##
Updated at UTC 2026-08-22T21:12:31.446263
| CVE | CVSS | EPSS | Posts | Repos | Nuclei | Updated | Description |
|---|---|---|---|---|---|---|---|
| CVE-2026-74708 | 0 | 0.00% | 1 | 0 | 2026-08-22T16:16:45.540000 | In the Linux kernel, the following vulnerability has been resolved: xsk: valida | |
| CVE-2026-74671 | 0 | 0.00% | 1 | 0 | 2026-08-22T16:16:41.063000 | In the Linux kernel, the following vulnerability has been resolved: ima: fix ou | |
| CVE-2026-77946 | 10.0 | 0.00% | 5 | 0 | 2026-08-22T11:16:54.447000 | A vulnerability was determined in TRENDnet TEW-821DAP 2.2.01b05. Affected by thi | |
| CVE-2026-77945 | 7.4 | 0.00% | 1 | 0 | 2026-08-22T11:16:53.243000 | A vulnerability was found in TRENDnet TEW-821DAP 2.2.01b05. Affected is an unkno | |
| CVE-2026-12710 | None | 0.29% | 2 | 0 | 2026-08-22T09:30:32 | A Missing Authorization vulnerability in the QueryEngineTask of Google Cloud App | |
| CVE-2026-78003 | 9.8 | 0.53% | 4 | 0 | 2026-08-22T09:30:32 | The Mailgun for WordPress plugin for WordPress is vulnerable to Server-Side Requ | |
| CVE-2026-77002 | None | 0.15% | 2 | 0 | 2026-08-22T06:31:31 | The SmilePass Selfie Login WordPress plugin through 1.0.2 does not perform any s | |
| CVE-2026-77001 | None | 0.19% | 2 | 0 | 2026-08-22T06:31:28 | The Social Login & Sharing buttons with Analytics By SoClever WordPress plugin t | |
| CVE-2026-69836 | 10.0 | 1.37% | 20 | 2 | 2026-08-22T04:18:01.640000 | Deserialization of untrusted data in Microsoft Entra ID allows an unauthorized a | |
| CVE-2026-50112 | 8.8 | 0.32% | 2 | 0 | 2026-08-22T04:17:47.940000 | SSRF via Metalink Mirror URL Resolution: An authenticated tenant can register a | |
| CVE-2026-19883 | 8.8 | 0.37% | 2 | 0 | 2026-08-22T03:31:33 | The WPeMatico RSS Feed Fetcher plugin for WordPress is vulnerable to unauthorize | |
| CVE-2026-49360 | 0 | 0.45% | 1 | 0 | 2026-08-21T23:16:25.617000 | Recce is a data-validation toolkit for enhanced dbt (data build tool) PR review. | |
| CVE-2026-77022 | 9.9 | 0.46% | 1 | 0 | 2026-08-21T22:16:45.517000 | A security flaw has been discovered in Comfast CF-N1-S 2.6.0.1. Affected by this | |
| CVE-2026-62283 | 9.9 | 0.37% | 2 | 0 | 2026-08-21T22:16:41.700000 | Nezha Monitoring is a self-hostable, lightweight, servers and websites monitorin | |
| CVE-2026-54071 | 7.8 | 0.14% | 2 | 0 | 2026-08-21T22:16:40.203000 | BabelDOC is a document translation tool. Prior to 0.6.3, BabelDOC's vendored PDF | |
| CVE-2026-49849 | 9.1 | 0.70% | 4 | 0 | 2026-08-21T22:16:38.300000 | xShop is an open-source shop developed in Laravel. An Unrestricted File Upload v | |
| CVE-2026-34741 | 8.6 | 0.45% | 2 | 0 | 2026-08-21T22:16:37.143000 | Combodo iTop is a web based IT service management tool. Prior to 3.2.3, authenti | |
| CVE-2026-31880 | 8.0 | 0.23% | 2 | 0 | 2026-08-21T22:16:36.430000 | Combodo iTop is a web based IT service management tool. Prior to 3.2.3, there is | |
| CVE-2026-31803 | 8.0 | 0.23% | 2 | 0 | 2026-08-21T22:16:36.303000 | Combodo iTop is a web based IT service management tool. Prior to 3.2.3, 3.2.3, t | |
| CVE-2026-76017 | 8.8 | 0.47% | 1 | 0 | 2026-08-21T21:31:48 | Use after free in Chromoting in Google Chrome prior to 151.0.7922.173 allowed a | |
| CVE-2026-77811 | 8.7 | 0.37% | 2 | 0 | 2026-08-21T21:17:08.903000 | Improper input validation in the dashboards-observability plugin in OpenSearch D | |
| CVE-2026-54457 | 7.7 | 0.29% | 2 | 0 | 2026-08-21T21:17:00.267000 | TensorZero is an open-source LLMOps platform that unifies an LLM gateway, observ | |
| CVE-2026-50538 | 8.8 | 0.32% | 3 | 0 | 2026-08-21T21:16:59.807000 | LibVNCClient is a library for easy implementation of a VNC client. In versions 0 | |
| CVE-2026-77415 | None | 0.51% | 2 | 0 | 2026-08-21T21:04:20 | Before JSONata `2.2.1` and `1.8.8` it was possible to execute arbitrary code wit | |
| CVE-2026-77414 | None | 0.35% | 2 | 0 | 2026-08-21T20:58:02 | Before JSONata `2.2.1` and `1.8.8` it was possible to execute arbitrary code wit | |
| CVE-2026-68508 | 7.8 | 0.25% | 2 | 0 | 2026-08-21T20:57:32 | ## Summary `hydra.utils.instantiate()` resolves and calls Python objects from c | |
| CVE-2026-63135 | 8.2 | 0.23% | 2 | 0 | 2026-08-21T20:57:24 | ### Summary YOURLS stores the HTTP `Referer` header for short URL redirects and | |
| CVE-2026-77413 | None | 0.41% | 2 | 0 | 2026-08-21T20:57:09 | ## Impact Before JSONata `2.2.0` and `1.8.8` it was possible to execute arbitra | |
| CVE-2026-61539 | 10.0 | 0.66% | 4 | 0 | 2026-08-21T20:56:39 | ### Summary Xinference used Python's unsafe `eval()` function when parsing Llam | |
| CVE-2026-76905 | 7.5 | 0.35% | 3 | 0 | 2026-08-21T20:55:47 | ### Summary A nil-pointer dereference in `openapi3filter.ConvertErrors` lets an | |
| CVE-2026-64679 | 8.1 | 0.38% | 2 | 0 | 2026-08-21T20:55:33 | ### Summary Atlantis versions `>= 0.19.8` and `< 0.45.0` did not consistently va | |
| CVE-2026-63421 | 7.5 | 0.47% | 2 | 0 | 2026-08-21T20:55:12 | # Summary The value of `graphql.maxTake` can be bypassed by providing a negative | |
| CVE-2026-61824 | 8.2 | 0.23% | 2 | 0 | 2026-08-21T20:54:57 | ## Summary An Improper Neutralization of Input During Web Page Generation issue | |
| CVE-2026-76904 | 9.8 | 0.43% | 2 | 1 | 2026-08-21T20:26:30 | ### Summary An SQL Injection Vulnerability has been found when executing OGC Fi | |
| CVE-2026-27462 | 7.5 | 0.31% | 2 | 0 | 2026-08-21T20:16:33.870000 | Combodo iTop is a web based IT service management tool. Prior to 3.2.3, iTop ret | |
| CVE-2026-63462 | 7.5 | 0.38% | 2 | 0 | 2026-08-21T19:14:39 | ## Summary An unauthenticated `POST` to any OpenAPI-validated endpoint, includi | |
| CVE-2026-76397 | 8.1 | 0.25% | 1 | 0 | 2026-08-21T18:56:07.450000 | In Splunk AI Toolkit versions below 6.0.0, a user who holds the "power" Splunk r | |
| CVE-2026-41451 | 7.8 | 0.72% | 2 | 0 | 2026-08-21T18:35:08 | UAC (Unix-like Artifacts Collector) versions prior to 3.3.0 contain a command in | |
| CVE-2026-41449 | 7.8 | 0.64% | 2 | 0 | 2026-08-21T18:35:08 | UAC (Unix-like Artifacts Collector) versions prior to 3.3.0 contain a command in | |
| CVE-2026-41450 | 7.8 | 0.70% | 2 | 0 | 2026-08-21T18:35:07 | UAC (Unix-like Artifacts Collector) versions prior to 3.3.0 contain a command in | |
| CVE-2026-39909 | 8.1 | 0.77% | 2 | 0 | 2026-08-21T18:35:07 | llama.cpp before b8585 contains a use-after-free vulnerability in the RPC server | |
| CVE-2026-75932 | 8.6 | 0.40% | 3 | 0 | 2026-08-21T18:35:02 | Jet Admin allows an attacker to create a malicious app and connect it to a targe | |
| CVE-2026-69502 | 10.0 | 0.76% | 3 | 0 | 2026-08-21T18:35:01 | Server-side request forgery (ssrf) in Azure SQL Database allows an unauthorized | |
| CVE-2026-22681 | 8.5 | 0.28% | 2 | 1 | 2026-08-21T18:35:01 | OpenViking before 0.3.4 contains a server-side request forgery vulnerability tha | |
| CVE-2026-75501 | None | 0.37% | 2 | 0 | 2026-08-21T18:34:56 | A vulnerability in the Calix EXOS firmware for the GS7 XGS (GS5239XG) residentia | |
| CVE-2026-73570 | 8.9 | 1.04% | 14 | 1 | 2026-08-21T18:34:48 | A remote code execution vulnerability exists in Zimbra Collaboration (ZCS) befor | |
| CVE-2026-77812 | 0 | 0.06% | 2 | 0 | 2026-08-21T18:16:52.527000 | DJI drones transmit DUML (DJI Universal Markup Language) protocol messages over | |
| CVE-2026-77806 | 9.8 | 0.79% | 2 | 0 | 2026-08-21T18:16:52.373000 | SPIP before 4.4.21 allows unauthenticated remote attackers to execute arbitrary | |
| CVE-2026-62674 | 9.0 | 0.34% | 2 | 0 | 2026-08-21T18:16:49.460000 | Omnigent is an open-source AI agent framework and meta-harness for orchestrating | |
| CVE-2026-67567 | 9.9 | 0.32% | 2 | 0 | 2026-08-21T17:16:41.320000 | A flaw was found in the multicloud-operators-subscription component. This vulner | |
| CVE-2026-73137 | 7.7 | 0.29% | 1 | 0 | 2026-08-21T16:18:16.620000 | A flaw was found in the multicloud-operators-subscription component of Red Hat A | |
| CVE-2026-18781 | 8.1 | 0.32% | 1 | 0 | 2026-08-21T15:33:14 | The Drag and Drop Multiple File Upload for Contact Form 7 WordPress plugin befor | |
| CVE-2026-77814 | 7.5 | 0.41% | 2 | 0 | 2026-08-21T15:32:19 | is_path_trusted in scripts/iib/api.py compares the requested path against each a | |
| CVE-2026-77087 | 9.6 | 0.40% | 3 | 0 | 2026-08-21T15:32:18 | Paperclip before 0.3.1 in default local_trusted mode fails to validate Host head | |
| CVE-2026-77815 | 7.5 | 0.41% | 2 | 0 | 2026-08-21T15:32:18 | to_abs_path in scripts/iib/tool.py normalised the requested path with os.path.no | |
| CVE-2026-77683 | 9.9 | 1.51% | 1 | 0 | 2026-08-21T14:16:53.637000 | A security flaw has been discovered in Comfast CF-N1-S 2.6.0.1. Affected by this | |
| CVE-2026-77651 | 9.8 | 0.43% | 1 | 0 | 2026-08-21T14:16:53.510000 | The arrayref crate 0.3.10 for Rust can trigger execution of malicious code when | |
| CVE-2026-77776 | 9.1 | 0.34% | 5 | 0 | 2026-08-21T12:30:41 | Headroom's LLM proxy derives the memory owner from the x-headroom-user-id reques | |
| CVE-2026-77775 | 8.6 | 0.36% | 2 | 0 | 2026-08-21T12:30:35 | Headroom's LLM proxy lets a client choose the upstream destination with the x-he | |
| CVE-2026-59279 | 7.5 | 0.39% | 2 | 0 | 2026-08-21T12:30:34 | The MCP Streamable HTTP server transport (WebFlux and WebMvc variants) does not | |
| CVE-2026-72818 | 7.5 | 0.51% | 1 | 0 | 2026-08-21T11:17:05.920000 | The URLS regular expression in nltk/tokenize/casual.py, compiled into TweetToken | |
| CVE-2026-76310 | 9.4 | 0.37% | 1 | 0 | 2026-08-21T04:18:20.733000 | In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, an unaut | |
| CVE-2026-72530 | 9.0 | 0.97% | 9 | 0 | 2026-08-21T04:18:15.903000 | A remote unauthorized attacker with network access via port 4307/TCP to the True | |
| CVE-2026-72529 | 9.8 | 0.78% | 10 | 0 | 2026-08-21T04:18:15.753000 | A remote unauthorized attacker with network access via port 4307/TCP to the True | |
| CVE-2026-19586 | 0 | 5.04% | 1 | 0 | 2026-08-21T04:18:02.220000 | A pre-authentication OS command injection vulnerability has been identified in O | |
| CVE-2026-76158 | None | 0.41% | 1 | 0 | 2026-08-21T03:31:30 | External Control of File Name or Path in the upload API endpoint of Datiphy Data | |
| CVE-2026-76155 | None | 0.29% | 1 | 0 | 2026-08-21T03:31:29 | Use of default credentials in Datiphy Data Management Center from v8.3.0 through | |
| CVE-2026-76156 | None | 0.83% | 1 | 0 | 2026-08-21T03:31:29 | OS command injection in the api endpoint of Datiphy Data Management Center from | |
| CVE-2026-77647 | 9.8 | 0.81% | 3 | 0 | 2026-08-21T00:31:31 | SPIP before 4.4.20 allows unauthenticated remote attackers to execute arbitrary | |
| CVE-2026-77645 | None | 0.47% | 1 | 0 | 2026-08-21T00:31:31 | A critical remote code execution (RCE) vulnerability has been reported in PTC Wi | |
| CVE-2026-69855 | 7.7 | 0.48% | 1 | 0 | 2026-08-21T00:31:31 | Server-side request forgery (ssrf) in Microsoft Copilot in Azure allows an autho | |
| CVE-2026-72848 | 8.6 | 0.48% | 1 | 0 | 2026-08-21T00:31:31 | SitemapLoader.parse_sitemap in langchain_community/document_loaders/sitemap.py a | |
| CVE-2026-77642 | 7.5 | 0.19% | 1 | 0 | 2026-08-21T00:31:31 | tor before 0.4.9.9 was prone to an out-of-bounds write when parsing a consensus | |
| CVE-2026-72843 | 9.8 | 0.57% | 1 | 0 | 2026-08-21T00:31:24 | The customer update route in EverShop is declared with "access": "public" in pac | |
| CVE-2026-72860 | 8.5 | 0.22% | 1 | 0 | 2026-08-20T22:18:05.787000 | The POST /api/provider-nodes/validate route in 9router takes a caller-supplied b | |
| CVE-2026-73040 | 8.8 | 0.67% | 1 | 0 | 2026-08-20T21:31:37 | Dockge validates a stack name only on the write path. In backend/stack.ts the al | |
| CVE-2026-66785 | 9.9 | 0.29% | 2 | 0 | 2026-08-20T21:31:36 | A flaw was found in Submariner. This vulnerability allows a malicious cluster (s | |
| CVE-2026-18420 | 8.8 | 0.96% | 1 | 0 | 2026-08-20T21:31:36 | Improper input validation in the Time Series Visual Builder (TSVB) plugin in Ope | |
| CVE-2026-72852 | 7.8 | 0.14% | 1 | 0 | 2026-08-20T21:31:36 | hank-ai/darknet sizes a convolutional layer's weight and output heap buffers by | |
| CVE-2026-77638 | 8.9 | 0.17% | 1 | 0 | 2026-08-20T21:31:30 | Tor before 0.4.9.11 is prone to a race condition where in just the right circums | |
| CVE-2026-77148 | 9.9 | 0.47% | 1 | 0 | 2026-08-20T20:17:47.110000 | A vulnerability was found in Comfast CF-N1-S 2.6.0.1. This impacts the function | |
| CVE-2026-73257 | 9.1 | 0.38% | 1 | 0 | 2026-08-20T20:17:46.470000 | Mongoose is an embedded web server and network library. Priro to version 7.22, a | |
| CVE-2026-20231 | 9.9 | 0.41% | 3 | 0 | 2026-08-20T19:16:51.497000 | As part of Cisco's ongoing commitment to proactive security and product quality, | |
| CVE-2026-16885 | 9.8 | 0.80% | 1 | 0 | 2026-08-20T19:16:50.880000 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to e | |
| CVE-2026-76641 | 7.5 | 0.34% | 1 | 0 | 2026-08-20T18:31:11 | Expat through 2.8.3 contains an out-of-bounds read vulnerability that allows att | |
| CVE-2026-18290 | 7.8 | 0.26% | 1 | 0 | 2026-08-20T18:31:06 | OriginLab OriginPro OGG File Parsing Out-Of-Bounds Write Remote Code Execution V | |
| CVE-2026-75140 | 7.5 | 0.53% | 1 | 0 | 2026-08-20T18:30:58 | jsoup through 1.23.2, fixed in commit 862ba2f, contains an uncontrolled resource | |
| CVE-2026-76928 | 7.5 | 0.28% | 1 | 0 | 2026-08-20T17:19:48.260000 | X.509IF protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows de | |
| CVE-2026-66582 | 7.1 | 0.18% | 1 | 0 | 2026-08-20T17:19:24.533000 | Unauthenticated Cross Site Scripting (XSS) in TranslatePress <= 3.3.2 versions. | |
| CVE-2026-63038 | 0 | 0.21% | 1 | 0 | 2026-08-20T17:19:14.390000 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injecti | |
| CVE-2026-76879 | 7.5 | 0.28% | 1 | 0 | 2026-08-20T16:18:21.780000 | C12.22 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows den | |
| CVE-2026-14953 | 4.3 | 0.20% | 1 | 0 | 2026-08-20T16:17:07.463000 | A low-privileged remote attacker can enumerate all configured users and identify | |
| CVE-2026-14947 | 7.2 | 0.94% | 1 | 0 | 2026-08-20T16:17:06.950000 | A high-privileged remote attacker can upload malicious ZIP archive containing di | |
| CVE-2026-76633 | 8.1 | 0.24% | 1 | 0 | 2026-08-20T15:34:26 | WeGIA before 3.9.2 contains an authorization bypass vulnerability in the passwor | |
| CVE-2026-76833 | 7.8 | 0.15% | 1 | 0 | 2026-08-20T15:34:26 | @cgauge/yaml npm package contains an arbitrary code execution vulnerability that | |
| CVE-2026-61897 | 7.8 | 0.10% | 1 | 0 | 2026-08-20T15:34:20 | An Ubuntu-specific patch to AccountsService before 23.13.9-8ubuntu7 only partial | |
| CVE-2026-28164 | 9.6 | 0.15% | 1 | 0 | 2026-08-20T15:34:20 | Cross-Site Request Forgery (CSRF) vulnerability in HashThemes Easy Elementor Add | |
| CVE-2026-76886 | 8.1 | 0.32% | 1 | 0 | 2026-08-20T15:34:14 | C12.22 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows den | |
| CVE-2026-19490 | None | 0.33% | 5 | 0 | 2026-08-20T15:34:03 | Vulnerability in NetScaler ADC and NetScaler Gateway. This issue affects ADC: f | |
| CVE-2026-63490 | 7.5 | 0.47% | 1 | 0 | 2026-08-20T15:18:04.577000 | Handlebars.java provides logic-less and semantic Mustache templates with Java. P | |
| CVE-2026-73197 | 7.5 | 0.35% | 1 | 0 | 2026-08-20T13:08:53.900000 | A flaw was found in FreeIPA. A remote, unauthenticated attacker can exploit this | |
| CVE-2026-67271 | 9.8 | 0.46% | 1 | 0 | 2026-08-20T13:02:12.153000 | Dell PowerStore SDNAS, contains an Out-of-bounds Write vulnerability in the SMB/ | |
| CVE-2026-20030 | 10.0 | 0.45% | 1 | 0 | 2026-08-20T13:01:19.947000 | As part of Cisco's ongoing commitment to proactive security and product quality, | |
| CVE-2026-19598 | 9.8 | 0.50% | 2 | 3 | 2026-08-20T12:48:10.287000 | The Pods – Custom Content Types and Fields plugin for WordPress is vulnerable to | |
| CVE-2026-73198 | 7.5 | 0.35% | 1 | 0 | 2026-08-20T12:31:29 | A flaw was found in FreeIPA. A remote, unauthenticated attacker can exploit a vu | |
| CVE-2026-13097 | 9.1 | 0.34% | 1 | 0 | 2026-08-20T12:31:22 | A privilege escalation flaw was found in FreeIPA. The uniqueness constraint enfo | |
| CVE-2026-75860 | 9.8 | 0.34% | 1 | 0 | 2026-08-20T12:31:22 | The JSON Options WordPress plugin through 0.0.4 does not have any capability che | |
| CVE-2026-14950 | 9.8 | 0.55% | 3 | 0 | 2026-08-20T09:31:23 | An unauthenticated remote attacker in possession of a valid session identifier i | |
| CVE-2026-14946 | 7.2 | 0.52% | 1 | 0 | 2026-08-20T09:31:23 | A high privileged remote attacker can upload a .php file and then request it dir | |
| CVE-2026-14949 | 6.5 | 0.26% | 1 | 0 | 2026-08-20T09:31:23 | A low privileged remote attacker with a valid session can submit a request to th | |
| CVE-2026-14952 | 7.5 | 0.49% | 1 | 0 | 2026-08-20T09:31:23 | An unauthenticated remote attacker can retrieve sensible files from the FDS Web | |
| CVE-2026-14951 | 8.0 | 0.16% | 1 | 0 | 2026-08-20T09:31:23 | An low privileged remote attacker can cause authenticated users to perform unint | |
| CVE-2026-14948 | 8.8 | 0.39% | 1 | 0 | 2026-08-20T09:31:23 | A low privileged remote attacker can hijack an active administrative session wit | |
| CVE-2026-76589 | 9.9 | 0.61% | 2 | 0 | 2026-08-20T00:35:17 | A vulnerability was found in TRENDnet TEW-755AP up to 20260702. Affected is the | |
| CVE-2026-76850 | 9.8 | 0.98% | 1 | 0 | 2026-08-20T00:35:17 | LMDeploy deserializes disaggregated-serving peer messages with pickle. The handl | |
| CVE-2026-76880 | 7.5 | 0.28% | 1 | 0 | 2026-08-20T00:35:17 | RRC protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial | |
| CVE-2026-76590 | 9.9 | 0.61% | 2 | 0 | 2026-08-20T00:35:16 | A vulnerability was identified in TRENDnet TEW-755AP up to 20260702. Affected by | |
| CVE-2026-76832 | 8.8 | 0.84% | 1 | 0 | 2026-08-20T00:35:16 | Agno's PythonTools in libs/agno/agno/tools/python.py contains a path traversal v | |
| CVE-2026-76399 | 8.1 | 0.25% | 1 | 0 | 2026-08-20T00:35:11 | In Splunk AI Toolkit versions below 6.0.1, a user who holds the "power" Splunk r | |
| CVE-2026-76396 | 7.5 | 0.24% | 1 | 0 | 2026-08-20T00:35:11 | In Splunk AI Toolkit versions below 6.0.0, a user that holds a role with the sch | |
| CVE-2026-76395 | 8.8 | 0.48% | 1 | 0 | 2026-08-20T00:35:11 | In Splunk AI Toolkit versions below 6.0.0, a user who holds the "power" Splunk r | |
| CVE-2026-76404 | 9.1 | 0.56% | 2 | 0 | 2026-08-20T00:35:08 | In Splunk MCP Server app versions below 1.2.1, a user who holds the "admin" Splu | |
| CVE-2026-70496 | 9.9 | 0.26% | 1 | 0 | 2026-08-19T21:30:39 | A flaw was found in search-v2-operator. The operator's ClusterRole has permissio | |
| CVE-2026-20315 | 10.0 | 0.32% | 3 | 0 | 2026-08-19T21:30:29 | As part of Cisco's ongoing commitment to proactive security and product quality, | |
| CVE-2026-20317 | 10.0 | 0.34% | 2 | 0 | 2026-08-19T21:30:29 | As part of Cisco's ongoing commitment to proactive security and product quality, | |
| CVE-2026-32475 | 9.0 | 0.42% | 6 | 2 | 2026-08-19T18:32:57 | Unrestricted Upload of File with Dangerous Type vulnerability in Elementor Eleme | |
| CVE-2026-20320 | 7.5 | 0.35% | 1 | 0 | 2026-08-19T18:32:51 | A vulnerability in the Open Client Interface (OCI) XML Parser of Cisco BroadWork | |
| CVE-2026-33824 | 9.8 | 77.90% | 2 | 2 | 2026-08-19T04:16:58.560000 | Double free in Windows IKE Extension allows an unauthorized attacker to execute | |
| CVE-2026-18963 | 9.1 | 0.39% | 5 | 1 | 2026-08-19T03:31:21 | A flaw was found in the reset-credentials flow of the keycloak-services componen | |
| CVE-2026-47627 | 9.8 | 0.43% | 1 | 0 | 2026-08-18T21:31:53 | NVIDIA Triton Inference Server for Linux contains a vulnerability where an attac | |
| CVE-2026-66780 | 9.9 | 0.24% | 1 | 0 | 2026-08-18T18:32:10 | A flaw was found in the submariner-operator component. The `submariner-k8s-broke | |
| CVE-2026-65400 | 7.1 | 0.75% | 1 | 3 | 2026-08-18T18:31:47 | An authentication issue was addressed with improved state management. This issue | |
| CVE-2026-24301 | 8.8 | 1.63% | 1 | 1 | 2026-08-18T15:31:45 | Improper neutralization of special elements used in a command ('command injectio | |
| CVE-2026-64849 | 9.3 | 8.15% | 4 | 3 | template | 2026-08-17T21:58:52 | ### Summary The default MLflow Tracking Server (`mlflow server`, no authenticati |
| CVE-2026-19478 | 9.4 | 1.51% | 4 | 5 | template | 2026-08-17T21:31:30 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.2 |
| CVE-2026-47686 | 9.9 | 0.32% | 1 | 0 | 2026-08-17T17:32:35 | **Affected:** vm2 <= 3.11.3 **CVSS 3.1:** 9.9 HIGH (CVSS:3.1/AV:N/AC:L/PR:L/UI:N | |
| CVE-2026-33818 | 7.5 | 0.46% | 1 | 0 | 2026-08-14T18:31:34 | Enforce a recursion limit in Unmarshal to prevent stack exhaustion when parsing | |
| CVE-2026-72898 | 10.0 | 10.40% | 2 | 6 | template | 2026-08-12T15:18:30.347000 | Metabase allows a remote, unauthenticated attacker to inject arbitrary SQL via t |
| CVE-2026-68820 | 7.0 | 0.33% | 1 | 2 | 2026-08-11T21:33:01 | Use after free in Windows Ancillary Function Driver for WinSock allows an author | |
| CVE-2026-47301 | 8.8 | 0.68% | 1 | 1 | 2026-07-30T19:17:31.990000 | Improper access control in Microsoft Configuration Manager allows an authorized | |
| CVE-2026-66066 | None | 1.77% | 1 | 7 | 2026-07-30T18:23:34 | ### Impact In its default configuration, a Rails application that displays image | |
| CVE-2026-52929 | 7.5 | 0.39% | 1 | 0 | 2026-07-08T15:31:44 | In the Linux kernel, the following vulnerability has been resolved: sctp: strea | |
| CVE-2026-58472 | 5.9 | 0.22% | 1 | 0 | 2026-07-07T21:31:43 | GNU Wget through 1.25.0, fixed in commit dd692d9, contains a heap buffer overflo | |
| CVE-2026-8452 | 9.8 | 1.04% | 2 | 3 | 2026-07-01T15:52:28.390000 | Memory overflow vulnerability NetScaler ADC and NetScaler Gateway leading to unp | |
| CVE-2026-42945 | 8.1 | 66.04% | 2 | 44 | 2026-06-27T06:30:25 | NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_rewrite_mo | |
| CVE-2026-12569 | 9.8 | 30.20% | 3 | 1 | 2026-06-26T15:33:15 | A critical remote code execution (RCE) vulnerability has been reported in PTC Wi | |
| CVE-2026-20266 | 9.1 | 0.63% | 1 | 0 | 2026-06-17T18:35:58 | In Splunk AI Toolkit versions below 5.7.4, a user who holds the "admin" Splunk r | |
| CVE-2012-0158 | 8.8 | 99.97% | 2 | 2 | 2026-06-16T23:36:48.343000 | The (1) ListView, (2) ListView2, (3) TreeView, and (4) TreeView2 ActiveX control | |
| CVE-2026-1947 | 7.5 | 0.27% | 1 | 5 | 2026-03-16T15:30:54 | The NEX-Forms – Ultimate Forms Plugin for WordPress plugin for WordPress is vuln | |
| CVE-2025-62593 | None | 1.00% | 3 | 1 | 2025-12-01T16:02:43 | # Summary Developers working with Ray as a development tool can be exploited vi | |
| CVE-2021-43226 | 7.8 | 3.07% | 2 | 1 | 2025-10-22T00:33:30 | Windows Common Log File System Driver Elevation of Privilege Vulnerability This | |
| CVE-2020-5135 | 9.8 | 24.56% | 2 | 0 | 2025-10-22T00:31:59 | A buffer overflow vulnerability in SonicOS allows a remote attacker to cause Den | |
| CVE-2026-39113 | 0 | 0.00% | 2 | 1 | N/A | ||
| CVE-2026-55622 | 0 | 0.20% | 2 | 0 | N/A | ||
| CVE-2026-63343 | 0 | 0.48% | 2 | 0 | N/A | ||
| CVE-2026-63125 | 0 | 0.66% | 3 | 0 | N/A | ||
| CVE-2026-62941 | 0 | 0.44% | 2 | 0 | N/A | ||
| CVE-2026-62940 | 0 | 0.42% | 2 | 0 | N/A | ||
| CVE-2026-62867 | 0 | 0.52% | 2 | 0 | N/A | ||
| CVE-2026-55241 | 0 | 0.44% | 2 | 0 | N/A | ||
| CVE-2026-30826 | 0 | 0.23% | 2 | 0 | N/A | ||
| CVE-2026-30890 | 0 | 0.23% | 2 | 0 | N/A | ||
| CVE-2026-53525 | 0 | 0.43% | 1 | 0 | N/A | ||
| CVE-2026-62316 | 0 | 0.32% | 2 | 0 | N/A | ||
| CVE-2026-34948 | 0 | 0.23% | 2 | 0 | N/A | ||
| CVE-2026-33240 | 0 | 0.27% | 2 | 0 | N/A | ||
| CVE-2026-31936 | 0 | 0.27% | 2 | 0 | N/A | ||
| CVE-2026-53528 | 0 | 0.35% | 2 | 0 | N/A | ||
| CVE-2026-53527 | 0 | 0.24% | 2 | 0 | N/A | ||
| CVE-2026-62677 | 0 | 0.45% | 2 | 0 | N/A | ||
| CVE-2026-62675 | 0 | 0.45% | 2 | 0 | N/A | ||
| CVE-2026-30866 | 0 | 0.27% | 2 | 0 | N/A | ||
| CVE-2026-27490 | 0 | 0.31% | 2 | 0 | N/A | ||
| CVE-2026-77810 | 0 | 0.35% | 2 | 0 | N/A | ||
| CVE-2026-54682 | 0 | 0.14% | 2 | 0 | N/A | ||
| CVE-2026-71862 | 0 | 0.35% | 2 | 0 | N/A | ||
| CVE-2026-77234 | 0 | 0.11% | 2 | 0 | N/A | ||
| CVE-2026-54789 | 0 | 0.39% | 2 | 0 | N/A | ||
| CVE-2026-59270 | 0 | 0.00% | 1 | 0 | N/A | ||
| CVE-2026-77176 | 0 | 0.41% | 2 | 0 | N/A | ||
| CVE-2026-71485 | 0 | 0.42% | 1 | 0 | N/A | ||
| CVE-2026-73256 | 0 | 0.40% | 1 | 0 | N/A | ||
| CVE-2026-71428 | 0 | 0.25% | 1 | 0 | N/A | ||
| CVE-2026-59307 | 0 | 0.00% | 1 | 0 | N/A | ||
| CVE-2026-59324 | 0 | 0.00% | 1 | 0 | N/A | ||
| CVE-2026-54330 | 0 | 0.00% | 1 | 0 | N/A |
updated 2026-08-22T16:16:45.540000
1 posts
Kritischer Fix im Linux-Kernel (CVE-2026-74708)
Das MITRE-Institut meldet eine behobene Schwachstelle im xsk-Netzwerk-Subsystem. Eine fehlerhafte Größenprüfung von „Launch-time“-Metadaten konnte durch manipulierte Anfragen zu Pipeline-Ausfällen führen.
Die Patches wurden bereits erfolgreich eingepflegt. System-Updates werden empfohlen!
##updated 2026-08-22T16:16:41.063000
1 posts
Speicher-Leck im Linux-Kernel (CVE-2026-74671)
Eine Schwachstelle in der Integritätsmessarchitektur (IMA) bedroht Linux-Systeme. Ein Vorzeichenfehler (Type-Mismatch) in der Funktion xattr_verify() führt bei manipulierten security.ima-Erweiterungen zu einem Unterlauf.
Dadurch entsteht ein gefährlicher Out-of-Bounds-Lesefehler, über den Angreifer potenziell sensible Daten direkt aus dem Speicher abgreifen können. Admins sollten umgehend patchen!
##updated 2026-08-22T11:16:54.447000
5 posts
CVE-2026-77946 - Critical stack buffer overflow in TRENDnet TEW-821DAP NTP handler. Remote exploit public, unpatched. CVSS 10. Isolate/disable affected devices until patch. #CVE #TRENDnet #infosec
##CVE-2026-77946: Stack-based buffer overflow in TRENDnet TEW-821DAP v2.2.01b05 (CRITICAL, CVSS 10). Remote code execution possible via NTP config. No patch — limit exposure & monitor traffic. https://radar.offseq.com/threat/cve-2026-77946-stack-based-buffer-overflow-in-trendnet-tew-821dap-679ce40e9d7aa62a #OffSeq #CVE202677946 #infosec #vulnerability
##🔴 CVE-2026-77946 - Critical (10)
A vulnerability was determined in TRENDnet TEW-821DAP 2.2.01b05. Affected by this vulnerability is the function uci_safe_get of the file /cgi-bin/apply_time.cgi of the component NTP Timezone Configuration Handler. Executing a manipulation of the a...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77946/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-77946: Stack-based buffer overflow in TRENDnet TEW-821DAP v2.2.01b05 (CRITICAL, CVSS 10). Remote code execution possible via NTP config. No patch — limit exposure & monitor traffic. https://radar.offseq.com/threat/cve-2026-77946-stack-based-buffer-overflow-in-trendnet-tew-821dap-679ce40e9d7aa62a #OffSeq #CVE202677946 #infosec #vulnerability
##🔴 CVE-2026-77946 - Critical (10)
A vulnerability was determined in TRENDnet TEW-821DAP 2.2.01b05. Affected by this vulnerability is the function uci_safe_get of the file /cgi-bin/apply_time.cgi of the component NTP Timezone Configuration Handler. Executing a manipulation of the a...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77946/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-22T11:16:53.243000
1 posts
CVE-2026-77945 - Command injection in TRENDnet TEW-821DAP 2.2.01b05 via /cgi-bin/upload.cgi. CVSS 7.4. Unpatched. Disable remote access now. #CVE #TRENDnet #infosec
##updated 2026-08-22T09:30:32
2 posts
CRITICAL (CVSS 9.3): CVE-2026-12710 in Google Cloud Application Integration (QueryEngineTask) enabled unauthorized data access. Patched by Google on 2026-04-04 — no customer action needed. Details: https://radar.offseq.com/threat/cve-2026-12710-cwe-862-missing-authorization-in-google-cloud-application-integration-f732bf9f6ab56812 #OffSeq #CloudSecurity #CVE #Vuln
##CRITICAL (CVSS 9.3): CVE-2026-12710 in Google Cloud Application Integration (QueryEngineTask) enabled unauthorized data access. Patched by Google on 2026-04-04 — no customer action needed. Details: https://radar.offseq.com/threat/cve-2026-12710-cwe-862-missing-authorization-in-google-cloud-application-integration-f732bf9f6ab56812 #OffSeq #CloudSecurity #CVE #Vuln
##updated 2026-08-22T09:30:32
4 posts
🔴 CVE-2026-78003 - Critical (9.8)
The Mailgun for WordPress plugin for WordPress is vulnerable to Server-Side Request Forgery (SSRF) via path traversal in versions up to and including 2.2.0. This is due to insufficient input validation in the add_list() function, which accepts use...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-78003/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CRITICAL: Mailgun for WordPress ≤2.2.0 vulnerable to SSRF (CVE-2026-78003). Attackers can exploit input validation in add_list() to hijack admin resets & compromise sites. Update/disable plugin now. https://radar.offseq.com/threat/cve-2026-78003-cwe-918-server-side-request-forgery-ssrf-in-mailgun-mailgun-for-wordpress-6ee94923f1ee4923 #OffSeq #WordPress #Infosec #SSRF
##🔴 CVE-2026-78003 - Critical (9.8)
The Mailgun for WordPress plugin for WordPress is vulnerable to Server-Side Request Forgery (SSRF) via path traversal in versions up to and including 2.2.0. This is due to insufficient input validation in the add_list() function, which accepts use...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-78003/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CRITICAL: Mailgun for WordPress ≤2.2.0 vulnerable to SSRF (CVE-2026-78003). Attackers can exploit input validation in add_list() to hijack admin resets & compromise sites. Update/disable plugin now. https://radar.offseq.com/threat/cve-2026-78003-cwe-918-server-side-request-forgery-ssrf-in-mailgun-mailgun-for-wordpress-6ee94923f1ee4923 #OffSeq #WordPress #Infosec #SSRF
##updated 2026-08-22T06:31:31
2 posts
CRITICAL: CVE-2026-77002 in SmilePass Selfie Login WP plugin (≤1.0.2) allows full account takeover — no auth needed. Remove/disable plugin until patched. Details: https://radar.offseq.com/threat/cve-2026-77002-cwe-287-improper-authentication-in-smilepass-selfie-login-581c897a80f66e83 #OffSeq #WordPress #Vuln #CVE202677002
##CRITICAL: CVE-2026-77002 in SmilePass Selfie Login WP plugin (≤1.0.2) allows full account takeover — no auth needed. Remove/disable plugin until patched. Details: https://radar.offseq.com/threat/cve-2026-77002-cwe-287-improper-authentication-in-smilepass-selfie-login-581c897a80f66e83 #OffSeq #WordPress #Vuln #CVE202677002
##updated 2026-08-22T06:31:28
2 posts
CVE-2026-77001: CRITICAL vuln in Social Login & Sharing buttons with Analytics By SoClever (≤1.2.0). No auth checks — attackers can hijack any user session, including admin. Remove/disable plugin pending fix. https://radar.offseq.com/threat/cve-2026-77001-cwe-287-improper-authentication-in-social-login-sharing-buttons-with-analytics-by-c2f4b63e61e43745 #OffSeq #WordPress #CVE202677001 #Vulnerability
##CVE-2026-77001: CRITICAL vuln in Social Login & Sharing buttons with Analytics By SoClever (≤1.2.0). No auth checks — attackers can hijack any user session, including admin. Remove/disable plugin pending fix. https://radar.offseq.com/threat/cve-2026-77001-cwe-287-improper-authentication-in-social-login-sharing-buttons-with-analytics-by-c2f4b63e61e43745 #OffSeq #WordPress #CVE202677001 #Vulnerability
##updated 2026-08-22T04:18:01.640000
20 posts
2 repos
“Microsoft warned on Aug. 20 that a maximum-severity deserialization flaw in Entra ID was actively exploited.
In releasing a patch for CVE-2026-69836, Microsoft said it had already fully mitigated the vulnerability, so there’s no further action for Entra ID users to take.”
https://www.scworld.com/news/microsoft-patches-flaw-in-entra-id-identity-software
##「マイクロソフトが警鐘を鳴らす、Entra IDの完全な欠陥が攻撃を受けている
/マイクロソフトはクラウドIDのバグは既に修正済みだと述べているが、誰がどの程度悪用したのかは明らかにしていない。 」: #TheRegister
「マイクロソフトは、攻撃者が既に悪用していたEntra IDの深刻度が最大レベルの脆弱性を修正した。
CVE-2026-69836として追跡されているこの脆弱性は、CVSSスコアが最高値の10.0であり、認証されていない攻撃者がMicrosoftのクラウドIDサービス上でリモートからコードを実行できる可能性がある。Microsoft は木曜日にこの脆弱性を公表し 、既に悪用が確認されているという残念なニュースも同時に発表した。
Entra ID(旧称Azure Active Directory)は、マイクロソフトのお客様向けIDおよびアクセス管理の中核を担い、クラウドアプリケーションやその他の企業リソースへの認証とアクセスを管理します。」
##🚨 [CISA-2026:0821] CISA Adds 2 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0821)
CISA has added 2 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2026-69836 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-69836)
- Name: Microsoft Entra ID Deserialization of Untrusted Data Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Microsoft
- Product: Entra ID
- Notes: https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69836 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-69836
⚠️ CVE-2026-73570 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-73570)
- Name: Zimbra Collaboration Suite (ZCS) OS Command Injection Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Synacor
- Product: Zimbra Collaboration Suite (ZCS)
- Notes: https://wiki.zimbra.com/wiki/Zimbra_Security_Advisories ; https://blog.zimbra.com/2026/07/patch-release-update-zimbra-10-1-20/ ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-73570
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260821 #cisa20260821 #cve_2026_69836 #cve_2026_73570 #cve202669836 #cve202673570
##CVE-2026-69836 was added to the KEV. It was published yesterday by Microsoft:
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69836
Microsoft says:
Publicly disclosed: No
Exploited: No
Exploitability assessment: Exploitation Less Likely
and
This vulnerability has already been fully mitigated by Microsoft. There is no action for users of this service to take. The purpose of this CVE is to provide further transparency.
So does this mean that Microsoft was made aware by a third party that it was EITW? Because presumably it was exploited before it was published if no action is needed by the customer and Microsoft doesn't list it as EITW.
Edit: I now see this revision in the advisory:
Corrected Exploited to No. This vulnerability was not exploited in the wild. This is an informational change only.
So I assume that because it was incorrectly listed as EITW it ended up in the KEV. But now they say it wasn't EITW. Which is it? That's kind of important you fucking sloppy ass clanker fuckers.
##CVE ID: CVE-2026-69836
Vendor: Microsoft
Product: Entra ID
Date Added: 2026-08-21
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-69836
Entra ID : une faille critique a été exploitée, mais vous n’avez rien à patcher https://www.it-connect.fr/entra-id-cve-2026-69836-faille-cvss-10-exploitee/ #ActuCybersécurité #Cybersécurité #Vulnérabilité #Microsoft #EntraID
##A maximum-severity CVSS 10.0 flaw in Microsoft Entra ID is under active exploitation, allowing remote code execution. Two CVEs are in play, CVE-2026-68820 and CVE-2026-69836, with activity attributed to the Lazarus Group.
##A critical deserialization vulnerability (CVE-2026-69836) has been actively exploited in Microsoft Entra ID. The flaw could allow unauthorized access to identity and access management functions across Azure, M365, and Dynamics CRM Online.
#CriticalVulnerability #MicrosoftEntra #IdentitySecurity #Deserialization
https://cyberworldops.eu/en/cve-2026-69836-critical-vulnerability-exploited-in-microsoft-entra-id
##Microsoft corrige falha crítica no Entra ID, uma vulnerabilidade que permitia a execução de código malicioso sem privilégios. A falha, classificada como CVE-2026-69836, já foi explorada em ataques informáticos. 🛡️
##Microsoft patches exploited Entra ID flaw amid rising attacks
Microsoft has patched a critical vulnerability in its Entra ID platform, known as CVE-2026-69836, which allowed attackers to execute code remotely with ease, and has already been exploited in recent attacks. This flaw enabled unauthorized threat actors to gain control and wreak havoc, making swift action crucial to prevent…
#MicrosoftEntraId #IdentityManagement #Cve202669836 #ZeroDay #EmergingThreats
##“Microsoft warned on Aug. 20 that a maximum-severity deserialization flaw in Entra ID was actively exploited.
In releasing a patch for CVE-2026-69836, Microsoft said it had already fully mitigated the vulnerability, so there’s no further action for Entra ID users to take.”
https://www.scworld.com/news/microsoft-patches-flaw-in-entra-id-identity-software
##「マイクロソフトが警鐘を鳴らす、Entra IDの完全な欠陥が攻撃を受けている
/マイクロソフトはクラウドIDのバグは既に修正済みだと述べているが、誰がどの程度悪用したのかは明らかにしていない。 」: #TheRegister
「マイクロソフトは、攻撃者が既に悪用していたEntra IDの深刻度が最大レベルの脆弱性を修正した。
CVE-2026-69836として追跡されているこの脆弱性は、CVSSスコアが最高値の10.0であり、認証されていない攻撃者がMicrosoftのクラウドIDサービス上でリモートからコードを実行できる可能性がある。Microsoft は木曜日にこの脆弱性を公表し 、既に悪用が確認されているという残念なニュースも同時に発表した。
Entra ID(旧称Azure Active Directory)は、マイクロソフトのお客様向けIDおよびアクセス管理の中核を担い、クラウドアプリケーションやその他の企業リソースへの認証とアクセスを管理します。」
##🚨 [CISA-2026:0821] CISA Adds 2 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0821)
CISA has added 2 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2026-69836 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-69836)
- Name: Microsoft Entra ID Deserialization of Untrusted Data Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Microsoft
- Product: Entra ID
- Notes: https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69836 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-69836
⚠️ CVE-2026-73570 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-73570)
- Name: Zimbra Collaboration Suite (ZCS) OS Command Injection Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Synacor
- Product: Zimbra Collaboration Suite (ZCS)
- Notes: https://wiki.zimbra.com/wiki/Zimbra_Security_Advisories ; https://blog.zimbra.com/2026/07/patch-release-update-zimbra-10-1-20/ ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-73570
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260821 #cisa20260821 #cve_2026_69836 #cve_2026_73570 #cve202669836 #cve202673570
##CVE-2026-69836 was added to the KEV. It was published yesterday by Microsoft:
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69836
Microsoft says:
Publicly disclosed: No
Exploited: No
Exploitability assessment: Exploitation Less Likely
and
This vulnerability has already been fully mitigated by Microsoft. There is no action for users of this service to take. The purpose of this CVE is to provide further transparency.
So does this mean that Microsoft was made aware by a third party that it was EITW? Because presumably it was exploited before it was published if no action is needed by the customer and Microsoft doesn't list it as EITW.
Edit: I now see this revision in the advisory:
Corrected Exploited to No. This vulnerability was not exploited in the wild. This is an informational change only.
So I assume that because it was incorrectly listed as EITW it ended up in the KEV. But now they say it wasn't EITW. Which is it? That's kind of important you fucking sloppy ass clanker fuckers.
##CVE ID: CVE-2026-69836
Vendor: Microsoft
Product: Entra ID
Date Added: 2026-08-21
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-69836
Entra ID : une faille critique a été exploitée, mais vous n’avez rien à patcher https://www.it-connect.fr/entra-id-cve-2026-69836-faille-cvss-10-exploitee/ #ActuCybersécurité #Cybersécurité #Vulnérabilité #Microsoft #EntraID
##A critical deserialization vulnerability (CVE-2026-69836) has been actively exploited in Microsoft Entra ID. The flaw could allow unauthorized access to identity and access management functions across Azure, M365, and Dynamics CRM Online.
#CriticalVulnerability #MicrosoftEntra #IdentitySecurity #Deserialization
https://cyberworldops.eu/en/cve-2026-69836-critical-vulnerability-exploited-in-microsoft-entra-id
##Microsoft corrige falha crítica no Entra ID, uma vulnerabilidade que permitia a execução de código malicioso sem privilégios. A falha, classificada como CVE-2026-69836, já foi explorada em ataques informáticos. 🛡️
##「Microsoft Entra IDの脆弱性(CVSS 10.0)が実際に悪用され、リモートコード実行が可能になる 」: #TheHackerNews
「マイクロソフトは木曜日、Entra IDに重大なセキュリティ上の欠陥があり、既に悪用されていると警告したが、顧客による対応は不要であると述べた。
CVE-2026-69836 (CVSSスコア:10.0)として追跡されているこの脆弱性は、 リモートコード実行によって、このテクノロジー大手企業のクラウドベースのIDおよびアクセス管理サービスに影響を与える事例です。このサービスは以前はAzure Active DirectoryまたはAzure ADと呼ばれていました。
マイクロソフトは木曜日に発表した警告の中で、 「Microsoft Entra IDにおける信頼できないデータの逆シリアル化により、権限のない攻撃者がネットワーク上でコードを実行できる可能性がある」 と述べた。 」
https://thehackernews.com/2026/08/microsoft-entra-id-flaw-cvss-100.html
##CVE-2026-69836, a CVSS 10 Entra ID remote code execution flaw, was exploited in the wild. Microsoft has fully mitigated it server-side.
#CVE202669836 #EntraID #RemoteCodeExecution #Microsoft #CloudSecurity #RCE
##updated 2026-08-22T04:17:47.940000
2 posts
Apache CloudStack patched 20 flaws. CVE-2026-50112, a critical bug, allows cross-tenant remote code execution as root on KVM hypervisor hosts.
#ApacheCloudStack #CVE202650112 #RCE #KVM #CloudSecurity #IaaS
##Apache CloudStack patched 20 flaws. CVE-2026-50112, a critical bug, allows cross-tenant remote code execution as root on KVM hypervisor hosts.
#ApacheCloudStack #CVE202650112 #RCE #KVM #CloudSecurity #IaaS
##updated 2026-08-22T03:31:33
2 posts
🟠 CVE-2026-19883 - High (8.8)
The WPeMatico RSS Feed Fetcher plugin for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to a missing capability check on the wpematico_import_settings function in all versions up to, and inc...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-19883/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-19883 - High (8.8)
The WPeMatico RSS Feed Fetcher plugin for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to a missing capability check on the wpematico_import_settings function in all versions up to, and inc...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-19883/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T23:16:25.617000
1 posts
Critical Vulnerability Discovered in Widely Used Software Framework
📰 Original title: CVE-2026-49360 Recce server has unauthenticated SQL execution that allows local file read/write through DuckDB
🤖 IA: It's not clickbait ✅
👥 Users: It's not clickbait ✅
View full AI summary https://en.killbait.com/critical-vulnerability-discovered-in-widely-used-software-framework.html?utm_source=mastodon_social&utm_medium=social&utm_campaign=killbait.mastodon_social
##updated 2026-08-21T22:16:45.517000
1 posts
🔴 CVE-2026-77022 - Critical (9.9)
A security flaw has been discovered in Comfast CF-N1-S 2.6.0.1. Affected by this issue is the function sub_44B438 of the file /cgi-bin/mbox-config?method=SET§ion=ptest_ssid of the component SSID Configuration. The manipulation of the argument ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77022/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T22:16:41.700000
2 posts
🔴 CVE-2026-62283 - Critical (9.9)
Nezha Monitoring is a self-hostable, lightweight, servers and websites monitoring and O&M tool. Nezha versions 1.14.13 through 1.14.14 and 2.0.0 through 2.0.9 do not bind stream identifiers created by CreateStream in service/rpc/io_stream.go to th...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-62283/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-62283 - Critical (9.9)
Nezha Monitoring is a self-hostable, lightweight, servers and websites monitoring and O&M tool. Nezha versions 1.14.13 through 1.14.14 and 2.0.0 through 2.0.9 do not bind stream identifiers created by CreateStream in service/rpc/io_stream.go to th...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-62283/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T22:16:40.203000
2 posts
🟠 CVE-2026-54071 - High (7.8)
BabelDOC is a document translation tool. Prior to 0.6.3, BabelDOC's vendored PDF parser in babeldoc/pdfminer/cmapdb.py deserializes untrusted pickle data when CMapDB._load_data() loads CMap files. PDF-controlled Encoding or CMapName values and emb...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-54071/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-54071 - High (7.8)
BabelDOC is a document translation tool. Prior to 0.6.3, BabelDOC's vendored PDF parser in babeldoc/pdfminer/cmapdb.py deserializes untrusted pickle data when CMapDB._load_data() loads CMap files. PDF-controlled Encoding or CMapName values and emb...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-54071/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T22:16:38.300000
4 posts
CVE-2026-49849 (CRITICAL): 4xmen xShop <3.0.4 lets authenticated admins upload dangerous files, leading to remote code execution 🛡️. Patch to 3.0.4 now. https://radar.offseq.com/threat/cve-2026-49849-cwe-434-unrestricted-upload-of-file-with-dangerous-type-in-4xmen-xshop-bbb8f71dbe4a15a6 #OffSeq #CVE202649849 #remotecodeexecution #infosec
##🔴 CVE-2026-49849 - Critical (9.1)
xShop is an open-source shop developed in Laravel. An Unrestricted File Upload vulnerability in xShop version 3.0.3 allows an authenticated administrator to upload executable files (e.g., .php). By uploading a specially crafted php file, an attack...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-49849/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-49849 (CRITICAL): 4xmen xShop <3.0.4 lets authenticated admins upload dangerous files, leading to remote code execution 🛡️. Patch to 3.0.4 now. https://radar.offseq.com/threat/cve-2026-49849-cwe-434-unrestricted-upload-of-file-with-dangerous-type-in-4xmen-xshop-bbb8f71dbe4a15a6 #OffSeq #CVE202649849 #remotecodeexecution #infosec
##🔴 CVE-2026-49849 - Critical (9.1)
xShop is an open-source shop developed in Laravel. An Unrestricted File Upload vulnerability in xShop version 3.0.3 allows an authenticated administrator to upload executable files (e.g., .php). By uploading a specially crafted php file, an attack...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-49849/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T22:16:37.143000
2 posts
🟠 CVE-2026-34741 - High (8.6)
Combodo iTop is a web based IT service management tool. Prior to 3.2.3, authentication bypass allows unauthenticated remote attackers to execute arbitrary PHP files from the env-production directory on a new iTop instance in the production environ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-34741/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-34741 - High (8.6)
Combodo iTop is a web based IT service management tool. Prior to 3.2.3, authentication bypass allows unauthenticated remote attackers to execute arbitrary PHP files from the env-production directory on a new iTop instance in the production environ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-34741/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T22:16:36.430000
2 posts
🟠 CVE-2026-31880 - High (8)
Combodo iTop is a web based IT service management tool. Prior to 3.2.3, there is a Reflected Cross-Site Scripting (XSS) vulnerability in the universal search. This issue has been fixed in version 3.2.3.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-31880/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-31880 - High (8)
Combodo iTop is a web based IT service management tool. Prior to 3.2.3, there is a Reflected Cross-Site Scripting (XSS) vulnerability in the universal search. This issue has been fixed in version 3.2.3.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-31880/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T22:16:36.303000
2 posts
🟠 CVE-2026-31803 - High (8)
Combodo iTop is a web based IT service management tool. Prior to 3.2.3, 3.2.3, there is a Reflected Cross-Site Scripting (XSS) vulnerability in pages/tagadmin.php. This issue has been fixed in version 3.2.3.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-31803/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-31803 - High (8)
Combodo iTop is a web based IT service management tool. Prior to 3.2.3, 3.2.3, there is a Reflected Cross-Site Scripting (XSS) vulnerability in pages/tagadmin.php. This issue has been fixed in version 3.2.3.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-31803/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T21:31:48
1 posts
Google patches CVE-2026-76017, a critical use-after-free in Chrome, among 7 security fixes. Update to 151.0.7922.173 or later now.
#Chrome #CVE #UseAfterFree #Google #BrowserSecurity #InfoSec #PatchNow
https://securityonline.info/chrome-cve-2026-76017/?utm_source=mastodon&utm_medium=jetpack_social
##updated 2026-08-21T21:17:08.903000
2 posts
🟠 CVE-2026-77811 - High (8.7)
Improper input validation in the dashboards-observability plugin in OpenSearch Dashboards allows a remote authenticated user with write permissions to OpenSearch Dashboards saved objects to execute arbitrary JavaScript in the context of other user...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77811/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-77811 - High (8.7)
Improper input validation in the dashboards-observability plugin in OpenSearch Dashboards allows a remote authenticated user with write permissions to OpenSearch Dashboards saved objects to execute arbitrary JavaScript in the context of other user...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77811/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T21:17:00.267000
2 posts
🟠 CVE-2026-54457 - High (7.7)
TensorZero is an open-source LLMOps platform that unifies an LLM gateway, observability, evaluation, optimization, and experimentation. Prior to 2026.6.0, the TensorZero Gateway /internal/object_storage endpoint accepts a caller-supplied JSON stor...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-54457/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-54457 - High (7.7)
TensorZero is an open-source LLMOps platform that unifies an LLM gateway, observability, evaluation, optimization, and experimentation. Prior to 2026.6.0, the TensorZero Gateway /internal/object_storage endpoint accepts a caller-supplied JSON stor...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-54457/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T21:16:59.807000
3 posts
CVE-2026-50538 - Critical OOB heap write in LibVNCServer's libvncclient. Malicious VNC server can overwrite memory pre-auth. CVSS 8.8. Update to fixed version now. #CVE #infosec #LibVNCServer
##🟠 CVE-2026-50538 - High (8.8)
LibVNCClient is a library for easy implementation of a VNC client. In versions 0.9.12 through 0.9.15, a malicious (or man-in-the-middle) VNC server can force a connecting `libvncclient` to write attacker-controlled data past the end of its framebu...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-50538/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-50538 - High (8.8)
LibVNCClient is a library for easy implementation of a VNC client. In versions 0.9.12 through 0.9.15, a malicious (or man-in-the-middle) VNC server can force a connecting `libvncclient` to write attacker-controlled data past the end of its framebu...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-50538/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T21:04:20
2 posts
CVE-2026-77415 (CRITICAL, CVSS 9.3) in jsonata-js (<1.8.8, <2.2.1): Attackers can chain object-integrity flaws to achieve arbitrary code execution. Patch to 1.8.8/2.2.1 ASAP. Details: https://radar.offseq.com/threat/cve-2026-77415-cwe-94-improper-control-of-generation-of-code-code-injection-in-jsonata-js-jsonata-b49c30a44f0e9211 #OffSeq #jsonata #security #vuln
##CVE-2026-77415 (CRITICAL, CVSS 9.3) in jsonata-js (<1.8.8, <2.2.1): Attackers can chain object-integrity flaws to achieve arbitrary code execution. Patch to 1.8.8/2.2.1 ASAP. Details: https://radar.offseq.com/threat/cve-2026-77415-cwe-94-improper-control-of-generation-of-code-code-injection-in-jsonata-js-jsonata-b49c30a44f0e9211 #OffSeq #jsonata #security #vuln
##updated 2026-08-21T20:58:02
2 posts
CRITICAL: CVE-2026-77414 in jsonata-js (<1.8.8, <2.2.1) enables remote code execution via code injection (CWE-94). Update to 1.8.8/2.2.1 now. No workaround. Details: https://radar.offseq.com/threat/cve-2026-77414-cwe-94-improper-control-of-generation-of-code-code-injection-in-jsonata-js-jsonata-247817ff13af01bb #OffSeq #CVE202677414 #infosec #security
##CRITICAL: CVE-2026-77414 in jsonata-js (<1.8.8, <2.2.1) enables remote code execution via code injection (CWE-94). Update to 1.8.8/2.2.1 now. No workaround. Details: https://radar.offseq.com/threat/cve-2026-77414-cwe-94-improper-control-of-generation-of-code-code-injection-in-jsonata-js-jsonata-247817ff13af01bb #OffSeq #CVE202677414 #infosec #security
##updated 2026-08-21T20:57:32
2 posts
🟠 CVE-2026-68508 - High (7.8)
Hydra is a framework for elegantly configuring complex applications. Prior to 1.3.4, hydra.utils.instantiate() resolves and calls Python objects selected by configuration through _resolve_target() in hydra/_internal/instantiate/_instantiate2.py, a...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-68508/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-68508 - High (7.8)
Hydra is a framework for elegantly configuring complex applications. Prior to 1.3.4, hydra.utils.instantiate() resolves and calls Python objects selected by configuration through _resolve_target() in hydra/_internal/instantiate/_instantiate2.py, a...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-68508/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T20:57:24
2 posts
🟠 CVE-2026-63135 - High (8.2)
YOURLS is a self-hosted, customizable URL shortener written in PHP. From 1.5.1 until 1.10.4, YOURLS stores the HTTP Referer header through yourls_get_referrer(), yourls_sanitize_url_safe(), and yourls_log_redirect(), then aggregates the value in y...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-63135/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-63135 - High (8.2)
YOURLS is a self-hosted, customizable URL shortener written in PHP. From 1.5.1 until 1.10.4, YOURLS stores the HTTP Referer header through yourls_get_referrer(), yourls_sanitize_url_safe(), and yourls_log_redirect(), then aggregates the value in y...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-63135/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T20:57:09
2 posts
jsonata-js (<1.8.8, <2.2.0) is affected by CRITICAL CVE-2026-77413 (CVSS 9.3) due to a code injection flaw in the lookup function. Attackers can execute arbitrary code remotely. Upgrade to 1.8.8 or 2.2.0+ ASAP. https://radar.offseq.com/threat/cve-2026-77413-cwe-94-improper-control-of-generation-of-code-code-injection-in-jsonata-js-jsonata-43a95a44c76d7f7e #OffSeq #CVE #infosec #security
##jsonata-js (<1.8.8, <2.2.0) is affected by CRITICAL CVE-2026-77413 (CVSS 9.3) due to a code injection flaw in the lookup function. Attackers can execute arbitrary code remotely. Upgrade to 1.8.8 or 2.2.0+ ASAP. https://radar.offseq.com/threat/cve-2026-77413-cwe-94-improper-control-of-generation-of-code-code-injection-in-jsonata-js-jsonata-43a95a44c76d7f7e #OffSeq #CVE #infosec #security
##updated 2026-08-21T20:56:39
4 posts
CVE-2026-61539: CRITICAL RCE in xorbitsai Xinference <=2.5.0 — attacker-controlled input reaches Python eval(), enabling unauthenticated code execution. Patch to 2.7.0. CVSS: 10.0 🛡️ https://radar.offseq.com/threat/cve-2026-61539-cwe-95-improper-neutralization-of-directives-in-dynamically-evaluated-code-eval-03188a31614e6f78 #OffSeq #CVE202661539 #infosec #remotecodeexecution
##🔴 CVE-2026-61539 - Critical (10)
Xinference is an inference API for running open-source, speech, and multimodal models. In 2.5.0 and earlier, Xinference passes attacker-influenced Llama3 tool-call output to eval() in xinference/model/llm/tool_parsers/llama3_tool_parser.py and xin...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-61539/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-61539: CRITICAL RCE in xorbitsai Xinference <=2.5.0 — attacker-controlled input reaches Python eval(), enabling unauthenticated code execution. Patch to 2.7.0. CVSS: 10.0 🛡️ https://radar.offseq.com/threat/cve-2026-61539-cwe-95-improper-neutralization-of-directives-in-dynamically-evaluated-code-eval-03188a31614e6f78 #OffSeq #CVE202661539 #infosec #remotecodeexecution
##🔴 CVE-2026-61539 - Critical (10)
Xinference is an inference API for running open-source, speech, and multimodal models. In 2.5.0 and earlier, Xinference passes attacker-influenced Llama3 tool-call output to eval() in xinference/model/llm/tool_parsers/llama3_tool_parser.py and xin...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-61539/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T20:55:47
3 posts
CVE-2026-76905 - Unpatched DoS in kin-openapi. Malformed multipart request triggers nil pointer panic in error handling. CVSS 7.5. No fix yet - monitor for updates and apply workarounds. #CVE #infosec #Go
##🟠 CVE-2026-76905 - High (7.5)
kin-openapi is a Go project for handling OpenAPI files. From 0.10.0 until 0.141.0, openapi3filter.convertParseError in openapi3filter/validation_error_encoder.go dereferences e.Parameter.In without checking whether e.Parameter is nil. A malformed ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-76905/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-76905 - High (7.5)
kin-openapi is a Go project for handling OpenAPI files. From 0.10.0 until 0.141.0, openapi3filter.convertParseError in openapi3filter/validation_error_encoder.go dereferences e.Parameter.In without checking whether e.Parameter is nil. A malformed ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-76905/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T20:55:33
2 posts
🟠 CVE-2026-64679 - High (8.1)
Atlantis is a self-hosted golang application that listens for Terraform pull request events via webhooks. From 0.19.8 until 0.45.0, Atlantis does not consistently validate user-controlled workspace values supplied through accepted repository-level...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-64679/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-64679 - High (8.1)
Atlantis is a self-hosted golang application that listens for Terraform pull request events via webhooks. From 0.19.8 until 0.45.0, Atlantis does not consistently validate user-controlled workspace values supplied through accepted repository-level...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-64679/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T20:55:12
2 posts
🟠 CVE-2026-63421 - High (7.5)
Keystone is a content management system for Node.js. Prior to 6.5.3, the findMany resolver in packages/core/src/lib/core/queries/resolvers.ts compares the signed take argument directly with graphql.maxTake, allowing a remote unauthenticated GraphQ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-63421/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-63421 - High (7.5)
Keystone is a content management system for Node.js. Prior to 6.5.3, the findMany resolver in packages/core/src/lib/core/queries/resolvers.ts compares the signed take argument directly with graphql.maxTake, allowing a remote unauthenticated GraphQ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-63421/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T20:54:57
2 posts
🟠 CVE-2026-61824 - High (8.2)
Defuddle cleans up HTML pages. Prior to 0.19.1, site extractors interpolate page-derived image alt and src values, og:image values, and video descriptions into HTML strings without context-appropriate escaping, and buildExtractorResponse() returns...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-61824/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-61824 - High (8.2)
Defuddle cleans up HTML pages. Prior to 0.19.1, site extractors interpolate page-derived image alt and src values, og:image values, and video descriptions into HTML strings without context-appropriate escaping, and buildExtractorResponse() returns...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-61824/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T20:26:30
2 posts
1 repos
🔴 CVE-2026-76904 - Critical (9.8)
GeoTools is an open source Java library that provides tools for geospatial data. Starting in version 30.5 and prior to versions 33.6, 34.5, and 33.6, an SQL Injection Vulnerability is present when executing OGC Filters with PostGIS DataStore imple...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-76904/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-76904 - Critical (9.8)
GeoTools is an open source Java library that provides tools for geospatial data. Starting in version 30.5 and prior to versions 33.6, 34.5, and 33.6, an SQL Injection Vulnerability is present when executing OGC Filters with PostGIS DataStore imple...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-76904/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T20:16:33.870000
2 posts
🟠 CVE-2026-27462 - High (7.5)
Combodo iTop is a web based IT service management tool. Prior to 3.2.3, iTop returns different responses for valid/invalid usernames depending on multiple factors in the reset password mechanism, leading to user enumeration. This issue has been fi...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-27462/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-27462 - High (7.5)
Combodo iTop is a web based IT service management tool. Prior to 3.2.3, iTop returns different responses for valid/invalid usernames depending on multiple factors in the reset password mechanism, leading to user enumeration. This issue has been fi...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-27462/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T19:14:39
2 posts
🟠 CVE-2026-63462 - High (7.5)
Unleash is an open-source feature management platform. Prior to 7.5.2, 7.6.5, and 8.0.2, the shared OpenAPI validation error path in src/lib/error/bad-data-error.ts passes a raw request value from lodash.get to JSON.stringify in genericErrorMessag...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-63462/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-63462 - High (7.5)
Unleash is an open-source feature management platform. Prior to 7.5.2, 7.6.5, and 8.0.2, the shared OpenAPI validation error path in src/lib/error/bad-data-error.ts passes a raw request value from lodash.get to JSON.stringify in genericErrorMessag...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-63462/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T18:56:07.450000
1 posts
🟠 CVE-2026-76397 - High (8.1)
In Splunk AI Toolkit versions below 6.0.0, a user who holds the "power" Splunk role could access and delete all relevant data in experiment history, including data associated with other users. The vulnerability is possible because Splunk AI Toolki...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-76397/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T18:35:08
2 posts
🟠 CVE-2026-41451 - High (7.8)
UAC (Unix-like Artifacts Collector) versions prior to 3.3.0 contain a command injection vulnerability in the user substitution logic within parse_artifact.sh where usernames and home directories from /etc/passwd are substituted directly into comma...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-41451/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-41451 - High (7.8)
UAC (Unix-like Artifacts Collector) versions prior to 3.3.0 contain a command injection vulnerability in the user substitution logic within parse_artifact.sh where usernames and home directories from /etc/passwd are substituted directly into comma...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-41451/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T18:35:08
2 posts
🟠 CVE-2026-41449 - High (7.8)
UAC (Unix-like Artifacts Collector) versions prior to 3.3.0 contain a command injection vulnerability in the _run_command function that allows attackers to execute arbitrary commands by injecting shell metacharacters into untrusted data such as us...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-41449/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-41449 - High (7.8)
UAC (Unix-like Artifacts Collector) versions prior to 3.3.0 contain a command injection vulnerability in the _run_command function that allows attackers to execute arbitrary commands by injecting shell metacharacters into untrusted data such as us...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-41449/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T18:35:07
2 posts
🟠 CVE-2026-41450 - High (7.8)
UAC (Unix-like Artifacts Collector) versions prior to 3.3.0 contain a command injection vulnerability in the _command_collector function where foreach command output lines are substituted directly into command strings via sed without proper escapi...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-41450/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-41450 - High (7.8)
UAC (Unix-like Artifacts Collector) versions prior to 3.3.0 contain a command injection vulnerability in the _command_collector function where foreach command output lines are substituted directly into command strings via sed without proper escapi...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-41450/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T18:35:07
2 posts
🟠 CVE-2026-39909 - High (8.1)
llama.cpp before b8585 contains a use-after-free vulnerability in the RPC server's GRAPH_RECOMPUTE handler that allows unauthenticated remote attackers to achieve arbitrary read and write access by storing a computation graph, freeing referenced b...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-39909/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-39909 - High (8.1)
llama.cpp before b8585 contains a use-after-free vulnerability in the RPC server's GRAPH_RECOMPUTE handler that allows unauthenticated remote attackers to achieve arbitrary read and write access by storing a computation graph, freeing referenced b...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-39909/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T18:35:02
3 posts
CVE-2026-75932 - Critical Jet Admin vuln: malicious app can hijack custom domain & steal OAuth secrets. CVSS 8.6. Unpatched — audit configs & block app creation. #CVE #JetAdmin #infosec
##🟠 CVE-2026-75932 - High (8.6)
Jet Admin allows an attacker to create a malicious app and connect it to a target user's custom domain, edit the authentication configuration, and reroute traffic to the attacker-controlled app. Once connected to the target domain, the attacker's ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-75932/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-75932 - High (8.6)
Jet Admin allows an attacker to create a malicious app and connect it to a target user's custom domain, edit the authentication configuration, and reroute traffic to the attacker-controlled app. Once connected to the target domain, the attacker's ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-75932/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T18:35:01
3 posts
CVE-2026-69502 - Critical SSRF in Azure SQL DB allows privilege escalation. CVSS 10. Patch under review - update when available. #CVE #Azure #infosec
##🔴 CVE-2026-69502 - Critical (10)
Server-side request forgery (ssrf) in Azure SQL Database allows an unauthorized attacker to elevate privileges over a network.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-69502/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-69502 - Critical (10)
Server-side request forgery (ssrf) in Azure SQL Database allows an unauthorized attacker to elevate privileges over a network.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-69502/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T18:35:01
2 posts
1 repos
🟠 CVE-2026-22681 - High (8.5)
OpenViking before 0.3.4 contains a server-side request forgery vulnerability that allows authenticated low-privilege attackers to access internal network services by submitting arbitrary URLs to the resources API endpoint. Attackers can POST a cr...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-22681/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-22681 - High (8.5)
OpenViking before 0.3.4 contains a server-side request forgery vulnerability that allows authenticated low-privilege attackers to access internal network services by submitting arbitrary URLs to the resources API endpoint. Attackers can POST a cr...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-22681/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T18:34:56
2 posts
CVE-2026-75501 exposes an unauthenticated UPnP service on Calix routers. Public details and PoC code show how attackers bypass NAT and firewall protections.
#CVE202675501 #Calix #UPnP #RouterSecurity #NAT #IoTSecurity
##CVE-2026-75501 exposes an unauthenticated UPnP service on Calix routers. Public details and PoC code show how attackers bypass NAT and firewall protections.
#CVE202675501 #Calix #UPnP #RouterSecurity #NAT #IoTSecurity
##updated 2026-08-21T18:34:48
14 posts
1 repos
Geopolitical tensions rise as the US escalates economic pressure on Iran, which labels new sanctions as a "declaration of war". Ukraine faces critical missile shortages amid intensified Russian strikes. In technology, major investments continue in AI infrastructure, with Google backing Marvell's custom AI chips. Cybersecurity sees CISA adding a critical Zimbra vulnerability (CVE-2026-73570) to its KEV catalog and new banking Trojans actively exploited globally.
##Critical Zimbra Vulnerability Enters CISA’s KEV Catalog as Attackers Exploit Unauthenticated Remote Code Execution + Video
A New Warning for Zimbra Administrators A serious security warning is now hanging over organizations running Zimbra Collaboration Suite (ZCS). The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added CVE-2026-73570 to its Known Exploited Vulnerabilities (KEV) catalog after Poland’s national cybersecurity response team confirmed…
##🏆 New Achievement! Patch Notes: Server Owned by Community!
CHANGELOG v-Oh-No: ADDED — unauthenticated remote attackers executing arbitrary OS commands as the Zimbra user. ADDED — full control of your enterprise email server, courtesy of CVE-2026-73570. FIXED (by the developers, on July 20, in version 10.1.20) — the exact hole threat actors are currently crawling through, per Poland's CERT Polska. KNOWN ISSUE — you haven't patched yet.
The fix shipped over a month ago. (1/2)
##🚨 [CISA-2026:0821] CISA Adds 2 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0821)
CISA has added 2 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2026-69836 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-69836)
- Name: Microsoft Entra ID Deserialization of Untrusted Data Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Microsoft
- Product: Entra ID
- Notes: https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69836 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-69836
⚠️ CVE-2026-73570 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-73570)
- Name: Zimbra Collaboration Suite (ZCS) OS Command Injection Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Synacor
- Product: Zimbra Collaboration Suite (ZCS)
- Notes: https://wiki.zimbra.com/wiki/Zimbra_Security_Advisories ; https://blog.zimbra.com/2026/07/patch-release-update-zimbra-10-1-20/ ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-73570
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260821 #cisa20260821 #cve_2026_69836 #cve_2026_73570 #cve202669836 #cve202673570
##CVE ID: CVE-2026-73570
Vendor: Synacor
Product: Zimbra Collaboration Suite (ZCS)
Date Added: 2026-08-21
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-73570
Geopolitical tensions rise as the US escalates economic pressure on Iran, which labels new sanctions as a "declaration of war". Ukraine faces critical missile shortages amid intensified Russian strikes. In technology, major investments continue in AI infrastructure, with Google backing Marvell's custom AI chips. Cybersecurity sees CISA adding a critical Zimbra vulnerability (CVE-2026-73570) to its KEV catalog and new banking Trojans actively exploited globally.
##🏆 New Achievement! Patch Notes: Server Owned by Community!
CHANGELOG v-Oh-No: ADDED — unauthenticated remote attackers executing arbitrary OS commands as the Zimbra user. ADDED — full control of your enterprise email server, courtesy of CVE-2026-73570. FIXED (by the developers, on July 20, in version 10.1.20) — the exact hole threat actors are currently crawling through, per Poland's CERT Polska. KNOWN ISSUE — you haven't patched yet.
The fix shipped over a month ago. (1/2)
##🚨 [CISA-2026:0821] CISA Adds 2 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0821)
CISA has added 2 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2026-69836 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-69836)
- Name: Microsoft Entra ID Deserialization of Untrusted Data Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Microsoft
- Product: Entra ID
- Notes: https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69836 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-69836
⚠️ CVE-2026-73570 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-73570)
- Name: Zimbra Collaboration Suite (ZCS) OS Command Injection Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Synacor
- Product: Zimbra Collaboration Suite (ZCS)
- Notes: https://wiki.zimbra.com/wiki/Zimbra_Security_Advisories ; https://blog.zimbra.com/2026/07/patch-release-update-zimbra-10-1-20/ ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-73570
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260821 #cisa20260821 #cve_2026_69836 #cve_2026_73570 #cve202669836 #cve202673570
##CVE ID: CVE-2026-73570
Vendor: Synacor
Product: Zimbra Collaboration Suite (ZCS)
Date Added: 2026-08-21
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-73570
Critical Zimbra RCE Vulnerability Exploited in Global Attacks
Zimbra patched nine vulnerabilities in its Collaboration Suite, including a critical RCE flaw (CVE-2026-73570) that attackers are currently exploiting to take control of mail servers. Organizations should update to version 10.1.20 and check logs for signs of compromise.
**If you run Zimbra Collaboration Suite, update to version 10.1.20 ASAP. Attackers are already exploiting this to take over mail servers, and everything older is vulnerable. Because this flaw is being actively exploited, also check for signs of breach: look for unexpected files in `/opt/zimbra/jetty/webapps/` and `/tmp/`, and review `/var/log/zimbra.log` for services restarting on their own.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/critical-zimbra-rce-vulnerability-exploited-in-global-attacks-p-1-4-k-y/gD2P6Ple2L
CVE-2026-73570 in Zimbra Collaboration Suite is under active exploitation. CERT Polska flagged real-world attacks this week. The flaw grants unauthenticated remote OS command execution when zimbra-snmp is installed with SNMP enabled. Attacker identity and campaign goals remain unknown — patch priority is critical for affected deployments.
#Zimbra #CVE202673570 #ThreatIntelligence #PatchNow
https://cyberworldops.eu/en/zimbra-cve-2026-73570-exploited-in-the-wild-who-needs-to-patch
##Active exploitation of CVE-2026-73570 in Zimbra Collaboration Suite is underway. The command injection flaw enables unauthenticated RCE on ZCS versions prior to 10.1.20 when zimbra-snmp is installed with SNMP notifications active. Attackers exploit this via crafted SMTP requests for full server compromise. Patch or disable SNMP immediately.
#ZimbraRCE #CVE202673570 #PatchNow
https://cyberworldops.eu/en/zimbra-vulnerability-exploited-to-enable-unauthenticated-remote
##CRITICAL: CVE-2026-73570 in Zimbra Collaboration Suite is under active exploit. RCE via SNMP notifications lets unauth attackers run OS commands as Zimbra user. Patch to 10.1.20 now & monitor for abnormal files/restarts. Details: https://radar.offseq.com/threat/critical-zimbra-rce-flaw-now-actively-exploited-in-attacks-7db25eca9fa27ac1 #OffSeq #Zimbra #Vuln
##CVE-2026-73570 is exploited in the wild. This unauthenticated RCE hits Zimbra Collaboration via SNMP notifications. Patch to 10.1.20 now.
#Zimbra #CVE #RCE #RemoteCodeExecution #ExploitedInTheWild #InfoSec #PatchNow
https://securityonline.info/zimbra-cve-2026-73570/?utm_source=mastodon&utm_medium=jetpack_social
##updated 2026-08-21T18:16:52.527000
2 posts
Go hack more drone shit.
##Go hack more drone shit.
##updated 2026-08-21T18:16:52.373000
2 posts
CVE-2026-77806, a CVSS 9.8 SPIP unauthenticated RCE, is exploited in the wild. A public Metasploit module and full details are now available.
#CVE202677806 #SPIP #RCE #ExploitedInTheWild #Metasploit #CMS
##CVE-2026-77806, a CVSS 9.8 SPIP unauthenticated RCE, is exploited in the wild. A public Metasploit module and full details are now available.
#CVE202677806 #SPIP #RCE #ExploitedInTheWild #Metasploit #CMS
##updated 2026-08-21T18:16:49.460000
2 posts
🔴 CVE-2026-62674 - Critical (9)
Omnigent is an open-source AI agent framework and meta-harness for orchestrating coding agents. Prior to 0.3.0, PUT /sessions/{session_id}/agent checks LEVEL_EDIT permission for a session but does not reject a bound shared or template agent whose ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-62674/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-62674 - Critical (9)
Omnigent is an open-source AI agent framework and meta-harness for orchestrating coding agents. Prior to 0.3.0, PUT /sessions/{session_id}/agent checks LEVEL_EDIT permission for a session but does not reject a bound shared or template agent whose ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-62674/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T17:16:41.320000
2 posts
Three Red Hat flaws enable privilege escalation, led by CVE-2026-67567 (CVSS 9.9) in ACM. Two FreeIPA bugs can reach full domain compromise.
#RedHat #CVE202667567 #PrivilegeEscalation #FreeIPA #Kubernetes #ACM
##🔴 CVE-2026-67567 - Critical (9.9)
A flaw was found in the multicloud-operators-subscription component. This vulnerability allows a tenant, who has the ability to create HelmRelease custom resources (CRs), to bypass existing security controls. The system's HelmRelease controller pr...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-67567/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T16:18:16.620000
1 posts
🟠 CVE-2026-73137 - High (7.7)
A flaw was found in the multicloud-operators-subscription component of Red Hat Advanced Cluster Management (RHACM). A tenant with HelmRelease create permissions can exploit this vulnerability by manipulating the `secretRef.Namespace` field. This a...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-73137/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T15:33:14
1 posts
CVE-2026-18781: CRITICAL code injection in Drag and Drop Multiple File Upload for Contact Form 7 <1.3.9.9. Unauthenticated users can run code on affected WordPress servers. No patch yet — restrict or disable plugin. https://radar.offseq.com/threat/cve-2026-18781-cwe-94-improper-control-of-generation-of-code-code-injection-in-drag-and-drop-multiple-23e69d42b3732263 #OffSeq #WordPress #Infosec #CVE202618781
##updated 2026-08-21T15:32:19
2 posts
🟠 CVE-2026-77814 - High (7.5)
is_path_trusted in scripts/iib/api.py compares the requested path against each allowed parent directory with path.startswith(parent_path), without appending a path separator. A directory whose name merely begins with an allowed path therefore sati...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77814/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-77814 - High (7.5)
is_path_trusted in scripts/iib/api.py compares the requested path against each allowed parent directory with path.startswith(parent_path), without appending a path separator. A directory whose name merely begins with an allowed path therefore sati...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77814/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T15:32:18
3 posts
CVE-2026-77087 - Critical RCE in Paperclip <0.3.1 via DNS rebinding. Host header validation flaw allows authenticated API abuse. CVSS 9.6. No patch yet - update when available. #CVE #infosec #Paperclip
##🔴 CVE-2026-77087 - Critical (9.6)
Paperclip before 0.3.1 in default local_trusted mode fails to validate Host headers, allowing attackers to execute arbitrary commands via DNS rebinding. An attacker can craft a malicious webpage that, when visited by a developer running Paperclip ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77087/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-77087 - Critical (9.6)
Paperclip before 0.3.1 in default local_trusted mode fails to validate Host headers, allowing attackers to execute arbitrary commands via DNS rebinding. An attacker can craft a malicious webpage that, when visited by a developer running Paperclip ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77087/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T15:32:18
2 posts
🟠 CVE-2026-77815 - High (7.5)
to_abs_path in scripts/iib/tool.py normalised the requested path with os.path.normpath, which collapses dot segments but does not resolve symbolic links. A symlink placed inside a scanned directory therefore satisfies the containment comparison pe...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77815/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-77815 - High (7.5)
to_abs_path in scripts/iib/tool.py normalised the requested path with os.path.normpath, which collapses dot segments but does not resolve symbolic links. A symlink placed inside a scanned directory therefore satisfies the containment comparison pe...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77815/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T14:16:53.637000
1 posts
CVE-2026-77683: CRITICAL command injection in Comfast CF-N1-S (2.6.0.1) via /cgi-bin/mbox-config timestr parameter. Public exploit available, remote exploitation possible. Patch unavailable. https://radar.offseq.com/threat/cve-2026-77683-command-injection-in-comfast-cf-n1-s-c0a0594c5aac367d #OffSeq #CVE202677683 #IoTSecurity #CommandInjection
##updated 2026-08-21T14:16:53.510000
1 posts
CVE-2026-77651 | CRITICAL in Rust 'arrayref' 0.3.10 🛑 Malicious dependency enables remote code execution during build. Full build environment compromise possible. Avoid 0.3.10, audit dependencies. Details: https://radar.offseq.com/threat/cve-2026-77651-cwe-506-embedded-malicious-code-in-droundy-arrayref-c761153d40c2552d #OffSeq #RustLang #CVE2026 #Infosec
##updated 2026-08-21T12:30:41
5 posts
CVE-2026-77776 - Critical IDOR in Headroom LLM proxy. Spoof x-headroom-user-id to read/write other users' memory. CVSS 9.1. No patch yet - restrict access now. #CVE #Headroom #infosec
##🔴 CVE-2026-77776 - Critical (9.1)
Headroom's LLM proxy derives the memory owner from the x-headroom-user-id request header. The header is read directly at several points in headroom/proxy/handlers/openai.py, including the chat completion and websocket paths, and nothing binds the ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77776/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CRITICAL: CVE-2026-77776 in Headroom Labs Headroom (<0.36.1) allows unauth'd attackers to spoof x-headroom-user-id and access/modify any user's LLM memory. Default configs expose this via 0.0.0.0 binding. Restrict access & use auth tokens. https://radar.offseq.com/threat/cve-2026-77776-authorization-bypass-through-user-controlled-key-in-headroom-labs-headroom-0c2eff15c1a3dc1f #OffSeq #CVE #infosec #LLM
##🔴 CVE-2026-77776 - Critical (9.1)
Headroom's LLM proxy derives the memory owner from the x-headroom-user-id request header. The header is read directly at several points in headroom/proxy/handlers/openai.py, including the chat completion and websocket paths, and nothing binds the ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77776/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CRITICAL: CVE-2026-77776 in Headroom Labs Headroom (<0.36.1) allows unauth'd attackers to spoof x-headroom-user-id and access/modify any user's LLM memory. Default configs expose this via 0.0.0.0 binding. Restrict access & use auth tokens. https://radar.offseq.com/threat/cve-2026-77776-authorization-bypass-through-user-controlled-key-in-headroom-labs-headroom-0c2eff15c1a3dc1f #OffSeq #CVE #infosec #LLM
##updated 2026-08-21T12:30:35
2 posts
🟠 CVE-2026-77775 - High (8.6)
Headroom's LLM proxy lets a client choose the upstream destination with the x-headroom-base-url request header. _resolve_openai_upstream_base in headroom/proxy/handlers/openai.py accepts the header value, requires only that it parse with an http o...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77775/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-77775 - High (8.6)
Headroom's LLM proxy lets a client choose the upstream destination with the x-headroom-base-url request header. _resolve_openai_upstream_base in headroom/proxy/handlers/openai.py accepts the header value, requires only that it parse with an http o...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77775/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T12:30:34
2 posts
🟠 CVE-2026-59279 - High (7.5)
The MCP Streamable HTTP server transport (WebFlux and WebMvc variants) does not place any limit on the number of sessions it retains, and by default does not require clients to be authenticated. As a result, a remote attacker can cause the server ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-59279/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-59279 - High (7.5)
The MCP Streamable HTTP server transport (WebFlux and WebMvc variants) does not place any limit on the number of sessions it retains, and by default does not require clients to be authenticated. As a result, a remote attacker can cause the server ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-59279/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T11:17:05.920000
1 posts
🟠 CVE-2026-72818 - High (7.5)
The URLS regular expression in nltk/tokenize/casual.py, compiled into TweetTokenizer.WORD_RE and applied by TweetTokenizer.tokenize, contains a naked-domain branch whose domain-label prefix [a-z0-9]+(?:[.\-][a-z0-9]+)* is unbounded. Input consisti...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-72818/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T04:18:20.733000
1 posts
Splunk patches three critical embedded report flaws (CVE-2026-76310, CVSS 9.4) that let unauthenticated users affect system integrity.
#Splunk #CVE #AccessControl #SplunkEnterprise #Vulnerability #InfoSec #PatchNow
##updated 2026-08-21T04:18:15.903000
9 posts
🏆 New Achievement! Port 4307 Is Not a Safe Harbor!
Conducting inventory audit on your TrueConf Server installation. Status: compromised. Line items include two unauthenticated RCE vulnerabilities — CVE-2026-72529 and CVE-2026-72530 — currently checked out under the name Head Mare, a hacktivist group who used them to swap a server file for a web shell and deploy PhantomCore malware. Item condition: cursed. (1/2)
##⚠️ CRITICAL: CISA orders feds to patch actively exploited TrueConf Server flaws
Two critical unauthenticated RCE vulnerabilities (CVE-2026-72529, CVE-2026-72530) in TrueConf Server are being actively exploited by Head Mare group to deploy backdoor malware via trojanized installers. Any organization running TrueConf Server is at immediate risk of compromise.
🤖 AI generated summary
##🔴 New security advisory:
CVE-2026-72530 affects Trueconf Server.
• Impact: Remote code execution or complete system compromise possible
• Risk: Attackers can gain full control of affected systems
• Mitigation: Patch immediately or isolate affected systems
Full breakdown:
https://www.yazoul.net/advisory/cve/cve-2026-72530-trueconf-server-rce-exploited-in-the-wild
by Yazoul AI
##🏆 New Achievement! Port 4307 Is Not a Safe Harbor!
Conducting inventory audit on your TrueConf Server installation. Status: compromised. Line items include two unauthenticated RCE vulnerabilities — CVE-2026-72529 and CVE-2026-72530 — currently checked out under the name Head Mare, a hacktivist group who used them to swap a server file for a web shell and deploy PhantomCore malware. Item condition: cursed. (1/2)
##⚠️ CRITICAL: CISA orders feds to patch actively exploited TrueConf Server flaws
Two critical unauthenticated RCE vulnerabilities (CVE-2026-72529, CVE-2026-72530) in TrueConf Server are being actively exploited by Head Mare group to deploy backdoor malware via trojanized installers. Any organization running TrueConf Server is at immediate risk of compromise.
🤖 AI generated summary
##CISA confirms two TrueConf Server flaws, CVE-2026-72529 and CVE-2026-72530, are exploited in the wild to deliver PhantomCore malware. Patch now.
#TrueConf #CVE #ExploitedInTheWild #PhantomCore #HeadMare #InfoSec #PatchNow
##CISA has added two known vulnerabilities to the KEV catalogue.
- CVE-2026-72529: TrueConf Server Missing Authentication for Critical Function Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-72529
- CVE-2026-72530: TrueConf Server Code Injection Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-72530 #CISA
Yesterday:
Cisco:
CRITICAL: CVE-2026-20231, CVE-2026-20315, and CVE-2026-20317: Secure Workload Software Security Hardening Release: August 2026 https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-hardening-csw1-shSvndWP @TalosSecurity #Cisco #infosec #vulnerability
##🚨 [CISA-2026:0820] CISA Adds 2 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0820)
CISA has added 2 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2026-72529 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-72529)
- Name: TrueConf Server Missing Authentication for Critical Function Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: TrueConf
- Product: Server
- Notes: https://trueconf.com/blog/news/security-fixes-updates-and-advisories ; https://ics-cert.kaspersky.com/advisories/2026/08/11/trueconf-server-missing-authentication-for-critical-function/ ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-72529
⚠️ CVE-2026-72530 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-72530)
- Name: TrueConf Server Code Injection Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: TrueConf
- Product: Server
- Notes: https://trueconf.com/blog/news/security-fixes-updates-and-advisories ; https://ics-cert.kaspersky.com/advisories/2026/08/11/trueconf-server-breakout-from-isolated-environment/ ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-72530
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260820 #cisa20260820 #cve_2026_72529 #cve_2026_72530 #cve202672529 #cve202672530
##CVE ID: CVE-2026-72530
Vendor: TrueConf
Product: Server
Date Added: 2026-08-20
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-72530
updated 2026-08-21T04:18:15.753000
10 posts
🏆 New Achievement! Port 4307 Is Not a Safe Harbor!
Conducting inventory audit on your TrueConf Server installation. Status: compromised. Line items include two unauthenticated RCE vulnerabilities — CVE-2026-72529 and CVE-2026-72530 — currently checked out under the name Head Mare, a hacktivist group who used them to swap a server file for a web shell and deploy PhantomCore malware. Item condition: cursed. (1/2)
##⚠️ CRITICAL: CISA orders feds to patch actively exploited TrueConf Server flaws
Two critical unauthenticated RCE vulnerabilities (CVE-2026-72529, CVE-2026-72530) in TrueConf Server are being actively exploited by Head Mare group to deploy backdoor malware via trojanized installers. Any organization running TrueConf Server is at immediate risk of compromise.
🤖 AI generated summary
##Critical Alert: CVE-2026-72529 allows unauthenticated command execution on TrueConf Servers. Our T-SUITE report maps the attack surface and provides immediate hardening steps to secure your perimeter. Read the full brief here. https://thecybermind.co/jily
##🏆 New Achievement! Port 4307 Is Not a Safe Harbor!
Conducting inventory audit on your TrueConf Server installation. Status: compromised. Line items include two unauthenticated RCE vulnerabilities — CVE-2026-72529 and CVE-2026-72530 — currently checked out under the name Head Mare, a hacktivist group who used them to swap a server file for a web shell and deploy PhantomCore malware. Item condition: cursed. (1/2)
##⚠️ CRITICAL: CISA orders feds to patch actively exploited TrueConf Server flaws
Two critical unauthenticated RCE vulnerabilities (CVE-2026-72529, CVE-2026-72530) in TrueConf Server are being actively exploited by Head Mare group to deploy backdoor malware via trojanized installers. Any organization running TrueConf Server is at immediate risk of compromise.
🤖 AI generated summary
##Critical Alert: CVE-2026-72529 allows unauthenticated command execution on TrueConf Servers. Our T-SUITE report maps the attack surface and provides immediate hardening steps to secure your perimeter. Read the full brief here. https://thecybermind.co/jily
##CISA confirms two TrueConf Server flaws, CVE-2026-72529 and CVE-2026-72530, are exploited in the wild to deliver PhantomCore malware. Patch now.
#TrueConf #CVE #ExploitedInTheWild #PhantomCore #HeadMare #InfoSec #PatchNow
##CISA has added two known vulnerabilities to the KEV catalogue.
- CVE-2026-72529: TrueConf Server Missing Authentication for Critical Function Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-72529
- CVE-2026-72530: TrueConf Server Code Injection Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-72530 #CISA
Yesterday:
Cisco:
CRITICAL: CVE-2026-20231, CVE-2026-20315, and CVE-2026-20317: Secure Workload Software Security Hardening Release: August 2026 https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-hardening-csw1-shSvndWP @TalosSecurity #Cisco #infosec #vulnerability
##🚨 [CISA-2026:0820] CISA Adds 2 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0820)
CISA has added 2 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2026-72529 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-72529)
- Name: TrueConf Server Missing Authentication for Critical Function Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: TrueConf
- Product: Server
- Notes: https://trueconf.com/blog/news/security-fixes-updates-and-advisories ; https://ics-cert.kaspersky.com/advisories/2026/08/11/trueconf-server-missing-authentication-for-critical-function/ ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-72529
⚠️ CVE-2026-72530 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-72530)
- Name: TrueConf Server Code Injection Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: TrueConf
- Product: Server
- Notes: https://trueconf.com/blog/news/security-fixes-updates-and-advisories ; https://ics-cert.kaspersky.com/advisories/2026/08/11/trueconf-server-breakout-from-isolated-environment/ ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-72530
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260820 #cisa20260820 #cve_2026_72529 #cve_2026_72530 #cve202672529 #cve202672530
##CVE ID: CVE-2026-72529
Vendor: TrueConf
Product: Server
Date Added: 2026-08-20
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-72529
updated 2026-08-21T04:18:02.220000
1 posts
CVE-2026-19586 (CVSS 9.3) is a pre-authentication OS command injection flaw in Omada gateways. TP-Link has released fixed firmware.
#Omada #TPLink #CVE202619586 #CommandInjection #OpenVPN #NetworkSecurity
##updated 2026-08-21T03:31:30
1 posts
CVE-2026-76158: Datiphy Data Management Center 8.3.0 faces CRITICAL vuln (CVSS 9.3) — upload API allows unauthenticated file writes anywhere via path traversal 🗂️. Restrict access & monitor uploads until patch. https://radar.offseq.com/threat/cve-2026-76158-cwe-73-external-control-of-file-name-or-path-in-datiphy-inc-data-management-center-6c6f4960c6201d48 #OffSeq #Vuln #Datiphy #CVE202676158
##updated 2026-08-21T03:31:29
1 posts
Datiphy Data Management Center 8.3.0 hit by CRITICAL vuln (CVE-2026-76155) due to default admin creds. Remote attackers can gain full access. No patch yet — change credentials & limit access ASAP. https://radar.offseq.com/threat/cve-2026-76155-cwe-1392-use-of-default-credentials-in-datiphy-inc-data-management-center-6739f6ae6f5ecf78 #OffSeq #CVE #Vuln #Datiphy
##updated 2026-08-21T03:31:29
1 posts
CVE-2026-76156: CRITICAL OS command injection in Datiphy Data Management Center (8.3.0 – 8.5.1). Authenticated admins can run root OS commands via API. No patch yet — restrict admin access, monitor activity. https://radar.offseq.com/threat/cve-2026-76156-cwe-78-improper-neutralization-of-special-elements-used-in-an-os-command-os-command-af474791202edb0c #OffSeq #CVE202676156 #Vuln #Infosec
##updated 2026-08-21T00:31:31
3 posts
📰 Critical RCE Flaw in SPIP CMS Under Active Exploitation
🚨 Critical RCE vulnerability (CVE-2026-77647, CVSS 9.8) in SPIP CMS is under active exploitation. The unauthenticated flaw allows full server takeover. All versions before 4.4.20 are vulnerable. #SPIP #RCE #Vulnerability #PatchNow
##CVE-2026-77647, a CVSS 9.8 unauthenticated RCE in SPIP before 4.4.20, is exploited in the wild. Update now.
#SPIP #CVE202677647 #RCE #ExploitedInTheWild #CMS #WebSecurity
https://securityonline.info/cve-2026-77647-spip-rce/?utm_source=mastodon&utm_medium=jetpack_social
##🔴 CVE-2026-77647 - Critical (9.8)
SPIP before 4.4.20 allows unauthenticated remote attackers to execute arbitrary code, as exploited in the wild in August 2026. This is related to incorrect identification of <?php blocks, and var_export's mishandling of certain cases such ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77647/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T00:31:31
1 posts
CRITICAL RCE flaw (CVE-2026-77645) in PTC Windchill PDMLink (multiple versions). Unauthenticated attackers can execute remote code via insecure deserialization. No patch yet — restrict access & monitor closely. https://radar.offseq.com/threat/cve-2026-77645-cwe-20-improper-input-validation-in-ptc-windchill-pdmlink-d801e9b56795a3c8 #OffSeq #Vulnerability #PTC #Infosec
##updated 2026-08-21T00:31:31
1 posts
🟠 CVE-2026-69855 - High (7.7)
Server-side request forgery (ssrf) in Microsoft Copilot in Azure allows an authorized attacker to disclose information over a network.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-69855/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T00:31:31
1 posts
🟠 CVE-2026-72848 - High (8.6)
SitemapLoader.parse_sitemap in langchain_community/document_loaders/sitemap.py applies the documented restrict_to_same_domain control only to leaf url entries. The loop over url elements filters cross-domain locations, but the loop over nested sit...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-72848/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T00:31:31
1 posts
🟠 CVE-2026-77642 - High (7.5)
tor before 0.4.9.9 was prone to an out-of-bounds write when parsing a consensus or detached signature with unexpected signature digest type. Impact is minor for most Tor roles, but potentially major for directory authorities. This is TROVE-20...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77642/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-21T00:31:24
1 posts
🔴 CVE-2026-72843 - Critical (9.8)
The customer update route in EverShop is declared with "access": "public" in packages/evershop/src/modules/customer/api/updateCustomer/route.json, which causes the admin authentication middleware to call next() without checking the caller, and no ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-72843/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T22:18:05.787000
1 posts
🟠 CVE-2026-72860 - High (8.5)
The POST /api/provider-nodes/validate route in 9router takes a caller-supplied baseUrl and issues server-side HTTP requests to it, guarding the destination with assertPublicUrl from src/shared/utils/ssrfGuard.js. That guard compares hostname strin...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-72860/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T21:31:37
1 posts
🟠 CVE-2026-73040 - High (8.8)
Dockge validates a stack name only on the write path. In backend/stack.ts the allow-list check in validate(), which requires the name to match ^[a-z0-9_-]+$, is reached from save() alone, while the path getter returns path.join(this.server.stacksD...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-73040/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T21:31:36
2 posts
CVE-2026-66785 - Critical network redirection flaw in Submariner. Malicious clusters can hijack peer traffic via crafted endpoints. CVSS 9.9. No patch yet - isolate clusters, monitor traffic. #CVE #Submariner #infosec
##🔴 CVE-2026-66785 - Critical (9.9)
A flaw was found in Submariner. This vulnerability allows a malicious cluster (spoke) to redirect network traffic from other connected clusters (peer clusters) by publishing a specially crafted network endpoint. The system fails to properly valida...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66785/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T21:31:36
1 posts
🟠 CVE-2026-18420 - High (8.8)
Improper input validation in the Time Series Visual Builder (TSVB) plugin in OpenSearch Dashboards allows an authenticated remote user to execute arbitrary code on the server via a crafted JSON payload to the metrics visualization API endpoint. Th...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-18420/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T21:31:36
1 posts
🟠 CVE-2026-72852 - High (7.8)
hank-ai/darknet sizes a convolutional layer's weight and output heap buffers by multiplying configuration fields taken from a .cfg file in unchecked 32-bit int arithmetic. In src-lib/convolutional_layer.cpp, l.nweights is computed as (c / groups) ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-72852/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T21:31:30
1 posts
🟠 CVE-2026-77638 - High (8.9)
Tor before 0.4.9.11 is prone to a race condition where in just the right circumstances a rendezvous point could man-in-the-middle (impersonate) the onion service that the client was trying to reach.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77638/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T20:17:47.110000
1 posts
🔴 CVE-2026-77148 - Critical (9.9)
A vulnerability was found in Comfast CF-N1-S 2.6.0.1. This impacts the function sub_44B50C of the file /cgi-bin/mbox-config?method=SET§ion=ptest_channel of the component Web Management. The manipulation results in stack-based buffer overflow. ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77148/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T20:17:46.470000
1 posts
🔴 CVE-2026-73257 - Critical (9.1)
Mongoose is an embedded web server and network library. Priro to version 7.22, a remote unauthenticated attacker can send an HTTP request containing both Content-Length and Transfer-Encoding: chunked. The cl_count and te_count checks in the mg_htt...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-73257/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T19:16:51.497000
3 posts
Fuck it, CVE dumpster diving.
CVE-2026-20231 - this is one of a batch of Cisco CVEs that stood out to me because they have multiple descriptions: One by the CNA, one by an ADP, "CVE" itself. The ADP one is just "please please please dont do this (bundling multiple vulns into a single cve) :neobot_angel_pleading: ". Cisco dont care, they put out 9 of those over the last 7 days.
##Fuck it, CVE dumpster diving.
CVE-2026-20231 - this is one of a batch of Cisco CVEs that stood out to me because they have multiple descriptions: One by the CNA, one by an ADP, "CVE" itself. The ADP one is just "please please please dont do this (bundling multiple vulns into a single cve) :neobot_angel_pleading: ". Cisco dont care, they put out 9 of those over the last 7 days.
##CISA has added two known vulnerabilities to the KEV catalogue.
- CVE-2026-72529: TrueConf Server Missing Authentication for Critical Function Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-72529
- CVE-2026-72530: TrueConf Server Code Injection Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-72530 #CISA
Yesterday:
Cisco:
CRITICAL: CVE-2026-20231, CVE-2026-20315, and CVE-2026-20317: Secure Workload Software Security Hardening Release: August 2026 https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-hardening-csw1-shSvndWP @TalosSecurity #Cisco #infosec #vulnerability
##updated 2026-08-20T19:16:50.880000
1 posts
Stack-based buffer overflow (CVE-2026-16885) in IBM AIX 7.2, 7.3 & PowerVM VIOS 4.1 (CRITICAL, CVSS 9.8). Remote, unauthenticated code execution possible. No patch yet — monitor IBM advisories. https://radar.offseq.com/threat/cve-2026-16885-cwe-121-stack-based-buffer-overflow-in-ibm-aix-4d84d05fa38f4cbc #OffSeq #IBM #AIX #Vuln
##updated 2026-08-20T18:31:11
1 posts
🟠 CVE-2026-76641 - High (7.5)
Expat through 2.8.3 contains an out-of-bounds read vulnerability that allows attackers to trigger memory corruption by processing XML with external entity parsers created via XML_ExternalEntityParserCreate. A struct size mismatch between ELEMENT_T...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-76641/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T18:31:06
1 posts
CVE-2026-18290 - RCE in OriginLab OriginPro via OGG parsing. Out-of-bounds write leads to arbitrary code execution. CVSS 7.8. No patch yet; avoid opening untrusted OGG files. #CVE #OriginPro #infosec
##updated 2026-08-20T18:30:58
1 posts
🟠 CVE-2026-75140 - High (7.5)
jsoup through 1.23.2, fixed in commit 862ba2f, contains an uncontrolled resource consumption vulnerability in XmlTreeBuilder that allows remote attackers to exhaust JVM heap memory by supplying a deeply nested XML document with uniquely-namespaced...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-75140/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T17:19:48.260000
1 posts
🟠 CVE-2026-76928 - High (7.5)
X.509IF protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-76928/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T17:19:24.533000
1 posts
CVE-2026-66582 - Unauthenticated XSS in TranslatePress ≤3.3.2. CVSS 7.1. No patch yet. Disable or restrict access now. #CVE #WordPress #infosec
##updated 2026-08-20T17:19:14.390000
1 posts
An Apache InLong SQL injection flaw, CVE-2026-63038, lets attackers inject SQL via multiple parameters. Two more bugs join it. Upgrade to 2.4.0.
##updated 2026-08-20T16:18:21.780000
1 posts
🟠 CVE-2026-76879 - High (7.5)
C12.22 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-76879/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T16:17:07.463000
1 posts
#OT #Advisory VDE-2026-078
Frauscher: FDS102 for FAdC/FAdCi R2 has multiple vulnerabilities
Frauscher Sensortechnik FDS102 for FAdC/FAdCi R2 is vulnerable to Unrestricted Upload of File with Dangerous Type, Path Traversal: '../filedir', Insertion of Sensitive Information into Log File, Incorrect Authorization, Insufficient Session Expiration, Cross-Site Request Forgery (CSRF), Missing Authentication for Critical Function, and Missing Authorization.
#CVE CVE-2026-14950, CVE-2026-14948, CVE-2026-14951, CVE-2026-14952, CVE-2026-14947, CVE-2026-14946, CVE-2026-14949, CVE-2026-14953
https://certvde.com/en/advisories/vde-2026-078/
#CSAF https://frauscher.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-078.json
##updated 2026-08-20T16:17:06.950000
1 posts
#OT #Advisory VDE-2026-078
Frauscher: FDS102 for FAdC/FAdCi R2 has multiple vulnerabilities
Frauscher Sensortechnik FDS102 for FAdC/FAdCi R2 is vulnerable to Unrestricted Upload of File with Dangerous Type, Path Traversal: '../filedir', Insertion of Sensitive Information into Log File, Incorrect Authorization, Insufficient Session Expiration, Cross-Site Request Forgery (CSRF), Missing Authentication for Critical Function, and Missing Authorization.
#CVE CVE-2026-14950, CVE-2026-14948, CVE-2026-14951, CVE-2026-14952, CVE-2026-14947, CVE-2026-14946, CVE-2026-14949, CVE-2026-14953
https://certvde.com/en/advisories/vde-2026-078/
#CSAF https://frauscher.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-078.json
##updated 2026-08-20T15:34:26
1 posts
🟠 CVE-2026-76633 - High (8.1)
WeGIA before 3.9.2 contains an authorization bypass vulnerability in the password change flow that allows any authenticated user to change their account password without providing existing credentials by exploiting the unconditional exclusion of t...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-76633/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T15:34:26
1 posts
🟠 CVE-2026-76833 - High (7.8)
@cgauge/yaml npm package contains an arbitrary code execution vulnerability that allows attackers to execute arbitrary JavaScript by embedding a custom !js YAML tag whose construct callback unconditionally calls eval() on attacker-supplied string ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-76833/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T15:34:20
1 posts
🟠 CVE-2026-61897 - High (7.8)
An Ubuntu-specific patch to AccountsService before 23.13.9-8ubuntu7 only partially drops privileges before launching language helper scripts. It changes the effective UID/GID to the target user but leaves the real UID as 0 (root). A shell spawned ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-61897/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T15:34:20
1 posts
CVE-2026-28164: CRITICAL CSRF in HashThemes Easy Elementor Addons ≤2.3.7. Remote attackers can exploit this for full user compromise. No patch yet — track vendor advisories. CVSS 9.6. https://radar.offseq.com/threat/cve-2026-28164-cwe-352-cross-site-request-forgery-csrf-in-hashthemes-easy-elementor-addons-7bfb9b1be22a1e31 #OffSeq #WordPress #CSRF #CVE2026_28164
##updated 2026-08-20T15:34:14
1 posts
🟠 CVE-2026-76886 - High (8.1)
C12.22 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-76886/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T15:34:03
5 posts
📢 [VULN] Citrix NetScaler (CVE-2026-19490) : cette faille permet de contourner l'authentification
Le 19 août 2026, Citrix a publié un nouveau bulletin de sécurité pour NetScaler ADC et NetScaler Gateway. Il fait référence à deux failles de sécurité, dont l'une particulièrement inquiétante : la CVE-2026-19490.
🔗 https://www.it-connect.fr/citrix-netscaler-cve-2026-19490-contournement-authentification/
💬 discussion : https://infosec.pub/post/51278994
#CVE #Cyberveille
Citrix NetScaler (CVE-2026-19490) : cette faille critique permet de contourner l’authentification https://www.it-connect.fr/citrix-netscaler-cve-2026-19490-contournement-authentification/ #ActuCybersécurité #Cybersécurité #Vulnérabilité
##Citrix NetScaler (CVE-2026-19490) : cette faille critique permet de contourner l’authentification https://www.it-connect.fr/citrix-netscaler-cve-2026-19490-contournement-authentification/ #ActuCybersécurité #Cybersécurité #Vulnérabilité
##「Citrixは、NetScalerの新たな脆弱性をできるだけ早く修正するよう管理者に強く求めている。」: #BLEEPINGCOMPUTER
「Citrixは、NetScaler GatewayセキュアリモートアクセスソリューションとNetScaler ADCネットワークアプライアンスに影響を与える2つの脆弱性からシステムを保護するため、顧客に対し直ちにセキュリティ対策を講じるよう警告した。
2つのうちより深刻な脆弱性( CVE-2026-19490 として追跡)では、NetScalerのファームウェアバージョンとSAMLアクションが構成されているかどうかに応じて、アプライアンスがAAA仮想サーバーまたはゲートウェイ(SSL VPN、ICAプロキシ、CVPN、RDPプロキシ)として構成されている場合に、権限を持たないリモート攻撃者が認証をバイパスできる可能性があります。 」
##Citrix has released patches for CVE-2026-19490, a CVSS 9.3 authentication bypass in NetScaler ADC and Gateway. An unauthenticated remote attacker can exploit the flaw via an alternative path to bypass authentication on appliances configured as SSL VPN, ICA Proxy, CVPN, RDP Proxy, or AAA servers.
#CitrixBleb #NetScalerVuln #CVSS9 #RemoteAccessSecurity
https://cyberworldops.eu/en/netscaler-critical-authentication-bypass-citrix-urges-immediate
##updated 2026-08-20T15:18:04.577000
1 posts
🟠 CVE-2026-63490 - High (7.5)
Handlebars.java provides logic-less and semantic Mustache templates with Java. Prior to 4.5.3, com.github.jknack.handlebars.springmvc.SpringTemplateLoader resolves attacker-influenced Spring MVC view names through Spring ResourceLoader without the...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-63490/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T13:08:53.900000
1 posts
🟠 CVE-2026-73197 - High (7.5)
A flaw was found in FreeIPA. A remote, unauthenticated attacker can exploit this vulnerability by sending oversized form POST requests to the `/ipa/migration/migration.py` endpoint. This can force the migration handler to read attacker-controlled ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-73197/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T13:02:12.153000
1 posts
A critical Dell PowerStore vulnerability, CVE-2026-67271 (CVSS 9.8), allows unauthenticated remote code execution via SMB. Two more flaws patched.
##updated 2026-08-20T13:01:19.947000
1 posts
Cisco patches a Crosswork SQL injection flaw, CVE-2026-20030, rated CVSS 10.0. A BroadWorks XXE bug (CVE-2026-20320) also gets a fix.
#Cisco #CVE #SQLInjection #Crosswork #BroadWorks #XXE #Vulnerability #InfoSec
##updated 2026-08-20T12:48:10.287000
2 posts
3 repos
https://github.com/ksotaria1337/CVE-2026-19598
CVE-2026-19598, a CVSS 9.8 flaw in the Pods WordPress plugin, enables complete site takeover. Wordfence is already blocking attacks in the wild.
#Pods #CVE202619598 #WordPress #PrivilegeEscalation #SiteTakeover #WebSecurity
##CVE-2026-19598, a CVSS 9.8 flaw in the Pods WordPress plugin, enables complete site takeover. Wordfence is already blocking attacks in the wild.
#Pods #CVE202619598 #WordPress #PrivilegeEscalation #SiteTakeover #WebSecurity
##updated 2026-08-20T12:31:29
1 posts
🟠 CVE-2026-73198 - High (7.5)
A flaw was found in FreeIPA. A remote, unauthenticated attacker can exploit a vulnerability in the `/ipa/i18n_messages` endpoint by sending an arbitrarily large request body. This can cause the service to consume excessive memory, leading to memor...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-73198/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T12:31:22
1 posts
🔴 CVE-2026-13097 - Critical (9.1)
A privilege escalation flaw was found in FreeIPA. The uniqueness constraint enforced on Kerberos principal name attributes in the 389-ds directory server does not properly account for equivalent representations of the same principal name, allowing...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-13097/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T12:31:22
1 posts
CVE-2026-75860: CRITICAL privilege escalation in JSON Options ≤0.0.4. Unauthenticated attackers can update WordPress options & gain admin access. Remove or disable plugin until fix is available. Full site takeover risk. https://radar.offseq.com/threat/cve-2026-75860-cwe-269-improper-privilege-management-in-json-options-5e170a19118b89b1 #OffSeq #WordPress #CVE202675860
##updated 2026-08-20T09:31:23
3 posts
Frauscher FDS102 vulnerabilities include CVE-2026-14950 (CVSS 9.8), a session flaw enabling unauthorized continued access. Update to v2.14.0.
##Frauscher FDS 102 v2.1.0 hit by CRITICAL vuln (CVE-2026-14950): insufficient session expiration lets remote attackers keep using stolen session tokens. No patch yet — monitor sessions, restrict access. https://radar.offseq.com/threat/cve-2026-14950-cwe-613-insufficient-session-expiration-in-frauscher-sensortechnik-fds-102-0a0f578bbcdd7c33 #OffSeq #ICS #CVE202614950 #Security
###OT #Advisory VDE-2026-078
Frauscher: FDS102 for FAdC/FAdCi R2 has multiple vulnerabilities
Frauscher Sensortechnik FDS102 for FAdC/FAdCi R2 is vulnerable to Unrestricted Upload of File with Dangerous Type, Path Traversal: '../filedir', Insertion of Sensitive Information into Log File, Incorrect Authorization, Insufficient Session Expiration, Cross-Site Request Forgery (CSRF), Missing Authentication for Critical Function, and Missing Authorization.
#CVE CVE-2026-14950, CVE-2026-14948, CVE-2026-14951, CVE-2026-14952, CVE-2026-14947, CVE-2026-14946, CVE-2026-14949, CVE-2026-14953
https://certvde.com/en/advisories/vde-2026-078/
#CSAF https://frauscher.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-078.json
##updated 2026-08-20T09:31:23
1 posts
#OT #Advisory VDE-2026-078
Frauscher: FDS102 for FAdC/FAdCi R2 has multiple vulnerabilities
Frauscher Sensortechnik FDS102 for FAdC/FAdCi R2 is vulnerable to Unrestricted Upload of File with Dangerous Type, Path Traversal: '../filedir', Insertion of Sensitive Information into Log File, Incorrect Authorization, Insufficient Session Expiration, Cross-Site Request Forgery (CSRF), Missing Authentication for Critical Function, and Missing Authorization.
#CVE CVE-2026-14950, CVE-2026-14948, CVE-2026-14951, CVE-2026-14952, CVE-2026-14947, CVE-2026-14946, CVE-2026-14949, CVE-2026-14953
https://certvde.com/en/advisories/vde-2026-078/
#CSAF https://frauscher.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-078.json
##updated 2026-08-20T09:31:23
1 posts
#OT #Advisory VDE-2026-078
Frauscher: FDS102 for FAdC/FAdCi R2 has multiple vulnerabilities
Frauscher Sensortechnik FDS102 for FAdC/FAdCi R2 is vulnerable to Unrestricted Upload of File with Dangerous Type, Path Traversal: '../filedir', Insertion of Sensitive Information into Log File, Incorrect Authorization, Insufficient Session Expiration, Cross-Site Request Forgery (CSRF), Missing Authentication for Critical Function, and Missing Authorization.
#CVE CVE-2026-14950, CVE-2026-14948, CVE-2026-14951, CVE-2026-14952, CVE-2026-14947, CVE-2026-14946, CVE-2026-14949, CVE-2026-14953
https://certvde.com/en/advisories/vde-2026-078/
#CSAF https://frauscher.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-078.json
##updated 2026-08-20T09:31:23
1 posts
#OT #Advisory VDE-2026-078
Frauscher: FDS102 for FAdC/FAdCi R2 has multiple vulnerabilities
Frauscher Sensortechnik FDS102 for FAdC/FAdCi R2 is vulnerable to Unrestricted Upload of File with Dangerous Type, Path Traversal: '../filedir', Insertion of Sensitive Information into Log File, Incorrect Authorization, Insufficient Session Expiration, Cross-Site Request Forgery (CSRF), Missing Authentication for Critical Function, and Missing Authorization.
#CVE CVE-2026-14950, CVE-2026-14948, CVE-2026-14951, CVE-2026-14952, CVE-2026-14947, CVE-2026-14946, CVE-2026-14949, CVE-2026-14953
https://certvde.com/en/advisories/vde-2026-078/
#CSAF https://frauscher.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-078.json
##updated 2026-08-20T09:31:23
1 posts
#OT #Advisory VDE-2026-078
Frauscher: FDS102 for FAdC/FAdCi R2 has multiple vulnerabilities
Frauscher Sensortechnik FDS102 for FAdC/FAdCi R2 is vulnerable to Unrestricted Upload of File with Dangerous Type, Path Traversal: '../filedir', Insertion of Sensitive Information into Log File, Incorrect Authorization, Insufficient Session Expiration, Cross-Site Request Forgery (CSRF), Missing Authentication for Critical Function, and Missing Authorization.
#CVE CVE-2026-14950, CVE-2026-14948, CVE-2026-14951, CVE-2026-14952, CVE-2026-14947, CVE-2026-14946, CVE-2026-14949, CVE-2026-14953
https://certvde.com/en/advisories/vde-2026-078/
#CSAF https://frauscher.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-078.json
##updated 2026-08-20T09:31:23
1 posts
#OT #Advisory VDE-2026-078
Frauscher: FDS102 for FAdC/FAdCi R2 has multiple vulnerabilities
Frauscher Sensortechnik FDS102 for FAdC/FAdCi R2 is vulnerable to Unrestricted Upload of File with Dangerous Type, Path Traversal: '../filedir', Insertion of Sensitive Information into Log File, Incorrect Authorization, Insufficient Session Expiration, Cross-Site Request Forgery (CSRF), Missing Authentication for Critical Function, and Missing Authorization.
#CVE CVE-2026-14950, CVE-2026-14948, CVE-2026-14951, CVE-2026-14952, CVE-2026-14947, CVE-2026-14946, CVE-2026-14949, CVE-2026-14953
https://certvde.com/en/advisories/vde-2026-078/
#CSAF https://frauscher.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-078.json
##updated 2026-08-20T00:35:17
2 posts
TRENDnet TEW-755AP is affected by CVE-2026-76589 (CRITICAL, CVSS 9.4): stack-based buffer overflow in /sbin/mycli, exploitable remotely. Public exploit; no patch yet. Restrict device access and monitor. https://radar.offseq.com/threat/cve-2026-76589-stack-based-buffer-overflow-in-trendnet-tew-755ap-b22775c9ba4ec937 #OffSeq #CVE202676589 #IoTSecurity
##🔴 CVE-2026-76589 - Critical (9.9)
A vulnerability was found in TRENDnet TEW-755AP up to 20260702. Affected is the function FUN_401000 of the file /sbin/mycli. The manipulation of the argument ssid results in stack-based buffer overflow. The attack may be launched remotely. The exp...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-76589/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T00:35:17
1 posts
CVE-2026-76850 (CRITICAL): InternLM lmdeploy <0.16.0 vulnerable to remote code execution via untrusted pickle deserialization on ZeroMQ endpoints. Enable API keys or disable disaggregated serving to mitigate. https://radar.offseq.com/threat/cve-2026-76850-deserialization-of-untrusted-data-in-internlm-lmdeploy-657fdd1d6177df51 #OffSeq #Infosec #Vuln #CVE202676850
##updated 2026-08-20T00:35:17
1 posts
🟠 CVE-2026-76880 - High (7.5)
RRC protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-76880/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T00:35:16
2 posts
CVE-2026-76590: CRITICAL stack buffer overflow in TRENDnet TEW-755AP (/cgi-bin/wan.cgi, CVSS 9.4). Remote code execution possible. No patch — restrict access, monitor endpoints. Exploit code public, no active attacks yet. https://radar.offseq.com/threat/cve-2026-76590-stack-based-buffer-overflow-in-trendnet-tew-755ap-37978d53e46251c0 #OffSeq #Vuln #IoTSec #CVE2026
##🔴 CVE-2026-76590 - Critical (9.9)
A vulnerability was identified in TRENDnet TEW-755AP up to 20260702. Affected by this issue is some unknown functionality of the file /cgi-bin/wan.cgi of the component ssi. Such manipulation of the argument cameo.wan.wan_pppoe_password_00 leads to...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-76590/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T00:35:16
1 posts
🟠 CVE-2026-76832 - High (8.8)
Agno's PythonTools in libs/agno/agno/tools/python.py contains a path traversal vulnerability that allows attackers to read, write, or execute arbitrary files by supplying parent-directory traversal sequences in the file_name argument passed to rea...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-76832/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T00:35:11
1 posts
🟠 CVE-2026-76399 - High (8.1)
In Splunk AI Toolkit versions below 6.0.1, a user who holds the "power" Splunk role could modify app-provided scheduled searches to run arbitrary Search Processing Language (SPL) using the permissions of the search owner, which could allow access ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-76399/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T00:35:11
1 posts
🟠 CVE-2026-76396 - High (7.5)
In Splunk AI Toolkit versions below 6.0.0, a user that holds a role with the schedule_search capability could cause a scheduled search to load and deserialize a model file through the apply search command. The improper access control is possible b...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-76396/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T00:35:11
1 posts
🟠 CVE-2026-76395 - High (8.8)
In Splunk AI Toolkit versions below 6.0.0, a user who holds the "power" Splunk role could execute arbitrary code on the Splunk server by loading a model file containing crafted sparse matrix data. The deserialization of untrusted data is possible ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-76395/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-08-20T00:35:08
2 posts
Splunk patches CVE-2026-76404, a critical remote code execution flaw in the MCP Server app, plus 16 more bugs across its apps and add-ons.
#Splunk #CVE #RemoteCodeExecution #RCE #MCPServer #Deserialization #InfoSec #PatchNow
##Splunk MCP Server app v1.2 is impacted by CVE-2026-76404 (CRITICAL, CVSS 9.1) — insecure deserialization lets admin users run arbitrary OS commands. Limit admin access & monitor for misuse until a patch is released. https://radar.offseq.com/threat/cve-2026-76404-the-application-deserializes-untrusted-data-without-sufficiently-verifying-that-the-a0d42d963a9e6a80 #OffSeq #Splunk #Infosec #CVE202676404
##updated 2026-08-19T21:30:39
1 posts
Red Hat ACM privilege escalation flaws (CVE-2026-70496, CVSS 9.9) let attackers seize full cluster control. See the three Kubernetes bugs.
#RedHat #Kubernetes #PrivilegeEscalation #CVE #ACM #CloudSecurity #InfoSec
##updated 2026-08-19T21:30:29
3 posts
「Ciscoのバグの深刻度警告は、オリンピック体操競技の得点のように、10、10、9.9、9.6、7.5と表示されます。
/Secure Workload Softwareには5つの重大な欠陥があり、SaaSユーザーでさえアップデートをインストールする必要がある。 」: #TheRegister
「シスコは、ネットワーク内での攻撃者の横方向への移動を阻止することを目的としたマイクロセグメンテーションツールであるセキュアワークロードソフトウェア(旧称Tetration)に、4つの重大な欠陥と、さらに1つの深刻なバグが存在することを明らかにした。
CVE-2026-20315とCVE-2026-20317は、最高評価の10点満点バグです。どちらも不適切なアクセス制御に関連しています。 」
##CISA has added two known vulnerabilities to the KEV catalogue.
- CVE-2026-72529: TrueConf Server Missing Authentication for Critical Function Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-72529
- CVE-2026-72530: TrueConf Server Code Injection Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-72530 #CISA
Yesterday:
Cisco:
CRITICAL: CVE-2026-20231, CVE-2026-20315, and CVE-2026-20317: Secure Workload Software Security Hardening Release: August 2026 https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-hardening-csw1-shSvndWP @TalosSecurity #Cisco #infosec #vulnerability
##Cisco patches Secure Workload flaws CVE-2026-20315 and CVE-2026-20317, an authentication bypass and privilege escalation pair scoring CVSS 10. Upgrade now.
#Cisco #CVE #AuthenticationBypass #PrivilegeEscalation #Vulnerability #InfoSec #PatchNow
##updated 2026-08-19T21:30:29
2 posts
CISA has added two known vulnerabilities to the KEV catalogue.
- CVE-2026-72529: TrueConf Server Missing Authentication for Critical Function Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-72529
- CVE-2026-72530: TrueConf Server Code Injection Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-72530 #CISA
Yesterday:
Cisco:
CRITICAL: CVE-2026-20231, CVE-2026-20315, and CVE-2026-20317: Secure Workload Software Security Hardening Release: August 2026 https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-hardening-csw1-shSvndWP @TalosSecurity #Cisco #infosec #vulnerability
##Cisco patches Secure Workload flaws CVE-2026-20315 and CVE-2026-20317, an authentication bypass and privilege escalation pair scoring CVSS 10. Upgrade now.
#Cisco #CVE #AuthenticationBypass #PrivilegeEscalation #Vulnerability #InfoSec #PatchNow
##updated 2026-08-19T18:32:57
6 posts
2 repos
https://github.com/absholi7ly/Elementor-Pro-Unauthenticated-Arbitrary-File-Upload-to-RCE
📢 [VULN] WordPress : cette faille Elementor Pro ouvre votre site aux pirates CVE-2026-32475
Nouvelle alerte à destination de tous les administrateurs de sites WordPress : la faille CVE-2026-32475, corrigée le 19 août 2026 dans Elementor Pro, permet à un visiteur anonyme de déposer un fichier PHP sur un site WordPress, puis de l'exécuter. Aucun compte, aucune interaction avec un administrateur.
🔗 https://www.it-connect.fr/elementor-pro-cve-2026-32475-rce-non-authentifiee/
💬 discussion : https://infosec.pub/post/51237084
#CVE #Cyberveille
📢 [VULN] WordPress : cette faille Elementor Pro ouvre votre site aux pirates CVE-2026-32475
Nouvelle alerte à destination de tous les administrateurs de sites WordPress : la faille CVE-2026-32475, corrigée le 19 août 2026 dans Elementor Pro, permet à un visiteur anonyme de déposer un fichier PHP sur un site WordPress, puis de l'exécuter. Aucun compte, aucune interaction avec un administrateur.
🔗 https://www.it-connect.fr/elementor-pro-cve-2026-32475-rce-non-authentifiee/
💬 discussion : https://infosec.pub/post/51237084
#CVE #Cyberveille
Elementor Pro : une faille critique permet de prendre le contrôle d’un site WordPress https://www.it-connect.fr/elementor-pro-cve-2026-32475-rce-non-authentifiee/ #ActuCybersécurité #Cybersécurité #Vulnérabilité #Wordpress
##CVE-2026-32475 (CVSS 9.8) is an unauthenticated file upload flaw in Elementor Pro. It threatens complete site compromise across 6 million sites.
#ElementorPro #CVE202632475 #WordPress #RCE #FileUpload #WebSecurity
##「Elementor Proの重大なバグにより、WordPressサイトがリモートコード実行攻撃に晒される 」: #BLEEPINGCOMPUTER
「WordPressプラグイン「Elementor Pro」に存在する重大な脆弱性により、攻撃者が実行可能ファイルをアップロードして、サーバー上でリモートコードを実行できる可能性がある。
CVE-2026-32475として識別されたこの脆弱性は、Elementor Proのバージョン4.2.2より前のバージョンに影響し、ファイル検証と処理に別々のループを使用するファイルアップロードモジュールに起因しており、ファイル名が空のアップロードの処理方法が異なっています。」
##A critical flaw in Elementor Pro (CVE-2026-32475) enables unauthenticated remote code execution via the File Upload module. Two desynchronized processing loops mishandle empty filenames, bypassing validation entirely. All versions below 4.2.2 are affected. Patch immediately and audit server logs for indicators of exploitation.
#ElementorPro #WordPress #RemoteCodeExecution #CVE202632475
https://cyberworldops.eu/en/elementor-pro-critical-vulnerability-in-forms-file-upload-could-lead
##updated 2026-08-19T18:32:51
1 posts
Cisco patches a Crosswork SQL injection flaw, CVE-2026-20030, rated CVSS 10.0. A BroadWorks XXE bug (CVE-2026-20320) also gets a fix.
#Cisco #CVE #SQLInjection #Crosswork #BroadWorks #XXE #Vulnerability #InfoSec
##updated 2026-08-19T04:16:58.560000
2 posts
2 repos
CISA confirmed active exploitation of CVE-2026-33824, an unauthenticated Windows IKE double-free flaw patched in April, ordering federal agencies to remediate within three days.
##CISA Warns of Active Exploitation of Critical Microsoft IKE Remote Code Execution Flaw
CISA reports active exploitation of a Windows IKE service critical remote code execution vulnerability (CVE-2026-33824). The flaw allows unauthenticated attackers to take full control of affected systems by sending malicious network packets.
**If you run Windows systems with IKEv2 enabled (VPN gateways, RRAS servers, IPsec endpoints), apply Microsoft's patch for CVE-2026-33824 immediately. Attackers are actively taking over these machines with no login or user action needed. If you can't patch right away, block inbound UDP ports 500 and 4500 at your firewall and only allow those ports from trusted, known IP addresses.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/cisa-warns-of-active-exploitation-of-critical-microsoft-ike-remote-code-execution-flaw-l-d-l-z-t/gD2P6Ple2L
updated 2026-08-19T03:31:21
5 posts
1 repos
Keycloak : cette faille critique permet de pirater un compte via la fonction de mot de passe oublié https://www.it-connect.fr/keycloak-cve-2026-18963-faille-critique-mot-de-passe-oublie/ #ActuCybersécurité #Cybersécurité #Vulnérabilité
##Keycloak Unauthenticated Account Takeover
벨기에 사이버보안센터(CCB)는 Red Hat build of Keycloak 26.4 및 26.6의 자격 증명 재설정 흐름에서 원격 비인증 계정 탈취가 가능한 CVE-2026-18963을 경고했다. CVSS 9.1의 CWE-640 취약점으로, 공격자는 비밀번호 재설정 이메일의 검증 링크를 클릭하지 않고도 임의 사용자의 재설정을 강제하고 새 자격 증명을 설정할 수 있다. Keycloak이 SSO·인증·권한 부여의 중심에 배치되는 경우 영향 범위가 해당 계정에 연결된 다수의 AI 서비스, 에이전트,...
##Keycloak : cette faille critique permet de pirater un compte via la fonction de mot de passe oublié https://www.it-connect.fr/keycloak-cve-2026-18963-faille-critique-mot-de-passe-oublie/ #ActuCybersécurité #Cybersécurité #Vulnérabilité
##A Keycloak account takeover flaw, CVE-2026-18963, lets attackers reset any user's password with no email verification. Update to 26.7.2 now.
##Guten Morgen an @univention Kund*innen, die unsere #Keycloak App einsetzen! Wir werden demnächst Version 26.7.2 herausbringen. Von dem Account-Takeover-CVE ist unsere App nicht betroffen.
Details findet Ihr hier: https://help.univention.com/t/keycloak-26-7-2-and-cve-2026-18963-potential-account-takeover-nubus-not-affected/25494
##updated 2026-08-18T21:31:53
1 posts
NVIDIA Triton vulnerability CVE-2026-47627 scores CVSS 9.8. Learn how the denial of service flaw works and why you must update to version 26.06 now.
#NVIDIA #TritonInferenceServer #CVE202647627 #DenialOfService #AIsecurity #CVSS
##updated 2026-08-18T18:32:10
1 posts
A critical Red Hat vulnerability, CVE-2026-66780 (CVSS 9.9), enables a MITM attack across a cluster mesh. Two more critical flaws also disclosed.
##updated 2026-08-18T18:31:47
1 posts
3 repos
https://github.com/HORKimhab/CVE-2026-65400
El fallo de #macOS que permite entrar sin #contraseña por compartir pantalla ya está siendo explotado: actualiza ahora
https://wwwhatsnew.com/2026/08/20/cve-2026-65400-macos-compartir-pantalla-sin-contrasena-actualizar/
##updated 2026-08-18T15:31:45
1 posts
1 repos
CoSnitch : Copilot a lui-même livré la faille qui permet de voler vos données https://www.it-connect.fr/cosnitch-cve-2026-24301-copilot-personal-faille-un-clic/ #ActuCybersécurité #Cybersécurité #Microsoft #Copilot #IA
##updated 2026-08-17T21:58:52
4 posts
3 repos
https://github.com/BiuTrap/CVE-2026-64849
Attackers are exploiting a critical MLflow bug to reach internal systems and cloud metadata, putting cloud secrets at risk. CISA has added CVE-2026-64849 to its KEV catalog.
Listen/Read: https://hackread.com/attackers-exploit-critical-mlflow-ai-platform-flaw/
##Attackers are exploiting a critical MLflow bug to reach internal systems and cloud metadata, putting cloud secrets at risk. CISA has added CVE-2026-64849 to its KEV catalog.
Listen/Read: https://hackread.com/attackers-exploit-critical-mlflow-ai-platform-flaw/
##CVE-2026-64849 exposes unauthenticated MLflow tracking servers to critical server-side request forgery (SSRF) threats via redirect bypasses. Discover immediate mitigation strategies, CISA KEV compliance guidelines, and SOC detection playbooks to secure your AI infrastructure. https://thecybermind.co/jily
##CISA has detected active exploitation of CVE-2026-64849, a critical SSRF in MLflow. Exposed tracking servers without authentication can be abused to query cloud metadata, internal services, and loopback addresses, leading to credential theft and internal reconnaissance.
#CloudSecurity #SSRF #Vulnerability #ThreatIntel
https://cyberworldops.eu/en/mlflow-under-attack-critical-ssrf-exposes-cloud-credentials-and
##updated 2026-08-17T21:31:30
4 posts
5 repos
https://github.com/renzi25031469/CVE-2026-19478
https://github.com/davkharrr/CVE-2026-19478-PoC
https://github.com/punitdarji/Gitlab-CVE-2026-19478
watchTowr reports active exploitation of CVE-2026-19478 in GitLab within days of public disclosure. The flaw is a code injection via GraphQL directives, exploitable by unauthenticated remote attackers. Reproduction was possible within minutes of the advisory going live. Patch immediately.
#GitLab #CVE202619478 #CodeInjection #PatchNow
https://cyberworldops.eu/en/gitlab-cve-2026-19478-actively-exploited-days-after-disclosure
##GitLab : la faille critique CVE-2026-19478 est déjà exploitée, deux jours après le correctif https://www.it-connect.fr/gitlab-cve-2026-19478-faille-critique-exploitee/ #ActuCybersécurité #Cybersécurité #Vulnérabilité
##A GitLab CVE-2026-19478 sebezhetőséget napokkal a nyilvánosságra hozatal után már aktívan kihasználják
##⚪️ Critical GitLab Vulnerability Allowed Deletion of Public Projects
🗨️ GitLab developers have released emergency patches for Community Edition (CE) and Enterprise Edition (EE) that address the critical vulnerability CVE-2026-19478 (CVSS score: 9.4). Under certain conditions, the flaw allowed an unauthenticated attacker to remotely modify or delete public projects and…
##updated 2026-08-17T17:32:35
1 posts
A vm2 sandbox escape (CVE-2026-47686, CVSS 9.9) with public PoC lets attackers hijack the host. Two more critical flaws also patched. Update to 3.11.6.
##updated 2026-08-14T18:31:34
1 posts
🔍 Lambda Watchdog detected that CVE-2026-33818 is no longer present in latest AWS Lambda base image scans. https://github.com/aws/aws-lambda-base-images/issues/666 #AWS #Lambda #Security #CVE #DevOps #SecOps
##updated 2026-08-12T15:18:30.347000
2 posts
6 repos
https://github.com/4minx/CVE-2026-72898
https://github.com/0xBlackash/CVE-2026-72898
https://github.com/ubitquity/Metabase-Setup-Endpoint-SQLi-Fix
https://github.com/codeb0ssx/CVE-2026-72898-PoC
🚨🇫🇷 iMapper allegedly breached through critical Metabase vulnerability, account data and database access leaked on a cybercrime forum
⠀
A forum actor claims to have compromised iMapper, a French web-connected 2D laser measurement platform for building professionals, using a vulnerability identified in the listing as CVE-2026-72898 with a claimed CVSS score of 10.0.
⠀
The exposed account dataset reportedly contains 2,463 records and includes:
⠀
• User IDs and usernames
• Password hashes
• Account roles
• Email addresses
• Phone numbers
• Professions
• MFA status and related metadata
• Language preferences
• Stripe customer IDs
• Stripe tax-related identifiers
• Measurement and display configuration fields
⠀
The data is being distributed in XLSX format. The listing also claims the compromised environment contains additional database tables and offers credentials that could provide access to those systems.
⠀
The claims, exploitation method and authenticity, availability and scope of the allegedly exposed data and database access have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
🚨🇫🇷 iMapper allegedly breached through critical Metabase vulnerability, account data and database access leaked on a cybercrime forum
⠀
A forum actor claims to have compromised iMapper, a French web-connected 2D laser measurement platform for building professionals, using a vulnerability identified in the listing as CVE-2026-72898 with a claimed CVSS score of 10.0.
⠀
The exposed account dataset reportedly contains 2,463 records and includes:
⠀
• User IDs and usernames
• Password hashes
• Account roles
• Email addresses
• Phone numbers
• Professions
• MFA status and related metadata
• Language preferences
• Stripe customer IDs
• Stripe tax-related identifiers
• Measurement and display configuration fields
⠀
The data is being distributed in XLSX format. The listing also claims the compromised environment contains additional database tables and offers credentials that could provide access to those systems.
⠀
The claims, exploitation method and authenticity, availability and scope of the allegedly exposed data and database access have not been independently verified.
⠀
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
updated 2026-08-11T21:33:01
1 posts
2 repos
A maximum-severity CVSS 10.0 flaw in Microsoft Entra ID is under active exploitation, allowing remote code execution. Two CVEs are in play, CVE-2026-68820 and CVE-2026-69836, with activity attributed to the Lazarus Group.
##updated 2026-07-30T19:17:31.990000
1 posts
1 repos
https://github.com/OmriBaso/SCCM-CVE-2026-47301-Remote-Code-Execution-Exploit
CVE-2026-47301: PoC Exploit Achieves SYSTEM-Level Code Execution in SCCM
##updated 2026-07-30T18:23:34
1 posts
7 repos
https://github.com/HackSpeak/CVE-2026-66066
https://github.com/shinthink/CVE-2026-66066
https://github.com/Zer0SumGam3/CVE-2026-66066-POC
https://github.com/paveg/rails-activestorage-vips-audit
https://github.com/rails/rails-forensics-CVE-2026-66066
Mastodon v4.7 へのupgrade をRails v8.1.3 の脆弱性解消とは、関係ないことを学習。
Google AI:
「今回の「KindaRails2Shell (CVE-2026-66066)」という脆弱性の攻撃ルートを、Mastodon自体が完全に通らない構造になっているためです。
Active Storage(問題の部品)を完全排除している
ダイレクトアップロード機能も使っていない」
以上の回答を得ました。
Mastodon v4.7 が Rails v8.1.3 の対策で出されたと言う以前の私の投稿を訂正いたします。
##updated 2026-07-08T15:31:44
1 posts
PoC exploit code for CVE-2026-52929, a Linux kernel SCTP flaw, is public. A video shows root privilege escalation on Ubuntu 26.04.
#CVE202652929 #LinuxKernel #SCTP #PrivilegeEscalation #PoC #infosec
##updated 2026-07-07T21:31:43
1 posts
console-setup (1.226ubuntu1.1)
セキュリティ対応ではない。
console-setup-linux
keyboard-configuration
open-vm-tools (2:13.0.10-0ubuntu0.24.04.1)
セキュリティ対応ではない。
snapd (2.76.3+ubuntu24.04)
セキュリティ対応ではない。
wget (1.21.4-1ubuntu4.5)
CVE-2026-58472へのセキュリティ対応。
updated 2026-07-01T15:52:28.390000
2 posts
3 repos
https://github.com/derekpreston81/CVE_ADC_IOC_2026
https://github.com/BishopFox/CVE-2026-8452-check
https://github.com/watchtowrlabs/watchTowr-vs-Citrix-Netscaler-PreAuth-RCE-CVE-2026-8452
Citrix NetScaler Flaws Under Active Attack Following Exploit Release
Citrix NetScaler ADC and Gateway appliances are being exploited via a critical SAML memory overflow vulnerability (CVE-2026-8452) that allows pre-authentication remote code execution. Attackers are targeting perimeter devices to gain unauthorized access to internal corporate networks following the release of public proof-of-concept code.
**If you run Citrix NetScaler ADC or Gateway, patch immediately to version 14.1-72.61 or 13.1-63.18 (or the matching FIPS builds). Attackers are already exploiting these appliances and a public exploit PoC is available. If you can't patch right away, restrict the management interface to trusted internal networks only, review your SAML configuration, and check logs for unexpected admin logins or config changes.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/citrix-netscaler-flaws-under-active-attack-following-exploit-release-e-x-8-8-4/gD2P6Ple2L
Citrix NetScaler Flaws Under Active Attack Following Exploit Release
Citrix NetScaler ADC and Gateway appliances are being exploited via a critical SAML memory overflow vulnerability (CVE-2026-8452) that allows pre-authentication remote code execution. Attackers are targeting perimeter devices to gain unauthorized access to internal corporate networks following the release of public proof-of-concept code.
**If you run Citrix NetScaler ADC or Gateway, patch immediately to version 14.1-72.61 or 13.1-63.18 (or the matching FIPS builds). Attackers are already exploiting these appliances and a public exploit PoC is available. If you can't patch right away, restrict the management interface to trusted internal networks only, review your SAML configuration, and check logs for unexpected admin logins or config changes.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/citrix-netscaler-flaws-under-active-attack-following-exploit-release-e-x-8-8-4/gD2P6Ple2L
updated 2026-06-27T06:30:25
2 posts
44 repos
https://github.com/ChamsBouzaiene/ai-vuln-rediscovery-nginx-cve-2026-42945
https://github.com/MateusVerass/nGixshell
https://github.com/nu0l/NGINX-Rift
https://github.com/sec-sys/CVE-2026-42945-Reverse-Shell-POC
https://github.com/strivepan/Nginx_cve-2026-42945-scanner-gui
https://github.com/yusufdalbudak/CVE-2026-42945
https://github.com/hulina9900-boop/DIY-CVE-2026-42945-POC
https://github.com/tal7aouy/nginx-cve-2026-42945
https://github.com/CynepMyx/nginx-rift-check
https://github.com/iammerrida-source/nginx-rift-detect
https://github.com/azilRababe/CVE-2026-42945
https://github.com/chenqin231/CVE-2026-42945
https://github.com/rheodev/CVE-2026-42945
https://github.com/LiaoZiqi-GZFLS/CVE-2026-42945
https://github.com/0xBlackash/CVE-2026-42945
https://github.com/sibersan/web-server-audit_CVE-2026-42945
https://github.com/BarAppTeam/nginx-cve-fix
https://github.com/hnytgl/CVE-2026-42945
https://github.com/webdev75950-ux/nginx-rce-cve-2026-42945
https://github.com/Renison-Gohel/CVE-2026-42945-NGINX-Rift
https://github.com/lowilol/CVE-2026-42945-NGINX-Rift-Check-Script
https://github.com/aratane/CVE-2026-42945
https://github.com/gagaltotal/CVE-2026-42945-NGINX-Rift-Toolkit
https://github.com/oseasfr/Scanner_CVE_2026-42945
https://github.com/jelasin/CVE-2026-42945
https://github.com/F2u0a0d3/CVE-2026-42945-nginx-rift-poc
https://github.com/soksofos/wazuh-nginx-cve-2026-42945-sca-lab
https://github.com/Kentox493/CVE-2026-42945_NginxRift
https://github.com/RedCrazyGhost/CVE-2026-42945
https://github.com/cipherspy/CVE-2026-42945-POC
https://github.com/friparia/NGINX_RIFT_SCAN_CVE_2026_42945
https://github.com/fkj-src/fix_nginx_cve_2026_42945
https://github.com/josephfelix/CVE-2026-42945-nginx-rift
https://github.com/edgecases-PurpleHax/cve-images
https://github.com/dinosn/cve-2026-42945-nginx32-lab
https://github.com/nanwinata/nginxrift-CVE-2026-42945
https://github.com/byezero/nginx-cve-2026-42945-check
https://github.com/simota/nginx-rift-scanner
https://github.com/p3Nt3st3r-sTAr/CVE-2026-42945-POC
https://github.com/quantumworld-dpdns-io/CVE-2026-42945
https://github.com/forxiucn/nginx-cve-2026-42945-poc
https://github.com/limo57640-crypto/nginx-rift-detector
Nginx Rift is a proof of concept for CVE-2026-42945, a heap buffer overflow in NGINX's rewrite module that allows unauthenticated remote code execution on servers using rewrite and set directives
The README lists affected and fixed versions
Nginx Rift is a proof of concept for CVE-2026-42945, a heap buffer overflow in NGINX's rewrite module that allows unauthenticated remote code execution on servers using rewrite and set directives
The README lists affected and fixed versions
updated 2026-06-26T15:33:15
3 posts
1 repos
⚠️ CRITICAL: Clop-Linked Windchill Web Shell Decrypts Credentials and Maps Engineering Data
Clop ransomware operators deployed a custom JSP web shell targeting PTC Windchill and FlexPLM servers, exploiting CVE-2026-12569 to decrypt stored credentials and exfiltrate engineering data. Any organization running vulnerable Windchill instances is at immediate risk of credential compromise, late…
🤖 AI generated summary
##ReliaQuest found Clop deploying a purpose-built JSP web shell that abuses Windchill's internal APIs to decrypt secrets and steal files after exploiting CVE-2026-12569.
##Cl0p published full names of over 40 organizations allegedly breached through CVE-2026-12569 in PTC Windchill and FlexPLM. The flaw was added to CISA KEV in June, yet dozens of instances remained unpatched into August.
#Cl0p #Windchill #SupplyChainSecurity #CVE202612569
https://cyberworldops.eu/en/cl0p-targets-windchill-more-than-40-organizations-exposed-to-a
##updated 2026-06-17T18:35:58
1 posts
Critical OS command injection in Splunk AI Toolkit (CVE-2026-20266, CVSS 9.1) lets admins run arbitrary host commands. Patch to 5.7.4 now.
#Splunk #CVE #OSCommandInjection #Vulnerability #InfoSec #PatchNow #AISecurity
##updated 2026-06-16T23:36:48.343000
2 posts
2 repos
https://github.com/Sunqiz/CVE-2012-0158-reproduction
https://github.com/RobertoLeonFR-ES/Exploit-Win32.CVE-2012-0158.F.doc
CVE-2012-0158 - Changed to Known Ransomware Status
Microsoft MSCOMCTL.OCX Remote Code Execution VulnerabilityVendor: MicrosoftProduct: MSCOMCTL.OCXMicrosoft MSCOMCTL.OCX contains an unspecified vulnerability that allows for remote code execution, allowing an attacker to take complete control of an affected system under the context of the current user.Status changed from Unknown to Known for ransomware campaign usage.Flip detected on: August https://nvd.nist.gov/vuln/detail/CVE-2012-0158
##CVE-2012-0158 - Changed to Known Ransomware Status
Microsoft MSCOMCTL.OCX Remote Code Execution VulnerabilityVendor: MicrosoftProduct: MSCOMCTL.OCXMicrosoft MSCOMCTL.OCX contains an unspecified vulnerability that allows for remote code execution, allowing an attacker to take complete control of an affected system under the context of the current user.Status changed from Unknown to Known for ransomware campaign usage.Flip detected on: August https://nvd.nist.gov/vuln/detail/CVE-2012-0158
##updated 2026-03-16T15:30:54
1 posts
5 repos
https://github.com/renzi25031469/CVE-2026-19478
https://github.com/davkharrr/CVE-2026-19478-PoC
https://github.com/punitdarji/Gitlab-CVE-2026-19478
⚪️ Critical GitLab Vulnerability Allowed Deletion of Public Projects
🗨️ GitLab developers have released emergency patches for Community Edition (CE) and Enterprise Edition (EE) that address the critical vulnerability CVE-2026-19478 (CVSS score: 9.4). Under certain conditions, the flaw allowed an unauthenticated attacker to remotely modify or delete public projects and…
##updated 2025-12-01T16:02:43
3 posts
1 repos
CISA has added CVE-2025-62593 to the KEV catalog: a CVSS 8.8 flaw in Anyscale Ray enabling remote code execution against AI development environments. Active exploitation confirmed. Versions below 2.52.0 are affected. Patch immediately and audit for compromise — attackers are targeting the ML build layer as an initial access vector.
#RayFramework #CVE202562593 #ActiveExploitation #CISA
https://cyberworldops.eu/en/ray-added-to-the-kev-catalog-active-exploitation-targeting-ai
##CISA has added CVE-2025-62593 to the KEV catalog: a CVSS 8.8 flaw in Anyscale Ray enabling remote code execution against AI development environments. Active exploitation confirmed. Versions below 2.52.0 are affected. Patch immediately and audit for compromise — attackers are targeting the ML build layer as an initial access vector.
#RayFramework #CVE202562593 #ActiveExploitation #CISA
https://cyberworldops.eu/en/ray-added-to-the-kev-catalog-active-exploitation-targeting-ai
##Ray Framework Remote Code Execution Vulnerability Under Active Exploitation
CISA warned that attackers are exploiting a remote code execution vulnerability in the Ray framework to target machine learning developers. The flaw allows attackers to bypass browser security checks and run arbitrary commands on developer machines and internal networks.
**If you use the Ray framework, update it to version 2.52.0 or later ASAP. Attackers are actively exploiting CVE-2025-62593 to run commands on developer machines. Also make sure Ray is never reachable from the internet and only accessible from trusted networks, and watch for unusual traffic between developer laptops and your internal compute clusters.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/ray-framework-remote-code-execution-vulnerability-under-active-exploitation-y-u-w-h-s/gD2P6Ple2L
updated 2025-10-22T00:33:30
2 posts
1 repos
CVE-2021-43226 - Changed to Known Ransomware Status
Microsoft Windows Privilege Escalation VulnerabilityVendor: MicrosoftProduct: WindowsMicrosoft Windows Common Log File System Driver contains a privilege escalation vulnerability that could allow a local, privileged attacker to bypass certain security mechanisms.Status changed from Unknown to Known for ransomware campaign usage.Flip detected on: August 21, 2026 at 13:08:17 UTCDate Added to https://nvd.nist.gov/vuln/detail/CVE-2021-43226
##CVE-2021-43226 - Changed to Known Ransomware Status
Microsoft Windows Privilege Escalation VulnerabilityVendor: MicrosoftProduct: WindowsMicrosoft Windows Common Log File System Driver contains a privilege escalation vulnerability that could allow a local, privileged attacker to bypass certain security mechanisms.Status changed from Unknown to Known for ransomware campaign usage.Flip detected on: August 21, 2026 at 13:08:17 UTCDate Added to https://nvd.nist.gov/vuln/detail/CVE-2021-43226
##updated 2025-10-22T00:31:59
2 posts
CVE-2020-5135 - Changed to Known Ransomware Status
SonicWall SonicOS Buffer Overflow VulnerabilityVendor: SonicWallProduct: SonicOSA buffer overflow vulnerability in SonicOS allows a remote attacker to cause Denial of Service (DoS) and potentially execute arbitrary code by sending a malicious request to the firewall.Status changed from Unknown to Known for ransomware campaign usage.Flip detected on: August 21, 2026 at 13:08:17 UTCDate Added tohttps://nvd.nist.gov/vuln/detail/CVE-2020-5135
##CVE-2020-5135 - Changed to Known Ransomware Status
SonicWall SonicOS Buffer Overflow VulnerabilityVendor: SonicWallProduct: SonicOSA buffer overflow vulnerability in SonicOS allows a remote attacker to cause Denial of Service (DoS) and potentially execute arbitrary code by sending a malicious request to the firewall.Status changed from Unknown to Known for ransomware campaign usage.Flip detected on: August 21, 2026 at 13:08:17 UTCDate Added tohttps://nvd.nist.gov/vuln/detail/CVE-2020-5135
##‼️ CVE-2026-39113: Heap Buffer Overflow in SQLite's Optional SQLAR Extension
##‼️ CVE-2026-39113: Heap Buffer Overflow in SQLite's Optional SQLAR Extension
##🟠 CVE-2026-55622 - High (7.7)
Incus is a system container and virtual machine manager. Prior to version 7.2.0, missing authorization checks exist for instance copying where an attacker knowing the name of a project that they don't have access to and the name of an instance in ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-55622/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-55622 - High (7.7)
Incus is a system container and virtual machine manager. Prior to version 7.2.0, missing authorization checks exist for instance copying where an attacker knowing the name of a project that they don't have access to and the name of an instance in ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-55622/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-63343 - Critical (9.9)
Incus is a system container and virtual machine manager. Prior to version 7.3.0, a malicious image containing a `metadata.yaml` symlink pointing to an arbitrary host path allows an authenticated Incus user to read or overwrite any file on the host...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-63343/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-63343 - Critical (9.9)
Incus is a system container and virtual machine manager. Prior to version 7.3.0, a malicious image containing a `metadata.yaml` symlink pointing to an arbitrary host path allows an authenticated Incus user to read or overwrite any file on the host...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-63343/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-63125 - Critical (9.9)
Incus is a system container and virtual machine manager. Prior to version 7.3.0, an unprivileged, project-confined Incus user (a non-admin TLS/RBAC identity with `can_create_images` and `can_create_instances`) can execute arbitrary code as root on...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-63125/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-63125 – Critical RCE/privesc in Incus. Unprivileged user can execute code as root via symlink attack. CVSS 9.9. Patch to 7.3.0 immediately. #CVE #Incus #infosec
##🔴 CVE-2026-63125 - Critical (9.9)
Incus is a system container and virtual machine manager. Prior to version 7.3.0, an unprivileged, project-confined Incus user (a non-admin TLS/RBAC identity with `can_create_images` and `can_create_instances`) can execute arbitrary code as root on...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-63125/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-62941 - Critical (9.9)
Incus is a system container and virtual machine manager. Prior to version 7.3.0, when copying an instance across projects, the project restriction check (`AllowInstanceCreation`) runs BEFORE the source instance's configuration is merged into the r...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-62941/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-62941 - Critical (9.9)
Incus is a system container and virtual machine manager. Prior to version 7.3.0, when copying an instance across projects, the project restriction check (`AllowInstanceCreation`) runs BEFORE the source instance's configuration is merged into the r...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-62941/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-62940 - Critical (9.9)
Incus is a system container and virtual machine manager. Prior to version 7.3.0, when migrating an instance to another cluster member, user-supplied configuration overrides (including security-critical keys like `security.privileged` and `raw.lxc`...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-62940/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-62940 - Critical (9.9)
Incus is a system container and virtual machine manager. Prior to version 7.3.0, when migrating an instance to another cluster member, user-supplied configuration overrides (including security-critical keys like `security.privileged` and `raw.lxc`...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-62940/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-62867 - Critical (9.9)
Incus is a system container and virtual machine manager. Prior to version 7.3.0, improper validation of user-provided `block.create_options` in storage volume configuration leads to argument injection in the constructed filesystem creation command...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-62867/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-62867 - Critical (9.9)
Incus is a system container and virtual machine manager. Prior to version 7.3.0, improper validation of user-provided `block.create_options` in storage volume configuration leads to argument injection in the constructed filesystem creation command...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-62867/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-55241 - High (7.5)
Checkmate is an open-source, self-hosted tool designed to track and monitor server hardware, uptime, response times, and incidents in real-time with beautiful visualizations. Prior to 3.9.1, the public POST /api/v1/auth/register route in server/sr...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-55241/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-55241 - High (7.5)
Checkmate is an open-source, self-hosted tool designed to track and monitor server hardware, uptime, response times, and incidents in real-time with beautiful visualizations. Prior to 3.9.1, the public POST /api/v1/auth/register route in server/sr...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-55241/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-30826 - High (8)
Combodo iTop is a web based IT service management tool. Prior to 3.2.3, there is a Reflected Cross-Site Scripting (XSS) vulnerability in the testing OQL query functionality. This issue has been fixed in version 3.2.3.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-30826/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-30826 - High (8)
Combodo iTop is a web based IT service management tool. Prior to 3.2.3, there is a Reflected Cross-Site Scripting (XSS) vulnerability in the testing OQL query functionality. This issue has been fixed in version 3.2.3.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-30826/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-30890 - High (8)
Combodo iTop is a web based IT service management tool. Prior to 3.2.3, there is a Reflected Cross-Site Scripting (XSS) vulnerability in the synchro import script. This issue has been fixed in version 3.2.3.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-30890/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-30890 - High (8)
Combodo iTop is a web based IT service management tool. Prior to 3.2.3, there is a Reflected Cross-Site Scripting (XSS) vulnerability in the synchro import script. This issue has been fixed in version 3.2.3.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-30890/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-53525 - Timing attack in WeeChat relay auth leaks hash, enabling auth bypass. CVSS 7.4. Update to 4.9.1 now. #CVE #WeeChat #infosec
##🟠 CVE-2026-62316 - High (8.8)
Microsoft UFO open-source framework for intelligent automation across devices and platforms. Prior to 3.0.8, ufo/client/mcp/http_servers/linux_mcp_server.py binds a FastMCP streamable HTTP server to localhost:8010 but does not validate the Host, O...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-62316/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-62316 - High (8.8)
Microsoft UFO open-source framework for intelligent automation across devices and platforms. Prior to 3.0.8, ufo/client/mcp/http_servers/linux_mcp_server.py binds a FastMCP streamable HTTP server to localhost:8010 but does not validate the Host, O...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-62316/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-34948 - High (7.7)
Combodo iTop is a web based IT service management tool. Prior to 3.2.3, only classes present in the SELECT clause are protected by the silos access check in OQL. This issue has been fixed in version 3.2.3.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-34948/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-34948 - High (7.7)
Combodo iTop is a web based IT service management tool. Prior to 3.2.3, only classes present in the SELECT clause are protected by the silos access check in OQL. This issue has been fixed in version 3.2.3.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-34948/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-33240 - High (8.8)
Combodo iTop is a web based IT service management tool. Prior to 3.2.3, there was a Reflected Cross-Site Scripting (XSS) vulnerability in the foreign key search criteria API. This issue has been fixed in version 3.2.3.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-33240/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-33240 - High (8.8)
Combodo iTop is a web based IT service management tool. Prior to 3.2.3, there was a Reflected Cross-Site Scripting (XSS) vulnerability in the foreign key search criteria API. This issue has been fixed in version 3.2.3.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-33240/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-31936 - High (8.8)
Combodo iTop is a web based IT service management tool. Prior to 3.2.3, users can access to unauthorized object information through the search operation. This issue has been fixed in version 3.2.3.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-31936/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-31936 - High (8.8)
Combodo iTop is a web based IT service management tool. Prior to 3.2.3, users can access to unauthorized object information through the search operation. This issue has been fixed in version 3.2.3.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-31936/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-53528 - High (8.8)
LeafWiki is a self-hosted wiki. Versions 0.3.0 through 0.10.0 have a path traversal vulnerability in LeafWiki’s asset rename functionality. An authenticated user with editor permissions could move files that are accessible to the LeafWiki server...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-53528/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-53528 - High (8.8)
LeafWiki is a self-hosted wiki. Versions 0.3.0 through 0.10.0 have a path traversal vulnerability in LeafWiki’s asset rename functionality. An authenticated user with editor permissions could move files that are accessible to the LeafWiki server...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-53528/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-53527 - High (8.8)
LeafWiki is a self-hosted wiki. Versions 0.1.0 through 0.10.0 have a privilege escalation vulnerability in the user update API. An authenticated user could update their own account role and escalate privileges from a regular user, such as `viewer`...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-53527/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-53527 - High (8.8)
LeafWiki is a self-hosted wiki. Versions 0.1.0 through 0.10.0 have a privilege escalation vulnerability in the user update API. An authenticated user could update their own account role and escalate privileges from a regular user, such as `viewer`...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-53527/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-62677 - High (8.8)
Omnigent is an open-source AI agent framework and meta-harness for orchestrating coding agents. Prior to 0.3.0, an authenticated user can upload a session-scoped agent bundle with an absolute or traversal-containing os_env.cwd value because omnige...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-62677/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-62677 - High (8.8)
Omnigent is an open-source AI agent framework and meta-harness for orchestrating coding agents. Prior to 0.3.0, an authenticated user can upload a session-scoped agent bundle with an absolute or traversal-containing os_env.cwd value because omnige...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-62677/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-62675 - High (8.8)
Omnigent is an open-source AI agent framework and meta-harness for orchestrating coding agents. Prior to 0.3.0, multipart POST /v1/sessions accepts an authenticated user's agent bundle and omnigent/server/bundles.py validate_agent_bundle does not ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-62675/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-62675 - High (8.8)
Omnigent is an open-source AI agent framework and meta-harness for orchestrating coding agents. Prior to 0.3.0, multipart POST /v1/sessions accepts an authenticated user's agent bundle and omnigent/server/bundles.py validate_agent_bundle does not ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-62675/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-30866 - High (7.5)
Combodo iTop is a web based IT service management tool. Prior to 3.2.3, unauthenticated users can access uploaded sensitive via sniffed url. This issue has been fixed in version 3.2.3.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-30866/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-30866 - High (7.5)
Combodo iTop is a web based IT service management tool. Prior to 3.2.3, unauthenticated users can access uploaded sensitive via sniffed url. This issue has been fixed in version 3.2.3.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-30866/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-27490 - High (7.5)
Combodo iTop is a web based IT service management tool. Prior to 3.2.3, inline images that are accessible without being authenticated are protected by a weak 24-bit pseudo-random secret. This issue has been fixed in version 3.2.3.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-27490/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-27490 - High (7.5)
Combodo iTop is a web based IT service management tool. Prior to 3.2.3, inline images that are accessible without being authenticated are protected by a weak 24-bit pseudo-random secret. This issue has been fixed in version 3.2.3.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-27490/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-77810 - Critical (9.9)
In the Neptune connector, a user with access to Neptune through Athena Federated Query could gain access to properties in the Lambda supplying the compute for the connector. To remediate this issue, users should upgrade to aws-athena-query-federat...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77810/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-77810 - Critical (9.9)
In the Neptune connector, a user with access to Neptune through Athena Federated Query could gain access to properties in the Lambda supplying the compute for the connector. To remediate this issue, users should upgrade to aws-athena-query-federat...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77810/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-54682 - High (8.2)
DiscordChatExporter saves Discord chat logs to a file. Prior to 2.47.2, HTML exports generated with markdown formatting disabled pass attacker-controlled content through FormatMarkdownAsync and FormatEmbedMarkdownAsync in DiscordChatExporter.Core/...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-54682/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-54682 - High (8.2)
DiscordChatExporter saves Discord chat logs to a file. Prior to 2.47.2, HTML exports generated with markdown formatting disabled pass attacker-controlled content through FormatMarkdownAsync and FormatEmbedMarkdownAsync in DiscordChatExporter.Core/...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-54682/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-71862 - High (7.5)
Checkmate is an open-source, self-hosted tool designed to track and monitor server hardware, uptime, response times, and incidents in real-time with beautiful visualizations. From 3.3.0 until 3.9.2, enabling the global showURL setting causes the u...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-71862/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-71862 - High (7.5)
Checkmate is an open-source, self-hosted tool designed to track and monitor server hardware, uptime, response times, and incidents in real-time with beautiful visualizations. From 3.3.0 until 3.9.2, enabling the global showURL setting causes the u...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-71862/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-77234 - High (8.8)
Improper input validation in FreeRTOS-Kernel before 11.3.1 might allow an unprivileged task on MPU-enabled ports to execute code in privileged kernel context. To remediate this issue, users should upgrade to version 11.3.1 or later.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77234/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-77234 - High (8.8)
Improper input validation in FreeRTOS-Kernel before 11.3.1 might allow an unprivileged task on MPU-enabled ports to execute code in privileged kernel context. To remediate this issue, users should upgrade to version 11.3.1 or later.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77234/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-54789 - High (7.5)
mod_auth_openidc is an OpenID Certified authentication and authorization module for the Apache 2.x HTTP server that implements the OpenID Connect Relying Party functionality. Prior to 2.4.19.4, an out-of-bounds read and a one-byte out-of-bounds wr...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-54789/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-54789 - High (7.5)
mod_auth_openidc is an OpenID Certified authentication and authorization module for the Apache 2.x HTTP server that implements the OpenID Connect Relying Party functionality. Prior to 2.4.19.4, an out-of-bounds read and a one-byte out-of-bounds wr...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-54789/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##Four Spring Security vulnerabilities were disclosed, led by CVE-2026-59270 (CVSS 9.4). Attackers can read or modify entries in the in-memory directory.
##CVE-2026-77176 lets a malicious operator mount arbitrary guest rootfs paths in Kata Containers Confidential Containers setups. Update to Kata 4.1.0.
#CVE202677176 #KataContainers #ConfidentialContainers #CloudSecurity #genpolicy #infosec
##🟠 CVE-2026-77176 - High (8.1)
A flaw was found in Kata Containers. In configurations utilizing genpolicy for Confidential Containers guest protection, a malicious host operator can exploit insufficient validation of CreateContainer mount and storage rules. This allows them to ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77176/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-71485 - Critical (9.1)
Centrifugo is an open-source scalable real-time messaging server. Prior to 6.9.0, Centrifugo copies the client-controlled protocol.ConnectRequest.headers map through OnClientConnecting in internal/client/handler.go, ConnectEvent.Headers, and SetEm...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-71485/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-73256 - Critical (9.1)
Mongoose is an embedded web server and network library. Prior to 7.22, a remote unauthenticated attacker can exploit an HTTP/1.0 reverse-proxy deployment by sending a request with Transfer-Encoding: chunked and conflicting framing. The http_cb() f...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-73256/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-71428 - Critical (9.3)
The unstructured library provides open-source components for ingesting and pre-processing images and text documents, such as PDFs, HTML, Word docs, and many more. From 0.4.7 until 0.24.0, the url argument of partition, partition_html, and partitio...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-71428/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##Two critical Spring Integration vulnerabilities, CVE-2026-59307 and CVE-2026-59324, expose systems to remote code execution and data leakage. Update now.
#SpringIntegration #CyberSecurity #CVE202659307 #CVE202659324 #Vulnerability
##Two critical Spring Integration vulnerabilities, CVE-2026-59307 and CVE-2026-59324, expose systems to remote code execution and data leakage. Update now.
#SpringIntegration #CyberSecurity #CVE202659307 #CVE202659324 #Vulnerability
##https://docs.ceph.com/en/latest/security/CVE-2026-54330/
https://github.com/ceph/ceph/commit/89df1b55f12f4bb07878cc0e8f5152307166b7f4
>RGW: This release contains a fix for CVE-2026-54330. We now reject Sigv4 requests with `host` and `x-amz-` headers not included in the signed subset. Unfortunately, the REST client used in multisite was generating such improperly signed requests.
can't make this shit up
> If you are running multisite, you must set the ``rgw_sigv4_insecure`` option to true before you begin to upgrade. After all clusters are upgraded, set the option to ``false`` again.
??! D:
they want me to backdoor the cluster in order to fix a security vuln in the cluster lmfao
##