##
Updated at UTC 2026-09-23T18:44:19.646567
| CVE | CVSS | EPSS | Posts | Repos | Nuclei | Updated | Description |
|---|---|---|---|---|---|---|---|
| CVE-2026-85102 | 9.8 | 0.66% | 8 | 0 | 2026-09-23T18:22:07.453000 | Improper certificate trust validation during VPN negotiation in Check Point Quan | |
| CVE-2026-73547 | 7.5 | 0.83% | 1 | 0 | 2026-09-23T18:21:42.327000 | Envoy is an open source edge and service proxy designed for cloud-native applica | |
| CVE-2026-19599 | 9.9 | 0.00% | 4 | 0 | 2026-09-23T18:17:31.543000 | ZohoCorp ManageEngine OpManager MSP versions 12.8.709 and below were vulnerable | |
| CVE-2026-18169 | 9.9 | 0.78% | 1 | 0 | 2026-09-23T18:17:07.270000 | IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remot | |
| CVE-2026-77322 | 7.5 | 0.61% | 1 | 0 | 2026-09-23T18:12:04.247000 | SIPGO is a library for writing SIP services in the GO language. Prior to 1.4.3, | |
| CVE-2026-61714 | 7.8 | 0.14% | 1 | 0 | 2026-09-23T18:12:04.247000 | FluidSynth is a software synthesizer based on the SoundFont 2 specifications. Fr | |
| CVE-2026-91809 | 7.8 | 0.17% | 1 | 0 | 2026-09-23T17:58:26.570000 | A use-after-free vulnerability exists in Foxit PDF Editor/Reader’s handling of m | |
| CVE-2026-93616 | 9.8 | 2.42% | 11 | 2 | 2026-09-23T16:38:38.987000 | A directory traversal and file upload vulnerability allows an unauthenticated at | |
| CVE-2026-96257 | 10.0 | 1.04% | 1 | 0 | 2026-09-23T15:17:31.920000 | A flaw has been found in Fast FAC1203R Gigabit Edition 2.0.4. Affected by this i | |
| CVE-2026-19202 | 0 | 0.23% | 1 | 0 | 2026-09-23T15:17:13.647000 | A caching flaw in the toolbox-core package of the mcp-toolbox-sdk-python SDK cau | |
| CVE-2026-94127 | 9.8 | 1.39% | 17 | 1 | 2026-09-23T14:32:07.910000 | When a BIG-IP APM access policy and an OAuth profile are configured on a virtual | |
| CVE-2026-91811 | 7.8 | 0.17% | 1 | 0 | 2026-09-23T09:30:37 | A heap-based out-of-bounds write vulnerability exists in Foxit PDF Editor/Reader | |
| CVE-2026-91818 | 7.8 | 0.17% | 1 | 0 | 2026-09-23T09:30:37 | A use-after-free vulnerability exists in Foxit PDF Editor/Reader’s JavaScript ha | |
| CVE-2026-81657 | 9.8 | 0.58% | 1 | 0 | 2026-09-23T04:17:48.700000 | IBM Guardium Data Protection 12.2 could allow a remote unauthenticated attacker | |
| CVE-2026-80442 | 9.9 | 0.63% | 1 | 0 | 2026-09-23T04:17:48.027000 | IBM Guardium Data Protection 12.2 is vulnerable to an authenticated OS command i | |
| CVE-2026-28325 | 8.8 | 1.52% | 1 | 0 | 2026-09-23T04:17:42.200000 | SolarWinds Observability Self-Hosted was found to be affected by an unauthentica | |
| CVE-2026-18162 | 9.8 | 0.86% | 1 | 0 | 2026-09-23T00:31:21 | IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remot | |
| CVE-2026-18163 | 9.8 | 0.81% | 1 | 0 | 2026-09-23T00:31:21 | IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remot | |
| CVE-2026-77987 | None | 0.89% | 1 | 0 | 2026-09-22T21:31:40 | A server-side request forgery (SSRF) vulnerability was identified in the noteboo | |
| CVE-2026-88020 | 6.1 | 0.27% | 2 | 0 | 2026-09-22T21:31:39 | Autonomy Logic OpenPLC 3 is susceptible to an improper neutralization of input d | |
| CVE-2026-88419 | 8.8 | 0.48% | 1 | 0 | 2026-09-22T21:31:35 | An unrestricted upload of files with a dangerous type in the thumbnail-upload en | |
| CVE-2026-28324 | 9.8 | 0.65% | 3 | 0 | 2026-09-22T21:31:34 | SolarWinds Observability Self-Hosted was found to be affected by an unauthentica | |
| CVE-2026-87121 | 9.8 | 0.78% | 2 | 0 | 2026-09-22T21:31:34 | lwIP TCP/IP Stack MQTT is vulnerable to an out-of-bounds write, which may allow | |
| CVE-2026-93952 | 10.0 | 0.74% | 13 | 0 | 2026-09-22T21:31:14 | VeloCloud Orchestrator (VCO) on-prem has a security issue where this issue may a | |
| CVE-2026-20282 | 4.9 | 0.56% | 1 | 0 | 2026-09-22T21:17:30.440000 | A vulnerability in Cisco ISE could allow an authenticated, remote attacker to ob | |
| CVE-2026-94540 | 7.7 | 0.11% | 1 | 0 | 2026-09-22T20:53:07.383000 | DesktopSMS 1.11.0 by MrPear contains an unauthorized access vulnerability that a | |
| CVE-2026-94501 | 8.8 | 0.30% | 1 | 0 | 2026-09-22T20:43:58.793000 | jshERP through 3.6 contains an authorization bypass vulnerability in the userBus | |
| CVE-2026-94626 | 7.5 | 0.45% | 1 | 0 | 2026-09-22T20:25:55.870000 | vLLM through 0.29.0 fails to validate the tp_size parameter in kv_transfer_param | |
| CVE-2026-87902 | 8.1 | 0.42% | 8 | 10 | 2026-09-22T20:00:03.713000 | An unauthenticated attacker can make `get_page_template()` page-template resolut | |
| CVE-2026-88407 | 7.5 | 0.26% | 1 | 0 | 2026-09-22T20:00:03.713000 | An out-of-bounds read in the node_token_count/relation_token_count component of | |
| CVE-2026-88409 | 8.8 | 0.28% | 1 | 0 | 2026-09-22T20:00:03.713000 | FalkorDB (Redis module) v4.20.1 to v4.20.4 was discovered to contain a buffer ov | |
| CVE-2026-94054 | 7.0 | 0.27% | 1 | 0 | 2026-09-22T19:56:19.073000 | Exim before 4.100.1, when Proxy-Protocol is used with an attacker-controlled pro | |
| CVE-2026-86553 | 8.8 | 0.45% | 1 | 1 | 2026-09-22T19:41:38.447000 | SmartLife app dynamically generates fresh SmartLife application authentication p | |
| CVE-2026-11726 | 8.1 | 0.46% | 1 | 0 | 2026-09-22T19:32:25.730000 | IBM MQ for HPE NonStop 8.1.0 through 8.1.0.40 could allow an authenticated attac | |
| CVE-2026-11727 | 8.1 | 0.61% | 1 | 0 | 2026-09-22T19:32:25.730000 | IBM MQ for HPE NonStop 8.1.0 through 8.1.0.40 IBM MQ C client could allow a remo | |
| CVE-2026-85279 | 8.6 | 0.21% | 1 | 0 | 2026-09-22T19:16:54.623000 | Notepad++ is a free and open-source source code editor. Prior to 8.9.8, Notepad+ | |
| CVE-2026-84388 | 9.6 | 0.38% | 1 | 1 | 2026-09-22T19:09:58.680000 | A improper restriction of rendered ui layers or frames vulnerability in Fortinet | |
| CVE-2026-88411 | 7.5 | 0.28% | 1 | 0 | 2026-09-22T18:34:30 | Improper error handling in the GRAPH.EFFECT component (/effects/effects_apply.c) | |
| CVE-2026-89275 | 10.0 | 1.25% | 1 | 0 | 2026-09-22T18:33:43 | Adobe Campaign Classic (ACC) is affected by an Improper Control of Generation of | |
| CVE-2026-93345 | 7.5 | 0.49% | 1 | 0 | 2026-09-22T18:33:35 | MikroTik RouterOS before 7.25beta4 contains an improper input validation vulnera | |
| CVE-2026-94099 | 9.9 | 1.69% | 2 | 0 | 2026-09-22T16:18:17.183000 | A security flaw has been discovered in Netcore NBR200V2 1.3.241127.071246. This | |
| CVE-2026-81180 | 8.8 | 0.36% | 2 | 0 | 2026-09-22T16:18:02.227000 | SysReptor is a fully customizable pentest reporting platform. Prior to 2026.61, | |
| CVE-2026-57227 | 7.5 | 0.40% | 1 | 0 | 2026-09-22T16:17:48.827000 | Suricata is a network Intrusion Detection System, Intrusion Prevention System an | |
| CVE-2026-95675 | 9.8 | 3.91% | 1 | 0 | 2026-09-22T15:32:43 | D-Link DAP-1360 firmware version 6.14 and earlier contains an unauthenticated re | |
| CVE-2026-65113 | 9.8 | 0.61% | 1 | 0 | 2026-09-22T15:32:43 | NVIDIA Infrastructure Controller for Linux contains a vulnerability where an att | |
| CVE-2026-88406 | 7.5 | 0.27% | 1 | 0 | 2026-09-22T15:32:31 | FalkorDB (Redis module) v4.20.1 to v4.20.4 was discovered to contain a stack ove | |
| CVE-2026-76698 | 6.5 | 4.44% | 1 | 0 | 2026-09-22T15:17:15.030000 | A command injection vulnerability exists in the web-based management interface o | |
| CVE-2026-73512 | 7.5 | 0.83% | 1 | 0 | 2026-09-22T14:17:14.037000 | Envoy is an open source edge and service proxy designed for cloud-native applica | |
| CVE-2026-74849 | 9.8 | 4.46% | 2 | 0 | 2026-09-22T12:30:32 | Zohocorp ManageEngine ADSelfService Plus versions before build 7001 are vulnerab | |
| CVE-2026-25254 | 9.8 | 0.73% | 1 | 0 | 2026-09-22T12:30:25 | Improper authorization leads to Remote Code Execution via SocketIO interface. | |
| CVE-2026-7273 | 8.8 | 2.41% | 8 | 0 | 2026-09-22T12:10:51.067000 | A stack-based buffer overflow vulnerability in the CGI program of Zyxel GS1900-4 | |
| CVE-2026-13355 | 9.8 | 0.34% | 1 | 1 | 2026-09-22T06:30:35 | The Meta Box AIO plugin for WordPress is vulnerable to Privilege Escalation to A | |
| CVE-2026-19658 | 9.8 | 0.41% | 1 | 1 | 2026-09-22T06:30:35 | The Give Tributes plugin for WordPress is vulnerable to PHP Object Injection in | |
| CVE-2026-94301 | 9.8 | 0.39% | 1 | 0 | 2026-09-22T04:18:02.810000 | The fix for CVE-2026-47065/ZDRES-232 ("resolveProxyClass Not Overridden - accept | |
| CVE-2026-94493 | 10.0 | 0.73% | 1 | 0 | 2026-09-22T03:31:06 | A vulnerability was detected in Gigatech PDV5701 1.0.31_240305_112640. This issu | |
| CVE-2026-94627 | 7.5 | 0.45% | 1 | 0 | 2026-09-22T00:31:02 | vLLM Mooncake connector through 0.29.0 fails to properly manage GPU KV cache blo | |
| CVE-2026-94425 | 8.8 | 0.11% | 2 | 0 | 2026-09-22T00:31:02 | A vulnerability was found in Moore Threads MTT S80 Driver Package 340.150. The a | |
| CVE-2026-94624 | 7.5 | 0.45% | 1 | 0 | 2026-09-22T00:31:02 | vLLM through 0.29.0 contains a denial of service vulnerability in P2P KV offload | |
| CVE-2026-94623 | 7.5 | 0.45% | 1 | 0 | 2026-09-22T00:31:01 | vLLM through 0.29.0 contains a denial of service vulnerability in the NIXL conne | |
| CVE-2026-12249 | 9.0 | 0.14% | 1 | 0 | 2026-09-21T22:27:11 | An issue was discovered in Canonical ADSys upstream versions through v0.16.2. Du | |
| CVE-2026-81469 | 7.8 | 0.13% | 1 | 0 | 2026-09-21T21:32:01 | Dell Inventory Collector Client, versions prior to 15.0.0, contain an Unquoted S | |
| CVE-2026-94497 | 8.3 | 0.26% | 1 | 0 | 2026-09-21T21:32:00 | jshERP through 3.6 fails to validate object ownership in by-id info, update, and | |
| CVE-2026-94424 | 8.8 | 0.14% | 1 | 0 | 2026-09-21T21:31:57 | A vulnerability has been found in Moore Threads MTT S80 Driver Package up to 340 | |
| CVE-2026-94411 | 8.8 | 0.28% | 1 | 0 | 2026-09-21T21:31:53 | jshERP 3.6 contains a privilege escalation vulnerability in the updateOneValueBy | |
| CVE-2026-77560 | 8.1 | 0.33% | 1 | 0 | 2026-09-21T21:17:11.637000 | Tinyauth is an authentication and authorization server. Prior to 5.1.2, Tinyauth | |
| CVE-2026-94142 | 8.8 | 0.13% | 2 | 0 | 2026-09-21T20:17:40.953000 | A security vulnerability has been detected in BioStar Temperature Monitor Utilit | |
| CVE-2026-93958 | 9.1 | 2.17% | 1 | 1 | 2026-09-21T19:17:18.593000 | A vulnerability was found in D-Link R95 BE9500_1.00.16. This vulnerability affec | |
| CVE-2026-68928 | 8.6 | 0.13% | 1 | 0 | 2026-09-21T19:17:09.157000 | Acode is a powerful text and code editor for Android. From 1.11.6 until 1.12.7, | |
| CVE-2026-80521 | 7.8 | 0.13% | 4 | 1 | 2026-09-21T15:32:39 | In the Linux kernel, the following vulnerability has been resolved: af_unix: Un | |
| CVE-2026-92701 | 9.1 | 0.22% | 1 | 1 | 2026-09-21T15:17:35.313000 | Cocos AI is a confidential computing system for running AI workloads inside trus | |
| CVE-2026-82187 | 9.8 | 0.30% | 1 | 0 | 2026-09-21T15:17:32.223000 | The Web to Print Online Designer WordPress plugin before 2.15.0 does not validat | |
| CVE-2026-87067 | 8.5 | 0.28% | 1 | 0 | 2026-09-21T13:34:57.127000 | The Forminator Forms WordPress plugin before 1.57.2.1 does not restrict which c | |
| CVE-2026-94097 | 10.0 | 1.99% | 1 | 0 | 2026-09-21T13:33:33.387000 | A vulnerability was determined in Netcore NBR200V2 1.3.241127.071246. This affec | |
| CVE-2026-94146 | 8.8 | 0.12% | 1 | 0 | 2026-09-21T09:31:09 | A vulnerability was found in BioStar BIOS Update Utility 1.9.7.3. This issue aff | |
| CVE-2026-94128 | 8.8 | 0.12% | 2 | 1 | 2026-09-21T03:30:29 | A security vulnerability has been detected in BioStar VIVID LED DJ 4.0.2411.1500 | |
| CVE-2026-94101 | 9.9 | 0.45% | 2 | 0 | 2026-09-21T03:30:27 | A security vulnerability has been detected in Netcore NBR200V2 1.3.241127.071246 | |
| CVE-2026-94129 | 8.8 | 0.12% | 2 | 1 | 2026-09-21T03:30:27 | A vulnerability was detected in BioStar VALKYRIE AURORA 2.10.2411.0800. This vul | |
| CVE-2026-94100 | 9.9 | 0.46% | 2 | 0 | 2026-09-21T03:30:23 | A weakness has been identified in Netcore NBR200V2 1.3.241127.071246. Impacted i | |
| CVE-2026-94098 | 9.1 | 2.38% | 1 | 0 | 2026-09-21T03:30:22 | A vulnerability was identified in Netcore NBR200V2 1.3.241127.071246. This vulne | |
| CVE-2026-94096 | 9.9 | 1.65% | 2 | 0 | 2026-09-21T00:30:33 | A vulnerability was found in Netcore NBR200V2 1.3.241127.071246. Affected by thi | |
| CVE-2026-94095 | 9.9 | 1.67% | 1 | 1 | 2026-09-21T00:30:33 | A vulnerability has been found in Netcore NBR200V2 1.3.241127.071246. Affected b | |
| CVE-2026-94089 | 10.0 | 0.98% | 1 | 0 | 2026-09-20T21:31:45 | A vulnerability was determined in D-Link DIR-868L 2.01b05. This issue affects th | |
| CVE-2026-94036 | 8.8 | 0.47% | 1 | 1 | 2026-09-20T18:31:25 | A security flaw has been discovered in D-Link DIR-X1860 and DIR-X1860Z up to 1.0 | |
| CVE-2026-85017 | 7.5 | 0.24% | 1 | 0 | 2026-09-20T15:31:26 | The Unlimited Elements For Elementor WordPress plugin before 2.0.20 does not per | |
| CVE-2026-87839 | 7.5 | 0.21% | 1 | 0 | 2026-09-20T15:30:26 | The Tripzzy WordPress plugin before 1.5.1 does not have authorisation checks, a | |
| CVE-2026-94084 | 9.4 | 0.40% | 2 | 0 | 2026-09-20T03:30:29 | Suricata before 8.0.7 has an Http2ThreadMultiBuf use-after-free when a transacti | |
| CVE-2026-94083 | 9.4 | 0.40% | 2 | 0 | 2026-09-20T03:30:29 | Suricata before 8.0.7 has a DoH2 type confusion that can cause an invalid free, | |
| CVE-2026-93485 | 7.1 | 0.16% | 2 | 2 | 2026-09-19T15:17:08.323000 | Improper neutralization of input during web page generation ('cross-site scripti | |
| CVE-2026-61821 | 8.5 | 0.29% | 1 | 0 | 2026-09-19T15:17:00.153000 | pg_partman is a PostgreSQL extension that manages partitioned tables by time or | |
| CVE-2026-61818 | 8.5 | 0.41% | 1 | 0 | 2026-09-19T15:17:00.040000 | pg_partman is a PostgreSQL extension that manages partitioned tables by time or | |
| CVE-2025-39964 | 7.8 | 0.79% | 2 | 3 | 2026-09-19T04:17:48.307000 | In the Linux kernel, the following vulnerability has been resolved: crypto: af_ | |
| CVE-2026-81626 | 8.6 | 0.27% | 1 | 0 | 2026-09-18T21:32:37 | IBM Guardium Data Protection 12.2 is vulnerable to a SQL injection vulnerability | |
| CVE-2026-84071 | 7.2 | 1.45% | 1 | 0 | 2026-09-18T21:32:36 | IBM Guardium Data Protection 12.2 is vulnerable to OS command injection in the U | |
| CVE-2026-75878 | 9.1 | 0.48% | 1 | 0 | 2026-09-18T21:32:35 | IBM Sterling File Gateway could allow a remote attacker to bypass authentication | |
| CVE-2026-81656 | 8.8 | 0.29% | 1 | 0 | 2026-09-18T21:32:35 | IBM Guardium Data Protection 12.2 is vulnerable to a SQL injection vulnerability | |
| CVE-2026-11716 | 7.5 | 0.45% | 1 | 0 | 2026-09-18T21:32:28 | IBM MQ for HPE NonStop 8.1.0 through 8.1.0.40 could allow an authenticated attac | |
| CVE-2026-11725 | 8.8 | 0.40% | 1 | 0 | 2026-09-18T21:32:28 | IBM MQ could allow an authenticated attacker to cause a denial of service or pot | |
| CVE-2026-17619 | 8.6 | 0.30% | 1 | 0 | 2026-09-18T21:32:26 | IBM Platform RTM is vulnerable to SQL injection. A remote attacker could send sp | |
| CVE-2025-39682 | 7.1 | 2.03% | 1 | 3 | 2026-09-18T21:31:33 | In the Linux kernel, the following vulnerability has been resolved: tls: fix ha | |
| CVE-2026-81179 | 8.1 | 0.26% | 1 | 0 | 2026-09-18T20:17:23.470000 | SysReptor is a fully customizable pentest reporting platform. Prior to 2026.58, | |
| CVE-2026-13639 | 9.8 | 0.51% | 1 | 0 | 2026-09-18T20:17:06.860000 | An insufficient entropy vulnerability in login logic in Synology DiskStation Man | |
| CVE-2026-93749 | 7.5 | 0.35% | 1 | 0 | 2026-09-18T18:32:09 | source-map-js through 1.2.1 fails to validate the per-section offset line value | |
| CVE-2026-93748 | 7.5 | 0.40% | 1 | 0 | 2026-09-18T18:32:07 | http-cache-semantics through 4.2.0 fails to properly validate security-zeroed ca | |
| CVE-2026-93762 | 9.8 | 0.34% | 1 | 0 | 2026-09-18T18:32:01 | Mongoid contains an unsafe reflection weakness in the query path used for embedd | |
| CVE-2026-10747 | 10.0 | 0.52% | 2 | 0 | 2026-09-18T18:31:55 | IBM MQ Appliance could allow a remote attacker to cause a denial of service or p | |
| CVE-2026-10858 | 9.9 | 0.33% | 1 | 0 | 2026-09-18T18:31:53 | IBM MQ for HPE NonStop 8.1.0 through 8.1.0.40 could allow an authenticated attac | |
| CVE-2026-85058 | 7.5 | 0.27% | 1 | 0 | 2026-09-18T17:58:41 | ## Summary Moquette MQTT Broker fails to enforce ACL write permission checks wh | |
| CVE-2026-91127 | 8.2 | 0.24% | 1 | 0 | 2026-09-18T17:19:44 | ### Summary Before 2.3.1, the legacy `.doc` renderer emitted document hyperlink | |
| CVE-2026-53266 | 8.8 | 0.28% | 2 | 2 | 2026-09-18T15:32:49 | In the Linux kernel, the following vulnerability has been resolved: netfilter: | |
| CVE-2026-20283 | 6.5 | 0.43% | 1 | 0 | 2026-09-18T13:28:28.567000 | A vulnerability in the IPsec Open API endpoint of Cisco ISE could allow an authe | |
| CVE-2026-13684 | 9.8 | 0.46% | 1 | 0 | 2026-09-18T09:31:20 | An improper encoding or escaping of output vulnerability in SCGI in Synology Dis | |
| CVE-2026-85889 | 10.0 | 0.49% | 1 | 0 | 2026-09-18T00:31:16 | Missing authentication for critical function in Azure AI Foundry allows an unaut | |
| CVE-2026-20284 | 9.1 | 0.39% | 1 | 0 | 2026-09-16T21:32:50 | A vulnerability in the SXP REST API of Cisco ISE could allow an authenticated, r | |
| CVE-2024-20260 | 8.6 | 0.59% | 2 | 0 | 2026-09-16T21:17:05.947000 | Update for September 16, 2026: The original 1.0 version of this advisory was spe | |
| CVE-2026-79994 | 0 | 0.11% | 1 | 0 | 2026-09-16T20:38:33.883000 | The guest-to-host Unix-domain socket relay in Docker Sandboxes validates that a | |
| CVE-2026-92398 | 9.1 | 2.47% | 1 | 0 | 2026-09-16T18:32:09 | A vulnerability was found in Ruijie RG-EW3000GX EW_3.0(1)B11P380. Affected by th | |
| CVE-2026-92397 | 9.1 | 2.30% | 1 | 0 | 2026-09-16T18:32:09 | A vulnerability has been found in Ruijie RG-EW3000GX EW_3.0(1)B11P380. Affected | |
| CVE-2026-58704 | 8.0 | 0.21% | 1 | 0 | 2026-09-16T15:30:57 | In Cellular Modem, there is a possible permission bypass due to a logic error in | |
| CVE-2026-27561 | 7.2 | 2.23% | 1 | 0 | 2026-09-16T09:30:35 | A high-privileged remote attacker can exploit a command injection vulnerability | |
| CVE-2026-27560 | 7.2 | 2.23% | 1 | 0 | 2026-09-16T09:30:34 | A high-privileged remote attacker can exploit a command injection vulnerability | |
| CVE-2026-27562 | 7.2 | 2.23% | 1 | 0 | 2026-09-16T09:30:34 | A high-privileged remote attacker can exploit a command injection vulnerability | |
| CVE-2026-77179 | None | 0.16% | 1 | 1 | 2026-09-16T00:32:25 | On macOS, the virtio-fs host server used by Docker Sandboxes improperly follows | |
| CVE-2026-90847 | 9.1 | 2.18% | 1 | 1 | 2026-09-15T19:17:46.767000 | A vulnerability was determined in EFM ipTIME C200E 1.094. The impacted element i | |
| CVE-2026-90703 | 9.1 | 2.80% | 1 | 0 | 2026-09-15T18:19:38.113000 | A vulnerability has been found in D-Link DWR-M921 1.1.52. The affected element i | |
| CVE-2026-89308 | None | 2.97% | 1 | 0 | 2026-09-15T12:31:54 | An unauthenticated OS command injection vulnerability exists in the ping.php end | |
| CVE-2026-76461 | 9.8 | 2.01% | 1 | 4 | 2026-09-14T21:32:49 | A vulnerability in the email parsing of Cisco AsyncOS Software for Cisco Secure | |
| CVE-2026-19499 | 7.7 | 0.38% | 1 | 0 | 2026-09-14T18:31:23 | Calling strfmon and strfmon_l in the GNU C Library version 2.38 to 2.44 can writ | |
| CVE-2026-90894 | 7.8 | 0.15% | 1 | 0 | 2026-09-14T12:31:44 | Parallels Desktop runs prl_disp_service as root. Local clients reach it on the w | |
| CVE-2026-90702 | 9.1 | 2.80% | 1 | 0 | 2026-09-14T12:31:44 | A flaw has been found in D-Link DWR-M921 1.1.52. Impacted is the function system | |
| CVE-2026-49881 | 7.8 | 0.11% | 1 | 2 | 2026-09-10T15:34:08 | In serviceClassExists of InCallController.java, there is a possible arbitrary co | |
| CVE-2026-81963 | 7.8 | 0.63% | 1 | 0 | 2026-09-09T05:18:17.173000 | Improper link resolution before file access ('link following') in Windows Update | |
| CVE-2026-85880 | 7.8 | 0.57% | 1 | 0 | 2026-09-08T21:34:12 | Heap-based buffer overflow in Windows ALPC allows an authorized attacker to elev | |
| CVE-2026-50093 | 9.0 | 0.19% | 1 | 0 | 2026-09-08T09:35:45 | A vulnerability has been identified in Siveillance Control Pro V3.0 (All version | |
| CVE-2026-43499 | 7.8 | 0.79% | 1 | 100 | 2026-09-08T09:18:05.213000 | In the Linux kernel, the following vulnerability has been resolved: rtmutex: Us | |
| CVE-2026-86296 | 10.0 | 1.35% | 5 | 0 | 2026-09-07T12:30:36 | A vulnerability was determined in D-Link DIR-822A A_101. This vulnerability affe | |
| CVE-2026-75925 | 9.6 | 0.67% | 1 | 0 | 2026-09-05T00:31:10 | Improper neutralization of CRLF sequences in IXON VPN Client before version 1.4. | |
| CVE-2026-41293 | 9.8 | 1.68% | 1 | 1 | 2026-08-31T21:04:41 | Versions Affected: Apache Tomcat 11.0.0-M1 to 11.0.21 Apache Tomcat 10.1.0-M1 to | |
| CVE-2026-78306 | 0 | 0.15% | 2 | 1 | 2026-08-26T16:49:18.760000 | DJI drones expose an unauthenticated DUML command interface over Bluetooth that | |
| CVE-2026-42945 | 8.1 | 68.05% | 1 | 45 | 2026-08-25T15:33:26 | NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_rewrite_mo | |
| CVE-2026-59310 | 9.8 | 50.38% | 3 | 2 | 2026-08-19T04:17:24.940000 | VMware vCenter contains a directory traversal vulnerability in the Syslog server | |
| CVE-2026-55040 | 9.1 | 50.59% | 1 | 5 | 2026-08-18T18:32:50 | Weak authentication in Microsoft Office SharePoint allows an unauthorized attack | |
| CVE-2026-33824 | 9.8 | 72.69% | 1 | 2 | 2026-08-18T18:31:46 | Double free in Windows IKE Extension allows an unauthorized attacker to execute | |
| CVE-2026-68820 | 7.0 | 6.18% | 1 | 4 | 2026-08-16T19:17:24.183000 | Use after free in Windows Ancillary Function Driver for WinSock allows an author | |
| CVE-2026-65660 | 6.5 | 0.81% | 5 | 0 | 2026-08-11T18:31:43 | Improper control of generation of code ('code injection') in Microsoft Office Sh | |
| CVE-2021-34473 | 9.8 | 100.00% | 1 | 14 | template | 2026-08-10T18:30:39 | Microsoft Exchange Server Remote Code Execution Vulnerability This CVE ID is uni |
| CVE-2026-39364 | 7.5 | 2.00% | 1 | 0 | 2026-08-04T13:18:24.733000 | Vite is a frontend tooling framework for JavaScript. From 7.1.0 to before 7.3.2 | |
| CVE-2026-59309 | 9.8 | 7.94% | 3 | 0 | 2026-07-30T15:31:54 | VMware vCenter contains an authentication bypass vulnerability in the VMware Dir | |
| CVE-2025-68686 | 5.9 | 29.60% | 1 | 0 | 2026-07-27T18:31:25 | An Exposure of Sensitive Information to an Unauthorized Actor vulnerability [CWE | |
| CVE-2026-12495 | None | 0.17% | 1 | 0 | 2026-07-27T12:32:01 | Denial-of-service (DoS) vulnerability due to a stack buffer overflow in the http | |
| CVE-2026-41091 | 7.8 | 8.20% | 1 | 4 | 2026-07-24T10:10:00.197000 | Improper link resolution before file access ('link following') in Microsoft Defe | |
| CVE-2026-45659 | 8.8 | 76.08% | 1 | 2 | 2026-07-23T11:10:00.120000 | Deserialization of untrusted data in Microsoft Office SharePoint allows an autho | |
| CVE-2026-50522 | 9.8 | 85.40% | 1 | 5 | 2026-07-22T21:31:51 | Deserialization of untrusted data in Microsoft Office SharePoint allows an unaut | |
| CVE-2026-10702 | 4.3 | 0.86% | 1 | 1 | 2026-07-22T19:10:00.120000 | JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability w | |
| CVE-2026-47065 | 9.8 | 0.50% | 1 | 0 | 2026-07-13T17:24:48 | ZDRES-232: resolveProxyClass Not Overridden - acceptMatchers Filter Bypass via j | |
| CVE-2026-4575 | 2.4 | 0.21% | 1 | 0 | 2026-06-17T10:56:50.843000 | A flaw has been found in code-projects Exam Form Submission 1.0. This issue affe | |
| CVE-2025-6625 | 7.5 | 0.48% | 1 | 0 | 2026-06-17T10:02:16.587000 | CWE-20: Improper Input Validation vulnerability exists that could cause a Denial | |
| CVE-2023-20118 | 6.5 | 54.11% | 4 | 0 | 2026-06-17T05:29:31.353000 | A vulnerability in the web-based management interface of Cisco Small Business Ro | |
| CVE-2022-42475 | 9.8 | 99.47% | 1 | 9 | 2026-06-17T05:04:59.630000 | A heap-based buffer overflow vulnerability [CWE-122] in FortiOS SSL-VPN 7.2.0 th | |
| CVE-2020-4428 | 9.1 | 61.69% | 1 | 0 | 2026-06-17T03:19:58.553000 | IBM Data Risk Manager 2.0.1, 2.0.2, 2.0.3, and 2.0.4 could allow a remote authen | |
| CVE-2026-45756 | None | 0.63% | 1 | 0 | 2026-05-28T17:34:56 | ### Description The `JsonPath` component's `match()` and `search()` filter func | |
| CVE-2026-32996 | None | 0.16% | 3 | 1 | 2026-05-28T06:31:09 | This vulnerability in Veeam Agent for Microsoft Windows allows for Local Privile | |
| CVE-2026-21513 | 8.8 | 15.64% | 1 | 0 | 2026-03-27T21:32:39 | Protection mechanism failure in MSHTML Framework allows an unauthorized attacker | |
| CVE-2026-21525 | 6.2 | 5.04% | 1 | 0 | 2026-03-27T21:31:32 | Null pointer dereference in Windows Remote Access Connection Manager allows an u | |
| CVE-2026-21519 | 7.8 | 2.46% | 1 | 0 | 2026-02-10T21:31:29 | Access of resource using incompatible type ('type confusion') in Desktop Window | |
| CVE-2026-20805 | 5.5 | 5.19% | 1 | 6 | 2026-01-13T21:31:44 | Exposure of sensitive information to an unauthorized actor in Desktop Windows Ma | |
| CVE-2020-4427 | 9.8 | 70.03% | 1 | 0 | 2025-11-04T00:30:30 | IBM Data Risk Manager 2.0.1, 2.0.2, 2.0.3, 2.0.4, 2.0.5, and 2.0.6 could allow a | |
| CVE-2023-48788 | 9.8 | 98.45% | 1 | 1 | 2025-10-22T00:34:05 | A improper neutralization of special elements used in an sql command ('sql injec | |
| CVE-2021-44168 | 7.8 | 0.87% | 1 | 1 | 2025-10-22T00:32:27 | A download of code without integrity check vulnerability in the "execute restore | |
| CVE-2026-94545 | 0 | 0.00% | 2 | 2 | N/A | ||
| CVE-2024-87491 | 0 | 0.00% | 1 | 0 | N/A | ||
| CVE-2024-85880 | 0 | 0.00% | 1 | 0 | N/A | ||
| CVE-2024-85046 | 0 | 0.00% | 1 | 0 | N/A | ||
| CVE-2026-89090 | 0 | 0.31% | 1 | 0 | N/A | ||
| CVE-2026-79916 | 0 | 0.27% | 1 | 0 | N/A | ||
| CVE-2026-73550 | 0 | 0.88% | 1 | 0 | N/A | ||
| CVE-2026-73552 | 0 | 0.66% | 1 | 0 | N/A | ||
| CVE-2026-73548 | 0 | 0.66% | 1 | 0 | N/A | ||
| CVE-2026-79920 | 0 | 0.36% | 1 | 0 | N/A | ||
| CVE-2026-83621 | 0 | 0.29% | 1 | 0 | N/A | ||
| CVE-2026-69184 | 0 | 0.68% | 1 | 0 | N/A | ||
| CVE-2026-92702 | 0 | 0.21% | 1 | 1 | N/A | ||
| CVE-2026-61721 | 0 | 0.15% | 1 | 0 | N/A | ||
| CVE-2026-58264 | 0 | 0.59% | 1 | 0 | N/A | ||
| CVE-2026-61819 | 0 | 0.58% | 1 | 0 | N/A | ||
| CVE-2026-61817 | 0 | 0.58% | 1 | 0 | N/A | ||
| CVE-2026-61781 | 0 | 0.57% | 1 | 0 | N/A | ||
| CVE-2026-61820 | 0 | 0.58% | 1 | 0 | N/A |
updated 2026-09-23T18:22:07.453000
8 posts
📰 Check Point Zero-Days in Management Servers and VPNs Under Active Attack
CISA KEV Alert: Two critical Check Point zero-days (CVE-2026-93616 & CVE-2026-85102) are under active attack. Flaws in Management Servers & VPN gateways allow RCE. Patch immediately. #CyberSecurity #Vulnerability #CheckPoint #PatchNow
##🚨 [CISA-2026:0922] CISA Adds 4 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0922)
CISA has added 4 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2026-85102 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85102)
- Name: Check Point Multiple Products Improper Certificate Validation Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Check Point
- Product: Multiple Products
- Notes: https://support.checkpoint.com/results/sk/sk1000117 ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-85102
⚠️ CVE-2026-93616 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93616)
- Name: Check Point Multiple Products Path Traversal Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Check Point
- Product: Multiple Products
- Notes: https://support.checkpoint.com/results/sk/sk1000171/ ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-93616
⚠️ CVE-2026-93952 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93952)
- Name: Arista VeloCloud Orchestrator Improper Input Validation Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Arista
- Product: VeloCloud Orchestrator
- Notes: https://www.arista.com/en/support/advisories-notices/security-advisory/24765-security-advisory-0183 ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-93952
⚠️ CVE-2026-94127 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-94127)
- Name: F5 BIG-IP APM Heap-based Buffer Overflow Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: F5
- Product: BIG-IP APM
- Notes: For temporary mitigation to allow for proactive forensic triage, apply the vendor-provided iRule. Once completed, install the final vendor patch as soon as possible. For more information please see: https://my.f5.com/manage/s/article/K000162605 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-94127
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260922 #cisa20260922 #cve_2026_85102 #cve_2026_93616 #cve_2026_93952 #cve_2026_94127 #cve202685102 #cve202693616 #cve202693952 #cve202694127
###CyberSecurity #ZeroDay #CheckPoint #Vulnerability #ActiveExploitation #PatchedOrPerish (3/3)
##Meanwhile a second zero-day, CVE-2026-93616, materialized in Security Management with its own handful of pinpointed hits.
Policy dictates we inform you patches now exist for both CVE-2026-85102 and CVE-2026-93616. Policy does not require we feel bad about what happens next if you ignore them. Install both immediately.
Reward: Compliance logged. Outcome: your problem. (2/3)
##Check Point has disclosed a zero-day (in Security Management Server) and marked an older bug also as exploited in the wild (in Site-to-Site VPN)
##CVE ID: CVE-2026-85102
Vendor: Check Point
Product: Multiple Products
Date Added: 2026-09-22
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-85102
Two Check Point critical vulnerabilities are now listed as exploited in the wild.
##An exploited Check Point VPN vulnerability allows remote code execution. Patch this Check Point VPN vulnerability now to block active in-the-wild attacks.
#CheckPoint #CVE202685102 #VPN #Cybersecurity #Infosec #ZeroDay
##updated 2026-09-23T18:21:42.327000
1 posts
🟠 CVE-2026-73547 - High (7.5)
Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.36.10, 1.37.6, 1.38.4, and 1.39.1, Envoy's ext_authz filter assumes that a request contains a :path pseudoheader when applying query_parameters_to_se...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-73547/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-23T18:17:31.543000
4 posts
ManageEngine security vulnerabilities expose servers to remote code execution. Patch these OpManager vulnerabilities and CVE-2026-19599 to secure your network.
#ManageEngine #Cybersecurity #CVE202619599 #OpManager #Infosec #Vulnerability
##CVE-2026-19599: CRITICAL RCE in ManageEngine OpManager MSP (<12.8.711). Improper OS command neutralization enables remote command execution (CVSS 9.9). Upgrade to 12.8.711+ ASAP. https://radar.offseq.com/threat/cve-2026-19599-cwe-78-improper-neutralization-of-special-elements-used-in-an-os-command-os-command-d62870fccbe1d229 #OffSeq #Vuln #InfoSec #RCE
##ManageEngine security vulnerabilities expose servers to remote code execution. Patch these OpManager vulnerabilities and CVE-2026-19599 to secure your network.
#ManageEngine #Cybersecurity #CVE202619599 #OpManager #Infosec #Vulnerability
##CVE-2026-19599: CRITICAL RCE in ManageEngine OpManager MSP (<12.8.711). Improper OS command neutralization enables remote command execution (CVSS 9.9). Upgrade to 12.8.711+ ASAP. https://radar.offseq.com/threat/cve-2026-19599-cwe-78-improper-neutralization-of-special-elements-used-in-an-os-command-os-command-d62870fccbe1d229 #OffSeq #Vuln #InfoSec #RCE
##updated 2026-09-23T18:17:07.270000
1 posts
CVE-2026-18169: CRITICAL path traversal in IBM FTM for RedHat OpenShift 4.0.6.0 (CVSS 9.9) 🕵️♂️. Authenticated attackers can access sensitive info via symlink abuse. Restrict access & monitor logs. Patch status unknown. https://radar.offseq.com/threat/cve-2026-18169-cwe-22-improper-limitation-of-a-pathname-to-a-restricted-directory-path-traversal-in-871a1d481ef78ea0 #OffSeq #IBM #CVE202618169 #Infosec
##updated 2026-09-23T18:12:04.247000
1 posts
🟠 CVE-2026-77322 - High (7.5)
SIPGO is a library for writing SIP services in the GO language. Prior to 1.4.3, WSConnection.Read in sip/transport_ws.go creates a wsutil.Reader without setting MaxFrameSize, allowing NextFrame to accept a client-controlled header.Length before Pa...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77322/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-23T18:12:04.247000
1 posts
🟠 CVE-2026-61714 - High (7.8)
FluidSynth is a software synthesizer based on the SoundFont 2 specifications. From 2.2.4 until 2.5.6, configuring synth.midi-channels above 16 allows the MIDI player to index _fluid_player_t::channel_isplaying outside its fixed-size heap allocatio...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-61714/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-23T17:58:26.570000
1 posts
🟠 CVE-2026-91809 - High (7.8)
A use-after-free vulnerability exists in Foxit PDF Editor/Reader’s handling of malformed PDF form fields. Improper validation during field-name traversal may cause the application to access a released object, resulting in an application crash.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-91809/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-23T16:38:38.987000
11 posts
2 repos
https://github.com/WadesWeaponShed/CVE-2026-93616_Checks
https://github.com/Nebula-Consulting-Limited/CVE-2026-93616-PoC
📰 Check Point Zero-Days in Management Servers and VPNs Under Active Attack
CISA KEV Alert: Two critical Check Point zero-days (CVE-2026-93616 & CVE-2026-85102) are under active attack. Flaws in Management Servers & VPN gateways allow RCE. Patch immediately. #CyberSecurity #Vulnerability #CheckPoint #PatchNow
##🚨 New security advisory:
CVE-2026-93616 affects multiple systems.
• Impact: Remote code execution or complete system compromise possible
• Risk: Attackers can gain full control of affected systems
• Mitigation: Patch immediately or isolate affected systems
Full breakdown:
https://www.yazoul.net/advisory/cve/cve-2026-93616-check-point-management-server-exploited-in-the-wild-poc
by Yazoul AI
##Check Point Emergency Alert: Critical Management Server Zero-Day Is Being Exploited in the Wild + Video
Check Point Emergency Alert: Critical Management Server Zero-Day Is Being Exploited in the Wild A Critical Warning for Security Teams Check Point has issued an urgent security warning after confirming exploitation of a critical vulnerability in its Security Management infrastructure. Tracked as CVE-2026-93616, the flaw carries a CVSS score of 9.8 and can allow an…
##🚨 [CISA-2026:0922] CISA Adds 4 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0922)
CISA has added 4 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2026-85102 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85102)
- Name: Check Point Multiple Products Improper Certificate Validation Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Check Point
- Product: Multiple Products
- Notes: https://support.checkpoint.com/results/sk/sk1000117 ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-85102
⚠️ CVE-2026-93616 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93616)
- Name: Check Point Multiple Products Path Traversal Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Check Point
- Product: Multiple Products
- Notes: https://support.checkpoint.com/results/sk/sk1000171/ ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-93616
⚠️ CVE-2026-93952 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93952)
- Name: Arista VeloCloud Orchestrator Improper Input Validation Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Arista
- Product: VeloCloud Orchestrator
- Notes: https://www.arista.com/en/support/advisories-notices/security-advisory/24765-security-advisory-0183 ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-93952
⚠️ CVE-2026-94127 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-94127)
- Name: F5 BIG-IP APM Heap-based Buffer Overflow Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: F5
- Product: BIG-IP APM
- Notes: For temporary mitigation to allow for proactive forensic triage, apply the vendor-provided iRule. Once completed, install the final vendor patch as soon as possible. For more information please see: https://my.f5.com/manage/s/article/K000162605 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-94127
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260922 #cisa20260922 #cve_2026_85102 #cve_2026_93616 #cve_2026_93952 #cve_2026_94127 #cve202685102 #cve202693616 #cve202693952 #cve202694127
###CyberSecurity #ZeroDay #CheckPoint #Vulnerability #ActiveExploitation #PatchedOrPerish (3/3)
##Meanwhile a second zero-day, CVE-2026-93616, materialized in Security Management with its own handful of pinpointed hits.
Policy dictates we inform you patches now exist for both CVE-2026-85102 and CVE-2026-93616. Policy does not require we feel bad about what happens next if you ignore them. Install both immediately.
Reward: Compliance logged. Outcome: your problem. (2/3)
##Check Point has disclosed a zero-day (in Security Management Server) and marked an older bug also as exploited in the wild (in Site-to-Site VPN)
##CVE ID: CVE-2026-93616
Vendor: Check Point
Product: Multiple Products
Date Added: 2026-09-22
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-93616
🚨 Check Point patches Management Server zero-day exploited in attacks
⠀
Check Point has released fixes for CVE-2026-93616, a vulnerability that allows unauthenticated attackers to upload and execute arbitrary scripts on affected management servers.
⠀
The company says a small number of customers have already been attacked.
⠀
Affected products include:
• Security Management Server
• Multi-Domain Security Management Server
• Log Server
• Multi-Domain Log Server
• SmartEvent
⠀
The vulnerability carries a CVSS score of 9.8.
⠀
Check Point advises installing the applicable fixes, restricting management access to trusted IP addresses, and checking for signs of exploitation.
⠀
LivePatch Take 28/29 does not fix this vulnerability.
A critical exploited Check Point Management vulnerability (CVE-2026-93616) allows attackers to execute arbitrary scripts. Secure your servers now.
#CheckPoint #CVE202693616 #Cybersecurity #InfoSec #Vulnerability #RCE
##Check Point Quantum Security Management is affected by CVE-2026-93616 (CRITICAL, CVSS 9.8): unauthenticated attackers can upload & execute scripts via path traversal. Restrict access & monitor activity until patch info is released. https://radar.offseq.com/threat/cve-2026-93616-cwe-22-improper-limitation-of-a-pathname-to-a-restricted-directory-path-traversal-in-4344dfa6a4d98182 #OffSeq #CheckPoint #CyberAlert
##updated 2026-09-23T15:17:31.920000
1 posts
Fast FAC1203R Gigabit Edition v2.0.4 hit by CRITICAL stack-based buffer overflow (CVE-2026-96257). Remote, unauthenticated RCE possible. Exploit is public, no patch exists — restrict access to Device Discovery Service now. https://radar.offseq.com/threat/cve-2026-96257-stack-based-buffer-overflow-in-fast-fac1203r-gigabit-edition-4657d2bb397c7614 #OffSeq #CVE #Infosec
##updated 2026-09-23T15:17:13.647000
1 posts
CVE-2026-19202: CRITICAL vuln in Google mcp-toolbox-sdk-python (v0 – 1.1.0). Shared cache flaw lets Google ID tokens be reused across audiences — risk of token replay & impersonation. Patch pending. Details: https://radar.offseq.com/threat/cve-2026-19202-cwe-524-use-of-a-shared-cache-with-insufficient-key-granularity-in-google-mcp-toolbox-9bc343c3bcd3d35b #OffSeq #infosec #CVE202619202 #Python
##updated 2026-09-23T14:32:07.910000
17 posts
1 repos
📰 F5 BIG-IP APM Zero-Day (CVE-2026-94127) Actively Exploited for RCE
F5 BIG-IP APM is being actively exploited via a critical RCE zero-day (CVE-2026-94127). CISA has added it to the KEV catalog, mandating an urgent patch. The flaw affects systems with a specific OAuth config. #F5 #BIGIP #CyberSecurity #RCE
##🔴 New security advisory:
CVE-2026-94127 affects multiple systems.
• Impact: Remote code execution or complete system compromise possible
• Risk: Attackers can gain full control of affected systems
• Mitigation: Patch immediately or isolate affected systems
Full breakdown:
https://www.yazoul.net/advisory/cve/cve-2026-94127-big-ip-apm-unauthenticated-rce-exploited-in-the-wild
by Yazoul AI
##F5 patches BIG-IP APM zero-day flaw exploited in RCE attacks
F5가 BIG-IP Access Policy Manager(APM)의 OAuth Authorization Server 구성에서 원격 코드 실행(RCE)으로 악용 중인 제로데이 CVE-2026-94127 패치를 배포했다. 영향을 받는 환경은 APM 액세스 정책과 OAuth 프로파일을 가상 서버에 함께 설정한 경우이며, OAuth Client 또는 Resource Server로만 사용하는 배포는 영향 범위에서 제외된다. 관리자는 즉시 보안 업데이트를 적용하고...
##Critical F5 BIG-IP APM Zero-Day Exploited for Unauthenticated Remote Code Execution + Video
Introduction A critical vulnerability in F5 BIG-IP Access Policy Manager (APM) is now being exploited in the wild as a zero-day, according to warnings from F5 and the U.S. Cybersecurity and Infrastructure Security Agency (CISA). Tracked as CVE-2026-94127, the flaw carries a CVSS score of 9.8 and can allow an unauthenticated attacker to execute code remotely. The vulnerability is…
##🏆 New Achievement! Terms and Conditions of Your Own Destruction!
LOOTBOX DISCLAIMER: By operating F5 BIG-IP APM versions 21.1.0, 17.5.0–17.5.1, or 17.1.0–17.1.3, you have automatically entered our Unauthenticated Remote Code Execution Sweepstakes. Prizes are awarded via CVE-2026-94127, targeting the OAuth Authorization Server component. Odds of receiving a prize are classified as "active exploitation." The System does not guarantee prize desirability. (1/3)
##F5 BIG-IP APM (OAuth Authorization Server) is facing a CRITICAL RCE zero-day, CVE-2026-94127, with active exploitation. Versions 21.1.0, 17.5.0 – 17.5.1, 17.1.0 – 17.1.3 affected. Apply hotfixes now. Details: https://radar.offseq.com/threat/critical-f5-big-ip-vulnerability-exploited-as-zero-day-024f528e7ee83eed #OffSeq #F5 #ZeroDay #Infosec
##F5 BIG-IP Zero-Day Under Active Attack: Critical APM Flaw Enables Unauthenticated Remote Code Execution + Video
A Critical Vulnerability Has Become an Immediate Security Priority F5 has disclosed a critical vulnerability in BIG-IP Access Policy Manager (APM) that is already being exploited in the wild, creating an urgent patching situation for organizations using a specific OAuth configuration. Tracked as CVE-2026-94127, the vulnerability carries a CVSS v3.1 score of…
##🏆 New Achievement! Terms and Conditions of Your Own Destruction!
LOOTBOX DISCLAIMER: By operating F5 BIG-IP APM versions 21.1.0, 17.5.0–17.5.1, or 17.1.0–17.1.3, you have automatically entered our Unauthenticated Remote Code Execution Sweepstakes. Prizes are awarded via CVE-2026-94127, targeting the OAuth Authorization Server component. Odds of receiving a prize are classified as "active exploitation." The System does not guarantee prize desirability. (1/3)
##F5 BIG-IP APM (OAuth Authorization Server) is facing a CRITICAL RCE zero-day, CVE-2026-94127, with active exploitation. Versions 21.1.0, 17.5.0 – 17.5.1, 17.1.0 – 17.1.3 affected. Apply hotfixes now. Details: https://radar.offseq.com/threat/critical-f5-big-ip-vulnerability-exploited-as-zero-day-024f528e7ee83eed #OffSeq #F5 #ZeroDay #Infosec
##F5 patched CVE-2026-94127, a heap-based buffer overflow in BIG-IP APM when operating as OAuth Authorization Server, enabling remote code execution. Active zero-day exploitation poses high risk of full appliance compromise. Patch immediately and review for crafted malicious traffic. #F5BigIp #ZeroDay #RemoteCodeExecution
https://cyberworldops.eu/en/actively-exploited-big-ip-apm-flaw-gives-remote-attackers-a-path-to
##Der Hersteller F5 veröffentlichte ein Advisory zu einer ausgenutzten Zero-Day Schwachstelle in seinem Produkt BIG-IP Access Policy Manager (APM) zur sicheren Zugriffsteuerung und Anwendungszugriff: CVE-2026-94127, CVSS-Score 9.8/10 ("kritisch")
F5 gibt an, dass die Schwachstelle bereits aktiv ausgenutzt wird. IT-Sicherheitsverantwortliche sollten unverzüglich die Patchstände prüfen und, sofern erforderlich, die verfügbaren Engineering Hotfixes einspielen.
##CVE-2026-94127: Critical zero-day in F5 BIG-IP APM exploited for RCE on OAuth Authorization Servers. Patch urgently or use F5's iRule mitigation. Monitor for OAuth auth failures and TMM SIGABRTs. https://radar.offseq.com/threat/f5-patches-big-ip-apm-zero-day-flaw-exploited-in-rce-attacks-191545153729ae57 #OffSeq #F5 #ZeroDay #RCE #Vuln
##🚨 [CISA-2026:0922] CISA Adds 4 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0922)
CISA has added 4 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2026-85102 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85102)
- Name: Check Point Multiple Products Improper Certificate Validation Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Check Point
- Product: Multiple Products
- Notes: https://support.checkpoint.com/results/sk/sk1000117 ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-85102
⚠️ CVE-2026-93616 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93616)
- Name: Check Point Multiple Products Path Traversal Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Check Point
- Product: Multiple Products
- Notes: https://support.checkpoint.com/results/sk/sk1000171/ ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-93616
⚠️ CVE-2026-93952 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93952)
- Name: Arista VeloCloud Orchestrator Improper Input Validation Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Arista
- Product: VeloCloud Orchestrator
- Notes: https://www.arista.com/en/support/advisories-notices/security-advisory/24765-security-advisory-0183 ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-93952
⚠️ CVE-2026-94127 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-94127)
- Name: F5 BIG-IP APM Heap-based Buffer Overflow Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: F5
- Product: BIG-IP APM
- Notes: For temporary mitigation to allow for proactive forensic triage, apply the vendor-provided iRule. Once completed, install the final vendor patch as soon as possible. For more information please see: https://my.f5.com/manage/s/article/K000162605 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-94127
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260922 #cisa20260922 #cve_2026_85102 #cve_2026_93616 #cve_2026_93952 #cve_2026_94127 #cve202685102 #cve202693616 #cve202693952 #cve202694127
##When it rains, it pours. F5 BIG-IP APM also has an exploited CVE!
https://ifin.network/t/f5-big-ip-cve-2026-94127-rce-exploited/855
##CVE ID: CVE-2026-94127
Vendor: F5
Product: BIG-IP APM
Date Added: 2026-09-22
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-94127
An exploited BIG-IP APM vulnerability tracked as CVE-2026-94127 allows RCE attacks. Secure your BIG-IP APM vulnerability deployments with new F5 hotfixes.
#F5 #BIGIP #CVE202694127 #Cybersecurity #InfoSec #RCE #Vulnerability
##EITW 0day in F5 APM.
https://my.f5.com/manage/s/article/K000162605
##When a BIG-IP APM access policy and an OAuth profile are configured on a virtual server, specific malicious traffic can lead to remote code execution (RCE). (CVE-2026-94127)
This vulnerability allows an unauthenticated attacker to perform RCE. The BIG-IP system in Appliance mode is also vulnerable. This is a data plane issue; there is no control plane exposure.
updated 2026-09-23T09:30:37
1 posts
🟠 CVE-2026-91811 - High (7.8)
A heap-based out-of-bounds write vulnerability exists in Foxit PDF Editor/Reader’s PRC parser due to insufficient validation of vertex indices in triangular fan texture meshes. Successful exploitation could result in memory corruption and an app...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-91811/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-23T09:30:37
1 posts
🟠 CVE-2026-91818 - High (7.8)
A use-after-free vulnerability exists in Foxit PDF Editor/Reader’s JavaScript handling of PDF annotations. Reentrant page-event processing during annotation enumeration may release the associated page object, which is subsequently accessed, resu...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-91818/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-23T04:17:48.700000
1 posts
🔴 CVE-2026-81657 - Critical (9.8)
IBM Guardium Data Protection 12.2 could allow a remote unauthenticated attacker to execute arbitrary code on the system due to the deserialization of untrusted data.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-81657/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-23T04:17:48.027000
1 posts
🔴 CVE-2026-80442 - Critical (9.9)
IBM Guardium Data Protection 12.2 is vulnerable to an authenticated OS command injection vulnerability in the exportCertificate functionality. Successful exploitation could allow an attacker to execute unauthorized commands and impact the confiden...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-80442/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-23T04:17:42.200000
1 posts
SolarWinds Fixes Critical Observability RCE Flaws That Could Enable Unauthenticated System Compromise
SolarWinds Releases Emergency Security Update SolarWinds has released Observability Self-Hosted 2026.2.3 to address two serious remote code execution vulnerabilities that could allow unauthenticated attackers to compromise affected deployments. Tracked as CVE-2026-28324 and CVE-2026-28325, the vulnerabilities carry CVSS scores of 9.8 and 8.8, respectively. Both were…
##updated 2026-09-23T00:31:21
1 posts
CVE-2026-18162: IBM FTM for RedHat OpenShift v4.0.6.0 has a CRITICAL code injection flaw (CVSS 9.8). Remote attackers can execute arbitrary code via improper input neutralization. No patch yet — monitor vendor updates. https://radar.offseq.com/threat/cve-2026-18162-cwe-94-improper-control-of-generation-of-code-code-injection-in-ibm-financial-7385d789acb1bf6d #OffSeq #CVE202618162 #IBM #RCE
##updated 2026-09-23T00:31:21
1 posts
CVE-2026-18163 (CRITICAL, CVSS 9.8): IBM FTM for RedHat OpenShift v4.0.6.0 has a deserialization vulnerability enabling remote code execution without auth. Restrict access & monitor activity. Patch status unconfirmed. https://radar.offseq.com/threat/cve-2026-18163-cwe-502-deserialization-of-untrusted-data-in-ibm-financial-transaction-manager-ftm-for-0a85c82f9c689e03 #OffSeq #CVE202618163 #IBM #InfoSec 🛡️
##updated 2026-09-22T21:31:40
1 posts
Go hack more GitHub shit.
https://nvd.nist.gov/vuln/detail/cve-2026-77987
A server-side request forgery (SSRF) vulnerability was identified in the notebook viewer of GitHub Enterprise Server. The notebook viewer validated the scheme and host of a user-supplied URL but did not validate the port, allowing requests to be directed to internal services listening on other ports of the same appliance. Response bodies were not returned to the requester, but response timing acted as an oracle that allowed instance secrets to be extracted character by character. An extracted secret could then be used in a separate interaction with an internal service to obtain remote code execution on the appliance. Exploitation required network access to the instance and was unauthenticated when private mode was disabled, or required any authenticated user when private mode was enabled. This vulnerability affected GitHub Enterprise Server versions 3.17 through 3.22 and was fixed in versions 3.22.1, 3.21.6, 3.20.8, 3.19.12, 3.18.15, and 3.17.21. This vulnerability was reported through the GitHub Bug Bounty program.
sev:CRIT 9.3 - CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
updated 2026-09-22T21:31:39
2 posts
CISA reports CVE-2026-88020, XSS in OpenPLC Runtime v3 6.1. Theft of an operator session cookie can enable state-changing requests and PLC-level control. Exposure of OT web interfaces significantly raises impact. #IcsSecurity #OtSecurity #Xss
https://cyberworldops.eu/en/openplc-web-flaw-could-turn-a-stolen-session-into-industrial-process
##CISA reports CVE-2026-88020, XSS in OpenPLC Runtime v3 6.1. Theft of an operator session cookie can enable state-changing requests and PLC-level control. Exposure of OT web interfaces significantly raises impact. #IcsSecurity #OtSecurity #Xss
https://cyberworldops.eu/en/openplc-web-flaw-could-turn-a-stolen-session-into-industrial-process
##updated 2026-09-22T21:31:35
1 posts
🟠 CVE-2026-88419 - High (8.8)
An unrestricted upload of files with a dangerous type in the thumbnail-upload endpoint (/index.php?m=member&f=article&v=thumbUpload) of WuzhiCMS 5.0.0 allows an authenticated low-privileged member to upload a crafted .php file and execute arbitrar...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-88419/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-22T21:31:34
3 posts
SolarWinds Fixes Critical Observability RCE Flaws That Could Enable Unauthenticated System Compromise
SolarWinds Releases Emergency Security Update SolarWinds has released Observability Self-Hosted 2026.2.3 to address two serious remote code execution vulnerabilities that could allow unauthenticated attackers to compromise affected deployments. Tracked as CVE-2026-28324 and CVE-2026-28325, the vulnerabilities carry CVSS scores of 9.8 and 8.8, respectively. Both were…
##SolarWinds Observability vulnerabilities allow RCE via CVE-2026-28324. Update to version 2026.2.3 to secure your monitoring infrastructure today.
#SolarWinds #Cybersecurity #CVE202628324 #CVE202628325 #RCE #Infosec
##https://www.solarwinds.com/trust-center/security-advisories/cve-2026-28324
SolarWinds Observability Self-Hosted was found to be affected by an unauthenticated remote code execution vulnerability due to the insufficient integrity checks. Installations configured in a non-default and non-secure configuration are affected.
sev:CRIT 9.8 - AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
updated 2026-09-22T21:31:34
2 posts
Go hack more MQTT shit.
##🔴 CVE-2026-87121 - Critical (9.8)
lwIP TCP/IP Stack MQTT is vulnerable to an out-of-bounds write, which may allow an attacker to gain full code execution on the device.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-87121/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-22T21:31:14
13 posts
Arista Patches Actively Exploited VeloCloud Zero-Day as CISA Issues Urgent Warning + Video
A Critical Vulnerability Puts On-Premises VeloCloud Orchestrators Under Attack Arista Networks has released security updates for a maximum-severity zero-day vulnerability in VeloCloud Orchestrator (VCO) On-Prem deployments after confirming that attackers are actively exploiting the flaw in the wild. Tracked as CVE-2026-93952, the vulnerability is an improper input validation…
##Arista Disrupts Actively Exploited Zero-Day in VeloCloud Orchestrator
Arista Networks has sounded the alarm on a critical zero-day vulnerability, CVE-2026-93952, that's being actively exploited in the wild, allowing attackers to access sensitive internal functionality in VeloCloud Orchestrator. This severe flaw can be easily exploited with low complexity, making it a high-risk threat.
#ZeroDay #Cve202693952 #VelocloudOrchestrator #AristaNetworks #SupplyChain
##Arista Warns of Actively Exploited VeloCloud Zero-Day With CVSS 100 Severity + Video
A Critical Vulnerability Has Been Confirmed Arista has released urgent security fixes for CVE-2026-93952, a critical vulnerability affecting VeloCloud Orchestrator (VCO) on-premises deployments. The company says the flaw is actively exploited in the wild, making this more than a theoretical security issue. Arista Networks The vulnerability carries a CVSS v3.1 score of 10.0, the highest…
##Arista VeloCloud Orchestrator Hit by Actively Exploited CVSS 10 Zero-Day — Administrators Urged to Patch Immediately + Video
Critical Zero-Day Targets VeloCloud Management Infrastructure Arista Networks has released emergency security updates for a critical-severity zero-day vulnerability in on-premises VeloCloud Orchestrator (VCO), the centralized management platform used to configure, monitor, and orchestrate VeloCloud SD-WAN Edge devices. Tracked as CVE-2026-93952,…
##CVE-2026-93952: CRITICAL zero-day in Arista VeloCloud Orchestrator (on-prem <5.2.3.16, <6.4.2.8) is actively exploited. Remote attackers can access privileged functions w/o creds. Patch now — review logs for signs of compromise. https://radar.offseq.com/threat/arista-urges-immediate-patching-of-exploited-vco-zero-day-0c28c2caa003025a #OffSeq #Arista #ZeroDay #Infosec
##Arista confirmed active exploitation of a CVSS 10 VeloCloud Orchestrator vulnerability (CVE-2026-93952) affecting certificate-based SD-WAN setups. Patch now.
#VeloCloud #Arista #CVE202693952 #SDWAN #Vulnerability #CyberSecurity
##Completing our tour of new known-exploited vulns today, here is Arista's perfect-10.
https://ifin.network/t/arista-cve-2026-93952-auth-bypass-exploited-in-the-wild/856
##🚨 [CISA-2026:0922] CISA Adds 4 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0922)
CISA has added 4 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2026-85102 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85102)
- Name: Check Point Multiple Products Improper Certificate Validation Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Check Point
- Product: Multiple Products
- Notes: https://support.checkpoint.com/results/sk/sk1000117 ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-85102
⚠️ CVE-2026-93616 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93616)
- Name: Check Point Multiple Products Path Traversal Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Check Point
- Product: Multiple Products
- Notes: https://support.checkpoint.com/results/sk/sk1000171/ ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-93616
⚠️ CVE-2026-93952 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93952)
- Name: Arista VeloCloud Orchestrator Improper Input Validation Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Arista
- Product: VeloCloud Orchestrator
- Notes: https://www.arista.com/en/support/advisories-notices/security-advisory/24765-security-advisory-0183 ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-93952
⚠️ CVE-2026-94127 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-94127)
- Name: F5 BIG-IP APM Heap-based Buffer Overflow Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: F5
- Product: BIG-IP APM
- Notes: For temporary mitigation to allow for proactive forensic triage, apply the vendor-provided iRule. Once completed, install the final vendor patch as soon as possible. For more information please see: https://my.f5.com/manage/s/article/K000162605 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-94127
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260922 #cisa20260922 #cve_2026_85102 #cve_2026_93616 #cve_2026_93952 #cve_2026_94127 #cve202685102 #cve202693616 #cve202693952 #cve202694127
##CVE ID: CVE-2026-93952
Vendor: Arista
Product: VeloCloud Orchestrator
Date Added: 2026-09-22
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-93952
Arista disclosed active exploitation of CVE-2026-93952, a CVSS 10.0 unauthenticated flaw in on-prem VeloCloud Orchestrator with certificate authentication enabled. Compromise of the management plane risks full SD-WAN Edge control and lateral movement. Isolate exposed instances and hunt for abuse. #VeloCloud #ThreatIntel #InfoSec
https://cyberworldops.eu/en/active-attacks-target-certificate-enabled-velocloud-orchestrator
##🏆 New Achievement! Exceeds Expectations (Except Security)!
Thank you for joining us for your annual review, Arista VeloCloud Orchestrator team. Uptime? Stellar. Throughput? Impressive. Unauthorized remote access granted to unauthenticated strangers due to CVE-2026-93952, a CVSS 10.0 critical improper-input-validation flaw currently being actively exploited in the wild? That's a "needs improvement," and frankly it drags down the whole scorecard.
Full system compromise is on the table. (1/2)
##CVE-2026-93952 (CRITICAL, CVSS 10) impacts Arista VeloCloud Orchestrator (On-Prem) via improper input validation. Remote, unauthenticated access may lead to full system compromise. Patch urgently. https://radar.offseq.com/threat/cve-2026-93952-cwe-20-improper-input-validation-in-arista-networks-velocloud-orchestrator-vco-on-prem-25dafe8f246f1077 #OffSeq #CVE #infosec #Vulnerability
##An exploited VeloCloud vulnerability with a 10.0 CVSS score hits Arista appliances. Patch the critical VeloCloud vulnerability to stop active attacks.
#VeloCloud #Arista #CVE202693952 #ZeroDay #Cybersecurity #Infosec
##updated 2026-09-22T21:17:30.440000
1 posts
Cisco patched 20 CVEs in ISE (12 critical), 18 in FMC (8 critical) and 6 in Nexus Dashboard. Three ISE flaws CVE-2026-20282, CVE-2026-20283 and CVE-2026-20284 are exploited, allowing takeover of identity and firewall management. Patch immediately and hunt for compromise. #CiscoSecurity #NetworkSecurity #VulnManagement
https://cyberworldops.eu/en/cisco-fixes-critical-ise-fmc-and-nexus-dashboard-flaws-as-exploited
##updated 2026-09-22T20:53:07.383000
1 posts
🟠 CVE-2026-94540 - High (7.7)
DesktopSMS 1.11.0 by MrPear contains an unauthorized access vulnerability that allows local attackers to transmit SMS, retrieve SMS-derived content, and persist an attacker-selected paired identity by interacting with the application's local servi...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94540/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-22T20:43:58.793000
1 posts
🟠 CVE-2026-94501 - High (8.8)
jshERP through 3.6 contains an authorization bypass vulnerability in the userBusiness CRUD endpoints that allows authenticated users to create, modify, or delete authorization-relation rows without privilege checks. Attackers can manipulate user-r...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94501/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-22T20:25:55.870000
1 posts
🟠 CVE-2026-94626 - High (7.5)
vLLM through 0.29.0 fails to validate the tp_size parameter in kv_transfer_params on OpenAI-compatible completion endpoints, allowing attackers to allocate unbounded memory. Attackers can supply arbitrary tp_size values in prefill/decode disaggreg...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94626/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-22T20:00:03.713000
8 posts
10 repos
https://github.com/zer0dayf/CVE-2026-87902
https://github.com/ressl/cve-2026-87902-poc
https://github.com/bhideki/CVE-2026-87902
https://github.com/dinosn/cve-2026-87902-wordpress-lfi-lab
https://github.com/ynsmroztas/WPSniper
https://github.com/vulpecuna/CVE-2026-87902
https://github.com/rabakuku/CVE-2026-87902-A-working-PoC-for-WordPress-s-critical-path-traversal
https://github.com/Hassham1/CVE-2026-87902
An exploited WordPress RCE vulnerability (CVE-2026-87902) is under attack. Details and PoC exploit code are public. Patch your sites now.
#WordPress #CVE202687902 #RCE #Cybersecurity #Infosec #ZeroDay
##WordPress 712 Emergency Update Fixes Critical RCE Vulnerability Affecting Versions Back to 47
WordPress has released version 7.1.2, a security update addressing a critical vulnerability that could allow an unauthenticated remote attacker to execute arbitrary PHP code on vulnerable websites under specific server and theme configurations. Tracked as CVE-2026-87902 and GHSA-7hp8-65ch-5whp, the vulnerability has received a CVSS v4 score of 9.2, placing it firmly in the…
##An exploited WordPress RCE vulnerability (CVE-2026-87902) is under attack. Details and PoC exploit code are public. Patch your sites now.
#WordPress #CVE202687902 #RCE #Cybersecurity #Infosec #ZeroDay
##WordPress unauthenticated LFI to RCE PoC https://github.com/dinosn/cve-2026-87902-wordpress-lfi-lab
##新内容:《WordPress 爆出 9.2 分严重安全漏洞|CVE-2026-87902》
https://www.appinn.com/wordpress-cve-2026-87902-critical-vulnerability/
2026年9月23日,WordPress 爆出 9.2 分的严重安全漏洞,攻击者无需登录即可在服务器上运行代码。漏洞编号 CVE-2026-87902,请务必升级至最新版本 7.1.2。@appinn 根据 W3Techs 2026 年 9 月 22 日的最新统计,全球约 40.2% 的网站都在使用
WordPress patched a critical unauthenticated path traversal vulnerability (CVE-2026-87902, GHSA-7hp8-65ch-5whp, CVSS 9.2) in its page-template resolution function get_page_template(), discovered and responsibly disclosed by Robert Ressl. Under specific preconditions, such as an active theme with a top level directory starting with "page-" and a readable local PHP file usable for the pearcmd.php PEAR RCE chain, an attacker could achieve remote code execution with no authentication. WordPress 7.1.2 fixes the issue, and the patch has been backported to every supported branch back to 4.7.37, so all sites should update immediately.
https://github.com/WordPress/wordpress-develop/security/advisories/GHSA-7hp8-65ch-5whp
##WordPress 7.1.2 patches a critical WordPress RCE vulnerability (CVE-2026-87902). Update your site to prevent conditional remote code execution.
#WordPress #CVE202687902 #RCE #Cybersecurity #Infosec #WordPressSecurity
##Service notice: all hosted/maintained WP websites have been updated to the latest minor version of your current major branch (security release, CVE-2026-87902). No action needed from you!
I don't host or maintain your website? Be sure to update your WordPress ASAP. This one is critical.
Release notes → https://wordpress.org/news/2026/09/wordpress-7-1-2-release/
##updated 2026-09-22T20:00:03.713000
1 posts
🟠 CVE-2026-88407 - High (7.5)
An out-of-bounds read in the node_token_count/relation_token_count component of FalkorDB (Redis module) v4.20.1 to v4.20.4 allows attackers to cause a Denial of Service (DoS) via a crafted input.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-88407/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-22T20:00:03.713000
1 posts
🟠 CVE-2026-88409 - High (8.8)
FalkorDB (Redis module) v4.20.1 to v4.20.4 was discovered to contain a buffer overflow in the _Decode_GrB_Matrix function (/v19/decode_matrix.c). This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-88409/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-22T19:56:19.073000
1 posts
Exim 4.100.1 patches a serious Exim vulnerability set: Proxy Protocol heap flaws, a GnuTLS use-after-free, and SMTP smuggling (CVE-2026-94054). Upgrade now.
#Exim #EximVulnerability #SMTPsmuggling #ProxyProtocol #MailServerSecurity #CVE202694054
##updated 2026-09-22T19:41:38.447000
1 posts
1 repos
ZTE SmartHome Account Takeover: Password Reset Without Verification Code. 4 CVEs, 100K+ Android Downloads - CVE-2026-86553 https://minanagehsalalma.github.io/zte-smartlife-app-pwned/
##updated 2026-09-22T19:32:25.730000
1 posts
🟠 CVE-2026-11726 - High (8.1)
IBM MQ for HPE NonStop 8.1.0 through 8.1.0.40 could allow an authenticated attacker to obtain sensitive information or cause a denial of service due to improper validation of message header offset values.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-11726/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-22T19:32:25.730000
1 posts
🟠 CVE-2026-11727 - High (8.1)
IBM MQ for HPE NonStop 8.1.0 through 8.1.0.40 IBM MQ C client could allow a remote attacker to cause a denial of service or potentially execute arbitrary code due to improper validation of queue manager responses when requesting AMS policy data.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-11727/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-22T19:16:54.623000
1 posts
🟠 CVE-2026-85279 - High (8.6)
Notepad++ is a free and open-source source code editor. Prior to 8.9.8, Notepad++ contains a stack buffer overflow in PluginsManager::loadPluginFromPath in PowerEditor/src/MISC/PluginsManager/PluginsManager.cpp because the plugin-supplied GetLexer...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-85279/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-22T19:09:58.680000
1 posts
1 repos
New advisory
CRITICAL: CVE-2026-84388: Fortinet Fortipam Chrome Extension: https://app.opencve.io/cve/?vendor=fortinet&product=fortipam_chrome_extension #Fortinet #Chrome #infosec #vulnerability
##updated 2026-09-22T18:34:30
1 posts
🟠 CVE-2026-88411 - High (7.5)
Improper error handling in the GRAPH.EFFECT component (/effects/effects_apply.c) of FalkorDB (Redis module) v4.20.1 leads to a Denial of Service (DoS) within the application.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-88411/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-22T18:33:43
1 posts
🔴 CVE-2026-89275 - Critical (10)
Adobe Campaign Classic (ACC) is affected by an Improper Control of Generation of Code ('Code Injection') vulnerability that could result in arbitrary code execution in the context of the current user. An attacker could exploit this vulnerability t...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89275/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-22T18:33:35
1 posts
🟠 CVE-2026-93345 - High (7.5)
MikroTik RouterOS before 7.25beta4 contains an improper input validation vulnerability in the labelled-VPN NLRI iterators of the routing service that allows an unauthenticated on-path attacker to crash the BGP service by sending a malformed MP_REA...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93345/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-22T16:18:17.183000
2 posts
CVE-2026-94099 | Netcore NBR200V2 (1.3.241127.071246): CRITICAL command injection via restore.cgi (QUERY_STRING). Remote exploit, no patch, vendor silent. Isolate devices & monitor logs. https://radar.offseq.com/threat/cve-2026-94099-command-injection-in-netcore-nbr200v2-adc35b079f75e0e5 #OffSeq #Netcore #CVE202694099 #infosec
##🔴 CVE-2026-94099 - Critical (9.9)
A security flaw has been discovered in Netcore NBR200V2 1.3.241127.071246. This issue affects some unknown processing of the file restore.cgi of the component Backup Restore. Performing a manipulation of the argument QUERY_STRING results in comman...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94099/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-22T16:18:02.227000
2 posts
CVE-2026-81180 SysReptor: authed users chain Ghostscript image processing with a GnuPG temp-dir race to inject Python into app code, leading to RCE. CVSS 8.8, no patch yet. Restrict uploads and isolate temp dirs until a fix https://www.valtersit.com/cve/CVE-2026-81180/ #CVE #infosec #SysReptor
##🟠 CVE-2026-81180 - High (8.8)
SysReptor is a fully customizable pentest reporting platform. Prior to 2026.61, authenticated users of SysReptor Professional can upload image files whose formats cause image processing to invoke Ghostscript, allowing embedded PostScript to operat...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-81180/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-22T16:17:48.827000
1 posts
CVE-2026-57227 Suricata MQTT parser DoS, CVSS 7.5. Unbounded PUBREC/PUBREL floods grow transaction state until CPU and memory exhaust. No patch confirmed yet. Update Suricata immediately. https://www.valtersit.com/cve/CVE-2026-57227/ #CVE #infosec #Suricata
##updated 2026-09-22T15:32:43
1 posts
Technical details and a PoC for the D-Link DAP-1360 vulnerability (CVE-2026-95675) are public. Learn how this unauthenticated flaw impacts legacy routers.
#DLink #DAP1360 #CVE202695675 #RCE #RouterSecurity #Cybersecurity
##updated 2026-09-22T15:32:43
1 posts
NVIDIA patched critical NVIDIA Infrastructure Controller vulnerabilities across Linux builds. Learn how CVE-2026-65113 impacts systems and update now.
#NVIDIA #Cybersecurity #CVE202665113 #LinuxSecurity #Infosec #DataCenter
##updated 2026-09-22T15:32:31
1 posts
🟠 CVE-2026-88406 - High (7.5)
FalkorDB (Redis module) v4.20.1 to v4.20.4 was discovered to contain a stack overflow in the _ValidateUnion_Clauses function (/ast/ast_validations.c). This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-88406/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-22T15:17:15.030000
1 posts
📈 CVE Published in last 7 days (2026-09-14 - 2026-09-14)
See more at https://secdb.nttzen.cloud/dashboard
Total CVEs:
Severity:
- Critical: 478
- High: 2067
- Medium: 1314
- Low: 307
- None: 680
Status:
- : 35
- Analyzed: 339
- Awaiting Analysis: 1126
- Deferred: 1117
- Modified: 32
- Received: 1943
- Rejected: 28
- Undergoing Analysis: 226
CISA KEVs:
- CISA-2026:0914 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0914)
- CISA-2026:0916 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0916)
- CISA-2026:0918 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0918)
Top CNAs:
- kernel.org: 878
- Oracle: 634
- GitHub, Inc.: 587
- VulnCheck: 434
- Apple Inc.: 246
- VulDB: 243
- IBM Corporation: 174
- WPScan: 151
- Wordfence: 128
- MITRE: 106
Top Affected Products:
- UNKNOWN: 3691
- Apple Macos: 214
- Apple Iphone Os: 132
- Apple Ipados: 132
- Apple Visionos: 95
- Apple Watchos: 81
- Apple Tvos: 78
- Oracle Hyperion Financial Management: 70
- Google Android: 47
- Google Chrome: 46
Top EPSS Score:
- CVE-2026-76698 - 4.11 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76698)
- CVE-2026-89308 - 2.97 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-89308)
- CVE-2026-90702 - 2.80 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-90702)
- CVE-2026-90703 - 2.80 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-90703)
- CVE-2026-92398 - 2.47 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-92398)
- CVE-2026-92397 - 2.30 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-92397)
- CVE-2026-27560 - 2.22 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-27560)
- CVE-2026-27561 - 2.22 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-27561)
- CVE-2026-27562 - 2.22 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-27562)
- CVE-2026-90847 - 2.18 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-90847)
updated 2026-09-22T14:17:14.037000
1 posts
🟠 CVE-2026-73512 - High (7.5)
Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.36.10, 1.37.6, 1.38.4, and 1.39.1, Envoy's HttpDatagramHandler caches the current RequestDecoder when Capsule Protocol is enabled. Stream recreation,...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-73512/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-22T12:30:32
2 posts
ManageEngine ADSelfService Plus Vulnerability Lets Attackers Execute Code as SYSTEM Before Windows Login + Video
A Critical Weakness at the Windows Sign-In Screen ManageEngine has addressed a high-severity remote code execution vulnerability in ADSelfService Plus that could allow an attacker with physical access to a Windows computer to execute arbitrary code with NT AUTHORITY\SYSTEM privileges—even before a legitimate user signs in. Tracked as CVE-2026-74849, the…
##A critical ManageEngine ADSelfService Plus vulnerability (CVE-2026-74849) allows system compromise. Update to build 7001 to secure your endpoints.
#ManageEngine #ADSelfServicePlus #CVE202674849 #Cybersecurity #Infosec #RCE
##updated 2026-09-22T12:30:25
1 posts
Qualcomm Snapdragon devices hit by CRITICAL CVE-2026-25254: improper authorization in SocketIO allows unauthenticated RCE. No patch yet; monitor advisories and review exposure. CVSS 9.8. https://radar.offseq.com/threat/cve-2026-25254-cwe-285-improper-authorization-in-qualcomm-inc-snapdragon-b8f8f52a617468af #OffSeq #CVE202625254 #Snapdragon #Infosec #Vuln
##updated 2026-09-22T12:10:51.067000
8 posts
Zyxel GS1900 Switches Targeted by Chinese Threat Actor in Data Theft Campaign
Zyxel GS1900 series switches are under active exploitation by a Chinese threat actor using a high-severity buffer overflow (CVE-2026-7273) to steal sensitive data from nearly 1,000 devices worldwide. The campaign has compromised government records and relies on unpatched firmware and default credentials to gain system control.
**If you have Zyxel GS1900 series switches, make sure their management interface is isolated from the internet, accessible from trusted networks only and all default passwords are changed. Then update the firmware to version 2.90(xxxx.2)C0 or later ASAP and check the switches for signs of breach. Attackers are actively exploiting this flaw.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/zyxel-gs1900-switches-targeted-by-chinese-threat-actor-in-data-theft-campaign-y-6-z-t-u/gD2P6Ple2L
Zyxel GS1900 Switches Targeted by Chinese Threat Actor in Data Theft Campaign
Zyxel GS1900 series switches are under active exploitation by a Chinese threat actor using a high-severity buffer overflow (CVE-2026-7273) to steal sensitive data from nearly 1,000 devices worldwide. The campaign has compromised government records and relies on unpatched firmware and default credentials to gain system control.
**If you have Zyxel GS1900 series switches, make sure their management interface is isolated from the internet, accessible from trusted networks only and all default passwords are changed. Then update the firmware to version 2.90(xxxx.2)C0 or later ASAP and check the switches for signs of breach. Attackers are actively exploiting this flaw.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/zyxel-gs1900-switches-targeted-by-chinese-threat-actor-in-data-theft-campaign-y-6-z-t-u/gD2P6Ple2L
The vulnerability, tracked as CVE-2026-7273 (CVSS score: 8.8), is a stack-based buffer overflow vulnerability that could result in arbitrary operating system (OS) command execution. https://thehackernews.com/2026/09/zyxel-and-veeam-flaws-under-active.html
##CISA added CVE-2026-7273, a stack-based buffer overflow in Zyxel GS1900 CGI handling, to KEV on Sept 21, 2026 after confirmed active exploitation. Unauthenticated LAN HTTP requests can yield OS command execution, risking switch takeover and lateral movement. #Zyxel #KnownExploitedVulnerabilities #NetworkSecurity
https://cyberworldops.eu/en/actively-exploited-zyxel-switch-flaw-triggers-three-day-federal-patch
##Zyxel GS1900 switches (CVE-2026-7273) and Veeam Agent for Microsoft Windows (CVE-2026-32996) are under active exploitation. The former allows unauthenticated LAN command execution via CGI buffer overflow, the latter enables SYSTEM-level access on endpoints. Both expand persistence and backup tampering risk. #Zyxel #Veeam #ThreatIntel #VulnManagement
https://cyberworldops.eu/en/active-attacks-put-zyxel-switches-and-veeam-protected-windows
##(CISA CS-MAN) The Cyber Mind CSUITE Brief: CVE-2026-7273 – Zyxel GS1900 Series Switches Stack-Based Buffer Overflow Vulnerability
Analyze the executive impact of CVE-2026-7273 with our strategic Zyxel CSUITE brief, covering zero-trust network segmentation, asset risk assessment, and CISA compliance....
##🚨 [CISA-2026:0921] CISA Adds One Known Exploited Vulnerability to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0921)
CISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2026-7273 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-7273)
- Name: Zyxel GS1900 Series Switches Stack-Based Buffer Overflow Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Zyxel
- Product: GS1900 Series Switches
- Notes: https://www.zyxel.com/global/en/support/security-advisories/zyxel-security-advisory-for-stack-based-buffer-overflow-vulnerability-in-gs1900-series-switches-06-16-2026 ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-7273
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260921 #cisa20260921 #cve_2026_7273 #cve20267273
##CVE ID: CVE-2026-7273
Vendor: Zyxel
Product: GS1900 Series Switches
Date Added: 2026-09-21
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-7273
updated 2026-09-22T06:30:35
1 posts
1 repos
Privilege escalation (CRITICAL, CVE-2026-13355) in Meta Box Frontend Submission <=4.5.6 & User Profile <=3.11.0 lets unauthenticated attackers gain admin on WordPress. Patch status TBD — restrict plugin use & monitor activity. Details: https://radar.offseq.com/threat/cve-2026-13355-cwe-269-improper-privilege-management-in-meta-box-meta-box-frontend-submission-7d7ee5c391cbe4a8 #OffSeq #WordPress #CVE2026_13355
##updated 2026-09-22T06:30:35
1 posts
1 repos
LiquidWeb Give Tributes <=2.3.1 is vulnerable (CVE-2026-19658, CRITICAL) to PHP Object Injection via unsafe deserialization. Only exploitable if a POP chain is present from other plugins/themes. Mitigate by disabling "Allow Multiple Recipients" or enabling eCard msg. https://radar.offseq.com/threat/cve-2026-19658-cwe-502-deserialization-of-untrusted-data-in-liquidweb-give-tributes-10b75c50779a09c2 #OffSeq #WordPress #CVE202619658
##updated 2026-09-22T04:18:02.810000
1 posts
sev:CRIT bypass of CVE-2026-47065 in Apache MINA.
https://nvd.nist.gov/vuln/detail/cve-2026-94301
##The fix for CVE-2026-47065/ZDRES-232 ("resolveProxyClass Not Overridden - acceptMatchers Filter Bypass via java.lang.reflect.Proxy"), released on 2026-06-02 and announced as "Fully addressed" in MINA 2.2.8, 2.1.13 and 2.0.29, was committed to the 2.2.X branch only. The 2.0.X and 2.1.X maintenance branches never received the resolveProxyClass() override, so the 2.0.29 and 2.1.13 artifacts listed as fixed -- and every later release on those lines, up to and including the current 2.0.30 and 2.1.14 -- remain vulnerable to the exact allow-list bypass that CVE-2026-47065 was meant to close.
updated 2026-09-22T03:31:06
1 posts
CVE-2026-94493 (CRITICAL, CVSS 10) in Gigatech PDV5701 1.0.31_240305_112640: WebSocket Service has missing authentication. Remote exploit is public, no vendor fix. Isolate devices, monitor for attacks. https://radar.offseq.com/threat/cve-2026-94493-missing-authentication-in-gigatech-pdv5701-0475e74be58ba45f #OffSeq #CVE #IoTSecurity
##updated 2026-09-22T00:31:02
1 posts
🟠 CVE-2026-94627 - High (7.5)
vLLM Mooncake connector through 0.29.0 fails to properly manage GPU KV cache block ownership when concurrent child requests share a single transfer ID in prefill/decode disaggregated deployments. Attackers can trigger GPU memory exhaustion by subm...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94627/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-22T00:31:02
2 posts
🟠 CVE-2026-94425 - High (8.8)
A vulnerability was found in Moore Threads MTT S80 Driver Package 340.150. The affected element is the function sub_140006F0C in the library mtdispkm64.sys of the component IOCTL Handler. The manipulation results in improper privilege management. ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94425/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-94425 (CRITICAL, CVSS 9.3) hits Moore Threads MTT S80 Driver v340.150 🛡️. Improper privilege management in IOCTL Handler allows local escalation. No patch yet. Limit local access & monitor! https://radar.offseq.com/threat/cve-2026-94425-improper-privilege-management-in-moore-threads-mtt-s80-driver-package-4eb3a6d262c0dea2 #OffSeq #Vuln #PrivilegeEscalation #Infosec
##updated 2026-09-22T00:31:02
1 posts
🟠 CVE-2026-94624 - High (7.5)
vLLM through 0.29.0 contains a denial of service vulnerability in P2P KV offloading when OffloadingConnector is configured with TieringOffloadingSpec and a peer-to-peer secondary tier. Attackers can supply arbitrary remote host and port values in ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94624/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-22T00:31:01
1 posts
🟠 CVE-2026-94623 - High (7.5)
vLLM through 0.29.0 contains a denial of service vulnerability in the NIXL connector's prefix caching implementation that fails to properly validate block counts across multi-prompt completion requests in prefill/decode disaggregated deployments. ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94623/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-21T22:27:11
1 posts
Canonical Patches Critical Trust Store Poisoning Flaw in ADSys
Canonical patched a critical vulnerability (CVE-2026-12249) in ADSys that allows attackers to poison the Ubuntu system trust store by intercepting unencrypted certificate enrollment requests. This flaw enables persistent decryption of TLS traffic and full compromise of encrypted communications on affected hosts.
**If you manage Ubuntu machines connected to Active Directory through ADSys, update ADSys to version 0.16.3 or later on all of them. Oder versions fetch certificates over unencrypted HTTP and let an attacker plant a fake root certificate that exposes all encrypted traffic on the machine. After updating, check each machine's trusted certificates for any unfamiliar root certificates and remove them, since a machine that was already compromised stays exposed even after the patch.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/canonical-patches-critical-trust-store-poisoning-flaw-in-adsys-e-j-r-d-v/gD2P6Ple2L
updated 2026-09-21T21:32:01
1 posts
🟠 CVE-2026-81469 - High (7.8)
Dell Inventory Collector Client, versions prior to 15.0.0, contain an Unquoted Search Path or Element vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Code execution and Elevation ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-81469/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-21T21:32:00
1 posts
🟠 CVE-2026-94497 - High (8.3)
jshERP through 3.6 fails to validate object ownership in by-id info, update, and delete endpoints across multiple resource types. Authenticated users can read, modify, and delete other users' business objects by submitting direct object identifier...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94497/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-21T21:31:57
1 posts
🟠 CVE-2026-94424 - High (8.8)
A vulnerability has been found in Moore Threads MTT S80 Driver Package up to 340.150. Impacted is the function sub_140001000 in the library mtdispkm64.sys of the component IOCTL Handler. The manipulation leads to heap-based buffer overflow. An att...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94424/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-21T21:31:53
1 posts
🟠 CVE-2026-94411 - High (8.8)
jshERP 3.6 contains a privilege escalation vulnerability in the updateOneValueByKeyIdAndType endpoint that allows authenticated users to grant themselves arbitrary roles. Attackers can send a POST request with type=UserRole, their own user ID, and...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94411/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-21T21:17:11.637000
1 posts
🟠 CVE-2026-77560 - High (8.1)
Tinyauth is an authentication and authorization server. Prior to 5.1.2, Tinyauth compares forwarded hostnames case-sensitively while reverse proxies route equivalent hostnames case-insensitively, allowing an authenticated low-privilege user to byp...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77560/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-21T20:17:40.953000
2 posts
🟠 CVE-2026-94142 - High (8.8)
A security vulnerability has been detected in BioStar Temperature Monitor Utility 1.2.1806.2200. Affected by this vulnerability is the function sub_1105C of the file BS_HWMIO64_W10.sys of the component IOCTL Handler. Such manipulation of the argum...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94142/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##BioStar Temp Monitor Utility v1.2.1806.2200 hit by CRITICAL CVE-2026-94142 (CVSS 9.3): write-what-where flaw in IOCTL handler. Local attackers can write arbitrary memory. No patch — restrict access. Details: https://radar.offseq.com/threat/cve-2026-94142-write-what-where-condition-in-biostar-temperature-monitor-utility-b89c455f336372e0 #OffSeq #CVE202694142 #infosec #vuln
##updated 2026-09-21T19:17:18.593000
1 posts
1 repos
D-Link warns of two major bugs with public POCs
CVE-2026-86296: https://supportannouncement.us.dlink.com/security/publication.aspx?name=SAP10516
CVE-2026-93958: https://supportannouncement.us.dlink.com/security/publication.aspx?name=SAP10518
##updated 2026-09-21T19:17:09.157000
1 posts
CVE-2026-68928: Acode for Android exported TerminalService lets any installed app run arbitrary shell commands via MSG_EXEC. CVSS 8.6. No patch yet - restrict or update now. https://www.valtersit.com/cve/CVE-2026-68928/ #CVE #Android #infosec
##updated 2026-09-21T15:32:39
4 posts
1 repos
https://thecybersecguru.com/news/cve-2026-80521-ubuntu-kernel-container-escape/
##Ubuntu Linux Flaw Exposed, Enabling Host-Root Container Escape
A newly discovered Linux kernel flaw, CVE-2026-80521, can allow code running inside a container to gain root access on the host, posing a significant security risk. This alarming vulnerability is just one of nearly 5,700 Linux kernel CVEs published in 2026, a record high.
#LinuxKernelFlaw #UbuntuLinux #Cve202680521 #ContainerSecurity #HostrootContainerEscape
##Linux Kernel Container Escape Warning: Unpatched AF_UNIX Flaw Comes With a Working Ubuntu Exploit + Video
A newly disclosed Linux kernel vulnerability is putting containerized workloads under renewed scrutiny after researchers demonstrated that an attacker operating inside a container can potentially escape isolation and obtain root-level control over the host. Tracked as CVE-2026-80521, the vulnerability is a use-after-free condition in the Linux kernel's AF_UNIX…
##https://thecybersecguru.com/news/cve-2026-80521-ubuntu-kernel-container-escape/
##updated 2026-09-21T15:17:35.313000
1 posts
1 repos
https://github.com/muhammad-usama-sardar/intra-handshake-fail
🔴 CVE-2026-92701 - Critical (9.1)
trusted execution environments. In versions up to and including 0.8.2, the intra-handshake attested TLS (aTLS) Intel TDX verification path does not copy the expected current-session freshness value into the TDX quote-body policy before quote valid...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-92701/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-21T15:17:32.223000
1 posts
Web to Print Online Designer plugin (v1.7.0 – 2.14.9) hit by CRITICAL CVE-2026-82187: unauthenticated attackers can upload & execute arbitrary files (incl. PHP), leading to RCE. Upgrade to 2.15.0+ ASAP. https://radar.offseq.com/threat/cve-2026-82187-cwe-434-unrestricted-upload-of-file-with-dangerous-type-in-web-to-print-online-designer-b337972e4836e68c #OffSeq #WordPress #CVE202682187 #RCE
##updated 2026-09-21T13:34:57.127000
1 posts
🟠 CVE-2026-87067 - High (8.5)
The Forminator Forms WordPress plugin before 1.57.2.1 does not restrict which classes may be instantiated when it deserialises a value taken from an XML-RPC request, allowing users who hold its forms-management permission to write a file of their...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-87067/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-21T13:33:33.387000
1 posts
🔴 CVE-2026-94097 - Critical (10)
A vulnerability was determined in Netcore NBR200V2 1.3.241127.071246. This affects an unknown part of the file /www/cgi-bin/network_tools of the component CGI Diagnostic Endpoint. This manipulation of the argument param/key/val causes command inje...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94097/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-21T09:31:09
1 posts
BioStar BIOS Update Utility 1.9.7.3 hit by CRITICAL CVE-2026-94146: local write-what-where bug in BSMEM64_W10.sys (IOCTL handler). Exploit public; vendor silent. Restrict local access immediately. https://radar.offseq.com/threat/cve-2026-94146-write-what-where-condition-in-biostar-bios-update-utility-47de5318713632c6 #OffSeq #CVE202694146 #bios #infosec
##updated 2026-09-21T03:30:29
2 posts
1 repos
BioStar VIVID LED DJ 4.0.2411.1500 hit by CRITICAL CVE-2026-94128: write-what-where in BS_LED64.sys allows local attackers arbitrary memory writes. No patch — restrict local access, monitor updates. https://radar.offseq.com/threat/cve-2026-94128-write-what-where-condition-in-biostar-vivid-led-dj-0b3addc35127e852 #OffSeq #Vuln #CVE202694128 #PrivilegeEscalation
##🟠 CVE-2026-94128 - High (8.8)
A security vulnerability has been detected in BioStar VIVID LED DJ 4.0.2411.1500. This affects the function sub_1105C of the file BS_LED64.sys of the component IOCTL Handler. The manipulation of the argument AssociatedIrp leads to write-what-where...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94128/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-21T03:30:27
2 posts
Netcore NBR200V2 (v1.3.241127.071246) hit by CRITICAL CVE-2026-94101 buffer overflow in /usr/bin/routerd. Remote code exec possible. Public exploit, no patch. Restrict remote access ASAP. https://radar.offseq.com/threat/cve-2026-94101-buffer-overflow-in-netcore-nbr200v2-21b7762bd81c815b #OffSeq #Netcore #RouterSecurity #Infosec
##🔴 CVE-2026-94101 - Critical (9.9)
A security vulnerability has been detected in Netcore NBR200V2 1.3.241127.071246. The affected element is the function vlan_load_form_uci of the file /usr/bin/routerd. The manipulation of the argument wan_num leads to buffer overflow. It is possib...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94101/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-21T03:30:27
2 posts
1 repos
🟠 CVE-2026-94129 - High (8.8)
A vulnerability was detected in BioStar VALKYRIE AURORA 2.10.2411.0800. This vulnerability affects the function sub_1105C of the file BS_RVSIO64.sys of the component IOCTL Handler. The manipulation of the argument PhysicalAddress results in write-...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94129/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-94129 (CRITICAL, CVSS 9.3) impacts BioStar VALKYRIE AURORA 2.10.2411.0800: local write-what-where in IOCTL Handler (BS_RVSIO64.sys) enables privilege escalation. No patch, public exploit exists. Limit local access. https://radar.offseq.com/threat/cve-2026-94129-write-what-where-condition-in-biostar-valkyrie-aurora-a023aa581f42ad11 #OffSeq #CVE #infosec
##updated 2026-09-21T03:30:23
2 posts
🔴 CVE-2026-94100 - Critical (9.9)
A weakness has been identified in Netcore NBR200V2 1.3.241127.071246. Impacted is the function wan_config_set_vlan of the file /usr/bin/routerd of the component WAN VLAN Reconfiguration. Executing a manipulation of the argument vlan_wanX.ports can...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94100/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##Netcore NBR200V2 v1.3.241127.071246 has a CRITICAL buffer overflow (CVE-2026-94100) in WAN VLAN config. Remotely exploitable, public exploit out. Restrict access — no patch yet. https://radar.offseq.com/threat/cve-2026-94100-buffer-overflow-in-netcore-nbr200v2-9ab8800727104374 #OffSeq #Netcore #CVE202694100 #Infosec
##updated 2026-09-21T03:30:22
1 posts
🔴 CVE-2026-94098 - Critical (9.1)
A vulnerability was identified in Netcore NBR200V2 1.3.241127.071246. This vulnerability affects unknown code of the file /www/cgi-bin/upgrade of the component Firmware Upgrade CGI Endpoint. Such manipulation of the argument QUERY_STRING leads to ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94098/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-21T00:30:33
2 posts
🔴 CVE-2026-94096 - Critical (9.9)
A vulnerability was found in Netcore NBR200V2 1.3.241127.071246. Affected by this issue is some unknown functionality of the file /usr/bin/network_tools of the component LAN IP Configuration Handler. The manipulation of the argument ipv4 results i...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94096/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##Netcore NBR200V2 (v1.3.241127.071246) hit by CRITICAL (CVSS 9.4) command injection (CVE-2026-94096) in /usr/bin/network_tools. Remote exploit is public, no patch. Isolate devices and monitor traffic. https://radar.offseq.com/threat/cve-2026-94096-command-injection-in-netcore-nbr200v2-73f6afc059a1e2bc #OffSeq #CVE202694096 #Netcore #Infosec
##updated 2026-09-21T00:30:33
1 posts
1 repos
🔴 CVE-2026-94095 - Critical (9.9)
A vulnerability has been found in Netcore NBR200V2 1.3.241127.071246. Affected by this vulnerability is an unknown functionality of the file /usr/bin/network_tools of the component Traceroute Diagnostic Feature. The manipulation of the argument ur...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94095/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-20T21:31:45
1 posts
🔴 CVE-2026-94089 - Critical (10)
A vulnerability was determined in D-Link DIR-868L 2.01b05. This issue affects the function strcpy of the file /webfa_authentication.cgi of the component Authentication Handler. Executing a manipulation of the argument id/password can lead to stack...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94089/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-20T18:31:25
1 posts
1 repos
🟠 CVE-2026-94036 - High (8.8)
A security flaw has been discovered in D-Link DIR-X1860 and DIR-X1860Z up to 1.0.2.220120.165402. The impacted element is an unknown function of the file /ubus of the component routerd. The manipulation of the argument passwd_set results in improp...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94036/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-20T15:31:26
1 posts
🟠 CVE-2026-85017 - High (7.5)
The Unlimited Elements For Elementor WordPress plugin before 2.0.20 does not perform a capability check on an AJAX action and deserializes attacker-controlled stored data through it, which makes it possible for authenticated attackers with subscri...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-85017/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-20T15:30:26
1 posts
🟠 CVE-2026-87839 - High (7.5)
The Tripzzy WordPress plugin before 1.5.1 does not have authorisation checks, and does not validate the identifier of the object being removed, in an AJAX action available to unauthenticated users, allowing them to permanently delete arbitrary co...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-87839/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-20T03:30:29
2 posts
RE: https://infosec.exchange/@suricata/117309241594395404
https://nvd.nist.gov/vuln/detail/cve-2026-94083
sev:CRIT 9.4 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L
https://nvd.nist.gov/vuln/detail/cve-2026-94084
sev:CRIT 9.4 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L
Suricata Patches Flaws Allowing Network Monitoring Bypass
Suricata 8.0.7 fixes two vulnerabilities (CVE-2026-94084 and CVE-2026-94083) that allow unauthenticated attackers to crash the IDS/IPS engine. These flaws exploit the HTTP/2 and DoH2 parsers to create a monitoring blind spot for network bypass.
**If you run Suricata for network monitoring, update it to version 8.0.7 ASAP. Older versions can be crashed remotely, leaving your network unmonitored and your attack detection blind. Until you patch, closely monitor that the Suricata service is actually running, because an unexpected stop may mean someone is already attacking you.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/suricata-patches-flaws-allowing-network-monitoring-bypass-k-i-m-z-m/gD2P6Ple2L
updated 2026-09-20T03:30:29
2 posts
RE: https://infosec.exchange/@suricata/117309241594395404
https://nvd.nist.gov/vuln/detail/cve-2026-94083
sev:CRIT 9.4 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L
https://nvd.nist.gov/vuln/detail/cve-2026-94084
sev:CRIT 9.4 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L
Suricata Patches Flaws Allowing Network Monitoring Bypass
Suricata 8.0.7 fixes two vulnerabilities (CVE-2026-94084 and CVE-2026-94083) that allow unauthenticated attackers to crash the IDS/IPS engine. These flaws exploit the HTTP/2 and DoH2 parsers to create a monitoring blind spot for network bypass.
**If you run Suricata for network monitoring, update it to version 8.0.7 ASAP. Older versions can be crashed remotely, leaving your network unmonitored and your attack detection blind. Until you patch, closely monitor that the Suricata service is actually running, because an unexpected stop may mean someone is already attacking you.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/suricata-patches-flaws-allowing-network-monitoring-bypass-k-i-m-z-m/gD2P6Ple2L
updated 2026-09-19T15:17:08.323000
2 posts
2 repos
Details and PoC exploit code for a critical WordPress stored XSS are public. Learn how CVE-2026-93485 enables RCE and patch WordPress today.
#WordPress #CVE202693485 #StoredXSS #RCE #Cybersecurity #Infosec
https://securityonline.info/wordpress-stored-xss-poc/?utm_source=mastodon&utm_medium=jetpack_social
##Details and PoC exploit code for a critical WordPress stored XSS are public. Learn how CVE-2026-93485 enables RCE and patch WordPress today.
#WordPress #CVE202693485 #StoredXSS #RCE #Cybersecurity #Infosec
https://securityonline.info/wordpress-stored-xss-poc/?utm_source=mastodon&utm_medium=jetpack_social
##updated 2026-09-19T15:17:00.153000
1 posts
🟠 CVE-2026-61821 - High (8.5)
pg_partman is a PostgreSQL extension that manages partitioned tables by time or ID. Prior to 5.5.0, drop_partition_id() and drop_partition_time() use part_config.retention_schema as the target for ALTER TABLE SET SCHEMA and accept any nonempty sch...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-61821/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-19T15:17:00.040000
1 posts
🟠 CVE-2026-61818 - High (8.5)
pg_partman is a PostgreSQL extension that manages partitioned tables by time or ID. Prior to 5.5.0, undo_partition() reads part_config.time_encoder as unrestricted text and interpolates it without identifier quoting into a dynamically executed SEL...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-61818/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-19T04:17:48.307000
2 posts
3 repos
https://github.com/mc493/linux-kernel-zero-day-mitigation-zero-downtime-kernel-defense-
(CISA TS+SOC) The Cyber Mind TSUITE Brief: CVE-2025-39964 – Linux Kernel Race Condition Vulnerability
Analyze the mechanics of CVE-2025-39964 with our technical Linux TSUITE brief, covering AF_ALG race conditions, CrowdStrike CQL queries, and endpoint hardening....
##CISA added CVE-2025-39682, CVE-2025-39964, and CVE-2026-53266 to its KEV catalog after exploitation was reported. The flaws affect TLS, AF_ALG, and ebtables SNAT, with CVSS scores up to 9.8, making rapid exposure assessment and patch validation essential. #LinuxSecurity #VulnerabilityManagement #KEV
https://cyberworldops.eu/en/three-exploited-linux-kernel-flaws-trigger-immediate-cisa-patch
##updated 2026-09-18T21:32:37
1 posts
🟠 CVE-2026-81626 - High (8.6)
IBM Guardium Data Protection 12.2 is vulnerable to a SQL injection vulnerability in the Load Balancer Groups component. An unauthenticated user can inject SQL statements through the Load Balancer Servlet endpoint, potentially resulting in unauthor...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-81626/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T21:32:36
1 posts
CVE-2026-84071: IBM Guardium Data Protection 12.2 OS command injection in Universal Connector plugin upload. Auth attacker can run commands as root. CVSS 7.2, no patch yet. Restrict access and monitor. https://www.valtersit.com/cve/CVE-2026-84071/ #CVE #infosec #IBM
##updated 2026-09-18T21:32:35
1 posts
🔴 CVE-2026-75878 - Critical (9.1)
IBM Sterling File Gateway could allow a remote attacker to bypass authentication and obtain a fully authenticated session due to improper authentication via an unvalidated SSO header.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-75878/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T21:32:35
1 posts
🟠 CVE-2026-81656 - High (8.8)
IBM Guardium Data Protection 12.2 is vulnerable to a SQL injection vulnerability in the New Query Builder REST Processor. A low-privileged authenticated user can inject SQL statements through the newQueryBuilder REST endpoint, potentially resultin...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-81656/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T21:32:28
1 posts
🟠 CVE-2026-11716 - High (7.5)
IBM MQ for HPE NonStop 8.1.0 through 8.1.0.40 could allow an authenticated attacker to cause a denial of service or potentially execute arbitrary code during queue manager startup due to improper validation of cluster migration data.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-11716/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T21:32:28
1 posts
🟠 CVE-2026-11725 - High (8.8)
IBM MQ could allow an authenticated attacker to cause a denial of service or potentially execute arbitrary code due to an integer overflow in MQINQ request processing.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-11725/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T21:32:26
1 posts
🟠 CVE-2026-17619 - High (8.6)
IBM Platform RTM is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify, or delete information in the back-end database.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-17619/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T21:31:33
1 posts
3 repos
https://github.com/mc493/linux-kernel-zero-day-mitigation-zero-downtime-kernel-defense-
CISA added CVE-2025-39682, CVE-2025-39964, and CVE-2026-53266 to its KEV catalog after exploitation was reported. The flaws affect TLS, AF_ALG, and ebtables SNAT, with CVSS scores up to 9.8, making rapid exposure assessment and patch validation essential. #LinuxSecurity #VulnerabilityManagement #KEV
https://cyberworldops.eu/en/three-exploited-linux-kernel-flaws-trigger-immediate-cisa-patch
##updated 2026-09-18T20:17:23.470000
1 posts
🟠 CVE-2026-81179 - High (8.1)
SysReptor is a fully customizable pentest reporting platform. Prior to 2026.58, installations that enable password reset by email while configuring ALLOWED_HOSTS with a wildcard accept an attacker-controlled Host header when generating a password ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-81179/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T20:17:06.860000
1 posts
📢 [VULN] Alerte sécurité : deux vulnérabilités majeures menacent vos NAS Synology - CVE-2026-13684 CVE-2026-13639
Huit vulnérabilités viennent d'être identifiées dans le système d'exploitation DiskStation Manager de Synology, dont deux atteignent un score de gravité maximal de 9.8. Ces failles critiques permettent à des attaquants distants de lire, d'écrire ou d'effacer vos fichiers sans aucune…
🔗 https://www.generation-nt.com/actualites/alerte-securite-vulnerabilites-majeures-serveurs-2081523
💬 discussion : https://infosec.pub/post/52624526
#Vulnérabilité #CVE #Cyberveille
updated 2026-09-18T18:32:09
1 posts
🟠 CVE-2026-93749 - High (7.5)
source-map-js through 1.2.1 fails to validate the per-section offset line value in indexed source maps, allowing attackers to specify arbitrary numeric values. Attackers can supply extremely large offset line values that cause synchronous event lo...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93749/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T18:32:07
1 posts
🟠 CVE-2026-93748 - High (7.5)
http-cache-semantics through 4.2.0 fails to properly validate security-zeroed cache entries when processing client max-stale directives, allowing unauthenticated attackers to retrieve cached responses belonging to other users. Attackers can reques...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93748/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T18:32:01
1 posts
Critical MongoDB driver vulnerabilities, including CVE-2026-93762, expose systems to data loss and DoS. Learn about these flaws and patch immediately.
##updated 2026-09-18T18:31:55
2 posts
🚨 RAPID RESPONSE: IBM MQ Pre-Authentication RCE [CVE-2026-10747]
A critical heap buffer overflow in IBM MQ could allow remote code execution before authentication. CVSS: 10.0.
Censys ARC observes IBM MQ web consoles on 120 hosts and 149 web properties Internet-wide. These numbers indicate IBM MQ presence, not confirmed vulnerable systems.
IBM has released fixes for affected MQ Server and MQ Appliance versions. No public PoC or reported active exploitation is known at this time.
Read the full analysis for affected versions, Internet observations, and remediation guidance. https://censys.com/advisory/cve-2026-10747/
##Critical IBM MQ vulnerabilities allow remote code execution. Learn how CVE-2026-10747 and CVE-2026-10858 hit 10.0 CVSS and require urgent patching.
##updated 2026-09-18T18:31:53
1 posts
Critical IBM MQ vulnerabilities allow remote code execution. Learn how CVE-2026-10747 and CVE-2026-10858 hit 10.0 CVSS and require urgent patching.
##updated 2026-09-18T17:58:41
1 posts
🟠 CVE-2026-85058 - High (7.5)
Moquette is a lightweight Java MQTT broker. Prior to 0.18.1, PostOffice.publishWill publishes a client-controlled Last Will message through publish2Subscribers without invoking the authorizator.canWrite check used by normal PUBLISH paths. When ano...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-85058/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T17:19:44
1 posts
🟠 CVE-2026-91127 - High (8.2)
File Viewer is a browser-native viewer for Office, PDF, CAD, archive, and other files in private and internal web applications. Prior to @file-viewer/doc 2.3.1 and msdoc-viewer 0.2.2, the legacy DOC renderer emitted document-controlled hyperlink t...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-91127/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T15:32:49
2 posts
2 repos
https://github.com/mc493/linux-kernel-zero-day-mitigation-zero-downtime-kernel-defense-
(CISA CS-MAN) The Cyber Mind CSUITE Brief: CVE-2026-53266 – Linux Kernel Out-of-Bounds Write Vulnerability
Analyze the executive impact of CVE-2026-53266 with our strategic Linux CSUITE brief, covering kernel out-of-bounds write risks, compliance assurance, and board-level risk communication....
##CISA added CVE-2025-39682, CVE-2025-39964, and CVE-2026-53266 to its KEV catalog after exploitation was reported. The flaws affect TLS, AF_ALG, and ebtables SNAT, with CVSS scores up to 9.8, making rapid exposure assessment and patch validation essential. #LinuxSecurity #VulnerabilityManagement #KEV
https://cyberworldops.eu/en/three-exploited-linux-kernel-flaws-trigger-immediate-cisa-patch
##updated 2026-09-18T13:28:28.567000
1 posts
Cisco patched 20 CVEs in ISE (12 critical), 18 in FMC (8 critical) and 6 in Nexus Dashboard. Three ISE flaws CVE-2026-20282, CVE-2026-20283 and CVE-2026-20284 are exploited, allowing takeover of identity and firewall management. Patch immediately and hunt for compromise. #CiscoSecurity #NetworkSecurity #VulnManagement
https://cyberworldops.eu/en/cisco-fixes-critical-ise-fmc-and-nexus-dashboard-flaws-as-exploited
##updated 2026-09-18T09:31:20
1 posts
📢 [VULN] Alerte sécurité : deux vulnérabilités majeures menacent vos NAS Synology - CVE-2026-13684 CVE-2026-13639
Huit vulnérabilités viennent d'être identifiées dans le système d'exploitation DiskStation Manager de Synology, dont deux atteignent un score de gravité maximal de 9.8. Ces failles critiques permettent à des attaquants distants de lire, d'écrire ou d'effacer vos fichiers sans aucune…
🔗 https://www.generation-nt.com/actualites/alerte-securite-vulnerabilites-majeures-serveurs-2081523
💬 discussion : https://infosec.pub/post/52624526
#Vulnérabilité #CVE #Cyberveille
updated 2026-09-18T00:31:16
1 posts
CVE-2026-85889 in Microsoft's Azure AI Foundry enabled unauthorized privilege escalation at the highest possible severity rating, discovered by researcher Rémy Marot and quietly fixed before a single attacker could find it in the wild.
The good news — and do write this down — no customer action is required. Microsoft has fully mitigated the issue on their end. This concludes the portion of the training where you feel relief. Please do not grow accustomed to it. (2/3)
##updated 2026-09-16T21:32:50
1 posts
Cisco patched 20 CVEs in ISE (12 critical), 18 in FMC (8 critical) and 6 in Nexus Dashboard. Three ISE flaws CVE-2026-20282, CVE-2026-20283 and CVE-2026-20284 are exploited, allowing takeover of identity and firewall management. Patch immediately and hunt for compromise. #CiscoSecurity #NetworkSecurity #VulnManagement
https://cyberworldops.eu/en/cisco-fixes-critical-ise-fmc-and-nexus-dashboard-flaws-as-exploited
##updated 2026-09-16T21:17:05.947000
2 posts
Broadcom has a long list of advisories addressing some critical vulnerabilities, among others https://support.broadcom.com/web/ecx/security-advisory #Broadcom
Cisco:
This addresses high-severity CVE-2024-20260, first published in October.
Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software SSL VPN Denial of Service Vulnerability https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asaftdvirtual-dos-MuenGnYR @TalosSecurity #Cisco #infosec #vulnerability
##Broadcom has a long list of advisories addressing some critical vulnerabilities, among others https://support.broadcom.com/web/ecx/security-advisory #Broadcom
Cisco:
This addresses high-severity CVE-2024-20260, first published in October.
Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software SSL VPN Denial of Service Vulnerability https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asaftdvirtual-dos-MuenGnYR @TalosSecurity #Cisco #infosec #vulnerability
##updated 2026-09-16T20:38:33.883000
1 posts
Docker Sandboxes 0.42.0 security update: CVE-2026-77179 and CVE-2026-79994 #devopsish https://docs.docker.com/security/security-announcements/#docker-sandboxes-0420-security-update-cve-2026-77179-and-cve-2026-79994
##updated 2026-09-16T18:32:09
1 posts
📈 CVE Published in last 7 days (2026-09-14 - 2026-09-14)
See more at https://secdb.nttzen.cloud/dashboard
Total CVEs:
Severity:
- Critical: 478
- High: 2067
- Medium: 1314
- Low: 307
- None: 680
Status:
- : 35
- Analyzed: 339
- Awaiting Analysis: 1126
- Deferred: 1117
- Modified: 32
- Received: 1943
- Rejected: 28
- Undergoing Analysis: 226
CISA KEVs:
- CISA-2026:0914 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0914)
- CISA-2026:0916 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0916)
- CISA-2026:0918 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0918)
Top CNAs:
- kernel.org: 878
- Oracle: 634
- GitHub, Inc.: 587
- VulnCheck: 434
- Apple Inc.: 246
- VulDB: 243
- IBM Corporation: 174
- WPScan: 151
- Wordfence: 128
- MITRE: 106
Top Affected Products:
- UNKNOWN: 3691
- Apple Macos: 214
- Apple Iphone Os: 132
- Apple Ipados: 132
- Apple Visionos: 95
- Apple Watchos: 81
- Apple Tvos: 78
- Oracle Hyperion Financial Management: 70
- Google Android: 47
- Google Chrome: 46
Top EPSS Score:
- CVE-2026-76698 - 4.11 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76698)
- CVE-2026-89308 - 2.97 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-89308)
- CVE-2026-90702 - 2.80 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-90702)
- CVE-2026-90703 - 2.80 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-90703)
- CVE-2026-92398 - 2.47 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-92398)
- CVE-2026-92397 - 2.30 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-92397)
- CVE-2026-27560 - 2.22 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-27560)
- CVE-2026-27561 - 2.22 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-27561)
- CVE-2026-27562 - 2.22 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-27562)
- CVE-2026-90847 - 2.18 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-90847)
updated 2026-09-16T18:32:09
1 posts
📈 CVE Published in last 7 days (2026-09-14 - 2026-09-14)
See more at https://secdb.nttzen.cloud/dashboard
Total CVEs:
Severity:
- Critical: 478
- High: 2067
- Medium: 1314
- Low: 307
- None: 680
Status:
- : 35
- Analyzed: 339
- Awaiting Analysis: 1126
- Deferred: 1117
- Modified: 32
- Received: 1943
- Rejected: 28
- Undergoing Analysis: 226
CISA KEVs:
- CISA-2026:0914 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0914)
- CISA-2026:0916 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0916)
- CISA-2026:0918 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0918)
Top CNAs:
- kernel.org: 878
- Oracle: 634
- GitHub, Inc.: 587
- VulnCheck: 434
- Apple Inc.: 246
- VulDB: 243
- IBM Corporation: 174
- WPScan: 151
- Wordfence: 128
- MITRE: 106
Top Affected Products:
- UNKNOWN: 3691
- Apple Macos: 214
- Apple Iphone Os: 132
- Apple Ipados: 132
- Apple Visionos: 95
- Apple Watchos: 81
- Apple Tvos: 78
- Oracle Hyperion Financial Management: 70
- Google Android: 47
- Google Chrome: 46
Top EPSS Score:
- CVE-2026-76698 - 4.11 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76698)
- CVE-2026-89308 - 2.97 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-89308)
- CVE-2026-90702 - 2.80 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-90702)
- CVE-2026-90703 - 2.80 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-90703)
- CVE-2026-92398 - 2.47 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-92398)
- CVE-2026-92397 - 2.30 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-92397)
- CVE-2026-27560 - 2.22 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-27560)
- CVE-2026-27561 - 2.22 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-27561)
- CVE-2026-27562 - 2.22 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-27562)
- CVE-2026-90847 - 2.18 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-90847)
updated 2026-09-16T15:30:57
1 posts
⚪️ Google Patches Zero-Day Vulnerability in Pixel Devices
🗨️ Google has released September patches for Pixel smartphones, fixing 110 vulnerabilities. Among them is a zero-day flaw found in the cellular modem (CVE-2026-58704). The company warned that the issue is already being exploited by hackers in targeted attacks. CVE-2026-58704 has…
##updated 2026-09-16T09:30:35
1 posts
📈 CVE Published in last 7 days (2026-09-14 - 2026-09-14)
See more at https://secdb.nttzen.cloud/dashboard
Total CVEs:
Severity:
- Critical: 478
- High: 2067
- Medium: 1314
- Low: 307
- None: 680
Status:
- : 35
- Analyzed: 339
- Awaiting Analysis: 1126
- Deferred: 1117
- Modified: 32
- Received: 1943
- Rejected: 28
- Undergoing Analysis: 226
CISA KEVs:
- CISA-2026:0914 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0914)
- CISA-2026:0916 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0916)
- CISA-2026:0918 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0918)
Top CNAs:
- kernel.org: 878
- Oracle: 634
- GitHub, Inc.: 587
- VulnCheck: 434
- Apple Inc.: 246
- VulDB: 243
- IBM Corporation: 174
- WPScan: 151
- Wordfence: 128
- MITRE: 106
Top Affected Products:
- UNKNOWN: 3691
- Apple Macos: 214
- Apple Iphone Os: 132
- Apple Ipados: 132
- Apple Visionos: 95
- Apple Watchos: 81
- Apple Tvos: 78
- Oracle Hyperion Financial Management: 70
- Google Android: 47
- Google Chrome: 46
Top EPSS Score:
- CVE-2026-76698 - 4.11 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76698)
- CVE-2026-89308 - 2.97 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-89308)
- CVE-2026-90702 - 2.80 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-90702)
- CVE-2026-90703 - 2.80 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-90703)
- CVE-2026-92398 - 2.47 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-92398)
- CVE-2026-92397 - 2.30 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-92397)
- CVE-2026-27560 - 2.22 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-27560)
- CVE-2026-27561 - 2.22 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-27561)
- CVE-2026-27562 - 2.22 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-27562)
- CVE-2026-90847 - 2.18 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-90847)
updated 2026-09-16T09:30:34
1 posts
📈 CVE Published in last 7 days (2026-09-14 - 2026-09-14)
See more at https://secdb.nttzen.cloud/dashboard
Total CVEs:
Severity:
- Critical: 478
- High: 2067
- Medium: 1314
- Low: 307
- None: 680
Status:
- : 35
- Analyzed: 339
- Awaiting Analysis: 1126
- Deferred: 1117
- Modified: 32
- Received: 1943
- Rejected: 28
- Undergoing Analysis: 226
CISA KEVs:
- CISA-2026:0914 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0914)
- CISA-2026:0916 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0916)
- CISA-2026:0918 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0918)
Top CNAs:
- kernel.org: 878
- Oracle: 634
- GitHub, Inc.: 587
- VulnCheck: 434
- Apple Inc.: 246
- VulDB: 243
- IBM Corporation: 174
- WPScan: 151
- Wordfence: 128
- MITRE: 106
Top Affected Products:
- UNKNOWN: 3691
- Apple Macos: 214
- Apple Iphone Os: 132
- Apple Ipados: 132
- Apple Visionos: 95
- Apple Watchos: 81
- Apple Tvos: 78
- Oracle Hyperion Financial Management: 70
- Google Android: 47
- Google Chrome: 46
Top EPSS Score:
- CVE-2026-76698 - 4.11 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76698)
- CVE-2026-89308 - 2.97 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-89308)
- CVE-2026-90702 - 2.80 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-90702)
- CVE-2026-90703 - 2.80 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-90703)
- CVE-2026-92398 - 2.47 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-92398)
- CVE-2026-92397 - 2.30 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-92397)
- CVE-2026-27560 - 2.22 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-27560)
- CVE-2026-27561 - 2.22 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-27561)
- CVE-2026-27562 - 2.22 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-27562)
- CVE-2026-90847 - 2.18 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-90847)
updated 2026-09-16T09:30:34
1 posts
📈 CVE Published in last 7 days (2026-09-14 - 2026-09-14)
See more at https://secdb.nttzen.cloud/dashboard
Total CVEs:
Severity:
- Critical: 478
- High: 2067
- Medium: 1314
- Low: 307
- None: 680
Status:
- : 35
- Analyzed: 339
- Awaiting Analysis: 1126
- Deferred: 1117
- Modified: 32
- Received: 1943
- Rejected: 28
- Undergoing Analysis: 226
CISA KEVs:
- CISA-2026:0914 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0914)
- CISA-2026:0916 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0916)
- CISA-2026:0918 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0918)
Top CNAs:
- kernel.org: 878
- Oracle: 634
- GitHub, Inc.: 587
- VulnCheck: 434
- Apple Inc.: 246
- VulDB: 243
- IBM Corporation: 174
- WPScan: 151
- Wordfence: 128
- MITRE: 106
Top Affected Products:
- UNKNOWN: 3691
- Apple Macos: 214
- Apple Iphone Os: 132
- Apple Ipados: 132
- Apple Visionos: 95
- Apple Watchos: 81
- Apple Tvos: 78
- Oracle Hyperion Financial Management: 70
- Google Android: 47
- Google Chrome: 46
Top EPSS Score:
- CVE-2026-76698 - 4.11 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76698)
- CVE-2026-89308 - 2.97 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-89308)
- CVE-2026-90702 - 2.80 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-90702)
- CVE-2026-90703 - 2.80 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-90703)
- CVE-2026-92398 - 2.47 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-92398)
- CVE-2026-92397 - 2.30 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-92397)
- CVE-2026-27560 - 2.22 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-27560)
- CVE-2026-27561 - 2.22 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-27561)
- CVE-2026-27562 - 2.22 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-27562)
- CVE-2026-90847 - 2.18 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-90847)
updated 2026-09-16T00:32:25
1 posts
1 repos
Docker Sandboxes 0.42.0 security update: CVE-2026-77179 and CVE-2026-79994 #devopsish https://docs.docker.com/security/security-announcements/#docker-sandboxes-0420-security-update-cve-2026-77179-and-cve-2026-79994
##updated 2026-09-15T19:17:46.767000
1 posts
1 repos
📈 CVE Published in last 7 days (2026-09-14 - 2026-09-14)
See more at https://secdb.nttzen.cloud/dashboard
Total CVEs:
Severity:
- Critical: 478
- High: 2067
- Medium: 1314
- Low: 307
- None: 680
Status:
- : 35
- Analyzed: 339
- Awaiting Analysis: 1126
- Deferred: 1117
- Modified: 32
- Received: 1943
- Rejected: 28
- Undergoing Analysis: 226
CISA KEVs:
- CISA-2026:0914 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0914)
- CISA-2026:0916 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0916)
- CISA-2026:0918 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0918)
Top CNAs:
- kernel.org: 878
- Oracle: 634
- GitHub, Inc.: 587
- VulnCheck: 434
- Apple Inc.: 246
- VulDB: 243
- IBM Corporation: 174
- WPScan: 151
- Wordfence: 128
- MITRE: 106
Top Affected Products:
- UNKNOWN: 3691
- Apple Macos: 214
- Apple Iphone Os: 132
- Apple Ipados: 132
- Apple Visionos: 95
- Apple Watchos: 81
- Apple Tvos: 78
- Oracle Hyperion Financial Management: 70
- Google Android: 47
- Google Chrome: 46
Top EPSS Score:
- CVE-2026-76698 - 4.11 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76698)
- CVE-2026-89308 - 2.97 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-89308)
- CVE-2026-90702 - 2.80 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-90702)
- CVE-2026-90703 - 2.80 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-90703)
- CVE-2026-92398 - 2.47 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-92398)
- CVE-2026-92397 - 2.30 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-92397)
- CVE-2026-27560 - 2.22 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-27560)
- CVE-2026-27561 - 2.22 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-27561)
- CVE-2026-27562 - 2.22 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-27562)
- CVE-2026-90847 - 2.18 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-90847)
updated 2026-09-15T18:19:38.113000
1 posts
📈 CVE Published in last 7 days (2026-09-14 - 2026-09-14)
See more at https://secdb.nttzen.cloud/dashboard
Total CVEs:
Severity:
- Critical: 478
- High: 2067
- Medium: 1314
- Low: 307
- None: 680
Status:
- : 35
- Analyzed: 339
- Awaiting Analysis: 1126
- Deferred: 1117
- Modified: 32
- Received: 1943
- Rejected: 28
- Undergoing Analysis: 226
CISA KEVs:
- CISA-2026:0914 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0914)
- CISA-2026:0916 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0916)
- CISA-2026:0918 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0918)
Top CNAs:
- kernel.org: 878
- Oracle: 634
- GitHub, Inc.: 587
- VulnCheck: 434
- Apple Inc.: 246
- VulDB: 243
- IBM Corporation: 174
- WPScan: 151
- Wordfence: 128
- MITRE: 106
Top Affected Products:
- UNKNOWN: 3691
- Apple Macos: 214
- Apple Iphone Os: 132
- Apple Ipados: 132
- Apple Visionos: 95
- Apple Watchos: 81
- Apple Tvos: 78
- Oracle Hyperion Financial Management: 70
- Google Android: 47
- Google Chrome: 46
Top EPSS Score:
- CVE-2026-76698 - 4.11 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76698)
- CVE-2026-89308 - 2.97 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-89308)
- CVE-2026-90702 - 2.80 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-90702)
- CVE-2026-90703 - 2.80 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-90703)
- CVE-2026-92398 - 2.47 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-92398)
- CVE-2026-92397 - 2.30 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-92397)
- CVE-2026-27560 - 2.22 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-27560)
- CVE-2026-27561 - 2.22 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-27561)
- CVE-2026-27562 - 2.22 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-27562)
- CVE-2026-90847 - 2.18 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-90847)
updated 2026-09-15T12:31:54
1 posts
📈 CVE Published in last 7 days (2026-09-14 - 2026-09-14)
See more at https://secdb.nttzen.cloud/dashboard
Total CVEs:
Severity:
- Critical: 478
- High: 2067
- Medium: 1314
- Low: 307
- None: 680
Status:
- : 35
- Analyzed: 339
- Awaiting Analysis: 1126
- Deferred: 1117
- Modified: 32
- Received: 1943
- Rejected: 28
- Undergoing Analysis: 226
CISA KEVs:
- CISA-2026:0914 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0914)
- CISA-2026:0916 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0916)
- CISA-2026:0918 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0918)
Top CNAs:
- kernel.org: 878
- Oracle: 634
- GitHub, Inc.: 587
- VulnCheck: 434
- Apple Inc.: 246
- VulDB: 243
- IBM Corporation: 174
- WPScan: 151
- Wordfence: 128
- MITRE: 106
Top Affected Products:
- UNKNOWN: 3691
- Apple Macos: 214
- Apple Iphone Os: 132
- Apple Ipados: 132
- Apple Visionos: 95
- Apple Watchos: 81
- Apple Tvos: 78
- Oracle Hyperion Financial Management: 70
- Google Android: 47
- Google Chrome: 46
Top EPSS Score:
- CVE-2026-76698 - 4.11 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76698)
- CVE-2026-89308 - 2.97 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-89308)
- CVE-2026-90702 - 2.80 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-90702)
- CVE-2026-90703 - 2.80 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-90703)
- CVE-2026-92398 - 2.47 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-92398)
- CVE-2026-92397 - 2.30 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-92397)
- CVE-2026-27560 - 2.22 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-27560)
- CVE-2026-27561 - 2.22 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-27561)
- CVE-2026-27562 - 2.22 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-27562)
- CVE-2026-90847 - 2.18 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-90847)
updated 2026-09-14T21:32:49
1 posts
4 repos
https://github.com/HORKimhab/CVE-2026-76461
https://github.com/fevar54/CVE-2026-76461-Detection-Kit-
🔎 NEXUS8 WEEKLY DIGEST · 💥 EXPLOIT
Cisco patches actively exploited email gateway zero-day (CVE-2026-76461)
Criminals are exploiting a critical Cisco Secure Email Gateway flaw that can turn a malicious email into root access. The vulnerability, tracked as CVE-2026-76461, carries a 9.8 CVSS score and affects physical and…
Also tracked this week: Zero-Day Flaw in TP-Link Cameras Enables Eavesdropping · Check Point, Kaspersky, Tanium…
##updated 2026-09-14T18:31:23
1 posts
CVE-2026-19499: glibc 2.38-2.44 strfmon buffer overflow via right-justified padding. CVSS 7.7. Unpatched. Audit risky calls, update now.
https://www.valtersit.com/cve/CVE-2026-19499/
#CVE #infosec #glibc
updated 2026-09-14T12:31:44
1 posts
CVE-2026-90894 Parallels Desktop: local root RCE via unsanitized sVmParentPath, tar injection in prl_disp_service. CVSS 7.8. Unpatched. Patch or restrict socket access now. https://www.valtersit.com/cve/CVE-2026-90894/ #CVE #infosec #Parallels
##updated 2026-09-14T12:31:44
1 posts
📈 CVE Published in last 7 days (2026-09-14 - 2026-09-14)
See more at https://secdb.nttzen.cloud/dashboard
Total CVEs:
Severity:
- Critical: 478
- High: 2067
- Medium: 1314
- Low: 307
- None: 680
Status:
- : 35
- Analyzed: 339
- Awaiting Analysis: 1126
- Deferred: 1117
- Modified: 32
- Received: 1943
- Rejected: 28
- Undergoing Analysis: 226
CISA KEVs:
- CISA-2026:0914 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0914)
- CISA-2026:0916 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0916)
- CISA-2026:0918 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0918)
Top CNAs:
- kernel.org: 878
- Oracle: 634
- GitHub, Inc.: 587
- VulnCheck: 434
- Apple Inc.: 246
- VulDB: 243
- IBM Corporation: 174
- WPScan: 151
- Wordfence: 128
- MITRE: 106
Top Affected Products:
- UNKNOWN: 3691
- Apple Macos: 214
- Apple Iphone Os: 132
- Apple Ipados: 132
- Apple Visionos: 95
- Apple Watchos: 81
- Apple Tvos: 78
- Oracle Hyperion Financial Management: 70
- Google Android: 47
- Google Chrome: 46
Top EPSS Score:
- CVE-2026-76698 - 4.11 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76698)
- CVE-2026-89308 - 2.97 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-89308)
- CVE-2026-90702 - 2.80 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-90702)
- CVE-2026-90703 - 2.80 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-90703)
- CVE-2026-92398 - 2.47 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-92398)
- CVE-2026-92397 - 2.30 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-92397)
- CVE-2026-27560 - 2.22 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-27560)
- CVE-2026-27561 - 2.22 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-27561)
- CVE-2026-27562 - 2.22 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-27562)
- CVE-2026-90847 - 2.18 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-90847)
updated 2026-09-10T15:34:08
1 posts
2 repos
A critical Android Telecom vulnerability (CVE-2026-49881) allows remote code execution. Read the analysis and learn how to secure your device today.
##updated 2026-09-09T05:18:17.173000
1 posts
Microsoft shipped its largest patch batch to date with at least 974 fixes, including 113 rated Critical. Two local EoP flaws, CVE-2026-81963 and CVE-2026-85880, are under active exploitation and enable SYSTEM privileges, making immediate triage essential. #PatchTuesday #WindowsSecurity #VulnManagement
https://cyberworldops.eu/en/microsoft-s-974-fix-security-release-forces-a-triage-test-for-windows
##updated 2026-09-08T21:34:12
1 posts
Microsoft shipped its largest patch batch to date with at least 974 fixes, including 113 rated Critical. Two local EoP flaws, CVE-2026-81963 and CVE-2026-85880, are under active exploitation and enable SYSTEM privileges, making immediate triage essential. #PatchTuesday #WindowsSecurity #VulnManagement
https://cyberworldops.eu/en/microsoft-s-974-fix-security-release-forces-a-triage-test-for-windows
##updated 2026-09-08T09:35:45
1 posts
Siemens Patches Root-Level File Upload Flaw in Siveillance Control OIS Module
Siemens patched a critical root-level file upload vulnerability (CVE-2026-50093) in the Siveillance Control OIS web module that affects physical security management systems worldwide.
**If you use Siemens Siveillance Control or Control Pro, make sure all these systems are isolated from the internet and the OIS web module is reachable only from trusted internal networks. Then update right away to the fixed version for your edition.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/siemens-patches-root-level-file-upload-flaw-in-siveillance-control-ois-module-t-9-0-l-g/gD2P6Ple2L
updated 2026-09-08T09:18:05.213000
1 posts
100 repos
https://github.com/jason5545/ghostlock-myron-tw
https://github.com/accessmodifier364/cve-2026-43499-firetv-sheldonp-writeup
https://github.com/2932796375github/CVE-2026-43499_OPPO-MT6835
https://github.com/woshimaniubi8/CVE-2026-43499-root-KernelSU
https://github.com/cuteaplane/GhostLock-for-OnePlus15T
https://github.com/NanoTurtle1145/root-my-s24
https://github.com/Bobikl/CVE-2026-43499-T807D
https://github.com/Colorful-glassblock/duchamp-root
https://github.com/ccp-p/ghostlock-cve-2026-43499-4.19-k40
https://github.com/MobiusM/CVE-2026-43499
https://github.com/hybLOVE/iqoo-temp-root
https://github.com/fusiondrive/CVE-2026-43499-A36
https://github.com/mumaosong/cve-2026-43499-CyberMeowfia
https://github.com/yakidango-official/GhostLock-H80GT
https://github.com/BuSung-dev/CVE-2026-43499-S25U
https://github.com/CakesTwix/Android-CVE-2026-43499
https://github.com/Bailan766/rmx3888-cve-2026-43499-config
https://github.com/xiaohj233/ghostlock-x200-root
https://github.com/YuKongA/ghostlock-app
https://github.com/PeronGH/ghostlock-selinux-disabler
https://github.com/ctn-Qvo/auto_extract_offsets
https://github.com/knowlily/cve-2026-43499-honor
https://github.com/xianwan1314/CVE-2026-43499-Poc-Analysis
https://github.com/pimpamebanihah/cve-2026-43499-app.so
https://github.com/Linuxoid-cn/Mi8E5-Unlocker-by-CVE-2026-43499
https://github.com/p2p3p/GhostLock-for-OnePlus
https://github.com/1ndevelopment/ghostlock-s26
https://github.com/hackyangwen-lgtm/rmg-s9180-fzg1
https://github.com/WitAqua-tools/Root-My-Device
https://github.com/yijiacloud/ghostlock-cve-2026-43499-4.19-k40
https://github.com/gagaltotal/CVE-2026-43499-PoC-Scanner
https://github.com/soralis0912/CVE-2026-43499-aristotle-apk
https://github.com/Petalrain224/CVE-2026-43499-Redmi-Turbo5
https://github.com/ankitrawatgit/iQOO-Z9_5G-vivo-T3_5G-Root-GhostLock
https://github.com/XingChenRS/CyberMeowfiaNS
https://github.com/boxiaolanya2008/CVE-2026-43499-Neo11Plus
https://github.com/wxxsfxyzm/GhostLock-Galaxy
https://github.com/caspy123/CVE-2026-43499
https://github.com/soralis0912/CVE-2026-43499-pmg110-root
https://github.com/tc3650/CVE-2026-43499-armv7
https://github.com/justsoman/CVE-2026-43499-jinghu
https://github.com/datfooldive/ghostlock-emerald
https://github.com/dmcdtc/openvz-cve-patch-2026
https://github.com/hui191/cve-2026-43499-aak-an00
https://github.com/pubglite55/oppo-ghostlock
https://github.com/xrzcc/s26-m1q-ghostlock-selinux
https://github.com/TheAndersMadsen/humane-aipin-ghostlock
https://github.com/alex193a/Root-My-Pixel
https://github.com/HYCQAQ/Logitech-G-Cloud-GhostLock-CVE-2026-43499
https://github.com/gitchw/ghostlock-cve-2026-43499
https://github.com/MiaPatsune/cve-2026-43499
https://github.com/233laoliu/mt6985-CVE-2026-43499
https://github.com/joehquak/Mi8E5-Unlocker-by-CVE-2026-43499
https://github.com/soralis0912/CVE-2026-43499-aristotle
https://github.com/NothingFumo/ghostlock-aresin
https://github.com/mobilehackinglab/ghostlock-a17
https://github.com/ctn-Qvo/CVE-2026-43499-so-build
https://github.com/huaguiqi/asus-i005-cve-2026-43499
https://github.com/R0rt1z2/GhostLock
https://github.com/yijiacloud/GhostLock-OPPO-PCKM00
https://github.com/slapah/ghostlock-h8q
https://github.com/oopnv70-lab/ghostlock-honor-aak
https://github.com/eroorvbsyes-hotmail/CVE-2026-43499_x86_Exploit
https://github.com/soralis0912/CVE-2026-43499-warhol-root
https://github.com/x-spy/CVE-2026-43499-popsicle
https://github.com/k-o-n-t-o-r/ghostlock-sabrina
https://github.com/dorlow/hazel-cve-2026-43499
https://github.com/Meowkis/tcp-zerocopy-sm
https://github.com/sorrow404Null/CVE-2026-43499-RMX5200
https://github.com/inforcqb/CVE-2026-43499-pja110
https://github.com/XiaoBaiLovesStirring/ghostlock-k419-adapter
https://github.com/fusiondrive/CVE-2026-43499-ZFOLD4
https://github.com/zenyxx-xd/RootMyVivo
https://github.com/dnlid/CVE-2026-43499
https://github.com/CatXiaoShi/cve-2026-43499
https://github.com/fancyzll/CVE-2026-43499_OPPO-MT6835
https://github.com/Bartixxx32/CVE-2026-43499-OnePlus15
https://github.com/Wtrwx/smt878u-ionstack-poc
https://github.com/zhubaohe123/ghostlock-kit
https://github.com/sarabpal-dev/IonStack-S22U
https://github.com/onesmiledx/CVE-2026-43499
https://github.com/Cxyofficial/x200-cve-2026-43499
https://github.com/fusiondrive/CVE-2026-43499-S24U
https://github.com/ReBiliBin/ghostlock-oppo-watch3pro
https://github.com/BuSung-dev/Root-My-Galaxy
https://github.com/snothin/ghostlock-s26
https://github.com/HORKimhab/CVE-2026-43499
https://github.com/Thiasap/oppo-pgem10-ghostlock
https://github.com/oopnv70-lab/ghostlock-apk
https://github.com/SammyEnigma/CVE-2026-43499-S26
https://github.com/0xBlackash/CVE-2026-43499
https://github.com/veygax/HORiZonstack
https://github.com/Bugel/cve-2026-43499-m3q-azf1
https://github.com/hmascs/KSuRoot
https://github.com/lkeld/CVE-2026-43499-poc
https://github.com/oopnv70-lab/ghostlock-aak-apk
https://github.com/No-22-Github/UnPlus
https://github.com/zzzxxxxxxxxxx/GhostLock-GOT-W29
IonStack: 1-Click Browser to Kernel Full-Chain to Get Root Shell on Android 17
Nebula Security는 Firefox JIT 취약점(CVE-2026-10702)과 Linux 커널 futex priority-inheritance 경로의 15년 된 stack use-after-free인 GhostLock(CVE-2026-43499)을 연결해, 웹페이지 한 번의 방문만으로 Pixel 10의 Android 17에서 루트 셸을 얻는 체인을 발표했다. 첫 취약점은 Fire...
##updated 2026-09-07T12:30:36
5 posts
📢 [VULN] D-Link alerte sur une faille de gravité maximale dans l’un de ses routeurs, le code pour l’exploiter est déjà public CVE-2026-86296
D-Link enquête sur une faille critique qui touche ses routeurs DIR-822A. Exploitable sans authentification, elle dispose déjà d’un code d’exploitation public et n’a pour l’heure aucun correctif.
🔗 https://www.clubic.com/actualite-630922-d-link-alerte-sur-une-faille-de-gravite-maximale-dans-l-un-de-ses-routeurs-le-code-pour-l-exploiter-est-deja-public.html
💬 discussion : https://infosec.pub/post/52678117
#CVE #Cyberveille
Discover the critical CVE-2026-86296 vulnerability in D-Link DIR-822A routers. Learn how this DHCP flaw allows attackers to execute arbitrary code locally.
##Discover the critical CVE-2026-86296 vulnerability in D-Link DIR-822A routers. Learn how this DHCP flaw allows attackers to execute arbitrary code locally.
##D-Link warns of two major bugs with public POCs
CVE-2026-86296: https://supportannouncement.us.dlink.com/security/publication.aspx?name=SAP10516
CVE-2026-93958: https://supportannouncement.us.dlink.com/security/publication.aspx?name=SAP10518
##D-Link warns of max severity zero-day bug in DIR-822A routers
D-Link warned customers of a maximum-severity vulnerability (CVE-2026-86296) with public proof-of-concept (PoC) exploit code and no patch,...
🔗️ [Bleepingcomputer] https://link.is.it/hXngI9
##updated 2026-09-05T00:31:10
1 posts
🔒 New CSAF advisory published
VDE-2026-089
Lenze: VPN Client Remote Code Execution in combination with Lenze x500 IoT Gateway
CVE-2026-75925
The Lenze VPN client is vulnerable to a Remote Code Execution. The vulnerability would allow an attacker to perform a remote code execution on the computer running the client with elevated privile…
HTML: https://certvde.com/en/advisories/VDE-2026-089
CSAF JSON: https://lenze.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-089.json
updated 2026-08-31T21:04:41
1 posts
1 repos
🚨 EUVD-2026-85235
📊 Score: n/a
📦 Product: Apache Tomcat, Apache Tomcat, Apache Tomcat
🏢 Vendor: Apache Software Foundation
📅 Updated: 2026-09-23
📝 Inconsistent interpretation of HTTP/2 requests ('HTTP Request/Response smuggling') vulnerability in Apache Tomcat caused by a regression in fix for CVE-2026-41293 can trigger request header mix-up.
This issue affect...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-85235
##updated 2026-08-26T16:49:18.760000
2 posts
1 repos
The DJI Bluetooth vulnerability CVE-2026-78306 lets a nearby attacker send unauthenticated DUML commands to 16 drone models. Update firmware now.
#DJI #CVE202678306 #Bluetooth #DroneSecurity #DUML #CyberSecurity
https://meterpreter.org/dji-bluetooth-vulnerability/?utm_source=mastodon&utm_medium=jetpack_social
##The DJI Bluetooth vulnerability CVE-2026-78306 lets a nearby attacker send unauthenticated DUML commands to 16 drone models. Update firmware now.
#DJI #CVE202678306 #Bluetooth #DroneSecurity #DUML #CyberSecurity
https://meterpreter.org/dji-bluetooth-vulnerability/?utm_source=mastodon&utm_medium=jetpack_social
##updated 2026-08-25T15:33:26
1 posts
45 repos
https://github.com/josephfelix/CVE-2026-42945-nginx-rift
https://github.com/Kentox493/CVE-2026-42945_NginxRift
https://github.com/forxiucn/nginx-cve-2026-42945-poc
https://github.com/azilRababe/CVE-2026-42945
https://github.com/BarAppTeam/nginx-cve-fix
https://github.com/cipherspy/CVE-2026-42945-POC
https://github.com/dinosn/cve-2026-42945-nginx32-lab
https://github.com/quantumworld-dpdns-io/CVE-2026-42945
https://github.com/ChamsBouzaiene/ai-vuln-rediscovery-nginx-cve-2026-42945
https://github.com/limo57640-crypto/nginx-rift-detector
https://github.com/nanwinata/nginxrift-CVE-2026-42945
https://github.com/strivepan/Nginx_cve-2026-42945-scanner-gui
https://github.com/hulina9900-boop/DIY-CVE-2026-42945-POC
https://github.com/soksofos/wazuh-nginx-cve-2026-42945-sca-lab
https://github.com/oseasfr/Scanner_CVE_2026-42945
https://github.com/MateusVerass/nGixshell
https://github.com/byezero/nginx-cve-2026-42945-check
https://github.com/webdev75950-ux/nginx-rce-cve-2026-42945
https://github.com/realityone/cve-2026-42945-scan
https://github.com/CynepMyx/nginx-rift-check
https://github.com/aratane/CVE-2026-42945
https://github.com/sibersan/web-server-audit_CVE-2026-42945
https://github.com/jelasin/CVE-2026-42945
https://github.com/gagaltotal/CVE-2026-42945-NGINX-Rift-Toolkit
https://github.com/LiaoZiqi-GZFLS/CVE-2026-42945
https://github.com/lowilol/CVE-2026-42945-NGINX-Rift-Check-Script
https://github.com/Renison-Gohel/CVE-2026-42945-NGINX-Rift
https://github.com/0xBlackash/CVE-2026-42945
https://github.com/imSre9/CVE-2026-42945
https://github.com/friparia/NGINX_RIFT_SCAN_CVE_2026_42945
https://github.com/yusufdalbudak/CVE-2026-42945
https://github.com/FranklinF25/cve-2026-42945
https://github.com/rheodev/CVE-2026-42945
https://github.com/hnytgl/CVE-2026-42945
https://github.com/RedCrazyGhost/CVE-2026-42945
https://github.com/p3Nt3st3r-sTAr/CVE-2026-42945-POC
https://github.com/F2u0a0d3/CVE-2026-42945-nginx-rift-poc
https://github.com/iammerrida-source/nginx-rift-detect
https://github.com/sec-sys/CVE-2026-42945-Reverse-Shell-POC
https://github.com/simota/nginx-rift-scanner
https://github.com/nu0l/NGINX-Rift
https://github.com/fkj-src/fix_nginx_cve_2026_42945
https://github.com/chenqin231/CVE-2026-42945
Nginx Rift is a proof of concept for CVE-2026-42945, a heap buffer overflow in NGINX's rewrite module that allows unauthenticated remote code execution on servers using rewrite and set directives
The README lists affected and fixed versions
updated 2026-08-19T04:17:24.940000
3 posts
2 repos
@nyanbinary @cR0w here's one
(from the writeup to CVE-2026-59310 from July/August).
Point at the variables in the picture that traversed your path inappropriately...
https://mobeta.fr/blog/vcenter-cve-2026-59309-cve-2026-59310/
@nyanbinary @cR0w here's one
(from the writeup to CVE-2026-59310 from July/August).
Point at the variables in the picture that traversed your path inappropriately...
https://mobeta.fr/blog/vcenter-cve-2026-59309-cve-2026-59310/
vCenter pre-auth RCE: CVE-2026-59309/59310 https://mobeta.fr/blog/vcenter-cve-2026-59309-cve-2026-59310/
##updated 2026-08-18T18:32:50
1 posts
5 repos
https://github.com/virologi-info/mssharepoint-scanner
https://github.com/sfewer-r7/CVE-2026-55040
https://github.com/maxprog-svg/CVE-2026-55040-Mass-Exploit
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2026-08-18T18:31:46
1 posts
2 repos
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2026-08-16T19:17:24.183000
1 posts
4 repos
https://github.com/ubitquity/Windows-WinSock-UAF-Mitigation
https://github.com/maxprog-svg/CVE-2026-68820_Mass_Exploit
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2026-08-11T18:31:43
5 posts
Microsoft Upgrades SharePoint Flaw From Spoofing to 8.8 RCE
A SharePoint Server vulnerability tracked as CVE-2026-65660 turned out to be far more serious than Microsoft first indicated. The company
🔗️ [Thecyberexpress] https://link.is.it/qUvtLM
##Microsoft Upgrades SharePoint Flaw From Spoofing to 8.8 RCE
A SharePoint Server vulnerability tracked as CVE-2026-65660 turned out to be far more serious than Microsoft first indicated. The company
🔗️ [Thecyberexpress] https://link.is.it/qUvtLM
##SharePoint CVE-2026-65660: From Anonymous Access to Pre-Auth RCE via EditingPageParser Type-Check Bypass https://blog.viettelcybersecurity.com/sharepoint_cve-2026-65660/
##https://thecybersecguru.com/news/cve-2026-65660-sharepoint-rce/
##CVE-2026-65660 reportedly enables authenticated, low-privilege attackers to execute arbitrary code remotely on SharePoint Server. Its initial spoofing classification makes accurate advisory tracking and impact reassessment especially important. #SharePointSecurity #VulnerabilityManagement #ThreatIntelligence
https://cyberworldops.eu/en/sharepoint-code-injection-flaw-opens-a-low-privilege-route-to-remote
##updated 2026-08-10T18:30:39
1 posts
14 repos
https://github.com/horizon3ai/proxyshell
https://github.com/kh4sh3i/ProxyShell
https://github.com/cyberheartmi9/Proxyshell-Scanner
https://github.com/Udyz/proxyshell-auto
https://github.com/W01fh4cker/Serein
https://github.com/RaouzRouik/CVE-2021-34473-scanner
https://github.com/hosch3n/ProxyVulns
https://github.com/je6k/CVE-2021-34473-Exchange-ProxyShell
https://github.com/ipsBruno/CVE-2021-34473-NMAP-SCANNER
https://github.com/f4alireza/CVE
https://github.com/mithridates1313/ProxyShell_POC
https://github.com/p2-98/CVE-2021-34473
https://github.com/learningsurface/ProxyShell-CVE-2021-34473.py
Ungepatchte Exchange-Server mit kritischer Sicherheitslücke
CVE-2021-34473: "Microsoft Exchange Server Remote Code Execution Vulnerability"
Volkshochschule in Amberg, Landkreis Merzig-Wadern und mehreren Stadtverwaltungen: Bernsdorf, Bleckede, Dachau, Erkner, Heilbald Heiligenstadt, Klötze, Mölln, Plauen, Rendsburg, Sassnitz, Stadtbergen, Sulzbach Saar, Vellmar und im Exchange-Server im Theater in Freiburg, ...
c't Artikel: https://www.heise.de/news/Verwundbare-Exchange-Server-der-oeffentlichen-Verwaltung-6320504.html
##updated 2026-08-04T13:18:24.733000
1 posts
Cloud Takeover: Mass Scanning for Exposed Vite Endpoints (CVE-2026-39364), by @f5labs.bsky.social:
##updated 2026-07-30T15:31:54
3 posts
@nyanbinary @cR0w here's one
(from the writeup to CVE-2026-59310 from July/August).
Point at the variables in the picture that traversed your path inappropriately...
https://mobeta.fr/blog/vcenter-cve-2026-59309-cve-2026-59310/
@nyanbinary @cR0w here's one
(from the writeup to CVE-2026-59310 from July/August).
Point at the variables in the picture that traversed your path inappropriately...
https://mobeta.fr/blog/vcenter-cve-2026-59309-cve-2026-59310/
vCenter pre-auth RCE: CVE-2026-59309/59310 https://mobeta.fr/blog/vcenter-cve-2026-59309-cve-2026-59310/
##updated 2026-07-27T18:31:25
1 posts
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2026-07-27T12:32:01
1 posts
Hardware Hacking: From zero to a Pre-Auth Stack Buffer Overflow on Amazon's best-selling router https://rotcee.github.io/posts/analyzing-the-mersusys-mb115-4g-router/#cve-2026-12495-finding-a-pre-auth-stack-buffer-overflow-in-the-mercusys-mb115-4g
##updated 2026-07-24T10:10:00.197000
1 posts
4 repos
https://github.com/0xBlackash/CVE-2026-41091
https://github.com/tc4dy/CVE-2026-41091-PoC-Exploit
https://github.com/ridhinva/defender-privilege-escalation-scanner
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2026-07-23T11:10:00.120000
1 posts
2 repos
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2026-07-22T21:31:51
1 posts
5 repos
https://github.com/HORKimhab/CVE-2026-50522
https://github.com/darses/CVE-2026-50522
https://github.com/4minx/CVE-2026-50522
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2026-07-22T19:10:00.120000
1 posts
1 repos
IonStack: 1-Click Browser to Kernel Full-Chain to Get Root Shell on Android 17
Nebula Security는 Firefox JIT 취약점(CVE-2026-10702)과 Linux 커널 futex priority-inheritance 경로의 15년 된 stack use-after-free인 GhostLock(CVE-2026-43499)을 연결해, 웹페이지 한 번의 방문만으로 Pixel 10의 Android 17에서 루트 셸을 얻는 체인을 발표했다. 첫 취약점은 Fire...
##updated 2026-07-13T17:24:48
1 posts
sev:CRIT bypass of CVE-2026-47065 in Apache MINA.
https://nvd.nist.gov/vuln/detail/cve-2026-94301
##The fix for CVE-2026-47065/ZDRES-232 ("resolveProxyClass Not Overridden - acceptMatchers Filter Bypass via java.lang.reflect.Proxy"), released on 2026-06-02 and announced as "Fully addressed" in MINA 2.2.8, 2.1.13 and 2.0.29, was committed to the 2.2.X branch only. The 2.0.X and 2.1.X maintenance branches never received the resolveProxyClass() override, so the 2.0.29 and 2.1.13 artifacts listed as fixed -- and every later release on those lines, up to and including the current 2.0.30 and 2.1.14 -- remain vulnerable to the exact allow-list bypass that CVE-2026-47065 was meant to close.
updated 2026-06-17T10:56:50.843000
1 posts
CVE-2026-45756: attacker-controlled regex in Symfony JsonPath filters (ReDoS) https://daubois.dev/blog/cve-2026-45756-symfony-jsonpath-redos/
##updated 2026-06-17T10:02:16.587000
1 posts
Schneider Electric Modicon M340 controllers and comm modules are vulnerable to DoS via crafted FTP command (CVE-2025-6625, CVSS 7.5, CWE-20). Remote low-complexity exploitation can take OT devices offline, impacting process availability. Apply vendor mitigations and restrict FTP exposure. #IcsSecurity #SchneiderElectric #Cve20256625
https://cyberworldops.eu/en/crafted-ftp-command-can-knock-schneider-electric-modicon-m340-devices
##updated 2026-06-17T05:29:31.353000
4 posts
PolarEdge: Unveiling an uncovered ORB network
Discover PolarEdge, a newly identified botnet targeting edge devices via CVE-2023-20118, using a stealthy TLS backdoor.
🔗️ [Sekoia] https://link.is.it/PmRTZ9
##PolarEdge: Unveiling an uncovered ORB network
Discover PolarEdge, a newly identified botnet targeting edge devices via CVE-2023-20118, using a stealthy TLS backdoor.
🔗️ [Sekoia] https://link.is.it/PmRTZ9
##PolarEdge: Unveiling an uncovered ORB network
Discover PolarEdge, a newly identified botnet targeting edge devices via CVE-2023-20118, using a stealthy TLS backdoor.
🔗️ [Sekoia] https://link.is.it/PmRTZ9
##PolarEdge: Unveiling an uncovered ORB network
Discover PolarEdge, a newly identified botnet targeting edge devices via CVE-2023-20118, using a stealthy TLS backdoor.
🔗️ [Sekoia] https://link.is.it/PmRTZ9
##updated 2026-06-17T05:04:59.630000
1 posts
9 repos
https://github.com/scrt/cve-2022-42475
https://github.com/ArthurHendrich/CVE-2022-42475-POC
https://github.com/uLl0a/cve-2022-42475-poc
https://github.com/Mustafa1986/cve-2022-42475-Fortinet
https://github.com/0xhaggis/CVE-2022-42475
https://github.com/bryanster/ioc-cve-2022-42475
https://github.com/Amir-hy/cve-2022-42475
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2026-06-17T03:19:58.553000
1 posts
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2026-05-28T17:34:56
1 posts
CVE-2026-45756: attacker-controlled regex in Symfony JsonPath filters (ReDoS) https://daubois.dev/blog/cve-2026-45756-symfony-jsonpath-redos/
##updated 2026-05-28T06:31:09
3 posts
1 repos
Veeam Agent LPE PoC https://github.com/suce0155/CVE-2026-32996
##Zyxel GS1900 switches (CVE-2026-7273) and Veeam Agent for Microsoft Windows (CVE-2026-32996) are under active exploitation. The former allows unauthenticated LAN command execution via CGI buffer overflow, the latter enables SYSTEM-level access on endpoints. Both expand persistence and backup tampering risk. #Zyxel #Veeam #ThreatIntel #VulnManagement
https://cyberworldops.eu/en/active-attacks-put-zyxel-switches-and-veeam-protected-windows
##A critical exploited Veeam Agent vulnerability (CVE-2026-32996) is under active attack. Public PoC exploit code has been disclosed. Update systems now.
##updated 2026-03-27T21:32:39
1 posts
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2026-03-27T21:31:32
1 posts
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2026-02-10T21:31:29
1 posts
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2026-01-13T21:31:44
1 posts
6 repos
https://github.com/Uzair-Baig0900/CVE-2026-20805-PoC
https://github.com/SimoesCTT/-SCTT-2026-33-0002-DWM-Visual-Field-Singularity
https://github.com/mrk336/Inside-CVE-2026-20805-How-a-Windows-DWM-Flaw-Exposed-Sensitive-Data
https://github.com/fevar54/CVE-2026-20805-POC
https://github.com/SimoesCTT/SCTT-2026-33-0002-DWM-Visual-Field-Singularity
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2025-11-04T00:30:30
1 posts
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2025-10-22T00:34:05
1 posts
1 repos
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2025-10-22T00:32:27
1 posts
1 repos
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##2 posts
2 repos
Next.js 16.3.6 fixes critical ImageResponse RCE (CVE-2026-94545)
Next.js가 Node.js 기반 `next/og`의 ImageResponse에서 원격 코드 실행(RCE)으로 이어질 수 있는 치명적 취약점(CVE-2026-94545)을 수정한 16.3.6 긴급 업데이트를 배포했다. 영향 범위는 Next.js 16.2.0 이상 16.3.6 미만이며, Satori가 생성하는 SVG의 부적절한 이스케이프와 상위 의존성 취약점 조합이 원인이다. Edge ImageResponse 구현은 영향받지 않지만, Node.js 런타임에서 OG 이미지 생성 기능을 쓰는 서비스는 즉시 `next@16.3.6`으로 업데이트해야 한다....
https://nextjs.org/blog/nextjs-security-update-september-22-2026
##Vercel fixed a critical Next.js RCE vulnerability in image generation. Update to patch this Next.js RCE vulnerability and secure your apps.
#Nextjs #CVE202694545 #RCE #Cybersecurity #WebSecurity #Vulnerability
##🏆 New Achievement! Triple Threat, Zero Regrets!
PATCH NOTES v0.0.0 — KNOWN ISSUES: A China-aligned threat group has successfully shipped a three-zero-day exploit chain targeting Google Chrome and Microsoft Windows. ADDED: coordinated weaponization across CVE-2024-85046, CVE-2024-87491, and CVE-2024-85880. FIXED: nothing on your end, apparently. DEPRECATED: the assumption that one vendor's unpatched flaw is somebody else's problem. (1/2)
##🏆 New Achievement! Triple Threat, Zero Regrets!
PATCH NOTES v0.0.0 — KNOWN ISSUES: A China-aligned threat group has successfully shipped a three-zero-day exploit chain targeting Google Chrome and Microsoft Windows. ADDED: coordinated weaponization across CVE-2024-85046, CVE-2024-87491, and CVE-2024-85880. FIXED: nothing on your end, apparently. DEPRECATED: the assumption that one vendor's unpatched flaw is somebody else's problem. (1/2)
##🏆 New Achievement! Triple Threat, Zero Regrets!
PATCH NOTES v0.0.0 — KNOWN ISSUES: A China-aligned threat group has successfully shipped a three-zero-day exploit chain targeting Google Chrome and Microsoft Windows. ADDED: coordinated weaponization across CVE-2024-85046, CVE-2024-87491, and CVE-2024-85880. FIXED: nothing on your end, apparently. DEPRECATED: the assumption that one vendor's unpatched flaw is somebody else's problem. (1/2)
##CVE-2026-89090 - Denial of service in the event stream header decoder in AWS SDK for Go v2
Bulletin ID: 2026-110-AWS
Scope: AWS
Content Type: Important (requires attention)
Publication Date: 09/11/2026 10:00 AM PDT
Description:
An issue exists in the the EventStream header decoder in AWS SDK for Go v2 in versio...
https://aws.amazon.com/security/security-bulletins/rss/2026-110-aws/
##🔴 CVE-2026-79916 - Critical (9.1)
MaxKB is an open-source AI assistant for enterprise. Prior to 2.10.5-lts, authenticated workspace members can inject control characters into AWS Bedrock access_key_id and secret_access_key fields that _update_aws_credentials writes to /root/.aws/c...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-79916/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-73550 - High (7.5)
Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.36.10, 1.37.6, 1.38.4, and 1.39.1, Envoy copies every decoded HTTP/2 Host header value before discarding it when :authority is already present. The d...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-73550/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-73552 - High (7.5)
Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.36.10, 1.37.6, 1.38.4, and 1.39.1, Envoy HTTP RBAC accepts RFC-valid opaque header bytes but evaluates safe_regex values with RE2's UTF-8 subject sem...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-73552/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-73548 - High (7.5)
Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.36.10, 1.37.6, 1.38.4, and 1.39.1, Envoy forwards data for a configured non-WebSocket HTTP upgrade before the upstream accepts the upgrade. An unauth...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-73548/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-79920 - Critical (9.9)
Ajenti is a Linux & BSD modular server admin panel. Prior to version 2.2.16, any authenticated user can call /api/core/tasks/start to enqueue InstallPlugin, UnInstallPlugin, or UpgradeAll from plugins/plugins/tasks.py without plugin-management aut...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-79920/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-83621 - High (8.1)
ntopng is a web-based network traffic monitoring application. Prior to 6.7.260717, POST /lua/rest/v2/edit/system/edit_blacklist.lua in scripts/lua/rest/v2/edit/system/edit_blacklist.lua lacks an administrator check and calls lists_utils.editList f...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-83621/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-69184 - High (7.5)
c-ares is an asynchronous resolver library. Prior to 1.34.7, ares_dns_name_parse() enforces backward DNS compression pointers but does not bound the total pointer hops or assembled name length. A malicious DNS server can send a response containing...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-69184/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##1 posts
1 repos
https://github.com/muhammad-usama-sardar/intra-handshake-fail
🔴 CVE-2026-92702 - Critical (9.1)
Cocos AI is a confidential computing system for running AI workloads inside trusted execution environments. In versions up to and including 0.8.2, the intra-handshake attested TLS (aTLS) AMD SEV-SNP verification path does not enforce attestation f...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-92702/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-61721 - High (8)
FluidSynth is a software synthesizer based on the SoundFont 2 specifications. From 2.5.0 until 2.5.6, the native DLS loader assigns file-controlled wsmp.loop_start and wsmp.loop_length values to samples without calling fluid_sample_validate() or f...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-61721/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-58264 - Critical (9.8)
FluidSynth is a software synthesizer based on the SoundFont 2 specifications. From 1.1.2 until 2.5.6, the FluidSynth command handler accepts a pitch_bend_range command whose channel argument is not bounds checked before the supplied value is writt...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-58264/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-61819 - High (8.5)
pg_partman is a PostgreSQL extension that manages partitioned tables by time or ID. Prior to 5.5.0, when pg_jobmon is installed and part_config.jobmon is true, exception handlers in multiple pg_partman functions place p_parent_table verbatim insid...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-61819/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-61817 - High (8.5)
pg_partman is a PostgreSQL extension that manages partitioned tables by time or ID. Prior to 5.5.0, run_maintenance(), show_partitions(), show_partition_info(), undo_partition(), and partition_data_time() interpolate the writable part_config.time_...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-61817/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-61781 - Critical (9.9)
pg_partman is a PostgreSQL extension that manages partitioned tables by time or ID. Prior to 5.5.0, create_partition_time() reads the writable part_config.time_encoder text value and interpolates it without identifier quoting into a dynamically ex...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-61781/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-61820 - High (8.5)
pg_partman is a PostgreSQL extension that manages partitioned tables by time or ID. Prior to 5.5.0, inherit_template_properties() manually surrounds primary-key column names from pg_attribute.attname with double quotes without escaping embedded do...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-61820/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##