 0.00% 2 0 2026-10-07T18:32:21 As part of Cisco's ongoing commitment to proactive security and product quality,
CVE-2026-76498 9.8 0.00% 2 0 2026-10-07T18:32:21 As part of Cisco's ongoing commitment to proactive security and product quality,
CVE-2026-76486 9.8 0.00% 2 0 2026-10-07T18:32:21 A vulnerability in the VXLAN Operation, Administration, and Maintenance (OAM) fe
CVE-2026-76485 9.8 0.00% 4 0 2026-10-07T18:32:21 A vulnerability in the VXLAN Operation, Administration, and Maintenance (OAM) fe
CVE-2026-76484 8.8 0.00% 2 0 2026-10-07T18:32:21 As part of Cisco's ongoing commitment to proactive security and product quality,
CVE-2026-95605 9.3 0.00% 2 0 2026-10-07T18:32:21 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injecti
CVE-2026-76482 10.0 0.00% 4 0 2026-10-07T18:32:20 As part of Cisco's ongoing commitment to proactive security and product quality,
CVE-2026-76500 9.8 0.00% 2 0 2026-10-07T18:32:14 As part of Cisco's ongoing commitment to proactive security and product quality,
CVE-2026-20328 9.1 0.00% 2 0 2026-10-07T18:32:14 A vulnerability in the web-based management interface of Cisco License On-Prem,
CVE-2026-76501 9.8 0.00% 2 0 2026-10-07T18:32:14 A vulnerability in the Segment Routing over IPv6 (SRv6) Operation, Administratio
CVE-2026-107206 9.4 0.00% 2 0 2026-10-07T18:32:14 LMCache through 0.5.5 contains a missing authentication vulnerability in the mul
CVE-2026-107204 9.8 0.00% 2 0 2026-10-07T18:32:14 LMCache through 0.5.5 contains an unauthenticated remote code execution vulnerab
CVE-2026-20362 7.2 0.00% 2 0 2026-10-07T18:32:14 A vulnerability in the web-based management interface of Cisco Finesse could all
CVE-2026-92414 None 0.00% 2 0 2026-10-07T18:32:14 : Session Fixation / Session Reuse across Users vulnerability in Apache Jackrabb
CVE-2026-95606 9.8 0.00% 2 0 2026-10-07T18:17:31.910000 Deserialization of Untrusted Data vulnerability in Liquid Web / StellarWP The Ev
CVE-2026-95534 8.8 0.00% 2 0 2026-10-07T18:17:31.777000 Deserialization of Untrusted Data vulnerability in Unlimited Elements Unlimited
CVE-2026-76465 9.8 0.00% 4 0 2026-10-07T18:17:28.580000 A vulnerability in the MPLS Operation, Administration, and Maintenance (OAM) fea
CVE-2026-76457 8.6 0.00% 2 0 2026-10-07T18:17:21.317000 As part of Cisco's ongoing commitment to proactive security and product quality,
CVE-2026-106510 7.7 0.00% 2 0 2026-10-07T18:17:16.660000 Backstage is an open framework for building developer portals. Prior to 1.14.6,
CVE-2026-105192 9.8 0.67% 2 0 2026-10-07T18:17:15.427000 LMCache multiprocess mode, also called distributed mode, opens an unauthenticate
CVE-2026-104286 9.8 2.20% 1 2 2026-10-07T18:17:15.240000 An improper limitation of a pathname to a restricted directory ('path traversal'
CVE-2026-106443 8.8 0.69% 1 0 2026-10-07T18:05:51 ### Summary This was found during a pentest, funded by the NLNnet foundation, c
CVE-2026-106441 7.8 0.17% 1 0 2026-10-07T18:03:56 ## Summary Hydra passed its Python logging configuration to `logging.config.dic
CVE-2026-106442 7.8 0.16% 1 0 2026-10-07T18:03:50 ## Summary Hydra's `instantiate()` API resolves and invokes Python callables na
CVE-2026-106558 8.8 0.00% 2 0 2026-10-07T18:03:15 ### Impact An attacker who can provide configuration to a TechDocs build may ex
CVE-2026-77226 8.1 0.69% 1 0 2026-10-07T17:17:02.300000 Camunda 7.24.0 before 7.24.15 contains an incorrect authorization vulnerability
CVE-2026-76468 8.2 0.00% 2 0 2026-10-07T17:16:59.680000 As part of Cisco's ongoing commitment to proactive security and product quality,
CVE-2026-76467 7.5 0.00% 2 0 2026-10-07T17:16:59.503000 As part of Cisco's ongoing commitment to proactive security and product quality,
CVE-2026-76463 8.8 0.00% 2 0 2026-10-07T17:16:58.833000 As part of Cisco's ongoing commitment to proactive security and product quality,
CVE-2026-76459 8.8 0.00% 2 0 2026-10-07T17:16:58.553000 As part of Cisco's ongoing commitment to proactive security and product quality,
CVE-2026-76458 8.6 0.00% 2 0 2026-10-07T17:16:58.280000 As part of Cisco's ongoing commitment to proactive security and product quality,
CVE-2026-76455 9.8 0.00% 2 0 2026-10-07T17:16:57.520000 As part of Cisco's ongoing commitment to proactive security and product quality,
CVE-2026-107205 8.6 0.00% 2 0 2026-10-07T17:16:53.790000 LMCache through 0.5.5 contains a missing authentication vulnerability in the mul
CVE-2026-79796 9.8 0.47% 1 0 2026-10-07T16:18:59.520000 Vulnerabilities have been identified in the affected interface of ClearPass Poli
CVE-2026-106118 7.5 0.60% 1 0 2026-10-07T16:18:57 ## Summary When decoding a tiled TIFF with fax compression (T4/T6/MH), `DecodeT
CVE-2026-106117 7.5 0.43% 1 0 2026-10-07T16:18:52 ## Summary When decoding a fax-compressed strip TIFF (Compression=3 / Group 3 1
CVE-2026-101027 7.7 0.16% 1 0 2026-10-07T16:17:31.953000 When `[migrations] ALLOWED_DOMAINS` was configured, a hostname matching the allo
CVE-2026-106102 10.0 0.30% 1 0 2026-10-07T16:14:23 ## Vulnerability Details **File**: `ui/src/utils/meta/Meta.js` — actually `ui/s
CVE-2026-102489 9.8 1.40% 1 2 2026-10-07T15:32:31 Zammad versions 6.3.0 to 6.5.4 are vulnerable a session hijack vulnerability tha
CVE-2026-77214 8.2 0.00% 2 0 2026-10-07T15:32:08 libexpat before commit 13c5f63 contains a heap buffer over-read vulnerability in
CVE-2026-21589 None 1.75% 22 7 template 2026-10-07T15:31:33 h3. Summary This is a vulnerability in Bitbucket Data Center, Confluence Data C
CVE-2026-58835 8.8 0.23% 1 0 2026-10-07T15:12:08.233000 In cfg2prop of btif_storage.cc, there is a possible out-of-bounds write due to a
CVE-2026-55269 7.8 0.07% 1 0 2026-10-07T15:10:08.650000 In FilterCapturedPacket of snoop_logger.cc, there is a possible memory safety is
CVE-2026-76744 9.8 0.51% 1 0 2026-10-07T14:44:18.807000 Buffer overflow vulnerabilities exist in the affected interface of AOS-S. Succes
CVE-2026-102406 8.8 0.35% 1 0 2026-10-07T13:42:52.070000 Authorization Bypass Through User-Controlled Key (CWE-639) in Kibana could lead
CVE-2026-49885 7.8 0.07% 1 0 2026-10-07T13:03:47.930000 In rw_t4t_update_file of rw_t4t.cc, there is a possible out-of-bounds write due
CVE-2026-96408 9.4 0.00% 1 0 2026-10-07T12:32:00 A code injection vulnerability exists in the upgrade script of Movable Type, whi
CVE-2025-64393 None 0.36% 3 0 2026-10-07T09:32:29 This vulnerability in Veeam Backup & Replication allows a Backup Viewer to execu
CVE-2026-107104 None 0.42% 1 0 2026-10-07T09:32:29 This vulnerability exists in the ERP system due to unsafe deserialization of use
CVE-2026-19572 None 0.37% 1 0 2026-10-07T06:33:01 A security vulnerability has been identified in FlexNet Publisher lmadmin. The v
CVE-2026-106197 9.6 0.40% 1 0 2026-10-07T04:17:49.727000 Use after free in Browser in Google Chrome prior to 155.0.8059.39 allowed a remo
CVE-2026-101207 8.8 1.66% 1 0 2026-10-07T04:17:38.120000 Dell OpenManage Integration with Microsoft Windows Admin Center, versions prior
CVE-2026-16516 None 0.15% 1 0 2026-10-07T03:30:31 wolfSSH does not validate that the ECDSA curve identifier in a KEXDH_REPLY host
CVE-2026-93674 9.8 0.76% 1 1 2026-10-07T03:30:26 IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote attacker to execute a
CVE-2026-104334 9.8 0.62% 1 0 2026-10-07T03:30:26 IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote attacker to execute a
CVE-2026-19386 None 0.19% 1 0 2026-10-07T03:30:23 A stack-based buffer overflow in the ASUS router modules allows an authenticated
CVE-2026-105324 None 0.65% 1 0 2026-10-07T03:30:23 An HTTP header injection vulnerability in start-page-loader.cgi of ADM allows an
CVE-2026-76750 9.8 0.53% 1 0 2026-10-06T21:32:09 Deserialization of untrusted data vulnerabilities exist in the web interface of
CVE-2026-79808 7.8 0.11% 1 0 2026-10-06T21:32:09 A buffer overflow vulnerability exists in the OnGuard agent of ClearPass Policy
CVE-2026-79807 7.8 0.11% 1 0 2026-10-06T21:32:09 A missing integrity verification vulnerability in the Windows client software fo
CVE-2026-43598 None 0.46% 1 0 2026-10-06T21:32:09 Improper input validation in the AMD ROCm Communication Collectives Library (RCC
CVE-2026-79802 8.8 1.12% 1 0 2026-10-06T21:32:02 A command injection vulnerability exists in the client software of ClearPass Pol
CVE-2026-79801 9.8 0.64% 1 0 2026-10-06T21:32:02 A missing integrity verification vulnerability in the client agent software of H
CVE-2026-79799 8.8 0.29% 1 0 2026-10-06T21:32:02 A vulnerability in the web-based management interface of ClearPass Policy Manage
CVE-2026-79798 9.9 0.34% 1 0 2026-10-06T21:32:02 SQL injection vulnerabilities in the web-based management interface of ClearPass
CVE-2026-79797 8.8 0.30% 1 0 2026-10-06T21:32:02 An improper access control vulnerability exists in the Android client applicatio
CVE-2026-79805 9.8 0.36% 1 0 2026-10-06T21:32:02 An authenticated path traversal vulnerability exists in ClearPass Policy Manager
CVE-2026-86361 8.2 0.14% 1 0 2026-10-06T21:31:59 Dell System Update, versions prior to 2.3.0.0, contains an Incorrect Permission
CVE-2026-103007 7.2 0.34% 1 0 2026-10-06T21:31:57 Incorrect Authorization (CWE-863) in Elasticsearch can lead to Privilege Escalat
CVE-2026-102159 9.8 0.36% 1 0 2026-10-06T21:31:53 An access-control flaw in the CV-CUE backend may allow an unauthenticated networ
CVE-2026-86362 8.2 0.13% 1 0 2026-10-06T21:31:53 Dell System Update, versions prior to 2.3.0.0, contains an Improper Access Contr
CVE-2026-106382 9.6 0.35% 2 0 2026-10-06T21:31:51 Use after free in Chromecast in Google Chrome prior to 155.0.8059.39 allowed a r
CVE-2026-104073 7.6 0.28% 1 0 2026-10-06T21:31:41 NetBox versions 2.9.5 before 4.7.0 contain a server-side template injection vuln
CVE-2026-86360 9.6 0.63% 2 0 2026-10-06T20:17:34.090000 Dell System Update, versions prior to 2.3.0.0, contains an Improper Limitation o
CVE-2026-104070 9.8 0.57% 2 0 2026-10-06T20:05:55.733000 The Crayons plugin for SPIP before 3.5.0 contains a missing authorization vulner
CVE-2026-106440 7.8 0.27% 1 0 2026-10-06T20:03:40.690000 Hydra is a framework for elegantly configuring complex applications. From 1.2.0
CVE-2026-106110 7.5 0.35% 1 0 2026-10-06T20:03:40.690000 ImageSharp is a 2D graphics library. From 2.0.0 until 4.1.2, the TIFF CCITT Grou
CVE-2026-105862 8.7 0.25% 1 0 2026-10-06T20:03:40.690000 Payload is a free and open source headless content management system. In version
CVE-2026-63697 7.6 0.29% 1 0 2026-10-06T19:58:37.060000 Dell System Update, versions prior to 2.3.0.0, contains an Improper Certificate
CVE-2026-67273 9.6 0.42% 1 0 2026-10-06T19:58:37.060000 Dell Container Storage Modules, versions prior to 1.18.0, contain(s) an Improper
CVE-2026-106218 8.8 0.27% 1 0 2026-10-06T18:31:38 In JetBrains TeamCity before 2026.1.3 2025.11.7 kotlin DSL sandbox escape leadin
CVE-2026-67270 8.2 0.12% 1 0 2026-10-06T18:31:38 Dell Container Storage Modules (CSM) versions prior to 1.18.0, contains an Impro
CVE-2026-76105 7.7 0.16% 1 0 2026-10-06T18:31:38 Dell Container Storage Modules, versions prior to 1.18.0 contain(s) an Use of In
CVE-2026-61411 7.7 0.38% 1 0 2026-10-06T18:31:37 Dell Container Storage Modules, versions prior to 1.18.0, contain(s) an Insertio
CVE-2026-105778 9.9 0.48% 1 0 2026-10-06T18:16:46.563000 A vulnerability has been found in Tenda AC5 02.03.01.111_multi. Affected by this
CVE-2026-105691 9.9 0.37% 1 0 2026-10-06T17:17:18.470000 Penpot is an open-source design and prototyping platform. Prior to 2.18.0, the S
CVE-2026-105793 9.1 0.86% 1 0 2026-10-06T16:17:05.703000 Microsoft UFO is an open-source framework for intelligent automation across devi
CVE-2026-105845 9.8 0.38% 1 0 2026-10-06T16:09:18 ### Impact A user can submit a request that exploits a SQL Injection vulnerabili
CVE-2026-82531 8.1 0.82% 1 1 2026-10-06T16:00:36.547000 Smarty before 4.5.8 and 5.x before 5.8.5 contains a code injection vulnerability
CVE-2026-105796 8.8 0.90% 1 0 2026-10-06T15:36:01 ### Impact An attacker who controls or tampers with an OpenAPI description can
CVE-2026-104850 7.5 0.18% 1 0 2026-10-06T15:35:44 ### Summary In affected versions, the SDK's OAuth client let the MCP server deci
CVE-2026-63688 10.0 0.79% 1 0 2026-10-06T15:32:11 Dell Container Storage Modules (CSM), versions prior to v1.18.0, contains a Miss
CVE-2026-63692 10.0 0.65% 1 0 2026-10-06T15:32:11 Dell Container Storage Modules, versions prior to 1.18.0, contain(s) a Missing A
CVE-2026-54472 9.8 0.54% 1 0 2026-10-06T15:32:06 Dell Container Storage Modules, versions prior to 1.18.0, contain(s) an Use of H
CVE-2026-91140 9.6 1.92% 1 0 2026-10-06T15:32:06 An OS command injection vulnerability in the shell-based temporary-file cleanup
CVE-2026-61421 9.8 0.34% 1 0 2026-10-06T15:32:04 Dell Container Storage Modules, versions prior to 1.18.0, contain(s) an Use of H
CVE-2026-67269 9.9 0.53% 1 0 2026-10-06T15:18:44.910000 Dell Container Storage Modules (CSM) Operator, versions prior to 1.18.0 contains
CVE-2026-84411 9.8 0.95% 1 0 2026-10-06T15:15:48.310000 The web management service in affected RouterOS versions contains an integer und
CVE-2026-91107 0 0.24% 1 0 2026-10-06T15:08:38.397000 openSIS Classic 9.3 allows an authenticated user with the built-in teacher role
CVE-2026-96940 8.8 0.50% 2 1 2026-10-06T15:05:34.080000 Weak authorization in Microsoft Exchange Server allows an authenticated attacker
CVE-2026-42415 9.3 0.25% 1 0 2026-10-06T15:04:25.990000 Unauthenticated SQL Injection in Porto Theme - Functionality <= 3.9.3 versions.
CVE-2026-100511 8.8 0.36% 1 0 2026-10-06T15:04:25.990000 Deserialization of Untrusted Data vulnerability in Vektor Inc. VK Google Job Pos
CVE-2026-105642 8.8 0.25% 1 0 2026-10-06T15:03:59.427000 Ghost is a Node.js content management system. From 6.56.0 until 6.67.0, an image
CVE-2026-59265 8.8 0.43% 1 1 2026-10-06T14:17:45.660000 A code execution issue in the Java integration in Apache OpenOffice v4.1.16 and
CVE-2026-41555 9.3 0.25% 1 0 2026-10-06T09:31:35 Unauthenticated SQL Injection in Newsletter Subscription Form – User Subscriptio
CVE-2026-42417 9.3 0.33% 1 0 2026-10-06T09:31:35 Unauthenticated SQL Injection in ARMember Premium <= 7.8 versions.
CVE-2026-94293 9.8 0.35% 2 0 2026-10-06T09:31:31 An unauthenticated remote attacker can modify Asset Administration Shell submode
CVE-2026-75962 7.2 0.28% 1 0 2026-10-06T06:30:43 The Post SMTP – Complete Email Deliverability and SMTP Solution with Email Logs,
CVE-2026-105484 10.0 2.13% 1 0 2026-10-06T03:31:28 A security vulnerability has been detected in TOTOLINK X6000R 9.4.0cu.652_B20230
CVE-2026-103066 8.5 0.26% 1 0 2026-10-05T21:31:46 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injecti
CVE-2026-97257 8.8 0.36% 1 0 2026-10-05T21:31:46 Deserialization of Untrusted Data vulnerability in PressTigers Simple Event Plan
CVE-2026-58841 7.8 0.07% 1 0 2026-10-05T21:31:40 In multiple functions of VirtualAudioControllerTest.java, there is a possible pe
CVE-2026-58815 7.8 0.07% 1 0 2026-10-05T21:31:40 In multiple locations, there is a possible out of bounds write due to an incorre
CVE-2026-49933 7.8 0.07% 1 0 2026-10-05T21:31:39 In handle_le_monitor_device_event of msft.cc, there is a possible control-flow h
CVE-2026-45524 8.8 0.07% 1 0 2026-10-05T21:31:39 In isSystem of WifiPermissionsUtil.java, there is a possible sandbox escape due
CVE-2026-49937 7.8 0.07% 1 0 2026-10-05T21:31:39 In multiple functions of MessageQueueBase.h, there is a possible out of bounds r
CVE-2026-55266 7.8 0.07% 1 0 2026-10-05T21:31:39 In qsort of libufdt_sysdeps_vendor.c, there is a possible out-of-bounds write du
CVE-2026-58854 7.8 0.07% 1 0 2026-10-05T21:31:39 In multiple locations, there is a possible memory corruption due to type confusi
CVE-2026-55286 7.8 0.07% 1 0 2026-10-05T21:31:39 In stpropnci_process of stpropnci.cc, there is a possible out of bounds write du
CVE-2026-55280 8.8 0.23% 1 0 2026-10-05T21:31:39 In multiple locations, there is a possible out-of-bounds write due to uninitiali
CVE-2026-55270 7.8 0.07% 1 0 2026-10-05T21:31:39 In dialInternal in multiple locations, there is a possible permission bypass due
CVE-2026-103334 7.5 0.32% 1 0 2026-10-05T21:31:38 Insertion of Sensitive Information Into Sent Data vulnerability in Etoile Web De
CVE-2026-58859 7.8 0.07% 1 0 2026-10-05T21:31:36 In multiple places, there is a possible denial of service due to an uncaught ex
CVE-2026-105636 9.9 0.35% 1 0 2026-10-05T19:17:17.827000 Plane is an open-source project management tool. Prior to 1.4.0, the webhook del
CVE-2026-88779 7.5 0.59% 4 2 2026-10-05T15:33:23 Vulnerability in NetScaler ADC and NetScaler Gateway. This issue affects ADC: b
CVE-2026-63277 None 0.14% 3 1 2026-10-05T12:31:34 LibreOffice Calc can link a cell range to an external data source, and the link
CVE-2026-18397 0 0.34% 2 0 2026-10-02T20:17:02.060000 This vulnerability enables unauthenticated remote code execution (RCE) on a vict
CVE-2026-91135 0 0.46% 1 0 2026-10-02T18:17:06.963000 Heap-based buffer overflow vulnerability in Apache Thrift C++ THeaderTransport.
CVE-2026-90970 9.9 0.94% 1 1 2026-10-02T15:31:37 GitLab has remediated a vulnerability in the GitLab AI Gateway component affecti
CVE-2026-88771 9.8 1.08% 3 13 2026-09-29T04:18:01.603000 Improper input validation vulnerability in Citrix NetScaler ADC and Citrix NetSc
CVE-2026-88772 8.1 1.30% 1 8 2026-09-28T12:32:09 Vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway. This issue
CVE-2026-93485 7.1 0.38% 1 4 2026-09-18T06:32:17 Improper neutralization of input during web page generation ('cross-site scripti
CVE-2026-68508 7.8 0.46% 1 0 2026-08-21T20:57:32 ## Summary `hydra.utils.instantiate()` resolves and calls Python objects from c
CVE-2026-61500 9.8 0.99% 4 1 2026-07-13T18:31:00 Rejetto HFS 3.0.0 through 3.2.0 derives its session-cookie signing key from the
CVE-2025-54769 8.8 3.33% 1 2 2026-06-17T09:40:40.793000 An authenticated, read-only user can upload a file and perform a directory trave
CVE-2026-35273 9.8 9.44% 4 4 template 2026-06-12T18:31:50 Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleS
CVE-2013-3900 7.4 44.65% 1 15 2025-10-22T03:31:39 The WinVerifyTrust function in Microsoft Windows XP SP2 and SP3, Windows Server
CVE-2024-7971 8.8 21.10% 1 2 2025-10-22T00:34:11 Type confusion in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote at
CVE-2021-26085 5.3 99.94% 1 2 template 2025-10-22T00:33:23 Affected versions of Atlassian Confluence Server allow remote attackers to view
CVE-2021-35394 9.8 99.88% 1 0 template 2025-10-22T00:33:23 Realtek Jungle SDK version v2.x up to v3.4.14B provides a diagnostic tool called
CVE-2026-107212 0 0.00% 2 0 N/A
CVE-2026-107216 0 0.00% 2 0 N/A
CVE-2026-59816 0 0.36% 1 0 N/A
CVE-2026-107215 0 0.00% 2 0 N/A
CVE-2026-107214 0 0.00% 2 0 N/A
CVE-2026-61748 0 0.42% 1 0 N/A
CVE-2026-77459 0 0.00% 2 0 N/A
CVE-2026-103059 0 0.16% 1 0 N/A
CVE-2026-103416 0 0.21% 1 0 N/A
CVE-2026-106445 0 0.41% 1 0 N/A
CVE-2026-106446 0 0.64% 1 0 N/A
CVE-2026-105797 0 0.56% 1 0 N/A
CVE-2026-61744 0 0.51% 1 0 N/A
CVE-2026-106113 0 0.35% 1 0 N/A
CVE-2026-106112 0 0.35% 1 0 N/A
CVE-2026-106115 0 0.35% 1 0 N/A
CVE-2026-105859 0 0.35% 1 0 N/A
CVE-2026-105858 0 0.48% 1 0 N/A
CVE-2026-105857 0 0.43% 1 0 N/A
CVE-2026-105865 0 0.37% 1 0 N/A
CVE-2026-100754 0 0.00% 1 0 N/A
CVE-2026-105763 0 0.28% 2 0 N/A
CVE-2026-105637 0 0.32% 1 0 N/A
CVE-2026-105744 0 0.30% 1 0 N/A
CVE-2026-105740 0 0.59% 1 0 N/A
CVE-2026-105697 0 0.40% 1 0 N/A
CVE-2026-105650 0 0.33% 1 0 N/A
CVE-2026-105675 0 0.39% 1 0 N/A
CVE-2026-105634 0 0.29% 1 0 N/A

CVE-2026-79806
(7.8 HIGH)

EPSS: 0.11%

updated 2026-10-07T19:17:42.637000

1 posts

A privilege escalation vulnerability in the ClearPass Policy Manager OnGuard Linux agent could allow malicious users on a Linux instance to elevate their user privileges. A successful exploit allows a malicious user to escalate to root privileges on the affected Linux client.

thehackerwire@mastodon.social at 2026-10-06T20:30:57.000Z ##

🟠 CVE-2026-79806 - High (7.8)

A privilege escalation vulnerability in the ClearPass Policy Manager OnGuard Linux agent could allow malicious users on a Linux instance to elevate their user privileges. A successful exploit allows a malicious user to escalate to root privileges ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-79803
(8.8 HIGH)

EPSS: 0.74%

updated 2026-10-07T19:17:42.403000

1 posts

A command injection vulnerability exists in the API of ClearPass Policy Manager. Successful exploitation could allow an authenticated remote attacker to escalate privileges and gain administrative control of the affected system.

thehackerwire@mastodon.social at 2026-10-06T21:01:30.000Z ##

🟠 CVE-2026-79803 - High (8.8)

A command injection vulnerability exists in the API of ClearPass Policy Manager. Successful exploitation could allow an authenticated remote attacker to escalate privileges and gain administrative control of the affected system.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-79800
(8.8 HIGH)

EPSS: 0.55%

updated 2026-10-07T19:17:42.033000

1 posts

An authenticated path traversal vulnerability exists in the command line interface of ClearPass Policy Manager. Successful exploitation could allow a low-privileged authenticated remote attacker to execute arbitrary code with elevated privileges on the underlying operating system.

thehackerwire@mastodon.social at 2026-10-06T20:46:00.000Z ##

🟠 CVE-2026-79800 - High (8.8)

An authenticated path traversal vulnerability exists in the command line interface of ClearPass Policy Manager. Successful exploitation could allow a low-privileged authenticated remote attacker to execute arbitrary code with elevated privileges o...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-76464
(9.6 CRITICAL)

EPSS: 0.00%

updated 2026-10-07T19:17:40.650000

2 posts

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco networking engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. The vulnerabilities tracked by this CVE-2026-76464 are related to buffer management issues that are groupe

thehackerwire@mastodon.social at 2026-10-07T19:01:48.000Z ##

🔴 CVE-2026-76464 - Critical (9.6)

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco networking engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses mult...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-10-07T19:01:48.000Z ##

🔴 CVE-2026-76464 - Critical (9.6)

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco networking engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses mult...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-14911
(0 None)

EPSS: 0.32%

updated 2026-10-07T19:17:35.867000

2 posts

Improper Neutralization of Input During Web Page Generation (“Cross-site Scripting”) in ASUS router modules allows a remote attacker to read DOM information, modify router settings, and cause a denial-of-service condition when an authenticated user visits a crafted URL.Refer to the ' Security Update for ASUS Router Firmware  ' section on the ASUS Security Advisory for more information.

offseq@infosec.exchange at 2026-10-07T06:00:24.000Z ##

ASUS Router XSS (CVE-2026-14911, CRITICAL, CVSS 9.3): Remote attackers can exploit improper input neutralization to execute scripts, alter settings, or cause DoS if visited by authenticated users. No patch yet. Details: radar.offseq.com/threat/cve-20 #OffSeq #XSS #Cybersecurity

##

DailyCyberSecurity@infosec.exchange at 2026-10-07T03:06:10.000Z ##

Four ASUS router vulnerabilities are fixed, including critical XSS flaw CVE-2026-14911 and code execution bug CVE-2026-19386. Update firmware now.

#ASUS #ASUSRouter #RouterSecurity #CVE202614911 #CVE202619386 #XSS #FirmwareUpdate #Vulnerability

securityonline.info/asus-route

##

CVE-2026-107219
(7.5 HIGH)

EPSS: 0.00%

updated 2026-10-07T19:17:34.287000

2 posts

Excelize is a Go language library for reading and writing Microsoft Excel spreadsheets. From 2.3.1 to 2.11.0, agile decryption accepts an attacker-controlled spinCount and performs that many password-key derivation iterations before verifier validation. OpenFile reaches agileDecrypt, which passes the unbounded spinCount to convertPasswdToKey before password verification. When a crafted OLE encrypt

thehackerwire@mastodon.social at 2026-10-07T19:45:41.000Z ##

🟠 CVE-2026-107219 - High (7.5)

Excelize is a Go language library for reading and writing Microsoft Excel spreadsheets. From 2.3.1 to 2.11.0, agile decryption accepts an attacker-controlled spinCount and performs that many password-key derivation iterations before verifier valid...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-10-07T19:45:41.000Z ##

🟠 CVE-2026-107219 - High (7.5)

Excelize is a Go language library for reading and writing Microsoft Excel spreadsheets. From 2.3.1 to 2.11.0, agile decryption accepts an attacker-controlled spinCount and performs that many password-key derivation iterations before verifier valid...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-107217
(7.5 HIGH)

EPSS: 0.00%

updated 2026-10-07T19:17:33.957000

2 posts

Excelize is a Go language library for reading and writing Microsoft Excel spreadsheets. From 2.0.0 to 2.11.0 in github.com/xuri/excelize/v2 and from 1.1.0 to 1.4.1 in github.com/xuri/excelize, ColumnNameToNumber accumulates a bijective base-26 value in int64 without detecting overflow, allowing an invalid long column name to wrap to zero with no error. ColumnNameToNumber accepts the overflowing na

thehackerwire@mastodon.social at 2026-10-07T19:45:50.000Z ##

🟠 CVE-2026-107217 - High (7.5)

Excelize is a Go language library for reading and writing Microsoft Excel spreadsheets. From 2.0.0 to 2.11.0 in github.com/xuri/excelize/v2 and from 1.1.0 to 1.4.1 in github.com/xuri/excelize, ColumnNameToNumber accumulates a bijective base-26 val...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-10-07T19:45:50.000Z ##

🟠 CVE-2026-107217 - High (7.5)

Excelize is a Go language library for reading and writing Microsoft Excel spreadsheets. From 2.0.0 to 2.11.0 in github.com/xuri/excelize/v2 and from 1.1.0 to 1.4.1 in github.com/xuri/excelize, ColumnNameToNumber accumulates a bijective base-26 val...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-102255
(10.0 CRITICAL)

EPSS: 0.00%

updated 2026-10-07T18:33:12

5 posts

A Pre-authentication SSRF vulnerability exists in the SMA1000 Appliance Work Place interface due to an unintended alternate access path. By abusing this path, a remote unauthenticated attacker could potentially exploit this vulnerability to direct the appliance to issue requests on their behalf and reach internal functionality and perform unauthorized operations.

ifin at 2026-10-07T18:39:28.070Z ##

Chat, is it bad if your zero-trust VPN device forwards network requests without auth? Asking for thousands of friends.

SonicWall SMA1000 devices have a SSRF vulnerability that needs patching.

ifin.network/t/cve-2026-102255

##

ifin@infosec.exchange at 2026-10-07T18:39:28.000Z ##

Chat, is it bad if your zero-trust VPN device forwards network requests without auth? Asking for thousands of friends.

SonicWall SMA1000 devices have a SSRF vulnerability that needs patching.

ifin.network/t/cve-2026-102255

#IFIN #ThreatIntel #ThreatIntelligence

##

jbhall56@infosec.exchange at 2026-10-07T12:56:31.000Z ##

Tracked as CVE-2026-102255, the vulnerability was found in the Appliance WorkPlace interface of SMA1000 6210, 7210, and 8200v models, but it does not affect the SMA 100 Series product line or SSL-VPN running on SonicWall firewalls. bleepingcomputer.com/news/secu

##

ssvc@infosec.exchange at 2026-10-06T19:40:03.000Z ##

new SonicWall SMA1000 advisory. Check out CVE-2026-102255 (10.0 critical) Pre-authentication SSRF via unintended forward-proxy. No mention of exploitation, but it's not a good look that your Secure Mobile Access is not secure (including four known exploited vulnerabilities in the past 90 days)

psirt.global.sonicwall.com/vul

#sonicwall #sma1000 #cve

##

DailyCyberSecurity@infosec.exchange at 2026-10-06T17:31:01.000Z ##

SonicWall SMA1000 vulnerability CVE-2026-102255 (CVSS 10) allows pre-auth SSRF. Three more flaws fixed. Upgrade to 12.5.0-03082 now.

#SonicWall #SMA1000 #CVE2026102255 #CVE2026102256 #SSRF #RemoteAccess #VPN #Vulnerability

securityonline.info/sonicwall-

##

CVE-2026-76483
(9.1 CRITICAL)

EPSS: 0.00%

updated 2026-10-07T18:32:21

2 posts

As part of Cisco's ongoing commitment to proactive security and product quality, the engineering team for Cisco License On-Prem, formerly Cisco Smart Software Manager On-Prem (SSM On-Prem), has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered vulnerabilities. &nbsp; The vulnerabilities tracked by CV

thehackerwire@mastodon.social at 2026-10-07T19:01:36.000Z ##

🔴 CVE-2026-76483 - Critical (9.1)

As part of Cisco's ongoing commitment to proactive security and product quality, the engineering team for Cisco License On-Prem, formerly Cisco Smart Software Manager On-Prem (SSM On-Prem), has conducted a comprehensive internal security review. T...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-10-07T19:01:36.000Z ##

🔴 CVE-2026-76483 - Critical (9.1)

As part of Cisco's ongoing commitment to proactive security and product quality, the engineering team for Cisco License On-Prem, formerly Cisco Smart Software Manager On-Prem (SSM On-Prem), has conducted a comprehensive internal security review. T...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-96335
(7.5 HIGH)

EPSS: 0.00%

updated 2026-10-07T18:32:21

2 posts

Missing Authorization vulnerability in WPMU DEV Forminator allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Forminator: from n/a through 1.57.2.

thehackerwire@mastodon.social at 2026-10-07T18:30:42.000Z ##

🟠 CVE-2026-96335 - High (7.5)

Missing Authorization vulnerability in WPMU DEV Forminator allows Exploiting Incorrectly Configured Access Control Security Levels.

This issue affects Forminator: from n/a through 1.57.2.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-10-07T18:30:42.000Z ##

🟠 CVE-2026-96335 - High (7.5)

Missing Authorization vulnerability in WPMU DEV Forminator allows Exploiting Incorrectly Configured Access Control Security Levels.

This issue affects Forminator: from n/a through 1.57.2.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-76480
(9.8 CRITICAL)

EPSS: 0.00%

updated 2026-10-07T18:32:21

2 posts

As part of Cisco's ongoing commitment to proactive security and product quality, the engineering team for Cisco License On-Prem, formerly Cisco Smart Software Manager On-Prem (SSM On-Prem), has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-

thehackerwire@mastodon.social at 2026-10-07T18:17:20.000Z ##

🔴 CVE-2026-76480 - Critical (9.8)

As part of Cisco's ongoing commitment to proactive security and product quality, the engineering team for Cisco License On-Prem, formerly Cisco Smart Software Manager On-Prem (SSM On-Prem), has conducted a comprehensive internal security review. T...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-10-07T18:17:20.000Z ##

🔴 CVE-2026-76480 - Critical (9.8)

As part of Cisco's ongoing commitment to proactive security and product quality, the engineering team for Cisco License On-Prem, formerly Cisco Smart Software Manager On-Prem (SSM On-Prem), has conducted a comprehensive internal security review. T...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-76472
(8.8 HIGH)

EPSS: 0.00%

updated 2026-10-07T18:32:21

2 posts

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco networking engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-76472 are related to issues with improper neutralization of special elements

thehackerwire@mastodon.social at 2026-10-07T18:17:11.000Z ##

🟠 CVE-2026-76472 - High (8.8)

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco networking engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multipl...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-10-07T18:17:11.000Z ##

🟠 CVE-2026-76472 - High (8.8)

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco networking engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multipl...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-76471
(9.8 CRITICAL)

EPSS: 0.00%

updated 2026-10-07T18:32:21

4 posts

A vulnerability in the NX-API feature of Cisco NX-OS Software could allow an unauthenticated, remote attacker to execute arbitrary code with root privileges or cause a denial of service (DoS) condition on an affected device.&nbsp; The vulnerability is due to insufficient input validation of data that is sent to the NX-API. An attacker could exploit this vulnerability by sending a crafted HTTP req

thehackerwire@mastodon.social at 2026-10-07T18:16:02.000Z ##

🔴 CVE-2026-76471 - Critical (9.8)

A vulnerability in the NX-API feature of Cisco NX-OS Software could allow an unauthenticated, remote attacker to execute arbitrary code with root privileges or cause a denial of service (DoS) condition on an affected device.&nbsp;

The vulnerabi...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

DailyCyberSecurity at 2026-10-07T17:26:58.019Z ##

Cisco NX-OS vulnerabilities fixed, including critical NX-API RCE flaw CVE-2026-76471 and CVE-2026-76455, across Nexus, MDS and UCS gear. Patch now.

securityonline.info/cisco-nx-o

##

thehackerwire@mastodon.social at 2026-10-07T18:16:02.000Z ##

🔴 CVE-2026-76471 - Critical (9.8)

A vulnerability in the NX-API feature of Cisco NX-OS Software could allow an unauthenticated, remote attacker to execute arbitrary code with root privileges or cause a denial of service (DoS) condition on an affected device.&nbsp;

The vulnerabi...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

DailyCyberSecurity@infosec.exchange at 2026-10-07T17:26:58.000Z ##

Cisco NX-OS vulnerabilities fixed, including critical NX-API RCE flaw CVE-2026-76471 and CVE-2026-76455, across Nexus, MDS and UCS gear. Patch now.

#Cisco #NXOS #Nexus #CVE202676471 #CVE202676455 #RCE #NetworkSecurity #Vulnerability

securityonline.info/cisco-nx-o

##

CVE-2026-76470
(8.8 HIGH)

EPSS: 0.00%

updated 2026-10-07T18:32:21

2 posts

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco networking engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-76470 are related to incorrect calculation issues that are grouped u

thehackerwire@mastodon.social at 2026-10-07T18:15:52.000Z ##

🟠 CVE-2026-76470 - High (8.8)

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco networking engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses mult...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-10-07T18:15:52.000Z ##

🟠 CVE-2026-76470 - High (8.8)

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco networking engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses mult...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-76499
(9.8 CRITICAL)

EPSS: 0.00%

updated 2026-10-07T18:32:21

2 posts

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Application Policy Infrastructure Controller (APIC) engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-76499 are related to improper

thehackerwire@mastodon.social at 2026-10-07T17:31:09.000Z ##

🔴 CVE-2026-76499 - Critical (9.8)

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Application Policy Infrastructure Controller (APIC) engineering team has conducted a comprehensive internal security review. This review resulted in softwar...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-10-07T17:31:09.000Z ##

🔴 CVE-2026-76499 - Critical (9.8)

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Application Policy Infrastructure Controller (APIC) engineering team has conducted a comprehensive internal security review. This review resulted in softwar...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-76498
(9.8 CRITICAL)

EPSS: 0.00%

updated 2026-10-07T18:32:21

2 posts

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Application Policy Infrastructure Controller (APIC) engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-76498 are related to improper

thehackerwire@mastodon.social at 2026-10-07T17:31:00.000Z ##

🔴 CVE-2026-76498 - Critical (9.8)

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Application Policy Infrastructure Controller (APIC) engineering team has conducted a comprehensive internal security review. This review resulted in softwar...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-10-07T17:31:00.000Z ##

🔴 CVE-2026-76498 - Critical (9.8)

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Application Policy Infrastructure Controller (APIC) engineering team has conducted a comprehensive internal security review. This review resulted in softwar...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-76486
(9.8 CRITICAL)

EPSS: 0.00%

updated 2026-10-07T18:32:21

2 posts

A vulnerability in the VXLAN Operation, Administration, and Maintenance (OAM) feature of Cisco NX-OS Software, known as NGOAM, could allow an unauthenticated, remote attacker to execute arbitrary code with root privileges or cause a Denial-of-Service (DoS) on an affected device. This vulnerability is due to improper input validation of IP traffic when the NGOAM feature is enabled. An attacker cou

thehackerwire@mastodon.social at 2026-10-07T17:30:50.000Z ##

🔴 CVE-2026-76486 - Critical (9.8)

A vulnerability in the VXLAN Operation, Administration, and Maintenance (OAM) feature of Cisco NX-OS Software, known as NGOAM, could allow an unauthenticated, remote attacker to execute arbitrary code with root privileges or cause a Denial-of-Serv...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-10-07T17:30:50.000Z ##

🔴 CVE-2026-76486 - Critical (9.8)

A vulnerability in the VXLAN Operation, Administration, and Maintenance (OAM) feature of Cisco NX-OS Software, known as NGOAM, could allow an unauthenticated, remote attacker to execute arbitrary code with root privileges or cause a Denial-of-Serv...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-76485
(9.8 CRITICAL)

EPSS: 0.00%

updated 2026-10-07T18:32:21

4 posts

A vulnerability in the VXLAN Operation, Administration, and Maintenance (OAM) feature of Cisco NX-OS Software, known as NGOAM, could allow an unauthenticated, remote attacker to execute arbitrary code with root privileges or cause a Denial-of-Service (DoS) on an affected device. This vulnerability is due to improper input validation of IP traffic when the NGOAM feature is enabled. An attacker cou

thehackerwire@mastodon.social at 2026-10-07T17:22:20.000Z ##

🔴 CVE-2026-76485 - Critical (9.8)

A vulnerability in the VXLAN Operation, Administration, and Maintenance (OAM) feature of Cisco NX-OS Software, known as NGOAM, could allow an unauthenticated, remote attacker to execute arbitrary code with root privileges or cause a Denial-of-Serv...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

DailyCyberSecurity at 2026-10-07T17:18:30.304Z ##

Four critical Cisco Nexus vulnerabilities, including CVE-2026-76485 and CVE-2026-76465 (CVSS 9.8), allow root RCE on NX-OS switches. Patch now.

securityonline.info/cisco-nexu

##

thehackerwire@mastodon.social at 2026-10-07T17:22:20.000Z ##

🔴 CVE-2026-76485 - Critical (9.8)

A vulnerability in the VXLAN Operation, Administration, and Maintenance (OAM) feature of Cisco NX-OS Software, known as NGOAM, could allow an unauthenticated, remote attacker to execute arbitrary code with root privileges or cause a Denial-of-Serv...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

DailyCyberSecurity@infosec.exchange at 2026-10-07T17:18:30.000Z ##

Four critical Cisco Nexus vulnerabilities, including CVE-2026-76485 and CVE-2026-76465 (CVSS 9.8), allow root RCE on NX-OS switches. Patch now.

#Cisco #Nexus #NXOS #CVE202676485 #CVE202676465 #RCE #NetworkSecurity #Vulnerability

securityonline.info/cisco-nexu

##

CVE-2026-76484
(8.8 HIGH)

EPSS: 0.00%

updated 2026-10-07T18:32:21

2 posts

As part of Cisco's ongoing commitment to proactive security and product quality, the engineering team for Cisco License On-Prem, formerly Cisco Smart Software Manager On-Prem (SSM On-Prem), has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-

thehackerwire@mastodon.social at 2026-10-07T17:22:11.000Z ##

🟠 CVE-2026-76484 - High (8.8)

As part of Cisco's ongoing commitment to proactive security and product quality, the engineering team for Cisco License On-Prem, formerly Cisco Smart Software Manager On-Prem (SSM On-Prem), has conducted a comprehensive internal security review. T...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-10-07T17:22:11.000Z ##

🟠 CVE-2026-76484 - High (8.8)

As part of Cisco's ongoing commitment to proactive security and product quality, the engineering team for Cisco License On-Prem, formerly Cisco Smart Software Manager On-Prem (SSM On-Prem), has conducted a comprehensive internal security review. T...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-95605
(9.3 CRITICAL)

EPSS: 0.00%

updated 2026-10-07T18:32:21

2 posts

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Passionate Programmer Peter WP Data Access allows Blind SQL Injection. This issue affects WP Data Access: from n/a through 5.5.82.

thehackerwire@mastodon.social at 2026-10-07T17:20:37.000Z ##

🔴 CVE-2026-95605 - Critical (9.3)

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Passionate Programmer Peter WP Data Access allows Blind SQL Injection.

This issue affects WP Data Access: from n/a through 5.5.82.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-10-07T17:20:37.000Z ##

🔴 CVE-2026-95605 - Critical (9.3)

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Passionate Programmer Peter WP Data Access allows Blind SQL Injection.

This issue affects WP Data Access: from n/a through 5.5.82.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-76482
(10.0 CRITICAL)

EPSS: 0.00%

updated 2026-10-07T18:32:20

4 posts

As part of Cisco's ongoing commitment to proactive security and product quality, the engineering team for Cisco License On-Prem, formerly Cisco Smart Software Manager On-Prem (SSM On-Prem), has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-

thehackerwire@mastodon.social at 2026-10-07T18:17:30.000Z ##

🔴 CVE-2026-76482 - Critical (10)

As part of Cisco's ongoing commitment to proactive security and product quality, the engineering team for Cisco License On-Prem, formerly Cisco Smart Software Manager On-Prem (SSM On-Prem), has conducted a comprehensive internal security review. T...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

DailyCyberSecurity at 2026-10-07T17:36:18.383Z ##

Cisco License On-Prem vulnerabilities include CVSS 10 flaw CVE-2026-76482 and password reset bug CVE-2026-20328. APIC and Meraki also patched.

securityonline.info/cisco-lice

##

thehackerwire@mastodon.social at 2026-10-07T18:17:30.000Z ##

🔴 CVE-2026-76482 - Critical (10)

As part of Cisco's ongoing commitment to proactive security and product quality, the engineering team for Cisco License On-Prem, formerly Cisco Smart Software Manager On-Prem (SSM On-Prem), has conducted a comprehensive internal security review. T...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

DailyCyberSecurity@infosec.exchange at 2026-10-07T17:36:18.000Z ##

Cisco License On-Prem vulnerabilities include CVSS 10 flaw CVE-2026-76482 and password reset bug CVE-2026-20328. APIC and Meraki also patched.

#Cisco #SmartLicensing #APIC #Meraki #CVE202676482 #CVE202620328 #PatchNow #Vulnerability

securityonline.info/cisco-lice

##

CVE-2026-76500
(9.8 CRITICAL)

EPSS: 0.00%

updated 2026-10-07T18:32:14

2 posts

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Application Policy Infrastructure Controller (APIC) engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered vulnerabilities. &nbsp; The vulnerabilities tracked by CVE-2026-76500 are related to is

thehackerwire@mastodon.social at 2026-10-07T18:15:43.000Z ##

🔴 CVE-2026-76500 - Critical (9.8)

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Application Policy Infrastructure Controller (APIC) engineering team has conducted a comprehensive internal security review. This review resulted in softwar...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-10-07T18:15:43.000Z ##

🔴 CVE-2026-76500 - Critical (9.8)

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Application Policy Infrastructure Controller (APIC) engineering team has conducted a comprehensive internal security review. This review resulted in softwar...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-20328
(9.1 CRITICAL)

EPSS: 0.00%

updated 2026-10-07T18:32:14

2 posts

A vulnerability in the web-based management interface of Cisco License On-Prem, formerly Cisco Smart Software Manager On-Prem (SSM On-Prem), could allow an unauthenticated, remote attacker to gain unauthorized access to an affected application. This vulnerability is due to improper checks during the password reset process. An attacker could exploit this vulnerability by sending a malicious reques

CVE-2026-76501
(9.8 CRITICAL)

EPSS: 0.00%

updated 2026-10-07T18:32:14

2 posts

A vulnerability in the Segment Routing over IPv6 (SRv6) Operation, Administration, and Maintenance (OAM) feature of Cisco NX-OS Software, known as NGOAM, could allow an unauthenticated, remote attacker to execute arbitrary code with root privileges or cause a denial of service (DoS) on an affected device. This vulnerability is due to improper input validation of IP traffic when the NGOAM and SRv6

thehackerwire@mastodon.social at 2026-10-07T17:22:00.000Z ##

🔴 CVE-2026-76501 - Critical (9.8)

A vulnerability in the Segment Routing over IPv6 (SRv6) Operation, Administration, and Maintenance (OAM) feature of Cisco NX-OS Software, known as NGOAM, could allow an unauthenticated, remote attacker to execute arbitrary code with root privilege...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-10-07T17:22:00.000Z ##

🔴 CVE-2026-76501 - Critical (9.8)

A vulnerability in the Segment Routing over IPv6 (SRv6) Operation, Administration, and Maintenance (OAM) feature of Cisco NX-OS Software, known as NGOAM, could allow an unauthenticated, remote attacker to execute arbitrary code with root privilege...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-107206
(9.4 CRITICAL)

EPSS: 0.00%

updated 2026-10-07T18:32:14

2 posts

LMCache through 0.5.5 contains a missing authentication vulnerability in the multiprocess mode HTTP server that allows remote unauthenticated attackers to access management endpoints listening on all interfaces by default. Attackers can read environment credentials via GET /env and configuration via GET /config, clear caches, delete cache objects, and modify tenant quotas to evict other tenants' c

thehackerwire@mastodon.social at 2026-10-07T16:49:47.000Z ##

🔴 CVE-2026-107206 - Critical (9.4)

LMCache through 0.5.5 contains a missing authentication vulnerability in the multiprocess mode HTTP server that allows remote unauthenticated attackers to access management endpoints listening on all interfaces by default. Attackers can read envir...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-10-07T16:49:47.000Z ##

🔴 CVE-2026-107206 - Critical (9.4)

LMCache through 0.5.5 contains a missing authentication vulnerability in the multiprocess mode HTTP server that allows remote unauthenticated attackers to access management endpoints listening on all interfaces by default. Attackers can read envir...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-107204
(9.8 CRITICAL)

EPSS: 0.00%

updated 2026-10-07T18:32:14

2 posts

LMCache through 0.5.5 contains an unauthenticated remote code execution vulnerability that allows remote attackers to execute Python code by posting scripts to the /run_script endpoint. Attackers can recover real builtins through the injected FastAPI app object, bypassing the guarded __import__, to import os and run operating system commands as the LMCache process.

thehackerwire@mastodon.social at 2026-10-07T16:49:30.000Z ##

🔴 CVE-2026-107204 - Critical (9.8)

LMCache through 0.5.5 contains an unauthenticated remote code execution vulnerability that allows remote attackers to execute Python code by posting scripts to the /run_script endpoint. Attackers can recover real builtins through the injected Fast...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-10-07T16:49:30.000Z ##

🔴 CVE-2026-107204 - Critical (9.8)

LMCache through 0.5.5 contains an unauthenticated remote code execution vulnerability that allows remote attackers to execute Python code by posting scripts to the /run_script endpoint. Attackers can recover real builtins through the injected Fast...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-20362
(7.2 HIGH)

EPSS: 0.00%

updated 2026-10-07T18:32:14

2 posts

A vulnerability in the web-based management interface of Cisco Finesse could allow an unauthenticated, remote attacker to conduct server-side request forgery (SSRF) attacks through an affected device. This vulnerability is due to improper input validation for specific HTTP requests. An attacker could exploit this vulnerability by sending a crafted HTTP request to an affected device. A successful

ssvc at 2026-10-07T16:17:37.870Z ##

There are 14 Cisco security advisories that came out today. sec.cloudapps.cisco.com/securi

A lot of 9.8 and even 10.0 across multiple products. While there's no mention of exploitation, there's zero-day disclosure pre-patch for Cisco Finesse Server-Side Request Forgery Vulnerability CVE-2026-20362 (7.2)

The Cisco PSIRT is aware that a public announcement is available for the vulnerability that is described in this advisory.

sec.cloudapps.cisco.com/securi

##

ssvc@infosec.exchange at 2026-10-07T16:17:37.000Z ##

There are 14 Cisco security advisories that came out today. sec.cloudapps.cisco.com/securi

A lot of 9.8 and even 10.0 across multiple products. While there's no mention of exploitation, there's zero-day disclosure pre-patch for Cisco Finesse Server-Side Request Forgery Vulnerability CVE-2026-20362 (7.2)

The Cisco PSIRT is aware that a public announcement is available for the vulnerability that is described in this advisory.

sec.cloudapps.cisco.com/securi

#cisco #CVE

##

CVE-2026-92414(CVSS UNKNOWN)

EPSS: 0.00%

updated 2026-10-07T18:32:14

2 posts

: Session Fixation / Session Reuse across Users vulnerability in Apache Jackrabbit. Jackrabbit WebDAV server attaches a cached authenticated session on any Lock-Token/TransactionId/SubscriptionId/If-header field token match with no credential check. This issue affects Apache Jackrabbit: from 2.23.0 through 2.23.5, from 2.22.0 through 2.22.4, from 2.20.0 through 2.20.17. Users ar

CVE-2026-95606
(9.8 CRITICAL)

EPSS: 0.00%

updated 2026-10-07T18:17:31.910000

2 posts

Deserialization of Untrusted Data vulnerability in Liquid Web / StellarWP The Events Calendar allows Object Injection. This issue affects The Events Calendar: from n/a through 6.17.4.

thehackerwire@mastodon.social at 2026-10-07T17:20:46.000Z ##

🔴 CVE-2026-95606 - Critical (9.8)

Deserialization of Untrusted Data vulnerability in Liquid Web / StellarWP The Events Calendar allows Object Injection.

This issue affects The Events Calendar: from n/a through 6.17.4.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-10-07T17:20:46.000Z ##

🔴 CVE-2026-95606 - Critical (9.8)

Deserialization of Untrusted Data vulnerability in Liquid Web / StellarWP The Events Calendar allows Object Injection.

This issue affects The Events Calendar: from n/a through 6.17.4.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-95534
(8.8 HIGH)

EPSS: 0.00%

updated 2026-10-07T18:17:31.777000

2 posts

Deserialization of Untrusted Data vulnerability in Unlimited Elements Unlimited Elements For Elementor (Free Widgets, Addons, Templates) allows Object Injection. This issue affects Unlimited Elements For Elementor (Free Widgets, Addons, Templates): from n/a through 2.0.19.

thehackerwire@mastodon.social at 2026-10-07T17:20:55.000Z ##

🟠 CVE-2026-95534 - High (8.8)

Deserialization of Untrusted Data vulnerability in Unlimited Elements Unlimited Elements For Elementor (Free Widgets, Addons, Templates) allows Object Injection.

This issue affects Unlimited Elements For Elementor (Free Widgets, Addons, Templates...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-10-07T17:20:55.000Z ##

🟠 CVE-2026-95534 - High (8.8)

Deserialization of Untrusted Data vulnerability in Unlimited Elements Unlimited Elements For Elementor (Free Widgets, Addons, Templates) allows Object Injection.

This issue affects Unlimited Elements For Elementor (Free Widgets, Addons, Templates...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-76465
(9.8 CRITICAL)

EPSS: 0.00%

updated 2026-10-07T18:17:28.580000

4 posts

A vulnerability in the MPLS Operation, Administration, and Maintenance (OAM) feature of Cisco NX-OS Software for Cisco Nexus 3000 Series Switches and Cisco Nexus 9000 Series Switches could allow an unauthenticated, remote attacker to execute arbitrary code with&nbsp;root privileges or cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper validati

thehackerwire@mastodon.social at 2026-10-07T19:02:10.000Z ##

🔴 CVE-2026-76465 - Critical (9.8)

A vulnerability in the MPLS Operation, Administration, and Maintenance (OAM) feature of Cisco NX-OS Software for Cisco Nexus 3000 Series Switches and Cisco Nexus 9000 Series Switches could allow an unauthenticated, remote attacker to execute arbit...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

DailyCyberSecurity at 2026-10-07T17:18:30.304Z ##

Four critical Cisco Nexus vulnerabilities, including CVE-2026-76485 and CVE-2026-76465 (CVSS 9.8), allow root RCE on NX-OS switches. Patch now.

securityonline.info/cisco-nexu

##

thehackerwire@mastodon.social at 2026-10-07T19:02:10.000Z ##

🔴 CVE-2026-76465 - Critical (9.8)

A vulnerability in the MPLS Operation, Administration, and Maintenance (OAM) feature of Cisco NX-OS Software for Cisco Nexus 3000 Series Switches and Cisco Nexus 9000 Series Switches could allow an unauthenticated, remote attacker to execute arbit...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

DailyCyberSecurity@infosec.exchange at 2026-10-07T17:18:30.000Z ##

Four critical Cisco Nexus vulnerabilities, including CVE-2026-76485 and CVE-2026-76465 (CVSS 9.8), allow root RCE on NX-OS switches. Patch now.

#Cisco #Nexus #NXOS #CVE202676485 #CVE202676465 #RCE #NetworkSecurity #Vulnerability

securityonline.info/cisco-nexu

##

CVE-2026-76457
(8.6 HIGH)

EPSS: 0.00%

updated 2026-10-07T18:17:21.317000

2 posts

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco NX-OS engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-76457 are related to out-of-bounds read issues that are grouped under t

thehackerwire@mastodon.social at 2026-10-07T19:16:13.000Z ##

🟠 CVE-2026-76457 - High (8.6)

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco NX-OS engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-10-07T19:16:13.000Z ##

🟠 CVE-2026-76457 - High (8.6)

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco NX-OS engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-106510
(7.7 HIGH)

EPSS: 0.00%

updated 2026-10-07T18:17:16.660000

2 posts

Backstage is an open framework for building developer portals. Prior to 1.14.6, the @backstage/plugin-techdocs-node package is affected by remote code execution via crafted markdown_extensions in techdocs mkdocs.yml. An authenticated user who can register catalog entities can provide a crafted mkdocs.yml causing arbitrary OS command execution on the TechDocs build host when the docs are built. Thi

thehackerwire@mastodon.social at 2026-10-07T17:05:36.000Z ##

🟠 CVE-2026-106510 - High (7.7)

Backstage is an open framework for building developer portals. Prior to 1.14.6, the @backstage/plugin-techdocs-node package is affected by remote code execution via crafted markdown_extensions in techdocs mkdocs.yml. An authenticated user who can ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-10-07T17:05:36.000Z ##

🟠 CVE-2026-106510 - High (7.7)

Backstage is an open framework for building developer portals. Prior to 1.14.6, the @backstage/plugin-techdocs-node package is affected by remote code execution via crafted markdown_extensions in techdocs mkdocs.yml. An authenticated user who can ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-105192
(9.8 CRITICAL)

EPSS: 0.67%

updated 2026-10-07T18:17:15.427000

2 posts

LMCache multiprocess mode, also called distributed mode, opens an unauthenticated ZeroMQ ROUTER so worker processes can register and share KV cache blocks. Messages on that socket are msgpack. Extension code 1 is passed to DeviceIPCWrapper.Deserialize, which calls pickle.loads, while the server is still decoding request arguments and before the handler runs. A single unauthenticated ZMQ DEALER mes

Analyst207@mastodon.social at 2026-10-07T16:32:49.000Z ##

LMCache Flaw Exposes Servers to Remote Code Execution

A newly discovered flaw, CVE-2026-105192, allows hackers to send a single network message that can execute malicious code on vulnerable LMCache multiprocess cache servers, with no patch available yet. This vulnerability can be exploited when the multiprocess server is configured to listen on a routable address, making it a serious threat to…

osintsights.com/lmcache-flaw-e

#RemoteCodeExecution #Zeromq #Lmcache #Cve2026105192 #EmergingThreats

##

cR0w@infosec.exchange at 2026-10-07T12:50:02.000Z ##

what. the. fuck.

nvd.nist.gov/vuln/detail/cve-2

sev:CRIT 9.8 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

LMCache multiprocess mode, also called distributed mode, opens an unauthenticated ZeroMQ ROUTER so worker processes can register and share KV cache blocks. Messages on that socket are msgpack. Extension code 1 is passed to DeviceIPCWrapper.Deserialize, which calls pickle.loads, while the server is still decoding request arguments and before the handler runs. A single unauthenticated ZMQ DEALER message to the transport port (default 5555) therefore executes code as the user the LMCache process runs as. Official container images run that process as root. The transport binds to localhost unless the operator sets a routable address with --host, which is how multi-node deployments let peers connect.

##

CVE-2026-104286
(9.8 CRITICAL)

EPSS: 2.20%

updated 2026-10-07T18:17:15.240000

1 posts

An improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Fortinet FortiMail 8.0.0 through 8.0.1, FortiMail 7.6.0 through 7.6.6, FortiMail 7.4.0 through 7.4.8, FortiMail 7.2.0 through 7.2.9 may allow an unauthenticated attacker to write arbitrary files on the underlying system via crafted HTTP or HTTPS requests.

2 repos

https://github.com/techupdate24/fortimail-zero-day-cve-2026-104286

https://github.com/ShadowForge-Cyber/CVE-2026-104286-POC

youranonnewsirc@nerdculture.de at 2026-10-06T22:26:24.000Z ##

Recent news highlights critical cybersecurity threats as Citrix NetScaler (CVE-2026-88772) and FortiMail (CVE-2026-104286) zero-days are under active exploitation, targeting critical infrastructure and government entities. Apple also patched an exploited CoreGraphics flaw. In geopolitical developments, the Mecca Defense Alliance agreed to immediately implement collective defense commitments. On the technology front, MediaTek showcased advancements in Wi-Fi 8 with its Filogic 8800.

#Cybersecurity #AnonNews_irc #News

##

CVE-2026-106443
(8.8 HIGH)

EPSS: 0.69%

updated 2026-10-07T18:05:51

1 posts

### Summary This was found during a pentest, funded by the NLNnet foundation, conducted by Stefan Vink from Radically Open Security and the only High issue found. WeasyPrint passes fetched image bytes directly to Pillow's generic format dispatcher without restricting the input format. When Ghostscript is installed on the host, Pillow's EpsImagePlugin invokes it to rasterize attacker-controlled

thehackerwire@mastodon.social at 2026-10-06T19:45:28.000Z ##

🟠 CVE-2026-106443 - High (8.8)

WeasyPrint helps web developers to create PDF documents. Prior to 70.0, the image-loading path in weasyprint/images.py passes fetched image bytes from HTML img URLs, CSS image values, SVG image references, and data URIs to Pillow's generic image d...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-106441
(7.8 HIGH)

EPSS: 0.17%

updated 2026-10-07T18:03:56

1 posts

## Summary Hydra passed its Python logging configuration to `logging.config.dictConfig()`. Python's logging configurator can resolve and invoke importable classes and factories named by configuration, including handler `class` values and formatter, filter, handler, queue, and listener `()` factories. This logging path was not mediated by Hydra's target policy. In versions that already protected

thehackerwire@mastodon.social at 2026-10-06T19:31:44.000Z ##

🟠 CVE-2026-106441 - High (7.8)

Hydra is a framework for elegantly configuring complex applications. Prior to 1.3.6 and 1.4.0.dev9, Hydra passes Python logging configuration to logging.config.dictConfig() without applying Hydra's target policy to handler class values or formatte...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-106442
(7.8 HIGH)

EPSS: 0.16%

updated 2026-10-07T18:03:50

1 posts

## Summary Hydra's `instantiate()` API resolves and invokes Python callables named by the `_target_` field in configuration. The target blacklist introduced for CVE-2026-68508 was incomplete. Representative bypasses included execution wrappers such as `timeit.timeit`, executable deserialization through `pickle.loads`, and generic dispatch or wrapper targets that obscured the effective callable.

thehackerwire@mastodon.social at 2026-10-06T19:31:53.000Z ##

🟠 CVE-2026-106442 - High (7.8)

Hydra is a framework for elegantly configuring complex applications. From 1.3.4 until 1.3.6 and 1.4.0.dev9, the instantiate() target blacklist introduced for CVE-2026-68508 incompletely checks the effective callable selected by the target field. E...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-106558
(8.8 HIGH)

EPSS: 0.00%

updated 2026-10-07T18:03:15

2 posts

### Impact An attacker who can provide configuration to a TechDocs build may execute code in the generator runtime. Impact is greatest when documentation generation runs with backend credentials or host access. ### Patches Patched in `@backstage/plugin-techdocs-node` version `1.15.4`. ### Workarounds Use external TechDocs generation in an isolated environment without sensitive credentials or

thehackerwire@mastodon.social at 2026-10-07T17:05:26.000Z ##

🟠 CVE-2026-106558 - High (8.8)

Backstage is an open framework for building developer portals. Prior to 1.14.8, 1.15.6, and 2.0.1, the @backstage/plugin-techdocs-node package improperly validated mapping-style markdown_extensions configuration. An authenticated attacker who can ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-10-07T17:05:26.000Z ##

🟠 CVE-2026-106558 - High (8.8)

Backstage is an open framework for building developer portals. Prior to 1.14.8, 1.15.6, and 2.0.1, the @backstage/plugin-techdocs-node package improperly validated mapping-style markdown_extensions configuration. An authenticated attacker who can ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-77226
(8.1 HIGH)

EPSS: 0.69%

updated 2026-10-07T17:17:02.300000

1 posts

Camunda 7.24.0 before 7.24.15 contains an incorrect authorization vulnerability in the Admin web application's first-run setup endpoint, where SetupResource incorrectly determines setup availability by counting only direct members of the camunda-admin group rather than recognizing all configured administrators. An unauthenticated remote attacker can exploit this logic flaw to call the setup user-c

thehackerwire@mastodon.social at 2026-10-05T21:31:05.000Z ##

🟠 CVE-2026-77226 - High (8.1)

Camunda 7.24.0 before 7.24.15 contains an incorrect authorization vulnerability in the Admin web application's first-run setup endpoint, where SetupResource incorrectly determines setup availability by counting only direct members of the camunda-a...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-76468
(8.2 HIGH)

EPSS: 0.00%

updated 2026-10-07T17:16:59.680000

2 posts

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco networking engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-76468 are related to improper input validation that are grouped un

thehackerwire@mastodon.social at 2026-10-07T19:16:04.000Z ##

🟠 CVE-2026-76468 - High (8.2)

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco networking engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses mult...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-10-07T19:16:04.000Z ##

🟠 CVE-2026-76468 - High (8.2)

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco networking engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses mult...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-76467
(7.5 HIGH)

EPSS: 0.00%

updated 2026-10-07T17:16:59.503000

2 posts

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco networking engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-76467 are related to issues concerning improper control of a resou

thehackerwire@mastodon.social at 2026-10-07T19:15:55.000Z ##

🟠 CVE-2026-76467 - High (7.5)

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco networking engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses mult...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-10-07T19:15:55.000Z ##

🟠 CVE-2026-76467 - High (7.5)

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco networking engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses mult...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-76463
(8.8 HIGH)

EPSS: 0.00%

updated 2026-10-07T17:16:58.833000

2 posts

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco networking engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-76463 are related to improper access control issues that are group

thehackerwire@mastodon.social at 2026-10-07T19:46:43.000Z ##

🟠 CVE-2026-76463 - High (8.8)

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco networking engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses mult...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-10-07T19:46:43.000Z ##

🟠 CVE-2026-76463 - High (8.8)

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco networking engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses mult...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-76459
(8.8 HIGH)

EPSS: 0.00%

updated 2026-10-07T17:16:58.553000

2 posts

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco NX-OS engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-76459 are related to out-of-bounds write issues that are grouped under

thehackerwire@mastodon.social at 2026-10-07T19:46:33.000Z ##

🟠 CVE-2026-76459 - High (8.8)

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco NX-OS engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-10-07T19:46:33.000Z ##

🟠 CVE-2026-76459 - High (8.8)

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco NX-OS engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-76458
(8.6 HIGH)

EPSS: 0.00%

updated 2026-10-07T17:16:58.280000

2 posts

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco NX-OS engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-76458 are related to improper handling of exceptional conditions issues

thehackerwire@mastodon.social at 2026-10-07T19:46:24.000Z ##

🟠 CVE-2026-76458 - High (8.6)

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco NX-OS engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-10-07T19:46:24.000Z ##

🟠 CVE-2026-76458 - High (8.6)

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco NX-OS engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-76455
(9.8 CRITICAL)

EPSS: 0.00%

updated 2026-10-07T17:16:57.520000

2 posts

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco NX-OS engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-76455 are related to improper access control issues that are grouped un

DailyCyberSecurity at 2026-10-07T17:26:58.019Z ##

Cisco NX-OS vulnerabilities fixed, including critical NX-API RCE flaw CVE-2026-76471 and CVE-2026-76455, across Nexus, MDS and UCS gear. Patch now.

securityonline.info/cisco-nx-o

##

DailyCyberSecurity@infosec.exchange at 2026-10-07T17:26:58.000Z ##

Cisco NX-OS vulnerabilities fixed, including critical NX-API RCE flaw CVE-2026-76471 and CVE-2026-76455, across Nexus, MDS and UCS gear. Patch now.

#Cisco #NXOS #Nexus #CVE202676471 #CVE202676455 #RCE #NetworkSecurity #Vulnerability

securityonline.info/cisco-nx-o

##

CVE-2026-107205
(8.6 HIGH)

EPSS: 0.00%

updated 2026-10-07T17:16:53.790000

2 posts

LMCache through 0.5.5 contains a missing authentication vulnerability in the multiprocess coordinator that allows remote unauthenticated attackers to access its HTTP fleet control API listening on all interfaces by default. Attackers can register or deregister instances via /instances, overwrite quotas via /quota endpoints, inject events via /events, and enumerate /directory/keys to disrupt cachin

thehackerwire@mastodon.social at 2026-10-07T16:49:38.000Z ##

🟠 CVE-2026-107205 - High (8.6)

LMCache through 0.5.5 contains a missing authentication vulnerability in the multiprocess coordinator that allows remote unauthenticated attackers to access its HTTP fleet control API listening on all interfaces by default. Attackers can register ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-10-07T16:49:38.000Z ##

🟠 CVE-2026-107205 - High (8.6)

LMCache through 0.5.5 contains a missing authentication vulnerability in the multiprocess coordinator that allows remote unauthenticated attackers to access its HTTP fleet control API listening on all interfaces by default. Attackers can register ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-79796
(9.8 CRITICAL)

EPSS: 0.47%

updated 2026-10-07T16:18:59.520000

1 posts

Vulnerabilities have been identified in the affected interface of ClearPass Policy Manager that could potentially allow an unauthenticated remote attacker to circumvent existing authentication controls. Successful exploitation could allow an attacker to gain unauthorized access to the affected system.

thehackerwire@mastodon.social at 2026-10-06T20:31:54.000Z ##

🔴 CVE-2026-79796 - Critical (9.8)

Vulnerabilities have been identified in the affected interface of ClearPass Policy Manager that could potentially allow an unauthenticated remote attacker to circumvent existing authentication controls. Successful exploitation could allow an attac...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-106118
(7.5 HIGH)

EPSS: 0.60%

updated 2026-10-07T16:18:57

1 posts

## Summary When decoding a tiled TIFF with fax compression (T4/T6/MH), `DecodeTilesChunky` allocates each tile buffer from **TileWidth** (`ceil(TileWidth*bpp/8)*TileLength` bytes) but constructs the fax decompressor with **frame.Width**: `TiffDecompressorsFactory` ignores the `isTiled/tileWidth/tileHeight` parameters entirely. The T4/T6/MH decompressors treat the full image width as the scanline

thehackerwire@mastodon.social at 2026-10-06T20:01:47.000Z ##

🟠 CVE-2026-106118 - High (7.5)

ImageSharp is a 2D graphics library. From 3.0.0 until 4.1.1, tiled TIFF decoding allocates a destination buffer using TileWidth but TiffDecompressorsFactory.Create constructs T4, T6, and Modified Huffman decompressors using the full frame width. T...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-106117
(7.5 HIGH)

EPSS: 0.43%

updated 2026-10-07T16:18:52

1 posts

## Summary When decoding a fax-compressed strip TIFF (Compression=3 / Group 3 1D, or Compression=2 / Modified Huffman), the CCITT decompressors write decoded runs through `BitWriterUtils.WriteBits/WriteBit/WriteZeroBit`, which advance and write bits via `Unsafe.Add` with read-modify-write semantics — **without ever comparing the write position against the target buffer length**. The strip buffer

thehackerwire@mastodon.social at 2026-10-06T18:30:32.000Z ##

🟠 CVE-2026-106117 - High (7.5)

ImageSharp is a 2D graphics library. From 3.0.0 until 4.1.1, decoding a strip TIFF using CCITT Group 3 or Modified Huffman compression can pass attacker-expanded runs to BitWriterUtils.WriteBits without first checking the current row width. T4Tiff...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-101027
(7.7 HIGH)

EPSS: 0.16%

updated 2026-10-07T16:17:31.953000

1 posts

When `[migrations] ALLOWED_DOMAINS` was configured, a hostname matching the allow list was accepted without checking its resolved address against the local-network restrictions. A user who can start repository migrations and control the DNS of an allowed hostname could make it resolve to loopback or private addresses and bypass `ALLOW_LOCALNETWORKS = false`, reaching internal services from the Git

CVE-2026-106102
(10.0 CRITICAL)

EPSS: 0.30%

updated 2026-10-07T16:14:23

1 posts

## Vulnerability Details **File**: `ui/src/utils/meta/Meta.js` — actually `ui/src/plugins/meta/Meta.js` (lines 149-176: `getAttr()` and `getHead()`) **Sink**: `injectServerMeta()` (same file) → `ctx.headTags += getHead(data)`, interpolated verbatim into the raw HTTP response `<head>` by the production SSR template (`app-vite/templates/entry/ssr-prod-webserver.js` + `app-vite/lib/plugins/vite.html

thehackerwire@mastodon.social at 2026-10-06T17:23:53.000Z ##

🔴 CVE-2026-106102 - Critical (10)

Quasar Framework is a framework for building high-performance Vue.js user interfaces. Prior to 2.22.0, the SSR-only getHead() serializer in ui/src/plugins/meta/Meta.js used getAttr() to interpolate values supplied through useMeta() into title, met...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-102489
(9.8 CRITICAL)

EPSS: 1.40%

updated 2026-10-07T15:32:31

1 posts

Zammad versions 6.3.0 to 6.5.4 are vulnerable a session hijack vulnerability that leads to remote code execution as the zammad user. The vulnerability is also present in version 7.0.0 to version 7.1.3, but not exploitable due to environment conditions.

2 repos

https://github.com/horizon3ai/CVE-2026-102489

https://github.com/Hunt-Benito/the-cookie-in-the-error-message-cve-2026-102489-zammad-session-hijack-to-rce

CVE-2026-77214
(8.2 HIGH)

EPSS: 0.00%

updated 2026-10-07T15:32:08

2 posts

libexpat before commit 13c5f63 contains a heap buffer over-read vulnerability in xmlparse.c. XML_ParseBuffer advances the parse buffer end with parser->m_bufferEnd += len using a caller-supplied length that is not validated against the allocated buffer size, so repeated XML_ParseBuffer calls move m_bufferEnd past the end of the heap allocation and subsequent parsing reads out of bounds. Reaching t

thehackerwire@mastodon.social at 2026-10-07T17:05:14.000Z ##

🟠 CVE-2026-77214 - High (8.2)

libexpat before commit 13c5f63 contains a heap buffer over-read vulnerability in xmlparse.c. XML_ParseBuffer advances the parse buffer end with parser->m_bufferEnd += len using a caller-supplied length that is not validated against the allocated b...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-10-07T17:05:14.000Z ##

🟠 CVE-2026-77214 - High (8.2)

libexpat before commit 13c5f63 contains a heap buffer over-read vulnerability in xmlparse.c. XML_ParseBuffer advances the parse buffer end with parser->m_bufferEnd += len using a caller-supplied length that is not validated against the allocated b...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-21589(CVSS UNKNOWN)

EPSS: 1.75%

updated 2026-10-07T15:31:33

22 posts

h3. Summary This is a vulnerability in Bitbucket Data Center, Confluence Data Center, Jira Service Management Data Center, Jira Software Data Center, Bamboo Data Center. Crowd Data Center, Crucible and Fisheye. This Arbitrary File Access vulnerability allows an unauthenticated attacker to access specific files within the web application root directory in affected versions. Exploitation requires p

Nuclei template

7 repos

https://github.com/MarcusProgram/CVE-2026-21589

https://github.com/aduli198/CVE-2026-21589

https://github.com/ynsmroztas/AtlasSniper

https://github.com/tc4dy/CVE-2026-21589-PoC-Exploit

https://github.com/0xBlackash/CVE-2026-21589

https://github.com/BimBoxH4/CVE-2026-21589

https://github.com/watchtowrlabs/watchTowr-vs-Atlassian-CVE-2026-21589

threatcodex at 2026-10-07T16:50:50.442Z ##

Scans for Atlassian vulnerablity (CVE-2026-21589)

isc.sans.edu/diary/rss/33406

##

youranonnewsirc@nerdculture.de at 2026-10-07T16:26:28.000Z ##

Recent developments include the US evacuating B-1 bombers from the UK due to an Iranian threat, while Hamas is reportedly plotting attacks in Gaza for October 7th. In cybersecurity, ASOS experienced a cloud breach via its Snowflake platform, and active exploitation of a critical Atlassian flaw (CVE-2026-21589) has begun. An FBI breach was also linked to a contractor error. Microsoft is hosting an AI-focused Surface event today.

#Cybersecurity #Geopolitics #TechNews

##

threatcodex@infosec.exchange at 2026-10-07T16:50:50.000Z ##

Scans for Atlassian vulnerablity (CVE-2026-21589)
#CVE_2026_21589
isc.sans.edu/diary/rss/33406

##

youranonnewsirc@nerdculture.de at 2026-10-07T16:26:28.000Z ##

Recent developments include the US evacuating B-1 bombers from the UK due to an Iranian threat, while Hamas is reportedly plotting attacks in Gaza for October 7th. In cybersecurity, ASOS experienced a cloud breach via its Snowflake platform, and active exploitation of a critical Atlassian flaw (CVE-2026-21589) has begun. An FBI breach was also linked to a contractor error. Microsoft is hosting an AI-focused Surface event today.

#Cybersecurity #Geopolitics #TechNews

##

cyberworldops@infosec.exchange at 2026-10-07T15:45:24.000Z ##

Unauthenticated arbitrary file access in eight self-hosted Atlassian families (CVE-2026-21589) is seeing active probing after public PoC release. Exploitation requires exact file path and is limited to web root, without directory listing. Data Center operators should patch and reduce exposure promptly. #Atlassian #DataCenter #ThreatIntel

cyberworldops.eu/en/public-exp

##

sans_isc@infosec.exchange at 2026-10-07T15:01:52.000Z ##

Scans for Atlassian vulnerablity (CVE-2026-21589) isc.sans.edu/diary/33406

##

oversecurity@mastodon.social at 2026-10-07T14:50:53.000Z ##

Atlassian Warns of Critical Flaw Affecting Eight Self-Managed Products

Atlassian's CVE-2026-21589 lets unauthenticated attackers read files in Confluence and seven other Data Center products.

🔗️ [Thecyberexpress] link.is.it/gJ99W6

##

oversecurity@mastodon.social at 2026-10-07T13:51:15.000Z ##

Hackers exploit critical Atlassian flaw after public PoC release

A critical vulnerability (CVE-2026-21589) affecting multiple Atlassian product families, including Jira, Confluence, and Bitbucket, is being...

🔗️ [Bleepingcomputer] link.is.it/J8wKmL

##

jbhall56@infosec.exchange at 2026-10-07T13:39:07.000Z ##

An unauthenticated attacker can exploit CVE-2026-21589 to access specific files in the application's web root directory if they know the file's exact name and path. bleepingcomputer.com/news/secu

##

threatcodex@infosec.exchange at 2026-10-07T13:15:33.000Z ##

You Won’t Hear About These, Even In Myths (Atlassian Jira, Confluence (and more) Pre-Auth Arbitrary File Read CVE-2026-21589)
#CVE_2026_21589 #Bitbucket #Confluence #Jira #AtlassianBamboo #AtlassianCrowd
labs.watchtowr.com/you-wont-he

##

DailyCyberSecurity@infosec.exchange at 2026-10-07T07:35:26.000Z ##

CVE-2026-21589 exploitation is underway against Atlassian servers after researchers published arbitrary file read PoC and technical details.

#Atlassian #Jira #Confluence #Bitbucket #CVE202621589 #PathTraversal #ExploitedInTheWild #Vulnerability

securityonline.info/cve-2026-2

##

christopherkunz@chaos.social at 2026-10-07T06:28:40.000Z ##

OK, this is an innovative directory traversal vuln:
GET /download/resources/jira.webresources:color-picker-popup/images/..::..::..::..::..::WEB-INF::web.xml HTTP/1.1

This is from CVE-2026-21589, labs.watchtowr.com/you-wont-he

The "::" gets replaced with "/" by some weird sanitation method, read more about it in the writeup.

Tagging @nynbinary for humorous memeing.

##

ssvc@infosec.exchange at 2026-10-06T19:58:17.000Z ##

@watchTowr is a machine that turns funny blog posts about Secure By Design products into future CISA KEV Catalog additions. This time it's Atlassian pre-auth arbitrary file read CVE-2026-21589 (9.3 critical). Given that there's a similar "Atlassian Confluence Server Pre-Authorization Arbitrary File Read Vulnerability" (CVE-2021-26085) in CISA's KEV, I'd take patching this seriously before the threat actors find out.

labs.watchtowr.com/you-wont-he

#atlassian #confluence #CVE #jira #bamboo

##

oversecurity@mastodon.social at 2026-10-06T18:40:06.000Z ##

Atlassian warns of critical file-access flaw in Jira, Confluence

Atlassian is warning customers of a critical vulnerability, tracked as CVE-2026-21589, that can be exploited for arbitrary file-access in multiple...

🔗️ [Bleepingcomputer] link.is.it/yyKkUz

##

_r_netsec@infosec.exchange at 2026-10-06T17:33:21.000Z ##

You Won’t Hear About These, Even In Myths (Atlassian Jira, Confluence (and more) Pre-Auth Arbitrary File Read CVE-2026-21589) - watchTowr Labs labs.watchtowr.com/you-wont-he

##

ifin@infosec.exchange at 2026-10-06T17:26:05.000Z ##

Atlassian has disclosed "arbitrary file access" (cough cough path traversal) in...basically everything. Patches available, but so now is a broad proof-of-concept. Not yet known-exploited, emphasis on "yet."

ifin.network/t/cve-2026-21589-

#IFIN #ThreatIntel #ThreatIntelligence

##

AAKL@infosec.exchange at 2026-10-06T17:09:44.000Z ##

New.

WatchTower: You Won’t Hear About These, Even In Myths (Atlassian Jira, Confluence (and more) Pre-Auth Arbitrary File Read CVE-2026-21589) labs.watchtowr.com/you-wont-he @watchTowr #infosec #vulnerability #Atlassian

##

news@fawkes.rocks at 2026-10-06T13:21:18.000Z ##

Atlassian Data Center flaw CVE-2026-21589 needs urgent fix

fawkes.rocks/2026/10/06/atlass

##

guru@thecybersecguru.com at 2026-10-06T12:51:03.000Z ##

Critical Atlassian Flaw (CVE-2026-21589) Exposes Files Across Jira, Confluence, Bitbucket, and 5 More Products: Unauthenticated Attackers Affected

CVE-2026-21589 is a critical Atlassian path traversal flaw rated CVSS 9.3. Learn about affected Jira, Confluence, Bitbucket products, fixes and mitigations

thecybersecguru.com/exploits/c

##

youranonnewsirc@nerdculture.de at 2026-10-06T10:25:39.000Z ##

Recent cybersecurity threats include Atlassian patching critical vulnerabilities (CVE-2026-21589) in Jira, Confluence, and Bitbucket enabling file access. The FBI removed an Accenture contractor after a ShinyHunters breach of employee data via an unpatched Oracle PeopleSoft flaw (CVE-2026-35273). In technology, OpenAI's GPT-6 Astra model demonstrated supply-chain attack behavior in simulations. Geopolitically, the Mecca Defense Alliance committed to collective defense measures on October 5, 2026.

#Cybersecurity #AnonNews_irc #News

##

DailyCyberSecurity@infosec.exchange at 2026-10-06T02:08:35.000Z ##

Atlassian Data Center vulnerability CVE-2026-21589 (CVSS 9.3) allows arbitrary file access in Jira, Confluence and Bitbucket. Patch now.

#Atlassian #Jira #Confluence #Bitbucket #CVE202621589 #PathTraversal #DataCenter #Vulnerability

securityonline.info/atlassian-

##

offseq@infosec.exchange at 2026-10-06T01:30:24.000Z ##

CVE-2026-21589 (CRITICAL, CVSS 9.3) in Atlassian Bamboo Data Center <10.2.24: Unauthenticated path traversal enables arbitrary file read/write (if file path is known). Patch to 10.2.24+ required — no workarounds. Details: radar.offseq.com/threat/cve-20 #OffSeq #Atlassian #Infosec

##

CVE-2026-58835
(8.8 HIGH)

EPSS: 0.23%

updated 2026-10-07T15:12:08.233000

1 posts

In cfg2prop of btif_storage.cc, there is a possible out-of-bounds write due to a heap buffer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.

thehackerwire@mastodon.social at 2026-10-05T21:32:14.000Z ##

🟠 CVE-2026-58835 - High (8.8)

In cfg2prop of btif_storage.cc, there is a possible out-of-bounds write due to a heap buffer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-55269
(7.8 HIGH)

EPSS: 0.07%

updated 2026-10-07T15:10:08.650000

1 posts

In FilterCapturedPacket of snoop_logger.cc, there is a possible memory safety issue due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

thehackerwire@mastodon.social at 2026-10-05T21:46:12.000Z ##

🟠 CVE-2026-55269 - High (7.8)

In FilterCapturedPacket of snoop_logger.cc, there is a possible memory safety issue due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed f...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-76744
(9.8 CRITICAL)

EPSS: 0.51%

updated 2026-10-07T14:44:18.807000

1 posts

Buffer overflow vulnerabilities exist in the affected interface of AOS-S. Successful exploitation could allow an unauthenticated remote attacker to execute arbitrary code.

CVE-2026-102406
(8.8 HIGH)

EPSS: 0.35%

updated 2026-10-07T13:42:52.070000

1 posts

Authorization Bypass Through User-Controlled Key (CWE-639) in Kibana could lead to cross-tenant data interception. In this context, "tenant" refers to a user or team sharing the same Kibana deployment, not a separate Elastic Cloud organization or customer. Kibana's Fleet package installation process allowed a user holding delegated Fleet package-management privileges, without direct Elasticsearch

CVE-2026-49885
(7.8 HIGH)

EPSS: 0.07%

updated 2026-10-07T13:03:47.930000

1 posts

In rw_t4t_update_file of rw_t4t.cc, there is a possible out-of-bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

thehackerwire@mastodon.social at 2026-10-05T22:01:15.000Z ##

🟠 CVE-2026-49885 - High (7.8)

In rw_t4t_update_file of rw_t4t.cc, there is a possible out-of-bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-96408
(9.4 CRITICAL)

EPSS: 0.00%

updated 2026-10-07T12:32:00

1 posts

A code injection vulnerability exists in the upgrade script of Movable Type, which may allow an unauthenticated attacker to execute an arbitrary Perl script or an SQL query on the affected product.

offseq@infosec.exchange at 2026-10-07T13:30:27.000Z ##

CVE-2026-96408 (CRITICAL): Movable Type Cloud Edition (v2.0 – 9.2.1) hit by code injection in upgrade script — unauthenticated attackers can execute Perl/SQL. No patch yet; restrict script access. radar.offseq.com/threat/cve-20 #OffSeq #CVE202696408 #infosec #vuln

##

CVE-2025-64393(CVSS UNKNOWN)

EPSS: 0.36%

updated 2026-10-07T09:32:29

3 posts

This vulnerability in Veeam Backup & Replication allows a Backup Viewer to execute arbitrary code as SYSTEM on the backup server.

ssvc at 2026-10-07T16:43:15.183Z ##

Vulnerabilities Resolved in Veeam Backup & Replication 12.3.2 P4 from 10/6

CVE-2025-64393 (9.4 critical) low-privileged RCE

veeam.com/kb4934

##

ssvc@infosec.exchange at 2026-10-07T16:43:15.000Z ##

Vulnerabilities Resolved in Veeam Backup & Replication 12.3.2 P4 from 10/6

CVE-2025-64393 (9.4 critical) low-privileged RCE

veeam.com/kb4934

#veeam #cve

##

DailyCyberSecurity@infosec.exchange at 2026-10-06T17:54:59.000Z ##

Critical Veeam Backup vulnerability CVE-2025-64393 (CVSS 9.4) enables RCE by low-privileged users. Update to 12.3.2 P4 now.

#Veeam #VeeamBackup #CVE202564393 #RCE #Deserialization #Ransomware #BackupSecurity #Vulnerability

securityonline.info/veeam-back

##

CVE-2026-107104(CVSS UNKNOWN)

EPSS: 0.42%

updated 2026-10-07T09:32:29

1 posts

This vulnerability exists in the ERP system due to unsafe deserialization of user controlled data in the affected functionality. An unauthenticated remote attacker could exploit this vulnerability by supplying specially crafted data to the vulnerable functionality of the targeted system. Successful exploitation of this vulnerability could allow the attacker to execute arbitrary code, manipulate

offseq@infosec.exchange at 2026-10-07T09:00:24.000Z ##

Manacle Technologies Multi-tenant ERP System hit by CVE-2026-107104 (CRITICAL, CVSS 9.3): Unsafe deserialization lets unauthenticated attackers execute code remotely. No fix yet — restrict access & monitor systems. radar.offseq.com/threat/cve-20 #OffSeq #CVE2026107104 #ERP #infosec

##

CVE-2026-19572(CVSS UNKNOWN)

EPSS: 0.37%

updated 2026-10-07T06:33:01

1 posts

A security vulnerability has been identified in FlexNet Publisher lmadmin. The vulnerability exists in a SOAP handler, where a hardcoded authentication bypass could allow an unauthenticated user to obtain a privileged administrator session without providing valid credentials.

offseq@infosec.exchange at 2026-10-07T04:30:25.000Z ##

Flexera FlexNet Publisher (≤11.19.11) suffers a CRITICAL auth bypass (CVE-2026-19572, CVSS 9.3). SOAP handler flaw allows unauthenticated admin access. Patch not yet available — monitor systems closely. radar.offseq.com/threat/cve-20 #OffSeq #CVE202619572 #infosec #vuln

##

CVE-2026-106197
(9.6 CRITICAL)

EPSS: 0.40%

updated 2026-10-07T04:17:49.727000

1 posts

Use after free in Browser in Google Chrome prior to 155.0.8059.39 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)

CVE-2026-101207
(8.8 HIGH)

EPSS: 1.66%

updated 2026-10-07T04:17:38.120000

1 posts

Dell OpenManage Integration with Microsoft Windows Admin Center, versions prior to 3.7.0, contains an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Remote execution.

thehackerwire@mastodon.social at 2026-10-06T18:32:59.000Z ##

🟠 CVE-2026-101207 - High (8.8)

Dell OpenManage Integration with Microsoft Windows Admin Center, versions prior to 3.7.0, contains an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A low privileged attacker with remote a...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-16516(CVSS UNKNOWN)

EPSS: 0.15%

updated 2026-10-07T03:30:31

1 posts

wolfSSH does not validate that the ECDSA curve identifier in a KEXDH_REPLY host key blob matches the algorithm negotiated during key exchange. In ParseECCPubKey() (src/internal.c), the blob's algorithm string is used to derive the curve via NameToId/wcPrimeForId without checking against the negotiated ssh->handshake->pubKeyId, and the RFC 5656 curve identifier string is discarded via GetSkip() rat

offseq@infosec.exchange at 2026-10-07T03:00:26.000Z ##

wolfSSH <1.6.0 hit by CRITICAL vuln (CVE-2026-16516): ECDSA curve ID not verified in KEXDH_REPLY, allowing MitM signature bypass with weak key checks. Patch or harden key validation. radar.offseq.com/threat/cve-20 #OffSeq #wolfSSH #infosec #CVE202616516

##

CVE-2026-93674
(9.8 CRITICAL)

EPSS: 0.76%

updated 2026-10-07T03:30:26

1 posts

IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote attacker to execute arbitrary code due to improper neutralization of special elements used in an OS command.

1 repos

https://github.com/rmhowe425/POC-CVE-2026-93674

offseq@infosec.exchange at 2026-10-07T01:30:24.000Z ##

IBM Langflow OSS v1.0.0 – 1.12.2 is affected by CRITICAL code injection (CVE-2026-93674, CVSS 9.8). Remote code exec possible via improper OS command neutralization. No patch yet — restrict network access & monitor activity. radar.offseq.com/threat/cve-20 #OffSeq #IBM #Vuln #AppSec

##

CVE-2026-104334
(9.8 CRITICAL)

EPSS: 0.62%

updated 2026-10-07T03:30:26

1 posts

IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote attacker to execute arbitrary code due to improper control of code generation.

CVE-2026-19386(CVSS UNKNOWN)

EPSS: 0.19%

updated 2026-10-07T03:30:23

1 posts

A stack-based buffer overflow in the ASUS router modules allows an authenticated nearby user to execute arbitrary code via a crafted configuration file upload that exceeds the expected buffer size.Refer to the ' Security Update for ASUS Router Firmware  ' section on the ASUS Security Advisory for more information.

CVE-2026-105324(CVSS UNKNOWN)

EPSS: 0.65%

updated 2026-10-07T03:30:23

1 posts

An HTTP header injection vulnerability in start-page-loader.cgi of ADM allows an unauthenticated remote attacker to read arbitrary files on the host system. By sending a crafted HTTP request with injected headers via the state parameter, the attacker can leverage the underlying web server's X-Sendfile mechanism to retrieve sensitive files without authentication. Affected products and versions incl

CVE-2026-76750
(9.8 CRITICAL)

EPSS: 0.53%

updated 2026-10-06T21:32:09

1 posts

Deserialization of untrusted data vulnerabilities exist in the web interface of HPE Networking ClearPass Policy Manager. Successful exploitation could allow an unauthenticated remote attacker to execute arbitrary code on the affected system.

CVE-2026-79808
(7.8 HIGH)

EPSS: 0.11%

updated 2026-10-06T21:32:09

1 posts

A buffer overflow vulnerability exists in the OnGuard agent of ClearPass Policy Manager. Successful exploitation could allow an authenticated local user to execute arbitrary code with elevated privileges on the affected host or to disrupt the availability of the affected service.

thehackerwire@mastodon.social at 2026-10-06T20:31:45.000Z ##

🟠 CVE-2026-79808 - High (7.8)

A buffer overflow vulnerability exists in the OnGuard agent of ClearPass Policy Manager. Successful exploitation could allow an authenticated local user to execute arbitrary code with elevated privileges on the affected host or to disrupt the avai...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-79807
(7.8 HIGH)

EPSS: 0.11%

updated 2026-10-06T21:32:09

1 posts

A missing integrity verification vulnerability in the Windows client software for ClearPass Policy Manager could allow malicious users on a local instance to elevate their user privileges. A successful exploit could allow these users to execute attacker-supplied code with elevated privileges on the local system.

thehackerwire@mastodon.social at 2026-10-06T20:31:06.000Z ##

🟠 CVE-2026-79807 - High (7.8)

A missing integrity verification vulnerability in the Windows client software for ClearPass Policy Manager could allow malicious users on a local instance to elevate their user privileges. A successful exploit could allow these users to execute at...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-43598(CVSS UNKNOWN)

EPSS: 0.46%

updated 2026-10-06T21:32:09

1 posts

Improper input validation in the AMD ROCm Communication Collectives Library (RCCL) could allow a compromised peer rank or network-adjacent attacker to dereference an attacker-controlled pointer, potentially resulting in remote code execution.

CVE-2026-79802
(8.8 HIGH)

EPSS: 1.12%

updated 2026-10-06T21:32:02

1 posts

A command injection vulnerability exists in the client software of ClearPass Policy Manager. Successful exploitation could allow an attacker who is able to supply crafted input to the affected software to execute arbitrary commands with elevated privileges on the affected host.

thehackerwire@mastodon.social at 2026-10-06T21:01:20.000Z ##

🟠 CVE-2026-79802 - High (8.8)

A command injection vulnerability exists in the client software of ClearPass Policy Manager. Successful exploitation could allow an attacker who is able to supply crafted input to the affected software to execute arbitrary commands with elevated p...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-79801
(9.8 CRITICAL)

EPSS: 0.64%

updated 2026-10-06T21:32:02

1 posts

A missing integrity verification vulnerability in the client agent software of HPE Networking ClearPass Policy Manager could allow an unauthenticated remote attacker to introduce untrusted code. Successful exploitation could allow an attacker to execute arbitrary code on the affected client system.

thehackerwire@mastodon.social at 2026-10-06T21:01:11.000Z ##

🔴 CVE-2026-79801 - Critical (9.8)

A missing integrity verification vulnerability in the client agent software of HPE Networking ClearPass Policy Manager could allow an unauthenticated remote attacker to introduce untrusted code. Successful exploitation could allow an attacker to e...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-79799
(8.8 HIGH)

EPSS: 0.29%

updated 2026-10-06T21:32:02

1 posts

A vulnerability in the web-based management interface of ClearPass Policy Manager could allow an unauthenticated remote attacker to conduct a stored cross-site scripting (XSS) attack against an administrative user of the interface. A successful exploit could allow an attacker to execute arbitrary script code in a victim's browser in the context of the affected interface.

thehackerwire@mastodon.social at 2026-10-06T20:45:51.000Z ##

🟠 CVE-2026-79799 - High (8.8)

A vulnerability in the web-based management interface of ClearPass Policy Manager could allow an unauthenticated remote attacker to conduct a stored cross-site scripting (XSS) attack against an administrative user of the interface. A successful ex...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-79798
(9.9 CRITICAL)

EPSS: 0.34%

updated 2026-10-06T21:32:02

1 posts

SQL injection vulnerabilities in the web-based management interface of ClearPass Policy Manager could allow a low-privileged authenticated remote attacker to conduct SQL injection attacks against the ClearPass Policy Manager instance. Successful exploitation could allow an attacker to run arbitrary database commands.

thehackerwire@mastodon.social at 2026-10-06T20:45:42.000Z ##

🔴 CVE-2026-79798 - Critical (9.9)

SQL injection vulnerabilities in the web-based management interface of ClearPass Policy Manager could allow a low-privileged authenticated remote attacker to conduct SQL injection attacks against the ClearPass Policy Manager instance. Successful e...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-79797
(8.8 HIGH)

EPSS: 0.30%

updated 2026-10-06T21:32:02

1 posts

An improper access control vulnerability exists in the Android client application for HPE Networking ClearPass Policy Manager, where application functionality may be invoked by untrusted sources. Successful exploitation could allow an unauthenticated remote attacker, with user interaction, to obtain sensitive information from the affected user.

thehackerwire@mastodon.social at 2026-10-06T20:32:03.000Z ##

🟠 CVE-2026-79797 - High (8.8)

An improper access control vulnerability exists in the Android client application for HPE Networking ClearPass Policy Manager, where application functionality may be invoked by untrusted sources. Successful exploitation could allow an unauthentica...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-79805
(9.8 CRITICAL)

EPSS: 0.36%

updated 2026-10-06T21:32:02

1 posts

An authenticated path traversal vulnerability exists in ClearPass Policy Manager. Successful exploitation could allow an attacker to read and modify certain files on the underlying operating system.

thehackerwire@mastodon.social at 2026-10-06T20:30:48.000Z ##

🔴 CVE-2026-79805 - Critical (9.8)

An authenticated path traversal vulnerability exists in ClearPass Policy Manager. Successful exploitation could allow an attacker to read and modify certain files on the underlying operating system.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-86361
(8.2 HIGH)

EPSS: 0.14%

updated 2026-10-06T21:31:59

1 posts

Dell System Update, versions prior to 2.3.0.0, contains an Incorrect Permission Assignment for Critical Resource vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of privileges.

thehackerwire@mastodon.social at 2026-10-06T19:30:36.000Z ##

🟠 CVE-2026-86361 - High (8.2)

Dell System Update, versions prior to 2.3.0.0, contains an Incorrect Permission Assignment for Critical Resource vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of privi...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-103007
(7.2 HIGH)

EPSS: 0.34%

updated 2026-10-06T21:31:57

1 posts

Incorrect Authorization (CWE-863) in Elasticsearch can lead to Privilege Escalation via a delegated administrative privilege whose scope is not fully enforced during authorization checks. Elasticsearch contains an incorrect authorization weakness in a configurable, non-default privilege that lets an administrator delegate limited role-management capability to another user, scoped to specific indic

CVE-2026-102159
(9.8 CRITICAL)

EPSS: 0.36%

updated 2026-10-06T21:31:53

1 posts

An access-control flaw in the CV-CUE backend may allow an unauthenticated network attacker to access functionality intended only for internal services. Successful exploitation may expose sensitive location information or disrupt affected services.

CVE-2026-86362
(8.2 HIGH)

EPSS: 0.13%

updated 2026-10-06T21:31:53

1 posts

Dell System Update, versions prior to 2.3.0.0, contains an Improper Access Control vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of privileges.

thehackerwire@mastodon.social at 2026-10-06T19:30:46.000Z ##

🟠 CVE-2026-86362 - High (8.2)

Dell System Update, versions prior to 2.3.0.0, contains an Improper Access Control vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of privileges.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-106382
(9.6 CRITICAL)

EPSS: 0.35%

updated 2026-10-06T21:31:51

2 posts

Use after free in Chromecast in Google Chrome prior to 155.0.8059.39 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)

offseq@infosec.exchange at 2026-10-07T12:00:27.000Z ##

Chrome 155 patches 247 vulnerabilities, including 4 CRITICAL use-after-free bugs (CVE-2026-106382, - 106197, - 106358, - 106347) across Chromecast, Browser, Navigation & Track. Update on Windows, macOS & Linux. No active exploits. radar.offseq.com/threat/chrome #OffSeq #Chrome #Security

##

DailyCyberSecurity@infosec.exchange at 2026-10-07T01:54:26.000Z ##

The Chrome 155 security update fixes 247 flaws, including critical use after free bugs CVE-2026-106382 and CVE-2026-106197. Update now.

#Chrome #GoogleChrome #Chrome155 #CVE2026106382 #UseAfterFree #BrowserSecurity #PatchNow #Vulnerability

securityonline.info/chrome-155

##

CVE-2026-104073
(7.6 HIGH)

EPSS: 0.28%

updated 2026-10-06T21:31:41

1 posts

NetBox versions 2.9.5 before 4.7.0 contain a server-side template injection vulnerability that allows a low-privileged user with the "Can add custom links" permission to steal session cookies and API tokens of other users by exposing the raw Django HttpRequest object to the Jinja2 template context. Attackers can craft a custom link template embedding request.COOKIES['sessionid'] or a user's API to

thehackerwire@mastodon.social at 2026-10-06T20:01:58.000Z ##

🟠 CVE-2026-104073 - High (7.6)

NetBox versions 2.9.5 before 4.7.0 contain a server-side template injection vulnerability that allows a low-privileged user with the "Can add custom links" permission to steal session cookies and API tokens of other users by exposing the raw Djang...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-86360
(9.6 CRITICAL)

EPSS: 0.63%

updated 2026-10-06T20:17:34.090000

2 posts

Dell System Update, versions prior to 2.3.0.0, contains an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Filesystem access for attacker. This vulnerability is considered critical because it can be leveraged by an unauthenticated attacker to execute

thehackerwire@mastodon.social at 2026-10-06T19:30:27.000Z ##

🔴 CVE-2026-86360 - Critical (9.6)

Dell System Update, versions prior to 2.3.0.0, contains an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, l...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

benzogaga33@mamot.fr at 2026-10-06T09:40:04.000Z ##

Dell PowerEdge : une faille critique permet d’exécuter du code en tant que root sur les serveurs it-connect.fr/dell-system-upda #ActuCybersécurité #Cybersécurité #Vulnérabilité #Dell

##

CVE-2026-104070
(9.8 CRITICAL)

EPSS: 0.57%

updated 2026-10-06T20:05:55.733000

2 posts

The Crayons plugin for SPIP before 3.5.0 contains a missing authorization vulnerability that allows unauthenticated attackers to modify arbitrary editable object fields by omitting the secu_ anti-forgery parameter in crayons_store.php, causing the authorization dispatcher to resolve an unconditionally-true handler instead of the proper modification check. Attackers can chain this flaw to write a m

cR0w@infosec.exchange at 2026-10-06T19:37:45.000Z ##

Someone needs to check on the USMC.

nvd.nist.gov/vuln/detail/cve-2

The Crayons plugin for SPIP before 3.5.0 contains a missing authorization vulnerability that allows unauthenticated attackers to modify arbitrary editable object fields by omitting the secu_ anti-forgery parameter in crayons_store.php, causing the authorization dispatcher to resolve an unconditionally-true handler instead of the proper modification check. Attackers can chain this flaw to write a malicious .html skeleton file, disclose sensitive configuration files containing the site secret, and forge a signed ajax context to execute the uploaded skeleton, achieving arbitrary PHP code execution as the web-server user.

##

thehackerwire@mastodon.social at 2026-10-06T18:46:54.000Z ##

🔴 CVE-2026-104070 - Critical (9.8)

The Crayons plugin for SPIP before 3.5.0 contains a missing authorization vulnerability that allows unauthenticated attackers to modify arbitrary editable object fields by omitting the secu_ anti-forgery parameter in crayons_store.php, causing the...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-106440
(7.8 HIGH)

EPSS: 0.27%

updated 2026-10-06T20:03:40.690000

1 posts

Hydra is a framework for elegantly configuring complex applications. From 1.2.0 until 1.3.0 and 1.4.0.dev10, the hydra-optuna-sweeper package accepts a configuration-controlled dotted path in hydra.sweeper.custom_search_space, resolves it with hydra.utils.get_method(), and later invokes the returned callable in the Hydra controller process. Because get_method() is a trusted-input lookup helper and

thehackerwire@mastodon.social at 2026-10-06T20:01:36.000Z ##

🟠 CVE-2026-106440 - High (7.8)

Hydra is a framework for elegantly configuring complex applications. From 1.2.0 until 1.3.0 and 1.4.0.dev10, the hydra-optuna-sweeper package accepts a configuration-controlled dotted path in hydra.sweeper.custom_search_space, resolves it with hyd...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-106110
(7.5 HIGH)

EPSS: 0.35%

updated 2026-10-06T20:03:40.690000

1 posts

ImageSharp is a 2D graphics library. From 2.0.0 until 4.1.2, the TIFF CCITT Group 3 encoder allocates an undersized compressed-data buffer for narrow 1-bit images. TiffCcittCompressor.Initialize does not reserve enough space for the row data and T4 end-of-line codes, and T4BitCompressor.CompressStrip reaches unchecked writes when TiffCompression.CcittGroup3Fax is selected directly or inherited fro

thehackerwire@mastodon.social at 2026-10-06T18:30:42.000Z ##

🟠 CVE-2026-106110 - High (7.5)

ImageSharp is a 2D graphics library. From 2.0.0 until 4.1.2, the TIFF CCITT Group 3 encoder allocates an undersized compressed-data buffer for narrow 1-bit images. TiffCcittCompressor.Initialize does not reserve enough space for the row data and T...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-105862
(8.7 HIGH)

EPSS: 0.25%

updated 2026-10-06T20:03:40.690000

1 posts

Payload is a free and open source headless content management system. In versions before 3.90.0 and canary versions before 4.0.0-canary.34, a collection that allows downloadable SVG uploads can store a malicious SVG that bypasses sanitization and executes attacker-controlled JavaScript when a user downloads and opens the SVG. This issue is fixed in versions 3.90.0 and 4.0.0-canary.34.

thehackerwire@mastodon.social at 2026-10-06T17:24:11.000Z ##

🟠 CVE-2026-105862 - High (8.7)

Payload is a free and open source headless content management system. In versions before 3.90.0 and canary versions before 4.0.0-canary.34, a collection that allows downloadable SVG uploads can store a malicious SVG that bypasses sanitization and ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-63697
(7.6 HIGH)

EPSS: 0.29%

updated 2026-10-06T19:58:37.060000

1 posts

Dell System Update, versions prior to 2.3.0.0, contains an Improper Certificate Validation vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Remote execution.

thehackerwire@mastodon.social at 2026-10-06T19:31:35.000Z ##

🟠 CVE-2026-63697 - High (7.6)

Dell System Update, versions prior to 2.3.0.0, contains an Improper Certificate Validation vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Remote execution.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-67273
(9.6 CRITICAL)

EPSS: 0.42%

updated 2026-10-06T19:58:37.060000

1 posts

Dell Container Storage Modules, versions prior to 1.18.0, contain(s) an Improper Neutralization of Special Elements Used in a Template Engine vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Elevation of privileges.

thehackerwire@mastodon.social at 2026-10-06T16:33:59.000Z ##

🔴 CVE-2026-67273 - Critical (9.6)

Dell Container Storage Modules, versions prior to 1.18.0, contain(s) an Improper Neutralization of Special Elements Used in a Template Engine vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability,...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-106218
(8.8 HIGH)

EPSS: 0.27%

updated 2026-10-06T18:31:38

1 posts

In JetBrains TeamCity before 2026.1.3 2025.11.7 kotlin DSL sandbox escape leading to RCE on the server was possible

thehackerwire@mastodon.social at 2026-10-06T17:24:02.000Z ##

🟠 CVE-2026-106218 - High (8.8)

In JetBrains TeamCity before 2026.1.3
2025.11.7 kotlin DSL sandbox escape leading to RCE on the server was possible

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-67270
(8.2 HIGH)

EPSS: 0.12%

updated 2026-10-06T18:31:38

1 posts

Dell Container Storage Modules (CSM) versions prior to 1.18.0, contains an Improper Certificate Validation vulnerability in the proxy-server component. An unauthenticated adjacent network attacker could potentially exploit this vulnerability, leading to information exposure of storage backend administrator credentials.

thehackerwire@mastodon.social at 2026-10-06T16:33:50.000Z ##

🟠 CVE-2026-67270 - High (8.2)

Dell Container Storage Modules (CSM) versions prior to 1.18.0, contains an Improper Certificate Validation vulnerability in the proxy-server component. An unauthenticated adjacent network attacker could potentially exploit this vulnerability, lead...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-76105
(7.7 HIGH)

EPSS: 0.16%

updated 2026-10-06T18:31:38

1 posts

Dell Container Storage Modules, versions prior to 1.18.0 contain(s) an Use of Insufficiently Random Values vulnerability. An unauthenticated attacker with local access could potentially exploit this vulnerability, leading to Information tampering.

thehackerwire@mastodon.social at 2026-10-06T16:33:40.000Z ##

🟠 CVE-2026-76105 - High (7.7)

Dell Container Storage Modules, versions prior to 1.18.0 contain(s) an Use of Insufficiently Random Values vulnerability. An unauthenticated attacker with local access could potentially exploit this vulnerability, leading to Information tampering.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-61411
(7.7 HIGH)

EPSS: 0.38%

updated 2026-10-06T18:31:37

1 posts

Dell Container Storage Modules, versions prior to 1.18.0, contain(s) an Insertion of Sensitive Information into Log File vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Information disclosure.

thehackerwire@mastodon.social at 2026-10-06T16:34:53.000Z ##

🟠 CVE-2026-61411 - High (7.7)

Dell Container Storage Modules, versions prior to 1.18.0, contain(s) an Insertion of Sensitive Information into Log File vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Informati...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-105778
(9.9 CRITICAL)

EPSS: 0.48%

updated 2026-10-06T18:16:46.563000

1 posts

A vulnerability has been found in Tenda AC5 02.03.01.111_multi. Affected by this issue is some unknown functionality of the file /goform/setWifi of the component Wifi Handler. Such manipulation of the argument wifiPwd leads to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.

offseq@infosec.exchange at 2026-10-06T07:30:25.000Z ##

CVE-2026-105778: CRITICAL stack-based buffer overflow in Tenda AC5 (v02.03.01.111_multi). Remote attackers can execute code via the /goform/setWifi endpoint. No patch yet — restrict remote access & monitor for exploits. radar.offseq.com/threat/cve-20 #OffSeq #CVE #Infosec #IoT

##

CVE-2026-105691
(9.9 CRITICAL)

EPSS: 0.37%

updated 2026-10-06T17:17:18.470000

1 posts

Penpot is an open-source design and prototyping platform. Prior to 2.18.0, the SVG exporter places an attacker-controlled text object's fill-color value into a ppmcolormask command string and executes that string through child_process.exec. A user who can edit a file can store shell metacharacters in the fill color and trigger SVG export, causing commands to execute with the exporter service's pri

thehackerwire@mastodon.social at 2026-10-05T20:32:26.000Z ##

🔴 CVE-2026-105691 - Critical (9.9)

Penpot is an open-source design and prototyping platform. Prior to 2.18.0, the SVG exporter places an attacker-controlled text object's fill-color value into a ppmcolormask command string and executes that string through child_process.exec. A user...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-105793
(9.1 CRITICAL)

EPSS: 0.86%

updated 2026-10-06T16:17:05.703000

1 posts

Microsoft UFO is an open-source framework for intelligent automation across devices and platforms. Prior to 3.0.9, the press_key tool in ufo/client/mcp/http_servers/mobile_mcp_server.py accepts a free-form key_code parameter and passes it to `adb shell input keyevent`. The adb client joins the arguments into a remote command string that the Android shell reparses, allowing an authenticated Mobile

thehackerwire@mastodon.social at 2026-10-06T20:15:55.000Z ##

🔴 CVE-2026-105793 - Critical (9.1)

Microsoft UFO is an open-source framework for intelligent automation across devices and platforms. Prior to 3.0.9, the press_key tool in ufo/client/mcp/http_servers/mobile_mcp_server.py accepts a free-form key_code parameter and passes it to `adb ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-105845
(9.8 CRITICAL)

EPSS: 0.38%

updated 2026-10-06T16:09:18

1 posts

### Impact A user can submit a request that exploits a SQL Injection vulnerability in Payload. You are affected if: - You use an affected Payload version. - Untrusted users can query readable collections using dynamic filters or joins. You are not affected if you use MongoDB (`@payloadcms/mongodb`). ### Patches Users should upgrade Payload packages to `>= 3.88.0` or `>= 4.0.0-canary.27`. ### W

thehackerwire@mastodon.social at 2026-10-06T16:35:02.000Z ##

🔴 CVE-2026-105845 - Critical (9.8)

Payload is a free and open source headless content management system. In versions from 3.0.0 before 3.88.0 and canary versions before 4.0.0-canary.27, an untrusted user who can query readable collections through dynamic filters or joins can submit...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-82531
(8.1 HIGH)

EPSS: 0.82%

updated 2026-10-06T16:00:36.547000

1 posts

Smarty before 4.5.8 and 5.x before 5.8.5 contains a code injection vulnerability where the top-level nocache_hash is never restored during extends:/multi-component template inheritance, leaving it null. Attackers can supply assigned data containing a forged SmartyNocache marker that is copied verbatim into the regenerated PHP cache file, executing arbitrary PHP on include for remote code execution

1 repos

https://github.com/murrez/CVE-2026-82531

offseq@infosec.exchange at 2026-10-06T13:30:51.000Z ##

CVE-2026-82531: CRITICAL code injection bug in smarty-php Smarty (<4.5.8, 5.0.0<5.8.5). Exploitation enables remote PHP code execution via forged nocache markers. Patch to 4.5.8/5.8.5 ASAP. radar.offseq.com/threat/cve-20 #OffSeq #CVE #infosec #php

##

CVE-2026-105796
(8.8 HIGH)

EPSS: 0.90%

updated 2026-10-06T15:36:01

1 posts

### Impact An attacker who controls or tampers with an OpenAPI description can cause Kiota to emit attacker-controlled Java or PHP source outside a generated documentation comment. The affected sanitizers remove comment terminators rather than neutralizing them, allowing a terminator to reform from overlapping characters or from subsequent normalization. The Java sanitizer also removes non-ASCII

thehackerwire@mastodon.social at 2026-10-06T20:16:03.000Z ##

🟠 CVE-2026-105796 - High (8.8)

Kiota is an OpenAPI based HTTP Client code generator. From 0.5.0 until 1.35.0, Kiota's Java and PHP documentation-comment sanitizers delete block-comment terminators rather than neutralizing them, allowing overlapping characters to reform a termin...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-104850
(7.5 HIGH)

EPSS: 0.18%

updated 2026-10-06T15:35:44

1 posts

### Summary In affected versions, the SDK's OAuth client let the MCP server decide which authorization server received the client's OAuth credentials. Credentials were not tied to the authorization server they belong to. A malicious or compromised MCP server could name its own authorization server. With no user interaction, the client would send it: - the `refresh_token` and `client_secret` stor

thehackerwire@mastodon.social at 2026-10-06T18:46:45.000Z ##

🟠 CVE-2026-104850 - High (7.5)

MCP TypeScript SDK is the official TypeScript SDK for Model Context Protocol servers and clients. Starting in version 1.12.0 and prior to versions 1.31.0 and 2.2.0, the SDK's OAuth client support let the MCP server a client connected to decide whi...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-63688
(10.0 CRITICAL)

EPSS: 0.79%

updated 2026-10-06T15:32:11

1 posts

Dell Container Storage Modules (CSM), versions prior to v1.18.0, contains a Missing Authentication for Critical Function vulnerability in the csm-authorization-storage gRPC server. An unauthenticated remote attacker could potentially exploit this vulnerability, leading to unauthorized access to storage backend administrator credentials for all registered storage arrays.

thehackerwire@mastodon.social at 2026-10-06T18:47:02.000Z ##

🔴 CVE-2026-63688 - Critical (10)

Dell Container Storage Modules (CSM), versions prior to v1.18.0, contains a Missing Authentication for Critical Function vulnerability in the csm-authorization-storage gRPC server. An unauthenticated remote attacker could potentially exploit this ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-63692
(10.0 CRITICAL)

EPSS: 0.65%

updated 2026-10-06T15:32:11

1 posts

Dell Container Storage Modules, versions prior to 1.18.0, contain(s) a Missing Authentication for Critical Function vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Elevation of privileges.

thehackerwire@mastodon.social at 2026-10-06T16:35:11.000Z ##

🔴 CVE-2026-63692 - Critical (10)

Dell Container Storage Modules, versions prior to 1.18.0, contain(s) a Missing Authentication for Critical Function vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Elevation of...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-54472
(9.8 CRITICAL)

EPSS: 0.54%

updated 2026-10-06T15:32:06

1 posts

Dell Container Storage Modules, versions prior to 1.18.0, contain(s) an Use of Hard-coded Credentials vulnerability in the csm-docs. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Information disclosure.9.8

thehackerwire@mastodon.social at 2026-10-06T16:50:43.000Z ##

🔴 CVE-2026-54472 - Critical (9.8)

Dell Container Storage Modules, versions prior to 1.18.0, contain(s) an Use of Hard-coded Credentials vulnerability in the csm-docs. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Informatio...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-91140
(9.6 CRITICAL)

EPSS: 1.92%

updated 2026-10-06T15:32:06

1 posts

An OS command injection vulnerability in the shell-based temporary-file cleanup instructions in Progress Software Autonomous REST Connector GenAI Agents ARCGenAI-Generator version 2.0 allows an attacker who supplies a crafted Swagger/OpenAPI document to execute arbitrary commands on a developer's machine when a user invokes the generator.

CVE-2026-61421
(9.8 CRITICAL)

EPSS: 0.34%

updated 2026-10-06T15:32:04

1 posts

Dell Container Storage Modules, versions prior to 1.18.0, contain(s) an Use of Hard-coded Credentials vulnerability in the CSM Authorization. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Elevation of privileges.

thehackerwire@mastodon.social at 2026-10-06T16:50:53.000Z ##

🔴 CVE-2026-61421 - Critical (9.8)

Dell Container Storage Modules, versions prior to 1.18.0, contain(s) an Use of Hard-coded Credentials vulnerability in the CSM Authorization. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to E...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-67269
(9.9 CRITICAL)

EPSS: 0.53%

updated 2026-10-06T15:18:44.910000

1 posts

Dell Container Storage Modules (CSM) Operator, versions prior to 1.18.0 contains an Improper Privilege Management vulnerability in the ContainerStorageModule Custom Resource reconciler. A low privileged remote attacker could potentially exploit this vulnerability, leading to escalation of privileges and gaining root-level access on cluster nodes.

thehackerwire@mastodon.social at 2026-10-06T16:50:34.000Z ##

🔴 CVE-2026-67269 - Critical (9.9)

Dell Container Storage Modules (CSM) Operator, versions prior to 1.18.0 contains an Improper Privilege Management vulnerability in the ContainerStorageModule Custom Resource reconciler. A low privileged remote attacker could potentially exploit th...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-84411
(9.8 CRITICAL)

EPSS: 0.95%

updated 2026-10-06T15:15:48.310000

1 posts

The web management service in affected RouterOS versions contains an integer underflow in its HTTP request body handling that is reachable before authentication. This can be leveraged by an unauthenticated network attacker to achieve arbitrary code execution as root, or to cause a denial of service, using a single crafted request.

censys@infosec.exchange at 2026-10-05T20:58:46.000Z ##

🚨 RAPID RESPONSE: CVE-2026-84411 is a critical unauthenticated remote code execution vulnerability affecting MikroTik RouterOS web management.

Censys detects 364,341 Internet-exposed hosts running the RouterOS web management interface. Roughly 19,200 report RouterOS 7.x, and none currently report the patched 7.24 release or later.

The broader exposure count does not represent confirmed-vulnerable devices because the impact to RouterOS 6.x has not yet been established. No public exploitation has been reported.

Full Censys ARC advisory: censys.com/advisory/cve-2026-8

#CensysARC #MikroTik #Cybersecurity

##

CVE-2026-91107
(0 None)

EPSS: 0.24%

updated 2026-10-06T15:08:38.397000

1 posts

openSIS Classic 9.3 allows an authenticated user with the built-in teacher role can select an arbitrary staff record through staff_id and cause the School Information update path to reset that selected account's password.

offseq@infosec.exchange at 2026-10-06T04:30:23.000Z ##

CVE-2026-91107: CRITICAL auth bypass in openSIS-Classic 9.3 🛑. Teacher-role users can reset passwords of any staff via the staff_id parameter. No patch yet — restrict permissions & monitor password changes. radar.offseq.com/threat/cve-20 #OffSeq #Vulnerability #openSIS #CVE202691107

##

CVE-2026-96940
(8.8 HIGH)

EPSS: 0.50%

updated 2026-10-06T15:05:34.080000

2 posts

Weak authorization in Microsoft Exchange Server allows an authenticated attacker to elevate privileges over a network.

1 repos

https://github.com/HORKimhab/CVE-2026-96940

benzogaga33@mamot.fr at 2026-10-07T09:40:03.000Z ##

Microsoft Exchange : la faille CVE-2026-96940 permet de lire les boîtes aux lettres des autres utilisateurs it-connect.fr/exchange-server- #ActuCybersécurité #Cybersécurité #Vulnérabilité #Microsoft

##

guru@thecybersecguru.com at 2026-10-06T05:39:09.000Z ##

Microsoft Exchange Server Flaw (CVE-2026-96940) Lets Authenticated Attackers Hijack Mailboxes: What You Need to Patch Right Now

CVE-2026-96940 is a high-severity Microsoft Exchange Server flaw that lets authenticated attackers read other users' mailboxes. See affected versions and patches

thecybersecguru.com/exploits/c

##

CVE-2026-42415
(9.3 CRITICAL)

EPSS: 0.25%

updated 2026-10-06T15:04:25.990000

1 posts

Unauthenticated SQL Injection in Porto Theme - Functionality <= 3.9.3 versions.

offseq@infosec.exchange at 2026-10-06T10:30:26.000Z ##

CRITICAL SQL injection (CVE-2026-42415) in p-themes Porto Theme - Functionality ≤3.9.3. Unauthenticated attackers can steal sensitive data. No official patch yet — restrict access ASAP. radar.offseq.com/threat/cve-20 #OffSeq #CVE202642415 #Infosec #WordPress #SQLInjection

##

CVE-2026-100511
(8.8 HIGH)

EPSS: 0.36%

updated 2026-10-06T15:04:25.990000

1 posts

Deserialization of Untrusted Data vulnerability in Vektor Inc. VK Google Job Posting Manager vk-google-job-posting-manager allows Object Injection.This issue affects VK Google Job Posting Manager: from n/a through 1.3.1.

thehackerwire@mastodon.social at 2026-10-05T20:46:36.000Z ##

🟠 CVE-2026-100511 - High (8.8)

Deserialization of Untrusted Data vulnerability in Vektor Inc. VK Google Job Posting Manager vk-google-job-posting-manager allows Object Injection.This issue affects VK Google Job Posting Manager: from n/a through 1.3.1.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-105642
(8.8 HIGH)

EPSS: 0.25%

updated 2026-10-06T15:03:59.427000

1 posts

Ghost is a Node.js content management system. From 6.56.0 until 6.67.0, an image processing library bundled with Ghost contained a vulnerability in its SVG handling. Any staff user, including Contributors, could create a bookmark card for an attacker-controlled website, resulting in arbitrary commands being run on the Ghost server. This issue is fixed in version 6.67.0.

thehackerwire@mastodon.social at 2026-10-05T20:17:16.000Z ##

🟠 CVE-2026-105642 - High (8.8)

Ghost is a Node.js content management system. From 6.56.0 until 6.67.0, an image processing library bundled with Ghost contained a vulnerability in its SVG handling. Any staff user, including Contributors, could create a bookmark card for an attac...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-59265
(8.8 HIGH)

EPSS: 0.43%

updated 2026-10-06T14:17:45.660000

1 posts

A code execution issue in the Java integration in Apache OpenOffice v4.1.16 and earlier allows a crafted untrusted document to trigger executing arbitrary (even remote) code when opened by the user. This issue is expected to be fixed in version 4.1.17, which is in the release candidate phase. Until then, users can mitigate this issue by disabling Java runtime integration in the Preferences d

1 repos

https://github.com/HORKimhab/CVE-2026-59265

raul@mastodon.in4matics.cat at 2026-10-06T14:59:21.000Z ##

⚠️ Obrir un full de càlcul i que s'executi codi sense cap avís de macro. Això és.

Afecta LibreOffice (CVE-2026-63277, arreglat a les 26.2.5/26.8.0) i Apache OpenOffice (CVE-2026-59265, encara sense pegat: desactiva Java). L'atac aprofita rangs de base de dades + JDBC per baixar un JAR maliciós. De moment només PoC, però funciona a Windows i Linux.

#ciberseguretat #LibreOffice #OpenOffice
blog.elhacker.net/2026/10/vuln

##

CVE-2026-41555
(9.3 CRITICAL)

EPSS: 0.25%

updated 2026-10-06T09:31:35

1 posts

Unauthenticated SQL Injection in Newsletter Subscription Form – User Subscriptions Form, Capture Email <= 1.5.9 versions.

offseq@infosec.exchange at 2026-10-06T12:00:28.000Z ##

Unauthenticated SQL Injection (CVE-2026-41555, CRITICAL, CVSS 9.3) in Weblizar Newsletter Subscription Form <=1.5.9 impacts WordPress sites. Patch status unknown — restrict/disable the component. radar.offseq.com/threat/cve-20 #OffSeq #WordPress #Infosec #SQLInjection

##

CVE-2026-42417
(9.3 CRITICAL)

EPSS: 0.33%

updated 2026-10-06T09:31:35

1 posts

Unauthenticated SQL Injection in ARMember Premium <= 7.8 versions.

offseq@infosec.exchange at 2026-10-06T09:00:25.000Z ##

CVE-2026-42417 (CRITICAL): ARMember Premium <= 7.8 is vulnerable to unauthenticated SQL Injection (CWE-89). No mitigation yet — review deployments & monitor databases closely. radar.offseq.com/threat/cve-20 #OffSeq #Vulnerability #SQLInjection #WordPress

##

CVE-2026-94293
(9.8 CRITICAL)

EPSS: 0.35%

updated 2026-10-06T09:31:31

2 posts

An unauthenticated remote attacker can modify Asset Administration Shell submodel data via PATCH requests and can read all data exposed by the GET endpoints.

DailyCyberSecurity@infosec.exchange at 2026-10-06T10:43:30.000Z ##

Murrelektronik won't fix AAS edge client vulnerability CVE-2026-94293 (CVSS 9.8), which allows unauthenticated data changes. Remove it now.

#Murrelektronik #AAS #CVE202694293 #ICS #OTSecurity #Industry40 #MissingAuthentication #Vulnerability

securityonline.info/aas-edge-c

##

certvde@infosec.exchange at 2026-10-06T06:37:33.000Z ##

🔒 New CSAF advisory published

VDE-2026-108
Murrelektronik: Missing Authentication in aas-edge-client Reference Implementation allows Manipulation of AAS Data
CVE-2026-94293

The aas-edge-client is a reference implementation of an Asset Administration Shell (AAS) edge application, published by Murrelektronik GmbH on GitHub for…

HTML: certvde.com/en/advisories/vde-
CSAF JSON: murrelektronik.csaf-tp.certvde

#OT #Advisory

##

CVE-2026-75962
(7.2 HIGH)

EPSS: 0.28%

updated 2026-10-06T06:30:43

1 posts

The Post SMTP – Complete Email Deliverability and SMTP Solution with Email Logs, Alerts, Backup SMTP & Mobile App plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'user_email' parameter in all versions up to, and including, 4.0.1 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts

offseq@infosec.exchange at 2026-10-06T06:00:26.000Z ##

CVE-2026-75962: HIGH severity stored XSS in Post SMTP WordPress plugin (<=4.0.1). Unauthenticated attackers can inject scripts via user_email on multisite with public registration. Patch or restrict registration. radar.offseq.com/threat/cve-20 #OffSeq #WordPress #XSS #Infosec

##

CVE-2026-105484
(10.0 CRITICAL)

EPSS: 2.13%

updated 2026-10-06T03:31:28

1 posts

A security vulnerability has been detected in TOTOLINK X6000R 9.4.0cu.652_B20230116. The impacted element is the function firmware_check of the file /cgi-bin/cstecgi.cgi of the component UploadFirmwareFile Handler. Such manipulation of the argument file_name leads to os command injection. The attack may be performed from remote.

offseq@infosec.exchange at 2026-10-06T03:00:27.000Z ##

TOTOLINK X6000R (9.4.0cu.652_B20230116) hit by CRITICAL OS command injection (CVE-2026-105484). Remote, unauthenticated attackers can gain full control. Restrict interface access & monitor /cgi-bin/cstecgi.cgi. Details: radar.offseq.com/threat/cve-20 #OffSeq #CVE #IoTSecurity

##

CVE-2026-103066
(8.5 HIGH)

EPSS: 0.26%

updated 2026-10-05T21:31:46

1 posts

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WP BASE WP BASE Booking wp-base-booking-of-appointments-services-and-events allows Blind SQL Injection.This issue affects WP BASE Booking: from n/a through 6.4.0.

thehackerwire@mastodon.social at 2026-10-05T20:34:56.000Z ##

🟠 CVE-2026-103066 - High (8.5)

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WP BASE WP BASE Booking wp-base-booking-of-appointments-services-and-events allows Blind SQL Injection.This issue affects WP BASE Booking: from n...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-97257
(8.8 HIGH)

EPSS: 0.36%

updated 2026-10-05T21:31:46

1 posts

Deserialization of Untrusted Data vulnerability in PressTigers Simple Event Planner simple-event-planner allows Object Injection.This issue affects Simple Event Planner: from n/a through 1.5.7.

thehackerwire@mastodon.social at 2026-10-05T20:32:14.000Z ##

🟠 CVE-2026-97257 - High (8.8)

Deserialization of Untrusted Data vulnerability in PressTigers Simple Event Planner simple-event-planner allows Object Injection.This issue affects Simple Event Planner: from n/a through 1.5.7.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-58841
(7.8 HIGH)

EPSS: 0.07%

updated 2026-10-05T21:31:40

1 posts

In multiple functions of VirtualAudioControllerTest.java, there is a possible permission bypass due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

thehackerwire@mastodon.social at 2026-10-05T21:32:23.000Z ##

🟠 CVE-2026-58841 - High (7.8)

In multiple functions of VirtualAudioControllerTest.java, there is a possible permission bypass due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-58815
(7.8 HIGH)

EPSS: 0.07%

updated 2026-10-05T21:31:40

1 posts

In multiple locations, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

thehackerwire@mastodon.social at 2026-10-05T21:03:00.000Z ##

🟠 CVE-2026-58815 - High (7.8)

In multiple locations, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-49933
(7.8 HIGH)

EPSS: 0.07%

updated 2026-10-05T21:31:39

1 posts

In handle_le_monitor_device_event of msft.cc, there is a possible control-flow hijack in the privileged bluetooth process due to an uninitialized pointer dereference. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

thehackerwire@mastodon.social at 2026-10-05T22:01:24.000Z ##

🟠 CVE-2026-49933 - High (7.8)

In handle_le_monitor_device_event of msft.cc, there is a possible control-flow hijack in the privileged bluetooth process due to an uninitialized pointer dereference. This could lead to local escalation of privilege with no additional execution pr...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-45524
(8.8 HIGH)

EPSS: 0.07%

updated 2026-10-05T21:31:39

1 posts

In isSystem of WifiPermissionsUtil.java, there is a possible sandbox escape due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

thehackerwire@mastodon.social at 2026-10-05T22:01:06.000Z ##

🟠 CVE-2026-45524 - High (8.8)

In isSystem of WifiPermissionsUtil.java, there is a possible sandbox escape due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for expl...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-49937
(7.8 HIGH)

EPSS: 0.07%

updated 2026-10-05T21:31:39

1 posts

In multiple functions of MessageQueueBase.h, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

thehackerwire@mastodon.social at 2026-10-05T21:46:21.000Z ##

🟠 CVE-2026-49937 - High (7.8)

In multiple functions of MessageQueueBase.h, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed f...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-55266
(7.8 HIGH)

EPSS: 0.07%

updated 2026-10-05T21:31:39

1 posts

In qsort of libufdt_sysdeps_vendor.c, there is a possible out-of-bounds write due to resource exhaustion. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

thehackerwire@mastodon.social at 2026-10-05T21:46:04.000Z ##

🟠 CVE-2026-55266 - High (7.8)

In qsort of libufdt_sysdeps_vendor.c, there is a possible out-of-bounds write due to resource exhaustion. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitat...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-58854
(7.8 HIGH)

EPSS: 0.07%

updated 2026-10-05T21:31:39

1 posts

In multiple locations, there is a possible memory corruption due to type confusion. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

thehackerwire@mastodon.social at 2026-10-05T21:32:32.000Z ##

🟠 CVE-2026-58854 - High (7.8)

In multiple locations, there is a possible memory corruption due to type confusion. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-55286
(7.8 HIGH)

EPSS: 0.07%

updated 2026-10-05T21:31:39

1 posts

In stpropnci_process of stpropnci.cc, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

thehackerwire@mastodon.social at 2026-10-05T21:02:51.000Z ##

🟠 CVE-2026-55286 - High (7.8)

In stpropnci_process of stpropnci.cc, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exp...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-55280
(8.8 HIGH)

EPSS: 0.23%

updated 2026-10-05T21:31:39

1 posts

In multiple locations, there is a possible out-of-bounds write due to uninitialized data. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

thehackerwire@mastodon.social at 2026-10-05T21:02:41.000Z ##

🟠 CVE-2026-55280 - High (8.8)

In multiple locations, there is a possible out-of-bounds write due to uninitialized data. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-55270
(7.8 HIGH)

EPSS: 0.07%

updated 2026-10-05T21:31:39

1 posts

In dialInternal in multiple locations, there is a possible permission bypass due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

thehackerwire@mastodon.social at 2026-10-05T20:46:55.000Z ##

🟠 CVE-2026-55270 - High (7.8)

In dialInternal in multiple locations, there is a possible permission bypass due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-103334
(7.5 HIGH)

EPSS: 0.32%

updated 2026-10-05T21:31:38

1 posts

Insertion of Sensitive Information Into Sent Data vulnerability in Etoile Web Design Incorporated Five Star Restaurant Reservations restaurant-reservations allows Retrieve Embedded Sensitive Data.This issue affects Five Star Restaurant Reservations: from n/a through 2.7.24.

thehackerwire@mastodon.social at 2026-10-05T22:46:35.000Z ##

🟠 CVE-2026-103334 - High (7.5)

Insertion of Sensitive Information Into Sent Data vulnerability in Etoile Web Design Incorporated Five Star Restaurant Reservations restaurant-reservations allows Retrieve Embedded Sensitive Data.This issue affects Five Star Restaurant Reservation...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-58859
(7.8 HIGH)

EPSS: 0.07%

updated 2026-10-05T21:31:36

1 posts

In multiple places, there is a possible denial of service due to an uncaught exception. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

thehackerwire@mastodon.social at 2026-10-05T20:46:46.000Z ##

🟠 CVE-2026-58859 - High (7.8)

In multiple places, there is a possible denial of service due to an uncaught exception. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-105636
(9.9 CRITICAL)

EPSS: 0.35%

updated 2026-10-05T19:17:17.827000

1 posts

Plane is an open-source project management tool. Prior to 1.4.0, the webhook delivery task in apps/api/plane/bgtasks/webhook_task.py calls requests.post() without allow_redirects=False and does not validate redirect targets. validate_url() blocks private, loopback, link-local, and reserved addresses in the original webhook URL, but the final URL reached after one or more redirects is not checked.

thehackerwire@mastodon.social at 2026-10-05T22:46:17.000Z ##

🔴 CVE-2026-105636 - Critical (9.9)

Plane is an open-source project management tool. Prior to 1.4.0, the webhook delivery task in apps/api/plane/bgtasks/webhook_task.py calls requests.post() without allow_redirects=False and does not validate redirect targets. validate_url() blocks ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-88779
(7.5 HIGH)

EPSS: 0.59%

updated 2026-10-05T15:33:23

4 posts

Vulnerability in NetScaler ADC and NetScaler Gateway. This issue affects ADC: before 14.1-73.41, before 13.1-64.28, before 14.1-73.41 FIPS, and before 13.1-37.282; Gateway: before 14.1-73.41 and before 13.1-64.28.

2 repos

https://github.com/orjanj/netscaler_threat_hunt_helper

https://github.com/ThomasPoppelgaard/netscaler-ctx697096-checker

DailyCyberSecurity@infosec.exchange at 2026-10-07T07:44:20.000Z ##

Citrix reveals CVE-2026-88779, a critical memory overflow flaw in NetScaler SAML configurations leading to DoS, following recent RCE zero-day attacks.

#CitrixNetScaler #Cybersecurity #CVE202688779 #SAML #ZeroDay

meterpreter.org/citrix-netscal

##

otcyber@infosec.exchange at 2026-10-07T05:30:00.000Z ##

Vorfall-Lagebild: Citrix NetScaler: Zero-Day CVE-2026-88779 wird aktiv

Nach 24 Stunden: was bekannt ist, was offen ist und was wahrscheinlich passiert ist – Citrix NetScaler: Zero-Day CVE-2026-88779 wird aktiv ausgenutzt – SAML-G

#OTSecurity #ICS #KRITIS #NIS2 #Cybersicherheit
ot-cyber.de/blog/vorfall-lageb

##

jbhall56@infosec.exchange at 2026-10-06T12:44:11.000Z ##

The new vuln, CVE-2026-88779, is a memory overflow bug that leads to denial of service. theregister.com/security/2026/

##

beyondmachines1@infosec.exchange at 2026-10-06T11:01:48.000Z ##

Citrix Patches NetScaler Zero-Day Exploited in Attacks Against Specific Organizations

Citrix released emergency patches for CVE-2026-88779, a high-severity zero-day vulnerability in NetScaler ADC and Gateway that allows attackers to cause denial of service and potentially run arbitrary code. The flaw is under active exploitation and affects appliances configured with SAML authentication.

**If you run your own Citrix NetScaler ADC or Gateway with SAML login turned on, upgrade right away to version 14.1-73.41 or 13.1-64.28 (or later). Do this even if you already patched in September. Attackers are actively exploiting this flaw. If you can't upgrade today, turn on Citrix's virtual-patch signatures and block the attacker address 213.209.159.55 as a stopgap. Then check your login logs for usernames that contain commands, since those mean someone has already tried to break in.**
#cybersecurity #infosec #attack #activeexploit
beyondmachines.net/event_detai

##

CVE-2026-63277(CVSS UNKNOWN)

EPSS: 0.14%

updated 2026-10-05T12:31:34

3 posts

LibreOffice Calc can link a cell range to an external data source, and the link is saved in the document. A document could name a Java database driver for such a link to be loaded from a remote location, so opening the document could run Java code from that location. In fixed versions an entry in a Java class path has to be a file URL.

1 repos

https://github.com/HORKimhab/CVE-2026-63277

beyondmachines1@infosec.exchange at 2026-10-07T10:01:49.000Z ##

LibreOffice and OpenOffice Patch Critical Remote Code Execution Vulnerabilities

LibreOffice and Apache OpenOffice patched several critical vulnerabilities, including a remote code execution flaw (CVE-2026-63277) that allows attackers to run malicious Java code via manipulated spreadsheet documents.

**If you use LibreOffice, update it to version 26.2.5 or 26.8.0 ASAP, and until you do, don't open documents from unknown senders or unexpected sources. If you use Apache OpenOffice, there's no fix yet, so turn off Java in the program's options now and install version 4.1.17 as soon as it's released. Or better yet, switch to the patched LibreOffice.**
#cybersecurity #infosec #advisory #vulnerability
beyondmachines.net/event_detai

##

raul@mastodon.in4matics.cat at 2026-10-06T14:59:21.000Z ##

⚠️ Obrir un full de càlcul i que s'executi codi sense cap avís de macro. Això és.

Afecta LibreOffice (CVE-2026-63277, arreglat a les 26.2.5/26.8.0) i Apache OpenOffice (CVE-2026-59265, encara sense pegat: desactiva Java). L'atac aprofita rangs de base de dades + JDBC per baixar un JAR maliciós. De moment només PoC, però funciona a Windows i Linux.

#ciberseguretat #LibreOffice #OpenOffice
blog.elhacker.net/2026/10/vuln

##

DailyCyberSecurity@infosec.exchange at 2026-10-06T02:52:38.000Z ##

PoC released for LibreOffice Calc vulnerability CVE-2026-63277, which runs code when a file opens. Five more flaws fixed. Upgrade to 26.2.5.

#LibreOffice #LibreOfficeCalc #CVE202663277 #CVE202663266 #PoC #RCE #OpenSource #Vulnerability

securityonline.info/libreoffic

##

CVE-2026-18397
(0 None)

EPSS: 0.34%

updated 2026-10-02T20:17:02.060000

2 posts

This vulnerability enables unauthenticated remote code execution (RCE) on a victim's machine by exploiting a combination of cryptographic weaknesses and memory management issues in the SConnect native host component. The attack leverages an unrestricted messaging interface between an attacker-controlled web page and the native host, allowing malicious input to bypass security checks.

security_crawler_carl@infosec.exchange at 2026-10-06T17:17:05.000Z ##

Reward: You've received a Commemorative Tin of "Should Have Patched in August" Hard Candies!

rescana.com/post/critical-cve-

#CyberSecurity #CVE202618397 #RemoteCodeExecution #ThaleSConnect #SWIFT #CriticalHit (3/3)

##

security_crawler_carl@infosec.exchange at 2026-10-06T17:17:05.000Z ##

🏆 New Achievement! Step Right Up and Get Your Bank Pwned!

LADIES AND GENTLEMEN, feast your eyes on the most astonishing spectacle in modern authentication horror! CVE-2026-18397, a CVSS 9.4 remote code execution flaw in the Thales SConnect browser extension, has been actively hurled at SWIFT banking networks and government identity portals via drive-by attacks — no ticket required, no click needed, just exist near a browser! (1/3)

##

CVE-2026-91135
(0 None)

EPSS: 0.46%

updated 2026-10-02T18:17:06.963000

1 posts

Heap-based buffer overflow vulnerability in Apache Thrift C++ THeaderTransport. When an application enables the ZLIB transform for the frames it sends, THeaderTransport::transform() copies the compressed frame into the write buffer without making sure it fits. Data that does not compress, such as content a remote peer supplied, grows under compression, so the copy writes past the end of the hea

CVE-2026-90970
(9.9 CRITICAL)

EPSS: 0.94%

updated 2026-10-02T15:31:37

1 posts

GitLab has remediated a vulnerability in the GitLab AI Gateway component affecting all versions of the AI Gateway from 18.1.6 before 19.2.4, 19.3 before 19.3.2, and 19.4 before 19.4.1 that, under certain conditions, could have allowed an authenticated user with Duo Agent Platform access to escape the prompt template sandbox via a specially crafted flow configuration, resulting in arbitrary command

1 repos

https://github.com/techupdate24/gitlab-ai-gateway-cve-2026-90970

hackmag@infosec.exchange at 2026-10-06T21:03:18.000Z ##

⚪️ Critical 9.9-Point Vulnerability Fixed in GitLab AI Gateway

🗨️ GitLab developers have released patches for a critical vulnerability, CVE-2026-90970, affecting AI Gateway. The flaw received a CVSS score of 9.9 and, under certain conditions, allows an authenticated attacker to execute arbitrary commands on the server. The issue affects only…

🔗 hackmag.com/news/ai-gateway-pa

#news

##

DailyCyberSecurity@infosec.exchange at 2026-10-07T13:04:10.000Z ##

eSentire tracks four clusters behind CVE-2026-88771 exploitation, planting NetScaler web shells and backdoor accounts. Learn how to detect them.

#CVE202688771 #CitrixNetScaler #WebShell #ZeroDay #Platypus #eSentire #EdgeSecurity #CyberSecurity

securityonline.info/cve-2026-8

##

AAKL@infosec.exchange at 2026-10-06T15:42:14.000Z ##

New.

eSentire: More Shells Than a Seafood Buffet: Tracking Citrix NetScaler Exploitation Activities (CVE-2026-88771) esentire.com/blog/more-shells- #infosec #ClickFix #NetScaler #threatresearch #Citrix

##

blog@insicurezzadigitale.com at 2026-10-06T13:11:27.000Z ##

PitScaler: tre zero-day NetScaler sfruttati in una settimana, due già prima della patch

Tra fine settembre e inizio ottobre 2026 Citrix corregge in emergenza tre zero-day critici su NetScaler ADC/Gateway (CVE-2026-88771, 88772, 88779), tutti sfruttati attivamente prima della divulgazione. Coinvolti i malware inediti WHIPSHOT e SLAPSHOT individuati da Mandiant/GTIG.

insicurezzadigitale.com/pitsca

##

CVE-2026-88772
(8.1 HIGH)

EPSS: 1.30%

updated 2026-09-28T12:32:09

1 posts

Vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway. This issue affects ADC: before 14.1-73.37, before 13.1-64.23, before 14.1-73.37 FIPS, and before 13.1.37.279 FIPS and NDcPP; Gateway: before 14.1-73.37 and before 13.1-64.23 leading to Remote Code Execution or Denial of Service

8 repos

https://github.com/emilstahl/pitscaler

https://github.com/securekomodo/citrixInspector

https://github.com/orjanj/netscaler_threat_hunt_helper

https://github.com/murrez/CVE-2026-88772

https://github.com/ThomasPoppelgaard/netscaler-ctx697096-checker

https://github.com/watchtowrlabs/watchTowr-vs-Citrix-Netscaler-CVE-2026-88772

https://github.com/FollowerSeize/CVE-2026-88772-POC

https://github.com/technion/netscaler_scanner

youranonnewsirc@nerdculture.de at 2026-10-06T22:26:24.000Z ##

Recent news highlights critical cybersecurity threats as Citrix NetScaler (CVE-2026-88772) and FortiMail (CVE-2026-104286) zero-days are under active exploitation, targeting critical infrastructure and government entities. Apple also patched an exploited CoreGraphics flaw. In geopolitical developments, the Mecca Defense Alliance agreed to immediately implement collective defense commitments. On the technology front, MediaTek showcased advancements in Wi-Fi 8 with its Filogic 8800.

#Cybersecurity #AnonNews_irc #News

##

CVE-2026-93485
(7.1 HIGH)

EPSS: 0.38%

updated 2026-09-18T06:32:17

1 posts

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Automattic WordPress core allows DOM-Based XSS. This issue affects WordPress versions 7.1 before 7.1.1; 7.0 through 7.0.4; 6.9 through 6.9.7; 6.8 through 6.8.8; 6.7 through 6.7.7; 6.6 through 6.6.7; 6.5 through 6.5.10; 6.4 through 6.4.10; 6.3 through 6.3.10; 6.2 through 6.2.11; 6.1 through 6.1.1

4 repos

https://github.com/HORKimhab/CVE-2026-93485

https://github.com/DeathShotXD/Comment2Shell

https://github.com/686f6c61/POC-WP-CORE-CVE-2026-93485

https://github.com/0xBlackash/CVE-2026-93485

sekurakbot@mastodon.com.pl at 2026-10-06T09:38:00.000Z ##

Podatność XSS w komentarzach WordPress mogła prowadzić do RCE

Badacz bezpieczeństwa Rafie Muhammad odkrył podatność XSS mogącą eskalować do RCE w systemie komentarzy WordPress. Dowolny nieuwierzytelniony użytkownik mógł dodać komentarz, który umieszczał na stronie ukryty skrypt. Jeśli stronę tę otworzył administrator zalogowany na swoim koncie, skrypt mógł wgrać złośliwą wtyczkę na serwer witryny. Podatność otrzymała numer CVE-2026-93485 i została...

#Aktualności #Podatność #Rce #Wordpress #XSS

sekurak.pl/podatnosc-xss-w-kom

##

CVE-2026-68508
(7.8 HIGH)

EPSS: 0.46%

updated 2026-08-21T20:57:32

1 posts

## Summary `hydra.utils.instantiate()` resolves and calls Python objects from config. If an application passes untrusted config to `instantiate()`, an attacker who controls `_target_` and its arguments can cause arbitrary code execution in the consuming process. Hydra is not a network service. Exploitation requires a consuming application, library, or user workflow to load attacker-controlled co

thehackerwire@mastodon.social at 2026-10-06T19:31:53.000Z ##

🟠 CVE-2026-106442 - High (7.8)

Hydra is a framework for elegantly configuring complex applications. From 1.3.4 until 1.3.6 and 1.4.0.dev9, the instantiate() target blacklist introduced for CVE-2026-68508 incompletely checks the effective callable selected by the target field. E...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-61500
(9.8 CRITICAL)

EPSS: 0.99%

updated 2026-07-13T18:31:00

4 posts

Rejetto HFS 3.0.0 through 3.2.0 derives its session-cookie signing key from the non-cryptographic Math.random() generator and discloses outputs of the same generator to unauthenticated clients during login. A remote attacker can collect a small number of login responses, reconstruct the generator's state, recover the signing key, and forge a valid administrator session cookie, leading to full admi

1 repos

https://github.com/aramosf/CVE-2026-61500

beyondmachines1@infosec.exchange at 2026-10-06T14:01:49.000Z ##

Vulnerability in Rejetto HFS Leads to Remote Code Execution, Actively Exploited

A critical authentication bypass is reported in Rejetto HFS (CVE-2026-61500) that allows remote code execution. Attackers are actively exploiting the flaw to forge administrator sessions and take control of servers.

**If you run Rejetto HTTP File Server (versions 3.0.0 to 3.2.0), update to version 3.2.1 or later right away. Attackers are already using this flaw to take full control of servers. Make sure to isolate the admin panel from internet access (use a VPN or firewall), and check your logs for unexpected admin logins or changes to the `server_code` setting, which would mean you may already be compromised.**
#cybersecurity #infosec #attack #activeexploit
beyondmachines.net/event_detai

##

DailyCyberSecurity@infosec.exchange at 2026-10-06T13:58:35.000Z ##

Discover how Anthropic's Mythos AI synthesized a remote code execution exploit for Rejetto HFS, exposing CVE-2026-61500 through mathematical state recovery.

#Anthropic #MythosAI #CVE202661500 #Cybersecurity #RejettoHFS

meterpreter.org/anthropic-myth

##

threatnoir@infosec.exchange at 2026-10-06T10:06:22.000Z ##

⚠️ CRITICAL: Attackers Target Rejetto HFS Flaw That Enables Admin Session Forgery and RCE

Rejetto HFS vulnerability CVE-2026-61500 allows attackers to forge admin sessions and execute code via weak session cookie signing. Active exploitation detected in October 2026 targeting US organizations, despite a patch released in July 2026. Any unpatched HFS instance is immediately compromised.

threatnoir.com/focus

#infosec #cybersecurity

🤖 AI generated summary

##

oversecurity@mastodon.social at 2026-10-05T20:40:09.000Z ##

Rejetto HFS servers now actively scanned for critical RCE flaw

Hackers are actively scanning for a Rejetto HFS weak signing key vulnerability, tracked as CVE-2026-61500, that allows session forgery, account...

🔗️ [Bleepingcomputer] link.is.it/CsBrJG

##

CVE-2025-54769
(8.8 HIGH)

EPSS: 3.33%

updated 2026-06-17T09:40:40.793000

1 posts

An authenticated, read-only user can upload a file and perform a directory traversal to have the uploaded file placed in a location of their choosing. This can be used to overwrite existing PERL modules within the application to achieve remote code execution (RCE) by an attacker.

2 repos

https://github.com/tunahantekeoglu/CVE-2025-54769

https://github.com/byteReaper77/CVE-2025-54769

DarkWebInformer@infosec.exchange at 2026-10-06T17:47:04.000Z ##

🚨 PoC released for an authenticated LPAR2RRD remote code execution vulnerability; CVE-2025-54769

PoC: github.com/tunahantekeoglu/CVE

The flaw allows an authenticated read-only user to abuse the LPAR2RRD upgrade functionality to upload a crafted file and achieve remote code execution through directory traversal.

CVSS: 8.8
Affected: LPAR2RRD ≤ 8.04
Fixed: LPAR2RRD ≥ 8.05

The PoC builds and uploads a minimal upgrade archive, then verifies successful code execution by retrieving the output of whoami.

##

CVE-2026-35273
(9.8 CRITICAL)

EPSS: 9.44%

updated 2026-06-12T18:31:50

4 posts

Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Updates Environment Management). Supported versions that are affected are 8.61 and 8.62. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise PeopleTools. Successful attacks of this vulnerability can result in takeover of Peopl

Nuclei template

4 repos

https://github.com/0xBlackash/CVE-2026-35273

https://github.com/HORKimhab/CVE-2026-35273

https://github.com/12hrformat/CVE-2026-35273-POC

https://github.com/ekomsSavior/POC_cve_2026_35273

sayzard@mastodon.sayzard.org at 2026-10-07T17:40:07.000Z ##

ShinyHunters Extorted Boeing Spin-Off Prior to Arrests

ShinyHunters 구성원으로 추정되는 인물이 요르단에서 구금되어 FBI 수사에 협조 중이며, 체포 직전 Boeing에서 분리된 Jeppesen ForeFlight에 대한 데이터 탈취·갈취를 진행했던 것으로 보도됐다. 이 그룹은 Oracle PeopleSoft의 CVE-2026-35273을 제로데이로 악용해 다수 조직에서 데이터를 탈취했으며, 패치가 어려운 환경을 위해 제시된 Mandiant WAF 규칙도 URL 인코딩 우회 기법으로 회피한 것으로 알려졌다. AI 서비스 개발 조직을 포함해 PeopleSoft를 운영...

krebsonsecurity.com/2026/10/sh

##

christopherkunz@chaos.social at 2026-10-06T11:45:54.000Z ##

Accenture, acting as a contractor for the FBI, allegedly failed to install updates for Oracle Peoplesoft after CVE-2026-35273 was published.

This was a "Missing Authentication for Critical Function" vulnerability and scored 9.8. If this didn't raise any flags, the CISA KEV listing should have. It was an n-day at release.

But no, interestingly enough the FBI is exempt from BOD 26-04 and wasn't even obliged to update?!

Man, if not even federal agencies fix their vulns, this is all pointless.

##

youranonnewsirc@nerdculture.de at 2026-10-06T10:25:39.000Z ##

Recent cybersecurity threats include Atlassian patching critical vulnerabilities (CVE-2026-21589) in Jira, Confluence, and Bitbucket enabling file access. The FBI removed an Accenture contractor after a ShinyHunters breach of employee data via an unpatched Oracle PeopleSoft flaw (CVE-2026-35273). In technology, OpenAI's GPT-6 Astra model demonstrated supply-chain attack behavior in simulations. Geopolitically, the Mecca Defense Alliance committed to collective defense measures on October 5, 2026.

#Cybersecurity #AnonNews_irc #News

##

guru@thecybersecguru.com at 2026-10-06T09:54:06.000Z ##

Inside the FBI ShinyHunters Breach: How an Unpatched PeopleSoft Flaw and WAF Bypass Exposed Thousands of Agents

The FBI ShinyHunters breach exposed employee data through an unpatched Oracle PeopleSoft flaw, CVE-2026-35273, and a WAF bypass. Here's how it happened

thecybersecguru.com/news/fbi-s

##

EUVD_Bot@mastodon.social at 2026-10-07T18:03:07.000Z ##

🚨 EUVD-2013-3832

📊 Score: 5.5/10 (CVSS v3.1)
📦 Product: Windows Server 2019 (Server Core installation), Windows Server 2012 R2, Windows Server 2016 (Server Core installation) (+24 more)
🏢 Vendor: Microsoft
📅 Published: 2013-12-11 | Updated: 2026-10-07

📝 Why is Microsoft republishing a CVE from 2013?
We are republishing CVE-2013-3900 in the Security Update Guide to...

🔗 euvd.enisa.europa.eu/vulnerabi

#cybersecurity #infosec #euvd #cve #vulnerability

##

CVE-2024-7971
(8.8 HIGH)

EPSS: 21.10%

updated 2025-10-22T00:34:11

1 posts

Type confusion in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

2 repos

https://github.com/pepoc3/cve-2024-7971-poc

https://github.com/mistymntncop/CVE-2024-7971

humancoders@mastodon.social at 2026-10-06T07:00:05.000Z ##

Un simple message Twitch a suffi à exécuter du code sur la machine d'un streamer : overlay affichant le chat en HTML brut, Chromium embarqué dans OBS sans sandbox, faille V8 déjà exploitée (CVE-2024-7971). ⬇️
news.humancoders.com/t/securit

##

CVE-2021-26085
(5.3 MEDIUM)

EPSS: 99.94%

updated 2025-10-22T00:33:23

1 posts

Affected versions of Atlassian Confluence Server allow remote attackers to view restricted resources via a Pre-Authorization Arbitrary File Read vulnerability in the /s/ endpoint. The affected versions are before version 7.4.10, and from version 7.5.0 before 7.12.3.

Nuclei template

2 repos

https://github.com/ColdFusionX/CVE-2021-26085

https://github.com/zeroc00I/CVE-2021-26085

ssvc@infosec.exchange at 2026-10-06T19:58:17.000Z ##

@watchTowr is a machine that turns funny blog posts about Secure By Design products into future CISA KEV Catalog additions. This time it's Atlassian pre-auth arbitrary file read CVE-2026-21589 (9.3 critical). Given that there's a similar "Atlassian Confluence Server Pre-Authorization Arbitrary File Read Vulnerability" (CVE-2021-26085) in CISA's KEV, I'd take patching this seriously before the threat actors find out.

labs.watchtowr.com/you-wont-he

#atlassian #confluence #CVE #jira #bamboo

##

CVE-2021-35394
(9.8 CRITICAL)

EPSS: 99.88%

updated 2025-10-22T00:33:23

1 posts

Realtek Jungle SDK version v2.x up to v3.4.14B provides a diagnostic tool called 'MP Daemon' that is usually compiled as 'UDPServer' binary. The binary is affected by multiple memory corruption vulnerabilities and an arbitrary command injection vulnerability that can be exploited by remote unauthenticated attackers.

Nuclei template

threatnoir@infosec.exchange at 2026-10-06T10:06:19.000Z ##

⚠️ CRITICAL: Realtek Jungle SDK Exploit Attempts Deliver Cling Botnet With STUN-Based C2

Threat actors are actively exploiting CVE-2021-35394 in Realtek Jungle SDK to deploy the Cling botnet, which uses STUN protocol traffic to hide C2 communications as legitimate NAT traversal. Affected devices include routers and DVRs running vulnerable Realtek firmware. The malware achieves persiste…

threatnoir.com/focus

#infosec #cybersecurity

🤖 AI generated summary

##

CVE-2026-107212
(0 None)

EPSS: 0.00%

2 posts

N/A

thehackerwire@mastodon.social at 2026-10-07T19:00:55.000Z ##

🟠 CVE-2026-107212 - High (7.5)

Excelize is a Go language library for reading and writing Microsoft Excel spreadsheets. From 2.1.0 to 2.11.0, Rows.Columns accepts a look-ahead row number above TotalRows without applying the limit enforced by Rows.Next. File.GetRows relies on Row...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-10-07T19:00:55.000Z ##

🟠 CVE-2026-107212 - High (7.5)

Excelize is a Go language library for reading and writing Microsoft Excel spreadsheets. From 2.1.0 to 2.11.0, Rows.Columns accepts a look-ahead row number above TotalRows without applying the limit enforced by Rows.Next. File.GetRows relies on Row...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-107216
(0 None)

EPSS: 0.00%

2 posts

N/A

thehackerwire@mastodon.social at 2026-10-07T19:00:45.000Z ##

🟠 CVE-2026-107216 - High (7.5)

Excelize is a Go language library for reading and writing Microsoft Excel spreadsheets. From 2.8.1 to 2.11.0, ANCHORARRAY recursively calls the exported CalcCellValue function, creating a fresh calculation context at each cycle and bypassing in-fl...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-10-07T19:00:45.000Z ##

🟠 CVE-2026-107216 - High (7.5)

Excelize is a Go language library for reading and writing Microsoft Excel spreadsheets. From 2.8.1 to 2.11.0, ANCHORARRAY recursively calls the exported CalcCellValue function, creating a fresh calculation context at each cycle and bypassing in-fl...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-59816
(0 None)

EPSS: 0.36%

1 posts

N/A

hugovalters@mastodon.social at 2026-10-07T18:40:02.000Z ##

CVE-2026-59816 Joplin Server path traversal (CVSS 4.3) lets authenticated users escape the transcription path via crafted job IDs when TRANSCRIBE_ENABLED=true. Fix in 3.7.7 pending review. Track it at valtersit.com/cve/CVE-2026-598 #CVE #infosec #Joplin

##

CVE-2026-107215
(0 None)

EPSS: 0.00%

2 posts

N/A

thehackerwire@mastodon.social at 2026-10-07T18:31:02.000Z ##

🟠 CVE-2026-107215 - High (7.5)

Excelize is a Go language library for reading and writing Microsoft Excel spreadsheets. From 2.3.1 to 2.11.0, extractPart allocates a byte slice directly from an attacker-controlled CFB directory-entry size before validating the sector chain or si...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-10-07T18:31:02.000Z ##

🟠 CVE-2026-107215 - High (7.5)

Excelize is a Go language library for reading and writing Microsoft Excel spreadsheets. From 2.3.1 to 2.11.0, extractPart allocates a byte slice directly from an attacker-controlled CFB directory-entry size before validating the sector chain or si...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-107214
(0 None)

EPSS: 0.00%

2 posts

N/A

thehackerwire@mastodon.social at 2026-10-07T18:30:53.000Z ##

🟠 CVE-2026-107214 - High (7.5)

Excelize is a Go language library for reading and writing Microsoft Excel spreadsheets. From 2.3.1 to 2.11.0, the decryption dispatch performs insufficient structural and parameter validation before standard and agile decryptors slice, index, allo...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-10-07T18:30:53.000Z ##

🟠 CVE-2026-107214 - High (7.5)

Excelize is a Go language library for reading and writing Microsoft Excel spreadsheets. From 2.3.1 to 2.11.0, the decryption dispatch performs insufficient structural and parameter validation before standard and agile decryptors slice, index, allo...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-61748
(0 None)

EPSS: 0.42%

1 posts

N/A

hugovalters@mastodon.social at 2026-10-07T17:10:03.000Z ##

CVE-2026-61748 InvenTree: missing permission checks in report/label print endpoints leak business data to any authenticated user. CVSS 4.3. Patch under review, restrict access now. valtersit.com/cve/CVE-2026-617 #CVE #infosec #cybersecurity

##

CVE-2026-77459
(0 None)

EPSS: 0.00%

2 posts

N/A

DailyCyberSecurity at 2026-10-07T16:59:42.560Z ##

Four critical Argo CD vulnerabilities, including AppProject bypass CVE-2026-77459, threaten the repo-server and clusters. Upgrade to v3.5.4 now.

securityonline.info/argo-cd-vu

##

DailyCyberSecurity@infosec.exchange at 2026-10-07T16:59:42.000Z ##

Four critical Argo CD vulnerabilities, including AppProject bypass CVE-2026-77459, threaten the repo-server and clusters. Upgrade to v3.5.4 now.

#ArgoCD #Kubernetes #GitOps #CVE202677459 #Kustomize #Jsonnet #DevSecOps #Vulnerability

securityonline.info/argo-cd-vu

##

CVE-2026-103059
(0 None)

EPSS: 0.16%

1 posts

N/A

CVE-2026-103416
(0 None)

EPSS: 0.21%

1 posts

N/A

offseq@infosec.exchange at 2026-10-07T10:30:28.000Z ##

CVE-2026-103416: CRITICAL out-of-bounds write in Eclipse ThreadX NetX Duo (≤6.5.1.202602). Exploitable pre-cert auth; risk of code execution or DoS. Patch not released — check vendor updates. radar.offseq.com/threat/cve-20 #OffSeq #CVE2026103416 #infosec #vuln

##

CVE-2026-106445
(0 None)

EPSS: 0.41%

1 posts

N/A

CVE-2026-106446
(0 None)

EPSS: 0.64%

1 posts

N/A

CVE-2026-105797
(0 None)

EPSS: 0.56%

1 posts

N/A

thehackerwire@mastodon.social at 2026-10-06T20:16:13.000Z ##

🟠 CVE-2026-105797 - High (8.8)

SimpleChat is a secure AI conversation application with personal and group workspaces for document-grounded interactions. In versions 0.261.003 and 0.261.027, an authorization ordering flaw in POST /api/user/plugins allows an authenticated low-pri...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-61744
(0 None)

EPSS: 0.51%

1 posts

N/A

hugovalters@mastodon.social at 2026-10-06T19:10:03.000Z ##

CVE-2026-61744 InvenTree: authenticated barcode API lets attackers read arbitrary model records via crafted JSON, exposing full serializer output. CVSS 6.5. Patch still under review, so restrict API access now. valtersit.com/cve/CVE-2026-617 #CVE #infosec #InvenTree

##

CVE-2026-106113
(0 None)

EPSS: 0.35%

1 posts

N/A

thehackerwire@mastodon.social at 2026-10-06T18:32:50.000Z ##

🟠 CVE-2026-106113 - High (7.5)

ImageSharp is a 2D graphics library. From 2.0.0 until 4.1.2, decoding an attacker-supplied 32-bit floating-point TIFF as Image and applying HistogramEqualization can produce a non-finite or out-of-range luminance in ColorNumerics.GetBT709Luminance...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-106112
(0 None)

EPSS: 0.35%

1 posts

N/A

thehackerwire@mastodon.social at 2026-10-06T18:32:41.000Z ##

🟠 CVE-2026-106112 - High (7.5)

ImageSharp is a 2D graphics library. From 4.0.0 until 4.1.2, ICC LUT16 conversion accepts more than four output channels even though ClutCalculator.Calculate and LutEntryCalculator.CalculateLut store intermediate and output values in Vector4. When...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-106115
(0 None)

EPSS: 0.35%

1 posts

N/A

thehackerwire@mastodon.social at 2026-10-06T18:30:22.000Z ##

🟠 CVE-2026-106115 - High (7.5)

ImageSharp is a 2D graphics library. From 2.1.0 until 4.1.2, the TIFF CCITT Group 4 encoder allocates Width times rowsPerStrip bytes even though T6BitCompressor.CompressStrip can emit encoded row data and two 12-bit end-of-facsimile-block codes be...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-105859
(0 None)

EPSS: 0.35%

1 posts

N/A

thehackerwire@mastodon.social at 2026-10-06T18:16:55.000Z ##

🔴 CVE-2026-105859 - Critical (9.8)

Payload is a free and open source headless content management system. In versions before 3.90.0 and canary versions before 4.0.0-canary.34, an attacker can submit a request to a specific update endpoint that modifies collection documents without e...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-105858
(0 None)

EPSS: 0.48%

1 posts

N/A

thehackerwire@mastodon.social at 2026-10-06T17:31:01.000Z ##

🟠 CVE-2026-105858 - High (8.1)

Payload is a free and open source headless content management system. In versions before 3.90.0 and canary versions before 4.0.0-canary.34, a crafted request to the public first-register operation can execute code remotely when local authenticatio...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-105857
(0 None)

EPSS: 0.43%

1 posts

N/A

thehackerwire@mastodon.social at 2026-10-06T17:30:51.000Z ##

🔴 CVE-2026-105857 - Critical (10)

Payload is a free and open source headless content management system. In @payloadcms/plugin-form-builder versions before 3.90.0 and canary versions before 4.0.0-canary.34, an attacker can craft a form submission that executes code remotely on the ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-105865
(0 None)

EPSS: 0.37%

1 posts

N/A

thehackerwire@mastodon.social at 2026-10-06T17:30:43.000Z ##

🟠 CVE-2026-105865 - High (8.1)

Payload is a free and open source headless content management system. In versions before 3.90.0 and canary versions before 4.0.0-canary.34, an authenticated user who can update or delete uploads stored locally can cause file cleanup to remove unin...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-100754
(0 None)

EPSS: 0.00%

1 posts

N/A

CVE-2026-105763
(0 None)

EPSS: 0.28%

2 posts

N/A

DailyCyberSecurity@infosec.exchange at 2026-10-06T01:57:52.000Z ##

Twenty CRM vulnerability CVE-2026-105763 (CVSS 9.6) enables plaintext password disclosure of IMAP and SMTP accounts. Upgrade to 2.7.0.

#TwentyCRM #CRM #CVE2026105763 #GraphQL #CredentialLeak #OpenSource #EmailSecurity #Vulnerability

securityonline.info/twenty-crm

##

offseq@infosec.exchange at 2026-10-06T00:00:38.000Z ##

CVE-2026-105763 (CRITICAL): twentyhq twenty CRM v1.20.10 – 2.7.0 exposes plaintext IMAP/SMTP/CalDAV creds to any workspace user via GraphQL. Upgrade to 2.7.0 to prevent mail/calendar compromise. radar.offseq.com/threat/cve-20 #OffSeq #Vuln #CRM #twentyhq

##

CVE-2026-105637
(0 None)

EPSS: 0.32%

1 posts

N/A

thehackerwire@mastodon.social at 2026-10-05T22:46:25.000Z ##

🔴 CVE-2026-105637 - Critical (9.6)

Plane is an open-source project management tool. Prior to 1.4.0, ProjectBulkAssetEndpoint.post in apps/api/plane/app/views/asset/v2.py retrieves assets using id__in=asset_ids and workspace__slug=slug but does not constrain the query with project_i...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-105744
(0 None)

EPSS: 0.30%

1 posts

N/A

thehackerwire@mastodon.social at 2026-10-05T22:45:51.000Z ##

🟠 CVE-2026-105744 - High (7.5)

Docling simplifies document processing by parsing diverse formats and providing integrations with the generative AI ecosystem. From 2.94.0 until 2.132.0, callers that opt into LatexBackendOptions(tikz_engine="tectonic") invoke docling/backend/late...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-105740
(0 None)

EPSS: 0.59%

1 posts

N/A

thehackerwire@mastodon.social at 2026-10-05T21:31:24.000Z ##

🔴 CVE-2026-105740 - Critical (9.9)

Langflow is a tool for building and deploying AI-powered agents and workflows. Prior to 1.9.0, any authenticated Langflow user can achieve Remote Code Execution (RCE) on the server by adding an MCP server with the "Stdio" transport. The user-suppl...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-105697
(0 None)

EPSS: 0.40%

1 posts

N/A

thehackerwire@mastodon.social at 2026-10-05T21:31:14.000Z ##

🔴 CVE-2026-105697 - Critical (9.9)

Langflow is a tool for building and deploying AI-powered agents and workflows. Before Langflow 1.10.3, the MCP stdio transport launched whatever command / args a user put in an MCP server configuration, with no allowlist and (before 1.10.3) wrappe...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-105650
(0 None)

EPSS: 0.33%

1 posts

N/A

thehackerwire@mastodon.social at 2026-10-05T20:34:47.000Z ##

🟠 CVE-2026-105650 - High (8.1)

Ghost is a Node.js content management system. From 2.1.0 until 6.64.0, embedding a URL from an attacker-controlled website could result in untrusted scripts being stored in post content. These scripts could run in the Ghost editor, on the publishe...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-105675
(0 None)

EPSS: 0.39%

1 posts

N/A

thehackerwire@mastodon.social at 2026-10-05T20:34:38.000Z ##

🟠 CVE-2026-105675 - High (7.5)

Ghost is a Node.js content management system. From 4.39.0 until 6.64.0, staff users with permission to view staff invites were able to discover the secret token of pending invites, including invites for roles with higher privileges than their own....

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-105634
(0 None)

EPSS: 0.29%

1 posts

N/A

thehackerwire@mastodon.social at 2026-10-05T20:17:25.000Z ##

🟠 CVE-2026-105634 - High (8.1)

Plane is an open-source project management tool. Prior to 1.3.0, the ProjectMemberViewSet.partial_update method allows any project member, including a user with the lowest GUEST role, to modify another project member's role. The authorization chec...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

Visit counter For Websites