##
Updated at UTC 2026-08-20T19:25:55.042072
| CVE | CVSS | EPSS | Posts | Repos | Nuclei | Updated | Description |
|---|---|---|---|---|---|---|---|
| CVE-2026-75140 | 7.5 | 0.00% | 2 | 0 | 2026-08-20T18:30:58 | jsoup through 1.23.2, fixed in commit 862ba2f, contains an uncontrolled resource | |
| CVE-2026-76956 | 7.5 | 0.26% | 1 | 0 | 2026-08-20T18:30:48 | In libexpat 2.8.2 and 2.8.3 before 2.8.4, misinterpretation of getentropy's retu | |
| CVE-2026-60721 | 9.8 | 0.49% | 1 | 0 | 2026-08-20T18:30:36 | Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middleware | |
| CVE-2026-72530 | 9.0 | 0.34% | 4 | 0 | 2026-08-20T18:16:44.963000 | A remote unauthorized attacker with network access via port 4307/TCP to the True | |
| CVE-2026-72529 | 9.8 | 0.28% | 2 | 0 | 2026-08-20T18:16:44.813000 | A remote unauthorized attacker with network access via port 4307/TCP to the True | |
| CVE-2026-77176 | 8.1 | 0.00% | 2 | 0 | 2026-08-20T17:19:49.773000 | A flaw was found in Kata Containers. In configurations utilizing genpolicy for C | |
| CVE-2026-77022 | 9.9 | 0.00% | 2 | 0 | 2026-08-20T17:19:49.413000 | A security flaw has been discovered in Comfast CF-N1-S 2.6.0.1. Affected by this | |
| CVE-2026-71428 | 9.3 | 0.00% | 2 | 0 | 2026-08-20T17:19:40.773000 | The unstructured library provides open-source components for ingesting and pre-p | |
| CVE-2026-66792 | 9.9 | 0.30% | 2 | 0 | 2026-08-20T17:19:29.693000 | A flaw was found in the multicloud-operators-subscription component. This vulner | |
| CVE-2026-63038 | 0 | 0.00% | 2 | 0 | 2026-08-20T17:19:14.390000 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injecti | |
| CVE-2026-76879 | 7.5 | 0.28% | 2 | 0 | 2026-08-20T16:18:21.780000 | C12.22 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows den | |
| CVE-2026-76832 | 8.8 | 0.84% | 2 | 0 | 2026-08-20T16:18:20.903000 | Agno's PythonTools in libs/agno/agno/tools/python.py contains a path traversal v | |
| CVE-2026-76234 | 7.5 | 0.22% | 2 | 0 | 2026-08-20T16:18:10.510000 | libcrux-ecdh and libcrux-ed25519 before 0.0.6, and libcrux-psq before 0.0.7, con | |
| CVE-2026-75144 | 7.8 | 0.14% | 2 | 0 | 2026-08-20T16:18:02.593000 | FFmpeg before commit 1cdeb3c contains a heap buffer overflow vulnerability in th | |
| CVE-2026-75141 | 7.8 | 0.14% | 2 | 0 | 2026-08-20T16:18:02.173000 | FFmpeg before commit acf5d7c contains a heap buffer overflow in the hvcC box wri | |
| CVE-2026-61518 | 8.8 | 0.31% | 2 | 0 | 2026-08-20T16:17:28.090000 | ISPConfig contains an authenticated SQL injection vulnerability in the Remote AP | |
| CVE-2026-14952 | 7.5 | 0.49% | 2 | 0 | 2026-08-20T16:17:07.333000 | An unauthenticated remote attacker can retrieve sensible files from the FDS Web | |
| CVE-2026-16885 | 9.8 | 0.80% | 2 | 0 | 2026-08-20T15:55:41.820000 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to e | |
| CVE-2026-76633 | 8.1 | 0.00% | 2 | 0 | 2026-08-20T15:34:26 | WeGIA before 3.9.2 contains an authorization bypass vulnerability in the passwor | |
| CVE-2026-76833 | 7.8 | 0.00% | 2 | 0 | 2026-08-20T15:34:26 | @cgauge/yaml npm package contains an arbitrary code execution vulnerability that | |
| CVE-2026-61897 | 7.8 | 0.00% | 2 | 0 | 2026-08-20T15:34:20 | An Ubuntu-specific patch to AccountsService before 23.13.9-8ubuntu7 only partial | |
| CVE-2026-28164 | 9.6 | 0.00% | 2 | 0 | 2026-08-20T15:34:20 | Cross-Site Request Forgery (CSRF) vulnerability in HashThemes Easy Elementor Add | |
| CVE-2026-76886 | 8.1 | 0.27% | 2 | 0 | 2026-08-20T15:34:14 | C12.22 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows den | |
| CVE-2026-60728 | 9.1 | 0.47% | 1 | 0 | 2026-08-20T15:18:06.280000 | Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware | |
| CVE-2026-60730 | 9.9 | 0.39% | 1 | 0 | 2026-08-20T15:17:54.660000 | Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware | |
| CVE-2026-76251 | 7.1 | 0.21% | 1 | 0 | 2026-08-20T14:56:21.550000 | In Splunk Enterprise versions below 10.4.2, 10.2.6, and 10.0.9, a user who does | |
| CVE-2026-19490 | 0 | 0.34% | 6 | 0 | 2026-08-20T14:17:10.673000 | Vulnerability in NetScaler ADC and NetScaler Gateway. This issue affects ADC: f | |
| CVE-2026-66794 | 9.3 | 0.32% | 3 | 0 | 2026-08-20T13:08:53.900000 | A flaw was found in the `cluster-proxy-addon` component of Multicluster Engine f | |
| CVE-2026-73197 | 7.5 | 0.00% | 2 | 0 | 2026-08-20T13:08:53.900000 | A flaw was found in FreeIPA. A remote, unauthenticated attacker can exploit this | |
| CVE-2026-70496 | 9.9 | 0.26% | 4 | 0 | 2026-08-20T13:08:53.900000 | A flaw was found in search-v2-operator. The operator's ClusterRole has permissio | |
| CVE-2026-73925 | 8.2 | 0.23% | 2 | 0 | 2026-08-20T13:08:14.613000 | Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imp | |
| CVE-2026-47630 | 5.5 | 0.14% | 1 | 0 | 2026-08-20T13:06:05.500000 | NVIDIA Triton Inference Server for Linux contains a vulnerability where an attac | |
| CVE-2026-67271 | 9.8 | 0.46% | 2 | 0 | 2026-08-20T13:02:12.153000 | Dell PowerStore SDNAS, contains an Out-of-bounds Write vulnerability in the SMB/ | |
| CVE-2026-20320 | 7.5 | 0.35% | 2 | 0 | 2026-08-20T13:01:19.947000 | A vulnerability in the Open Client Interface (OCI) XML Parser of Cisco BroadWork | |
| CVE-2026-20315 | 10.0 | 0.32% | 2 | 0 | 2026-08-20T13:01:19.947000 | As part of Cisco's ongoing commitment to proactive security and product quality, | |
| CVE-2026-66602 | 8.8 | 0.15% | 2 | 0 | 2026-08-20T12:49:04.990000 | Cross-Site Request Forgery (CSRF) vulnerability in DevItems HashBar โ WordPress | |
| CVE-2026-76004 | 9.9 | 0.44% | 4 | 0 | 2026-08-20T12:48:31.843000 | A security vulnerability has been detected in UTT HiPER 1250GW up to 3.2.7-21090 | |
| CVE-2026-75976 | 9.9 | 0.63% | 4 | 0 | 2026-08-20T12:48:31.843000 | A weakness has been identified in TRENDnet TEW-823DRU 1.1.02b01. Impacted is the | |
| CVE-2026-75877 | 9.9 | 0.61% | 2 | 0 | 2026-08-20T12:48:31.843000 | A flaw has been found in TRENDnet TV-IP751WIC 11.03.03. This vulnerability affec | |
| CVE-2026-15748 | 9.8 | 3.45% | 10 | 3 | 2026-08-20T12:48:10.287000 | The Forminator Forms plugin for WordPress is vulnerable to Arbitrary File Upload | |
| CVE-2026-76589 | 9.9 | 0.61% | 4 | 0 | 2026-08-20T12:48:10.287000 | A vulnerability was found in TRENDnet TEW-755AP up to 20260702. Affected is the | |
| CVE-2026-76590 | 9.9 | 0.61% | 4 | 0 | 2026-08-20T12:48:10.287000 | A vulnerability was identified in TRENDnet TEW-755AP up to 20260702. Affected by | |
| CVE-2026-15826 | 9.8 | 2.48% | 2 | 1 | 2026-08-20T12:48:10.287000 | The User Profile Builder plugin for WordPress is vulnerable to Authentication By | |
| CVE-2026-73198 | 7.5 | 0.00% | 2 | 0 | 2026-08-20T12:31:29 | A flaw was found in FreeIPA. A remote, unauthenticated attacker can exploit a vu | |
| CVE-2026-13097 | 9.1 | 0.00% | 2 | 0 | 2026-08-20T12:31:22 | A privilege escalation flaw was found in FreeIPA. The uniqueness constraint enfo | |
| CVE-2026-75860 | 9.8 | 0.34% | 2 | 0 | 2026-08-20T12:31:22 | The JSON Options WordPress plugin through 0.0.4 does not have any capability che | |
| CVE-2026-14950 | 9.8 | 0.55% | 6 | 0 | 2026-08-20T09:31:23 | An unauthenticated remote attacker in possession of a valid session identifier i | |
| CVE-2026-14949 | 6.5 | 0.26% | 2 | 0 | 2026-08-20T09:31:23 | A low privileged remote attacker with a valid session can submit a request to th | |
| CVE-2026-14948 | 8.8 | 0.39% | 2 | 0 | 2026-08-20T09:31:23 | A low privileged remote attacker can hijack an active administrative session wit | |
| CVE-2026-14953 | 4.3 | 0.20% | 2 | 0 | 2026-08-20T09:31:23 | A low-privileged remote attacker can enumerate all configured users and identify | |
| CVE-2026-14951 | 8.0 | 0.16% | 2 | 0 | 2026-08-20T09:31:23 | An low privileged remote attacker can cause authenticated users to perform unint | |
| CVE-2026-14947 | 7.2 | 0.94% | 2 | 0 | 2026-08-20T09:31:23 | A high-privileged remote attacker can upload malicious ZIP archive containing di | |
| CVE-2026-14946 | 7.2 | 0.52% | 2 | 0 | 2026-08-20T09:16:45.813000 | A high privileged remote attacker can upload a .php file and then request it dir | |
| CVE-2026-64849 | 9.3 | 8.15% | 13 | 3 | template | 2026-08-20T04:16:56.280000 | MLflow is an open source AI engineering platform for agents, large language mode |
| CVE-2026-76928 | 7.5 | 0.28% | 2 | 0 | 2026-08-20T00:35:18 | X.509IF protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows de | |
| CVE-2026-76760 | 7.3 | 0.33% | 1 | 0 | 2026-08-20T00:35:17 | A vulnerability was found in chenhg5 cc-connect up to 1.4.1. Affected by this vu | |
| CVE-2026-76850 | 9.8 | 0.98% | 4 | 0 | 2026-08-20T00:35:17 | LMDeploy deserializes disaggregated-serving peer messages with pickle. The handl | |
| CVE-2026-76880 | 7.5 | 0.28% | 2 | 0 | 2026-08-20T00:35:17 | RRC protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial | |
| CVE-2026-76395 | 8.8 | 0.47% | 3 | 0 | 2026-08-20T00:35:11 | In Splunk AI Toolkit versions below 6.0.0, a user who holds the "power" Splunk r | |
| CVE-2026-76399 | 8.1 | 0.25% | 2 | 0 | 2026-08-20T00:35:11 | In Splunk AI Toolkit versions below 6.0.1, a user who holds the "power" Splunk r | |
| CVE-2026-76397 | 8.1 | 0.25% | 2 | 0 | 2026-08-20T00:35:11 | In Splunk AI Toolkit versions below 6.0.0, a user who holds the "power" Splunk r | |
| CVE-2026-76396 | 7.5 | 0.24% | 2 | 0 | 2026-08-20T00:35:11 | In Splunk AI Toolkit versions below 6.0.0, a user that holds a role with the sch | |
| CVE-2026-76404 | 9.1 | 0.56% | 7 | 0 | 2026-08-20T00:35:08 | In Splunk MCP Server app versions below 1.2.1, a user who holds the "admin" Splu | |
| CVE-2026-76325 | 7.3 | 0.25% | 1 | 0 | 2026-08-20T00:35:02 | In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, a user w | |
| CVE-2026-76333 | 7.1 | 0.25% | 1 | 0 | 2026-08-20T00:35:02 | In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, a user w | |
| CVE-2026-76262 | 7.5 | 0.37% | 1 | 0 | 2026-08-20T00:35:02 | In Splunk Enterprise 10.4 versions below 10.4.2, an unauthenticated user could r | |
| CVE-2026-76310 | 9.4 | 0.37% | 2 | 0 | 2026-08-20T00:34:56 | In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, an unaut | |
| CVE-2026-20030 | 10.0 | 0.45% | 2 | 0 | 2026-08-19T21:31:32 | As part of Cisco's ongoing commitment to proactive security and product quality, | |
| CVE-2026-76583 | 7.4 | 1.07% | 1 | 0 | 2026-08-19T21:30:47 | A vulnerability was identified in TRENDnet TV-IP751WIC 11.03.03. Affected by thi | |
| CVE-2026-75569 | 7.7 | 0.29% | 2 | 0 | 2026-08-19T21:30:46 | A flaw was found in mce-operator-bundle. The build process fetches and executes | |
| CVE-2026-76139 | 8.0 | 0.33% | 2 | 0 | 2026-08-19T21:30:46 | A flaw was found in acm-operator-bundle. The build process for this component do | |
| CVE-2026-76584 | 9.9 | 0.49% | 2 | 0 | 2026-08-19T21:30:40 | A security flaw has been discovered in TRENDnet TV-IP751WIC 11.03.03. Affected b | |
| CVE-2026-18848 | 8.3 | 0.10% | 2 | 0 | 2026-08-19T21:30:32 | IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 thr | |
| CVE-2026-20317 | 10.0 | 0.34% | 2 | 0 | 2026-08-19T21:30:29 | As part of Cisco's ongoing commitment to proactive security and product quality, | |
| CVE-2026-68900 | 7.6 | 0.25% | 2 | 0 | 2026-08-19T20:17:21.727000 | Wekan is open source kanban built with Meteor. From 8.72 until 10.23, addBoardHT | |
| CVE-2026-52877 | 8.3 | 0.30% | 2 | 0 | 2026-08-19T19:17:19.177000 | Streambert is a cross-platform Electron Desktop App to stream and download video | |
| CVE-2026-50191 | 8.8 | 0.33% | 2 | 0 | 2026-08-19T19:17:18.273000 | 4gaBoards is a boards system for realtime project management. Prior to 3.3.8, 4g | |
| CVE-2026-75149 | 8.8 | 0.64% | 2 | 0 | 2026-08-19T18:33:02 | marimo before 0.23.15 contains a code injection vulnerability in the notebook co | |
| CVE-2026-32475 | 9.0 | 0.42% | 8 | 0 | 2026-08-19T18:32:57 | Unrestricted Upload of File with Dangerous Type vulnerability in Elementor Eleme | |
| CVE-2026-75143 | 9.8 | 0.40% | 2 | 0 | 2026-08-19T18:32:57 | FFmpeg before commit 1c10bcc contains a heap buffer overflow in the RIST protoco | |
| CVE-2026-75142 | 7.8 | 0.14% | 2 | 0 | 2026-08-19T18:32:57 | FFmpeg before commit 9d786e4 contains a stack buffer overflow in the MPEG-PS mux | |
| CVE-2026-75146 | 8.1 | 0.26% | 2 | 0 | 2026-08-19T18:32:57 | FFmpeg before commit 65b0dab contains an out-of-bounds read in the DASH demuxer | |
| CVE-2026-60727 | 9.8 | 0.45% | 1 | 0 | 2026-08-19T18:32:35 | Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middleware | |
| CVE-2026-60702 | 9.9 | 0.42% | 2 | 0 | 2026-08-19T18:32:34 | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware | |
| CVE-2026-69414 | 7.8 | 0.23% | 1 | 2 | 2026-08-19T18:32:28 | Microsoft is aware of an elevation of privilege in the Microsoft Malware Protect | |
| CVE-2026-53958 | 7.6 | 0.28% | 2 | 0 | 2026-08-19T17:19:23.613000 | 4gaBoards is a boards system for realtime project management. Prior to 3.3.9, 4g | |
| CVE-2026-18051 | 10.0 | 0.43% | 2 | 0 | 2026-08-19T17:18:36.337000 | The W3 Total Cache WordPress plugin before 2.10.5 does not properly validate the | |
| CVE-2026-70408 | 8.8 | 0.33% | 2 | 0 | 2026-08-19T16:18:58.590000 | An incorrect authorization vulnerability exists in acmailer, which may allow a u | |
| CVE-2026-73924 | 9.1 | 0.29% | 2 | 0 | 2026-08-19T15:33:23 | Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imp | |
| CVE-2026-73921 | 9.8 | 0.33% | 2 | 0 | 2026-08-19T15:33:23 | Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imp | |
| CVE-2026-73938 | 7.5 | 0.38% | 2 | 0 | 2026-08-19T15:33:23 | Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imp | |
| CVE-2026-71176 | 8.8 | 0.30% | 2 | 0 | 2026-08-19T15:32:47 | Dell OpenManage Enterprise, versions prior to 4.7.0, contains an Improper Neutra | |
| CVE-2026-71961 | 8.8 | 3.34% | 2 | 0 | 2026-08-19T15:32:47 | Cudy WR3000 2.0 running firmware before 2.5.24 contains an OS command injection | |
| CVE-2026-58562 | 7.3 | 0.09% | 1 | 0 | 2026-08-19T15:32:46 | Dell Command Update (DCU), versions prior to 5.7.1, contain a Missing Authorizat | |
| CVE-2026-76219 | 8.1 | 0.28% | 1 | 0 | 2026-08-19T15:32:38 | GitPython versions before 3.1.58 contain an arbitrary file overwrite vulnerabili | |
| CVE-2026-73390 | 9.8 | 0.27% | 1 | 0 | 2026-08-19T15:32:33 | Unauthenticated Privilege Escalation in Total Donations <= 2.0.5 versions. | |
| CVE-2026-67364 | None | 0.29% | 2 | 0 | 2026-08-19T15:32:24 | Joomla Extension - balbooa.com - Pre-auth PHP Code Injection in Balbooa Forms < | |
| CVE-2026-73937 | 8.2 | 0.38% | 2 | 0 | 2026-08-19T15:32:20 | Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imp | |
| CVE-2026-73935 | 7.5 | 0.30% | 2 | 0 | 2026-08-19T15:32:20 | Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imp | |
| CVE-2026-73934 | 7.5 | 0.30% | 2 | 0 | 2026-08-19T15:32:20 | Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imp | |
| CVE-2026-73939 | 8.6 | 0.32% | 2 | 0 | 2026-08-19T15:32:20 | Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imp | |
| CVE-2026-73922 | 9.1 | 0.29% | 2 | 0 | 2026-08-19T15:32:19 | Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imp | |
| CVE-2026-73936 | 7.5 | 0.41% | 2 | 0 | 2026-08-19T15:32:19 | Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imp | |
| CVE-2026-73931 | 8.3 | 0.23% | 2 | 0 | 2026-08-19T15:32:19 | Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imp | |
| CVE-2026-73930 | 9.9 | 0.36% | 2 | 0 | 2026-08-19T15:32:19 | Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imp | |
| CVE-2026-60392 | 7.8 | 0.29% | 1 | 0 | 2026-08-19T15:32:05 | Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middl | |
| CVE-2026-15780 | 7.2 | 0.39% | 1 | 0 | 2026-08-19T09:31:30 | The WP Statistics โ Simple, privacy-friendly Google Analytics alternative plugin | |
| CVE-2026-76050 | 7.3 | 0.33% | 1 | 0 | 2026-08-19T06:31:24 | A vulnerability was found in SourceCodester Simple Online Food Ordering System 1 | |
| CVE-2026-76049 | 7.3 | 0.33% | 1 | 0 | 2026-08-19T06:31:24 | A vulnerability has been found in SourceCodester Simple Online Food Ordering Sys | |
| CVE-2026-19942 | 8.1 | 0.69% | 2 | 0 | 2026-08-19T06:31:24 | The Atarim โ AI Agency for WordPress: Edit Pages, Fix Code, Update Plugins, SEO | |
| CVE-2026-33824 | 9.8 | 77.90% | 8 | 2 | 2026-08-19T04:16:58.560000 | Double free in Windows IKE Extension allows an unauthorized attacker to execute | |
| CVE-2026-76008 | 10.0 | 0.57% | 4 | 0 | 2026-08-19T03:31:30 | A flaw has been found in Comfast CF-N1-S 2.6.0.1. This affects the function get_ | |
| CVE-2026-76003 | 9.9 | 0.44% | 4 | 0 | 2026-08-19T03:31:23 | A weakness has been identified in UTT HiPER 1200GW up to 2.5.3-170306. Affected | |
| CVE-2026-18963 | 9.1 | 0.39% | 5 | 1 | 2026-08-19T03:31:21 | A flaw was found in the reset-credentials flow of the keycloak-services componen | |
| CVE-2026-21580 | None | 0.36% | 2 | 0 | 2026-08-19T00:31:18 | This Critical severity Stored XSS, PrivEsc (Privilege Escalation), and Security | |
| CVE-2026-60782 | 9.8 | 0.49% | 1 | 0 | 2026-08-18T21:32:07 | Vulnerability in the Oracle Payments product of Oracle E-Business Suite (compone | |
| CVE-2026-60720 | 9.9 | 0.45% | 1 | 0 | 2026-08-18T21:32:06 | Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middleware | |
| CVE-2026-47629 | 7.5 | 0.35% | 2 | 0 | 2026-08-18T21:31:55 | NVIDIA Triton Inference Server for Linux contains a vulnerability where an attac | |
| CVE-2026-47628 | 7.5 | 0.35% | 2 | 0 | 2026-08-18T21:31:54 | NVIDIA Triton Inference Server for Linux contains a vulnerability where an attac | |
| CVE-2026-47606 | 6.5 | 0.41% | 1 | 0 | 2026-08-18T21:31:54 | NVIDIA Triton Inference Server for Linux contains a vulnerability where an attac | |
| CVE-2026-47627 | 9.8 | 0.43% | 4 | 0 | 2026-08-18T21:31:53 | NVIDIA Triton Inference Server for Linux contains a vulnerability where an attac | |
| CVE-2026-75625 | 9.0 | 0.20% | 1 | 0 | 2026-08-18T20:17:32.460000 | Kraken agents fail to verify peer-to-peer downloaded blobs against their request | |
| CVE-2026-47719 | 8.2 | 0.48% | 1 | 0 | 2026-08-18T20:17:15.103000 | FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. Prior | |
| CVE-2026-59310 | 9.8 | 2.40% | 2 | 2 | 2026-08-18T18:32:52 | VMware vCenter contains a directory traversal vulnerability in the Syslog server | |
| CVE-2026-75130 | 9.0 | 0.28% | 1 | 0 | 2026-08-18T18:32:11 | Context7 through 2.1.2 contains a prompt injection vulnerability that allows att | |
| CVE-2026-66780 | 9.9 | 0.24% | 2 | 0 | 2026-08-18T18:32:10 | A flaw was found in the submariner-operator component. The `submariner-k8s-broke | |
| CVE-2026-65400 | 7.1 | 0.75% | 7 | 1 | 2026-08-18T18:31:47 | An authentication issue was addressed with improved state management. This issue | |
| CVE-2026-75913 | 9.3 | 0.33% | 1 | 0 | 2026-08-18T16:18:23.363000 | CodeWhale (codewhale / codewhale-tui) versions >= 0.8.41 and < 0.8.64 contain an | |
| CVE-2026-75481 | 8.8 | 0.28% | 1 | 0 | 2026-08-18T16:18:20.627000 | SkyPilot fails to validate that authenticated users are entitled to grant admini | |
| CVE-2026-75103 | 8.8 | 0.34% | 1 | 0 | 2026-08-18T16:18:20.127000 | Crawlab fails to verify user ownership or administrative role on the password-ch | |
| CVE-2026-67854 | 9.8 | 0.40% | 1 | 0 | 2026-08-18T16:18:14.327000 | SQL Injection vulnerability in Qcms v.6.0.6 allows a remote attacker to execute | |
| CVE-2026-75783 | 9.6 | 0.40% | 1 | 0 | 2026-08-18T15:31:56 | A security vulnerability has been detected in TRENDnet TEW-WLC100P 12.07b01. Aff | |
| CVE-2026-24301 | 8.8 | 1.63% | 5 | 1 | 2026-08-18T15:31:45 | Improper neutralization of special elements used in a command ('command injectio | |
| CVE-2026-75479 | 7.5 | 0.36% | 1 | 0 | 2026-08-18T15:17:13.457000 | JimuReport contains an authentication bypass vulnerability in the report folder | |
| CVE-2026-40144 | 0 | 0.11% | 2 | 0 | 2026-08-18T15:04:46.610000 | A memory-corruption vulnerability exists in a kernel-mode component of BeyondTru | |
| CVE-2026-75852 | 9.8 | 0.45% | 1 | 0 | 2026-08-18T14:18:12.260000 | ArcadeDB versions before 26.8.1 fail to enforce SASL authentication on data comm | |
| CVE-2026-75853 | 8.8 | 0.39% | 1 | 0 | 2026-08-18T12:31:30 | ArcadeDB's Gremlin wire-protocol plugin (com.arcadedb:arcadedb-gremlin) in versi | |
| CVE-2026-75851 | 9.9 | 0.32% | 1 | 0 | 2026-08-18T12:31:30 | ArcadeDB server (com.arcadedb:arcadedb-server) in versions 26.7.3 and earlier fa | |
| CVE-2026-75854 | 9.8 | 1.07% | 1 | 0 | 2026-08-18T12:31:30 | ArcadeDB versions before 26.8.1 contain a missing authentication vulnerability i | |
| CVE-2026-75045 | 9.1 | 0.30% | 1 | 0 | 2026-08-18T04:16:47.170000 | In JetBrains YouTrack before 2025.3.156085, 2026.1.13913, 2026.2.18112 an unau | |
| CVE-2025-62593 | 8.8 | 1.01% | 5 | 1 | 2026-08-18T04:16:40.860000 | Ray is an AI compute engine. Prior to version 2.52.0, developers working with Ra | |
| CVE-2026-75094 | 9.1 | 2.09% | 2 | 0 | 2026-08-18T03:31:14 | A flaw has been found in COMFAST CF-N1-S 2.6.0.1. This impacts the function sub_ | |
| CVE-2026-11801 | 7.5 | 0.30% | 2 | 0 | 2026-08-18T03:31:11 | The WPAdverts โ Classifieds Plugin plugin for WordPress is vulnerable to authori | |
| CVE-2026-75482 | 7.5 | 0.62% | 1 | 0 | 2026-08-17T21:31:35 | SWE-agent's trajectory inspector (sweagent inspector), confirmed in v1.1.0, is a | |
| CVE-2026-75111 | 7.5 | 0.39% | 1 | 0 | 2026-08-17T21:31:35 | Evidently UI fails to properly validate the filename parameter in the dataset ma | |
| CVE-2026-19478 | 9.4 | 1.51% | 15 | 3 | 2026-08-17T21:31:30 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.2 | |
| CVE-2026-19650 | 7.1 | 0.24% | 3 | 1 | 2026-08-17T21:31:30 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.2 | |
| CVE-2026-75106 | 9.1 | 0.30% | 1 | 0 | 2026-08-17T21:31:30 | OpnForm derives editable-submission secrets from sequential row identifiers usin | |
| CVE-2026-75105 | 7.5 | 0.28% | 1 | 0 | 2026-08-17T21:31:30 | phpIPAM through 1.8.1 fails to verify that a requested IP address belongs to the | |
| CVE-2026-71290 | 9.1 | 0.19% | 2 | 0 | 2026-08-17T19:06:52.793000 | Improper TLS hostname verification vulnerability in Apache HttpComponents Client | |
| CVE-2026-40145 | None | 0.11% | 2 | 0 | 2026-08-17T18:31:28 | A vulnerability exists in the interaction between a Endpoint Privilege Managemen | |
| CVE-2026-47686 | 9.9 | 0.32% | 2 | 0 | 2026-08-17T17:32:35 | **Affected:** vm2 <= 3.11.3 **CVSS 3.1:** 9.9 HIGH (CVSS:3.1/AV:N/AC:L/PR:L/UI:N | |
| CVE-2026-71479 | 9.1 | 0.52% | 1 | 0 | 2026-08-17T16:36:14 | ## Summary Multiple billing paths multiplied **user-controlled quantity paramet | |
| CVE-2026-74889 | 9.8 | 0.20% | 1 | 0 | 2026-08-17T12:32:31 | openssl_encrypt versions before 1.4.0 use HKDF with no salt and static info para | |
| CVE-2026-17186 | 9.9 | 0.47% | 2 | 0 | 2026-08-14T21:31:35 | IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to execute | |
| CVE-2026-18146 | 7.2 | 0.36% | 1 | 0 | 2026-08-14T19:09:56.813000 | The Fluent Forms โ Customizable Contact Forms, Survey, Quiz, & Conversational Fo | |
| CVE-2026-66804 | 7.8 | 3.42% | 1 | 3 | 2026-08-14T18:06:11.420000 | Improper access control in Windows Cross Device Service allows an authorized att | |
| CVE-2026-73570 | 8.9 | 0.54% | 11 | 0 | 2026-08-14T05:17:00.340000 | A remote code execution vulnerability exists in Zimbra Collaboration (ZCS) befor | |
| CVE-2026-68138 | 7.8 | 0.13% | 1 | 3 | 2026-08-14T00:31:53 | In the Linux kernel, the following vulnerability has been resolved: net/sched: | |
| CVE-2026-8715 | 9.6 | 0.32% | 2 | 0 | 2026-08-13T21:36:21 | Vault Secrets Operator 1.3.0 up to 1.4.1 is vulnerable to an arbitrary file read | |
| CVE-2026-17482 | 9.8 | 0.55% | 2 | 0 | 2026-08-13T21:36:21 | IBM Documentation Offline 1.0.0 through 1.4.1 could allow a remote attacker to e | |
| CVE-2026-19001 | 9.8 | 0.38% | 1 | 0 | 2026-08-13T13:17:48.253000 | The MongoDB BI Connector ODBC Driver may write outside the bounds of a fixed-siz | |
| CVE-2026-68820 | 7.0 | 0.33% | 2 | 2 | 2026-08-11T21:33:01 | Use after free in Windows Ancillary Function Driver for WinSock allows an author | |
| CVE-2026-13737 | None | 0.43% | 2 | 0 | 2026-08-11T18:30:43 | CommServe contained an allowlist bypass vulnerability affecting command executio | |
| CVE-2026-13738 | 0 | 0.53% | 2 | 0 | 2026-08-11T17:17:47.660000 | CommServe contained an authorization bypass vulnerability affecting a limited se | |
| CVE-2026-58231 | 10.0 | 0.73% | 3 | 1 | 2026-08-11T12:30:28 | SAP Commerce Cloud allows an unauthenticated attacker to abuse a default authent | |
| CVE-2026-71958 | 9.8 | 0.56% | 1 | 0 | 2026-08-08T18:30:30 | D-Link DWR-M961 devices with hardware version C1 and software version 1.1.2_C1_2 | |
| CVE-2026-6540 | 7.5 | 0.37% | 2 | 1 | 2026-08-08T03:32:15 | Calico's Application Layer Policy (disabled by default), which enforces HTTP rul | |
| CVE-2026-12569 | 9.8 | 30.20% | 18 | 1 | 2026-08-01T05:16:55.023000 | A critical remote code execution (RCE) vulnerability has been reported in PTC Wi | |
| CVE-2026-47301 | 8.8 | 0.68% | 2 | 1 | 2026-07-30T19:17:31.990000 | Improper access control in Microsoft Configuration Manager allows an authorized | |
| CVE-2026-43760 | 8.6 | 0.24% | 1 | 0 | 2026-07-30T19:17:30.313000 | An access issue was addressed with improved access restrictions. This issue is f | |
| CVE-2026-43774 | 5.5 | 0.13% | 1 | 0 | 2026-07-28T18:33:56 | An out-of-bounds read was addressed with improved bounds checking. This issue is | |
| CVE-2026-11622 | 7.5 | 0.51% | 2 | 0 | 2026-07-22T15:31:34 | A DNSSEC validating resolver that is under a random subdomain attack against a D | |
| CVE-2026-8452 | 9.8 | 0.49% | 1 | 2 | 2026-07-01T15:52:28.390000 | Memory overflow vulnerabilityย NetScaler ADC and NetScaler Gatewayย leading to unp | |
| CVE-2026-20266 | 9.1 | 0.63% | 2 | 0 | 2026-06-17T18:35:58 | In Splunk AI Toolkit versions below 5.7.4, a user who holds the "admin" Splunk r | |
| CVE-2026-27912 | 8.0 | 0.24% | 1 | 3 | 2026-06-17T10:27:52.490000 | Improper authorization in Windows Kerberos allows an authorized attacker to elev | |
| CVE-2021-33045 | 9.8 | 99.56% | 1 | 4 | template | 2026-06-17T03:54:04.020000 | The identity authentication bypass vulnerability found in some Dahua products du |
| CVE-2010-3854 | 0 | 5.92% | 2 | 0 | 2026-06-16T23:23:40.850000 | Multiple cross-site scripting (XSS) vulnerabilities in the web administration in | |
| CVE-2008-5161 | 3.7 | 15.39% | 2 | 1 | 2026-06-16T22:59:22.107000 | Error handling in the SSH protocol in (1) SSH Tectia Client and Server and Conne | |
| CVE-2026-0075 | 5.9 | 0.09% | 4 | 1 | 2026-06-02T15:33:09 | In multiple functions, there is a possible way to access the contacts database d | |
| CVE-2026-1947 | 7.5 | 0.27% | 2 | 3 | 2026-03-16T15:30:54 | The NEX-Forms โ Ultimate Forms Plugin for WordPress plugin for WordPress is vuln | |
| CVE-2026-3286 | 6.3 | 0.31% | 1 | 0 | 2026-02-27T06:31:39 | A vulnerability was identified in itwanger paicoding 1.0.0/1.0.1/1.0.2/1.0.3. Th | |
| CVE-2021-33044 | 9.8 | 99.87% | 2 | 10 | 2025-10-22T00:32:20 | The identity authentication bypass vulnerability found in some Dahua products du | |
| CVE-2026-59307 | 0 | 0.00% | 2 | 0 | N/A | ||
| CVE-2026-59324 | 0 | 0.00% | 2 | 0 | N/A | ||
| CVE-2026-63490 | 0 | 0.00% | 2 | 0 | N/A | ||
| CVE-2026-54330 | 0 | 0.00% | 2 | 0 | N/A | ||
| CVE-2026-63182 | 0 | 0.00% | 1 | 0 | N/A | ||
| CVE-2026-57580 | 0 | 0.44% | 1 | 0 | N/A | ||
| CVE-2026-68899 | 0 | 0.40% | 2 | 0 | N/A | ||
| CVE-2026-68561 | 0 | 0.38% | 2 | 0 | N/A | ||
| CVE-2026-50186 | 0 | 0.43% | 2 | 0 | N/A | ||
| CVE-2026-50142 | 0 | 0.56% | 2 | 1 | N/A | ||
| CVE-2026-52872 | 0 | 0.14% | 2 | 0 | N/A | ||
| CVE-2026-52876 | 0 | 0.15% | 2 | 0 | N/A | ||
| CVE-2026-75936 | 0 | 0.44% | 1 | 0 | N/A | ||
| CVE-2026-75935 | 0 | 0.44% | 1 | 0 | N/A | ||
| CVE-2025-53906 | 0 | 0.73% | 1 | 0 | N/A | ||
| CVE-2026-75914 | 0 | 0.41% | 1 | 0 | N/A | ||
| CVE-2026-75911 | 0 | 0.17% | 1 | 0 | N/A |
updated 2026-08-20T18:30:58
2 posts
๐ CVE-2026-75140 - High (7.5)
jsoup through 1.23.2, fixed in commit 862ba2f, contains an uncontrolled resource consumption vulnerability in XmlTreeBuilder that allows remote attackers to exhaust JVM heap memory by supplying a deeply nested XML document with uniquely-namespaced...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-75140/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-75140 - High (7.5)
jsoup through 1.23.2, fixed in commit 862ba2f, contains an uncontrolled resource consumption vulnerability in XmlTreeBuilder that allows remote attackers to exhaust JVM heap memory by supplying a deeply nested XML document with uniquely-namespaced...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-75140/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T18:30:48
1 posts
CVE-2026-76956 - DoS in libexpat 2.8.2/2.8.3. Insufficient entropy from getentropy handling enables hash flooding via crafted XML. CVSS 7.5. No patch yet, upgrade to 2.8.4. #CVE #libexpat #infosec
##updated 2026-08-20T18:30:36
1 posts
[1/9]
Most Impactful Security Incidents (โฏ2026โ08โ18โฏโโฏ2026โ08โ19โฏ)
---
PRIORITYโฏ1 โ Critical / HighโSeverity Flaws (CVSSโฏ7โ10):
CVEโ2026โ60392
โข 7.8 (HIGH)
โข OracleโฏOutsideโฏInโฏTechnology โ PDF Export SDK (Fusion Middleware)
โข Localโprivilege escalation; requires attacker to have a logon on the host where the SDK runs. Successful exploitation can lead to full takeover of the component.
โข 8.5.8
โข Easily exploitable (local) โ requires user interaction.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60392
CVEโ2026โ60782
โข 9.8 (CRITICAL)
โข OracleโฏPayments (EโBusiness Suite) โ File Transmission
โข Remote unauthenticated attacker can compromise the Payments module via HTTP. Leads to full takeover of the Payments service.
โข 12.2.3โ12.2.15
โข Networkโaccessible, no authentication required.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60782
CVEโ2026โ60730
โข 9.9 (CRITICAL)
โข OracleโฏWebCenterโฏPortal โ Composer component
โข Remote unauthenticated attacker can compromise the portal via HTTP. Full takeover of the portal.
โข 12.2.1.4.0,โฏ14.1.2.0.0
โข Networkโaccessible, no auth.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60730
CVEโ2026โ60728
โข 9.1 (CRITICAL)
โข OracleโฏWebCenterโฏPortal โ Portlet Services
โข Remote unauthenticated attacker can cause denialโofโservice and full compromise of portal data.
โข 12.2.1.4.0,โฏ14.1.2.0.0
โข Networkโaccessible, no auth.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60728
CVEโ2026โ60727
โข 9.8 (CRITICAL)
โข OracleโฏIdentityโฏManager โ OIM Legacy UI
โข Remote unauthenticated attacker can take over the IAM system via HTTP.
โข 12.2.1.4.0,โฏ14.1.2.1.0
โข Networkโaccessible, no auth.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60727
CVEโ2026โ60721
โข 9.8 (CRITICAL)
โข OracleโฏIdentityโฏManager โ OIM Legacy UI
โข Same vector as above; full takeover possible.
โข 12.2.1.4.0,โฏ14.1.2.1.0
โข Networkโaccessible, no auth.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60721
CVEโ2026โ60720
โข 9.9 (CRITICAL)
โข OracleโฏIdentityโฏManager โ OIM Legacy UI
โข Remote unauthenticated attacker can compromise the IAM system.
โข 12.2.1.4.0,โฏ14.1.2.1.0
โข Networkโaccessible, no auth.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60720
updated 2026-08-20T18:16:44.963000
4 posts
CVE ID: CVE-2026-72530
Vendor: TrueConf
Product: Server
Date Added: 2026-08-20
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-72530
๐ด CVE-2026-72530 - Critical (9)
A remote unauthorized attacker with network access via port 4307/TCP to the TrueConf server versions 5.3.X to 5.3.9, 5.4.X to 5.4.9, 5.5.X to 5.5.5, and earlier could use a specially crafted script to break out of the isolated environment and exec...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-72530/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE ID: CVE-2026-72530
Vendor: TrueConf
Product: Server
Date Added: 2026-08-20
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-72530
๐ด CVE-2026-72530 - Critical (9)
A remote unauthorized attacker with network access via port 4307/TCP to the TrueConf server versions 5.3.X to 5.3.9, 5.4.X to 5.4.9, 5.5.X to 5.5.5, and earlier could use a specially crafted script to break out of the isolated environment and exec...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-72530/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T18:16:44.813000
2 posts
CVE ID: CVE-2026-72529
Vendor: TrueConf
Product: Server
Date Added: 2026-08-20
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-72529
CVE ID: CVE-2026-72529
Vendor: TrueConf
Product: Server
Date Added: 2026-08-20
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-72529
updated 2026-08-20T17:19:49.773000
2 posts
๐ CVE-2026-77176 - High (8.1)
A flaw was found in Kata Containers. In configurations utilizing genpolicy for Confidential Containers guest protection, a malicious host operator can exploit insufficient validation of CreateContainer mount and storage rules. This allows them to ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-77176/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-77176 - High (8.1)
A flaw was found in Kata Containers. In configurations utilizing genpolicy for Confidential Containers guest protection, a malicious host operator can exploit insufficient validation of CreateContainer mount and storage rules. This allows them to ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-77176/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T17:19:49.413000
2 posts
๐ด CVE-2026-77022 - Critical (9.9)
A security flaw has been discovered in Comfast CF-N1-S 2.6.0.1. Affected by this issue is the function sub_44B438 of the file /cgi-bin/mbox-config?method=SET§ion=ptest_ssid of the component SSID Configuration. The manipulation of the argument ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-77022/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ด CVE-2026-77022 - Critical (9.9)
A security flaw has been discovered in Comfast CF-N1-S 2.6.0.1. Affected by this issue is the function sub_44B438 of the file /cgi-bin/mbox-config?method=SET§ion=ptest_ssid of the component SSID Configuration. The manipulation of the argument ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-77022/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T17:19:40.773000
2 posts
๐ด CVE-2026-71428 - Critical (9.3)
The unstructured library provides open-source components for ingesting and pre-processing images and text documents, such as PDFs, HTML, Word docs, and many more. From 0.4.7 until 0.24.0, the url argument of partition, partition_html, and partitio...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-71428/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ด CVE-2026-71428 - Critical (9.3)
The unstructured library provides open-source components for ingesting and pre-processing images and text documents, such as PDFs, HTML, Word docs, and many more. From 0.4.7 until 0.24.0, the url argument of partition, partition_html, and partitio...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-71428/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T17:19:29.693000
2 posts
Three critical Red Hat ACM/MCE flaws, led by CVE-2026-66792 (CVSS 9.9), allow full compromise of the managed cluster.
#CVE202666792 #RedHat #Kubernetes #PrivilegeEscalation #ACM #ClusterAdmin
##Three critical Red Hat ACM/MCE flaws, led by CVE-2026-66792 (CVSS 9.9), allow full compromise of the managed cluster.
#CVE202666792 #RedHat #Kubernetes #PrivilegeEscalation #ACM #ClusterAdmin
##updated 2026-08-20T17:19:14.390000
2 posts
An Apache InLong SQL injection flaw, CVE-2026-63038, lets attackers inject SQL via multiple parameters. Two more bugs join it. Upgrade to 2.4.0.
##An Apache InLong SQL injection flaw, CVE-2026-63038, lets attackers inject SQL via multiple parameters. Two more bugs join it. Upgrade to 2.4.0.
##updated 2026-08-20T16:18:21.780000
2 posts
๐ CVE-2026-76879 - High (7.5)
C12.22 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76879/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-76879 - High (7.5)
C12.22 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76879/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T16:18:20.903000
2 posts
๐ CVE-2026-76832 - High (8.8)
Agno's PythonTools in libs/agno/agno/tools/python.py contains a path traversal vulnerability that allows attackers to read, write, or execute arbitrary files by supplying parent-directory traversal sequences in the file_name argument passed to rea...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76832/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-76832 - High (8.8)
Agno's PythonTools in libs/agno/agno/tools/python.py contains a path traversal vulnerability that allows attackers to read, write, or execute arbitrary files by supplying parent-directory traversal sequences in the file_name argument passed to rea...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76832/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T16:18:10.510000
2 posts
๐ CVE-2026-76234 - High (7.5)
libcrux-ecdh and libcrux-ed25519 before 0.0.6, and libcrux-psq before 0.0.7, contain cryptographic implementation bugs. libcrux-ecdh did not properly check length and clamping during X25519 secret validation (and had a broken clamping check for im...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76234/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-76234 - High (7.5)
libcrux-ecdh and libcrux-ed25519 before 0.0.6, and libcrux-psq before 0.0.7, contain cryptographic implementation bugs. libcrux-ecdh did not properly check length and clamping during X25519 secret validation (and had a broken clamping check for im...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76234/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T16:18:02.593000
2 posts
๐ CVE-2026-75144 - High (7.8)
FFmpeg before commit 1cdeb3c contains a heap buffer overflow vulnerability in the VC-2/Dirac RTP packetizer (libavformat/rtpenc_vc2hq.c) that allows attackers to trigger memory corruption by supplying a crafted Dirac data unit. The packetizer copi...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-75144/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-75144 - High (7.8)
FFmpeg before commit 1cdeb3c contains a heap buffer overflow vulnerability in the VC-2/Dirac RTP packetizer (libavformat/rtpenc_vc2hq.c) that allows attackers to trigger memory corruption by supplying a crafted Dirac data unit. The packetizer copi...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-75144/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T16:18:02.173000
2 posts
๐ CVE-2026-75141 - High (7.8)
FFmpeg before commit acf5d7c contains a heap buffer overflow in the hvcC box writer. When writing an HEVC configuration record with more NAL units of a single type than the count field can represent, the NAL unit count overflows, causing a heap bu...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-75141/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-75141 - High (7.8)
FFmpeg before commit acf5d7c contains a heap buffer overflow in the hvcC box writer. When writing an HEVC configuration record with more NAL units of a single type than the count field can represent, the NAL unit count overflows, causing a heap bu...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-75141/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T16:17:28.090000
2 posts
๐ CVE-2026-61518 - High (8.8)
ISPConfig contains an authenticated SQL injection vulnerability in the Remote API. The primary_id parameter passed to delete and update API methods is concatenated directly into SQL WHERE clauses without integer casting or parameterized query bind...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-61518/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-61518 - High (8.8)
ISPConfig contains an authenticated SQL injection vulnerability in the Remote API. The primary_id parameter passed to delete and update API methods is concatenated directly into SQL WHERE clauses without integer casting or parameterized query bind...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-61518/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T16:17:07.333000
2 posts
#OT #Advisory VDE-2026-078
Frauscher: FDS102 for FAdC/FAdCi R2 has multiple vulnerabilities
Frauscher Sensortechnik FDS102 for FAdC/FAdCi R2 is vulnerable to Unrestricted Upload of File with Dangerous Type, Path Traversal: '../filedir', Insertion of Sensitive Information into Log File, Incorrect Authorization, Insufficient Session Expiration, Cross-Site Request Forgery (CSRF), Missing Authentication for Critical Function, and Missing Authorization.
#CVE CVE-2026-14950, CVE-2026-14948, CVE-2026-14951, CVE-2026-14952, CVE-2026-14947, CVE-2026-14946, CVE-2026-14949, CVE-2026-14953
https://certvde.com/en/advisories/vde-2026-078/
#CSAF https://frauscher.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-078.json
###OT #Advisory VDE-2026-078
Frauscher: FDS102 for FAdC/FAdCi R2 has multiple vulnerabilities
Frauscher Sensortechnik FDS102 for FAdC/FAdCi R2 is vulnerable to Unrestricted Upload of File with Dangerous Type, Path Traversal: '../filedir', Insertion of Sensitive Information into Log File, Incorrect Authorization, Insufficient Session Expiration, Cross-Site Request Forgery (CSRF), Missing Authentication for Critical Function, and Missing Authorization.
#CVE CVE-2026-14950, CVE-2026-14948, CVE-2026-14951, CVE-2026-14952, CVE-2026-14947, CVE-2026-14946, CVE-2026-14949, CVE-2026-14953
https://certvde.com/en/advisories/vde-2026-078/
#CSAF https://frauscher.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-078.json
##updated 2026-08-20T15:55:41.820000
2 posts
Stack-based buffer overflow (CVE-2026-16885) in IBM AIX 7.2, 7.3 & PowerVM VIOS 4.1 (CRITICAL, CVSS 9.8). Remote, unauthenticated code execution possible. No patch yet โ monitor IBM advisories. https://radar.offseq.com/threat/cve-2026-16885-cwe-121-stack-based-buffer-overflow-in-ibm-aix-4d84d05fa38f4cbc #OffSeq #IBM #AIX #Vuln
##Stack-based buffer overflow (CVE-2026-16885) in IBM AIX 7.2, 7.3 & PowerVM VIOS 4.1 (CRITICAL, CVSS 9.8). Remote, unauthenticated code execution possible. No patch yet โ monitor IBM advisories. https://radar.offseq.com/threat/cve-2026-16885-cwe-121-stack-based-buffer-overflow-in-ibm-aix-4d84d05fa38f4cbc #OffSeq #IBM #AIX #Vuln
##updated 2026-08-20T15:34:26
2 posts
๐ CVE-2026-76633 - High (8.1)
WeGIA before 3.9.2 contains an authorization bypass vulnerability in the password change flow that allows any authenticated user to change their account password without providing existing credentials by exploiting the unconditional exclusion of t...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76633/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-76633 - High (8.1)
WeGIA before 3.9.2 contains an authorization bypass vulnerability in the password change flow that allows any authenticated user to change their account password without providing existing credentials by exploiting the unconditional exclusion of t...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76633/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T15:34:26
2 posts
๐ CVE-2026-76833 - High (7.8)
@cgauge/yaml npm package contains an arbitrary code execution vulnerability that allows attackers to execute arbitrary JavaScript by embedding a custom !js YAML tag whose construct callback unconditionally calls eval() on attacker-supplied string ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76833/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-76833 - High (7.8)
@cgauge/yaml npm package contains an arbitrary code execution vulnerability that allows attackers to execute arbitrary JavaScript by embedding a custom !js YAML tag whose construct callback unconditionally calls eval() on attacker-supplied string ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76833/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T15:34:20
2 posts
๐ CVE-2026-61897 - High (7.8)
An Ubuntu-specific patch to AccountsService before 23.13.9-8ubuntu7 only partially drops privileges before launching language helper scripts. It changes the effective UID/GID to the target user but leaves the real UID as 0 (root). A shell spawned ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-61897/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-61897 - High (7.8)
An Ubuntu-specific patch to AccountsService before 23.13.9-8ubuntu7 only partially drops privileges before launching language helper scripts. It changes the effective UID/GID to the target user but leaves the real UID as 0 (root). A shell spawned ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-61897/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T15:34:20
2 posts
CVE-2026-28164: CRITICAL CSRF in HashThemes Easy Elementor Addons โค2.3.7. Remote attackers can exploit this for full user compromise. No patch yet โ track vendor advisories. CVSS 9.6. https://radar.offseq.com/threat/cve-2026-28164-cwe-352-cross-site-request-forgery-csrf-in-hashthemes-easy-elementor-addons-7bfb9b1be22a1e31 #OffSeq #WordPress #CSRF #CVE2026_28164
##CVE-2026-28164: CRITICAL CSRF in HashThemes Easy Elementor Addons โค2.3.7. Remote attackers can exploit this for full user compromise. No patch yet โ track vendor advisories. CVSS 9.6. https://radar.offseq.com/threat/cve-2026-28164-cwe-352-cross-site-request-forgery-csrf-in-hashthemes-easy-elementor-addons-7bfb9b1be22a1e31 #OffSeq #WordPress #CSRF #CVE2026_28164
##updated 2026-08-20T15:34:14
2 posts
๐ CVE-2026-76886 - High (8.1)
C12.22 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76886/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-76886 - High (8.1)
C12.22 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76886/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T15:18:06.280000
1 posts
[1/9]
Most Impactful Security Incidents (โฏ2026โ08โ18โฏโโฏ2026โ08โ19โฏ)
---
PRIORITYโฏ1 โ Critical / HighโSeverity Flaws (CVSSโฏ7โ10):
CVEโ2026โ60392
โข 7.8 (HIGH)
โข OracleโฏOutsideโฏInโฏTechnology โ PDF Export SDK (Fusion Middleware)
โข Localโprivilege escalation; requires attacker to have a logon on the host where the SDK runs. Successful exploitation can lead to full takeover of the component.
โข 8.5.8
โข Easily exploitable (local) โ requires user interaction.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60392
CVEโ2026โ60782
โข 9.8 (CRITICAL)
โข OracleโฏPayments (EโBusiness Suite) โ File Transmission
โข Remote unauthenticated attacker can compromise the Payments module via HTTP. Leads to full takeover of the Payments service.
โข 12.2.3โ12.2.15
โข Networkโaccessible, no authentication required.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60782
CVEโ2026โ60730
โข 9.9 (CRITICAL)
โข OracleโฏWebCenterโฏPortal โ Composer component
โข Remote unauthenticated attacker can compromise the portal via HTTP. Full takeover of the portal.
โข 12.2.1.4.0,โฏ14.1.2.0.0
โข Networkโaccessible, no auth.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60730
CVEโ2026โ60728
โข 9.1 (CRITICAL)
โข OracleโฏWebCenterโฏPortal โ Portlet Services
โข Remote unauthenticated attacker can cause denialโofโservice and full compromise of portal data.
โข 12.2.1.4.0,โฏ14.1.2.0.0
โข Networkโaccessible, no auth.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60728
CVEโ2026โ60727
โข 9.8 (CRITICAL)
โข OracleโฏIdentityโฏManager โ OIM Legacy UI
โข Remote unauthenticated attacker can take over the IAM system via HTTP.
โข 12.2.1.4.0,โฏ14.1.2.1.0
โข Networkโaccessible, no auth.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60727
CVEโ2026โ60721
โข 9.8 (CRITICAL)
โข OracleโฏIdentityโฏManager โ OIM Legacy UI
โข Same vector as above; full takeover possible.
โข 12.2.1.4.0,โฏ14.1.2.1.0
โข Networkโaccessible, no auth.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60721
CVEโ2026โ60720
โข 9.9 (CRITICAL)
โข OracleโฏIdentityโฏManager โ OIM Legacy UI
โข Remote unauthenticated attacker can compromise the IAM system.
โข 12.2.1.4.0,โฏ14.1.2.1.0
โข Networkโaccessible, no auth.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60720
updated 2026-08-20T15:17:54.660000
1 posts
[1/9]
Most Impactful Security Incidents (โฏ2026โ08โ18โฏโโฏ2026โ08โ19โฏ)
---
PRIORITYโฏ1 โ Critical / HighโSeverity Flaws (CVSSโฏ7โ10):
CVEโ2026โ60392
โข 7.8 (HIGH)
โข OracleโฏOutsideโฏInโฏTechnology โ PDF Export SDK (Fusion Middleware)
โข Localโprivilege escalation; requires attacker to have a logon on the host where the SDK runs. Successful exploitation can lead to full takeover of the component.
โข 8.5.8
โข Easily exploitable (local) โ requires user interaction.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60392
CVEโ2026โ60782
โข 9.8 (CRITICAL)
โข OracleโฏPayments (EโBusiness Suite) โ File Transmission
โข Remote unauthenticated attacker can compromise the Payments module via HTTP. Leads to full takeover of the Payments service.
โข 12.2.3โ12.2.15
โข Networkโaccessible, no authentication required.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60782
CVEโ2026โ60730
โข 9.9 (CRITICAL)
โข OracleโฏWebCenterโฏPortal โ Composer component
โข Remote unauthenticated attacker can compromise the portal via HTTP. Full takeover of the portal.
โข 12.2.1.4.0,โฏ14.1.2.0.0
โข Networkโaccessible, no auth.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60730
CVEโ2026โ60728
โข 9.1 (CRITICAL)
โข OracleโฏWebCenterโฏPortal โ Portlet Services
โข Remote unauthenticated attacker can cause denialโofโservice and full compromise of portal data.
โข 12.2.1.4.0,โฏ14.1.2.0.0
โข Networkโaccessible, no auth.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60728
CVEโ2026โ60727
โข 9.8 (CRITICAL)
โข OracleโฏIdentityโฏManager โ OIM Legacy UI
โข Remote unauthenticated attacker can take over the IAM system via HTTP.
โข 12.2.1.4.0,โฏ14.1.2.1.0
โข Networkโaccessible, no auth.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60727
CVEโ2026โ60721
โข 9.8 (CRITICAL)
โข OracleโฏIdentityโฏManager โ OIM Legacy UI
โข Same vector as above; full takeover possible.
โข 12.2.1.4.0,โฏ14.1.2.1.0
โข Networkโaccessible, no auth.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60721
CVEโ2026โ60720
โข 9.9 (CRITICAL)
โข OracleโฏIdentityโฏManager โ OIM Legacy UI
โข Remote unauthenticated attacker can compromise the IAM system.
โข 12.2.1.4.0,โฏ14.1.2.1.0
โข Networkโaccessible, no auth.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60720
updated 2026-08-20T14:56:21.550000
1 posts
CVE-2026-76251 - Splunk Enterprise priv-esc. Non-admins can leak Observability Cloud tokens. CVSS 7.1. Patch now. #CVE #Splunk #infosec
##updated 2026-08-20T14:17:10.673000
6 posts
Citrix Flaw Exposes Authentication on NetScaler Servers
Citrix has warned of a critical authentication bypass vulnerability, CVE-2026-19490, affecting NetScaler servers, urging customers to review their configurations and prioritize patching based on exposure and deployment role.
#Cve202619490 #Citrix #AuthenticationBypass #Netscaler #Gateway
##Citrix has released patches for CVE-2026-19490, a CVSS 9.3 authentication bypass in NetScaler ADC and Gateway. An unauthenticated remote attacker can exploit the flaw via an alternative path to bypass authentication on appliances configured as SSL VPN, ICA Proxy, CVPN, RDP Proxy, or AAA servers.
#CitrixBleb #NetScalerVuln #CVSS9 #RemoteAccessSecurity
https://cyberworldops.eu/en/netscaler-critical-authentication-bypass-citrix-urges-immediate
##๐จ #NetScaler bypass exposed
CVE-2026-19490 grants remote unauthenticated access to Gateway and AAA deployments.
๐ read more: www.securityweek.com...
#ransomNews #cyberthreats #Citrix
Exploitation Expected for Crit...
CVE-2026-19490 (CVSS 9.3) is a critical NetScaler authentication bypass in NetScaler Gateway and ADC. Patch now to block unauthenticated access.
##Citrix has released patches for CVE-2026-19490, a CVSS 9.3 authentication bypass in NetScaler ADC and Gateway. An unauthenticated remote attacker can exploit the flaw via an alternative path to bypass authentication on appliances configured as SSL VPN, ICA Proxy, CVPN, RDP Proxy, or AAA servers.
#CitrixBleb #NetScalerVuln #CVSS9 #RemoteAccessSecurity
https://cyberworldops.eu/en/netscaler-critical-authentication-bypass-citrix-urges-immediate
##CVE-2026-19490 (CVSS 9.3) is a critical NetScaler authentication bypass in NetScaler Gateway and ADC. Patch now to block unauthenticated access.
##updated 2026-08-20T13:08:53.900000
3 posts
Red Hat Kubernetes SSRF Vulnerability CVE-2026-66794: A Hidden Proxy Route Could Open the Door to Isolated Cluster Services + Video
A High-Severity Warning Behind the Kubernetes Control Plane Kubernetes environments are built around layers of isolation. Namespaces separate workloads, network policies restrict traffic, firewalls protect management interfaces, and authentication systems determine who can reach sensitive services. But what happens when the infrastructureโฆ
##๐ด CVE-2026-66794 - Critical (9.3)
A flaw was found in the `cluster-proxy-addon` component of Multicluster Engine for Kubernetes. This vulnerability allows an unauthenticated attacker, who can access the user-facing route, to bypass authentication and authorization checks. By manip...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-66794/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ด CVE-2026-66794 - Critical (9.3)
A flaw was found in the `cluster-proxy-addon` component of Multicluster Engine for Kubernetes. This vulnerability allows an unauthenticated attacker, who can access the user-facing route, to bypass authentication and authorization checks. By manip...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-66794/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T13:08:53.900000
2 posts
๐ CVE-2026-73197 - High (7.5)
A flaw was found in FreeIPA. A remote, unauthenticated attacker can exploit this vulnerability by sending oversized form POST requests to the `/ipa/migration/migration.py` endpoint. This can force the migration handler to read attacker-controlled ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-73197/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-73197 - High (7.5)
A flaw was found in FreeIPA. A remote, unauthenticated attacker can exploit this vulnerability by sending oversized form POST requests to the `/ipa/migration/migration.py` endpoint. This can force the migration handler to read attacker-controlled ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-73197/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T13:08:53.900000
4 posts
Red Hat ACM privilege escalation flaws (CVE-2026-70496, CVSS 9.9) let attackers seize full cluster control. See the three Kubernetes bugs.
#RedHat #Kubernetes #PrivilegeEscalation #CVE #ACM #CloudSecurity #InfoSec
##๐ด CVE-2026-70496 - Critical (9.9)
A flaw was found in search-v2-operator. The operator's ClusterRole has permissions equivalent to a cluster administrator, allowing it to impersonate other entities, write Role-Based Access Control (RBAC) configurations, approve Certificate Signing...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-70496/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##Red Hat ACM privilege escalation flaws (CVE-2026-70496, CVSS 9.9) let attackers seize full cluster control. See the three Kubernetes bugs.
#RedHat #Kubernetes #PrivilegeEscalation #CVE #ACM #CloudSecurity #InfoSec
##๐ด CVE-2026-70496 - Critical (9.9)
A flaw was found in search-v2-operator. The operator's ClusterRole has permissions equivalent to a cluster administrator, allowing it to impersonate other entities, write Role-Based Access Control (RBAC) configurations, approve Certificate Signing...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-70496/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T13:08:14.613000
2 posts
๐ CVE-2026-73925 - High (8.2)
Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 1.4.19. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-73925/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-73925 - High (8.2)
Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 1.4.19. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-73925/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T13:06:05.500000
1 posts
Nvidia has new advisories addressing two vulnerabilities:
- NVIDIA Cumulus Linux and NVOS - August 2026 https://nvidia.custhelp.com/app/answers/detail/a_id/5817
- CRITICAL, affecting the following: CVE-2026-47627, CVE-2026-47628, CVE-2026-47629, CVE-2026-47606, CVE-2026-47630
NVIDIA Triton Inference Server - August 2026 https://nvidia.custhelp.com/app/answers/detail/a_id/5865 #Nvidia #infosec #vulnerability #Linux
##updated 2026-08-20T13:02:12.153000
2 posts
A critical Dell PowerStore vulnerability, CVE-2026-67271 (CVSS 9.8), allows unauthenticated remote code execution via SMB. Two more flaws patched.
##A critical Dell PowerStore vulnerability, CVE-2026-67271 (CVSS 9.8), allows unauthenticated remote code execution via SMB. Two more flaws patched.
##updated 2026-08-20T13:01:19.947000
2 posts
Cisco patches a Crosswork SQL injection flaw, CVE-2026-20030, rated CVSS 10.0. A BroadWorks XXE bug (CVE-2026-20320) also gets a fix.
#Cisco #CVE #SQLInjection #Crosswork #BroadWorks #XXE #Vulnerability #InfoSec
##Cisco patches a Crosswork SQL injection flaw, CVE-2026-20030, rated CVSS 10.0. A BroadWorks XXE bug (CVE-2026-20320) also gets a fix.
#Cisco #CVE #SQLInjection #Crosswork #BroadWorks #XXE #Vulnerability #InfoSec
##updated 2026-08-20T13:01:19.947000
2 posts
Cisco patches Secure Workload flaws CVE-2026-20315 and CVE-2026-20317, an authentication bypass and privilege escalation pair scoring CVSS 10. Upgrade now.
#Cisco #CVE #AuthenticationBypass #PrivilegeEscalation #Vulnerability #InfoSec #PatchNow
##Cisco patches Secure Workload flaws CVE-2026-20315 and CVE-2026-20317, an authentication bypass and privilege escalation pair scoring CVSS 10. Upgrade now.
#Cisco #CVE #AuthenticationBypass #PrivilegeEscalation #Vulnerability #InfoSec #PatchNow
##updated 2026-08-20T12:49:04.990000
2 posts
๐ CVE-2026-66602 - High (8.8)
Cross-Site Request Forgery (CSRF) vulnerability in DevItems HashBar โ WordPress Notification Bar allows Cross Site Request Forgery.
This issue affects HashBar โ WordPress Notification Bar: from n/a through 2.0.0.
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-66602/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-66602 - High (8.8)
Cross-Site Request Forgery (CSRF) vulnerability in DevItems HashBar โ WordPress Notification Bar allows Cross Site Request Forgery.
This issue affects HashBar โ WordPress Notification Bar: from n/a through 2.0.0.
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-66602/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T12:48:31.843000
4 posts
UTT HiPER 1250GW v3.2.7-210907-180535 hit by CRITICAL stack-based buffer overflow (CVE-2026-76004) in HTTP handler. Exploitable via 'pvid' arg. No patch yet โ restrict remote access & monitor traffic. https://radar.offseq.com/threat/cve-2026-76004-stack-based-buffer-overflow-in-utt-hiper-1250gw-976b1783bc5dbe2e #OffSeq #CVE202676004 #Vuln #Infosec
##๐ด CVE-2026-76004 - Critical (9.9)
A security vulnerability has been detected in UTT HiPER 1250GW up to 3.2.7-210907-180535. Affected by this vulnerability is the function strcpy of the file /goform/aspApBasicConfigUrcp of the component HTTP Handler. The manipulation of the argumen...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76004/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##UTT HiPER 1250GW v3.2.7-210907-180535 hit by CRITICAL stack-based buffer overflow (CVE-2026-76004) in HTTP handler. Exploitable via 'pvid' arg. No patch yet โ restrict remote access & monitor traffic. https://radar.offseq.com/threat/cve-2026-76004-stack-based-buffer-overflow-in-utt-hiper-1250gw-976b1783bc5dbe2e #OffSeq #CVE202676004 #Vuln #Infosec
##๐ด CVE-2026-76004 - Critical (9.9)
A security vulnerability has been detected in UTT HiPER 1250GW up to 3.2.7-210907-180535. Affected by this vulnerability is the function strcpy of the file /goform/aspApBasicConfigUrcp of the component HTTP Handler. The manipulation of the argumen...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76004/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T12:48:31.843000
4 posts
๐ด CVE-2026-75976 - Critical (9.9)
A weakness has been identified in TRENDnet TEW-823DRU 1.1.02b01. Impacted is the function strcpy of the file /cgi-bin/wan.cgi of the component NVRAM. This manipulation of the argument wan_l2tp_password causes stack-based buffer overflow. The attac...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-75976/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##Stack-based buffer overflow (CVE-2026-75976, CVSS 9.4) in TRENDnet TEW-823DRU 1.1.02b01: remote exploitation possible via /cgi-bin/wan.cgi. Public exploit exists. Assess exposure & monitor for patches: https://radar.offseq.com/threat/cve-2026-75976-stack-based-buffer-overflow-in-trendnet-tew-823dru-3e76dd1e5f15fcab #OffSeq #Vulnerability #Infosec #IoTSecurity
##๐ด CVE-2026-75976 - Critical (9.9)
A weakness has been identified in TRENDnet TEW-823DRU 1.1.02b01. Impacted is the function strcpy of the file /cgi-bin/wan.cgi of the component NVRAM. This manipulation of the argument wan_l2tp_password causes stack-based buffer overflow. The attac...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-75976/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##Stack-based buffer overflow (CVE-2026-75976, CVSS 9.4) in TRENDnet TEW-823DRU 1.1.02b01: remote exploitation possible via /cgi-bin/wan.cgi. Public exploit exists. Assess exposure & monitor for patches: https://radar.offseq.com/threat/cve-2026-75976-stack-based-buffer-overflow-in-trendnet-tew-823dru-3e76dd1e5f15fcab #OffSeq #Vulnerability #Infosec #IoTSecurity
##updated 2026-08-20T12:48:31.843000
2 posts
๐ด CVE-2026-75877 - Critical (9.9)
A flaw has been found in TRENDnet TV-IP751WIC 11.03.03. This vulnerability affects the function SystemNetworkChanged/SystemDDNSChanged/SystemEmailChanged/SystemFTPChanged/websCheckRealm/FUN_00432574/FUN_0043372C of the component alphapd. Executing...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-75877/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ด CVE-2026-75877 - Critical (9.9)
A flaw has been found in TRENDnet TV-IP751WIC 11.03.03. This vulnerability affects the function SystemNetworkChanged/SystemDDNSChanged/SystemEmailChanged/SystemFTPChanged/websCheckRealm/FUN_00432574/FUN_0043372C of the component alphapd. Executing...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-75877/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T12:48:10.287000
10 posts
3 repos
https://github.com/ubaydev/CVE-2026-15748
๐ข CVE-2026-15748 : Faille critique dans Forminator Forms expose 300 000 sites WordPress
L'information provient de la firme de sรฉcuritรฉ WordPress Defiant. ๐ Contexte Une vulnรฉrabilitรฉ critique a รฉtรฉ identifiรฉe dans le plugin Forminator Forms pour WordPress, l'un des constructeurs de formulaires les plus populaires avec plus de 600 000 installationsโฆ
๐ cyberveille : https://cyberveille.ch/posts/2026-08-20-cve-2026-15748-faille-critique-dans-forminator-forms-expose-300-000-sites-wordpress/
๐ source : https://www.securityweek.com/300000-wordpress-sites-potentially-exposed-to-hacking-due-to-form-plugin-flaw/?utm_campaign=31203373-SecurityWeek%20Daily%20Briefing
๐ข vรฉrification factuelle haute
#ForminatorForms #WordPress #Cyberveille
Unauthenticated RCE Vulnerability Patched in Forminator Forms Plugin
WPMU DEV patched a critical vulnerability (CVE-2026-15748) in the Forminator Forms plugin that allowed unauthenticated attackers to upload and execute PHP files. The flaw can lead to full remote code execution and site compromise.
**If you use the Forminator Forms plugin on your WordPress site, update it to version 1.56.2 or later ASAP away: attackers can take over the whole site without logging in. After updating, check your upload folders for any unfamiliar PHP files. If you can't update yet, delete any forms that use both File Upload and Select fields.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/unauthenticated-rce-vulnerability-patched-in-forminator-forms-plugin-q-r-9-h-5/gD2P6Ple2L
๐ข [VULN] 600 000 sites WordPress menacรฉs par une faille critique dans Forminator Forms CVE-2026-15748
Une faille critique touche Forminator Forms, une extension WordPress utilisรฉe sur plus de 600 000 sites. Rรฉfรฉrencรฉe CVE-2026-15748, la vulnรฉrabilitรฉ obtient un score de 9,8/10 et peut permettre ร un attaquant non authentifiรฉ dโexรฉcuter du code sur un serveur vulnรฉrable.
๐ https://www.cyberattaque.org/600-000-sites-wordpress-menaces-par-une-faille-critique-dans-forminator-forms/
๐ฌ discussion : https://infosec.pub/post/51136301
#Vulnรฉrabilitรฉ #CVE #Cyberveille
https://thecybersecguru.com/news/cve-2026-15748-forminator-rce-cve-2026-15826-user-profile-builder/
##CVE-2026-15748, scored 9.8 out of 10, allows unauthenticated attackers to manipulate Select field configurations and bypass the plugin's blocklist entirely, uploading executable files through handle_file_upload. Defiant confirms this is several weaknesses working together in a kind of tragic team-building exercise.
Remote code execution is not a learning objective we endorse. Please update Forminator Forms to version 1.56.2 or later immediately. (2/3)
##Unauthenticated RCE Vulnerability Patched in Forminator Forms Plugin
WPMU DEV patched a critical vulnerability (CVE-2026-15748) in the Forminator Forms plugin that allowed unauthenticated attackers to upload and execute PHP files. The flaw can lead to full remote code execution and site compromise.
**If you use the Forminator Forms plugin on your WordPress site, update it to version 1.56.2 or later ASAP away: attackers can take over the whole site without logging in. After updating, check your upload folders for any unfamiliar PHP files. If you can't update yet, delete any forms that use both File Upload and Select fields.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/unauthenticated-rce-vulnerability-patched-in-forminator-forms-plugin-q-r-9-h-5/gD2P6Ple2L
CVE-2026-15748, scored 9.8 out of 10, allows unauthenticated attackers to manipulate Select field configurations and bypass the plugin's blocklist entirely, uploading executable files through handle_file_upload. Defiant confirms this is several weaknesses working together in a kind of tragic team-building exercise.
Remote code execution is not a learning objective we endorse. Please update Forminator Forms to version 1.56.2 or later immediately. (2/3)
##CVE-2026-15748 (CRITICAL, CVSS 9.8): wpmudev Forminator Forms for WordPress up to 1.56.1 lets unauthenticated attackers upload dangerous files via handle_file_upload, risking remote code execution. Patch urgently: https://radar.offseq.com/threat/cve-2026-15748-cwe-434-unrestricted-upload-of-file-with-dangerous-type-in-wpmudev-forminator-forms-087a3235e4aa61cd #OffSeq #WordPress #Vuln
##ใForminator WordPressใฎ่ๅผฑๆงใซใใใๆชๆใฎใใPHPใใกใคใซใฎใขใใใญใผใใไปใใฆ่ช่จผใชใใฎใชใขใผใใณใผใๅฎ่กใๅฏ่ฝใซใชใ ใ๏ผ #TheHackerNews
ใ0ไธไปถไปฅไธใฎใคใณในใใผใซๅฎ็ธพใๆใคWordPressใใฉใฐใคใณใForminator Formsใใซใ้ๅคงใชใปใญใฅใชใใฃไธใฎๆฌ ้ฅใ็บ่ฆใใใใใใฎๆฌ ้ฅใๆช็จใใใฐใ่ๅผฑๆงใฎใใใตใคใใงไปปๆใฎใณใผใใๅฎ่กใงใใๅฏ่ฝๆงใใใใ
CVE-2026-15748 ใจใใฆ่ฟฝ่ทกใใใฆใใใใฎ่ๅผฑๆงใฏ ใCVSSในใณใขใชใณใฐใทในใใ ใง10็นๆบ็นไธญ9.8็นใจ่ฉไพกใใใฆใใใใใฎ่ๅผฑๆงใฏใใdarooใใจใใใชใณใฉใคใณไธใฎใใใฏใใผใ ใๆใคใปใญใฅใชใใฃ็ ็ฉถ่ ใซใใฃใฆ็บ่ฆใใใๅ ฑๅใใใใ
https://thehackernews.com/2026/08/forminator-wordpress-flaw-can-enable.html
##CVE-2026-15748 (CVSS 9.8): Forminator Flaw Enables Pre-Auth RCE
##updated 2026-08-20T12:48:10.287000
4 posts
TRENDnet TEW-755AP is affected by CVE-2026-76589 (CRITICAL, CVSS 9.4): stack-based buffer overflow in /sbin/mycli, exploitable remotely. Public exploit; no patch yet. Restrict device access and monitor. https://radar.offseq.com/threat/cve-2026-76589-stack-based-buffer-overflow-in-trendnet-tew-755ap-b22775c9ba4ec937 #OffSeq #CVE202676589 #IoTSecurity
##๐ด CVE-2026-76589 - Critical (9.9)
A vulnerability was found in TRENDnet TEW-755AP up to 20260702. Affected is the function FUN_401000 of the file /sbin/mycli. The manipulation of the argument ssid results in stack-based buffer overflow. The attack may be launched remotely. The exp...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76589/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##TRENDnet TEW-755AP is affected by CVE-2026-76589 (CRITICAL, CVSS 9.4): stack-based buffer overflow in /sbin/mycli, exploitable remotely. Public exploit; no patch yet. Restrict device access and monitor. https://radar.offseq.com/threat/cve-2026-76589-stack-based-buffer-overflow-in-trendnet-tew-755ap-b22775c9ba4ec937 #OffSeq #CVE202676589 #IoTSecurity
##๐ด CVE-2026-76589 - Critical (9.9)
A vulnerability was found in TRENDnet TEW-755AP up to 20260702. Affected is the function FUN_401000 of the file /sbin/mycli. The manipulation of the argument ssid results in stack-based buffer overflow. The attack may be launched remotely. The exp...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76589/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T12:48:10.287000
4 posts
CVE-2026-76590: CRITICAL stack buffer overflow in TRENDnet TEW-755AP (/cgi-bin/wan.cgi, CVSS 9.4). Remote code execution possible. No patch โ restrict access, monitor endpoints. Exploit code public, no active attacks yet. https://radar.offseq.com/threat/cve-2026-76590-stack-based-buffer-overflow-in-trendnet-tew-755ap-37978d53e46251c0 #OffSeq #Vuln #IoTSec #CVE2026
##๐ด CVE-2026-76590 - Critical (9.9)
A vulnerability was identified in TRENDnet TEW-755AP up to 20260702. Affected by this issue is some unknown functionality of the file /cgi-bin/wan.cgi of the component ssi. Such manipulation of the argument cameo.wan.wan_pppoe_password_00 leads to...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76590/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-76590: CRITICAL stack buffer overflow in TRENDnet TEW-755AP (/cgi-bin/wan.cgi, CVSS 9.4). Remote code execution possible. No patch โ restrict access, monitor endpoints. Exploit code public, no active attacks yet. https://radar.offseq.com/threat/cve-2026-76590-stack-based-buffer-overflow-in-trendnet-tew-755ap-37978d53e46251c0 #OffSeq #Vuln #IoTSec #CVE2026
##๐ด CVE-2026-76590 - Critical (9.9)
A vulnerability was identified in TRENDnet TEW-755AP up to 20260702. Affected by this issue is some unknown functionality of the file /cgi-bin/wan.cgi of the component ssi. Such manipulation of the argument cameo.wan.wan_pppoe_password_00 leads to...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76590/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T12:48:10.287000
2 posts
1 repos
https://thecybersecguru.com/news/cve-2026-15748-forminator-rce-cve-2026-15826-user-profile-builder/
##Critical Authentication Bypass Reported in User Profile Builder
Cozmoslabs patched a critical authentication bypass vulnerability (CVE-2026-15826) in the User Profile Builder WordPress plugin that allowed unauthenticated attackers to gain full administrative control.
**If you run the User Profile Builder plugin on WordPress, update it to version 3.16.5 or later ASAP. If you can't update immediately, turn off the "Automatically Log In after Registration" setting in the plugin options, and check whether your admin account is user ID 1 and if possible switch to a different admin account.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/critical-authentication-bypass-reported-in-user-profile-builder-p-k-x-p-g/gD2P6Ple2L
updated 2026-08-20T12:31:29
2 posts
๐ CVE-2026-73198 - High (7.5)
A flaw was found in FreeIPA. A remote, unauthenticated attacker can exploit a vulnerability in the `/ipa/i18n_messages` endpoint by sending an arbitrarily large request body. This can cause the service to consume excessive memory, leading to memor...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-73198/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-73198 - High (7.5)
A flaw was found in FreeIPA. A remote, unauthenticated attacker can exploit a vulnerability in the `/ipa/i18n_messages` endpoint by sending an arbitrarily large request body. This can cause the service to consume excessive memory, leading to memor...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-73198/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T12:31:22
2 posts
๐ด CVE-2026-13097 - Critical (9.1)
A privilege escalation flaw was found in FreeIPA. The uniqueness constraint enforced on Kerberos principal name attributes in the 389-ds directory server does not properly account for equivalent representations of the same principal name, allowing...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-13097/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ด CVE-2026-13097 - Critical (9.1)
A privilege escalation flaw was found in FreeIPA. The uniqueness constraint enforced on Kerberos principal name attributes in the 389-ds directory server does not properly account for equivalent representations of the same principal name, allowing...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-13097/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T12:31:22
2 posts
CVE-2026-75860: CRITICAL privilege escalation in JSON Options โค0.0.4. Unauthenticated attackers can update WordPress options & gain admin access. Remove or disable plugin until fix is available. Full site takeover risk. https://radar.offseq.com/threat/cve-2026-75860-cwe-269-improper-privilege-management-in-json-options-5e170a19118b89b1 #OffSeq #WordPress #CVE202675860
##CVE-2026-75860: CRITICAL privilege escalation in JSON Options โค0.0.4. Unauthenticated attackers can update WordPress options & gain admin access. Remove or disable plugin until fix is available. Full site takeover risk. https://radar.offseq.com/threat/cve-2026-75860-cwe-269-improper-privilege-management-in-json-options-5e170a19118b89b1 #OffSeq #WordPress #CVE202675860
##updated 2026-08-20T09:31:23
6 posts
Frauscher FDS102 vulnerabilities include CVE-2026-14950 (CVSS 9.8), a session flaw enabling unauthorized continued access. Update to v2.14.0.
##Frauscher FDS 102 v2.1.0 hit by CRITICAL vuln (CVE-2026-14950): insufficient session expiration lets remote attackers keep using stolen session tokens. No patch yet โ monitor sessions, restrict access. https://radar.offseq.com/threat/cve-2026-14950-cwe-613-insufficient-session-expiration-in-frauscher-sensortechnik-fds-102-0a0f578bbcdd7c33 #OffSeq #ICS #CVE202614950 #Security
###OT #Advisory VDE-2026-078
Frauscher: FDS102 for FAdC/FAdCi R2 has multiple vulnerabilities
Frauscher Sensortechnik FDS102 for FAdC/FAdCi R2 is vulnerable to Unrestricted Upload of File with Dangerous Type, Path Traversal: '../filedir', Insertion of Sensitive Information into Log File, Incorrect Authorization, Insufficient Session Expiration, Cross-Site Request Forgery (CSRF), Missing Authentication for Critical Function, and Missing Authorization.
#CVE CVE-2026-14950, CVE-2026-14948, CVE-2026-14951, CVE-2026-14952, CVE-2026-14947, CVE-2026-14946, CVE-2026-14949, CVE-2026-14953
https://certvde.com/en/advisories/vde-2026-078/
#CSAF https://frauscher.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-078.json
##Frauscher FDS102 vulnerabilities include CVE-2026-14950 (CVSS 9.8), a session flaw enabling unauthorized continued access. Update to v2.14.0.
##Frauscher FDS 102 v2.1.0 hit by CRITICAL vuln (CVE-2026-14950): insufficient session expiration lets remote attackers keep using stolen session tokens. No patch yet โ monitor sessions, restrict access. https://radar.offseq.com/threat/cve-2026-14950-cwe-613-insufficient-session-expiration-in-frauscher-sensortechnik-fds-102-0a0f578bbcdd7c33 #OffSeq #ICS #CVE202614950 #Security
###OT #Advisory VDE-2026-078
Frauscher: FDS102 for FAdC/FAdCi R2 has multiple vulnerabilities
Frauscher Sensortechnik FDS102 for FAdC/FAdCi R2 is vulnerable to Unrestricted Upload of File with Dangerous Type, Path Traversal: '../filedir', Insertion of Sensitive Information into Log File, Incorrect Authorization, Insufficient Session Expiration, Cross-Site Request Forgery (CSRF), Missing Authentication for Critical Function, and Missing Authorization.
#CVE CVE-2026-14950, CVE-2026-14948, CVE-2026-14951, CVE-2026-14952, CVE-2026-14947, CVE-2026-14946, CVE-2026-14949, CVE-2026-14953
https://certvde.com/en/advisories/vde-2026-078/
#CSAF https://frauscher.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-078.json
##updated 2026-08-20T09:31:23
2 posts
#OT #Advisory VDE-2026-078
Frauscher: FDS102 for FAdC/FAdCi R2 has multiple vulnerabilities
Frauscher Sensortechnik FDS102 for FAdC/FAdCi R2 is vulnerable to Unrestricted Upload of File with Dangerous Type, Path Traversal: '../filedir', Insertion of Sensitive Information into Log File, Incorrect Authorization, Insufficient Session Expiration, Cross-Site Request Forgery (CSRF), Missing Authentication for Critical Function, and Missing Authorization.
#CVE CVE-2026-14950, CVE-2026-14948, CVE-2026-14951, CVE-2026-14952, CVE-2026-14947, CVE-2026-14946, CVE-2026-14949, CVE-2026-14953
https://certvde.com/en/advisories/vde-2026-078/
#CSAF https://frauscher.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-078.json
###OT #Advisory VDE-2026-078
Frauscher: FDS102 for FAdC/FAdCi R2 has multiple vulnerabilities
Frauscher Sensortechnik FDS102 for FAdC/FAdCi R2 is vulnerable to Unrestricted Upload of File with Dangerous Type, Path Traversal: '../filedir', Insertion of Sensitive Information into Log File, Incorrect Authorization, Insufficient Session Expiration, Cross-Site Request Forgery (CSRF), Missing Authentication for Critical Function, and Missing Authorization.
#CVE CVE-2026-14950, CVE-2026-14948, CVE-2026-14951, CVE-2026-14952, CVE-2026-14947, CVE-2026-14946, CVE-2026-14949, CVE-2026-14953
https://certvde.com/en/advisories/vde-2026-078/
#CSAF https://frauscher.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-078.json
##updated 2026-08-20T09:31:23
2 posts
#OT #Advisory VDE-2026-078
Frauscher: FDS102 for FAdC/FAdCi R2 has multiple vulnerabilities
Frauscher Sensortechnik FDS102 for FAdC/FAdCi R2 is vulnerable to Unrestricted Upload of File with Dangerous Type, Path Traversal: '../filedir', Insertion of Sensitive Information into Log File, Incorrect Authorization, Insufficient Session Expiration, Cross-Site Request Forgery (CSRF), Missing Authentication for Critical Function, and Missing Authorization.
#CVE CVE-2026-14950, CVE-2026-14948, CVE-2026-14951, CVE-2026-14952, CVE-2026-14947, CVE-2026-14946, CVE-2026-14949, CVE-2026-14953
https://certvde.com/en/advisories/vde-2026-078/
#CSAF https://frauscher.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-078.json
###OT #Advisory VDE-2026-078
Frauscher: FDS102 for FAdC/FAdCi R2 has multiple vulnerabilities
Frauscher Sensortechnik FDS102 for FAdC/FAdCi R2 is vulnerable to Unrestricted Upload of File with Dangerous Type, Path Traversal: '../filedir', Insertion of Sensitive Information into Log File, Incorrect Authorization, Insufficient Session Expiration, Cross-Site Request Forgery (CSRF), Missing Authentication for Critical Function, and Missing Authorization.
#CVE CVE-2026-14950, CVE-2026-14948, CVE-2026-14951, CVE-2026-14952, CVE-2026-14947, CVE-2026-14946, CVE-2026-14949, CVE-2026-14953
https://certvde.com/en/advisories/vde-2026-078/
#CSAF https://frauscher.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-078.json
##updated 2026-08-20T09:31:23
2 posts
#OT #Advisory VDE-2026-078
Frauscher: FDS102 for FAdC/FAdCi R2 has multiple vulnerabilities
Frauscher Sensortechnik FDS102 for FAdC/FAdCi R2 is vulnerable to Unrestricted Upload of File with Dangerous Type, Path Traversal: '../filedir', Insertion of Sensitive Information into Log File, Incorrect Authorization, Insufficient Session Expiration, Cross-Site Request Forgery (CSRF), Missing Authentication for Critical Function, and Missing Authorization.
#CVE CVE-2026-14950, CVE-2026-14948, CVE-2026-14951, CVE-2026-14952, CVE-2026-14947, CVE-2026-14946, CVE-2026-14949, CVE-2026-14953
https://certvde.com/en/advisories/vde-2026-078/
#CSAF https://frauscher.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-078.json
###OT #Advisory VDE-2026-078
Frauscher: FDS102 for FAdC/FAdCi R2 has multiple vulnerabilities
Frauscher Sensortechnik FDS102 for FAdC/FAdCi R2 is vulnerable to Unrestricted Upload of File with Dangerous Type, Path Traversal: '../filedir', Insertion of Sensitive Information into Log File, Incorrect Authorization, Insufficient Session Expiration, Cross-Site Request Forgery (CSRF), Missing Authentication for Critical Function, and Missing Authorization.
#CVE CVE-2026-14950, CVE-2026-14948, CVE-2026-14951, CVE-2026-14952, CVE-2026-14947, CVE-2026-14946, CVE-2026-14949, CVE-2026-14953
https://certvde.com/en/advisories/vde-2026-078/
#CSAF https://frauscher.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-078.json
##updated 2026-08-20T09:31:23
2 posts
#OT #Advisory VDE-2026-078
Frauscher: FDS102 for FAdC/FAdCi R2 has multiple vulnerabilities
Frauscher Sensortechnik FDS102 for FAdC/FAdCi R2 is vulnerable to Unrestricted Upload of File with Dangerous Type, Path Traversal: '../filedir', Insertion of Sensitive Information into Log File, Incorrect Authorization, Insufficient Session Expiration, Cross-Site Request Forgery (CSRF), Missing Authentication for Critical Function, and Missing Authorization.
#CVE CVE-2026-14950, CVE-2026-14948, CVE-2026-14951, CVE-2026-14952, CVE-2026-14947, CVE-2026-14946, CVE-2026-14949, CVE-2026-14953
https://certvde.com/en/advisories/vde-2026-078/
#CSAF https://frauscher.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-078.json
###OT #Advisory VDE-2026-078
Frauscher: FDS102 for FAdC/FAdCi R2 has multiple vulnerabilities
Frauscher Sensortechnik FDS102 for FAdC/FAdCi R2 is vulnerable to Unrestricted Upload of File with Dangerous Type, Path Traversal: '../filedir', Insertion of Sensitive Information into Log File, Incorrect Authorization, Insufficient Session Expiration, Cross-Site Request Forgery (CSRF), Missing Authentication for Critical Function, and Missing Authorization.
#CVE CVE-2026-14950, CVE-2026-14948, CVE-2026-14951, CVE-2026-14952, CVE-2026-14947, CVE-2026-14946, CVE-2026-14949, CVE-2026-14953
https://certvde.com/en/advisories/vde-2026-078/
#CSAF https://frauscher.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-078.json
##updated 2026-08-20T09:31:23
2 posts
#OT #Advisory VDE-2026-078
Frauscher: FDS102 for FAdC/FAdCi R2 has multiple vulnerabilities
Frauscher Sensortechnik FDS102 for FAdC/FAdCi R2 is vulnerable to Unrestricted Upload of File with Dangerous Type, Path Traversal: '../filedir', Insertion of Sensitive Information into Log File, Incorrect Authorization, Insufficient Session Expiration, Cross-Site Request Forgery (CSRF), Missing Authentication for Critical Function, and Missing Authorization.
#CVE CVE-2026-14950, CVE-2026-14948, CVE-2026-14951, CVE-2026-14952, CVE-2026-14947, CVE-2026-14946, CVE-2026-14949, CVE-2026-14953
https://certvde.com/en/advisories/vde-2026-078/
#CSAF https://frauscher.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-078.json
###OT #Advisory VDE-2026-078
Frauscher: FDS102 for FAdC/FAdCi R2 has multiple vulnerabilities
Frauscher Sensortechnik FDS102 for FAdC/FAdCi R2 is vulnerable to Unrestricted Upload of File with Dangerous Type, Path Traversal: '../filedir', Insertion of Sensitive Information into Log File, Incorrect Authorization, Insufficient Session Expiration, Cross-Site Request Forgery (CSRF), Missing Authentication for Critical Function, and Missing Authorization.
#CVE CVE-2026-14950, CVE-2026-14948, CVE-2026-14951, CVE-2026-14952, CVE-2026-14947, CVE-2026-14946, CVE-2026-14949, CVE-2026-14953
https://certvde.com/en/advisories/vde-2026-078/
#CSAF https://frauscher.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-078.json
##updated 2026-08-20T09:16:45.813000
2 posts
#OT #Advisory VDE-2026-078
Frauscher: FDS102 for FAdC/FAdCi R2 has multiple vulnerabilities
Frauscher Sensortechnik FDS102 for FAdC/FAdCi R2 is vulnerable to Unrestricted Upload of File with Dangerous Type, Path Traversal: '../filedir', Insertion of Sensitive Information into Log File, Incorrect Authorization, Insufficient Session Expiration, Cross-Site Request Forgery (CSRF), Missing Authentication for Critical Function, and Missing Authorization.
#CVE CVE-2026-14950, CVE-2026-14948, CVE-2026-14951, CVE-2026-14952, CVE-2026-14947, CVE-2026-14946, CVE-2026-14949, CVE-2026-14953
https://certvde.com/en/advisories/vde-2026-078/
#CSAF https://frauscher.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-078.json
###OT #Advisory VDE-2026-078
Frauscher: FDS102 for FAdC/FAdCi R2 has multiple vulnerabilities
Frauscher Sensortechnik FDS102 for FAdC/FAdCi R2 is vulnerable to Unrestricted Upload of File with Dangerous Type, Path Traversal: '../filedir', Insertion of Sensitive Information into Log File, Incorrect Authorization, Insufficient Session Expiration, Cross-Site Request Forgery (CSRF), Missing Authentication for Critical Function, and Missing Authorization.
#CVE CVE-2026-14950, CVE-2026-14948, CVE-2026-14951, CVE-2026-14952, CVE-2026-14947, CVE-2026-14946, CVE-2026-14949, CVE-2026-14953
https://certvde.com/en/advisories/vde-2026-078/
#CSAF https://frauscher.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-078.json
##updated 2026-08-20T04:16:56.280000
13 posts
3 repos
https://github.com/BiuTrap/CVE-2026-64849
CVE-2026-64849 exposes unauthenticated MLflow tracking servers to critical server-side request forgery (SSRF) threats via redirect bypasses. Discover immediate mitigation strategies, CISA KEV compliance guidelines, and SOC detection playbooks to secure your AI infrastructure. https://thecybermind.co/jily
##CISA has detected active exploitation of CVE-2026-64849, a critical SSRF in MLflow. Exposed tracking servers without authentication can be abused to query cloud metadata, internal services, and loopback addresses, leading to credential theft and internal reconnaissance.
#CloudSecurity #SSRF #Vulnerability #ThreatIntel
https://cyberworldops.eu/en/mlflow-under-attack-critical-ssrf-exposes-cloud-credentials-and
##๐ด New security advisory:
CVE-2026-64849 affects Lfprojects Mlflow.
โข Impact: Remote code execution or complete system compromise possible
โข Risk: Attackers can gain full control of affected systems
โข Mitigation: Patch immediately or isolate affected systems
Full breakdown:
https://www.yazoul.net/advisory/cve/cve-2026-64849-mlflow-ssrf-leaks-cloud-metadata
by Yazoul AI
##๐จ [CISA-2026:0819] CISA Adds One Known Exploited Vulnerability to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0819)
CISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
โ ๏ธ CVE-2026-64849 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-64849)
- Name: MLflow Server-Side Request Forgery Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: MLflow
- Product: MLflow
- Notes: https://github.com/mlflow/mlflow/pull/24258 ; https://github.com/mlflow/mlflow/issues/24179 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-64849
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260819 #cisa20260819 #cve_2026_64849 #cve202664849
##CVE ID: CVE-2026-64849
Vendor: MLflow
Product: MLflow
Date Added: 2026-08-19
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-64849
Attackers Exploit a Critical MLflow Vulnerability
Attackers are actively exploiting a critical flaw in MLflow (CVE-2026-64849) to steal cloud credentials and gain remote code execution.
**If you run MLflow, update it to version 3.15.0 or later ASAP, and make sure the server is not reachable from the internet. Then check your audit logs for any odd requests to cloud metadata services. If you see any (or aren't sure), rotate your cloud credentials and keys as a precaution.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/attackers-exploit-a-critical-mlflow-vulnerability-3-u-3-k-6/gD2P6Ple2L
CVE-2026-64849 exposes unauthenticated MLflow tracking servers to critical server-side request forgery (SSRF) threats via redirect bypasses. Discover immediate mitigation strategies, CISA KEV compliance guidelines, and SOC detection playbooks to secure your AI infrastructure. https://thecybermind.co/jily
##CISA has detected active exploitation of CVE-2026-64849, a critical SSRF in MLflow. Exposed tracking servers without authentication can be abused to query cloud metadata, internal services, and loopback addresses, leading to credential theft and internal reconnaissance.
#CloudSecurity #SSRF #Vulnerability #ThreatIntel
https://cyberworldops.eu/en/mlflow-under-attack-critical-ssrf-exposes-cloud-credentials-and
##๐จ [CISA-2026:0819] CISA Adds One Known Exploited Vulnerability to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0819)
CISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
โ ๏ธ CVE-2026-64849 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-64849)
- Name: MLflow Server-Side Request Forgery Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISAโs BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISAโs โForensics Triage Requirementsโ (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: MLflow
- Product: MLflow
- Notes: https://github.com/mlflow/mlflow/pull/24258 ; https://github.com/mlflow/mlflow/issues/24179 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-64849
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260819 #cisa20260819 #cve_2026_64849 #cve202664849
##CVE ID: CVE-2026-64849
Vendor: MLflow
Product: MLflow
Date Added: 2026-08-19
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-64849
Attackers Exploit a Critical MLflow Vulnerability
Attackers are actively exploiting a critical flaw in MLflow (CVE-2026-64849) to steal cloud credentials and gain remote code execution.
**If you run MLflow, update it to version 3.15.0 or later ASAP, and make sure the server is not reachable from the internet. Then check your audit logs for any odd requests to cloud metadata services. If you see any (or aren't sure), rotate your cloud credentials and keys as a precaution.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/attackers-exploit-a-critical-mlflow-vulnerability-3-u-3-k-6/gD2P6Ple2L
Active exploitation of CVE-2026-64849 in MLflow enables unauthenticated SSRF to internal endpoints including cloud metadata services. FUXA, a SCADA/HMI platform for industrial automation, faces parallel exposure. Both flaws were confirmed independently by watchTowr and VulnCheck.
#MLflowVulnerability #FUXACVE #IndustrialOT #AISecurity
https://cyberworldops.eu/en/mlflow-and-fuxa-under-attack-critical-ai-and-industrial-automation
##A public PoC for CVE-2026-64849, an unauthenticated MLflow SSRF (CVSS 9.3), is now live. watchTowr reports exploitation attempts. Patch to 3.15.0.
##updated 2026-08-20T00:35:18
2 posts
๐ CVE-2026-76928 - High (7.5)
X.509IF protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76928/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-76928 - High (7.5)
X.509IF protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76928/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T00:35:17
1 posts
CVE-2026-76760 - Code injection in chenhg5 cc-connect <=1.4.1 via Authenticate (core/webhook.go). Remote exploit public, CVSS 7.3, no patch yet. Limit access and monitor logs. #CVE #infosec #codeinjection
##updated 2026-08-20T00:35:17
4 posts
CVE-2026-76850 (CRITICAL): InternLM lmdeploy <0.16.0 vulnerable to remote code execution via untrusted pickle deserialization on ZeroMQ endpoints. Enable API keys or disable disaggregated serving to mitigate. https://radar.offseq.com/threat/cve-2026-76850-deserialization-of-untrusted-data-in-internlm-lmdeploy-657fdd1d6177df51 #OffSeq #Infosec #Vuln #CVE202676850
##๐ด CVE-2026-76850 - Critical (9.8)
LMDeploy deserializes disaggregated-serving peer messages with pickle. The handle_zmq_recv coroutine in lmdeploy/pytorch/disagg/conn/engine_conn.py reads peer-to-peer cache-free requests with recv_pyobj(), which deserializes the received bytes wit...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76850/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-76850 (CRITICAL): InternLM lmdeploy <0.16.0 vulnerable to remote code execution via untrusted pickle deserialization on ZeroMQ endpoints. Enable API keys or disable disaggregated serving to mitigate. https://radar.offseq.com/threat/cve-2026-76850-deserialization-of-untrusted-data-in-internlm-lmdeploy-657fdd1d6177df51 #OffSeq #Infosec #Vuln #CVE202676850
##๐ด CVE-2026-76850 - Critical (9.8)
LMDeploy deserializes disaggregated-serving peer messages with pickle. The handle_zmq_recv coroutine in lmdeploy/pytorch/disagg/conn/engine_conn.py reads peer-to-peer cache-free requests with recv_pyobj(), which deserializes the received bytes wit...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76850/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T00:35:17
2 posts
๐ CVE-2026-76880 - High (7.5)
RRC protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76880/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-76880 - High (7.5)
RRC protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76880/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T00:35:11
3 posts
Splunk patches 9.1 CVSS RCE in MCP Server and 9 flaws in AI Toolkit
Splunk์ด MCP Server, AI Toolkit, Splunk Connect for Kafka ๋ฑ์์ ๋ฐ๊ฒฌ๋ 17๊ฐ ์ทจ์ฝ์ ์ ๋ณด์ ์ ๋ฐ์ดํธ๋ฅผ ๋ฐฐํฌํ๋ค. ๊ฐ์ฅ ์ฌ๊ฐํ CVE-2026-76404(CVSS 9.1)๋ Splunk MCP Server 1.2.1 ๋ฏธ๋ง์์ ๊ด๋ฆฌ์ ๊ถํ ์ฌ์ฉ์๊ฐ ์๊ฒฉ ์ฆ๋ช ๊ด๋ฆฌ ๊ธฐ๋ฅ์ ์์ ํ์ง ์์ ์ญ์ง๋ ฌํ๋ฅผ ์ ์ฉํด ํธ์คํธ OS ๋ช ๋ น์ ์คํํ ์ ์๋ RCE๋ค. AI Toolkit์๋ ์ ์ฑ sparse matrix/pickle ๋ฐ์ดํฐ๋ฅผ ํฌํจํ ๋ชจ๋ธ ๋ก๋ฉ์ผ๋ก ์ฝ๋ ์คํ์ด ๊ฐ๋ฅํ CVE-2026-76395(CVSS 8.8)๋ฅผ ํฌํจํด...
##๐ CVE-2026-76395 - High (8.8)
In Splunk AI Toolkit versions below 6.0.0, a user who holds the "power" Splunk role could execute arbitrary code on the Splunk server by loading a model file containing crafted sparse matrix data. The deserialization of untrusted data is possible ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76395/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-76395 - High (8.8)
In Splunk AI Toolkit versions below 6.0.0, a user who holds the "power" Splunk role could execute arbitrary code on the Splunk server by loading a model file containing crafted sparse matrix data. The deserialization of untrusted data is possible ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76395/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T00:35:11
2 posts
๐ CVE-2026-76399 - High (8.1)
In Splunk AI Toolkit versions below 6.0.1, a user who holds the "power" Splunk role could modify app-provided scheduled searches to run arbitrary Search Processing Language (SPL) using the permissions of the search owner, which could allow access ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76399/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-76399 - High (8.1)
In Splunk AI Toolkit versions below 6.0.1, a user who holds the "power" Splunk role could modify app-provided scheduled searches to run arbitrary Search Processing Language (SPL) using the permissions of the search owner, which could allow access ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76399/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T00:35:11
2 posts
๐ CVE-2026-76397 - High (8.1)
In Splunk AI Toolkit versions below 6.0.0, a user who holds the "power" Splunk role could access and delete all relevant data in experiment history, including data associated with other users. The vulnerability is possible because Splunk AI Toolki...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76397/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-76397 - High (8.1)
In Splunk AI Toolkit versions below 6.0.0, a user who holds the "power" Splunk role could access and delete all relevant data in experiment history, including data associated with other users. The vulnerability is possible because Splunk AI Toolki...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76397/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T00:35:11
2 posts
๐ CVE-2026-76396 - High (7.5)
In Splunk AI Toolkit versions below 6.0.0, a user that holds a role with the schedule_search capability could cause a scheduled search to load and deserialize a model file through the apply search command. The improper access control is possible b...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76396/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-76396 - High (7.5)
In Splunk AI Toolkit versions below 6.0.0, a user that holds a role with the schedule_search capability could cause a scheduled search to load and deserialize a model file through the apply search command. The improper access control is possible b...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76396/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T00:35:08
7 posts
Splunk patches 9.1 CVSS RCE in MCP Server and 9 flaws in AI Toolkit
Splunk์ด MCP Server, AI Toolkit, Splunk Connect for Kafka ๋ฑ์์ ๋ฐ๊ฒฌ๋ 17๊ฐ ์ทจ์ฝ์ ์ ๋ณด์ ์ ๋ฐ์ดํธ๋ฅผ ๋ฐฐํฌํ๋ค. ๊ฐ์ฅ ์ฌ๊ฐํ CVE-2026-76404(CVSS 9.1)๋ Splunk MCP Server 1.2.1 ๋ฏธ๋ง์์ ๊ด๋ฆฌ์ ๊ถํ ์ฌ์ฉ์๊ฐ ์๊ฒฉ ์ฆ๋ช ๊ด๋ฆฌ ๊ธฐ๋ฅ์ ์์ ํ์ง ์์ ์ญ์ง๋ ฌํ๋ฅผ ์ ์ฉํด ํธ์คํธ OS ๋ช ๋ น์ ์คํํ ์ ์๋ RCE๋ค. AI Toolkit์๋ ์ ์ฑ sparse matrix/pickle ๋ฐ์ดํฐ๋ฅผ ํฌํจํ ๋ชจ๋ธ ๋ก๋ฉ์ผ๋ก ์ฝ๋ ์คํ์ด ๊ฐ๋ฅํ CVE-2026-76395(CVSS 8.8)๋ฅผ ํฌํจํด...
##Splunk patches CVE-2026-76404, a critical remote code execution flaw in the MCP Server app, plus 16 more bugs across its apps and add-ons.
#Splunk #CVE #RemoteCodeExecution #RCE #MCPServer #Deserialization #InfoSec #PatchNow
##Splunk MCP Server app v1.2 is impacted by CVE-2026-76404 (CRITICAL, CVSS 9.1) โ insecure deserialization lets admin users run arbitrary OS commands. Limit admin access & monitor for misuse until a patch is released. https://radar.offseq.com/threat/cve-2026-76404-the-application-deserializes-untrusted-data-without-sufficiently-verifying-that-the-a0d42d963a9e6a80 #OffSeq #Splunk #Infosec #CVE202676404
##๐ด CVE-2026-76404 - Critical (9.1)
In Splunk MCP Server app versions below 1.2.1, a user who holds the "admin" Splunk role could execute arbitrary commands on the underlying operating system. The vulnerability is possible because of missing input validation in the app's credential ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76404/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##Splunk patches CVE-2026-76404, a critical remote code execution flaw in the MCP Server app, plus 16 more bugs across its apps and add-ons.
#Splunk #CVE #RemoteCodeExecution #RCE #MCPServer #Deserialization #InfoSec #PatchNow
##Splunk MCP Server app v1.2 is impacted by CVE-2026-76404 (CRITICAL, CVSS 9.1) โ insecure deserialization lets admin users run arbitrary OS commands. Limit admin access & monitor for misuse until a patch is released. https://radar.offseq.com/threat/cve-2026-76404-the-application-deserializes-untrusted-data-without-sufficiently-verifying-that-the-a0d42d963a9e6a80 #OffSeq #Splunk #Infosec #CVE202676404
##๐ด CVE-2026-76404 - Critical (9.1)
In Splunk MCP Server app versions below 1.2.1, a user who holds the "admin" Splunk role could execute arbitrary commands on the underlying operating system. The vulnerability is possible because of missing input validation in the app's credential ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76404/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T00:35:02
1 posts
CVE-2026-76325 - Stored XSS in Splunk Enterprise. Power role can share malicious ui-tour object, executing JS in authenticated users' browsers. CVSS 7.3. Update to fixed versions immediately. #CVE #Splunk #infosec
##updated 2026-08-20T00:35:02
1 posts
CVE-2026-76333 - Stored XSS in Splunk Enterprise Dashboard Studio. Crafted URL triggers attacker JS in user's browser, exposing data. CVSS 7.1. No official patch - mitigate now. #CVE #Splunk #infosec
##updated 2026-08-20T00:35:02
1 posts
CVE-2026-76262 - Info disclosure in Splunk Enterprise <10.4.2. Unauthenticated access to Prometheus metrics via Edge Processor SPL2 Preview sidecar. CVSS 7.5. Update to 10.4.2. #CVE #Splunk #infosec
##updated 2026-08-20T00:34:56
2 posts
Splunk patches three critical embedded report flaws (CVE-2026-76310, CVSS 9.4) that let unauthenticated users affect system integrity.
#Splunk #CVE #AccessControl #SplunkEnterprise #Vulnerability #InfoSec #PatchNow
##Splunk patches three critical embedded report flaws (CVE-2026-76310, CVSS 9.4) that let unauthenticated users affect system integrity.
#Splunk #CVE #AccessControl #SplunkEnterprise #Vulnerability #InfoSec #PatchNow
##updated 2026-08-19T21:31:32
2 posts
Cisco patches a Crosswork SQL injection flaw, CVE-2026-20030, rated CVSS 10.0. A BroadWorks XXE bug (CVE-2026-20320) also gets a fix.
#Cisco #CVE #SQLInjection #Crosswork #BroadWorks #XXE #Vulnerability #InfoSec
##Cisco patches a Crosswork SQL injection flaw, CVE-2026-20030, rated CVSS 10.0. A BroadWorks XXE bug (CVE-2026-20320) also gets a fix.
#Cisco #CVE #SQLInjection #Crosswork #BroadWorks #XXE #Vulnerability #InfoSec
##updated 2026-08-19T21:30:47
1 posts
CVE-2026-76583 - Command injection in TRENDnet TV-IP751WIC via set_time.cgi. CVSS 7.4. Exploit public, no patch. Disable remote access now. #CVE #TRENDnet #infosec
##updated 2026-08-19T21:30:46
2 posts
๐ CVE-2026-75569 - High (7.7)
A flaw was found in mce-operator-bundle. The build process fetches and executes scripts from a remote repository without performing integrity checks, such as commit pinning or signature verification. This allows a malicious actor with write access...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-75569/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-75569 - High (7.7)
A flaw was found in mce-operator-bundle. The build process fetches and executes scripts from a remote repository without performing integrity checks, such as commit pinning or signature verification. This allows a malicious actor with write access...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-75569/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-19T21:30:46
2 posts
๐ CVE-2026-76139 - High (8)
A flaw was found in acm-operator-bundle. The build process for this component downloads and runs a script from a remote source without verifying its authenticity or integrity. This script gains access to sensitive credentials, such as GitHub acces...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76139/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-76139 - High (8)
A flaw was found in acm-operator-bundle. The build process for this component downloads and runs a script from a remote source without verifying its authenticity or integrity. This script gains access to sensitive credentials, such as GitHub acces...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76139/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-19T21:30:40
2 posts
๐ด CVE-2026-76584 - Critical (9.9)
A security flaw has been discovered in TRENDnet TV-IP751WIC 11.03.03. Affected by this issue is some unknown functionality of the file /cgi-bin/admin/set_time.cgi of the component alphapd. The manipulation of the argument Currenttime results in st...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76584/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ด CVE-2026-76584 - Critical (9.9)
A security flaw has been discovered in TRENDnet TV-IP751WIC 11.03.03. Affected by this issue is some unknown functionality of the file /cgi-bin/admin/set_time.cgi of the component alphapd. The manipulation of the argument Currenttime results in st...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76584/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-19T21:30:32
2 posts
๐ CVE-2026-18848 - High (8.3)
IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulnerability in the ASMI web interface. An attacker who can lure a logged-in ASMI administrator to visi...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-18848/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-18848 - High (8.3)
IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulnerability in the ASMI web interface. An attacker who can lure a logged-in ASMI administrator to visi...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-18848/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-19T21:30:29
2 posts
Cisco patches Secure Workload flaws CVE-2026-20315 and CVE-2026-20317, an authentication bypass and privilege escalation pair scoring CVSS 10. Upgrade now.
#Cisco #CVE #AuthenticationBypass #PrivilegeEscalation #Vulnerability #InfoSec #PatchNow
##Cisco patches Secure Workload flaws CVE-2026-20315 and CVE-2026-20317, an authentication bypass and privilege escalation pair scoring CVSS 10. Upgrade now.
#Cisco #CVE #AuthenticationBypass #PrivilegeEscalation #Vulnerability #InfoSec #PatchNow
##updated 2026-08-19T20:17:21.727000
2 posts
๐ CVE-2026-68900 - High (7.6)
Wekan is open source kanban built with Meteor. From 8.72 until 10.23, addBoardHTMLToZip() in client/lib/exportHTML.js read a card title and body through textContent, which decoded entity-encoded markup, and then interpolated titleText and allText ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-68900/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-68900 - High (7.6)
Wekan is open source kanban built with Meteor. From 8.72 until 10.23, addBoardHTMLToZip() in client/lib/exportHTML.js read a card title and body through textContent, which decoded entity-encoded markup, and then interpolated titleText and allText ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-68900/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-19T19:17:19.177000
2 posts
๐ CVE-2026-52877 - High (8.3)
Streambert is a cross-platform Electron Desktop App to stream and download video content. Prior to version 2.6.0, the open-external IPC handler in src/ipc/downloads.js passes a renderer-supplied url directly to Electron's shell.openExternal withou...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-52877/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-52877 - High (8.3)
Streambert is a cross-platform Electron Desktop App to stream and download video content. Prior to version 2.6.0, the open-external IPC handler in src/ipc/downloads.js passes a renderer-supplied url directly to Electron's shell.openExternal withou...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-52877/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-19T19:17:18.273000
2 posts
๐ CVE-2026-50191 - High (8.8)
4gaBoards is a boards system for realtime project management. Prior to 3.3.8, 4gaBoards is vulnerable to pre-account takeover when registrationEnabled, localRegistrationEnabled, and ssoRegistrationEnabled are enabled and Google, GitHub, Microsoft,...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-50191/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-50191 - High (8.8)
4gaBoards is a boards system for realtime project management. Prior to 3.3.8, 4gaBoards is vulnerable to pre-account takeover when registrationEnabled, localRegistrationEnabled, and ssoRegistrationEnabled are enabled and Google, GitHub, Microsoft,...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-50191/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-19T18:33:02
2 posts
๐ CVE-2026-75149 - High (8.8)
marimo before 0.23.15 contains a code injection vulnerability in the notebook configuration handler that allows attackers to execute arbitrary commands by supplying a crafted MCP server entry with an attacker-controlled command value embedded in a...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-75149/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-75149 - High (8.8)
marimo before 0.23.15 contains a code injection vulnerability in the notebook configuration handler that allows attackers to execute arbitrary commands by supplying a crafted MCP server entry with an attacker-controlled command value embedded in a...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-75149/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-19T18:32:57
8 posts
A critical flaw in Elementor Pro (CVE-2026-32475) enables unauthenticated remote code execution via the File Upload module. Two desynchronized processing loops mishandle empty filenames, bypassing validation entirely. All versions below 4.2.2 are affected. Patch immediately and audit server logs for indicators of exploitation.
#ElementorPro #WordPress #RemoteCodeExecution #CVE202632475
https://cyberworldops.eu/en/elementor-pro-critical-vulnerability-in-forms-file-upload-could-lead
##Elementor Pro Security Crisis: Critical WordPress Flaw Could Turn File Uploads Into Remote Code Execution
A Dangerous WordPress Vulnerability Hiding Behind a Familiar Feature A seemingly ordinary file-upload feature in Elementor Pro has become the center of a serious WordPress security warning. A newly disclosed vulnerability, tracked as CVE-2026-32475, could allow an attacker to upload a malicious PHP file to a vulnerable website and ultimately execute arbitraryโฆ
##Elementor Pro Flaw Enables RCE Attacks on WordPress Sites
A critical vulnerability in Elementor Pro, tracked as CVE-2026-32475, allows attackers to launch remote code execution (RCE) attacks on WordPress sites by exploiting a discrepancy in the plugin's File Upload module. This flaw affects Elementor Pro versions before 4.2.2 and can be triggered by a specially crafted multipart upload.
#Wordpress #ElementorPro #RemoteCodeExecution #Cve202632475 #PluginVulnerability
##Critical Elementor Pro WordPress Flaw Opens the Door to Remote Code Execution โ Millions of Sites Face a Dangerous Upload Risk + Video
A Serious WordPress Security Warning A newly disclosed vulnerability in Elementor Pro has turned an ordinary website feature into a potential gateway for attackers. The critical flaw, tracked as CVE-2026-32475, can allow an unauthenticated attacker to upload a malicious PHP file and execute code remotely on a vulnerable WordPressโฆ
##Critical Elementor Pro Flaw Puts WordPress Sites at Risk of Unauthenticated PHP Code Execution + Video
A Dangerous Weakness in a Popular WordPress Ecosystem A newly reported critical security vulnerability in Elementor Pro is raising serious concerns for WordPress website owners, administrators, hosting providers, and security teams. Tracked as CVE-2026-32475, the flaw reportedly affects Elementor Pro installations up to version 4.2.1 and could allow an unauthenticatedโฆ
##WordPress admins running Elementor Pro:
CVSS 9.8 - CVE-2026-32475
WordPress Elementor Pro Plugin <= 4.2.1 is vulnerable to a high priority Arbitrary File Upload
https://patchstack.com/articles/critical-unauthenticated-file-upload-to-rce-in-elementor-pro-plugin/
##A critical flaw in Elementor Pro (CVE-2026-32475) enables unauthenticated remote code execution via the File Upload module. Two desynchronized processing loops mishandle empty filenames, bypassing validation entirely. All versions below 4.2.2 are affected. Patch immediately and audit server logs for indicators of exploitation.
#ElementorPro #WordPress #RemoteCodeExecution #CVE202632475
https://cyberworldops.eu/en/elementor-pro-critical-vulnerability-in-forms-file-upload-could-lead
##WordPress admins running Elementor Pro:
CVSS 9.8 - CVE-2026-32475
WordPress Elementor Pro Plugin <= 4.2.1 is vulnerable to a high priority Arbitrary File Upload
https://patchstack.com/articles/critical-unauthenticated-file-upload-to-rce-in-elementor-pro-plugin/
##updated 2026-08-19T18:32:57
2 posts
๐ด CVE-2026-75143 - Critical (9.8)
FFmpeg before commit 1c10bcc contains a heap buffer overflow in the RIST protocol reader (libavformat/librist.c). librist_read() ignored its size argument and copied the full received payload length into the caller-provided destination buffer, ove...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-75143/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ด CVE-2026-75143 - Critical (9.8)
FFmpeg before commit 1c10bcc contains a heap buffer overflow in the RIST protocol reader (libavformat/librist.c). librist_read() ignored its size argument and copied the full received payload length into the caller-provided destination buffer, ove...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-75143/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-19T18:32:57
2 posts
๐ CVE-2026-75142 - High (7.8)
FFmpeg before commit 9d786e4 contains a stack buffer overflow in the MPEG-PS muxer (libavformat/mpegenc.c). When muxing input with more streams than the muxer's fixed-size stack buffer accommodates, the buffer is overflowed. A crafted input with a...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-75142/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-75142 - High (7.8)
FFmpeg before commit 9d786e4 contains a stack buffer overflow in the MPEG-PS muxer (libavformat/mpegenc.c). When muxing input with more streams than the muxer's fixed-size stack buffer accommodates, the buffer is overflowed. A crafted input with a...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-75142/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-19T18:32:57
2 posts
๐ CVE-2026-75146 - High (8.1)
FFmpeg before commit 65b0dab contains an out-of-bounds read in the DASH demuxer (libavformat/dashdec.c). When a live DASH manifest is refreshed with a startNumber that is lower than the previous value, the current sequence number is driven negativ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-75146/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-75146 - High (8.1)
FFmpeg before commit 65b0dab contains an out-of-bounds read in the DASH demuxer (libavformat/dashdec.c). When a live DASH manifest is refreshed with a startNumber that is lower than the previous value, the current sequence number is driven negativ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-75146/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-19T18:32:35
1 posts
[1/9]
Most Impactful Security Incidents (โฏ2026โ08โ18โฏโโฏ2026โ08โ19โฏ)
---
PRIORITYโฏ1 โ Critical / HighโSeverity Flaws (CVSSโฏ7โ10):
CVEโ2026โ60392
โข 7.8 (HIGH)
โข OracleโฏOutsideโฏInโฏTechnology โ PDF Export SDK (Fusion Middleware)
โข Localโprivilege escalation; requires attacker to have a logon on the host where the SDK runs. Successful exploitation can lead to full takeover of the component.
โข 8.5.8
โข Easily exploitable (local) โ requires user interaction.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60392
CVEโ2026โ60782
โข 9.8 (CRITICAL)
โข OracleโฏPayments (EโBusiness Suite) โ File Transmission
โข Remote unauthenticated attacker can compromise the Payments module via HTTP. Leads to full takeover of the Payments service.
โข 12.2.3โ12.2.15
โข Networkโaccessible, no authentication required.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60782
CVEโ2026โ60730
โข 9.9 (CRITICAL)
โข OracleโฏWebCenterโฏPortal โ Composer component
โข Remote unauthenticated attacker can compromise the portal via HTTP. Full takeover of the portal.
โข 12.2.1.4.0,โฏ14.1.2.0.0
โข Networkโaccessible, no auth.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60730
CVEโ2026โ60728
โข 9.1 (CRITICAL)
โข OracleโฏWebCenterโฏPortal โ Portlet Services
โข Remote unauthenticated attacker can cause denialโofโservice and full compromise of portal data.
โข 12.2.1.4.0,โฏ14.1.2.0.0
โข Networkโaccessible, no auth.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60728
CVEโ2026โ60727
โข 9.8 (CRITICAL)
โข OracleโฏIdentityโฏManager โ OIM Legacy UI
โข Remote unauthenticated attacker can take over the IAM system via HTTP.
โข 12.2.1.4.0,โฏ14.1.2.1.0
โข Networkโaccessible, no auth.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60727
CVEโ2026โ60721
โข 9.8 (CRITICAL)
โข OracleโฏIdentityโฏManager โ OIM Legacy UI
โข Same vector as above; full takeover possible.
โข 12.2.1.4.0,โฏ14.1.2.1.0
โข Networkโaccessible, no auth.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60721
CVEโ2026โ60720
โข 9.9 (CRITICAL)
โข OracleโฏIdentityโฏManager โ OIM Legacy UI
โข Remote unauthenticated attacker can compromise the IAM system.
โข 12.2.1.4.0,โฏ14.1.2.1.0
โข Networkโaccessible, no auth.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60720
updated 2026-08-19T18:32:34
2 posts
An Oracle WebLogic vulnerability, CVE-2026-60702 (CVSS 9.9), allows full server takeover. Oracle patched nine flaws, five rated critical. Update now.
#OracleWebLogic #CVE202660702 #RCE #FusionMiddleware #ServerTakeover #InfoSec
##An Oracle WebLogic vulnerability, CVE-2026-60702 (CVSS 9.9), allows full server takeover. Oracle patched nine flaws, five rated critical. Update now.
#OracleWebLogic #CVE202660702 #RCE #FusionMiddleware #ServerTakeover #InfoSec
##updated 2026-08-19T18:32:28
1 posts
2 repos
ShieldBreak : cette faille zero-day menace Windows, Microsoft prรฉpare un patch https://www.it-connect.fr/shieldbreak-zero-day-defender-cve-2026-69414/ #ActuCybersรฉcuritรฉ #Cybersรฉcuritรฉ #Vulnรฉrabilitรฉ #Microsoft #Windows
##updated 2026-08-19T17:19:23.613000
2 posts
๐ CVE-2026-53958 - High (7.6)
4gaBoards is a boards system for realtime project management. Prior to 3.3.9, 4gaBoards allows an authenticated user to modify ssoGoogleId, ssoGoogleEmail, ssoGithubId, ssoGithubUsername, ssoGithubEmail, ssoMicrosoftId, ssoMicrosoftEmail, ssoOidcI...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-53958/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-53958 - High (7.6)
4gaBoards is a boards system for realtime project management. Prior to 3.3.9, 4gaBoards allows an authenticated user to modify ssoGoogleId, ssoGoogleEmail, ssoGithubId, ssoGithubUsername, ssoGithubEmail, ssoMicrosoftId, ssoMicrosoftEmail, ssoOidcI...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-53958/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-19T17:18:36.337000
2 posts
CVE-2026-18051 (CVSS 10) is an unauthenticated arbitrary file write in W3 Total Cache, exposing 900k+ WordPress sites. Update to 2.10.5 now.
#W3TotalCache #WordPress #CVE202618051 #PathTraversal #InfoSec
##CVE-2026-18051 (CVSS 10) is an unauthenticated arbitrary file write in W3 Total Cache, exposing 900k+ WordPress sites. Update to 2.10.5 now.
#W3TotalCache #WordPress #CVE202618051 #PathTraversal #InfoSec
##updated 2026-08-19T16:18:58.590000
2 posts
๐ CVE-2026-70408 - High (8.8)
An incorrect authorization vulnerability exists in acmailer, which may allow a user to create a sub-account that has administrative privileges.
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-70408/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-70408 - High (8.8)
An incorrect authorization vulnerability exists in acmailer, which may allow a user to create a sub-account that has administrative privileges.
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-70408/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-19T15:33:23
2 posts
๐ด CVE-2026-73924 - Critical (9.1)
Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 1.4.19. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-73924/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ด CVE-2026-73924 - Critical (9.1)
Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 1.4.19. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-73924/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-19T15:33:23
2 posts
๐ด CVE-2026-73921 - Critical (9.8)
Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 1.4.20. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-73921/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ด CVE-2026-73921 - Critical (9.8)
Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 1.4.20. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-73921/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-19T15:33:23
2 posts
๐ CVE-2026-73938 - High (7.5)
Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 4.5.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP t...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-73938/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-73938 - High (7.5)
Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 4.5.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP t...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-73938/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-19T15:32:47
2 posts
๐ CVE-2026-71176 - High (8.8)
Dell OpenManage Enterprise, versions prior to 4.7.0, contains an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability. A low privileged attacker with remote access could potentially exploit this vulner...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-71176/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-71176 - High (8.8)
Dell OpenManage Enterprise, versions prior to 4.7.0, contains an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability. A low privileged attacker with remote access could potentially exploit this vulner...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-71176/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-19T15:32:47
2 posts
๐ CVE-2026-71961 - High (8.8)
Cudy WR3000 2.0 running firmware before 2.5.24 contains an OS command injection vulnerability that allows authenticated attackers to execute arbitrary OS commands with root privileges by sending unsanitized input through the mesh MQTT command inte...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-71961/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-71961 - High (8.8)
Cudy WR3000 2.0 running firmware before 2.5.24 contains an OS command injection vulnerability that allows authenticated attackers to execute arbitrary OS commands with root privileges by sending unsanitized input through the mesh MQTT command inte...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-71961/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-19T15:32:46
1 posts
CVE-2026-58562 - Dell Command Update <5.7.1 missing authorization. Local attacker can gain unauthorized access. CVSS 7.3. No patch yet - restrict local access and monitor. #CVE #Dell #infosec
##updated 2026-08-19T15:32:38
1 posts
CVE-2026-76219 - Arbitrary file overwrite in GitPython before 3.1.58 via IndexFile methods. Inject --index-output to clobber files. CVSS 8.1. Unpatched - update or mitigate now. #CVE #GitPython #infosec
##updated 2026-08-19T15:32:33
1 posts
CVE-2026-73390 - Unauthenticated Privilege Escalation in Total Donations <=2.0.5. CVSS 9.8. Unpatched. Disable now. #CVE #WordPress #infosec
##updated 2026-08-19T15:32:24
2 posts
CVE-2026-67364 (CVSS 10): CRITICAL pre-auth PHP code injection in Balbooa Forms for Joomla (v1.0.0 โ 2.4.3.1). Exploitable via unescaped query param in custom-PHP handler. Update to 2.4.3.2+ now. https://radar.offseq.com/threat/cve-2026-67364-cwe-94-improper-control-of-generation-of-code-code-injection-in-balbooacom-balbooa-36f88c0efc17ca75 #OffSeq #Joomla #CVE202667364 #WebSecurity
##CVE-2026-67364 (CVSS 10): CRITICAL pre-auth PHP code injection in Balbooa Forms for Joomla (v1.0.0 โ 2.4.3.1). Exploitable via unescaped query param in custom-PHP handler. Update to 2.4.3.2+ now. https://radar.offseq.com/threat/cve-2026-67364-cwe-94-improper-control-of-generation-of-code-code-injection-in-balbooacom-balbooa-36f88c0efc17ca75 #OffSeq #Joomla #CVE202667364 #WebSecurity
##updated 2026-08-19T15:32:20
2 posts
๐ CVE-2026-73937 - High (8.2)
Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 4.5.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP/2...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-73937/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-73937 - High (8.2)
Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 4.5.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP/2...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-73937/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-19T15:32:20
2 posts
๐ CVE-2026-73935 - High (7.5)
Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 4.5.1. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP/2...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-73935/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-73935 - High (7.5)
Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 4.5.1. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP/2...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-73935/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-19T15:32:20
2 posts
๐ CVE-2026-73934 - High (7.5)
Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 3.2.19. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP/...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-73934/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-73934 - High (7.5)
Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 3.2.19. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP/...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-73934/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-19T15:32:20
2 posts
๐ CVE-2026-73939 - High (8.6)
Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 3.2.20. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-73939/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-73939 - High (8.6)
Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 3.2.20. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-73939/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-19T15:32:19
2 posts
๐ด CVE-2026-73922 - Critical (9.1)
Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 1.4.19. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-73922/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ด CVE-2026-73922 - Critical (9.1)
Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 1.4.19. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-73922/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-19T15:32:19
2 posts
๐ CVE-2026-73936 - High (7.5)
Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 4.5.1. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP t...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-73936/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-73936 - High (7.5)
Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 4.5.1. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP t...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-73936/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-19T15:32:19
2 posts
๐ CVE-2026-73931 - High (8.3)
Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 4.5.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP t...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-73931/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-73931 - High (8.3)
Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 4.5.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP t...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-73931/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-19T15:32:19
2 posts
๐ด CVE-2026-73930 - Critical (9.9)
Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 4.5.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP t...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-73930/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ด CVE-2026-73930 - Critical (9.9)
Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 4.5.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP t...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-73930/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-19T15:32:05
1 posts
[1/9]
Most Impactful Security Incidents (โฏ2026โ08โ18โฏโโฏ2026โ08โ19โฏ)
---
PRIORITYโฏ1 โ Critical / HighโSeverity Flaws (CVSSโฏ7โ10):
CVEโ2026โ60392
โข 7.8 (HIGH)
โข OracleโฏOutsideโฏInโฏTechnology โ PDF Export SDK (Fusion Middleware)
โข Localโprivilege escalation; requires attacker to have a logon on the host where the SDK runs. Successful exploitation can lead to full takeover of the component.
โข 8.5.8
โข Easily exploitable (local) โ requires user interaction.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60392
CVEโ2026โ60782
โข 9.8 (CRITICAL)
โข OracleโฏPayments (EโBusiness Suite) โ File Transmission
โข Remote unauthenticated attacker can compromise the Payments module via HTTP. Leads to full takeover of the Payments service.
โข 12.2.3โ12.2.15
โข Networkโaccessible, no authentication required.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60782
CVEโ2026โ60730
โข 9.9 (CRITICAL)
โข OracleโฏWebCenterโฏPortal โ Composer component
โข Remote unauthenticated attacker can compromise the portal via HTTP. Full takeover of the portal.
โข 12.2.1.4.0,โฏ14.1.2.0.0
โข Networkโaccessible, no auth.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60730
CVEโ2026โ60728
โข 9.1 (CRITICAL)
โข OracleโฏWebCenterโฏPortal โ Portlet Services
โข Remote unauthenticated attacker can cause denialโofโservice and full compromise of portal data.
โข 12.2.1.4.0,โฏ14.1.2.0.0
โข Networkโaccessible, no auth.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60728
CVEโ2026โ60727
โข 9.8 (CRITICAL)
โข OracleโฏIdentityโฏManager โ OIM Legacy UI
โข Remote unauthenticated attacker can take over the IAM system via HTTP.
โข 12.2.1.4.0,โฏ14.1.2.1.0
โข Networkโaccessible, no auth.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60727
CVEโ2026โ60721
โข 9.8 (CRITICAL)
โข OracleโฏIdentityโฏManager โ OIM Legacy UI
โข Same vector as above; full takeover possible.
โข 12.2.1.4.0,โฏ14.1.2.1.0
โข Networkโaccessible, no auth.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60721
CVEโ2026โ60720
โข 9.9 (CRITICAL)
โข OracleโฏIdentityโฏManager โ OIM Legacy UI
โข Remote unauthenticated attacker can compromise the IAM system.
โข 12.2.1.4.0,โฏ14.1.2.1.0
โข Networkโaccessible, no auth.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60720
updated 2026-08-19T09:31:30
1 posts
CVE-2026-15780 - Stored XSS in WP Statistics plugin โค14.16.8 via utm_campaign param. Unauthenticated payload injection. CVSS 7.2. Unpatched - update/disable now. #CVE #WordPress #infosec
##updated 2026-08-19T06:31:24
1 posts
CVE-2026-76050 โ SQLi in SourceCodester Simple Online Food Ordering System 1.0 via /admin/ajax.php?action=delete_menu. CVSS 7.3. Unpatched. Patch/update immediately. #CVE #infosec #cybersecurity
##updated 2026-08-19T06:31:24
1 posts
CVE-2026-76049 - SQLi in SourceCodester Simple Online Food Ordering System 1.0 via /admin/ajax.php. Remote exploit public, unpatched. CVSS 7.3. Update or isolate now. #CVE #infosec #SQLi
##updated 2026-08-19T06:31:24
2 posts
๐ CVE-2026-19942 - High (8.1)
The Atarim โ AI Agency for WordPress: Edit Pages, Fix Code, Update Plugins, SEO & Client Feedback plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the AVCF_Abilities_Media::register (repla...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-19942/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-19942 - High (8.1)
The Atarim โ AI Agency for WordPress: Edit Pages, Fix Code, Update Plugins, SEO & Client Feedback plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the AVCF_Abilities_Media::register (repla...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-19942/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-19T04:16:58.560000
8 posts
2 repos
CISA Warns of Active Exploitation of Critical Microsoft IKE Remote Code Execution Flaw
CISA reports active exploitation of a Windows IKE service critical remote code execution vulnerability (CVE-2026-33824). The flaw allows unauthenticated attackers to take full control of affected systems by sending malicious network packets.
**If you run Windows systems with IKEv2 enabled (VPN gateways, RRAS servers, IPsec endpoints), apply Microsoft's patch for CVE-2026-33824 immediately. Attackers are actively taking over these machines with no login or user action needed. If you can't patch right away, block inbound UDP ports 500 and 4500 at your firewall and only allow those ports from trusted, known IP addresses.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/cisa-warns-of-active-exploitation-of-critical-microsoft-ike-remote-code-execution-flaw-l-d-l-z-t/gD2P6Ple2L
CISA Sounds the Alarm: Critical Windows IKE Vulnerability Is Now an Actively Exploited Threat
Introduction: The VPN Door Attackers Are Watching A dangerous Windows vulnerability has moved from the long list of security advisories into a far more urgent category: CISAโs Known Exploited Vulnerabilities catalog. Tracked as CVE-2026-33824, the flaw affects the Windows Internet Key Exchange (IKE) Service Extensions and can allow an unauthenticated attacker to executeโฆ
##CVE-2026-33824: CRITICAL RCE in Windows IKE Extension is being actively exploited. All supported Windows 10, 11 & Server are impacted. Patch immediately or block UDP 500/4500 if IKE not used. More at https://radar.offseq.com/threat/critical-rce-flaw-in-windows-ike-extension-now-actively-exploited-e49a0ac6b3ada788 #OffSeq #RCE #Windows #BlueTeam
##Hackers Actively Exploit Windows IKE Flaw
Hackers are actively exploiting a critical Windows flaw, known as CVE-2026-33824, that lets them execute code over a network, putting your system at risk. This vulnerability, found in the Windows Internet Key Exchange (IKE) Service Extensions, affects all supported Windows 10 and other Windows systems.
#WindowsIkeFlaw #Cve202633824 #EmergingThreats #ZeroDay #Microsoft
##CISA Warns of Active Exploitation of Critical Microsoft IKE Remote Code Execution Flaw
CISA reports active exploitation of a Windows IKE service critical remote code execution vulnerability (CVE-2026-33824). The flaw allows unauthenticated attackers to take full control of affected systems by sending malicious network packets.
**If you run Windows systems with IKEv2 enabled (VPN gateways, RRAS servers, IPsec endpoints), apply Microsoft's patch for CVE-2026-33824 immediately. Attackers are actively taking over these machines with no login or user action needed. If you can't patch right away, block inbound UDP ports 500 and 4500 at your firewall and only allow those ports from trusted, known IP addresses.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/cisa-warns-of-active-exploitation-of-critical-microsoft-ike-remote-code-execution-flaw-l-d-l-z-t/gD2P6Ple2L
CVE-2026-33824: CRITICAL RCE in Windows IKE Extension is being actively exploited. All supported Windows 10, 11 & Server are impacted. Patch immediately or block UDP 500/4500 if IKE not used. More at https://radar.offseq.com/threat/critical-rce-flaw-in-windows-ike-extension-now-actively-exploited-e49a0ac6b3ada788 #OffSeq #RCE #Windows #BlueTeam
##๐จ NEW CISA KEV: CVE-2026-33824. Active RCE weaponization targeting Microsoft Internet Key Exchange (IKE) via double-free memory corruption. Unauthenticated access possible. Get the full T-Suite brief & custom CrowdStrike detection queries to secure your Precinct Hybrid architecture.
Link below ๐
https://thecybermind.co/jily
Looks like CVE-2026-33824 was added to KEV. Keep in mind that this service isn't just for IPSec VPNs. It's also used with some Windows Firewall policies so check your internal systems for listeners, not just public-facing systems.
An unauthenticated attacker could send specially crafted packets to a Windows machine with Internet Key Exchange (IKE) version 2 enabled, which could enable remote code execution.
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-33824
##updated 2026-08-19T03:31:30
4 posts
๐ด CVE-2026-76008 - Critical (10)
A flaw has been found in Comfast CF-N1-S 2.6.0.1. This affects the function get_para_from_uri of the file /cgi-bin/mbox-config of the component URI Parameter Parsing. This manipulation of the argument width/height causes stack-based buffer overflo...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76008/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##Comfast CF-N1-S v2.6.0.1 hit by CRITICAL CVE-2026-76008: stack-based buffer overflow in /cgi-bin/mbox-config (get_para_from_uri). Remote exploitation risk; mitigation unavailable. Monitor for patches. #OffSeq #CVE202676008 #IoTSecurity https://radar.offseq.com/threat/cve-2026-76008-stack-based-buffer-overflow-in-comfast-cf-n1-s-3ceda49f6d8d37d6
##๐ด CVE-2026-76008 - Critical (10)
A flaw has been found in Comfast CF-N1-S 2.6.0.1. This affects the function get_para_from_uri of the file /cgi-bin/mbox-config of the component URI Parameter Parsing. This manipulation of the argument width/height causes stack-based buffer overflo...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76008/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##Comfast CF-N1-S v2.6.0.1 hit by CRITICAL CVE-2026-76008: stack-based buffer overflow in /cgi-bin/mbox-config (get_para_from_uri). Remote exploitation risk; mitigation unavailable. Monitor for patches. #OffSeq #CVE202676008 #IoTSecurity https://radar.offseq.com/threat/cve-2026-76008-stack-based-buffer-overflow-in-comfast-cf-n1-s-3ceda49f6d8d37d6
##updated 2026-08-19T03:31:23
4 posts
CVE-2026-76003 (CRITICAL): Stack-based buffer overflow in UTT HiPER 1200GW (2.5.3-170306). Remote code execution possible via timestart argument; public exploit exists. No patch yet. Restrict access & monitor. https://radar.offseq.com/threat/cve-2026-76003-stack-based-buffer-overflow-in-utt-hiper-1200gw-f42b168f89ef1ec7 #OffSeq #CVE202676003 #infosec #vuln
##๐ด CVE-2026-76003 - Critical (9.9)
A weakness has been identified in UTT HiPER 1200GW up to 2.5.3-170306. Affected is the function strcpy of the file /goform/formGroupConfig. Executing a manipulation of the argument timestart can lead to stack-based buffer overflow. The attack may ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76003/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-76003 (CRITICAL): Stack-based buffer overflow in UTT HiPER 1200GW (2.5.3-170306). Remote code execution possible via timestart argument; public exploit exists. No patch yet. Restrict access & monitor. https://radar.offseq.com/threat/cve-2026-76003-stack-based-buffer-overflow-in-utt-hiper-1200gw-f42b168f89ef1ec7 #OffSeq #CVE202676003 #infosec #vuln
##๐ด CVE-2026-76003 - Critical (9.9)
A weakness has been identified in UTT HiPER 1200GW up to 2.5.3-170306. Affected is the function strcpy of the file /goform/formGroupConfig. Executing a manipulation of the argument timestart can lead to stack-based buffer overflow. The attack may ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-76003/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-19T03:31:21
5 posts
1 repos
Keycloak unauthenticated account takeover via reset-credentials flow bypass
Keycloak์ reset-credentials ํ๋ก์ฐ์์ ์ด๋ฉ์ผ ๊ฒ์ฆ ๋งํฌ ํด๋ฆญ์ ์ฐํํด, ์ธ์ฆ๋์ง ์์ ๊ณต๊ฒฉ์๊ฐ ์์ ์ฌ์ฉ์ ๊ณ์ ์ ๋น๋ฐ๋ฒํธ๋ฅผ ์ฌ์ค์ ํ๊ณ ํ์ทจํ ์ ์๋ ์น๋ช ์ ์ทจ์ฝ์ (CVE-2026-18963)์ด ๊ณต๊ฐ๋๋ค. ์ทจ์ฝ์ ์ keycloak-services์ ์ํ ์ฒ๋ฆฌ์ ์ก์ ํ ํฐ ๊ฒ์ฆ ๋ถ์ฌ๊ฐ ๊ฒฐํฉ๋ ๋ฌธ์ ์ด๋ฉฐ, ์ปค๋ฎค๋ํฐ Keycloak์๋ ์ํฅ์ ์ค๋ค. ์ํฅ ๋ฒ์๋ 26.0.0 ์ดํ ์ผ๋ถ ๋ฆด๋ฆฌ์ค์ด๋ฉฐ, ๊ณต๊ฐ ์ปจํ ์ด๋ ์ฌ์ฉ์๋ ์ฐ์ 26.7.2๋ก ์ ๊ทธ๋ ์ด๋ํด์ผ ํ๊ณ , Red Hat Build ์ฌ์ฉ์๋ 26.4.15 ๋๋ 26.6.6 ํจ์น๋ฅผ ์ ์ฉํด...
##Guten Morgen an @univention Kund*innen, die unsere #Keycloak App einsetzen! Wir werden demnรคchst Version 26.7.2 herausbringen. Von dem Account-Takeover-CVE ist unsere App nicht betroffen.
Details findet Ihr hier: https://help.univention.com/t/keycloak-26-7-2-and-cve-2026-18963-potential-account-takeover-nubus-not-affected/25494
##PSA: Critical unauthenticated account takeover vulnerability in #Keycloak - allows resetting arbitrary usersโ passwords. Update to 26.7.2 immediately or disable password reset. Tracked as CVE-2026-18963. https://github.com/keycloak/keycloak/issues/51833
##Guten Morgen an @univention Kund*innen, die unsere #Keycloak App einsetzen! Wir werden demnรคchst Version 26.7.2 herausbringen. Von dem Account-Takeover-CVE ist unsere App nicht betroffen.
Details findet Ihr hier: https://help.univention.com/t/keycloak-26-7-2-and-cve-2026-18963-potential-account-takeover-nubus-not-affected/25494
##PSA: Critical unauthenticated account takeover vulnerability in #Keycloak - allows resetting arbitrary usersโ passwords. Update to 26.7.2 immediately or disable password reset. Tracked as CVE-2026-18963. https://github.com/keycloak/keycloak/issues/51833
##updated 2026-08-19T00:31:18
2 posts
A Confluence vulnerability, CVE-2026-21580, is a stored XSS flaw (CVSS 8.6) allowing unauthenticated attacks. A Jira flaw also patched. Update now.
#Atlassian #Confluence #CVE202621580 #StoredXSS #Jira #InfoSec
##A Confluence vulnerability, CVE-2026-21580, is a stored XSS flaw (CVSS 8.6) allowing unauthenticated attacks. A Jira flaw also patched. Update now.
#Atlassian #Confluence #CVE202621580 #StoredXSS #Jira #InfoSec
##updated 2026-08-18T21:32:07
1 posts
[1/9]
Most Impactful Security Incidents (โฏ2026โ08โ18โฏโโฏ2026โ08โ19โฏ)
---
PRIORITYโฏ1 โ Critical / HighโSeverity Flaws (CVSSโฏ7โ10):
CVEโ2026โ60392
โข 7.8 (HIGH)
โข OracleโฏOutsideโฏInโฏTechnology โ PDF Export SDK (Fusion Middleware)
โข Localโprivilege escalation; requires attacker to have a logon on the host where the SDK runs. Successful exploitation can lead to full takeover of the component.
โข 8.5.8
โข Easily exploitable (local) โ requires user interaction.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60392
CVEโ2026โ60782
โข 9.8 (CRITICAL)
โข OracleโฏPayments (EโBusiness Suite) โ File Transmission
โข Remote unauthenticated attacker can compromise the Payments module via HTTP. Leads to full takeover of the Payments service.
โข 12.2.3โ12.2.15
โข Networkโaccessible, no authentication required.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60782
CVEโ2026โ60730
โข 9.9 (CRITICAL)
โข OracleโฏWebCenterโฏPortal โ Composer component
โข Remote unauthenticated attacker can compromise the portal via HTTP. Full takeover of the portal.
โข 12.2.1.4.0,โฏ14.1.2.0.0
โข Networkโaccessible, no auth.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60730
CVEโ2026โ60728
โข 9.1 (CRITICAL)
โข OracleโฏWebCenterโฏPortal โ Portlet Services
โข Remote unauthenticated attacker can cause denialโofโservice and full compromise of portal data.
โข 12.2.1.4.0,โฏ14.1.2.0.0
โข Networkโaccessible, no auth.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60728
CVEโ2026โ60727
โข 9.8 (CRITICAL)
โข OracleโฏIdentityโฏManager โ OIM Legacy UI
โข Remote unauthenticated attacker can take over the IAM system via HTTP.
โข 12.2.1.4.0,โฏ14.1.2.1.0
โข Networkโaccessible, no auth.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60727
CVEโ2026โ60721
โข 9.8 (CRITICAL)
โข OracleโฏIdentityโฏManager โ OIM Legacy UI
โข Same vector as above; full takeover possible.
โข 12.2.1.4.0,โฏ14.1.2.1.0
โข Networkโaccessible, no auth.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60721
CVEโ2026โ60720
โข 9.9 (CRITICAL)
โข OracleโฏIdentityโฏManager โ OIM Legacy UI
โข Remote unauthenticated attacker can compromise the IAM system.
โข 12.2.1.4.0,โฏ14.1.2.1.0
โข Networkโaccessible, no auth.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60720
updated 2026-08-18T21:32:06
1 posts
[1/9]
Most Impactful Security Incidents (โฏ2026โ08โ18โฏโโฏ2026โ08โ19โฏ)
---
PRIORITYโฏ1 โ Critical / HighโSeverity Flaws (CVSSโฏ7โ10):
CVEโ2026โ60392
โข 7.8 (HIGH)
โข OracleโฏOutsideโฏInโฏTechnology โ PDF Export SDK (Fusion Middleware)
โข Localโprivilege escalation; requires attacker to have a logon on the host where the SDK runs. Successful exploitation can lead to full takeover of the component.
โข 8.5.8
โข Easily exploitable (local) โ requires user interaction.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60392
CVEโ2026โ60782
โข 9.8 (CRITICAL)
โข OracleโฏPayments (EโBusiness Suite) โ File Transmission
โข Remote unauthenticated attacker can compromise the Payments module via HTTP. Leads to full takeover of the Payments service.
โข 12.2.3โ12.2.15
โข Networkโaccessible, no authentication required.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60782
CVEโ2026โ60730
โข 9.9 (CRITICAL)
โข OracleโฏWebCenterโฏPortal โ Composer component
โข Remote unauthenticated attacker can compromise the portal via HTTP. Full takeover of the portal.
โข 12.2.1.4.0,โฏ14.1.2.0.0
โข Networkโaccessible, no auth.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60730
CVEโ2026โ60728
โข 9.1 (CRITICAL)
โข OracleโฏWebCenterโฏPortal โ Portlet Services
โข Remote unauthenticated attacker can cause denialโofโservice and full compromise of portal data.
โข 12.2.1.4.0,โฏ14.1.2.0.0
โข Networkโaccessible, no auth.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60728
CVEโ2026โ60727
โข 9.8 (CRITICAL)
โข OracleโฏIdentityโฏManager โ OIM Legacy UI
โข Remote unauthenticated attacker can take over the IAM system via HTTP.
โข 12.2.1.4.0,โฏ14.1.2.1.0
โข Networkโaccessible, no auth.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60727
CVEโ2026โ60721
โข 9.8 (CRITICAL)
โข OracleโฏIdentityโฏManager โ OIM Legacy UI
โข Same vector as above; full takeover possible.
โข 12.2.1.4.0,โฏ14.1.2.1.0
โข Networkโaccessible, no auth.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60721
CVEโ2026โ60720
โข 9.9 (CRITICAL)
โข OracleโฏIdentityโฏManager โ OIM Legacy UI
โข Remote unauthenticated attacker can compromise the IAM system.
โข 12.2.1.4.0,โฏ14.1.2.1.0
โข Networkโaccessible, no auth.
โข https://cveawg.mitre.org/api/cve/CVE-2026-60720
updated 2026-08-18T21:31:55
2 posts
๐ CVE-2026-47629 - High (7.5)
NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker could cause improper input validation. A successful exploit might lead to denial of service.
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-47629/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##Nvidia has new advisories addressing two vulnerabilities:
- NVIDIA Cumulus Linux and NVOS - August 2026 https://nvidia.custhelp.com/app/answers/detail/a_id/5817
- CRITICAL, affecting the following: CVE-2026-47627, CVE-2026-47628, CVE-2026-47629, CVE-2026-47606, CVE-2026-47630
NVIDIA Triton Inference Server - August 2026 https://nvidia.custhelp.com/app/answers/detail/a_id/5865 #Nvidia #infosec #vulnerability #Linux
##updated 2026-08-18T21:31:54
2 posts
๐ CVE-2026-47628 - High (7.5)
NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker could cause an allocation of resources without limits. A successful exploit might lead to denial of service.
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-47628/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##Nvidia has new advisories addressing two vulnerabilities:
- NVIDIA Cumulus Linux and NVOS - August 2026 https://nvidia.custhelp.com/app/answers/detail/a_id/5817
- CRITICAL, affecting the following: CVE-2026-47627, CVE-2026-47628, CVE-2026-47629, CVE-2026-47606, CVE-2026-47630
NVIDIA Triton Inference Server - August 2026 https://nvidia.custhelp.com/app/answers/detail/a_id/5865 #Nvidia #infosec #vulnerability #Linux
##updated 2026-08-18T21:31:54
1 posts
Nvidia has new advisories addressing two vulnerabilities:
- NVIDIA Cumulus Linux and NVOS - August 2026 https://nvidia.custhelp.com/app/answers/detail/a_id/5817
- CRITICAL, affecting the following: CVE-2026-47627, CVE-2026-47628, CVE-2026-47629, CVE-2026-47606, CVE-2026-47630
NVIDIA Triton Inference Server - August 2026 https://nvidia.custhelp.com/app/answers/detail/a_id/5865 #Nvidia #infosec #vulnerability #Linux
##updated 2026-08-18T21:31:53
4 posts
NVIDIA Triton vulnerability CVE-2026-47627 scores CVSS 9.8. Learn how the denial of service flaw works and why you must update to version 26.06 now.
#NVIDIA #TritonInferenceServer #CVE202647627 #DenialOfService #AIsecurity #CVSS
##NVIDIA Triton vulnerability CVE-2026-47627 scores CVSS 9.8. Learn how the denial of service flaw works and why you must update to version 26.06 now.
#NVIDIA #TritonInferenceServer #CVE202647627 #DenialOfService #AIsecurity #CVSS
##๐ด CVE-2026-47627 - Critical (9.8)
NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker could cause path traversal. A successful exploit might lead to denial of service.
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-47627/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##Nvidia has new advisories addressing two vulnerabilities:
- NVIDIA Cumulus Linux and NVOS - August 2026 https://nvidia.custhelp.com/app/answers/detail/a_id/5817
- CRITICAL, affecting the following: CVE-2026-47627, CVE-2026-47628, CVE-2026-47629, CVE-2026-47606, CVE-2026-47630
NVIDIA Triton Inference Server - August 2026 https://nvidia.custhelp.com/app/answers/detail/a_id/5865 #Nvidia #infosec #vulnerability #Linux
##updated 2026-08-18T20:17:32.460000
1 posts
๐ด CVE-2026-75625 - Critical (9)
Kraken agents fail to verify peer-to-peer downloaded blobs against their requested SHA-256 digest before committing to the content-addressable cache, relying only on CRC32 checksums for piece validation. Attackers on the agent-to-agent path or mal...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-75625/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-18T20:17:15.103000
1 posts
CVE-2026-47719 - Critical SSRF in FUXA SCADA/HMI. Unauthenticated attackers can probe internal networks via axios. CVSS 8.2. Unpatched - restrict access now. #CVE #ICS #cybersecurity
##updated 2026-08-18T18:32:52
2 posts
2 repos
CISA Sounds the Alarm on Critical VMware vCenter Flaw: Active Exploitation Puts Enterprise Virtual Infrastructure at Risk
A New Warning for VMware Administrators A critical security vulnerability in VMware vCenter has become an urgent concern for organizations running virtualized infrastructure. Tracked as CVE-2026-59310, the flaw is a directory traversal vulnerability in the vCenter Syslog server that can ultimately allow a network-accessible attacker to executeโฆ
##โ ๏ธ CRITICAL: โก Weekly Recap: VMware Exploits, Windows 0-Day, MCP Attacks, Browser Hijacks and More
Three critical vulnerabilities are under active exploitation: VMware vCenter (CVE-2026-59310) by China-nexus APT for potential ransomware deployment, Windows 0-day (CVE-2026-68820) by Lazarus Group targeting defense contractors with backdoors, and macOS flaw (CVE-2026-65400) distributing crypto minโฆ
๐ค AI generated summary
##updated 2026-08-18T18:32:11
1 posts
๐ด CVE-2026-75130 - Critical (9)
Context7 through 2.1.2 contains a prompt injection vulnerability that allows attackers to execute malicious instructions in connected AI coding agents by injecting unsanitized content through the Custom AI Instructions feature served via the MCP s...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-75130/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-18T18:32:10
2 posts
A critical Red Hat vulnerability, CVE-2026-66780 (CVSS 9.9), enables a MITM attack across a cluster mesh. Two more critical flaws also disclosed.
##A critical Red Hat vulnerability, CVE-2026-66780 (CVSS 9.9), enables a MITM attack across a cluster mesh. Two more critical flaws also disclosed.
##updated 2026-08-18T18:31:47
7 posts
1 repos
๐จ๐ SIGINT // Cybersecurity Watch โ 2026-08-20
Critical macOS Screen Sharing flaw (CVE-2026-65400) exploited for remote root access, deploying Monero miners on unpatched Macs.
https://www.tomshardware.com/tech-industry/cyber-security/macos-screen-sharing-flaw-exploited-to-root-macs-and-plant-monero-miners
#CVE #macOS #InfoSec #Cybersecurity
Attackers are exploiting CVE-2026-65400, a critical macOS Screen Sharing auth bypass, to gain root access and deploy Monero miners on Macs with exposed port 5900.
##โช๏ธ Hackers Exploit macOS Screen Sharing Vulnerability to Install Crypto Miners
๐จ๏ธ The Netherlandsโ National Cyber Security Centre (NCSC) has warned that attackers have begun exploiting the critical CVE-2026-65400 vulnerability in macOS Screen Sharing. The flaw allows authentication to be bypassed, granting access to a Mac without a password, and is alreadyโฆ
##Attackers are exploiting CVE-2026-65400, a critical macOS Screen Sharing auth bypass, to gain root access and deploy Monero miners on Macs with exposed port 5900.
##โช๏ธ Hackers Exploit macOS Screen Sharing Vulnerability to Install Crypto Miners
๐จ๏ธ The Netherlandsโ National Cyber Security Centre (NCSC) has warned that attackers have begun exploiting the critical CVE-2026-65400 vulnerability in macOS Screen Sharing. The flaw allows authentication to be bypassed, granting access to a Mac without a password, and is alreadyโฆ
##โ ๏ธ CRITICAL: โก Weekly Recap: VMware Exploits, Windows 0-Day, MCP Attacks, Browser Hijacks and More
Three critical vulnerabilities are under active exploitation: VMware vCenter (CVE-2026-59310) by China-nexus APT for potential ransomware deployment, Windows 0-day (CVE-2026-68820) by Lazarus Group targeting defense contractors with backdoors, and macOS flaw (CVE-2026-65400) distributing crypto minโฆ
๐ค AI generated summary
##An AI agent built a working exploit for this macOS flaw in four hours
https://thenextweb.com/news/macos-screen-sharing-flaw-cve-2026-65400-monero-miner?utm_source=flipboard&utm_medium=activitypub
Posted into Technology (UK Edition) @technology-uk-edition-FlipboardUK
##updated 2026-08-18T16:18:23.363000
1 posts
๐ด CVE-2026-75913 - Critical (9.3)
CodeWhale (codewhale / codewhale-tui) versions >= 0.8.41 and < 0.8.64 contain an argument injection vulnerability in the git_show tool. The model-supplied rev parameter is passed unvalidated into the git show argv without an --end-of-options se...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-75913/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-18T16:18:20.627000
1 posts
๐ CVE-2026-75481 - High (8.8)
SkyPilot fails to validate that authenticated users are entitled to grant administrator roles when updating service account permissions. Attackers can create a service account, escalate it to administrator role, and authenticate with its bearer to...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-75481/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-18T16:18:20.127000
1 posts
๐ CVE-2026-75103 - High (8.8)
Crawlab fails to verify user ownership or administrative role on the password-change endpoint, allowing any authenticated user to reset any account's password. Attackers can enumerate user accounts through the user listing endpoint and change admi...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-75103/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-18T16:18:14.327000
1 posts
SQL Injection flaw (CVE-2026-67854) in Qcms v6.0.6 rated CRITICAL: remote code execution risk. No official patch. Restrict access & monitor for injection attempts. Details: https://radar.offseq.com/threat/sql-injection-vulnerability-in-qcms-v606-allows-a-remote-attacker-to-execute-arbitrary-code-cve-2026-3286c90b2be69269 #OffSeq #SQLInjection #Vulnerability #Qcms #InfoSec
##updated 2026-08-18T15:31:56
1 posts
TRENDnet TEW-WLC100P v12.07b01 impacted by CRITICAL stack-based buffer overflow (CVE-2026-75783, CVSS 9.4) in DHCP blobmsg Handler. Exploit needs local network access. No patch yet โ restrict access & monitor logs. https://radar.offseq.com/threat/cve-2026-75783-stack-based-buffer-overflow-in-trendnet-tew-wlc100p-e172681d65344cad #OffSeq #CVE202675783 #Vuln #IoTSecurity
##updated 2026-08-18T15:31:45
5 posts
1 repos
CoSnitch : Copilot a lui-mรชme livrรฉ la faille qui permet de voler vos donnรฉes https://www.it-connect.fr/cosnitch-cve-2026-24301-copilot-personal-faille-un-clic/ #ActuCybersรฉcuritรฉ #Cybersรฉcuritรฉ #Microsoft #Copilot #IA
##Von wegen KI: MS Copilot ist strunzdumm
Das Sicherheitsunternehmen Varonis hat eine Sicherheitslรผcke in Microsoft (MS) Copilot gefunden. Die hat inzwischen auch einen Namen bekommen und eine CVE-Nummer: CVE-2026-24301 oder CoSnitch. Sie ist mit 8,8 von 10 als kritisch eingestuft. Anscheinend gibt es noch keinen Flicken dagegen. Wer diese Lรผcke ausnutzt, kann Copilot von Ferne heimlich (ohne Interaktion des Opfers) dazu veranlassen, sensible geheime Daten zu senden. Zwar hat Copilot Schutzvorkehrungen gegen solchen Missbrauch, aber die sind unvollstรคndig. Der Trick der Forscher/innen bestand darin, Copilot sich selbst hacken zu lassen! Immer wenn die KI einen ... Weiterlesen:
https://www.pc-fluesterer.info/wordpress/2026/08/19/von-wegen-ki-ms-copilot-ist-strunzdumm/
#cybercrime #datenleck #KI #Microsoft #sicherheit #spionage #unplugMicrosoft #UnplugTrump
##CoSnitch : Copilot a lui-mรชme livrรฉ la faille qui permet de voler vos donnรฉes https://www.it-connect.fr/cosnitch-cve-2026-24301-copilot-personal-faille-un-clic/ #ActuCybersรฉcuritรฉ #Cybersรฉcuritรฉ #Microsoft #Copilot #IA
##Von wegen KI: MS Copilot ist strunzdumm
Das Sicherheitsunternehmen Varonis hat eine Sicherheitslรผcke in Microsoft (MS) Copilot gefunden. Die hat inzwischen auch einen Namen bekommen und eine CVE-Nummer: CVE-2026-24301 oder CoSnitch. Sie ist mit 8,8 von 10 als kritisch eingestuft. Anscheinend gibt es noch keinen Flicken dagegen. Wer diese Lรผcke ausnutzt, kann Copilot von Ferne heimlich (ohne Interaktion des Opfers) dazu veranlassen, sensible geheime Daten zu senden. Zwar hat Copilot Schutzvorkehrungen gegen solchen Missbrauch, aber die sind unvollstรคndig. Der Trick der Forscher/innen bestand darin, Copilot sich selbst hacken zu lassen! Immer wenn die KI einen ... Weiterlesen:
https://www.pc-fluesterer.info/wordpress/2026/08/19/von-wegen-ki-ms-copilot-ist-strunzdumm/
#cybercrime #datenleck #KI #Microsoft #sicherheit #spionage #unplugMicrosoft #UnplugTrump
##Microsoft has an advisory for a new critical Copilot vulnerability.
CRITICAL: CVE-2026-24301: Microsoft Copilot Information Disclosure Vulnerability https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-24301
More information:
CWE-77: Improper Neutralization of Special Elements used in a Command ('Command Injection') https://cwe.mitre.org/data/definitions/77.html #infosec #Microsoft #Copilot #vulnerability
##updated 2026-08-18T15:17:13.457000
1 posts
๐ CVE-2026-75479 - High (7.5)
JimuReport contains an authentication bypass vulnerability in the report folder template listing endpoint that allows unauthenticated attackers to enumerate all reports and retrieve share tokens. Attackers can use disclosed share tokens to access ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-75479/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-18T15:04:46.610000
2 posts
BeyondTrust patched two high-severity EPM flaws (CVE-2026-40144, CVE-2026-40145) that allow local privilege escalation on Windows. Update to 26.1.2.
#BeyondTrust #CVE202640144 #PrivilegeEscalation #Windows #EndpointSecurity #InfoSec
##BeyondTrust patched two high-severity EPM flaws (CVE-2026-40144, CVE-2026-40145) that allow local privilege escalation on Windows. Update to 26.1.2.
#BeyondTrust #CVE202640144 #PrivilegeEscalation #Windows #EndpointSecurity #InfoSec
##updated 2026-08-18T14:18:12.260000
1 posts
๐ด CVE-2026-75852 - Critical (9.8)
ArcadeDB versions before 26.8.1 fail to enforce SASL authentication on data commands in the MongoDB wire-protocol plugin. Unauthenticated attackers can issue insert, find, update, delete, and create commands against any database by connecting to p...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-75852/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-18T12:31:30
1 posts
๐ CVE-2026-75853 - High (8.8)
ArcadeDB's Gremlin wire-protocol plugin (com.arcadedb:arcadedb-gremlin) in versions <= 26.7.3 enforces authentication (SASL PLAIN) but performs no authorization: it never checks database access permissions (canAccessToDatabase) and never binds ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-75853/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-18T12:31:30
1 posts
๐ด CVE-2026-75851 - Critical (9.9)
ArcadeDB server (com.arcadedb:arcadedb-server) in versions 26.7.3 and earlier fails to propagate the authenticated principal to asynchronous command worker threads. When an HTTP command is submitted with awaitResponse:false, it executes on an asyn...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-75851/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-18T12:31:30
1 posts
CVE-2026-75854: ArcadeDB <26.8.1 has a CRITICAL Redis plugin vuln (CVSS 9.3). Missing auth lets attackers run any command & access/modify/delete all DB data. Restrict Redis port access & monitor for fixes. https://radar.offseq.com/threat/cve-2026-75854-missing-authentication-for-critical-function-in-arcadedata-arcadedb-033f47986cfb9941 #OffSeq #Vuln #ArcadeDB #Infosec
##updated 2026-08-18T04:16:47.170000
1 posts
JetBrains patched CVE-2026-75045, a critical YouTrack flaw letting an unauthenticated attacker download database backups.
#CVE202675045 #YouTrack #JetBrains #DatabaseBackup #DataBreach #PatchNow
##updated 2026-08-18T04:16:40.860000
5 posts
1 repos
Ray Framework Remote Code Execution Vulnerability Under Active Exploitation
CISA warned that attackers are exploiting a remote code execution vulnerability in the Ray framework to target machine learning developers. The flaw allows attackers to bypass browser security checks and run arbitrary commands on developer machines and internal networks.
**If you use the Ray framework, update it to version 2.52.0 or later ASAP. Attackers are actively exploiting CVE-2025-62593 to run commands on developer machines. Also make sure Ray is never reachable from the internet and only accessible from trusted networks, and watch for unusual traffic between developer laptops and your internal compute clusters.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/ray-framework-remote-code-execution-vulnerability-under-active-exploitation-y-u-w-h-s/gD2P6Ple2L
Recent alerts include CISA adding a critical RCE flaw in Ray-Project Ray (CVE-2025-62593) to its KEV catalog (Aug 18). Heights Finance also reported a data breach impacting over 1.2 million customers. Globally, ransomware incidents remain high, with AI increasingly used in attacks. Geopolitically, US-Iran talks have stalled, intensifying Middle East tensions and affecting global shipping.
##Ray Framework Remote Code Execution Vulnerability Under Active Exploitation
CISA warned that attackers are exploiting a remote code execution vulnerability in the Ray framework to target machine learning developers. The flaw allows attackers to bypass browser security checks and run arbitrary commands on developer machines and internal networks.
**If you use the Ray framework, update it to version 2.52.0 or later ASAP. Attackers are actively exploiting CVE-2025-62593 to run commands on developer machines. Also make sure Ray is never reachable from the internet and only accessible from trusted networks, and watch for unusual traffic between developer laptops and your internal compute clusters.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/ray-framework-remote-code-execution-vulnerability-under-active-exploitation-y-u-w-h-s/gD2P6Ple2L
Recent alerts include CISA adding a critical RCE flaw in Ray-Project Ray (CVE-2025-62593) to its KEV catalog (Aug 18). Heights Finance also reported a data breach impacting over 1.2 million customers. Globally, ransomware incidents remain high, with AI increasingly used in attacks. Geopolitically, US-Iran talks have stalled, intensifying Middle East tensions and affecting global shipping.
##๐จ C-SUITE ALERT: CISA has flagged CVE-2025-62593 (Ray-Project) for active exploitation. This critical RCE flaw requires immediate executive oversight. Read our board-ready risk assessment and compliance framework to secure your enterprise. Command the wire. ๐ Link below
https://thecybermind.co/k3rh
#CyberSecurity
updated 2026-08-18T03:31:14
2 posts
CVE-2026-75094: CRITICAL OS command injection in COMFAST CF-N1-S v2.6.0.1. Exploit code is public, no official patch. Restrict access to /cgi-bin/mbox-config to reduce risk. Details: https://radar.offseq.com/threat/cve-2026-75094-os-command-injection-in-comfast-cf-n1-s-07737fa4c8cac0ee #OffSeq #CVE #IoT #Security
##๐ด CVE-2026-75094 - Critical (9.1)
A flaw has been found in COMFAST CF-N1-S 2.6.0.1. This impacts the function sub_44B438 of the file /cgi-bin/mbox-config?method=SET§ion=ptest_ssid of the component CGI Interface. This manipulation of the argument ssid causes os command injectio...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-75094/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-18T03:31:11
2 posts
๐ CVE-2026-11801 - High (7.5)
The WPAdverts โ Classifieds Plugin plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 2.3.2. This is due to the plugin not properly verifying that a user is authorized to perform an action. This make...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-11801/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##WPAdverts โ Classifieds Plugin <=2.3.2 hit by HIGH severity CWE-862 auth bypass (CVE-2026-11801). Unauthenticated users can access internal config data via REST API. Restrict endpoints & monitor for fixes. https://radar.offseq.com/threat/cve-2026-11801-cwe-862-missing-authorization-in-gwin-wpadverts-classifieds-plugin-89cace2672af27dd #OffSeq #WordPress #Vulnerability
##updated 2026-08-17T21:31:35
1 posts
๐ CVE-2026-75482 - High (7.5)
SWE-agent's trajectory inspector (sweagent inspector), confirmed in v1.1.0, is an HTTP server that joins request paths to the trajectory directory in its /trajectory/ handler without rejecting parent-directory ('..') references, bypassing the buil...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-75482/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-17T21:31:35
1 posts
๐ CVE-2026-75111 - High (7.5)
Evidently UI fails to properly validate the filename parameter in the dataset materialization endpoint, allowing unauthenticated attackers to read arbitrary files outside the workspace directory. Attackers can supply traversal sequences or absolut...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-75111/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-17T21:31:30
15 posts
3 repos
https://github.com/HORKimhab/CVE-2026-19650-CVE-2026-19478
๐จ ๐ฆ GitLab flaw exploited within two days
CVE-2026-19478 lets unauthenticated attackers alter or delete public projects via #GraphQL.
๐ read more: www.securityweek.com...
#ransomNews #cyberthreats #GitLab
Critical GitLab Flaw Exploited...
โช๏ธ Critical GitLab Vulnerability Allowed Deletion of Public Projects
๐จ๏ธ GitLab developers have released emergency patches for Community Edition (CE) and Enterprise Edition (EE) that address the critical vulnerability CVE-2026-19478 (CVSS score: 9.4). Under certain conditions, the flaw allowed an unauthenticated attacker to remotely modify or delete public projects andโฆ
##Critical and High-Severity GraphQL CVEs in GitLab: Code Injection and CSRF via One Directive
#GitLab #CVE_2026_19478 #CVE_2026_19650
https://www.ox.security/blog/gitlab-graphql-cve-2026-19478-19650/
๐ฒ๏ธ #Cybersecurity #Ciberseguridad #Ciberseguranca #Security #Seguridad #Seguranca #News #Noticia #Noticias #Tecnologia #Technology
โซ Critical GitLab Zero-Click Flaw Poses Mitigation Challenges
๐ https://www.darkreading.com/application-security/critical-gitlab-zero-click-flaw-mitigation-challenges
A lack of technical details could make it hard for organizations running self-managed GitLab versions to detect potential exploitation of CVE-2026-19478.
##Critical GitLab Flaw Lets Hackers Alter or Delete Public Projects
GitLab has patched two security flaws, including CVE-2026-19478, a critical code injection vulnerability that could allow unauthenticated attackers...
๐๏ธ [Thecyberexpress] https://link.is.it/otTWyh
##GitLab CVE-2026-19478: GraphQL authorization bypass
๋ณธ๋ฌธ์ ์์ฒด ์ด์ GitLab์ GraphQL directive ๊ฒฐํจ(CVE-2026-19478)์ด ์ธ์ฆ ์์ด ๊ณต๊ฐ ํ๋ก์ ํธ์ ์ฌ์ฉ์ ๋ฐ์ดํฐ๋ฅผ ๋ณ๊ฒฝยท์ญ์ ํ ์ ์๋ CVSS 9.4๊ธ ์ทจ์ฝ์ ์ด๋ผ๊ณ ์ฃผ์ฅํฉ๋๋ค. ์ํฅ ๋ฒ์๋ก GitLab 18.2~18.11.10, 19.0~19.0.7, 19.1~19.1.5, 19.2~19.2.3์ ์ ์ํ๋ฉฐ, ๊ฐ๊ฐ 18.11.11ยท19.0.8ยท19.1.6ยท19.2.4 ์ด์์ผ๋ก ์ฆ์ ์ ๊ทธ๋ ์ด๋ํ ๊ฒ์ ๊ถ๊ณ ํฉ๋๋ค. ํจ๊ป ์์ ๋๋ค๋ CVE-2026-19650์ GraphQL multiplex handler์ CSRF ๊ฒฐํจ์ผ๋ก, ์ธ์ฆ ์ฌ์ฉ์์ ์ํธ์์ฉ์ด ํ์...
https://techupdate24.com/gitlab-cve-2026-19478-graphql-flaw/
##โช๏ธ Critical GitLab Vulnerability Allowed Deletion of Public Projects
๐จ๏ธ GitLab developers have released emergency patches for Community Edition (CE) and Enterprise Edition (EE) that address the critical vulnerability CVE-2026-19478 (CVSS score: 9.4). Under certain conditions, the flaw allowed an unauthenticated attacker to remotely modify or delete public projects andโฆ
##Critical and High-Severity GraphQL CVEs in GitLab: Code Injection and CSRF via One Directive
#GitLab #CVE_2026_19478 #CVE_2026_19650
https://www.ox.security/blog/gitlab-graphql-cve-2026-19478-19650/
Critical GitLab Flaw Lets Hackers Alter or Delete Public Projects
GitLab has patched two security flaws, including CVE-2026-19478, a critical code injection vulnerability that could allow unauthenticated attackers...
๐๏ธ [Thecyberexpress] https://link.is.it/otTWyh
##โ ๏ธ CRITICAL: GitLab Patches Critical Code Injection Vulnerability
GitLab released patches for a critical unauthenticated code injection vulnerability (CVE-2026-19478, CVSS 9.4) in GraphQL directives that allows attackers to modify or delete user data and public projects. A secondary CSRF flaw (CVE-2026-19650) affects the GraphQL multiplex query handler. Versionsโฆ
๐ค AI generated summary
##GitLab Issues Emergency Patch for Critical GraphQL Flaw Allowing Remote Project Deletion
GitLab issued an emergency security update to fix a critical GraphQL code injection vulnerability (CVE-2026-19478) that allows unauthenticated attackers to remotely delete or modify public projects and user data.
**If you run a self-managed GitLab server (version 18.2 through 19.2.3), update it ASAP to 19.2.4, 19.1.6, 19.0.8, or 18.11.11. The patch is quick and won't take your system offline. Before you patch, check your logs for unusual GraphQL activity so you know nobody has already deleted or altered your projects or user data.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/gitlab-issues-emergency-patch-for-critical-graphql-flaw-allowing-remote-project-deletion-k-u-c-h-x/gD2P6Ple2L
CRITICAL: GitLab CE/EE (v18.2+ to 19.2.4) patched CVE-2026-19478, a code injection bug allowing unauthenticated data modification/deletion via GraphQL. CSRF (CVE-2026-19650) also fixed. Upgrade to safe versions ASAP. https://radar.offseq.com/threat/gitlab-patches-critical-code-injection-vulnerability-ce00fcde61cd1cd5 #OffSeq #GitLab #Infosec #CVE
##GitLab addressed a critical GraphQL flaw, CVE-2026-19478, with a CVSS score of 9.4, allowing attackers to modify or delete projects in GitLab CE and EE. This poses serious risks to code repositories and requires immediate patching to prevent exploitation. #GitLabCVE #GraphQLFlaw #CyberSecurityUpdate #InfoSecCritical
https://cyberworldops.eu/en/gitlab-fixes-critical-graphql-flaw-that-could-modify-or-delete
##๐ New Achievement! Delete Yourself From This Industry!
Welcome to Module 9: GraphQL Directive Hygiene. Today's learning objective: CVE-2026-19478, a CVSS 9.4 flaw in GitLab Community and Enterprise Edition that allows a completely unauthenticated attacker โ no credentials, no victim interaction, no participation trophy โ to remotely modify or delete public projects and user data. (1/2)
##GitLab patched CVE-2026-19478, a CVSS 9.4 GraphQL code injection flaw letting unauthenticated users alter or delete project data.
#CVE202619478 #GitLab #CodeInjection #GraphQL #CVE202619650 #PatchNow
##updated 2026-08-17T21:31:30
3 posts
1 repos
GitLab CVE-2026-19478: GraphQL authorization bypass
๋ณธ๋ฌธ์ ์์ฒด ์ด์ GitLab์ GraphQL directive ๊ฒฐํจ(CVE-2026-19478)์ด ์ธ์ฆ ์์ด ๊ณต๊ฐ ํ๋ก์ ํธ์ ์ฌ์ฉ์ ๋ฐ์ดํฐ๋ฅผ ๋ณ๊ฒฝยท์ญ์ ํ ์ ์๋ CVSS 9.4๊ธ ์ทจ์ฝ์ ์ด๋ผ๊ณ ์ฃผ์ฅํฉ๋๋ค. ์ํฅ ๋ฒ์๋ก GitLab 18.2~18.11.10, 19.0~19.0.7, 19.1~19.1.5, 19.2~19.2.3์ ์ ์ํ๋ฉฐ, ๊ฐ๊ฐ 18.11.11ยท19.0.8ยท19.1.6ยท19.2.4 ์ด์์ผ๋ก ์ฆ์ ์ ๊ทธ๋ ์ด๋ํ ๊ฒ์ ๊ถ๊ณ ํฉ๋๋ค. ํจ๊ป ์์ ๋๋ค๋ CVE-2026-19650์ GraphQL multiplex handler์ CSRF ๊ฒฐํจ์ผ๋ก, ์ธ์ฆ ์ฌ์ฉ์์ ์ํธ์์ฉ์ด ํ์...
https://techupdate24.com/gitlab-cve-2026-19478-graphql-flaw/
##โ ๏ธ CRITICAL: GitLab Patches Critical Code Injection Vulnerability
GitLab released patches for a critical unauthenticated code injection vulnerability (CVE-2026-19478, CVSS 9.4) in GraphQL directives that allows attackers to modify or delete user data and public projects. A secondary CSRF flaw (CVE-2026-19650) affects the GraphQL multiplex query handler. Versionsโฆ
๐ค AI generated summary
##CRITICAL: GitLab CE/EE (v18.2+ to 19.2.4) patched CVE-2026-19478, a code injection bug allowing unauthenticated data modification/deletion via GraphQL. CSRF (CVE-2026-19650) also fixed. Upgrade to safe versions ASAP. https://radar.offseq.com/threat/gitlab-patches-critical-code-injection-vulnerability-ce00fcde61cd1cd5 #OffSeq #GitLab #Infosec #CVE
##updated 2026-08-17T21:31:30
1 posts
๐ด CVE-2026-75106 - Critical (9.1)
OpnForm derives editable-submission secrets from sequential row identifiers using Hashids with an empty default salt, allowing unauthenticated attackers to compute hashes for any submission. Attackers can read other respondents' full submission da...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-75106/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-17T21:31:30
1 posts
๐ CVE-2026-75105 - High (7.5)
phpIPAM through 1.8.1 fails to verify that a requested IP address belongs to the subnet a temporary share token was issued for. In app/temp_share/index.php and app/temp_share/address.php, when the share type is 'subnets', the subnetId parameter is...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-75105/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-17T19:06:52.793000
2 posts
Apache HttpClient TLS Flaw Could Let Attackers Impersonate Trusted Servers in MITM Attacks + Video
Introduction: When HTTPS Looks Secure but the Hostname Check Quietly Fails HTTPS is built around a simple promise: when an application connects to api.example.com, it should be able to confirm that the server on the other end is actually authorized to represent api.example.com. That trust relationship is now under scrutiny after the disclosure of CVE-2026-71290, a seriousโฆ
##CVE-2026-71290: Apache HttpClient Flaw Lets Attackers Intercept and Modify Traffic (CVSS 9.1)
##updated 2026-08-17T18:31:28
2 posts
BeyondTrust patched two high-severity EPM flaws (CVE-2026-40144, CVE-2026-40145) that allow local privilege escalation on Windows. Update to 26.1.2.
#BeyondTrust #CVE202640144 #PrivilegeEscalation #Windows #EndpointSecurity #InfoSec
##BeyondTrust patched two high-severity EPM flaws (CVE-2026-40144, CVE-2026-40145) that allow local privilege escalation on Windows. Update to 26.1.2.
#BeyondTrust #CVE202640144 #PrivilegeEscalation #Windows #EndpointSecurity #InfoSec
##updated 2026-08-17T17:32:35
2 posts
A vm2 sandbox escape (CVE-2026-47686, CVSS 9.9) with public PoC lets attackers hijack the host. Two more critical flaws also patched. Update to 3.11.6.
##A vm2 sandbox escape (CVE-2026-47686, CVSS 9.9) with public PoC lets attackers hijack the host. Two more critical flaws also patched. Update to 3.11.6.
##updated 2026-08-17T16:36:14
1 posts
CVE-2026-71479, an integer overflow in New API billing, is exploited in the wild to inflate user account balances.
#CVE202671479 #IntegerOverflow #NewAPI #ExploitedInTheWild #AIGateway #BillingFraud
##updated 2026-08-17T12:32:31
1 posts
CVE-2026-74889 - Critical crypto weakness in openssl_encrypt <1.4.0. HKDF with no salt/static info weakens key derivation, enabling multi-target attacks. CVSS 9.8. Update immediately. #CVE #cryptography #infosec
##updated 2026-08-14T21:31:35
2 posts
IBM patches an IBM Db2 Mirror RCE flaw, CVE-2026-17186, rated CVSS 9.9, plus 17 more bugs in Db2 Mirror for i. Patch now.
#IBM #Db2Mirror #IBMi #RCE #CVE #CyberSecurity #Vulnerability #InfoSec
##IBM patches an IBM Db2 Mirror RCE flaw, CVE-2026-17186, rated CVSS 9.9, plus 17 more bugs in Db2 Mirror for i. Patch now.
#IBM #Db2Mirror #IBMi #RCE #CVE #CyberSecurity #Vulnerability #InfoSec
##updated 2026-08-14T19:09:56.813000
1 posts
If you are running Fluent Forms and have not updated since 13 August 2026, attackers may already be scanning for your installation. CVE-2026-18146 is high-severity and affects every version below 6.2.12. Update now.
#WordPress #WordPressSecurity #FluentForms #CVE #WebSecurity
##updated 2026-08-14T18:06:11.420000
1 posts
3 repos
https://github.com/DavidCarliez/CVE-2026-66804-CrossDevice-LPE
https://github.com/Rat5ak/CVE-2026-66804-CrossDevice-Service-EoP
A public PoC for CVE-2026-66804 escalates a standard Windows user to SYSTEM through the Cross Device virtual camera COM service.
#CVE202666804 #PrivilegeEscalation #Windows11 #SYSTEMprivileges #EoP #PoCExploit
##updated 2026-08-14T05:17:00.340000
11 posts
Active exploitation of CVE-2026-73570 in Zimbra Collaboration Suite is underway. The command injection flaw enables unauthenticated RCE on ZCS versions prior to 10.1.20 when zimbra-snmp is installed with SNMP notifications active. Attackers exploit this via crafted SMTP requests for full server compromise. Patch or disable SNMP immediately.
#ZimbraRCE #CVE202673570 #PatchNow
https://cyberworldops.eu/en/zimbra-vulnerability-exploited-to-enable-unauthenticated-remote
##Critical Zimbra Flaw Under Active Exploitation: Why CVE-2026-73570 Demands Immediate Attention + Video
Introduction: When an Email Server Becomes the Door Into an Entire Organization Email remains one of the most valuable systems inside any organization. It carries confidential conversations, authentication links, financial documents, government communications, customer information, and the daily operational decisions that keep businesses moving. That is exactly why aโฆ
##Zimbra SNMP Flaw Exploited for Remote Code Execution
A critical Zimbra SNMP flaw, CVE-2026-73570, with a CVSS score of 8.9, is under active exploitation, allowing attackers to execute remote code. This vulnerability can be triggered by sending specially crafted SNMP requests, putting unpatched Zimbra Collaboration systems at risk.
#Zimbra #RemoteCodeExecution #Cve202673570 #Snmp #EmergingThreats
##โ ๏ธ Zimbra RCE faces active exploitation
CVE-2026-73570 enables unauthenticated OS command injection; Zimbra fixed it in version 10.1.20.
๐ read more: gbhackers.com/zimbra...
#ransomNews #cyberthreats #Zimbra
Zimbra RCE Vulnerability Lets ...
Zimbra Under Attack: Critical CVE-2026-73570 Is Now Being Exploited in the Wild
A Critical Warning for Thousands of Exposed Email Servers A serious new threat is emerging around Zimbra Collaboration Suite (ZCS), one of the most widely deployed open-source collaboration and email platforms used by organizations around the world. Security defenders are now facing a particularly dangerous combination: a critical vulnerability, internet-exposed systems, and credibleโฆ
##CRITICAL: CVE-2026-73570 in Zimbra Collaboration Suite is under active exploit. RCE via SNMP notifications lets unauth attackers run OS commands as Zimbra user. Patch to 10.1.20 now & monitor for abnormal files/restarts. Details: https://radar.offseq.com/threat/critical-zimbra-rce-flaw-now-actively-exploited-in-attacks-7db25eca9fa27ac1 #OffSeq #Zimbra #Vuln
##Zimbra Vulnerability Exploited in Active Attacks
A critical vulnerability in the Zimbra Collaboration Suite is under active attack, putting over 12,100 exposed servers worldwide at risk, with most located in Europe and Asia. Attackers can exploit this flaw, tracked as CVE-2026-73570, to execute remote code without authentication, simply by sending specially crafted SMTP requests.
#ZimbraCollaborationSuite #Cve202673570 #RemoteCodeExecution #CommandInjection #Snmp
##CVE-2026-73570 is exploited in the wild. This unauthenticated RCE hits Zimbra Collaboration via SNMP notifications. Patch to 10.1.20 now.
#Zimbra #CVE #RCE #RemoteCodeExecution #ExploitedInTheWild #InfoSec #PatchNow
https://securityonline.info/zimbra-cve-2026-73570/?utm_source=mastodon&utm_medium=jetpack_social
##Active exploitation of CVE-2026-73570 in Zimbra Collaboration Suite is underway. The command injection flaw enables unauthenticated RCE on ZCS versions prior to 10.1.20 when zimbra-snmp is installed with SNMP notifications active. Attackers exploit this via crafted SMTP requests for full server compromise. Patch or disable SNMP immediately.
#ZimbraRCE #CVE202673570 #PatchNow
https://cyberworldops.eu/en/zimbra-vulnerability-exploited-to-enable-unauthenticated-remote
##CRITICAL: CVE-2026-73570 in Zimbra Collaboration Suite is under active exploit. RCE via SNMP notifications lets unauth attackers run OS commands as Zimbra user. Patch to 10.1.20 now & monitor for abnormal files/restarts. Details: https://radar.offseq.com/threat/critical-zimbra-rce-flaw-now-actively-exploited-in-attacks-7db25eca9fa27ac1 #OffSeq #Zimbra #Vuln
##CVE-2026-73570 is exploited in the wild. This unauthenticated RCE hits Zimbra Collaboration via SNMP notifications. Patch to 10.1.20 now.
#Zimbra #CVE #RCE #RemoteCodeExecution #ExploitedInTheWild #InfoSec #PatchNow
https://securityonline.info/zimbra-cve-2026-73570/?utm_source=mastodon&utm_medium=jetpack_social
##updated 2026-08-14T00:31:53
1 posts
3 repos
https://github.com/jangkrikkbozz/CVE-2026-68138
A public PoC for CVE-2026-68138 escalates a normal Linux user to root through a qdisc rate-table race condition.
#CVE202668138 #PrivilegeEscalation #LinuxKernel #qdisc #UseAfterFree #LPE
##updated 2026-08-13T21:36:21
2 posts
A Vault Secrets Operator vulnerability, CVE-2026-8715, lets tenants read pod files and gain privilege escalation. Patch to 1.5.0 now.
#HashiCorp #Vault #Kubernetes #CVE #PrivilegeEscalation #CyberSecurity #InfoSec #Vulnerability
##A Vault Secrets Operator vulnerability, CVE-2026-8715, lets tenants read pod files and gain privilege escalation. Patch to 1.5.0 now.
#HashiCorp #Vault #Kubernetes #CVE #PrivilegeEscalation #CyberSecurity #InfoSec #Vulnerability
##updated 2026-08-13T21:36:21
2 posts
A critical IBM remote code execution flaw (CVE-2026-17482, CVSS 9.8) allows attackers to compromise workstations. Discover how to apply the software patch.
#IBM #CyberSecurity #CVE202617482 #RCE #VulnerabilityManagement
##A critical IBM remote code execution flaw (CVE-2026-17482, CVSS 9.8) allows attackers to compromise workstations. Discover how to apply the software patch.
#IBM #CyberSecurity #CVE202617482 #RCE #VulnerabilityManagement
##updated 2026-08-13T13:17:48.253000
1 posts
MongoDB Patches 32 Vulnerabilities, Including CVE-2026-19001 Arbitrary Code Execution Flaw (CVSS 9.5)
##updated 2026-08-11T21:33:01
2 posts
2 repos
August 17-18, 2026:
**Geopolitical:** Saudi Arabia, Tรผrkiye, and Pakistan formalized a strategic defense pact. Commercial tanker traffic in the Strait of Hormuz plummeted to near-zero following recent strikes and stalled US-Iran negotiations.
**Technology:** Nvidia plans significant AI data center investments for OpenAI. AI-driven tech layoffs have now surpassed 2025 totals. Google Cloud targets 2029 for post-quantum cryptographic readiness.
**Cybersecurity:** Major data breaches impacted RingCentral (1.6M users) and Poland's MyDr healthcare platform (19M citizens). Microsoft patched 421 vulnerabilities, including an actively exploited Windows zero-day by Lazarus Group (CVE-2026-68820).
##โ ๏ธ CRITICAL: โก Weekly Recap: VMware Exploits, Windows 0-Day, MCP Attacks, Browser Hijacks and More
Three critical vulnerabilities are under active exploitation: VMware vCenter (CVE-2026-59310) by China-nexus APT for potential ransomware deployment, Windows 0-day (CVE-2026-68820) by Lazarus Group targeting defense contractors with backdoors, and macOS flaw (CVE-2026-65400) distributing crypto minโฆ
๐ค AI generated summary
##updated 2026-08-11T18:30:43
2 posts
Protect your network from CVE-2026-13737 and CVE-2026-13738. These critical Commvault command execution flaws allow hackers to bypass authorization checks.
#Commvault #CVE202613737 #CVE202613738 #Cybersecurity #Vulnerability
##Protect your network from CVE-2026-13737 and CVE-2026-13738. These critical Commvault command execution flaws allow hackers to bypass authorization checks.
#Commvault #CVE202613737 #CVE202613738 #Cybersecurity #Vulnerability
##updated 2026-08-11T17:17:47.660000
2 posts
Protect your network from CVE-2026-13737 and CVE-2026-13738. These critical Commvault command execution flaws allow hackers to bypass authorization checks.
#Commvault #CVE202613737 #CVE202613738 #Cybersecurity #Vulnerability
##Protect your network from CVE-2026-13737 and CVE-2026-13738. These critical Commvault command execution flaws allow hackers to bypass authorization checks.
#Commvault #CVE202613737 #CVE202613738 #Cybersecurity #Vulnerability
##updated 2026-08-11T12:30:28
3 posts
1 repos
DefusedCyber detected exploitation attempts against CVE-2026-58231, a critical unauthenticated SAP Commerce Cloud flaw, just three days after SAP's patch shipped.
#SAPCommerceCloud #CVE202658231 #SAPSecurity #Vulnerability #DataHubAdapter
##โA maximum-severity bug in SAP Commerce Cloud was exploited in the wild, research group Defused posted on X Aug. 14.
The 10.0 bug โ CVE-2026-58231 โ was described as having insufficient authorization checks and input validation and was earlier patched by SAP on Aug. 11.โ
https://www.scworld.com/news/critical-sap-commerce-cloud-flaw-exploited-days-after-patch
##ใSAP Commerce Cloudใฎ่ๅผฑๆงCVE-2026-58231ใใใใใ้ฉ็จๅพๆฐๆฅใงๆช็จใใใ่ฉฆใฟใฎๆจ็ใจใชใ ใ๏ผ #TheHackerNews
ใSAP Commerce Cloudใซๅฝฑ้ฟใไธใใใๆใๆทฑๅปใชใปใญใฅใชใใฃ่ๅผฑๆงใซใคใใฆใ็พๅจๆดป็บใชๆช็จๆดปๅใ่กใใใฆใใพใใ
CVE-2026-58231 ใจใใฆ่ฟฝ่ทกใใใฆใใใใฎ่ๅผฑๆงใฏใ CVSSในใณใขใชใณใฐใทในใใ ใง10.0ใจ่ฉไพกใใใฆใใพใใใใใฏใ่ช่จผใใงใใฏใจๅ ฅๅๆค่จผใไธๅๅใชใฑใผในใซ้ข้ฃใใฆใใพใใ
CVE.orgใซใใใจใใSAP Commerce Cloudใงใฏใ่ช่จผใใใฆใใชใๆปๆ่ ใใใใฉใซใใฎ่ช่จผใฏใฉใคใขใณใใๆช็จใใๅๅใชๆค่จผใ่กใใใฆใใชใ็นๅฎใฎๆฉ่ฝใซ็นๅฅใซ็ดฐๅทฅใใใๅ ฅๅใ้ไฟกใงใใใใจใฎใใจใงใใ
ใ่ๅผฑๆงใๆช็จใใใใจใไปปๆใฎใณใผใๅฎ่กใๅฏ่ฝใซใชใใๅ ้จใณใณใใผใใณใใไพตๅฎณใใใๅฏ่ฝๆงใใใใใขใใชใฑใผใทใงใณใฎๆฉๅฏๆงใๅฎๅ จๆงใๅฏ็จๆงใซ้ๅคงใชๅฝฑ้ฟใไธใใๅฏ่ฝๆงใใใใพใใใ ใ
https://thehackernews.com/2026/08/sap-commerce-cloud-cve-2026-58231.html
##updated 2026-08-08T18:30:30
1 posts
D-Link fixes 15 flaws in the DWR-M961 router, including D-Link router command injection and buffer overflow bugs like CVE-2026-71958. Update firmware now.
#DLink #DWRM961 #CommandInjection #BufferOverflow #RouterSecurity #CVE #InfoSec #CyberSecurity
##updated 2026-08-08T03:32:15
2 posts
1 repos
โช๏ธ Hackers Exploit macOS Screen Sharing Vulnerability to Install Crypto Miners
๐จ๏ธ The Netherlandsโ National Cyber Security Centre (NCSC) has warned that attackers have begun exploiting the critical CVE-2026-65400 vulnerability in macOS Screen Sharing. The flaw allows authentication to be bypassed, granting access to a Mac without a password, and is alreadyโฆ
##โช๏ธ Hackers Exploit macOS Screen Sharing Vulnerability to Install Crypto Miners
๐จ๏ธ The Netherlandsโ National Cyber Security Centre (NCSC) has warned that attackers have begun exploiting the critical CVE-2026-65400 vulnerability in macOS Screen Sharing. The flaw allows authentication to be bypassed, granting access to a Mac without a password, and is alreadyโฆ
##updated 2026-08-01T05:16:55.023000
18 posts
1 repos
๐ข Clop exploite CVE-2026-12569 dans PTC Windchill avec un web shell personnalisรฉ pour extorsion massive
๐ Source : ReliaQuest Threat Research Team, publiรฉ le 18 aoรปt 2026. Cette analyse technique dรฉcrit une campagne d'extorsion de masse attribuรฉe avec haute confiance au groupe Clop (aka Cl0p).
๐ cyberveille : https://cyberveille.ch/posts/2026-08-20-clop-exploite-cve-2026-12569-dans-ptc-windchill-avec-un-web-shell-personnalise-pour-extorsion-massive/
๐ source : https://reliaquest.com/blog/clop-returns-with-custom-implant-in-mass-extortion-campaign/
๐ข vรฉrification factuelle haute
#Clop #PTCWindchill #Cyberveille
โ ๏ธ CRITICAL: Clop-Linked Windchill Web Shell Decrypts Credentials and Maps Engineering Data
Clop ransomware operators deployed a custom JSP web shell targeting PTC Windchill and FlexPLM servers, exploiting CVE-2026-12569 to decrypt stored credentials and exfiltrate engineering data. Any organization running vulnerable Windchill instances is at immediate risk of credential compromise, lateโฆ
๐ค AI generated summary
##ReliaQuest found Clop deploying a purpose-built JSP web shell that abuses Windchill's internal APIs to decrypt secrets and steal files after exploiting CVE-2026-12569.
##Cl0p published full names of over 40 organizations allegedly breached through CVE-2026-12569 in PTC Windchill and FlexPLM. The flaw was added to CISA KEV in June, yet dozens of instances remained unpatched into August.
#Cl0p #Windchill #SupplyChainSecurity #CVE202612569
https://cyberworldops.eu/en/cl0p-targets-windchill-more-than-40-organizations-exposed-to-a
##Clop Exploits PTC Zero-Day in Large-Scale Data Theft Spree
Clop's latest large-scale data theft spree exploited a critical PTC zero-day vulnerability, CVE-2026-12569, affecting supply chain systems used by manufacturers, retailers, and industries like aerospace and automotive. This attack continues Clop's trend of targeting SaaS logistics companies with zero-days to carry out mass-exploitation campaigns.
##You built your product lifecycle management empire on unpatched servers. Magnificent. Truly. Patch CVE-2026-12569 on all PTC Windchill and FlexPLM instances immediately, and hunt for unauthorized web shells before Clop finishes admiring your data.
Reward: You've unlocked the Hollow Trophy โ a shiny gold cup with absolutely nothing inside it, just like your patch management schedule.
#Ransomware #CyberSecurity #ClopRansomware #PtcWindchill #WebShell #PatchedOrPerish (2/2)
##๐ New Achievement! Shell We Dance, PTC?
Ahem. Allow me to explain my genius. Clop โ yes, the ransomware operation, the one you've heard about in hushed tones โ identified CVE-2026-12569 in PTC Windchill and FlexPLM servers and deployed a custom web shell so elegantly minimal it needs no additional tooling whatsoever. Credentials? Siphoned. Sensitive engineering data? Exfiltrated. It's almost beautiful, like a Bond villain who remembered to actually press the button. (1/2)
##ReliaQuest has documented a custom JSP web shell deployed by Clop after exploitation of CVE-2026-12569 on PTC Windchill and FlexPLM servers. The implant maps design vaults, decrypts keystore credentials, and queries databases via the application's own identity.
#Clop #PTCWindchill #WebShell #ThreatIntelligence
https://cyberworldops.eu/en/clop-exploits-windchill-jsp-web-shell-steals-credentials-and
##PTC Windchill/FlexPLM (CVE-2026-12569) exploited by Cl0p ransomware: CRITICAL severity, remote code execution, 40+ orgs hit. Patch ASAP to block active data theft & extortion. Full details: https://radar.offseq.com/threat/cl0p-ransomware-group-names-over-40-victims-of-ptc-windchill-campaign-1b708410d1eaf87f #OffSeq #Ransomware #CVE202612569 #Infosec
##Clop Returns with Custom Implant in Mass-Extortion Campaign
Clop์ผ๋ก ์ถ์ ๋๋ ๊ณต๊ฒฉ ๊ทธ๋ฃน์ด PTC Windchill์ ์๊ฒฉ ์ฝ๋ ์คํ ์ทจ์ฝ์ CVE-2026-12569(CVSS 9.3)๋ฅผ ๋๋ ์ ์ฉํด ์ ํ๋ฆฌ์ผ์ด์ ์ ์ฉ JSP ์น์ ธ์ ๋ฐฐํฌํ๊ณ ์๋ค. ์ด ์ํ๋ํธ๋ Windchill ํค์คํ ์ด์ LDAPยท๊ด๋ฆฌ์ยท์คํ ๋ฆฌ์ง ์๊ฒฉ์ฆ๋ช ์ ๋ณตํธํํ๊ณ , ๋ด๋ถ DB ์คํค๋ง์ vault ๊ตฌ์กฐ๋ฅผ ์ด์ฉํด ๊ณ ๊ฐ์น ์์ง๋์ด๋ง ํ์ผ์ ์ด๊ฑฐยท์ ์ถํ ์ ์๋ค. ๋ํ Base64 ZIP ํํ์ Java ๋ฐ์ดํธ์ฝ๋๋ฅผ ๋ฉ๋ชจ๋ฆฌ์์ ๋ก๋ยท์คํํ๋ ์ปค์คํ ํด๋์ค ๋ก๋๋ฅผ ํฌํจํด, ๋์คํฌ ํ์ ์ ์ต์ํํ๋ฉด์ ํก์ ์ด๋...
https://reliaquest.com/blog/clop-returns-with-custom-implant-in-mass-extortion-campaign/
##Cl0p Turns PTC Windchill Into a Data-Theft Weapon: Critical CVE-2026-12569 Exploited to Steal Industrial Secrets + Video
Introduction: When the Blueprint Becomes the Target The most dangerous cyberattacks do not always begin with a locked computer, a destroyed server, or a ransom note appearing across an employee's screen. Sometimes, the attack begins quietly against an application that nobody outside the engineering department thinks of as a critical securityโฆ
##โ ๏ธ CRITICAL: Clop-Linked Windchill Web Shell Decrypts Credentials and Maps Engineering Data
Clop ransomware operators deployed a custom JSP web shell targeting PTC Windchill and FlexPLM servers, exploiting CVE-2026-12569 to decrypt stored credentials and exfiltrate engineering data. Any organization running vulnerable Windchill instances is at immediate risk of credential compromise, lateโฆ
๐ค AI generated summary
##ReliaQuest found Clop deploying a purpose-built JSP web shell that abuses Windchill's internal APIs to decrypt secrets and steal files after exploiting CVE-2026-12569.
##Cl0p published full names of over 40 organizations allegedly breached through CVE-2026-12569 in PTC Windchill and FlexPLM. The flaw was added to CISA KEV in June, yet dozens of instances remained unpatched into August.
#Cl0p #Windchill #SupplyChainSecurity #CVE202612569
https://cyberworldops.eu/en/cl0p-targets-windchill-more-than-40-organizations-exposed-to-a
##You built your product lifecycle management empire on unpatched servers. Magnificent. Truly. Patch CVE-2026-12569 on all PTC Windchill and FlexPLM instances immediately, and hunt for unauthorized web shells before Clop finishes admiring your data.
Reward: You've unlocked the Hollow Trophy โ a shiny gold cup with absolutely nothing inside it, just like your patch management schedule.
#Ransomware #CyberSecurity #ClopRansomware #PtcWindchill #WebShell #PatchedOrPerish (2/2)
##๐ New Achievement! Shell We Dance, PTC?
Ahem. Allow me to explain my genius. Clop โ yes, the ransomware operation, the one you've heard about in hushed tones โ identified CVE-2026-12569 in PTC Windchill and FlexPLM servers and deployed a custom web shell so elegantly minimal it needs no additional tooling whatsoever. Credentials? Siphoned. Sensitive engineering data? Exfiltrated. It's almost beautiful, like a Bond villain who remembered to actually press the button. (1/2)
##ReliaQuest has documented a custom JSP web shell deployed by Clop after exploitation of CVE-2026-12569 on PTC Windchill and FlexPLM servers. The implant maps design vaults, decrypts keystore credentials, and queries databases via the application's own identity.
#Clop #PTCWindchill #WebShell #ThreatIntelligence
https://cyberworldops.eu/en/clop-exploits-windchill-jsp-web-shell-steals-credentials-and
##PTC Windchill/FlexPLM (CVE-2026-12569) exploited by Cl0p ransomware: CRITICAL severity, remote code execution, 40+ orgs hit. Patch ASAP to block active data theft & extortion. Full details: https://radar.offseq.com/threat/cl0p-ransomware-group-names-over-40-victims-of-ptc-windchill-campaign-1b708410d1eaf87f #OffSeq #Ransomware #CVE202612569 #Infosec
##updated 2026-07-30T19:17:31.990000
2 posts
1 repos
https://github.com/OmriBaso/SCCM-CVE-2026-47301-Remote-Code-Execution-Exploit
CVE-2026-47301: PoC Exploit Achieves SYSTEM-Level Code Execution in SCCM
##CVE-2026-47301: PoC Exploit Achieves SYSTEM-Level Code Execution in SCCM
##updated 2026-07-30T19:17:30.313000
1 posts
๐ข CVE-2026-43760 : RCE root ร distance via Screen Sharing macOS sur Apple Silicon
Cet article prรฉsente une analyse technique dรฉtaillรฉe d'une vulnรฉrabilitรฉ dรฉcouverte dans le service Screen Sharing de macOS, affectant les systรจmes รฉquipรฉs de puces Apple Silicon (M4 et M5), testรฉs sous macOS 26.5.2 avec SIP activรฉ.
๐ cyberveille : https://cyberveille.ch/posts/2026-08-20-cve-2026-43760-rce-root-a-distance-via-screen-sharing-macos-sur-apple-silicon/
๐ source : https://bynar.io/blog/a-root-remote-command-execution-on-macos-with-m5-in-2026
๐ก vรฉrification factuelle moyenne
#AppleSilicon #RCERoot #Cyberveille
updated 2026-07-28T18:33:56
1 posts
Petit insight trรจs sympa sur la recherche de vulnรฉrabilitรฉ macOS
Le chercheur Csaba Fitzl revient sur une jolie vuln dans Spotlight (Spotlight PostScript plugin), une sorte de petite chimรจre qui traรฎnait depuis un moment dans sa TODO list : quelques fonctions dรฉcompilรฉes du parser PostScript soumises ร Claude, une piste identifiรฉe, puis validation humaine.
Rรฉsultat : CVE-2026-43774, un simple fichier .ps pouvant faire fuiter des morceaux de mรฉmoire de mdworker via les mรฉtadonnรฉes Spotlight.
Au-delร du bug, le billet montre trรจs directement comment les IA sโintรจgrent naturellement aux workflows de recherche de vulnรฉrabilitรฉs, en partant de lโexpertise humaine : une intuition et une approche, puis fuzzing dopรฉ au LLM, reverse, dรฉtection de patterns suspectsโฆ
...et pourquoi les รฉditeurs comme la pomme doivent courir toujours plus vite derriรจre les patchs.
"How a single PostScript file leaks your Mac's memory"
๐
https://www.iru.com/blog/how-a-single-postscript-file-leaks-your-macs-memory
updated 2026-07-22T15:31:34
2 posts
WTF?
> The fix for CVE-2026-11622 was reverted in commit d76328bfc7 on the development branch, reintroducing this vulnerability in the current stable release (9.20.27).
The branch was never merged and it was prepared just as an experiment. And this little ...personโฆ tried to report this as CVSS 7.5.
##WTF?
> The fix for CVE-2026-11622 was reverted in commit d76328bfc7 on the development branch, reintroducing this vulnerability in the current stable release (9.20.27).
The branch was never merged and it was prepared just as an experiment. And this little ...personโฆ tried to report this as CVSS 7.5.
##updated 2026-07-01T15:52:28.390000
1 posts
2 repos
https://github.com/derekpreston81/CVE_ADC_IOC_2026
https://github.com/watchtowrlabs/watchTowr-vs-Citrix-Netscaler-PreAuth-RCE-CVE-2026-8452
Youโre Back In The Room (Citrix NetScaler Pre-Auth RCE CVE-2026-8452(?)) https://labs.watchtowr.com/youre-back-in-the-room-citrix-netscaler-pre-auth-rce-cve-2026-8452/
##updated 2026-06-17T18:35:58
2 posts
Critical OS command injection in Splunk AI Toolkit (CVE-2026-20266, CVSS 9.1) lets admins run arbitrary host commands. Patch to 5.7.4 now.
#Splunk #CVE #OSCommandInjection #Vulnerability #InfoSec #PatchNow #AISecurity
##Critical OS command injection in Splunk AI Toolkit (CVE-2026-20266, CVSS 9.1) lets admins run arbitrary host commands. Patch to 5.7.4 now.
#Splunk #CVE #OSCommandInjection #Vulnerability #InfoSec #PatchNow #AISecurity
##updated 2026-06-17T10:27:52.490000
1 posts
3 repos
https://github.com/Semperis-Community/ResetNightmare
ResetNightmare : cette faille Kerberos permet de prendre le contrรดle du domaine Active Directory https://www.it-connect.fr/resetnightmare-cve-2026-27912-kerberos-active-directory/ #ActuCybersรฉcuritรฉ #Cybersรฉcuritรฉ #Vulnรฉrabilitรฉ #Microsoft
##updated 2026-06-17T03:54:04.020000
1 posts
4 repos
https://github.com/dongpohezui/cve-2021-33045
https://github.com/bp2008/DahuaLoginBypass
Operation CameraSwarm: 14,500 Dahua Cameras Compromised via P2P Relay Abuse
Hunt.io๊ฐ โOperation CameraSwarmโ ์บ ํ์ธ์์ Dahua ๊ฐ์ ์นด๋ฉ๋ผ 14,530๋ ์ด์์ด ํ์ทจ๋๋ค๊ณ ๋ณด๊ณ ํ๋ค. ๊ณต๊ฒฉ์๋ ๊ธฐ๋ณธยท์ฝํ ๋น๋ฐ๋ฒํธ ๋์ ํฌ๋ฆฌ๋ด์ ๊ณต๊ฒฉ, CVSS 9.8์ ์ธ์ฆ ์ฐํ ์ทจ์ฝ์ CVE-2021-33044 ๋ฐ CVE-2021-33045, ๊ทธ๋ฆฌ๊ณ Easy4IP ๊ณ์ด P2P ๋ฆด๋ ์ด ์ ์ฉ์ ๊ฒฐํฉํ๋ค. ํนํ ์ฅ๋น ์ผ๋ จ๋ฒํธ๋ฅผ ์ด์ฉํ P2P ํฐ๋์ NAT ๋ค์ ์๋ ์นด๋ฉ๋ผ์๋ ์ ๊ทผํ ์ ์์ด, ๋จ์ํ ๋คํธ์ํฌ ๊ฒฝ๊ณ ๋ฐฉ์ด๋ง์ผ๋ก๋ ๋ถ์กฑํ๋ค๋ ์ ์ด ํต์ฌ์ด๋ค. Dahua ์ฅ๋น ์ด์ ์กฐ์ง์ ์ฆ์ ํ์จ์ด์ ๋ ธ...
https://cyberupdates365.com/operation-cameraswarm-dahua-cameras/
##updated 2026-06-16T23:23:40.850000
2 posts
@janl Oh no, I doxed myself. The reporter of CVE-2010-3854 wanted to stay anonymous, heh.
##@janl Oh no, I doxed myself. The reporter of CVE-2010-3854 wanted to stay anonymous, heh.
##updated 2026-06-16T22:59:22.107000
2 posts
1 repos
https://github.com/talha3117/OpenSSH-4.7p1-CVE-2008-5161-Exploit
@sten @lennybacon @b0rk
Ad CBC:
https://en.wikipedia.org/wiki/Padding_oracle_attack#Symmetric_cryptography
https://crypto.stackexchange.com/questions/77975/how-to-break-cbc-cipher-with-partly-known-plaintext
##@sten @lennybacon @b0rk
Ad CBC:
https://en.wikipedia.org/wiki/Padding_oracle_attack#Symmetric_cryptography
https://crypto.stackexchange.com/questions/77975/how-to-break-cbc-cipher-with-partly-known-plaintext
##updated 2026-06-02T15:33:09
4 posts
1 repos
๐จ Public PoC available for high-severity Android ContactsProvider flaw
https://github.com/qm4rs/cve-2026-0075
CVE-2026-0075 affects Android 14, 15, 16, and 16 QPR2 and can allow access to information from the contacts database through a SQL-related side channel without user interaction.
Researcher QM4RS has now released a controlled Android PoC that intentionally requests neither READ_CONTACTS nor WRITE_CONTACTS.
The issue involves ContactsProvider2 returning detailed SQLite errors to callers that lack contacts permission. Those errors could potentially be abused as an information side channel.
Google's fix strips sensitive JSON-related SQLite exception details from unauthorized callers.
The researcher cautions that the PoC is build-specific and does not demonstrate a universal exploitation path across every Android device.
Devices with the June 5, 2026 Android security patch level or later address the issue.
##A public PoC for CVE-2026-0075 shows an Android elevation of privilege in ContactsProvider2 that needs no user interaction.
#CVE20260075 #Android #ElevationOfPrivilege #ContactsProvider #SQLInjection #AndroidSecurity
https://securityonline.info/cve-2026-0075-android-eop/?utm_source=mastodon&utm_medium=jetpack_social
##๐จ Public PoC available for high-severity Android ContactsProvider flaw
https://github.com/qm4rs/cve-2026-0075
CVE-2026-0075 affects Android 14, 15, 16, and 16 QPR2 and can allow access to information from the contacts database through a SQL-related side channel without user interaction.
Researcher QM4RS has now released a controlled Android PoC that intentionally requests neither READ_CONTACTS nor WRITE_CONTACTS.
The issue involves ContactsProvider2 returning detailed SQLite errors to callers that lack contacts permission. Those errors could potentially be abused as an information side channel.
Google's fix strips sensitive JSON-related SQLite exception details from unauthorized callers.
The researcher cautions that the PoC is build-specific and does not demonstrate a universal exploitation path across every Android device.
Devices with the June 5, 2026 Android security patch level or later address the issue.
##A public PoC for CVE-2026-0075 shows an Android elevation of privilege in ContactsProvider2 that needs no user interaction.
#CVE20260075 #Android #ElevationOfPrivilege #ContactsProvider #SQLInjection #AndroidSecurity
https://securityonline.info/cve-2026-0075-android-eop/?utm_source=mastodon&utm_medium=jetpack_social
##updated 2026-03-16T15:30:54
2 posts
3 repos
https://github.com/HORKimhab/CVE-2026-19650-CVE-2026-19478
โช๏ธ Critical GitLab Vulnerability Allowed Deletion of Public Projects
๐จ๏ธ GitLab developers have released emergency patches for Community Edition (CE) and Enterprise Edition (EE) that address the critical vulnerability CVE-2026-19478 (CVSS score: 9.4). Under certain conditions, the flaw allowed an unauthenticated attacker to remotely modify or delete public projects andโฆ
##โช๏ธ Critical GitLab Vulnerability Allowed Deletion of Public Projects
๐จ๏ธ GitLab developers have released emergency patches for Community Edition (CE) and Enterprise Edition (EE) that address the critical vulnerability CVE-2026-19478 (CVSS score: 9.4). Under certain conditions, the flaw allowed an unauthenticated attacker to remotely modify or delete public projects andโฆ
##updated 2026-02-27T06:31:39
1 posts
SQL Injection flaw (CVE-2026-67854) in Qcms v6.0.6 rated CRITICAL: remote code execution risk. No official patch. Restrict access & monitor for injection attempts. Details: https://radar.offseq.com/threat/sql-injection-vulnerability-in-qcms-v606-allows-a-remote-attacker-to-execute-arbitrary-code-cve-2026-3286c90b2be69269 #OffSeq #SQLInjection #Vulnerability #Qcms #InfoSec
##updated 2025-10-22T00:32:20
2 posts
10 repos
https://github.com/eagle-nett/DAHUA_AUTH-BYPASS-CVE-2021-33044
https://github.com/nasimanpha-create/ing-switch
https://github.com/haingn/LoHongCam-CVE-2021-33044
https://github.com/bp2008/DahuaLoginBypass
https://github.com/litndat/Camera-Dahua-Research-l-h-ng-CVE-2021-33044
https://github.com/jorhelp/Ingram
https://github.com/Bd-Mutant7/DahuaLoginBypass
https://github.com/Baza-NATO/CVE-2021-33044
๐ฐ Over 14,500 Dahua Cameras Compromised in 'Operation CameraSwarm'
โOperation CameraSwarmโ compromises 14,500+ Dahua cameras & NVRs using brute-force, auth bypass CVEs, and P2P abuse. Devices in Ukraine & Russia were primary targets. CISA KEVs CVE-2021-33044/33045 exploited. #IoT #Dahua #CyberAttack #Botnet
##Operation CameraSwarm: 14,500 Dahua Cameras Compromised via P2P Relay Abuse
Hunt.io๊ฐ โOperation CameraSwarmโ ์บ ํ์ธ์์ Dahua ๊ฐ์ ์นด๋ฉ๋ผ 14,530๋ ์ด์์ด ํ์ทจ๋๋ค๊ณ ๋ณด๊ณ ํ๋ค. ๊ณต๊ฒฉ์๋ ๊ธฐ๋ณธยท์ฝํ ๋น๋ฐ๋ฒํธ ๋์ ํฌ๋ฆฌ๋ด์ ๊ณต๊ฒฉ, CVSS 9.8์ ์ธ์ฆ ์ฐํ ์ทจ์ฝ์ CVE-2021-33044 ๋ฐ CVE-2021-33045, ๊ทธ๋ฆฌ๊ณ Easy4IP ๊ณ์ด P2P ๋ฆด๋ ์ด ์ ์ฉ์ ๊ฒฐํฉํ๋ค. ํนํ ์ฅ๋น ์ผ๋ จ๋ฒํธ๋ฅผ ์ด์ฉํ P2P ํฐ๋์ NAT ๋ค์ ์๋ ์นด๋ฉ๋ผ์๋ ์ ๊ทผํ ์ ์์ด, ๋จ์ํ ๋คํธ์ํฌ ๊ฒฝ๊ณ ๋ฐฉ์ด๋ง์ผ๋ก๋ ๋ถ์กฑํ๋ค๋ ์ ์ด ํต์ฌ์ด๋ค. Dahua ์ฅ๋น ์ด์ ์กฐ์ง์ ์ฆ์ ํ์จ์ด์ ๋ ธ...
https://cyberupdates365.com/operation-cameraswarm-dahua-cameras/
##Two critical Spring Integration vulnerabilities, CVE-2026-59307 and CVE-2026-59324, expose systems to remote code execution and data leakage. Update now.
#SpringIntegration #CyberSecurity #CVE202659307 #CVE202659324 #Vulnerability
##Two critical Spring Integration vulnerabilities, CVE-2026-59307 and CVE-2026-59324, expose systems to remote code execution and data leakage. Update now.
#SpringIntegration #CyberSecurity #CVE202659307 #CVE202659324 #Vulnerability
##Two critical Spring Integration vulnerabilities, CVE-2026-59307 and CVE-2026-59324, expose systems to remote code execution and data leakage. Update now.
#SpringIntegration #CyberSecurity #CVE202659307 #CVE202659324 #Vulnerability
##Two critical Spring Integration vulnerabilities, CVE-2026-59307 and CVE-2026-59324, expose systems to remote code execution and data leakage. Update now.
#SpringIntegration #CyberSecurity #CVE202659307 #CVE202659324 #Vulnerability
##๐ CVE-2026-63490 - High (7.5)
Handlebars.java provides logic-less and semantic Mustache templates with Java. Prior to 4.5.3, com.github.jknack.handlebars.springmvc.SpringTemplateLoader resolves attacker-influenced Spring MVC view names through Spring ResourceLoader without the...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-63490/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-63490 - High (7.5)
Handlebars.java provides logic-less and semantic Mustache templates with Java. Prior to 4.5.3, com.github.jknack.handlebars.springmvc.SpringTemplateLoader resolves attacker-influenced Spring MVC view names through Spring ResourceLoader without the...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-63490/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##https://docs.ceph.com/en/latest/security/CVE-2026-54330/
https://github.com/ceph/ceph/commit/89df1b55f12f4bb07878cc0e8f5152307166b7f4
>RGW: This release contains a fix for CVE-2026-54330. We now reject Sigv4 requests with `host` and `x-amz-` headers not included in the signed subset. Unfortunately, the REST client used in multisite was generating such improperly signed requests.
can't make this shit up
> If you are running multisite, you must set the ``rgw_sigv4_insecure`` option to true before you begin to upgrade. After all clusters are upgraded, set the option to ``false`` again.
??! D:
they want me to backdoor the cluster in order to fix a security vuln in the cluster lmfao
##https://docs.ceph.com/en/latest/security/CVE-2026-54330/
https://github.com/ceph/ceph/commit/89df1b55f12f4bb07878cc0e8f5152307166b7f4
>RGW: This release contains a fix for CVE-2026-54330. We now reject Sigv4 requests with `host` and `x-amz-` headers not included in the signed subset. Unfortunately, the REST client used in multisite was generating such improperly signed requests.
can't make this shit up
> If you are running multisite, you must set the ``rgw_sigv4_insecure`` option to true before you begin to upgrade. After all clusters are upgraded, set the option to ``false`` again.
??! D:
they want me to backdoor the cluster in order to fix a security vuln in the cluster lmfao
##Hacking SAML with Claude Code
Dex ๊ธฐ์ฌ์๊ฐ Claude Opus ๊ธฐ๋ฐ ๋ฉํฐ์์ด์ ํธ ํ๋ค์ค๋ฅผ ๋ง๋ค์ด SAML ๊ตฌํ์ฒด๋ฅผ ๋๊ท๋ชจ๋ก ์ ๊ฒํ ์ฌ๋ก๋ค. ์ํ ๋ชจ๋ธ์ ์ฃผ๊ณ ํ์์ํค๋ ๋ฐฉ์์ผ๋ก XML ์ฒ๋ฆฌ ์ฐจ์ด์ ์๋ช ๊ฒ์ฆ ๋ถ์ผ์น๋ฅผ ์ฐพ์์ผ๋ฉฐ, Authentik(CVE-2026-57580), litesaml/lightsaml(CVE-2026-63182), OneUptime, Java saml-client์์ ์ธ์ฆ ์ฐํ ๋๋ ์๋ช ๋ํ ๋ฌธ์ ๋ฅผ ๋ณด๊ณ ํ๋ค. ๋ํ NodeยทPython SAML ์ํ๊ณ์๋ ์ฒ๋ฆฌ ๋ณํ๊ณผ XML ํ์ ์กฐํฉ์ผ๋ก ๋ฐ์ํ๋ ๋ฏธ์ธ์ฆ OOM DoS ๋ฌธ์ ๊ฐ ์์ง ๋จ์ ์๋ค๊ณ ์ฃผ์ฅํ๋ค. AI ์์ด์ ํธ๋ฅผ ์ทจ์ฝ์ ํ์์ ์ ์ฉํ ๋๋ ๊ฐ์ ฏ ํ์โ์ข ๋จ๊ฐ ์ต์คํ๋ก์ ๊ฒ์ฆ, JSONL ๊ธฐ๋ฐ...
##Hacking SAML with Claude Code
Dex ๊ธฐ์ฌ์๊ฐ Claude Opus ๊ธฐ๋ฐ ๋ฉํฐ์์ด์ ํธ ํ๋ค์ค๋ฅผ ๋ง๋ค์ด SAML ๊ตฌํ์ฒด๋ฅผ ๋๊ท๋ชจ๋ก ์ ๊ฒํ ์ฌ๋ก๋ค. ์ํ ๋ชจ๋ธ์ ์ฃผ๊ณ ํ์์ํค๋ ๋ฐฉ์์ผ๋ก XML ์ฒ๋ฆฌ ์ฐจ์ด์ ์๋ช ๊ฒ์ฆ ๋ถ์ผ์น๋ฅผ ์ฐพ์์ผ๋ฉฐ, Authentik(CVE-2026-57580), litesaml/lightsaml(CVE-2026-63182), OneUptime, Java saml-client์์ ์ธ์ฆ ์ฐํ ๋๋ ์๋ช ๋ํ ๋ฌธ์ ๋ฅผ ๋ณด๊ณ ํ๋ค. ๋ํ NodeยทPython SAML ์ํ๊ณ์๋ ์ฒ๋ฆฌ ๋ณํ๊ณผ XML ํ์ ์กฐํฉ์ผ๋ก ๋ฐ์ํ๋ ๋ฏธ์ธ์ฆ OOM DoS ๋ฌธ์ ๊ฐ ์์ง ๋จ์ ์๋ค๊ณ ์ฃผ์ฅํ๋ค. AI ์์ด์ ํธ๋ฅผ ์ทจ์ฝ์ ํ์์ ์ ์ฉํ ๋๋ ๊ฐ์ ฏ ํ์โ์ข ๋จ๊ฐ ์ต์คํ๋ก์ ๊ฒ์ฆ, JSONL ๊ธฐ๋ฐ...
##๐ CVE-2026-68899 - High (8.7)
Wekan is open source kanban built with Meteor. Prior to 9.90, isFileValid() in models/fileValidation.js used the Unix file command for content-based MIME detection, but detectMimeFromFile() silently returned undefined when that binary was unavaila...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-68899/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-68899 - High (8.7)
Wekan is open source kanban built with Meteor. Prior to 9.90, isFileValid() in models/fileValidation.js used the Unix file command for content-based MIME detection, but detectMimeFromFile() silently returned undefined when that binary was unavaila...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-68899/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-68561 - High (8.8)
Wekan is open source kanban built with Meteor. Prior to 9.89, the second Boards.allow({ update }) rule in server/permissions/boards.js called canUpdateBoardSort in server/lib/utils.js, which authorized any board member whenever fieldNames included...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-68561/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-68561 - High (8.8)
Wekan is open source kanban built with Meteor. Prior to 9.89, the second Boards.allow({ update }) rule in server/permissions/boards.js called canUpdateBoardSort in server/lib/utils.js, which authorized any board member whenever fieldNames included...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-68561/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-50186 - High (8.8)
4gaBoards is a boards system for realtime project management. Prior to 3.3.8, 4gaBoards allows an authenticated project manager to supply traversal sequences in the filename parameter of GET /exports/:id/:filename. In server/api/controllers/boards...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-50186/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-50186 - High (8.8)
4gaBoards is a boards system for realtime project management. Prior to 3.3.8, 4gaBoards allows an authenticated project manager to supply traversal sequences in the filename parameter of GET /exports/:id/:filename. In server/api/controllers/boards...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-50186/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-50142 - High (7.5)
libheif is a HEIF and AVIF file format decoder and encoder. From 1.19.0 until 1.23.0, a crafted HEIF sequence accepted by heif_context_read_from_memory() with the msf1 sequence brand can cause unbounded heap allocation. In libheif/sequences/seq_bo...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-50142/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-50142 - High (7.5)
libheif is a HEIF and AVIF file format decoder and encoder. From 1.19.0 until 1.23.0, a crafted HEIF sequence accepted by heif_context_read_from_memory() with the msf1 sequence brand can cause unbounded heap allocation. In libheif/sequences/seq_bo...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-50142/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-52872 - High (8.8)
Streambert is a cross-platform Electron Desktop App to stream and download video content. Prior to 2.5.0, the downloadSubtitleFile utility in src/ipc/downloads.js, reached through the run-download IPC channel, accepts a renderer-supplied subtitle ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-52872/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-52872 - High (8.8)
Streambert is a cross-platform Electron Desktop App to stream and download video content. Prior to 2.5.0, the downloadSubtitleFile utility in src/ipc/downloads.js, reached through the run-download IPC channel, accepts a renderer-supplied subtitle ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-52872/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-52876 - High (8.8)
Streambert is a cross-platform Electron Desktop App to stream and download video content. Prior to version 2.6.0, the open-path-at-time IPC handler in src/ipc/player.js accepts a renderer-controlled filePath without validating its type or location...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-52876/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-52876 - High (8.8)
Streambert is a cross-platform Electron Desktop App to stream and download video content. Prior to version 2.6.0, the open-path-at-time IPC handler in src/ipc/player.js accepts a renderer-controlled filePath without validating its type or location...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-52876/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-75936 - High (7.5)
Improper handling of highly compressed data in the GZIP auto-decompression handler in Amazon ion-java before 1.12.0 might allow remote actors to cause a denial of service via a crafted compressed Ion document that expands to an arbitrarily large s...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-75936/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-75935 - High (7.5)
Uncontrolled memory allocation in the binary Ion stream cursor in Amazon ion-java before 1.12.0 might allow remote actors to cause a denial of service via a crafted Ion binary document containing a declared-length field that causes excessive heap ...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-75935/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##@hugovalters Iโm curious. What does โunpatchedโ mean in this context? I had presumed it meant the vulnerability hasnโt been fixed yet, but this doesnโt seem to be the case. e.g. this page lists the CVE as โunpatchedโ but also says what version of Vim it was fixed in: https://www.valtersit.com/cve/CVE-2025-53906
##๐ CVE-2026-75914 - High (7.5)
CodeWhale versions before 0.8.64 contain a path traversal vulnerability in the image_analyze tool that fails to canonicalize symlinks before reading files. Attackers can create workspace symlinks pointing to external files with image extensions to...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-75914/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##๐ CVE-2026-75911 - High (7.8)
CodeWhale versions before 0.8.64 fail to properly validate the allow_shell configuration parameter from project config files, allowing attackers to enable arbitrary shell command execution by committing a malicious .codewhale/config.toml file to a...
๐ https://www.thehackerwire.com/vulnerability/CVE-2026-75911/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##