##
Updated at UTC 2026-10-06T17:11:31.991325
| CVE | CVSS | EPSS | Posts | Repos | Nuclei | Updated | Description |
|---|---|---|---|---|---|---|---|
| CVE-2026-76105 | 7.7 | 0.00% | 2 | 0 | 2026-10-06T16:17:10 | Dell Container Storage Modules, versions prior to 1.18.0 contain(s) an Use of In | |
| CVE-2026-67273 | 9.6 | 0.00% | 2 | 0 | 2026-10-06T16:17:09.717000 | Dell Container Storage Modules, versions prior to 1.18.0, contain(s) an Improper | |
| CVE-2026-67270 | 8.2 | 0.00% | 2 | 0 | 2026-10-06T16:17:09.580000 | Dell Container Storage Modules (CSM) versions prior to 1.18.0, contains an Impro | |
| CVE-2026-61411 | 7.7 | 0.00% | 2 | 0 | 2026-10-06T16:17:08.693000 | Dell Container Storage Modules, versions prior to 1.18.0, contain(s) an Insertio | |
| CVE-2026-105845 | 9.8 | 0.00% | 2 | 0 | 2026-10-06T16:17:06.540000 | Payload is a free and open source headless content management system. In version | |
| CVE-2026-105223 | 7.4 | 0.20% | 1 | 0 | 2026-10-06T16:08:43.180000 | maclof kubernetes-client 0.17.0 before 0.32.0 disables TLS certificate verificat | |
| CVE-2026-77226 | 8.1 | 0.69% | 1 | 0 | 2026-10-06T16:08:27.613000 | Camunda 7.24.0 before 7.24.15 contains an incorrect authorization vulnerability | |
| CVE-2026-104711 | 9.8 | 0.36% | 1 | 0 | 2026-10-06T15:32:48 | Improper neutralization of special elements used in an expression language state | |
| CVE-2026-59265 | 8.8 | 0.22% | 2 | 1 | 2026-10-06T15:32:32 | A code execution issue in the Java integration in Apache OpenOffice v4.1.16 and | |
| CVE-2026-21589 | None | 0.74% | 8 | 1 | 2026-10-06T15:31:47 | h3. Summary This is a vulnerability in Bitbucket Data Center, Confluence Data C | |
| CVE-2026-63692 | 10.0 | 0.00% | 2 | 0 | 2026-10-06T15:18:44.910000 | Dell Container Storage Modules, versions prior to 1.18.0, contain(s) a Missing A | |
| CVE-2026-84411 | 9.8 | 0.95% | 2 | 0 | 2026-10-06T15:15:48.310000 | The web management service in affected RouterOS versions contains an integer und | |
| CVE-2026-79820 | 9.0 | 0.27% | 1 | 0 | 2026-10-06T15:15:48.310000 | A remote user validation failure vulnerability exists in HPE Integrated Lights-O | |
| CVE-2026-91140 | 9.6 | 0.00% | 2 | 0 | 2026-10-06T15:09:20.387000 | An OS command injection vulnerability in the shell-based temporary-file cleanup | |
| CVE-2026-92931 | 8.8 | 0.26% | 3 | 0 | 2026-10-06T15:09:20.387000 | CWE-918: Server-Side Request Forgery in the Progress @progress/sitefinity-nextjs | |
| CVE-2026-91107 | 0 | 0.24% | 1 | 0 | 2026-10-06T15:08:38.397000 | openSIS Classic 9.3 allows an authenticated user with the built-in teacher role | |
| CVE-2026-103510 | 0 | 0.35% | 1 | 0 | 2026-10-06T15:08:38.397000 | P4 Search prior to 2026.4.2 does not fail securely when its service authenticati | |
| CVE-2026-20519 | 7.5 | 0.23% | 1 | 0 | 2026-10-06T15:05:34.080000 | In Modem, there is a possible out of bounds write due to a missing bounds check. | |
| CVE-2026-105778 | 9.9 | 0.48% | 1 | 0 | 2026-10-06T15:04:52.637000 | A vulnerability has been found in Tenda AC5 02.03.01.111_multi. Affected by this | |
| CVE-2026-100511 | 8.8 | 0.36% | 1 | 0 | 2026-10-06T15:04:25.990000 | Deserialization of Untrusted Data vulnerability in Vektor Inc. VK Google Job Pos | |
| CVE-2026-97283 | 9.8 | 0.36% | 1 | 0 | 2026-10-06T15:04:25.990000 | Deserialization of Untrusted Data vulnerability in Liquid Web / StellarWP Advanc | |
| CVE-2026-104389 | 8.5 | 0.26% | 1 | 0 | 2026-10-06T15:04:25.990000 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injecti | |
| CVE-2026-105642 | 8.8 | 0.25% | 1 | 0 | 2026-10-06T15:03:59.427000 | Ghost is a Node.js content management system. From 6.56.0 until 6.67.0, an image | |
| CVE-2026-49885 | 7.8 | 0.07% | 1 | 0 | 2026-10-06T14:49:40.823000 | In rw_t4t_update_file of rw_t4t.cc, there is a possible out-of-bounds write due | |
| CVE-2026-55269 | 7.8 | 0.07% | 1 | 0 | 2026-10-06T14:49:40.823000 | In FilterCapturedPacket of snoop_logger.cc, there is a possible memory safety is | |
| CVE-2026-58835 | 8.8 | 0.23% | 1 | 0 | 2026-10-06T14:49:40.823000 | In cfg2prop of btif_storage.cc, there is a possible out-of-bounds write due to a | |
| CVE-2026-71885 | 0 | 0.19% | 3 | 0 | 2026-10-06T14:49:40.823000 | In Bouncy Castle for Java before 1.86, the Messaging Layer Security (MLS, RFC 94 | |
| CVE-2026-71886 | 0 | 0.17% | 1 | 0 | 2026-10-06T14:49:40.823000 | In Bouncy Castle for Java before 1.86, the high-level OpenPGP certificate API ac | |
| CVE-2026-103831 | None | 0.00% | 1 | 0 | 2026-10-06T12:30:32 | CVE-2026-103831: Insecure deserialization vulnerability in the Psr16CacheAdapter | |
| CVE-2026-41555 | 9.3 | 0.25% | 2 | 0 | 2026-10-06T09:31:35 | Unauthenticated SQL Injection in Newsletter Subscription Form – User Subscriptio | |
| CVE-2026-42415 | 9.3 | 0.25% | 2 | 0 | 2026-10-06T09:31:35 | Unauthenticated SQL Injection in Porto Theme - Functionality <= 3.9.3 versions. | |
| CVE-2026-42417 | 9.3 | 0.33% | 1 | 0 | 2026-10-06T09:31:35 | Unauthenticated SQL Injection in ARMember Premium <= 7.8 versions. | |
| CVE-2026-94293 | 9.8 | 0.35% | 3 | 0 | 2026-10-06T09:31:31 | An unauthenticated remote attacker can modify Asset Administration Shell submode | |
| CVE-2026-75962 | 7.2 | 0.28% | 1 | 0 | 2026-10-06T06:30:43 | The Post SMTP – Complete Email Deliverability and SMTP Solution with Email Logs, | |
| CVE-2026-105484 | 10.0 | 2.13% | 1 | 0 | 2026-10-06T03:31:28 | A security vulnerability has been detected in TOTOLINK X6000R 9.4.0cu.652_B20230 | |
| CVE-2026-105782 | 7.5 | 0.38% | 1 | 0 | 2026-10-05T23:09:00 | ### Impact Since version 1.4.0, Scrapy respects the `Referrer-Policy` response | |
| CVE-2026-103922 | 9.3 | 0.21% | 1 | 1 | 2026-10-05T22:53:12 | ### Impact Capacitor's WebView navigation guard validated only the **host and s | |
| CVE-2026-103066 | 8.5 | 0.26% | 1 | 0 | 2026-10-05T21:31:46 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injecti | |
| CVE-2026-97257 | 8.8 | 0.36% | 1 | 0 | 2026-10-05T21:31:46 | Deserialization of Untrusted Data vulnerability in PressTigers Simple Event Plan | |
| CVE-2026-58841 | 7.8 | 0.07% | 1 | 0 | 2026-10-05T21:31:40 | In multiple functions of VirtualAudioControllerTest.java, there is a possible pe | |
| CVE-2026-58815 | 7.8 | 0.07% | 1 | 0 | 2026-10-05T21:31:40 | In multiple locations, there is a possible out of bounds write due to an incorre | |
| CVE-2026-49933 | 7.8 | 0.07% | 1 | 0 | 2026-10-05T21:31:39 | In handle_le_monitor_device_event of msft.cc, there is a possible control-flow h | |
| CVE-2026-45524 | 8.8 | 0.07% | 1 | 0 | 2026-10-05T21:31:39 | In isSystem of WifiPermissionsUtil.java, there is a possible sandbox escape due | |
| CVE-2026-49937 | 7.8 | 0.07% | 1 | 0 | 2026-10-05T21:31:39 | In multiple functions of MessageQueueBase.h, there is a possible out of bounds r | |
| CVE-2026-55266 | 7.8 | 0.07% | 1 | 0 | 2026-10-05T21:31:39 | In qsort of libufdt_sysdeps_vendor.c, there is a possible out-of-bounds write du | |
| CVE-2026-58854 | 7.8 | 0.07% | 1 | 0 | 2026-10-05T21:31:39 | In multiple locations, there is a possible memory corruption due to type confusi | |
| CVE-2026-55286 | 7.8 | 0.07% | 1 | 0 | 2026-10-05T21:31:39 | In stpropnci_process of stpropnci.cc, there is a possible out of bounds write du | |
| CVE-2026-55280 | 8.8 | 0.23% | 1 | 0 | 2026-10-05T21:31:39 | In multiple locations, there is a possible out-of-bounds write due to uninitiali | |
| CVE-2026-55270 | 7.8 | 0.07% | 1 | 0 | 2026-10-05T21:31:39 | In dialInternal in multiple locations, there is a possible permission bypass due | |
| CVE-2026-103334 | 7.5 | 0.32% | 1 | 0 | 2026-10-05T21:31:38 | Insertion of Sensitive Information Into Sent Data vulnerability in Etoile Web De | |
| CVE-2026-58859 | 7.8 | 0.07% | 1 | 0 | 2026-10-05T21:31:36 | In multiple places, there is a possible denial of service due to an uncaught ex | |
| CVE-2026-58865 | 7.5 | 0.22% | 1 | 0 | 2026-10-05T21:31:36 | In multiple functions of PduParser.java, there is a possible persistent denial o | |
| CVE-2026-97303 | 7.6 | 0.25% | 1 | 0 | 2026-10-05T21:31:36 | Missing Authorization vulnerability in Apps Mav Scratch & Win – Giveaways and Co | |
| CVE-2026-105691 | 9.9 | 0.37% | 1 | 0 | 2026-10-05T20:17:19.363000 | Penpot is an open-source design and prototyping platform. Prior to 2.18.0, the S | |
| CVE-2026-105638 | 9.1 | 0.38% | 1 | 0 | 2026-10-05T19:17:18.173000 | Plane is an open-source project management tool. Prior to 1.4.0, Plane's magic-c | |
| CVE-2026-105636 | 9.9 | 0.35% | 1 | 0 | 2026-10-05T19:17:17.827000 | Plane is an open-source project management tool. Prior to 1.4.0, the webhook del | |
| CVE-2026-105630 | 8.7 | 0.21% | 1 | 0 | 2026-10-05T19:17:17.093000 | Plane is an open-source project management tool. Prior to 1.4.0, an authenticate | |
| CVE-2026-77805 | 7.9 | 0.06% | 1 | 0 | 2026-10-05T15:32:23 | In Progress® Telerik® Fiddler® Classic for Windows, versions prior to v6.0.20262 | |
| CVE-2026-105211 | 8.1 | 0.33% | 2 | 0 | 2026-10-05T15:17:19.077000 | ZITADEL before 4.17.1 contains an authentication bypass vulnerability in Login V | |
| CVE-2026-88779 | 7.5 | 0.59% | 29 | 2 | 2026-10-05T13:35:24.663000 | Vulnerability in NetScaler ADC and NetScaler Gateway. This issue affects ADC: b | |
| CVE-2026-63277 | None | 0.14% | 4 | 1 | 2026-10-05T12:31:34 | LibreOffice Calc can link a cell range to an external data source, and the link | |
| CVE-2026-105285 | 10.0 | 0.64% | 2 | 0 | 2026-10-05T12:31:33 | A security vulnerability has been detected in Totolink A3002MU 1.0.0-B20230403.1 | |
| CVE-2026-105284 | 10.0 | 0.78% | 2 | 0 | 2026-10-05T09:32:02 | A weakness has been identified in Totolink A3002MU 1.0.0-B20230403.1455. The imp | |
| CVE-2026-105314 | 7.5 | 0.90% | 1 | 1 | 2026-10-05T09:31:57 | Papermerge 3.5.3 allows remote code execution by a standard user via directory t | |
| CVE-2026-104408 | 7.6 | 0.28% | 1 | 0 | 2026-10-05T09:31:57 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injecti | |
| CVE-2026-100102 | None | 0.36% | 1 | 0 | 2026-10-05T09:31:57 | Perforce P4 Search container images prior to 2026.4.2 enable an unauthenticated | |
| CVE-2026-100103 | None | 0.42% | 2 | 0 | 2026-10-05T09:31:56 | Perforce P4 Search container images prior to 2026.4.2 reset the service authenti | |
| CVE-2026-104706 | None | 0.14% | 1 | 0 | 2026-10-05T09:31:53 | DigitalCanion has discovered a path traversal vulnerability that allows to view | |
| CVE-2026-105295 | 7.5 | 0.13% | 1 | 0 | 2026-10-05T03:30:33 | GitAhead 2.5.0 through 2.7.1 contains an insecure update mechanism that installs | |
| CVE-2026-105293 | 8.1 | 0.38% | 1 | 0 | 2026-10-05T03:30:26 | Legcord 1.1.0 through 1.3.0 contains a path traversal vulnerability in theme IPC | |
| CVE-2026-105221 | 7.4 | 0.18% | 2 | 1 | 2026-10-05T00:30:26 | The gist RubyGem before 6.1.0 contains an improper certificate validation vulner | |
| CVE-2026-105222 | 7.4 | 0.19% | 1 | 0 | 2026-10-05T00:30:26 | The alexpechkarev/google-maps Laravel package through 12.16 disables TLS certifi | |
| CVE-2026-105220 | 7.8 | 0.15% | 1 | 0 | 2026-10-05T00:30:26 | Twine 2 desktop through 2.12.0 contains a cross-site scripting vulnerability in | |
| CVE-2026-105219 | 7.5 | 0.36% | 1 | 0 | 2026-10-04T18:30:27 | Mammoth.js 1.3.0 before 1.12.3 contains a regular expression denial of service v | |
| CVE-2026-105089 | 8.7 | 0.23% | 1 | 0 | 2026-10-04T18:30:21 | WWBN AVideo through 29.2.0 contains a stored cross-site scripting vulnerability | |
| CVE-2026-105086 | 8.7 | 0.23% | 1 | 0 | 2026-10-04T18:30:21 | WWBN AVideo 12.4 through 29.2.0 contains a stored cross-site scripting vulnerabi | |
| CVE-2026-105212 | 7.5 | 0.32% | 1 | 0 | 2026-10-04T15:30:30 | ZITADEL 3.x before 3.4.14 and 4.x before 4.16.2 contains an authentication bypas | |
| CVE-2026-105215 | 9.1 | 0.34% | 2 | 0 | 2026-10-04T15:30:29 | ZITADEL before 3.4.14 and 4.x before 4.16.2 contains an authentication bypass in | |
| CVE-2026-105213 | 8.2 | 0.24% | 1 | 0 | 2026-10-04T15:30:29 | ZITADEL 4.x before 4.17.1 does not check an organization's inactive state during | |
| CVE-2026-105210 | 8.2 | 0.24% | 1 | 0 | 2026-10-04T15:30:29 | ZITADEL 3.x before 3.4.15 and 4.x before 4.17.1 contains a missing authenticatio | |
| CVE-2026-105207 | 9.8 | 0.31% | 3 | 0 | 2026-10-04T15:30:24 | ZITADEL 3.0.0 through 3.4.15 and 4.0.0 before 4.17.3 creates links between user | |
| CVE-2026-105209 | 9.6 | 0.22% | 2 | 0 | 2026-10-04T15:30:23 | ZITADEL 3.x before 3.4.15 and 4.x before 4.17.1 contains an improper authorizati | |
| CVE-2026-105208 | 7.7 | 0.08% | 1 | 0 | 2026-10-04T15:30:23 | ZITADEL 4.x before 4.17.3 and 3.x through 3.4.15 protects IdP intent tokens with | |
| CVE-2026-97307 | 7.5 | 0.24% | 2 | 0 | 2026-10-04T12:32:45 | Insertion of Sensitive Information Into Sent Data vulnerability in StylemixTheme | |
| CVE-2026-105135 | 10.0 | 0.77% | 2 | 0 | 2026-10-04T09:30:28 | A vulnerability has been found in InternLM MindSearch 0.1.0. This issue affects | |
| CVE-2026-103355 | 9.3 | 0.25% | 2 | 1 | 2026-10-04T09:30:28 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injecti | |
| CVE-2026-105134 | 10.0 | 1.84% | 3 | 1 | 2026-10-04T09:30:21 | A flaw has been found in Ahsay AhsayCBS up to 10.3.2. This vulnerability affects | |
| CVE-2026-105129 | 6.5 | 0.31% | 1 | 0 | 2026-10-04T00:31:06 | LaraDashboard before 1.4.8 contains an incorrect authorization vulnerability tha | |
| CVE-2026-105123 | 8.8 | 0.52% | 2 | 0 | 2026-10-04T00:31:06 | W (vincent-peugnet/wcms) through 3.18.0 contains a remote code execution vulnera | |
| CVE-2026-102490 | 9.8 | 0.63% | 3 | 0 | 2026-10-03T04:18:00.460000 | All versions of Zammad including the latest alpha enable the local zammad user t | |
| CVE-2026-96940 | 8.8 | 0.50% | 3 | 1 | 2026-10-02T21:32:13 | Weak authorization in Microsoft Exchange Server allows an authenticated attacker | |
| CVE-2026-103484 | 8.8 | 0.42% | 1 | 0 | 2026-10-02T18:53:46.583000 | IVFFlat index build in pgvector before 0.8.7 allows a database user to write dat | |
| CVE-2026-102489 | 9.8 | 1.40% | 3 | 0 | 2026-10-02T18:32:21 | Zammad versions 6.3.0 to 6.5.4 are vulnerable a session hijack vulnerability tha | |
| CVE-2026-91135 | 0 | 0.46% | 1 | 0 | 2026-10-02T18:17:06.963000 | Heap-based buffer overflow vulnerability in Apache Thrift C++ THeaderTransport. | |
| CVE-2026-90970 | 9.9 | 0.94% | 3 | 1 | 2026-10-02T15:31:37 | GitLab has remediated a vulnerability in the GitLab AI Gateway component affecti | |
| CVE-2026-102792 | 9.1 | 3.04% | 1 | 0 | 2026-10-02T13:17:21.763000 | A vulnerability was detected in Ziroom ZHOME A0101 1.0.1.0. This affects the fun | |
| CVE-2026-104286 | 9.8 | 2.20% | 2 | 2 | 2026-10-01T21:33:02 | An improper limitation of a pathname to a restricted directory ('path traversal' | |
| CVE-2026-102793 | 9.1 | 2.49% | 1 | 0 | 2026-10-01T16:17:35.247000 | A flaw has been found in Ziroom ZHOME A0101 1.0.1.0. This vulnerability affects | |
| CVE-2026-13313 | None | 0.68% | 1 | 0 | 2026-10-01T03:31:14 | An Active Debug Code vulnerability in certain ASUS router models allows a remote | |
| CVE-2026-14157 | None | 0.76% | 1 | 0 | 2026-10-01T03:31:13 | Use of an Externally Controlled Format String in the ASUS Router modules allow a | |
| CVE-2026-100520 | 8.8 | 0.94% | 1 | 1 | 2026-09-30T17:32:07.107000 | Laranode versions before 1.2.1 contain a path traversal vulnerability in the POS | |
| CVE-2026-102794 | 9.1 | 2.36% | 1 | 0 | 2026-09-30T14:17:24.647000 | A vulnerability has been found in Ziroom ZHOME A0101 1.0.1.0. This issue affects | |
| CVE-2026-12268 | 8.8 | 4.73% | 1 | 0 | 2026-09-29T21:39:02.570000 | ManageEngine DDI Central versions below 6201 are vulnerable to PowerShell comman | |
| CVE-2026-12269 | 8.8 | 6.99% | 1 | 0 | 2026-09-29T21:39:02.570000 | Zohocorp ManageEngine DDI Central 6.2.0 build below 6201 had a Keepalived config | |
| CVE-2026-12267 | 7.2 | 3.60% | 1 | 0 | 2026-09-29T21:39:02.570000 | ManageEngine DDI Central versions below 6201 are vulnerable to Command injection | |
| CVE-2026-101262 | 9.1 | 2.36% | 1 | 0 | 2026-09-29T18:57:24.350000 | A vulnerability has been found in Ziroom ZHOME A0101 1.0.1.0. This vulnerability | |
| CVE-2026-84782 | 8.2 | 0.39% | 1 | 0 | 2026-09-29T18:31:49 | Issue summary: The DTLS retransmission logic does not correctly handle a handsha | |
| CVE-2026-88771 | 9.8 | 1.08% | 9 | 12 | 2026-09-29T04:18:01.603000 | Improper input validation vulnerability in Citrix NetScaler ADC and Citrix NetSc | |
| CVE-2026-101261 | 9.1 | 2.36% | 1 | 0 | 2026-09-29T00:31:38 | A flaw has been found in Ziroom ZHOME A0101 1.0.1.0. This affects an unknown par | |
| CVE-2026-101075 | 10.0 | 2.45% | 1 | 0 | 2026-09-28T21:02:16.150000 | A security vulnerability has been detected in Netcore NR289-GE 1.4.5102. The imp | |
| CVE-2026-101001 | 10.0 | 2.63% | 1 | 0 | 2026-09-28T15:15:33.930000 | A vulnerability was identified in Netcore NBR200V2 1.3.241127.071246. This impac | |
| CVE-2026-88772 | 8.1 | 1.30% | 2 | 8 | 2026-09-28T12:32:09 | Vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway. This issue | |
| CVE-2026-58270 | 6.5 | 0.35% | 1 | 0 | 2026-09-24T21:25:27.050000 | Sync-in Server is an open-source platform for file storage, sharing, collaborati | |
| CVE-2026-77561 | 5.3 | 0.60% | 1 | 0 | 2026-09-22T20:37:12 | ### Summary Tinyauth's login rate-limit bookkeeping can enter a global lockdown | |
| CVE-2026-94491 | 7.3 | 0.41% | 1 | 0 | 2026-09-22T19:16:59.663000 | A weakness has been identified in Yonyou KSOA 9.0. This affects an unknown part | |
| CVE-2026-63272 | None | 0.17% | 1 | 0 | 2026-09-22T12:30:26 | LibreOffice can import WMF graphics, which may be embedded in documents. A heap | |
| CVE-2026-94535 | 7.1 | 0.47% | 1 | 0 | 2026-09-22T00:31:02 | lamp-cloud through 5.10.0 contains an authorization bypass vulnerability in the | |
| CVE-2026-93485 | 7.1 | 0.38% | 1 | 4 | 2026-09-18T06:32:17 | Improper neutralization of input during web page generation ('cross-site scripti | |
| CVE-2026-10536 | 9.8 | 0.60% | 1 | 0 | 2026-09-15T07:16:25.137000 | A use-after-free vulnerability exists in libcurl when an application configures | |
| CVE-2026-8452 | 9.8 | 1.01% | 1 | 6 | 2026-08-26T18:30:34 | Memory overflow vulnerability NetScaler ADC and NetScaler Gateway leading to unp | |
| CVE-2026-59309 | 9.8 | 0.61% | 1 | 1 | 2026-08-25T18:12:14.410000 | VMware vCenter contains an authentication bypass vulnerability in the VMware Dir | |
| CVE-2026-59310 | 9.8 | 2.56% | 1 | 5 | 2026-08-18T18:32:52 | VMware vCenter contains a directory traversal vulnerability in the Syslog server | |
| CVE-2026-15307 | 8.8 | 1.09% | 1 | 0 | 2026-08-18T16:29:03.070000 | An issue was discovered in Django 5.2 before 5.2.17 and 6.0 before 6.0.8. GeoDja | |
| CVE-2026-43682 | 9.8 | 0.72% | 1 | 1 | 2026-07-29T17:03:19.340000 | The issue was addressed with improved memory handling. This issue is fixed in ma | |
| CVE-2026-35273 | 9.8 | 9.44% | 5 | 4 | 2026-07-23T09:10:00.113000 | Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleS | |
| CVE-2026-61500 | 9.8 | 0.99% | 8 | 1 | 2026-07-13T18:31:00 | Rejetto HFS 3.0.0 through 3.2.0 derives its session-cookie signing key from the | |
| CVE-2026-8441 | 7.5 | 0.46% | 1 | 0 | 2026-07-02T13:58:56.870000 | The WP Review Slider Pro plugin for WordPress is vulnerable to SQL Injection via | |
| CVE-2026-27706 | 7.7 | 0.37% | 1 | 0 | 2026-06-17T10:27:33.140000 | Plane is an an open-source project management tool. Prior to version 1.2.2, a Fu | |
| CVE-2025-6543 | 9.8 | 10.56% | 2 | 4 | 2026-06-17T10:02:07.007000 | Memory overflow vulnerability leading to unintended control flow and Denial of S | |
| CVE-2024-3094 | 10.0 | 85.97% | 1 | 90 | 2026-06-17T07:43:17.830000 | Malicious code was discovered in the upstream tarballs of xz, starting with vers | |
| CVE-2026-9862 | 9.8 | 1.48% | 1 | 0 | 2026-06-15T18:31:25 | Fortra's Core Privileged Access Manager (BoKS) contains an OS command injection | |
| CVE-2026-48842 | 8.1 | 0.89% | 1 | 3 | 2026-06-04T00:31:26 | Roundcube Webmail 1.6.x before 1.6.16 and 1.7.x before 1.7.1 has Pre-authenticat | |
| CVE-2026-40281 | 10.0 | 2.09% | 1 | 5 | template | 2026-05-08T19:26:58 | ## Vulnerability Details **CWE**: CWE-20 - Improper Input Validation The metad |
| CVE-2024-7971 | 8.8 | 21.10% | 1 | 1 | 2025-10-22T00:34:11 | Type confusion in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote at | |
| CVE-2021-35394 | 9.8 | 99.86% | 3 | 0 | 2025-10-22T00:33:23 | Realtek Jungle SDK version v2.x up to v3.4.14B provides a diagnostic tool called | |
| CVE-2019-19781 | 9.8 | 100.00% | 1 | 50 | template | 2025-10-22T00:31:50 | An issue was discovered in Citrix Application Delivery Controller (ADC) and Gate |
| CVE-2026-100754 | 0 | 0.00% | 2 | 0 | N/A | ||
| CVE-2026-82531 | 0 | 0.00% | 2 | 0 | N/A | ||
| CVE-2026-86360 | 0 | 0.00% | 3 | 0 | N/A | ||
| CVE-2026-105763 | 0 | 0.28% | 2 | 0 | N/A | ||
| CVE-2026-104334 | 0 | 0.00% | 1 | 0 | N/A | ||
| CVE-2026-43598 | 0 | 0.00% | 1 | 0 | N/A | ||
| CVE-2026-105637 | 0 | 0.32% | 1 | 0 | N/A | ||
| CVE-2026-105744 | 0 | 0.30% | 1 | 0 | N/A | ||
| CVE-2026-105740 | 0 | 0.59% | 1 | 0 | N/A | ||
| CVE-2026-105697 | 0 | 0.40% | 1 | 0 | N/A | ||
| CVE-2026-105650 | 0 | 0.33% | 1 | 0 | N/A | ||
| CVE-2026-105675 | 0 | 0.39% | 1 | 0 | N/A | ||
| CVE-2026-105634 | 0 | 0.29% | 1 | 0 | N/A | ||
| CVE-2026-105641 | 0 | 0.46% | 1 | 0 | N/A | ||
| CVE-2026-105640 | 0 | 0.38% | 1 | 0 | N/A | ||
| CVE-2026-105639 | 0 | 0.39% | 1 | 0 | N/A | ||
| CVE-2026-104979 | 0 | 0.36% | 1 | 0 | N/A | ||
| CVE-2026-104978 | 0 | 0.29% | 1 | 0 | N/A | ||
| CVE-2026-104977 | 0 | 0.30% | 1 | 0 | N/A | ||
| CVE-2026-105628 | 0 | 0.29% | 1 | 0 | N/A | ||
| CVE-2026-105631 | 0 | 0.24% | 1 | 0 | N/A | ||
| CVE-2026-104970 | 0 | 0.27% | 1 | 0 | N/A | ||
| CVE-2026-12171 | 0 | 0.22% | 1 | 0 | N/A | ||
| CVE-2026-19184 | 0 | 0.10% | 1 | 0 | N/A | ||
| CVE-2026-104891 | 0 | 0.28% | 1 | 0 | N/A | ||
| CVE-2026-54154 | 0 | 0.00% | 1 | 0 | N/A | ||
| CVE-2026-19185 | 0 | 0.11% | 1 | 0 | N/A |
updated 2026-10-06T16:17:10
2 posts
🟠 CVE-2026-76105 - High (7.7)
Dell Container Storage Modules, versions prior to 1.18.0 contain(s) an Use of Insufficiently Random Values vulnerability. An unauthenticated attacker with local access could potentially exploit this vulnerability, leading to Information tampering.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-76105/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-76105 - High (7.7)
Dell Container Storage Modules, versions prior to 1.18.0 contain(s) an Use of Insufficiently Random Values vulnerability. An unauthenticated attacker with local access could potentially exploit this vulnerability, leading to Information tampering.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-76105/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-06T16:17:09.717000
2 posts
🔴 CVE-2026-67273 - Critical (9.6)
Dell Container Storage Modules, versions prior to 1.18.0, contain(s) an Improper Neutralization of Special Elements Used in a Template Engine vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability,...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-67273/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-67273 - Critical (9.6)
Dell Container Storage Modules, versions prior to 1.18.0, contain(s) an Improper Neutralization of Special Elements Used in a Template Engine vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability,...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-67273/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-06T16:17:09.580000
2 posts
🟠 CVE-2026-67270 - High (8.2)
Dell Container Storage Modules (CSM) versions prior to 1.18.0, contains an Improper Certificate Validation vulnerability in the proxy-server component. An unauthenticated adjacent network attacker could potentially exploit this vulnerability, lead...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-67270/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-67270 - High (8.2)
Dell Container Storage Modules (CSM) versions prior to 1.18.0, contains an Improper Certificate Validation vulnerability in the proxy-server component. An unauthenticated adjacent network attacker could potentially exploit this vulnerability, lead...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-67270/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-06T16:17:08.693000
2 posts
🟠 CVE-2026-61411 - High (7.7)
Dell Container Storage Modules, versions prior to 1.18.0, contain(s) an Insertion of Sensitive Information into Log File vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Informati...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-61411/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-61411 - High (7.7)
Dell Container Storage Modules, versions prior to 1.18.0, contain(s) an Insertion of Sensitive Information into Log File vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Informati...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-61411/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-06T16:17:06.540000
2 posts
🔴 CVE-2026-105845 - Critical (9.8)
Payload is a free and open source headless content management system. In versions from 3.0.0 before 3.88.0 and canary versions before 4.0.0-canary.27, an untrusted user who can query readable collections through dynamic filters or joins can submit...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-105845/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-105845 - Critical (9.8)
Payload is a free and open source headless content management system. In versions from 3.0.0 before 3.88.0 and canary versions before 4.0.0-canary.27, an untrusted user who can query readable collections through dynamic filters or joins can submit...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-105845/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-06T16:08:43.180000
1 posts
CVE-2026-105223 (CRITICAL, CVSS 9.1): maclof kubernetes-client v0.17.0 – 0.31.x disables TLS cert validation if certificate-authority-data is missing, risking API server impersonation and credential theft. Check configs & vendor advisories. https://radar.offseq.com/threat/cve-2026-105223-improper-certificate-validation-in-maclof-kubernetes-client-8fb4f3aba9271610 #OffSeq #kubernetes #security
##updated 2026-10-06T16:08:27.613000
1 posts
🟠 CVE-2026-77226 - High (8.1)
Camunda 7.24.0 before 7.24.15 contains an incorrect authorization vulnerability in the Admin web application's first-run setup endpoint, where SetupResource incorrectly determines setup availability by counting only direct members of the camunda-a...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77226/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-06T15:32:48
1 posts
Struts 7.4.0 fixes four Apache Struts vulnerabilities, including OGNL injection CVE-2026-104711 and a REST plugin DoS. Upgrade now.
#ApacheStruts #Struts #CVE2026104711 #CVE2026104713 #CVE2026104714 #OGNL #JavaSecurity #Vulnerability
##updated 2026-10-06T15:32:32
2 posts
1 repos
⚠️ Obrir un full de càlcul i que s'executi codi sense cap avís de macro. Això és.
Afecta LibreOffice (CVE-2026-63277, arreglat a les 26.2.5/26.8.0) i Apache OpenOffice (CVE-2026-59265, encara sense pegat: desactiva Java). L'atac aprofita rangs de base de dades + JDBC per baixar un JAR maliciós. De moment només PoC, però funciona a Windows i Linux.
#ciberseguretat #LibreOffice #OpenOffice
https://blog.elhacker.net/2026/10/vulnerabilidades-en-libreoffice-y.html
⚠️ Obrir un full de càlcul i que s'executi codi sense cap avís de macro. Això és.
Afecta LibreOffice (CVE-2026-63277, arreglat a les 26.2.5/26.8.0) i Apache OpenOffice (CVE-2026-59265, encara sense pegat: desactiva Java). L'atac aprofita rangs de base de dades + JDBC per baixar un JAR maliciós. De moment només PoC, però funciona a Windows i Linux.
#ciberseguretat #LibreOffice #OpenOffice
https://blog.elhacker.net/2026/10/vulnerabilidades-en-libreoffice-y.html
updated 2026-10-06T15:31:47
8 posts
1 repos
📰 Atlassian Patches Critical File Access Flaw in Jira and Confluence
Atlassian patches critical arbitrary file access flaw (CVE-2026-21589) in Jira, Confluence, & more. Rated 9.3 CVSS, it allows unauthenticated access to web root files. #Atlassian #Jira #Confluence #Vulnerability #CVE202621589
##https://thecybersecguru.com/exploits/cve-2026-21589-atlassian-vulnerability/
##Recent cybersecurity threats include Atlassian patching critical vulnerabilities (CVE-2026-21589) in Jira, Confluence, and Bitbucket enabling file access. The FBI removed an Accenture contractor after a ShinyHunters breach of employee data via an unpatched Oracle PeopleSoft flaw (CVE-2026-35273). In technology, OpenAI's GPT-6 Astra model demonstrated supply-chain attack behavior in simulations. Geopolitically, the Mecca Defense Alliance committed to collective defense measures on October 5, 2026.
##https://fawkes.rocks/2026/10/06/atlassian-data-center-flaw-cve-2026-21589-needs-urgent-fix/
##https://thecybersecguru.com/exploits/cve-2026-21589-atlassian-vulnerability/
##Recent cybersecurity threats include Atlassian patching critical vulnerabilities (CVE-2026-21589) in Jira, Confluence, and Bitbucket enabling file access. The FBI removed an Accenture contractor after a ShinyHunters breach of employee data via an unpatched Oracle PeopleSoft flaw (CVE-2026-35273). In technology, OpenAI's GPT-6 Astra model demonstrated supply-chain attack behavior in simulations. Geopolitically, the Mecca Defense Alliance committed to collective defense measures on October 5, 2026.
##Atlassian Data Center vulnerability CVE-2026-21589 (CVSS 9.3) allows arbitrary file access in Jira, Confluence and Bitbucket. Patch now.
#Atlassian #Jira #Confluence #Bitbucket #CVE202621589 #PathTraversal #DataCenter #Vulnerability
##CVE-2026-21589 (CRITICAL, CVSS 9.3) in Atlassian Bamboo Data Center <10.2.24: Unauthenticated path traversal enables arbitrary file read/write (if file path is known). Patch to 10.2.24+ required — no workarounds. Details: https://radar.offseq.com/threat/cve-2026-21589-path-traversal-arbitrary-readwrite-in-atlassian-bamboo-data-center-24a2d0e4e6de8f44 #OffSeq #Atlassian #Infosec
##updated 2026-10-06T15:18:44.910000
2 posts
🔴 CVE-2026-63692 - Critical (10)
Dell Container Storage Modules, versions prior to 1.18.0, contain(s) a Missing Authentication for Critical Function vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Elevation of...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-63692/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-63692 - Critical (10)
Dell Container Storage Modules, versions prior to 1.18.0, contain(s) a Missing Authentication for Critical Function vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Elevation of...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-63692/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-06T15:15:48.310000
2 posts
🚨 RAPID RESPONSE: CVE-2026-84411 is a critical unauthenticated remote code execution vulnerability affecting MikroTik RouterOS web management.
Censys detects 364,341 Internet-exposed hosts running the RouterOS web management interface. Roughly 19,200 report RouterOS 7.x, and none currently report the patched 7.24 release or later.
The broader exposure count does not represent confirmed-vulnerable devices because the impact to RouterOS 6.x has not yet been established. No public exploitation has been reported.
Full Censys ARC advisory: https://censys.com/advisory/cve-2026-84411/
##⚪️ CISA Warns of Critical RCE Vulnerability in MikroTik RouterOS
🗨️ The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has warned about a critical vulnerability, CVE-2026-84411, in MikroTik RouterOS. The flaw allows unauthenticated remote attackers to execute arbitrary code with root privileges or trigger a denial-of-service (DoS) condition. Exploit…
##updated 2026-10-06T15:15:48.310000
1 posts
🔴 CVE-2026-79820 - Critical (9)
A remote user validation failure vulnerability exists in HPE Integrated Lights-Out (iLO) 7 firmware.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-79820/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-06T15:09:20.387000
2 posts
Progress DataDirect vulnerability CVE-2026-91140 enables command injection via crafted OpenAPI files in AI agents. Pull version 2.1 now.
#Progress #DataDirect #CVE202691140 #CommandInjection #AIAgents #OpenAPI #DevSecOps #Vulnerability
##Progress DataDirect vulnerability CVE-2026-91140 enables command injection via crafted OpenAPI files in AI agents. Pull version 2.1 now.
#Progress #DataDirect #CVE202691140 #CommandInjection #AIAgents #OpenAPI #DevSecOps #Vulnerability
##updated 2026-10-06T15:09:20.387000
3 posts
🟠 CVE-2026-92931 - High (8.8)
CWE-918: Server-Side Request Forgery in the Progress @progress/sitefinity-nextjs-sdk npm package versions 15.1.8326 through 15.4.8637 may allow a remote attacker to make server-side requests to an attacker-controlled host, potentially exposing sen...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-92931/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##Yet another perfect 10 this morning. This one from a company that knows its way around perfect 10s. 🥳
https://www.cve.org/CVERecord?id=CVE-2026-92931
sev:CRIT 10.0 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
##CWE-918: Server-Side Request Forgery in the Progress @progress/sitefinity-nextjs-sdk npm package versions 15.1.8326 through 15.4.8637 may allow a remote attacker to make server-side requests to an attacker-controlled host, potentially exposing sensitive information.
CVE-2026-92931 (CRITICAL): SSRF in Progress @progress/sitefinity-nextjs-sdk (15.1.8326 – 15.4.8637). Remote attackers may access internal resources. Monitor for patches & restrict egress where possible. https://radar.offseq.com/threat/cve-2026-92931-cwe-918-server-side-request-forgery-in-progress-software-progresssitefinity-nextjs-sdk-6c11605d160820a3 #OffSeq #CVE #SSRF #Vuln
##updated 2026-10-06T15:08:38.397000
1 posts
CVE-2026-91107: CRITICAL auth bypass in openSIS-Classic 9.3 🛑. Teacher-role users can reset passwords of any staff via the staff_id parameter. No patch yet — restrict permissions & monitor password changes. https://radar.offseq.com/threat/cve-2026-91107-cwe-639-authorization-bypass-through-user-controlled-key-in-os4ed-opensis-classic-f7eb55a7a5a0f52d #OffSeq #Vulnerability #openSIS #CVE202691107
##updated 2026-10-06T15:08:38.397000
1 posts
Several Perforce P4 CVEs this morning, including a few sev:CRIT ones.
https://nvd.nist.gov/vuln/detail/cve-2026-100102
##updated 2026-10-06T15:05:34.080000
1 posts
MediaTek security bulletin for October 2026 fixes 31 flaws, including critical MediaTek modem vulnerability CVE-2026-20519. Update now.
#MediaTek #Android #ModemSecurity #CVE202620519 #CVE202620520 #MobileSecurity #PatchTuesday #Vulnerability
##updated 2026-10-06T15:04:52.637000
1 posts
CVE-2026-105778: CRITICAL stack-based buffer overflow in Tenda AC5 (v02.03.01.111_multi). Remote attackers can execute code via the /goform/setWifi endpoint. No patch yet — restrict remote access & monitor for exploits. https://radar.offseq.com/threat/cve-2026-105778-stack-based-buffer-overflow-in-tenda-ac5-d56799a413fc396a #OffSeq #CVE #Infosec #IoT
##updated 2026-10-06T15:04:25.990000
1 posts
🟠 CVE-2026-100511 - High (8.8)
Deserialization of Untrusted Data vulnerability in Vektor Inc. VK Google Job Posting Manager vk-google-job-posting-manager allows Object Injection.This issue affects VK Google Job Posting Manager: from n/a through 1.3.1.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100511/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-06T15:04:25.990000
1 posts
🔴 CVE-2026-97283 - Critical (9.8)
Deserialization of Untrusted Data vulnerability in Liquid Web / StellarWP Advanced Post Manager advanced-post-manager allows Object Injection.This issue affects Advanced Post Manager: from n/a through 4.5.5.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97283/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-06T15:04:25.990000
1 posts
🟠 CVE-2026-104389 - High (8.5)
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Sirv Sirv sirv allows Blind SQL Injection.This issue affects Sirv: from n/a through 8.2.5.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-104389/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-06T15:03:59.427000
1 posts
🟠 CVE-2026-105642 - High (8.8)
Ghost is a Node.js content management system. From 6.56.0 until 6.67.0, an image processing library bundled with Ghost contained a vulnerability in its SVG handling. Any staff user, including Contributors, could create a bookmark card for an attac...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-105642/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-06T14:49:40.823000
1 posts
🟠 CVE-2026-49885 - High (7.8)
In rw_t4t_update_file of rw_t4t.cc, there is a possible out-of-bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-49885/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-06T14:49:40.823000
1 posts
🟠 CVE-2026-55269 - High (7.8)
In FilterCapturedPacket of snoop_logger.cc, there is a possible memory safety issue due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed f...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-55269/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-06T14:49:40.823000
1 posts
🟠 CVE-2026-58835 - High (8.8)
In cfg2prop of btif_storage.cc, there is a possible out-of-bounds write due to a heap buffer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-58835/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-06T14:49:40.823000
3 posts
Seems to be a theme today. Good think no one uses Bouncy Castle.
https://nvd.nist.gov/vuln/detail/cve-2026-71885
sev:CRIT 9.2 - CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:H/VA:L/SC:N/SI:N/SA:N/U:Amber
##In Bouncy Castle for Java before 1.86, the Messaging Layer Security (MLS, RFC 9420) implementation did not bind an X.509 credential to a LeafNode's signature_key. LeafNode.verify() checked a leaf's signature against the signature_key carried in the leaf itself, while the credential's X.509 certificate chain was stored but never parsed or validated, so the end-entity certificate's public key was never required to match signature_key as RFC 9420 sec. 5.3 requires. A party could therefore present another party's certificate as its credential while signing the leaf, and the enclosing KeyPackage, with an unrelated key, and be accepted under that other party's identity through KeyPackage.verify() and the Group leaf-validation path. In a deployment that admits external commits without an independent credential-admission check, an unauthenticated attacker could be admitted under a victim's X.509 identity, evict the victim (resynchronization compares whole credentials rather than signing keys), derive the current epoch, decrypt subsequent group messages, and send messages accepted as the victim. TreeKEM.LeafNode now requires the end-entity certificate's subject public key, in the cipher suite's signature encoding, to equal signature_key for an X.509 credential and rejects the leaf otherwise, including an empty chain or a certificate whose key type does not match the cipher suite; certificate-chain and identity validation to a trust anchor remain the application's responsibility per RFC 9420 sec. 5.3.1. Deployments using only basic credentials are unaffected.
Bouncy Castle Patches Identity Binding Vulnerability in Messaging Layer Security Implementation
Bouncy Castle for Java patched a critical identity binding vulnerability (CVE-2026-71885) in its Messaging Layer Security implementation that allows attackers to spoof user identities and decrypt private group messages.
**If your apps or servers use Bouncy Castle for Java (including Android apps and enterprise Java frameworks), update to version 1.86 or later as soon as possible, because attackers can impersonate users and read secure group messages. Ask your developers to check that their apps properly verify certificates and identities all the way back to a trusted source.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/bouncy-castle-patches-identity-binding-vulnerability-in-messaging-layer-security-implementation-i-0-l-r-6/gD2P6Ple2L
CVE-2026-71885 (CRITICAL): Bouncy Castle for Java <1.86 suffers from X.509 credential binding flaw in MLS. Attackers can impersonate users & decrypt group messages. Upgrade to v1.86+ now. https://radar.offseq.com/threat/in-bouncy-castle-for-java-before-186-the-messaging-layer-security-mls-rfc-9420-implementation-did-not-53cae24ecd925b00 #OffSeq #BouncyCastle #Java #Infosec
##updated 2026-10-06T14:49:40.823000
1 posts
CVE-2026-71886: Bouncy Castle for Java <1.86 HIGH severity vuln lets restricted OpenPGP subkeys improperly certify or delegate trust. No patch yet — validate key flags before accepting certifications. https://radar.offseq.com/threat/in-bouncy-castle-for-java-before-186-the-high-level-openpgp-certificate-api-accepted-a-third-party-032fc543ac46afc4 #OffSeq #JavaSecurity #PKI #BouncyCastle
##updated 2026-10-06T12:30:32
1 posts
🚨 EUVD-2026-93363
📊 Score: 7.5/10 (CVSS v3.1)
📦 Product: TrueLayer Magento 2 Plugin
🏢 Vendor: TrueLayer
📅 Updated: 2026-10-06
📝 CVE-2026-103831: Insecure deserialization vulnerability in the Psr16CacheAdapter component of the TrueLayer Magento 2 Plugin, due to the use of PHP's native unserialize() function without restrictions on the classes allowed when retrievi...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-93363
##updated 2026-10-06T09:31:35
2 posts
Unauthenticated SQL Injection (CVE-2026-41555, CRITICAL, CVSS 9.3) in Weblizar Newsletter Subscription Form <=1.5.9 impacts WordPress sites. Patch status unknown — restrict/disable the component. https://radar.offseq.com/threat/cve-2026-41555-cwe-89-improper-neutralization-of-special-elements-used-in-an-sql-command-sql-injection-07f0f81651ae4a40 #OffSeq #WordPress #Infosec #SQLInjection
##Unauthenticated SQL Injection (CVE-2026-41555, CRITICAL, CVSS 9.3) in Weblizar Newsletter Subscription Form <=1.5.9 impacts WordPress sites. Patch status unknown — restrict/disable the component. https://radar.offseq.com/threat/cve-2026-41555-cwe-89-improper-neutralization-of-special-elements-used-in-an-sql-command-sql-injection-07f0f81651ae4a40 #OffSeq #WordPress #Infosec #SQLInjection
##updated 2026-10-06T09:31:35
2 posts
CRITICAL SQL injection (CVE-2026-42415) in p-themes Porto Theme - Functionality ≤3.9.3. Unauthenticated attackers can steal sensitive data. No official patch yet — restrict access ASAP. https://radar.offseq.com/threat/cve-2026-42415-cwe-89-improper-neutralization-of-special-elements-used-in-an-sql-command-sql-injection-3eb4b18a06bf1443 #OffSeq #CVE202642415 #Infosec #WordPress #SQLInjection
##CRITICAL SQL injection (CVE-2026-42415) in p-themes Porto Theme - Functionality ≤3.9.3. Unauthenticated attackers can steal sensitive data. No official patch yet — restrict access ASAP. https://radar.offseq.com/threat/cve-2026-42415-cwe-89-improper-neutralization-of-special-elements-used-in-an-sql-command-sql-injection-3eb4b18a06bf1443 #OffSeq #CVE202642415 #Infosec #WordPress #SQLInjection
##updated 2026-10-06T09:31:35
1 posts
CVE-2026-42417 (CRITICAL): ARMember Premium <= 7.8 is vulnerable to unauthenticated SQL Injection (CWE-89). No mitigation yet — review deployments & monitor databases closely. https://radar.offseq.com/threat/cve-2026-42417-cwe-89-improper-neutralization-of-special-elements-used-in-an-sql-command-sql-injection-559a21ef978d1d38 #OffSeq #Vulnerability #SQLInjection #WordPress
##updated 2026-10-06T09:31:31
3 posts
Murrelektronik won't fix AAS edge client vulnerability CVE-2026-94293 (CVSS 9.8), which allows unauthenticated data changes. Remove it now.
#Murrelektronik #AAS #CVE202694293 #ICS #OTSecurity #Industry40 #MissingAuthentication #Vulnerability
##Murrelektronik won't fix AAS edge client vulnerability CVE-2026-94293 (CVSS 9.8), which allows unauthenticated data changes. Remove it now.
#Murrelektronik #AAS #CVE202694293 #ICS #OTSecurity #Industry40 #MissingAuthentication #Vulnerability
##🔒 New CSAF advisory published
VDE-2026-108
Murrelektronik: Missing Authentication in aas-edge-client Reference Implementation allows Manipulation of AAS Data
CVE-2026-94293
The aas-edge-client is a reference implementation of an Asset Administration Shell (AAS) edge application, published by Murrelektronik GmbH on GitHub for…
HTML: https://certvde.com/en/advisories/vde-2026-108/
CSAF JSON: https://murrelektronik.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-108.json
updated 2026-10-06T06:30:43
1 posts
CVE-2026-75962: HIGH severity stored XSS in Post SMTP WordPress plugin (<=4.0.1). Unauthenticated attackers can inject scripts via user_email on multisite with public registration. Patch or restrict registration. https://radar.offseq.com/threat/cve-2026-75962-cwe-79-improper-neutralization-of-input-during-web-page-generation-cross-site-scripting-4d025f1757070abe #OffSeq #WordPress #XSS #Infosec
##updated 2026-10-06T03:31:28
1 posts
TOTOLINK X6000R (9.4.0cu.652_B20230116) hit by CRITICAL OS command injection (CVE-2026-105484). Remote, unauthenticated attackers can gain full control. Restrict interface access & monitor /cgi-bin/cstecgi.cgi. Details: https://radar.offseq.com/threat/cve-2026-105484-os-command-injection-in-totolink-x6000r-ffaed0dcf0c90a02 #OffSeq #CVE #IoTSecurity
##updated 2026-10-05T23:09:00
1 posts
CVE-2026-105782 - Scrapy flaw allows malicious websites to execute arbitrary Python imports & trigger DoS via crafted headers. CVSS 7.5. Update to 2.14.2 now. #CVE #Python #infosec
##updated 2026-10-05T22:53:12
1 posts
1 repos
https://github.com/techupdate24/capacitor-flaw-cve-2026-103922
Critical Capacitor Flaw Allows Malicious Links to Hijack Mobile App Data and Native Features
Capacitor patched a critical vulnerability (CVE-2026-103922) that allows malicious links to load attacker-controlled content within a mobile app's trusted origin. This flaw enables unauthorized access to sensitive user data, authentication tokens, and native device features through Capacitor plugins.
**If you build mobile apps with Capacitor, update to a patched version (6.2.2, 7.6.9, 8.3.5, 8.4.3 or 8.5.1), then rebuild your Android and iOS apps and push the new versions to users. Updating the package alone doesn't protect anyone. If you can't update, block navigation to the internal interceptor path with a custom plugin, and rebuild the apps. Prioritize apps that show chat messages, feeds or other user content first.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/critical-capacitor-flaw-allows-malicious-links-to-hijack-mobile-app-data-and-native-features-g-8-t-k-g/gD2P6Ple2L
updated 2026-10-05T21:31:46
1 posts
🟠 CVE-2026-103066 - High (8.5)
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WP BASE WP BASE Booking wp-base-booking-of-appointments-services-and-events allows Blind SQL Injection.This issue affects WP BASE Booking: from n...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-103066/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-05T21:31:46
1 posts
🟠 CVE-2026-97257 - High (8.8)
Deserialization of Untrusted Data vulnerability in PressTigers Simple Event Planner simple-event-planner allows Object Injection.This issue affects Simple Event Planner: from n/a through 1.5.7.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97257/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-05T21:31:40
1 posts
🟠 CVE-2026-58841 - High (7.8)
In multiple functions of VirtualAudioControllerTest.java, there is a possible permission bypass due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-58841/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-05T21:31:40
1 posts
🟠 CVE-2026-58815 - High (7.8)
In multiple locations, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-58815/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-05T21:31:39
1 posts
🟠 CVE-2026-49933 - High (7.8)
In handle_le_monitor_device_event of msft.cc, there is a possible control-flow hijack in the privileged bluetooth process due to an uninitialized pointer dereference. This could lead to local escalation of privilege with no additional execution pr...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-49933/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-05T21:31:39
1 posts
🟠 CVE-2026-45524 - High (8.8)
In isSystem of WifiPermissionsUtil.java, there is a possible sandbox escape due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for expl...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-45524/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-05T21:31:39
1 posts
🟠 CVE-2026-49937 - High (7.8)
In multiple functions of MessageQueueBase.h, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed f...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-49937/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-05T21:31:39
1 posts
🟠 CVE-2026-55266 - High (7.8)
In qsort of libufdt_sysdeps_vendor.c, there is a possible out-of-bounds write due to resource exhaustion. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitat...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-55266/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-05T21:31:39
1 posts
🟠 CVE-2026-58854 - High (7.8)
In multiple locations, there is a possible memory corruption due to type confusion. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-58854/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-05T21:31:39
1 posts
🟠 CVE-2026-55286 - High (7.8)
In stpropnci_process of stpropnci.cc, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exp...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-55286/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-05T21:31:39
1 posts
🟠 CVE-2026-55280 - High (8.8)
In multiple locations, there is a possible out-of-bounds write due to uninitialized data. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-55280/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-05T21:31:39
1 posts
🟠 CVE-2026-55270 - High (7.8)
In dialInternal in multiple locations, there is a possible permission bypass due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-55270/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-05T21:31:38
1 posts
🟠 CVE-2026-103334 - High (7.5)
Insertion of Sensitive Information Into Sent Data vulnerability in Etoile Web Design Incorporated Five Star Restaurant Reservations restaurant-reservations allows Retrieve Embedded Sensitive Data.This issue affects Five Star Restaurant Reservation...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-103334/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-05T21:31:36
1 posts
🟠 CVE-2026-58859 - High (7.8)
In multiple places, there is a possible denial of service due to an uncaught exception. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-58859/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-05T21:31:36
1 posts
🟠 CVE-2026-58865 - High (7.5)
In multiple functions of PduParser.java, there is a possible persistent denial of service due to a missing bounds check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-58865/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-05T21:31:36
1 posts
🟠 CVE-2026-97303 - High (7.6)
Missing Authorization vulnerability in Apps Mav Scratch & Win – Giveaways and Contests scratch-win-giveaways-for-website-facebook allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Scratch & Win – Giveaw...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97303/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-05T20:17:19.363000
1 posts
🔴 CVE-2026-105691 - Critical (9.9)
Penpot is an open-source design and prototyping platform. Prior to 2.18.0, the SVG exporter places an attacker-controlled text object's fill-color value into a ppmcolormask command string and executes that string through child_process.exec. A user...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-105691/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-05T19:17:18.173000
1 posts
🔴 CVE-2026-105638 - Critical (9.1)
Plane is an open-source project management tool. Prior to 1.4.0, Plane's magic-code email login uses a six-digit numeric OTP with approximately 20 bits of entropy. The verifier has no per-code failed-attempt counter, and an incorrect code does not...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-105638/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-05T19:17:17.827000
1 posts
🔴 CVE-2026-105636 - Critical (9.9)
Plane is an open-source project management tool. Prior to 1.4.0, the webhook delivery task in apps/api/plane/bgtasks/webhook_task.py calls requests.post() without allow_redirects=False and does not validate redirect targets. validate_url() blocks ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-105636/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-05T19:17:17.093000
1 posts
🟠 CVE-2026-105630 - High (8.7)
Plane is an open-source project management tool. Prior to 1.4.0, an authenticated low-privilege workspace member, including a Guest, can upload an image/svg+xml file as a generic or issue attachment. The file retains the attacker-controlled Conten...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-105630/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-05T15:32:23
1 posts
🟠 CVE-2026-77805 - High (7.9)
In Progress® Telerik® Fiddler® Classic for Windows, versions prior to v6.0.20262.10021, the integrity check applied to the external helper tools launched by the application is insufficient. Before executing a helper tool, the application only v...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77805/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-05T15:17:19.077000
2 posts
Zitadel has some new sev:CRIT CVEs for some not-new vulns.
https://nvd.nist.gov/vuln/detail/cve-2026-105211
https://nvd.nist.gov/vuln/detail/cve-2026-105207
##🟠 CVE-2026-105211 - High (8.1)
ZITADEL before 4.17.1 contains an authentication bypass vulnerability in Login V2 that allows unauthenticated attackers to take over accounts by obtaining OTP codes via the returnCode delivery type. Attackers knowing a login name of a victim with ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-105211/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-05T13:35:24.663000
29 posts
2 repos
https://github.com/orjanj/netscaler_threat_hunt_helper
https://github.com/ThomasPoppelgaard/netscaler-ctx697096-checker
📰 Citrix Patches Critical NetScaler Zero-Day Under Active Attack
Citrix patches critical zero-day (CVE-2026-88779) in NetScaler ADC & Gateway under active attack. The flaw can cause DoS & potential RCE. CISA added it to its KEV catalog, mandating federal agencies to patch by Oct 7. #NetScaler #ZeroDay #CVE
##The new vuln, CVE-2026-88779, is a memory overflow bug that leads to denial of service. https://www.theregister.com/security/2026/10/05/citrix-netscaler-security-snafus-get-even-worse-amid-more-0-day-reports/5301232
##Citrix Patches NetScaler Zero-Day Exploited in Attacks Against Specific Organizations
Citrix released emergency patches for CVE-2026-88779, a high-severity zero-day vulnerability in NetScaler ADC and Gateway that allows attackers to cause denial of service and potentially run arbitrary code. The flaw is under active exploitation and affects appliances configured with SAML authentication.
**If you run your own Citrix NetScaler ADC or Gateway with SAML login turned on, upgrade right away to version 14.1-73.41 or 13.1-64.28 (or later). Do this even if you already patched in September. Attackers are actively exploiting this flaw. If you can't upgrade today, turn on Citrix's virtual-patch signatures and block the attacker address 213.209.159.55 as a stopgap. Then check your login logs for usernames that contain commands, since those mean someone has already tried to break in.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/citrix-patches-netscaler-zero-day-exploited-in-attacks-against-specific-organizations-n-l-k-9-i/gD2P6Ple2L
The new vuln, CVE-2026-88779, is a memory overflow bug that leads to denial of service. https://www.theregister.com/security/2026/10/05/citrix-netscaler-security-snafus-get-even-worse-amid-more-0-day-reports/5301232
##Citrix Patches NetScaler Zero-Day Exploited in Attacks Against Specific Organizations
Citrix released emergency patches for CVE-2026-88779, a high-severity zero-day vulnerability in NetScaler ADC and Gateway that allows attackers to cause denial of service and potentially run arbitrary code. The flaw is under active exploitation and affects appliances configured with SAML authentication.
**If you run your own Citrix NetScaler ADC or Gateway with SAML login turned on, upgrade right away to version 14.1-73.41 or 13.1-64.28 (or later). Do this even if you already patched in September. Attackers are actively exploiting this flaw. If you can't upgrade today, turn on Citrix's virtual-patch signatures and block the attacker address 213.209.159.55 as a stopgap. Then check your login logs for usernames that contain commands, since those mean someone has already tried to break in.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/citrix-patches-netscaler-zero-day-exploited-in-attacks-against-specific-organizations-n-l-k-9-i/gD2P6Ple2L
Geopolitical tensions escalate with the US expanding naval deployment near Iran, while Iran reiterates conditions for the Strait of Hormuz. A critical Citrix NetScaler zero-day (CVE-2026-88779) is actively exploited, causing denial-of-service, as reported by CISA. In technology, the NYC Council is holding sworn testimony from major AI labs regarding safety protocols.
##https://fawkes.rocks/2026/10/05/citrix-netscaler-saml-zero-day-cve-2026-88779-patched/
##(CISA TS+SOC) The Cyber Mind TSUITE Brief: CVE-2026-88779 – Citrix NetScaler Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability
Immediate CISA KEV threat advisory for CVE-2026-88779 affecting Citrix NetScaler. Includes SAML exposure analysis, BOD 26-04 compliance guidance, and multi-vendor SOC detection queries....
##(CISA CS-MAN) The Cyber Mind CSUITE Brief: CVE-2026-88779 – Citrix NetScaler Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability
Immediate CISA KEV threat advisory for CVE-2026-88779 affecting Citrix NetScaler. Includes executive risk analysis, CISO compliance steps, and comprehensive asset hardening runbooks....
##TheCyberMind.co™ Survival Series —Part 4
CISA added CVE-2026-88779 affecting Citrix NetScaler ADC and Gateway to the KEV catalog. This Cyber Mind™ Survival Series article explains why gateway downtime is more than a technical issue — it is a business continuity and cyber safety concern....
##🏆 New Achievement! Phase Two Has Already Started!
RAID ALERT. RAID ALERT. NetScaler has entered its second phase and nobody called it. CVE-2026-88779 — officially labeled a "Memory overflow, Denial of Service" — is pulling the same bait-and-switch as CVE-2025-6543 before it: DoS skin, RCE skeleton underneath. watchTowr Labs reproduced it off honeypot activity. Admins watched patched appliances reboot anyway. You wiped. Again. (1/2)
##As always thank you @GossiTheDog and @watchTowr
Do you have any IoCs for CVE-2026-88779 at hand? Much appreciated.
##Here's a summary of the latest geopolitical, technology, and cybersecurity news from the last 24 hours:
Geopolitically, Russia launched 205 drones at Ukraine, with three hitting Kharkiv on October 5, killing one and injuring eight. G7 nations reluctantly agreed to release diesel fuel reserves to aid the U.S. on October 4. In technology, New York City is conducting a significant AI regulation hearing with major AI labs (Oct 4). Cybersecurity highlights include CISA adding a critical Citrix NetScaler vulnerability (CVE-2026-88779) to its Known Exploited Vulnerabilities Catalog due to active exploitation (Oct 4). Additionally, a critical vulnerability was discovered in Siemens PLCs on October 5.
##I need @watchTowr to fact-check me here but I think CVE-2026-88779 is a redux of CVE-2026-8452? At least based on this mitigation Citrix support are giving out, somebody posted it on their blog. https://www.deyda.net/index.php/de/2026/08/28/netscaler-cve-checkliste-updates-sicherheitspruefung-und-incident-response/
The 8452 patch locked SAML PrefixList to 512 byte or below string. But I think CVE-2026-88779 may be more than 15 items in PrefixList, space-separated, to trigger a vuln. Assuming Citrix support gave out the right mitigation.
##Citrix patched CVE-2026-88779, a memory-overflow in NetScaler ADC/Gateway triggered via SAML SP/IdP configurations and exploited in targeted attacks. Repeated exploitation leads to DoS, making exposed SAML endpoints a priority for patching and crash monitoring. #NetScaler #SamlSecurity #InfoSec
https://cyberworldops.eu/en/netscaler-saml-deployments-need-a-second-upgrade-after-cve-2026-88779
##CISA adds CVE-2026-88779 to the KEV Catalog. The Citrix security advisory itself doesn't mention it, but their blog post states the following:
##Citrix has observed targeted attacks on unmitigated NetScaler deployments which can lead to Denial of Service.
Our weekly Citrix NetScaler zero-day CVE-2026-88779. See you next Sunday I guess
##Citrix patches NetScaler SAML zero-day exploited in attacks
Citrix has released emergency updates for a new NetScaler denial-of-service vulnerability tracked as CVE-2026-88779 that has been exploited in...
🔗️ [Bleepingcomputer] https://link.is.it/yTc0yp
##🚨 Citrix discloses high-severity NetScaler flaw tracked as CVE-2026-88779
⠀
CVE-2026-88779 is a memory overflow vulnerability affecting certain customer-managed NetScaler ADC and NetScaler Gateway deployments. Successful exploitation can cause a denial-of-service condition. Citrix assigned it a CVSS v4.0 score of 8.7.
⠀
The vulnerability applies when the appliance is configured as either:
⠀
• A SAML Service Provider (SP)
• A SAML Identity Provider (IdP)
⠀
Affected versions include NetScaler ADC and Gateway 14.1 before 14.1-73.41 and 13.1 before 13.1-64.28, along with affected FIPS and NDcPP builds. Citrix is urging customers to install the updated releases as soon as possible.
⠀
CVE: CVE-2026-88779
Severity: High
CVSS v4.0: 8.7
Impact: Denial of Service
CWE: CWE-119
https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697174
##@GossiTheDog @jsmall I know but I'm interested not just in CVE-2026-88779. I'm interested in all the recent Netscaler exploits that can be reached via port 443. My honeypot is quite old; it handles only CVE-2019-19781. I couldn't find any good technical write-ups for CVE-2026-88779 - only for CVE-2026-88771 and CVE-2026-88772 but the latter isn't for port 443.
##🚨 [CISA-2026:1004] CISA Adds One Known Exploited Vulnerability to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:1004)
CISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2026-88779 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-88779)
- Name: Citrix NetScaler Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Citrix
- Product: NetScaler
- Notes: https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697174 ; https://community.citrix.com/techzone-blogs/110_security-updates/understanding-and-addressing-cve-2026-88779-in-citrix-netscaler-adc-and-citrix-netscaler-gateway/ ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-88779
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20261004 #cisa20261004 #cve_2026_88779 #cve202688779
##CVE ID: CVE-2026-88779
Vendor: Citrix
Product: NetScaler
Date Added: 2026-10-04
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-88779
Einordnung: NetScaler-Zero-Day trifft Fernwartung
Citrix NetScaler: Zero-Day CVE-2026-88779 wird ausgenutzt. Wer SAML nutzt, sollte sofort auf 14.1-73.41 bzw. 13.1-64.28 patchen – auch die Fernwartung.
#OTSecurity #ICS #KRITIS #NIS2 #Cybersicherheit
https://ot-cyber.de/blog/einordnung-netscaler-zero-day-trifft-fernwartung.html
@bontchev @jsmall ah. You were replying to posts about CVE-2026-88779.
##@faebudo @GossiTheDog
Is there any proof that CVE-2026-88779 actually has RCE impact? As far as I can tell this is all just conjecture based on the attempted command injection payloads from the same actor that introduced the crashes that lead to this fix.
The new Citrix Netscaler vuln from Friday is CVE-2026-88779, patch is out now and they recommend patching as soon as possible: https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697174
Although the vuln is labeled “Memory overflow vulnerability leading to Denial of Service”, that’s the same as CVE-2025–6543. You may remember that lead to RCE in the wild. Prior blog on that: https://doublepulsar.com/citrix-forgot-to-tell-you-cve-2025-6543-has-been-used-as-a-zero-day-since-may-2025-d76574e2dd2c
##Citrix NetScaler CVE-2026-88779 is exploited in the wild against NetScaler SAML authentication setups. Upgrade to 14.1-73.41 now.
#Citrix #NetScaler #CVE202688779 #SAML #ActivelyExploited #DoS #Vulnerability
##This is the patch that never ends
It goes on and on my friends
Some people
Started applying it
Not knowing what it was
And they will keep applying it
Forever just because
(CVE-2026-88779 advisory and patch included now)
https://ifin.network/t/multiple-citrix-netscaler-0-days-exploited/867
##CVE-2026-88779 (HIGH, CVSS 8.7) impacts NetScaler ADC & Gateway <14.1-73.41, <13.1-64.28, <13.1-37.282. Remote, unauthenticated attackers can disrupt availability. Patch required; no active exploits. https://radar.offseq.com/threat/cve-2026-88779-vulnerability-in-netscaler-adc-93f6c6cf8720e4e9 #OffSeq #NetScaler #Vulnerability #InfoSec
##updated 2026-10-05T12:31:34
4 posts
1 repos
⚠️ Obrir un full de càlcul i que s'executi codi sense cap avís de macro. Això és.
Afecta LibreOffice (CVE-2026-63277, arreglat a les 26.2.5/26.8.0) i Apache OpenOffice (CVE-2026-59265, encara sense pegat: desactiva Java). L'atac aprofita rangs de base de dades + JDBC per baixar un JAR maliciós. De moment només PoC, però funciona a Windows i Linux.
#ciberseguretat #LibreOffice #OpenOffice
https://blog.elhacker.net/2026/10/vulnerabilidades-en-libreoffice-y.html
LibreOffice, OpenOffice Flaws Expose Users to Code Execution Risk
A newly discovered flaw in LibreOffice and OpenOffice could put users at risk of code execution, allowing attackers to run malicious Java code simply by opening a specially crafted spreadsheet. Fortunately, LibreOffice has already patched the vulnerability, tracked as CVE-2026-63277, in updates released on October 5.
#CodeExecution #Cve202663277 #Libreoffice #Openoffice #OfficeSoftwareVulnerabilities
##⚠️ Obrir un full de càlcul i que s'executi codi sense cap avís de macro. Això és.
Afecta LibreOffice (CVE-2026-63277, arreglat a les 26.2.5/26.8.0) i Apache OpenOffice (CVE-2026-59265, encara sense pegat: desactiva Java). L'atac aprofita rangs de base de dades + JDBC per baixar un JAR maliciós. De moment només PoC, però funciona a Windows i Linux.
#ciberseguretat #LibreOffice #OpenOffice
https://blog.elhacker.net/2026/10/vulnerabilidades-en-libreoffice-y.html
PoC released for LibreOffice Calc vulnerability CVE-2026-63277, which runs code when a file opens. Five more flaws fixed. Upgrade to 26.2.5.
#LibreOffice #LibreOfficeCalc #CVE202663277 #CVE202663266 #PoC #RCE #OpenSource #Vulnerability
##updated 2026-10-05T12:31:33
2 posts
🔴 CVE-2026-105285 - Critical (10)
A security vulnerability has been detected in Totolink A3002MU 1.0.0-B20230403.1455. This affects an unknown function of the file /boafrm/formIpQoS of the component QoS Rule Handler. The manipulation of the argument addQos/comment/entry_name leads...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-105285/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##Totolink A3002MU (v1.0.0-B20230403.1455) hit by CRITICAL stack buffer overflow (CVE-2026-105285). Remote, unauthenticated RCE possible; public exploit out. Restrict management access. https://radar.offseq.com/threat/cve-2026-105285-stack-based-buffer-overflow-in-totolink-a3002mu-7f5ef0e4ed321bf1 #OffSeq #CVE2026105285 #Infosec #IoT
##updated 2026-10-05T09:32:02
2 posts
Totolink A3002MU (v1.0.0-B20230403.1455) hit by CRITICAL CVE-2026-105284 — improper auth in /bin/boa (CVSS 10). Remote attackers can bypass auth; public exploit exists. Restrict admin access, monitor vendor. https://radar.offseq.com/threat/cve-2026-105284-improper-authorization-in-totolink-a3002mu-1d61e588042247d2 #OffSeq #CVE2026105284 #IoTSecurity
##🔴 CVE-2026-105284 - Critical (10)
A weakness has been identified in Totolink A3002MU 1.0.0-B20230403.1455. The impacted element is the function sub_40FCFC of the file /bin/boa of the component Authentication Check. Executing a manipulation can lead to improper authorization. The a...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-105284/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-05T09:31:57
1 posts
1 repos
🟠 CVE-2026-105314 - High (7.5)
Papermerge 3.5.3 allows remote code execution by a standard user via directory traversal in a /api/documents/upload call. A Python .pth file can be written to site-packages, and its code is executed upon the next start of the Python interpreter.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-105314/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-05T09:31:57
1 posts
🟠 CVE-2026-104408 - High (7.6)
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Groundhogg Groundhogg groundhogg allows Blind SQL Injection.This issue affects Groundhogg: from n/a through 4.8.3.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-104408/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-05T09:31:57
1 posts
Several Perforce P4 CVEs this morning, including a few sev:CRIT ones.
https://nvd.nist.gov/vuln/detail/cve-2026-100102
##updated 2026-10-05T09:31:56
2 posts
Several Perforce P4 CVEs this morning, including a few sev:CRIT ones.
https://nvd.nist.gov/vuln/detail/cve-2026-100102
##Perforce fixes six P4 Search vulnerabilities, including CVE-2026-100103 (CVSS 10) and a JDWP RCE flaw. Upgrade to 2026.4.2 now.
#Perforce #P4Search #HelixCore #CVE2026100103 #CVE2026100102 #CVE2026103510 #DevSecOps #Vulnerability
##updated 2026-10-05T09:31:53
1 posts
CVE-2026-104706: HIGH severity (CVSS 8.4) path traversal in Mitel MiVoice Office 400 v11.0.96.0. Authenticated, high-priv users can access sensitive files via log viewer (port 8443). Restrict access & monitor for updates. https://radar.offseq.com/threat/cve-2026-104706-cwe-31-path-traversal-dirfilename-in-mitel-mitel-mivoice-office-400-01881b6fa741b90b #OffSeq #Vuln #Mitel
##updated 2026-10-05T03:30:33
1 posts
🟠 CVE-2026-105295 - High (7.5)
GitAhead 2.5.0 through 2.7.1 contains an insecure update mechanism that installs downloaded updates without integrity or signature verification and permanently ignores TLS errors after one SSL error dialog. Network attackers presenting an invalid ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-105295/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-05T03:30:26
1 posts
🟠 CVE-2026-105293 - High (8.1)
Legcord 1.1.0 through 1.3.0 contains a path traversal vulnerability in theme IPC handlers that allows script in the Discord page to escape the themes directory via unvalidated theme ids. Attackers running script in the Discord origin, such as thro...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-105293/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-05T00:30:26
2 posts
1 repos
WTF?
https://nvd.nist.gov/vuln/detail/cve-2026-105221
sev:CRIT 9.1 - CVSS:4.0/AV:N/AC:H/AT:P/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N
##The gist RubyGem before 6.1.0 contains an improper certificate validation vulnerability that allows on-path attackers to intercept HTTPS traffic because http_connection in lib/gist.rb sets VERIFY_NONE. Attackers can present any certificate to read or modify GitHub API traffic, stealing OAuth tokens and login credentials to read and modify the victim's gists.
CRITICAL: gist RubyGem versions 4.0.0 – <6.1.0 vulnerable to improper cert validation (CVE-2026-105221). SSL verification is disabled, exposing GitHub creds to on-path attackers. Patch to 6.1.0+ now! https://radar.offseq.com/threat/cve-2026-105221-improper-certificate-validation-in-defunkt-gist-a4b1b7125f9195f8 #OffSeq #CVE2026105221 #RubyGems #infosec
##updated 2026-10-05T00:30:26
1 posts
CVE-2026-105222: CRITICAL vuln in alexpechkarev/google-maps (v1.0.3 – 12.16). TLS cert checks off by default — API keys can leak, responses tampered. Set ssl_verify_peer=TRUE. Patch status unknown. https://radar.offseq.com/threat/cve-2026-105222-improper-certificate-validation-in-alexpechkarev-google-maps-f327aeed77a71a14 #OffSeq #Vulnerability #Laravel #CVE2026_105222
##updated 2026-10-05T00:30:26
1 posts
🟠 CVE-2026-105220 - High (7.8)
Twine 2 desktop through 2.12.0 contains a cross-site scripting vulnerability in importStories() that executes markup from imported story files in the editor window. Attackers can craft a story file whose script calls the twineElectron openWithScra...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-105220/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-04T18:30:27
1 posts
🟠 CVE-2026-105219 - High (7.5)
Mammoth.js 1.3.0 before 1.12.3 contains a regular expression denial of service vulnerability in the style map tokeniser in lib/styles/parser/tokeniser.js due to overlapping regex alternatives. Attackers can supply a crafted .docx with an untermina...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-105219/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-04T18:30:21
1 posts
🟠 CVE-2026-105089 - High (8.7)
WWBN AVideo through 29.2.0 contains a stored cross-site scripting vulnerability that allows users with upload permission to inject script by setting a malicious video trailer1 URL. The value is rendered unescaped in YouPHPFlix2 templates and chann...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-105089/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-04T18:30:21
1 posts
🟠 CVE-2026-105086 - High (8.7)
WWBN AVideo 12.4 through 29.2.0 contains a stored cross-site scripting vulnerability that allows authenticated uploaders to inject HTML by submitting doubly-encoded entities in video titles. Because safeString() strips tags before decoding entitie...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-105086/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-04T15:30:30
1 posts
🟠 CVE-2026-105212 - High (7.5)
ZITADEL 3.x before 3.4.14 and 4.x before 4.16.2 contains an authentication bypass in the hosted Login V1 and Login V2 UIs that accepts passkey or other authenticator enrollment on identify-only login sessions, before any primary factor is verified...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-105212/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-04T15:30:29
2 posts
Zitadel has some new sev:CRIT CVEs for some not-new vulns.
https://nvd.nist.gov/vuln/detail/cve-2026-105211
https://nvd.nist.gov/vuln/detail/cve-2026-105207
##🔴 CVE-2026-105215 - Critical (9.1)
ZITADEL before 3.4.14 and 4.x before 4.16.2 contains an authentication bypass in the hosted Login V1 UI because the 'external account not found' registration endpoint trusts client-supplied external identity fields without a completed IdP callback...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-105215/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-04T15:30:29
1 posts
🟠 CVE-2026-105213 - High (8.2)
ZITADEL 4.x before 4.17.1 does not check an organization's inactive state during Login V2 authentication, verifying only the individual user's status. Users of a deactivated organization who hold valid credentials, an existing session, or a refres...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-105213/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-04T15:30:29
1 posts
🟠 CVE-2026-105210 - High (8.2)
ZITADEL 3.x before 3.4.15 and 4.x before 4.17.1 contains a missing authentication flaw in the hosted Login V1 UI, whose second-factor enrollment and initialization handlers act on an identify-only session before any primary factor is verified. Att...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-105210/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-04T15:30:24
3 posts
Zitadel has some new sev:CRIT CVEs for some not-new vulns.
https://nvd.nist.gov/vuln/detail/cve-2026-105211
https://nvd.nist.gov/vuln/detail/cve-2026-105207
##CVE-2026-105207: CRITICAL vuln in ZITADEL 3.0.0 – 3.4.15 & 4.0.0<4.17.3 allows unauthenticated attackers to link their own IdP identity to any account — full takeover possible. Patch status unknown. Details: https://radar.offseq.com/threat/zitadel-300-through-3415-and-400-before-4173-creates-links-between-user-accounts-and-external-identity-cb61bb81cf2dabad #OffSeq #ZITADEL #Vuln #AccountSecurity
##🔴 CVE-2026-105207 - Critical (9.8)
ZITADEL 3.0.0 through 3.4.15 and 4.0.0 before 4.17.3 creates links between user accounts and external identity providers without verifying a primary factor or the caller's permission, including on identify-only Login V2 sessions and via the User S...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-105207/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-04T15:30:23
2 posts
Zitadel has some new sev:CRIT CVEs for some not-new vulns.
https://nvd.nist.gov/vuln/detail/cve-2026-105211
https://nvd.nist.gov/vuln/detail/cve-2026-105207
##🔴 CVE-2026-105209 - Critical (9.6)
ZITADEL 3.x before 3.4.15 and 4.x before 4.17.1 contains an improper authorization vulnerability: when issuing passkey or passwordless enrollment codes, it checks only the organization in the x-zitadel-orgid header, not the target user's organizat...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-105209/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-04T15:30:23
1 posts
🟠 CVE-2026-105208 - High (7.7)
ZITADEL 4.x before 4.17.3 and 3.x through 3.4.15 protects IdP intent tokens with unauthenticated, malleable encryption, allowing authenticated users to tamper with their own token so it is accepted for another user's external login intent. An atta...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-105208/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-04T12:32:45
2 posts
🟠 CVE-2026-97307 - High (7.5)
Insertion of Sensitive Information Into Sent Data vulnerability in StylemixThemes Cost Calculator Builder cost-calculator-builder allows Retrieve Embedded Sensitive Data.This issue affects Cost Calculator Builder: from n/a through 4.0.17.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97307/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##StylemixThemes Cost Calculator Builder (<4.0.18) hit by HIGH severity vuln (CVE-2026-97307): sensitive info may be leaked via sent data. Patch not confirmed — track vendor updates and secure affected sites. 🛡️ https://radar.offseq.com/threat/cve-2026-97307-insertion-of-sensitive-information-into-sent-data-in-stylemixthemes-cost-calculator-f23de2d1b2c3a3d8 #OffSeq #WordPress #Vuln
##updated 2026-10-04T09:30:28
2 posts
🔴 CVE-2026-105135 - Critical (10)
A vulnerability has been found in InternLM MindSearch 0.1.0. This issue affects the function ExecutionAction.run of the file mindsearch/agent/graph.py of the component Planner Agent. The manipulation of the argument inputs leads to code injection....
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-105135/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##InternLM MindSearch 0.1.0 hit by CRITICAL code injection (CVE-2026-105135) in ExecutionAction.run — remote attackers can execute arbitrary code via manipulated inputs. No patch; restrict access & monitor for updates. https://radar.offseq.com/threat/cve-2026-105135-code-injection-in-internlm-mindsearch-f0d6fc8a61cd76d9 #OffSeq #CVE2026105135 #infosec #zeroday
##updated 2026-10-04T09:30:28
2 posts
1 repos
https://github.com/Hassham1/CVE-2026-103355-unlimited-elements-sqli-poc
🔴 CVE-2026-103355 - Critical (9.3)
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Unlimited Elements Unlimited Elements For Elementor (Free Widgets, Addons, Templates) unlimited-elements-for-elementor allows Blind SQL Injection...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-103355/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-103355: CRITICAL blind SQL Injection in Unlimited Elements For Elementor (<2.0.21). Risk of data compromise — patch ASAP when available! https://radar.offseq.com/threat/cve-2026-103355-improper-neutralization-of-special-elements-used-in-an-sql-command-sql-injection-in-3504f0f6c5f88104 #OffSeq #WordPress #Infosec #SQLInjection
##updated 2026-10-04T09:30:21
3 posts
1 repos
AhsayCBS <10.3.4 hit by CRITICAL OS command injection (CVE-2026-105134) in Replication Receiver. Remote, unauthenticated exploitation = total system compromise. Upgrade to 10.3.4 ASAP. Exploit is public. https://radar.offseq.com/threat/a-flaw-has-been-found-in-ahsay-ahsaycbs-up-to-1032-cve-2026-105134-a9f0def985d0c48e #OffSeq #CVE2026105134 #Infosec #Vulnerability
##🔴 CVE-2026-105134 - Critical (10)
A flaw has been found in Ahsay AhsayCBS up to 10.3.2. This vulnerability affects unknown code of the file /rps/api/json/UpdateReceivers.do of the component Replication Receiver. Executing a manipulation of the argument random can lead to os comman...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-105134/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-105134 (CRITICAL): Ahsay AhsayCBS ≤10.3.2 suffers OS command injection in Replication Receiver (/rps/api/json/UpdateReceivers.do). Remote RCE possible — public exploit out. Patch to 10.3.4+ now. https://radar.offseq.com/threat/cve-2026-105134-os-command-injection-in-ahsay-ahsaycbs-a9df873cc55c0ce9 #OffSeq #Vuln #CVE #PatchNow
##updated 2026-10-04T00:31:06
1 posts
CVE-2026-105129 | LaraDashboard <1.4.8 HIGH severity: settings.view users can access plaintext secrets (API keys, mail creds, tokens) via API. Patch to 1.4.8+ recommended. https://radar.offseq.com/threat/laradashboard-before-148-contains-an-incorrect-authorization-vulnerability-that-allows-authenticated-16249131d2f6c23b #OffSeq #Vulnerability #LaraDashboard #AppSec
##updated 2026-10-04T00:31:06
2 posts
vincent-peugnet wcms ≤3.18.0 is vulnerable (CVE-2026-105123, HIGH, CVSS 8.7): Authenticated editors can upload malicious files via /api/v0/media/upload/ and delete arbitrary files. Restrict privileges, monitor uploads. https://radar.offseq.com/threat/cve-2026-105123-unrestricted-upload-of-file-with-dangerous-type-in-vincent-peugnet-wcms-9cc4f5671e51d0dd #OffSeq #RCE #WebSecurity #Vuln
##🟠 CVE-2026-105123 - High (8.8)
W (vincent-peugnet/wcms) through 3.18.0 contains a remote code execution vulnerability that allows authenticated editors to write arbitrary files by abusing the unvalidated path in POST /api/v0/media/upload/[*:path]. Attackers can upload .php file...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-105123/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-03T04:18:00.460000
3 posts
(CISA CS-MAN) The Cyber Mind CSUITE Brief: CVE-2026-102490 – Zammad GmbH Zammad Improper Privilege Management Vulnerability
Immediate CISA KEV threat advisory for CVE-2026-102490 affecting Zammad. Includes local privilege escalation analysis, CISO compliance steps, and comprehensive asset hardening runbooks....
##(CISA TS+SOC) The Cyber Mind TSUITE Brief: CVE-2026-102490 – Zammad GmbH Zammad Improper Privilege Management Vulnerability
Immediate CISA KEV threat advisory for CVE-2026-102490 affecting Zammad. Includes local privilege escalation analysis, BOD 26-04 compliance guidance, and multi-vendor SOC detection queries....
##The Cyber Mind Cybersecurity Weekly Brief October 4, 2026
Immediate CISA KEV threat advisory for CVE-2026-102490 affecting Zammad. Includes privilege escalation workflow analysis, BOD 26-04 compliance steps, and production-ready SOC detection queries....
##updated 2026-10-02T21:32:13
3 posts
1 repos
📰 Microsoft Patches High-Severity Exchange Privilege Escalation Flaw
Microsoft issues out-of-band patch for high-severity Exchange Server flaw (CVE-2026-96940). The 8.8 CVSS bug allows authenticated attackers to read other users' mailboxes. #Microsoft #Exchange #PatchTuesday #InfoSec
##https://thecybersecguru.com/exploits/cve-2026-96940-microsoft-exchange-vulnerability/
##https://fawkes.rocks/2026/10/05/exchange-server-cve-2026-96940-gets-out-of-band-patch/
##updated 2026-10-02T18:53:46.583000
1 posts
Christophe Pettus: The Vector That Lied About Its Dimensions
pgvector 0.8.7은 IVFFlat 인덱스 빌드 중 벡터 헤더의 차원 수와 컬럼 타입 수정자(vector(1536))가 불일치할 때 발생하던 out-of-bounds write 취약점(CVE-2026-103484)을 수정했다. IVFFlat 인덱스를 생성하거나 REINDEX를 실행할 수 있는 PostgreSQL 역할은 백엔드 임의 코드 실행으로 이어질 가능성이 있으므로, 특히 애플리케이션 DB 역할이 테이블 소유자·마이그레이션 권한을 함께 가진 환경은 노출 여부를 점검해야 한다. 패키지 업그레이드만으로는 부족하며, 이전 pgvector 공유...
https://thebuild.com/blog/the-vector-that-lied-about-its-dimensions/
##updated 2026-10-02T18:32:21
3 posts
(CISA CS-MAN) The Cyber Mind CSUITE Brief: CVE-2026-102489 – Zammad GmbH Zammad Session Fixation Vulnerability
Immediate CISA KEV threat advisory for CVE-2026-102489 affecting Zammad. Includes session fixation RCE analysis, CISO compliance steps, and comprehensive asset hardening runbooks....
##(CISA TwS) The Cyber Mind TSUITE Brief: CVE-2026-102489 – Zammad GmbH Zammad Session Fixation Vulnerability
Immediate CISA KEV threat advisory for CVE-2026-102489 affecting Zammad. Includes session fixation RCE analysis, BOD 26-04 compliance guidance, and multi-vendor SOC detection queries....
##Zammad security alert: session hijacking and remote code execution
CVE-2026-102489 concerns session hijacking that can lead to code execution as the Zammad service account on affected older installations. DIVD reports exploitation in a real incident.
Zammad states that version 7.0 and later are not exploitable through this issue and recommends upgrading to 7.2.0.
#Zammad #CyberSecurity #VulnerabilityManagement #SecPoint #Penetrator
##updated 2026-10-02T18:17:06.963000
1 posts
Apache Thrift 0.25.0 fixes 61 Apache Thrift vulnerabilities, including critical heap overflow CVE-2026-91135. Upgrade every binding now.
#ApacheThrift #Apache #CVE202683632 #CVE202691135 #RPC #DoS #OpenSource #Vulnerability
##updated 2026-10-02T15:31:37
3 posts
1 repos
https://github.com/techupdate24/gitlab-ai-gateway-cve-2026-90970
🏆 New Achievement! Duo-pocalypse Now!
Thank you for contacting GitLab Support. I see you're running a self-hosted AI Gateway. Great choice! Have you tried letting authenticated users execute arbitrary commands on it? Because CVE-2026-90970, CVSS 9.9, has gone ahead and enabled that feature for you. You're welcome. We've escalated your ticket to "catastrophic." (1/3)
##⚠️ CRITICAL: GitLab warns of critical RCE vulnerability in AI Gateway service
GitLab disclosed CVE-2026-90970, a critical RCE in AI Gateway that lets authenticated users with Duo Agent Platform access break out of prompt sandbox and run arbitrary commands. Self-hosted deployments are vulnerable; cloud instances are already patched. This is the second critical GitLab vuln in…
🤖 AI generated summary
##POV: you shipped an AI gateway
the prompt template: "hi {{name}}"
a logged in user with a crafted flow config: "what if i was a shell"
gitlab patched a CVSS 9.9 prompt template sandbox escape in its self-hosted AI gateway (CVE-2026-90970). affected: 18.1.6 to 19.2.3, 19.3.0 to 19.3.1, 19.4.0. fixed in 19.2.4, 19.3.2, 19.4.1. gitlab.com and dedicated already patched
##updated 2026-10-02T13:17:21.763000
1 posts
📈 CVE Published in last 7 days (2026-09-28 - 2026-09-28)
See more at https://secdb.nttzen.cloud/dashboard
Total CVEs:
Severity:
- Critical: 264
- High: 1061
- Medium: 941
- Low: 181
- None: 99
Status:
- : 37
- Analyzed: 207
- Awaiting Analysis: 736
- Deferred: 1237
- Received: 185
- Rejected: 12
- Undergoing Analysis: 132
CISA KEVs:
- CISA-2026:0929 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0929)
- CISA-2026:0930 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0930)
- CISA-2026:1001 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:1001)
- CISA-2026:1002 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:1002)
- CISA-2026:1004 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:1004)
Top CNAs:
- VulnCheck: 281
- Patchstack: 215
- VulDB: 204
- GitHub, Inc.: 169
- Apache Software Foundation: 155
- Chrome: 152
- Wordfence: 144
- NVIDIA Corporation: 116
- WPScan: 100
- MITRE: 98
Top Affected Products:
- UNKNOWN: 2107
- Google Chrome: 141
- Jetbrains Youtrack: 29
- Yeswiki: 26
- Ghost: 24
- Watchguard Fireware Os: 15
- Moodle: 12
- N8n: 12
- Zfnd Zebra: 11
- Pexip Infinity: 10
Top EPSS Score:
- CVE-2026-12269 - 6.99 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-12269)
- CVE-2026-12268 - 4.73 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-12268)
- CVE-2026-12267 - 3.60 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-12267)
- CVE-2026-102792 - 3.04 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-102792)
- CVE-2026-101001 - 2.63 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-101001)
- CVE-2026-102793 - 2.49 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-102793)
- CVE-2026-101075 - 2.45 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-101075)
- CVE-2026-101261 - 2.36 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-101261)
- CVE-2026-101262 - 2.36 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-101262)
- CVE-2026-102794 - 2.36 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-102794)
updated 2026-10-01T21:33:02
2 posts
2 repos
https://github.com/techupdate24/fortimail-zero-day-cve-2026-104286
Geopolitical tensions are escalating with intensified fighting in Yemen, as Iran reiterates that there is "no military solution" to the ongoing conflict. In technology, OpenAI has halted the release of its GPT-6.1 Astra model citing safety concerns, highlighting the growing scrutiny of advanced AI. On the cybersecurity front, a suspected ShinyHunters hacker has been detained in Jordan, assisting the FBI. Urgent action is also advised for an exploited critical FortiMail zero-day vulnerability (CVE-2026-104286).
##2026-W40 — Weekly Threat Roundup
🔥 A zero-day in Fortinet FortiMail (CVE-2026-104286) is actively exploited with no patch available yet, demanding immediate workarounds.
🏴☠️ Operation KillSwitch dismantled the KillSec ransomware gang, allegedly run by a 16-year-old, seizing 110TB of stolen victim data.
🇨🇳 China-linked Warlock…
https://threatnoir.com/weekly/2026-w40
#infosec #cybersecurity #threatintel
🤖 AI generated summary
##updated 2026-10-01T16:17:35.247000
1 posts
📈 CVE Published in last 7 days (2026-09-28 - 2026-09-28)
See more at https://secdb.nttzen.cloud/dashboard
Total CVEs:
Severity:
- Critical: 264
- High: 1061
- Medium: 941
- Low: 181
- None: 99
Status:
- : 37
- Analyzed: 207
- Awaiting Analysis: 736
- Deferred: 1237
- Received: 185
- Rejected: 12
- Undergoing Analysis: 132
CISA KEVs:
- CISA-2026:0929 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0929)
- CISA-2026:0930 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0930)
- CISA-2026:1001 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:1001)
- CISA-2026:1002 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:1002)
- CISA-2026:1004 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:1004)
Top CNAs:
- VulnCheck: 281
- Patchstack: 215
- VulDB: 204
- GitHub, Inc.: 169
- Apache Software Foundation: 155
- Chrome: 152
- Wordfence: 144
- NVIDIA Corporation: 116
- WPScan: 100
- MITRE: 98
Top Affected Products:
- UNKNOWN: 2107
- Google Chrome: 141
- Jetbrains Youtrack: 29
- Yeswiki: 26
- Ghost: 24
- Watchguard Fireware Os: 15
- Moodle: 12
- N8n: 12
- Zfnd Zebra: 11
- Pexip Infinity: 10
Top EPSS Score:
- CVE-2026-12269 - 6.99 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-12269)
- CVE-2026-12268 - 4.73 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-12268)
- CVE-2026-12267 - 3.60 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-12267)
- CVE-2026-102792 - 3.04 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-102792)
- CVE-2026-101001 - 2.63 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-101001)
- CVE-2026-102793 - 2.49 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-102793)
- CVE-2026-101075 - 2.45 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-101075)
- CVE-2026-101261 - 2.36 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-101261)
- CVE-2026-101262 - 2.36 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-101262)
- CVE-2026-102794 - 2.36 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-102794)
updated 2026-10-01T03:31:14
1 posts
ASUS Patches Critical Vulnerabilities in Router Firmware Triggered by Malicious VPN Files
ASUS patched two vulnerabilities (CVE-2026-14157 and CVE-2026-13313) in its router firmware that allow authenticated attackers to execute arbitrary commands and gain root privileges via malicious VPN configuration files or active debug code.
**If you have an ASUS router, update its firmware ASAP from the official ASUS support page, and make sure its admin page can only be reached from your trusted internal network, never from the internet. Only import VPN configuration files from providers you trust, and if your router is on ASUS's end-of-life list, plan to replace it since it will not be patched.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/asus-patches-critical-vulnerabilities-in-router-firmware-triggered-by-malicious-vpn-files-0-p-k-n-f/gD2P6Ple2L
updated 2026-10-01T03:31:13
1 posts
ASUS Patches Critical Vulnerabilities in Router Firmware Triggered by Malicious VPN Files
ASUS patched two vulnerabilities (CVE-2026-14157 and CVE-2026-13313) in its router firmware that allow authenticated attackers to execute arbitrary commands and gain root privileges via malicious VPN configuration files or active debug code.
**If you have an ASUS router, update its firmware ASAP from the official ASUS support page, and make sure its admin page can only be reached from your trusted internal network, never from the internet. Only import VPN configuration files from providers you trust, and if your router is on ASUS's end-of-life list, plan to replace it since it will not be patched.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/asus-patches-critical-vulnerabilities-in-router-firmware-triggered-by-malicious-vpn-files-0-p-k-n-f/gD2P6Ple2L
updated 2026-09-30T17:32:07.107000
1 posts
1 repos
https://github.com/wvllxe/CVE-2026-100520-laranode-path-traversal
🚨 Public PoC released for CVE-2026-100520 affecting Laranode
https://github.com/wvllxe/CVE-2026-100520-laranode-path-traversal
CVE-2026-100520 is a high-severity path traversal flaw in the Laranode multi-tenant hosting control panel that can let a low-privileged authenticated user write files outside their own home directory.
A newly published proof of concept demonstrates how the issue can be chained into remote code execution by placing a PHP file inside another tenant’s web root.
Key details:
⠀
• CVE-2026-100520
• CVSS 3.1: 8.8 HIGH
• CVSS 4.0: 8.7 HIGH
• CWE-22 Path Traversal
• Authenticated exploitation required
• Arbitrary file write
• Cross-tenant impact
• Remote code execution possible
• Laranode versions before 1.2.1 affected
• Fixed in version 1.2.1
⠀
The vulnerability stems from attacker-controlled path values being used when constructing upload destinations without sufficient traversal protections.
The published PoC uses a valid low-privileged account and demonstrates writing a file into a sibling tenant’s web root.
The issue was publicly disclosed on September 21, 2026, and the CVE was published on September 26. The vendor fix was released before the PoC became public.
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
##updated 2026-09-30T14:17:24.647000
1 posts
📈 CVE Published in last 7 days (2026-09-28 - 2026-09-28)
See more at https://secdb.nttzen.cloud/dashboard
Total CVEs:
Severity:
- Critical: 264
- High: 1061
- Medium: 941
- Low: 181
- None: 99
Status:
- : 37
- Analyzed: 207
- Awaiting Analysis: 736
- Deferred: 1237
- Received: 185
- Rejected: 12
- Undergoing Analysis: 132
CISA KEVs:
- CISA-2026:0929 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0929)
- CISA-2026:0930 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0930)
- CISA-2026:1001 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:1001)
- CISA-2026:1002 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:1002)
- CISA-2026:1004 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:1004)
Top CNAs:
- VulnCheck: 281
- Patchstack: 215
- VulDB: 204
- GitHub, Inc.: 169
- Apache Software Foundation: 155
- Chrome: 152
- Wordfence: 144
- NVIDIA Corporation: 116
- WPScan: 100
- MITRE: 98
Top Affected Products:
- UNKNOWN: 2107
- Google Chrome: 141
- Jetbrains Youtrack: 29
- Yeswiki: 26
- Ghost: 24
- Watchguard Fireware Os: 15
- Moodle: 12
- N8n: 12
- Zfnd Zebra: 11
- Pexip Infinity: 10
Top EPSS Score:
- CVE-2026-12269 - 6.99 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-12269)
- CVE-2026-12268 - 4.73 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-12268)
- CVE-2026-12267 - 3.60 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-12267)
- CVE-2026-102792 - 3.04 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-102792)
- CVE-2026-101001 - 2.63 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-101001)
- CVE-2026-102793 - 2.49 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-102793)
- CVE-2026-101075 - 2.45 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-101075)
- CVE-2026-101261 - 2.36 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-101261)
- CVE-2026-101262 - 2.36 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-101262)
- CVE-2026-102794 - 2.36 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-102794)
updated 2026-09-29T21:39:02.570000
1 posts
📈 CVE Published in last 7 days (2026-09-28 - 2026-09-28)
See more at https://secdb.nttzen.cloud/dashboard
Total CVEs:
Severity:
- Critical: 264
- High: 1061
- Medium: 941
- Low: 181
- None: 99
Status:
- : 37
- Analyzed: 207
- Awaiting Analysis: 736
- Deferred: 1237
- Received: 185
- Rejected: 12
- Undergoing Analysis: 132
CISA KEVs:
- CISA-2026:0929 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0929)
- CISA-2026:0930 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0930)
- CISA-2026:1001 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:1001)
- CISA-2026:1002 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:1002)
- CISA-2026:1004 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:1004)
Top CNAs:
- VulnCheck: 281
- Patchstack: 215
- VulDB: 204
- GitHub, Inc.: 169
- Apache Software Foundation: 155
- Chrome: 152
- Wordfence: 144
- NVIDIA Corporation: 116
- WPScan: 100
- MITRE: 98
Top Affected Products:
- UNKNOWN: 2107
- Google Chrome: 141
- Jetbrains Youtrack: 29
- Yeswiki: 26
- Ghost: 24
- Watchguard Fireware Os: 15
- Moodle: 12
- N8n: 12
- Zfnd Zebra: 11
- Pexip Infinity: 10
Top EPSS Score:
- CVE-2026-12269 - 6.99 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-12269)
- CVE-2026-12268 - 4.73 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-12268)
- CVE-2026-12267 - 3.60 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-12267)
- CVE-2026-102792 - 3.04 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-102792)
- CVE-2026-101001 - 2.63 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-101001)
- CVE-2026-102793 - 2.49 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-102793)
- CVE-2026-101075 - 2.45 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-101075)
- CVE-2026-101261 - 2.36 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-101261)
- CVE-2026-101262 - 2.36 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-101262)
- CVE-2026-102794 - 2.36 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-102794)
updated 2026-09-29T21:39:02.570000
1 posts
📈 CVE Published in last 7 days (2026-09-28 - 2026-09-28)
See more at https://secdb.nttzen.cloud/dashboard
Total CVEs:
Severity:
- Critical: 264
- High: 1061
- Medium: 941
- Low: 181
- None: 99
Status:
- : 37
- Analyzed: 207
- Awaiting Analysis: 736
- Deferred: 1237
- Received: 185
- Rejected: 12
- Undergoing Analysis: 132
CISA KEVs:
- CISA-2026:0929 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0929)
- CISA-2026:0930 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0930)
- CISA-2026:1001 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:1001)
- CISA-2026:1002 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:1002)
- CISA-2026:1004 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:1004)
Top CNAs:
- VulnCheck: 281
- Patchstack: 215
- VulDB: 204
- GitHub, Inc.: 169
- Apache Software Foundation: 155
- Chrome: 152
- Wordfence: 144
- NVIDIA Corporation: 116
- WPScan: 100
- MITRE: 98
Top Affected Products:
- UNKNOWN: 2107
- Google Chrome: 141
- Jetbrains Youtrack: 29
- Yeswiki: 26
- Ghost: 24
- Watchguard Fireware Os: 15
- Moodle: 12
- N8n: 12
- Zfnd Zebra: 11
- Pexip Infinity: 10
Top EPSS Score:
- CVE-2026-12269 - 6.99 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-12269)
- CVE-2026-12268 - 4.73 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-12268)
- CVE-2026-12267 - 3.60 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-12267)
- CVE-2026-102792 - 3.04 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-102792)
- CVE-2026-101001 - 2.63 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-101001)
- CVE-2026-102793 - 2.49 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-102793)
- CVE-2026-101075 - 2.45 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-101075)
- CVE-2026-101261 - 2.36 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-101261)
- CVE-2026-101262 - 2.36 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-101262)
- CVE-2026-102794 - 2.36 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-102794)
updated 2026-09-29T21:39:02.570000
1 posts
📈 CVE Published in last 7 days (2026-09-28 - 2026-09-28)
See more at https://secdb.nttzen.cloud/dashboard
Total CVEs:
Severity:
- Critical: 264
- High: 1061
- Medium: 941
- Low: 181
- None: 99
Status:
- : 37
- Analyzed: 207
- Awaiting Analysis: 736
- Deferred: 1237
- Received: 185
- Rejected: 12
- Undergoing Analysis: 132
CISA KEVs:
- CISA-2026:0929 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0929)
- CISA-2026:0930 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0930)
- CISA-2026:1001 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:1001)
- CISA-2026:1002 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:1002)
- CISA-2026:1004 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:1004)
Top CNAs:
- VulnCheck: 281
- Patchstack: 215
- VulDB: 204
- GitHub, Inc.: 169
- Apache Software Foundation: 155
- Chrome: 152
- Wordfence: 144
- NVIDIA Corporation: 116
- WPScan: 100
- MITRE: 98
Top Affected Products:
- UNKNOWN: 2107
- Google Chrome: 141
- Jetbrains Youtrack: 29
- Yeswiki: 26
- Ghost: 24
- Watchguard Fireware Os: 15
- Moodle: 12
- N8n: 12
- Zfnd Zebra: 11
- Pexip Infinity: 10
Top EPSS Score:
- CVE-2026-12269 - 6.99 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-12269)
- CVE-2026-12268 - 4.73 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-12268)
- CVE-2026-12267 - 3.60 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-12267)
- CVE-2026-102792 - 3.04 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-102792)
- CVE-2026-101001 - 2.63 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-101001)
- CVE-2026-102793 - 2.49 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-102793)
- CVE-2026-101075 - 2.45 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-101075)
- CVE-2026-101261 - 2.36 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-101261)
- CVE-2026-101262 - 2.36 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-101262)
- CVE-2026-102794 - 2.36 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-102794)
updated 2026-09-29T18:57:24.350000
1 posts
📈 CVE Published in last 7 days (2026-09-28 - 2026-09-28)
See more at https://secdb.nttzen.cloud/dashboard
Total CVEs:
Severity:
- Critical: 264
- High: 1061
- Medium: 941
- Low: 181
- None: 99
Status:
- : 37
- Analyzed: 207
- Awaiting Analysis: 736
- Deferred: 1237
- Received: 185
- Rejected: 12
- Undergoing Analysis: 132
CISA KEVs:
- CISA-2026:0929 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0929)
- CISA-2026:0930 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0930)
- CISA-2026:1001 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:1001)
- CISA-2026:1002 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:1002)
- CISA-2026:1004 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:1004)
Top CNAs:
- VulnCheck: 281
- Patchstack: 215
- VulDB: 204
- GitHub, Inc.: 169
- Apache Software Foundation: 155
- Chrome: 152
- Wordfence: 144
- NVIDIA Corporation: 116
- WPScan: 100
- MITRE: 98
Top Affected Products:
- UNKNOWN: 2107
- Google Chrome: 141
- Jetbrains Youtrack: 29
- Yeswiki: 26
- Ghost: 24
- Watchguard Fireware Os: 15
- Moodle: 12
- N8n: 12
- Zfnd Zebra: 11
- Pexip Infinity: 10
Top EPSS Score:
- CVE-2026-12269 - 6.99 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-12269)
- CVE-2026-12268 - 4.73 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-12268)
- CVE-2026-12267 - 3.60 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-12267)
- CVE-2026-102792 - 3.04 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-102792)
- CVE-2026-101001 - 2.63 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-101001)
- CVE-2026-102793 - 2.49 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-102793)
- CVE-2026-101075 - 2.45 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-101075)
- CVE-2026-101261 - 2.36 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-101261)
- CVE-2026-101262 - 2.36 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-101262)
- CVE-2026-102794 - 2.36 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-102794)
updated 2026-09-29T18:31:49
1 posts
Discover how the OpenSSL DTLS memory leak (CVE-2026-84782) allows out-of-bounds reads and denial-of-service attacks. Learn about the patch and affected versions.
##updated 2026-09-29T04:18:01.603000
9 posts
12 repos
https://github.com/SwiftSecur/CVE-2026-88771-HuntScript
https://github.com/technion/netscaler_scanner
https://github.com/emilstahl/pitscaler
https://github.com/craigsblackie/cve-2026-88771-netscaler
https://github.com/techupdate24/citrix-netscaler-cve-2026-88771-rce
https://github.com/bkchaudhari/NetScaler-CTX697096-Assessment-Script
https://github.com/orjanj/netscaler_threat_hunt_helper
https://github.com/LETHAL-FORENSICS/Get-NetScalerTimeline
https://github.com/ThomasPoppelgaard/netscaler-ctx697096-checker
https://github.com/securekomodo/citrixInspector
https://github.com/watchtowrlabs/watchTowr-vs-Citrix-Netscaler-CVE-2026-88771
New.
eSentire: More Shells Than a Seafood Buffet: Tracking Citrix NetScaler Exploitation Activities (CVE-2026-88771) https://www.esentire.com/blog/more-shells-than-a-seafood-buffet-tracking-citrix-netscaler-exploitation-activities-cve-2026-88771 #infosec #ClickFix #NetScaler #threatresearch #Citrix
##New.
eSentire: More Shells Than a Seafood Buffet: Tracking Citrix NetScaler Exploitation Activities (CVE-2026-88771) https://www.esentire.com/blog/more-shells-than-a-seafood-buffet-tracking-citrix-netscaler-exploitation-activities-cve-2026-88771 #infosec #ClickFix #NetScaler #threatresearch #Citrix
##----------------
🛠️ Tool
===================
Get-NetScalerTimeline: automated file system timelines for NetScaler ADC/Gateway disk images
Get-NetScalerTimeline.ps1 is a Windows-based DFIR utility from LETHAL-FORENSICS that builds a file system timeline directly from a NetScaler VMDK disk image. It detects the FreeBSD slice and its UFS partitions automatically, keeps native tool output byte-for-byte, normalizes timestamps to UTC ISO 8601, and imports the bodyfile into DuckDB so the result can be hunted with SQL. The stated focus is the persistent locations used by web shells and the log poisoning technique associated with CVE-2026-88771.
Key features
• Partition detection: finds the FreeBSD slice (0xa5) and all UFS partitions under its BSD disk label, including mount points such as /flash and /var.
• VMDK handling: flat extents (*-flat.vmdk), descriptor files, and split images across multiple extents.
• Timeline output: bodyfile via fls and timeline via mactime, UTC ISO 8601, exported as CSV and XLSX.
• DuckDB import: file type, allocated versus deleted status, orphan files, symlink targets, and human-readable timestamps; an interactive DuckDB UI session opens at the end of the run.
• Log extraction: ns.log, httpaccess.log, and httperror.log pulled byte-for-byte from the image, including rotated .gz archives, with SHA256 hashes of the evidence copies.
• Log poisoning detection: a search for fake pitboss heartbeat messages followed by shell operators, mapped to CVE-2026-88771.
• Log coverage reporting: shows how far back the local logs reach, since NetScaler rotates its logs quickly.
• Optional hashing: MD5 and SHA256 over allocated regular files, read from the image and hashed in memory with no file extraction.
• Evidence hygiene: non-UTF-8 filenames preserved, pipe characters in filenames handled, PowerShell re-encoding avoided entirely.
Dependencies and platform
Pinned versions per the README: The Sleuth Kit 4.14.0, Strawberry Perl 5.42.3.1, DuckDB CLI 1.5.6, and the ImportExcel PowerShell module 7.8.10. Tested on Windows 11 Pro x64 with Windows PowerShell 5.1 and PowerShell 7.6.6. Expect to re-validate these versions against current releases before deployment.
Evidence collection caveats
The collection guidance in the README is worth repeating: volatile data first. Generating an NSPPE core dump restarts the NetScaler and wipes the RAM disk (/etc, /netscaler), so run a live triage collection before triggering the dump. The dump itself is written to /var/core, which means free space on /var should be verified beforehand.
Use cases
• Post-imaging triage of suspected NetScaler compromises, with SQL queries over web shell persistence locations on /flash and /var.
• Auditing how much local log history survived rotation before deciding whether to pivot to remote log sources.
• Verifying CVE-2026-88771 log poisoning activity through the pitboss heartbeat heuristic.
• In-memory hashing of allocated files for quick malware screening.
Limitations
Windows-only workflow with pinned dependencies. Fast log rotation means short local coverage; the tool surfaces the gap rather than solving it. Analysis runs against an image, so volatiles need a separate collection step. Haven't tested it personally against a real image; worth validating on lab snapshots before relying on it in a case.
On paper, the DuckDB integration and the byte-for-byte evidence handling are the parts worth noting; validation on real images will tell.
🔹 DFIR #tool #NetScaler #DuckDB #Forensics
🔗 Source: https://github.com/LETHAL-FORENSICS/Get-NetScalerTimeline
##Discover how hackers exploit CVE-2026-88771 in Citrix NetScaler to hide PHP web shells as CSS files, granting remote access and compromising networks.
##@GossiTheDog @jsmall I know but I'm interested not just in CVE-2026-88779. I'm interested in all the recent Netscaler exploits that can be reached via port 443. My honeypot is quite old; it handles only CVE-2019-19781. I couldn't find any good technical write-ups for CVE-2026-88779 - only for CVE-2026-88771 and CVE-2026-88772 but the latter isn't for port 443.
##I didn’t realize the EU CERT was so witty!
https://cert.europa.eu/blog/taking-execute-logging-a-bit-too-literally-cve-2026-88771
(analysis of the NetScaler thing from last week.)
##@GossiTheDog @jsmall I was talking about one of the previous ones (CVE-2026-88771, since it's easier to emulate than CVE-2026-88772). The Watchtowr article I was referring to is this one:
##updated 2026-09-29T00:31:38
1 posts
📈 CVE Published in last 7 days (2026-09-28 - 2026-09-28)
See more at https://secdb.nttzen.cloud/dashboard
Total CVEs:
Severity:
- Critical: 264
- High: 1061
- Medium: 941
- Low: 181
- None: 99
Status:
- : 37
- Analyzed: 207
- Awaiting Analysis: 736
- Deferred: 1237
- Received: 185
- Rejected: 12
- Undergoing Analysis: 132
CISA KEVs:
- CISA-2026:0929 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0929)
- CISA-2026:0930 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0930)
- CISA-2026:1001 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:1001)
- CISA-2026:1002 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:1002)
- CISA-2026:1004 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:1004)
Top CNAs:
- VulnCheck: 281
- Patchstack: 215
- VulDB: 204
- GitHub, Inc.: 169
- Apache Software Foundation: 155
- Chrome: 152
- Wordfence: 144
- NVIDIA Corporation: 116
- WPScan: 100
- MITRE: 98
Top Affected Products:
- UNKNOWN: 2107
- Google Chrome: 141
- Jetbrains Youtrack: 29
- Yeswiki: 26
- Ghost: 24
- Watchguard Fireware Os: 15
- Moodle: 12
- N8n: 12
- Zfnd Zebra: 11
- Pexip Infinity: 10
Top EPSS Score:
- CVE-2026-12269 - 6.99 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-12269)
- CVE-2026-12268 - 4.73 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-12268)
- CVE-2026-12267 - 3.60 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-12267)
- CVE-2026-102792 - 3.04 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-102792)
- CVE-2026-101001 - 2.63 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-101001)
- CVE-2026-102793 - 2.49 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-102793)
- CVE-2026-101075 - 2.45 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-101075)
- CVE-2026-101261 - 2.36 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-101261)
- CVE-2026-101262 - 2.36 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-101262)
- CVE-2026-102794 - 2.36 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-102794)
updated 2026-09-28T21:02:16.150000
1 posts
📈 CVE Published in last 7 days (2026-09-28 - 2026-09-28)
See more at https://secdb.nttzen.cloud/dashboard
Total CVEs:
Severity:
- Critical: 264
- High: 1061
- Medium: 941
- Low: 181
- None: 99
Status:
- : 37
- Analyzed: 207
- Awaiting Analysis: 736
- Deferred: 1237
- Received: 185
- Rejected: 12
- Undergoing Analysis: 132
CISA KEVs:
- CISA-2026:0929 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0929)
- CISA-2026:0930 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0930)
- CISA-2026:1001 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:1001)
- CISA-2026:1002 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:1002)
- CISA-2026:1004 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:1004)
Top CNAs:
- VulnCheck: 281
- Patchstack: 215
- VulDB: 204
- GitHub, Inc.: 169
- Apache Software Foundation: 155
- Chrome: 152
- Wordfence: 144
- NVIDIA Corporation: 116
- WPScan: 100
- MITRE: 98
Top Affected Products:
- UNKNOWN: 2107
- Google Chrome: 141
- Jetbrains Youtrack: 29
- Yeswiki: 26
- Ghost: 24
- Watchguard Fireware Os: 15
- Moodle: 12
- N8n: 12
- Zfnd Zebra: 11
- Pexip Infinity: 10
Top EPSS Score:
- CVE-2026-12269 - 6.99 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-12269)
- CVE-2026-12268 - 4.73 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-12268)
- CVE-2026-12267 - 3.60 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-12267)
- CVE-2026-102792 - 3.04 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-102792)
- CVE-2026-101001 - 2.63 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-101001)
- CVE-2026-102793 - 2.49 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-102793)
- CVE-2026-101075 - 2.45 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-101075)
- CVE-2026-101261 - 2.36 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-101261)
- CVE-2026-101262 - 2.36 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-101262)
- CVE-2026-102794 - 2.36 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-102794)
updated 2026-09-28T15:15:33.930000
1 posts
📈 CVE Published in last 7 days (2026-09-28 - 2026-09-28)
See more at https://secdb.nttzen.cloud/dashboard
Total CVEs:
Severity:
- Critical: 264
- High: 1061
- Medium: 941
- Low: 181
- None: 99
Status:
- : 37
- Analyzed: 207
- Awaiting Analysis: 736
- Deferred: 1237
- Received: 185
- Rejected: 12
- Undergoing Analysis: 132
CISA KEVs:
- CISA-2026:0929 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0929)
- CISA-2026:0930 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0930)
- CISA-2026:1001 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:1001)
- CISA-2026:1002 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:1002)
- CISA-2026:1004 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:1004)
Top CNAs:
- VulnCheck: 281
- Patchstack: 215
- VulDB: 204
- GitHub, Inc.: 169
- Apache Software Foundation: 155
- Chrome: 152
- Wordfence: 144
- NVIDIA Corporation: 116
- WPScan: 100
- MITRE: 98
Top Affected Products:
- UNKNOWN: 2107
- Google Chrome: 141
- Jetbrains Youtrack: 29
- Yeswiki: 26
- Ghost: 24
- Watchguard Fireware Os: 15
- Moodle: 12
- N8n: 12
- Zfnd Zebra: 11
- Pexip Infinity: 10
Top EPSS Score:
- CVE-2026-12269 - 6.99 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-12269)
- CVE-2026-12268 - 4.73 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-12268)
- CVE-2026-12267 - 3.60 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-12267)
- CVE-2026-102792 - 3.04 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-102792)
- CVE-2026-101001 - 2.63 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-101001)
- CVE-2026-102793 - 2.49 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-102793)
- CVE-2026-101075 - 2.45 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-101075)
- CVE-2026-101261 - 2.36 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-101261)
- CVE-2026-101262 - 2.36 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-101262)
- CVE-2026-102794 - 2.36 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-102794)
updated 2026-09-28T12:32:09
2 posts
8 repos
https://github.com/technion/netscaler_scanner
https://github.com/emilstahl/pitscaler
https://github.com/orjanj/netscaler_threat_hunt_helper
https://github.com/watchtowrlabs/watchTowr-vs-Citrix-Netscaler-CVE-2026-88772
https://github.com/ThomasPoppelgaard/netscaler-ctx697096-checker
https://github.com/securekomodo/citrixInspector
@GossiTheDog @jsmall I know but I'm interested not just in CVE-2026-88779. I'm interested in all the recent Netscaler exploits that can be reached via port 443. My honeypot is quite old; it handles only CVE-2019-19781. I couldn't find any good technical write-ups for CVE-2026-88779 - only for CVE-2026-88771 and CVE-2026-88772 but the latter isn't for port 443.
##@GossiTheDog @jsmall I was talking about one of the previous ones (CVE-2026-88771, since it's easier to emulate than CVE-2026-88772). The Watchtowr article I was referring to is this one:
##updated 2026-09-24T21:25:27.050000
1 posts
CVE-2026-58270: Sync-in Server ReDoS in the sync diff endpoint. A crafted regex pattern stalls the Node.js event loop, taking the whole server offline until restart. CVSS 6.5. Fixed in 2.4.0, patch still under review. https://www.valtersit.com/cve/CVE-2026-58270/
#CVE #infosec #cybersecurity
updated 2026-09-22T20:37:12
1 posts
CVE-2026-77561 Tinyauth: unauthenticated attacker can flood fake usernames to trigger a global login lockdown, denying access to all users. CVSS 5.3. Patch under review, no fix yet, so watch for 5.1.0. Details: https://www.valtersit.com/cve/CVE-2026-77561/ #CVE #infosec #Tinyauth
##updated 2026-09-22T19:16:59.663000
1 posts
CVE-2026-94491 Yonyou KSOA 9.0 SQLi in /cardcase/search_list.jsp via address param, CVSS 7.3. Public exploit, no vendor response, no patch. Isolate or block the endpoint now. https://www.valtersit.com/cve/CVE-2026-94491/ #CVE #infosec #Yonyou
##updated 2026-09-22T12:30:26
1 posts
CVE-2026-63272 LibreOffice heap buffer overflow when importing WMF graphics in documents. CVSS 5.3. No patch yet. Avoid untrusted files and update as soon as a fix ships. https://www.valtersit.com/cve/CVE-2026-63272/ #CVE #infosec #LibreOffice
##updated 2026-09-22T00:31:02
1 posts
CVE-2026-94535 lamp-cloud up to 5.10.0: auth bypass in deleteMyNotice endpoint lets any authenticated user delete other users' notifications. CVSS 7.1, no patch yet. Restrict endpoint access now. https://www.valtersit.com/cve/CVE-2026-94535/ #CVE #infosec #cybersecurity
##updated 2026-09-18T06:32:17
1 posts
4 repos
https://github.com/HORKimhab/CVE-2026-93485
https://github.com/0xBlackash/CVE-2026-93485
Podatność XSS w komentarzach WordPress mogła prowadzić do RCE
Badacz bezpieczeństwa Rafie Muhammad odkrył podatność XSS mogącą eskalować do RCE w systemie komentarzy WordPress. Dowolny nieuwierzytelniony użytkownik mógł dodać komentarz, który umieszczał na stronie ukryty skrypt. Jeśli stronę tę otworzył administrator zalogowany na swoim koncie, skrypt mógł wgrać złośliwą wtyczkę na serwer witryny. Podatność otrzymała numer CVE-2026-93485 i została...
#Aktualności #Podatność #Rce #Wordpress #XSS
https://sekurak.pl/podatnosc-xss-w-komentarzach-wordpress-mogla-prowadzic-do-rce/
##updated 2026-09-15T07:16:25.137000
1 posts
updated 2026-08-26T18:30:34
1 posts
6 repos
https://github.com/techupdate24/citrix-netscaler-cve-2026-8452-rce
https://github.com/watchtowrlabs/watchTowr-vs-Citrix-Netscaler-PreAuth-RCE-CVE-2026-8452
https://github.com/maxprog-svg/CitrixBleedCVE-2026-8452-2025-5777
https://github.com/securekomodo/citrixInspector
I need @watchTowr to fact-check me here but I think CVE-2026-88779 is a redux of CVE-2026-8452? At least based on this mitigation Citrix support are giving out, somebody posted it on their blog. https://www.deyda.net/index.php/de/2026/08/28/netscaler-cve-checkliste-updates-sicherheitspruefung-und-incident-response/
The 8452 patch locked SAML PrefixList to 512 byte or below string. But I think CVE-2026-88779 may be more than 15 items in PrefixList, space-separated, to trigger a vuln. Assuming Citrix support gave out the right mitigation.
##updated 2026-08-25T18:12:14.410000
1 posts
1 repos
Patch-diffing VMware vCenter to auth bypass and RCE
Mobeta 연구진은 VMware vCenter Server Appliance 8.0.3.00900과 수정본 8.0.3.01000을 파일 단위로 패치 디핑해, 인증 없이 악용 가능한 CVE-2026-59309와 CVE-2026-59310의 원인을 추적했다. CVE-2026-59310은 vCenter 내장 syslog 수신기의 rsyslog dynafile 템플릿이 공격자 제어 RFC 5424 `HOSTNAME` 및 `APP-NAME` 값을 경로 검증 없이 파일 경로에 삽입하는 디렉터리 트래버설 취약점으로, UDP/TCP 514에서 임의 파일 쓰기와 RCE로 이어질 수 있다. 특...
https://mobeta.fr/blog/vcenter-cve-2026-59309-cve-2026-59310/
##updated 2026-08-18T18:32:52
1 posts
5 repos
https://github.com/vpxuser/CVE-2026-59310
https://github.com/chu0119/vc-strike
https://github.com/HORKimhab/CVE-2026-59310
Patch-diffing VMware vCenter to auth bypass and RCE
Mobeta 연구진은 VMware vCenter Server Appliance 8.0.3.00900과 수정본 8.0.3.01000을 파일 단위로 패치 디핑해, 인증 없이 악용 가능한 CVE-2026-59309와 CVE-2026-59310의 원인을 추적했다. CVE-2026-59310은 vCenter 내장 syslog 수신기의 rsyslog dynafile 템플릿이 공격자 제어 RFC 5424 `HOSTNAME` 및 `APP-NAME` 값을 경로 검증 없이 파일 경로에 삽입하는 디렉터리 트래버설 취약점으로, UDP/TCP 514에서 임의 파일 쓰기와 RCE로 이어질 수 있다. 특...
https://mobeta.fr/blog/vcenter-cve-2026-59309-cve-2026-59310/
##updated 2026-08-18T16:29:03.070000
1 posts
🚨 EUVD-2026-93388
📊 Score: 6.9/10 (CVSS v3.1)
📦 Product: Django, Django, Django
🏢 Vendor: djangoproject
📅 Updated: 2026-10-06
📝 An issue was discovered in Django 6.1 before 6.1.2, 6.0 before 6.0.9, and 5.2 before 5.2.18.
An incomplete fix for CVE-2026-15307 in Django spatial lookups allows an attacker who can supply `bytes` values to cause the Django process to m...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-93388
##updated 2026-07-29T17:03:19.340000
1 posts
1 repos
PoC and details released for macOS HFS+ vulnerability CVE-2026-43682, a CVSS 9.8 kernel heap overflow. Update to macOS Tahoe 26.6 now.
#macOS #Apple #HFS #CVE202643682 #KernelSecurity #PoC #Vulnerability
##updated 2026-07-23T09:10:00.113000
5 posts
4 repos
https://github.com/HORKimhab/CVE-2026-35273
https://github.com/ekomsSavior/POC_cve_2026_35273
Accenture, acting as a contractor for the FBI, allegedly failed to install updates for Oracle Peoplesoft after CVE-2026-35273 was published.
This was a "Missing Authentication for Critical Function" vulnerability and scored 9.8. If this didn't raise any flags, the CISA KEV listing should have. It was an n-day at release.
But no, interestingly enough the FBI is exempt from BOD 26-04 and wasn't even obliged to update?!
Man, if not even federal agencies fix their vulns, this is all pointless.
##Recent cybersecurity threats include Atlassian patching critical vulnerabilities (CVE-2026-21589) in Jira, Confluence, and Bitbucket enabling file access. The FBI removed an Accenture contractor after a ShinyHunters breach of employee data via an unpatched Oracle PeopleSoft flaw (CVE-2026-35273). In technology, OpenAI's GPT-6 Astra model demonstrated supply-chain attack behavior in simulations. Geopolitically, the Mecca Defense Alliance committed to collective defense measures on October 5, 2026.
##Accenture, acting as a contractor for the FBI, allegedly failed to install updates for Oracle Peoplesoft after CVE-2026-35273 was published.
This was a "Missing Authentication for Critical Function" vulnerability and scored 9.8. If this didn't raise any flags, the CISA KEV listing should have. It was an n-day at release.
But no, interestingly enough the FBI is exempt from BOD 26-04 and wasn't even obliged to update?!
Man, if not even federal agencies fix their vulns, this is all pointless.
##Recent cybersecurity threats include Atlassian patching critical vulnerabilities (CVE-2026-21589) in Jira, Confluence, and Bitbucket enabling file access. The FBI removed an Accenture contractor after a ShinyHunters breach of employee data via an unpatched Oracle PeopleSoft flaw (CVE-2026-35273). In technology, OpenAI's GPT-6 Astra model demonstrated supply-chain attack behavior in simulations. Geopolitically, the Mecca Defense Alliance committed to collective defense measures on October 5, 2026.
##https://thecybersecguru.com/news/fbi-shinyhunters-breach-peoplesoft-waf-bypass/
##updated 2026-07-13T18:31:00
8 posts
1 repos
Vulnerability in Rejetto HFS Leads to Remote Code Execution, Actively Exploited
A critical authentication bypass is reported in Rejetto HFS (CVE-2026-61500) that allows remote code execution. Attackers are actively exploiting the flaw to forge administrator sessions and take control of servers.
**If you run Rejetto HTTP File Server (versions 3.0.0 to 3.2.0), update to version 3.2.1 or later right away. Attackers are already using this flaw to take full control of servers. Make sure to isolate the admin panel from internet access (use a VPN or firewall), and check your logs for unexpected admin logins or changes to the `server_code` setting, which would mean you may already be compromised.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/vulnerability-in-rejetto-hfs-leads-to-remote-code-execution-actively-exploited-h-m-g-z-y/gD2P6Ple2L
Discover how Anthropic's Mythos AI synthesized a remote code execution exploit for Rejetto HFS, exposing CVE-2026-61500 through mathematical state recovery.
#Anthropic #MythosAI #CVE202661500 #Cybersecurity #RejettoHFS
##⚠️ CRITICAL: Attackers Target Rejetto HFS Flaw That Enables Admin Session Forgery and RCE
Rejetto HFS vulnerability CVE-2026-61500 allows attackers to forge admin sessions and execute code via weak session cookie signing. Active exploitation detected in October 2026 targeting US organizations, despite a patch released in July 2026. Any unpatched HFS instance is immediately compromised.
🤖 AI generated summary
##Vulnerability in Rejetto HFS Leads to Remote Code Execution, Actively Exploited
A critical authentication bypass is reported in Rejetto HFS (CVE-2026-61500) that allows remote code execution. Attackers are actively exploiting the flaw to forge administrator sessions and take control of servers.
**If you run Rejetto HTTP File Server (versions 3.0.0 to 3.2.0), update to version 3.2.1 or later right away. Attackers are already using this flaw to take full control of servers. Make sure to isolate the admin panel from internet access (use a VPN or firewall), and check your logs for unexpected admin logins or changes to the `server_code` setting, which would mean you may already be compromised.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/vulnerability-in-rejetto-hfs-leads-to-remote-code-execution-actively-exploited-h-m-g-z-y/gD2P6Ple2L
Discover how Anthropic's Mythos AI synthesized a remote code execution exploit for Rejetto HFS, exposing CVE-2026-61500 through mathematical state recovery.
#Anthropic #MythosAI #CVE202661500 #Cybersecurity #RejettoHFS
##⚠️ CRITICAL: Attackers Target Rejetto HFS Flaw That Enables Admin Session Forgery and RCE
Rejetto HFS vulnerability CVE-2026-61500 allows attackers to forge admin sessions and execute code via weak session cookie signing. Active exploitation detected in October 2026 targeting US organizations, despite a patch released in July 2026. Any unpatched HFS instance is immediately compromised.
🤖 AI generated summary
##Rejetto HFS servers now actively scanned for critical RCE flaw
Hackers are actively scanning for a Rejetto HFS weak signing key vulnerability, tracked as CVE-2026-61500, that allows session forgery, account...
🔗️ [Bleepingcomputer] https://link.is.it/CsBrJG
##VulnCheck observed active exploitation of CVE-2026-61500 in Rejetto HFS on October 1 against US hosts. The flaw leaks weak PRNG output allowing recovery of the session signing key and forged admin sessions leading to RCE. Treat internet-exposed HFS as potentially compromised and patch and hunt now. #RejettoHfs #SessionForgery #RemoteCodeExecution
https://cyberworldops.eu/en/rejetto-hfs-attacks-exploit-predictable-session-signing-to-reach
##updated 2026-07-02T13:58:56.870000
1 posts
⚪️ CISA Warns of Critical RCE Vulnerability in MikroTik RouterOS
🗨️ The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has warned about a critical vulnerability, CVE-2026-84411, in MikroTik RouterOS. The flaw allows unauthenticated remote attackers to execute arbitrary code with root privileges or trigger a denial-of-service (DoS) condition. Exploit…
##updated 2026-06-17T10:27:33.140000
1 posts
🟠 CVE-2026-104977 - High (7.7)
Plane is an open-source project management tool. Prior to 1.4.0, the fix for CVE-2026-27706 and GHSA-jcc6-f9v6-f7jw, an SSRF in work-item link unfurling shipped in v1.2.2, remains incomplete in the v1.3.1 GA release. Any authenticated project memb...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-104977/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-06-17T10:02:07.007000
2 posts
4 repos
https://github.com/fox-it/citrix-netscaler-triage
https://github.com/lex1010/CVE-2025-6543
https://github.com/grupooruss/Citrix-cve-2025-6543
https://github.com/abrewer251/CVE-2025-6543_CitrixNetScaler_PoC
🏆 New Achievement! Phase Two Has Already Started!
RAID ALERT. RAID ALERT. NetScaler has entered its second phase and nobody called it. CVE-2026-88779 — officially labeled a "Memory overflow, Denial of Service" — is pulling the same bait-and-switch as CVE-2025-6543 before it: DoS skin, RCE skeleton underneath. watchTowr Labs reproduced it off honeypot activity. Admins watched patched appliances reboot anyway. You wiped. Again. (1/2)
##The new Citrix Netscaler vuln from Friday is CVE-2026-88779, patch is out now and they recommend patching as soon as possible: https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697174
Although the vuln is labeled “Memory overflow vulnerability leading to Denial of Service”, that’s the same as CVE-2025–6543. You may remember that lead to RCE in the wild. Prior blog on that: https://doublepulsar.com/citrix-forgot-to-tell-you-cve-2025-6543-has-been-used-as-a-zero-day-since-may-2025-d76574e2dd2c
##updated 2026-06-17T07:43:17.830000
1 posts
90 repos
https://github.com/hackingetico21/revisaxzutils
https://github.com/Mustafa1986/CVE-2024-3094
https://github.com/stevehenderson/lab_xz_backdoor
https://github.com/r0binak/xzk8s
https://github.com/robertdebock/ansible-role-cve_2024_3094
https://github.com/iheb2b/CVE-2024-3094-Checker
https://github.com/byinarie/CVE-2024-3094-info
https://github.com/24Owais/threat-intel-cve-2024-3094
https://github.com/Ava-Vispilio/CVE-2024-3094
https://github.com/robertdfrench/ifuncd-up
https://github.com/buluma/ansible-role-cve_2024_3094
https://github.com/M1lo25/CS50FinalProject
https://github.com/devjanger/CVE-2024-3094-XZ-Backdoor-Detector
https://github.com/spidygal/CVE-2024-3094-Nmap-NSE-script
https://github.com/wgetnz/CVE-2024-3094-check
https://github.com/encikayelwhitehat-glitch/CVE-2024-3094
https://github.com/michalAshurov/writeup-CVE-2024-3094
https://github.com/dah4k/CVE-2024-3094
https://github.com/Dermot-lab/TryHack
https://github.com/HackerHermanos/CVE-2024-3094_xz_check
https://github.com/pentestfunctions/CVE-2024-3094
https://github.com/ElinaNotElina/cve-2024-3094-analysis
https://github.com/Security-Phoenix-demo/CVE-2024-3094-fix-exploits
https://github.com/neuralinhibitor/xzwhy
https://github.com/KaminaDuck/ansible-CVE-2024-3094
https://github.com/ThomRgn/xzutils_backdoor_obfuscation
https://github.com/nnatsopoulos/xz-backdoor-research
https://github.com/Titus-soc/-CVE-2024-3094-Vulnerability-Checker-Fixer-Public
https://github.com/felipecosta09/cve-2024-3094
https://github.com/0xlane/xz-cve-2024-3094
https://github.com/przemoc/xz-backdoor-links
https://github.com/namegabevictoire01-sys/cs50-cybersecurity-final-project
https://github.com/Yuma-Tsushima07/CVE-2024-3094
https://github.com/isuruwa/CVE-2024-3094
https://github.com/brinhosa/CVE-2024-3094-One-Liner
https://github.com/h3raklez/CVE-2024-3094
https://github.com/gustavorobertux/CVE-2024-3094
https://github.com/hackura/xz-cve-2024-3094
https://github.com/Preacher98/Report-XZ-Utils-CVE-2024-3094
https://github.com/ashwani95/CVE-2024-3094
https://github.com/AndreaCicca/Sicurezza-Informatica-Presentazione
https://github.com/hazemkya/CVE-2024-3094-checker
https://github.com/jbnetwork-git/CVE-2024-3094-XZ-Utils-Check
https://github.com/gensecaihq/CVE-2024-3094-Vulnerability-Checker-Fixer
https://github.com/vesjolyjd/Kaspersky_CVE-2024-3094
https://github.com/TheTorjanCaptain/CVE-2024-3094-Checker
https://github.com/mightysai1997/CVE-2024-3094-info
https://github.com/laxmikumari615/Linux---Security---Detect-and-Mitigate-CVE-2024-3094
https://github.com/harekrishnarai/xz-utils-vuln-checker
https://github.com/Michel-DV/xz-utils-backdoor-case-study
https://github.com/FabioBaroni/CVE-2024-3094-checker
https://github.com/MrBUGLF/XZ-Utils_CVE-2024-3094
https://github.com/BOSE122/CVE-2024-3094
https://github.com/ackemed/detectar_cve-2024-3094
https://github.com/shefirot/CVE-2024-3094
https://github.com/vnchk1/sec_review_cve-2024-3094
https://github.com/been22426/CVE-2024-3094
https://github.com/weltregie/liblzma-scan
https://github.com/mhicairo-hue/cs50-cybersecurity-final-project
https://github.com/mrk336/CVE-2024-3094
https://github.com/zpxlz/CVE-2024-3094
https://github.com/ScrimForever/CVE-2024-3094
https://github.com/Ikram124/CVE-2024-3094-analysis
https://github.com/extracoding-dozen/CVE-2024-3094
https://github.com/Bella-Bc/xz-backdoor-CVE-2024-3094-Check
https://github.com/MagpieRYL/CVE-2024-3094-backdoor-env-container
https://github.com/Fractal-Tess/CVE-2024-3094
https://github.com/0xBlackash/CVE-2024-3094
https://github.com/galacticquest/cve-2024-3094-detect
https://github.com/badsectorlabs/ludus_xz_backdoor
https://github.com/OpensourceICTSolutions/xz_utils-CVE-2024-3094
https://github.com/lypd0/CVE-2024-3094-Vulnerabity-Checker
https://github.com/bsekercioglu/cve2024-3094-Checker
https://github.com/emirkmo/xz-backdoor-github
https://github.com/teyhouse/CVE-2024-3094
https://github.com/hariskhalil555000-sketch/What-utility-does-CVE-2024-3094-refer-to-
https://github.com/Horizon-Software-Development/CVE-2024-3094
https://github.com/valeriot30/cve-2024-3094
https://github.com/Juul/xz-backdoor-scan
https://github.com/x-cmd-build/xz
https://github.com/jfrog/cve-2024-3094-tools
https://github.com/mesutgungor/xz-backdoor-vulnerability
https://github.com/Simplifi-ED/CVE-2024-3094-patcher
https://github.com/amlweems/xzbot
https://github.com/mightysai1997/CVE-2024-3094
https://github.com/robertdebock/ansible-playbook-cve-2024-3094
https://github.com/lockness-Ko/xz-vulnerable-honeypot
https://github.com/fevar54/Detectar-Backdoor-en-liblzma-de-XZ-utils-CVE-2024-3094-
As development shifts toward modular architecture, software supply chain attacks have become a top priority for security teams. Our latest analysis breaks down the technical mechanics of recent critical vulnerabilities like CVE-2024-3094 and Log4j. Stay ahead of the threat actors. 🛡️ Read the full deep-dive: https://cvedatabase.com/blog/the-invisible-threat-a-deep-dive-analysis-of-software-supply-chain-attacks-2026-09-30 #CyberSecurity #SupplyChain #InfoSec #DevSecOps #CVE
##updated 2026-06-15T18:31:25
1 posts
Fortra Patches Command Injection Flaw in BoKS Core PAM
Fortra fixed a command injection vulnerability (CVE-2026-9862) in its BoKS Core PAM that allows unauthenticated remote code execution. The flaw targets the autoregistration service and can lead to full system compromise.
**If you use Fortra BoKS Core 8.1 or 9.0, apply Fortra's security update ASAP. Attackers are already scanning for exposed systems and can take full control without a password. If you can't patch immediately, turn off the `boks_autoregisterd` service and block port 6507 so only trusted systems can reach it.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/fortra-patches-command-injection-flaw-in-boks-core-pam-b-3-y-6-0/gD2P6Ple2L
updated 2026-06-04T00:31:26
1 posts
3 repos
https://github.com/XsanFlip/POC-CVE-2026-48842
Roundcube Webmail SQL Injection Vulnerability CVE-2026-48842 Under Active Exploitation
Roundcube Webmail high-severity SQL injection vulnerability (CVE-2026-48842) in its virtuser_query plugin is being actively exploited, allowing unauthenticated attackers to compromise databases and steal sensitive email data.
**If you run Roundcube Webmail (common in cPanel and other web hosting), update immediately to version 1.6.16 or 1.7.1. The flaw is actively exploited to steal mail, passwords and accounts. If you can't update right away, disable the `virtuser_query` plugin, and check your database logs for anything unusual, since you may already have been breached.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/roundcube-webmail-sql-injection-vulnerability-cve-2026-48842-under-active-exploitation-o-t-j-p-f/gD2P6Ple2L
updated 2026-05-08T19:26:58
1 posts
5 repos
https://github.com/codeb0ssx/CVE-2026-42589xCVE-2026-40281-PoC
https://github.com/0xgh057r3c0n/CVE-2026-40281
https://github.com/MRdark-ops/CVE-2026-40281-exploit
🚨 Public exploit released for CVE-2026-40281 affecting Gotenberg
https://github.com/MRdark-ops/CVE-2026-40281-exploit
A proof-of-concept exploit has been published for CVE-2026-40281, a critical unauthenticated remote code execution vulnerability affecting Gotenberg versions prior to 8.31.0.
The flaw affects Gotenberg’s PDF metadata handling and can allow a remote attacker to inject commands through crafted metadata values sent to the /forms/pdfengines/metadata/write endpoint. No authentication or user interaction is required.
Key details:
⠀
• CVE-2026-40281
• CVSS: 9.1 Critical
• Gotenberg < 8.31.0 affected
• Unauthenticated remote code execution
• Network exploitable
• Low attack complexity
• Public PoC now available
• Fixed in Gotenberg 8.31.0
⠀
The published exploit supports vulnerability detection, single-command execution and an interactive shell against vulnerable instances.
Organizations running affected Gotenberg deployments should upgrade to version 8.31.0 or later.
💥 No delays. No guessing. No redactions. Get the intel threat actors see, the moment they post it. darkwebinformer.com/pricing
##updated 2025-10-22T00:34:11
1 posts
1 repos
Un simple message Twitch a suffi à exécuter du code sur la machine d'un streamer : overlay affichant le chat en HTML brut, Chromium embarqué dans OBS sans sandbox, faille V8 déjà exploitée (CVE-2024-7971). ⬇️
https://news.humancoders.com/t/securite/items/67445-comment-un-message-twitch-a-permis-l-execution-de
updated 2025-10-22T00:33:23
3 posts
📰 "ClingSTUN" Botnet Exploits IoT Devices Using STUN Protocol for C2
New 'ClingSTUN' botnet targets routers & DVRs, exploiting flaws like CVE-2021-35394. Uniquely uses STUN protocol for C2 comms to evade detection, turning devices into proxy nodes. #Botnet #Malware #IoT #ClingSTUN
##⚠️ CRITICAL: Realtek Jungle SDK Exploit Attempts Deliver Cling Botnet With STUN-Based C2
Threat actors are actively exploiting CVE-2021-35394 in Realtek Jungle SDK to deploy the Cling botnet, which uses STUN protocol traffic to hide C2 communications as legitimate NAT traversal. Affected devices include routers and DVRs running vulnerable Realtek firmware. The malware achieves persiste…
🤖 AI generated summary
##⚠️ CRITICAL: Realtek Jungle SDK Exploit Attempts Deliver Cling Botnet With STUN-Based C2
Threat actors are actively exploiting CVE-2021-35394 in Realtek Jungle SDK to deploy the Cling botnet, which uses STUN protocol traffic to hide C2 communications as legitimate NAT traversal. Affected devices include routers and DVRs running vulnerable Realtek firmware. The malware achieves persiste…
🤖 AI generated summary
##updated 2025-10-22T00:31:50
1 posts
50 repos
https://github.com/L4r1k/CitrixNetscalerTriageScript
https://github.com/aqhmal/CVE-2019-19781
https://github.com/onSec-fr/CVE-2019-19781-Forensic
https://github.com/Castaldio86/Detect-CVE-2019-19781
https://github.com/MalwareTech/CitrixHoneypot
https://github.com/b510/CVE-2019-19781
https://github.com/hyunjin0334/CVE-2019-19781
https://github.com/oways/CVE-2019-19781
https://github.com/unknowndevice64/Exploits_CVE-2019-19781
https://github.com/trustedsec/cve-2019-19781
https://github.com/EliusHHimel/citrix-honeypot
https://github.com/jas502n/CVE-2019-19781
https://github.com/becrevex/Citrix_CVE-2019-19781
https://github.com/redscan/CVE-2019-19781
https://github.com/yukar1z0e/CVE-2019-19781
https://github.com/pwn3z/CVE-2019-19781-Citrix
https://github.com/digitalgangst/massCitrix
https://github.com/tpdlshdmlrkfmcla/CVE-2019-19781
https://github.com/hollerith/CVE-2019-19781
https://github.com/w4fz5uck5/CVE-2019-19781-CitrixRCE
https://github.com/0xams/citrixvulncheck
https://github.com/zgelici/CVE-2019-19781-Checker
https://github.com/autocode07/cisagov__check-cve-2019-19781.4142e02b
https://github.com/mekhalleh/citrix_dir_traversal_rce
https://github.com/34zY/APT-Backpack
https://github.com/projectzeroindia/CVE-2019-19781
https://github.com/cisagov/check-cve-2019-19781
https://github.com/awesome-security/citrixmash_scanner
https://github.com/citrix/ioc-scanner-CVE-2019-19781
https://github.com/Azeemering/CVE-2019-19781-DFIR-Notes
https://github.com/jamesjguthrie/Shitrix-CVE-2019-19781
https://github.com/andripwn/CVE-2019-19781
https://github.com/k-fire/CVE-2019-19781-exploit
https://github.com/digitalshadows/CVE-2019-19781_IOCs
https://github.com/j81blog/ADC-19781
https://github.com/qiong-qi/CVE-2019-19781-poc
https://github.com/r4ulcl/CVE-2019-19781
https://github.com/L4r1k/CitrixNetscalerAnalysis
https://github.com/VladRico/CVE-2019-19781
https://github.com/darren646/CVE-2019-19781POC
https://github.com/mandiant/ioc-scanner-CVE-2019-19781
https://github.com/zerobytesecure/CVE-2019-19781
https://github.com/LeapBeyond/cve_2019_19781
https://github.com/ianxtianxt/CVE-2019-19781
https://github.com/DanielWep/CVE-NetScalerFileSystemCheck
https://github.com/nmanzi/webcvescanner
https://github.com/mpgn/CVE-2019-19781
@GossiTheDog @jsmall I know but I'm interested not just in CVE-2026-88779. I'm interested in all the recent Netscaler exploits that can be reached via port 443. My honeypot is quite old; it handles only CVE-2019-19781. I couldn't find any good technical write-ups for CVE-2026-88779 - only for CVE-2026-88771 and CVE-2026-88772 but the latter isn't for port 443.
##A ChatGPT macOS vulnerability, CVE-2026-100754, let local code run commands through a trusted OpenAI process. OpenAI fixed it on Sept 25.
#ChatGPT #macOS #OpenAI #CVE2026100754 #PatrickWardle #AppSecurity #Vulnerability #MacSecurity
https://meterpreter.org/chatgpt-macos-vulnerability/?utm_source=mastodon&utm_medium=jetpack_social
##A ChatGPT macOS vulnerability, CVE-2026-100754, let local code run commands through a trusted OpenAI process. OpenAI fixed it on Sept 25.
#ChatGPT #macOS #OpenAI #CVE2026100754 #PatrickWardle #AppSecurity #Vulnerability #MacSecurity
https://meterpreter.org/chatgpt-macos-vulnerability/?utm_source=mastodon&utm_medium=jetpack_social
##CVE-2026-82531: CRITICAL code injection bug in smarty-php Smarty (<4.5.8, 5.0.0<5.8.5). Exploitation enables remote PHP code execution via forged nocache markers. Patch to 4.5.8/5.8.5 ASAP. https://radar.offseq.com/threat/cve-2026-82531-improper-control-of-generation-of-code-code-injection-in-smarty-php-smarty-eb57bcca29bb7350 #OffSeq #CVE #infosec #php
##CVE-2026-82531: CRITICAL code injection bug in smarty-php Smarty (<4.5.8, 5.0.0<5.8.5). Exploitation enables remote PHP code execution via forged nocache markers. Patch to 4.5.8/5.8.5 ASAP. https://radar.offseq.com/threat/cve-2026-82531-improper-control-of-generation-of-code-code-injection-in-smarty-php-smarty-eb57bcca29bb7350 #OffSeq #CVE #infosec #php
##Dell PowerEdge : une faille critique permet d’exécuter du code en tant que root sur les serveurs https://www.it-connect.fr/dell-system-update-faille-critique-cve-2026-86360/ #ActuCybersécurité #Cybersécurité #Vulnérabilité #Dell
##Dell issued an advisory for CVE-2026-86360, a path-traversal flaw in System Update CLI allowing unauthenticated remote filesystem access and root code execution. It matters because DSU typically runs privileged, turning remote access into full compromise. Update immediately and audit exposed hosts. #DellSecurity #PathTraversal #PrivEsc
https://cyberworldops.eu/en/critical-dell-system-update-flaw-opens-a-remote-path-to-root-access
##https://fawkes.rocks/2026/10/05/dell-system-update-flaw-cve-2026-86360-grants-root-access/
##Twenty CRM vulnerability CVE-2026-105763 (CVSS 9.6) enables plaintext password disclosure of IMAP and SMTP accounts. Upgrade to 2.7.0.
#TwentyCRM #CRM #CVE2026105763 #GraphQL #CredentialLeak #OpenSource #EmailSecurity #Vulnerability
##CVE-2026-105763 (CRITICAL): twentyhq twenty CRM v1.20.10 – 2.7.0 exposes plaintext IMAP/SMTP/CalDAV creds to any workspace user via GraphQL. Upgrade to 2.7.0 to prevent mail/calendar compromise. https://radar.offseq.com/threat/cve-2026-105763-cwe-522-insufficiently-protected-credentials-in-twentyhq-twenty-8c5491429285ac63 #OffSeq #Vuln #CRM #twentyhq
##IBM fixes 25 Langflow vulnerabilities, including critical RCE flaw CVE-2026-104334 (CVSS 9.8). Upgrade to Langflow 1.12.3 now.
#Langflow #IBM #AISecurity #CVE2026104334 #CVE202693674 #RCE #LLM #Vulnerability
##AMD RCCL vulnerability CVE-2026-43598 in the ROCm Communication Collectives Library could allow RCE on Instinct GPUs. Update to ROCm 7.14.
#AMD #ROCm #RCCL #CVE202643598 #AMDInstinct #GPUSecurity #AISecurity #Vulnerability
##🔴 CVE-2026-105637 - Critical (9.6)
Plane is an open-source project management tool. Prior to 1.4.0, ProjectBulkAssetEndpoint.post in apps/api/plane/app/views/asset/v2.py retrieves assets using id__in=asset_ids and workspace__slug=slug but does not constrain the query with project_i...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-105637/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-105744 - High (7.5)
Docling simplifies document processing by parsing diverse formats and providing integrations with the generative AI ecosystem. From 2.94.0 until 2.132.0, callers that opt into LatexBackendOptions(tikz_engine="tectonic") invoke docling/backend/late...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-105744/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-105740 - Critical (9.9)
Langflow is a tool for building and deploying AI-powered agents and workflows. Prior to 1.9.0, any authenticated Langflow user can achieve Remote Code Execution (RCE) on the server by adding an MCP server with the "Stdio" transport. The user-suppl...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-105740/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-105697 - Critical (9.9)
Langflow is a tool for building and deploying AI-powered agents and workflows. Before Langflow 1.10.3, the MCP stdio transport launched whatever command / args a user put in an MCP server configuration, with no allowlist and (before 1.10.3) wrappe...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-105697/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-105650 - High (8.1)
Ghost is a Node.js content management system. From 2.1.0 until 6.64.0, embedding a URL from an attacker-controlled website could result in untrusted scripts being stored in post content. These scripts could run in the Ghost editor, on the publishe...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-105650/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-105675 - High (7.5)
Ghost is a Node.js content management system. From 4.39.0 until 6.64.0, staff users with permission to view staff invites were able to discover the secret token of pending invites, including invites for roles with higher privileges than their own....
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-105675/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-105634 - High (8.1)
Plane is an open-source project management tool. Prior to 1.3.0, the ProjectMemberViewSet.partial_update method allows any project member, including a user with the lowest GUEST role, to modify another project member's role. The authorization chec...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-105634/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-105641 - Critical (9.8)
Plane is an open-source project management tool. Prior to 1.4.0, the deployments/aio/community/ and deployments/cli/community/ manifests provide fixed, publicly known SECRET_KEY and LIVE_SERVER_SECRET_KEY defaults that remain active when operators...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-105641/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-105640 - Critical (9.1)
Plane is an open-source project management tool. Prior to 1.4.0, Plane trusts email addresses returned by Gitea OAuth and by self-managed GitLab OAuth deployments where email confirmation is disabled, without verifying that the provider authentica...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-105640/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-105639 - Critical (9.8)
Plane is an open-source project management tool. Prior to 1.4.0, Plane's signup flow creates a logged-in User row for any submitted email without an out-of-band ownership check, while User.email is unique=True. The authenticated user can call GET ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-105639/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-104979 - High (8.7)
Plane is an open-source project management tool. Prior to 1.4.0, IntakeIssuePublicViewSet.create in Plane v1.3.1 writes description_html through Issue.objects.create(...) without calling validate_html_content from nh3. Any authenticated user, incl...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-104979/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-104978 - High (8.2)
Plane is an open-source project management tool. Prior to 1.4.0, Plane's project invitation list endpoint is accessible to any authenticated user who knows the workspace slug and project ID, while the public project invitation join endpoint accept...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-104978/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-104977 - High (7.7)
Plane is an open-source project management tool. Prior to 1.4.0, the fix for CVE-2026-27706 and GHSA-jcc6-f9v6-f7jw, an SSRF in work-item link unfurling shipped in v1.2.2, remains incomplete in the v1.3.1 GA release. Any authenticated project memb...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-104977/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-105628 - High (7.6)
Plane is an open-source project management tool. Prior to 1.4.0, Plane's OAuth avatar synchronization flow fetches avatar_url from provider user data through a server-side HTTP request without internal IP validation and follows redirects by defaul...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-105628/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-105631 - High (7.5)
Plane is an open-source project management tool. Prior to 1.4.0, WorkspaceFileAssetEndpoint.get and WorkspaceAssetDownloadEndpoint.get resolve FileAsset records within a workspace without checking membership in the asset's project, allowing a work...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-105631/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-104970 - High (8.1)
Plane is an open-source project management tool. From 0.13 until 1.4.0, InstanceAdminSignUpEndpoint in apps/api/plane/license/api/views/admin.py:89-117, 173-229 uses InstanceAdmin.objects.first() for the first-admin check and performs account crea...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-104970/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-12171 - High (7.8)
auto-changelog before 2.6.1 merges configuration from inside the target repository (the .auto-changelog file and the auto-changelog key in package.json) into its options, and honors security-sensitive options from that untrusted source. The handle...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-12171/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-19184 - High (8.4)
The NXP GAU ADC driver (drivers/adc/adc_mcux_gau_adc.c) validated the caller-supplied sequence->buffer_size, which is expressed in bytes, against the number of active channels, which is a sample count. It then stored that byte count directly in da...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-19184/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-104891 - High (7.5)
mppx-condition-gate provides conditional free-access wrappers for mppx payment methods. Prior to @insumermodel/mppx-condition-gate 3.0.0 and @insumermodel/mppx-token-gate 1.0.4, the packages read a wallet address from the client-supplied credentia...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-104891/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##Discover the details of Kiteworks CVE-2026-54154, a critical vulnerability in the Email Protection Gateway allowing remote code execution and root access.
#Kiteworks #Cybersecurity #Vulnerability #CVE202654154 #RemoteCodeExecution
##🟠 CVE-2026-19185 - High (7.8)
The system-call verifier for i3c_do_ccc() in drivers/i3c/i3c_handlers.c validated the outer struct i3c_ccc_payload, the broadcast ccc.data buffer and the targets.payloads[] array, but did not validate the per-target data buffers those array elemen...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-19185/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##