##
Updated at UTC 2026-10-01T17:20:59.900820
| CVE | CVSS | EPSS | Posts | Repos | Nuclei | Updated | Description |
|---|---|---|---|---|---|---|---|
| CVE-2026-79896 | 7.5 | 0.00% | 2 | 0 | 2026-10-01T16:17:59.940000 | Fortra BoKS Manager contains an out-of-bounds read vulnerability in the custom T | |
| CVE-2026-14157 | 0 | 0.00% | 1 | 0 | 2026-10-01T16:17:40.980000 | Use of an Externally Controlled Format String in the ASUS Router modules allow a | |
| CVE-2026-12627 | 9.8 | 0.00% | 2 | 0 | 2026-10-01T16:17:40.480000 | Fortra's Core Privileged Access Manager (BoKS) contains a stack-based buffer ove | |
| CVE-2026-101283 | 0 | 0.43% | 1 | 0 | 2026-10-01T16:17:32.460000 | iperf3 3.20–3.21 (esnet/iperf) has a pre-auth heap buffer overflow in decrypt_rs | |
| CVE-2026-102831 | 8.1 | 0.20% | 1 | 0 | 2026-10-01T15:20:42 | ## Description JupyterLab 4.5.0 enabled copying and pasing cells through the sy | |
| CVE-2026-97297 | 7.6 | 0.00% | 2 | 0 | 2026-10-01T15:17:38.960000 | Subscriber Broken Access Control in Gratisfaction <= 4.6.3 versions. | |
| CVE-2026-97284 | 8.8 | 0.00% | 2 | 0 | 2026-10-01T15:17:38.807000 | Contributor PHP Object Injection in Icegram <= 3.1.31 versions. | |
| CVE-2026-97277 | 7.6 | 0.00% | 2 | 0 | 2026-10-01T15:17:38.380000 | Subscriber Broken Access Control in Social Boost <= 3.6.2 versions. | |
| CVE-2026-92966 | 9.1 | 0.00% | 1 | 1 | 2026-10-01T15:17:35.830000 | The The Appointment Booking Plugin – LatePoint | Calendar & Scheduling for WordP | |
| CVE-2026-79901 | 9.9 | 0.00% | 2 | 0 | 2026-10-01T15:17:32.163000 | In deployments using BoKS keytab management, affected versions of boks_keytabmd | |
| CVE-2024-58388 | 7.5 | 0.00% | 2 | 0 | 2026-10-01T15:17:17.347000 | Sharp (and Toshiba Tec rebranded) multifunction printers contain an unauthentica | |
| CVE-2026-66246 | 8.8 | 0.00% | 2 | 0 | 2026-10-01T15:07:27.747000 | iControl is affected by a Broken Access Control vulnerability, which could allow | |
| CVE-2026-62059 | 7.6 | 0.00% | 2 | 1 | 2026-10-01T14:34:35.357000 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injecti | |
| CVE-2026-102115 | 9.8 | 0.53% | 1 | 0 | 2026-10-01T14:17:15.510000 | Kiteworks Core did not correctly validate a parameter submitted to the password | |
| CVE-2026-102427 | 10.0 | 0.84% | 1 | 1 | 2026-10-01T13:46:23.090000 | Joomla Extension - ordasoft.com - Unauthenticated Remote Code Execution in OrdaS | |
| CVE-2026-7175 | 0 | 0.00% | 1 | 0 | 2026-10-01T13:04:49.340000 | CVE-2026-7175: the Business Name parameter in the /promoters/edit endpoint of th | |
| CVE-2025-41753 | 9.8 | 0.00% | 1 | 0 | 2026-10-01T13:01:47.180000 | The object name of a dynamically created BACnet File Object is interpreted as a | |
| CVE-2026-7174 | None | 0.00% | 1 | 0 | 2026-10-01T12:31:22 | CVE-2026-7174: Stored Cross-Site Scripting vulnerability in Entradium, by Crocan | |
| CVE-2026-7176 | None | 0.00% | 1 | 0 | 2026-10-01T12:31:22 | CVE-2026-7176: the Help text and Title parameters in the endpoint /events/<event | |
| CVE-2026-7173 | None | 0.00% | 1 | 0 | 2026-10-01T12:31:17 | CVE-2026-7173: Cross-Site Scripting vulnerability in Entradium, by Crocantickets | |
| CVE-2026-103655 | None | 0.00% | 2 | 0 | 2026-10-01T09:30:42 | MISP contains a vulnerability in its two-factor authentication (TOTP) verificati | |
| CVE-2026-78210 | None | 0.00% | 2 | 0 | 2026-10-01T06:31:25 | In affected versions of Octopus Server, users with certain scoped permission set | |
| CVE-2026-76504 | 9.8 | 1.10% | 20 | 1 | 2026-10-01T04:18:19.193000 | A vulnerability in the API session-based authentication management of Cisco Cata | |
| CVE-2026-47600 | 7.8 | 0.19% | 1 | 0 | 2026-10-01T04:18:18.747000 | NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the | |
| CVE-2026-13313 | None | 0.00% | 3 | 0 | 2026-10-01T03:31:14 | An Active Debug Code vulnerability in certain ASUS router models allows a remote | |
| CVE-2026-102823 | 7.5 | 0.26% | 1 | 0 | 2026-09-30T23:27:18 | ### Summary CVE-2026-68930 was fixed by adding `Session::is_established_channel( | |
| CVE-2026-101276 | None | 0.43% | 1 | 0 | 2026-09-30T21:32:15 | iperf3 3.21 (esnet/iperf) contains a remote, unauthenticated heap use-after-free | |
| CVE-2026-76722 | 9.8 | 0.54% | 2 | 0 | 2026-09-30T21:32:03 | Uncontrolled Format string vulnerabilities exist in the affected interface of HP | |
| CVE-2026-76721 | 9.8 | 0.56% | 2 | 0 | 2026-09-30T21:32:02 | Buffer overflow vulnerability exists in the affected interface of HPE Networking | |
| CVE-2026-76723 | 9.6 | 0.31% | 1 | 0 | 2026-09-30T21:32:02 | Buffer overflow vulnerabilities exist in the affected interface of HPE Networkin | |
| CVE-2026-62146 | 7.8 | 0.15% | 1 | 1 | 2026-09-30T20:17:34.013000 | A trust-boundary flaw in CRI-O's sandbox state persistence allows attacker-influ | |
| CVE-2026-103111 | 7.6 | 0.21% | 1 | 0 | 2026-09-30T20:17:29.847000 | PCRE2 before 10.49, when there is an attacker-controlled regular expression and | |
| CVE-2026-103106 | 7.8 | 0.14% | 1 | 0 | 2026-09-30T20:17:29.517000 | Pexip Infinity before 38.2, plus 39.0, 39.1, and 40.0, is affected by improper i | |
| CVE-2026-102489 | 0 | 0.71% | 1 | 0 | 2026-09-30T19:57:08.043000 | Zammad versions 6.3.0 to 6.5.4 are vulnerable a session hijack vulnerability tha | |
| CVE-2026-79625 | 8.1 | 0.40% | 2 | 0 | 2026-09-30T19:57:08.043000 | Affected products do not properly synchronize access to their monitoring functio | |
| CVE-2026-102826 | 8.1 | 0.46% | 1 | 0 | 2026-09-30T19:56:45.443000 | simple-git, an interface for running git commands in any node.js application, en | |
| CVE-2026-102827 | 8.1 | 0.36% | 1 | 0 | 2026-09-30T19:56:45.443000 | simple-git, an interface for running git commands in any node.js application, en | |
| CVE-2026-102674 | 8.2 | 0.27% | 1 | 0 | 2026-09-30T19:38:27.293000 | Electron is a framework for writing cross-platform desktop applications using Ja | |
| CVE-2026-102490 | None | 0.32% | 1 | 0 | 2026-09-30T18:33:55 | All versions of Zammad including the latest alpha enable the local zammad user t | |
| CVE-2026-47593 | 7.8 | 0.18% | 1 | 0 | 2026-09-30T18:33:55 | NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mod | |
| CVE-2026-47592 | 7.8 | 0.19% | 1 | 0 | 2026-09-30T18:33:55 | NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the | |
| CVE-2026-47599 | 7.8 | 0.16% | 1 | 0 | 2026-09-30T18:33:54 | NVIDIA GPU Display Driver for Linux contains a vulnerability in the open-source | |
| CVE-2026-47601 | 7.8 | 0.18% | 1 | 0 | 2026-09-30T18:33:49 | NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the | |
| CVE-2026-47591 | 7.8 | 0.18% | 1 | 0 | 2026-09-30T18:18:34.637000 | NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode | |
| CVE-2026-78902 | 6.1 | 0.30% | 2 | 0 | 2026-09-30T17:23:08.953000 | Cross Site Scripting vulnerability in Netgate pfSense 26.03.1-RELEASE allows an | |
| CVE-2026-103108 | 7.5 | 0.31% | 1 | 0 | 2026-09-30T17:16:41.460000 | Pexip Infinity before 38.2, plus 39.0, 39.1, and 40.0, is affected by improper i | |
| CVE-2026-92871 | 7.5 | 0.29% | 1 | 0 | 2026-09-30T16:47:57.730000 | A NULL pointer dereference vulnerability exists in Pgpool-II, which may allow an | |
| CVE-2026-76570 | 0 | 0.50% | 2 | 1 | 2026-09-30T16:44:39.840000 | Joomla Extension - joomcode.com - Unauthenticated SQL injection in read and writ | |
| CVE-2026-103099 | 7.5 | 0.31% | 1 | 0 | 2026-09-30T16:44:39.840000 | Pexip Infinity before 41.1 is affected by improper input validation in the media | |
| CVE-2026-103105 | 8.8 | 0.18% | 1 | 0 | 2026-09-30T16:44:39.840000 | Pexip Infinity before 38.2, plus 39.0, 39.1 and 40.0, is affected by improper ac | |
| CVE-2026-103104 | 7.5 | 0.31% | 1 | 0 | 2026-09-30T16:44:39.840000 | Pexip Infinity before 38.2, plus 39.0, 39.1 and 40.0, is affected by improper in | |
| CVE-2026-103109 | 7.7 | 0.24% | 1 | 0 | 2026-09-30T16:44:39.840000 | Pexip Infinity before 38.2, plus 39.0, 39.1 and 40.0, is affected by improper in | |
| CVE-2026-102455 | 9.8 | 0.51% | 1 | 0 | 2026-09-30T16:30:42.327000 | EasyFlow .NET developed by Digiwin has a Insecure Deserialization vulnerability. | |
| CVE-2026-75098 | 7.5 | 0.90% | 1 | 0 | 2026-09-30T16:18:58.363000 | The Product Designer App plugin for WordPress is vulnerable to Directory Travers | |
| CVE-2026-18783 | 8.8 | 0.39% | 1 | 1 | 2026-09-30T16:18:57.403000 | Missing authentication for critical function vulnerability in Trex Digital Smart | |
| CVE-2026-6806 | 7.5 | 0.27% | 1 | 0 | 2026-09-30T16:18:39.783000 | The Motors – Car Dealership & Classified Listings Plugin plugin for WordPress is | |
| CVE-2026-62097 | 7.6 | 0.38% | 1 | 0 | 2026-09-30T16:17:32.973000 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injecti | |
| CVE-2026-19743 | 7.8 | 0.13% | 1 | 0 | 2026-09-30T16:17:12.610000 | Improper path validation in the local IPC service of TeamViewer Full Client and | |
| CVE-2026-102508 | 0 | 0.13% | 1 | 0 | 2026-09-30T16:14:10.347000 | Improper Verification of Cryptographic Signature and Improper Certificate Valida | |
| CVE-2026-93994 | 8.1 | 0.47% | 1 | 0 | 2026-09-30T16:13:13.493000 | Apache MINA SSHD is a Java library for client-side and server-side SSH. SSH serv | |
| CVE-2026-94053 | 9.1 | 0.55% | 1 | 0 | 2026-09-30T16:13:13.493000 | Authentication bypass via LDAP injection in component sshd-ldap in Apache MINA S | |
| CVE-2026-18782 | 9.8 | 0.58% | 1 | 1 | 2026-09-30T15:31:44 | Improper neutralization of special elements used in an SQL command ('SQL injecti | |
| CVE-2026-82307 | 9.8 | 0.47% | 1 | 0 | 2026-09-30T15:31:39 | Improper neutralization of special elements used in an SQL command ('SQL injecti | |
| CVE-2026-97240 | 7.5 | 0.42% | 1 | 0 | 2026-09-30T15:31:38 | Unauthenticated Sensitive Data Exposure in StifLi Backup Tools <= 2.2.7 versions | |
| CVE-2026-97244 | 7.5 | 0.41% | 1 | 0 | 2026-09-30T15:31:38 | Contributor Path Traversal in Creator LMS <= 1.2.19 versions. | |
| CVE-2026-96837 | 8.8 | 0.73% | 1 | 0 | 2026-09-30T15:31:37 | Contributor Remote Code Execution (RCE) in CartFlows <= 3.2.0 versions. | |
| CVE-2026-97274 | 9.8 | 0.51% | 1 | 0 | 2026-09-30T15:31:34 | Unauthenticated Bypass Vulnerability in OAuth Single Sign On – SSO (OAuth Client | |
| CVE-2026-97293 | 8.5 | 0.36% | 1 | 0 | 2026-09-30T14:18:18.460000 | Contributor SQL Injection in Media LIbrary Assistant <= 3.41 versions. | |
| CVE-2026-97287 | 8.5 | 0.36% | 1 | 0 | 2026-09-30T14:18:17.797000 | Contributor SQL Injection in Event Tickets <= 5.29.5 versions. | |
| CVE-2026-97248 | 9.8 | 0.56% | 1 | 0 | 2026-09-30T14:18:15.890000 | Unauthenticated PHP Object Injection in Booking Activities <= 1.18.7.1 versions. | |
| CVE-2026-97241 | 7.5 | 0.42% | 1 | 0 | 2026-09-30T14:18:15.073000 | Unauthenticated Sensitive Data Exposure in BackupEase <= 2.2.2 versions. | |
| CVE-2026-97197 | 7.5 | 0.39% | 1 | 0 | 2026-09-30T14:18:14.280000 | Unauthenticated Broken Access Control in WordPress Backup & Migration <= 1.6.0 v | |
| CVE-2026-102331 | 9.6 | 0.43% | 1 | 0 | 2026-09-30T13:15:08.430000 | Buffer overflow in ANGLE in Google Chrome on on Android prior to 154.0.8037.92 a | |
| CVE-2026-76992 | 7.5 | 0.57% | 2 | 0 | 2026-09-30T12:35:21 | The CODESYS Gateway Client allocates memory based on a size field in a gateway r | |
| CVE-2026-94052 | 9.1 | 0.55% | 1 | 0 | 2026-09-30T12:35:21 | A missing check in LdapPasswordAuthenticator in component sshd-ldap in Apache MI | |
| CVE-2026-94002 | 7.5 | 0.43% | 1 | 0 | 2026-09-30T12:35:16 | Possible memory exhaustion in SFTP clients (DefaultSftpClient) in component sshd | |
| CVE-2026-77185 | 9.1 | 0.51% | 2 | 0 | 2026-09-30T12:35:16 | Authentication bypass in sshd-core in Apache MINA SSHD versions 2.0.0 to 2.19.0 | |
| CVE-2026-10764 | 8.7 | 0.24% | 1 | 0 | 2026-09-30T12:35:15 | Information disclosure in BVMS 4.5 up to 12.3 including allows man-in-the-middle | |
| CVE-2026-89294 | 7.5 | 0.65% | 1 | 0 | 2026-09-30T09:31:20 | The Simply Schedule Appointments plugin for WordPress is vulnerable to Local Fil | |
| CVE-2026-92867 | 8.8 | 0.34% | 1 | 0 | 2026-09-30T09:31:20 | An out-of-bounds write vulnerability exists in Pgpool-II , which may allow an au | |
| CVE-2026-102458 | 9.8 | 0.43% | 2 | 0 | 2026-09-30T09:31:20 | EasyFlow .NET developed by Digiwin has a Missing Authentication vulnerability. U | |
| CVE-2026-97196 | 9.1 | 0.30% | 2 | 0 | 2026-09-30T09:31:11 | Improper Validation of Unsafe Equivalence in Input vulnerability in Liquid Web / | |
| CVE-2026-92870 | 7.5 | 0.32% | 1 | 0 | 2026-09-30T09:31:11 | A stack-based buffer overflow vulnerability exists in Pgpool-II, which may allow | |
| CVE-2026-103110 | 9.8 | 0.61% | 2 | 0 | 2026-09-30T06:31:42 | Pexip Infinity before 38.2, plus 39.0, 39.1 and 40.0, is affected by improper in | |
| CVE-2026-102911 | 9.9 | 1.78% | 2 | 0 | 2026-09-30T06:31:35 | A flaw has been found in zosmaai pi-llm-wiki up to 0.11.7. Affected is an unknow | |
| CVE-2026-95373 | 8.8 | 0.37% | 1 | 0 | 2026-09-30T04:18:49.650000 | Use after free in DevTools in Google Chrome prior to 154.0.8037.57 allowed a rem | |
| CVE-2026-103088 | 7.5 | 0.69% | 1 | 0 | 2026-09-30T03:31:41 | Handlebars.java before 4.5.5 allows directory traversal. In handlebars-springmvc | |
| CVE-2026-103102 | 8.6 | 0.32% | 1 | 0 | 2026-09-30T03:31:41 | Pexip Infinity before 41.0 is affected by improper input validation in the signa | |
| CVE-2026-103101 | 8.6 | 0.27% | 1 | 0 | 2026-09-30T03:31:41 | Pexip Infinity 30.0 through 40.x before 41.0 is affected by improper input valid | |
| CVE-2026-103100 | 7.5 | 0.26% | 1 | 0 | 2026-09-30T03:31:40 | Pexip Infinity before 40.1 is affected by improper input validation in the signa | |
| CVE-2026-86131 | None | 0.33% | 6 | 0 | 2026-09-30T00:32:48 | A code injection vulnerability in WatchGuard Fireware OS's BOVPN Over TLS client | |
| CVE-2026-71379 | 10.0 | 0.44% | 1 | 0 | 2026-09-30T00:32:46 | The file export endpoint allows any unauthenticated attacker to export arbitrary | |
| CVE-2026-102794 | 9.1 | 2.36% | 2 | 0 | 2026-09-30T00:32:32 | A vulnerability has been found in Ziroom ZHOME A0101 1.0.1.0. This issue affects | |
| CVE-2026-96587 | 10.0 | 0.34% | 1 | 0 | 2026-09-29T22:19:05.860000 | The Viidure Android application embeds permanent, plaintext cloud storage creden | |
| CVE-2026-96274 | 7.4 | 0.16% | 1 | 0 | 2026-09-29T22:19:05.720000 | In Baicells Nova 430H, an unauthenticated device within radio range can send a m | |
| CVE-2026-94204 | 7.5 | 0.27% | 1 | 0 | 2026-09-29T21:33:36 | The central cloud storage backend for the entire dashcam platform is misconfigur | |
| CVE-2026-95372 | 8.3 | 0.38% | 1 | 0 | 2026-09-29T21:33:22 | Use after free in Chromecast in Google Chrome prior to 154.0.8037.57 allowed a r | |
| CVE-2026-84782 | 8.2 | 0.39% | 3 | 0 | 2026-09-29T21:27:41.130000 | Issue summary: The DTLS retransmission logic does not correctly handle a handsha | |
| CVE-2026-92370 | 8.8 | 0.38% | 1 | 0 | 2026-09-29T18:31:49 | An improper access control vulnerability in TeamViewer Full Client, Host, and re | |
| CVE-2026-92368 | 7.8 | 0.14% | 1 | 0 | 2026-09-29T18:31:46 | TeamViewer Full Client and Host for Linux and macOS prior version 15.82 contain | |
| CVE-2026-102673 | 8.2 | 0.15% | 1 | 0 | 2026-09-29T18:05:37 | ### Impact Popups opened from a sandboxed iframe through a link (for example `t | |
| CVE-2026-102676 | 8.3 | 0.45% | 1 | 0 | 2026-09-29T18:02:22 | ### Impact A `<webview>` could enable Node.js integration in its Web Workers ev | |
| CVE-2026-86950 | 8.8 | 1.24% | 10 | 1 | 2026-09-29T15:32:17 | An out-of-bounds write issue was addressed with improved bounds checking. This i | |
| CVE-2026-88771 | 9.8 | 1.06% | 7 | 10 | 2026-09-29T04:18:01.603000 | Improper input validation vulnerability in Citrix NetScaler ADC and Citrix NetSc | |
| CVE-2026-88772 | 8.1 | 1.30% | 10 | 7 | 2026-09-28T12:32:09 | Vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway. This issue | |
| CVE-2026-87902 | 8.1 | 19.76% | 4 | 26 | 2026-09-28T12:20:54.040000 | An unauthenticated attacker can make `get_page_template()` page-template resolut | |
| CVE-2026-100382 | None | 0.95% | 2 | 1 | 2026-09-26T00:32:22 | Improper Neutralization of Special Elements used in an OS Command ('OS Command I | |
| CVE-2026-85706 | 10.0 | 92.96% | 1 | 14 | 2026-09-24T12:52:28.143000 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.7 | |
| CVE-2026-85102 | 9.8 | 7.55% | 3 | 0 | 2026-09-23T18:22:07.453000 | Improper certificate trust validation during VPN negotiation in Check Point Quan | |
| CVE-2026-93616 | 9.8 | 19.65% | 3 | 2 | 2026-09-23T16:38:38.987000 | A directory traversal and file upload vulnerability allows an unauthenticated at | |
| CVE-2026-93710 | 7.5 | 0.63% | 1 | 0 | 2026-09-22T21:32:15 | Dancer2 versions from 2.0.0 before 2.2.0 for Perl dispatch a route that a dying | |
| CVE-2026-88738 | 8.8 | 0.61% | 1 | 0 | 2026-09-22T19:43:52.337000 | Jazzware RT1000 Edge webUI v. 20.0.1 contains an unrestricted file upload vulner | |
| CVE-2026-87079 | 7.5 | 0.63% | 1 | 0 | 2026-09-22T19:07:00.983000 | Net::IDN::Punycode versions before 2.590 for Perl allow CPU exhaustion via quadr | |
| CVE-2026-93556 | None | 0.30% | 2 | 0 | 2026-09-22T09:31:18 | The ‘/password/guardarClau/recover’ endpoint accepts the ‘usuariId’ parameter, w | |
| CVE-2026-94426 | 3.5 | 0.33% | 1 | 0 | 2026-09-22T00:31:02 | A vulnerability was determined in xuxueli xxl-job up to 3.5.0. The impacted elem | |
| CVE-2026-80521 | 7.8 | 0.17% | 1 | 2 | 2026-09-21T14:17:20.193000 | In the Linux kernel, the following vulnerability has been resolved: af_unix: Un | |
| CVE-2026-85046 | 8.8 | 48.88% | 1 | 8 | 2026-09-21T13:17:10.970000 | Type confusion in V8 in Google Chrome prior to 152.0.7977.82 allowed a remote at | |
| CVE-2026-63490 | 7.5 | 0.69% | 1 | 0 | 2026-09-18T20:09:01.757000 | Handlebars.java provides logic-less and semantic Mustache templates with Java. P | |
| CVE-2026-86869 | 6.5 | 0.34% | 1 | 0 | 2026-09-17T18:31:49 | An out-of-bounds write issue was addressed with improved bounds checking. This i | |
| CVE-2026-50610 | None | 0.13% | 1 | 0 | 2026-09-17T09:33:03 | A vulnerability has been identified in the Acer System Monitoring component incl | |
| CVE-2026-76460 | 10.0 | 14.03% | 1 | 1 | 2026-09-16T21:33:00 | A vulnerability in an API of Cisco Identity Services Engine (ISE) could allow an | |
| CVE-2026-76461 | 9.8 | 28.27% | 1 | 4 | 2026-09-14T21:32:49 | A vulnerability in the email parsing of Cisco AsyncOS Software for Cisco Secure | |
| CVE-2026-81578 | 9.8 | 85.17% | 1 | 2 | template | 2026-09-14T00:16:56.207000 | An improper access control vulnerability exists in the web management interface |
| CVE-2026-84869 | 9.9 | 0.92% | 1 | 0 | 2026-09-12T04:16:42.757000 | A condition in the ScreenConnect client may allow files to be transferred and ex | |
| CVE-2026-86218 | 9.8 | 12.93% | 1 | 3 | template | 2026-09-09T05:18:19.490000 | N-central is vulnerable to a pre-auth remote code execution This issue affects N |
| CVE-2026-81963 | 7.8 | 0.39% | 2 | 0 | 2026-09-08T21:34:09 | Improper link resolution before file access ('link following') in Windows Update | |
| CVE-2026-75650 | 10.0 | 3.95% | 1 | 6 | 2026-09-08T21:33:09 | Adobe Commerce is affected by an Improper Neutralization of Special Elements Use | |
| CVE-2026-70590 | 4.8 | 0.32% | 1 | 0 | 2026-09-08T20:51:43.490000 | Ghost is a Node.js content management system. Prior to 6.54.1, any staff-level u | |
| CVE-2026-60004 | 9.8 | 23.99% | 1 | 11 | 2026-09-08T17:56:31 | ### Summary Gitea's `diffpatch` endpoint can be abused to install and execute a | |
| CVE-2026-83548 | 10.0 | 8.76% | 1 | 3 | template | 2026-09-02T18:32:06 | A Pre-authentication SSRF vulnerability exists in the SMA1000 Appliance Work Pla |
| CVE-2026-83549 | 7.8 | 10.76% | 1 | 2 | 2026-09-02T18:32:06 | Post-authentication Improper Neutralization of Special Elements used in an OS Co | |
| CVE-2026-82078 | 9.1 | 61.39% | 1 | 2 | 2026-08-31T21:31:56 | An unsafe dynamic class loading vulnerability exists in the database connection | |
| CVE-2026-73570 | 8.9 | 11.74% | 5 | 10 | 2026-08-24T13:19:17.577000 | A remote code execution vulnerability exists in Zimbra Collaboration (ZCS) befor | |
| CVE-2026-64508 | None | 0.21% | 1 | 0 | 2026-08-19T18:32:01 | In the Linux kernel, the following vulnerability has been resolved: bpf: Suppor | |
| CVE-2026-64507 | 0 | 0.16% | 1 | 0 | 2026-08-19T17:20:15.123000 | In the Linux kernel, the following vulnerability has been resolved: x86/bugs: E | |
| CVE-2026-72018 | 7.8 | 0.18% | 1 | 1 | 2026-08-17T06:17:59.313000 | In the Linux kernel, the following vulnerability has been resolved: dibs: loopb | |
| CVE-2025-41739 | 5.9 | 0.35% | 1 | 0 | 2026-06-17T09:23:04.017000 | An unauthenticated remote attacker, who beats a race condition, can exploit a fl | |
| CVE-2026-35273 | 9.8 | 9.44% | 1 | 4 | template | 2026-06-12T18:31:50 | Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleS |
| CVE-2026-22755 | None | 20.44% | 1 | 0 | 2026-01-20T21:31:34 | Improper Neutralization of Special Elements used in a Command ('Command Injectio | |
| CVE-2025-41700 | 7.8 | 0.15% | 1 | 0 | 2025-12-01T12:30:34 | An unauthenticated attacker can trick a local user into executing arbitrary code | |
| CVE-2025-41738 | 7.5 | 0.39% | 1 | 0 | 2025-12-01T12:30:33 | An unauthenticated remote attacker may cause the visualisation server of the COD | |
| CVE-2025-4802 | 9.8 | 0.59% | 1 | 1 | 2025-11-03T21:34:58 | Untrusted LD_LIBRARY_PATH environment variable vulnerability in the GNU C Librar | |
| CVE-2024-6872 | 4.3 | 0.33% | 2 | 0 | 2024-08-03T12:30:40 | The Build Your Dream Website Fast with 400+ Starter Templates and Landing Pages, | |
| CVE-2026-84411 | 0 | 0.00% | 3 | 0 | N/A | ||
| CVE-2026-54154 | 0 | 0.00% | 1 | 0 | N/A | ||
| CVE-2026-72898 | 0 | 19.05% | 1 | 9 | N/A | ||
| CVE-2026-102989 | 0 | 0.00% | 1 | 0 | N/A | ||
| CVE-2026-102147 | 0 | 0.43% | 2 | 0 | N/A | ||
| CVE-2026-94545 | 0 | 0.80% | 3 | 5 | N/A | ||
| CVE-2026-102149 | 0 | 0.33% | 1 | 0 | N/A | ||
| CVE-2026-102106 | 0 | 0.64% | 1 | 0 | N/A | ||
| CVE-2026-102105 | 0 | 0.53% | 1 | 0 | N/A | ||
| CVE-2026-91881 | 0 | 0.00% | 1 | 0 | N/A | ||
| CVE-2026-43598 | 0 | 0.00% | 1 | 0 | N/A | ||
| CVE-2026-88650 | 0 | 0.00% | 1 | 0 | N/A | ||
| CVE-2026-94603 | 0 | 0.00% | 1 | 0 | N/A | ||
| CVE-2026-102530 | 0 | 0.00% | 1 | 0 | N/A | ||
| CVE-2026-12345 | 0 | 0.18% | 2 | 0 | N/A |
updated 2026-10-01T16:17:59.940000
2 posts
🟠 CVE-2026-79896 - High (7.5)
Fortra BoKS Manager contains an out-of-bounds read vulnerability in the custom TLS ClientHello parser used by boks_portmux. A remote unauthenticated attacker can submit a malformed ClientHello and terminate boks_portmux. Although the daemon is nor...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-79896/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-79896 - High (7.5)
Fortra BoKS Manager contains an out-of-bounds read vulnerability in the custom TLS ClientHello parser used by boks_portmux. A remote unauthenticated attacker can submit a malformed ClientHello and terminate boks_portmux. Although the daemon is nor...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-79896/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-01T16:17:40.980000
1 posts
ASUS Routers hit by CRITICAL vuln: CVE-2026-14157 (CVSS 9.4). Remote authenticated users can execute arbitrary commands via crafted file upload in web interface. Restrict access, monitor closely. https://radar.offseq.com/threat/cve-2026-14157-cwe-134-use-of-externally-controlled-format-string-in-asus-router-2ad64f03a537627f #OffSeq #CVE202614157 #ASUS #Vuln #BlueTeam
##updated 2026-10-01T16:17:40.480000
2 posts
🔴 CVE-2026-12627 - Critical (9.8)
Fortra's Core Privileged Access Manager (BoKS) contains a stack-based buffer overflow vulnerability in boks_autoregisterd. A remote attacker with network access to the autoregistration service may be able to trigger memory corruption during client...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-12627/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-12627 - Critical (9.8)
Fortra's Core Privileged Access Manager (BoKS) contains a stack-based buffer overflow vulnerability in boks_autoregisterd. A remote attacker with network access to the autoregistration service may be able to trigger memory corruption during client...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-12627/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-01T16:17:32.460000
1 posts
CVE-2026-101283: CRITICAL heap buffer overflow in esnet iperf3 (v3.20 & v3.21). Unauthenticated attackers can trigger memory corruption via decrypt_rsa_message(). Upgrade to 3.22 ASAP. https://radar.offseq.com/threat/cve-2026-101283-cwe-122-heap-based-buffer-overflow-in-esnet-iperf3-1608d23cd8415ceb #OffSeq #CVE2026101283 #infosec #vulnerability
##updated 2026-10-01T15:20:42
1 posts
🟠 CVE-2026-102831 - High (8.1)
JupyterLab is an extensible environment for interactive and reproducible computing, based on the Jupyter Notebook Architecture. From JupyterLab 4.5.0 until 4.5.11 and 4.6.4, from Notebook 7.5.0 until 7.6.3, and from JupyterLite Core 0.7.0 until 0....
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-102831/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-01T15:17:38.960000
2 posts
🟠 CVE-2026-97297 - High (7.6)
Subscriber Broken Access Control in Gratisfaction <= 4.6.3 versions.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97297/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-97297 - High (7.6)
Subscriber Broken Access Control in Gratisfaction <= 4.6.3 versions.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97297/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-01T15:17:38.807000
2 posts
🟠 CVE-2026-97284 - High (8.8)
Contributor PHP Object Injection in Icegram <= 3.1.31 versions.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97284/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-97284 - High (8.8)
Contributor PHP Object Injection in Icegram <= 3.1.31 versions.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97284/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-01T15:17:38.380000
2 posts
🟠 CVE-2026-97277 - High (7.6)
Subscriber Broken Access Control in Social Boost <= 3.6.2 versions.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97277/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-97277 - High (7.6)
Subscriber Broken Access Control in Social Boost <= 3.6.2 versions.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97277/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-01T15:17:35.830000
1 posts
1 repos
CVE-2026-92966: CRITICAL code injection in LatePoint Appointment Booking Plugin (<=5.7.0) for WordPress. Unauthenticated attackers can inject & execute shortcodes, risking full site compromise. Disable plugin or restrict access until patched. https://radar.offseq.com/threat/cve-2026-92966-cwe-94-improper-control-of-generation-of-code-code-injection-in-latepoint-appointment-0d4b3da3082989fe #OffSeq #WordPress #CVE202692966
##updated 2026-10-01T15:17:32.163000
2 posts
🔴 CVE-2026-79901 - Critical (9.9)
In deployments using BoKS keytab management, affected versions of boks_keytabmd generate Active Directory service-account passwords from a predictable pseudo-random sequence seeded with the current Unix timestamp. An attacker who knows the service...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-79901/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-79901 - Critical (9.9)
In deployments using BoKS keytab management, affected versions of boks_keytabmd generate Active Directory service-account passwords from a predictable pseudo-random sequence seeded with the current Unix timestamp. An attacker who knows the service...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-79901/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-01T15:17:17.347000
2 posts
Fuck this bullshit. This 2024 CVE was just published today. Which, fine, whatever. It happens. Except it specifically says it was observed EITW in July 2024.
https://www.cve.org/CVERecord?id=CVE-2024-58388
Exploitation evidence was first observed by the Shadowserver Foundation on 2024-07-30.
Witholding a CVE for something known to be EITW for over two years is fucking bullshit. Especially when the PoC was published in June 2024:
https://pierrekim.github.io/blog/2024-06-27-sharp-mfp-17-vulnerabilities.html#pre-auth-lfi
But at least there's a Nuclei template:
##Fuck this bullshit. This 2024 CVE was just published today. Which, fine, whatever. It happens. Except it specifically says it was observed EITW in July 2024.
https://www.cve.org/CVERecord?id=CVE-2024-58388
Exploitation evidence was first observed by the Shadowserver Foundation on 2024-07-30.
Witholding a CVE for something known to be EITW for over two years is fucking bullshit. Especially when the PoC was published in June 2024:
https://pierrekim.github.io/blog/2024-06-27-sharp-mfp-17-vulnerabilities.html#pre-auth-lfi
But at least there's a Nuclei template:
##updated 2026-10-01T15:07:27.747000
2 posts
🟠 CVE-2026-66246 - High (8.8)
iControl is affected by a Broken Access Control vulnerability, which could allow an attacker to exploit missing authentication checks or insecure direct object references (IDOR), enabling privilege escalation and the unauthorized modification or d...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66246/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-66246 - High (8.8)
iControl is affected by a Broken Access Control vulnerability, which could allow an attacker to exploit missing authentication checks or insecure direct object references (IDOR), enabling privilege escalation and the unauthorized modification or d...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66246/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-01T14:34:35.357000
2 posts
1 repos
https://github.com/Hassham1/CVE-2026-62059-ultimate-member-sqli-poc
🟠 CVE-2026-62059 - High (7.6)
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Ultimate Member Ultimate Member ultimate-member allows Blind SQL Injection.This issue affects Ultimate Member: from n/a through 2.13.1.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-62059/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-62059 - High (7.6)
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Ultimate Member Ultimate Member ultimate-member allows Blind SQL Injection.This issue affects Ultimate Member: from n/a through 2.13.1.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-62059/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-01T14:17:15.510000
1 posts
Kiteworks vulnerabilities fixed in 9.5.1 include CVE-2026-102115, a 9.8 password reset flaw that enables admin account takeover. Patch now.
#Kiteworks #KiteworksVulnerabilities #CVE2026102115 #CVE2026102149 #CVE2026102147 #EmailSecurity #SSRF #PatchNow
https://securityonline.info/kiteworks-vulnerabilities/?utm_source=mastodon&utm_medium=jetpack_social
##updated 2026-10-01T13:46:23.090000
1 posts
1 repos
🔴 New security advisory:
CVE-2026-102427 affects multiple systems.
• Impact: Remote code execution or complete system compromise possible
• Risk: Attackers can gain full control of affected systems
• Mitigation: Patch immediately or isolate affected systems
Full breakdown:
https://www.yazoul.net/advisory/cve/cve-2026-102427-joomla-cck-unauthenticated-rce-poc
by Yazoul AI
##updated 2026-10-01T13:04:49.340000
1 posts
🚨 EUVD-2026-90745
📊 Score: 4.8/10 (CVSS v3.1)
📦 Product: Entradium
🏢 Vendor: Crocantickets
📅 Updated: 2026-10-01
📝 CVE-2026-7175: the Business Name parameter in the /promoters/edit endpoint of the My Profile section of a promoter’s profile, which allows the injection of JavaScript code that will execute on the promoter’s public page;
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-90745
##updated 2026-10-01T13:01:47.180000
1 posts
🔒 New CSAF advisory published
VDE-2025-102
WAGO: Multiple Devices are affected by a Vulnerability in BACnet IP Stack
CVE-2025-41753
Multiple WAGO devices are affected by a vulnerability in the dynamic creation of BACnet File Objects. The object name is used as a file path without sufficient validation and is not restricted to the intend…
HTML: https://certvde.com/en/advisories/VDE-2025-102
CSAF JSON: https://wago.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2025-102.json
updated 2026-10-01T12:31:22
1 posts
🚨 EUVD-2026-90744
📊 Score: 4.8/10 (CVSS v3.1)
📦 Product: Entradium
🏢 Vendor: Crocantickets
📅 Updated: 2026-10-01
📝 CVE-2026-7174: Stored Cross-Site Scripting vulnerability in Entradium, by Crocantickets. Specifically, in the Name and Field parameters of the endpoint /tools/discount_wizard/discount_config during the process of creating discounts assigned to an eve...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-90744
##updated 2026-10-01T12:31:22
1 posts
🚨 EUVD-2026-90746
📊 Score: 4.8/10 (CVSS v3.1)
📦 Product: Entradium
🏢 Vendor: Crocantickets
📅 Updated: 2026-10-01
📝 CVE-2026-7176: the Help text and Title parameters in the endpoint /events/<event_name>-<event_city>/custom_form/edit during the process of creating or modifying forms associated with ticket sales for an event, which allows for the injection of JavaSc...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-90746
##updated 2026-10-01T12:31:17
1 posts
🚨 EUVD-2026-90743
📊 Score: 4.8/10 (CVSS v3.1)
📦 Product: Entradium
🏢 Vendor: Crocantickets
📅 Updated: 2026-10-01
📝 CVE-2026-7173: Cross-Site Scripting vulnerability in Entradium, by Crocantickets. Exploitation of this vulnerability could allow a remote attacker to send a specially crafted URL to the victim and steal their session data.
* (Stored XSS) The City...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-90743
##updated 2026-10-01T09:30:42
2 posts
This is an interesting vuln and one that can be a great example of why a sev:CRIT may not be high priority.
sev:CRIT 9.3 - CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N
##MISP contains a vulnerability in its two-factor authentication (TOTP) verification process that permits a valid one-time code to be accepted more than once within its time-based validity window. The issue exists in the user login flow where a TOTP code is verified as a second authentication factor. Because the system did not record whether a given TOTP period had already been consumed, the same code remained valid for its entire time window (typically 30 seconds). An attacker who captures a legitimate code during a user's login could replay it to authenticate a second session as that user. Preconditions: - The target user has TOTP-based two-factor authentication enabled. - The attacker is in a position to observe or intercept the TOTP code during a legitimate login (e.g., network-level interception, shoulder surfing, or a compromised client). - The replay must occur within the TOTP validity period. Security impact: - Unauthorized account access by replaying a captured one-time code. - Potential compromise of threat-intelligence data and administrative functions accessible to the targeted user. Affected versions: <v2.5.48.
This is an interesting vuln and one that can be a great example of why a sev:CRIT may not be high priority.
sev:CRIT 9.3 - CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N
##MISP contains a vulnerability in its two-factor authentication (TOTP) verification process that permits a valid one-time code to be accepted more than once within its time-based validity window. The issue exists in the user login flow where a TOTP code is verified as a second authentication factor. Because the system did not record whether a given TOTP period had already been consumed, the same code remained valid for its entire time window (typically 30 seconds). An attacker who captures a legitimate code during a user's login could replay it to authenticate a second session as that user. Preconditions: - The target user has TOTP-based two-factor authentication enabled. - The attacker is in a position to observe or intercept the TOTP code during a legitimate login (e.g., network-level interception, shoulder surfing, or a compromised client). - The replay must occur within the TOTP validity period. Security impact: - Unauthorized account access by replaying a captured one-time code. - Potential compromise of threat-intelligence data and administrative functions accessible to the targeted user. Affected versions: <v2.5.48.
updated 2026-10-01T06:31:25
2 posts
CVE-2026-78210: HIGH severity in Octopus Server (CVSS 7.1) lets users with scoped permissions execute unauthorized scripts in certain environments. Patch status unknown — minimize permissions and monitor for updates. https://radar.offseq.com/threat/cve-2026-78210-cwe-863-incorrect-authorization-in-octopus-deploy-octopus-server-50d97dfe20efe99c #OffSeq #OctopusDeploy #Vuln #CVE202678210
##CVE-2026-78210: HIGH severity in Octopus Server (CVSS 7.1) lets users with scoped permissions execute unauthorized scripts in certain environments. Patch status unknown — minimize permissions and monitor for updates. https://radar.offseq.com/threat/cve-2026-78210-cwe-863-incorrect-authorization-in-octopus-deploy-octopus-server-50d97dfe20efe99c #OffSeq #OctopusDeploy #Vuln #CVE202678210
##updated 2026-10-01T04:18:19.193000
20 posts
1 repos
https://github.com/ShadowForge-Cyber/CVE-2026-76504-Proof-of-concept
Critical Threat Advisory: Cisco Catalyst SD-WAN Manager (CVE-2026-76504)
CISA’s active exploitation verification of CVE-2026-76504 demands an immediate, high-priority posture adjustment across all Cisco Catalyst SD-WAN Manager…...
https://thecybermind.co/2026/10/01/cve-2026-76504-catalyst-sd-wan-manager-4/
##CISA Flags Exploited Cisco SD-WAN Flaw
A critical vulnerability in Cisco SD-WAN Manager, known as CVE-2026-76504, has been flagged by CISA and is being actively exploited, allowing hackers to gain admin-level access with a CVSS score of 9.8. This hex encoding flaw could let unauthenticated attackers remotely access and control affected systems.
https://osintsights.com/cisa-flags-exploited-cisco-sd-wan-flaw?utm_source=mastodon&utm_medium=social
#CiscoSdwan #Cve202676504 #Cisa #ExploitedVulnerabilities #KnownExploitedVulnerabilities
##Critical Threat Advisory: Cisco Catalyst SD-WAN Manager (CVE-2026-76504)
CISA’s active exploitation verification of CVE-2026-76504 demands an immediate, high-priority posture adjustment across all Cisco Catalyst SD-WAN Manager…...
https://thecybermind.co/2026/10/01/cve-2026-76504-catalyst-sd-wan-manager-3/
##Critical Threat Advisory: Cisco Catalyst SD-WAN Manager (CVE-2026-76504)
Strategic Threat Advisory: CVE-2026-76504 Affected Vendor & Product: Cisco - Catalyst SD-WAN Manager Vulnerability Class (CWE):...
https://thecybermind.co/2026/10/01/cve-2026-76504-catalyst-sd-wan-manager-2/
##Critical Threat Advisory: Cisco Catalyst SD-WAN Manager (CVE-2026-76504)
Threat Advisory: CVE-2026-76504 Affected Vendor/Product: Cisco - Catalyst SD-WAN Manager Vulnerability Type (CWE): N/A Operational Threat Level:...
https://thecybermind.co/2026/10/01/cve-2026-76504-catalyst-sd-wan-manager/
##Critical Threat Advisory: Cisco Catalyst SD-WAN Manager (CVE-2026-76504)
CISA’s active exploitation verification of CVE-2026-76504 demands an immediate, high-priority posture adjustment across all Cisco Catalyst SD-WAN Manager…...
https://thecybermind.co/2026/10/01/cve-2026-76504-catalyst-sd-wan-manager-4/
##Critical Threat Advisory: Cisco Catalyst SD-WAN Manager (CVE-2026-76504)
CISA’s active exploitation verification of CVE-2026-76504 demands an immediate, high-priority posture adjustment across all Cisco Catalyst SD-WAN Manager…...
https://thecybermind.co/2026/10/01/cve-2026-76504-catalyst-sd-wan-manager-3/
##Critical Threat Advisory: Cisco Catalyst SD-WAN Manager (CVE-2026-76504)
Strategic Threat Advisory: CVE-2026-76504 Affected Vendor & Product: Cisco - Catalyst SD-WAN Manager Vulnerability Class (CWE):...
https://thecybermind.co/2026/10/01/cve-2026-76504-catalyst-sd-wan-manager-2/
##Critical Threat Advisory: Cisco Catalyst SD-WAN Manager (CVE-2026-76504)
Threat Advisory: CVE-2026-76504 Affected Vendor/Product: Cisco - Catalyst SD-WAN Manager Vulnerability Type (CWE): N/A Operational Threat Level:...
https://thecybermind.co/2026/10/01/cve-2026-76504-catalyst-sd-wan-manager/
##Cisco Patches Actively Exploited Zero-Day in Catalyst SD-WAN Manager
Cisco released security updates for a zero-day vulnerability (CVE-2026-76504) in Catalyst SD-WAN Manager that attackers are actively exploiting to gain admin privileges. The flaw allows unauthenticated remote access to the management API through URI encoding bypasses.
**If you run Cisco Catalyst SD-WAN Manager, make sure it is isolated from the internet and reachable from trusted networks only, then patch it ASAP to the fixed version for your release (or migrate if you're on anything older than 20.9). Before patching, save an admin-tech file and check the logs for suspicious j_security_check requests or activity from viptela-reserved- accounts. If you find any, assume your whole SD-WAN network is compromised and call in incident response.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/cisco-patches-actively-exploited-zero-day-in-catalyst-sd-wan-manager-2-0-z-t-k/gD2P6Ple2L
🚨 [CISA-2026:0930] CISA Adds One Known Exploited Vulnerability to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0930)
CISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2026-76504 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76504)
- Name: Cisco Catalyst SD-WAN Manager Hex Encoding Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Cisco
- Product: Catalyst SD-WAN Manager
- Notes: https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-webauth-xr8beuuU ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-76504
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260930 #cisa20260930 #cve_2026_76504 #cve202676504
##Cisco confirmed active exploitation of CVE-2026-76504, an authentication bypass in Catalyst SD-WAN Manager API session handling. It allows unauthenticated remote admin access, enabling full control of SD-WAN fabrics. Prioritize patching and review management-plane logs for abuse. #CiscoSecurity #SdWan #AuthBypass
https://cyberworldops.eu/en/cisco-sd-wan-authentication-flaw-gives-remote-attackers-full
##🚨 Cisco warns critical SD-WAN Manager zero-day is actively exploited
CVE-2026-76504 is a critical authentication bypass affecting Cisco Catalyst SD-WAN Manager.
The flaw allows an unauthenticated remote attacker to send a crafted HTTP request that bypasses an API authentication rule and grants access with admin privileges.
⠀
The vulnerability carries a CVSS score of 9.8 and affects the product regardless of its configuration.
Cisco became aware of active exploitation in September after investigating a support case.
⠀
There are no workarounds. Administrators should install a fixed release immediately and investigate internet-facing systems for signs of compromise.
Well would you look at that; it's Cisco 0-day o'clock again.
https://ifin.network/t/cve-2026-76504-cisco-sd-wan-auth-bypass-actively-exploited/874
##CVE ID: CVE-2026-76504
Vendor: Cisco
Product: Catalyst SD-WAN Manager
Date Added: 2026-09-30
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-76504
https://fawkes.rocks/2026/09/30/cisco-sd-wan-manager-zero-day-cve-2026-76504-exploited/
##🏆 New Achievement! Unauthenticated and Loving It!
Welcome to Module 7: API Authentication and Why Your Vendor Forgot To Include It. Today's learning objective is CVE-2026-76504, a critical zero-day in Cisco Catalyst SD-WAN Manager. Attackers are actively exploiting a flaw in the API authentication mechanism to gain full administrator privileges on your systems. Without a username. Without a password. Without so much as a polite knock. (1/3)
##New advisory, new flaw.
Cisco: CRITICAL CVE-2026-76504: Cisco Catalyst SD-WAN Manager API Authentication Bypass Vulnerability https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-webauth-xr8beuuU @TalosSecurity #Cisco
More on that Cisco vulnerability:
Rapid7: Critical Cisco Catalyst SD-WAN Manager API authentication bypass exploited in the wild (CVE-2026-76504) https://www.rapid7.com/blog/post/etr-critical-cisco-catalyst-sd-wan-manager-api-authentication-bypass-exploited-in-the-wild-cve-2026-76504/ @Rapid7Official
Also:
Broadcom has several advisories today, three of them addressing critical vulnerabilities https://support.broadcom.com/web/ecx/security-advisory #Broadcom #infosec #vulnerability
##Cisco warns of new SD-WAN zero-day exploited in attacks
Cisco released security updates to address a critical zero-day in the Catalyst SD-WAN Manager (tracked as CVE-2026-76504) that attackers are...
🔗️ [Bleepingcomputer] https://link.is.it/cZgOkH
##Attackers exploit CVE-2026-76504, a 9.8 authentication bypass in Cisco SD-WAN Manager that grants admin API access. Patch now.
#Cisco #SDWAN #CVE202676504 #AuthenticationBypass #ActivelyExploited #CyberSecurity
##updated 2026-10-01T04:18:18.747000
1 posts
🟠 CVE-2026-47600 - High (7.8)
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer where an error-handling path could operate on an improperly initialized resource. A successful exploit of this vulnerability might lead to code execu...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-47600/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-10-01T03:31:14
3 posts
CVE-2026-13313 (HIGH, CVSS 8.9) in ASUS routers: Authenticated attackers can enable Telnet via debug code, gaining root command execution. Restrict management access & monitor Telnet until patch info is released. https://radar.offseq.com/threat/cve-2026-13313-cwe-489-active-debug-code-in-asus-router-57f2c007e7c82b59 #OffSeq #ASUS #Infosec #Vuln
##CVE-2026-13313 (HIGH, CVSS 8.9) in ASUS routers: Authenticated attackers can enable Telnet via debug code, gaining root command execution. Restrict management access & monitor Telnet until patch info is released. https://radar.offseq.com/threat/cve-2026-13313-cwe-489-active-debug-code-in-asus-router-57f2c007e7c82b59 #OffSeq #ASUS #Infosec #Vuln
##Learn how to patch critical ASUS security vulnerabilities like CVE-2026-13313 to protect your routers and motherboards from severe network exploits.
##updated 2026-09-30T23:27:18
1 posts
🟠 CVE-2026-102823 - High (7.5)
Russh is a Rust SSH client and server library. Prior to 0.63.1, client_read_authenticated in russh/src/client/encrypted.rs forwards CHANNEL_DATA, CHANNEL_EXTENDED_DATA, CHANNEL_EOF, CHANNEL_CLOSE, CHANNEL_OPEN_FAILURE, CHANNEL_SUCCESS, CHANNEL_FAI...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-102823/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T21:32:15
1 posts
CVE-2026-101276: esnet iperf3 3.21 suffers a CRITICAL remote use-after-free (CVSS 9.2). Unauthenticated attackers can trigger memory corruption or RCE. Upgrade to 3.22+ now. Details: https://radar.offseq.com/threat/cve-2026-101276-cwe-416-use-after-free-in-esnet-iperf3-8a664a87c0e694fb #OffSeq #CVE2026101276 #iperf3 #infosec
##updated 2026-09-30T21:32:03
2 posts
HPE fixed 18 HPE Instant ON vulnerabilities in its access points, including CVSS 9.8 RCE flaws CVE-2026-76721 and CVE-2026-76722. Update to 3.4.2.0.
#HPE #InstantON #HPENetworking #CVE202676721 #WiFiSecurity #AccessPoint #RCE #PatchNow
##🔴 CVE-2026-76722 - Critical (9.8)
Uncontrolled Format string vulnerabilities exist in the affected interface of HPE Networking Instant ON APs that could allow an unauthenticated remote attacker to run arbitrary commands on the underlying host. Successful exploitation could result ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-76722/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T21:32:02
2 posts
HPE fixed 18 HPE Instant ON vulnerabilities in its access points, including CVSS 9.8 RCE flaws CVE-2026-76721 and CVE-2026-76722. Update to 3.4.2.0.
#HPE #InstantON #HPENetworking #CVE202676721 #WiFiSecurity #AccessPoint #RCE #PatchNow
##🔴 CVE-2026-76721 - Critical (9.8)
Buffer overflow vulnerability exists in the affected interface of HPE Networking Instant ON that could allow an unauthenticated remote attacker to run arbitrary code on the underlying host. Successful exploitation could allow an attacker to execut...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-76721/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T21:32:02
1 posts
🔴 CVE-2026-76723 - Critical (9.6)
Buffer overflow vulnerabilities exist in the affected interface of HPE Networking Instant ON APS that could allow an unauthenticated adjacent attacker to achieve remote code execution. Successful exploitation could allow an attacker to execute arb...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-76723/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T20:17:34.013000
1 posts
1 repos
🟠 CVE-2026-62146 - High (7.8)
A trust-boundary flaw in CRI-O's sandbox state persistence allows attacker-influenced pod metadata to overwrite CRI-O's own reserved sandbox bookkeeping; once reloaded as trusted after a restart, a later container recreate in that sandbox can expo...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-62146/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T20:17:29.847000
1 posts
🟠 CVE-2026-103111 - High (7.6)
PCRE2 before 10.49, when there is an attacker-controlled regular expression and certain JIT API usage, allows an out-of-bounds write with arbitrary data.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-103111/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T20:17:29.517000
1 posts
🟠 CVE-2026-103106 - High (7.8)
Pexip Infinity before 38.2, plus 39.0, 39.1, and 40.0, is affected by improper input validation within an internal Pexip Infinity service that allows an attacker with local access to escalate privileges to root. Exploitation requires an attacker t...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-103106/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T19:57:08.043000
1 posts
🏆 New Achievement! Root in the Wild!
Observe the Zammad ticketing system in its natural habitat — quietly managing support queues, utterly unaware it carries two zero-days, CVE-2026-102489 and CVE-2026-102490, like a doomed species bearing a genetic flaw it cannot name. An autonomous AI agent, patient and efficient as a nature film's apex predator, chained the pair together: session hijack, remote code execution, root escalation — all in mere seconds. The herd had no warning. (1/2)
##updated 2026-09-30T19:57:08.043000
2 posts
🟠 CVE-2026-79625 - High (8.1)
Affected products do not properly synchronize access to their monitoring functionality. When multiple clients send concurrent requests, this may lead to incorrect reads or writes, or to corruption of internal memory structures. An authenticated re...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-79625/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔒 New CSAF advisory published
VDE-2026-097
CODESYS Control Runtime - Improper Synchronization in Monitoring
CVE-2026-79625
The monitoring functionality of affected CODESYS Control runtime systems processes read and write requests to PLC application data sent by the CODESYS Development System and other clients suc…
HTML: https://www.certvde.com/en/advisories/VDE-2026-097/
CSAF JSON: https://codesys.csaf-tp.certvde.com/.well-known/csaf/white/2026/advisory2026-12_vde-2026-097.json
updated 2026-09-30T19:56:45.443000
1 posts
🟠 CVE-2026-102826 - High (8.1)
simple-git, an interface for running git commands in any node.js application, enables applications to execute Git operations from JavaScript. Prior to 4.0.0, the default blockUnsafeOperationsPlugin does not completely reject configuration includes...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-102826/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T19:56:45.443000
1 posts
🟠 CVE-2026-102827 - High (8.1)
simple-git, an interface for running git commands in any node.js application, enables applications to execute Git operations from JavaScript. Prior to 4.0.0, the default blockUnsafeOperationsPlugin compares parsed option names with literal dangero...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-102827/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T19:38:27.293000
1 posts
Five high-severity Electron vulnerabilities, including CVE-2026-102676, CVE-2026-102673 and CVE-2026-102674, weaken sandbox isolation. Update Electron now.
#Electron #ElectronJS #CVE2026102676 #AppSecurity #Sandbox #JavaScript #DesktopApps #PatchNow
##updated 2026-09-30T18:33:55
1 posts
🏆 New Achievement! Root in the Wild!
Observe the Zammad ticketing system in its natural habitat — quietly managing support queues, utterly unaware it carries two zero-days, CVE-2026-102489 and CVE-2026-102490, like a doomed species bearing a genetic flaw it cannot name. An autonomous AI agent, patient and efficient as a nature film's apex predator, chained the pair together: session hijack, remote code execution, root escalation — all in mere seconds. The herd had no warning. (1/2)
##updated 2026-09-30T18:33:55
1 posts
🟠 CVE-2026-47593 - High (7.8)
NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer where an unprivileged user can cause an out-of-bounds write. A successful exploit of this vulnerability might lead to code execution, escalation of privileges,...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-47593/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T18:33:55
1 posts
🟠 CVE-2026-47592 - High (7.8)
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer where an unprivileged user could cause an out-of-bounds read. A successful exploit of this vulnerability might lead to code execution, denial of serv...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-47592/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T18:33:54
1 posts
🟠 CVE-2026-47599 - High (7.8)
NVIDIA GPU Display Driver for Linux contains a vulnerability in the open-source kernel module where an unprivileged local user could cause improper preservation of memory access permissions during DMA mapping. A successful exploit of this vulnerab...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-47599/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T18:33:49
1 posts
🟠 CVE-2026-47601 - High (7.8)
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the open-source kernel module DMA-BUF import path where an unprivileged local user could cause improper preservation of memory access permissions when importing a read-onl...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-47601/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T18:18:34.637000
1 posts
🟠 CVE-2026-47591 - High (7.8)
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where an unprivileged user could bypass read-only memory protection due to incorrect authorization, enabling write access to memory marked read-only. A successfu...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-47591/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T17:23:08.953000
2 posts
@hlux @bkastl Im Prinzip stimmt das mit meiner Wahrnehmung überein, vor allem im Vergleich mit Citrix, Ivanti, Fortinet, Cisco. Aber auch hier gab's neulich was Spannendes: https://www.netspi.com/blog/technical-blog/web-application-pentesting/cve-2026-78902-xss-to-rce-in-pfsense-with-one-dns-request/
##@hlux @bkastl Im Prinzip stimmt das mit meiner Wahrnehmung überein, vor allem im Vergleich mit Citrix, Ivanti, Fortinet, Cisco. Aber auch hier gab's neulich was Spannendes: https://www.netspi.com/blog/technical-blog/web-application-pentesting/cve-2026-78902-xss-to-rce-in-pfsense-with-one-dns-request/
##updated 2026-09-30T17:16:41.460000
1 posts
🟠 CVE-2026-103108 - High (7.5)
Pexip Infinity before 38.2, plus 39.0, 39.1, and 40.0, is affected by improper input validation in the media implementation that allows a remote attacker to trigger a software abort resulting in a denial of service
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-103108/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T16:47:57.730000
1 posts
🟠 CVE-2026-92871 - High (7.5)
A NULL pointer dereference vulnerability exists in Pgpool-II, which may allow an unauthenticated attacker to cause abnormal termination of the watchdog process.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-92871/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T16:44:39.840000
2 posts
1 repos
🚨 New security advisory:
CVE-2026-76570 affects multiple systems.
• Impact: Remote code execution or complete system compromise possible
• Risk: Attackers can gain full control of affected systems
• Mitigation: Patch immediately or isolate affected systems
Full breakdown:
https://www.yazoul.net/advisory/cve/cve-2026-76570-joomla-jctables-sqli-reads-and-writes-data-poc
by Yazoul AI
##New. This relates to CVE-2026-76570.
VulnCheck: JCTables for Joomla: When "Already Escaped" Means Injectable https://www.vulncheck.com/blog/jctables-unauthenticated-sql-rw-to-rce @vulncheck #infoec #vulnerability #SQL
##updated 2026-09-30T16:44:39.840000
1 posts
🟠 CVE-2026-103099 - High (7.5)
Pexip Infinity before 41.1 is affected by improper input validation in the media implementation that allows a remote attacker to trigger a software abort resulting in a denial of service.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-103099/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T16:44:39.840000
1 posts
🟠 CVE-2026-103105 - High (8.8)
Pexip Infinity before 38.2, plus 39.0, 39.1 and 40.0, is affected by improper access control on a product-internal API which allows an attacker with local access to a node within a Pexip Infinity installation to execute arbitrary code as an unpriv...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-103105/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T16:44:39.840000
1 posts
🟠 CVE-2026-103104 - High (7.5)
Pexip Infinity before 38.2, plus 39.0, 39.1 and 40.0, is affected by improper input validation in the media implementation which allows a remote attacker to trigger a software abort resulting in a denial of service.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-103104/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T16:44:39.840000
1 posts
🟠 CVE-2026-103109 - High (7.7)
Pexip Infinity before 38.2, plus 39.0, 39.1 and 40.0, is affected by improper input validation in the media implementation that allows a remote attacker to trigger memory corruption or a software abort resulting in a denial of service. A crafted m...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-103109/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T16:30:42.327000
1 posts
🔴 CVE-2026-102455 - Critical (9.8)
EasyFlow .NET developed by Digiwin has a Insecure Deserialization vulnerability. Unauthenticated remote attackers can execute arbitrary code on the server by sending maliciously crafted serialized content.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-102455/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T16:18:58.363000
1 posts
🟠 CVE-2026-75098 - High (7.5)
The Product Designer App plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 1.1.3 via the 'svg' parameter parameter. This makes it possible for unauthenticated attackers to read the contents of arbitrar...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-75098/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T16:18:57.403000
1 posts
1 repos
https://github.com/Hasanuyarrr/CVE-2026-18783-TREX-MES-Uygulamalarinda-Yetkisiz-Nesne-Erisimi
🟠 CVE-2026-18783 - High (8.8)
Missing authentication for critical function vulnerability in Trex Digital Smart Manufacturing Systems Inc. Trex MES allows Authentication Bypass.
This issue affects Trex MES: through 2026-09-29.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-18783/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T16:18:39.783000
1 posts
🟠 CVE-2026-6806 - High (7.5)
The Motors – Car Dealership & Classified Listings Plugin plugin for WordPress is vulnerable to time-based blind SQL Injection via the 'stm_lat/stm_lng' parameter in all versions up to, and including, 1.4.109 due to insufficient escaping on the u...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-6806/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T16:17:32.973000
1 posts
🟠 CVE-2026-62097 - High (7.6)
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WPTasty Business Directory business-directory-plugin allows Blind SQL Injection.This issue affects Business Directory: from n/a through 6.4.27.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-62097/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T16:17:12.610000
1 posts
Update to 15.82 now. Five high-severity TeamViewer vulnerabilities include CVE-2026-92370, CVE-2026-19743 and CVE-2026-92368 in Full Client and Host.
#TeamViewer #RemoteAccess #CVE202692370 #PrivilegeEscalation #Windows #Linux #macOS #PatchNow
##updated 2026-09-30T16:14:10.347000
1 posts
A critical Apache PLC4X vulnerability, CVE-2026-102508, lets attackers impersonate OPC UA servers and steal credentials. Upgrade to PLC4X 1.0.0 now.
#ApachePLC4X #PLC4X #OPCUA #CVE2026102508 #ICSSecurity #OTSecurity #PLC #Apache
##updated 2026-09-30T16:13:13.493000
1 posts
🟠 CVE-2026-93994 - High (8.1)
Apache MINA SSHD is a Java library for client-side and server-side SSH. SSH servers can be configured to require multi-authentication schemes, for instance two different public keys, not just one. In OpenSSH, this would be done by setting in sshd_...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93994/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T16:13:13.493000
1 posts
🔴 CVE-2026-94053 - Critical (9.1)
Authentication bypass via LDAP injection in component sshd-ldap in Apache MINA SSHD versions 1.2.0 to 2.19.0 and 3.0.0-M1 to 3.0.0-M5.
Apache MINA SSHD is a Java library for client-side and server-side SSH.
The optional sshd-ldap component p...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94053/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T15:31:44
1 posts
1 repos
https://github.com/Hasanuyarrr/CVE-2026-18782-TREX-MES-Uygulamalarinda-SQL-Zafiyeti
🔴 CVE-2026-18782 - Critical (9.8)
Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Trex Digital Smart Manufacturing Systems Inc. Trex MES allows Command Line Execution through SQL Injection.
This issue affects Trex MES: through...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-18782/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T15:31:39
1 posts
🔴 CVE-2026-82307 - Critical (9.8)
Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Dolusoft Software Technologies SOPLOG allows SQL Injection.
This issue affects SOPLOG: before Soplog 2026.9.4.1.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-82307/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T15:31:38
1 posts
🟠 CVE-2026-97240 - High (7.5)
Unauthenticated Sensitive Data Exposure in StifLi Backup Tools <= 2.2.7 versions.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97240/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T15:31:38
1 posts
🟠 CVE-2026-97244 - High (7.5)
Contributor Path Traversal in Creator LMS <= 1.2.19 versions.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97244/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T15:31:37
1 posts
🟠 CVE-2026-96837 - High (8.8)
Contributor Remote Code Execution (RCE) in CartFlows <= 3.2.0 versions.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-96837/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T15:31:34
1 posts
🔴 CVE-2026-97274 - Critical (9.8)
Unauthenticated Bypass Vulnerability in OAuth Single Sign On – SSO (OAuth Client) <= 7.1.2 versions.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97274/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T14:18:18.460000
1 posts
🟠 CVE-2026-97293 - High (8.5)
Contributor SQL Injection in Media LIbrary Assistant <= 3.41 versions.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97293/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T14:18:17.797000
1 posts
🟠 CVE-2026-97287 - High (8.5)
Contributor SQL Injection in Event Tickets <= 5.29.5 versions.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97287/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T14:18:15.890000
1 posts
🔴 CVE-2026-97248 - Critical (9.8)
Unauthenticated PHP Object Injection in Booking Activities <= 1.18.7.1 versions.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97248/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T14:18:15.073000
1 posts
🟠 CVE-2026-97241 - High (7.5)
Unauthenticated Sensitive Data Exposure in BackupEase <= 2.2.2 versions.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97241/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T14:18:14.280000
1 posts
🟠 CVE-2026-97197 - High (7.5)
Unauthenticated Broken Access Control in WordPress Backup & Migration <= 1.6.0 versions.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97197/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T13:15:08.430000
1 posts
Google's Chrome security update 154.0.8037.92 fixes 33 flaws, including critical ANGLE bug CVE-2026-102331 and six V8 issues. Update Chrome now.
#Chrome #GoogleChrome #ChromeSecurityUpdate #CVE2026102331 #V8 #BrowserSecurity #ANGLE #PatchNow
##updated 2026-09-30T12:35:21
2 posts
🟠 CVE-2026-76992 - High (7.5)
The CODESYS Gateway Client allocates memory based on a size field in a gateway response without enforcing an appropriate upper limit. An unauthenticated remote attacker controlling a malicious gateway can exploit this behavior to trigger excessive...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-76992/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔒 New CSAF advisory published
VDE-2026-094
CODESYS Gateway Client - Uncontrolled Memory Allocation
CVE-2026-76992
The CODESYS Gateway Client (CmpGatewayClient) is used by various CODESYS products to establish PLC communication via the CODESYS Gateway.
Due to missing limits on memory allocations derived from a si…
HTML: https://www.certvde.com/en/advisories/VDE-2026-094/
CSAF JSON: https://codesys.csaf-tp.certvde.com/.well-known/csaf/white/2026/advisory2026-11_vde-2026-094.json
updated 2026-09-30T12:35:21
1 posts
🔴 CVE-2026-94052 - Critical (9.1)
A missing check in LdapPasswordAuthenticator in component sshd-ldap in Apache MINA SSHD versions 1.2.0 to 2.19.0 or 3.0.0-M1 to 3.0.0-M5 bypassed authentication checks.
Apache MINA SSHD is a Java library for client-side and server-side SSH. T...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94052/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T12:35:16
1 posts
🟠 CVE-2026-94002 - High (7.5)
Possible memory exhaustion in SFTP clients (DefaultSftpClient) in component sshd-sftp in Apache MINA SSHD versions 0.9.0 to 2.19.0 and 3.0.0-M1 to 3.0.0-M5.
Apache
MINA SSHD is a Java library for client-side and server-side SSH. The sshd-sftp...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94002/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T12:35:16
2 posts
🔴 CVE-2026-77185 - Critical (9.1)
Authentication bypass in sshd-core in Apache MINA SSHD versions 2.0.0 to 2.19.0 and 3.0.0-M1 to 3.0.0-M5 for a certain (presumed rare) way to implement an SSH server.
Apache MINA SSHD is a Java library for client- and server-side SSH. In the s...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77185/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##Apache MINA SSHD auth bypass (CVE-2026-77185, CRITICAL, CVSS 9.1): Async public-key/hostbased auth can be skipped, risking full SSH compromise. Affected: 2.0.0 – 2.19.x, 3.0.0-M1 – M5. Patch to 2.20.0/3.0.0-M6. https://radar.offseq.com/threat/cve-2026-77185-cwe-305-authentication-bypass-by-primary-weakness-in-apache-software-foundation-apache-18a51f96ab18bde1 #OffSeq #Apache #Infosec
##updated 2026-09-30T12:35:15
1 posts
🟠 CVE-2026-10764 - High (8.7)
Information disclosure in BVMS 4.5 up to 12.3 including allows man-in-the-middle attackers to gain unauthorized access to sensitive data.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-10764/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T09:31:20
1 posts
🟠 CVE-2026-89294 - High (7.5)
The Simply Schedule Appointments plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.6.12.27 via the 'ssa_locale' parameter parameter. This makes it possible for authenticated attackers, with subscrib...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89294/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T09:31:20
1 posts
🟠 CVE-2026-92867 - High (8.8)
An out-of-bounds write vulnerability exists in Pgpool-II , which may allow an authenticated attacker to cause abnormal process termination or arbitrary code execution.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-92867/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T09:31:20
2 posts
🔴 CVE-2026-102458 - Critical (9.8)
EasyFlow .NET developed by Digiwin has a Missing Authentication vulnerability. Unauthenticated remote attackers can obtain other users' plaintext passwords through a specific API.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-102458/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CRITICAL vuln in DigiWin EasyFlow .NET (CVE-2026-102458, CVSS 9.3): Missing authentication allows remote attackers to obtain plaintext passwords via API. Affects 6.6 – 6.6.19, 8.1 – 8.1.5. Patch ASAP! https://radar.offseq.com/threat/cve-2026-102458-cwe-306-missing-authentication-for-critical-function-in-digiwin-easyflow-net-3e9316754f2dea13 #OffSeq #CVE2026_102458 #infosec #appsec
##updated 2026-09-30T09:31:11
2 posts
🔴 CVE-2026-97196 - Critical (9.1)
Improper Validation of Unsafe Equivalence in Input vulnerability in Liquid Web / StellarWP GiveWP allows Authentication Bypass.
This issue affects GiveWP: from n/a through 4.16.9.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97196/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##GiveWP (Liquid Web/StellarWP) CRITICAL vuln (CVE-2026-97196): Improper input validation leads to auth bypass (CVSS 9.1). Affects up to 4.16.9. Patch when available. Details: https://radar.offseq.com/threat/cve-2026-97196-cwe-1289-improper-validation-of-unsafe-equivalence-in-input-in-liquid-web-stellarwp-ea2f97fd9b30ac84 #OffSeq #Vulnerability #WordPress
##updated 2026-09-30T09:31:11
1 posts
🟠 CVE-2026-92870 - High (7.5)
A stack-based buffer overflow vulnerability exists in Pgpool-II, which may allow an unauthenticated attacker to cause abnormal process termination.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-92870/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T06:31:42
2 posts
CVE-2026-103110: CRITICAL out-of-bounds write in Pexip Infinity (CVSS 9.8) allows remote code execution as unprivileged user. Versions <38.2, 39.0, 39.1, 40.0 affected. Patch status unknown. See details: https://radar.offseq.com/threat/cve-2026-103110-cwe-787-out-of-bounds-write-in-pexip-infinity-cbbf16ed7e7beca0 #OffSeq #CVE #Pexip #AppSec
##🔴 CVE-2026-103110 - Critical (9.8)
Pexip Infinity before 38.2, plus 39.0, 39.1 and 40.0, is affected by improper input validation that allows a remote attacker to execute code remotely as an unprivileged user on a Pexip Infinity Conferencing Node.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-103110/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T06:31:35
2 posts
🔴 CVE-2026-102911 - Critical (9.9)
A flaw has been found in zosmaai pi-llm-wiki up to 0.11.7. Affected is an unknown function of the file mcp/index.ts of the component wiki_capture_source MCP tool. Executing a manipulation of the argument url can lead to os command injection. The a...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-102911/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-102911: zosmaai pi-llm-wiki (v0.11.0 – 0.11.7) suffers CRITICAL OS command injection in mcp/index.ts. Public exploit available — remote code execution possible. Upgrade to 0.11.8 ASAP. https://radar.offseq.com/threat/cve-2026-102911-os-command-injection-in-zosmaai-pi-llm-wiki-28aaee951c4eb21f #OffSeq #CVE2026102911 #Vuln #Infosec
##updated 2026-09-30T04:18:49.650000
1 posts
🟠 CVE-2026-95373 - High (8.8)
Use after free in DevTools in Google Chrome prior to 154.0.8037.57 allowed a remote attacker leveraging social engineering to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-95373/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T03:31:41
1 posts
🟠 CVE-2026-103088 - High (7.5)
Handlebars.java before 4.5.5 allows directory traversal. In handlebars-springmvc 4.5.3 and 4.5.4, the path-containment fix for CVE-2026-63490 validates template locations as raw percent-encoded strings, whereas the template file is opened through ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-103088/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T03:31:41
1 posts
🟠 CVE-2026-103102 - High (8.6)
Pexip Infinity before 41.0 is affected by improper input validation in the signaling implementation which allows a remote attacker to trigger a software abort resulting in a denial of service. Exploitation of this issue requires accessing a gatewa...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-103102/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T03:31:41
1 posts
🟠 CVE-2026-103101 - High (8.6)
Pexip Infinity 30.0 through 40.x before 41.0 is affected by improper input validation in the web server that allows a malicious attacker to render a Pexip Infinity node inaccessible.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-103101/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T03:31:40
1 posts
🟠 CVE-2026-103100 - High (7.5)
Pexip Infinity before 40.1 is affected by improper input validation in the signaling implementation that allows a malicious attacker to trigger a software abort resulting in a denial of service.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-103100/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-30T00:32:48
6 posts
WatchGuard Patches Multiple Flaws, One Critical in Fireware OS
WatchGuard patched 15 Fireware OS vulnerabilities, the worst a critical code injection flaw (CVE-2026-86131) that lets a malicious remote BOVPN-over-TLS server run root commands on a connecting Firebox, along several pre-authentication remote code execution and DoS bugs in services such as fingerd, spamd, iked and samld.
**If you run WatchGuard Firebox appliances, upgrade Fireware OS to a fixed version ASAP (2026.3.2, 2026.2.3, 12.12.3, or 12.5.21 on T15/T35). There are 15 flaws, including a critical one with no workaround, so prioritize devices that use Branch Office VPN over TLS. Until you patch, make sure the firewall's management interface is reachable only from trusted admin networks, and only connect VPN tunnels to servers you fully control.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/watchguard-patches-multiple-flaws-one-critical-in-fireware-os-w-l-q-u-2/gD2P6Ple2L
WatchGuard patched CVE-2026-86131 (CVSS 9.2) in Fireware OS, allowing a malicious VPN server to achieve root RCE on connecting Firebox appliances. Unpatched edge devices risk full takeover and network compromise, so prioritize updates and review VPN peers. #WatchGuard #FirewareOS #VulnManagement
https://cyberworldops.eu/en/malicious-vpn-server-could-seize-root-control-of-watchguard-firebox
##CRITICAL RCE (CVE-2026-86131) in WatchGuard Fireware OS enables root code execution via BOVPN over TLS. Multiple high-severity flaws also patched. No known in-the-wild attacks, but update ASAP. https://radar.offseq.com/threat/watchguard-patches-critical-fireware-os-code-injection-vulnerability-36035f2a6c97cfc4 #OffSeq #Vuln #WatchGuard #PatchTuesday #InfoSec
##Another one from Watch Guard.
##A code injection vulnerability in WatchGuard Fireware OS's BOVPN Over TLS client configuration handling allows an attacker who controls the remote VPN server to execute arbitrary commands as root on the connecting Firebox.
WatchGuard patched 14 Fireware OS vulnerabilities, including CVSS 9.2 RCE flaw CVE-2026-86131 in BOVPN Over TLS. Update Firebox appliances now.
#WatchGuard #FirewareOS #Firebox #CVE202686131 #FirewallSecurity #VPN #NetworkSecurity #PatchNow
##CVE-2026-86131: CRITICAL code injection in WatchGuard Fireware OS BOVPN Over TLS. Attackers controlling a VPN server can execute root commands on Firebox devices. Avoid untrusted VPNs until patched. https://radar.offseq.com/threat/a-code-injection-vulnerability-in-watchguard-fireware-oss-bovpn-over-tls-client-configuration-handling-678dbd9b2069781f #OffSeq #WatchGuard #FirewareOS #Vuln
##updated 2026-09-30T00:32:46
1 posts
CISA warns of 10 Toptech TMS7 vulnerabilities, including CVSS 10.0 flaw CVE-2026-71379 that exposes database tables. Upgrade TMS7 to 7.8 now.
#Toptech #TMS7 #TopHAT #ICSSecurity #CISA #CVE202671379 #CriticalInfrastructure #OTSecurity
##updated 2026-09-30T00:32:32
2 posts
CVE-2026-102794: Ziroom ZHOME A0101 v1.0.1.0 is affected by a CRITICAL command injection flaw (CVSS 9.1) in /api/ZRnetwork/ping. No patch, public exploit out. Restrict access & monitor usage. https://radar.offseq.com/threat/a-vulnerability-has-been-found-in-ziroom-zhome-a0101-1010-cve-2026-102794-9a56d1624759c7e9 #OffSeq #Vulnerability #InfoSec
##CVE-2026-102794: Ziroom ZHOME A0101 v1.0.1.0 has a CRITICAL command injection vuln in /api/ZRnetwork/ping (url param). Public exploit available, vendor silent. Remediate ASAP if deployed. https://radar.offseq.com/threat/cve-2026-102794-command-injection-in-ziroom-zhome-a0101-70f3389000d03735 #OffSeq #CVE2026102794 #Infosec #IoT
##updated 2026-09-29T22:19:05.860000
1 posts
CISA warns the Viidure dashcam app leaks hardcoded cloud credentials (CVE-2026-96587) and public storage (CVE-2026-94204). The vendor has not responded.
#Viidure #Dashcam #CISA #CVE202696587 #HardcodedCredentials #CloudSecurity #AndroidSecurity #IoTSecurity
##updated 2026-09-29T22:19:05.720000
1 posts
CISA issued ICSA-26-272-04 for CVE-2026-96274, an uncaught-exception flaw in Baicells Nova 430H eNodeB (pBS3101SH). It can be triggered from radio range to disrupt cellular service, exposing small-cell deployments to remote DoS. Operators should review affected BaiBLQ versions and apply CISA guidance. #Baicells #TelecomSecurity #DenialOfService
https://cyberworldops.eu/en/radio-range-flaw-can-disrupt-baicells-nova-430h-cellular-service
##updated 2026-09-29T21:33:36
1 posts
CISA warns the Viidure dashcam app leaks hardcoded cloud credentials (CVE-2026-96587) and public storage (CVE-2026-94204). The vendor has not responded.
#Viidure #Dashcam #CISA #CVE202696587 #HardcodedCredentials #CloudSecurity #AndroidSecurity #IoTSecurity
##updated 2026-09-29T21:33:22
1 posts
🟠 CVE-2026-95372 - High (8.3)
Use after free in Chromecast in Google Chrome prior to 154.0.8037.57 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity:...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-95372/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-29T21:27:41.130000
3 posts
📢 Correctifs haute sévérité dans OpenSSL et WolfSSL : authentification et fuites mémoire
Cet article couvre les correctifs de sécurité publiés par les équipes des bibliothèques cryptographiques open source OpenSSL et WolfSSL. La dernière version d'OpenSSL corrige 14 vulnérabilités, dont : CVE-2026-84782 (CVSS 8.2 — haute sévérité) : un pair distant peut…
📖 cyberveille : https://cyberveille.ch/posts/2026-10-01-correctifs-haute-severite-dans-openssl-et-wolfssl-authentification-et-fuites-memoire/
🌐 source : https://www.securityweek.com/high-severity-vulnerabilities-patched-in-openssl-wolfssl/
🟢 vérification factuelle haute
#OpenSSL #WolfSSL #Cyberveille
OpenSSL disclosed CVE-2026-84782, a high-severity bug in DTLS handshake retransmission that can leak unencrypted heap data to peers or crash the process. Ubuntu describes the impact as incorrect handshake behavior or denial of service. Patch affected builds and audit DTLS-exposed services. #OpenSSL #Dtls #VulnManagement
https://cyberworldops.eu/en/openssl-dtls-retransmission-bug-can-leak-heap-data-or-terminate
##OpenSSL patched 14 OpenSSL vulnerabilities, including high-severity DTLS flaw CVE-2026-84782 that can leak heap memory. Upgrade to 4.0.3 now.
#OpenSSL #OpenSSLVulnerabilities #CVE202684782 #DTLS #QUIC #TLS #Cryptography #PatchNow
##updated 2026-09-29T18:31:49
1 posts
Update to 15.82 now. Five high-severity TeamViewer vulnerabilities include CVE-2026-92370, CVE-2026-19743 and CVE-2026-92368 in Full Client and Host.
#TeamViewer #RemoteAccess #CVE202692370 #PrivilegeEscalation #Windows #Linux #macOS #PatchNow
##updated 2026-09-29T18:31:46
1 posts
Update to 15.82 now. Five high-severity TeamViewer vulnerabilities include CVE-2026-92370, CVE-2026-19743 and CVE-2026-92368 in Full Client and Host.
#TeamViewer #RemoteAccess #CVE202692370 #PrivilegeEscalation #Windows #Linux #macOS #PatchNow
##updated 2026-09-29T18:05:37
1 posts
Five high-severity Electron vulnerabilities, including CVE-2026-102676, CVE-2026-102673 and CVE-2026-102674, weaken sandbox isolation. Update Electron now.
#Electron #ElectronJS #CVE2026102676 #AppSecurity #Sandbox #JavaScript #DesktopApps #PatchNow
##updated 2026-09-29T18:02:22
1 posts
Five high-severity Electron vulnerabilities, including CVE-2026-102676, CVE-2026-102673 and CVE-2026-102674, weaken sandbox isolation. Update Electron now.
#Electron #ElectronJS #CVE2026102676 #AppSecurity #Sandbox #JavaScript #DesktopApps #PatchNow
##updated 2026-09-29T15:32:17
10 posts
1 repos
Researchers published the first public PoC for CVE-2026-86950, an Apple CoreGraphics out-of-bounds write via crafted PDF font data. The PoC shows crash and controlled write only, but Apple reports targeted exploitation in the wild, raising immediate patching priority. #AppleSecurity #CoreGraphics #VulnManagement
https://cyberworldops.eu/en/public-coregraphics-poc-raises-pressure-to-patch-apple-devices-under
##Researchers published the first public PoC for CVE-2026-86950, an Apple CoreGraphics out-of-bounds write via crafted PDF font data. The PoC shows crash and controlled write only, but Apple reports targeted exploitation in the wild, raising immediate patching priority. #AppleSecurity #CoreGraphics #VulnManagement
https://cyberworldops.eu/en/public-coregraphics-poc-raises-pressure-to-patch-apple-devices-under
##Geopolitical: Iran warned UAE following Netanyahu's visit (Sept 30) amidst regional tensions, while Russia conducted a drone strike on Ukraine's National Academy of Sciences (Sept 29).
Technology: OpenAI launched "dots" agents and GPT-6.1 Sol (Sept 29), despite shelving a prior AI model (Astra) due to safety concerns. SpaceX's Starship successfully completed its first orbital flight (Sept 28-29).
Cybersecurity: Urgent advisories were issued for actively exploited Citrix NetScaler zero-days (Sept 30), mandating federal agency patching. Apple also patched a CoreGraphics zero-day (CVE-2026-86950) used in targeted attacks (Sept 29).
###Apple released a #security update for #iOS 26, #iPadOS 26, and #macOS 26 to fix a #vulnerability in the #graphicsengine that could be exploited for sophisticated attacks. The bug, CVE-2026-86950, was discovered by Meta and could potentially allow hackers to steal personal data. A separate zero-click bug, CVE-2026-86869, was also fixed, preventing silent data theft via malicious iMessages. https://techcrunch.com/2026/09/29/still-running-ios-26-update-your-iphones-ipads-and-macs-for-this-urgent-security-fix/
##Apple released the urgent iOS 26.7.1 update to patch a critical zero-day vulnerability (CVE-2026-86950) in CoreGraphics, preventing arbitrary code execution.
##Apple Patches Actively Exploited Zero-Day in iOS 26, iPadOS 26 and macOS
Apple patched a zero-click vulnerability (CVE-2026-86950) in iOS 26 and macOS 26 that allow remote code execution and data theft, and has been exploited
**If you use an iPhone, iPad or Mac, update it right now to iOS/iPadOS 26.7.1, macOS Tahoe 26.7.1 or macOS Sequoia 15.8.1. Alterantively, where possible, move to iOS 27. Attackers are already using this flaw to take over devices and steal personal data. If you're a likely target, such as a journalist, activist or executive, consider turning on Lockdown Mode for extra protection.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/apple-patches-actively-exploited-zero-day-in-ios-26-ipados-26-and-macos-p-i-5-p-7/gD2P6Ple2L
Apple a corrigé une faille CoreGraphics exploitée pour cibler des utilisateurs d’iPhone (CVE-2026-86950) https://www.it-connect.fr/apple-cve-2026-86950-faille-zero-day-coregraphics/ #ActuCybersécurité #Cybersécurité #Vulnérabilité #Apple
##(CISA TS+SOC) CVE-2026-86950 – Apple CoreGraphics Out-of-Bounds Write Briefing
Active exploitation of CVE-2026-88650 [CVE-2026-86950] in Apple CoreGraphics requires immediate patch deployment and forensic triage. Review integrated TSUITE + SOC intelligence assets....
##Apple squashes zero-day bug exploited in ”extremely sophisticated” attack (CVE-2026-86950) – Help Net Security https://www.macken.xyz/2026/09/apple-squashes-zero-day-bug-exploited-in-extremely-sophisticated-attack-cve-2026-86950-help-net-security/?utm_source=dlvr.it&utm_medium=mastodon
##https://fawkes.rocks/2026/09/29/apple-fixes-coregraphics-zero-day-cve-2026-86950/
##updated 2026-09-29T04:18:01.603000
7 posts
10 repos
https://github.com/watchtowrlabs/watchTowr-vs-Citrix-Netscaler-CVE-2026-88771
https://github.com/SwiftSecur/CVE-2026-88771-HuntScript
https://github.com/bkchaudhari/NetScaler-CTX697096-Assessment-Script
https://github.com/securekomodo/citrixInspector
https://github.com/craigsblackie/cve-2026-88771-netscaler
https://github.com/technion/netscaler_scanner
https://github.com/techupdate24/citrix-netscaler-cve-2026-88771-rce
https://github.com/emilstahl/pitscaler
https://github.com/ThomasPoppelgaard/netscaler-ctx697096-checker
LevelBlue THOR observed active exploitation of CVE-2026-88771 in Citrix NetScaler ADC and Gateway for unauthenticated command execution. Payloads establish reverse shells, create persistent superuser accounts, and hide web shells as CSS URLs while staging configs. This enables long-term persistence and credential access on edge devices. #NetScaler #Citrix #ThreatIntel
https://cyberworldops.eu/en/netscaler-attack-payloads-aim-for-superuser-persistence-and-css-masked
##Mandiant and GTIG confirm active exploitation of NetScaler zero-days CVE-2026-88771 and CVE-2026-88772 on ADC and Gateway appliances. Edge compromise can escalate to root-level network access, bypassing perimeter controls. Immediate patching and compromise hunting are required. #NetScaler #ZeroDay #ThreatIntel
https://cyberworldops.eu/en/netscaler-intrusions-turn-a-gateway-flaw-into-root-level-network
##Great IOCs on the follow up spray and pray activity on #PitScaler so far.
For context this activity definitely is not related to the inital threat actor activity in early September. This is new stuff.
##CERT-EU shares their insights on CVE-2026-88771 exploitation and provides threat hunting tips in different logs.
https://cert.europa.eu/blog/taking-execute-logging-a-bit-too-literally-cve-2026-88771
##https://thecybersecguru.com/news/citrix-netscaler-cve-2026-88772-rce/
##Mandiant and Google Threat Intelligence Group describe in-the-wild exploitation CVE-2026-88771 and CVE-2026-88772 against Citrix NetScaler ADC and NetScaler Gateway appliances globally. Indicators of compromise and YARA rules are included.
##https://fawkes.rocks/2026/09/29/citrix-netscaler-cve-2026-88771-now-under-mass-attack/
##updated 2026-09-28T12:32:09
10 posts
7 repos
https://github.com/FollowerSeize/CVE-2026-88772-POC
https://github.com/securekomodo/citrixInspector
https://github.com/technion/netscaler_scanner
https://github.com/watchtowrlabs/watchTowr-vs-Citrix-Netscaler-CVE-2026-88772
https://github.com/emilstahl/pitscaler
https://github.com/ThomasPoppelgaard/netscaler-ctx697096-checker
Attackers exploit Citrix NetScaler zero-day CVE-2026-88772 for root access, then hide WHIPSHOT web shells and a SLAPSHOT tunneler. Patch now.
#CitrixNetScaler #ZeroDay #CVE202688772 #CVE202688771 #WHIPSHOT #SLAPSHOT #Mandiant #CyberSecurity
https://securityonline.info/citrix-netscaler-zero-day/?utm_source=mastodon&utm_medium=jetpack_social
##Mandiant and GTIG confirm active exploitation of NetScaler zero-days CVE-2026-88771 and CVE-2026-88772 on ADC and Gateway appliances. Edge compromise can escalate to root-level network access, bypassing perimeter controls. Immediate patching and compromise hunting are required. #NetScaler #ZeroDay #ThreatIntel
https://cyberworldops.eu/en/netscaler-intrusions-turn-a-gateway-flaw-into-root-level-network
##CVE-2026-88772, a Citrix NetScaler DTLS memory overflow, is exploited in the wild. A watchTowr PoC and full details are now public. Patch NetScaler now.
#Citrix #NetScaler #CVE202688772 #DTLS #watchTowr #KEV #ZeroDay #RCE
##Two Citrix NetScaler zero-days (CVE-2026-88772/88771) gave attackers pre-auth root on the box that fronts your whole network. GTIG traced exploitation to early September, weeks before the patch existed.
Once inside, their C2 leaves from your own public IP. No strange domain, no foreign address to block. The call is coming from inside the house.
Reputation Radar #13:
https://www.reput.io/blog/reputation-radar-13
https://fawkes.rocks/2026/09/30/netscaler-cve-2026-88772-zero-day-tied-to-state-hackers/
##Nice blog post on Citrix CVE-2026-88772 exploit:
##https://thecybersecguru.com/news/citrix-netscaler-cve-2026-88772-rce/
##"Hackers exploit Citrix NetScaler zero-day to deploy web shells"
"[...] Cybersecurity firms say attackers exploited the Citrix NetScaler CVE-2026-88772 zero-day to deploy custom web shells and tunneling malware, gain root access, steal credentials, and spread into internal networks."
##We had first POC yes, but what about second POC? watchTowr breaks down CVE-2026-88772 and provides a "detection artifact generator"
##Mandiant and Google Threat Intelligence Group describe in-the-wild exploitation CVE-2026-88771 and CVE-2026-88772 against Citrix NetScaler ADC and NetScaler Gateway appliances globally. Indicators of compromise and YARA rules are included.
##updated 2026-09-28T12:20:54.040000
4 posts
26 repos
https://github.com/abraxas/CVE-2026-87902
https://github.com/zyphorixofficialmain-lab/cve-2026-87902
https://github.com/rabakuku/CVE-2026-87902-A-working-PoC-for-WordPress-s-critical-path-traversal
https://github.com/tonydelouvre/CVE-2026-87902
https://github.com/joaovicdev/EXPLOIT-CVE-2026-87902
https://github.com/itskill-jp/wordpress-upgrade-check
https://github.com/Hassham1/CVE-2026-87902
https://github.com/vulpecuna/CVE-2026-87902
https://github.com/Lutfifakee-Project/CVE-2026-87902
https://github.com/rwxrwxs/CVE-2026-87902
https://github.com/ynsmroztas/WPSniper
https://github.com/dinosn/cve-2026-87902-wordpress-lfi-lab
https://github.com/bhideki/CVE-2026-87902
https://github.com/SVTagan/WP-CVE-2026-87902
https://github.com/Maalfer/CVE-2026-87902-exploit
https://github.com/crowsec-edtech/CVE-2026-87902
https://github.com/tc4dy/CVE-2026-87902-Toolkit
https://github.com/zer0dayf/CVE-2026-87902
https://github.com/MRdark-ops/CVE-2026-87902
https://github.com/oliveiralimajr/CVE_2026_87902
https://github.com/langz337/CVE-2026-87902
https://github.com/abatsakidis/wp-cve-2026-87902-checker
https://github.com/pwnVader/CVE-2026-87902-PoC-pwnVader
https://github.com/nextco/wordpress-cve-2026-87902
(CISA TS+SOC) CVE-2026-87902 WORDPRESS CODE REMOTE FILE INCLUSION
Active exploitation of CVE-2026-87902 WordPress requires immediate patch deployment and forensic triage. Review integrated TSUITE + SOC intelligence assets....
##(CISA TS+SOC) CVE-2026-87902 WORDPRESS CODE REMOTE FILE INCLUSION
Active exploitation of CVE-2026-87902 WordPress requires immediate patch deployment and forensic triage. Review integrated TSUITE + SOC intelligence assets....
##CVE-2026-87902 scored 9.2 out of 10, affected every WordPress version since 2016, and was actively exploited within 24 hours of disclosure — no login required. Most site owners never heard a word about it. That silence is the real vulnerability. Knowing your site runs WordPress is not the same as knowing what is happening to it.
#WordPress #WordPressSecurity #CyberSecurity #SecurityHardening
https://wpguy.uk/blog/cve-2026-87902-the-wordpress-flaw-most-owners-missed/
##📈 CVE Published in last 30 days (2026-09-01 - 2026-09-01)
See more at https://secdb.nttzen.cloud/dashboard
Total CVEs:
Severity:
- Critical: 1417
- High: 5956
- Medium: 4625
- Low: 927
- None: 1743
Status:
- : 93
- Analyzed: 3418
- Awaiting Analysis: 2780
- Deferred: 5097
- Modified: 128
- Received: 2835
- Rejected: 130
- Undergoing Analysis: 187
CISA KEVs:
- CISA-2026:0902 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0902)
- CISA-2026:0904 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0904)
- CISA-2026:0908 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0908)
- CISA-2026:0909 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0909)
- CISA-2026:0914 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0914)
- CISA-2026:0911 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0911)
- CISA-2026:0910 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0910)
- CISA-2026:0916 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0916)
- CISA-2026:0918 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0918)
- CISA-2026:0921 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0921)
- CISA-2026:0922 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0922)
- CISA-2026:0924 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0924)
- CISA-2026:0925 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0925)
- CISA-2026:0927 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0927)
- CISA-2026:0929 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0929)
- CISA-2026:0930 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0930)
Top CNAs:
- kernel.org: 2117
- VulnCheck: 1638
- GitHub, Inc.: 1424
- Microsoft Corporation: 1000
- VulDB: 900
- Oracle: 634
- WPScan: 552
- MITRE: 497
- Chrome: 467
- Wordfence: 408
Top Affected Products:
- UNKNOWN: 11109
- Microsoft Windows Server 2025: 648
- Microsoft Windows Server 2022: 611
- Microsoft Windows 11 24h2: 600
- Microsoft Windows 11 26h1: 600
- Microsoft Windows 11 25h2: 599
- Microsoft Windows Server 2019: 586
- Microsoft Windows 10 1809: 582
- Microsoft Windows 11 23h2: 574
- Microsoft Windows 10 21h2: 541
Top EPSS Score:
- CVE-2026-85706 - 91.43 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85706)
- CVE-2026-85046 - 48.88 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85046)
- CVE-2026-76461 - 28.27 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76461)
- CVE-2026-87902 - 19.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-87902)
- CVE-2026-93616 - 19.65 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93616)
- CVE-2026-76460 - 14.03 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76460)
- CVE-2026-86218 - 12.93 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-86218)
- CVE-2026-83549 - 10.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-83549)
- CVE-2026-83548 - 8.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-83548)
- CVE-2026-85102 - 7.55 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85102)
updated 2026-09-26T00:32:22
2 posts
1 repos
Attackers exploit CVE-2026-100382, a CVSS 10 unauthenticated MediaWiki RCE in External Data. PoC is public. Upgrade to 3.7 now.
#MediaWiki #ExternalData #CVE2026100382 #RCE #CommandInjection #ExploitedInTheWild #PoC
##[🚨 #MediaWiki vulnerable extension]
If you are running a MediaWiki instance with Extension:External_Data < v3.7, your instance is vulnerable to arbitrary file loading and #RemoteCodeExecution.
The vulnerability was apparently publicly known since August, but due to the lack of communication, instance admins learned about it due to that vulnerability being exploited en masse.
If you know and like a MediaWiki instance, you can check their Special:Version page to see if they are using the External_Data extension to warn them.
More info:
- https://lists.wikimedia.org/hyperkitty/list/mediawiki-l@lists.wikimedia.org/thread/5N55R3XNFE7BXQLGWKZI7Q4ZXZSF4C5I/
- https://www.cve.org/CVERecord?id=CVE-2026-100382
#infosec #wikipedia #wikidata #adminsys #CVE #pwned cc @mediawiki
##updated 2026-09-24T12:52:28.143000
1 posts
14 repos
https://github.com/plur1bu5/gitread
https://github.com/gagaltotal/CVE-2026-85706-gitlab-poc
https://github.com/EQSTLab/CVE-2026-85706
https://github.com/ynsmroztas/GitLabSniper
https://github.com/guneykabel/cve-2026-85706
https://github.com/wuyou6956-glitch/cve-2026-85706
https://github.com/unh00k3d/cve-2026-85706
https://github.com/FlowerWitch/CVE-2026-85706_docker_exp
https://github.com/solivaquaant/CVE-2026-85706
https://github.com/gabrielunknown/CVE-2026-85706
https://github.com/mhtsec/CVE-2026-85706
https://github.com/0xlyvio/cve-2026-85706-poc-exploit-gitlab
https://github.com/tc4dy/CVE-2026-85706-PoC-Toolkit
https://github.com/jithinkrishnanrs/gitlab-cve-2026-85706-ioc
📈 CVE Published in last 30 days (2026-09-01 - 2026-09-01)
See more at https://secdb.nttzen.cloud/dashboard
Total CVEs:
Severity:
- Critical: 1417
- High: 5956
- Medium: 4625
- Low: 927
- None: 1743
Status:
- : 93
- Analyzed: 3418
- Awaiting Analysis: 2780
- Deferred: 5097
- Modified: 128
- Received: 2835
- Rejected: 130
- Undergoing Analysis: 187
CISA KEVs:
- CISA-2026:0902 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0902)
- CISA-2026:0904 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0904)
- CISA-2026:0908 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0908)
- CISA-2026:0909 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0909)
- CISA-2026:0914 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0914)
- CISA-2026:0911 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0911)
- CISA-2026:0910 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0910)
- CISA-2026:0916 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0916)
- CISA-2026:0918 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0918)
- CISA-2026:0921 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0921)
- CISA-2026:0922 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0922)
- CISA-2026:0924 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0924)
- CISA-2026:0925 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0925)
- CISA-2026:0927 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0927)
- CISA-2026:0929 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0929)
- CISA-2026:0930 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0930)
Top CNAs:
- kernel.org: 2117
- VulnCheck: 1638
- GitHub, Inc.: 1424
- Microsoft Corporation: 1000
- VulDB: 900
- Oracle: 634
- WPScan: 552
- MITRE: 497
- Chrome: 467
- Wordfence: 408
Top Affected Products:
- UNKNOWN: 11109
- Microsoft Windows Server 2025: 648
- Microsoft Windows Server 2022: 611
- Microsoft Windows 11 24h2: 600
- Microsoft Windows 11 26h1: 600
- Microsoft Windows 11 25h2: 599
- Microsoft Windows Server 2019: 586
- Microsoft Windows 10 1809: 582
- Microsoft Windows 11 23h2: 574
- Microsoft Windows 10 21h2: 541
Top EPSS Score:
- CVE-2026-85706 - 91.43 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85706)
- CVE-2026-85046 - 48.88 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85046)
- CVE-2026-76461 - 28.27 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76461)
- CVE-2026-87902 - 19.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-87902)
- CVE-2026-93616 - 19.65 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93616)
- CVE-2026-76460 - 14.03 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76460)
- CVE-2026-86218 - 12.93 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-86218)
- CVE-2026-83549 - 10.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-83549)
- CVE-2026-83548 - 8.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-83548)
- CVE-2026-85102 - 7.55 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85102)
updated 2026-09-23T18:22:07.453000
3 posts
From Check Point Research: Exploitation of CVE-2026-85102 and CVE-2026-93616
Check Point has observed active exploitation of two critical pre-authentication vulnerabilities with CVSS scores of 9.8 - CVE-2026-85102 and CVE-2026-93616. The flaws affect Security Gateway and Security Management products and can enable remote code execution. Fixes for both vulnerabilities are available.
#CheckPoint #CheckPointSoftwareTechnologies #CVE #CVE202685102 #CVE202693616
##From Check Point Research: Exploitation of CVE-2026-85102 and CVE-2026-93616
Check Point has observed active exploitation of two critical pre-authentication vulnerabilities with CVSS scores of 9.8 - CVE-2026-85102 and CVE-2026-93616. The flaws affect Security Gateway and Security Management products and can enable remote code execution. Fixes for both vulnerabilities are available.
#CheckPoint #CheckPointSoftwareTechnologies #CVE #CVE202685102 #CVE202693616
##📈 CVE Published in last 30 days (2026-09-01 - 2026-09-01)
See more at https://secdb.nttzen.cloud/dashboard
Total CVEs:
Severity:
- Critical: 1417
- High: 5956
- Medium: 4625
- Low: 927
- None: 1743
Status:
- : 93
- Analyzed: 3418
- Awaiting Analysis: 2780
- Deferred: 5097
- Modified: 128
- Received: 2835
- Rejected: 130
- Undergoing Analysis: 187
CISA KEVs:
- CISA-2026:0902 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0902)
- CISA-2026:0904 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0904)
- CISA-2026:0908 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0908)
- CISA-2026:0909 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0909)
- CISA-2026:0914 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0914)
- CISA-2026:0911 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0911)
- CISA-2026:0910 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0910)
- CISA-2026:0916 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0916)
- CISA-2026:0918 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0918)
- CISA-2026:0921 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0921)
- CISA-2026:0922 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0922)
- CISA-2026:0924 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0924)
- CISA-2026:0925 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0925)
- CISA-2026:0927 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0927)
- CISA-2026:0929 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0929)
- CISA-2026:0930 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0930)
Top CNAs:
- kernel.org: 2117
- VulnCheck: 1638
- GitHub, Inc.: 1424
- Microsoft Corporation: 1000
- VulDB: 900
- Oracle: 634
- WPScan: 552
- MITRE: 497
- Chrome: 467
- Wordfence: 408
Top Affected Products:
- UNKNOWN: 11109
- Microsoft Windows Server 2025: 648
- Microsoft Windows Server 2022: 611
- Microsoft Windows 11 24h2: 600
- Microsoft Windows 11 26h1: 600
- Microsoft Windows 11 25h2: 599
- Microsoft Windows Server 2019: 586
- Microsoft Windows 10 1809: 582
- Microsoft Windows 11 23h2: 574
- Microsoft Windows 10 21h2: 541
Top EPSS Score:
- CVE-2026-85706 - 91.43 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85706)
- CVE-2026-85046 - 48.88 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85046)
- CVE-2026-76461 - 28.27 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76461)
- CVE-2026-87902 - 19.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-87902)
- CVE-2026-93616 - 19.65 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93616)
- CVE-2026-76460 - 14.03 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76460)
- CVE-2026-86218 - 12.93 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-86218)
- CVE-2026-83549 - 10.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-83549)
- CVE-2026-83548 - 8.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-83548)
- CVE-2026-85102 - 7.55 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85102)
updated 2026-09-23T16:38:38.987000
3 posts
2 repos
From Check Point Research: Exploitation of CVE-2026-85102 and CVE-2026-93616
Check Point has observed active exploitation of two critical pre-authentication vulnerabilities with CVSS scores of 9.8 - CVE-2026-85102 and CVE-2026-93616. The flaws affect Security Gateway and Security Management products and can enable remote code execution. Fixes for both vulnerabilities are available.
#CheckPoint #CheckPointSoftwareTechnologies #CVE #CVE202685102 #CVE202693616
##From Check Point Research: Exploitation of CVE-2026-85102 and CVE-2026-93616
Check Point has observed active exploitation of two critical pre-authentication vulnerabilities with CVSS scores of 9.8 - CVE-2026-85102 and CVE-2026-93616. The flaws affect Security Gateway and Security Management products and can enable remote code execution. Fixes for both vulnerabilities are available.
#CheckPoint #CheckPointSoftwareTechnologies #CVE #CVE202685102 #CVE202693616
##📈 CVE Published in last 30 days (2026-09-01 - 2026-09-01)
See more at https://secdb.nttzen.cloud/dashboard
Total CVEs:
Severity:
- Critical: 1417
- High: 5956
- Medium: 4625
- Low: 927
- None: 1743
Status:
- : 93
- Analyzed: 3418
- Awaiting Analysis: 2780
- Deferred: 5097
- Modified: 128
- Received: 2835
- Rejected: 130
- Undergoing Analysis: 187
CISA KEVs:
- CISA-2026:0902 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0902)
- CISA-2026:0904 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0904)
- CISA-2026:0908 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0908)
- CISA-2026:0909 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0909)
- CISA-2026:0914 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0914)
- CISA-2026:0911 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0911)
- CISA-2026:0910 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0910)
- CISA-2026:0916 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0916)
- CISA-2026:0918 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0918)
- CISA-2026:0921 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0921)
- CISA-2026:0922 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0922)
- CISA-2026:0924 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0924)
- CISA-2026:0925 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0925)
- CISA-2026:0927 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0927)
- CISA-2026:0929 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0929)
- CISA-2026:0930 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0930)
Top CNAs:
- kernel.org: 2117
- VulnCheck: 1638
- GitHub, Inc.: 1424
- Microsoft Corporation: 1000
- VulDB: 900
- Oracle: 634
- WPScan: 552
- MITRE: 497
- Chrome: 467
- Wordfence: 408
Top Affected Products:
- UNKNOWN: 11109
- Microsoft Windows Server 2025: 648
- Microsoft Windows Server 2022: 611
- Microsoft Windows 11 24h2: 600
- Microsoft Windows 11 26h1: 600
- Microsoft Windows 11 25h2: 599
- Microsoft Windows Server 2019: 586
- Microsoft Windows 10 1809: 582
- Microsoft Windows 11 23h2: 574
- Microsoft Windows 10 21h2: 541
Top EPSS Score:
- CVE-2026-85706 - 91.43 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85706)
- CVE-2026-85046 - 48.88 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85046)
- CVE-2026-76461 - 28.27 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76461)
- CVE-2026-87902 - 19.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-87902)
- CVE-2026-93616 - 19.65 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93616)
- CVE-2026-76460 - 14.03 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76460)
- CVE-2026-86218 - 12.93 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-86218)
- CVE-2026-83549 - 10.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-83549)
- CVE-2026-83548 - 8.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-83548)
- CVE-2026-85102 - 7.55 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85102)
updated 2026-09-22T21:32:15
1 posts
CVE-2026-93710 Dancer2 2.0.0-2.2.0 for Perl dispatch routes a dying hook refused, letting a halted exception handler run refused routes. CVSS 7.5. Patched in 2.2.0, update now. https://www.valtersit.com/cve/CVE-2026-93710/ #CVE #infosec #Perl
##updated 2026-09-22T19:43:52.337000
1 posts
CVE-2026-88738 Jazzware RT1000 Edge webUI RCE via unrestricted file upload. CVSS 8.8, no patch yet. Patch now or restrict upload access. https://www.valtersit.com/cve/CVE-2026-88738/ #CVE #infosec #cybersecurity
##updated 2026-09-22T19:07:00.983000
1 posts
CVE-2026-87079 Net::IDN::Punycode for Perl, CVSS 7.5. Decoding a long label triggers quadratic CPU exhaustion (DoS). No patch yet, only under review, so isolate untrusted punycode input now. https://www.valtersit.com/cve/CVE-2026-87079/ #CVE #Perl #infosec
##updated 2026-09-22T09:31:18
2 posts
CVE-2026-93556: CVSS 9.8. Broken JWT validation in /password/guardarClau/recover lets unauthenticated attackers reset any password, including admin. Patch status unknown. Assume exposed and mitigate now. https://www.valtersit.com/cve/CVE-2026-93556/ #CVE #infosec #cybersecurity
##CVE-2026-93556: CVSS 9.8. Broken JWT validation in /password/guardarClau/recover lets unauthenticated attackers reset any password, including admin. Patch status unknown. Assume exposed and mitigate now. https://www.valtersit.com/cve/CVE-2026-93556/ #CVE #infosec #cybersecurity
##updated 2026-09-22T00:31:02
1 posts
CVE-2026-94426: reflected XSS in Xxl Job up to 3.5.0, /jobgroup/insert. CVSS 3.5, exploit public, vendor unresponsive. No patch yet - restrict access now.
https://www.valtersit.com/cve/CVE-2026-94426/
#CVE #infosec #cybersecurity
updated 2026-09-21T14:17:20.193000
1 posts
2 repos
https://github.com/Markakd/Container_escape
https://github.com/rifkyards/Container_escape-CVE-2026-80521-CVE-2026-52910
🐧 SIGINT // Ubuntu Watch — 2026-10-01
Public exploit for container-to-host root escape, CVE-2026-80521, patched upstream but not yet shipped in Ubuntu 22.04/24.04/26.04 LTS. If you run containers on Ubuntu hosts, treat this as urgent and watch for the USN, or mitigate with stricter namespace/seccomp policies now.
🔗 https://thehackernews.com/2026/09/exploit-released-for-unpatched-ubuntu.html
##updated 2026-09-21T13:17:10.970000
1 posts
8 repos
https://github.com/SneakyNachos/CVE-2026-87491-and-CVE-2026-85046-the-bagel-fell-off-the-counter
https://github.com/adriyansyah-mf/cve-2026-85046-poc
https://github.com/SneakyNachos/CVE-2026-85046-who-put-the-silverback-guerilla-in-the-wasm
https://github.com/Eliot-code/CVE-2026-85046
📈 CVE Published in last 30 days (2026-09-01 - 2026-09-01)
See more at https://secdb.nttzen.cloud/dashboard
Total CVEs:
Severity:
- Critical: 1417
- High: 5956
- Medium: 4625
- Low: 927
- None: 1743
Status:
- : 93
- Analyzed: 3418
- Awaiting Analysis: 2780
- Deferred: 5097
- Modified: 128
- Received: 2835
- Rejected: 130
- Undergoing Analysis: 187
CISA KEVs:
- CISA-2026:0902 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0902)
- CISA-2026:0904 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0904)
- CISA-2026:0908 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0908)
- CISA-2026:0909 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0909)
- CISA-2026:0914 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0914)
- CISA-2026:0911 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0911)
- CISA-2026:0910 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0910)
- CISA-2026:0916 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0916)
- CISA-2026:0918 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0918)
- CISA-2026:0921 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0921)
- CISA-2026:0922 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0922)
- CISA-2026:0924 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0924)
- CISA-2026:0925 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0925)
- CISA-2026:0927 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0927)
- CISA-2026:0929 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0929)
- CISA-2026:0930 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0930)
Top CNAs:
- kernel.org: 2117
- VulnCheck: 1638
- GitHub, Inc.: 1424
- Microsoft Corporation: 1000
- VulDB: 900
- Oracle: 634
- WPScan: 552
- MITRE: 497
- Chrome: 467
- Wordfence: 408
Top Affected Products:
- UNKNOWN: 11109
- Microsoft Windows Server 2025: 648
- Microsoft Windows Server 2022: 611
- Microsoft Windows 11 24h2: 600
- Microsoft Windows 11 26h1: 600
- Microsoft Windows 11 25h2: 599
- Microsoft Windows Server 2019: 586
- Microsoft Windows 10 1809: 582
- Microsoft Windows 11 23h2: 574
- Microsoft Windows 10 21h2: 541
Top EPSS Score:
- CVE-2026-85706 - 91.43 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85706)
- CVE-2026-85046 - 48.88 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85046)
- CVE-2026-76461 - 28.27 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76461)
- CVE-2026-87902 - 19.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-87902)
- CVE-2026-93616 - 19.65 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93616)
- CVE-2026-76460 - 14.03 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76460)
- CVE-2026-86218 - 12.93 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-86218)
- CVE-2026-83549 - 10.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-83549)
- CVE-2026-83548 - 8.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-83548)
- CVE-2026-85102 - 7.55 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85102)
updated 2026-09-18T20:09:01.757000
1 posts
🟠 CVE-2026-103088 - High (7.5)
Handlebars.java before 4.5.5 allows directory traversal. In handlebars-springmvc 4.5.3 and 4.5.4, the path-containment fix for CVE-2026-63490 validates template locations as raw percent-encoded strings, whereas the template file is opened through ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-103088/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-17T18:31:49
1 posts
#Apple released a #security update for #iOS 26, #iPadOS 26, and #macOS 26 to fix a #vulnerability in the #graphicsengine that could be exploited for sophisticated attacks. The bug, CVE-2026-86950, was discovered by Meta and could potentially allow hackers to steal personal data. A separate zero-click bug, CVE-2026-86869, was also fixed, preventing silent data theft via malicious iMessages. https://techcrunch.com/2026/09/29/still-running-ios-26-update-your-iphones-ipads-and-macs-for-this-urgent-security-fix/
##updated 2026-09-17T09:33:03
1 posts
New Local Privilege Escalation on Acer laptops https://www.intrinsec.com/cve-2026-50610-elevation-privileges-acer-nitrosense/
##updated 2026-09-16T21:33:00
1 posts
1 repos
📈 CVE Published in last 30 days (2026-09-01 - 2026-09-01)
See more at https://secdb.nttzen.cloud/dashboard
Total CVEs:
Severity:
- Critical: 1417
- High: 5956
- Medium: 4625
- Low: 927
- None: 1743
Status:
- : 93
- Analyzed: 3418
- Awaiting Analysis: 2780
- Deferred: 5097
- Modified: 128
- Received: 2835
- Rejected: 130
- Undergoing Analysis: 187
CISA KEVs:
- CISA-2026:0902 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0902)
- CISA-2026:0904 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0904)
- CISA-2026:0908 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0908)
- CISA-2026:0909 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0909)
- CISA-2026:0914 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0914)
- CISA-2026:0911 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0911)
- CISA-2026:0910 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0910)
- CISA-2026:0916 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0916)
- CISA-2026:0918 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0918)
- CISA-2026:0921 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0921)
- CISA-2026:0922 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0922)
- CISA-2026:0924 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0924)
- CISA-2026:0925 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0925)
- CISA-2026:0927 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0927)
- CISA-2026:0929 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0929)
- CISA-2026:0930 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0930)
Top CNAs:
- kernel.org: 2117
- VulnCheck: 1638
- GitHub, Inc.: 1424
- Microsoft Corporation: 1000
- VulDB: 900
- Oracle: 634
- WPScan: 552
- MITRE: 497
- Chrome: 467
- Wordfence: 408
Top Affected Products:
- UNKNOWN: 11109
- Microsoft Windows Server 2025: 648
- Microsoft Windows Server 2022: 611
- Microsoft Windows 11 24h2: 600
- Microsoft Windows 11 26h1: 600
- Microsoft Windows 11 25h2: 599
- Microsoft Windows Server 2019: 586
- Microsoft Windows 10 1809: 582
- Microsoft Windows 11 23h2: 574
- Microsoft Windows 10 21h2: 541
Top EPSS Score:
- CVE-2026-85706 - 91.43 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85706)
- CVE-2026-85046 - 48.88 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85046)
- CVE-2026-76461 - 28.27 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76461)
- CVE-2026-87902 - 19.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-87902)
- CVE-2026-93616 - 19.65 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93616)
- CVE-2026-76460 - 14.03 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76460)
- CVE-2026-86218 - 12.93 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-86218)
- CVE-2026-83549 - 10.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-83549)
- CVE-2026-83548 - 8.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-83548)
- CVE-2026-85102 - 7.55 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85102)
updated 2026-09-14T21:32:49
1 posts
4 repos
https://github.com/HORKimhab/CVE-2026-76461
https://github.com/S3v3n-JG/CVE-2026-76461
📈 CVE Published in last 30 days (2026-09-01 - 2026-09-01)
See more at https://secdb.nttzen.cloud/dashboard
Total CVEs:
Severity:
- Critical: 1417
- High: 5956
- Medium: 4625
- Low: 927
- None: 1743
Status:
- : 93
- Analyzed: 3418
- Awaiting Analysis: 2780
- Deferred: 5097
- Modified: 128
- Received: 2835
- Rejected: 130
- Undergoing Analysis: 187
CISA KEVs:
- CISA-2026:0902 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0902)
- CISA-2026:0904 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0904)
- CISA-2026:0908 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0908)
- CISA-2026:0909 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0909)
- CISA-2026:0914 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0914)
- CISA-2026:0911 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0911)
- CISA-2026:0910 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0910)
- CISA-2026:0916 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0916)
- CISA-2026:0918 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0918)
- CISA-2026:0921 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0921)
- CISA-2026:0922 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0922)
- CISA-2026:0924 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0924)
- CISA-2026:0925 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0925)
- CISA-2026:0927 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0927)
- CISA-2026:0929 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0929)
- CISA-2026:0930 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0930)
Top CNAs:
- kernel.org: 2117
- VulnCheck: 1638
- GitHub, Inc.: 1424
- Microsoft Corporation: 1000
- VulDB: 900
- Oracle: 634
- WPScan: 552
- MITRE: 497
- Chrome: 467
- Wordfence: 408
Top Affected Products:
- UNKNOWN: 11109
- Microsoft Windows Server 2025: 648
- Microsoft Windows Server 2022: 611
- Microsoft Windows 11 24h2: 600
- Microsoft Windows 11 26h1: 600
- Microsoft Windows 11 25h2: 599
- Microsoft Windows Server 2019: 586
- Microsoft Windows 10 1809: 582
- Microsoft Windows 11 23h2: 574
- Microsoft Windows 10 21h2: 541
Top EPSS Score:
- CVE-2026-85706 - 91.43 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85706)
- CVE-2026-85046 - 48.88 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85046)
- CVE-2026-76461 - 28.27 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76461)
- CVE-2026-87902 - 19.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-87902)
- CVE-2026-93616 - 19.65 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93616)
- CVE-2026-76460 - 14.03 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76460)
- CVE-2026-86218 - 12.93 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-86218)
- CVE-2026-83549 - 10.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-83549)
- CVE-2026-83548 - 8.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-83548)
- CVE-2026-85102 - 7.55 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85102)
updated 2026-09-14T00:16:56.207000
1 posts
2 repos
eSentire's TRU team shows how a threat actor exploited an internet-facing PaperCut MF server to deploy a Java loader & a web shell. Threat actors subsequently used the web shell to deploy a trojanized Microsoft Copilot binary carrying an AdaptixC2 implant. https://www.esentire.com/blog/papercut-mf-zero-day-intrusion-java-loader-web-shell-and-adaptixc2-via-cve-2026-82078-and-cve-2026-81578?utm_content=buffer77fc6&utm_medium=social&utm_source=twitter&utm_campaign=Buffer
##updated 2026-09-12T04:16:42.757000
1 posts
📢 CVE-2026-84869 : vulnérabilité critique dans ScreenConnect exploitée activement
Cet article analyse la vulnérabilité CVE-2026-84869 affectant ConnectWise ScreenConnect, un outil de gestion à distance largement utilisé par les entreprises et les fournisseurs de services managés (MSP). CVE-2026-84869 est une faille dans la gestion des…
📖 cyberveille : https://cyberveille.ch/posts/2026-10-01-cve-2026-84869-vulnerabilite-critique-dans-screenconnect-exploitee-activement/
🌐 source : https://www.criminalip.io/knowledge-hub/blog/38083
🟡 vérification factuelle moyenne
#ScreenConnect #ConnectWise #Cyberveille
updated 2026-09-09T05:18:19.490000
1 posts
3 repos
https://github.com/Udyz/CVE-2026-86218
📈 CVE Published in last 30 days (2026-09-01 - 2026-09-01)
See more at https://secdb.nttzen.cloud/dashboard
Total CVEs:
Severity:
- Critical: 1417
- High: 5956
- Medium: 4625
- Low: 927
- None: 1743
Status:
- : 93
- Analyzed: 3418
- Awaiting Analysis: 2780
- Deferred: 5097
- Modified: 128
- Received: 2835
- Rejected: 130
- Undergoing Analysis: 187
CISA KEVs:
- CISA-2026:0902 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0902)
- CISA-2026:0904 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0904)
- CISA-2026:0908 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0908)
- CISA-2026:0909 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0909)
- CISA-2026:0914 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0914)
- CISA-2026:0911 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0911)
- CISA-2026:0910 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0910)
- CISA-2026:0916 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0916)
- CISA-2026:0918 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0918)
- CISA-2026:0921 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0921)
- CISA-2026:0922 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0922)
- CISA-2026:0924 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0924)
- CISA-2026:0925 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0925)
- CISA-2026:0927 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0927)
- CISA-2026:0929 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0929)
- CISA-2026:0930 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0930)
Top CNAs:
- kernel.org: 2117
- VulnCheck: 1638
- GitHub, Inc.: 1424
- Microsoft Corporation: 1000
- VulDB: 900
- Oracle: 634
- WPScan: 552
- MITRE: 497
- Chrome: 467
- Wordfence: 408
Top Affected Products:
- UNKNOWN: 11109
- Microsoft Windows Server 2025: 648
- Microsoft Windows Server 2022: 611
- Microsoft Windows 11 24h2: 600
- Microsoft Windows 11 26h1: 600
- Microsoft Windows 11 25h2: 599
- Microsoft Windows Server 2019: 586
- Microsoft Windows 10 1809: 582
- Microsoft Windows 11 23h2: 574
- Microsoft Windows 10 21h2: 541
Top EPSS Score:
- CVE-2026-85706 - 91.43 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85706)
- CVE-2026-85046 - 48.88 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85046)
- CVE-2026-76461 - 28.27 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76461)
- CVE-2026-87902 - 19.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-87902)
- CVE-2026-93616 - 19.65 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93616)
- CVE-2026-76460 - 14.03 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76460)
- CVE-2026-86218 - 12.93 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-86218)
- CVE-2026-83549 - 10.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-83549)
- CVE-2026-83548 - 8.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-83548)
- CVE-2026-85102 - 7.55 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85102)
updated 2026-09-08T21:34:09
2 posts
CVE-2026-81963: From a Public CBS Session to SYSTEM Code Execution https://www.coresecurity.com/blog/cve-2026-81963-public-cbs-session-system-code-execution
##CVE-2026-81963: From a Public CBS Session to SYSTEM Code Execution https://www.coresecurity.com/blog/cve-2026-81963-public-cbs-session-system-code-execution
##updated 2026-09-08T21:33:09
1 posts
6 repos
https://github.com/disrex-group/stylesmuggler-adobe-patches-mageos
https://github.com/dinosn/cve-2026-75650-magento-validation-lab
https://github.com/jithinkrishnanrs/stylesmuggler-ioc-toolkit
https://github.com/abraxas/CVE-2026-75650
The Magento StyleSmuggler zero-day, CVE-2026-75650, compromised at least 3,834 stores. See how Lockster attacks and how to clean up.
#Magento #StyleSmuggler #AdobeCommerce #ZeroDay #CVE202675650 #Lockster #Skimmer #Ecommerce
##updated 2026-09-08T20:51:43.490000
1 posts
🚨 EUVD-2026-90668
📊 Score: 5.3/10 (CVSS v3.1)
📦 Product: Ghost
🏢 Vendor: TryGhost
📅 Updated: 2026-10-01
📝 Ghost 5.42.2 before 6.58.0 contains an information disclosure vulnerability in the Admin API bulk post and page edit and delete endpoints, which accept filters on restricted fields such as authors.password, because of an incomplete fix for CVE-2026-70590. Sta...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-90668
##updated 2026-09-08T17:56:31
1 posts
11 repos
https://github.com/fevar54/cve-2026-60004
https://github.com/HORKimhab/CVE-2026-60004
https://github.com/HackSpeak/CVE-2026-60004
https://github.com/erberkan/CVE-2026-60004-PoC
https://github.com/0xBlackash/CVE-2026-60004
https://github.com/gagaltotal/CVE-2026-60004-poc-gitea
https://github.com/yym8538/CVE-2026-60004
https://github.com/EQSTLab/CVE-2026-60004
https://github.com/shinthink/CVE-2026-60004
When you find your private Gitea server infected with #XMrigMalware cryptominer through CVE-2026-60004...
Enormous gratitude to https://www.foresh.com/posts/2026-09-15-ai-xmrig/ for writing a very concise analysis and recovery!
updated 2026-09-02T18:32:06
1 posts
3 repos
https://github.com/xcoy0te/CVE-2026-83548-checker
https://github.com/HORKimhab/CVE-2026-83548-CVE-2026-83549
https://github.com/xoessie/CVE-2026-83548-SonicWall-SMA1000-Analysis
📈 CVE Published in last 30 days (2026-09-01 - 2026-09-01)
See more at https://secdb.nttzen.cloud/dashboard
Total CVEs:
Severity:
- Critical: 1417
- High: 5956
- Medium: 4625
- Low: 927
- None: 1743
Status:
- : 93
- Analyzed: 3418
- Awaiting Analysis: 2780
- Deferred: 5097
- Modified: 128
- Received: 2835
- Rejected: 130
- Undergoing Analysis: 187
CISA KEVs:
- CISA-2026:0902 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0902)
- CISA-2026:0904 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0904)
- CISA-2026:0908 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0908)
- CISA-2026:0909 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0909)
- CISA-2026:0914 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0914)
- CISA-2026:0911 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0911)
- CISA-2026:0910 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0910)
- CISA-2026:0916 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0916)
- CISA-2026:0918 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0918)
- CISA-2026:0921 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0921)
- CISA-2026:0922 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0922)
- CISA-2026:0924 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0924)
- CISA-2026:0925 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0925)
- CISA-2026:0927 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0927)
- CISA-2026:0929 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0929)
- CISA-2026:0930 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0930)
Top CNAs:
- kernel.org: 2117
- VulnCheck: 1638
- GitHub, Inc.: 1424
- Microsoft Corporation: 1000
- VulDB: 900
- Oracle: 634
- WPScan: 552
- MITRE: 497
- Chrome: 467
- Wordfence: 408
Top Affected Products:
- UNKNOWN: 11109
- Microsoft Windows Server 2025: 648
- Microsoft Windows Server 2022: 611
- Microsoft Windows 11 24h2: 600
- Microsoft Windows 11 26h1: 600
- Microsoft Windows 11 25h2: 599
- Microsoft Windows Server 2019: 586
- Microsoft Windows 10 1809: 582
- Microsoft Windows 11 23h2: 574
- Microsoft Windows 10 21h2: 541
Top EPSS Score:
- CVE-2026-85706 - 91.43 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85706)
- CVE-2026-85046 - 48.88 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85046)
- CVE-2026-76461 - 28.27 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76461)
- CVE-2026-87902 - 19.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-87902)
- CVE-2026-93616 - 19.65 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93616)
- CVE-2026-76460 - 14.03 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76460)
- CVE-2026-86218 - 12.93 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-86218)
- CVE-2026-83549 - 10.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-83549)
- CVE-2026-83548 - 8.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-83548)
- CVE-2026-85102 - 7.55 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85102)
updated 2026-09-02T18:32:06
1 posts
2 repos
📈 CVE Published in last 30 days (2026-09-01 - 2026-09-01)
See more at https://secdb.nttzen.cloud/dashboard
Total CVEs:
Severity:
- Critical: 1417
- High: 5956
- Medium: 4625
- Low: 927
- None: 1743
Status:
- : 93
- Analyzed: 3418
- Awaiting Analysis: 2780
- Deferred: 5097
- Modified: 128
- Received: 2835
- Rejected: 130
- Undergoing Analysis: 187
CISA KEVs:
- CISA-2026:0902 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0902)
- CISA-2026:0904 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0904)
- CISA-2026:0908 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0908)
- CISA-2026:0909 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0909)
- CISA-2026:0914 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0914)
- CISA-2026:0911 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0911)
- CISA-2026:0910 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0910)
- CISA-2026:0916 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0916)
- CISA-2026:0918 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0918)
- CISA-2026:0921 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0921)
- CISA-2026:0922 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0922)
- CISA-2026:0924 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0924)
- CISA-2026:0925 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0925)
- CISA-2026:0927 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0927)
- CISA-2026:0929 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0929)
- CISA-2026:0930 (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0930)
Top CNAs:
- kernel.org: 2117
- VulnCheck: 1638
- GitHub, Inc.: 1424
- Microsoft Corporation: 1000
- VulDB: 900
- Oracle: 634
- WPScan: 552
- MITRE: 497
- Chrome: 467
- Wordfence: 408
Top Affected Products:
- UNKNOWN: 11109
- Microsoft Windows Server 2025: 648
- Microsoft Windows Server 2022: 611
- Microsoft Windows 11 24h2: 600
- Microsoft Windows 11 26h1: 600
- Microsoft Windows 11 25h2: 599
- Microsoft Windows Server 2019: 586
- Microsoft Windows 10 1809: 582
- Microsoft Windows 11 23h2: 574
- Microsoft Windows 10 21h2: 541
Top EPSS Score:
- CVE-2026-85706 - 91.43 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85706)
- CVE-2026-85046 - 48.88 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85046)
- CVE-2026-76461 - 28.27 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76461)
- CVE-2026-87902 - 19.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-87902)
- CVE-2026-93616 - 19.65 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93616)
- CVE-2026-76460 - 14.03 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76460)
- CVE-2026-86218 - 12.93 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-86218)
- CVE-2026-83549 - 10.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-83549)
- CVE-2026-83548 - 8.76 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-83548)
- CVE-2026-85102 - 7.55 % (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85102)
updated 2026-08-31T21:31:56
1 posts
2 repos
eSentire's TRU team shows how a threat actor exploited an internet-facing PaperCut MF server to deploy a Java loader & a web shell. Threat actors subsequently used the web shell to deploy a trojanized Microsoft Copilot binary carrying an AdaptixC2 implant. https://www.esentire.com/blog/papercut-mf-zero-day-intrusion-java-loader-web-shell-and-adaptixc2-via-cve-2026-82078-and-cve-2026-81578?utm_content=buffer77fc6&utm_medium=social&utm_source=twitter&utm_campaign=Buffer
##updated 2026-08-24T13:19:17.577000
5 posts
10 repos
https://github.com/alsyundawy/eradicate-zimbra-malware
https://github.com/dahnutz/zimbra-cve-2026-73570-ir
https://github.com/gabrielunknown/CVE-2026-73570
https://github.com/BiuTrap/CVE-2026-73570
https://github.com/hainhc/CVE-2026-73570
https://github.com/jishino567/CVE-2026-73570
https://github.com/HORKimhab/CVE-2026-73570
https://github.com/juanpoch/CVE-2026-73570
Microsoft tracks hackers exploiting Zimbra bug before public disclosure
Microsoft detected hackers probing for a Zimbra bug, CVE-2026-73570, just days after it was patched, but before the vulnerability was publicly disclosed - a concerning gap that highlights the need for swift and secretive fixes. The bug, which allows attackers to run commands on exposed mail servers,…
#Cve202673570 #Zimbra #UnauthenticatedCommandInjection #VulnerabilityExploitation #EmergingThreats
##https://fawkes.rocks/2026/10/01/zimbra-cve-2026-73570-exploited-before-public-disclosure/
##https://fawkes.rocks/2026/10/01/zimbra-cve-2026-73570-exploited-before-public-disclosure/
##New.
Microsoft: Unauthenticated command injection on internet-facing mail servers: tracking CVE-2026-73570 https://www.microsoft.com/en-us/security/blog/2026/09/30/unauthenticated-command-injection-on-internet-facing-mail-servers-tracking-cve-2026-73570/ #Microsoft #threatresearch #infosec #vulnerability
##Zimbra CVE-2026-73570 lets one crafted email run code. Microsoft details the Zimbra command injection attacks: web shells, root access, and key theft.
#Zimbra #CVE202673570 #CommandInjection #WebShell #EmailSecurity #MailServer #Microsoft #CyberSecurity
https://securityonline.info/zimbra-cve-2026-73570-2/?utm_source=mastodon&utm_medium=jetpack_social
##updated 2026-08-19T18:32:01
1 posts
📢 [VULN] 5 minutes pour voler le hash du mot de passe root avec BTR, une variante de Spectre v2 - CVE-2026-64507 CVE-2026-64508.
La nouvelle attaque BTR est capable de dérober le hash du mot de passe root sur une machine Linux équipée d'un processeur Intel récent, en 3 à 5 minutes. Cette variante de Spectre v2 cible les moteurs JIT, et côté processeurs, elle ne fait pas de jaloux. Voici ce qu'il faut retenir.
🔗 https://www.it-connect.fr/spectre-v2-btr-linux-hash-mot-de-passe-root/
💬 discussion : https://infosec.pub/post/53004283
#CVE #Cyberveille
updated 2026-08-19T17:20:15.123000
1 posts
📢 [VULN] 5 minutes pour voler le hash du mot de passe root avec BTR, une variante de Spectre v2 - CVE-2026-64507 CVE-2026-64508.
La nouvelle attaque BTR est capable de dérober le hash du mot de passe root sur une machine Linux équipée d'un processeur Intel récent, en 3 à 5 minutes. Cette variante de Spectre v2 cible les moteurs JIT, et côté processeurs, elle ne fait pas de jaloux. Voici ce qu'il faut retenir.
🔗 https://www.it-connect.fr/spectre-v2-btr-linux-hash-mot-de-passe-root/
💬 discussion : https://infosec.pub/post/53004283
#CVE #Cyberveille
updated 2026-08-17T06:17:59.313000
1 posts
1 repos
No Time to Pwn – Can AI Find and Exploit the Linux Kernel? https://xbow.com/blog/no-time-to-pwn-cve-2026-72018
##updated 2026-06-17T09:23:04.017000
1 posts
🔒 New CSAF advisory published
VDE-2025-081
WAGO: Multiple PLCs and Communication Components are Affected by multiple Vulnerabilities leading to RCE
CVE-2025-41700, CVE-2025-41738, CVE-2025-41739
Multiple WAGO devices are affected by CODESYS Control vulnerabilities. The affected WAGO firmware versions are <4.10.0 (FW32) and <4.10.0 (70).
HTML: https://certvde.com/en/advisories/vde-2025-081
CSAF JSON: https://wago.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2025-081.json
updated 2026-06-12T18:31:50
1 posts
4 repos
https://github.com/12hrformat/CVE-2026-35273-POC
https://github.com/HORKimhab/CVE-2026-35273
A ShinyHunters ismét kihasználja a CVE-2026-35273 hibát, web shellt és rendszerszintű hozzáférést szerezve több tucat PeopleSoft-rendszerben. Vannak érintett felsőoktatási, egészségügyi és kormányzati szervek — téged is érinthet, ha nem telepítettétek a javítást? Olvasd el, milyen jeleket keressenek az adminok és miért sürgős a frissítés.
#ShinyHunters #PeopleSoft #CVE2026-35273 #Oracle #Mandiant #cybersecurity #adatbiztonság #webshell #incidentresponse #ITbiztonság
##updated 2026-01-20T21:31:34
1 posts
CISA flagged CVE-2026-22755, a command injection in VIVOTEK's upload_map.cgi allowing unauthenticated OS command execution. Dozens of camera models are affected, creating persistence and lateral movement risk in enterprise and critical infrastructure networks. #Vivotek #CommandInjection #NetworkSecurity
https://cyberworldops.eu/en/vivotek-camera-flaw-exposes-dozens-of-models-to-unauthenticated
##updated 2025-12-01T12:30:34
1 posts
🔒 New CSAF advisory published
VDE-2025-081
WAGO: Multiple PLCs and Communication Components are Affected by multiple Vulnerabilities leading to RCE
CVE-2025-41700, CVE-2025-41738, CVE-2025-41739
Multiple WAGO devices are affected by CODESYS Control vulnerabilities. The affected WAGO firmware versions are <4.10.0 (FW32) and <4.10.0 (70).
HTML: https://certvde.com/en/advisories/vde-2025-081
CSAF JSON: https://wago.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2025-081.json
updated 2025-12-01T12:30:33
1 posts
🔒 New CSAF advisory published
VDE-2025-081
WAGO: Multiple PLCs and Communication Components are Affected by multiple Vulnerabilities leading to RCE
CVE-2025-41700, CVE-2025-41738, CVE-2025-41739
Multiple WAGO devices are affected by CODESYS Control vulnerabilities. The affected WAGO firmware versions are <4.10.0 (FW32) and <4.10.0 (70).
HTML: https://certvde.com/en/advisories/vde-2025-081
CSAF JSON: https://wago.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2025-081.json
updated 2025-11-03T21:34:58
1 posts
1 repos
Além de oferecermos os treinamentos mais avançados e completos do mercado brasileiro, nós também desenvolvemos materiais de apoio em português para a comunidade, visando ajudar aqueles que ainda estão começando. O nosso objetivo é que você aprenda de verdade e alcance patamares em sua carreira inicialmente inimagináveis!
Todo aluno inscrito participa da lista de discussão privada do treinamento, na qual compartilhamos conteúdo relevante, e tem acesso a um material complementar que serve como base preparatória.
Confira 3 artigos que escrevemos especialmente para os alunos do nosso treinamento de Exploração de Vulnerabilidades em Binários em Ambientes Linux:
Breve análise de uma vulnerabilidade na glibc (CVE-2025-4802)
https://allelesecurity.com/libc-vuln-analysis-pt/
O Mindset que Separa o Sênior do Júnior: Lições de Nelson Elhage
https://allelesecurity.com/mindset-senior/
A importância de conhecimentos diversos em pesquisa de vulnerabilidades – A transferibilidade de conhecimento
https://allelesecurity.com/transferibilidade-conhecimento/
Quanto mais cedo se inscrever, mais rápido alcançará o próximo passo da sua carreira:
Treinamento de Desenvolvimento de Exploits e Segurança de Binários em Linux (Linux Binary Exploitation) – Abril 2027
https://allelesecurity.com/treinamento-binario-abril-2027/
updated 2024-08-03T12:30:40
2 posts
🏆 New Achievement! NetScaler? I Hardly Know Her!
Step right up, friend. Lovely timing — you've arrived just as dozens of government, finance, and education organizations across North America and Europe discovered their Citrix NetScaler appliances had been quietly owned via a zero-day, CVE-2024-6872. Mandiant pulled back the curtain on a stealthy campaign suspected to be state-sponsored. (1/3)
##Think of it like those extended warranty calls, except the caller already has your keys, your wallet, and is rearranging the furniture.
May I interest you in our Premium Post-Breach Visibility Package? It retails for slightly more than patching beforehand would have. Tragic coincidence, really.
Apply patches for CVE-2024-6872 to your Citrix NetScaler appliances immediately and review your environment for indicators of compromise. (2/3)
##🖲️ #Noticia de #CiberSeguridad #CiberGuerra #CiberAtaque #CiberNoticia
⚫ (Otra) vulnerabilidad crítica en MikroTik RouterOS (CVE-2026-84411)
🔗 http://blog.segu-info.com.ar/2026/09/otra-vulnerabilidad-critica-en-mikrotik.html
La Agencia CISA advierte sobre una
nueva vulnerabilidad crítica en MikroTik RouterOS que podría permitir
la ejecución remota de código o provocar una condición de denegación de
servicio.
Identificado como CVE-2026-84411, el problema de seguridad consiste en
##https://fawkes.rocks/2026/09/30/mikrotik-routeros-cve-2026-84411-enables-pre-auth-root-rce/
##A critical MikroTik RouterOS vulnerability, CVE-2026-84411 (CVSS 9.8), lets unauthenticated attackers run code as root. Update RouterOS now.
#MikroTik #RouterOS #CVE202684411 #RCE #NetworkSecurity #CISA #RouterSecurity #PatchNow
##Kiteworks Fixes Code Injection Flaw in Email Protection Gateway
Kiteworks has patched a critical vulnerability in its Email Protection Gateway that could have allowed hackers to take full control of the system, and it's essential to update your software ASAP to avoid potential threats. This max-severity flaw, tracked as CVE-2026-54154, could be exploited through low-complexity…
#EmailProtectionGateway #Kiteworks #Cve202654154 #CodeInjection #ArbitraryCodeExecution
##1 posts
9 repos
https://github.com/EQSTLab/CVE-2026-72898
https://github.com/ubitquity/Metabase-Setup-Endpoint-SQLi-Fix
https://github.com/34zY/CVE-2026-72898
https://github.com/4minx/CVE-2026-72898
https://github.com/d-maggipinto/CVE-2026-72898-metabase-sqli
https://github.com/Franc-Zar/CVE-2026-72898-safe-detection
https://github.com/codeb0ssx/CVE-2026-72898-PoC
📢 [VULN] Elle a permis aux hackers de piéger les gendarmes de la cybersécurité en France : c'est quoi la faille Metabase ? CVE-2026-72898
Utilisé par plusieurs services de l’État, Metabase a fait l’objet le 6 août d’un avis de sécurité de son éditeur, accompagné d’un correctif contre une faille de type injection SQL, qui permettait de glisser des instructions malveillantes dans une requête envoyée à…
🔗 https://www.numerama.com/cyberguerre/2344599-elle-a-permis-aux-hackers-de-pieger-les-gendarmes-de-la-cybersecurite-en-france-cest-quoi-la-faille-metabase.html
💬 discussion : https://infosec.pub/post/53003801
#CVE #Cyberveille
TanStack Start critical XSS in server functions (CVE-2026-102989)
TanStack Start의 server function 응답 처리에서 인증되지 않은 공격자가 악성 URL을 통해 애플리케이션 원본(origin)에서 공격자 제어 HTML을 반환하게 만들 수 있는 치명적 반사형 XSS(CVE-2026-102989)가 공개되었습니다. 사용자가 해당 링크를 열면 공격자 JavaScript가 피해자의 애플리케이션 권한 범위에서 실행될 수 있으며, 수정은 클라이언트 입력 제한과 서버 경계에서의 응답 검증을 적용합니다. 영향을 받는 범위는 1.143.12 이상부터 각 패키지별 수정 버전 미만이며, @tanst...
https://tanstack.com/blog/tanstack-start-security-update-cve-2026-102989
##CVE-2026-102147: Stored XSS in Kiteworks Core (<9.5.1) rated CRITICAL (CVSS 9.3). Unauth attacker can hijack admin sessions via injected JS — admin takeover risk. No patch yet; restrict access & monitor logs. https://radar.offseq.com/threat/cve-2026-102147-cwe-79-improper-neutralization-of-input-during-web-page-generation-cross-site-de1db64f96a0fee0 #OffSeq #CVE2026102147 #AppSec ⚡️
##CVE-2026-102147: Stored XSS in Kiteworks Core (<9.5.1) rated CRITICAL (CVSS 9.3). Unauth attacker can hijack admin sessions via injected JS — admin takeover risk. No patch yet; restrict access & monitor logs. https://radar.offseq.com/threat/cve-2026-102147-cwe-79-improper-neutralization-of-input-during-web-page-generation-cross-site-de1db64f96a0fee0 #OffSeq #CVE2026102147 #AppSec ⚡️
##3 posts
5 repos
https://github.com/mhtsec/CVE-2026-94545
https://github.com/MRdark-ops/CVE-2026-94545-
https://github.com/Hassham1/CVE-2026-94545-nextjs-og-poc
Next.js unauthenticated RCE PoC https://github.com/EQSTLab/CVE-2026-94545
##Next.js unauthenticated RCE PoC https://github.com/EQSTLab/CVE-2026-94545
##Details and PoC exploit code are public for CVE-2026-94545, an unauthenticated Next.js RCE in next/og. Upgrade to Next.js 16.3.6 now.
#NextJS #CVE202694545 #RCE #PoC #Satori #WebSecurity #Vercel
##Kiteworks Email Protection Gateway <9.5.1 has a CRITICAL vuln (CVE-2026-102149, CVSS 9.4): attackers can assign certificates to other user accounts, risking encrypted email exposure & unauthorized access. Await patch, consider disabling cert login. https://radar.offseq.com/threat/cve-2026-102149-cwe-306-missing-authentication-for-critical-function-in-kiteworks-email-protection-4008bd0cefe1b69f #OffSeq #CVE2026102149 #infosec
##CVE-2026-102106 (CRITICAL, CVSS 9.1): Kiteworks Email Protection Gateway (<9.5.0) suffers improper admin authentication — attackers can bypass password checks & gain full admin access. Restrict admin service access & monitor for patches. https://radar.offseq.com/threat/cve-2026-102106-cwe-287-improper-authentication-in-kiteworks-email-protection-gateway-f705d7916e63696f #OffSeq #CVE #Infosec
##CVE-2026-102105: Kiteworks Email Protection Gateway <9.5.0 has a CRITICAL SSRF (CVSS 9.1) letting remote attackers access internal resources. No confirmed patch — review vendor guidance & restrict network access. https://radar.offseq.com/threat/cve-2026-102105-cwe-918-server-side-request-forgery-ssrf-in-kiteworks-email-protection-gateway-24b84c616744b5a3 #OffSeq #SSRF #Infosec #Vuln
##Dell patched critical Dell Terraform Provider vulnerabilities. CVE-2026-91881 exposes BMC traffic to attackers. Upgrade your providers to stay safe.
##New.
Nvidia security advisories today:
This impacts multiple CVEs: NVIDIA GPU Display Driver - September 2026 https://nvidia.custhelp.com/app/answers/detail/a_id/5861
There's more, posted yesterday https://www.nvidia.com/en-us/product-security/
AMD security bulletin: CVE-2026-43598: RCCL Vulnerability https://www.amd.com/en/resources/product-security/bulletin/amd-sb-6033.html #AMD #infosec #vulnerability #Nvidia
##(CISA TS+SOC) CVE-2026-86950 – Apple CoreGraphics Out-of-Bounds Write Briefing
Active exploitation of CVE-2026-88650 [CVE-2026-86950] in Apple CoreGraphics requires immediate patch deployment and forensic triage. Review integrated TSUITE + SOC intelligence assets....
##A CVSS 10.0 Podman vulnerability, CVE-2026-94603, lets container images disable sandboxing in podman run. Upgrade to Podman 6.1.3 or 5.8.8 now.
#Podman #PodmanVulnerability #CVE202694603 #ContainerSecurity #Linux #DevSecOps #SupplyChain #PatchNow
https://securityonline.info/podman-cve-2026-94603/?utm_source=mastodon&utm_medium=jetpack_social
##A JupyterLab Desktop vulnerability, CVE-2026-102530 (CVSS 9.4), turns a malicious server URL into remote code execution. Update to 4.6.2-1 now.
#JupyterLab #JupyterLabDesktop #CVE2026102530 #XSS #RCE #Electron #DataScience #PatchNow
##Yes, really: https://www.cve.org/CVERecord?id=CVE-2026-12345
##CPython was just assigned a delightfully placeholder-looking CVE number for a recent (undelightful) advisory: CVE-2026-12345 😆
##