##
Updated at UTC 2026-09-13T22:58:35.752595
| CVE | CVSS | EPSS | Posts | Repos | Nuclei | Updated | Description |
|---|---|---|---|---|---|---|---|
| CVE-2026-29811 | 7.7 | 0.00% | 2 | 0 | 2026-09-13T20:16:51.020000 | CyberPanel before 2.4.4 attempts to detect an "alais" domain (i.e., a second dom | |
| CVE-2026-90783 | 7.8 | 0.00% | 2 | 0 | 2026-09-13T15:30:28 | MKVToolNix through 101.0 contains a heap buffer overflow in the bundled avilib l | |
| CVE-2026-90510 | 8.3 | 0.00% | 2 | 0 | 2026-09-13T12:31:19 | A security vulnerability has been detected in dromara orion-visor up to 2.5.7. T | |
| CVE-2026-90775 | 6.5 | 0.00% | 2 | 0 | 2026-09-13T12:31:19 | PostGIS address_standardizer through 3.7.0 fails to validate the Weight paramete | |
| CVE-2026-90778 | 7.5 | 0.00% | 2 | 0 | 2026-09-13T12:31:19 | SIPp through 3.7.7 contains a buffer overflow vulnerability in get_peer_tag() fu | |
| CVE-2026-90776 | 7.5 | 0.00% | 2 | 0 | 2026-09-13T12:31:19 | Nodemailer versions 9.1.0 through 10.0.4 contain a quadratic time complexity vul | |
| CVE-2026-90772 | 7.6 | 0.00% | 2 | 0 | 2026-09-13T12:31:19 | Amundsen frontend through 4.3.0 renders table, dashboard, and feature descriptio | |
| CVE-2026-90770 | 8.8 | 0.00% | 2 | 0 | 2026-09-13T12:31:12 | Spug through 3.4.0 contains a remote code execution vulnerability in the ping_ch | |
| CVE-2026-90768 | 8.1 | 0.00% | 2 | 0 | 2026-09-13T12:31:12 | CAPEv2 through commit 471ee4b fails to validate task ownership in REST API endpo | |
| CVE-2026-90562 | 8.1 | 0.00% | 4 | 0 | 2026-09-13T12:31:11 | LangBot before 4.10.11 generates password recovery keys with only 24 bits of ent | |
| CVE-2026-90780 | 7.5 | 0.00% | 2 | 0 | 2026-09-13T12:17:17.093000 | SIPp through 3.7.7 contains a buffer overflow vulnerability in the get_header() | |
| CVE-2026-90779 | 7.5 | 0.00% | 2 | 0 | 2026-09-13T12:17:16.960000 | SIPp through 3.7.7 contains a stack buffer overflow vulnerability in createAuthH | |
| CVE-2026-90777 | 8.8 | 0.00% | 2 | 0 | 2026-09-13T12:17:16.690000 | ESPnet before 202609 deserializes pretrained model checkpoints using torch.load | |
| CVE-2026-90774 | 7.5 | 0.00% | 2 | 0 | 2026-09-13T11:17:02.163000 | rustypaste before 0.18.1 validates the destination path before applying the opti | |
| CVE-2026-90769 | 7.7 | 0.00% | 2 | 0 | 2026-09-13T11:17:01.270000 | Open Notebook before 1.11.0 fails to validate the URL parameter in POST /api/sou | |
| CVE-2026-90561 | 8.7 | 0.00% | 2 | 0 | 2026-09-13T11:17:00.613000 | Strapi versions 4.x through 4.26.2 and 5.x before 5.48.1 contain a stored cross- | |
| CVE-2026-89080 | 7.5 | 0.00% | 2 | 0 | 2026-09-13T11:16:59.650000 | The Really Simple Security WordPress plugin before 9.8.1 does not prevent an un | |
| CVE-2026-86406 | 7.5 | 0.00% | 2 | 0 | 2026-09-13T11:16:58.793000 | The User Registration & Membership WordPress plugin before 5.2.8 does not check | |
| CVE-2026-89767 | 7.8 | 0.15% | 2 | 0 | 2026-09-13T09:33:34 | In the Linux kernel, the following vulnerability has been resolved: ovl: fix do | |
| CVE-2026-89763 | 7.8 | 0.11% | 2 | 0 | 2026-09-13T09:33:34 | In the Linux kernel, the following vulnerability has been resolved: KEYS: trust | |
| CVE-2026-89771 | 7.8 | 0.12% | 2 | 0 | 2026-09-13T09:32:31 | In the Linux kernel, the following vulnerability has been resolved: ring-buffer | |
| CVE-2026-89750 | 7.8 | 0.16% | 2 | 0 | 2026-09-13T09:32:30 | In the Linux kernel, the following vulnerability has been resolved: tracing/use | |
| CVE-2026-89748 | 7.8 | 0.15% | 2 | 0 | 2026-09-13T09:32:30 | In the Linux kernel, the following vulnerability has been resolved: tracing: Fi | |
| CVE-2026-89747 | 7.8 | 0.16% | 2 | 0 | 2026-09-13T09:32:30 | In the Linux kernel, the following vulnerability has been resolved: tracing: Fi | |
| CVE-2026-89746 | 7.8 | 0.16% | 2 | 0 | 2026-09-13T09:32:30 | In the Linux kernel, the following vulnerability has been resolved: tracing: Fi | |
| CVE-2026-89754 | 7.8 | 0.12% | 2 | 0 | 2026-09-13T09:32:30 | In the Linux kernel, the following vulnerability has been resolved: mm/pagewalk | |
| CVE-2026-89762 | 7.8 | 0.12% | 2 | 0 | 2026-09-13T09:32:30 | In the Linux kernel, the following vulnerability has been resolved: apparmor: f | |
| CVE-2026-89761 | 7.8 | 0.12% | 2 | 0 | 2026-09-13T09:32:30 | In the Linux kernel, the following vulnerability has been resolved: apparmor: f | |
| CVE-2026-89736 | 7.8 | 0.12% | 2 | 0 | 2026-09-13T09:32:29 | In the Linux kernel, the following vulnerability has been resolved: usb: gadget | |
| CVE-2026-89764 | 7.8 | 0.14% | 2 | 0 | 2026-09-13T07:17:40.843000 | In the Linux kernel, the following vulnerability has been resolved: rust: devre | |
| CVE-2026-89760 | 7.8 | 0.11% | 2 | 0 | 2026-09-13T07:17:40.307000 | In the Linux kernel, the following vulnerability has been resolved: mm, swap: d | |
| CVE-2026-89758 | 7.8 | 0.14% | 2 | 0 | 2026-09-13T07:17:40.190000 | In the Linux kernel, the following vulnerability has been resolved: mm/mempolic | |
| CVE-2026-89755 | 7.8 | 0.14% | 2 | 0 | 2026-09-13T07:17:39.983000 | In the Linux kernel, the following vulnerability has been resolved: mm/migrate_ | |
| CVE-2026-89744 | 8.4 | 0.14% | 2 | 0 | 2026-09-13T07:17:39.073000 | In the Linux kernel, the following vulnerability has been resolved: device prop | |
| CVE-2026-89706 | 7.5 | 0.44% | 2 | 0 | 2026-09-13T07:17:36.240000 | In the Linux kernel, the following vulnerability has been resolved: nfsd: Reset | |
| CVE-2026-89704 | 7.5 | 0.44% | 2 | 0 | 2026-09-13T07:17:35.990000 | In the Linux kernel, the following vulnerability has been resolved: nfsd: sampl | |
| CVE-2026-89697 | 9.1 | 0.60% | 2 | 0 | 2026-09-13T07:17:35.480000 | In the Linux kernel, the following vulnerability has been resolved: nfsd: add f | |
| CVE-2026-89696 | 7.5 | 0.67% | 2 | 0 | 2026-09-13T07:17:35.343000 | In the Linux kernel, the following vulnerability has been resolved: nfsd: block | |
| CVE-2026-89695 | 7.5 | 0.49% | 2 | 0 | 2026-09-13T07:17:35.230000 | In the Linux kernel, the following vulnerability has been resolved: nfsd: cap d | |
| CVE-2026-89692 | 7.5 | 0.43% | 2 | 0 | 2026-09-13T07:17:35.107000 | In the Linux kernel, the following vulnerability has been resolved: nfsd: clear | |
| CVE-2026-89690 | 7.8 | 0.16% | 2 | 0 | 2026-09-13T07:17:34.850000 | In the Linux kernel, the following vulnerability has been resolved: nfsd: defer | |
| CVE-2026-89684 | 7.5 | 0.45% | 2 | 0 | 2026-09-13T07:17:34.130000 | In the Linux kernel, the following vulnerability has been resolved: nfsd: fix c | |
| CVE-2026-89682 | 8.1 | 0.40% | 2 | 0 | 2026-09-13T07:17:34.003000 | In the Linux kernel, the following vulnerability has been resolved: nfsd: fix f | |
| CVE-2026-81000 | 7.8 | 0.16% | 2 | 0 | 2026-09-13T07:17:06.600000 | In the Linux kernel, the following vulnerability has been resolved: net: tun: b | |
| CVE-2026-80995 | 7.8 | 0.12% | 2 | 0 | 2026-09-13T07:17:06.230000 | In the Linux kernel, the following vulnerability has been resolved: net: mctp: | |
| CVE-2026-80981 | 9.8 | 0.59% | 2 | 0 | 2026-09-13T07:17:05 | In the Linux kernel, the following vulnerability has been resolved: net/smc: fi | |
| CVE-2026-90678 | 7.5 | 0.00% | 2 | 0 | 2026-09-13T04:17:25.227000 | An issue was discovered in HAProxy 3.3.0 through 3.4.4 and in 3.5-dev1 through 3 | |
| CVE-2026-90668 | 7.5 | 0.00% | 3 | 0 | 2026-09-13T03:30:22 | The webserver in UnrealIRCd 6.0.5 through 6.2.6 before 6.2.7 does not limit the | |
| CVE-2026-90493 | 8.8 | 0.00% | 4 | 0 | 2026-09-13T03:30:22 | A vulnerability was detected in Tonec Internet Download Manager up to 6.42 Build | |
| CVE-2026-90648 | None | 0.00% | 2 | 0 | 2026-09-13T00:31:26 | wasm2c in WebAssembly wabt through 1.0.41 allows sandbox escape in some situatio | |
| CVE-2026-90647 | 7.4 | 0.00% | 2 | 0 | 2026-09-13T00:31:26 | ASE/Kalkitech ASE2000 V2 Communication Test Set 2.35 through 2.37 on Windows con | |
| CVE-2026-90651 | 8.1 | 0.00% | 4 | 0 | 2026-09-13T00:17:07.203000 | Socket Firewall (socketdev/socket-registry-firewall) in registry mode before 2.0 | |
| CVE-2026-90616 | 7.4 | 0.00% | 2 | 0 | 2026-09-12T20:16:30.957000 | In Flatpak before 1.18.1, a malicious sandboxed app can obtain arbitrary read an | |
| CVE-2026-84171 | 9.8 | 0.37% | 4 | 0 | 2026-09-12T18:31:29 | The WP images upload on piclect WordPress plugin through 1.0 does not validate t | |
| CVE-2026-75800 | 9.8 | 0.42% | 2 | 0 | 2026-09-12T18:31:28 | The Frontegg SAML SSO WordPress plugin through 1.0.1 does not verify the signatu | |
| CVE-2026-87842 | 7.5 | 0.29% | 2 | 0 | 2026-09-12T18:31:28 | The Zonify WordPress plugin before 1.0.5 does not perform any capability or aut | |
| CVE-2026-90558 | 9.8 | 0.00% | 4 | 0 | 2026-09-12T18:30:33 | sngrep through 1.8.4 contains stack buffer overflow vulnerabilities in SIP attri | |
| CVE-2026-90559 | 7.5 | 0.00% | 2 | 0 | 2026-09-12T18:30:33 | snappy-java through 1.1.10.8 contains an out-of-bounds write vulnerability in Sn | |
| CVE-2026-90556 | 7.8 | 0.00% | 2 | 0 | 2026-09-12T18:30:33 | Freeciv versions before 3.2.6 contain a heap buffer overflow in worklist_load() | |
| CVE-2026-81742 | 8.8 | 0.28% | 2 | 0 | 2026-09-12T18:30:22 | The BE REST Endpoints WordPress plugin through 1.0.0 does not perform any author | |
| CVE-2026-80494 | 8.6 | 0.32% | 2 | 0 | 2026-09-12T18:30:22 | The Yogeta WP Cloud WordPress plugin through 1.0 does not validate a user-suppli | |
| CVE-2026-82845 | 9.9 | 0.35% | 2 | 0 | 2026-09-12T18:30:22 | The Masteriyo LMS WordPress plugin before 3.4.1 does not prevent user-supplied | |
| CVE-2026-84099 | 8.1 | 0.27% | 2 | 0 | 2026-09-12T18:30:22 | The wpstorecart WordPress plugin through 5.0.7 does not prevent direct, unauthen | |
| CVE-2026-90560 | 8.2 | 0.00% | 2 | 0 | 2026-09-12T18:16:44.890000 | zstd-jni versions 1.2.0 through 1.5.7-13 contain an out-of-bounds read vulnerabi | |
| CVE-2026-87888 | 8.0 | 0.23% | 2 | 0 | 2026-09-12T16:16:42.897000 | The YayPricing WordPress plugin before 3.5.7 does not perform an authorization | |
| CVE-2026-87759 | 8.8 | 0.23% | 4 | 0 | 2026-09-12T16:16:42.473000 | The Add User Autocomplete WordPress plugin before 1.2 does not perform any capab | |
| CVE-2026-85681 | 9.8 | 0.28% | 4 | 0 | 2026-09-12T16:16:42.170000 | The WP Component WordPress plugin through 2.2.4 does not have any capability or | |
| CVE-2026-84047 | 8.6 | 0.26% | 2 | 0 | 2026-09-12T16:16:41.527000 | The Album Cover Finder WordPress plugin through 0.7.0 does not properly sanitize | |
| CVE-2026-81402 | 9.8 | 0.45% | 2 | 0 | 2026-09-12T16:16:40.140000 | The DS Ad Rotator WordPress plugin through 0.8 does not perform any capability c | |
| CVE-2026-80491 | 8.6 | 0.32% | 2 | 0 | 2026-09-12T16:16:39.737000 | The SAMO Forms WordPress plugin through 1.0.0 does not properly sanitise and esc | |
| CVE-2026-77006 | 9.6 | 0.18% | 2 | 0 | 2026-09-12T16:16:38.670000 | The WebTotem Backups WordPress plugin through 1.0.1 does not validate a user-sup | |
| CVE-2026-77005 | 9.6 | 0.30% | 2 | 0 | 2026-09-12T16:16:38.523000 | The CODE MONKEYS PROPOSALS WordPress plugin through 1.0.1 does not validate a u | |
| CVE-2026-15451 | 8.8 | 0.25% | 2 | 0 | 2026-09-12T15:31:49 | The MemberPress Corporate Accounts plugin for WordPress is vulnerable to Privile | |
| CVE-2026-90537 | 8.2 | 0.21% | 2 | 0 | 2026-09-12T15:31:49 | WWBN AVideo through commit c3edcc274c389816d434acadac07ee78eaf330c1 contains a m | |
| CVE-2026-90553 | 7.8 | 0.21% | 2 | 0 | 2026-09-12T13:16:53.887000 | vLLM before 0.28.0 contains a remote code execution vulnerability in the LlavaOn | |
| CVE-2026-85706 | 10.0 | 1.16% | 40 | 10 | template | 2026-09-12T12:30:50 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.7 |
| CVE-2026-78159 | 9.8 | 0.76% | 6 | 0 | 2026-09-12T09:33:41 | The The Events Calendar plugin for WordPress is vulnerable to Remote Code Execut | |
| CVE-2026-16482 | 7.5 | 0.34% | 2 | 0 | 2026-09-12T09:33:41 | The rtMedia for WordPress, BuddyPress and bbPress plugin for WordPress is vulner | |
| CVE-2026-78175 | 8.8 | 0.59% | 2 | 0 | 2026-09-12T09:33:41 | The Tutor LMS – eLearning and online course solution plugin for WordPress is vul | |
| CVE-2026-85200 | 7.5 | 0.76% | 2 | 0 | 2026-09-12T09:33:36 | The GEO my WP plugin for WordPress is vulnerable to Local File Inclusion in all | |
| CVE-2026-78006 | 9.8 | 0.78% | 6 | 2 | 2026-09-12T08:16:24.240000 | The The Events Calendar plugin for WordPress is vulnerable to Remote Code Execut | |
| CVE-2026-86093 | 7.5 | 0.47% | 1 | 0 | 2026-09-12T04:16:45.040000 | IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.5 could allow an attacker | |
| CVE-2026-84869 | 9.9 | 0.69% | 4 | 0 | 2026-09-12T04:16:42.757000 | A condition in the ScreenConnect client may allow files to be transferred and ex | |
| CVE-2026-42018 | 7.5 | 0.92% | 9 | 1 | 2026-09-12T04:16:33.587000 | JFrog Artifactory could return an internal anonymous-user token to an unauthenti | |
| CVE-2026-42016 | 8.1 | 0.89% | 6 | 0 | 2026-09-12T04:16:32.483000 | JFrog Artifactory (Self Hosted) versions before 7.133.11 are vulnerable to a pri | |
| CVE-2026-87719 | 9.9 | 0.61% | 3 | 0 | 2026-09-12T03:30:28 | GitLab has remediated an issue in GitLab EE affecting all versions from 18.3 bef | |
| CVE-2026-90456 | None | 0.25% | 2 | 0 | 2026-09-12T00:31:35 | An example environment-configuration file for a bundled inventory-management com | |
| CVE-2026-89266 | 8.2 | 0.47% | 2 | 0 | 2026-09-12T00:17:06.440000 | stb_vorbis through 1.22 contains a heap buffer overflow in start_decoder() where | |
| CVE-2026-90460 | 0 | 0.34% | 2 | 0 | 2026-09-11T22:16:48.243000 | An issue was discovered in OpenStack Keystone before 29.0.3. Tokens obtained via | |
| CVE-2026-49846 | 7.5 | 0.34% | 1 | 0 | 2026-09-11T22:16:37.537000 | libks provides foundational support for signalwire C products. Prior to version | |
| CVE-2026-79393 | 7.5 | 0.53% | 1 | 0 | 2026-09-11T21:31:22 | A heap-based buffer overflow vulnerability in the WS-Addressing Action transform | |
| CVE-2026-89260 | 7.5 | 0.43% | 1 | 0 | 2026-09-11T21:17:58.153000 | MoguBlog through 6.2 contains an XML external entity injection vulnerability in | |
| CVE-2026-62112 | 7.6 | 0.28% | 1 | 0 | 2026-09-11T21:17:02.457000 | Editor SQL Injection in Amelia <= 2.4.9 versions. | |
| CVE-2026-79395 | 9.8 | 0.41% | 1 | 0 | 2026-09-11T20:18:54.030000 | An improper authentication vulnerability in the WS-Security (wsse:UsernameToken) | |
| CVE-2026-53952 | 9.8 | 0.33% | 1 | 0 | 2026-09-11T20:17:14.060000 | GetSimple CMS is a content management system (CMS), and GetSimple CMS CE is the | |
| CVE-2026-89262 | 7.5 | 0.31% | 1 | 0 | 2026-09-11T18:31:32 | MoguBlog through 6.2 contains an authorization bypass vulnerability in the comme | |
| CVE-2026-19646 | 9.1 | 0.52% | 1 | 0 | 2026-09-11T18:16:56.877000 | IBM Common Licensing Agent 9.0, Agent 9.0.0.1, Agent 9.0.0.2, ART 9.0, ART 9.0.0 | |
| CVE-2026-86781 | 5.3 | 0.12% | 1 | 0 | 2026-09-11T17:35:21.440000 | The SSL Zen — SSL Certificate Installer & HTTPS Redirects WordPress plugin befor | |
| CVE-2026-84890 | 5.9 | 0.25% | 1 | 0 | 2026-09-11T16:55:29.047000 | undici's decompress interceptor decompresses response bodies according to the un | |
| CVE-2026-89176 | 8.8 | 0.25% | 1 | 0 | 2026-09-11T16:17:50.073000 | WeenyGenius, a computer lab management system developed by Howyar Technologies, | |
| CVE-2026-87908 | 7.5 | 0.30% | 1 | 0 | 2026-09-11T16:17:48.057000 | multiparty is a Node.js library for parsing multipart/form-data request bodies. | |
| CVE-2026-80462 | 10.0 | 0.30% | 4 | 0 | 2026-09-11T15:32:48 | A vulnerability in the Chef Automate API gateway and identity validation path ma | |
| CVE-2026-47839 | None | 0.30% | 1 | 0 | 2026-09-11T15:32:40 | A vulnerability allows users authenticating through a federated OIDC provider to | |
| CVE-2026-87020 | 8.1 | 0.56% | 2 | 0 | 2026-09-11T15:17:06.937000 | An integer overflow in a specified pitch and buffer-size computation leads to a | |
| CVE-2026-82100 | 9.6 | 0.40% | 1 | 0 | 2026-09-11T15:17:06.230000 | IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated a | |
| CVE-2026-80469 | 8.3 | 0.23% | 1 | 0 | 2026-09-11T15:17:04.913000 | An attacker may achieve arbitrary code execution on a target system by uploading | |
| CVE-2026-71416 | 8.8 | 0.17% | 1 | 0 | 2026-09-11T15:17:03.373000 | Headroom compresses data before the data reaches a large language model. Prior t | |
| CVE-2026-82107 | 9.6 | 0.36% | 2 | 0 | 2026-09-11T14:56:50.613000 | IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated a | |
| CVE-2026-89212 | 8.6 | 0.33% | 1 | 0 | 2026-09-11T14:17:36.847000 | A flaw resulting in XML external entity (XXE) was found in Akana API Platform in | |
| CVE-2026-81467 | 9.8 | 3.84% | 1 | 0 | 2026-09-11T13:18:18.543000 | Dell ThinOS 10, versions prior to 2605_10. 2616, contains an Improper Neutraliza | |
| CVE-2026-86060 | 9.8 | 1.02% | 1 | 1 | 2026-09-11T12:52:16.507000 | RouterOS contains an argument-handling flaw in the SSH login path involving user | |
| CVE-2026-89259 | 9.8 | 0.41% | 1 | 0 | 2026-09-11T12:33:34 | Hugo is a static site generator. From v0.161.0, Hugo executes Node tools under N | |
| CVE-2026-89178 | 8.8 | 0.23% | 1 | 0 | 2026-09-11T09:31:31 | WeenyGenius, a computer lab management system by Howyar Technologies, has an Ori | |
| CVE-2026-89177 | 8.8 | 0.23% | 1 | 0 | 2026-09-11T09:31:31 | WeenyGenius, a computer lab management system by Howyar Technologies, has a Use | |
| CVE-2026-89174 | 7.5 | 0.38% | 1 | 0 | 2026-09-11T09:31:31 | Smart Video Intercom System developed by Kingdom Communication Associated has a | |
| CVE-2026-89060 | 7.7 | 0.23% | 1 | 0 | 2026-09-11T06:31:14 | A flaw was found in multicluster-observability-addon. This vulnerability allows | |
| CVE-2026-8778 | 9.8 | 0.62% | 1 | 0 | 2026-09-11T06:31:14 | The MIPL Grouped Checkout Fields for WooCommerce – Customize & Organize Checkout | |
| CVE-2026-77807 | 7.5 | 0.68% | 1 | 0 | 2026-09-11T00:31:23 | The AcyMailing – An Ultimate Newsletter Plugin and Marketing Automation Solution | |
| CVE-2026-81940 | 8.8 | 0.54% | 1 | 0 | 2026-09-11T00:31:23 | IBM Langflow OSS 1.0.0 through 1.11.5 could allow a remote authenticated attacke | |
| CVE-2026-84889 | 8.8 | 0.53% | 1 | 0 | 2026-09-11T00:31:23 | IBM Langflow OSS 1.0.0 through 1.10.3 could allow a remote authenticated attacke | |
| CVE-2026-87958 | 8.1 | 0.21% | 1 | 0 | 2026-09-11T00:31:16 | IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.5 is vulnerable to a deni | |
| CVE-2026-88062 | None | 0.40% | 1 | 0 | 2026-09-10T21:22:13 | ## 2. Summary `POST /api/acp/agents` registers a custom ACP agent. The endpoint | |
| CVE-2026-89094 | 9.9 | 0.50% | 2 | 0 | 2026-09-10T21:17:53.160000 | Forgejo before 16.0.4 allows remote code execution via a crafted template reposi | |
| CVE-2026-65638 | 0 | 3.20% | 3 | 0 | 2026-09-10T19:54:25.810000 | Improper escaping of a request URL in ConfigServer Security & Firewall allows a | |
| CVE-2026-65639 | 0 | 1.61% | 1 | 0 | 2026-09-10T19:54:25.810000 | OS command injection in the advanced-rule parser of ConfigServer Security & Fire | |
| CVE-2026-80352 | 9.8 | 0.33% | 1 | 0 | 2026-09-10T18:33:12 | Improper Control of Generation of Code ('Code Injection') vulnerability in Apach | |
| CVE-2026-19490 | 9.8 | 5.60% | 2 | 2 | 2026-09-10T15:33:58 | Vulnerability in NetScaler ADC and NetScaler Gateway. This issue affects ADC: f | |
| CVE-2026-87491 | 8.8 | 0.86% | 1 | 2 | 2026-09-10T12:49:02.630000 | Out of bounds write in V8 in Google Chrome prior to 153.0.8010.36 allowed a remo | |
| CVE-2026-20079 | 10.0 | 75.75% | 6 | 2 | template | 2026-09-10T12:48:17.580000 | A vulnerability in the web interface of Cisco Secure Firewall Management Center |
| CVE-2025-25249 | 8.1 | 2.40% | 2 | 0 | 2026-09-10T12:47:59.933000 | A heap-based buffer overflow vulnerability in Fortinet FortiOS 7.6.0 through 7.6 | |
| CVE-2026-0310 | None | 0.34% | 1 | 0 | 2026-09-10T06:31:55 | A buffer overflow vulnerability in the XML processing functionality of Palo Alto | |
| CVE-2026-50894 | 9.8 | 0.48% | 1 | 0 | 2026-09-09T21:32:24 | easyadmin v2.0.2.2 is vulnerable to Unrestricted Upload of File with Dangerous T | |
| CVE-2026-75170 | 6.1 | 0.24% | 1 | 0 | 2026-09-09T21:32:23 | Cross-site scripting (XSS) vulnerability in the /loginController/doLogin endpoin | |
| CVE-2026-38961 | 5.4 | 0.20% | 1 | 0 | 2026-09-09T21:32:23 | Cross-Site Scripting (XSS) vulnerability in the RSS Widget of Netgate pfSense Pl | |
| CVE-2026-75166 | 8.8 | 0.49% | 1 | 0 | 2026-09-09T20:20:34.103000 | Insecure Permission vulnerability in MBS-Solutions X-Serie Gateway firmware V6_0 | |
| CVE-2026-71626 | 7.5 | 0.32% | 1 | 0 | 2026-09-09T16:04:24.933000 | An issue in Invoice Ninja v5.13.24 allows a remote attacker to obtain sensitive | |
| CVE-2026-73324 | 6.5 | 0.33% | 6 | 0 | 2026-09-09T15:35:16 | VLC media player copies an RTSP response line into a fixed buffer without guaran | |
| CVE-2026-56711 | 8.8 | 0.30% | 6 | 0 | 2026-09-09T15:35:15 | VLC media player computes the size of a picture buffer with 32-bit arithmetic an | |
| CVE-2026-85103 | 9.8 | 0.36% | 10 | 0 | 2026-09-09T15:35:15 | A heap-based buffer overflow in VPN certificate ASN.1 decoding may allow an unau | |
| CVE-2026-85102 | 9.8 | 0.33% | 10 | 0 | 2026-09-09T15:35:15 | Improper certificate trust validation during VPN negotiation in Check Point Quan | |
| CVE-2026-86218 | 9.8 | 0.74% | 2 | 2 | 2026-09-09T05:18:19.490000 | N-central is vulnerable to a pre-auth remote code execution This issue affects N | |
| CVE-2026-85880 | 7.8 | 0.57% | 1 | 0 | 2026-09-09T05:18:19.193000 | Heap-based buffer overflow in Windows ALPC allows an authorized attacker to elev | |
| CVE-2026-86100 | 6.4 | 0.19% | 1 | 0 | 2026-09-08T20:05:53.177000 | Camaleon CMS versions 2.7.5 through 2.9.1 fail to validate redirect targets when | |
| CVE-2026-86426 | 0 | 1.41% | 1 | 0 | template | 2026-09-08T19:57:49.663000 | LibreNMS before 26.8.0 contains an authentication bypass vulnerability in the RE |
| CVE-2026-78849 | 0 | 0.26% | 1 | 0 | 2026-09-08T19:42:20.313000 | Cross Site Scripting vulnerability in Netgate pfSense Plus software versions <= | |
| CVE-2026-69827 | 8.1 | 0.53% | 1 | 0 | 2026-09-08T18:33:26 | Concurrent execution using shared resource with improper synchronization ('race | |
| CVE-2026-69730 | 9.8 | 1.05% | 2 | 0 | 2026-09-08T18:33:07 | Use after free in Windows DNS allows an unauthorized attacker to execute code ov | |
| CVE-2026-13297 | 7.5 | 0.25% | 1 | 0 | 2026-09-08T18:32:45 | IBM Verify Identity Access Advanced Access Control may be vulnerable to an infor | |
| CVE-2026-46636 | 0 | 0.36% | 1 | 0 | 2026-09-08T18:17:37.770000 | Twig is a template language for PHP. From version 1.0.0 to before version 3.27.0 | |
| CVE-2026-78745 | 9.8 | 0.72% | 1 | 1 | 2026-09-08T15:31:35 | An issue in HiDPT/ Weyon HiDPTAndroid Hi3751V350 Hi3751V352E_DMO allows a remote | |
| CVE-2026-85046 | 8.8 | 1.26% | 1 | 8 | 2026-09-08T14:55:04.093000 | Type confusion in V8 in Google Chrome prior to 152.0.7977.82 allowed a remote at | |
| CVE-2026-80883 | 0 | 0.16% | 1 | 0 | 2026-09-07T15:17:33.310000 | In the Linux kernel, the following vulnerability has been resolved: drm/tegra: | |
| CVE-2026-85636 | 5.3 | 0.43% | 1 | 0 | 2026-09-04T18:31:46 | A vulnerability was identified in jofpin trape 1.0.0. Affected by this vulnerabi | |
| CVE-2026-80909 | None | 0.17% | 1 | 0 | 2026-09-04T18:31:46 | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: | |
| CVE-2026-80901 | None | 0.16% | 1 | 0 | 2026-09-04T18:31:46 | In the Linux kernel, the following vulnerability has been resolved: ipvs: fix t | |
| CVE-2026-80890 | None | 0.18% | 1 | 0 | 2026-09-04T18:31:46 | In the Linux kernel, the following vulnerability has been resolved: sctp: rejec | |
| CVE-2026-80907 | None | 0.16% | 1 | 0 | 2026-09-04T18:31:46 | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: | |
| CVE-2026-80880 | None | 0.16% | 1 | 0 | 2026-09-04T18:31:40 | In the Linux kernel, the following vulnerability has been resolved: IB/mlx5: Pr | |
| CVE-2026-17444 | 5.3 | 0.29% | 1 | 0 | 2026-09-04T18:31:40 | IBM App Connect Enterprise 13.0.1.0 through 13.0.8.1, and 12.0.1.0 through 12.0. | |
| CVE-2026-17622 | 6.5 | 0.49% | 1 | 0 | 2026-09-04T18:31:40 | IBM Langflow OSS 1.0.0 through 1.10.2 could allow a remote authenticated attacke | |
| CVE-2026-16689 | 6.2 | 0.11% | 1 | 0 | 2026-09-04T18:31:39 | IBM App Connect Enterprise 13.0.1.0 through 13.0.8.1, and 12.0.1.0 through 12.0. | |
| CVE-2026-80871 | None | 0.15% | 1 | 0 | 2026-09-04T18:31:34 | In the Linux kernel, the following vulnerability has been resolved: crypto: xil | |
| CVE-2026-18073 | 4.4 | 0.10% | 1 | 0 | 2026-09-04T18:31:31 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local authenticated attacker to injec | |
| CVE-2026-80913 | 0 | 0.17% | 1 | 0 | 2026-09-04T18:18:01.200000 | In the Linux kernel, the following vulnerability has been resolved: selinux: re | |
| CVE-2026-80912 | 0 | 0.16% | 1 | 0 | 2026-09-04T18:18:01.047000 | In the Linux kernel, the following vulnerability has been resolved: selinux: re | |
| CVE-2026-80904 | 0 | 0.16% | 1 | 0 | 2026-09-04T18:17:59.983000 | In the Linux kernel, the following vulnerability has been resolved: net/tls: Fa | |
| CVE-2026-80894 | 0 | 0.17% | 1 | 0 | 2026-09-04T18:17:57.603000 | In the Linux kernel, the following vulnerability has been resolved: iommufd: Fi | |
| CVE-2026-20212 | 9.8 | 0.53% | 1 | 1 | 2026-09-02T18:32:26 | A vulnerability in the Silicon One integration for Cisco Nexus 9000 Series Switc | |
| CVE-2026-82329 | 9.8 | 7.67% | 3 | 7 | template | 2026-09-02T18:31:57 | JFrog Artifactory contains an authentication weakness that, under default config |
| CVE-2026-46331 | 7.8 | 0.58% | 2 | 14 | 2026-09-02T13:17:55.903000 | In the Linux kernel, the following vulnerability has been resolved: net/sched: | |
| CVE-2026-81578 | 9.8 | 1.62% | 1 | 2 | 2026-08-31T21:31:56 | An improper access control vulnerability exists in the web management interface | |
| CVE-2026-82078 | 9.1 | 1.69% | 1 | 2 | 2026-08-31T21:31:56 | An unsafe dynamic class loading vulnerability exists in the database connection | |
| CVE-2026-59310 | 9.8 | 45.88% | 2 | 2 | 2026-08-18T18:32:52 | VMware vCenter contains a directory traversal vulnerability in the Syslog server | |
| CVE-2026-50768 | 9.8 | 0.45% | 1 | 0 | 2026-08-17T21:32:25 | File Upload vulnerability in T-Systems International GmbH ImageMaster Version: 9 | |
| CVE-2026-61511 | 9.8 | 70.77% | 2 | 5 | template | 2026-08-07T06:16:56.993000 | vBulletin 5.x through 5.7.5 and 6.x through 6.2.1 contains an eval injection vul |
| CVE-2026-20316 | 5.3 | 11.15% | 1 | 0 | 2026-07-29T21:31:00 | A vulnerability in the web interface of Cisco Secure Firewall Management Center | |
| CVE-2026-50458 | 7.8 | 0.26% | 2 | 0 | 2026-07-22T16:17:59.653000 | Use after free in Microsoft Brokering File System allows an authorized attacker | |
| CVE-2026-49176 | 7.8 | 0.47% | 2 | 2 | 2026-07-22T16:17:28.753000 | Improper privilege management in Windows WalletService allows an authorized atta | |
| CVE-2026-15409 | 10.0 | 84.54% | 1 | 6 | template | 2026-07-14T21:32:22 | A Server-side request forgery (SSRF) vulnerability has been identified in the SM |
| CVE-2026-50013 | 7.5 | 0.27% | 1 | 0 | 2026-07-14T18:03:10 | ### Summary: When Hoverfly is running in Diff mode, the `AddDiff()` function wr | |
| CVE-2026-54174 | 8.3 | 0.10% | 1 | 0 | 2026-07-10T21:43:06 | Previously, Apko verified the control section hash (`.PKGINFO` etc.) against the | |
| CVE-2026-52777 | None | 0.21% | 1 | 0 | 2026-07-09T21:02:59 | ## Details ### Sink `tools/bazar/services/CSVManager.php` line 372-399: ``` p | |
| CVE-2026-57239 | 8.2 | 0.17% | 2 | 1 | 2026-07-09T15:33:27 | The user-controllable executable files will be directly executed by high-privile | |
| CVE-2026-49464 | 8.1 | 0.20% | 1 | 0 | 2026-07-08T21:12:01 | ## Impact In versions from 1.5.0 up to and including 3.0.0, any authenticated p | |
| CVE-2026-28576 | 5.5 | 0.15% | 1 | 1 | 2026-06-17T16:43:32.927000 | In Contacts Provider, there is a possible way to access the contacts database du | |
| CVE-2024-1813 | 9.8 | 1.22% | 2 | 1 | 2026-06-17T07:05:03.993000 | The Simple Job Board plugin for WordPress is vulnerable to PHP Object Injection | |
| CVE-2026-4986 | 5.3 | 0.20% | 2 | 2 | 2026-06-09T15:33:16 | The WPForms WordPress plugin before 1.10.0.5 does not verify the authenticity o | |
| CVE-2026-39987 | 9.8 | 98.95% | 1 | 25 | template | 2026-04-27T16:30:09 | ## Summary Marimo (19.6k stars) has a Pre-Auth RCE vulnerability. The terminal |
| CVE-2026-20841 | 8.8 | 11.85% | 1 | 14 | 2026-02-11T15:31:25 | Improper neutralization of special elements used in a command ('command injectio | |
| CVE-2026-51990 | 0 | 0.00% | 6 | 1 | N/A | ||
| CVE-2026-63030 | 0 | 97.27% | 2 | 85 | template | N/A | |
| CVE-2026-53761 | 0 | 0.34% | 1 | 0 | N/A | ||
| CVE-2026-53758 | 0 | 0.26% | 1 | 0 | N/A | ||
| CVE-2026-54135 | 0 | 0.55% | 1 | 0 | N/A | ||
| CVE-2026-89066 | 0 | 0.16% | 1 | 0 | N/A | ||
| CVE-2026-16338 | 0 | 0.00% | 1 | 0 | N/A | ||
| CVE-2026-70416 | 0 | 0.00% | 1 | 0 | N/A | ||
| CVE-2026-63695 | 0 | 0.00% | 1 | 0 | N/A |
updated 2026-09-13T20:16:51.020000
2 posts
🟠 CVE-2026-29811 - High (7.7)
CyberPanel before 2.4.4 attempts to detect an "alais" domain (i.e., a second domain that serves the same content as a primary domain; normally spelled "alias") via an ORM query filter rather than a Python "if" statement.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-29811/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-29811 - High (7.7)
CyberPanel before 2.4.4 attempts to detect an "alais" domain (i.e., a second domain that serves the same content as a primary domain; normally spelled "alias") via an ORM query filter rather than a Python "if" statement.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-29811/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T15:30:28
2 posts
🟠 CVE-2026-90783 - High (7.8)
MKVToolNix through 101.0 contains a heap buffer overflow in the bundled avilib library's ODML superindex parser due to integer wraparound in 32-bit arithmetic. Attackers can craft a malicious AVI file with oversized entry counts that cause an unde...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90783/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-90783 - High (7.8)
MKVToolNix through 101.0 contains a heap buffer overflow in the bundled avilib library's ODML superindex parser due to integer wraparound in 32-bit arithmetic. Attackers can craft a malicious AVI file with oversized entry counts that cause an unde...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90783/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T12:31:19
2 posts
🟠 CVE-2026-90510 - High (8.3)
A security vulnerability has been detected in dromara orion-visor up to 2.5.7. This affects the function HostKeyServiceImpl.encryptKey of the file orion-visor-modules/orion-visor-module-asset/orion-visor-module-asset-service/src/main/java/org/drom...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90510/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-90510 - High (8.3)
A security vulnerability has been detected in dromara orion-visor up to 2.5.7. This affects the function HostKeyServiceImpl.encryptKey of the file orion-visor-modules/orion-visor-module-asset/orion-visor-module-asset-service/src/main/java/org/drom...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90510/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T12:31:19
2 posts
CVE-2026-90775: HIGH severity vuln in PostGIS address_standardizer (≤3.7.0) allows out-of-bounds read via unvalidated Weight parameter, crashing PostgreSQL backend (DoS). Patch status pending — monitor vendor updates. https://radar.offseq.com/threat/cve-2026-90775-out-of-bounds-read-in-postgis-addressstandardizer-b09887107f7082c5 #OffSeq #PostGIS #Vuln
##CVE-2026-90775: HIGH severity vuln in PostGIS address_standardizer (≤3.7.0) allows out-of-bounds read via unvalidated Weight parameter, crashing PostgreSQL backend (DoS). Patch status pending — monitor vendor updates. https://radar.offseq.com/threat/cve-2026-90775-out-of-bounds-read-in-postgis-addressstandardizer-b09887107f7082c5 #OffSeq #PostGIS #Vuln
##updated 2026-09-13T12:31:19
2 posts
🟠 CVE-2026-90778 - High (7.5)
SIPp through 3.7.7 contains a buffer overflow vulnerability in get_peer_tag() function when processing SIP To headers with tag parameters of 2049 bytes or more. Unauthenticated remote attackers can send crafted SIP messages with oversized tag para...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90778/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-90778 - High (7.5)
SIPp through 3.7.7 contains a buffer overflow vulnerability in get_peer_tag() function when processing SIP To headers with tag parameters of 2049 bytes or more. Unauthenticated remote attackers can send crafted SIP messages with oversized tag para...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90778/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T12:31:19
2 posts
🟠 CVE-2026-90776 - High (7.5)
Nodemailer versions 9.1.0 through 10.0.4 contain a quadratic time complexity vulnerability in the addressparser component when parsing email addresses with RFC 5322 comments. Attackers can craft malicious email headers with comment-separated atoms...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90776/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-90776 - High (7.5)
Nodemailer versions 9.1.0 through 10.0.4 contain a quadratic time complexity vulnerability in the addressparser component when parsing email addresses with RFC 5322 comments. Attackers can craft malicious email headers with comment-separated atoms...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90776/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T12:31:19
2 posts
🟠 CVE-2026-90772 - High (7.6)
Amundsen frontend through 4.3.0 renders table, dashboard, and feature descriptions with dangerouslySetInnerHTML without HTML sanitization in ResourceListItem components. Attackers can inject malicious markup like img elements with onerror handlers...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90772/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-90772 - High (7.6)
Amundsen frontend through 4.3.0 renders table, dashboard, and feature descriptions with dangerouslySetInnerHTML without HTML sanitization in ResourceListItem components. Attackers can inject malicious markup like img elements with onerror handlers...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90772/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T12:31:12
2 posts
🟠 CVE-2026-90770 - High (8.8)
Spug through 3.4.0 contains a remote code execution vulnerability in the ping_check function that interpolates user-supplied monitor addresses directly into shell commands without validation. Authenticated users with monitor permissions can inject...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90770/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-90770 - High (8.8)
Spug through 3.4.0 contains a remote code execution vulnerability in the ping_check function that interpolates user-supplied monitor addresses directly into shell commands without validation. Authenticated users with monitor permissions can inject...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90770/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T12:31:12
2 posts
🟠 CVE-2026-90768 - High (8.1)
CAPEv2 through commit 471ee4b fails to validate task ownership in REST API endpoints, allowing authenticated users to read and delete analyses submitted by other users. Attackers can enumerate all tasks in the system and delete arbitrary analyses ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90768/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-90768 - High (8.1)
CAPEv2 through commit 471ee4b fails to validate task ownership in REST API endpoints, allowing authenticated users to read and delete analyses submitted by other users. Attackers can enumerate all tasks in the system and delete arbitrary analyses ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90768/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T12:31:11
4 posts
🟠 CVE-2026-90562 - High (8.1)
LangBot before 4.10.11 generates password recovery keys with only 24 bits of entropy and applies no rate limiting to the unauthenticated reset-password endpoint. Remote attackers knowing the administrator email can exhaust the keyspace through con...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90562/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##LangBot <4.10.11 is affected by CRITICAL CVE-2026-90562: password reset keys generated with only 24 bits of entropy & no rate limiting let attackers brute-force admin resets. Upgrade to 4.10.11+! https://radar.offseq.com/threat/cve-2026-90562-insufficient-entropy-in-langbot-app-langbot-e9a2899a1e2d1fa5 #OffSeq #CVE202690562 #infosec #AppSec
##🟠 CVE-2026-90562 - High (8.1)
LangBot before 4.10.11 generates password recovery keys with only 24 bits of entropy and applies no rate limiting to the unauthenticated reset-password endpoint. Remote attackers knowing the administrator email can exhaust the keyspace through con...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90562/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##LangBot <4.10.11 is affected by CRITICAL CVE-2026-90562: password reset keys generated with only 24 bits of entropy & no rate limiting let attackers brute-force admin resets. Upgrade to 4.10.11+! https://radar.offseq.com/threat/cve-2026-90562-insufficient-entropy-in-langbot-app-langbot-e9a2899a1e2d1fa5 #OffSeq #CVE202690562 #infosec #AppSec
##updated 2026-09-13T12:17:17.093000
2 posts
🟠 CVE-2026-90780 - High (7.5)
SIPp through 3.7.7 contains a buffer overflow vulnerability in the get_header() function in src/sip_parser.cpp when processing SIP messages with header content exceeding 20,490 bytes. Unauthenticated remote attackers can send crafted SIP messages ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90780/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-90780 - High (7.5)
SIPp through 3.7.7 contains a buffer overflow vulnerability in the get_header() function in src/sip_parser.cpp when processing SIP messages with header content exceeding 20,490 bytes. Unauthenticated remote attackers can send crafted SIP messages ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90780/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T12:17:16.960000
2 posts
🟠 CVE-2026-90779 - High (7.5)
SIPp through 3.7.7 contains a stack buffer overflow vulnerability in createAuthHeader() when processing SIP authentication challenges with oversized algorithm parameters. A malicious SIP server can send a crafted 401 or 407 challenge to corrupt th...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90779/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-90779 - High (7.5)
SIPp through 3.7.7 contains a stack buffer overflow vulnerability in createAuthHeader() when processing SIP authentication challenges with oversized algorithm parameters. A malicious SIP server can send a crafted 401 or 407 challenge to corrupt th...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90779/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T12:17:16.690000
2 posts
🟠 CVE-2026-90777 - High (8.8)
ESPnet before 202609 deserializes pretrained model checkpoints using torch.load with weights_only=False, allowing arbitrary code execution from attacker-supplied files. Attackers can craft malicious checkpoint files that execute code during deseri...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90777/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-90777 - High (8.8)
ESPnet before 202609 deserializes pretrained model checkpoints using torch.load with weights_only=False, allowing arbitrary code execution from attacker-supplied files. Attackers can craft malicious checkpoint files that execute code during deseri...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90777/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T11:17:02.163000
2 posts
🟠 CVE-2026-90774 - High (7.5)
rustypaste before 0.18.1 validates the destination path before applying the optional custom filename HTTP header, allowing attackers to bypass directory-escape checks. Attackers can supply path traversal sequences in the filename header to write f...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90774/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-90774 - High (7.5)
rustypaste before 0.18.1 validates the destination path before applying the optional custom filename HTTP header, allowing attackers to bypass directory-escape checks. Attackers can supply path traversal sequences in the filename header to write f...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90774/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T11:17:01.270000
2 posts
🟠 CVE-2026-90769 - High (7.7)
Open Notebook before 1.11.0 fails to validate the URL parameter in POST /api/sources endpoint, allowing authenticated users to perform server-side requests to internal services. Attackers can supply arbitrary URLs to read cloud metadata, internal ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90769/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-90769 - High (7.7)
Open Notebook before 1.11.0 fails to validate the URL parameter in POST /api/sources endpoint, allowing authenticated users to perform server-side requests to internal services. Attackers can supply arbitrary URLs to read cloud metadata, internal ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90769/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T11:17:00.613000
2 posts
🟠 CVE-2026-90561 - High (8.7)
Strapi versions 4.x through 4.26.2 and 5.x before 5.48.1 contain a stored cross-site scripting vulnerability in the content manager WYSIWYG preview component that fails to strip script tags from rich text. An Author-role user can store malicious s...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90561/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-90561 - High (8.7)
Strapi versions 4.x through 4.26.2 and 5.x before 5.48.1 contain a stored cross-site scripting vulnerability in the content manager WYSIWYG preview component that fails to strip script tags from rich text. An Author-role user can store malicious s...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90561/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T11:16:59.650000
2 posts
🟠 CVE-2026-89080 - High (7.5)
The Really Simple Security WordPress plugin before 9.8.1 does not prevent an unauthenticated request from resetting an account's completed email two-factor enrolment, allowing an attacker who already knows the account's password to bypass the sec...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89080/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-89080 - High (7.5)
The Really Simple Security WordPress plugin before 9.8.1 does not prevent an unauthenticated request from resetting an account's completed email two-factor enrolment, allowing an attacker who already knows the account's password to bypass the sec...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89080/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T11:16:58.793000
2 posts
🟠 CVE-2026-86406 - High (7.5)
The User Registration & Membership WordPress plugin before 5.2.8 does not check the capability of the user making a membership purchase, and does not validate the payment method or the plan submitted with it, allowing any authenticated user such ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-86406/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-86406 - High (7.5)
The User Registration & Membership WordPress plugin before 5.2.8 does not check the capability of the user making a membership purchase, and does not validate the payment method or the plan submitted with it, allowing any authenticated user such ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-86406/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T09:33:34
2 posts
🟠 CVE-2026-89767 - High (7.8)
In the Linux kernel, the following vulnerability has been resolved:
ovl: fix double end_creating() on the casefold-mismatch path
ovl_create_real() releases the new dentry twice when the casefold
consistency check fails. The S_IFDIR branch calls...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89767/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-89767 - High (7.8)
In the Linux kernel, the following vulnerability has been resolved:
ovl: fix double end_creating() on the casefold-mismatch path
ovl_create_real() releases the new dentry twice when the casefold
consistency check fails. The S_IFDIR branch calls...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89767/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T09:33:34
2 posts
🟠 CVE-2026-89763 - High (7.8)
In the Linux kernel, the following vulnerability has been resolved:
KEYS: trusted: Fix TPM teardown ordering
trusted_tpm_exit() drops the TPM chip reference and frees the digest
array before unregistering the trusted key type. key_type_lookup()
...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89763/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-89763 - High (7.8)
In the Linux kernel, the following vulnerability has been resolved:
KEYS: trusted: Fix TPM teardown ordering
trusted_tpm_exit() drops the TPM chip reference and frees the digest
array before unregistering the trusted key type. key_type_lookup()
...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89763/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T09:32:31
2 posts
🟠 CVE-2026-89771 - High (7.8)
In the Linux kernel, the following vulnerability has been resolved:
ring-buffer: Fix subbuf resize race with ring buffer readers
trace_buffer subbuf_size is read lockless in ring_buffer_read_page() and
ring_buffer_read_start(), while it can simu...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89771/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-89771 - High (7.8)
In the Linux kernel, the following vulnerability has been resolved:
ring-buffer: Fix subbuf resize race with ring buffer readers
trace_buffer subbuf_size is read lockless in ring_buffer_read_page() and
ring_buffer_read_start(), while it can simu...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89771/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T09:32:30
2 posts
🟠 CVE-2026-89750 - High (7.8)
In the Linux kernel, the following vulnerability has been resolved:
tracing/user_events: Clear copied tracing state before fork duplication
dup_task_struct() copies user_event_mm from the parent into the child,
without grabbing a reference to it...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89750/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-89750 - High (7.8)
In the Linux kernel, the following vulnerability has been resolved:
tracing/user_events: Clear copied tracing state before fork duplication
dup_task_struct() copies user_event_mm from the parent into the child,
without grabbing a reference to it...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89750/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T09:32:30
2 posts
🟠 CVE-2026-89748 - High (7.8)
In the Linux kernel, the following vulnerability has been resolved:
tracing: Fix retry exhaustion in simple ring buffer reader swap
simple_ring_buffer_swap_reader_page() starts with retry set to 8 and
post-decrements it only after a failed link ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89748/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-89748 - High (7.8)
In the Linux kernel, the following vulnerability has been resolved:
tracing: Fix retry exhaustion in simple ring buffer reader swap
simple_ring_buffer_swap_reader_page() starts with retry set to 8 and
post-decrements it only after a failed link ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89748/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T09:32:30
2 posts
🟠 CVE-2026-89747 - High (7.8)
In the Linux kernel, the following vulnerability has been resolved:
tracing: Fix use-after-free in trace_pipe read on sub-buffer order change
Writing to buffer_subbuf_size_kb calls ring_buffer_subbuf_order_set(),
which frees every sub-buffer of ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89747/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-89747 - High (7.8)
In the Linux kernel, the following vulnerability has been resolved:
tracing: Fix use-after-free in trace_pipe read on sub-buffer order change
Writing to buffer_subbuf_size_kb calls ring_buffer_subbuf_order_set(),
which frees every sub-buffer of ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89747/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T09:32:30
2 posts
🟠 CVE-2026-89746 - High (7.8)
In the Linux kernel, the following vulnerability has been resolved:
tracing: Fix use-after-free with same-name named triggers
When two hist triggers on different events are registered with the same
name=, the second one reuses the first as named...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89746/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-89746 - High (7.8)
In the Linux kernel, the following vulnerability has been resolved:
tracing: Fix use-after-free with same-name named triggers
When two hist triggers on different events are registered with the same
name=, the second one reuses the first as named...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89746/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T09:32:30
2 posts
🟠 CVE-2026-89754 - High (7.8)
In the Linux kernel, the following vulnerability has been resolved:
mm/pagewalk: fix stale walk->action escaping walk_pmd_range()
If ->pmd_entry() sets walk->action = ACTION_AGAIN, the pmd_none() check is
retried. The PMD entry may be cleared a...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89754/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-89754 - High (7.8)
In the Linux kernel, the following vulnerability has been resolved:
mm/pagewalk: fix stale walk->action escaping walk_pmd_range()
If ->pmd_entry() sets walk->action = ACTION_AGAIN, the pmd_none() check is
retried. The PMD entry may be cleared a...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89754/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T09:32:30
2 posts
🟠 CVE-2026-89762 - High (7.8)
In the Linux kernel, the following vulnerability has been resolved:
apparmor: fix cred UAF caused by begin_current_label_crit_section()
AppArmor's begin_current_label_crit_section() is a scary function called
from lots of LSM hooks (in particula...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89762/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-89762 - High (7.8)
In the Linux kernel, the following vulnerability has been resolved:
apparmor: fix cred UAF caused by begin_current_label_crit_section()
AppArmor's begin_current_label_crit_section() is a scary function called
from lots of LSM hooks (in particula...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89762/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T09:32:30
2 posts
🟠 CVE-2026-89761 - High (7.8)
In the Linux kernel, the following vulnerability has been resolved:
apparmor: fix out-of-bounds write when null terminating a label vec
aa_vec_unique() null terminates at vec[n - dups] when VEC_FLAG_TERMINATE
is passed. If the components are all...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89761/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-89761 - High (7.8)
In the Linux kernel, the following vulnerability has been resolved:
apparmor: fix out-of-bounds write when null terminating a label vec
aa_vec_unique() null terminates at vec[n - dups] when VEC_FLAG_TERMINATE
is passed. If the components are all...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89761/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T09:32:29
2 posts
🟠 CVE-2026-89736 - High (7.8)
In the Linux kernel, the following vulnerability has been resolved:
usb: gadget: u_audio: Fix use-after-free on sound card disconnect
g_audio_cleanup() invokes snd_card_free_when_closed() to initiate sound
card teardown and immediately frees the...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89736/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-89736 - High (7.8)
In the Linux kernel, the following vulnerability has been resolved:
usb: gadget: u_audio: Fix use-after-free on sound card disconnect
g_audio_cleanup() invokes snd_card_free_when_closed() to initiate sound
card teardown and immediately frees the...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89736/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T07:17:40.843000
2 posts
🟠 CVE-2026-89764 - High (7.8)
In the Linux kernel, the following vulnerability has been resolved:
rust: devres: fix race between concurrent revokers
There is a potential race condition when two paths try to revoke a
Devres concurrently.
The driver core's devres_release_all(...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89764/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-89764 - High (7.8)
In the Linux kernel, the following vulnerability has been resolved:
rust: devres: fix race between concurrent revokers
There is a potential race condition when two paths try to revoke a
Devres concurrently.
The driver core's devres_release_all(...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89764/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T07:17:40.307000
2 posts
🟠 CVE-2026-89760 - High (7.8)
In the Linux kernel, the following vulnerability has been resolved:
mm, swap: don't free a hibernation slot that is in the swap cache
A slot with a folio in the swap cache is freed when the folio leaves the
cache, not when its count drops. swap...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89760/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-89760 - High (7.8)
In the Linux kernel, the following vulnerability has been resolved:
mm, swap: don't free a hibernation slot that is in the swap cache
A slot with a folio in the swap cache is freed when the folio leaves the
cache, not when its count drops. swap...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89760/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T07:17:40.190000
2 posts
🟠 CVE-2026-89758 - High (7.8)
In the Linux kernel, the following vulnerability has been resolved:
mm/mempolicy: skip non-present PMDs when queueing folios
Patch series "mm: handle device-private PMDs in walk callbacks", v3.
Since commit 368076f52ebe ("mm/huge_memory: add de...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89758/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-89758 - High (7.8)
In the Linux kernel, the following vulnerability has been resolved:
mm/mempolicy: skip non-present PMDs when queueing folios
Patch series "mm: handle device-private PMDs in walk callbacks", v3.
Since commit 368076f52ebe ("mm/huge_memory: add de...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89758/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T07:17:39.983000
2 posts
🟠 CVE-2026-89755 - High (7.8)
In the Linux kernel, the following vulnerability has been resolved:
mm/migrate_device: clear stale mapping after freeing swapcache
__migrate_device_pages() reads the folio mapping before calling
folio_free_swap(). When folio_free_swap() succeed...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89755/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-89755 - High (7.8)
In the Linux kernel, the following vulnerability has been resolved:
mm/migrate_device: clear stale mapping after freeing swapcache
__migrate_device_pages() reads the folio mapping before calling
folio_free_swap(). When folio_free_swap() succeed...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89755/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T07:17:39.073000
2 posts
🟠 CVE-2026-89744 - High (8.4)
In the Linux kernel, the following vulnerability has been resolved:
device property: fix infinite loop in fwnode_for_each_child_node()
When iterate over children of a fwnode that has a secondary fwnode,
fwnode_get_next_child_node() can enter an ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89744/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-89744 - High (8.4)
In the Linux kernel, the following vulnerability has been resolved:
device property: fix infinite loop in fwnode_for_each_child_node()
When iterate over children of a fwnode that has a secondary fwnode,
fwnode_get_next_child_node() can enter an ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89744/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T07:17:36.240000
2 posts
🟠 CVE-2026-89706 - High (7.5)
In the Linux kernel, the following vulnerability has been resolved:
nfsd: Reset write verifier when async COPY writeback fails
Async COPY captures nn->writeverf at request time and reports it to
the client via CB_OFFLOAD after the worker kthread...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89706/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-89706 - High (7.5)
In the Linux kernel, the following vulnerability has been resolved:
nfsd: Reset write verifier when async COPY writeback fails
Async COPY captures nn->writeverf at request time and reports it to
the client via CB_OFFLOAD after the worker kthread...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89706/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T07:17:35.990000
2 posts
🟠 CVE-2026-89704 - High (7.5)
In the Linux kernel, the following vulnerability has been resolved:
nfsd: sample writeback error cursor before async COPY loop
_nfsd_copy_file_range() samples dst->f_wb_err into "since"
after the copy loop, then uses it to detect writeback error...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89704/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-89704 - High (7.5)
In the Linux kernel, the following vulnerability has been resolved:
nfsd: sample writeback error cursor before async COPY loop
_nfsd_copy_file_range() samples dst->f_wb_err into "since"
after the copy loop, then uses it to detect writeback error...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89704/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T07:17:35.480000
2 posts
🔴 CVE-2026-89697 - Critical (9.1)
In the Linux kernel, the following vulnerability has been resolved:
nfsd: add fh_want_write() for early-verified SETATTR in nfsd_proc_setattr()
The BOTH_TIME_SET branch calls fh_verify() early so setattr_prepare()
can inspect the dentry. This ca...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89697/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-89697 - Critical (9.1)
In the Linux kernel, the following vulnerability has been resolved:
nfsd: add fh_want_write() for early-verified SETATTR in nfsd_proc_setattr()
The BOTH_TIME_SET branch calls fh_verify() early so setattr_prepare()
can inspect the dentry. This ca...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89697/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T07:17:35.343000
2 posts
🟠 CVE-2026-89696 - High (7.5)
In the Linux kernel, the following vulnerability has been resolved:
nfsd: block non-SAVEFH ops after FOREIGN PUTFH to prevent NULL deref
When CONFIG_NFSD_V4_2_INTER_SSC is enabled, nfsd4_putfh() can return
success with fh_dentry and fh_export bo...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89696/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-89696 - High (7.5)
In the Linux kernel, the following vulnerability has been resolved:
nfsd: block non-SAVEFH ops after FOREIGN PUTFH to prevent NULL deref
When CONFIG_NFSD_V4_2_INTER_SSC is enabled, nfsd4_putfh() can return
success with fh_dentry and fh_export bo...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89696/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T07:17:35.230000
2 posts
🟠 CVE-2026-89695 - High (7.5)
In the Linux kernel, the following vulnerability has been resolved:
nfsd: cap decoded POSIX ACL count to bound sort cost
nfsd4_decode_posixacl() reads a u32 entry count off the wire and passes
it straight to posix_acl_alloc() and sort_pacl_range...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89695/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-89695 - High (7.5)
In the Linux kernel, the following vulnerability has been resolved:
nfsd: cap decoded POSIX ACL count to bound sort cost
nfsd4_decode_posixacl() reads a u32 entry count off the wire and passes
it straight to posix_acl_alloc() and sort_pacl_range...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89695/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T07:17:35.107000
2 posts
🟠 CVE-2026-89692 - High (7.5)
In the Linux kernel, the following vulnerability has been resolved:
nfsd: clear CALLBACK_RUNNING on failed delegation recall queue
nfsd_break_one_deleg() sets NFSD4_CALLBACK_RUNNING via test_and_set_bit
at entry to serialize recall work, then ca...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89692/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-89692 - High (7.5)
In the Linux kernel, the following vulnerability has been resolved:
nfsd: clear CALLBACK_RUNNING on failed delegation recall queue
nfsd_break_one_deleg() sets NFSD4_CALLBACK_RUNNING via test_and_set_bit
at entry to serialize recall work, then ca...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89692/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T07:17:34.850000
2 posts
🟠 CVE-2026-89690 - High (7.8)
In the Linux kernel, the following vulnerability has been resolved:
nfsd: defer vfree of compound ops to fix rpc_status UAF
The rpc_status netlink dumpit walks every in-flight svc_rqst under
rcu_read_lock and, for NFSv4 requests, reads opnums ou...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89690/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-89690 - High (7.8)
In the Linux kernel, the following vulnerability has been resolved:
nfsd: defer vfree of compound ops to fix rpc_status UAF
The rpc_status netlink dumpit walks every in-flight svc_rqst under
rcu_read_lock and, for NFSv4 requests, reads opnums ou...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89690/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T07:17:34.130000
2 posts
🟠 CVE-2026-89684 - High (7.5)
In the Linux kernel, the following vulnerability has been resolved:
nfsd: fix cpntf publish race in nfs4_init_cp_state
nfs4_alloc_init_cpntf_state() published the new cpntf entry into the
s2s_cp_stateids IDR (with cs_type set) in one s2s_cp_lock...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89684/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-89684 - High (7.5)
In the Linux kernel, the following vulnerability has been resolved:
nfsd: fix cpntf publish race in nfs4_init_cp_state
nfs4_alloc_init_cpntf_state() published the new cpntf entry into the
s2s_cp_stateids IDR (with cs_type set) in one s2s_cp_lock...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89684/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T07:17:34.003000
2 posts
🟠 CVE-2026-89682 - High (8.1)
In the Linux kernel, the following vulnerability has been resolved:
nfsd: fix fcache_disposal UAF by inlining dispose state into nfsd_net
nfsd_file_dispose_list_delayed() defers fput() to nfsd service threads
via a per-net freeme queue, preventi...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89682/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-89682 - High (8.1)
In the Linux kernel, the following vulnerability has been resolved:
nfsd: fix fcache_disposal UAF by inlining dispose state into nfsd_net
nfsd_file_dispose_list_delayed() defers fput() to nfsd service threads
via a per-net freeme queue, preventi...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89682/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T07:17:06.600000
2 posts
CVE-2026-81000: Linux kernel TUN driver HIGH severity vulnerability fixed. Flaw in skb headroom calculation could trigger memory corruption. Update to patched kernel ASAP. 🐧 https://radar.offseq.com/threat/in-the-linux-kernel-the-following-vulnerability-has-been-resolved-net-tun-bound-receive-headroom-683cedae073ef3c4 #OffSeq #Linux #Vulnerability #BlueTeam
##CVE-2026-81000: Linux kernel TUN driver HIGH severity vulnerability fixed. Flaw in skb headroom calculation could trigger memory corruption. Update to patched kernel ASAP. 🐧 https://radar.offseq.com/threat/in-the-linux-kernel-the-following-vulnerability-has-been-resolved-net-tun-bound-receive-headroom-683cedae073ef3c4 #OffSeq #Linux #Vulnerability #BlueTeam
##updated 2026-09-13T07:17:06.230000
2 posts
CVE-2026-80995: HIGH severity use-after-free in Linux kernel MCTP code lets unprivileged users trigger memory corruption or DoS. Fix: update to patched kernel when released. Details: https://radar.offseq.com/threat/in-the-linux-kernel-the-following-vulnerability-has-been-resolved-net-mctp-hold-a-reference-to-the-146ae7a2eb30ef4b #OffSeq #Linux #Infosec #CVE #Vulnerability
##CVE-2026-80995: HIGH severity use-after-free in Linux kernel MCTP code lets unprivileged users trigger memory corruption or DoS. Fix: update to patched kernel when released. Details: https://radar.offseq.com/threat/in-the-linux-kernel-the-following-vulnerability-has-been-resolved-net-mctp-hold-a-reference-to-the-146ae7a2eb30ef4b #OffSeq #Linux #Infosec #CVE #Vulnerability
##updated 2026-09-13T07:17:05
2 posts
CVE-2026-80981: Linux kernel net/smc HIGH severity use-after-free in smc_llc_srv_add_link(). Risk of memory corruption & escalation. Patch when available! Details: https://radar.offseq.com/threat/in-the-linux-kernel-the-following-vulnerability-has-been-resolved-netsmc-fix-use-after-free-of-the-llc-1751a25f120aa002 #OffSeq #Linux #Infosec #Vulnerability
##CVE-2026-80981: Linux kernel net/smc HIGH severity use-after-free in smc_llc_srv_add_link(). Risk of memory corruption & escalation. Patch when available! Details: https://radar.offseq.com/threat/in-the-linux-kernel-the-following-vulnerability-has-been-resolved-netsmc-fix-use-after-free-of-the-llc-1751a25f120aa002 #OffSeq #Linux #Infosec #Vulnerability
##updated 2026-09-13T04:17:25.227000
2 posts
🟠 CVE-2026-90678 - High (7.5)
An issue was discovered in HAProxy 3.3.0 through 3.4.4 and in 3.5-dev1 through 3.5-dev5. Exploitation requires an HTTP/3 frontend: HAProxy must be built with QUIC support and configured with a QUIC bind listener, and the affected traffic must reac...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90678/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-90678 - High (7.5)
An issue was discovered in HAProxy 3.3.0 through 3.4.4 and in 3.5-dev1 through 3.5-dev5. Exploitation requires an HTTP/3 frontend: HAProxy must be built with QUIC support and configured with a QUIC bind listener, and the affected traffic must reac...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90678/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T03:30:22
3 posts
The UnrealIRCd security issue from yesterday was assigned CVE-2026-90668. Admins on older versions could apply a hot-patch to fix the issue without restart.
We have been doing that at UnrealIRCd for more than 20 years now, so I wrote a story on my personal blog about how effective it is, and the times it did not work: https://www.vulnscan.org/why-hot-patching-is-awesome/
##🟠 CVE-2026-90668 - High (7.5)
The webserver in UnrealIRCd 6.0.5 through 6.2.6 before 6.2.7 does not limit the number of HTTP request headers, which allows remote attackers to cause a denial of service (memory consumption and unresponsive server) via an HTTP request with an unl...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90668/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-90668 - High (7.5)
The webserver in UnrealIRCd 6.0.5 through 6.2.6 before 6.2.7 does not limit the number of HTTP request headers, which allows remote attackers to cause a denial of service (memory consumption and unresponsive server) via an HTTP request with an unl...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90668/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-13T03:30:22
4 posts
🟠 CVE-2026-90493 - High (8.8)
A vulnerability was detected in Tonec Internet Download Manager up to 6.42 Build 63 on Windows. The impacted element is an unknown function of the file idmwfp.sys of the component Kernel Driver. The manipulation results in improper access controls...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90493/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##Tonec Internet Download Manager <=6.42.63 hit by CRITICAL vuln (CVE-2026-90493) in idmwfp.sys — improper access controls enable local privilege escalation. Public exploit code, no patch yet. Restrict local access & monitor. https://radar.offseq.com/threat/cve-2026-90493-improper-access-controls-in-tonec-internet-download-manager-a788ce95502ef3ad #OffSeq #CVE202690493 #Vuln #Cybersecurity
##🟠 CVE-2026-90493 - High (8.8)
A vulnerability was detected in Tonec Internet Download Manager up to 6.42 Build 63 on Windows. The impacted element is an unknown function of the file idmwfp.sys of the component Kernel Driver. The manipulation results in improper access controls...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90493/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##Tonec Internet Download Manager <=6.42.63 hit by CRITICAL vuln (CVE-2026-90493) in idmwfp.sys — improper access controls enable local privilege escalation. Public exploit code, no patch yet. Restrict local access & monitor. https://radar.offseq.com/threat/cve-2026-90493-improper-access-controls-in-tonec-internet-download-manager-a788ce95502ef3ad #OffSeq #CVE202690493 #Vuln #Cybersecurity
##updated 2026-09-13T00:31:26
2 posts
CVE-2026-90648: HIGH severity vuln in wasm2c (WebAssembly wabt <=1.0.41). Unchecked calloc() return enables sandbox escape & code exec if allocation fails — mainly on 32-bit/memory-limited systems. Patch status pending. https://radar.offseq.com/threat/cve-2026-90648-cwe-252-unchecked-return-value-in-webassembly-wabt-365471fbebafc772 #OffSeq #WebAssembly #CVE202690648
##CVE-2026-90648: HIGH severity vuln in wasm2c (WebAssembly wabt <=1.0.41). Unchecked calloc() return enables sandbox escape & code exec if allocation fails — mainly on 32-bit/memory-limited systems. Patch status pending. https://radar.offseq.com/threat/cve-2026-90648-cwe-252-unchecked-return-value-in-webassembly-wabt-365471fbebafc772 #OffSeq #WebAssembly #CVE202690648
##updated 2026-09-13T00:31:26
2 posts
CVE-2026-90647 (CRITICAL, CVSS 9.1) affects Kalkitech ASE2000 V2 (2.35 – 2.37): improper TLS certificate validation in IEC 60870-5-104 enables MitM attacks. No patch confirmed. Restrict access & monitor. https://radar.offseq.com/threat/cve-2026-90647-cwe-295-improper-certificate-validation-in-kalkitech-ase2000-v2-communication-test-set-2a292ef0f6b1257f #OffSeq #ICS #CVE202690647 #TLS
##CVE-2026-90647 (CRITICAL, CVSS 9.1) affects Kalkitech ASE2000 V2 (2.35 – 2.37): improper TLS certificate validation in IEC 60870-5-104 enables MitM attacks. No patch confirmed. Restrict access & monitor. https://radar.offseq.com/threat/cve-2026-90647-cwe-295-improper-certificate-validation-in-kalkitech-ase2000-v2-communication-test-set-2a292ef0f6b1257f #OffSeq #ICS #CVE202690647 #TLS
##updated 2026-09-13T00:17:07.203000
4 posts
CVE-2026-90651 | HIGH severity in Socket Socket Firewall <2.0.0: TLS certs not validated by default — MITM risk. Set api_ssl_verify and upstream_ssl_verify to true & patch configs or upgrade to 2.0.0+. https://radar.offseq.com/threat/cve-2026-90651-cwe-295-improper-certificate-validation-in-socket-socket-firewall-a5dfe1c95649d9c6 #OffSeq #vuln #infosec #supplychain
##🟠 CVE-2026-90651 - High (8.1)
Socket Firewall (socketdev/socket-registry-firewall) in registry mode before 2.0.0 does not verify upstream TLS certificates by default. When the api_ssl_verify and upstream_ssl_verify configuration keys are omitted from socket.yml, the generated ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90651/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-90651 | HIGH severity in Socket Socket Firewall <2.0.0: TLS certs not validated by default — MITM risk. Set api_ssl_verify and upstream_ssl_verify to true & patch configs or upgrade to 2.0.0+. https://radar.offseq.com/threat/cve-2026-90651-cwe-295-improper-certificate-validation-in-socket-socket-firewall-a5dfe1c95649d9c6 #OffSeq #vuln #infosec #supplychain
##🟠 CVE-2026-90651 - High (8.1)
Socket Firewall (socketdev/socket-registry-firewall) in registry mode before 2.0.0 does not verify upstream TLS certificates by default. When the api_ssl_verify and upstream_ssl_verify configuration keys are omitted from socket.yml, the generated ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90651/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-12T20:16:30.957000
2 posts
CVE-2026-90616: Flatpak <1.18.1 has a HIGH severity vuln — malicious sandboxed apps can use symlinks to gain arbitrary read/write host access, risking code execution. Update to 1.18.1+ now. https://radar.offseq.com/threat/in-flatpak-before-1181-a-malicious-sandboxed-app-can-obtain-arbitrary-read-and-write-access-to-files-4ccb40754f32d716 #OffSeq #Flatpak #Linux #Security
##CVE-2026-90616: Flatpak <1.18.1 has a HIGH severity vuln — malicious sandboxed apps can use symlinks to gain arbitrary read/write host access, risking code execution. Update to 1.18.1+ now. https://radar.offseq.com/threat/in-flatpak-before-1181-a-malicious-sandboxed-app-can-obtain-arbitrary-read-and-write-access-to-files-4ccb40754f32d716 #OffSeq #Flatpak #Linux #Security
##updated 2026-09-12T18:31:29
4 posts
🔴 CVE-2026-84171 - Critical (9.8)
The WP images upload on piclect WordPress plugin through 1.0 does not validate the name or type of uploaded files before writing them to a publicly accessible directory, allowing unauthenticated attackers to upload arbitrary files and execute arbi...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84171/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##WP images upload on piclect (≤1.0) suffers from CRITICAL CVE-2026-84171: Unauthenticated attackers can upload arbitrary files, risking code execution. Restrict uploads & monitor activity until a fix is released. https://radar.offseq.com/threat/cve-2026-84171-cwe-434-unrestricted-upload-of-file-with-dangerous-type-in-wp-images-upload-on-piclect-1bdb1fa95a2cb1f8 #OffSeq #WordPress #CVE202684171 #Vuln
##🔴 CVE-2026-84171 - Critical (9.8)
The WP images upload on piclect WordPress plugin through 1.0 does not validate the name or type of uploaded files before writing them to a publicly accessible directory, allowing unauthenticated attackers to upload arbitrary files and execute arbi...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84171/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##WP images upload on piclect (≤1.0) suffers from CRITICAL CVE-2026-84171: Unauthenticated attackers can upload arbitrary files, risking code execution. Restrict uploads & monitor activity until a fix is released. https://radar.offseq.com/threat/cve-2026-84171-cwe-434-unrestricted-upload-of-file-with-dangerous-type-in-wp-images-upload-on-piclect-1bdb1fa95a2cb1f8 #OffSeq #WordPress #CVE202684171 #Vuln
##updated 2026-09-12T18:31:28
2 posts
🔴 CVE-2026-75800 - Critical (9.8)
The Frontegg SAML SSO WordPress plugin through 1.0.1 does not verify the signature or issuer of SAML authentication responses before establishing a session, allowing unauthenticated attackers to log in as any user, including administrators, as wel...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-75800/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-75800 - Critical (9.8)
The Frontegg SAML SSO WordPress plugin through 1.0.1 does not verify the signature or issuer of SAML authentication responses before establishing a session, allowing unauthenticated attackers to log in as any user, including administrators, as wel...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-75800/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-12T18:31:28
2 posts
🟠 CVE-2026-87842 - High (7.5)
The Zonify WordPress plugin before 1.0.5 does not perform any capability or authentication check before returning the site's stored account login token, allowing unauthenticated attackers to retrieve it and authenticate to the site owner's linked...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-87842/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-87842 - High (7.5)
The Zonify WordPress plugin before 1.0.5 does not perform any capability or authentication check before returning the site's stored account login token, allowing unauthenticated attackers to retrieve it and authenticate to the site owner's linked...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-87842/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-12T18:30:33
4 posts
CVE-2026-90558: CRITICAL stack buffer overflow in irontec sngrep (<=1.8.4). Malicious SIP headers can crash or allow code execution. Patch status pending — filter untrusted SIP traffic. https://radar.offseq.com/threat/cve-2026-90558-stack-based-buffer-overflow-in-irontec-sngrep-f0d23a6d23082198 #OffSeq #CVE202690558 #vuln #SIPrisk
##🔴 CVE-2026-90558 - Critical (9.8)
sngrep through 1.8.4 contains stack buffer overflow vulnerabilities in SIP attribute formatting routines when header values exceed the 255-byte buffer limit. Attackers can craft malicious SIP packets with oversized Call-ID, X-Call-ID, or other hea...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90558/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-90558: CRITICAL stack buffer overflow in irontec sngrep (<=1.8.4). Malicious SIP headers can crash or allow code execution. Patch status pending — filter untrusted SIP traffic. https://radar.offseq.com/threat/cve-2026-90558-stack-based-buffer-overflow-in-irontec-sngrep-f0d23a6d23082198 #OffSeq #CVE202690558 #vuln #SIPrisk
##🔴 CVE-2026-90558 - Critical (9.8)
sngrep through 1.8.4 contains stack buffer overflow vulnerabilities in SIP attribute formatting routines when header values exceed the 255-byte buffer limit. Attackers can craft malicious SIP packets with oversized Call-ID, X-Call-ID, or other hea...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90558/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-12T18:30:33
2 posts
🟠 CVE-2026-90559 - High (7.5)
snappy-java through 1.1.10.8 contains an out-of-bounds write vulnerability in Snappy.uncompress(ByteBuffer, ByteBuffer) because destination buffer capacity is never validated against decompressed size. Attackers can supply valid compressed data th...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90559/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-90559 - High (7.5)
snappy-java through 1.1.10.8 contains an out-of-bounds write vulnerability in Snappy.uncompress(ByteBuffer, ByteBuffer) because destination buffer capacity is never validated against decompressed size. Attackers can supply valid compressed data th...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90559/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-12T18:30:33
2 posts
🟠 CVE-2026-90556 - High (7.8)
Freeciv versions before 3.2.6 contain a heap buffer overflow in worklist_load() when processing savegame files with declared worklist lengths exceeding the fixed array bound of 64 elements. Attackers can craft malicious savegame files that write p...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90556/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-90556 - High (7.8)
Freeciv versions before 3.2.6 contain a heap buffer overflow in worklist_load() when processing savegame files with declared worklist lengths exceeding the fixed array bound of 64 elements. Attackers can craft malicious savegame files that write p...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90556/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-12T18:30:22
2 posts
🟠 CVE-2026-81742 - High (8.8)
The BE REST Endpoints WordPress plugin through 1.0.0 does not perform any authorization check before allowing widgets to be read, created, updated and deleted, and does not sanitize the values it stores in them, allowing unauthenticated users to i...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-81742/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-81742 - High (8.8)
The BE REST Endpoints WordPress plugin through 1.0.0 does not perform any authorization check before allowing widgets to be read, created, updated and deleted, and does not sanitize the values it stores in them, allowing unauthenticated users to i...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-81742/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-12T18:30:22
2 posts
🟠 CVE-2026-80494 - High (8.6)
The Yogeta WP Cloud WordPress plugin through 1.0 does not validate a user-supplied file path before passing it to a file-read function on a public endpoint that lacks any authorization check, allowing unauthenticated attackers to download arbitrar...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-80494/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-80494 - High (8.6)
The Yogeta WP Cloud WordPress plugin through 1.0 does not validate a user-supplied file path before passing it to a file-read function on a public endpoint that lacks any authorization check, allowing unauthenticated attackers to download arbitrar...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-80494/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-12T18:30:22
2 posts
🔴 CVE-2026-82845 - Critical (9.9)
The Masteriyo LMS WordPress plugin before 3.4.1 does not prevent user-supplied values held as metadata from being deserialized when they are read back, allowing users with a minimal account to inject arbitrary PHP objects and, by way of a class s...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-82845/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-82845 - Critical (9.9)
The Masteriyo LMS WordPress plugin before 3.4.1 does not prevent user-supplied values held as metadata from being deserialized when they are read back, allowing users with a minimal account to inject arbitrary PHP objects and, by way of a class s...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-82845/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-12T18:30:22
2 posts
🟠 CVE-2026-84099 - High (8.1)
The wpstorecart WordPress plugin through 5.0.7 does not prevent direct, unauthenticated access to a bundled add-on that deserializes user-supplied input without restricting the permitted classes, allowing unauthenticated attackers to inject arbitr...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84099/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-84099 - High (8.1)
The wpstorecart WordPress plugin through 5.0.7 does not prevent direct, unauthenticated access to a bundled add-on that deserializes user-supplied input without restricting the permitted classes, allowing unauthenticated attackers to inject arbitr...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84099/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-12T18:16:44.890000
2 posts
🟠 CVE-2026-90560 - High (8.2)
zstd-jni versions 1.2.0 through 1.5.7-13 contain an out-of-bounds read vulnerability in the ZstdDictDecompress constructor because offset and length arguments are never validated against the dictionary array bounds. Attackers can supply arbitrary ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90560/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-90560 - High (8.2)
zstd-jni versions 1.2.0 through 1.5.7-13 contain an out-of-bounds read vulnerability in the ZstdDictDecompress constructor because offset and length arguments are never validated against the dictionary array bounds. Attackers can supply arbitrary ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90560/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-12T16:16:42.897000
2 posts
🟠 CVE-2026-87888 - High (8)
The YayPricing WordPress plugin before 3.5.7 does not perform an authorization check on a REST route that saves its pricing rules, allowing users with the subscriber role and above to store JavaScript that executes in the browser of an administra...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-87888/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-87888 - High (8)
The YayPricing WordPress plugin before 3.5.7 does not perform an authorization check on a REST route that saves its pricing rules, allowing users with the subscriber role and above to store JavaScript that executes in the browser of an administra...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-87888/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-12T16:16:42.473000
4 posts
🟠 CVE-2026-87759 - High (8.8)
The Add User Autocomplete WordPress plugin before 1.2 does not perform any capability or nonce check before creating a pending site-membership invitation carrying a caller-supplied role, allowing any authenticated user, such as a subscriber, to gr...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-87759/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-87759 (CRITICAL): Add User Autocomplete plugin (<1.2) for WordPress allows authenticated users to self-assign admin on multisite via improper privilege checks. Upgrade to 1.2+ or restrict user roles. https://radar.offseq.com/threat/cve-2026-87759-cwe-269-improper-privilege-management-in-add-user-autocomplete-a6c684ab660afbe7 #OffSeq #WordPress #Security #CVE202687759
##🟠 CVE-2026-87759 - High (8.8)
The Add User Autocomplete WordPress plugin before 1.2 does not perform any capability or nonce check before creating a pending site-membership invitation carrying a caller-supplied role, allowing any authenticated user, such as a subscriber, to gr...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-87759/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-87759 (CRITICAL): Add User Autocomplete plugin (<1.2) for WordPress allows authenticated users to self-assign admin on multisite via improper privilege checks. Upgrade to 1.2+ or restrict user roles. https://radar.offseq.com/threat/cve-2026-87759-cwe-269-improper-privilege-management-in-add-user-autocomplete-a6c684ab660afbe7 #OffSeq #WordPress #Security #CVE202687759
##updated 2026-09-12T16:16:42.170000
4 posts
🔴 CVE-2026-85681 - Critical (9.8)
The WP Component WordPress plugin through 2.2.4 does not have any capability or nonce checks on one of the actions it makes available to unauthenticated users, and it takes both the option name and the option value from the request, allowing unaut...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-85681/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-85681 (CRITICAL): WP Component plugin ≤2.2.4 allows unauthenticated option overwrites, risking full WordPress site takeover. Single-site installs are exposed. Check vendor advisory for mitigation steps: https://radar.offseq.com/threat/cve-2026-85681-cwe-269-improper-privilege-management-in-wp-component-ee74cec7c7b526ed #OffSeq #WordPress #Vuln #BlueTeam
##🔴 CVE-2026-85681 - Critical (9.8)
The WP Component WordPress plugin through 2.2.4 does not have any capability or nonce checks on one of the actions it makes available to unauthenticated users, and it takes both the option name and the option value from the request, allowing unaut...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-85681/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-85681 (CRITICAL): WP Component plugin ≤2.2.4 allows unauthenticated option overwrites, risking full WordPress site takeover. Single-site installs are exposed. Check vendor advisory for mitigation steps: https://radar.offseq.com/threat/cve-2026-85681-cwe-269-improper-privilege-management-in-wp-component-ee74cec7c7b526ed #OffSeq #WordPress #Vuln #BlueTeam
##updated 2026-09-12T16:16:41.527000
2 posts
🟠 CVE-2026-84047 - High (8.6)
The Album Cover Finder WordPress plugin through 0.7.0 does not properly sanitize and escape a parameter before using it in a SQL query, allowing unauthenticated users to perform SQL injection attacks.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84047/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-84047 - High (8.6)
The Album Cover Finder WordPress plugin through 0.7.0 does not properly sanitize and escape a parameter before using it in a SQL query, allowing unauthenticated users to perform SQL injection attacks.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84047/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-12T16:16:40.140000
2 posts
🔴 CVE-2026-81402 - Critical (9.8)
The DS Ad Rotator WordPress plugin through 0.8 does not perform any capability check, nonce verification, or file-type validation on its image upload handler, allowing unauthenticated attackers to upload arbitrary files, including PHP, to a web-ac...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-81402/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-81402 - Critical (9.8)
The DS Ad Rotator WordPress plugin through 0.8 does not perform any capability check, nonce verification, or file-type validation on its image upload handler, allowing unauthenticated attackers to upload arbitrary files, including PHP, to a web-ac...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-81402/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-12T16:16:39.737000
2 posts
🟠 CVE-2026-80491 - High (8.6)
The SAMO Forms WordPress plugin through 1.0.0 does not properly sanitise and escape user input before using it in SQL queries in several unauthenticated actions, allowing unauthenticated attackers to perform SQL injection attacks.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-80491/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-80491 - High (8.6)
The SAMO Forms WordPress plugin through 1.0.0 does not properly sanitise and escape user input before using it in SQL queries in several unauthenticated actions, allowing unauthenticated attackers to perform SQL injection attacks.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-80491/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-12T16:16:38.670000
2 posts
🔴 CVE-2026-77006 - Critical (9.6)
The WebTotem Backups WordPress plugin through 1.0.1 does not validate a user-supplied file path, does not check the capability of the user making the request, and discards the result of its own CSRF check, allowing any authenticated user, such as ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77006/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-77006 - Critical (9.6)
The WebTotem Backups WordPress plugin through 1.0.1 does not validate a user-supplied file path, does not check the capability of the user making the request, and discards the result of its own CSRF check, allowing any authenticated user, such as ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77006/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-12T16:16:38.523000
2 posts
🔴 CVE-2026-77005 - Critical (9.6)
The CODE MONKEYS PROPOSALS WordPress plugin through 1.0.1 does not validate a user-supplied file path before deleting a file, and does not check the capability of the user making the request, allowing any authenticated user, such as a subscriber,...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77005/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-77005 - Critical (9.6)
The CODE MONKEYS PROPOSALS WordPress plugin through 1.0.1 does not validate a user-supplied file path before deleting a file, and does not check the capability of the user making the request, allowing any authenticated user, such as a subscriber,...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77005/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-12T15:31:49
2 posts
🟠 CVE-2026-15451 - High (8.8)
The MemberPress Corporate Accounts plugin for WordPress is vulnerable to Privilege Escalation in versions up to, and including, 1.5.39. This is due to a mass assignment vulnerability in the 'add_sub_account_user' function that passes the raw 'user...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-15451/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-15451 - High (8.8)
The MemberPress Corporate Accounts plugin for WordPress is vulnerable to Privilege Escalation in versions up to, and including, 1.5.39. This is due to a mass assignment vulnerability in the 'add_sub_account_user' function that passes the raw 'user...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-15451/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-12T15:31:49
2 posts
🟠 CVE-2026-90537 - High (8.2)
WWBN AVideo through commit c3edcc274c389816d434acadac07ee78eaf330c1 contains a missing authorization vulnerability in plugin/Scheduler/sendEmail.json.php that allows unauthenticated attackers to access scheduler email jobs by providing a site-wide...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90537/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-90537 - High (8.2)
WWBN AVideo through commit c3edcc274c389816d434acadac07ee78eaf330c1 contains a missing authorization vulnerability in plugin/Scheduler/sendEmail.json.php that allows unauthenticated attackers to access scheduler email jobs by providing a site-wide...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90537/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-12T13:16:53.887000
2 posts
🟠 CVE-2026-90553 - High (7.8)
vLLM before 0.28.0 contains a remote code execution vulnerability in the LlavaOnevision2 processor loader that ignores the trust_remote_code parameter when loading remote processor classes. Attackers can craft a malicious model with arbitrary code...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90553/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-90553 - High (7.8)
vLLM before 0.28.0 contains a remote code execution vulnerability in the LlavaOnevision2 processor loader that ignores the trust_remote_code parameter when loading remote processor classes. Attackers can craft a malicious model with arbitrary code...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90553/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-12T12:30:50
40 posts
10 repos
https://github.com/jithinkrishnanrs/gitlab-cve-2026-85706-ioc
https://github.com/brigadeops32/CVE-2026-85706
https://github.com/ynsmroztas/GitLabSniper
https://github.com/guneykabel/cve-2026-85706
https://github.com/FlowerWitch/CVE-2026-85706_docker_exp
https://github.com/solivaquaant/CVE-2026-85706
https://github.com/plur1bu5/gitread
https://github.com/mhtsec/CVE-2026-85706
https://github.com/gagaltotal/CVE-2026-85706-gitlab-poc
https://github.com/0xlyvio/cve-2026-85706-poc-exploit-gitlab
📰 GitLab Patches Critical CVSS 10.0 Path Traversal Vulnerability
GitLab releases emergency patches for a critical CVSS 10.0 path traversal flaw (CVE-2026-85706). Unauthenticated attackers can read arbitrary files. Active scanning detected. Upgrade self-managed instances NOW. #GitLab #CVE #CyberSecurity #PatchNow
##GitLab CVE-2026-85706: Critical CVSS 100 Flaw Is Already Being Probed in the Wild + Video
GitLab CVE-2026-85706: Critical CVSS 10.0 Path Traversal Flaw Puts Sensitive Files at Risk A Maximum-Severity Warning for GitLab Administrators A dangerous new GitLab vulnerability has moved from disclosure to real-world reconnaissance with remarkable speed. Tracked as CVE-2026-85706, the flaw carries the maximum CVSS score of 10.0 and affects the repository commits API in…
##2026-W37 — Weekly Threat Roundup
🤖 AI is no longer just a defender's tool: state-sponsored groups and criminals weaponized Claude, ChatGPT, and OpenAI agents to automate exploitation, rebuild malware, and generate one million personalized phishing emails in three days.
🔓 GitLab's CVSS 10.0 path traversal flaw (CVE-2026-85706) wa…
https://threatnoir.com/weekly/2026-w37
#infosec #cybersecurity #threatintel
🤖 AI generated summary
##GitLab CVE-2026-85706 is a maximum-severity path traversal in the repository commits API enabling unauthenticated arbitrary file read on self-managed servers. CISA added it to KEV with a three-day deadline, signaling active exploitation risk. Patch immediately and review for anomalous access to credentials and secrets. #GitLab #CisaKev #InfoSec
https://cyberworldops.eu/en/gitlab-path-traversal-flaw-enters-cisa-kev-with-three-day-patch
##That is a faster turnaround than most people's pizza delivery.
Patch GitLab immediately to remediate CVE-2026-85706 — your self-managed server is the featured product in someone else's highlight reel.
Reward: Complimentary sponsorship credit from Deferred Maintenance Inc. Your inaction keeps them in business.
https://www.securityweek.com/gitlab-vulnerability-exploited-one-day-after-disclosure/
#GitLab #CyberSecurity #ZeroDay #PathTraversal #CVE #PatchedOrPerish (2/2)
##🏆 New Achievement! Speed-Run Sponsored by Your Unpatched GitLab!
This achievement is brought to you by Deferred Maintenance Inc. — when you absolutely, positively need unauthenticated strangers reading every file on your server within a single HTTP request. CVE-2026-85706 scored a perfect ten out of ten on the CVSS scale, because some bugs don't do half measures. GitLab dropped patches on a Thursday. By Friday, WatchTowr was already watching wild exploitation probes roll in. One day. (1/2)
##GitLab CVSS 100 Vulnerability Reportedly Exploited Within 24 Hours, Leaving Self-Managed Servers Under Immediate Threat + Video
A Critical GitLab Warning for Defenders A critical security vulnerability in GitLab has reportedly moved from public disclosure to active exploitation in roughly a single day. Tracked as CVE-2026-85706, the flaw carries the highest possible CVSS score of 10.0, making it one of the most urgent vulnerabilities facing organizations operating…
##🔵 THREAT INTELLIGENCE
GitLab CVSS 10 File-Read Flaw Draws In-the-Wild Probes After Disclosure
Vulnerability | CRITICAL
CVEs: CVE-2026-85706
GitLab has released patches to address multiple flaws, including a maximum-severity security vulnerability that has witnessed in-the-wild probes...
Full analysis:
https://www.yazoul.net/news/article/gitlab-cvss-10-file-read-flaw-draws-in-the-wild-probes-after-disclosure
by Yazoul AI
##📰 GitLab Patches Critical CVSS 10.0 Path Traversal Vulnerability
GitLab releases emergency patches for a critical CVSS 10.0 path traversal flaw (CVE-2026-85706). Unauthenticated attackers can read arbitrary files. Active scanning detected. Upgrade self-managed instances NOW. #GitLab #CVE #CyberSecurity #PatchNow
##🚨 Detection for the actively exploited GitLab vulnerability tagged as CVE-2026-85706 (CVSS 10.0) available here:
https://github.com/projectdiscovery/nuclei-templates/pull/17231/changes
🔴 New security advisory:
CVE-2026-85706 affects multiple systems.
• Impact: Remote code execution or complete system compromise possible
• Risk: Attackers can gain full control of affected systems
• Mitigation: Patch immediately or isolate affected systems
Full breakdown:
https://www.yazoul.net/advisory/cve/cve-2026-85706-gitlab-unauth-file-read-exploited-poc
by Yazoul AI
##PoC for unauthenticated arbitrary file read on Gitlab https://github.com/guneykabel/cve-2026-85706
##Improper Limitation of a Pathname to a Restricted Directory in GitLab 10/10
GitLab CE/EE의 Repository Commits API에서 경로 제한(path confinement)과 인증 검증이 불완전해 발생한 치명적 경로 탐색 취약점(CWE-22)입니다. 공격자는 인증 없이 조작된 경로를 통해 GitLab 서버의 임의 파일을 읽을 수 있으며, CVSS 3.1 기준 10.0(Critical)으로 평가됩니다. 영향 버전은 18.7 이상 19.1.8 미만, 19.2.0 이상 19.2.6 미만, 19.3.0 이상 19.3.2 미만이며, 각각 19.1.8·19.2.6·19.3.2 이상으로 즉시 업데이트해야 합니다. GitLab은 소스...
##GitLab Patches Critical Path Traversal Flaw Under Active Exploitation
GitLab released emergency patches for 18 vulnerabilities, including a CVSS 10.0 path traversal flaw (CVE-2026-85706) that allows unauthenticated attackers to read sensitive server files and is currently seeing active probes.
**If you run a self-hosted GitLab instance, update it now to version 19.3.2, 19.2.6, or 19.1.8. One of these flaws is already being exploited and lets anyone read files off your server without logging in. All it takes is one public project to exist on the instance. If you can't patch right away, take the instance off the public internet and check your logs for POST requests to the repository commits API containing a "file.path" parameter to see if you've already been probed.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/gitlab-patches-critical-path-traversal-flaw-under-active-exploitation-5-n-t-j-9/gD2P6Ple2L
CISA Sounds the Alarm: Actively Exploited GitLab Flaw Could Expose Secrets and CI/CD Infrastructure
A Dangerous New Entry in CISA’s Exploited Vulnerabilities Catalog A serious security warning has emerged around GitLab after U.S. cybersecurity authorities identified active exploitation of a critical vulnerability capable of exposing arbitrary files from affected servers. The flaw, tracked as CVE-2026-85706, affects both GitLab Community Edition and Enterprise Edition…
##GitLab path-traversal CVE-2026-85706 (CVSS 10.0) is being exploited in the wild one day after disclosure. It allows unauthenticated arbitrary file read with a single HTTP request, exposing secrets and enabling further compromise. Prioritize immediate patching and review logs. #GitLab #PathTraversal #ThreatIntel
https://cyberworldops.eu/en/critical-gitlab-file-read-flaw-exploited-within-a-day-of-patch
##🔴 CVE-2026-85706 - Critical (10)
GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.7 before 19.1.8, 19.2 before 19.2.6, and 19.3 before 19.3.2 that, under certain conditions, an unauthenticated user could have read arbitrary files from the GitLab serve...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-85706/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##⚠️ CRITICAL: GitLab CVSS 10 File-Read Flaw Draws In-the-Wild Probes After Disclosure
GitLab patched a CVSS 10.0 unauthenticated file-read vulnerability (CVE-2026-85706) in the repository commits API that allows attackers to read arbitrary files from affected servers. In-the-wild probes are already active. Attackers can extract credentials, SSH keys, and other sensitive data without…
🤖 AI generated summary
##2026-W37 — Weekly Threat Roundup
🤖 AI is no longer just a defender's tool: state-sponsored groups and criminals weaponized Claude, ChatGPT, and OpenAI agents to automate exploitation, rebuild malware, and generate one million personalized phishing emails in three days.
🔓 GitLab's CVSS 10.0 path traversal flaw (CVE-2026-85706) wa…
https://threatnoir.com/weekly/2026-w37
#infosec #cybersecurity #threatintel
🤖 AI generated summary
##GitLab CVE-2026-85706 is a maximum-severity path traversal in the repository commits API enabling unauthenticated arbitrary file read on self-managed servers. CISA added it to KEV with a three-day deadline, signaling active exploitation risk. Patch immediately and review for anomalous access to credentials and secrets. #GitLab #CisaKev #InfoSec
https://cyberworldops.eu/en/gitlab-path-traversal-flaw-enters-cisa-kev-with-three-day-patch
##That is a faster turnaround than most people's pizza delivery.
Patch GitLab immediately to remediate CVE-2026-85706 — your self-managed server is the featured product in someone else's highlight reel.
Reward: Complimentary sponsorship credit from Deferred Maintenance Inc. Your inaction keeps them in business.
https://www.securityweek.com/gitlab-vulnerability-exploited-one-day-after-disclosure/
#GitLab #CyberSecurity #ZeroDay #PathTraversal #CVE #PatchedOrPerish (2/2)
##🏆 New Achievement! Speed-Run Sponsored by Your Unpatched GitLab!
This achievement is brought to you by Deferred Maintenance Inc. — when you absolutely, positively need unauthenticated strangers reading every file on your server within a single HTTP request. CVE-2026-85706 scored a perfect ten out of ten on the CVSS scale, because some bugs don't do half measures. GitLab dropped patches on a Thursday. By Friday, WatchTowr was already watching wild exploitation probes roll in. One day. (1/2)
##📰 GitLab Patches Critical CVSS 10.0 Path Traversal Vulnerability
GitLab releases emergency patches for a critical CVSS 10.0 path traversal flaw (CVE-2026-85706). Unauthenticated attackers can read arbitrary files. Active scanning detected. Upgrade self-managed instances NOW. #GitLab #CVE #CyberSecurity #PatchNow
##🚨 Detection for the actively exploited GitLab vulnerability tagged as CVE-2026-85706 (CVSS 10.0) available here:
https://github.com/projectdiscovery/nuclei-templates/pull/17231/changes
PoC for unauthenticated arbitrary file read on Gitlab https://github.com/guneykabel/cve-2026-85706
##GitLab Patches Critical Path Traversal Flaw Under Active Exploitation
GitLab released emergency patches for 18 vulnerabilities, including a CVSS 10.0 path traversal flaw (CVE-2026-85706) that allows unauthenticated attackers to read sensitive server files and is currently seeing active probes.
**If you run a self-hosted GitLab instance, update it now to version 19.3.2, 19.2.6, or 19.1.8. One of these flaws is already being exploited and lets anyone read files off your server without logging in. All it takes is one public project to exist on the instance. If you can't patch right away, take the instance off the public internet and check your logs for POST requests to the repository commits API containing a "file.path" parameter to see if you've already been probed.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/gitlab-patches-critical-path-traversal-flaw-under-active-exploitation-5-n-t-j-9/gD2P6Ple2L
GitLab path-traversal CVE-2026-85706 (CVSS 10.0) is being exploited in the wild one day after disclosure. It allows unauthenticated arbitrary file read with a single HTTP request, exposing secrets and enabling further compromise. Prioritize immediate patching and review logs. #GitLab #PathTraversal #ThreatIntel
https://cyberworldops.eu/en/critical-gitlab-file-read-flaw-exploited-within-a-day-of-patch
##🔴 CVE-2026-85706 - Critical (10)
GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.7 before 19.1.8, 19.2 before 19.2.6, and 19.3 before 19.3.2 that, under certain conditions, an unauthenticated user could have read arbitrary files from the GitLab serve...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-85706/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##⚠️ CRITICAL: GitLab CVSS 10 File-Read Flaw Draws In-the-Wild Probes After Disclosure
GitLab patched a CVSS 10.0 unauthenticated file-read vulnerability (CVE-2026-85706) in the repository commits API that allows attackers to read arbitrary files from affected servers. In-the-wild probes are already active. Attackers can extract credentials, SSH keys, and other sensitive data without…
🤖 AI generated summary
##🚨 [CISA-2026:0911] CISA Adds 4 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0911)
CISA has added 4 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2026-42016 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-42016)
- Name: JFrog Artifactory Incorrect Authorization Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: JFrog
- Product: Artifactory
- Notes: https://docs.jfrog.com/releases/docs/jfrog-security-advisories ; https://docs.jfrog.com/releases/docs/artifactory-self-managed-releases ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-42016
⚠️ CVE-2026-42018 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-42018)
- Name: JFrog Artifactory Improper Authentication Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: JFrog
- Product: Artifactory
- Notes: https://docs.jfrog.com/releases/docs/jfrog-security-advisories ; https://docs.jfrog.com/releases/docs/artifactory-self-managed-releases ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-42018
⚠️ CVE-2026-84869 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-84869)
- Name: ConnectWise ScreenConnect Improper Privilege Management and Missing Authorization Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: ConnectWise
- Product: ScreenConnect
- Notes: https://www.connectwise.com/company/trust/security-bulletins/2026-09-08-screenconnect-bulletin ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-84869
⚠️ CVE-2026-85706 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85706)
- Name: GitLab Community Edition and Enterprise Edition Path Traversal Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: GitLab
- Product: Community Edition and Enterprise Edition
- Notes: https://docs.gitlab.com/releases/patches/patch-release-gitlab-19-3-2-released/ ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-85706
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260911 #cisa20260911 #cve_2026_42016 #cve_2026_42018 #cve_2026_84869 #cve_2026_85706 #cve202642016 #cve202642018 #cve202684869 #cve202685706
##@cR0w no mention of exploitation from CNA GitLab
CVE-2026-85706 - Path Traversal issue in repository commits API impacts GitLab CE/EE
GitLab has remediated an issue that, under certain conditions, an unauthenticated user could have read arbitrary files from the GitLab server due to improper path confinement and missing authentication enforcement in the repository commits API.
Impacted Versions: GitLab CE/EE: all versions from 18.7 before 19.1.8, 19.2 before 19.2.6, and 19.3 before 19.3.2
CVSS 10.0 (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:N)Thanks s3ntago for reporting this vulnerability through our HackerOne bug bounty program.
https://docs.gitlab.com/releases/patches/patch-release-gitlab-19-3-2-released/
##CVE ID: CVE-2026-85706
Vendor: GitLab
Product: Community Edition and Enterprise Edition
Date Added: 2026-09-11
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-85706
CVE-2026-85706 is now in the KEV but the CVE still isn't published. LMAO. Go hack and patch more GitLab shit.
##🚨 CVE-2026-85706: An unauthenticated arbitrary file read on Gitlab CE-EE affecting versions: 18.7–19.1.7; 19.2.0–19.2.5; 19.3.0–19.3.1
##🚨 GitLab CVSS 10 vulnerability exploited just one day after disclosure
Threat actors have begun exploiting CVE-2026-85706, a critical path traversal vulnerability affecting self-hosted GitLab Community and Enterprise Edition instances.
⠀
The flaw allows an unauthenticated attacker to read arbitrary files from a vulnerable GitLab server using a single HTTP request.
Affected versions include:
• GitLab 18.7 through versions before 19.1.8
• GitLab 19.2 through versions before 19.2.6
• GitLab 19.3 through versions before 19.3.2
⠀
GitLab disclosed and patched the vulnerability on September 10.
Just one day later, watchTowr began observing in-the-wild exploitation attempts and warns that mass exploitation is likely to follow.
⠀
Administrators should upgrade immediately to GitLab 19.1.8, 19.2.6, 19.3.2, or a newer supported release.
GitLab.com is already patched.
Source: https://docs.gitlab.com/releases/patches/patch-release-gitlab-19-3-2-released/
##GitLab urged users on Thursday to patch their servers immediately against a maximum-severity path traversal vulnerability tracked as CVE-2026-85706. https://www.bleepingcomputer.com/news/security/gitlab-urges-users-to-patch-max-severity-path-traversal-flaw/
##https://thecybersecguru.com/news/gitlab-cve-2026-85706-cvss-10-path-traversal/
##GitLab alerta para vulnerabilidade de gravidade máxima e pede atualização imediata. A falha, identificada como CVE-2026-85706, foi descoberta por um investigador de segurança e reportada através do programa de recompensas de bugs do HackerOne. 🚨
##GitLab urges users to patch max severity path traversal flaw
GitLab urged users on Thursday to patch their servers immediately against a maximum-severity path traversal vulnerability tracked as CVE-2026-85706.
🔗️ [Bleepingcomputer] https://link.is.it/jdshdd
##GitLab patched critical GitLab vulnerabilities, led by CVE-2026-85706 with a CVSS 10.0 score. Update your server now to protect source code from exposure.
#GitLab #CVE202685706 #Vulnerabilities #DevSecOps #Cybersecurity
https://securityonline.info/gitlab-vulnerabilities-cve-2026-85706-cvss-10/
updated 2026-09-12T09:33:41
6 posts
CVE-2026-78159: The Events Calendar <=6.17.3 for WordPress has a CRITICAL RCE flaw via parse_array(). Unauthenticated code execution if comments on tribe_events posts are enabled. Disable comments as interim mitigation. https://radar.offseq.com/threat/the-the-events-calendar-plugin-for-wordpress-is-vulnerable-to-remote-code-execution-in-all-versions-up-1ecd7d8aa73f934d #OffSeq #WordPress #RCE #CVE202678159
##CVE-2026-78159: CRITICAL RCE in The Events Calendar (<=6.17.3). Unauthenticated attackers can run arbitrary code via crafted comments. Disable comments on tribe_events posts to mitigate. CVSS 9.8. Details: https://radar.offseq.com/threat/cve-2026-78159-cwe-94-improper-control-of-generation-of-code-code-injection-in-stellarwp-the-events-c0d168b99a9315ff #OffSeq #WordPress #Infosec #RCE
##🔴 CVE-2026-78159 - Critical (9.8)
The The Events Calendar plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 6.17.3 via the parse_array function. This is due to insufficient validation of the widget 'classes' map, allowing a plain-arr...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-78159/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-78159: The Events Calendar <=6.17.3 for WordPress has a CRITICAL RCE flaw via parse_array(). Unauthenticated code execution if comments on tribe_events posts are enabled. Disable comments as interim mitigation. https://radar.offseq.com/threat/the-the-events-calendar-plugin-for-wordpress-is-vulnerable-to-remote-code-execution-in-all-versions-up-1ecd7d8aa73f934d #OffSeq #WordPress #RCE #CVE202678159
##CVE-2026-78159: CRITICAL RCE in The Events Calendar (<=6.17.3). Unauthenticated attackers can run arbitrary code via crafted comments. Disable comments on tribe_events posts to mitigate. CVSS 9.8. Details: https://radar.offseq.com/threat/cve-2026-78159-cwe-94-improper-control-of-generation-of-code-code-injection-in-stellarwp-the-events-c0d168b99a9315ff #OffSeq #WordPress #Infosec #RCE
##🔴 CVE-2026-78159 - Critical (9.8)
The The Events Calendar plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 6.17.3 via the parse_array function. This is due to insufficient validation of the widget 'classes' map, allowing a plain-arr...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-78159/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-12T09:33:41
2 posts
🟠 CVE-2026-16482 - High (7.5)
The rtMedia for WordPress, BuddyPress and bbPress plugin for WordPress is vulnerable to time-based blind SQL Injection via the 'compare' parameter in all versions up to, and including, 4.7.11 due to insufficient escaping on the user supplied param...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-16482/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-16482 - High (7.5)
The rtMedia for WordPress, BuddyPress and bbPress plugin for WordPress is vulnerable to time-based blind SQL Injection via the 'compare' parameter in all versions up to, and including, 4.7.11 due to insufficient escaping on the user supplied param...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-16482/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-12T09:33:41
2 posts
🟠 CVE-2026-78175 - High (8.8)
The Tutor LMS – eLearning and online course solution plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 4.0.7 via the `withdraw_method_field` parameter of the `tutor_save_withdraw_account` AJAX handl...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-78175/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-78175 - High (8.8)
The Tutor LMS – eLearning and online course solution plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 4.0.7 via the `withdraw_method_field` parameter of the `tutor_save_withdraw_account` AJAX handl...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-78175/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-12T09:33:36
2 posts
🟠 CVE-2026-85200 - High (7.5)
The GEO my WP plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 4.5.5.3 via the gmw_posts_locator_ajax_info_window_loader function. This makes it possible for unauthenticated attackers to include and ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-85200/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-85200 - High (7.5)
The GEO my WP plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 4.5.5.3 via the gmw_posts_locator_ajax_info_window_loader function. This makes it possible for unauthenticated attackers to include and ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-85200/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-12T08:16:24.240000
6 posts
2 repos
CVE-2026-78006: The Events Calendar plugin ≤6.17.4 has a CRITICAL RCE flaw. Unauthenticated attackers can run code via comment handling — disable event comments until patched. Review vendor advisories. https://radar.offseq.com/threat/the-the-events-calendar-plugin-for-wordpress-is-vulnerable-to-remote-code-execution-in-all-versions-up-6446d1c8dfcb6a24 #OffSeq #WordPress #CVE202678006 #RCE
##CVE-2026-78006: CRITICAL RCE in The Events Calendar plugin (<=6.17.4) for WordPress. Unauthenticated attackers can exploit comments to run code on the server. Disable event comments now & check for patches. https://radar.offseq.com/threat/cve-2026-78006-cwe-502-deserialization-of-untrusted-data-in-stellarwp-the-events-calendar-efa20e86741ba4b3 #OffSeq #WordPress #RCE #Vuln
##🔴 CVE-2026-78006 - Critical (9.8)
The The Events Calendar plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 6.17.4 via the is_safe_widget_instance function. This is due to insufficient protection in is_safe_widget_instance, which can...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-78006/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-78006: The Events Calendar plugin ≤6.17.4 has a CRITICAL RCE flaw. Unauthenticated attackers can run code via comment handling — disable event comments until patched. Review vendor advisories. https://radar.offseq.com/threat/the-the-events-calendar-plugin-for-wordpress-is-vulnerable-to-remote-code-execution-in-all-versions-up-6446d1c8dfcb6a24 #OffSeq #WordPress #CVE202678006 #RCE
##CVE-2026-78006: CRITICAL RCE in The Events Calendar plugin (<=6.17.4) for WordPress. Unauthenticated attackers can exploit comments to run code on the server. Disable event comments now & check for patches. https://radar.offseq.com/threat/cve-2026-78006-cwe-502-deserialization-of-untrusted-data-in-stellarwp-the-events-calendar-efa20e86741ba4b3 #OffSeq #WordPress #RCE #Vuln
##🔴 CVE-2026-78006 - Critical (9.8)
The The Events Calendar plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 6.17.4 via the is_safe_widget_instance function. This is due to insufficient protection in is_safe_widget_instance, which can...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-78006/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-12T04:16:45.040000
1 posts
🟠 CVE-2026-86093 - High (7.5)
IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.5 could allow an attacker with the ability to control or impersonate a DRDA server endpoint to execute arbitrary commands on Db2 clients due to a stack-based buffer overflow that improperly co...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-86093/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-12T04:16:42.757000
4 posts
A critical ConnectWise ScreenConnect vulnerability, CVE-2026-84869, is actively exploited in the wild. Patch your servers now to stop remote attacks.
#ConnectWise #ScreenConnect #CVE202684869 #Cybersecurity #Vulnerability
##A critical ConnectWise ScreenConnect vulnerability, CVE-2026-84869, is actively exploited in the wild. Patch your servers now to stop remote attacks.
#ConnectWise #ScreenConnect #CVE202684869 #Cybersecurity #Vulnerability
##🚨 [CISA-2026:0911] CISA Adds 4 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0911)
CISA has added 4 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2026-42016 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-42016)
- Name: JFrog Artifactory Incorrect Authorization Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: JFrog
- Product: Artifactory
- Notes: https://docs.jfrog.com/releases/docs/jfrog-security-advisories ; https://docs.jfrog.com/releases/docs/artifactory-self-managed-releases ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-42016
⚠️ CVE-2026-42018 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-42018)
- Name: JFrog Artifactory Improper Authentication Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: JFrog
- Product: Artifactory
- Notes: https://docs.jfrog.com/releases/docs/jfrog-security-advisories ; https://docs.jfrog.com/releases/docs/artifactory-self-managed-releases ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-42018
⚠️ CVE-2026-84869 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-84869)
- Name: ConnectWise ScreenConnect Improper Privilege Management and Missing Authorization Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: ConnectWise
- Product: ScreenConnect
- Notes: https://www.connectwise.com/company/trust/security-bulletins/2026-09-08-screenconnect-bulletin ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-84869
⚠️ CVE-2026-85706 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85706)
- Name: GitLab Community Edition and Enterprise Edition Path Traversal Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: GitLab
- Product: Community Edition and Enterprise Edition
- Notes: https://docs.gitlab.com/releases/patches/patch-release-gitlab-19-3-2-released/ ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-85706
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260911 #cisa20260911 #cve_2026_42016 #cve_2026_42018 #cve_2026_84869 #cve_2026_85706 #cve202642016 #cve202642018 #cve202684869 #cve202685706
##CVE ID: CVE-2026-84869
Vendor: ConnectWise
Product: ScreenConnect
Date Added: 2026-09-11
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-84869
updated 2026-09-12T04:16:33.587000
9 posts
1 repos
CRITICAL SOC ALERT: CVE-2026-42018 exposes JFrog Artifactory via improper auth and token leakage. Active KEV exploitation verified. Access our TSUITE brief for Splunk, Sentinel, QRadar queries, and endpoint hardening steps to neutralize attacker persistence. https://thecybermind.co/9t6b
##CRITICAL CISA KEV ALERT: CVE-2026-42018 targets JFrog Artifactory via improper auth and token leakage. Active exploitation verified. Access our CSUITE Brief for technical execution vectors, asset integrity rules, and endpoint hardening steps to protect your enterprise perimeter. https://thecybermind.co/22sa
##⚠️ CRITICAL: Attackers Chain JFrog Artifactory Flaws to Gain Admin Control and Plant Backdoors
Attackers are chaining multiple JFrog Artifactory vulnerabilities (CVE-2026-42018, CVE-2026-42016, CVE-2026-82329) to escalate from anonymous users to administrator control on self-hosted instances. This grants them ability to plant backdoors and execute arbitrary shell commands in your build pipel…
🤖 AI generated summary
##CRITICAL SOC ALERT: CVE-2026-42018 exposes JFrog Artifactory via improper auth and token leakage. Active KEV exploitation verified. Access our TSUITE brief for Splunk, Sentinel, QRadar queries, and endpoint hardening steps to neutralize attacker persistence. https://thecybermind.co/9t6b
##CRITICAL CISA KEV ALERT: CVE-2026-42018 targets JFrog Artifactory via improper auth and token leakage. Active exploitation verified. Access our CSUITE Brief for technical execution vectors, asset integrity rules, and endpoint hardening steps to protect your enterprise perimeter. https://thecybermind.co/22sa
##⚠️ CRITICAL: Attackers Chain JFrog Artifactory Flaws to Gain Admin Control and Plant Backdoors
Attackers are chaining multiple JFrog Artifactory vulnerabilities (CVE-2026-42018, CVE-2026-42016, CVE-2026-82329) to escalate from anonymous users to administrator control on self-hosted instances. This grants them ability to plant backdoors and execute arbitrary shell commands in your build pipel…
🤖 AI generated summary
##🚨 [CISA-2026:0911] CISA Adds 4 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0911)
CISA has added 4 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2026-42016 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-42016)
- Name: JFrog Artifactory Incorrect Authorization Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: JFrog
- Product: Artifactory
- Notes: https://docs.jfrog.com/releases/docs/jfrog-security-advisories ; https://docs.jfrog.com/releases/docs/artifactory-self-managed-releases ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-42016
⚠️ CVE-2026-42018 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-42018)
- Name: JFrog Artifactory Improper Authentication Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: JFrog
- Product: Artifactory
- Notes: https://docs.jfrog.com/releases/docs/jfrog-security-advisories ; https://docs.jfrog.com/releases/docs/artifactory-self-managed-releases ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-42018
⚠️ CVE-2026-84869 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-84869)
- Name: ConnectWise ScreenConnect Improper Privilege Management and Missing Authorization Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: ConnectWise
- Product: ScreenConnect
- Notes: https://www.connectwise.com/company/trust/security-bulletins/2026-09-08-screenconnect-bulletin ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-84869
⚠️ CVE-2026-85706 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85706)
- Name: GitLab Community Edition and Enterprise Edition Path Traversal Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: GitLab
- Product: Community Edition and Enterprise Edition
- Notes: https://docs.gitlab.com/releases/patches/patch-release-gitlab-19-3-2-released/ ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-85706
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260911 #cisa20260911 #cve_2026_42016 #cve_2026_42018 #cve_2026_84869 #cve_2026_85706 #cve202642016 #cve202642018 #cve202684869 #cve202685706
##CVE ID: CVE-2026-42018
Vendor: JFrog
Product: Artifactory
Date Added: 2026-09-11
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-42018
Active exploitation chains CVE-2026-42018 and CVE-2026-42016 to bypass authentication on self-hosted JFrog Artifactory and deploy a Rust backdoor with C2. CVE-2026-82329 is also abused to create admin tokens. This enables full server takeover and supply chain compromise. #JFrog #Artifactory #SupplyChainSecurity
https://cyberworldops.eu/en/attackers-chain-jfrog-artifactory-flaws-to-deploy-rust-backdoor
##updated 2026-09-12T04:16:32.483000
6 posts
🔵 THREAT INTELLIGENCE
CISA Adds 5 Actively Exploited Artifactory, ScreenConnect, and RouterOS Flaws to KEV
Vulnerability | CRITICAL
CVEs: CVE-2026-42016
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added five security flaws impacting JFrog Artifactory, ConnectWise...
Full analysis:
https://www.yazoul.net/news/article/cisa-adds-5-actively-exploited-artifactory-screenconnect-and-routeros-flaws-to-k
by Yazoul AI
##⚠️ CRITICAL: Attackers Chain JFrog Artifactory Flaws to Gain Admin Control and Plant Backdoors
Attackers are chaining multiple JFrog Artifactory vulnerabilities (CVE-2026-42018, CVE-2026-42016, CVE-2026-82329) to escalate from anonymous users to administrator control on self-hosted instances. This grants them ability to plant backdoors and execute arbitrary shell commands in your build pipel…
🤖 AI generated summary
##⚠️ CRITICAL: Attackers Chain JFrog Artifactory Flaws to Gain Admin Control and Plant Backdoors
Attackers are chaining multiple JFrog Artifactory vulnerabilities (CVE-2026-42018, CVE-2026-42016, CVE-2026-82329) to escalate from anonymous users to administrator control on self-hosted instances. This grants them ability to plant backdoors and execute arbitrary shell commands in your build pipel…
🤖 AI generated summary
##🚨 [CISA-2026:0911] CISA Adds 4 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0911)
CISA has added 4 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2026-42016 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-42016)
- Name: JFrog Artifactory Incorrect Authorization Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: JFrog
- Product: Artifactory
- Notes: https://docs.jfrog.com/releases/docs/jfrog-security-advisories ; https://docs.jfrog.com/releases/docs/artifactory-self-managed-releases ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-42016
⚠️ CVE-2026-42018 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-42018)
- Name: JFrog Artifactory Improper Authentication Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: JFrog
- Product: Artifactory
- Notes: https://docs.jfrog.com/releases/docs/jfrog-security-advisories ; https://docs.jfrog.com/releases/docs/artifactory-self-managed-releases ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-42018
⚠️ CVE-2026-84869 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-84869)
- Name: ConnectWise ScreenConnect Improper Privilege Management and Missing Authorization Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: ConnectWise
- Product: ScreenConnect
- Notes: https://www.connectwise.com/company/trust/security-bulletins/2026-09-08-screenconnect-bulletin ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-84869
⚠️ CVE-2026-85706 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85706)
- Name: GitLab Community Edition and Enterprise Edition Path Traversal Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: GitLab
- Product: Community Edition and Enterprise Edition
- Notes: https://docs.gitlab.com/releases/patches/patch-release-gitlab-19-3-2-released/ ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-85706
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260911 #cisa20260911 #cve_2026_42016 #cve_2026_42018 #cve_2026_84869 #cve_2026_85706 #cve202642016 #cve202642018 #cve202684869 #cve202685706
##CVE ID: CVE-2026-42016
Vendor: JFrog
Product: Artifactory
Date Added: 2026-09-11
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-42016
Active exploitation chains CVE-2026-42018 and CVE-2026-42016 to bypass authentication on self-hosted JFrog Artifactory and deploy a Rust backdoor with C2. CVE-2026-82329 is also abused to create admin tokens. This enables full server takeover and supply chain compromise. #JFrog #Artifactory #SupplyChainSecurity
https://cyberworldops.eu/en/attackers-chain-jfrog-artifactory-flaws-to-deploy-rust-backdoor
##updated 2026-09-12T03:30:28
3 posts
🔴 CVE-2026-87719 - Critical (9.9)
GitLab has remediated an issue in GitLab EE affecting all versions from 18.3 before 19.1.8, 19.2 before 19.2.6, and 19.3 before 19.3.2 that under certain conditions could allow an authenticated user with Duo Chat access to obtain Advanced Search i...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-87719/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-87719 - Critical (9.9)
GitLab has remediated an issue in GitLab EE affecting all versions from 18.3 before 19.1.8, 19.2 before 19.2.6, and 19.3 before 19.3.2 that under certain conditions could allow an authenticated user with Duo Chat access to obtain Advanced Search i...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-87719/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##https://thecybersecguru.com/news/gitlab-cve-2026-85706-cvss-10-path-traversal/
##updated 2026-09-12T00:31:35
2 posts
CISA Malcolm (<=26.05.x) faces CRITICAL risk: CVE-2026-90456 allows admin takeover via default creds in inventory component if setup isn't run. Ensure unique passwords! https://radar.offseq.com/threat/cve-2026-90456-cwe-1392-use-of-default-credentials-in-cisa-malcolm-2141cfec27dc9c24 #OffSeq #CISAMalcolm #CVE202690456 #infosec
##CISA Malcolm (<=26.05.x) faces CRITICAL risk: CVE-2026-90456 allows admin takeover via default creds in inventory component if setup isn't run. Ensure unique passwords! https://radar.offseq.com/threat/cve-2026-90456-cwe-1392-use-of-default-credentials-in-cisa-malcolm-2141cfec27dc9c24 #OffSeq #CISAMalcolm #CVE202690456 #infosec
##updated 2026-09-12T00:17:06.440000
2 posts
🟠 CVE-2026-89266 - High (8.2)
stb_vorbis through 1.22 contains a heap buffer overflow in start_decoder() where the codebook multiplicands allocation size is truncated from size_t to int. Attackers can craft a malicious Ogg Vorbis file with large entries and dimensions values t...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89266/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-89266 - High (8.2)
stb_vorbis through 1.22 contains a heap buffer overflow in start_decoder() where the codebook multiplicands allocation size is truncated from size_t to int. Attackers can craft a malicious Ogg Vorbis file with large entries and dimensions values t...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89266/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-11T22:16:48.243000
2 posts
CVE-2026-90460: OpenStack Keystone <29.0.3 HIGH risk flaw allows delegated tokens to manage credentials & read sensitive data (MFA seeds) via /v3/credentials. Limit delegated token use & monitor access. Patch status pending. https://radar.offseq.com/threat/an-issue-was-discovered-in-openstack-keystone-before-2903-cve-2026-90460-aeabddf0e52e1490 #OffSeq #OpenStack #Infosec
##CVE-2026-90460: OpenStack Keystone <29.0.3 HIGH risk flaw allows delegated tokens to manage credentials & read sensitive data (MFA seeds) via /v3/credentials. Limit delegated token use & monitor access. Patch status pending. https://radar.offseq.com/threat/an-issue-was-discovered-in-openstack-keystone-before-2903-cve-2026-90460-aeabddf0e52e1490 #OffSeq #OpenStack #Infosec
##updated 2026-09-11T22:16:37.537000
1 posts
🟠 CVE-2026-49846 - High (7.5)
libks provides foundational support for signalwire C products. Prior to version 2.0.11, `clean_uri()` in libks's HTTP request parser fails to reject URIs whose path has more segments than its internal canonicalization buffer can hold. The canonica...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-49846/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-11T21:31:22
1 posts
🟠 CVE-2026-79393 - High (7.5)
A heap-based buffer overflow vulnerability in the WS-Addressing Action transformation function in the Sofia IPC daemon in Xiongmai IP Camera XM530 firmware HMT.CM2005-v220608.1837 and earlier allows remote unauthenticated attackers to cause a deni...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-79393/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-11T21:17:58.153000
1 posts
🟠 CVE-2026-89260 - High (7.5)
MoguBlog through 6.2 contains an XML external entity injection vulnerability in the WeChat callback handler at POST /wechat/wechatCheck. The WechatRestApi.index() method passes the raw request body to SignUtil.xmlToMap(), which uses an unhardened ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89260/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-11T21:17:02.457000
1 posts
🟠 CVE-2026-62112 - High (7.6)
Editor SQL Injection in Amelia <= 2.4.9 versions.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-62112/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-11T20:18:54.030000
1 posts
🔴 CVE-2026-79395 - Critical (9.8)
An improper authentication vulnerability in the WS-Security (wsse:UsernameToken) verification routine within the Sofia IPC daemon in Xiongmai IP Camera XM530 firmware HMT.CM2005-v220608.1837 and earlier allows remote attackers to bypass authentica...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-79395/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-11T20:17:14.060000
1 posts
🔴 CVE-2026-53952 - Critical (9.8)
GetSimple CMS is a content management system (CMS), and GetSimple CMS CE is the community edition of that CMS. A logic flaw in GetSimple CMS (v3.4.0a and below) and GetSimpleCMS-CE (v3.3.22 and below) allows unauthenticated attackers to create a n...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-53952/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-11T18:31:32
1 posts
🟠 CVE-2026-89262 - High (7.5)
MoguBlog through 6.2 contains an authorization bypass vulnerability in the comment deletion endpoint that performs ownership checks against request-body fields instead of the authenticated principal. Attackers can delete arbitrary comments and the...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89262/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-11T18:16:56.877000
1 posts
CVE-2026-19646 (CRITICAL, CVSS 9.1) affects IBM Common Licensing 9.0.x & ART 9.0. Improper Host header validation enables remote redirection to attacker domains. No patch yet — monitor IBM guidance. https://radar.offseq.com/threat/cve-2026-19646-cwe-1149-sei-cert-oracle-secure-coding-standard-for-java-guidelines-15-platform-9a01f253f72c9218 #OffSeq #Vuln #IBM #InfoSec
##updated 2026-09-11T17:35:21.440000
1 posts
CVE-2026-86781: SSL Zen plugin (<4.7.40) has a CRITICAL auth flaw — any WP user can download TLS private key & certs, risking site impersonation. Patch to 4.7.40+ now. https://radar.offseq.com/threat/cve-2026-86781-cwe-287-improper-authentication-in-ssl-zen-ssl-certificate-installer-https-redirects-fc40efb64c1b1964 #OffSeq #WordPress #Vuln #TLS
##updated 2026-09-11T16:55:29.047000
1 posts
CVE-2026-84890: undici decompression bomb risk. Malicious upstream can expand tiny payloads to hundreds of MB, exhausting client memory. CVSS 5.9. Patch status unknown—review your undici usage and add limits if possible. Details: https://www.valtersit.com/cve/CVE-2026-84890/ #CVE
##updated 2026-09-11T16:17:50.073000
1 posts
🟠 CVE-2026-89176 - High (8.8)
WeenyGenius, a computer lab management system developed by Howyar Technologies, has a Missing Authentication vulnerability. Unauthenticated attackers on the same network can easily spoof student or teacher endpoints. Impersonating a student can di...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89176/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-11T16:17:48.057000
1 posts
🟠 CVE-2026-87908 - High (7.5)
multiparty is a Node.js library for parsing multipart/form-data request bodies. In versions from 2.1.0 up to but not including 4.3.1, the parser does not bound the amount of memory used while accumulating the headers of a single multipart part. An...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-87908/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-11T15:32:48
4 posts
Progress patched a critical Chef Automate vulnerability tracked as CVE-2026-80462. Fix this Chef Automate vulnerability to stop DevOps account takeovers.
#ChefAutomate #CVE202680462 #DevOpsSecurity #Cybersecurity #InfoSec
##Progress patched a critical Chef Automate vulnerability tracked as CVE-2026-80462. Fix this Chef Automate vulnerability to stop DevOps account takeovers.
#ChefAutomate #CVE202680462 #DevOpsSecurity #Cybersecurity #InfoSec
##🔴 CVE-2026-80462 - Critical (10)
A vulnerability in the Chef Automate API gateway and identity validation path may allow an unauthenticated actor to gain elevated access to protected Chef Automate functionality under specific conditions.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-80462/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CRITICAL vuln (CVE-2026-80462) in Progress Chef Automate (4.13.516 – 4.13.519): API gateway auth bypass enables unauth’d privilege escalation. Restrict API access & review logs until patch confirmed. https://radar.offseq.com/threat/cve-2026-80462-cwe-306-missing-authentication-for-critical-function-in-progress-software-chef-automate-cfce7409b20e5b5f #OffSeq #ChefAutomate #vuln #CVE202680462
##updated 2026-09-11T15:32:40
1 posts
Cloud Foundry UAA hit by CRITICAL vuln (CVE-2026-47839, CVSS 9.2): OIDC users with wildcard group mapping can gain uaa.admin. Review configs, avoid wildcards, and monitor for patches. https://radar.offseq.com/threat/cve-2026-47839-vulnerability-in-cloud-foundry-foundation-uaa-fe07e0d8fe092d86 #OffSeq #CloudSecurity #CVE202647839 #Infosec
##updated 2026-09-11T15:17:06.937000
2 posts
Orthanc DICOM Server is affected by CVE-2026-87020, an integer overflow in image pitch calculation enabling authenticated heap out-of-bounds write via malicious PNG. It matters for clinical environments where exploitation risks service disruption and imaging integrity. #OrthancServer #DicomSecurity #HeapCorruption
https://cyberworldops.eu/en/orthanc-dicom-server-flaw-allows-authenticated-attackers-to-corrupt
##Orthanc DICOM Server is affected by CVE-2026-87020, an integer overflow in image pitch calculation enabling authenticated heap out-of-bounds write via malicious PNG. It matters for clinical environments where exploitation risks service disruption and imaging integrity. #OrthancServer #DicomSecurity #HeapCorruption
https://cyberworldops.eu/en/orthanc-dicom-server-flaw-allows-authenticated-attackers-to-corrupt
##updated 2026-09-11T15:17:06.230000
1 posts
CVE-2026-82100: CRITICAL path traversal in IBM DataStage on Cloud Pak for Data 5.4.0.0 (CVSS 9.6). Remote authenticated attackers can cause denial of service via improper directory handling. Restrict access & monitor until patch confirmed. https://radar.offseq.com/threat/cve-2026-82100-cwe-22-improper-limitation-of-a-pathname-to-a-restricted-directory-path-traversal-in-2ededf9f5c4eff65 #OffSeq #CVE202682100 #IBM #infosec
##updated 2026-09-11T15:17:04.913000
1 posts
🟠 CVE-2026-80469 - High (8.3)
An attacker may achieve arbitrary code execution on a target system by uploading a malicious device driver package, bypassing driver verification mechanisms, and triggering the execution of
attacker-controlled code. User interaction is required.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-80469/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-11T15:17:03.373000
1 posts
🟠 CVE-2026-71416 - High (8.8)
Headroom compresses data before the data reaches a large language model. Prior to version 0.35.0, the Headroom WebSocket server does not validate the `Origin` header of incoming client WebSocket requests before forwarding the request to the upstre...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-71416/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-11T14:56:50.613000
2 posts
CVE-2026-82107: CRITICAL vuln in IBM DataStage on Cloud Pak for Data 5.4.0.0 (CVSS 9.6). Authenticated attackers can bypass authentication & access sensitive data. No patch — limit access & monitor for abuse. https://radar.offseq.com/threat/cve-2026-82107-cwe-287-improper-authentication-in-ibm-datastage-on-cloud-pak-for-data-adaefa5e3ef6716b #OffSeq #Vuln #IBM #InfoSec
##🔴 CVE-2026-82107 - Critical (9.6)
IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to obtain sensitive information and bypass security restrictions due to improper authentication.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-82107/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-11T14:17:36.847000
1 posts
🟠 CVE-2026-89212 - High (8.6)
A flaw resulting in XML external entity (XXE) was found in Akana API Platform in which references were improperly restricted during XML-to-JSON processing. The issue affects Akana versions 2026.1, 2025.1.1, and all versions before 2024.1.6 (includ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89212/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-11T13:18:18.543000
1 posts
Dell patched critical Dell ThinOS vulnerabilities, including CVE-2026-81467. Update your ThinOS clients now to stop remote code execution attacks.
##updated 2026-09-11T12:52:16.507000
1 posts
1 repos
Executive alert: CVE-2026-86060 actively threatens MikroTik RouterOS infrastructure. Review board-ready risk evaluation protocols, network asset integrity measures, and strategic remediation steps to protect your enterprise value today.
##updated 2026-09-11T12:33:34
1 posts
CVE-2026-89259 (CRITICAL): gohugoio Hugo <0.165.0 lets Node tools like TailwindCSS bypass security.exec.allow list, enabling file access outside project dirs. Upgrade to 0.165.0 or restrict exec.allow in hugo.toml. https://radar.offseq.com/threat/cve-2026-89259-execution-with-unnecessary-privileges-in-gohugoio-hugo-3319ecf718eb9ea0 #OffSeq #CVE #Hugo #InfoSec
##updated 2026-09-11T09:31:31
1 posts
🟠 CVE-2026-89178 - High (8.8)
WeenyGenius, a computer lab management system by Howyar Technologies, has an Origin Validation Error vulnerability. Unauthenticated attackers on the same network can spoof the teacher workstation and send broadcast packets, causing student compute...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89178/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-11T09:31:31
1 posts
🟠 CVE-2026-89177 - High (8.8)
WeenyGenius, a computer lab management system by Howyar Technologies, has a Use of Insecure Protocol vulnerability. Due to the reliance on ZMTP Null mode, unauthenticated attackers on the same network can capture packets to leak transmitted data, ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89177/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-11T09:31:31
1 posts
🟠 CVE-2026-89174 - High (7.5)
Smart Video Intercom System developed by Kingdom Communication Associated has a Missing Brute-force Protection vulnerability. Unauthenticated remote attackers can gain access to valid accounts through a large number of login attempts.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89174/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-11T06:31:14
1 posts
Red Hat Advanced Cluster Management for Kubernetes 2 is affected by CVE-2026-89060 (HIGH, CVSS 7.7): managed-cluster identities may access hub Secrets outside their namespace due to authorization flaws. Monitor Red Hat and restrict permissions. https://radar.offseq.com/threat/cve-2026-89060-incorrect-behavior-order-authorization-before-parsing-and-canonicalization-in-red-hat-70cd9b74c8429f45 #OffSeq #Kubernetes #RedHat
##updated 2026-09-11T06:31:14
1 posts
CVE-2026-8778 (CRITICAL): MIPL Grouped Checkout Fields for WooCommerce ≤1.2.2 suffers from unrestricted file upload due to missing file type validation. Remote code execution possible by unauthenticated attackers. Restrict uploads & monitor! https://radar.offseq.com/threat/cve-2026-8778-cwe-434-unrestricted-upload-of-file-with-dangerous-type-in-mulika-mipl-grouped-checkout-a571f695f51796b8 #OffSeq #WordPress #CVE20268778
##updated 2026-09-11T00:31:23
1 posts
🟠 CVE-2026-77807 - High (7.5)
The AcyMailing – An Ultimate Newsletter Plugin and Marketing Automation Solution for WordPress plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 11.0.4 via the `user[name]` Parameter. This makes it p...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77807/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-11T00:31:23
1 posts
🟠 CVE-2026-81940 - High (8.8)
IBM Langflow OSS 1.0.0 through 1.11.5 could allow a remote authenticated attacker to execute arbitrary code due to improper neutralization of special characters in flow display names.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-81940/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-11T00:31:23
1 posts
🟠 CVE-2026-84889 - High (8.8)
IBM Langflow OSS 1.0.0 through 1.10.3 could allow a remote authenticated attacker to execute arbitrary code due to improper limitation of a pathname to a restricted directory.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84889/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-11T00:31:16
1 posts
🟠 CVE-2026-87958 - High (8.1)
IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.5 is vulnerable to a denial of service where a specific functionality on a Db2 server can be disabled by a privileged user under certain conditions.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-87958/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-10T21:22:13
1 posts
A critical CVSS 9.5 OmniRoute RCE flaw (CVE-2026-88062) has public PoC exploit code available. Upgrade your AI gateway immediately to prevent compromises.
##updated 2026-09-10T21:17:53.160000
2 posts
🚨 CVE-2026-89094: Forgejo before 16.0.4 allows remote code execution via a crafted template repository because template expansion on files in .forgejo/template is mishandled.
CVSS: 9.9
Foregejo Update/Notes: https://codeberg.org/forgejo/forgejo/src/branch/forgejo/release-notes-published/16.0.4.md
##A critical Forgejo remote code execution flaw, tracked as CVE-2026-89094, threatens Git servers. Patch this Forgejo remote code execution bug today.
#Forgejo #RemoteCodeExecution #CVE202689094 #Cybersecurity #DevSecOps
##updated 2026-09-10T19:54:25.810000
3 posts
Critical ConfigServer Firewall Flaw Allows Unauthenticated Remote Command Execution
ConfigServer Security & Firewall (CSF) patched a critical shell injection vulnerability (CVE-2026-65638) in its MESSENGER service that allows unauthenticated remote code execution.
**If you run ConfigServer Security & Firewall (CSF) on your Linux or cPanel/WHM servers, update to version 16.30 right away (on cPanel systems run `yum clean all` then `/scripts/update-packages`) to close CVE-2026-65638. If you can't update immediately, turn the vulnerable feature off by setting `MESSENGER = 0` in `/etc/csf/csf.conf`, restart with `systemctl restart csf lfd`. Then check your logs for any unexpected commands run under the CSF service account.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/critical-configserver-firewall-flaw-allows-unauthenticated-remote-command-execution-b-r-4-6-3/gD2P6Ple2L
Critical ConfigServer Firewall Flaw Allows Unauthenticated Remote Command Execution
ConfigServer Security & Firewall (CSF) patched a critical shell injection vulnerability (CVE-2026-65638) in its MESSENGER service that allows unauthenticated remote code execution.
**If you run ConfigServer Security & Firewall (CSF) on your Linux or cPanel/WHM servers, update to version 16.30 right away (on cPanel systems run `yum clean all` then `/scripts/update-packages`) to close CVE-2026-65638. If you can't update immediately, turn the vulnerable feature off by setting `MESSENGER = 0` in `/etc/csf/csf.conf`, restart with `systemctl restart csf lfd`. Then check your logs for any unexpected commands run under the CSF service account.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/critical-configserver-firewall-flaw-allows-unauthenticated-remote-command-execution-b-r-4-6-3/gD2P6Ple2L
Two critical CSF plugin vulnerabilities, CVE-2026-65638 and CVE-2026-65639, allow remote code execution. Patch your ConfigServer firewall immediately.
#CSFPlugin #Cybersecurity #CVE202665639 #Vulnerabilities #InfoSec
##updated 2026-09-10T19:54:25.810000
1 posts
Two critical CSF plugin vulnerabilities, CVE-2026-65638 and CVE-2026-65639, allow remote code execution. Patch your ConfigServer firewall immediately.
#CSFPlugin #Cybersecurity #CVE202665639 #Vulnerabilities #InfoSec
##updated 2026-09-10T18:33:12
1 posts
Three critical Apache Camel K vulnerabilities, including CVE-2026-80352, allow code injection and eval injection. Patch these critical flaws immediately.
##updated 2026-09-10T15:33:58
2 posts
2 repos
¿Seguimos confiando demasiado?
Anderson hablaba de confianza en seguridad informática a comienzos de los años 70.
Más de cincuenta años después tenemos Cloud, SaaS, Zero Trust, MFA, PAM, EDR y tecnologías que en aquella época hubieran parecido ciencia ficción.
Entonces me hice una pregunta:
¿El problema también cambió?
En lugar de buscar la respuesta en otro paper, decidí mirar algunas vulnerabilidades recientes:
CVE-2026-20079
CVE-2026-19490
CVE-2025-25249
CVE-2026-20212
Authentication bypass, problemas de memoria, componentes de infraestructura...
Vulnerabilidades técnicamente muy diferentes.
Pero hay una pregunta interesante que podemos hacerle a cada una:
¿Qué tuvo que asumir el sistema para que esa vulnerabilidad pudiera existir?
De eso hablaremos próximamente
¿Seguimos confiando demasiado? —
De Anderson a la Inteligencia Artificial
Safely detect Citrix NetScaler SAML auth bypass (CVE-2026-19490) https://github.com/BishopFox/CVE-2026-19490-check
##updated 2026-09-10T12:49:02.630000
1 posts
2 repos
https://github.com/SneakyNachos/CVE-2026-87491-and-CVE-2026-85046-the-bagel-fell-off-the-counter
🏆 New Achievement! Seventh Inning Slaughter!
CHANGELOG v2026.09.09 — Google Chrome (Unscheduled Hotfix #7)
FIXED: Nothing you did. ADDED: CVE-2026-87491, an out-of-bounds write in the V8 JavaScript and WebAssembly engine, actively exploited in the wild via crafted HTML pages. Remote attackers can execute arbitrary code inside your browser sandbox, corrupt the heap, expose sensitive data, or simply crash the party. This is the seventh actively exploited Chrome zero-day patched this year. (1/2)
##updated 2026-09-10T12:48:17.580000
6 posts
2 repos
¿Seguimos confiando demasiado?
Anderson hablaba de confianza en seguridad informática a comienzos de los años 70.
Más de cincuenta años después tenemos Cloud, SaaS, Zero Trust, MFA, PAM, EDR y tecnologías que en aquella época hubieran parecido ciencia ficción.
Entonces me hice una pregunta:
¿El problema también cambió?
En lugar de buscar la respuesta en otro paper, decidí mirar algunas vulnerabilidades recientes:
CVE-2026-20079
CVE-2026-19490
CVE-2025-25249
CVE-2026-20212
Authentication bypass, problemas de memoria, componentes de infraestructura...
Vulnerabilidades técnicamente muy diferentes.
Pero hay una pregunta interesante que podemos hacerle a cada una:
¿Qué tuvo que asumir el sistema para que esa vulnerabilidad pudiera existir?
De eso hablaremos próximamente
¿Seguimos confiando demasiado? —
De Anderson a la Inteligencia Artificial
📰 Cisco Firewall Flaws Actively Exploited by Ransomware & State Actors
Cisco warns multiple threat groups, including Qilin ransomware and state actors, are exploiting a critical auth bypass flaw (CVE-2026-20079) in Secure Firewall Management Center (FMC). CVSS 10.0. Patch now! #CVE202620079 #Cisco #Ransomware
###Cisco confirms CVE-2026-20079 #SecureFMC flaw exploited in attacks
##Reward: You've unlocked the Mandatory Remediation Sprint — a stackable negative buff. Enjoy your weekend.
https://tech-insider.org/cisco-fmc-cve-2026-20079-sandworm-qilin-2026
#CiscoFMC #CyberSecurity #CriticalVulnerability #Ransomware #CVSS10 #BudgetJustified (3/3)
##🏆 New Achievement! Perfect Score, Wrong Test!
Welcome, new player, to the Management Plane Tutorial. This is a mandatory segment. You cannot skip it. Your Cisco Firepower Management Console, CVE-2026-20079, has just rolled a CVSS 10.0 — a perfect score — and approximately 700 exposed instances are now enrolled in this questline whether they opted in or not. (1/3)
##The EU Cyber Resilience Act (CRA) takes effect today, September 11, mandating 24-hour vulnerability reporting from manufacturers of connected hardware and software. Simultaneously, state-backed threat actors are increasingly targeting EU officials via encrypted messaging apps for phishing attacks, and a critical Cisco Secure Firewall Management Center flaw (CVE-2026-20079) requires urgent patching. Geopolitically, tensions escalated in the Strait of Hormuz following Iranian claims of ship attacks after US actions, and conflicts continue in the Middle East. In technology, Google Threat Intelligence reported on an AI system capable of harvesting thousands of credentials autonomously.
##updated 2026-09-10T12:47:59.933000
2 posts
¿Seguimos confiando demasiado?
Anderson hablaba de confianza en seguridad informática a comienzos de los años 70.
Más de cincuenta años después tenemos Cloud, SaaS, Zero Trust, MFA, PAM, EDR y tecnologías que en aquella época hubieran parecido ciencia ficción.
Entonces me hice una pregunta:
¿El problema también cambió?
En lugar de buscar la respuesta en otro paper, decidí mirar algunas vulnerabilidades recientes:
CVE-2026-20079
CVE-2026-19490
CVE-2025-25249
CVE-2026-20212
Authentication bypass, problemas de memoria, componentes de infraestructura...
Vulnerabilidades técnicamente muy diferentes.
Pero hay una pregunta interesante que podemos hacerle a cada una:
¿Qué tuvo que asumir el sistema para que esa vulnerabilidad pudiera existir?
De eso hablaremos próximamente
¿Seguimos confiando demasiado? —
De Anderson a la Inteligencia Artificial
🚨 CRITICAL THREAT BRIEF: CVE-2025-25249 (Fortinet FortiOS & Gateway Infrastructure)
Active exploitation verified by the CISA KEV matrix has placed enterprise network perimeters at risk due to a critical heap-based buffer overflow vulnerability.
🔗 Read the full intelligence brief: https://thecybermind.co/us4c
##updated 2026-09-10T06:31:55
1 posts
Palo-Alto are calling resellers and asking them to call customers to tell them to update their Palo-Alto PA and VM firewalls to cover CVE-2026-0310 - an unauthenticated XML parsing vulneraility which causes a buffer overflow leading to code execution, on the PA (physical) firewalls via the dataplane.
https://security.paloaltonetworks.com/CVE-2026-0310
HT @databeestje
##updated 2026-09-09T21:32:24
1 posts
CVE-2026-50894: Unrestricted file upload in easyadmin v2.0.2.2 enables authenticated RCE and full server takeover. CVSS not scored, but impact is critical. If you use easyadmin, restrict access and audit uploads now. Patch https://www.valtersit.com/cve/CVE-2026-50894/
##updated 2026-09-09T21:32:23
1 posts
CVE-2026-75170: Unauthenticated XSS in HubCore 14.1.1 via /loginController/doLogin language param. CVSS N/A, no patch yet. Attackers can inject arbitrary JS. Audit exposure and restrict access now. Details: https://www.valtersit.com/cve/CVE-2026-75170/ #CVE #infosec #XSS
##updated 2026-09-09T21:32:23
1 posts
CVE-2026-38961: Stored XSS in Netgate pfSense RSS Widget (versions 26.03, 25.11.1, CE 2.8.1). Malicious feed titles execute JS for any authenticated user viewing the dashboard. CVSS: N/A. Unpatched—restrict RSS access now. Details: https://www.valtersit.com/cve/CVE-2026-38961/ #C
##updated 2026-09-09T20:20:34.103000
1 posts
CVE-2026-75166: Insecure permission in MBS-Solutions X-Serie Gateway (V6_00_05) lets low-priv user run tcpdump as root, leading to RCE via -z flag. CVSS: N/A. Patch unknown—assume vulnerable. Restrict access & monitor now. https://www.valtersit.com/cve/CVE-2026-75166/ #CVE #infos
##updated 2026-09-09T16:04:24.933000
1 posts
CVE-2026-71626: Invoice Ninja v5.13.24 leaks sensitive data via webhook request components. Remote info exposure, no CVSS or patch yet. Review your instance now. Details: https://www.valtersit.com/cve/CVE-2026-71626/ #CVE #infosec #InvoiceNinja
##updated 2026-09-09T15:35:16
6 posts
VLC Media Player Flaws Allow Heap Corruption and Sensitive Data Disclosure
VideoLAN reports two vulnerabilities in VLC Media Player (CVE-2026-56711 and CVE-2026-73324) that allow attackers to corrupt heap memory or leak sensitive data via crafted PNG files and RTSP streams.
**If you use VLC Media Player (any version from 3.0.0 to 3.0.23), update it to the latest patched version as soon as VideoLAN releases it. Until you've updated, don't open media files, playlists, or RTSP streaming links that come from people or websites you don't know and trust.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/vlc-media-player-flaws-allow-heap-corruption-and-sensitive-data-disclosure-6-k-q-2-9/gD2P6Ple2L
https://thecybersecguru.com/news/vlc-media-player-vulnerabilities-cve-2026-56711-cve-2026-73324/
##VLC Media Player Flaws Allow Heap Corruption and Sensitive Data Disclosure
VideoLAN reports two vulnerabilities in VLC Media Player (CVE-2026-56711 and CVE-2026-73324) that allow attackers to corrupt heap memory or leak sensitive data via crafted PNG files and RTSP streams.
**If you use VLC Media Player (any version from 3.0.0 to 3.0.23), update it to the latest patched version as soon as VideoLAN releases it. Until you've updated, don't open media files, playlists, or RTSP streaming links that come from people or websites you don't know and trust.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/vlc-media-player-flaws-allow-heap-corruption-and-sensitive-data-disclosure-6-k-q-2-9/gD2P6Ple2L
https://thecybersecguru.com/news/vlc-media-player-vulnerabilities-cve-2026-56711-cve-2026-73324/
##🚨 Two VLC Media Player flaws can allow code execution and leak sensitive memory
Security researchers have disclosed two vulnerabilities affecting VLC Media Player versions 3.0.0 through 3.0.23.
⠀
CVE-2026-56711, rated 8.6, is a heap out-of-bounds write caused by an integer overflow in VLC's picture buffer allocation.
An attacker can craft a malicious PNG with manipulated dimensions that causes VLC to allocate an undersized memory buffer before writing beyond its boundaries.
The flaw can potentially lead to arbitrary code execution when the malicious image is opened directly or loaded through a playlist.
⠀
CVE-2026-73324, rated 6.9, affects VLC's RealRTSP handling.
A malicious RTSP server can send an oversized response that causes VLC to read beyond an allocated buffer and return adjacent heap memory to the attacker, potentially exposing sensitive information.
⠀
The vulnerable RealRTSP component is enabled in official VideoLAN builds, although some Linux distribution packages may compile VLC without it.
⠀
As of September 11, VLC 3.0.23 remains the current stable desktop release listed by VideoLAN and is affected by both vulnerabilities.
Users should avoid opening untrusted image files or RealRTSP playlist links until an updated release addressing the flaws becomes available.
Source: https://securityonline.info/vlc-media-player-vulnerabilities/
##Two VLC media player vulnerabilities (CVE-2026-56711, CVE-2026-73324) allow heap out-of-bounds write and read. No patch is available yet.
#VLC #VideoLAN #VLCvulnerability #CVE #HeapOverflow #MediaPlayer #InfoSec #IntegerOverflow #RTSP #PatchNow
##updated 2026-09-09T15:35:15
6 posts
VLC Media Player Flaws Allow Heap Corruption and Sensitive Data Disclosure
VideoLAN reports two vulnerabilities in VLC Media Player (CVE-2026-56711 and CVE-2026-73324) that allow attackers to corrupt heap memory or leak sensitive data via crafted PNG files and RTSP streams.
**If you use VLC Media Player (any version from 3.0.0 to 3.0.23), update it to the latest patched version as soon as VideoLAN releases it. Until you've updated, don't open media files, playlists, or RTSP streaming links that come from people or websites you don't know and trust.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/vlc-media-player-flaws-allow-heap-corruption-and-sensitive-data-disclosure-6-k-q-2-9/gD2P6Ple2L
https://thecybersecguru.com/news/vlc-media-player-vulnerabilities-cve-2026-56711-cve-2026-73324/
##VLC Media Player Flaws Allow Heap Corruption and Sensitive Data Disclosure
VideoLAN reports two vulnerabilities in VLC Media Player (CVE-2026-56711 and CVE-2026-73324) that allow attackers to corrupt heap memory or leak sensitive data via crafted PNG files and RTSP streams.
**If you use VLC Media Player (any version from 3.0.0 to 3.0.23), update it to the latest patched version as soon as VideoLAN releases it. Until you've updated, don't open media files, playlists, or RTSP streaming links that come from people or websites you don't know and trust.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/vlc-media-player-flaws-allow-heap-corruption-and-sensitive-data-disclosure-6-k-q-2-9/gD2P6Ple2L
https://thecybersecguru.com/news/vlc-media-player-vulnerabilities-cve-2026-56711-cve-2026-73324/
##🚨 Two VLC Media Player flaws can allow code execution and leak sensitive memory
Security researchers have disclosed two vulnerabilities affecting VLC Media Player versions 3.0.0 through 3.0.23.
⠀
CVE-2026-56711, rated 8.6, is a heap out-of-bounds write caused by an integer overflow in VLC's picture buffer allocation.
An attacker can craft a malicious PNG with manipulated dimensions that causes VLC to allocate an undersized memory buffer before writing beyond its boundaries.
The flaw can potentially lead to arbitrary code execution when the malicious image is opened directly or loaded through a playlist.
⠀
CVE-2026-73324, rated 6.9, affects VLC's RealRTSP handling.
A malicious RTSP server can send an oversized response that causes VLC to read beyond an allocated buffer and return adjacent heap memory to the attacker, potentially exposing sensitive information.
⠀
The vulnerable RealRTSP component is enabled in official VideoLAN builds, although some Linux distribution packages may compile VLC without it.
⠀
As of September 11, VLC 3.0.23 remains the current stable desktop release listed by VideoLAN and is affected by both vulnerabilities.
Users should avoid opening untrusted image files or RealRTSP playlist links until an updated release addressing the flaws becomes available.
Source: https://securityonline.info/vlc-media-player-vulnerabilities/
##Two VLC media player vulnerabilities (CVE-2026-56711, CVE-2026-73324) allow heap out-of-bounds write and read. No patch is available yet.
#VLC #VideoLAN #VLCvulnerability #CVE #HeapOverflow #MediaPlayer #InfoSec #IntegerOverflow #RTSP #PatchNow
##updated 2026-09-09T15:35:15
10 posts
📰 Check Point patches two critical 9.8 CVSS flaws in VPN products
Check Point patches two critical 9.8 CVSS vulnerabilities (CVE-2026-85102, CVE-2026-85103) in its VPN products. Flaws could allow unauthenticated RCE. Admins are urged to apply hotfixes immediately. #CyberSecurity #Vulnerability #VPN #PatchNow
##https://thecybersecguru.com/news/check-point-vpn-cve-2026-85102-cve-2026-85103/
##@cyberwald Bevor man hier einen Hersteller zu CVEs verurteilt, sollte man vielleicht tiefer recherchieren und dazu ein paar Fakten hinzufügen.
Beide Schwachstellen wurden intern entdeckt und bis zur Veröffentlichung gab es keine Hinweise darauf, dass sie in freier Wildbahn ausgenutzt wurden. Weiterhin gab es zu jedem CVE direkt entsprechende Anweisungen und Patches:
Darüber hinaus gibt es mittlerweile die Funktion Check Point Live Patch (CPLP), welches ein im Betriebssystem Gaia enthaltener Dienst zur Bereitstellung von Abwehrmaßnahmen ist. Es schließt kritische Schwachstellen im laufenden Betrieb durch gezielte In-Memory-Korrekturen (Live-Patches). -> https://support.checkpoint.com/results/sk/sk185114
#CheckPoint #CheckpointsoftwareTechnologies
#CheckPointsw
#CVE #CVE202685102 #CVE202685103
Dutch NCSC Warns of Imminent Check Point VPN Flaw Exploitation
The Dutch National Cyber Security Centrum is warning organizations to act fast - two critical flaws in Check Point VPN, tracked as CVE-2026-85102 and CVE-2026-85103, are likely to be exploited soon, with potentially severe consequences. Install security updates as soon as possible to protect yourself.
#CheckPointVpn #Cve202685102 #Cve202685103 #EmergingThreats #NationState
##Critical Check Point VPN Flaws Could Soon Trigger Remote Attacks, Dutch Cyber Agency Warns + Video
Critical Check Point VPN Flaws Could Soon Trigger Remote Attacks, Dutch Cyber Agency Warns A Dangerous Window Is Opening A new warning from the Dutch Nationaal Cyber Security Centrum (NCSC) is putting administrators of Check Point Security Gateways on high alert. Two critical vulnerabilities in Check Point VPN technology, tracked as CVE-2026-85102 and CVE-2026-85103,…
##Er zijn 2 kritieke kwetsbaarheden in Check Point VPN-producten, met de kenmerken CVE-2026-85102 en CVE-2026-85103. Het gaat om 2 ernstige kwetsbaarheden met een CVSS-score van 9,8. Het NCSC beoordeelt de kans op misbruik en de mogelijke schade als hoog en verwacht dat er snel pogingen tot misbruik zullen plaatsvinden, het advies is dan ook om de updates zo snel mogelijk te installeren.
Translated by LibreWolf:
##There are 2 critical vulnerabilities in Check Point VPN products, with the characteristics CVE-2026-85102 and CVE-2026-85103. This concerns 2 serious vulnerabilities with a CVSS score of 9.8. The NCSC assesses the risk of abuse and possible damage as high and expects that attempts at abuse will take place quickly, so the advice is to install the updates as quickly as possible.
https://thecybersecguru.com/news/check-point-vpn-cve-2026-85102-cve-2026-85103/
##@cyberwald Bevor man hier einen Hersteller zu CVEs verurteilt, sollte man vielleicht tiefer recherchieren und dazu ein paar Fakten hinzufügen.
Beide Schwachstellen wurden intern entdeckt und bis zur Veröffentlichung gab es keine Hinweise darauf, dass sie in freier Wildbahn ausgenutzt wurden. Weiterhin gab es zu jedem CVE direkt entsprechende Anweisungen und Patches:
Darüber hinaus gibt es mittlerweile die Funktion Check Point Live Patch (CPLP), welches ein im Betriebssystem Gaia enthaltener Dienst zur Bereitstellung von Abwehrmaßnahmen ist. Es schließt kritische Schwachstellen im laufenden Betrieb durch gezielte In-Memory-Korrekturen (Live-Patches). -> https://support.checkpoint.com/results/sk/sk185114
#CheckPoint #CheckpointsoftwareTechnologies
#CheckPointsw
#CVE #CVE202685102 #CVE202685103
Er zijn 2 kritieke kwetsbaarheden in Check Point VPN-producten, met de kenmerken CVE-2026-85102 en CVE-2026-85103. Het gaat om 2 ernstige kwetsbaarheden met een CVSS-score van 9,8. Het NCSC beoordeelt de kans op misbruik en de mogelijke schade als hoog en verwacht dat er snel pogingen tot misbruik zullen plaatsvinden, het advies is dan ook om de updates zo snel mogelijk te installeren.
Translated by LibreWolf:
##There are 2 critical vulnerabilities in Check Point VPN products, with the characteristics CVE-2026-85102 and CVE-2026-85103. This concerns 2 serious vulnerabilities with a CVSS score of 9.8. The NCSC assesses the risk of abuse and possible damage as high and expects that attempts at abuse will take place quickly, so the advice is to install the updates as quickly as possible.
Tracked as CVE-2026-85102 and CVE-2026-85103, the flaws could be exploited for remote code execution. https://www.securityweek.com/check-point-patches-critical-vpn-vulnerabilities/
##updated 2026-09-09T15:35:15
10 posts
📰 Check Point patches two critical 9.8 CVSS flaws in VPN products
Check Point patches two critical 9.8 CVSS vulnerabilities (CVE-2026-85102, CVE-2026-85103) in its VPN products. Flaws could allow unauthenticated RCE. Admins are urged to apply hotfixes immediately. #CyberSecurity #Vulnerability #VPN #PatchNow
##https://thecybersecguru.com/news/check-point-vpn-cve-2026-85102-cve-2026-85103/
##@cyberwald Bevor man hier einen Hersteller zu CVEs verurteilt, sollte man vielleicht tiefer recherchieren und dazu ein paar Fakten hinzufügen.
Beide Schwachstellen wurden intern entdeckt und bis zur Veröffentlichung gab es keine Hinweise darauf, dass sie in freier Wildbahn ausgenutzt wurden. Weiterhin gab es zu jedem CVE direkt entsprechende Anweisungen und Patches:
Darüber hinaus gibt es mittlerweile die Funktion Check Point Live Patch (CPLP), welches ein im Betriebssystem Gaia enthaltener Dienst zur Bereitstellung von Abwehrmaßnahmen ist. Es schließt kritische Schwachstellen im laufenden Betrieb durch gezielte In-Memory-Korrekturen (Live-Patches). -> https://support.checkpoint.com/results/sk/sk185114
#CheckPoint #CheckpointsoftwareTechnologies
#CheckPointsw
#CVE #CVE202685102 #CVE202685103
Dutch NCSC Warns of Imminent Check Point VPN Flaw Exploitation
The Dutch National Cyber Security Centrum is warning organizations to act fast - two critical flaws in Check Point VPN, tracked as CVE-2026-85102 and CVE-2026-85103, are likely to be exploited soon, with potentially severe consequences. Install security updates as soon as possible to protect yourself.
#CheckPointVpn #Cve202685102 #Cve202685103 #EmergingThreats #NationState
##Critical Check Point VPN Flaws Could Soon Trigger Remote Attacks, Dutch Cyber Agency Warns + Video
Critical Check Point VPN Flaws Could Soon Trigger Remote Attacks, Dutch Cyber Agency Warns A Dangerous Window Is Opening A new warning from the Dutch Nationaal Cyber Security Centrum (NCSC) is putting administrators of Check Point Security Gateways on high alert. Two critical vulnerabilities in Check Point VPN technology, tracked as CVE-2026-85102 and CVE-2026-85103,…
##Er zijn 2 kritieke kwetsbaarheden in Check Point VPN-producten, met de kenmerken CVE-2026-85102 en CVE-2026-85103. Het gaat om 2 ernstige kwetsbaarheden met een CVSS-score van 9,8. Het NCSC beoordeelt de kans op misbruik en de mogelijke schade als hoog en verwacht dat er snel pogingen tot misbruik zullen plaatsvinden, het advies is dan ook om de updates zo snel mogelijk te installeren.
Translated by LibreWolf:
##There are 2 critical vulnerabilities in Check Point VPN products, with the characteristics CVE-2026-85102 and CVE-2026-85103. This concerns 2 serious vulnerabilities with a CVSS score of 9.8. The NCSC assesses the risk of abuse and possible damage as high and expects that attempts at abuse will take place quickly, so the advice is to install the updates as quickly as possible.
https://thecybersecguru.com/news/check-point-vpn-cve-2026-85102-cve-2026-85103/
##@cyberwald Bevor man hier einen Hersteller zu CVEs verurteilt, sollte man vielleicht tiefer recherchieren und dazu ein paar Fakten hinzufügen.
Beide Schwachstellen wurden intern entdeckt und bis zur Veröffentlichung gab es keine Hinweise darauf, dass sie in freier Wildbahn ausgenutzt wurden. Weiterhin gab es zu jedem CVE direkt entsprechende Anweisungen und Patches:
Darüber hinaus gibt es mittlerweile die Funktion Check Point Live Patch (CPLP), welches ein im Betriebssystem Gaia enthaltener Dienst zur Bereitstellung von Abwehrmaßnahmen ist. Es schließt kritische Schwachstellen im laufenden Betrieb durch gezielte In-Memory-Korrekturen (Live-Patches). -> https://support.checkpoint.com/results/sk/sk185114
#CheckPoint #CheckpointsoftwareTechnologies
#CheckPointsw
#CVE #CVE202685102 #CVE202685103
Er zijn 2 kritieke kwetsbaarheden in Check Point VPN-producten, met de kenmerken CVE-2026-85102 en CVE-2026-85103. Het gaat om 2 ernstige kwetsbaarheden met een CVSS-score van 9,8. Het NCSC beoordeelt de kans op misbruik en de mogelijke schade als hoog en verwacht dat er snel pogingen tot misbruik zullen plaatsvinden, het advies is dan ook om de updates zo snel mogelijk te installeren.
Translated by LibreWolf:
##There are 2 critical vulnerabilities in Check Point VPN products, with the characteristics CVE-2026-85102 and CVE-2026-85103. This concerns 2 serious vulnerabilities with a CVSS score of 9.8. The NCSC assesses the risk of abuse and possible damage as high and expects that attempts at abuse will take place quickly, so the advice is to install the updates as quickly as possible.
Tracked as CVE-2026-85102 and CVE-2026-85103, the flaws could be exploited for remote code execution. https://www.securityweek.com/check-point-patches-critical-vpn-vulnerabilities/
##updated 2026-09-09T05:18:19.490000
2 posts
2 repos
https://github.com/jithinkrishnanrs/CVE-2026-86218-N-central-IOC-Toolkit
CVE-2026-86218: Active Exploitation of N-able N-central: Critical Pre-Auth Remote Code Execution (RCE) Vulnerability
#N_central #CVE_2026_86218
https://arcticwolf.com/resources/blog/cve-2026-86218/
CVE-2026-86218: Active Exploitation of N-able N-central: Critical Pre-Auth Remote Code Execution (RCE) Vulnerability
#N_central #CVE_2026_86218
https://arcticwolf.com/resources/blog/cve-2026-86218/
updated 2026-09-09T05:18:19.193000
1 posts
Die allerschlechteste Kombination: Chrome und Windows
Wer sich wundert, weshalb Chromium und und daraus abgeleitete Browser (Chrome, Edge, Opera, Vivaldi) schon wieder Updates erhalten, hier ist die Erklärung. Ein Sicherheitsunternehmen hat entdeckt, dass mindestens vier Gruppen von Cybergangstern eine Kette von Sicherheitslücken nutzen, um in Institution (Firmen, Behörden) vor allem in den USA und Südostasien einzudringen. Die Angreifer verketten zwei Sicherheitslücken in Chrome (CVE-2026-85046 und ein Sandkasten-Ausbruch ohne CVE-Nummer) mit einer in Windows (CVE-2026-85880). Die Lücke in Windows wurde gerade geflickt. ... Weiterlesen:
#0day #browser #chrome #cybercrime #exploits #Microsoft #sicherheit #spionage #unplugMicrosoft #UnplugTrump #windows
##updated 2026-09-08T20:05:53.177000
1 posts
CVE-2026-86100: Camaleon CMS SSRF via media upload redirect bypass. Versions 2.7.5-2.9.1 expose internal services to authenticated attackers. CVSS 6.4. Unpatched—act now. Details: https://www.valtersit.com/cve/CVE-2026-86100/ #CVE #infosec
##updated 2026-09-08T19:57:49.663000
1 posts
🚨 Critical Security Alert!
Deep-dive vulnerability analysis of CVE-2026-86426 (CVSS 9.2): Unauthenticated API Access & RCE in LibreNMS <= 26.7.0 caused by JSON type confusion & MySQL coercion.
https://denizhalil.com/2026/09/12/cve-2026-86426-librenms-unauthenticated-api-access/
##updated 2026-09-08T19:42:20.313000
1 posts
CVE-2026-78849 - XSS in Netgate pfSense (Plus <=26.03 & CE <=2.8.1). Remote code execution via captive_portal_status.widget.php. Unpatched. CVSS N/A. Isolate exposed firewalls & monitor logs. Details: https://www.valtersit.com/cve/CVE-2026-78849/ #CVE #pfSense #infosec
##updated 2026-09-08T18:33:26
1 posts
MS selling "MDASH" as having fixed their TCP/IP stack, a day after a critical DNS CVE comes out without a fix.
##updated 2026-09-08T18:33:07
2 posts
https://www.cve.org/CVERecord?id=CVE-2026-69730
Windows DNS server RCE
https://www.cve.org/CVERecord?id=CVE-2026-69730
Windows DNS server RCE
updated 2026-09-08T18:32:45
1 posts
CVE-2026-13297: IBM Verify Identity Access (AAC) risks info disclosure. CVSS N/A, patch status unknown. If you use it, audit exposure now. Details: https://www.valtersit.com/cve/CVE-2026-13297/ #CVE #infosec #IBM
##updated 2026-09-08T18:17:37.770000
1 posts
CVE-2026-46636: Twig <3.27.0 sandbox bypass—subclasses of Twig\Markup expose all public methods, allowing arbitrary code execution. CVSS N/A, fix available. Update immediately to 3.27.0+. https://www.valtersit.com/cve/CVE-2026-46636/ #CVE #infosec #PHP
##updated 2026-09-08T15:31:35
1 posts
1 repos
CVE-2026-78745: Unpatched flaw in HiDPT Android (Hi3751V350/V352E) allows remote code execution via ADB daemon. Risk is critical if ADB exposed. CVSS N/A. Check exposure and restrict ADB now. Details: https://www.valtersit.com/cve/CVE-2026-78745/ #CVE #Android #infosec
##updated 2026-09-08T14:55:04.093000
1 posts
8 repos
https://github.com/Eliot-code/CVE-2026-85046
https://github.com/SneakyNachos/CVE-2026-85046-who-put-the-silverback-guerilla-in-the-wasm
https://github.com/HORKimhab/CVE-2026-85046
https://github.com/atiilla/CVE-2026-85046
https://github.com/SneakyNachos/CVE-2026-87491-and-CVE-2026-85046-the-bagel-fell-off-the-counter
Die allerschlechteste Kombination: Chrome und Windows
Wer sich wundert, weshalb Chromium und und daraus abgeleitete Browser (Chrome, Edge, Opera, Vivaldi) schon wieder Updates erhalten, hier ist die Erklärung. Ein Sicherheitsunternehmen hat entdeckt, dass mindestens vier Gruppen von Cybergangstern eine Kette von Sicherheitslücken nutzen, um in Institution (Firmen, Behörden) vor allem in den USA und Südostasien einzudringen. Die Angreifer verketten zwei Sicherheitslücken in Chrome (CVE-2026-85046 und ein Sandkasten-Ausbruch ohne CVE-Nummer) mit einer in Windows (CVE-2026-85880). Die Lücke in Windows wurde gerade geflickt. ... Weiterlesen:
#0day #browser #chrome #cybercrime #exploits #Microsoft #sicherheit #spionage #unplugMicrosoft #UnplugTrump #windows
##updated 2026-09-07T15:17:33.310000
1 posts
CVE-2026-80883: Linux kernel flaw in drm/tegra gr2d/gr3d. Potential race condition lets userspace submit jobs before register map init—can lead to crashes or privilege issues. Unpatched; impact uncertain. If you run Tegra, test https://www.valtersit.com/cve/CVE-2026-80883/
##updated 2026-09-04T18:31:46
1 posts
CVE-2026-85636: Missing authentication in Trape 1.0.0 (core/stats.py Login Endpoint). Remote exploit is public; project unpatched and unresponsive. CVSS 5.3. If you run Trape, assume compromise and isolate now. Details: https://www.valtersit.com/cve/CVE-2026-85636/ #CVE #infosec
##updated 2026-09-04T18:31:46
1 posts
CVE-2026-80909 affects Linux kernel drm/amdgpu: UVD messages with invalid h265 refs can trigger an overflow. Potential for local DoS or memory corruption. CVSS not assigned, patch unknown. Update your kernel once a fix is available. https://www.valtersit.com/cve/CVE-2026-80909/
##updated 2026-09-04T18:31:46
1 posts
CVE-2026-80901: Linux kernel IPVS flaw allows unvalidated ICMPv6 checksums, risking packet manipulation in MASQ/tunnel setups. Unpatched & unknown CVSS—treat as high risk. Patch status unclear, so audit your kernel now. Details: https://www.valtersit.com/cve/CVE-2026-80901/ #CVE
##updated 2026-09-04T18:31:46
1 posts
CVE-2026-80890: Linux kernel SCTP flaw allows stale cookies with mismatched verification tags to bypass checks, risking connection hijacking or DoS. CVSS N/A, unpatched. Patch when available; audit SCTP exposure now. https://www.valtersit.com/cve/CVE-2026-80890/ #CVE #infosec #Li
##updated 2026-09-04T18:31:46
1 posts
CVE-2026-80907: Linux kernel amdgpu UVD dpb size miscalc for H264 could trigger memory corruption. Unpatched—CVSS N/A. If you run AMD GPUs, verify your kernel build now. https://www.valtersit.com/cve/CVE-2026-80907/ #CVE #Linux #infosec
##updated 2026-09-04T18:31:40
1 posts
CVE-2026-80880: Linux kernel flaw in IB/mlx5 implicit ODP mkey handling. Exploitable to corrupt memory or crash systems—impact not fully disclosed. CVSS N/A, no patch available. Track this actively; test mitigations, restrict https://www.valtersit.com/cve/CVE-2026-80880/
##updated 2026-09-04T18:31:40
1 posts
CVE-2026-17444: XXE in IBM App Connect Enterprise & Integration Bus (CVSS 5.3). Remote authenticated attacker can leak sensitive data via XML injection. Impact hits versions 13.0.1.0-13.0.8.1, 12.0.1.0-12.0.12.28, & z/OS 10.1.0.x. https://www.valtersit.com/cve/CVE-2026-17444/
##updated 2026-09-04T18:31:40
1 posts
CVE-2026-17622 IBM Langflow 1.0.0-1.10.2: path traversal flaw lets remote authenticated attackers read sensitive files. CVSS 6.5. Unpatched—assume risk now. Restrict access or isolate instances immediately. Details: https://www.valtersit.com/cve/CVE-2026-17622/ #CVE #infosec #IBM
##updated 2026-09-04T18:31:39
1 posts
CVE-2026-16689: IBM App Connect Enterprise & Integration Bus log credentials improperly, letting local attackers steal sensitive info. CVSS 6.2. Unpatched—check your versions now. Patch immediately. https://www.valtersit.com/cve/CVE-2026-16689/ #CVE #ibm #infosec
##updated 2026-09-04T18:31:34
1 posts
CVE-2026-80871: Linux kernel crypto/xilinx-trng bug—removed crypto_rng interface that could return success without filling buffers. Potential data integrity risk. CVSS: N/A. Patch status unclear—check your kernel. Details: https://www.valtersit.com/cve/CVE-2026-80871/ Update kern
##updated 2026-09-04T18:31:31
1 posts
CVE-2026-18073 IBM i 7.3-7.6: local authenticated attacker can inject parameters into a CL command (improper input neutralization). CVSS 4.4. No patch yet—assume risk. Restrict local access & monitor. Details: https://www.valtersit.com/cve/CVE-2026-18073/ #CVE #IBM #infosec
##updated 2026-09-04T18:18:01.200000
1 posts
CVE-2026-80913: Linux kernel SELinux flaw – missing boolean definition check can lead to NULL deref. Potential crash/privilege issues. CVSS: N/A. Patch status unknown – treat as unpatched. Review & update kernels now. https://www.valtersit.com/cve/CVE-2026-80913/ #CVE #Linux #inf
##updated 2026-09-04T18:18:01.047000
1 posts
CVE-2026-80912: Linux kernel SELinux flaw—a NULL deref via an unclaimed class value can crash the system. CVSS: N/A, unpatched. If you run SELinux, review your policy and wait for the fix. Patch ASAP when available. https://www.valtersit.com/cve/CVE-2026-80912/ #CVE #Linux #infos
##updated 2026-09-04T18:17:59.983000
1 posts
CVE-2026-80904 Linux kernel TLS flaw: failed async decrypt can bypass splice_read check, breaking connection authentication. CVSS N/A, unpatched. If you rely on kernel TLS splicing, audit exposure now. Update once fix lands. https://www.valtersit.com/cve/CVE-2026-80904/ #CVE #inf
##updated 2026-09-04T18:17:57.603000
1 posts
CVE-2026-80894: Linux kernel iommufd flaw passes wrong hwpt on device replace, causing fault response mismatches. Impact unclear; CVSS N/A. Patch status unknown—assume risk. Check your kernel version and update immediately if a fix https://www.valtersit.com/cve/CVE-2026-80894/
##updated 2026-09-02T18:32:26
1 posts
1 repos
¿Seguimos confiando demasiado?
Anderson hablaba de confianza en seguridad informática a comienzos de los años 70.
Más de cincuenta años después tenemos Cloud, SaaS, Zero Trust, MFA, PAM, EDR y tecnologías que en aquella época hubieran parecido ciencia ficción.
Entonces me hice una pregunta:
¿El problema también cambió?
En lugar de buscar la respuesta en otro paper, decidí mirar algunas vulnerabilidades recientes:
CVE-2026-20079
CVE-2026-19490
CVE-2025-25249
CVE-2026-20212
Authentication bypass, problemas de memoria, componentes de infraestructura...
Vulnerabilidades técnicamente muy diferentes.
Pero hay una pregunta interesante que podemos hacerle a cada una:
¿Qué tuvo que asumir el sistema para que esa vulnerabilidad pudiera existir?
De eso hablaremos próximamente
¿Seguimos confiando demasiado? —
De Anderson a la Inteligencia Artificial
updated 2026-09-02T18:31:57
3 posts
7 repos
https://github.com/0xTerror/CVE-2026-82329-JFrog-Artifactory-
https://github.com/HORKimhab/CVE-2026-82329
https://github.com/ynsmroztas/CVE-2026-82329-JFrog-Artifactory-Auth-Bypass
https://github.com/realalexandergeorgiev/artifactory-CVE-2026-82329-poc.py
https://github.com/dinosn/cve-2026-82329-jfrog-artifactory
⚠️ CRITICAL: Attackers Chain JFrog Artifactory Flaws to Gain Admin Control and Plant Backdoors
Attackers are chaining multiple JFrog Artifactory vulnerabilities (CVE-2026-42018, CVE-2026-42016, CVE-2026-82329) to escalate from anonymous users to administrator control on self-hosted instances. This grants them ability to plant backdoors and execute arbitrary shell commands in your build pipel…
🤖 AI generated summary
##⚠️ CRITICAL: Attackers Chain JFrog Artifactory Flaws to Gain Admin Control and Plant Backdoors
Attackers are chaining multiple JFrog Artifactory vulnerabilities (CVE-2026-42018, CVE-2026-42016, CVE-2026-82329) to escalate from anonymous users to administrator control on self-hosted instances. This grants them ability to plant backdoors and execute arbitrary shell commands in your build pipel…
🤖 AI generated summary
##Active exploitation chains CVE-2026-42018 and CVE-2026-42016 to bypass authentication on self-hosted JFrog Artifactory and deploy a Rust backdoor with C2. CVE-2026-82329 is also abused to create admin tokens. This enables full server takeover and supply chain compromise. #JFrog #Artifactory #SupplyChainSecurity
https://cyberworldops.eu/en/attackers-chain-jfrog-artifactory-flaws-to-deploy-rust-backdoor
##updated 2026-09-02T13:17:55.903000
2 posts
14 repos
https://github.com/Quaerendir/cve-2026-46331-audit
https://github.com/cherrycherrymay/PoC-CVE-2026-46331
https://github.com/MarwahHadi/CVE-2026-46331-pedit-cow
https://github.com/sgkdev/packet_edit_meme
https://github.com/V0IDNETWORK/CVE-2026-46331
https://github.com/rjt-gupta/page-cache-corruption-lpes
https://github.com/g0thamRabb1t/CVE-2026-46331-pedit-COW-detection
https://github.com/vulnquest58/dirtyclone-exploit
https://github.com/seguridadentrerios/CVE-2026-46331
https://github.com/yanxinwu946/CVE-2026-46331
https://github.com/douglasmun/pagecache-lpe-containment-kit
https://github.com/0xBlackash/CVE-2026-46331
Escaping Claude Cowork’s local VM sandbox via CVE-2026-46331 https://www.accomplish.ai/blog/sharedroot-escaping-claude-cowork-sandbox/
##Escaping Claude Cowork’s local VM sandbox via CVE-2026-46331 https://www.accomplish.ai/blog/sharedroot-escaping-claude-cowork-sandbox/
##updated 2026-08-31T21:31:56
1 posts
2 repos
PaperCut NG/MF hit by CRITICAL zero-days (CVE-2026-82078, CVE-2026-81578) exploited in AI-driven attacks. Remote code exec, credential theft, & domain admin escalation seen on 440+ deployments. Patch ASAP. Details: https://radar.offseq.com/threat/papercut-flaws-exploited-in-ai-powered-attacks-2193db246901da9f #OffSeq #PaperCut #ZeroDay #BlueTeam
##updated 2026-08-31T21:31:56
1 posts
2 repos
PaperCut NG/MF hit by CRITICAL zero-days (CVE-2026-82078, CVE-2026-81578) exploited in AI-driven attacks. Remote code exec, credential theft, & domain admin escalation seen on 440+ deployments. Patch ASAP. Details: https://radar.offseq.com/threat/papercut-flaws-exploited-in-ai-powered-attacks-2193db246901da9f #OffSeq #PaperCut #ZeroDay #BlueTeam
##updated 2026-08-18T18:32:52
2 posts
2 repos
CVE-2026-59310 - Changed to Known Ransomware Status
Broadcom VMware vCenter Path Traversal VulnerabilityVendor: BroadcomProduct: VMware vCenterBroadcom VMware vCenter contains a path traversal vulnerability which could allow a threat actor with network access to vCenter to execute arbitrary code.Status changed from Unknown to Known for ransomware campaign usage.Flip detected on: September 11, 2026 at 16:08:17 UTCDate Added to KEV: https://nvd.nist.gov/vuln/detail/CVE-2026-59310
##CVE-2026-59310 - Changed to Known Ransomware Status
Broadcom VMware vCenter Path Traversal VulnerabilityVendor: BroadcomProduct: VMware vCenterBroadcom VMware vCenter contains a path traversal vulnerability which could allow a threat actor with network access to vCenter to execute arbitrary code.Status changed from Unknown to Known for ransomware campaign usage.Flip detected on: September 11, 2026 at 16:08:17 UTCDate Added to KEV: https://nvd.nist.gov/vuln/detail/CVE-2026-59310
##updated 2026-08-17T21:32:25
1 posts
@bsi Update zum Klärungsversuch bzgl. CVE-2026-50768:
Im Henkel-Repo heißt es zwar freundlich "For any inquiries or further details, feel free to reach out to us." – in der Praxis sind PRs, Issues & Diskussionen dicht und Kontaktinfos fehlen völlig.
Wie betreibt man eigentlich #ResponsibleDisclosure, wenn man offiziell zum Dialog einlädt, aber sämtliche Feedback-Türen fest verriegelt? 😉
#HenkelAG #Henkel #CyberSecurity #InfoSec #AppSec #ITSec #GitHub #Sicherheit #BugBounty #CVE
##updated 2026-08-07T06:16:56.993000
2 posts
5 repos
https://github.com/tc4dy/CVE-2026-61511-PoC-Exploit
https://github.com/codeb0ssx/Ultimate-CVE-2026-61511
https://github.com/puj790201-lab/cve-2026-61511
[CVE-2026-61511] vBulletin <= 6.2.1 (runMaths) Pre-Auth RCE Vulnerability https://karmainsecurity.com/KIS-2026-13
##[CVE-2026-61511] vBulletin <= 6.2.1 (runMaths) Pre-Auth RCE Vulnerability https://karmainsecurity.com/KIS-2026-13
##updated 2026-07-29T21:31:00
1 posts
CVE-2026-20316 - Changed to Known Ransomware Status
Cisco Secure Firewall Management Center Use of Hard-coded Password VulnerabilityVendor: CiscoProduct: Secure Firewall Management Center (FMC)Cisco Secure Firewall Management Center (FMC) formerly known as Firepower Management Center contains a use of hard-coded password vulnerability that could allow an unauthenticated, remote attacker to log in to an affected device using a low-privileged https://nvd.nist.gov/vuln/detail/CVE-2026-20316
##updated 2026-07-22T16:17:59.653000
2 posts
CVE-2026-50458: Finding a UAF in the Windows Brokering File System https://rotcee.github.io/posts/CVE-2026-50458-finding-a-UAF-in-windows-brokering-file-system/
##CVE-2026-50458: Finding a UAF in the Windows Brokering File System https://rotcee.github.io/posts/CVE-2026-50458-finding-a-UAF-in-windows-brokering-file-system/
##updated 2026-07-22T16:17:28.753000
2 posts
2 repos
Writeup & POC: CVE-2026-49176 Windows WalletService to SYSTEM (LPE) https://davidcarliez.github.io/blog/cve-2026-49176-walletservice-to-system/
##Writeup & POC: CVE-2026-49176 Windows WalletService to SYSTEM (LPE) https://davidcarliez.github.io/blog/cve-2026-49176-walletservice-to-system/
##updated 2026-07-14T21:32:22
1 posts
6 repos
https://github.com/Ch4120N/CVE-2026-15409
https://github.com/MrRawBit/SonicWall-SMA1000-Zero-Day-IoC-Check
https://github.com/remmons-r7/rapid7-CVE-2026-15409
https://github.com/tc4dy/CVE-2026-15409-15410-Framework
Borough Council of King's Lynn and West Norfolk incident linked with moderate confidence to mass exploitation of CVE-2026-15409 in SonicWall SMA1000. Unauthenticated SSRF in WorkPlace WebSocket proxy chains to RCE and LDAP credential theft, enabling pivot into internal networks. Exposed systems require immediate patching and compromise hunting. #SonicWall #Sma1000 #InfoSec
https://cyberworldops.eu/en/uk-council-cyberattack-tied-to-mass-exploitation-of-critical-sonicwall
##updated 2026-07-14T18:03:10
1 posts
🟠 CVE-2026-50013 - High (7.5)
Hoverfly is an open source API simulation tool. Prior to version 1.12.8, when Hoverfly is running in Diff mode, the `AddDiff()` function writes to the shared `responsesDiff` map without any synchronization (no mutex). When multiple proxy requests ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-50013/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-10T21:43:06
1 posts
🟠 CVE-2026-54174 - High (8.3)
melange allows users to build apk packages using declarative pipelines. Apko prior to version 1.2.9, corresponding to melange prior to version 0.50.4, verified the control section hash (`.PKGINFO` etc.) against the signed `APKINDEX`, but never ver...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-54174/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-09T21:02:59
1 posts
CVE-2026-52777: Authenticated PHP object injection via unserialize in YesWiki's BazarImportAction. CVSS N/A, unpatched pre-4.6.6. Attackers can exploit to execute arbitrary code. Update immediately to 4.6.6. https://www.valtersit.com/cve/CVE-2026-52777/ #CVE #infosec #YesWiki
##updated 2026-07-09T15:33:27
2 posts
1 repos
Escalating All The Privileges With Foxit PDF Reader (CVE-2026–57239) https://blog.paradoxis.nl/escalating-all-the-privileges-with-foxit-pdf-reader-cve-2026-57239-582a78b60492
##Escalating All The Privileges With Foxit PDF Reader (CVE-2026–57239) https://blog.paradoxis.nl/escalating-all-the-privileges-with-foxit-pdf-reader-cve-2026-57239-582a78b60492
##updated 2026-07-08T21:12:01
1 posts
🟠 CVE-2026-49464 - High (8.1)
NL Portal Backend Libraries provide backend components for Dutch government portals that interact with residents, customers, suppliers, and partner organizations. The `nl.nl-portal:taak` package from version 1.5.0 through 3.0.0 fails to verify own...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-49464/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-06-17T16:43:32.927000
1 posts
1 repos
CVE-2026-28576 (CVSS 10) is a SQL injection in the Android Contacts Provider. A public PoC dumps all contacts with no permissions. Patch Android 17 now.
#CVE202628576 #Android #SQLInjection #Android17 #ContactsProvider #MobileSecurity #InfoSec #DataLeak #ExploitPoC #Pixel
##updated 2026-06-17T07:05:03.993000
2 posts
1 repos
Simple Job Board ≤ 2.11.0 - Unauthenticated RCE (CVE-2024-1813) https://mobeta.fr/simple-job-board-unauth-rce-cve-2024-1813/
##Simple Job Board ≤ 2.11.0 - Unauthenticated RCE (CVE-2024-1813) https://mobeta.fr/simple-job-board-unauth-rce-cve-2024-1813/
##updated 2026-06-09T15:33:16
2 posts
2 repos
I was reporter #11 for a WPForms PayPal webhook vulnerability (CVE-2026-4986) https://blog.himanshuanand.com/2026/07/reporter-11-10-people-found-the-wpforms-paypal-bug-before-me-cve-2026-4986/
##I was reporter #11 for a WPForms PayPal webhook vulnerability (CVE-2026-4986) https://blog.himanshuanand.com/2026/07/reporter-11-10-people-found-the-wpforms-paypal-bug-before-me-cve-2026-4986/
##updated 2026-04-27T16:30:09
1 posts
25 repos
https://github.com/rootdirective-sec/CVE-2026-39987-Lab
https://github.com/M3PH1569/CVE-2026-39987-POC
https://github.com/fevar54/marimo_CVE-2026-39987_RCE_PoC
https://github.com/h3raklez/CVE-2026-39987
https://github.com/MADA0L/CVE-2026-39987-Poc
https://github.com/HORKimhab/CVE-2026-39987
https://github.com/stapat1245/CVE-2026-39987-PoC
https://github.com/jasonbernier/CVE-2026-39987
https://github.com/Clara-M-Grossl/Exploit-Marimo
https://github.com/dodeepsink/CVE-2026-39987.py
https://github.com/vanhari/CVE-2026-39987
https://github.com/mki9/CVE-2026-39987_exploit
https://github.com/0xBlackash/CVE-2026-39987
https://github.com/Ghxstsec/CVE-2026-39987
https://github.com/0xdeadroot/CVE-2026-39987-marimo-rce
https://github.com/julichaan/CVE-2026-39987_POC
https://github.com/gbuyssens/CVE-2026-39987
https://github.com/iapetus12/cohort-htb
https://github.com/matesz44/cve-2026-39987
https://github.com/alreadyClosed/CVE-2026-39987
https://github.com/Dhiaelhak-Rached/CVE-2026-39987-lab-or-marimo-cve-lab
https://github.com/Nxploited/CVE-2026-39987
https://github.com/keraattin/CVE-2026-39987
CVE-2026-39987 Turns Marimo Into a Fast-Track Gateway to SSH and Cloud Credentials + Video
CVE-2026-39987 Turns Marimo Into a Fast-Track Gateway to SSH and Cloud Credentials A Critical Marimo Flaw Is Becoming a Real-World Attack Weapon A vulnerability in the open-source marimo project has evolved from a serious software flaw into a practical intrusion route for attackers targeting cloud infrastructure. CVE-2026-39987 is a critical pre-authentication remote code…
##updated 2026-02-11T15:31:25
1 posts
14 repos
https://github.com/0xBlackash/CVE-2026-20841
https://github.com/atiilla/CVE-2026-20841
https://github.com/RajaUzairAbdullah/CVE-2026-20841
https://github.com/patchpoint/CVE-2026-20841
https://github.com/EleniChristopoulou/PoC-CVE-2026-20841
https://github.com/BTtea/CVE-2026-20841-PoC
https://github.com/dogukankurnaz/CVE-2026-20841-PoC
https://github.com/tangent65536/CVE-2026-20841
https://github.com/SecureWithUmer/CVE-2026-20841
https://github.com/hackfaiz/CVE-2026-20841-PoC
https://github.com/uky007/CVE-2026-20841_notepad_analysis
https://github.com/whiskeylab/notepad_CVE_2026_20841
wait, it's not a shitpost over on my other channel?? there's really an RCE in notepad ?!
##🏆 New Achievement! One Click to the Food Chain Bottom!
Here, in the wild habitat of Windows enterprise environments, we observe the Sogou Input Method — a text entry tool installed by millions — standing perfectly still as UNC3569, a China-aligned espionage group, approaches from the brush. CVE-2026-51990 is a critical one-click remote code execution flaw exploiting an unsandboxed Chromium chain. The creature does not run. It simply... accepts the GrayRabbit backdoor. (1/2)
##Hackers exploit Tencent app flaw to deploy GrayRabbit malware
Threat actors linked to a China-aligned espionage group are exploiting a critical vulnerability (CVE-2026-51990) in Tencent's Sogou Input Method...
🔗️ [Bleepingcomputer] https://link.is.it/DXBwPD
##Hackers exploit Tencent app flaw to deploy GrayRabbit malware
Hackers are actively exploiting a critical flaw in Tencent's Sogou Input Method for Windows, using a clever one-click trick to deploy the GrayRabbit backdoor; researchers warn that this vulnerability, tracked as CVE-2026-51990, is being used to deliver malware to unsuspecting victims.
#GrayrabbitMalware #Tencent #Cve202651990 #RemoteCodeExecution #Windows
##🏆 New Achievement! One Click to the Food Chain Bottom!
Here, in the wild habitat of Windows enterprise environments, we observe the Sogou Input Method — a text entry tool installed by millions — standing perfectly still as UNC3569, a China-aligned espionage group, approaches from the brush. CVE-2026-51990 is a critical one-click remote code execution flaw exploiting an unsandboxed Chromium chain. The creature does not run. It simply... accepts the GrayRabbit backdoor. (1/2)
##Hackers exploit Tencent app flaw to deploy GrayRabbit malware
Threat actors linked to a China-aligned espionage group are exploiting a critical vulnerability (CVE-2026-51990) in Tencent's Sogou Input Method...
🔗️ [Bleepingcomputer] https://link.is.it/DXBwPD
##Gen Threat Labs discovered a critical remote code execution vulnerability (CVE-2026-51990) in Sogou Input Method. The vulnerability is actively exploited in the wild by the UNC3569 threat group to deploy the GRAYRABBIT backdoor through a crafted link. https://www.gendigital.com/blog/insights/research/one-click-backdoor-sogou
##2 posts
85 repos
https://github.com/gagaltotal/CVE-2026-63030-CVE-2026-60137-wp2shell-poc
https://github.com/Lukols-Dev/wp-cve-2026-63030-check
https://github.com/mcipekci/wp2shell
https://github.com/ivanesk315/CVE-2026-60137-and-CVE-2026-63030
https://github.com/dinosn/wp2shell-lab
https://github.com/mrx-arafat/CVE-2026-63030-POC
https://github.com/vulnquest58/PressVector
https://github.com/Dungsocool/CVE-2026-60137_CVE-2026-63030
https://github.com/CybersecSpirit/CVE-2026-63030
https://github.com/michael-kanda/Wp2shell-ioc-scanner
https://github.com/skelersecurity/wordpress-skelersecurity-core-security-CVE-2026-63030
https://github.com/Iqbalx7/wp2shell
https://github.com/bahartanir/wp2shell-scanner
https://github.com/administrator-01001/CVE-2026-63030
https://github.com/johnlodan/wp2shell-rce
https://github.com/0xsha/wp2shell
https://github.com/Senanfurkan/wordpress-cve-2026-63030
https://github.com/sowarma/wp2shell-PoC
https://github.com/fullhunt/wp2shell-scan
https://github.com/Colere-Sys/wp2shell-poc
https://github.com/Lutfifakee-Project/wp2shell
https://github.com/NULL200OK/WP2Shell
https://github.com/shinthink/CVE-2026-63030
https://github.com/own2pwn-fr/wp2shell-detect
https://github.com/ZephrFish/wp2shell-scanner
https://github.com/zi3lak/wp2shell_scanner
https://github.com/Icex0/wp2shell-poc
https://github.com/GhostInExile/CVE-2026-63030-Wp2Shell
https://github.com/Bhanunamikaze/WP2Shell-CVE-2026-63030-POC
https://github.com/Ch4120N/CVE-2026-63030
https://github.com/attackercan/wp2shell-poc2
https://github.com/JohenLastGen-JLG/wp2shell
https://github.com/J4ck3LSyN-Gen2/CVE-2026-63030-wp2r00t
https://github.com/4B3R4M4-607D/CVE-2026-63030-POC
https://github.com/razureink/cve-2026-63030_60137-wordpress_rce_reproduction
https://github.com/AnggaTechI/CVE-2026-63030
https://github.com/mhassani97/cve-2026-63030-lab
https://github.com/securelayer7/WordPresShell
https://github.com/M4xSec/wp2shell-Exploit-Waf-Bypass
https://github.com/TomorrowX6/CVE-2026-63030-poc
https://github.com/Sec-Dan/WP2Shell-Scanner
https://github.com/joaovicdev/EXPLOIT-CVE-2026-63030
https://github.com/mhtsec/CVE-2026-63030
https://github.com/SentinelXofficial/sxwp2shell
https://github.com/eyesecurity/wp2shell-compromise-scanner-plugin
https://github.com/Industri4l-H3ll-Xpl0it3rs/CVE-2026-63030-WP2Shell
https://github.com/raphy76/wp2shell-poc-fulljs
https://github.com/h4cd0c/wp2shell
https://github.com/c0gnit00/Wp2Shell
https://github.com/ebrasha/abdal-cve-2026-63030
https://github.com/mrmtwoj/Fix-CVE-2026-60137-CVE-2026-63030-in-wordpress
https://github.com/DeadExpl0it/wp2shell-poc
https://github.com/ZenithGenius/wordpress-batch-rce-lab
https://github.com/Giangdurian/CVE-2026-63030-CVE-2026-60137
https://github.com/Adrees-Basheer/wp2shell-vulnerability-scanner
https://github.com/ekomsSavior/wp2shell
https://github.com/AkbarWiraN/holy-wp2shell
https://github.com/InstaWP/wp2shell-scan
https://github.com/0xWhoknows/wp2shell
https://github.com/TranDongA3/POC-CVE-2026-63030-CVE-2026-60137-
https://github.com/g0d150ne/WP2Shell
https://github.com/Crypto-Cat/wp2shell
https://github.com/ikow/wp2shell
https://github.com/yuag/wp2shell
https://github.com/kulichr/wp2shell
https://github.com/x-znn/CVE-2026-63030
https://github.com/0xh7ml/CVE-2026-63030
https://github.com/Madelleimproved411/wp-to-code
https://github.com/hidden-investigations/wp2shell-scanner
https://github.com/Procjevt/CVE-2026-63030
https://github.com/HackingLZ/wp2shell_stock_chain
https://github.com/47Cid/wp2shell-lab
https://github.com/0xBlackash/CVE-2026-63030
https://github.com/zeroc00I/CVE-2026-63030
https://github.com/imXur/WordPress-CVE-2026-63030-Analysis
https://github.com/mverschu/CVE-2026-63030
https://github.com/BytesPulse-OE/wp2shell-Hestia-Scanner
https://github.com/tcyph3r/wp2shell-cve-2026-63030-root-cause
https://github.com/codeb0ssx/Ultimate-wp2shell
https://github.com/4minx/CVE-2026-63030
https://github.com/0xjessie21/wp2shell-checker
https://github.com/ananay/wp2shell-lab
https://github.com/ChiefYoru/CVE-2026-63030_PoC
wp2shell (CVE-2026-63030): Pre-Auth RCE Chain in WordPress Core - Analysis and Open-Source Scanner https://fullhunt.io/blog/2026/07/17/wp2shell-wordpress-core-pre-auth-rce-cve-2026-63030.html
##wp2shell (CVE-2026-63030): Pre-Auth RCE Chain in WordPress Core - Analysis and Open-Source Scanner https://fullhunt.io/blog/2026/07/17/wp2shell-wordpress-core-pre-auth-rce-cve-2026-63030.html
##CVE-2026-53761: Authentication bypass in Frappe CRM via logged invitation keys, affecting versions before 1.73.0. CVSS N/A, but unpatched installs are at risk of unauthorized access. Patch immediately! Details: https://www.valtersit.com/cve/CVE-2026-53761/ #CVE #cybersecurity #Fr
##CVE-2026-53758: Stored XSS in Emlog ≤2.6.29 via Parsedown raw HTML. Unpatched—attacker can inject scripts into articles, hitting all visitors. No CVSS assigned. Patch unknown; restrict Markdown input or disable HTML now. Details: https://www.valtersit.com/cve/CVE-2026-53758/ #CVE
##🟠 CVE-2026-54135 - High (7.5)
AirSane is a SANE frontend, and a scanner server that supports Apple's AirScan protocol. Versions prior to 0.4.12 have a vulnerability in the custom HTTP server implementation of AirSane that allows a remote unauthenticated attacker to cause a Den...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-54135/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-89066 - High (7.8)
Improper neutralization of special elements used in an OS command in the task synthesis component in projen before 0.103.0 might allow context-dependent attackers to execute arbitrary commands on a developer workstation or continuous integration r...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89066/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##Patch CVE-2026-16338 immediately. Learn how this 9.9 CVSS flaw allows arbitrary file write attacks in IBM DataStage and how to secure your data today.
#CVE202616338 #IBMDataStage #CyberSecurity #InfoSec #ArbitraryFileWrite #CloudSecurity #VulnerabilityPatch
##Dell patched critical Dell ObjectScale vulnerabilities, led by CVE-2026-70416. Fix these Dell ObjectScale vulnerabilities to stop remote code execution.
#DellObjectScale #Cybersecurity #CVE202670416 #Vulnerabilities #InfoSec
##Dell patched critical Dell Networking OS10 vulnerabilities, including CVE-2026-63695. Update your Dell SmartFabric OS10 switches to prevent session theft.
#DellNetworking #Cybersecurity #Vulnerabilities #CVE202663695 #InfoSec
##