## Updated at UTC 2026-05-28T21:18:17.809440

Access data as JSON

CVE CVSS EPSS Posts Repos Nuclei Updated Description
CVE-2026-45348 8.7 0.00% 2 0 2026-05-28T20:16:24.857000 pyLoad is a free and open-source download manager written in Python. Prior to 0.
CVE-2026-43898 10.0 0.00% 2 0 2026-05-28T20:16:23.810000 SandboxJS is a JavaScript sandboxing library. Prior to 0.9.6, sandbox-defined fu
CVE-2026-25713 7.8 0.01% 1 0 2026-05-28T20:03:56.430000 MediaArea MediaInfoLib ID3v2 parsing heap buffer overflow vulnerability
CVE-2026-4944 8.8 0.00% 2 0 2026-05-28T19:16:42.677000 vllm-project/vllm version 0.14.1 contains a vulnerability where the `trust_remot
CVE-2026-47333 7.8 0.00% 2 0 2026-05-28T19:16:42.073000 Ubuntu Linux 6.8, 6.17 and 7.0 contain AppArmor SAUCE patches which can potentia
CVE-2026-47331 7.8 0.00% 2 0 2026-05-28T19:16:41.757000 Ubuntu Linux 6.8 contains AppArmor SAUCE patches which fail to acquire a lock wh
CVE-2026-46509 8.2 0.00% 2 0 2026-05-28T19:16:39.280000 deepobj provides get, set, delete deep objects in javascript. Prior to 1.0.3, pr
CVE-2026-45332 7.5 0.00% 2 0 2026-05-28T19:16:39.133000 Automad is a flat-file content management system and template engine. From 2.0.0
CVE-2026-45039 9.8 0.00% 2 0 2026-05-28T19:16:38.390000 RustFS is a distributed object storage system built in Rust. Prior to 1.0.0-beta
CVE-2026-35671 8.8 0.00% 2 0 2026-05-28T18:56:36.823000 phpMyFAQ before 4.1.3 contains an insecure direct object reference vulnerability
CVE-2026-45322 7.8 0.06% 1 0 2026-05-28T18:56:36.823000 Microsoft UFO open-source framework for intelligent automation across devices an
CVE-2026-45296 7.7 0.00% 2 0 2026-05-28T18:40:37.990000 OpenReplay is a self-hosted session replay suite. Prior to 1.26.0, OpenReplay's
CVE-2026-45374 9.6 0.00% 2 0 2026-05-28T18:40:37.990000 CodeWhale is a DeepSeek + MiMo coding agent in terminal. Prior to 0.8.26, the ta
CVE-2026-45311 9.6 0.00% 2 0 2026-05-28T18:40:37.990000 CodeWhale is a DeepSeek + MiMo coding agent in terminal. From 0.3.0 to 0.8.23, t
CVE-2026-38707 9.8 0.00% 2 0 2026-05-28T18:30:39 A command injection vulnerability exists in the IPSec VPN feature of InHand Netw
CVE-2026-38704 9.8 0.00% 2 0 2026-05-28T18:30:39 A command injection vulnerability exists in the WireGuard VPN feature of InHand
CVE-2026-45323 9.6 0.00% 2 0 2026-05-28T18:16:35.300000 MeshCore Card provides MeshCore Lovelace card for Home Assistant. Prior to 0.3.3
CVE-2023-25136 6.5 88.33% 1 11 2026-05-28T18:16:28.073000 OpenSSH server (sshd) 9.1 introduced a double-free vulnerability during options.
CVE-2026-49238 8.4 0.00% 2 0 2026-05-28T18:00:33.730000 An issue was discovered in Canonical Multipass before version 1.16.3. The host-s
CVE-2026-9628 8.8 0.04% 1 0 2026-05-28T16:16:31.907000 A weakness has been identified in UTT HiPER 1200GW up to 2.5.3-170306. Affected
CVE-2026-35675 8.2 0.00% 2 0 2026-05-28T14:20:34 ### Summary An authentication bypass vulnerability in phpMyFAQ allows any unauth
CVE-2026-45152 7.8 0.03% 1 0 2026-05-28T14:16:22.270000 uniget is a universal installer and updater for (container) tools. Prior to 0.27
CVE-2026-45137 8.2 0.04% 1 0 2026-05-28T14:16:22.163000 Anchor is a framework providing several convenient developer tools for writing S
CVE-2026-44887 9.8 0.21% 2 0 2026-05-28T14:16:21.723000 Pi.Alert is a WIFI / LAN intruder detector with web service monitoring. Prior to
CVE-2026-44635 7.5 0.05% 2 0 2026-05-28T14:16:20.450000 Kysely is a type-safe TypeScript SQL query builder. From 0.26.0 to 0.28.16, Defa
CVE-2026-48064 8.1 0.06% 1 0 2026-05-28T13:57:25.390000 pam_usb provides hardware authentication for Linux using ordinary removable medi
CVE-2026-44709 7.8 0.02% 1 0 2026-05-28T13:57:25.390000 pam_usb provides hardware authentication for Linux using ordinary removable medi
CVE-2026-9227 8.8 0.14% 2 0 2026-05-28T13:45:25.260000 The GutenBee – Gutenberg Blocks plugin for WordPress is vulnerable to Arbitrary
CVE-2026-7862 8.6 0.04% 2 0 2026-05-28T13:45:25.260000 The Eupago Gateway For Woocommerce WordPress plugin before 4.7.2 does not proper
CVE-2026-9009 8.8 0.24% 2 0 2026-05-28T13:45:25.260000 The Crawlomatic Multipage Scraper Post Generator plugin for WordPress is vulnera
CVE-2026-4408 9.0 0.23% 3 0 2026-05-28T09:31:27 A flaw was found in Samba. A remote attacker can exploit a misconfiguration in S
CVE-2026-6455 8.1 0.04% 2 0 2026-05-28T09:31:26 The WP Contact Form 7 DB Handler plugin for WordPress is vulnerable to Cross-Sit
CVE-2026-7802 8.8 0.06% 1 0 2026-05-28T06:31:16 The Frontend Admin by DynamiApps plugin for WordPress is vulnerable to authoriza
CVE-2026-32999 9.0 0.05% 1 0 2026-05-28T06:31:15 Insufficient character filtering in backup agent signing module on Comet Backup
CVE-2026-9789 None 0.02% 1 0 2026-05-28T03:31:21 A Local Privilege Escalation (LPE) vulnerability affects Acer NitroSense softwar
CVE-2026-7374 9.9 0.11% 1 0 2026-05-28T03:16:44.047000 A flaw was found in KubeVirt's virt-handler component. This vulnerability allows
CVE-2026-8915 8.8 0.02% 2 0 2026-05-28T00:30:35 Out-of-bounds write vulnerability in Samsung Open Source Escargot allows Overflo
CVE-2026-9739 None 0.02% 1 0 2026-05-28T00:30:35 Vulnerable to DNS rebinding attacks when using SSE (http://b/499408790). During
CVE-2026-9208 8.8 0.07% 1 0 2026-05-28T00:30:35 Tanium addressed an unauthorized code execution vulnerability in Connect.
CVE-2025-70103 7.3 0.04% 1 0 2026-05-27T21:32:27 Heap buffer overflow vulnerability in libjxl 0.12.0 via crafted PBM images to th
CVE-2026-8359 7.5 0.05% 1 0 2026-05-27T21:31:33 When processing a request with a URL path starting with /status or /sysinfo, WOS
CVE-2026-8362 9.8 0.04% 1 0 2026-05-27T21:31:32 A stack-based buffer overflow condition exists in WOSDefaultHttpModule.dll when
CVE-2026-8361 7.5 0.04% 1 0 2026-05-27T21:31:32 A path traversal vulnerability exists in WOSDefaultHttpModule.dll when processin
CVE-2026-8360 7.5 0.04% 1 0 2026-05-27T21:31:32 Function calls to WOSCommonUtil.dll!WOSSysInfoGetDeviceInterface() in various DL
CVE-2026-8363 9.8 0.04% 1 0 2026-05-27T21:31:32 A stack-based buffer overflow condition exists in WOSDeviceDropFolder.dll when p
CVE-2026-49017 None 0.04% 1 0 2026-05-27T21:31:24 In OpenStack Swift before 2.36.2 and 2.37.2, s3api middleware enters an infinite
CVE-2026-8364 9.8 0.04% 1 0 2026-05-27T21:16:19.700000 Gladinet Triofox Cloud Server Agent Access Service (GladServerAgentService.exe)
CVE-2026-45321 9.6 15.09% 4 12 2026-05-27T20:18:55.940000 On 2026-05-11, between approximately 19:20 and 19:26 UTC, 84 malicious versions
CVE-2026-48152 8.1 0.04% 1 0 2026-05-27T20:16:40.943000 Budibase is an open-source low-code platform. Prior to 3.39.0, the single-dataso
CVE-2026-45102 9.9 0.06% 1 0 2026-05-27T20:16:38.250000 OneUptime is an open-source monitoring and observability platform. Prior to 10.0
CVE-2026-44724 7.8 0.05% 1 0 2026-05-27T20:16:37.617000 systeminformation is a System and OS information library for node.js. From 4.17.
CVE-2026-44483 8.2 0.04% 1 0 2026-05-27T20:16:37.180000 RVF (formerly Remix Validated Form) provides easy form validation and state mana
CVE-2026-42197 8.7 0.03% 2 0 2026-05-27T20:16:36.260000 RELATE is a web-based courseware package. Versions prior to commit 555f0efb1c5bd
CVE-2025-43306 7.8 0.01% 1 0 2026-05-27T20:02:49.877000 A logic issue was addressed with improved checks. This issue is fixed in macOS S
CVE-2026-49002 9.1 0.03% 1 0 2026-05-27T19:59:03.360000 Access control failure means that an application does not effectively check user
CVE-2026-48153 8.5 0.03% 1 0 2026-05-27T19:44:35.987000 Budibase is an open-source low-code platform. Prior to 3.39.0, fetchToken in the
CVE-2026-44847 7.5 0.08% 1 0 2026-05-27T19:41:21.417000 MaxKB is an open-source AI assistant for enterprise. Prior to 2.9.0, MaxKB's web
CVE-2026-45574 8.1 0.01% 1 0 2026-05-27T19:41:21.417000 epa4all-client is the Java Client for epa4all / ePA 3.0 in the Telematik Infrast
CVE-2026-45659 8.8 0.62% 5 2 2026-05-27T18:32:54.337000 Deserialization of untrusted data in Microsoft Office SharePoint allows an autho
CVE-2026-8450 9.1 0.22% 1 0 2026-05-27T18:32:40 HTTP::Daemon versions before 6.17 for Perl allow OS command injection via send_f
CVE-2015-2808 10.0 21.39% 1 0 2026-05-27T18:32:34 The RC4 algorithm, as used in the TLS protocol and SSL protocol, does not proper
CVE-2026-48962 7.3 0.06% 1 0 2026-05-27T18:31:37 IO::Compress versions before 2.220 for Perl can execute arbitrary code in File::
CVE-2026-45047 7.5 0.08% 2 0 2026-05-27T18:16:24.150000 bird-lg-go is a BIRD looking glass in Go. Prior to 1.4.5, the apiHandler (and si
CVE-2025-12686 9.8 0.17% 1 0 2026-05-27T17:16:27.797000 Buffer copy without checking size of input ('Classic Buffer Overflow') vulnerabi
CVE-2026-9170 7.5 0.05% 1 0 2026-05-27T15:34:08 IBM Web Server Plug-ins for WebSphere Application Server and WebSphere Liberty 8
CVE-2026-6957 8.0 0.04% 1 0 2026-05-27T15:33:36 Mattermost Plugins versions <=1.1.5 fail to sanitize filenames received from fed
CVE-2026-7524 9.8 0.28% 1 0 2026-05-27T15:33:32 IBM Langflow OSS 1.0.0 through 1.9.1 could allow remote code execution due to im
CVE-2026-8179 8.8 0.06% 1 0 2026-05-27T15:33:32 IBM Aspera High-Speed Transfer Endpoint 3.7.4 through 4.4.7 Fix Pack 1 and IBM A
CVE-2026-8175 9.8 0.39% 1 0 2026-05-27T15:33:31 IBM Aspera High-Speed Transfer Endpoint 3.7.4 through 4.4.7 Fix Pack 1 and IBM A
CVE-2025-14713 7.5 0.03% 1 0 2026-05-27T14:54:20.160000 An Exposed Dangerous Method or Function vulnerability in Synology C2 Identity Ed
CVE-2026-42013 8.2 0.03% 1 0 2026-05-27T14:54:20.160000 A flaw was found in gnutls. When validating certificates, an oversized Subject A
CVE-2026-7365 8.4 0.02% 1 0 2026-05-27T14:53:51.833000 IBM Operations Analytics - Log Analysis  and IBM SmartCloud Analytics - Log Anal
CVE-2026-8180 7.5 0.06% 1 0 2026-05-27T14:53:51.833000 IBM Aspera High-Speed Transfer Endpoint 3.7.4 through 4.4.7 Fix Pack 1 and IBM A
CVE-2026-40826 4.9 0.03% 2 0 2026-05-27T14:53:22.863000 A high privileged remote attacker can exploit an unauthenticated SQL Injection v
CVE-2026-40837 6.5 0.03% 2 0 2026-05-27T14:53:22.863000 An low privileged remote attacker can exploit an unauthenticated SQL Injection v
CVE-2026-40818 7.5 0.05% 2 0 2026-05-27T14:53:22.863000 An unauthenticated remote attacker can exploit an unauthenticated SQL Injection
CVE-2026-40812 7.5 0.05% 2 0 2026-05-27T14:53:22.863000 An unauthenticated remote attacker can exploit an unauthenticated SQL Injection
CVE-2026-40824 5.5 0.03% 2 0 2026-05-27T14:53:22.863000 A high privileged remote attacker can exploit an unauthenticated SQL Injection v
CVE-2026-40831 6.5 0.03% 2 0 2026-05-27T14:53:22.863000 An low privileged remote attacker can exploit an unauthenticated SQL Injection v
CVE-2026-40835 6.5 0.03% 2 0 2026-05-27T14:53:22.863000 An low privileged remote attacker can exploit an unauthenticated SQL Injection v
CVE-2026-40836 7.1 0.03% 2 0 2026-05-27T14:53:22.863000 An low privileged remote attacker can exploit an unauthenticated SQL Injection v
CVE-2026-40827 5.5 0.03% 2 0 2026-05-27T14:53:22.863000 A high privileged remote attacker can exploit an unauthenticated SQL Injection v
CVE-2026-40832 6.5 0.03% 2 0 2026-05-27T14:53:22.863000 An low privileged remote attacker can exploit an unauthenticated SQL Injection v
CVE-2026-40828 5.5 0.03% 2 0 2026-05-27T14:53:22.863000 A high privileged remote attacker can exploit an unauthenticated SQL Injection v
CVE-2026-40816 7.5 0.05% 2 0 2026-05-27T14:53:22.863000 An unauthenticated remote attacker can exploit an unauthenticated SQL Injection
CVE-2025-41670 7.8 0.03% 1 0 2026-05-27T14:53:22.863000 A local user with low privileges may be able to influence the behavior of a priv
CVE-2026-48972 7.5 0.11% 1 0 2026-05-27T14:50:47.627000 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP
CVE-2026-42748 9.9 0.04% 1 0 2026-05-27T14:50:47.627000 Unrestricted Upload of File with Dangerous Type vulnerability in WPify WPify Woo
CVE-2026-42760 7.5 0.04% 1 0 2026-05-27T14:50:47.627000 Authentication Bypass Using an Alternate Path or Channel vulnerability in revmak
CVE-2026-42756 9.9 0.05% 1 0 2026-05-27T14:50:47.627000 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') v
CVE-2026-9632 8.8 0.04% 1 0 2026-05-27T14:50:47.627000 A flaw has been found in UTT HiPER 1250GW up to 3.2.7-210907-180535. Affected by
CVE-2026-44905 7.5 0.03% 1 0 2026-05-27T14:16:56.203000 Vanetza is an open-source implementation of the ETSI C-ITS protocol suite. In 26
CVE-2026-42735 8.2 0.04% 1 0 2026-05-27T12:31:30 Authentication Bypass Using an Alternate Path or Channel vulnerability in Iqonic
CVE-2026-42755 9.3 0.03% 1 0 2026-05-27T12:31:30 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injecti
CVE-2026-42747 9.3 0.03% 1 0 2026-05-27T12:31:30 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injecti
CVE-2026-42761 9.3 0.03% 1 0 2026-05-27T12:31:30 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injecti
CVE-2026-42758 9.8 0.04% 1 0 2026-05-27T12:31:30 Incorrect Privilege Assignment vulnerability in Saleswonder Team: Tobias Webinar
CVE-2026-42757 9.9 0.05% 1 0 2026-05-27T12:31:30 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') v
CVE-2026-3012 8.0 0.00% 1 0 2026-05-27T12:31:29 A flaw was found in Samba’s certificate auto-enrollment Group Policy handling. W
CVE-2026-40849 6.5 0.03% 2 0 2026-05-27T09:31:29 An low privileged remote attacker can exploit an unauthenticated SQL Injection v
CVE-2026-40851 8.4 0.02% 3 0 2026-05-27T09:31:28 A local attacker can perform a confusion attack on the cfgparser via a specially
CVE-2026-40850 7.5 0.05% 3 0 2026-05-27T09:31:28 An unauthenticated remote attacker can exploit an unauthenticated SQL Injection
CVE-2026-40852 7.2 0.07% 2 0 2026-05-27T09:31:28 A highly authenticated attacker can alter the config generator injecting a paylo
CVE-2026-40844 6.5 0.03% 2 0 2026-05-27T09:31:28 An low privileged remote attacker can exploit an unauthenticated SQL Injection v
CVE-2026-40841 6.5 0.03% 2 0 2026-05-27T09:31:28 An low privileged remote attacker can exploit an unauthenticated SQL Injection v
CVE-2026-40833 7.1 0.03% 2 0 2026-05-27T09:31:28 An low privileged remote attacker can exploit an unauthenticated SQL Injection v
CVE-2026-40845 6.5 0.03% 2 0 2026-05-27T09:31:28 An low privileged remote attacker can exploit an unauthenticated SQL Injection v
CVE-2026-40846 6.5 0.03% 2 0 2026-05-27T09:31:28 An low privileged remote attacker can exploit an unauthenticated SQL Injection v
CVE-2026-40834 7.1 0.03% 2 0 2026-05-27T09:31:28 An low privileged remote attacker can exploit an unauthenticated SQL Injection v
CVE-2026-40830 5.5 0.03% 2 0 2026-05-27T09:31:28 A high privileged remote attacker can exploit an unauthenticated SQL Injection v
CVE-2026-40840 6.5 0.03% 2 0 2026-05-27T09:31:28 An low privileged remote attacker can exploit an unauthenticated SQL Injection v
CVE-2026-40843 6.5 0.03% 2 0 2026-05-27T09:31:28 An low privileged remote attacker can exploit an unauthenticated SQL Injection v
CVE-2026-40842 6.5 0.03% 2 0 2026-05-27T09:31:28 An low privileged remote attacker can exploit an unauthenticated SQL Injection v
CVE-2026-40838 6.5 0.03% 2 0 2026-05-27T09:31:28 An low privileged remote attacker can exploit an unauthenticated SQL Injection v
CVE-2026-40839 6.5 0.03% 2 0 2026-05-27T09:31:28 An low privileged remote attacker can exploit an unauthenticated SQL Injection v
CVE-2026-40848 6.5 0.03% 2 0 2026-05-27T09:31:28 An low privileged remote attacker can exploit an unauthenticated SQL Injection v
CVE-2026-40847 6.5 0.03% 2 0 2026-05-27T09:31:28 An low privileged remote attacker can exploit an unauthenticated SQL Injection v
CVE-2025-13392 8.1 0.05% 1 0 2026-05-27T09:31:24 Improper check for unusual or exceptional conditions vulnerability in SSO in Syn
CVE-2025-30028 8.6 0.04% 1 0 2026-05-27T09:31:24 A vulnerability in Active Backup for Business allows unauthorized remote attacke
CVE-2026-40829 5.5 0.03% 2 0 2026-05-27T09:31:24 A high privileged remote attacker can exploit an unauthenticated SQL Injection v
CVE-2026-40825 5.5 0.03% 3 0 2026-05-27T09:31:23 A high privileged remote attacker can exploit an unauthenticated SQL Injection v
CVE-2026-40817 7.5 0.05% 2 0 2026-05-27T09:31:23 An unauthenticated remote attacker can exploit an unauthenticated SQL Injection
CVE-2026-40823 5.5 0.03% 2 0 2026-05-27T09:31:23 A high privileged remote attacker can exploit an unauthenticated SQL Injection v
CVE-2026-40810 7.5 0.05% 2 0 2026-05-27T09:31:23 An unauthenticated remote attacker can exploit an unauthenticated SQL Injection
CVE-2026-40815 7.5 0.05% 2 0 2026-05-27T09:31:23 An unauthenticated remote attacker can exploit an unauthenticated SQL Injection
CVE-2026-40819 7.5 0.05% 2 0 2026-05-27T09:31:23 An unauthenticated remote attacker can exploit an unauthenticated SQL Injection
CVE-2026-40821 4.9 0.03% 2 0 2026-05-27T09:31:23 A high privileged remote attacker can exploit an unauthenticated SQL Injection v
CVE-2026-40813 7.5 0.05% 2 0 2026-05-27T09:31:23 An unauthenticated remote attacker can exploit an unauthenticated SQL Injection
CVE-2026-40822 4.9 0.03% 2 0 2026-05-27T09:31:23 A high privileged remote attacker can exploit an unauthenticated SQL Injection v
CVE-2026-40811 7.5 0.05% 2 0 2026-05-27T09:31:22 An unauthenticated remote attacker can exploit an unauthenticated SQL Injection
CVE-2026-40814 7.5 0.05% 2 0 2026-05-27T09:31:22 An unauthenticated remote attacker can exploit an unauthenticated SQL Injection
CVE-2025-41669 8.8 0.06% 1 0 2026-05-27T09:31:22 The Web-based Management allows a remote low privileged Engineer user to install
CVE-2026-8760 9.8 0.25% 1 0 2026-05-27T09:31:21 The Login with OTP plugin for WordPress is vulnerable to authentication bypass i
CVE-2026-5260 8.2 0.14% 1 0 2026-05-27T06:32:38 A flaw was found in libgnutls. A remote attacker, by sending an extremely short
CVE-2026-2253 7.7 0.03% 1 0 2026-05-27T06:31:42 Hitachi Vantara Pentaho Data Integration & Analytics versions before 10.2.0.7 an
CVE-2026-9631 8.8 0.04% 1 0 2026-05-27T03:30:37 A vulnerability was detected in UTT HiPER 1250GW up to 3.2.7-210907-180535. Affe
CVE-2026-9627 8.8 0.04% 1 0 2026-05-27T03:30:37 A security flaw has been discovered in UTT HiPER 1200GW up to 2.5.3-170306. This
CVE-2026-9207 8.8 0.07% 1 0 2026-05-27T03:30:36 Tanium addressed an unauthorized code execution vulnerability in Connect.
CVE-2026-9312 None 0.05% 1 0 2026-05-27T00:31:29 A server-side request forgery (SSRF) vulnerability was identified in GitHub Ente
CVE-2026-48172 9.8 7.96% 5 3 2026-05-26T21:32:41 LiteSpeed User-End cPanel Plugin before 2.4.5 allows privilege escalation (possi
CVE-2026-9642 9.8 0.04% 1 0 2026-05-26T21:32:08 There is a mitigation bypass / (incomplete fix) for CVE-2025-62582 (Unauthentica
CVE-2026-8676 8.8 0.02% 1 0 2026-05-26T21:32:07 An attacker is able to downgrade the security of a Bluetooth LE connection by de
CVE-2026-7454 7.8 0.01% 1 0 2026-05-26T20:40:28.047000 A maliciously crafted WRL file, when parsed through Autodesk 3ds Max, can force
CVE-2026-8854 7.5 0.01% 1 0 2026-05-26T20:27:32.703000 IBM HTTP Server 8.5, and 9.0 is vulnerable to denial of service via the optional
CVE-2026-8855 8.1 0.24% 1 0 2026-05-26T20:25:33.130000 IBM HTTP Server 8.5, and 9.0 is vulnerable to remote code execution and denial o
CVE-2026-46368 8.8 0.06% 1 0 2026-05-26T19:50:21.747000 luci-app-https-dns-proxy through 2025.12.29-5 — an optional LuCI web UI add-on f
CVE-2026-45247 9.8 0.10% 1 0 2026-05-26T19:50:21.747000 Mirasvit Full Page Cache Warmer for Magento 2 before version 1.11.12 contains a
CVE-2026-5426 9.1 0.07% 3 1 2026-05-26T19:16:29.123000 Hard-coded ASP.NET/IIS machineKey value in Digital Knowledge KnowledgeDeliver de
CVE-2026-8620 7.5 0.05% 1 0 2026-05-26T19:06:14.330000 IBM Web Server Plug-ins for WebSphere Application Server and WebSphere Liberty 8
CVE-2026-8856 7.7 0.03% 1 0 2026-05-26T18:31:51 IBM HTTP Server 8.5, and 9.0 is vulnerable to denial of service in configuration
CVE-2026-25112 7.8 0.01% 1 0 2026-05-26T18:31:42 A high-severity vulnerability in the deployment of Genetec RabbitMQ that allows
CVE-2026-43284 8.8 25.56% 1 33 2026-05-26T18:16:49.533000 In the Linux kernel, the following vulnerability has been resolved: xfrm: esp:
CVE-2026-4480 8.5 0.08% 1 0 2026-05-26T15:32:17 A flaw was found in the Samba printing subsystem. Samba passes the client-contro
CVE-2026-48131 8.1 0.02% 1 0 2026-05-26T15:32:16 The VPN service may mishandle an unexpected IKE fragment value received on the I
CVE-2026-9543 9.8 0.20% 1 0 2026-05-26T15:32:16 A vulnerability has been found in Totolink N300RH 6.1c.1353_B20190305. Affected
CVE-2026-39661 7.5 0.11% 1 0 2026-05-26T13:30:57 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP
CVE-2026-25104 7.8 0.01% 2 0 2026-05-26T13:30:56 MediaArea MediaInfoLib LXF parsing heap-based buffer overflow vulnerability
CVE-2026-45250 7.8 0.01% 1 1 2026-05-22T03:30:26 The setcred(2) system call is only available to privileged users. However, befo
CVE-2026-9082 6.5 34.17% 1 10 template 2026-05-20T21:32:36 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injecti
CVE-2026-41091 7.8 5.94% 2 2 2026-05-20T19:06:36.850000 Improper link resolution before file access ('link following') in Microsoft Defe
CVE-2010-0249 8.8 88.79% 1 0 2026-05-20T18:32:34 Use-after-free vulnerability in Microsoft Internet Explorer 6, 6 SP1, 7, and 8 o
CVE-2026-45498 4.0 4.11% 1 1 2026-05-20T18:31:35 Microsoft Defender Denial of Service Vulnerability
CVE-2026-20223 10.0 0.06% 1 1 2026-05-20T17:30:40.450000 A vulnerability in the&nbsp;access validation of internal REST APIs of Cisco Sec
CVE-2026-42096 None 0.04% 1 1 2026-05-19T15:31:29 Sparx Pro Cloud Server is vulnerable to Broken Access Control within communicati
CVE-2026-45829 0 0.17% 1 2 2026-05-19T14:16:46.977000 A pre-authentication, code injection vulnerability in version 1.0.0 or later of
CVE-2026-45736 4.4 0.01% 1 0 2026-05-18T19:02:42 ### Impact The `websocket.close()` implementation is vulnerable to uninitialize
CVE-2026-45716 8.8 0.03% 2 0 2026-05-18T17:42:25 ## Summary The `POST /api/global/users/onboard` endpoint is protected by `works
CVE-2026-45298 8.6 0.02% 1 0 2026-05-18T16:41:41 ## Summary In a default dozzle deploy (the documented quickstart, no `DOZZLE_AU
CVE-2026-43500 7.8 27.00% 1 15 2026-05-17T18:31:33 In the Linux kernel, the following vulnerability has been resolved: rxrpc: Also
CVE-2026-41089 9.8 0.13% 1 0 2026-05-15T15:42:17.907000 Stack-based buffer overflow in Windows Netlogon allows an unauthorized attacker
CVE-2026-20182 10.0 77.32% 2 3 template 2026-05-15T12:45:53.990000 May 2026: This security advisory provides the details and fix information for a
CVE-2026-8398 9.8 33.02% 2 0 2026-05-15T09:31:43 A supply chain attack compromised the official installation packages of DAEMON T
CVE-2026-42945 8.1 0.90% 1 36 2026-05-14T21:30:40 NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_rewrite_mo
CVE-2026-45083 9.8 0.04% 1 0 2026-05-13T15:33:25 ### Summary The Goobi viewer REST endpoint `POST /api/v1/index/stream` accepted
CVE-2026-28910 3.3 0.01% 2 0 2026-05-13T00:49:16 This issue was addressed with improved permissions checking. This issue is fixed
CVE-2016-10156 7.8 0.71% 1 0 2026-05-13T00:24:29.033000 A flaw in systemd v228 in /src/basic/fs-util.c caused world writable suid files
CVE-2026-45088 7.5 0.03% 2 0 2026-05-12T15:08:14 ## Summary When dalfox is run in REST API server mode, the `custom-payload-file
CVE-2026-26980 9.4 56.66% 3 4 template 2026-05-12T13:31:01 ### Impact A SQL injection vulnerability existed in Ghost's Content API that al
CVE-2026-44971 8.2 0.03% 1 0 2026-05-11T14:45:09 # Summary The programmatic remote project scanning path rewrites attacker-contro
CVE-2026-44966 8.3 0.08% 1 0 2026-05-09T00:40:17 ### Summary A prototype pollution vulnerability was discovered in Velocity.js <=
CVE-2026-44895 None 0.02% 1 0 2026-05-09T00:10:30 ## SSE Transport Has No Authentication and Wildcard CORS, Exposing All 86 GitLab
CVE-2026-44900 8.1 0.00% 1 0 2026-05-08T23:47:13 ### Impact In SignedPublicKeysTrustValidatorImpl.isTrusted(), the ECDSA signatur
CVE-2026-44843 8.2 0.01% 1 0 2026-05-08T23:07:34 LangChain contains older runtime code paths that deserialize run inputs, run out
CVE-2026-44327 10.0 0.04% 1 0 2026-05-08T22:59:24 ### Summary free5GC's NEF mounts the `nnef-oam` route group without inbound OAut
CVE-2026-44326 9.4 0.04% 1 0 2026-05-08T22:59:00 ### Summary free5GC's NEF mounts the `3gpp-traffic-influence` API without inboun
CVE-2026-41241 8.7 0.04% 1 0 2026-04-28T19:07:37.290000 pretalx is a conference planning tool. Prior to 2026.1.0, The organiser search i
CVE-2026-40933 9.9 0.07% 1 0 2026-04-16T21:18:18 ### Summary Due to unsafe serialization of stdio commands in the MCP adapter, an
CVE-2025-2005 9.8 2.94% 1 4 2026-04-08T17:20:35.697000 The Front End Users plugin for WordPress is vulnerable to arbitrary file uploads
CVE-2024-23218 5.9 0.19% 1 0 2026-04-02T21:32:39 A timing side-channel issue was addressed with improvements to constant-time com
CVE-2026-33416 7.5 0.02% 1 0 2026-04-02T20:28:33.973000 LIBPNG is a reference library for use in applications that read, create, and man
CVE-2026-33509 7.5 0.10% 1 0 2026-03-26T20:47:02.337000 pyLoad is a free and open-source download manager written in Python. From versio
CVE-2026-4565 8.8 0.09% 2 2 2026-03-23T03:31:45 A vulnerability was detected in Tenda AC21 16.03.08.16. Impacted is the function
CVE-2026-3172 8.1 0.06% 1 0 2026-02-25T21:31:25 Buffer overflow in parallel HNSW index build in pgvector 0.6.0 through 0.8.1 all
CVE-2021-4229 8.8 0.86% 1 1 2026-02-17T21:57:43 The npm package `ua-parser-js` had three versions published with malicious code.
CVE-2025-62582 9.8 0.03% 1 0 2026-01-20T16:58:23.900000 Delta Electronics DIAView has multiple vulnerabilities.
CVE-2017-16054 7.5 0.26% 1 0 2024-11-21T03:15:44.050000 `nodefabric` was a malicious module published with the intent to hijack environm
CVE-2026-48027 0 26.85% 4 0 N/A
CVE-2026-47761 0 0.00% 2 0 N/A
CVE-2026-47760 0 0.00% 2 0 N/A
CVE-2026-47759 0 0.00% 2 0 N/A
CVE-2026-27771 0 0.00% 3 2 N/A
CVE-2026-48710 0 0.03% 13 3 N/A
CVE-2025-5199 0 0.04% 1 0 N/A
CVE-2026-48095 0 0.00% 3 1 N/A
CVE-2026-46402 0 0.06% 2 0 N/A
CVE-2026-44590 0 0.85% 1 1 N/A
CVE-2026-45108 0 0.07% 1 0 N/A
CVE-2026-45104 0 0.04% 1 0 N/A
CVE-2026-44888 0 0.05% 1 0 N/A
CVE-2026-46414 0 0.04% 2 0 N/A
CVE-2026-44713 0 0.02% 1 0 N/A
CVE-2026-44712 0 0.02% 1 0 N/A
CVE-2026-44711 0 0.02% 1 0 N/A
CVE-2026-46425 0 0.04% 1 0 N/A
CVE-2026-48151 0 0.03% 1 0 N/A
CVE-2026-48150 0 0.05% 1 0 N/A
CVE-2026-48149 0 0.03% 1 0 N/A
CVE-2026-41613 0 0.07% 1 0 N/A
CVE-2026-40820 0 0.00% 2 0 N/A
CVE-2026-44450 0 0.07% 1 0 N/A
CVE-2026-44449 0 0.08% 1 0 N/A
CVE-2026-43988 0 0.03% 1 0 N/A
CVE-2026-43935 0 0.13% 1 0 N/A
CVE-2026-33636 0 0.04% 1 0 N/A

CVE-2026-45348
(8.7 HIGH)

EPSS: 0.00%

updated 2026-05-28T20:16:24.857000

2 posts

pyLoad is a free and open-source download manager written in Python. Prior to 0.5.0b3.dev100, the packages.js template at src/pyload/webui/app/themes/modern/templates/js/packages.js:172 interpolates a stored link URL into a template literal inside single-quoted HTML and then writes the result to the DOM via $(div).html(html). No escaping runs between the API value and innerHTML. An attacker (Alice

thehackerwire@mastodon.social at 2026-05-28T19:00:41.000Z ##

🟠 CVE-2026-45348 - High (8.7)

pyLoad is a free and open-source download manager written in Python. Prior to 0.5.0b3.dev100, the packages.js template at src/pyload/webui/app/themes/modern/templates/js/packages.js:172 interpolates a stored link URL into a template literal inside...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-05-28T19:00:41.000Z ##

🟠 CVE-2026-45348 - High (8.7)

pyLoad is a free and open-source download manager written in Python. Prior to 0.5.0b3.dev100, the packages.js template at src/pyload/webui/app/themes/modern/templates/js/packages.js:172 interpolates a stored link URL into a template literal inside...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-43898
(10.0 CRITICAL)

EPSS: 0.00%

updated 2026-05-28T20:16:23.810000

2 posts

SandboxJS is a JavaScript sandboxing library. Prior to 0.9.6, sandbox-defined functions expose Function.caller, allowing sandboxed code to recover the internal LispType.Call runtime callback. That callback can then be invoked with attacker-controlled fake context and obj values to extract blocked host statics, recover the real host Function constructor, and execute arbitrary host JavaScript. This

thehackerwire@mastodon.social at 2026-05-28T19:02:01.000Z ##

🔴 CVE-2026-43898 - Critical (10)

SandboxJS is a JavaScript sandboxing library. Prior to 0.9.6, sandbox-defined functions expose Function.caller, allowing sandboxed code to recover the internal LispType.Call runtime callback. That callback can then be invoked with attacker-control...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-05-28T19:02:01.000Z ##

🔴 CVE-2026-43898 - Critical (10)

SandboxJS is a JavaScript sandboxing library. Prior to 0.9.6, sandbox-defined functions expose Function.caller, allowing sandboxed code to recover the internal LispType.Call runtime callback. That callback can then be invoked with attacker-control...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-25713
(7.8 HIGH)

EPSS: 0.01%

updated 2026-05-28T20:03:56.430000

1 posts

MediaArea MediaInfoLib ID3v2 parsing heap buffer overflow vulnerability

thehackerwire@mastodon.social at 2026-05-26T14:00:23.000Z ##

🟠 CVE-2026-25713 - High (7.8)

MediaArea MediaInfoLib ID3v2 parsing heap buffer overflow vulnerability

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-4944
(8.8 HIGH)

EPSS: 0.00%

updated 2026-05-28T19:16:42.677000

2 posts

vllm-project/vllm version 0.14.1 contains a vulnerability where the `trust_remote_code=True` parameter is hardcoded in two model implementation files (`vllm/model_executor/models/nemotron_vl.py` and `vllm/model_executor/models/kimi_k25.py`). This bypasses the user's explicit `--trust-remote-code=False` setting, enabling remote code execution via malicious HuggingFace model repositories. This issue

thehackerwire@mastodon.social at 2026-05-28T20:00:38.000Z ##

🟠 CVE-2026-4944 - High (8.8)

vllm-project/vllm version 0.14.1 contains a vulnerability where the `trust_remote_code=True` parameter is hardcoded in two model implementation files (`vllm/model_executor/models/nemotron_vl.py` and `vllm/model_executor/models/kimi_k25.py`). This ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-05-28T20:00:38.000Z ##

🟠 CVE-2026-4944 - High (8.8)

vllm-project/vllm version 0.14.1 contains a vulnerability where the `trust_remote_code=True` parameter is hardcoded in two model implementation files (`vllm/model_executor/models/nemotron_vl.py` and `vllm/model_executor/models/kimi_k25.py`). This ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-47333
(7.8 HIGH)

EPSS: 0.00%

updated 2026-05-28T19:16:42.073000

2 posts

Ubuntu Linux 6.8, 6.17 and 7.0 contain AppArmor SAUCE patches which can potentially incorrectly compute the size of an internal buffer, leading to a heap memory out-of-bounds read in notification handling code. The bug can be triggered by an unprivileged local user and can result in invalid data being processed by the AppArmor DFA policy engine.

thehackerwire@mastodon.social at 2026-05-28T20:00:29.000Z ##

🟠 CVE-2026-47333 - High (7.8)

Ubuntu Linux 6.8, 6.17 and 7.0 contain AppArmor SAUCE patches which can potentially incorrectly compute the size of an internal buffer, leading to a heap memory out-of-bounds read in notification handling code. The bug can be triggered by an unpri...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-05-28T20:00:29.000Z ##

🟠 CVE-2026-47333 - High (7.8)

Ubuntu Linux 6.8, 6.17 and 7.0 contain AppArmor SAUCE patches which can potentially incorrectly compute the size of an internal buffer, leading to a heap memory out-of-bounds read in notification handling code. The bug can be triggered by an unpri...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-47331
(7.8 HIGH)

EPSS: 0.00%

updated 2026-05-28T19:16:41.757000

2 posts

Ubuntu Linux 6.8 contains AppArmor SAUCE patches which fail to acquire a lock when modifying a linked list. An unprivileged local user could trigger the race condition that can lead to a use-after-free (UAF) and, theoretically, arbitrary code execution.

thehackerwire@mastodon.social at 2026-05-28T20:00:48.000Z ##

🟠 CVE-2026-47331 - High (7.8)

Ubuntu Linux 6.8 contains AppArmor SAUCE patches which fail to acquire a lock when modifying a linked list. An unprivileged local user could trigger the race condition that can lead to a use-after-free (UAF) and, theoretically, arbitrary code exec...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-05-28T20:00:48.000Z ##

🟠 CVE-2026-47331 - High (7.8)

Ubuntu Linux 6.8 contains AppArmor SAUCE patches which fail to acquire a lock when modifying a linked list. An unprivileged local user could trigger the race condition that can lead to a use-after-free (UAF) and, theoretically, arbitrary code exec...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-46509
(8.2 HIGH)

EPSS: 0.00%

updated 2026-05-28T19:16:39.280000

2 posts

deepobj provides get, set, delete deep objects in javascript. Prior to 1.0.3, prototype pollution is possible when property paths contain __proto__/constructor/prototype. The property path must not be exposed as user input. This vulnerability is fixed in 1.0.3.

thehackerwire@mastodon.social at 2026-05-28T20:01:38.000Z ##

🟠 CVE-2026-46509 - High (8.2)

deepobj provides get, set, delete deep objects in javascript. Prior to 1.0.3, prototype pollution is possible when property paths contain __proto__/constructor/prototype. The property path must not be exposed as user input. This vulnerability is f...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-05-28T20:01:38.000Z ##

🟠 CVE-2026-46509 - High (8.2)

deepobj provides get, set, delete deep objects in javascript. Prior to 1.0.3, prototype pollution is possible when property paths contain __proto__/constructor/prototype. The property path must not be exposed as user input. This vulnerability is f...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-45332
(7.5 HIGH)

EPSS: 0.00%

updated 2026-05-28T19:16:39.133000

2 posts

Automad is a flat-file content management system and template engine. From 2.0.0-alpha.1 to 2.0.0-beta.27, a Broken Access Control vulnerability allows an unauthenticated attacker to retrieve the bcrypt password hash of every administrator account with a single POST request. The /_api/user-collection/create-first-user setup endpoint remains publicly accessible once initial configuration is complet

thehackerwire@mastodon.social at 2026-05-28T20:01:28.000Z ##

🟠 CVE-2026-45332 - High (7.5)

Automad is a flat-file content management system and template engine. From 2.0.0-alpha.1 to 2.0.0-beta.27, a Broken Access Control vulnerability allows an unauthenticated attacker to retrieve the bcrypt password hash of every administrator account...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-05-28T20:01:28.000Z ##

🟠 CVE-2026-45332 - High (7.5)

Automad is a flat-file content management system and template engine. From 2.0.0-alpha.1 to 2.0.0-beta.27, a Broken Access Control vulnerability allows an unauthenticated attacker to retrieve the bcrypt password hash of every administrator account...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-45039
(9.8 CRITICAL)

EPSS: 0.00%

updated 2026-05-28T19:16:38.390000

2 posts

RustFS is a distributed object storage system built in Rust. Prior to 1.0.0-beta.2, the internode RPC layer authenticates every request with an HMAC-SHA256 signature using a shared secret. The function that produces this secret, get_shared_secret() in crates/ecstore/src/rpc/http_auth.rs, falls back to the public, source-tree-embedded DEFAULT_SECRET_KEY = "rustfsadmin" when neither the RUSTFS_RPC_S

thehackerwire@mastodon.social at 2026-05-28T20:01:47.000Z ##

🔴 CVE-2026-45039 - Critical (9.8)

RustFS is a distributed object storage system built in Rust. Prior to 1.0.0-beta.2, the internode RPC layer authenticates every request with an HMAC-SHA256 signature using a shared secret. The function that produces this secret, get_shared_secret(...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-05-28T20:01:47.000Z ##

🔴 CVE-2026-45039 - Critical (9.8)

RustFS is a distributed object storage system built in Rust. Prior to 1.0.0-beta.2, the internode RPC layer authenticates every request with an HMAC-SHA256 signature using a shared secret. The function that produces this secret, get_shared_secret(...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-35671
(8.8 HIGH)

EPSS: 0.00%

updated 2026-05-28T18:56:36.823000

2 posts

phpMyFAQ before 4.1.3 contains an insecure direct object reference vulnerability in the admin API user password endpoint that allows authenticated administrators to change any user's password without authorization verification. An attacker with low-privilege admin credentials can escalate to SuperAdmin by modifying the userId parameter in the overwrite-password API request.

thehackerwire@mastodon.social at 2026-05-28T17:02:00.000Z ##

🟠 CVE-2026-35671 - High (8.8)

phpMyFAQ before 4.1.3 contains an insecure direct object reference vulnerability in the admin API user password endpoint that allows authenticated administrators to change any user's password without authorization verification. An attacker with lo...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-05-28T17:02:00.000Z ##

🟠 CVE-2026-35671 - High (8.8)

phpMyFAQ before 4.1.3 contains an insecure direct object reference vulnerability in the admin API user password endpoint that allows authenticated administrators to change any user's password without authorization verification. An attacker with lo...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-45322
(7.8 HIGH)

EPSS: 0.06%

updated 2026-05-28T18:56:36.823000

1 posts

Microsoft UFO open-source framework for intelligent automation across devices and platforms. Microsoft UFO tagged releases up to and including v3.0.0 contain an OS command injection vulnerability in the shell action replay path. In affected releases, ShellReceiver.run_shell() passes a command string from action parameters directly to subprocess.Popen() with shell=True and executable=powershell.exe

thehackerwire@mastodon.social at 2026-05-28T00:00:02.000Z ##

🟠 CVE-2026-45322 - High (7.8)

Microsoft UFO open-source framework for intelligent automation across devices and platforms. Microsoft UFO tagged releases up to and including v3.0.0 contain an OS command injection vulnerability in the shell action replay path. In affected releas...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-45296
(7.7 HIGH)

EPSS: 0.00%

updated 2026-05-28T18:40:37.990000

2 posts

OpenReplay is a self-hosted session replay suite. Prior to 1.26.0, OpenReplay's Python API exposes several app_apikey routes that trust a caller-provided projectKey after validating only that the API key itself is valid and that the target projectKey exists. The authorization flow does not verify that the authenticated API key and the requested project belong to the same tenant. Because the public

thehackerwire@mastodon.social at 2026-05-28T19:01:48.000Z ##

🟠 CVE-2026-45296 - High (7.7)

OpenReplay is a self-hosted session replay suite. Prior to 1.26.0, OpenReplay's Python API exposes several app_apikey routes that trust a caller-provided projectKey after validating only that the API key itself is valid and that the target project...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-05-28T19:01:48.000Z ##

🟠 CVE-2026-45296 - High (7.7)

OpenReplay is a self-hosted session replay suite. Prior to 1.26.0, OpenReplay's Python API exposes several app_apikey routes that trust a caller-provided projectKey after validating only that the API key itself is valid and that the target project...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-45374
(9.6 CRITICAL)

EPSS: 0.00%

updated 2026-05-28T18:40:37.990000

2 posts

CodeWhale is a DeepSeek + MiMo coding agent in terminal. Prior to 0.8.26, the task_create tool spawns durable sub-agents that inherit two insecure defaults, allow_shell defaults to true (config.rs:1499: self.allow_shell.unwrap_or(true)) and auto_approve defaults to true (task_manager.rs:297: auto_approve: Some(true)). When a user approves a task_create call (which requires ApprovalRequirement::Req

thehackerwire@mastodon.social at 2026-05-28T19:01:38.000Z ##

🔴 CVE-2026-45374 - Critical (9.6)

CodeWhale is a DeepSeek + MiMo coding agent in terminal. Prior to 0.8.26, the task_create tool spawns durable sub-agents that inherit two insecure defaults, allow_shell defaults to true (config.rs:1499: self.allow_shell.unwrap_or(true)) and auto_a...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-05-28T19:01:38.000Z ##

🔴 CVE-2026-45374 - Critical (9.6)

CodeWhale is a DeepSeek + MiMo coding agent in terminal. Prior to 0.8.26, the task_create tool spawns durable sub-agents that inherit two insecure defaults, allow_shell defaults to true (config.rs:1499: self.allow_shell.unwrap_or(true)) and auto_a...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-45311
(9.6 CRITICAL)

EPSS: 0.00%

updated 2026-05-28T18:40:37.990000

2 posts

CodeWhale is a DeepSeek + MiMo coding agent in terminal. From 0.3.0 to 0.8.23, the run_tests tool executes cargo test in the workspace with ApprovalRequirement::Auto, meaning it runs without any user approval prompt. cargo test compiles and executes arbitrary code: test binaries, build.rs build scripts, and proc macros. While auto-approving test execution is a deliberate design choice, it creates

thehackerwire@mastodon.social at 2026-05-28T19:00:11.000Z ##

🔴 CVE-2026-45311 - Critical (9.6)

CodeWhale is a DeepSeek + MiMo coding agent in terminal. From 0.3.0 to 0.8.23, the run_tests tool executes cargo test in the workspace with ApprovalRequirement::Auto, meaning it runs without any user approval prompt. cargo test compiles and execut...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-05-28T19:00:11.000Z ##

🔴 CVE-2026-45311 - Critical (9.6)

CodeWhale is a DeepSeek + MiMo coding agent in terminal. From 0.3.0 to 0.8.23, the run_tests tool executes cargo test in the workspace with ApprovalRequirement::Auto, meaning it runs without any user approval prompt. cargo test compiles and execut...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-38707
(9.8 CRITICAL)

EPSS: 0.00%

updated 2026-05-28T18:30:39

2 posts

A command injection vulnerability exists in the IPSec VPN feature of InHand Networks IR302 firmware V3.5.108, IR305 firmware V1.0.118, IR315 firmware V1.0.118, IR615 firmware V1.0.118, and earlier versions. Attackers can exploit this vulnerability to obtain ROOT privileges on remote target devices.

cR0w at 2026-05-28T18:41:42.702Z ##

Anyone know anything about these router vulns? I'm especially interested in CVE-2026-38704, a command injection in the Wireguard function, and CVE-2026-38707, a command injection in the IPSEC function.

inhand.com/wp-content/uploads/

##

cR0w@infosec.exchange at 2026-05-28T18:41:42.000Z ##

Anyone know anything about these router vulns? I'm especially interested in CVE-2026-38704, a command injection in the Wireguard function, and CVE-2026-38707, a command injection in the IPSEC function.

inhand.com/wp-content/uploads/

##

CVE-2026-38704
(9.8 CRITICAL)

EPSS: 0.00%

updated 2026-05-28T18:30:39

2 posts

A command injection vulnerability exists in the WireGuard VPN feature of InHand Networks IR302 firmware V3.5.108, IR305 firmware V1.0.118, IR315 firmware V1.0.118, IR615 firmware V1.0.118, and earlier versions. Attackers can exploit this vulnerability to obtain ROOT privileges on remote target devices.

cR0w at 2026-05-28T18:41:42.702Z ##

Anyone know anything about these router vulns? I'm especially interested in CVE-2026-38704, a command injection in the Wireguard function, and CVE-2026-38707, a command injection in the IPSEC function.

inhand.com/wp-content/uploads/

##

cR0w@infosec.exchange at 2026-05-28T18:41:42.000Z ##

Anyone know anything about these router vulns? I'm especially interested in CVE-2026-38704, a command injection in the Wireguard function, and CVE-2026-38707, a command injection in the IPSEC function.

inhand.com/wp-content/uploads/

##

CVE-2026-45323
(9.6 CRITICAL)

EPSS: 0.00%

updated 2026-05-28T18:16:35.300000

2 posts

MeshCore Card provides MeshCore Lovelace card for Home Assistant. Prior to 0.3.3, Meshcore node names are rendered without HTML escaping in meshcore-card, allowing any node within direct or indirect (repeated) radio range to execute arbitrary javascript in the Home Assistant frontend of anyone viewing the card. This vulnerability is fixed in 0.3.3.

thehackerwire@mastodon.social at 2026-05-28T19:00:27.000Z ##

🔴 CVE-2026-45323 - Critical (9.6)

MeshCore Card provides MeshCore Lovelace card for Home Assistant. Prior to 0.3.3, Meshcore node names are rendered without HTML escaping in meshcore-card, allowing any node within direct or indirect (repeated) radio range to execute arbitrary java...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-05-28T19:00:27.000Z ##

🔴 CVE-2026-45323 - Critical (9.6)

MeshCore Card provides MeshCore Lovelace card for Home Assistant. Prior to 0.3.3, Meshcore node names are rendered without HTML escaping in meshcore-card, allowing any node within direct or indirect (repeated) radio range to execute arbitrary java...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2023-25136
(6.5 MEDIUM)

EPSS: 88.33%

updated 2026-05-28T18:16:28.073000

1 posts

OpenSSH server (sshd) 9.1 introduced a double-free vulnerability during options.kex_algorithms handling. This is fixed in OpenSSH 9.2. The double free can be leveraged, by an unauthenticated remote attacker in the default configuration, to jump to any location in the sshd address space. One third-party report states "remote code execution is theoretically possible."

11 repos

https://github.com/jfrog/jfrog-CVE-2023-25136-OpenSSH_Double-Free

https://github.com/adhikara13/CVE-2023-25136

https://github.com/nhakobyan685/CVE-2023-25136

https://github.com/malvika-thakur/CVE-2023-25136

https://github.com/axylisdead/CVE-2023-25136_POC

https://github.com/H4K6/CVE-2023-25136

https://github.com/ticofookfook/CVE-2023-25136

https://github.com/Christbowel/CVE-2023-25136

https://github.com/Lane0218/CVE-2023-25136-PoC

https://github.com/Business1sg00d/CVE-2023-25136

https://github.com/mrmtwoj/CVE-2023-25136

grawity@treehouse.systems at 2026-05-28T07:50:28.000Z ##

my approach to finding security bugs:

me in 2017: "hmm the directory is world-writable, and the sticky bit looks ugly in my colorized ls, I'll send a patch"
someone on IRC a week later: "hey you're named in CVE-2016-10156"

me in 2023: "ugh OpenSSH crashes when I'm connecting from my retro Win98 VM"
someone on IRC a week later: "hey did you know you're in CVE-2023-25136"

##

CVE-2026-49238
(8.4 HIGH)

EPSS: 0.00%

updated 2026-05-28T18:00:33.730000

2 posts

An issue was discovered in Canonical Multipass before version 1.16.3. The host-side SFTP server component (sshfs_server), which executes with root privileges on the host, contains a path containment bypass vulnerability within its validate_path function in src/sshfs_mount/sftp_server.cpp. The function performs a plain string prefix comparison on requested paths without path separator validation or

thehackerwire@mastodon.social at 2026-05-28T14:59:58.000Z ##

🟠 CVE-2026-49238 - High (8.4)

An issue was discovered in Canonical Multipass before version 1.16.3. The host-side SFTP server component (sshfs_server), which executes with root privileges on the host, contains a path containment bypass vulnerability within its validate_path fu...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-05-28T14:59:58.000Z ##

🟠 CVE-2026-49238 - High (8.4)

An issue was discovered in Canonical Multipass before version 1.16.3. The host-side SFTP server component (sshfs_server), which executes with root privileges on the host, contains a path containment bypass vulnerability within its validate_path fu...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-9628
(8.8 HIGH)

EPSS: 0.04%

updated 2026-05-28T16:16:31.907000

1 posts

A weakness has been identified in UTT HiPER 1200GW up to 2.5.3-170306. Affected is an unknown function of the file /goform/formPptpClientConfig of the component Web Management Interface. This manipulation of the argument PPTP server address/username/password/tunnel name causes stack-based buffer overflow. The attack may be initiated remotely. The exploit has been made available to the public and c

thehackerwire@mastodon.social at 2026-05-27T04:00:00.000Z ##

🟠 CVE-2026-9628 - High (8.8)

A weakness has been identified in UTT HiPER 1200GW up to 2.5.3-170306. Affected is an unknown function of the file /goform/formPptpClientConfig of the component Web Management Interface. This manipulation of the argument PPTP server address/userna...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-35675
(8.2 HIGH)

EPSS: 0.00%

updated 2026-05-28T14:20:34

2 posts

### Summary An authentication bypass vulnerability in phpMyFAQ allows any unauthenticated attacker to reset the password of any user account, including SuperAdmin accounts. By sending a PUT request with just a valid username and associated email address to /api/user/password/update, an attacker receives a new plaintext password via email without any token verification, rate limiting, or email conf

thehackerwire@mastodon.social at 2026-05-28T17:02:23.000Z ##

🟠 CVE-2026-35675 - High (8.2)

phpMyFAQ before 4.1.3 contains an authentication bypass vulnerability in the password reset endpoint that allows unauthenticated attackers to reset any user account password without token verification or email confirmation. Attackers can enumerate...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-05-28T17:02:23.000Z ##

🟠 CVE-2026-35675 - High (8.2)

phpMyFAQ before 4.1.3 contains an authentication bypass vulnerability in the password reset endpoint that allows unauthenticated attackers to reset any user account password without token verification or email confirmation. Attackers can enumerate...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-45152
(7.8 HIGH)

EPSS: 0.03%

updated 2026-05-28T14:16:22.270000

1 posts

uniget is a universal installer and updater for (container) tools. Prior to 0.27.1, a command injection vulnerability exists in uniget due to unsafe execution of the check field from metadata files using /bin/bash -c. Because the check field is loaded directly from untrusted JSON metadata without validation or sanitization, an attacker can craft malicious metadata that executes arbitrary shell com

thehackerwire@mastodon.social at 2026-05-27T23:00:43.000Z ##

🟠 CVE-2026-45152 - High (7.8)

uniget is a universal installer and updater for (container) tools. Prior to 0.27.1, a command injection vulnerability exists in uniget due to unsafe execution of the check field from metadata files using /bin/bash -c. Because the check field is lo...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-45137
(8.2 HIGH)

EPSS: 0.04%

updated 2026-05-28T14:16:22.163000

1 posts

Anchor is a framework providing several convenient developer tools for writing Solana programs. From 1.0.0 to before 1.0.2, an logic error causes anchor programs to accept any program id when requiring the system program id, causing false assumptions resulting in potential arbitrary cpi in programs that invoke system program instructions. In the TryFrom<&'a AccountInfo<'a>> implementation for Prog

thehackerwire@mastodon.social at 2026-05-27T22:01:41.000Z ##

🟠 CVE-2026-45137 - High (8.2)

Anchor is a framework providing several convenient developer tools for writing Solana programs. From 1.0.0 to before 1.0.2, an logic error causes anchor programs to accept any program id when requiring the system program id, causing false assumpti...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-44887
(9.8 CRITICAL)

EPSS: 0.21%

updated 2026-05-28T14:16:21.723000

2 posts

Pi.Alert is a WIFI / LAN intruder detector with web service monitoring. Prior to 2026-05-07, Pi.Alert's web-based configuration editor allows arbitrary Python code to be injected into pialert.conf. Since the background scan daemon loads this file via Python's exec(), injected code executes as the daemon process. With web protection disabled (the default configuration), no authentication is require

thehackerwire@mastodon.social at 2026-05-28T16:01:00.000Z ##

🔴 CVE-2026-44887 - Critical (9.8)

Pi.Alert is a WIFI / LAN intruder detector with web service monitoring. Prior to 2026-05-07, Pi.Alert's web-based configuration editor allows arbitrary Python code to be injected into pialert.conf. Since the background scan daemon loads this file ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-05-28T16:01:00.000Z ##

🔴 CVE-2026-44887 - Critical (9.8)

Pi.Alert is a WIFI / LAN intruder detector with web service monitoring. Prior to 2026-05-07, Pi.Alert's web-based configuration editor allows arbitrary Python code to be injected into pialert.conf. Since the background scan daemon loads this file ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-44635
(7.5 HIGH)

EPSS: 0.05%

updated 2026-05-28T14:16:20.450000

2 posts

Kysely is a type-safe TypeScript SQL query builder. From 0.26.0 to 0.28.16, DefaultQueryCompiler.visitJSONPathLeg does not escape JSON-path metacharacters (., [, ], *, **, ?). When attacker-controlled input flows into eb.ref(col, '->$').key(input) or .at(input) — including type-safe code where the JSON column is shaped like Record<string, T> so K extends string is the inferred type — every dot bec

thehackerwire@mastodon.social at 2026-05-28T17:02:41.000Z ##

🟠 CVE-2026-44635 - High (7.5)

Kysely is a type-safe TypeScript SQL query builder. From 0.26.0 to 0.28.16, DefaultQueryCompiler.visitJSONPathLeg does not escape JSON-path metacharacters (., [, ], *, **, ?). When attacker-controlled input flows into eb.ref(col, '->$').key(input)...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-05-28T17:02:41.000Z ##

🟠 CVE-2026-44635 - High (7.5)

Kysely is a type-safe TypeScript SQL query builder. From 0.26.0 to 0.28.16, DefaultQueryCompiler.visitJSONPathLeg does not escape JSON-path metacharacters (., [, ], *, **, ?). When attacker-controlled input flows into eb.ref(col, '->$').key(input)...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-48064
(8.1 HIGH)

EPSS: 0.06%

updated 2026-05-28T13:57:25.390000

1 posts

pam_usb provides hardware authentication for Linux using ordinary removable media. Prior to 0.9.1, when a PAM service is configured with deny_remote=false in pam_usb (commonly done for display managers such as gdm-password or lightdm to bypass process/TTY heuristics for local sessions), the PAM_RHOST check in pusb_do_auth() is also skipped. PAM_RHOST is set by remote daemons (sshd, XDMCP servers)

thehackerwire@mastodon.social at 2026-05-28T00:01:16.000Z ##

🟠 CVE-2026-48064 - High (8.1)

pam_usb provides hardware authentication for Linux using ordinary removable media. Prior to 0.9.1, when a PAM service is configured with deny_remote=false in pam_usb (commonly done for display managers such as gdm-password or lightdm to bypass pro...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-44709
(7.8 HIGH)

EPSS: 0.02%

updated 2026-05-28T13:57:25.390000

1 posts

pam_usb provides hardware authentication for Linux using ordinary removable media. Prior to 0.8.7, pamusb-pinentry reads the PINENTRY_FALLBACK_APP environment variable and executes it directly without any validation. Any process that can set environment variables before pamusb-pinentry is invoked can point PINENTRY_FALLBACK_APP at an arbitrary binary or script and have it executed with the privile

thehackerwire@mastodon.social at 2026-05-27T22:01:50.000Z ##

🟠 CVE-2026-44709 - High (7.8)

pam_usb provides hardware authentication for Linux using ordinary removable media. Prior to 0.8.7, pamusb-pinentry reads the PINENTRY_FALLBACK_APP environment variable and executes it directly without any validation. Any process that can set envir...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-9227
(8.8 HIGH)

EPSS: 0.14%

updated 2026-05-28T13:45:25.260000

2 posts

The GutenBee – Gutenberg Blocks plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 2.20.1 via the gutenbee_file_and_ext_json function. This is due to a flawed strpos() substring check that only verifies whether the filename contains the string '.json' rather than confirming the filename ends with a .json extension, allowing double-extension filenames

thehackerwire@mastodon.social at 2026-05-28T15:01:19.000Z ##

🟠 CVE-2026-9227 - High (8.8)

The GutenBee – Gutenberg Blocks plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 2.20.1 via the gutenbee_file_and_ext_json function. This is due to a flawed strpos() substring check that only veri...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-05-28T15:01:19.000Z ##

🟠 CVE-2026-9227 - High (8.8)

The GutenBee – Gutenberg Blocks plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 2.20.1 via the gutenbee_file_and_ext_json function. This is due to a flawed strpos() substring check that only veri...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-7862
(8.6 HIGH)

EPSS: 0.04%

updated 2026-05-28T13:45:25.260000

2 posts

The Eupago Gateway For Woocommerce WordPress plugin before 4.7.2 does not properly restrict access to its refund request handler, allowing unauthenticated attackers to initiate refunds against any WooCommerce order using the merchant's payment gateway credentials, and for applicable payment methods, to redirect refunded funds to an attacker-controlled bank account.

thehackerwire@mastodon.social at 2026-05-28T15:01:04.000Z ##

🟠 CVE-2026-7862 - High (8.6)

The Eupago Gateway For Woocommerce WordPress plugin before 4.7.2 does not properly restrict access to its refund request handler, allowing unauthenticated attackers to initiate refunds against any WooCommerce order using the merchant's payment gat...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-05-28T15:01:04.000Z ##

🟠 CVE-2026-7862 - High (8.6)

The Eupago Gateway For Woocommerce WordPress plugin before 4.7.2 does not properly restrict access to its refund request handler, allowing unauthenticated attackers to initiate refunds against any WooCommerce order using the merchant's payment gat...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-9009
(8.8 HIGH)

EPSS: 0.24%

updated 2026-05-28T13:45:25.260000

2 posts

The Crawlomatic Multipage Scraper Post Generator plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 2.7.2 via the filter_content function. This is due to passing the attacker-supplied 'callback_raw' shortcode attribute directly into call_user_func() with no sanitization or allowlist validation, relying solely on an is_callable() check that permits dan

offseq@infosec.exchange at 2026-05-28T07:30:27.000Z ##

⚠️ CVE-2026-9009 (HIGH): Crawlomatic Multipage Scraper Post Generator for WordPress lets author+ users trigger arbitrary PHP code via unsafe shortcodes. No patch yet — restrict author access & consider disabling plugin. Details: radar.offseq.com/threat/cve-20 #OffSeq #WordPress #Vuln

##

thehackerwire@mastodon.social at 2026-05-28T07:00:01.000Z ##

🟠 CVE-2026-9009 - High (8.8)

The Crawlomatic Multipage Scraper Post Generator plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 2.7.2 via the filter_content function. This is due to passing the attacker-supplied 'callback_raw' s...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-4408
(9.0 None)

EPSS: 0.23%

updated 2026-05-28T09:31:27

3 posts

A flaw was found in Samba. A remote attacker can exploit a misconfiguration in Samba file servers and classic domain controllers that use the "check password script" feature. If this script is configured with the %u substitution character, the client-controlled username is passed without proper escaping of shell meta-characters. This vulnerability allows an attacker to achieve remote command execu

thehackerwire@mastodon.social at 2026-05-28T15:00:33.000Z ##

🔴 CVE-2026-4408 - Critical (9)

A flaw was found in Samba. A remote attacker can exploit a misconfiguration in Samba file servers and classic domain controllers that use the "check password script" feature. If this script is configured with the %u substitution character, the cli...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-05-28T15:00:33.000Z ##

🔴 CVE-2026-4408 - Critical (9)

A flaw was found in Samba. A remote attacker can exploit a misconfiguration in Samba file servers and classic domain controllers that use the "check password script" feature. If this script is configured with the %u substitution character, the cli...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

offseq@infosec.exchange at 2026-05-28T09:00:28.000Z ##

🚨 CRITICAL: CVE-2026-4408 in Red Hat Enterprise Linux 10 via Samba misconfig enables remote command execution if "check password script" uses %u. Audit your configs now! Details: radar.offseq.com/threat/cve-20 #OffSeq #Linux #Samba #Infosec

##

CVE-2026-6455
(8.1 HIGH)

EPSS: 0.04%

updated 2026-05-28T09:31:26

2 posts

The WP Contact Form 7 DB Handler plugin for WordPress is vulnerable to Cross-Site Request Forgery leading to Arbitrary File Deletion via SQL Injection and PHP Object Injection in versions up to and including 3.0. This is due to a missing nonce verification in the process_bulk_action() function, the nonce check is only executed when _wpnonce is present in the POST body, allowing it to be trivially

thehackerwire@mastodon.social at 2026-05-28T16:00:40.000Z ##

🟠 CVE-2026-6455 - High (8.1)

The WP Contact Form 7 DB Handler plugin for WordPress is vulnerable to Cross-Site Request Forgery leading to Arbitrary File Deletion via SQL Injection and PHP Object Injection in versions up to and including 3.0. This is due to a missing nonce ver...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-05-28T16:00:40.000Z ##

🟠 CVE-2026-6455 - High (8.1)

The WP Contact Form 7 DB Handler plugin for WordPress is vulnerable to Cross-Site Request Forgery leading to Arbitrary File Deletion via SQL Injection and PHP Object Injection in versions up to and including 3.0. This is due to a missing nonce ver...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-7802
(8.8 HIGH)

EPSS: 0.06%

updated 2026-05-28T06:31:16

1 posts

The Frontend Admin by DynamiApps plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 3.29.2. This is due to the plugin not properly verifying that a user is authorized to perform an action. This makes it possible for authenticated attackers, with subscriber-level access and above, to overwrite an administrator's user_pass, user_email, first_name, last_n

thehackerwire@mastodon.social at 2026-05-28T07:00:12.000Z ##

🟠 CVE-2026-7802 - High (8.8)

The Frontend Admin by DynamiApps plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 3.29.2. This is due to the plugin not properly verifying that a user is authorized to perform an action. This makes i...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-32999
(9.0 None)

EPSS: 0.05%

updated 2026-05-28T06:31:15

1 posts

Insufficient character filtering in backup agent signing module on Comet Backup server allows authenticated tenant administrator to execute an arbitrary code on behalf of a privileged user on the affected server and connected devices.

thehackerwire@mastodon.social at 2026-05-28T07:00:21.000Z ##

🔴 CVE-2026-32999 - Critical (9)

Insufficient character filtering in backup agent signing module on Comet Backup server allows authenticated tenant administrator to execute an arbitrary code on behalf of a privileged user on the affected server and connected devices.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-9789(CVSS UNKNOWN)

EPSS: 0.02%

updated 2026-05-28T03:31:21

1 posts

A Local Privilege Escalation (LPE) vulnerability affects Acer NitroSense software versions prior to 3.01.3052. The vulnerability stems from the the PSAdminAgent service, which creates a Named Pipe with a weak Access Control List (ACL). This allows any authenticated local user to connect and send commands. Because the service does not check the caller's privileges before running file deletion comma

offseq@infosec.exchange at 2026-05-28T04:30:26.000Z ##

🛡️ CVE-2026-9789 (HIGH, CVSS 8.5): Acer NitroSense V3 (≤3.01.3001) local users can delete arbitrary files via PSAdminAgent's weak pipe ACL. No patch yet — restrict access, monitor activity. More: radar.offseq.com/threat/cve-20 #OffSeq #Vuln #Acer #PrivilegeEscalation

##

CVE-2026-7374
(9.9 CRITICAL)

EPSS: 0.11%

updated 2026-05-28T03:16:44.047000

1 posts

A flaw was found in KubeVirt's virt-handler component. This vulnerability allows an authenticated OpenShift user with edit permissions in a single namespace to exploit improper symlink validation when connecting to virtual machine console sockets. By replacing the console socket with a symlink to the host's container runtime (CRI-O) socket, an attacker can hijack virt-handler's privileged connecti

thehackerwire@mastodon.social at 2026-05-26T15:00:49.000Z ##

🔴 CVE-2026-7374 - Critical (9.9)

A flaw was found in KubeVirt's virt-handler component. This vulnerability allows an authenticated OpenShift user with edit permissions in a single namespace to exploit improper symlink validation when connecting to virtual machine console sockets....

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-8915
(8.8 HIGH)

EPSS: 0.02%

updated 2026-05-28T00:30:35

2 posts

Out-of-bounds write vulnerability in Samsung Open Source Escargot allows Overflow Buffers. This issue affects Escargot: 36f5fb58366a67b713c02f6fd985e924fcc09e31.

thehackerwire@mastodon.social at 2026-05-28T03:00:43.000Z ##

🟠 CVE-2026-8915 - High (8.8)

Out-of-bounds write vulnerability in Samsung Open Source Escargot allows Overflow Buffers.

This issue affects Escargot: 36f5fb58366a67b713c02f6fd985e924fcc09e31.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

offseq@infosec.exchange at 2026-05-28T01:30:26.000Z ##

🔔 CVE-2026-8915 (HIGH): Out-of-bounds write in Samsung Open Source Escargot (commit 36f5fb58...) enables buffer overflow risks — system compromise possible. No patch yet; monitor advisories & restrict access. radar.offseq.com/threat/cve-20 #OffSeq #Vulnerability #Escargot

##

CVE-2026-9739(CVSS UNKNOWN)

EPSS: 0.02%

updated 2026-05-28T00:30:35

1 posts

Vulnerable to DNS rebinding attacks when using SSE (http://b/499408790). During the beta phase, we implemented `allowed-origins` and `allowed-hosts` flags to align with MCP security guidelines. However, the hardcoded `Access-Control-Allow-Origin: *` header in the SSE initialization handler was inadvertently retained. This vulnerability specifically impacts users connecting via Toolbox using SSE un

offseq@infosec.exchange at 2026-05-28T00:00:38.000Z ##

🚨 CRITICAL: CVE-2026-9739 in Google MCP Toolbox for Databases (CVSS 9.4) allows DNS rebinding via a permissive cross-domain policy in SSE. No patch yet — restrict untrusted domains & monitor advisories. radar.offseq.com/threat/cve-20 #OffSeq #CVE #Infosec #Google

##

CVE-2026-9208
(8.8 HIGH)

EPSS: 0.07%

updated 2026-05-28T00:30:35

1 posts

Tanium addressed an unauthorized code execution vulnerability in Connect.

thehackerwire@mastodon.social at 2026-05-27T23:00:25.000Z ##

🟠 CVE-2026-9208 - High (8.8)

Tanium addressed an unauthorized code execution vulnerability in Connect.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2025-70103
(7.3 HIGH)

EPSS: 0.04%

updated 2026-05-27T21:32:27

1 posts

Heap buffer overflow vulnerability in libjxl 0.12.0 via crafted PBM images to the jxl::extras::DecodeImagePNM function in file lib/extras/dec/pnm.cc.

sigdevel@infosec.exchange at 2026-05-26T18:14:03.000Z ##

Security Advisory: CVE-2025-70103 - Heap-Based Buffer Overflow in libjxl / cjxl

A heap-based buffer overflow vulnerability was identified in JPEG XL libjxl when processing crafted PBM/PNM images.

Summary:
The vulnerability exists in `jxl::extras::DecodeImagePNM()` in `lib/extras/dec/pnm.cc`. When processing a specially crafted PBM/PNM image, insufficient validation of buffer sizes before memory copy operations may cause `memcpy()` to write past the end of an allocated heap buffer.

The issue was observed as a WRITE of 24 bytes at the end of a 16-byte heap region.

CWE:
CWE-122 - Heap-based Buffer Overflow
CWE-787 - Out-of-bounds Write

Affected product:
JPEG XL / libjxl

Affected component:
`lib/extras/dec/pnm.cc`
Function: `jxl::extras::DecodeImagePNM()`
Affected line: `pnm.cc:554`

Affected version:
The issue was reproduced in `cjxl v0.12.0` at commit `24357f189c233c03fb46368a142a0b2c1a949f9d`.

Attack conditions:
Exploitation requires the vulnerable application or library consumer to process a crafted PBM/PNM image. This can be triggered locally via `cjxl` or through software that exposes the `DecodeImagePNM` decoding path to attacker-controlled input.

Example reproduction command:
`./cjxl ./2_PBM_lib_extras_dec_pnm_cc_554 --disable_output`

Impact:
Successful exploitation may cause memory corruption and process termination. The confirmed impact is denial of service (DoS) due to a crash during image processing. No evidence of reliable arbitrary code execution has been identified.

Fix / mitigation status:
The upstream issue is closed. A mitigation/fix proposal was provided in PR `#4338`, adding additional buffer-size, row-boundary, pixel-size, offset, and extra-channel checks. Users are advised to update to a libjxl build that contains the relevant fix once available, or review and apply the mitigation from PR `#4338` where appropriate.

References:
Issue:
github.com/libjxl/libjxl/issue

Fix / mitigation PR:
github.com/libjxl/libjxl/pull/
github.com/libjxl/libjxl/commi

PoC:
github.com/sigdevel/pocs/blob/

Credit:
@sigdevel

cve.org/CVERecord?id=CVE-2025-

#fuzzing #infosec #security #afl #revers #cybersecurity #bugbounty #vulnerability #opensource #linux #cve #advisory

##

CVE-2026-8359
(7.5 HIGH)

EPSS: 0.05%

updated 2026-05-27T21:31:33

1 posts

When processing a request with a URL path starting with /status or /sysinfo, WOSHttpStatusModule.dll is to be loaded to handle such URL patterns. The WOSBin_LoadHttpModule function in the dll would be called to set up a "module" object for that module. However, WOSHttpStatusModule.dll is not present in the installation. As a result, a function pointer to WOSBin_LoadHttpModule (which would have bee

thehackerwire@mastodon.social at 2026-05-27T23:01:29.000Z ##

🟠 CVE-2026-8359 - High (7.5)

When processing a request with a URL path starting with /status or /sysinfo, WOSHttpStatusModule.dll is to be loaded to handle such URL patterns. The WOSBin_LoadHttpModule function in the dll would be called to set up a "module" object for that mo...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-8362
(9.8 CRITICAL)

EPSS: 0.04%

updated 2026-05-27T21:31:32

1 posts

A stack-based buffer overflow condition exists in WOSDefaultHttpModule.dll when processing a long URL path starting with /woshome

thehackerwire@mastodon.social at 2026-05-28T00:01:07.000Z ##

🔴 CVE-2026-8362 - Critical (9.8)

A stack-based buffer overflow condition exists in WOSDefaultHttpModule.dll when processing a long URL path starting with /woshome

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-8361
(7.5 HIGH)

EPSS: 0.04%

updated 2026-05-27T21:31:32

1 posts

A path traversal vulnerability exists in WOSDefaultHttpModule.dll when processing a URL path starting with /woshome

thehackerwire@mastodon.social at 2026-05-28T00:00:57.000Z ##

🟠 CVE-2026-8361 - High (7.5)

A path traversal vulnerability exists in WOSDefaultHttpModule.dll when processing a URL path starting with /woshome

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-8360
(7.5 HIGH)

EPSS: 0.04%

updated 2026-05-27T21:31:32

1 posts

Function calls to WOSCommonUtil.dll!WOSSysInfoGetDeviceInterface() in various DLLs (i.e., WOSProfileMgrModule.dll, WOSWebDavModule.dll) can return a NULL pointer (i.e., when no user is logged into the Triofox Server Agent Management Console). The returned NULL pointer is not checked before being dereferenced.

thehackerwire@mastodon.social at 2026-05-27T23:01:39.000Z ##

🟠 CVE-2026-8360 - High (7.5)

Function calls to WOSCommonUtil.dll!WOSSysInfoGetDeviceInterface() in various DLLs (i.e., WOSProfileMgrModule.dll, WOSWebDavModule.dll) can return a NULL pointer (i.e., when no user is logged into the Triofox Server Agent Management Console). The...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-8363
(9.8 CRITICAL)

EPSS: 0.04%

updated 2026-05-27T21:31:32

1 posts

A stack-based buffer overflow condition exists in WOSDeviceDropFolder.dll when processing a long URL path starting with /resources:

thehackerwire@mastodon.social at 2026-05-27T22:01:59.000Z ##

🔴 CVE-2026-8363 - Critical (9.8)

A stack-based buffer overflow condition exists in WOSDeviceDropFolder.dll when processing a long URL path starting with /resources:

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-49017(CVSS UNKNOWN)

EPSS: 0.04%

updated 2026-05-27T21:31:24

1 posts

In OpenStack Swift before 2.36.2 and 2.37.2, s3api middleware enters an infinite loop when processing a truncated aws-chunked PUT request body. The StreamingInput class repeatedly appends an empty buffer and re-reads, causing the proxy-server worker handling the request to become permanently unresponsive with increasing CPU and memory consumption. An authenticated attacker can systematically exhau

offseq@infosec.exchange at 2026-05-27T03:00:26.000Z ##

CVE-2026-49017: HIGH-severity in OpenStack Swift 2.36.0 & 2.37.0. Infinite loop in s3api lets authenticated attackers exhaust proxy workers → DoS risk. Patch to 2.36.2 or 2.37.2+ now! 🔄 radar.offseq.com/threat/cve-20 #OffSeq #OpenStack #Vuln #DoS

##

CVE-2026-8364
(9.8 CRITICAL)

EPSS: 0.04%

updated 2026-05-27T21:16:19.700000

1 posts

Gladinet Triofox Cloud Server Agent Access Service (GladServerAgentService.exe) listens on TCP port 7878 and processes remote HTTP messages with URL paths starting with /resources, /status, /sysinfo, /woshome, /Settings, /schedule, or /DavCache.

thehackerwire@mastodon.social at 2026-05-27T23:01:20.000Z ##

🔴 CVE-2026-8364 - Critical (9.8)

Gladinet Triofox Cloud Server Agent Access Service (GladServerAgentService.exe) listens on TCP port 7878 and processes remote HTTP messages with URL paths starting with /resources, /status, /sysinfo, /woshome, /Settings, /schedule, or /DavCache.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-45321
(9.6 CRITICAL)

EPSS: 15.09%

updated 2026-05-27T20:18:55.940000

4 posts

On 2026-05-11, between approximately 19:20 and 19:26 UTC, 84 malicious versions across 42 @tanstack/* packages were published to the npm registry. The publishes were authenticated via the legitimate GitHub Actions OIDC trusted-publisher binding for TanStack/router, but the publish workflow itself was not modified. The attacker chained three known vulnerability classes — a pull_request_target "Pwn

12 repos

https://github.com/Yomisana/are-you-get-tanstack-attack

https://github.com/digi4care/shai-scan

https://github.com/prashanthnataraj/mini-shai-hulud-detector

https://github.com/Breakingcircuitsllc/teampcp_shai_hulud.yar

https://github.com/Intrudify/mini-shai-hulud-scanner

https://github.com/ry-allan/tanstack-compromise-checker

https://github.com/renewablehacking/CVE-2026-45321-Tanstack

https://github.com/qi-scape/scan-shai-hulud

https://github.com/fabriziosalmi/tanstack-compromise-checker

https://github.com/Caixa-git/tanstack-shield

https://github.com/shayr1/shai-hulud-scan

https://github.com/nkopylov/tanscript-exploit-check

kev_Stalker at 2026-05-28T19:01:11.612Z ##

CVE-2026-45321 - Changed to Known Ransomware Status

TanStack Unspecified VulnerabilityVendor: TanStackProduct: TanStackTanStack contains an unspecified vulnerability that allowed malicious versions of the product to be published to the npm registry to publish credential-stealing malware under a trusted identity.Status changed from Unknown to Known for ransomware campaign usage.Flip detected on: May 28, 2026 at 18:00:35 UTCDate Added to KEV: nvd.nist.gov/vuln/detail/CVE-2

##

kev_Stalker@infosec.exchange at 2026-05-28T19:01:11.000Z ##

CVE-2026-45321 - Changed to Known Ransomware Status

TanStack Unspecified VulnerabilityVendor: TanStackProduct: TanStackTanStack contains an unspecified vulnerability that allowed malicious versions of the product to be published to the npm registry to publish credential-stealing malware under a trusted identity.Status changed from Unknown to Known for ransomware campaign usage.Flip detected on: May 28, 2026 at 18:00:35 UTCDate Added to KEV: nvd.nist.gov/vuln/detail/CVE-2

##

secdb@infosec.exchange at 2026-05-27T20:00:15.000Z ##

🚨 [CISA-2026:0527] CISA Adds 3 Known Exploited Vulnerabilities to Catalog (secdb.nttzen.cloud/security-ad)

CISA has added 3 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.

⚠️ CVE-2026-45321 (secdb.nttzen.cloud/cve/detail/)
- Name: TanStack Unspecified Vulnerability
- Action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: TanStack
- Product: TanStack
- Notes: This vulnerability could affect an open-source component, third-party library, protocol, or proprietary implementation that could be used by different products. For more information, please see: github.com/TanStack/router/sec ; nvd.nist.gov/vuln/detail/CVE-2

⚠️ CVE-2026-48027 (secdb.nttzen.cloud/cve/detail/)
- Name: Nx Console Embedded Malicious Code Vulnerability
- Action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Nx
- Product: Nx Console
- Notes: This vulnerability could affect an open-source component, third-party library, protocol, or proprietary implementation that could be used by different products. For more information, please see: github.com/nrwl/nx-console/sec ; nvd.nist.gov/vuln/detail/CVE-2

⚠️ CVE-2026-8398 (secdb.nttzen.cloud/cve/detail/)
- Name: Daemon Tools Lite Embedded Malicious Code Vulnerability
- Action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Daemon
- Product: Daemon Tools Lite
- Notes: blog.daemon-tools.cc/post/secu ; nvd.nist.gov/vuln/detail/CVE-2

#SecDB #InfoSec #CVE #CISA_KEV #cisa_20260527 #cisa20260527 #cve_2026_45321 #cve_2026_48027 #cve_2026_8398 #cve202645321 #cve202648027 #cve20268398

##

cisakevtracker@mastodon.social at 2026-05-27T18:01:05.000Z ##

CVE ID: CVE-2026-45321
Vendor: TanStack
Product: TanStack
Date Added: 2026-05-27
CVE URL: nvd.nist.gov/vuln/detail/CVE-2

##

CVE-2026-48152
(8.1 HIGH)

EPSS: 0.04%

updated 2026-05-27T20:16:40.943000

1 posts

Budibase is an open-source low-code platform. Prior to 3.39.0, the single-datasource GET and PUT routes are guarded by generic TABLE READ, not by Builder/Admin permission or datasource-specific ownership/resource checks. The built-in Basic app user role maps to the WRITE permission set, which includes table read/write and query write. A Basic user can therefore read an existing REST datasource, re

thehackerwire@mastodon.social at 2026-05-27T19:01:22.000Z ##

🟠 CVE-2026-48152 - High (8.1)

Budibase is an open-source low-code platform. Prior to 3.39.0, the single-datasource GET and PUT routes are guarded by generic TABLE READ, not by Builder/Admin permission or datasource-specific ownership/resource checks. The built-in Basic app use...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-45102
(9.9 CRITICAL)

EPSS: 0.06%

updated 2026-05-27T20:16:38.250000

1 posts

OneUptime is an open-source monitoring and observability platform. Prior to 10.0.98, OneUptime uses the Node.js' vm module as an isolation primitive. This API was not designed for that and can be escaped via error objects and infinite recursion. This vulnerability is fixed in 10.0.98.

thehackerwire@mastodon.social at 2026-05-28T03:01:14.000Z ##

🔴 CVE-2026-45102 - Critical (9.9)

OneUptime is an open-source monitoring and observability platform. Prior to 10.0.98, OneUptime uses the Node.js' vm module as an isolation primitive. This API was not designed for that and can be escaped via error objects and infinite recursion. T...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-44724
(7.8 HIGH)

EPSS: 0.05%

updated 2026-05-27T20:16:37.617000

1 posts

systeminformation is a System and OS information library for node.js. From 4.17.0 to 5.31.5, on Linux, systeminformation is vulnerable to command injection in networkInterfaces() when an active NetworkManager connection profile name contains shell metacharacters. The vulnerable value is obtained internally from real nmcli device status output. The library sanitizes the network interface name befor

thehackerwire@mastodon.social at 2026-05-28T05:00:48.000Z ##

🟠 CVE-2026-44724 - High (7.8)

systeminformation is a System and OS information library for node.js. From 4.17.0 to 5.31.5, on Linux, systeminformation is vulnerable to command injection in networkInterfaces() when an active NetworkManager connection profile name contains shell...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-44483
(8.2 HIGH)

EPSS: 0.04%

updated 2026-05-27T20:16:37.180000

1 posts

RVF (formerly Remix Validated Form) provides easy form validation and state management for React. From 6.0.0 to before 6.0.4 and 7.0.2, setPath in @rvf/set-get (used by @rvf/core to flatten incoming form data into a nested object) does not block the keys __proto__, constructor, or prototype when walking a path. Because field names in submitted form data are passed directly to setPath via preproces

thehackerwire@mastodon.social at 2026-05-27T18:00:43.000Z ##

🟠 CVE-2026-44483 - High (8.2)

RVF (formerly Remix Validated Form) provides easy form validation and state management for React. From 6.0.0 to before 6.0.4 and 7.0.2, setPath in @Rvf/set-get (used by @Rvf/core to flatten incoming form data into a nested object) does not block t...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-42197
(8.7 HIGH)

EPSS: 0.03%

updated 2026-05-27T20:16:36.260000

2 posts

RELATE is a web-based courseware package. Versions prior to commit 555f0efb1c5bd7531c07cd73724d7e566a81f620 have a stored cross-site scripting vulnerability that allows any enrolled student to execute arbitrary JavaScript in an administrator's browser session, potentially leading to full admin account takeover. The `get_user()` method in `ParticipationAdmin` renders user-controlled input using `ma

thehackerwire@mastodon.social at 2026-05-28T16:01:12.000Z ##

🟠 CVE-2026-42197 - High (8.7)

RELATE is a web-based courseware package. Versions prior to commit 555f0efb1c5bd7531c07cd73724d7e566a81f620 have a stored cross-site scripting vulnerability that allows any enrolled student to execute arbitrary JavaScript in an administrator's bro...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-05-28T16:01:12.000Z ##

🟠 CVE-2026-42197 - High (8.7)

RELATE is a web-based courseware package. Versions prior to commit 555f0efb1c5bd7531c07cd73724d7e566a81f620 have a stored cross-site scripting vulnerability that allows any enrolled student to execute arbitrary JavaScript in an administrator's bro...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2025-43306
(7.8 HIGH)

EPSS: 0.01%

updated 2026-05-27T20:02:49.877000

1 posts

A logic issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.7, macOS Sonoma 14.8, macOS Tahoe 26. A malicious app may be able to gain root privileges.

thehackerwire@mastodon.social at 2026-05-27T04:01:07.000Z ##

🟠 CVE-2025-43306 - High (7.8)

A logic issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.7, macOS Sonoma 14.8, macOS Tahoe 26. A malicious app may be able to gain root privileges.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-49002
(9.1 CRITICAL)

EPSS: 0.03%

updated 2026-05-27T19:59:03.360000

1 posts

Access control failure means that an application does not effectively check user access permissions, so that unauthorized users can access system data beyond their permissions, such as viewing and modifying configuration information.

thehackerwire@mastodon.social at 2026-05-27T10:00:01.000Z ##

🔴 CVE-2026-49002 - Critical (9.1)

Access control failure means that an application does not effectively check user access permissions, so that unauthorized users can access system data beyond their permissions, such as viewing and modifying configuration information.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-48153
(8.5 HIGH)

EPSS: 0.03%

updated 2026-05-27T19:44:35.987000

1 posts

Budibase is an open-source low-code platform. Prior to 3.39.0, fetchToken in the OAuth2 SDK makes a POST to a builder-supplied URL with plain node-fetch, skipping the blacklist.isBlacklisted check that every other outbound fetch path in the codebase uses. The Joi schema for the OAuth2 URL has no scheme or host restriction. This vulnerability is fixed in 3.39.0.

thehackerwire@mastodon.social at 2026-05-27T19:01:32.000Z ##

🟠 CVE-2026-48153 - High (8.5)

Budibase is an open-source low-code platform. Prior to 3.39.0, fetchToken in the OAuth2 SDK makes a POST to a builder-supplied URL with plain node-fetch, skipping the blacklist.isBlacklisted check that every other outbound fetch path in the codeba...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-44847
(7.5 HIGH)

EPSS: 0.08%

updated 2026-05-27T19:41:21.417000

1 posts

MaxKB is an open-source AI assistant for enterprise. Prior to 2.9.0, MaxKB's webhook trigger endpoint (/api/trigger/v1/webhook/{trigger_id}) is accessible without authentication. The WebhookAuth class unconditionally returns (None, {}), which Django REST Framework interprets as successful authentication. Combined with optional per-trigger token verification and no backend enforcement of token requ

thehackerwire@mastodon.social at 2026-05-27T06:00:00.000Z ##

🟠 CVE-2026-44847 - High (7.5)

MaxKB is an open-source AI assistant for enterprise. Prior to 2.9.0, MaxKB's webhook trigger endpoint (/api/trigger/v1/webhook/{trigger_id}) is accessible without authentication. The WebhookAuth class unconditionally returns (None, {}), which Djan...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-45574
(8.1 HIGH)

EPSS: 0.01%

updated 2026-05-27T19:41:21.417000

1 posts

epa4all-client is the Java Client for epa4all / ePA 3.0 in the Telematik Infrastruktur. Prior to 1.2.2, an attacker on the network path between the ePA service and the Konnektor can present any TLS certificate (self-signed, expired, wrong CN) and intercept all SOAP traffic. This includes patient identifiers (KVNR), SMC-B card operations (authentication, signing), document content, and credential e

thehackerwire@mastodon.social at 2026-05-26T23:01:34.000Z ##

🟠 CVE-2026-45574 - High (8.1)

epa4all-client is the Java Client for epa4all / ePA 3.0 in the Telematik Infrastruktur. Prior to 1.2.2, an attacker on the network path between the ePA service and the Konnektor can present any TLS certificate (self-signed, expired, wrong CN) and ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-45659
(8.8 HIGH)

EPSS: 0.62%

updated 2026-05-27T18:32:54.337000

5 posts

Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

2 repos

https://github.com/mistbarbarianspot/CVE-2026-45659-SharePoint-RCE

https://github.com/HORKimhab/CVE-2026-45659

hackmag at 2026-05-28T15:00:03.454Z ##

⚪️ Microsoft Fixes RCE Vulnerability in SharePoint

🗨️ Microsoft engineers have released out-of-band patches for an RCE vulnerability in SharePoint Server (CVE-2026-45659). The issue has a CVSS score of 8.8 and affects SharePoint Server Subscription Edition, SharePoint Server 2019, and SharePoint Enterprise Server 2016. Exploiting it only requires…

🔗 hackmag.com/news/cve-2026-4565

##

hackmag@infosec.exchange at 2026-05-28T15:00:03.000Z ##

⚪️ Microsoft Fixes RCE Vulnerability in SharePoint

🗨️ Microsoft engineers have released out-of-band patches for an RCE vulnerability in SharePoint Server (CVE-2026-45659). The issue has a CVSS score of 8.8 and affects SharePoint Server Subscription Edition, SharePoint Server 2019, and SharePoint Enterprise Server 2016. Exploiting it only requires…

🔗 hackmag.com/news/cve-2026-4565

#news

##

youranonnewsirc@nerdculture.de at 2026-05-27T11:34:02.000Z ##

Global tensions escalate with US strikes on Iran and Israeli actions in Lebanon (May 27). Tech sees an AI boom boosting chip stocks, with China restricting AI talent travel. Cybersecurity highlights: FBI warns on "First VPN Service" enabling ransomware (May 27), and Microsoft patched a critical SharePoint RCE vulnerability (CVE-2026-45659).

#AnonNews_irc #Cybersecurity #News

##

beyondmachines1@infosec.exchange at 2026-05-27T08:01:06.000Z ##

Microsoft Patches High-Severity SharePoint RCE Vulnerability CVE-2026-45659

Microsoft patched a high-severity remote code execution vulnerability (CVE-2026-45659) in SharePoint that allows authenticated attackers with low-level permissions to execute arbitrary code via untrusted data deserialization.

**If you run SharePoint on-premise (Subscription Edition, 2019, or 2016), apply Microsoft's patch for CVE-2026-45659 asap, since even low-level Site Member accounts can trigger remote code execution.**
#cybersecurity #infosec #advisory #vulnerability
beyondmachines.net/event_detai

##

benzogaga33@mamot.fr at 2026-05-26T15:40:04.000Z ##

Faille RCE dans SharePoint : Microsoft publie un patch pour la CVE-2026-45659 it-connect.fr/faille-rce-share #ActuCybersécurité #Cybersécurité #Vulnérabilité #SharePoint #Microsoft

##

CVE-2026-8450
(9.1 CRITICAL)

EPSS: 0.22%

updated 2026-05-27T18:32:40

1 posts

HTTP::Daemon versions before 6.17 for Perl allow OS command injection via send_file(). send_file() opens its string argument with Perl's 2-arg open(). The 2-arg form interprets magic prefixes: '| cmd' and 'cmd |' open a pipe to a subprocess, '> path' and '>> path' open the path for write or append. Untrusted input passed to send_file() can run OS commands at the daemon process UID. The read-pipe

offseq@infosec.exchange at 2026-05-27T06:00:26.000Z ##

🚨 CVE-2026-8450 (CRITICAL): OALDERS HTTP::Daemon <6.17 has OS command injection via send_file(). Attackers can run commands, leak data, & manipulate files. Avoid untrusted input and monitor for patches. radar.offseq.com/threat/cve-20 #OffSeq #CVE20268450 #infosec

##

CVE-2015-2808
(10.0 CRITICAL)

EPSS: 21.39%

updated 2026-05-27T18:32:34

1 posts

The RC4 algorithm, as used in the TLS protocol and SSL protocol, does not properly combine state data with key data during the initialization phase, which makes it easier for remote attackers to conduct plaintext-recovery attacks against the initial bytes of a stream by sniffing network traffic that occasionally relies on keys affected by the Invariance Weakness, and then using a brute-force appro

TomSellers@infosec.exchange at 2026-05-27T18:22:44.000Z ##

RE: infosec.exchange/@perfect10_bo

So CVE-2015-2808 (RC4 weaknesses in TLS) got bumped to 10.0 today due to CISA enrichment...

#Security

##

CVE-2026-48962
(7.3 HIGH)

EPSS: 0.06%

updated 2026-05-27T18:31:37

1 posts

IO::Compress versions before 2.220 for Perl can execute arbitrary code in File::GlobMapper via an attacker-controlled output glob. _parseOutputGlob() wraps the caller-supplied output glob string in double quotes and stores it in the parser state; _getFiles() then runs the stored expression through eval STRING. A literal double quote in the output glob closes the dquote wrapper, and the characters

offseq@infosec.exchange at 2026-05-27T04:30:27.000Z ##

⚠️ HIGH severity: CVE-2026-48962 in PMQS IO::Compress (Perl <2.220) enables eval injection via crafted glob strings. Arbitrary Perl code may execute with process privileges. Restrict untrusted input & monitor for patches. radar.offseq.com/threat/cve-20 #OffSeq #Vuln #Perl #Infosec

##

CVE-2026-45047
(7.5 HIGH)

EPSS: 0.08%

updated 2026-05-27T18:16:24.150000

2 posts

bird-lg-go is a BIRD looking glass in Go. Prior to 1.4.5, the apiHandler (and similarly webHandlerTelegramBot) processes user-provided JSON payloads by directly using json.NewDecoder(r.Body).Decode(&request) without restricting the maximum read size. An unauthenticated remote attacker can stream an extremely large, endless JSON payload (e.g., several Gigabytes of padding) over a single TCP connect

thehackerwire@mastodon.social at 2026-05-28T18:01:28.000Z ##

🟠 CVE-2026-45047 - High (7.5)

bird-lg-go is a BIRD looking glass in Go. Prior to 1.4.5, the apiHandler (and similarly webHandlerTelegramBot) processes user-provided JSON payloads by directly using json.NewDecoder(r.Body).Decode(&request) without restricting the maximum read si...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-05-28T18:01:28.000Z ##

🟠 CVE-2026-45047 - High (7.5)

bird-lg-go is a BIRD looking glass in Go. Prior to 1.4.5, the apiHandler (and similarly webHandlerTelegramBot) processes user-provided JSON payloads by directly using json.NewDecoder(r.Body).Decode(&request) without restricting the maximum read si...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2025-12686
(9.8 CRITICAL)

EPSS: 0.17%

updated 2026-05-27T17:16:27.797000

1 posts

Buffer copy without checking size of input ('Classic Buffer Overflow') vulnerability in AdminCenter in Synology BeeStation OS before 1.3.2-65648 allows remote attackers to execute arbitrary code via unspecified vectors.

thehackerwire@mastodon.social at 2026-05-27T10:01:21.000Z ##

🔴 CVE-2025-12686 - Critical (9.8)

Buffer copy without checking size of input ('Classic Buffer Overflow') vulnerability in AdminCenter in Synology BeeStation Manager (BSM) before 1.3.2-65648 and Synology BeeStation OS before 1.3.2-65648 allows remote attackers to execute arbitrary ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-9170
(7.5 HIGH)

EPSS: 0.05%

updated 2026-05-27T15:34:08

1 posts

IBM Web Server Plug-ins for WebSphere Application Server and WebSphere Liberty 8.5, 9.0 IBM WebSphere Application Server and WebSphere Application Server Liberty are vulnerable to denial of service and a potential remote code execution due to improper input validation.

thehackerwire@mastodon.social at 2026-05-26T19:02:49.000Z ##

🟠 CVE-2026-9170 - High (7.5)

IBM Web Server Plug-ins for WebSphere Application Server and WebSphere Liberty 8.5, 9.0 IBM WebSphere Application Server and WebSphere Application Server Liberty are vulnerable to denial of service and a potential remote code execution due to impr...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-6957
(8.0 HIGH)

EPSS: 0.04%

updated 2026-05-27T15:33:36

1 posts

Mattermost Plugins versions <=1.1.5 fail to sanitize filenames received from federated peers before using them to construct export destination paths, which allows an administrator of a remote federated Mattermost server to write files to arbitrary locations within the target server's filestore via a malicious filename delivered through the shared-channel attachment sync protocol. Mattermost Adviso

thehackerwire@mastodon.social at 2026-05-27T17:00:20.000Z ##

🟠 CVE-2026-6957 - High (8)

Mattermost Plugins versions &lt;=1.1.5 fail to sanitize filenames received from federated peers before using them to construct export destination paths, which allows an administrator of a remote federated Mattermost server to write files to arbitr...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-7524
(9.8 CRITICAL)

EPSS: 0.28%

updated 2026-05-27T15:33:32

1 posts

IBM Langflow OSS 1.0.0 through 1.9.1 could allow remote code execution due to improper validation of symbolic links during archive extraction.

thehackerwire@mastodon.social at 2026-05-27T15:01:15.000Z ##

🔴 CVE-2026-7524 - Critical (9.8)

IBM Langflow OSS 1.0.0 through 1.9.1 could allow remote code execution due to improper validation of symbolic links during archive extraction.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-8179
(8.8 HIGH)

EPSS: 0.06%

updated 2026-05-27T15:33:32

1 posts

IBM Aspera High-Speed Transfer Endpoint 3.7.4 through 4.4.7 Fix Pack 1 and IBM Aspera High-Speed Transfer Server 3.7.4 through 4.4.7 Fix Pack 1 and IBM Aspera High-Speed Transfer Endpoint are affected by a buffer overflow in the asperahttpd component. This vulnerability could allow an authenticated user to execute arbitrary code on the system.

thehackerwire@mastodon.social at 2026-05-27T15:00:26.000Z ##

🟠 CVE-2026-8179 - High (8.8)

IBM Aspera High-Speed Transfer Endpoint 3.7.4 through 4.4.7 Fix Pack 1 and IBM Aspera High-Speed Transfer Server 3.7.4 through 4.4.7 Fix Pack 1 and IBM Aspera High-Speed Transfer Endpoint are affected by a buffer overflow in the asperahttpd compon...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-8175
(9.8 CRITICAL)

EPSS: 0.39%

updated 2026-05-27T15:33:31

1 posts

IBM Aspera High-Speed Transfer Endpoint 3.7.4 through 4.4.7 Fix Pack 1 and IBM Aspera High-Speed Transfer Server 3.7.4 through 4.4.7 Fix Pack 1 and IBM Aspera High-Speed Transfer Endpoint are affected by a buffer overflow in the asperahttpd component. This vulnerability could be exploited to cause a denial of service and potentially lead to authentication bypass or remote code execution.

thehackerwire@mastodon.social at 2026-05-27T15:01:24.000Z ##

🔴 CVE-2026-8175 - Critical (9.8)

IBM Aspera High-Speed Transfer Endpoint 3.7.4 through 4.4.7 Fix Pack 1 and IBM Aspera High-Speed Transfer Server 3.7.4 through 4.4.7 Fix Pack 1 and IBM Aspera High-Speed Transfer Endpoint are affected by a buffer overflow in the asperahttpd compon...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2025-14713
(7.5 HIGH)

EPSS: 0.03%

updated 2026-05-27T14:54:20.160000

1 posts

An Exposed Dangerous Method or Function vulnerability in Synology C2 Identity Edge Server package in DSM before 1.76.0-0307 allows remote attackers to obtain user credentials from the edge server.

thehackerwire@mastodon.social at 2026-05-27T17:02:25.000Z ##

🟠 CVE-2025-14713 - High (7.5)

An Exposed Dangerous Method or Function vulnerability in Synology C2 Identity Edge Server package in DSM before 1.76.0-0307 allows remote attackers to obtain user credentials from the edge server.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-42013
(8.2 HIGH)

EPSS: 0.03%

updated 2026-05-27T14:54:20.160000

1 posts

A flaw was found in gnutls. When validating certificates, an oversized Subject Alternative Name (SAN) could cause the validation process to incorrectly fall back to checking the Common Name (CN) field. This could allow a remote attacker to bypass proper certificate validation, potentially leading to spoofing or man-in-the-middle attacks.

thehackerwire@mastodon.social at 2026-05-26T23:01:43.000Z ##

🟠 CVE-2026-42013 - High (8.2)

A flaw was found in gnutls. When validating certificates, an oversized Subject Alternative Name (SAN) could cause the validation process to incorrectly fall back to checking the Common Name (CN) field. This could allow a remote attacker to bypass ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-7365
(8.4 HIGH)

EPSS: 0.02%

updated 2026-05-27T14:53:51.833000

1 posts

IBM Operations Analytics - Log Analysis  and IBM SmartCloud Analytics - Log Analysis uses default passwords default passwords from the manufacturing process for use during the installation process, which could allow an attacker to bypass authentication.

thehackerwire@mastodon.social at 2026-05-27T15:00:35.000Z ##

🟠 CVE-2026-7365 - High (8.4)

IBM Operations Analytics - Log Analysis  and IBM SmartCloud Analytics - Log Analysis uses default passwords default passwords from the manufacturing process for use during the installation process, which could allow an attacker to bypass authenti...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-8180
(7.5 HIGH)

EPSS: 0.06%

updated 2026-05-27T14:53:51.833000

1 posts

IBM Aspera High-Speed Transfer Endpoint 3.7.4 through 4.4.7 Fix Pack 1 and IBM Aspera High-Speed Transfer Server 3.7.4 through 4.4.7 Fix Pack 1 and IBM Aspera High-Speed Transfer Endpoint are affected by a potential denial of service in the asperahttpd component. An unauthenticated user can cause the asperahttpd service to crash.

thehackerwire@mastodon.social at 2026-05-27T15:00:16.000Z ##

🟠 CVE-2026-8180 - High (7.5)

IBM Aspera High-Speed Transfer Endpoint 3.7.4 through 4.4.7 Fix Pack 1 and IBM Aspera High-Speed Transfer Server 3.7.4 through 4.4.7 Fix Pack 1 and IBM Aspera High-Speed Transfer Endpoint are affected by a potential denial of service in the aspera...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-40826
(4.9 MEDIUM)

EPSS: 0.03%

updated 2026-05-27T14:53:22.863000

2 posts

A high privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the dsgvo_contracts view due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality.

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2026-40837
(6.5 MEDIUM)

EPSS: 0.03%

updated 2026-05-27T14:53:22.863000

2 posts

An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the getProjectScalings function due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality.

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2026-40818
(7.5 HIGH)

EPSS: 0.05%

updated 2026-05-27T14:53:22.863000

2 posts

An unauthenticated remote attacker can exploit an unauthenticated SQL Injection vulnerability in the _mb24confi_getDevice function due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality.

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2026-40812
(7.5 HIGH)

EPSS: 0.05%

updated 2026-05-27T14:53:22.863000

2 posts

An unauthenticated remote attacker can exploit an unauthenticated SQL Injection vulnerability in the getLiveValues functions sn parameter due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality.

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2026-40824
(5.5 MEDIUM)

EPSS: 0.03%

updated 2026-05-27T14:53:22.863000

2 posts

A high privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the accountstatus view userid parameter due to improper neutralization of special elements in a SQL UPDATE command allowing for reading the whole database and changing values in a non critical table. This can result in a total loss of confidentiality and some loss of integrity.

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2026-40831
(6.5 MEDIUM)

EPSS: 0.03%

updated 2026-05-27T14:53:22.863000

2 posts

An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the Easy View due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality.

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2026-40835
(6.5 MEDIUM)

EPSS: 0.03%

updated 2026-05-27T14:53:22.863000

2 posts

An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the saveObjectFromData function due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality.

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2026-40836
(7.1 HIGH)

EPSS: 0.03%

updated 2026-05-27T14:53:22.863000

2 posts

An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the inmessage model due to improper neutralization of special elements in a SQL DELETE command allowing for reading the whole database and deleting entries in a non critical table. This can result in a total loss of confidentiality and some loss of integrity.

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2026-40827
(5.5 MEDIUM)

EPSS: 0.03%

updated 2026-05-27T14:53:22.863000

2 posts

A high privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the _RemoveRequest function due to improper neutralization of special elements in a SQL DELETE command allowing for reading the whole database and deleting entries in a non critical table. This can result in a total loss of confidentiality and some loss of integrity.

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2026-40832
(6.5 MEDIUM)

EPSS: 0.03%

updated 2026-05-27T14:53:22.863000

2 posts

An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the getDevicegroups function due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality.

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2026-40828
(5.5 MEDIUM)

EPSS: 0.03%

updated 2026-05-27T14:53:22.863000

2 posts

A high privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the DeleteSysLogEntry function due to improper neutralization of special elements in a SQL DELETE command allowing for reading the whole database and deleting entries in a non critical table. This can result in a total loss of confidentiality and some loss of integrity.

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2026-40816
(7.5 HIGH)

EPSS: 0.05%

updated 2026-05-27T14:53:22.863000

2 posts

An unauthenticated remote attacker can exploit an unauthenticated SQL Injection vulnerability in the mb24alarm.php files _mb24confi_getTagAlarm function due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality.

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2025-41670
(7.8 HIGH)

EPSS: 0.03%

updated 2026-05-27T14:53:22.863000

1 posts

A local user with low privileges may be able to influence the behavior of a privileged system service by manipulating configuration or application-related files located in user-writable areas of the filesystem. The affected service processes data from locations that are not sufficiently protected against modification by low-privileged users. As the service runs with elevated privileges, successful

certvde@infosec.exchange at 2026-05-27T07:22:41.000Z ##

#OT #Advisory VDE-2026-050
Phoenix Contact: PLCnext Firmware Security Issues Related to APPs and Configuration Files

This advisory addresses security issues in PLCnext firmware versions prior to 2026.0.3 that are related to APP handling and the processing of configuration files. The identified vulnerabilities affect APP installation authenticity as well as the handling of configuration data in writable directories. Successful exploitation may allow authenticated attackers with different privilege levels to compromise integrity, availability, and system security of affected PLCnext Control. Both issues are resolved starting with PLCnext firmware version 2026.0.3.
#CVE CVE-2025-41669, CVE-2025-41670

certvde.com/en/advisories/vde-

#CSAF phoenixcontact.csaf-tp.certvde

##

CVE-2026-48972
(7.5 HIGH)

EPSS: 0.11%

updated 2026-05-27T14:50:47.627000

1 posts

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in SeedProd LLC SeedProd Pro allows PHP Local File Inclusion. This issue affects SeedProd Pro: from n/a before 6.19.5.

thehackerwire@mastodon.social at 2026-05-27T15:01:33.000Z ##

🟠 CVE-2026-48972 - High (7.5)

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in SeedProd LLC SeedProd Pro allows PHP Local File Inclusion.

This issue affects SeedProd Pro: from n/a before 6.19.5.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-42748
(9.9 CRITICAL)

EPSS: 0.04%

updated 2026-05-27T14:50:47.627000

1 posts

Unrestricted Upload of File with Dangerous Type vulnerability in WPify WPify Woo Czech wpify-woo allows Upload a Web Shell to a Web Server.This issue affects WPify Woo Czech: from n/a through <= 5.4.1.

thehackerwire@mastodon.social at 2026-05-27T14:00:22.000Z ##

🔴 CVE-2026-42748 - Critical (9.9)

Unrestricted Upload of File with Dangerous Type vulnerability in WPify WPify Woo Czech wpify-woo allows Upload a Web Shell to a Web Server.This issue affects WPify Woo Czech: from n/a through &lt;= 5.4.1.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-42760
(7.5 HIGH)

EPSS: 0.04%

updated 2026-05-27T14:50:47.627000

1 posts

Authentication Bypass Using an Alternate Path or Channel vulnerability in revmakx Backup and Staging by WP Time Capsule wp-time-capsule allows Password Recovery Exploitation.This issue affects Backup and Staging by WP Time Capsule: from n/a through <= 1.22.25.

thehackerwire@mastodon.social at 2026-05-27T12:01:19.000Z ##

🟠 CVE-2026-42760 - High (7.5)

Authentication Bypass Using an Alternate Path or Channel vulnerability in revmakx Backup and Staging by WP Time Capsule wp-time-capsule allows Password Recovery Exploitation.This issue affects Backup and Staging by WP Time Capsule: from n/a throug...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-42756
(9.9 CRITICAL)

EPSS: 0.05%

updated 2026-05-27T14:50:47.627000

1 posts

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Ludwig You QuickWebP &#8211; Compress / Optimize Images &amp; Convert WebP | SEO Friendly quickwebp allows Path Traversal.This issue affects QuickWebP &#8211; Compress / Optimize Images &amp; Convert WebP | SEO Friendly: from n/a through <= 3.2.7.

thehackerwire@mastodon.social at 2026-05-27T12:00:06.000Z ##

🔴 CVE-2026-42756 - Critical (9.9)

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Ludwig You QuickWebP &#8211; Compress / Optimize Images &amp; Convert WebP | SEO Friendly quickwebp allows Path Traversal.This issue affects QuickWebP ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-9632
(8.8 HIGH)

EPSS: 0.04%

updated 2026-05-27T14:50:47.627000

1 posts

A flaw has been found in UTT HiPER 1250GW up to 3.2.7-210907-180535. Affected by this issue is the function strcpy of the file /goform/formGroupConfig of the component Web Management Interface. Executing a manipulation of the argument Profile can lead to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been published and may be used.

thehackerwire@mastodon.social at 2026-05-27T03:00:44.000Z ##

🟠 CVE-2026-9632 - High (8.8)

A flaw has been found in UTT HiPER 1250GW up to 3.2.7-210907-180535. Affected by this issue is the function strcpy of the file /goform/formGroupConfig of the component Web Management Interface. Executing a manipulation of the argument Profile can ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-44905
(7.5 HIGH)

EPSS: 0.03%

updated 2026-05-27T14:16:56.203000

1 posts

Vanetza is an open-source implementation of the ETSI C-ITS protocol suite. In 26.02 and earlier, a denial-of-service vulnerability was identified in the cryptographic verification pipeline of Vanetza. When processing incoming V2X messages, the ASN.1 decoder accepts the structure as syntactically valid. However, this reveals a logic-based protocol failure where semantic constraints on specific fiel

thehackerwire@mastodon.social at 2026-05-26T23:00:18.000Z ##

🟠 CVE-2026-44905 - High (7.5)

Vanetza is an open-source implementation of the ETSI C-ITS protocol suite. In 26.02 and earlier, a denial-of-service vulnerability was identified in the cryptographic verification pipeline of Vanetza. When processing incoming V2X messages, the ASN...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-42735
(8.2 HIGH)

EPSS: 0.04%

updated 2026-05-27T12:31:30

1 posts

Authentication Bypass Using an Alternate Path or Channel vulnerability in Iqonic Design KiviCare kivicare-clinic-management-system allows Password Recovery Exploitation.This issue affects KiviCare: from n/a through <= 4.3.0.

thehackerwire@mastodon.social at 2026-05-27T14:00:41.000Z ##

🟠 CVE-2026-42735 - High (8.2)

Authentication Bypass Using an Alternate Path or Channel vulnerability in Iqonic Design KiviCare kivicare-clinic-management-system allows Password Recovery Exploitation.This issue affects KiviCare: from n/a through &lt;= 4.3.0.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-42755
(9.3 CRITICAL)

EPSS: 0.03%

updated 2026-05-27T12:31:30

1 posts

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in RealMag777 TableOn posts-table-filterable allows Blind SQL Injection.This issue affects TableOn: from n/a through <= 1.0.5.1.

thehackerwire@mastodon.social at 2026-05-27T14:00:32.000Z ##

🔴 CVE-2026-42755 - Critical (9.3)

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in RealMag777 TableOn posts-table-filterable allows Blind SQL Injection.This issue affects TableOn: from n/a through &lt;= 1.0.5.1.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-42747
(9.3 CRITICAL)

EPSS: 0.03%

updated 2026-05-27T12:31:30

1 posts

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in hassantafreshi Easy Form Builder easy-form-builder allows Blind SQL Injection.This issue affects Easy Form Builder: from n/a through <= 4.0.6.

thehackerwire@mastodon.social at 2026-05-27T12:01:37.000Z ##

🔴 CVE-2026-42747 - Critical (9.3)

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in hassantafreshi Easy Form Builder easy-form-builder allows Blind SQL Injection.This issue affects Easy Form Builder: from n/a through &lt;= 4.0.6.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-42761
(9.3 CRITICAL)

EPSS: 0.03%

updated 2026-05-27T12:31:30

1 posts

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in RealMag777 Active Products Tables for WooCommerce profit-products-tables-for-woocommerce allows Blind SQL Injection.This issue affects Active Products Tables for WooCommerce: from n/a through <= 1.0.9.

thehackerwire@mastodon.social at 2026-05-27T12:01:28.000Z ##

🔴 CVE-2026-42761 - Critical (9.3)

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in RealMag777 Active Products Tables for WooCommerce profit-products-tables-for-woocommerce allows Blind SQL Injection.This issue affects Active Pro...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-42758
(9.8 CRITICAL)

EPSS: 0.04%

updated 2026-05-27T12:31:30

1 posts

Incorrect Privilege Assignment vulnerability in Saleswonder Team: Tobias WebinarIgnition webinar-ignition allows Privilege Escalation.This issue affects WebinarIgnition: from n/a through < 4.08.253.

thehackerwire@mastodon.social at 2026-05-27T12:00:27.000Z ##

🔴 CVE-2026-42758 - Critical (9.8)

Incorrect Privilege Assignment vulnerability in Saleswonder Team: Tobias WebinarIgnition webinar-ignition allows Privilege Escalation.This issue affects WebinarIgnition: from n/a through &lt; 4.08.253.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-42757
(9.9 CRITICAL)

EPSS: 0.05%

updated 2026-05-27T12:31:30

1 posts

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Saleswonder Team: Tobias WebinarIgnition webinar-ignition allows Path Traversal.This issue affects WebinarIgnition: from n/a through < 4.08.253.

thehackerwire@mastodon.social at 2026-05-27T12:00:17.000Z ##

🔴 CVE-2026-42757 - Critical (9.9)

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Saleswonder Team: Tobias WebinarIgnition webinar-ignition allows Path Traversal.This issue affects WebinarIgnition: from n/a through &lt; 4.08.253.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-3012
(8.0 HIGH)

EPSS: 0.00%

updated 2026-05-27T12:31:29

1 posts

A flaw was found in Samba’s certificate auto-enrollment Group Policy handling. When certificate auto-enrollment is enabled, Samba may retrieve a CA certificate over an unencrypted HTTP connection and install it into the local trust store without proper verification. An attacker with the ability to intercept or redirect network traffic could exploit this behavior to supply a malicious certificate a

thehackerwire@mastodon.social at 2026-05-27T17:02:14.000Z ##

🟠 CVE-2026-3012 - High (8)

A flaw was found in Samba’s certificate auto-enrollment Group Policy handling. When certificate auto-enrollment is enabled, Samba may retrieve a CA certificate over an unencrypted HTTP connection and install it into the local trust store without...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-40849
(6.5 MEDIUM)

EPSS: 0.03%

updated 2026-05-27T09:31:29

2 posts

An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the user_alarmprofile view due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality.

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2026-40851
(8.4 HIGH)

EPSS: 0.02%

updated 2026-05-27T09:31:28

3 posts

A local attacker can perform a confusion attack on the cfgparser via a specially crafted file on an USB stick leading to code execution. This can result in a total loss of confidentiality, integrity and availability.

thehackerwire@mastodon.social at 2026-05-27T10:00:21.000Z ##

🟠 CVE-2026-40851 - High (8.4)

A local attacker can perform a confusion attack on the cfgparser via a specially crafted file on an USB stick leading to code execution. This can result in a total loss of confidentiality, integrity and availability.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

certvde@infosec.exchange at 2026-05-27T08:13:15.000Z ##

#OT #Advisory VDE-2026-059
Helmholz: Multiple vulnerabilities in REX100/REX200/REX250

Two command injection vulnerabilities have been discovered in Helmholz REX100/REX200/REX250.
#CVE CVE-2026-40851, CVE-2026-40852

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:12:46.000Z ##

#OT #Advisory VDE-2026-054
MB connect line: Multiple vulnerabilities in mbNET/mbNET.rokey/mbNET.mini

Two command injection vulnerabilities have been discovered in MB connect line mbNET/mbNET.rokey/mbNET.mini.
#CVE CVE-2026-40851, CVE-2026-40852

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2026-40850
(7.5 HIGH)

EPSS: 0.05%

updated 2026-05-27T09:31:28

3 posts

An unauthenticated remote attacker can exploit an unauthenticated SQL Injection vulnerability in the getAccountData function due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality.

thehackerwire@mastodon.social at 2026-05-27T10:00:11.000Z ##

🟠 CVE-2026-40850 - High (7.5)

An unauthenticated remote attacker can exploit an unauthenticated SQL Injection vulnerability in the getAccountData function due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentia...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2026-40852
(7.2 HIGH)

EPSS: 0.07%

updated 2026-05-27T09:31:28

2 posts

A highly authenticated attacker can alter the config generator injecting a payload into future created configurations. The device is not correctly checking this configuration value before passing it to an system execute leading to code execution. This can result in a total loss of confidentiality, integrity and availability.

certvde@infosec.exchange at 2026-05-27T08:13:15.000Z ##

#OT #Advisory VDE-2026-059
Helmholz: Multiple vulnerabilities in REX100/REX200/REX250

Two command injection vulnerabilities have been discovered in Helmholz REX100/REX200/REX250.
#CVE CVE-2026-40851, CVE-2026-40852

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:12:46.000Z ##

#OT #Advisory VDE-2026-054
MB connect line: Multiple vulnerabilities in mbNET/mbNET.rokey/mbNET.mini

Two command injection vulnerabilities have been discovered in MB connect line mbNET/mbNET.rokey/mbNET.mini.
#CVE CVE-2026-40851, CVE-2026-40852

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2026-40844
(6.5 MEDIUM)

EPSS: 0.03%

updated 2026-05-27T09:31:28

2 posts

An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the dashboard view due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality.

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2026-40841
(6.5 MEDIUM)

EPSS: 0.03%

updated 2026-05-27T09:31:28

2 posts

An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the getProjectTags function due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality.

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2026-40833
(7.1 HIGH)

EPSS: 0.03%

updated 2026-05-27T09:31:28

2 posts

An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the dash.php files saveDashboardLayout function due to improper neutralization of special elements in a SQL INSERT command allowing for reading the whole database and inserting entries into a non critical table. This can result in a total loss of confidentiality and some loss of integrity.

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2026-40845
(6.5 MEDIUM)

EPSS: 0.03%

updated 2026-05-27T09:31:28

2 posts

An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the devices_configuration view due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality.

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2026-40846
(6.5 MEDIUM)

EPSS: 0.03%

updated 2026-05-27T09:31:28

2 posts

An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the system view due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality.

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2026-40834
(7.1 HIGH)

EPSS: 0.03%

updated 2026-05-27T09:31:28

2 posts

An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the dash_layout.php files saveDashboardLayout function due to improper neutralization of special elements in a SQL INSERT command allowing for reading the whole database and inserting entries into a non critical table. This can result in a total loss of confidentiality and some loss of integrity.

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2026-40830
(5.5 MEDIUM)

EPSS: 0.03%

updated 2026-05-27T09:31:28

2 posts

A high privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the admin.mbnetj.php files UpdateParam function due to improper neutralization of special elements in a SQL UPDATE command allowing for reading the whole database and changing values in a non critical table. This can result in a total loss of confidentiality and some loss of integrity.

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2026-40840
(6.5 MEDIUM)

EPSS: 0.03%

updated 2026-05-27T09:31:28

2 posts

An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the VerifyCreateLicences function due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality.

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2026-40843
(6.5 MEDIUM)

EPSS: 0.03%

updated 2026-05-27T09:31:28

2 posts

An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the alarming view due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality.

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2026-40842
(6.5 MEDIUM)

EPSS: 0.03%

updated 2026-05-27T09:31:28

2 posts

An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the getWidgetTags function due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality.

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2026-40838
(6.5 MEDIUM)

EPSS: 0.03%

updated 2026-05-27T09:31:28

2 posts

An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the getDeviceScalings function due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality.

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2026-40839
(6.5 MEDIUM)

EPSS: 0.03%

updated 2026-05-27T09:31:28

2 posts

An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the getComponentScalings function due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality.

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2026-40848
(6.5 MEDIUM)

EPSS: 0.03%

updated 2026-05-27T09:31:28

2 posts

An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the tag view due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality.

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2026-40847
(6.5 MEDIUM)

EPSS: 0.03%

updated 2026-05-27T09:31:28

2 posts

An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the system_tag view due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality.

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2025-13392
(8.1 HIGH)

EPSS: 0.05%

updated 2026-05-27T09:31:24

1 posts

Improper check for unusual or exceptional conditions vulnerability in SSO in Synology DiskStation Manager (DSM) before 7.2.2-72806-5 and 7.3.1-86003-1 (7.2.1-69057 is not affected) allows remote attackers to bypass authentication with prior knowledge of the distinguished name (DN).

thehackerwire@mastodon.social at 2026-05-27T10:01:30.000Z ##

🟠 CVE-2025-13392 - High (8.1)

Improper check for unusual or exceptional conditions vulnerability in SSO in Synology DiskStation Manager (DSM) before 7.2.2-72806-5 and 7.3.1-86003-1 (7.2.1-69057 is not affected) allows remote attackers to bypass authentication with prior knowle...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2025-30028
(8.6 HIGH)

EPSS: 0.04%

updated 2026-05-27T09:31:24

1 posts

A vulnerability in Active Backup for Business allows unauthorized remote attackers to read arbitrary files.

thehackerwire@mastodon.social at 2026-05-27T10:01:11.000Z ##

🟠 CVE-2025-30028 - High (8.6)

A vulnerability in Active Backup for Business allows unauthorized remote attackers to read arbitrary files.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-40829
(5.5 MEDIUM)

EPSS: 0.03%

updated 2026-05-27T09:31:24

2 posts

A high privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the view.html.php files UpdateParam function due to improper neutralization of special elements in a SQL UPDATE command allowing for reading the whole database and changing values in a non critical table. This can result in a total loss of confidentiality and some loss of integrity.

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2026-40825
(5.5 MEDIUM)

EPSS: 0.03%

updated 2026-05-27T09:31:23

3 posts

A high privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the accountstatus view devices parameter due to improper neutralization of special elements in a SQL UPDATE command allowing for reading the whole database and changing values in a non critical table. This can result in a total loss of confidentiality and some loss of integrity.

offseq@infosec.exchange at 2026-05-27T09:00:27.000Z ##

⚠️ HIGH severity: CVE-2026-40825 in MB connect line mbCONNECT24. SQL Injection via accountstatus view devices param enables DB read/modify. No patch yet — restrict access & monitor vendor advisories. radar.offseq.com/threat/cve-20 #OffSeq #SQLInjection #Vuln #MBconnect

##

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2026-40817
(7.5 HIGH)

EPSS: 0.05%

updated 2026-05-27T09:31:23

2 posts

An unauthenticated remote attacker can exploit an unauthenticated SQL Injection vulnerability in the getAlarmProfiles function due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality.

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2026-40823
(5.5 MEDIUM)

EPSS: 0.03%

updated 2026-05-27T09:31:23

2 posts

A high privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the DevSerialReset function due to improper neutralization of special elements in a SQL UPDATE command allowing for reading the whole database and changing values in a non critical table. This can result in a total loss of confidentiality and some loss of integrity.

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2026-40810
(7.5 HIGH)

EPSS: 0.05%

updated 2026-05-27T09:31:23

2 posts

An unauthenticated remote attacker can exploit an unauthenticated SQL Injection vulnerability in the userinfo endpoint due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality.

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2026-40815
(7.5 HIGH)

EPSS: 0.05%

updated 2026-05-27T09:31:23

2 posts

An unauthenticated remote attacker can exploit an unauthenticated SQL Injection vulnerability in the _mb24api_getUserAccount function due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality.

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2026-40819
(7.5 HIGH)

EPSS: 0.05%

updated 2026-05-27T09:31:23

2 posts

An unauthenticated remote attacker can exploit an unauthenticated SQL Injection vulnerability in the sync_data24 task due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality.

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2026-40821
(4.9 MEDIUM)

EPSS: 0.03%

updated 2026-05-27T09:31:23

2 posts

A high privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the getAccountByID function due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality.

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2026-40813
(7.5 HIGH)

EPSS: 0.05%

updated 2026-05-27T09:31:23

2 posts

An unauthenticated remote attacker can exploit an unauthenticated SQL Injection vulnerability in the getLiveValues functions tagid parameter due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality.

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2026-40822
(4.9 MEDIUM)

EPSS: 0.03%

updated 2026-05-27T09:31:23

2 posts

A high privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the DevSerialReset function due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality.

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2026-40811
(7.5 HIGH)

EPSS: 0.05%

updated 2026-05-27T09:31:22

2 posts

An unauthenticated remote attacker can exploit an unauthenticated SQL Injection vulnerability in the ssoabstractservice due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality.

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2026-40814
(7.5 HIGH)

EPSS: 0.05%

updated 2026-05-27T09:31:22

2 posts

An unauthenticated remote attacker can exploit an unauthenticated SQL Injection vulnerability in the dataapi.php files _mb24confi_getTagAlarm function due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality.

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2025-41669
(8.8 HIGH)

EPSS: 0.06%

updated 2026-05-27T09:31:22

1 posts

The Web-based Management allows a remote low privileged Engineer user to install additional APPs on the device downloaded from the PLCnext Store without implementing any data verification mechanism, leading to the capability for an Engineer user to reach arbitrary code execution with root privileges on the PLC device. A successful exploitation may allow to install a manipulated APP package, potent

certvde@infosec.exchange at 2026-05-27T07:22:41.000Z ##

#OT #Advisory VDE-2026-050
Phoenix Contact: PLCnext Firmware Security Issues Related to APPs and Configuration Files

This advisory addresses security issues in PLCnext firmware versions prior to 2026.0.3 that are related to APP handling and the processing of configuration files. The identified vulnerabilities affect APP installation authenticity as well as the handling of configuration data in writable directories. Successful exploitation may allow authenticated attackers with different privilege levels to compromise integrity, availability, and system security of affected PLCnext Control. Both issues are resolved starting with PLCnext firmware version 2026.0.3.
#CVE CVE-2025-41669, CVE-2025-41670

certvde.com/en/advisories/vde-

#CSAF phoenixcontact.csaf-tp.certvde

##

CVE-2026-8760
(9.8 CRITICAL)

EPSS: 0.25%

updated 2026-05-27T09:31:21

1 posts

The Login with OTP plugin for WordPress is vulnerable to authentication bypass in all versions up to, and including, 1.6. This is due to an incomplete fix for CVE-2024-11178: the rate-limit/lockout check added to `otpl_login_action()` was placed only inside the OTP-generation branch and is never evaluated on the OTP-validation branch, and the generated 6-digit OTP additionally has no expiration. T

offseq@infosec.exchange at 2026-05-27T07:30:25.000Z ##

🔥 CVE-2026-8760 (CRITICAL, CVSS 9.8): india-web-developer Login with OTP ≤1.6 allows brute-force OTP bypass — no rate-limit on validation, no OTP expiry. Disable the plugin or restrict login access now. Patch pending. radar.offseq.com/threat/cve-20 #OffSeq #WordPress #Vuln

##

CVE-2026-5260
(8.2 HIGH)

EPSS: 0.14%

updated 2026-05-27T06:32:38

1 posts

A flaw was found in libgnutls. A remote attacker, by sending an extremely short premaster secret during an RSA key exchange to a server using an RSA key backed by a PKCS#11 token, could trigger a short heap overread. This memory corruption vulnerability could lead to information disclosure.

thehackerwire@mastodon.social at 2026-05-26T23:00:08.000Z ##

🟠 CVE-2026-5260 - High (8.2)

A flaw was found in libgnutls. A remote attacker, by sending an extremely short premaster secret during an RSA key exchange to a server using an RSA key backed by a PKCS#11 token, could trigger a short heap overread. This memory corruption vulnera...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-2253
(7.7 HIGH)

EPSS: 0.03%

updated 2026-05-27T06:31:42

1 posts

Hitachi Vantara Pentaho Data Integration & Analytics versions before 10.2.0.7 and 11.0.0.0, including 9.3.x and 8.3.x, does not prevent certain XML parsers from resolving external entities.

thehackerwire@mastodon.social at 2026-05-27T05:00:02.000Z ##

🟠 CVE-2026-2253 - High (7.7)

Hitachi Vantara Pentaho Data Integration & Analytics versions before 10.2.0.7 and 11.0.0.0, including 9.3.x and 8.3.x, does not prevent certain XML parsers from resolving external entities.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-9631
(8.8 HIGH)

EPSS: 0.04%

updated 2026-05-27T03:30:37

1 posts

A vulnerability was detected in UTT HiPER 1250GW up to 3.2.7-210907-180535. Affected by this vulnerability is the function strcpy of the file /goform/formConfigFastDirectionW of the component Web Management Interface. Performing a manipulation of the argument Profile results in stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit is now public and may be used.

thehackerwire@mastodon.social at 2026-05-27T04:00:11.000Z ##

🟠 CVE-2026-9631 - High (8.8)

A vulnerability was detected in UTT HiPER 1250GW up to 3.2.7-210907-180535. Affected by this vulnerability is the function strcpy of the file /goform/formConfigFastDirectionW of the component Web Management Interface. Performing a manipulation of ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-9627
(8.8 HIGH)

EPSS: 0.04%

updated 2026-05-27T03:30:37

1 posts

A security flaw has been discovered in UTT HiPER 1200GW up to 2.5.3-170306. This impacts the function strcpy of the file /goform/setSysAdm of the component Web Management Interface. The manipulation of the argument sysAdmUser/sysAdmPass results in buffer overflow. The attack can be launched remotely. The exploit has been released to the public and may be used for attacks.

thehackerwire@mastodon.social at 2026-05-27T03:01:04.000Z ##

🟠 CVE-2026-9627 - High (8.8)

A security flaw has been discovered in UTT HiPER 1200GW up to 2.5.3-170306. This impacts the function strcpy of the file /goform/setSysAdm of the component Web Management Interface. The manipulation of the argument sysAdmUser/sysAdmPass results in...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-9207
(8.8 HIGH)

EPSS: 0.07%

updated 2026-05-27T03:30:36

1 posts

Tanium addressed an unauthorized code execution vulnerability in Connect.

thehackerwire@mastodon.social at 2026-05-27T03:00:54.000Z ##

🟠 CVE-2026-9207 - High (8.8)

Tanium addressed an unauthorized code execution vulnerability in Connect.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-9312(CVSS UNKNOWN)

EPSS: 0.05%

updated 2026-05-27T00:31:29

1 posts

A server-side request forgery (SSRF) vulnerability was identified in GitHub Enterprise Server that allowed an unauthenticated attacker to send crafted requests to internal services by exploiting insufficient input validation in an upload endpoint. By injecting path traversal content into request parameters, an attacker could bypass the intended request flow and redirect internal API calls, potenti

offseq@infosec.exchange at 2026-05-27T01:30:24.000Z ##

🚨 CRITICAL: CVE-2026-9312 (SSRF) in GitHub Enterprise Server 3.16.0 – 3.21.0 lets unauth attackers access internal services via crafted uploads. Patch to 3.16.20+ ASAP! Details: radar.offseq.com/threat/cve-20 #OffSeq #SSRF #GitHub #Vuln

##

CVE-2026-48172
(9.8 CRITICAL)

EPSS: 7.96%

updated 2026-05-26T21:32:41

5 posts

LiteSpeed User-End cPanel Plugin before 2.4.5 allows privilege escalation (possibly to root), as exploited in the wild in May 2026. LiteSpeed WHM Plugin (the parent plugin) is unaffected. Detection is best done via a command line of grep -rE "cpanel_jsonapi_func=redisAble" /var/cpanel/logs /usr/local/cpanel/logs/ 2>/dev/null in Bash. If you get no output, you have not been hit with exploitation of

3 repos

https://github.com/HORKimhab/CVE-2026-48172

https://github.com/retmakarunia/CVE-2026-48172

https://github.com/fevar54/CVE-2026-48172---LiteSpeed-cPanel-Plugin-Version-Auditor

netsecio@mastodon.social at 2026-05-28T15:07:35.000Z ##

📰 CISA Mandates Urgent Patch for Actively Exploited LiteSpeed cPanel Flaw Granting Root Access

⚠️ CRITICAL ALERT: CISA adds LiteSpeed cPanel plugin flaw (CVE-2026-48172) to its KEV catalog. The bug allows for root access and is actively exploited. Patch immediately! #CVE #LiteSpeed #cPanel #CyberSecurity #PatchNow

🌐 cyber[.]netsecops[.]io

🔗 cyber.netsecops.io/articles/ci

##

offseq@infosec.exchange at 2026-05-27T10:30:30.000Z ##

⚠️ CRITICAL: Actively exploited privilege escalation in LiteSpeed cPanel plugin (CVE-2026-48172) enables remote root access via lsws.redisAble. Patch plugin v2.3 – v2.4.4 now! CISA mandates 4-day deadline for U.S. agencies. radar.offseq.com/threat/cisa-g #OffSeq #vuln #patchnow

##

bugxhunter@infosec.exchange at 2026-05-27T02:00:53.000Z ##

🏛️ CISA Adds LiteSpeed cPanel Plugin Privilege Escalation Vulnerability

📝 CISA adds CVE-2026-48172 to KEV Catalog, affecting federal agencies.

cisa.gov/news-events/alerts/20

📰 Alerts

#GovSec #CVE

##

secdb@infosec.exchange at 2026-05-26T20:00:14.000Z ##

🚨 [CISA-2026:0526] CISA Adds One Known Exploited Vulnerability to Catalog (secdb.nttzen.cloud/security-ad)

CISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.

⚠️ CVE-2026-48172 (secdb.nttzen.cloud/cve/detail/)
- Name: LiteSpeed cPanel Plugin Privilege Escalation Vulnerability
- Action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: LiteSpeed
- Product: cPanel Plugin
- Notes: blog.litespeedtech.com/2026/05 ; nvd.nist.gov/vuln/detail/CVE-2

#SecDB #InfoSec #CVE #CISA_KEV #cisa_20260526 #cisa20260526 #cve_2026_48172 #cve202648172

##

cisakevtracker@mastodon.social at 2026-05-26T18:01:10.000Z ##

CVE ID: CVE-2026-48172
Vendor: LiteSpeed
Product: cPanel Plugin
Date Added: 2026-05-26
CVE URL: nvd.nist.gov/vuln/detail/CVE-2

##

CVE-2026-9642
(9.8 CRITICAL)

EPSS: 0.04%

updated 2026-05-26T21:32:08

1 posts

There is a mitigation bypass / (incomplete fix) for CVE-2025-62582 (Unauthenticated Remote Database Access) An unauthenticated remote attacker can access configured databases in a DIAView project.

thehackerwire@mastodon.social at 2026-05-26T22:00:09.000Z ##

🔴 CVE-2026-9642 - Critical (9.8)

There is a mitigation bypass / (incomplete fix) for CVE-2025-62582 (Unauthenticated Remote Database Access)

An unauthenticated remote attacker can access configured databases in a DIAView project.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-8676
(8.8 HIGH)

EPSS: 0.02%

updated 2026-05-26T21:32:07

1 posts

An attacker is able to downgrade the security of a Bluetooth LE connection by deleting an existing bond, spoofing the bonded device and creating a new bond.

thehackerwire@mastodon.social at 2026-05-26T22:00:19.000Z ##

🟠 CVE-2026-8676 - High (8.8)

An attacker is able to downgrade the security of a Bluetooth LE connection by deleting an existing bond, spoofing the bonded device and creating a new bond.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-7454
(7.8 HIGH)

EPSS: 0.01%

updated 2026-05-26T20:40:28.047000

1 posts

A maliciously crafted WRL file, when parsed through Autodesk 3ds Max, can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to execute arbitrary code in the context of the current process.

thehackerwire@mastodon.social at 2026-05-26T19:02:59.000Z ##

🟠 CVE-2026-7454 - High (7.8)

A maliciously crafted WRL file, when parsed through Autodesk 3ds Max, can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to execute arbitrary code in the context of the current process.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-8854
(7.5 HIGH)

EPSS: 0.01%

updated 2026-05-26T20:27:32.703000

1 posts

IBM HTTP Server 8.5, and 9.0 is vulnerable to denial of service via the optional module mod_mem_cache.

thehackerwire@mastodon.social at 2026-05-26T19:00:07.000Z ##

🟠 CVE-2026-8854 - High (7.5)

IBM HTTP Server 8.5, and 9.0 is vulnerable to denial of service via the optional module mod_mem_cache.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-8855
(8.1 HIGH)

EPSS: 0.24%

updated 2026-05-26T20:25:33.130000

1 posts

IBM HTTP Server 8.5, and 9.0 is vulnerable to remote code execution and denial of service in configurations with TLS mutual authentication (client authentication).

thehackerwire@mastodon.social at 2026-05-26T19:00:17.000Z ##

🟠 CVE-2026-8855 - High (8.1)

IBM HTTP Server 8.5, and 9.0 is vulnerable to remote code execution and denial of service in configurations with TLS mutual authentication (client authentication).

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-46368
(8.8 HIGH)

EPSS: 0.06%

updated 2026-05-26T19:50:21.747000

1 posts

luci-app-https-dns-proxy through 2025.12.29-5 — an optional LuCI web UI add-on for the https-dns-proxy package, distributed through the OpenWrt community packages feed and not installed by default — contains a command injection vulnerability in the setInitAction function. An authenticated user holding the luci.https-dns-proxy ACL permission can inject shell metacharacters through the 'name' parame

thehackerwire@mastodon.social at 2026-05-26T16:00:41.000Z ##

🟠 CVE-2026-46368 - High (8.8)

luci-app-https-dns-proxy through 2025.12.29-5 — an optional LuCI web UI add-on for the https-dns-proxy package, distributed through the OpenWrt community packages feed and not installed by default — contains a command injection vulnerability i...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-45247
(9.8 CRITICAL)

EPSS: 0.10%

updated 2026-05-26T19:50:21.747000

1 posts

Mirasvit Full Page Cache Warmer for Magento 2 before version 1.11.12 contains a PHP object injection vulnerability that allows unauthenticated attackers to achieve remote code execution by supplying a crafted serialized PHP object in the CacheWarmer cookie. Attackers can exploit the unrestricted call to PHP's native unserialize() function combined with gadget chains available in Magento and its de

thehackerwire@mastodon.social at 2026-05-26T16:00:25.000Z ##

🔴 CVE-2026-45247 - Critical (9.8)

Mirasvit Full Page Cache Warmer for Magento 2 before version 1.11.12 contains a PHP object injection vulnerability that allows unauthenticated attackers to achieve remote code execution by supplying a crafted serialized PHP object in the CacheWarm...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-5426
(9.1 CRITICAL)

EPSS: 0.07%

updated 2026-05-26T19:16:29.123000

3 posts

Hard-coded ASP.NET/IIS machineKey value in Digital Knowledge KnowledgeDeliver deployments prior to February 24, 2026 allows adversaries to circumvent ViewState validation mechanisms and achieve remote code execution via malicious ViewState deserialization attacks

1 repos

https://github.com/HORKimhab/CVE-2026-5426

beyondmachines1@infosec.exchange at 2026-05-27T20:01:06.000Z ##

KnowledgeDeliver Zero-Day Flaw Exploited to Deploy Web Shells

KnowledgeDeliver LMS installations are being targeted by a zero-day deserialization vulnerability (CVE-2026-5426) caused by hardcoded machine keys, allowing attackers to deploy web shells and Cobalt Strike backdoors.

**If you run Digital Knowledge's KnowledgeDeliver LMS, immediately replace the default ASP.NET machine keys in your web.config with unique, cryptographically strong ones to block these attacks. If possible, restrict portal access to trusted IP ranges, and monitor Windows Application logs for Event ID 1316 (ViewState verification failures).**
#cybersecurity #infosec #attack #activeexploit
beyondmachines.net/event_detai

##

Mozilla@activitypub.awakari.com at 2026-05-27T18:59:43.000Z ## 🚩 Critical KnowledgeDeliver RCE (CVE-2026-5426) abused via shared ASP.NET machine keys to deliver web shells and Cobalt Strike KnowledgeDeliver exploit (CVE-2026-5426) enables RCE via ViewState ...

#TIGR #malware #vulnerability

Origin | Interest | Match ##

blog@insicurezzadigitale.com at 2026-05-27T07:47:40.000Z ##

CVE-2026-5426: zero-day in KnowledgeDeliver LMS sfruttato per distribuire BLUEBEAM e Cobalt Strike BEACON

Mandiant ha pubblicato i dettagli dell'exploitation attiva di CVE-2026-5426, zero-day nel LMS KnowledgeDeliver causato da chiavi ASP.NET machineKey hardcoded e condivise tra tutte le installazioni. L'attacco ha portato al deployment della web shell in-memory BLUEBEAM e, tramite social engineering degli utenti, alla distribuzione di Cobalt Strike BEACON personalizzato per organizzazione.

insicurezzadigitale.com/cve-20

##

CVE-2026-8620
(7.5 HIGH)

EPSS: 0.05%

updated 2026-05-26T19:06:14.330000

1 posts

IBM Web Server Plug-ins for WebSphere Application Server and WebSphere Liberty 8.5, 9.0 IBM WebSphere Application Server and WebSphere Application Server Liberty are vulnerable to HTTP request smuggling in the Web Server Plug-ins through a specially crafted request.

thehackerwire@mastodon.social at 2026-05-26T19:03:10.000Z ##

🟠 CVE-2026-8620 - High (7.5)

IBM Web Server Plug-ins for WebSphere Application Server and WebSphere Liberty 8.5, 9.0 IBM WebSphere Application Server and WebSphere Application Server Liberty are vulnerable to HTTP request smuggling in the Web Server Plug-ins through a special...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-8856
(7.7 HIGH)

EPSS: 0.03%

updated 2026-05-26T18:31:51

1 posts

IBM HTTP Server 8.5, and 9.0 is vulnerable to denial of service in configurations where an attacker has write access to parts of the server configuration.

thehackerwire@mastodon.social at 2026-05-26T19:00:27.000Z ##

🟠 CVE-2026-8856 - High (7.7)

IBM HTTP Server 8.5, and 9.0 is vulnerable to denial of service in configurations where an attacker has write access to parts of the server configuration.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-25112
(7.8 HIGH)

EPSS: 0.01%

updated 2026-05-26T18:31:42

1 posts

A high-severity vulnerability in the deployment of Genetec RabbitMQ that allows a privilege escalation attack.

thehackerwire@mastodon.social at 2026-05-26T16:59:57.000Z ##

🟠 CVE-2026-25112 - High (7.8)

A high-severity vulnerability in the deployment of Genetec RabbitMQ that allows a privilege escalation attack.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-43284
(8.8 HIGH)

EPSS: 25.56%

updated 2026-05-26T18:16:49.533000

1 posts

In the Linux kernel, the following vulnerability has been resolved: xfrm: esp: avoid in-place decrypt on shared skb frags MSG_SPLICE_PAGES can attach pages from a pipe directly to an skb. TCP marks such skbs with SKBFL_SHARED_FRAG after skb_splice_from_iter(), so later paths that may modify packet data can first make a private copy. The IPv4/IPv6 datagram append paths did not set this flag when

33 repos

https://github.com/scriptzteam/Paranoid-Dirty-Frag-CVE-2026-43284

https://github.com/dixyes/dirtypatch

https://github.com/AK777177/Dirty-Frag-Analysis

https://github.com/liamromanis101/DirtyFrag-Detector

https://github.com/jayhutajulu1/CVE-2026-43284-DirtyFrag-PoC

https://github.com/FrosterDL/CVE-2026-43284

https://github.com/infiniroot/ansible-mitigate-copyfail-dirtyfrag

https://github.com/Aiyakami/rust_dirtyfrag

https://github.com/gagaltotal/CVE-2026-43284-CVE-2026-43500-scan

https://github.com/Percivalll/Dirty-Frag-Kubernetes-PoC

https://github.com/xd20111/CVE-2026-43284

https://github.com/XRSecCD/202605_dirty_frag

https://github.com/krisiasty/vcheck

https://github.com/ChernStepanov/DirtyFrag-for-dummies

https://github.com/kuniyal08/Dirty-Frag-CVE-2026-43284

https://github.com/AtlasVector/Dirty-Frag-CVE-2026-43284

https://github.com/whosfault/CVE-2026-43284

https://github.com/metalx1993/dirtyfrag-patches

https://github.com/ochebotar/copy-fail-CVE-2026-31431-detection-probe

https://github.com/KaraZajac/DIRTYFAIL

https://github.com/linnemanlabs/dirtyfrag-arm64

https://github.com/attaattaatta/CVE-2026-43500

https://github.com/6abc/Copy-Fail-CVE-2026-31431-dirty-frag-CVE-2026-43284

https://github.com/LucasPDiniz/CVE-2026-43284

https://github.com/haydenjames/dirty-frag-check

https://github.com/Koshmare-Blossom/DirtyFrag-go

https://github.com/grabesec/XCP_ng_CVE-2026-43284_tester

https://github.com/0xlane/pagecache-guard

https://github.com/DylanClaudio/Reporte-de-Escalada-de-Privilegios-Local-Dirty-Frag

https://github.com/0xBlackash/CVE-2026-43284

https://github.com/mym0us3r/DIRTY-FRAG-Detection-with-Wazuh-4.14.4

https://github.com/ryan2929/CVE-2026-43284-

https://github.com/suominen/CVE-2026-43284

linux@activitypub.awakari.com at 2026-05-28T03:43:38.000Z ## Dirty Frag: a kernel zero-day vs. container and microVM sandboxes On May 7, Hyunwoo Kim (V4bel) disclosed Dirty Frag — two Linux kernel vulnerabilities (CVE-2026-43284 and CVE-2026-43500) that gi...


Origin | Interest | Match ##

CVE-2026-4480
(8.5 HIGH)

EPSS: 0.08%

updated 2026-05-26T15:32:17

1 posts

A flaw was found in the Samba printing subsystem. Samba passes the client-controlled job description string to the command configured with the "print command" setting via the "%J" substitution character without escaping shell meta characters. A remote attacker could exploit this vulnerability by sending a specially crafted print job description that contains unescaped shell characters. This could

thehackerwire@mastodon.social at 2026-05-26T16:00:15.000Z ##

🟠 CVE-2026-4480 - High (8.5)

A flaw was found in the Samba printing subsystem. Samba passes the client-controlled job description string to the command configured with the "print command" setting via the "%J"
substitution character without escaping shell meta characters. A re...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-48131
(8.1 HIGH)

EPSS: 0.02%

updated 2026-05-26T15:32:16

1 posts

The VPN service may mishandle an unexpected IKE fragment value received on the IKE port 500/UDP during the early stage of a connection attempt. This can cause the service to terminate unexpectedly, resulting in denial of service (temporary disruption of VPN-related functionality).

thehackerwire@mastodon.social at 2026-05-26T15:00:59.000Z ##

🟠 CVE-2026-48131 - High (8.1)

The VPN service may mishandle an unexpected IKE fragment value received on the IKE port 500/UDP during the early stage of a connection attempt. This can cause the service to terminate unexpectedly, resulting in denial of service (temporary disrupt...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-9543
(9.8 CRITICAL)

EPSS: 0.20%

updated 2026-05-26T15:32:16

1 posts

A vulnerability has been found in Totolink N300RH 6.1c.1353_B20190305. Affected is the function setPasswordCfg of the file /cgi-bin/cstecgi.cgi of the component Web Management Interface. Such manipulation of the argument admpass leads to os command injection. The attack can be executed remotely. The exploit has been disclosed to the public and may be used.

thehackerwire@mastodon.social at 2026-05-26T15:00:39.000Z ##

🔴 CVE-2026-9543 - Critical (9.8)

A vulnerability has been found in Totolink N300RH 6.1c.1353_B20190305. Affected is the function setPasswordCfg of the file /cgi-bin/cstecgi.cgi of the component Web Management Interface. Such manipulation of the argument admpass leads to os comman...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-39661
(7.5 HIGH)

EPSS: 0.11%

updated 2026-05-26T13:30:57

1 posts

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Magentech SW Core allows PHP Local File Inclusion. This issue affects SW Core: from n/a through 1.7.18.

thehackerwire@mastodon.social at 2026-05-26T14:00:00.000Z ##

🟠 CVE-2026-39661 - High (7.5)

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Magentech SW Core allows PHP Local File Inclusion.

This issue affects SW Core: from n/a through 1.7.18.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-25104
(7.8 HIGH)

EPSS: 0.01%

updated 2026-05-26T13:30:56

2 posts

MediaArea MediaInfoLib LXF parsing heap-based buffer overflow vulnerability

thehackerwire@mastodon.social at 2026-05-26T14:00:09.000Z ##

🟠 CVE-2026-25104 - High (7.8)

MediaArea MediaInfoLib LXF parsing heap-based buffer overflow vulnerability

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

offseq@infosec.exchange at 2026-05-26T09:00:29.000Z ##

🚨 HIGH severity: CVE-2026-25104 impacts MediaArea MediaInfoLib 26.01. Integer underflow in LXF parsing can trigger heap-based buffer overflow. No patch yet — restrict untrusted LXF file parsing and monitor for updates. radar.offseq.com/threat/cve-20 #OffSeq #Vulnerability #Infosec

##

CVE-2026-45250
(7.8 HIGH)

EPSS: 0.01%

updated 2026-05-22T03:30:26

1 posts

The setcred(2) system call is only available to privileged users. However, before the privilege level of the caller is checked, the user-supplied list of supplementary groups is copied into a fixed-size kernel stack buffer without first validating its length. If the supplied list exceeds the capacity of that buffer, a stack buffer overflow occurs. Because the bounds check on the supplementary g

1 repos

https://github.com/venglin/setcred

emaste@mastodon.social at 2026-05-26T18:07:06.000Z ##

@lattera How is autoloading zfs.ko related to CVE-2026-45250?

##

CVE-2026-9082
(6.5 MEDIUM)

EPSS: 34.17%

updated 2026-05-20T21:32:36

1 posts

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Drupal Drupal core allows SQL Injection. This issue affects Drupal core: from 8.9.0 before 10.4.10, from 10.5.0 before 10.5.10, from 10.6.0 before 10.6.9, from 11.0.0 before 11.1.10, from 11.2.0 before 11.2.12, from 11.3.0 before 11.3.10.

Nuclei template

10 repos

https://github.com/thinhap/CVE-2026-9082-PoC

https://github.com/7h30th3r0n3/CVE-2026-9082-Drupal-PoC

https://github.com/lysophavin18/cve-2026-9082

https://github.com/ridhinva/CVE-2026-9082

https://github.com/0xBlackash/CVE-2026-9082

https://github.com/ambionics/cve-2026-9082-drupal-postgresql-rce

https://github.com/ywh-jfellus/CVE-2026-9082

https://github.com/N45HT/drupal-cve-2026-9082-checker

https://github.com/HORKimhab/CVE-2026-9082

https://github.com/strobelpierre/CVE-2026-9082

maniabel@mastodon.de at 2026-05-26T19:55:39.000Z ##

Drupal: kritische Sicherheitslücke (CVE-2026-9082). Der Patch steht zur Verfügung. Aktuell sind in Deutschland 61 Instanzen ungepatcht.
Interessiert das irgendjemenschen? Braucht es weitere Informationen? Oder ist der Beitrag flüssiger als Wasser?

dashboard.shadowserver.org/sta

#Drupal #infosec

##

CVE-2026-41091
(7.8 HIGH)

EPSS: 5.94%

updated 2026-05-20T19:06:36.850000

2 posts

Improper link resolution before file access ('link following') in Microsoft Defender allows an authorized attacker to elevate privileges locally.

2 repos

https://github.com/ridhinva/defender-vulnerability-scanner

https://github.com/0xBlackash/CVE-2026-41091

hackmag@infosec.exchange at 2026-05-27T18:30:03.000Z ##

⚪️ Microsoft patches UnDefend and RedSun 0‑day vulnerabilities

🗨️ Microsoft developers have released out-of-band updates to fix two 0‑day vulnerabilities in Microsoft Defender that are already being used in real-world attacks. These are the bugs CVE-2026-41091 and CVE-2026-45498, known as RedSun and UnDefend. The first issue (7.8 on the…

🔗 hackmag.com/news/undefend-reds

#news

##

christopherkunz@chaos.social at 2026-05-26T10:31:47.000Z ##

The RedSun vulnerability was "officially fixed" on May 19, with the fix being "let's break the PoC by quarantining the affected .exe". The fix is just part of a Defender definition update. So, I guess the Red Sun no longer prevails.
msrc.microsoft.com/update-guid

##

CVE-2010-0249
(8.8 HIGH)

EPSS: 88.79%

updated 2026-05-20T18:32:34

1 posts

Use-after-free vulnerability in Microsoft Internet Explorer 6, 6 SP1, 7, and 8 on Windows 2000 SP4; Windows XP SP2 and SP3; Windows Server 2003 SP2; Windows Vista Gold, SP1, and SP2; Windows Server 2008 Gold, SP2, and R2; and Windows 7 allows remote attackers to execute arbitrary code by accessing a pointer associated with a deleted object, related to incorrectly initialized memory and improper ha

nyanbinary@infosec.exchange at 2026-05-26T21:36:21.000Z ##

Ok, CISA adding CVE-2010-0249 (Use-After-Free in checks notes Internet Explorer 6, 6 SP1, 7, and 8 for Server up to 2008 & Win7 to their KEV list... last week... has me giggle.

Yeah, I guess there may be EITW exploitation? But putting a "you got 2 weeks to fix your Server 2008 Internet Explorer NOW in 2 weeks!!!" is, like, seriously funny.

db.gcve.eu/known-exploited-vul

##

CVE-2026-45498
(4.0 None)

EPSS: 4.11%

updated 2026-05-20T18:31:35

1 posts

Microsoft Defender Denial of Service Vulnerability

1 repos

https://github.com/ridhinva/defender-vulnerability-scanner

hackmag@infosec.exchange at 2026-05-27T18:30:03.000Z ##

⚪️ Microsoft patches UnDefend and RedSun 0‑day vulnerabilities

🗨️ Microsoft developers have released out-of-band updates to fix two 0‑day vulnerabilities in Microsoft Defender that are already being used in real-world attacks. These are the bugs CVE-2026-41091 and CVE-2026-45498, known as RedSun and UnDefend. The first issue (7.8 on the…

🔗 hackmag.com/news/undefend-reds

#news

##

CVE-2026-20223
(10.0 CRITICAL)

EPSS: 0.06%

updated 2026-05-20T17:30:40.450000

1 posts

A vulnerability in the&nbsp;access validation of internal REST APIs of Cisco Secure Workload could allow an unauthenticated, remote attacker to access site resources with the privileges of the&nbsp;Site Admin role. This vulnerability is due to insufficient validation and authentication when accessing REST API endpoints. An attacker could exploit this vulnerability if they are able to send a cra

1 repos

https://github.com/HORKimhab/CVE-2026-20223

PC_Fluesterer@social.tchncs.de at 2026-05-28T12:23:47.000Z ##

Mal etwas neues von Cisco: neues Sicherheitsloch mit 10 von 10

Ach nein, das ist ja gar nicht neu! Im Gegenteil: Cisco hat die Welt doch gerade erst mit eine perfekten 10 beglückt. Sicherheitslücken mit höchster Risikostufe prasseln auf uns nieder, als erhielte Cisco dafür Geld*. Das nächste gefährliche Sicherheitsloch mit der Nummer CVE-2026-20223 klafft diesmal in Cisco Secure Workload (CSW). Dieses Produkt soll eigentlich die IT sicherer machen, indem es Anwendungen voneinander isoliert. Jetzt wird es selber zur Schwachstelle, die relativ einfach angegriffen werden kann. Ein entfernter, nicht angemeldeter Angreifer braucht nur eine speziell gedrechselte*

pc-fluesterer.info/wordpress/2

#Allgemein #Empfehlung #Hintergrund #Warnung #hersteller #hintertür #UnplugTrump #usa #wissen #backdoor

##

CVE-2026-42096(CVSS UNKNOWN)

EPSS: 0.04%

updated 2026-05-19T15:31:29

1 posts

Sparx Pro Cloud Server is vulnerable to Broken Access Control within communication with the database. Due to lack of permission checks, any low privileged user can run arbitrary SQL queries within database user context. The vendor was notified early about this vulnerability, but didn't respond with the details of vulnerability or vulnerable version range. Only version 6.1 (build 167) and below we

1 repos

https://github.com/br0xpl/sparx_hack

campuscodi@mastodon.social at 2026-05-26T17:43:45.000Z ##

Sparx Systems has failed to patch five security issues in its Pro Cloud Server even after being contacted by CERT Poland

cert.pl/en/posts/2026/05/CVE-2

##

CVE-2026-45829
(0 None)

EPSS: 0.17%

updated 2026-05-19T14:16:46.977000

1 posts

A pre-authentication, code injection vulnerability in version 1.0.0 or later of the ChromaDB Python project allows an unauthenticated attacker to run arbitrary code on the server by sending a malicious model repository and trust_remote_code set to true in the /api/v2/tenants/{tenant}/databases/{db}/collections endpoint.

2 repos

https://github.com/0xBlackash/CVE-2026-45829

https://github.com/fevar54/FULL-ANALYSIS---CVE-2026-45829-ChromaDB-

nicfab@fosstodon.org at 2026-05-26T08:12:31.000Z ##

NicFab Newsletter #22 is out.

→ Garante fines Ambrosetti €85k for late breach notification (Art. 34 GDPR)
→ Verizon DBIR 2026: vuln exploitation overtakes credentials as #1 vector
→ Commission opens first Article 112(1) AI Act review
→ Colorado CADMA replaces the 2024 AI Act
→ Unpatched RCE in ChromaDB (CVE-2026-45829)

Read: nicfab.eu/en/newsletter-issues
Subscribe: nicfab.eu/en/pages/newsletter/

#Privacy #AIAct #AI #GDPR #Cybersecurity

##

CVE-2026-45736
(4.4 MEDIUM)

EPSS: 0.01%

updated 2026-05-18T19:02:42

1 posts

### Impact The `websocket.close()` implementation is vulnerable to uninitialized memory disclosure when a `TypedArray` is passed as the reason argument. ### Proof of concept ```js import { deepStrictEqual } from 'node:assert'; import { WebSocket, WebSocketServer } from 'ws'; const wss = new WebSocketServer( { port: 0, skipUTF8Validation: true }, function () { const { port } = wss.addre

lambdawatchdog@techhub.social at 2026-05-27T12:01:02.000Z ##

🔍 Lambda Watchdog detected that CVE-2026-45736 is no longer present in latest AWS Lambda base image scans. github.com/aws/aws-lambda-base #AWS #Lambda #Security #CVE #DevOps #SecOps

##

CVE-2026-45716
(8.8 HIGH)

EPSS: 0.03%

updated 2026-05-18T17:42:25

2 posts

## Summary The `POST /api/global/users/onboard` endpoint is protected by `workspaceBuilderOrAdmin` middleware, allowing any user with builder permissions to access it. When SMTP email is not configured (the default for self-hosted Budibase instances), this endpoint bypasses the admin-restricted invite flow and directly creates users via `bulkCreate`, accepting arbitrary `admin` and `builder` role

thehackerwire@mastodon.social at 2026-05-28T18:01:00.000Z ##

🟠 CVE-2026-45716 - High (8.8)

Budibase is an open-source low-code platform. Prior to 3.38.1, the POST /api/global/users/onboard endpoint is protected by workspaceBuilderOrAdmin middleware, allowing any user with builder permissions to access it. When SMTP email is not configur...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-05-28T18:01:00.000Z ##

🟠 CVE-2026-45716 - High (8.8)

Budibase is an open-source low-code platform. Prior to 3.38.1, the POST /api/global/users/onboard endpoint is protected by workspaceBuilderOrAdmin middleware, allowing any user with builder permissions to access it. When SMTP email is not configur...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-45298
(8.6 HIGH)

EPSS: 0.02%

updated 2026-05-18T16:41:41

1 posts

## Summary In a default dozzle deploy (the documented quickstart, no `DOZZLE_AUTH_PROVIDER` set), `POST /api/notifications/test-webhook` is reachable without authentication and forwards an attacker-controlled URL into a `WebhookDispatcher` that: - Sends an HTTP POST to the supplied URL with attacker-controlled request headers, and - Returns the response status code AND up to 1MB of the response

thehackerwire@mastodon.social at 2026-05-26T23:01:25.000Z ##

🟠 CVE-2026-45298 - High (8.6)

Dozzle is a realtime log viewer for docker containers. Prior to 10.5.2, in a default dozzle deploy (the documented quickstart, no DOZZLE_AUTH_PROVIDER set), POST /api/notifications/test-webhook is reachable without authentication and forwards an a...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

linux@activitypub.awakari.com at 2026-05-28T03:43:38.000Z ## Dirty Frag: a kernel zero-day vs. container and microVM sandboxes On May 7, Hyunwoo Kim (V4bel) disclosed Dirty Frag — two Linux kernel vulnerabilities (CVE-2026-43284 and CVE-2026-43500) that gi...


Origin | Interest | Match ##

CVE-2026-41089
(9.8 CRITICAL)

EPSS: 0.13%

updated 2026-05-15T15:42:17.907000

1 posts

Stack-based buffer overflow in Windows Netlogon allows an unauthorized attacker to execute code over a network.

threatcodex@infosec.exchange at 2026-05-26T17:43:22.000Z ##

Micropatches released for Windows Netlogon Remote Code Execution Vulnerability (CVE-2026-41089)
#CVE_2026_41089
blog.0patch.com/2026/05/microp

##

CVE-2026-20182
(10.0 CRITICAL)

EPSS: 77.32%

updated 2026-05-15T12:45:53.990000

2 posts

May 2026: This security advisory provides the details and fix information for a vulnerability that was discovered and fixed after the was disclosed in February 2026. This new advisory is for a new vulnerability in the control connection handshaking. The section of this advisory includes Show Control Connections guidance to help with system checks.&nbsp; A vulnerability in the peering authenti

Nuclei template

3 repos

https://github.com/portbuster1337/CVE-2026-20182

https://github.com/HORKimhab/CVE-2026-20182

https://github.com/Nxploited/CVE-2026-20182

AAKL at 2026-05-28T16:45:36.714Z ##

Cisco, posted yesterday:

CRITICAL: CVE-2026-20182: Cisco Catalyst SD-WAN Controller Authentication Bypass Vulnerability sec.cloudapps.cisco.com/securi @TalosSecurity

##

AAKL@infosec.exchange at 2026-05-28T16:45:36.000Z ##

Cisco, posted yesterday:

CRITICAL: CVE-2026-20182: Cisco Catalyst SD-WAN Controller Authentication Bypass Vulnerability sec.cloudapps.cisco.com/securi @TalosSecurity #Cisco #vulnerability #infosec

##

CVE-2026-8398
(9.8 CRITICAL)

EPSS: 33.02%

updated 2026-05-15T09:31:43

2 posts

A supply chain attack compromised the official installation packages of DAEMON Tools Lite (Windows versions 12.5.0.2421 through 12.5.0.2434), distributed from the legitimate website daemon-tools.cc between approximately April 8, 2026, and May 5, 2026. Attackers gained unauthorized access to the vendor's (AVB Disc Soft) build or distribution infrastructure and trojanized three binaries: DTHelper.ex

secdb@infosec.exchange at 2026-05-27T20:00:15.000Z ##

🚨 [CISA-2026:0527] CISA Adds 3 Known Exploited Vulnerabilities to Catalog (secdb.nttzen.cloud/security-ad)

CISA has added 3 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.

⚠️ CVE-2026-45321 (secdb.nttzen.cloud/cve/detail/)
- Name: TanStack Unspecified Vulnerability
- Action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: TanStack
- Product: TanStack
- Notes: This vulnerability could affect an open-source component, third-party library, protocol, or proprietary implementation that could be used by different products. For more information, please see: github.com/TanStack/router/sec ; nvd.nist.gov/vuln/detail/CVE-2

⚠️ CVE-2026-48027 (secdb.nttzen.cloud/cve/detail/)
- Name: Nx Console Embedded Malicious Code Vulnerability
- Action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Nx
- Product: Nx Console
- Notes: This vulnerability could affect an open-source component, third-party library, protocol, or proprietary implementation that could be used by different products. For more information, please see: github.com/nrwl/nx-console/sec ; nvd.nist.gov/vuln/detail/CVE-2

⚠️ CVE-2026-8398 (secdb.nttzen.cloud/cve/detail/)
- Name: Daemon Tools Lite Embedded Malicious Code Vulnerability
- Action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Daemon
- Product: Daemon Tools Lite
- Notes: blog.daemon-tools.cc/post/secu ; nvd.nist.gov/vuln/detail/CVE-2

#SecDB #InfoSec #CVE #CISA_KEV #cisa_20260527 #cisa20260527 #cve_2026_45321 #cve_2026_48027 #cve_2026_8398 #cve202645321 #cve202648027 #cve20268398

##

cisakevtracker@mastodon.social at 2026-05-27T18:01:22.000Z ##

CVE ID: CVE-2026-8398
Vendor: Daemon
Product: Daemon Tools Lite
Date Added: 2026-05-27
CVE URL: nvd.nist.gov/vuln/detail/CVE-2

##

CVE-2026-42945
(8.1 HIGH)

EPSS: 0.90%

updated 2026-05-14T21:30:40

1 posts

NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_rewrite_module module. This vulnerability exists when the rewrite directive is followed by a rewrite, if, or set directive and an unnamed Perl-Compatible Regular Expression (PCRE) capture (for example, $1, $2) with a replacement string that includes a question mark (?). An unauthenticated attacker along with conditions beyond it

36 repos

https://github.com/p3Nt3st3r-sTAr/CVE-2026-42945-POC

https://github.com/yusufdalbudak/CVE-2026-42945

https://github.com/chenqin231/CVE-2026-42945

https://github.com/quantumworld-dpdns-io/CVE-2026-42945

https://github.com/Renison-Gohel/CVE-2026-42945-NGINX-Rift

https://github.com/dinosn/cve-2026-42945-nginx32-lab

https://github.com/sibersan/web-server-audit_CVE-2026-42945

https://github.com/oseasfr/Scanner_CVE_2026-42945

https://github.com/bamov970/CVE-2026-42945-Nginx-RCE-bypass-ASLR

https://github.com/iammerrida-source/nginx-rift-detect

https://github.com/karakapaku43/CVE-2026-42945

https://github.com/nu0l/NGINX-Rift

https://github.com/niekaicheng/CVE-2026-42945_NGINX_Rift

https://github.com/hnytgl/cve-2026-42945

https://github.com/nanwinata/nginxrift-CVE-2026-42945

https://github.com/ChamsBouzaiene/ai-vuln-rediscovery-nginx-cve-2026-42945

https://github.com/BarAppTeam/nginx-cve-fix

https://github.com/forxiucn/nginx-cve-2026-42945-poc

https://github.com/soksofos/wazuh-nginx-cve-2026-42945-sca-lab

https://github.com/cipherspy/CVE-2026-42945-POC

https://github.com/rheodev/CVE-2026-42945

https://github.com/fkj-src/fix_nginx_cve_2026_42945

https://github.com/realityone/cve-2026-42945-scan

https://github.com/gagaltotal/CVE-2026-42945-NGINX-Rift-Toolkit

https://github.com/F2u0a0d3/CVE-2026-42945-nginx-rift-poc

https://github.com/byezero/nginx-cve-2026-42945-check

https://github.com/0xBlackash/CVE-2026-42945

https://github.com/edgecases-PurpleHax/cve-images

https://github.com/webdev75950-ux/nginx-rce-cve-2026-42945

https://github.com/jelasin/CVE-2026-42945

https://github.com/imSre9/CVE-2026-42945

https://github.com/RedCrazyGhost/CVE-2026-42945

https://github.com/DepthFirstDisclosures/Nginx-Rift

https://github.com/MateusVerass/nGixshell

https://github.com/tal7aouy/nginx-cve-2026-42945

https://github.com/friparia/NGINX_RIFT_SCAN_CVE_2026_42945

nemo@mas.to at 2026-05-27T11:30:17.000Z ##

Researchers report "NGINX Rift" (CVE-2026-42945) is being probed and exploited days after disclosure — attackers are scanning exposed servers for the 18‑year bug. Patches released; teams urged to remediate. 🔍⚠️🛡️ #NGINX #infosec #CVE2026-42945 theregister.com/security/2026/

##

CVE-2026-45083
(9.8 CRITICAL)

EPSS: 0.04%

updated 2026-05-13T15:33:25

1 posts

### Summary The Goobi viewer REST endpoint `POST /api/v1/index/stream` accepted an arbitrary Solr streaming expression from unauthenticated network clients and forwarded it to the backend Solr server without restriction. An attacker could read the complete Solr index and, in default Solr deployments, also modify or delete indexed records. The API endpoint has now been removed. ### Impact - **C

thehackerwire@mastodon.social at 2026-05-27T23:00:34.000Z ##

🔴 CVE-2026-45083 - Critical (9.8)

The Goobi viewer is a web application that allows digitised material to be displayed in a web browser. From 4.8.0 to before 26.04.1, the Goobi viewer REST endpoint POST /api/v1/index/stream accepted an arbitrary Solr streaming expression from unau...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-28910
(3.3 LOW)

EPSS: 0.01%

updated 2026-05-13T00:49:16

2 posts

This issue was addressed with improved permissions checking. This issue is fixed in macOS Tahoe 26.4. A malicious app may be able to access arbitrary files.

mysk@mastodon.social at 2026-05-28T14:04:21.000Z ##

We had lengthy discussions explaining the bug to Apple. It was clear to us the bug was new to Apple Product Security. After 5 months, they informed us that the report was treated as a duplicate and it was addressed.
We just got this update for CVE-2026-28910: No bounty

You can read the full blog post (aka charity work for a 4-trillion-dollar company) highlighting this bug here:

mysk.blog/2026/05/19/cve-2026-

#apple #privacy #macos #infosec #security

##

mysk@mastodon.social at 2026-05-28T14:04:21.000Z ##

We had lengthy discussions explaining the bug to Apple. It was clear to us the bug was new to Apple Product Security. After 5 months, they informed us that the report was treated as a duplicate and it was addressed.
We just got this update for CVE-2026-28910: No bounty

You can read the full blog post (aka charity work for a 4-trillion-dollar company) highlighting this bug here:

mysk.blog/2026/05/19/cve-2026-

#apple #privacy #macos #infosec #security

##

CVE-2016-10156
(7.8 HIGH)

EPSS: 0.71%

updated 2026-05-13T00:24:29.033000

1 posts

A flaw in systemd v228 in /src/basic/fs-util.c caused world writable suid files to be created when using the systemd timers features, allowing local attackers to escalate their privileges to root. This is fixed in v229.

grawity@treehouse.systems at 2026-05-28T07:50:28.000Z ##

my approach to finding security bugs:

me in 2017: "hmm the directory is world-writable, and the sticky bit looks ugly in my colorized ls, I'll send a patch"
someone on IRC a week later: "hey you're named in CVE-2016-10156"

me in 2023: "ugh OpenSSH crashes when I'm connecting from my retro Win98 VM"
someone on IRC a week later: "hey did you know you're in CVE-2023-25136"

##

CVE-2026-45088
(7.5 HIGH)

EPSS: 0.03%

updated 2026-05-12T15:08:14

2 posts

## Summary When dalfox is run in REST API server mode, the `custom-payload-file` field in `model.Options` is JSON-tagged and deserialized directly from the attacker's request body, then propagated unchanged through `dalfox.Initialize` into the scan engine. The engine passes the value to `voltFile.ReadLinesOrLiteral`, which reads lines from any file path accessible to the dalfox process and embeds

thehackerwire@mastodon.social at 2026-05-28T18:01:53.000Z ##

🟠 CVE-2026-45088 - High (7.5)

Dalfox is a powerful open-source XSS scanner and utility focused on automation. Prior to 2.13.0, when dalfox is run in REST API server mode, the custom-payload-file field in model.Options is JSON-tagged and deserialized directly from the attacker'...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-05-28T18:01:53.000Z ##

🟠 CVE-2026-45088 - High (7.5)

Dalfox is a powerful open-source XSS scanner and utility focused on automation. Prior to 2.13.0, when dalfox is run in REST API server mode, the custom-payload-file field in model.Options is JSON-tagged and deserialized directly from the attacker'...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-26980
(9.4 CRITICAL)

EPSS: 56.66%

updated 2026-05-12T13:31:01

3 posts

### Impact A SQL injection vulnerability existed in Ghost's Content API that allowed unauthenticated attackers to read arbitrary data from the database. ### Vulnerable Versions This vulnerability is present in Ghost v3.24.0 to v6.19.0. ### Patches v6.19.1 contains a fix for this issue. **Note:** as this vulnerability lets an attacker gain access to a site's API keys, we recommend reviewing

Nuclei template

4 repos

https://github.com/dinosn/ghost-cve-2026-26980

https://github.com/vognik/CVE-2026-26980

https://github.com/EQSTLab/CVE-2026-26980

https://github.com/Kulik-Labs-Development/Ghost-CMS-Code-Injection-Audit-CVE-2026-26980

benzogaga33@mamot.fr at 2026-05-28T09:20:03.000Z ##

Plus de 700 sites piratés : la faille critique de Ghost CMS qui sème la terreur sur le web goodtech.info/ghost-cms-faille #Développement #Applications #Sécurité #Àlaune

##

tomshw@mastodon.social at 2026-05-26T11:05:09.000Z ##

⚠️ Un CMS molto usato finisce nel mirino: siti legittimi possono diventare trappole invisibili. Aggiornare, monitorare, verificare. #Cybersecurity #CMS

🔗 tomshw.it/hardware/ghost-cms-c

##

oversecurity@mastodon.social at 2026-05-26T10:40:33.000Z ##

Critical Ghost CMS Vulnerability Exploited to Hack 700+ Websites

A critical Ghost CMS vulnerability identified as CVE-2026-26980 has been exploited in a widespread cyber campaign that compromised more than 700...

🔗️ [Thecyberexpress] link.is.it/FdS8KE

##

CVE-2026-44971
(8.2 HIGH)

EPSS: 0.03%

updated 2026-05-11T14:45:09

1 posts

# Summary The programmatic remote project scanning path rewrites attacker-controlled repository URLs using a blind string replacement and then sends the caller's GitHub credentials with the resulting request. This allows an attacker who can influence the scanned repository URL to trigger SSRF and capture the `GH_TOKEN` used by GuardDog. # Description `ProjectScanner.scan_remote()` takes a `url`,

thehackerwire@mastodon.social at 2026-05-27T17:01:11.000Z ##

🟠 CVE-2026-44971 - High (8.2)

GuardDog is a CLI tool to identify malicious PyPI packages. From 1.0.0 to 2.9.0, the programmatic remote project scanning path rewrites attacker-controlled repository URLs using a blind string replacement and then sends the caller's GitHub credent...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-44966
(8.3 HIGH)

EPSS: 0.08%

updated 2026-05-09T00:40:17

1 posts

### Summary A prototype pollution vulnerability was discovered in Velocity.js <= 2.1.5. This issue occurs during the processing of #set directives in Velocity templates. If an application renders a template controlled by an attacker, it is possible to modify Object.prototype, potentially leading to Denial of Service (DoS) or Remote Code Execution (RCE) depending on the server environment. ### Det

thehackerwire@mastodon.social at 2026-05-26T23:00:27.000Z ##

🟠 CVE-2026-44966 - High (8.3)

Velocity.js is a JavaScript implementation of the Apache Velocity template engine. In 2.1.5 and earlier, a prototype pollution vulnerability was discovered in velocityjs. This issue occurs during the processing of #set directives in Velocity templ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-44895(CVSS UNKNOWN)

EPSS: 0.02%

updated 2026-05-09T00:10:30

1 posts

## SSE Transport Has No Authentication and Wildcard CORS, Exposing All 86 GitLab Tools Including Destructive Operations A review of `mcp-gitlab-server` at commit `80a7b4cf3fba6b55389c0ef491a48190f7c8996a` uncovered that the SSE HTTP transport — advertised in the README and comparison table as a differentiating feature — runs with no authentication and wildcard CORS on every endpoint. The maintain

offseq@infosec.exchange at 2026-05-27T00:00:35.000Z ##

🚨 CRITICAL: CVE-2026-44895 in yoda-digital mcp-gitlab-server (<0.6.0) allows unauthenticated access to a mutation-capable RPC endpoint, risking full GitLab resource compromise. Upgrade to 0.6.0+ ASAP. radar.offseq.com/threat/cve-20 #OffSeq #Vuln #GitLab #CVE202644895

##

CVE-2026-44900
(8.1 HIGH)

EPSS: 0.00%

updated 2026-05-08T23:47:13

1 posts

### Impact In SignedPublicKeysTrustValidatorImpl.isTrusted(), the ECDSA signature verification at line 45 discards the boolean return value of Signature.verify(). The method performs certificate chain validation, OCSP check, and signature algorithm setup, but never checks whether the signature actually matches. For any structurally valid signature, it returns true. ### Patches Patched in [#34](ht

thehackerwire@mastodon.social at 2026-05-27T04:00:55.000Z ##

🟠 CVE-2026-44900 - High (8.1)

epa4all-client is the Java Client for epa4all / ePA 3.0 in the Telematik Infrastruktur. Prior to 1.2.1, in SignedPublicKeysTrustValidatorImpl.isTrusted(), the ECDSA signature verification at line 45 discards the boolean return value of Signature....

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-44843
(8.2 HIGH)

EPSS: 0.01%

updated 2026-05-08T23:07:34

1 posts

LangChain contains older runtime code paths that deserialize run inputs, run outputs, or other application-controlled payloads using overly broad object allowlists. These paths may call `load()` with `allowed_objects="all"`. This does not enable arbitrary Python object deserialization, but it does allow any trusted LangChain-serializable object to be revived, which is broader than these runtime pa

thehackerwire@mastodon.social at 2026-05-26T22:00:28.000Z ##

🟠 CVE-2026-44843 - High (8.2)

LangChain is a framework for building agents and LLM-powered applications. Prior to 0.3.85 and 1.3.3, LangChain contains older runtime code paths that deserialize run inputs, run outputs, or other application-controlled payloads using overly broad...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-44327
(10.0 CRITICAL)

EPSS: 0.04%

updated 2026-05-08T22:59:24

1 posts

### Summary free5GC's NEF mounts the `nnef-oam` route group without inbound OAuth2/bearer-token authorization. A network attacker who can reach NEF on the SBI can hit the OAM route with no `Authorization` header at all and the handler returns `200 OK`. The current OAM handler is a stub that returns `null`, but the structural defect is route-group-scoped: the entire OAM route group has no inbound a

thehackerwire@mastodon.social at 2026-05-27T18:01:01.000Z ##

🔴 CVE-2026-44327 - Critical (10)

free5GC is an open-source implementation of the 5G core network. Prior to 4.2.2, free5GC's NEF mounts the nnef-oam route group without inbound OAuth2/bearer-token authorization. A network attacker who can reach NEF on the SBI can hit the OAM route...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-44326
(9.4 CRITICAL)

EPSS: 0.04%

updated 2026-05-08T22:59:00

1 posts

### Summary free5GC's NEF mounts the `3gpp-traffic-influence` API without inbound OAuth2/bearer-token authorization. A network attacker who can reach NEF on the SBI can create, read, patch, and delete traffic-influence subscriptions either with no `Authorization` header at all, or with a forged bearer token (e.g. `Authorization: Bearer not-a-real-token`). This includes creating `AnyUeInd=true` sub

thehackerwire@mastodon.social at 2026-05-27T18:00:52.000Z ##

🔴 CVE-2026-44326 - Critical (9.4)

free5GC is an open-source implementation of the 5G core network. Prior to 4.2.2, free5GC's NEF mounts the 3gpp-traffic-influence API without inbound OAuth2/bearer-token authorization. A network attacker who can reach NEF on the SBI can create, rea...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-41241
(8.7 HIGH)

EPSS: 0.04%

updated 2026-04-28T19:07:37.290000

1 posts

pretalx is a conference planning tool. Prior to 2026.1.0, The organiser search in the pretalx backend rendered submission titles, speaker display names, and user names/emails into the result dropdown using innerHTML string interpolation. Any user who controls one of those fields (which includes any registered user whose display name is looked up by an administrator) could include HTML or JavaScrip

undercodenews@mastodon.social at 2026-05-28T12:30:31.000Z ##

CVE-2026-41241: Pretalx Stored XSS Flaw Allowed Speakers to Hijack Organizer Sessions + Video

A Newly Revealed Pretalx Vulnerability Raises Fresh Concerns for Event Platforms A newly disclosed cybersecurity issue affecting the popular open source conference management platform Pretalx has drawn attention across the security community after researchers confirmed that attackers could abuse a stored Cross-Site Scripting (XSS) vulnerability to execute malicious JavaScript…

undercodenews.com/cve-2026-412

##

CVE-2026-40933
(9.9 CRITICAL)

EPSS: 0.07%

updated 2026-04-16T21:18:18

1 posts

### Summary Due to unsafe serialization of stdio commands in the MCP adapter, an authenticated attacker can add an MCP stdio server with an arbitrary command, achieving command execution. ### Details The vulnerability lies in a bug in the input sanitization from the “Custom MCP” configuration in http://localhost:3000/canvas - where any user can add a new MCP, when doing so - adding a new MCP usin

sayzard@mastodon.sayzard.org at 2026-05-28T14:41:40.000Z ##

1-Click RCE in Flowise (CVE-2026-40933)

Obsidian Security가 Flowise의 stdio MCP 기능에서 발견한 CVE-2026-40933 취약점은, 악성 chatflow를 임포트하는 것만으로도 서버 측 임의 코드 실행(RCE)이 가능한 심각한 보안 문제입니다. Flowise의 self-hosted 버전이 기본적으로 취약하며, stdio MCP 프로토콜이 명령어를 샌드박스 없이 실행하기 때문에 공격자가 서버 환경과 API 키 등 민감 정보를 탈취할 수 있습니다. Flowise Cloud는 영향을 받지 않으며, 현재의 입력 검증 패치는 우회 가능해 실질적 완전한 해결책은 stdio MCP 비활성...

obsidiansecurity.com/blog/when

##

CVE-2025-2005
(9.8 CRITICAL)

EPSS: 2.94%

updated 2026-04-08T17:20:35.697000

1 posts

The Front End Users plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the file uploads field of the registration form in all versions up to, and including, 3.2.32. This makes it possible for unauthenticated attackers to upload arbitrary files on the affected site's server which may make remote code execution possible.

4 repos

https://github.com/mrmtwoj/CVE-2025-2005

https://github.com/chetools/CVE2005_Spring2025

https://github.com/h4ckxel/CVE-2025-2005

https://github.com/Nxploited/CVE-2025-2005

hugovalters@mastodon.social at 2026-05-27T05:01:26.000Z ##

CVE-2025-2005 - Critical RCE in Front End Users plugin for WordPress. Unauthenticated arbitrary file upload. CVSS 9.8. No patch available. Disable plugin immediately. #CVE #WordPress #infosec

valtersit.com/cve/CVE-2025-200

##

CVE-2024-23218
(5.9 MEDIUM)

EPSS: 0.19%

updated 2026-04-02T21:32:39

1 posts

A timing side-channel issue was addressed with improvements to constant-time computation in cryptographic functions. This issue is fixed in macOS Sonoma 14.3, watchOS 10.3, tvOS 17.3, iOS 17.3 and iPadOS 17.3. An attacker may be able to decrypt legacy RSA PKCS#1 v1.5 ciphertexts without having the private key.

neverpanic@chaos.social at 2026-05-27T05:36:19.000Z ##

@campuscodi As far I know, that code has always been available for download, the only change is that it's now a lot less hidden and on GitHub. It used to be an unversioned download link well hidden somewhere on their website.

Source: read it a while ago to report CVE-2024-23218.

##

CVE-2026-33416
(7.5 HIGH)

EPSS: 0.02%

updated 2026-04-02T20:28:33.973000

1 posts

LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. In versions 1.2.1 through 1.6.55, `png_set_tRNS` and `png_set_PLTE` each alias a heap-allocated buffer between `png_struct` and `png_info`, sharing a single allocation across two structs with independent lifetimes. The `trans_alpha` aliasing has been present s

certvde@infosec.exchange at 2026-05-26T08:01:19.000Z ##

#OT #Advisory VDE-2026-053
METTLER TOLEDO: EVA Karl Fischer titrators affected by libpng vulnerabilities

Titration software versions prior to 2.0.2.6 are affected by libpng vulnerabilities CVE-2026-33416 and CVE-2026-33636.
#CVE CVE-2026-33636, CVE-2026-33416

certvde.com/en/advisories/vde-

#CSAF mettler-toledo.csaf-tp.certvde

##

CVE-2026-33509
(7.5 HIGH)

EPSS: 0.10%

updated 2026-03-26T20:47:02.337000

1 posts

pyLoad is a free and open-source download manager written in Python. From version 0.4.0 to before version 0.5.0b3.dev97, the set_config_value() API endpoint allows users with the non-admin SETTINGS permission to modify any configuration option without restriction. The reconnect.script config option controls a file path that is passed directly to subprocess.run() in the thread manager's reconnect l

EUVD_Bot@mastodon.social at 2026-05-28T19:00:34.000Z ##

🚨 EUVD-2026-32958

📊 Score: 6.5/10 (CVSS v3.1)
📦 Product: pyload
🏢 Vendor: pyload
📅 Updated: 2026-05-28

📝 pyLoad is a free and open-source download manager written in Python. Prior to 0.5.0b3.dev100, the fix for CVE-2026-33509 prevents setting storage_folder inside PKGDIR or userdir, but does NOT protect the Flask session directory (/tmp/pyLoad/flask). An authenti...

🔗 euvd.enisa.europa.eu/vulnerabi

#cybersecurity #infosec #euvd #cve #vulnerability

##

CVE-2026-4565
(8.8 HIGH)

EPSS: 0.09%

updated 2026-03-23T03:31:45

2 posts

A vulnerability was detected in Tenda AC21 16.03.08.16. Impacted is the function formSetQosBand of the file /goform/SetNetControlList. Performing a manipulation of the argument list results in buffer overflow. The attack can be initiated remotely. The exploit is now public and may be used.

2 repos

https://github.com/mistbarbarianspot/CVE-2026-45659-SharePoint-RCE

https://github.com/HORKimhab/CVE-2026-45659

hackmag at 2026-05-28T15:00:03.454Z ##

⚪️ Microsoft Fixes RCE Vulnerability in SharePoint

🗨️ Microsoft engineers have released out-of-band patches for an RCE vulnerability in SharePoint Server (CVE-2026-45659). The issue has a CVSS score of 8.8 and affects SharePoint Server Subscription Edition, SharePoint Server 2019, and SharePoint Enterprise Server 2016. Exploiting it only requires…

🔗 hackmag.com/news/cve-2026-4565

##

hackmag@infosec.exchange at 2026-05-28T15:00:03.000Z ##

⚪️ Microsoft Fixes RCE Vulnerability in SharePoint

🗨️ Microsoft engineers have released out-of-band patches for an RCE vulnerability in SharePoint Server (CVE-2026-45659). The issue has a CVSS score of 8.8 and affects SharePoint Server Subscription Edition, SharePoint Server 2019, and SharePoint Enterprise Server 2016. Exploiting it only requires…

🔗 hackmag.com/news/cve-2026-4565

#news

##

CVE-2026-3172
(8.1 HIGH)

EPSS: 0.06%

updated 2026-02-25T21:31:25

1 posts

Buffer overflow in parallel HNSW index build in pgvector 0.6.0 through 0.8.1 allows a database user to leak sensitive data from other relations or crash the database server.

mastokukei@social.josko.org at 2026-05-28T18:02:03.000Z ##

Blip blop, I'm a #mastobot.
Here is a summary (in beta) of the latest posts in #programmingAtKukei masto.kukei.eu/browse/programm category:
- **AI coding tools and workflows**: Discussions on GitHub Copilot, Claude Code, Cursor, DeepSeek, hallucinations in AI outputs, and security risks (e.g., symlink RCE in AI agents).
- **PostgreSQL updates**: Security patches (CVE-2026-3172), pgvector fixes, pgBackRest funding, and PostgreSQL 14 end-of-life (Nov 2026).
- **Python ecosystem**: PyCon [1/2]

##

CVE-2021-4229
(8.8 HIGH)

EPSS: 0.86%

updated 2026-02-17T21:57:43

1 posts

The npm package `ua-parser-js` had three versions published with malicious code. Users of affected versions (0.7.29, 0.8.0, 1.0.0) should upgrade as soon as possible and check their systems for suspicious activity. See [this issue](https://github.com/faisalman/ua-parser-js/issues/536) for details as they unfold. Any computer that has this package installed or running should be considered fully co

1 repos

https://github.com/corelight/CVE-2021-42292

CVE-2025-62582
(9.8 CRITICAL)

EPSS: 0.03%

updated 2026-01-20T16:58:23.900000

1 posts

Delta Electronics DIAView has multiple vulnerabilities.

thehackerwire@mastodon.social at 2026-05-26T22:00:09.000Z ##

🔴 CVE-2026-9642 - Critical (9.8)

There is a mitigation bypass / (incomplete fix) for CVE-2025-62582 (Unauthenticated Remote Database Access)

An unauthenticated remote attacker can access configured databases in a DIAView project.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2017-16054
(7.5 HIGH)

EPSS: 0.26%

updated 2024-11-21T03:15:44.050000

1 posts

`nodefabric` was a malicious module published with the intent to hijack environment variables. It has been unpublished by npm.

CVE-2026-48027
(0 None)

EPSS: 26.85%

4 posts

N/A

kev_Stalker at 2026-05-28T18:56:25.800Z ##

CVE-2026-48027 - Changed to Known Ransomware Status

Nx Console Embedded Malicious Code VulnerabilityVendor: NxProduct: Nx ConsoleNx Console contains an embedded malicious code vulnerability that allowed a malicious version of Nx Console to be published. The compromised extension fetched an obfuscated payload that could harvested credentials from multiple sources on disk and in memory.Status changed from Unknown to Known for ransomware nvd.nist.gov/vuln/detail/CVE-2

##

kev_Stalker@infosec.exchange at 2026-05-28T18:56:25.000Z ##

CVE-2026-48027 - Changed to Known Ransomware Status

Nx Console Embedded Malicious Code VulnerabilityVendor: NxProduct: Nx ConsoleNx Console contains an embedded malicious code vulnerability that allowed a malicious version of Nx Console to be published. The compromised extension fetched an obfuscated payload that could harvested credentials from multiple sources on disk and in memory.Status changed from Unknown to Known for ransomware nvd.nist.gov/vuln/detail/CVE-2

##

secdb@infosec.exchange at 2026-05-27T20:00:15.000Z ##

🚨 [CISA-2026:0527] CISA Adds 3 Known Exploited Vulnerabilities to Catalog (secdb.nttzen.cloud/security-ad)

CISA has added 3 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.

⚠️ CVE-2026-45321 (secdb.nttzen.cloud/cve/detail/)
- Name: TanStack Unspecified Vulnerability
- Action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: TanStack
- Product: TanStack
- Notes: This vulnerability could affect an open-source component, third-party library, protocol, or proprietary implementation that could be used by different products. For more information, please see: github.com/TanStack/router/sec ; nvd.nist.gov/vuln/detail/CVE-2

⚠️ CVE-2026-48027 (secdb.nttzen.cloud/cve/detail/)
- Name: Nx Console Embedded Malicious Code Vulnerability
- Action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Nx
- Product: Nx Console
- Notes: This vulnerability could affect an open-source component, third-party library, protocol, or proprietary implementation that could be used by different products. For more information, please see: github.com/nrwl/nx-console/sec ; nvd.nist.gov/vuln/detail/CVE-2

⚠️ CVE-2026-8398 (secdb.nttzen.cloud/cve/detail/)
- Name: Daemon Tools Lite Embedded Malicious Code Vulnerability
- Action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Daemon
- Product: Daemon Tools Lite
- Notes: blog.daemon-tools.cc/post/secu ; nvd.nist.gov/vuln/detail/CVE-2

#SecDB #InfoSec #CVE #CISA_KEV #cisa_20260527 #cisa20260527 #cve_2026_45321 #cve_2026_48027 #cve_2026_8398 #cve202645321 #cve202648027 #cve20268398

##

cisakevtracker@mastodon.social at 2026-05-27T18:00:49.000Z ##

CVE ID: CVE-2026-48027
Vendor: Nx
Product: Nx Console
Date Added: 2026-05-27
CVE URL: nvd.nist.gov/vuln/detail/CVE-2

##

CVE-2026-47761
(0 None)

EPSS: 0.00%

2 posts

N/A

thehackerwire@mastodon.social at 2026-05-28T17:00:50.000Z ##

🟠 CVE-2026-47761 - High (8.7)

TinyMCE is an open source rich text editor. Prior to 5.11.1, 7.9.3, and 8.5.1, there is a stored XSS vulnerability in the media plugin. Attackers can inject malicious scripts via crafted data-mce-* attributes, which are executed when content is re...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-05-28T17:00:50.000Z ##

🟠 CVE-2026-47761 - High (8.7)

TinyMCE is an open source rich text editor. Prior to 5.11.1, 7.9.3, and 8.5.1, there is a stored XSS vulnerability in the media plugin. Attackers can inject malicious scripts via crafted data-mce-* attributes, which are executed when content is re...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-47760
(0 None)

EPSS: 0.00%

2 posts

N/A

thehackerwire@mastodon.social at 2026-05-28T17:00:31.000Z ##

🟠 CVE-2026-47760 - High (8.7)

TinyMCE is an open source rich text editor. From 6.8.0 to before 7.1.0, TinyMCE contains an XSS vulnerability caused by improper SVG namespace scope handling in the sanitizer. A crafted payload using nested elements can bypass attribute sanitizati...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-05-28T17:00:31.000Z ##

🟠 CVE-2026-47760 - High (8.7)

TinyMCE is an open source rich text editor. From 6.8.0 to before 7.1.0, TinyMCE contains an XSS vulnerability caused by improper SVG namespace scope handling in the sanitizer. A crafted payload using nested elements can bypass attribute sanitizati...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-47759
(0 None)

EPSS: 0.00%

2 posts

N/A

thehackerwire@mastodon.social at 2026-05-28T17:00:19.000Z ##

🟠 CVE-2026-47759 - High (8.7)

TinyMCE is an open source rich text editor. Prior to 5.11.1, 7.9.3, and 8.5.1, there is a stored XSS vulnerability via unsanitized data-mce-* attributes (data-mce-href, data-mce-src, data-mce-style). Allows attackers to inject malicious values tha...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-05-28T17:00:19.000Z ##

🟠 CVE-2026-47759 - High (8.7)

TinyMCE is an open source rich text editor. Prior to 5.11.1, 7.9.3, and 8.5.1, there is a stored XSS vulnerability via unsanitized data-mce-* attributes (data-mce-href, data-mce-src, data-mce-style). Allows attackers to inject malicious values tha...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

videah.net@bsky.brid.gy at 2026-05-28T16:24:12.999Z ##

Starting to think git is cursed in some way

CVE-2026-27771: NoScope Discov...

##

forgejo@floss.social at 2026-05-28T14:24:22.000Z ##

A security vulnerability labelled CVE-2026-27771 affecting Forgejo and Gitea is being widely reported recently.

Packages in Forgejo are visible to unauthenticated users if they are published under a public owner, as designed. It is not a security vulnerability, but a misunderstanding about the permissions and a good opportunity for users to review that they are not in a misconfigured state.

Please see the statement issued by the security team here for more details: codeberg.org/forgejo/website/i

##

forgejo@floss.social at 2026-05-28T14:24:22.000Z ##

A security vulnerability labelled CVE-2026-27771 affecting Forgejo and Gitea is being widely reported recently.

Packages in Forgejo are visible to unauthenticated users if they are published under a public owner, as designed. It is not a security vulnerability, but a misunderstanding about the permissions and a good opportunity for users to review that they are not in a misconfigured state.

Please see the statement issued by the security team here for more details: codeberg.org/forgejo/website/i

##

alan@lighthouse.co.im at 2026-05-28T15:16:11.000Z ##

1/3
BadHost (CVE-2026-48710) exposes MCP servers through a trivial HTTP header parsing flaw that hits 325 million weekly downloads across FastAPI, vLLM, LiteLLM, and the entire agentic AI stack.

But the vulnerability isn't the story. The story is why patches won't fix it.

haunted.lighthouse.co.im/artic

##

x41sec@infosec.exchange at 2026-05-28T07:30:41.000Z ##

There's an update for the Starlette issue: We've scanned thousands of hosts for CVE-2026-48710 and found something important: Being behind a proxy or CloudFlare isn't always a protection unlike previously stated!
When a reverse proxy or CDN (including Cloudflare) sits in front of the target and rejects malformed Host headers, the X-Forwarded-Host header can sometimes be used to bypass the protection! If the backend middleware reads X-Forwarded-Host and updates the ASGI scope, the malicious value can reach the ASGI and Starlette. #badhost

##

hackmag@infosec.exchange at 2026-05-28T05:30:04.000Z ##

⚪️ BadHost vulnerability in the Starlette framework poses a threat to AI agents

🗨️ Researchers are warning about a critical vulnerability, CVE-2026-48710, discovered in the open-source Starlette framework and dubbed BadHost. Since Starlette underpins FastAPI and many popular AI tools, the issue creates risks for millions of servers and AI agents, and exploiting the…

🔗 hackmag.com/news/badhost?utm_s

#news

##

LLMs@activitypub.awakari.com at 2026-05-27T15:22:51.000Z ## Attackers Can Exploit BadHost to Access Sensitive AI Agent Server Endpoints A newly disclosed critical vulnerability, tracked as CVE-2026-48710 and dubbed “BadHost,” is putting thousands of AI-...

#AI #Cyber #Security #News #Vulnerability #cyber #security #cyber #security #news

Origin | Interest | Match ##

hn100@social.lansky.name at 2026-05-27T14:45:09.000Z ##

BadHost – CVE-2026-48710: Starlette Host-Header Auth Bypass

Link: badhost.org/
Discussion: news.ycombinator.com/item?id=4

##

hn50@social.lansky.name at 2026-05-27T10:05:07.000Z ##

BadHost – CVE-2026-48710: Starlette Host-Header Auth Bypass

Link: badhost.org/
Discussion: news.ycombinator.com/item?id=4

##

beyondmachines1@infosec.exchange at 2026-05-27T09:01:07.000Z ##

BadHost Vulnerability in Starlette Framework Threatens AI Infrastructure

Starlette patched a path-poisoning vulnerability (CVE-2026-48710) that allows attackers to bypass security middleware in AI agents and Python-based servers. The flaw enables unauthorized access to sensitive credentials and internal endpoints by manipulating the HTTP Host header.

**If you're running applications built on Starlette, FastAPI, or LLM tools like vLLM, LiteLLM, or MCP servers, update Starlette to version 1.0.1 ASAP. While updating, put a reverse proxy (Nginx or Cloudflare) in front of your application to block malformed Host headers, and test your endpoints with the free scanner at BadHost.org.**
#cybersecurity #infosec #advisory #vulnerability
beyondmachines.net/event_detai

##

newsycombinator@framapiaf.org at 2026-05-27T09:00:49.000Z ##

BadHost – CVE-2026-48710: Starlette Host-Header Auth Bypass
Link: badhost.org/
Comments: news.ycombinator.com/item?id=4

##

lobsters@mastodon.social at 2026-05-27T07:55:10.000Z ##

CVE-2026-48710 Starlette Host-Header Auth Bypass lobste.rs/s/cmsgwo #python #web
badhost.org

##

hnbot@chrispelli.fun at 2026-05-27T07:15:19.000Z ##

BadHost – CVE-2026-48710: Starlette Host-Header Auth Bypass - badhost.org/

#hackernews

##

h4ckernews@mastodon.social at 2026-05-27T07:14:19.000Z ##

BadHost – CVE-2026-48710: Starlette Host-Header Auth Bypass

badhost.org/

#HackerNews #BadHost #CVE-2026-48710 #Starlette #Security #Vulnerability #Auth #Bypass

##

sayzard@mastodon.sayzard.org at 2026-05-27T06:39:32.000Z ##

BadHost: One Char Bypasses Host-Based Security Across the Python AI Stack

Python AI 생태계에서 FastAPI의 핵심 라이브러리인 Starlette의 호스트 헤더 처리 취약점(CVE-2026-48710, BadHost)이 발견됐다. 단일 문자 삽입만으로 경로 기반 인증 우회, SSRF, 원격 코드 실행 등이 가능해 LLM 인프라와 AI 서비스에 심각한 보안 위협을 준다. 취약점은 Starlette 1.0.1 버전에서 패치되었으나, CVSS 점수는 실제 영향보다 낮게 평가되어 생태계 전반에 경고가 부족했다. 운영자는 즉시 패치 적용과 함께 request.url 대신 request.scope["path"] 사용, 역방향 프록시 배치 등 방어 조치를 권고한다.

secwest.net/starlette

#security #python #fastapi #starlette #llm

##

sayzard@mastodon.sayzard.org at 2026-05-27T06:39:19.000Z ##

Disclosing the Badhost Vulnerability in Starlette

Starlette의 BadHost 취약점(CVE-2026-48710)은 HTTP Host 헤더의 입력 검증 부족으로 인해 FastAPI, LiteLLM, vLLM 등 주요 Python LLM 인프라에서 인증 우회, SSRF, RCE 공격이 가능하다. 이 취약점은 Starlette 1.0.1 버전으로 업데이트하거나 request.url.path 대신 request.scope["path"]를 사용하는 방식으로 완화할 수 있다. BadHost.org와 X41 D-Sec에서 제공하는 도구로 취약점 점검이 가능하며, HTTP/1.1 준수 리버스 프록시 배치도 권장된다.

ostif.org/disclosing-the-badho

#starlette #security #vulnerability #llm #fastapi

##

CVE-2025-5199
(0 None)

EPSS: 0.04%

1 posts

N/A

EUVD_Bot@mastodon.social at 2026-05-28T15:00:21.000Z ##

🚨 EUVD-2026-32900

📊 Score: 7.8/10 (CVSS v3.1)
📦 Product: Multipass
🏢 Vendor: Canonical
📅 Updated: 2026-05-28

📝 An issue was discovered in Canonical Multipass for macOS before version 1.16.3 due to an incomplete fix for CVE-2025-5199. While the patch in version 1.16.0 updated the ownership of the multipassd daemon binary to root:wheel, five co-located binaries (mu...

🔗 euvd.enisa.europa.eu/vulnerabi

#cybersecurity #infosec #euvd #cve #vulnerability

##

CVE-2026-48095
(0 None)

EPSS: 0.00%

3 posts

N/A

1 repos

https://github.com/HORKimhab/CVE-2026-48095

tomshw@mastodon.social at 2026-05-28T12:10:12.000Z ##

🔒 7-Zip ha corretto una falla critica, ma chi non aggiorna resta esposto: verifica la versione e installa subito l’ultima release. #Cybersecurity #7Zip

🔗 tomshw.it/hardware/7-zip-falla

##

tomshw@mastodon.social at 2026-05-28T12:10:12.000Z ##

🔒 7-Zip ha corretto una falla critica, ma chi non aggiorna resta esposto: verifica la versione e installa subito l’ultima release. #Cybersecurity #7Zip

🔗 tomshw.it/hardware/7-zip-falla

##

beyondmachines1@infosec.exchange at 2026-05-28T08:01:07.000Z ##

Critical 7-Zip Vulnerability Allows Remote Code Execution via NTFS Handler

7-Zip version 26.00 and earlier contain a critical heap buffer overflow (CVE-2026-48095) in the NTFS handler that allows attackers to execute arbitrary code via a crafted archive. The flaw is extension-agnostic and can be triggered simply by opening a malicious file.

**If you use 7-Zip, update to version 26.01 or later immediately. Versions 26.00 and earlier let attackers take over your system just by opening a malicious archive. Until you've updated, do not open any archive or disk image files from untrusted or unexpected sources, regardless of the file extension.**
#cybersecurity #infosec #advisory #vulnerability
beyondmachines.net/event_detai

##

CVE-2026-46402
(0 None)

EPSS: 0.06%

2 posts

N/A

offseq@infosec.exchange at 2026-05-28T06:00:26.000Z ##

⚠️ HIGH severity: Microsoft UFO 3.0.1-4-ge2626659 has a path traversal vuln (CVE-2026-46402). Authenticated users can write files outside logs/. No patch yet — restrict access & monitor input. radar.offseq.com/threat/cve-20 #OffSeq #Microsoft #PathTraversal #CVE202646402

##

thehackerwire@mastodon.social at 2026-05-28T00:00:12.000Z ##

🟠 CVE-2026-46402 - High (8.1)

Microsoft UFO open-source framework for intelligent automation across devices and platforms. In 3.0.1-4-ge2626659, Microsoft UFO uses the user-controlled task_name value directly when constructing session log paths. An authenticated client can sup...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-44590
(0 None)

EPSS: 0.85%

1 posts

N/A

1 repos

https://github.com/Astaruf/CVE-2026-44590

thehackerwire@mastodon.social at 2026-05-28T05:00:38.000Z ##

🔴 CVE-2026-44590 - Critical (9.3)

Sherlock hunts down social media accounts by username across social networks. Prior to 0.16.1, the GitHub Actions workflow validate_modified_targets.yml is vulnerable to command injection via the pull_request_target trigger. Any GitHub user can ex...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-45108
(0 None)

EPSS: 0.07%

1 posts

N/A

thehackerwire@mastodon.social at 2026-05-28T05:00:29.000Z ##

🟠 CVE-2026-45108 - High (8.4)

Himmelblau is an interoperability suite for Microsoft Azure Entra ID and Intune. From 2.0.0 to before 3.1.5 and 2.3.11, Himmelblau contained an authentication bypass vulnerability in the Device Authorization Grant (DAG) flow that allowed a user wi...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-45104
(0 None)

EPSS: 0.04%

1 posts

N/A

thehackerwire@mastodon.social at 2026-05-28T03:01:24.000Z ##

🟠 CVE-2026-45104 - High (7.5)

MapServer is a system for developing web-based GIS applications. From 6.4.0 to before 8.6.3, msSLDParseUserStyle always calls _SLDApplyRuleValues(psRule, psLayer, 1); for any carrying — it assumes msSLDParseRule added one class. When the rule ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-44888
(0 None)

EPSS: 0.05%

1 posts

N/A

thehackerwire@mastodon.social at 2026-05-28T03:01:04.000Z ##

🔴 CVE-2026-44888 - Critical (9.8)

Pi.Alert is a WIFI / LAN intruder detector with web service monitoring. Prior to 2026-05-07, Pi.Alert's SaveConfigFile() endpoint writes user-supplied numeric config values (e.g., SMTP_PORT) directly into
pialert.conf without validation. Since pia...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-46414
(0 None)

EPSS: 0.04%

2 posts

N/A

offseq@infosec.exchange at 2026-05-28T03:00:27.000Z ##

🛡️ CVE-2026-46414 (HIGH): Auth bypass in Microsoft UFO 3.0.1-4-ge2626659. Attackers can spoof roles & hijack device tasks via WebSocket. No patch yet — restrict server token & trusted client access. More: radar.offseq.com/threat/cve-20 #OffSeq #CVE202646414 #MicrosoftUFO #Vuln

##

thehackerwire@mastodon.social at 2026-05-28T00:00:21.000Z ##

🟠 CVE-2026-46414 - High (8.8)

Microsoft UFO open-source framework for intelligent automation across devices and platforms. In 3.0.1-4-ge2626659, Microsoft UFO's WebSocket control plane trusts client-supplied identity and role fields in task messages. A client connection can re...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-44713
(0 None)

EPSS: 0.02%

1 posts

N/A

thehackerwire@mastodon.social at 2026-05-27T22:00:51.000Z ##

🟠 CVE-2026-44713 - High (8.8)

pam_usb provides hardware authentication for Linux using ordinary removable media. Prior to 0.8.7, src/tmux.c reads the user's $TMUX environment variable, splits it on commas, and interpolates the socket-path component directly into a shell comman...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-44712
(0 None)

EPSS: 0.02%

1 posts

N/A

thehackerwire@mastodon.social at 2026-05-27T22:00:42.000Z ##

🟠 CVE-2026-44712 - High (8.2)

pam_usb provides hardware authentication for Linux using ordinary removable media. Prior to 0.8.7, a crafted UUID such as $(id>/tmp/rce) in the config causes root RCE when pamusb-conf --reset-pads is run. A USB device with a crafted filesystem UUI...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-44711
(0 None)

EPSS: 0.02%

1 posts

N/A

thehackerwire@mastodon.social at 2026-05-27T22:00:30.000Z ##

🟠 CVE-2026-44711 - High (7.9)

pam_usb provides hardware authentication for Linux using ordinary removable media. Prior to 0.8.7, symlink attacks on pad directory and pad files enable authentication bypass and root file corruption. This vulnerability is fixed in 0.8.7.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-46425
(0 None)

EPSS: 0.04%

1 posts

N/A

thehackerwire@mastodon.social at 2026-05-27T19:01:42.000Z ##

🔴 CVE-2026-46425 - Critical (9.9)

Budibase is an open-source low-code platform. Prior to 3.38.2, packages/worker/src/api/routes/global/scim.ts attaches only two middlewares to the SCIM router: requireSCIM (checks the Enterprise feature flag and SCIM config) and doInScimContext (se...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-48151
(0 None)

EPSS: 0.03%

1 posts

N/A

thehackerwire@mastodon.social at 2026-05-27T19:00:31.000Z ##

🟠 CVE-2026-48151 - High (7.5)

Budibase is an open-source low-code platform. Prior to 3.39.0, the webhook schema-building endpoint is registered under builderRoutes, but the generic authorization middleware skips authorization for all paths matching /api/webhooks/schema. As a r...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-48150
(0 None)

EPSS: 0.05%

1 posts

N/A

thehackerwire@mastodon.social at 2026-05-27T19:00:20.000Z ##

🔴 CVE-2026-48150 - Critical (9)

Budibase is an open-source low-code platform. Prior to 3.39.0, /api/public/v1/roles/assign is guarded by the builderOrAdmin middleware, which passes any user who is a builder for the app id in the x-budibase-app-id header. That check admits both g...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-48149
(0 None)

EPSS: 0.03%

1 posts

N/A

thehackerwire@mastodon.social at 2026-05-27T19:00:10.000Z ##

🟠 CVE-2026-48149 - High (8.1)

Budibase is an open-source low-code platform. Prior to 3.39.0, the Budibase Text component renders markdown by assigning marked.parse(markdown) straight to innerHTML with no sanitizer (packages/bbui/src/Markdown/MarkdownViewer.svelte:22). Any colu...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-41613
(0 None)

EPSS: 0.07%

1 posts

N/A

euroinfosec@infosec.exchange at 2026-05-27T12:07:01.000Z ##

Vulnerability alert: Developers using Microsoft's code editor could hand an attacker full control of their machine by clicking a single install link, with nothing in the confirmation screen to warn them. Microsoft patched the flaw (CVE-2026-41613). databreachtoday.com/microsoft-

##

CVE-2026-40820
(0 None)

EPSS: 0.00%

2 posts

N/A

certvde@infosec.exchange at 2026-05-27T08:12:04.000Z ##

#OT #Advisory VDE-2026-058
Helmholz: Multiple SQLi vulnerabilities in myREX24V2/myREX24V2.virtual

Multiple SQLi vulnerabilities have been discovered in Helmholz myREX24V2/myREX24V2.virtual
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF helmholz.csaf-tp.certvde.com/.

##

certvde@infosec.exchange at 2026-05-27T08:11:12.000Z ##

#OT #Advisory VDE-2026-044
MB connect line: Multiple SQLi vulnerabilities in mbCONNECT24/mymbCONNECT24

Multiple SQLi vulnerabilities have been discovered in MB connect line mbCONNECT24/mymbCONNECT24.
#CVE CVE-2026-40850, CVE-2026-40819, CVE-2026-40818, CVE-2026-40817, CVE-2026-40816, CVE-2026-40815, CVE-2026-40814, CVE-2026-40813, CVE-2026-40812, CVE-2026-40811, CVE-2026-40810, CVE-2026-40836, CVE-2026-40834, CVE-2026-40833, CVE-2026-40849, CVE-2026-40848, CVE-2026-40847, CVE-2026-40846, CVE-2026-40845, CVE-2026-40844, CVE-2026-40843, CVE-2026-40842, CVE-2026-40841, CVE-2026-40840, CVE-2026-40839, CVE-2026-40838, CVE-2026-40837, CVE-2026-40835, CVE-2026-40832, CVE-2026-40831, CVE-2026-40830, CVE-2026-40829, CVE-2026-40828, CVE-2026-40827, CVE-2026-40825, CVE-2026-40824, CVE-2026-40823, CVE-2026-40826, CVE-2026-40822, CVE-2026-40821, CVE-2026-40820

certvde.com/en/advisories/vde-

#CSAF mbconnectline.csaf-tp.certvde.

##

CVE-2026-44450
(0 None)

EPSS: 0.07%

1 posts

N/A

thehackerwire@mastodon.social at 2026-05-27T06:00:25.000Z ##

🔴 CVE-2026-44450 - Critical (9.9)

Lumiverse is a full-featured AI chat application. Prior to 0.9.7, the MCP server creation endpoint validates the command field against an allowlist of binary names but forwards the args array to the child process without any validation. Every bina...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-44449
(0 None)

EPSS: 0.08%

1 posts

N/A

thehackerwire@mastodon.social at 2026-05-27T06:00:12.000Z ##

🔴 CVE-2026-44449 - Critical (9.1)

Lumiverse is a full-featured AI chat application. Prior to 0.9.7, when the primary toSmbPath(fullPath) call throws, the method falls back to a dirname/basename split and only validates the directory prefix. The basename is concatenated directly in...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-43988
(0 None)

EPSS: 0.03%

1 posts

N/A

thehackerwire@mastodon.social at 2026-05-27T04:00:45.000Z ##

🟠 CVE-2026-43988 - High (7.5)

Vanetza is an open-source implementation of the ETSI C-ITS protocol suite. In 26.02 and earlier, a denial-of-service vulnerability was identified in the ASN.1/OER parsing pipeline of Vanetza. When processing malformed network packets containing co...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-43935
(0 None)

EPSS: 0.13%

1 posts

N/A

thehackerwire@mastodon.social at 2026-05-26T16:59:47.000Z ##

🟠 CVE-2026-43935 - High (8.1)

e107 is a content management system (CMS). Prior to 2.3.4, a Host Header Injection vulnerability in the password reset page allows attackers to manipulate the Host header to generate password reset links pointing to attacker-controlled domains. Th...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-33636
(0 None)

EPSS: 0.04%

1 posts

N/A

certvde@infosec.exchange at 2026-05-26T08:01:19.000Z ##

#OT #Advisory VDE-2026-053
METTLER TOLEDO: EVA Karl Fischer titrators affected by libpng vulnerabilities

Titration software versions prior to 2.0.2.6 are affected by libpng vulnerabilities CVE-2026-33416 and CVE-2026-33636.
#CVE CVE-2026-33636, CVE-2026-33416

certvde.com/en/advisories/vde-

#CSAF mettler-toledo.csaf-tp.certvde

##

Visit counter For Websites