##
Updated at UTC 2026-09-17T08:03:11.909232
| CVE | CVSS | EPSS | Posts | Repos | Nuclei | Updated | Description |
|---|---|---|---|---|---|---|---|
| CVE-2026-87796 | 9.8 | 0.00% | 2 | 0 | 2026-09-17T05:17:02.123000 | The Multi Uploader for Gravity Forms plugin for WordPress is vulnerable to Arbit | |
| CVE-2026-91843 | 9.8 | 0.00% | 7 | 0 | 2026-09-17T04:18:10.730000 | A stack overflow during the unauthenticated login process may allow an attacker | |
| CVE-2026-76460 | 10.0 | 0.00% | 10 | 0 | 2026-09-17T04:18:01.527000 | A vulnerability in an API of Cisco Identity Services Engine (ISE) could allow an | |
| CVE-2026-58704 | 8.8 | 0.11% | 34 | 0 | 2026-09-17T04:17:54.930000 | In Cellular Modem, there is a possible permission bypass due to a logic error in | |
| CVE-2026-20331 | 9.6 | 0.00% | 2 | 0 | 2026-09-17T04:17:41.327000 | As part of Cisco's ongoing commitment to proactive security and product quality, | |
| CVE-2026-92838 | 7.8 | 0.00% | 2 | 0 | 2026-09-17T02:16:28.610000 | A DLL hijacking vulnerability exists in the GeoVision GV-Remote E-Map desktop ap | |
| CVE-2026-92578 | 8.1 | 0.00% | 2 | 0 | 2026-09-17T00:31:30 | WWBN AVideo through 29.0 contains an authentication bypass vulnerability where t | |
| CVE-2026-92576 | 8.6 | 0.00% | 2 | 0 | 2026-09-17T00:31:25 | HKUDS nanobot before 0.3.0 contains a server-side request forgery vulnerability | |
| CVE-2026-20341 | 9.1 | 0.00% | 2 | 0 | 2026-09-16T21:32:50 | A vulnerability in the sftunnel inter-device communication protocol of Cisco Sec | |
| CVE-2026-20176 | 9.1 | 0.00% | 2 | 0 | 2026-09-16T21:32:50 | A vulnerability in Cisco ISE could allow an authenticated, remote attacker to ex | |
| CVE-2026-20211 | 9.1 | 0.00% | 2 | 0 | 2026-09-16T21:32:50 | A vulnerability in Cisco ISE could allow an authenticated, remote attacker to ex | |
| CVE-2026-87976 | None | 0.00% | 2 | 0 | 2026-09-16T21:32:48 | Apache NiFi Registry 0.4.0 through 2.11.0 are subject to path manipulation when | |
| CVE-2026-87024 | 7.2 | 0.00% | 2 | 0 | 2026-09-16T21:32:47 | Tanium addressed a SQL injection vulnerability in Asset. | |
| CVE-2026-70469 | None | 0.00% | 2 | 0 | 2026-09-16T21:32:46 | Apache NiFi 2.11.0 disabled support for gzip-encoded HTTP requests for the appli | |
| CVE-2026-79994 | 0 | 0.11% | 2 | 0 | 2026-09-16T20:38:33.883000 | The guest-to-host Unix-domain socket relay in Docker Sandboxes validates that a | |
| CVE-2026-70416 | 10.0 | 0.00% | 2 | 0 | 2026-09-16T20:37:16.870000 | Dell ObjectScale, versions prior to 4.4.0.0, contains a Deserialization of Untru | |
| CVE-2026-92176 | 7.8 | 0.17% | 2 | 0 | 2026-09-16T20:26:50.280000 | pdfforge PDF Architect App Object Out-Of-Bounds Read Remote Code Execution Vulne | |
| CVE-2026-92177 | 7.8 | 0.17% | 2 | 0 | 2026-09-16T20:26:50.280000 | pdfforge PDF Architect PDF File Parsing Out-Of-Bounds Write Remote Code Executio | |
| CVE-2026-91939 | 9.8 | 0.59% | 2 | 0 | 2026-09-16T20:21:01.047000 | Cotonti 1.0.0 Comments plugin passes the ci GET parameter to unserialize() witho | |
| CVE-2026-86865 | 8.8 | 0.00% | 2 | 0 | 2026-09-16T20:17:37.153000 | Tanium addressed a SQL injection vulnerability in Asset. | |
| CVE-2026-92248 | 7.8 | 0.18% | 2 | 0 | 2026-09-16T19:42:43.623000 | A flaw was found in the file-psd plugin in GIMP. When generating a thumbnail pre | |
| CVE-2026-83099 | 10.0 | 0.36% | 1 | 0 | 2026-09-16T19:42:12.090000 | Vulnerability in the Oracle Forms product of Oracle Fusion Middleware (component | |
| CVE-2026-90711 | 9.1 | 0.19% | 3 | 0 | 2026-09-16T19:40:00.317000 | proxy-addr is a Node.js module that determines a request's client address behind | |
| CVE-2026-87288 | 8.1 | 0.24% | 2 | 0 | 2026-09-16T19:40:00.317000 | Vulnerability in the Oracle GraalVM product of Oracle Java SE (component: Compil | |
| CVE-2026-83105 | 9.0 | 0.38% | 1 | 0 | 2026-09-16T19:36:43.087000 | Vulnerability in the Oracle Forms product of Oracle Fusion Middleware (component | |
| CVE-2026-77853 | 8.8 | 1.03% | 1 | 0 | 2026-09-16T19:27:25.623000 | Improper neutralization of special elements used in an OS command ('OS Command I | |
| CVE-2026-73807 | 9.8 | 0.65% | 4 | 0 | 2026-09-16T19:17:32.787000 | The mySCADA myPRO Manager command API does not properly enforce authentication f | |
| CVE-2026-53713 | 9.1 | 0.41% | 1 | 0 | 2026-09-16T19:17:18.060000 | Envoy Gateway is an open source project for managing Envoy Proxy as a standalone | |
| CVE-2026-27565 | 9.8 | 0.94% | 8 | 0 | 2026-09-16T19:17:14.183000 | An unauthenticated remote attacker can upload a malicious IODD file that places | |
| CVE-2026-27564 | 7.2 | 2.02% | 6 | 0 | 2026-09-16T19:17:13.860000 | A high-privileged remote attacker can exploit a command injection vulnerability | |
| CVE-2026-40854 | 0 | 0.00% | 2 | 0 | 2026-09-16T19:14:25.980000 | WNC T-Mobile 5G Box IDU router contains an authentication bypass vulnerability i | |
| CVE-2026-20307 | 9.9 | 0.00% | 2 | 0 | 2026-09-16T18:32:09 | A vulnerability in the web-based management interface of Cisco ISE could allow a | |
| CVE-2026-92397 | 9.1 | 0.00% | 2 | 0 | 2026-09-16T18:32:09 | A vulnerability has been found in Ruijie RG-EW3000GX EW_3.0(1)B11P380. Affected | |
| CVE-2026-89775 | 9.3 | 0.18% | 2 | 0 | 2026-09-16T18:31:58 | In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: | |
| CVE-2026-87287 | 8.1 | 0.24% | 2 | 0 | 2026-09-16T18:31:53 | Vulnerability in the Oracle GraalVM product of Oracle Java SE (component: Compil | |
| CVE-2026-82028 | 8.8 | 0.43% | 1 | 0 | 2026-09-16T17:18:09.647000 | Magistrala before 1.0.0 contains a SQL injection vulnerability in the timescale- | |
| CVE-2026-61595 | 7.7 | 0.00% | 2 | 0 | 2026-09-16T15:32:15 | ### Impact `djust.tenants` isolation was enforced only on the HTTP path. The cur | |
| CVE-2026-73172 | None | 0.00% | 2 | 0 | 2026-09-16T15:31:13 | Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Ele | |
| CVE-2026-84858 | 8.8 | 0.00% | 2 | 0 | 2026-09-16T15:18:00.527000 | ScadaLTS 2.8.1-release-candidate build 0 is affected by an Authenticated Remote | |
| CVE-2026-91990 | 7.5 | 0.41% | 1 | 0 | 2026-09-16T13:42:49.167000 | Tornado before 6.5.8 contains a memory amplification vulnerability in parse_mult | |
| CVE-2026-65838 | 8.2 | 0.27% | 1 | 0 | 2026-09-16T13:42:48.383000 | Skipper is an HTTP router and reverse proxy for service composition. Prior to 0. | |
| CVE-2026-73453 | 10.0 | 0.75% | 2 | 0 | 2026-09-16T12:30:37 | An unauthenticated P4Runtime (Programming Protocol-Independent Packet Processors | |
| CVE-2026-27561 | 7.2 | 2.23% | 6 | 0 | 2026-09-16T09:30:35 | A high-privileged remote attacker can exploit a command injection vulnerability | |
| CVE-2026-27563 | 7.2 | 2.02% | 6 | 0 | 2026-09-16T09:30:35 | A high-privileged remote attacker can exploit a command injection vulnerability | |
| CVE-2026-27562 | 7.2 | 2.23% | 6 | 0 | 2026-09-16T09:30:34 | A high-privileged remote attacker can exploit a command injection vulnerability | |
| CVE-2026-81642 | None | 0.52% | 2 | 0 | 2026-09-16T09:30:28 | In NLnet Labs Unbound up to and including 1.26.0, a vulnerability was found in t | |
| CVE-2026-12793 | 9.8 | 0.39% | 3 | 3 | 2026-09-16T06:31:34 | The JetFormBuilder — Dynamic Blocks Form Builder plugin for WordPress is vulnera | |
| CVE-2026-14349 | 9.8 | 0.42% | 2 | 0 | 2026-09-16T06:31:34 | The TrueBooker – Appointment Booking and Scheduler System plugin for WordPress i | |
| CVE-2026-83355 | 9.8 | 0.36% | 1 | 0 | 2026-09-16T00:32:32 | Vulnerability in the Oracle Enterprise Manager for Fusion Middleware product of | |
| CVE-2026-83339 | 9.8 | 0.48% | 1 | 0 | 2026-09-16T00:32:27 | Vulnerability in the Oracle WebCenter Enterprise Capture product of Oracle Fusio | |
| CVE-2026-83095 | 9.8 | 0.48% | 1 | 0 | 2026-09-16T00:32:27 | Vulnerability in the Oracle Forms product of Oracle Fusion Middleware (component | |
| CVE-2026-77179 | None | 0.16% | 2 | 0 | 2026-09-16T00:32:25 | On macOS, the virtio-fs host server used by Docker Sandboxes improperly follows | |
| CVE-2026-85893 | 8.8 | 0.68% | 2 | 0 | 2026-09-16T00:31:42 | Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacke | |
| CVE-2026-15640 | None | 0.28% | 4 | 0 | 2026-09-16T00:31:41 | Under certain conditions a valid SAML IdP response may be used to impersonate an | |
| CVE-2026-69486 | 8.8 | 0.66% | 2 | 0 | 2026-09-16T00:31:41 | Heap-based buffer overflow in Microsoft Edge (Chromium-based) allows an unauthor | |
| CVE-2026-15638 | None | 0.20% | 2 | 0 | 2026-09-16T00:31:34 | An unauthenticated user with access to Secret Server could leverage a padding or | |
| CVE-2026-15639 | None | 0.39% | 4 | 0 | 2026-09-16T00:31:33 | An attacker can craft a malicious link that, if used by a legitimate user, may c | |
| CVE-2026-87289 | 7.5 | 0.46% | 2 | 0 | 2026-09-16T00:31:27 | Vulnerability in the Helidon product of Oracle Fusion Middleware (component: hel | |
| CVE-2026-83098 | 9.8 | 0.36% | 1 | 0 | 2026-09-16T00:31:25 | Vulnerability in the Oracle Forms product of Oracle Fusion Middleware (component | |
| CVE-2026-83100 | 9.8 | 0.48% | 1 | 0 | 2026-09-16T00:31:25 | Vulnerability in the Oracle Forms product of Oracle Fusion Middleware (component | |
| CVE-2026-92000 | 7.5 | 0.39% | 2 | 0 | 2026-09-15T21:33:15 | adm-zip versions 0.5.14 through 0.6.0 fail to apply zlib decompression output li | |
| CVE-2026-68070 | 8.8 | 0.27% | 2 | 0 | 2026-09-15T21:33:13 | The affected products are missing authentication for a critical function, which | |
| CVE-2026-66890 | 9.6 | 0.20% | 2 | 0 | 2026-09-15T21:33:13 | The affected products use hard-coded credentials, which could allow remote acces | |
| CVE-2026-87286 | 8.1 | 0.24% | 2 | 0 | 2026-09-15T21:33:13 | Vulnerability in the Oracle GraalVM product of Oracle Java SE (component: Compil | |
| CVE-2026-83149 | 9.1 | 0.26% | 1 | 0 | 2026-09-15T21:32:16 | Vulnerability in Oracle Application Testing Suite. The supported version that | |
| CVE-2026-83103 | 9.1 | 0.47% | 1 | 0 | 2026-09-15T21:32:14 | Vulnerability in the Oracle Forms product of Oracle Fusion Middleware (component | |
| CVE-2026-83107 | 9.1 | 0.47% | 1 | 0 | 2026-09-15T21:32:07 | Vulnerability in the Oracle Forms product of Oracle Fusion Middleware (component | |
| CVE-2026-76670 | 9.9 | 0.45% | 2 | 0 | 2026-09-15T21:31:34 | Privilege escalation vulnerabilities exist in the API of HPE Networking EdgeConn | |
| CVE-2026-92179 | 7.8 | 0.17% | 2 | 0 | 2026-09-15T21:31:29 | pdfforge PDF Architect PDF File Parsing Out-Of-Bounds Write Remote Code Executio | |
| CVE-2026-92178 | 7.8 | 0.17% | 2 | 0 | 2026-09-15T21:31:28 | pdfforge PDF Architect PDF File Parsing Memory Corruption Remote Code Execution | |
| CVE-2026-92180 | 7.8 | 0.14% | 2 | 0 | 2026-09-15T21:31:25 | pdfforge PDF Architect activation-service Update Service Uncontrolled Search Pat | |
| CVE-2026-89040 | 9.8 | 0.93% | 2 | 0 | 2026-09-15T20:19:20.240000 | Tencent Mass Service Engine in Cluster (MSEC) allows a remote, unauthenticated a | |
| CVE-2026-88975 | 7.5 | 0.62% | 2 | 0 | 2026-09-15T20:01:24 | ### Summary An unauthenticated peer can make Ember's HTTP/2 read loop hold 16 Mi | |
| CVE-2026-69213 | 7.5 | 0.36% | 2 | 0 | 2026-09-15T20:00:36 | Ember's HTTP/2 connection serializes all outgoing frames through a single unboun | |
| CVE-2026-90847 | 9.1 | 2.18% | 1 | 0 | 2026-09-15T19:17:46.767000 | A vulnerability was determined in EFM ipTIME C200E 1.094. The impacted element i | |
| CVE-2026-57586 | 8.6 | 0.15% | 1 | 0 | 2026-09-15T19:17:31.030000 | CodeRAG is a lightweight semantic code search and distillation utility for AI co | |
| CVE-2026-20274 | 9.8 | 0.73% | 1 | 0 | 2026-09-15T18:33:13 | As part of Cisco's ongoing commitment to proactive security and product quality, | |
| CVE-2026-91985 | 7.5 | 0.38% | 1 | 0 | 2026-09-15T18:32:43 | Vikunja before 2.6.0 fails to properly restrict access to the link-share hash fi | |
| CVE-2026-91989 | 7.5 | 1.26% | 1 | 0 | 2026-09-15T18:32:42 | atomic-agents-stack before 1.1.0 contains a path traversal vulnerability in the | |
| CVE-2026-76441 | 9.8 | 0.49% | 1 | 0 | 2026-09-15T18:32:19 | As part of Cisco's ongoing commitment to proactive security and product quality, | |
| CVE-2026-20353 | 9.8 | 0.40% | 1 | 0 | 2026-09-15T18:32:19 | As part of Cisco's ongoing commitment to proactive security and product quality, | |
| CVE-2026-20276 | 8.6 | 0.27% | 1 | 0 | 2026-09-15T18:32:13 | As part of Cisco's ongoing commitment to proactive security and product quality, | |
| CVE-2026-76440 | 9.8 | 0.45% | 1 | 0 | 2026-09-15T18:19:12.950000 | As part of Cisco's ongoing commitment to proactive security and product quality, | |
| CVE-2026-20275 | 8.8 | 0.19% | 1 | 0 | 2026-09-15T18:17:18.413000 | As part of Cisco's ongoing commitment to proactive security and product quality, | |
| CVE-2026-89026 | 9.8 | 0.52% | 7 | 1 | 2026-09-15T17:17:33.510000 | The Issabel Framework, the web framework supporting Issabel PBX software, before | |
| CVE-2026-39919 | 9.8 | 0.49% | 2 | 0 | 2026-09-15T15:32:20 | Ghostscript before 10.08.0 contains a heap-based buffer overflow vulnerability i | |
| CVE-2026-90439 | 6.5 | 0.26% | 1 | 0 | 2026-09-15T15:32:20 | NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_v3_module | |
| CVE-2026-63696 | 9.1 | 0.32% | 1 | 0 | 2026-09-15T15:32:20 | Dell SmartFabric OS10 Software, versions prior to 10.6.1.3, contains a Download | |
| CVE-2026-63695 | 9.8 | 0.53% | 1 | 0 | 2026-09-15T15:32:20 | Dell SmartFabric OS10 Software, versions prior to 10.6.1.3, contains a Session F | |
| CVE-2026-89025 | 7.5 | 0.42% | 1 | 0 | 2026-09-15T15:17:26.720000 | Hirschmann HiOS Switch Platform devices contain a denial-of-service vulnerabilit | |
| CVE-2026-75983 | 7.5 | 0.41% | 1 | 0 | 2026-09-15T15:17:21.443000 | The Eventin – Event Calendar, Tickets, Registration, Booking & WooCommerce plugi | |
| CVE-2026-45051 | 0 | 0.51% | 1 | 0 | 2026-09-15T14:16:54.240000 | Open Access Management (OpenAM) is an access management solution. Prior to 16.1. | |
| CVE-2026-76461 | 9.8 | 2.01% | 31 | 3 | 2026-09-15T12:47:32.497000 | A vulnerability in the email parsing of Cisco AsyncOS Software for Cisco Secure | |
| CVE-2026-91995 | 9.1 | 0.61% | 1 | 0 | 2026-09-15T12:31:54 | pig before 4.1.0 contains an authentication bypass vulnerability in the /registe | |
| CVE-2026-89308 | None | 2.97% | 1 | 0 | 2026-09-15T12:31:54 | An unauthenticated OS command injection vulnerability exists in the ping.php end | |
| CVE-2026-80217 | 8.8 | 0.28% | 1 | 0 | 2026-09-15T09:30:39 | Hidden functionality issue exists in FF-RFI079I4 and FF-RFI078I4, which may allo | |
| CVE-2026-91003 | 9.1 | 0.51% | 2 | 0 | 2026-09-15T06:30:40 | A flaw has been found in D-Link DI-8300 16.07. The affected element is the funct | |
| CVE-2026-91001 | 9.9 | 0.48% | 2 | 0 | 2026-09-15T06:30:39 | A security flaw has been discovered in D-Link DI-8400 16.07. This affects the fu | |
| CVE-2026-91771 | 8.8 | 0.73% | 1 | 0 | 2026-09-15T03:30:30 | Weights & Biases wandb before 0.29.0 fails to validate the file name from server | |
| CVE-2026-91200 | 8.8 | 0.42% | 1 | 0 | 2026-09-15T00:31:22 | DevSpace through 6.3.21 fails to reject parent-directory segments in tar entry n | |
| CVE-2026-12944 | 9.6 | 0.25% | 4 | 2 | 2026-09-15T00:31:21 | IBM Langflow OSS 1.0.0 through 1.10.0 can allow attackers to execute arbitrary P | |
| CVE-2026-91144 | 7.5 | 0.37% | 1 | 0 | 2026-09-15T00:31:21 | ZFile through 5.0.5 fails to validate requested file paths against a share link' | |
| CVE-2026-65352 | 4.3 | 0.25% | 1 | 0 | 2026-09-15T00:31:13 | An information disclosure issue was addressed with improved state management. Th | |
| CVE-2026-82232 | 9.8 | 0.56% | 2 | 0 | 2026-09-14T21:32:45 | Improper neutralization of special elements used in an SQL command ('SQL injecti | |
| CVE-2026-89023 | 8.6 | 0.23% | 1 | 0 | 2026-09-14T21:31:42 | ThemeAtelier Domain For Sale plugin for WordPress before 3.5.2 contains a missin | |
| CVE-2026-78330 | 9.8 | 0.60% | 1 | 0 | 2026-09-14T20:58:48.430000 | Incorrect privilege assignment vulnerability in Apache Syncope. When the config | |
| CVE-2026-91079 | 8.5 | 0.35% | 1 | 0 | 2026-09-14T20:17:03.600000 | Huly Platform through 0.7.426 contains a server-side request forgery vulnerabili | |
| CVE-2026-90946 | 7.5 | 0.57% | 1 | 0 | 2026-09-14T19:18:13.990000 | DeepWiki-Open through commit d92819a contains an arbitrary file read vulnerabili | |
| CVE-2026-59178 | 9.8 | 0.42% | 1 | 0 | 2026-09-14T19:17:37.617000 | ESPHome Device Builder Dashboard is a dashboard for the ESPHome home management | |
| CVE-2026-91080 | 7.5 | 0.59% | 1 | 0 | 2026-09-14T18:31:35 | webhook through 2.8.3 reads the entire request body into memory before evaluatin | |
| CVE-2026-85921 | 8.2 | 0.26% | 1 | 0 | 2026-09-14T18:31:29 | Double free in Windows Secure Kernel Mode allows an authorized attacker to eleva | |
| CVE-2026-90945 | 9.8 | 0.53% | 2 | 0 | 2026-09-14T18:31:28 | Crawlab through 0.6.3 uses a hard-coded HMAC-SHA256 secret for JWT token signing | |
| CVE-2026-89471 | 8.4 | 0.14% | 1 | 0 | 2026-09-14T15:33:32 | In the Linux kernel, the following vulnerability has been resolved: power: supp | |
| CVE-2026-81008 | 7.8 | 0.16% | 1 | 0 | 2026-09-14T15:33:29 | In the Linux kernel, the following vulnerability has been resolved: interconnec | |
| CVE-2026-81011 | 7.1 | 0.12% | 1 | 0 | 2026-09-14T15:33:28 | In the Linux kernel, the following vulnerability has been resolved: platform/x8 | |
| CVE-2026-80973 | None | 0.21% | 1 | 0 | 2026-09-14T15:33:27 | In the Linux kernel, the following vulnerability has been resolved: ALSA: 6fire | |
| CVE-2026-89495 | 9.8 | 0.70% | 1 | 0 | 2026-09-14T15:32:27 | In the Linux kernel, the following vulnerability has been resolved: ocfs2: boun | |
| CVE-2026-89489 | 7.8 | 0.14% | 1 | 0 | 2026-09-14T15:32:27 | In the Linux kernel, the following vulnerability has been resolved: openrisc: f | |
| CVE-2026-89465 | 8.4 | 0.14% | 1 | 0 | 2026-09-14T15:32:25 | In the Linux kernel, the following vulnerability has been resolved: power: supp | |
| CVE-2026-80979 | 7.8 | 0.13% | 1 | 0 | 2026-09-14T15:32:22 | In the Linux kernel, the following vulnerability has been resolved: net/smc: un | |
| CVE-2026-80931 | 7.8 | 0.13% | 1 | 0 | 2026-09-14T15:32:20 | In the Linux kernel, the following vulnerability has been resolved: w1: ds28e17 | |
| CVE-2026-43502 | 7.8 | 0.12% | 1 | 1 | 2026-09-14T15:32:07 | In the Linux kernel, the following vulnerability has been resolved: net/rds: ha | |
| CVE-2026-89475 | 0 | 0.21% | 1 | 0 | 2026-09-14T13:19:03.853000 | In the Linux kernel, the following vulnerability has been resolved: power: supp | |
| CVE-2026-81000 | 7.8 | 0.16% | 1 | 0 | 2026-09-14T13:18:54.210000 | In the Linux kernel, the following vulnerability has been resolved: net: tun: b | |
| CVE-2026-80989 | 8.8 | 0.34% | 1 | 0 | 2026-09-14T13:18:53.647000 | In the Linux kernel, the following vulnerability has been resolved: net: thunde | |
| CVE-2026-90894 | 7.8 | 0.15% | 2 | 0 | 2026-09-14T12:31:44 | Parallels Desktop runs prl_disp_service as root. Local clients reach it on the w | |
| CVE-2026-12518 | None | 0.11% | 1 | 0 | 2026-09-14T09:31:09 | A local privilege escalation vulnerability in the Logitech Logi Options+ updater | |
| CVE-2026-89501 | 7.8 | 0.16% | 1 | 0 | 2026-09-13T09:33:28 | In the Linux kernel, the following vulnerability has been resolved: ring-buffer | |
| CVE-2026-80981 | 9.8 | 0.59% | 1 | 0 | 2026-09-13T09:33:25 | In the Linux kernel, the following vulnerability has been resolved: net/smc: fi | |
| CVE-2026-81006 | 7.8 | 0.13% | 1 | 0 | 2026-09-13T09:33:21 | In the Linux kernel, the following vulnerability has been resolved: ipmi: Remov | |
| CVE-2026-80995 | 7.8 | 0.12% | 1 | 0 | 2026-09-13T07:17:06.230000 | In the Linux kernel, the following vulnerability has been resolved: net: mctp: | |
| CVE-2026-80955 | 7.8 | 0.16% | 1 | 0 | 2026-09-13T07:17:02.700000 | In the Linux kernel, the following vulnerability has been resolved: dm-pcache: | |
| CVE-2026-80945 | 9.1 | 0.47% | 1 | 0 | 2026-09-13T07:17:01.827000 | In the Linux kernel, the following vulnerability has been resolved: crypto: iaa | |
| CVE-2026-80943 | 7.6 | 0.25% | 1 | 0 | 2026-09-13T07:17:01.543000 | In the Linux kernel, the following vulnerability has been resolved: wifi: rtlwi | |
| CVE-2026-80936 | 7.8 | 0.13% | 1 | 0 | 2026-09-13T07:17:01.293000 | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: | |
| CVE-2026-85706 | 10.0 | 11.96% | 12 | 12 | 2026-09-12T12:30:50 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.7 | |
| CVE-2026-78159 | 9.8 | 0.76% | 2 | 0 | 2026-09-12T09:33:41 | The The Events Calendar plugin for WordPress is vulnerable to Remote Code Execut | |
| CVE-2026-78006 | 9.8 | 0.78% | 2 | 2 | 2026-09-12T09:33:41 | The The Events Calendar plugin for WordPress is vulnerable to Remote Code Execut | |
| CVE-2026-89506 | None | 0.17% | 1 | 0 | 2026-09-11T21:31:37 | In the Linux kernel, the following vulnerability has been resolved: RDMA/uverbs | |
| CVE-2026-89462 | None | 0.17% | 1 | 0 | 2026-09-11T21:31:32 | In the Linux kernel, the following vulnerability has been resolved: power: supp | |
| CVE-2026-80960 | None | 0.20% | 1 | 0 | 2026-09-11T21:31:26 | In the Linux kernel, the following vulnerability has been resolved: dm-pcache: | |
| CVE-2026-84869 | 9.9 | 0.69% | 5 | 0 | 2026-09-11T21:31:17 | A condition in the ScreenConnect client may allow files to be transferred and ex | |
| CVE-2026-42016 | 8.1 | 0.89% | 3 | 0 | 2026-09-11T21:31:06 | JFrog Artifactory (Self Hosted) versions before 7.133.11 are vulnerable to a pri | |
| CVE-2026-59971 | 10.0 | 0.39% | 1 | 0 | 2026-09-11T20:36:20 | ## Summary In SSE/HTTP transport mode, `mysql_mcp_server` constructs `SseServer | |
| CVE-2026-89514 | 0 | 0.17% | 2 | 0 | 2026-09-11T20:19:33.913000 | In the Linux kernel, the following vulnerability has been resolved: scsi: fnic: | |
| CVE-2026-89446 | 0 | 0.20% | 1 | 0 | 2026-09-11T20:19:25.110000 | In the Linux kernel, the following vulnerability has been resolved: iommufd: Re | |
| CVE-2026-81861 | 0 | 0.38% | 2 | 1 | 2026-09-11T20:19:13.263000 | CWE-522: Insufficiently Protected Credentials vulnerability that could result in | |
| CVE-2026-86060 | 9.8 | 1.06% | 1 | 1 | 2026-09-11T12:52:16.507000 | RouterOS contains an argument-handling flaw in the SSH login path involving user | |
| CVE-2026-82079 | 8.4 | 0.16% | 3 | 0 | 2026-09-11T03:31:25 | A stack-based buffer overflow vulnerability in the Nintendo Switch local wireles | |
| CVE-2026-59160 | 8.8 | 0.41% | 2 | 0 | 2026-09-09T23:47:56 | ## Unauthenticated Network-Exposed Turborepo Task Execution via /api/run ### Su | |
| CVE-2026-20079 | 10.0 | 75.75% | 2 | 3 | 2026-09-09T21:31:33 | A vulnerability in the web interface of Cisco Secure Firewall Management Center | |
| CVE-2026-58113 | 6.1 | 0.22% | 2 | 0 | 2026-09-09T16:17:03.483000 | A vulnerability has been identified in Teamcenter V2412 (All versions < V2412.00 | |
| CVE-2026-87827 | None | 1.07% | 1 | 0 | 2026-09-09T12:32:22 | Certain KGUARD DVR devices running vulnerable firmware expose a system command e | |
| CVE-2026-85880 | 7.8 | 0.57% | 1 | 0 | 2026-09-09T05:18:19.193000 | Heap-based buffer overflow in Windows ALPC allows an authorized attacker to elev | |
| CVE-2026-75650 | 10.0 | 2.15% | 1 | 5 | 2026-09-09T05:18:07.237000 | Adobe Commerce is affected by an Improper Neutralization of Special Elements Use | |
| CVE-2026-58240 | 9.8 | 0.34% | 1 | 0 | 2026-09-09T05:17:26.417000 | SAP NetWeaver Message Server does not sufficiently validate the authenticity of | |
| CVE-2026-15534 | 5.7 | 0.17% | 2 | 0 | 2026-09-08T22:17:38.113000 | Perl versions through 5.45.1 have out-of-bounds heap reads and writes during reg | |
| CVE-2026-81963 | 7.8 | 0.63% | 1 | 0 | 2026-09-08T21:34:09 | Improper link resolution before file access ('link following') in Windows Update | |
| CVE-2026-60004 | 9.8 | 86.78% | 2 | 10 | 2026-09-08T17:56:31 | ### Summary Gitea's `diffpatch` endpoint can be abused to install and execute a | |
| CVE-2026-48888 | 7.5 | 0.26% | 1 | 0 | 2026-09-08T13:12:58.310000 | Allocation of Resources Without Limits or Throttling vulnerability in Automattic | |
| CVE-2026-15315 | 8.8 | 0.30% | 4 | 1 | 2026-09-04T18:32:18 | Tapo C200 v5 contains an improper authentication vulnerability within the login | |
| CVE-2026-80863 | None | 0.18% | 1 | 0 | 2026-09-04T18:31:40 | In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: F | |
| CVE-2026-15316 | 6.5 | 0.23% | 4 | 1 | 2026-09-04T18:31:13 | An improper input validation vulnerability in the configuration service for proc | |
| CVE-2026-80881 | 0 | 0.17% | 1 | 0 | 2026-09-04T17:17:00.390000 | In the Linux kernel, the following vulnerability has been resolved: ocfs2: fix | |
| CVE-2026-81572 | 7.8 | 0.17% | 1 | 0 | 2026-09-01T20:56:59.203000 | In CodeMeter Runtime from version 8.40 to (excluding) 8.41a and 9.00 to (excludi | |
| CVE-2026-81576 | 7.7 | 0.33% | 1 | 0 | 2026-09-01T20:56:59.203000 | If configured as a server, CodeMeter Runtime before versions 8.41a and 9.10 issu | |
| CVE-2026-56210 | 7.1 | 0.31% | 2 | 0 | 2026-09-01T13:19:50.477000 | A heap-buffer-overflow read vulnerability was found in libaom, the reference AV1 | |
| CVE-2026-39113 | 4.0 | 0.21% | 2 | 1 | 2026-08-31T18:31:16 | Buffer Overflow vulnerability in SQLite affected version source snapshots/builds | |
| CVE-2026-56211 | 7.1 | 0.48% | 2 | 0 | 2026-08-31T15:34:31 | A remote code execution vulnerability was found in libaom, the reference AV1 cod | |
| CVE-2026-56208 | 7.6 | 0.42% | 2 | 0 | 2026-08-31T15:34:31 | A heap buffer overflow vulnerability was found in libaom, the reference AV1 code | |
| CVE-2026-56209 | 7.1 | 0.35% | 2 | 0 | 2026-08-31T15:34:31 | An arbitrary address write vulnerability was found in libaom, the reference AV1 | |
| CVE-2026-81574 | 8.2 | 0.41% | 1 | 0 | 2026-08-27T12:30:27 | In CodeMeter Runtime before versions 8.41a and 9.10, the logger does not sanitiz | |
| CVE-2026-81573 | 8.6 | 0.46% | 1 | 0 | 2026-08-27T12:30:27 | If CodeMeter Runtime before 8.41a or 9.10 is configured as a server, the configu | |
| CVE-2026-81575 | 7.5 | 0.44% | 1 | 0 | 2026-08-27T12:30:26 | If configured as a server, CodeMeter Runtime before versions 8.41a and 9.10 acce | |
| CVE-2026-56368 | 3.7 | 0.26% | 1 | 0 | 2026-08-26T20:48:48 | A memory leak vulnerability exists in multiple coders that write raw pixel data | |
| CVE-2026-59310 | 9.8 | 45.88% | 2 | 2 | 2026-08-18T18:32:52 | VMware vCenter contains a directory traversal vulnerability in the Syslog server | |
| CVE-2026-19487 | 5.3 | 0.42% | 2 | 0 | 2026-08-13T21:37:11 | Perl versions from 5.9.4 before 5.41.9 produce incorrect regular expression matc | |
| CVE-2026-62721 | 7.8 | 0.41% | 1 | 0 | 2026-08-11T18:31:23 | Insufficient granularity of access control in User-Mode Power Service (UMPS) all | |
| CVE-2026-5430 | 10.0 | 0.32% | 6 | 1 | 2026-08-10T12:35:29.103000 | The JWT authentication mechanism accepts tokens signed with algorithms other tha | |
| CVE-2026-15830 | 5.3 | 1.26% | 2 | 0 | 2026-08-04T18:31:31 | An issue was discovered in Django 5.2 before 5.2.17 and 6.0 before 6.0.8. GeoDja | |
| CVE-2026-62946 | 5.1 | 0.09% | 1 | 0 | 2026-08-03T16:19:22.763000 | ImageMagick is free and open-source software used for editing and manipulating d | |
| CVE-2026-45659 | 8.8 | 76.08% | 2 | 2 | 2026-07-23T11:10:00.120000 | Deserialization of untrusted data in Microsoft Office SharePoint allows an autho | |
| CVE-2026-61864 | 2.9 | 0.10% | 1 | 0 | 2026-07-15T12:32:06 | ImageMagick before 7.1.2-26 and 6.9.13-51 contains a memory leak in color transf | |
| CVE-2026-61863 | 2.9 | 0.19% | 1 | 0 | 2026-07-15T12:32:05 | ImageMagick before 7.1.2-26 (and 6.x before 6.9.13-51) contains a memory leak in | |
| CVE-2026-61866 | 2.9 | 0.19% | 1 | 0 | 2026-07-15T12:32:05 | ImageMagick before 7.1.2-26 contains a memory leak vulnerability in the JNG enco | |
| CVE-2026-61865 | 2.9 | 0.10% | 1 | 0 | 2026-07-15T12:32:05 | ImageMagick before 7.1.2-26 and 6.9.13-51 contains a memory leak in the hough li | |
| CVE-2026-61465 | 3.3 | 0.17% | 1 | 0 | 2026-07-14T15:17:09.260000 | ImageMagick before 7.1.2-26 and 6.9.13-51 is missing a check for the allowed mem | |
| CVE-2026-56366 | 3.3 | 0.17% | 1 | 0 | 2026-07-14T02:16:56.757000 | ImageMagick before 7.1.2-18 contains a memory leak vulnerability in the META rea | |
| CVE-2026-61870 | 2.9 | 0.19% | 1 | 0 | 2026-07-13T22:07:31.147000 | ImageMagick before 7.1.2-26 contains a memory leak vulnerability in the VIFF enc | |
| CVE-2026-56373 | 3.7 | 0.23% | 1 | 0 | 2026-07-13T15:15:51.143000 | ImageMagick before 7.1.2-15 contains a use-after-free vulnerability in the PDB d | |
| CVE-2026-61857 | 3.7 | 0.27% | 1 | 0 | 2026-07-11T15:30:30 | ImageMagick before 7.1.2-26 contains a heap use-after-free vulnerability caused | |
| CVE-2026-55945 | 4.2 | 0.19% | 1 | 0 | 2026-07-03T21:31:47 | Concurrent execution using shared resource with improper synchronization ('race | |
| CVE-2026-56371 | 5.3 | 0.26% | 1 | 0 | 2026-07-02T15:17:07.390000 | ImageMagick before 7.1.2-15 and 6.9.13-40 contains a memory leak in coders/txt.c | |
| CVE-2026-56379 | None | 0.88% | 1 | 0 | 2026-06-30T03:38:15 | ImageMagick before 7.1.2-15 and 6.9.13-40 contains a command injection vulnerabi | |
| CVE-2026-47203 | None | 0.45% | 2 | 0 | 2026-06-26T21:32:44 | ### Impact **CVSSv4 Baseline Score:** Moderate 6.3 **CVSSv4 Weighted Score:** | |
| CVE-2026-56378 | 3.7 | 0.22% | 1 | 0 | 2026-06-26T13:41:36.727000 | ImageMagick before 7.1.2-15 (and 6.x before 6.9.13-40) contains a heap out-of-bo | |
| CVE-2026-56370 | 3.3 | 0.12% | 1 | 0 | 2026-06-24T13:10:05 | When the `connected-components:*` define specifies an invalid index and out of b | |
| CVE-2026-32746 | 9.8 | 23.67% | 6 | 8 | 2026-06-17T10:36:18.783000 | telnetd in GNU inetutils through 2.7 allows an out-of-bounds write in the LINEMO | |
| CVE-2026-27540 | 9.0 | 2.32% | 5 | 1 | 2026-06-17T10:27:18.693000 | Unrestricted Upload of File with Dangerous Type vulnerability in Rymera Web Co P | |
| CVE-2026-0628 | 8.8 | 6.63% | 1 | 2 | 2026-06-17T10:11:06.543000 | Insufficient policy enforcement in WebView tag in Google Chrome prior to 143.0.7 | |
| CVE-2025-30208 | 5.3 | 74.97% | 1 | 23 | 2026-06-17T09:08:21.517000 | Vite, a provider of frontend development tooling, has a vulnerability in version | |
| CVE-2024-3400 | 10.0 | 100.00% | 1 | 45 | 2026-06-17T07:44:11.533000 | A command injection as a result of arbitrary file creation vulnerability in the | |
| CVE-2025-48595 | 8.4 | 1.71% | 2 | 3 | 2026-06-02T21:30:39 | In multiple locations, there is a possible way to achieve code execution due to | |
| CVE-2026-39987 | 9.8 | 98.95% | 1 | 25 | 2026-04-27T16:30:09 | ## Summary Marimo (19.6k stars) has a Pre-Auth RCE vulnerability. The terminal | |
| CVE-2026-39364 | None | 2.00% | 3 | 0 | 2026-04-07T22:16:19 | ### Summary The contents of files that are specified by [`server.fs.deny`](http | |
| CVE-2025-31125 | 5.3 | 58.46% | 1 | 7 | 2026-01-22T21:47:41 | ### Summary The contents of arbitrary files can be returned to the browser. ## | |
| CVE-2023-38198 | 9.8 | 1.08% | 2 | 0 | 2024-10-30T21:30:36 | acme.sh before 3.0.6 runs arbitrary commands from a remote server via eval, as e | |
| CVE-2024-20260 | 8.6 | 0.62% | 2 | 0 | 2024-10-23T18:33:16 | A vulnerability in the VPN and management web servers of the Cisco Adaptive Secu | |
| CVE-2024-45811 | 5.3 | 1.06% | 1 | 0 | 2024-09-19T18:34:34 | ### Summary The contents of arbitrary files can be returned to the browser. ### | |
| CVE-2024-3094 | 10.0 | 85.97% | 2 | 90 | 2024-03-29T18:30:50 | Malicious code was discovered in the upstream tarballs of xz, starting with vers | |
| CVE-2026-87886 | 0 | 0.00% | 9 | 0 | N/A | ||
| CVE-2026-61642 | 0 | 0.00% | 2 | 0 | N/A | ||
| CVE-2026-85498 | 0 | 0.00% | 2 | 0 | N/A | ||
| CVE-2026-88065 | 0 | 0.37% | 2 | 0 | N/A | ||
| CVE-2026-63443 | 0 | 0.42% | 2 | 0 | N/A | ||
| CVE-2026-73496 | 0 | 0.33% | 1 | 0 | N/A |
updated 2026-09-17T05:17:02.123000
2 posts
CVE-2026-87796 (CRITICAL, CVSS 9.8): sh1zen Multi Uploader for Gravity Forms ≤1.1.9 lets unauthenticated attackers upload arbitrary files, risking remote code execution. No patch yet — disable the plugin or restrict uploads. https://radar.offseq.com/threat/cve-2026-87796-cwe-434-unrestricted-upload-of-file-with-dangerous-type-in-sh1zen-multi-uploader-for-cfd4181d51e0b5e2 #OffSeq #WordPress #CVE #RCE
##CVE-2026-87796 (CRITICAL, CVSS 9.8): sh1zen Multi Uploader for Gravity Forms ≤1.1.9 lets unauthenticated attackers upload arbitrary files, risking remote code execution. No patch yet — disable the plugin or restrict uploads. https://radar.offseq.com/threat/cve-2026-87796-cwe-434-unrestricted-upload-of-file-with-dangerous-type-in-sh1zen-multi-uploader-for-cfd4181d51e0b5e2 #OffSeq #WordPress #CVE #RCE
##updated 2026-09-17T04:18:10.730000
7 posts
Critical Check Point Security Flaw Exposes Management Servers to Root-Level Remote Code Execution + Video
A Dangerous Vulnerability in the Security Control Plane A newly disclosed vulnerability in Check Point management infrastructure has created an urgent patching situation for organizations relying on the company’s security platforms. Tracked as CVE-2026-91843, the flaw is rated CVSS 9.8, Critical, and could allow an unauthenticated remote attacker to execute…
##🚨New Censys Advisory: CVE-2026-91843
A critical (CVSS 9.8) unauthenticated RCE affects Check Point Quantum Security Management and Log Servers.
Censys observes 3,836 hosts globally exposing the management/log server role. This is total product presence, not a confirmed-vulnerable count.
No public PoC or confirmed exploitation has been reported as of publication. Check Point has released patches for supported versions via LivePatch.
Read the analysis and remediation details: https://censys.com/advisory/cve-2026-91843/
##🚨 Please read this important update from Check Point:
CVE-2026-91843 - Stack overflow in login process to the Security Management and Log Servers
https://support.checkpoint.com/results/sk/sk1000155
#CheckPoint #CheckPointsoftwareTechnologies #CVE #CVE202691843
##Check Point fixed a critical Check Point login flaw (CVE-2026-91843). Patch this Check Point login flaw now to block unauthenticated remote root takeovers.
#CheckPoint #Cybersecurity #CVE202691843 #InfoSec #Vulnerability
##🚨New Censys Advisory: CVE-2026-91843
A critical (CVSS 9.8) unauthenticated RCE affects Check Point Quantum Security Management and Log Servers.
Censys observes 3,836 hosts globally exposing the management/log server role. This is total product presence, not a confirmed-vulnerable count.
No public PoC or confirmed exploitation has been reported as of publication. Check Point has released patches for supported versions via LivePatch.
Read the analysis and remediation details: https://censys.com/advisory/cve-2026-91843/
##🚨 Please read this important update from Check Point:
CVE-2026-91843 - Stack overflow in login process to the Security Management and Log Servers
https://support.checkpoint.com/results/sk/sk1000155
#CheckPoint #CheckPointsoftwareTechnologies #CVE #CVE202691843
##Check Point fixed a critical Check Point login flaw (CVE-2026-91843). Patch this Check Point login flaw now to block unauthenticated remote root takeovers.
#CheckPoint #Cybersecurity #CVE202691843 #InfoSec #Vulnerability
##updated 2026-09-17T04:18:01.527000
10 posts
CRITICAL auth bypass (CVE-2026-76460) in Cisco ISE & ISE-PIC is being actively exploited. Remote attackers gain root on management interface via crafted API calls. Patch ASAP — no workarounds except ACLs. Details: https://radar.offseq.com/threat/active-exploitation-triggers-emergency-patch-for-cisco-ise-zero-day-d5bd452a61e0a8f8 #OffSeq #Cisco #ZeroDay
##Cisco’s Critical ISE Zero-Day Is Being Exploited: CVE-2026-76460 Gives Remote Attackers a Path to Root Access + Video
A New Cisco Emergency for Security Teams A serious new vulnerability in Cisco Identity Services Engine has moved rapidly from disclosure to active exploitation, creating an immediate security concern for organizations that rely on ISE to control identity, authentication, and network access. Cisco has assigned the flaw CVE-2026-76460, giving it the…
##Cisco confirmed active exploitation of CVE-2026-76460, an authentication bypass in an ISE API endpoint. Unauthenticated remote access can lead to root compromise of ISE and ISE-PIC, now listed in CISA KEV. Patching and log review are urgent. #CiscoIse #AuthBypass #CisaKev
https://cyberworldops.eu/en/cisco-ise-api-authentication-flaw-opens-a-remote-path-to-root-access
##Shownotes:
Scans Targeting Hospitality Applications
https://isc.sans.edu/diary/Scans%20Targeting%20Hospitality%20Applications/33344
Cisco Identity Services Engine Authentication Bypass Vulnerability CVE-2026-76460
https://sec.cloudapps.cisco.com/
AntennaPod | Anytime Player | Apple Podcasts | Castamatic | CurioCaster | Fountain | gPodder | Overcast | Pocket Casts | Podcast Addict | Podcast Guru | Podnews | Podverse | Truefans
Or Listen right here.
##Patch your Cisco ISE. CVE-2026-76460 a perfect 10 and is EITW. 🥳
##The Cisco PSIRT is aware of active exploitation of this vulnerability. Cisco strongly recommends that customers upgrade to a fixed software release to remediate this vulnerability.
An exploited Cisco ISE vulnerability (CVE-2026-76460) allows remote root access. Patch this critical Cisco ISE vulnerability to secure networks.
##CRITICAL auth bypass (CVE-2026-76460) in Cisco ISE & ISE-PIC is being actively exploited. Remote attackers gain root on management interface via crafted API calls. Patch ASAP — no workarounds except ACLs. Details: https://radar.offseq.com/threat/active-exploitation-triggers-emergency-patch-for-cisco-ise-zero-day-d5bd452a61e0a8f8 #OffSeq #Cisco #ZeroDay
##Cisco confirmed active exploitation of CVE-2026-76460, an authentication bypass in an ISE API endpoint. Unauthenticated remote access can lead to root compromise of ISE and ISE-PIC, now listed in CISA KEV. Patching and log review are urgent. #CiscoIse #AuthBypass #CisaKev
https://cyberworldops.eu/en/cisco-ise-api-authentication-flaw-opens-a-remote-path-to-root-access
##Patch your Cisco ISE. CVE-2026-76460 a perfect 10 and is EITW. 🥳
##The Cisco PSIRT is aware of active exploitation of this vulnerability. Cisco strongly recommends that customers upgrade to a fixed software release to remediate this vulnerability.
An exploited Cisco ISE vulnerability (CVE-2026-76460) allows remote root access. Patch this critical Cisco ISE vulnerability to secure networks.
##updated 2026-09-17T04:17:54.930000
34 posts
「Google Pixel端末がゼロクリック攻撃でハッキングされる
/CISAは連邦政府機関に対し、パッチ適用にわずか3日間しか猶予を与えていない。 」: #TheRegister
「Googleと米国政府は、Pixelスマートフォンの携帯モデムに存在するゼロデイ脆弱性を悪用した攻撃者が、権限チェックを回避し、ユーザーの操作なしに権限を昇格できると警告した。この脆弱性は、アップデートを行うことで既に修正されている。
Googleは 火曜日に、 CVE-2026-58704 として追跡されているこの重大な脆弱性 を公表し 、その際、このセキュリティホールが「限定的かつ標的を絞った悪用を受けている可能性がある」と警告した。つまり、Googleが問題を修正する前に、悪意のある人物がこのバグを発見し、悪用していたということだ。」
##「Google、限定的な標的型攻撃の兆候が見られる中、Pixelモデムの脆弱性を修正 」: #TheHackerNews
「Googleは、 明らかにした。 同社のPixel Cellular Modemに存在する深刻なセキュリティ上の欠陥が、実際に悪用されていることを
(CVSSスコア:8.0)として追跡されているこの脆弱性は CVE-2026-58704 、権限昇格の欠陥です。
によると、「セルラーモデムには、コードの論理エラーにより権限がバイパスされる可能性がある」とのことです NIST(米国国立標準技術研究所)の国家脆弱性データベース(NVD)に掲載されているバグの説明 。「これにより、追加の実行権限を必要とせずに、リモート(近接/隣接)での権限昇格が可能になる可能性がある。悪用にはユーザーの操作は不要である。」 」
https://thehackernews.com/2026/09/google-patches-pixel-modem-flaw-amid.html
##Google confirmed a Pixel modem zero-day (CVE-2026-58704) exploited in a zero-click spyware attack to escape the modem sandbox. Update now.
#Pixel #ZeroDay #CVE202658704 #Google #Spyware #ZeroClick #CyberSecurity
https://securityexpress.info/pixel-modem-zero-day/?utm_source=mastodon&utm_medium=jetpack_social
##(CISA CS-MAN) The Cyber Mind CSUITE Brief: CVE-2026-58704 – Google Pixel Improper Authorization Vulnerability
A strategic executive briefing detailing governance, risk mitigation, and compliance frameworks for CVE-2026-58704 on Google Pixel mobile devices....
##Google and CISA warned that an actively exploited zero-day vulnerability (CVE-2026-58704) affecting Pixel cellular modems.
This allows attackers to silently bypass permission checks and escalate privileges with no user interaction!
It was quickly added to CISA's Known Exploited Vulnerabilities (KEV) catalog [1.2.1, 1.5.1].
Would be an excellent idea for Pixel owners to ownload and apply the September Android OS patches ASAP!
##(CISA TS-MAN) The Cyber Mind TSUITE Brief: CVE-2026-58704 – Google Pixel Improper Authorization Vulnerability
Actionable threat intelligence and end-to-end hardening strategies for CVE-2026-58704, addressing improper authorization flaws in Google Pixel cellular modems....
##Google confirms Pixel phones exploited in 'targeted' modem based attack
Google은 2026년 9월 보안 업데이트에서 Pixel 기기에 영향을 주는 셀룰러 모뎀 취약점 CVE-2026-58704를 수정했으며, 해당 취약점이 제한적·표적형 공격에 실제 악용됐다고 밝혔다. 이 논리 오류 기반 권한 우회는 사용자 상호작용 없이 인접 네트워크 범위에서 권한 상승을 유발할 수 있어, 제로클릭 공격 경로로 분류된다. CISA도 이를 알려진 악용 취약점(KEV)으로 등록했으며, Pixel 사용자는 즉시 9월 보안 패치를 적용해야 한다. AI 특화 이슈는 아니지만 개발자와 조직의 모바일 단말 보...
https://9to5google.com/2026/09/16/google-pixel-targeted-zero-day-modem-attack/
##Google patched CVE-2026-58704, a high-severity Pixel Cellular Modem privilege-escalation flaw reportedly exploited in limited, targeted attacks. Its addition to CISA’s KEV Catalog underscores the need to prioritize affected device updates. #ZeroDay #MobileSecurity #ThreatIntelligence
https://cyberworldops.eu/en/google-patches-pixel-modem-zero-day-exploited-in-targeted-attacks
##New.
Press release: New CISA Guidance Helps Critical Infrastructure Detect, Observe and Impede Malicious Cyber Activity https://www.cisa.gov/news-events/news/new-cisa-guidance-helps-critical-infrastructure-detect-observe-and-impede-malicious-cyber-activity
The guide: Using Cyber Decoys to Strengthen Detection and Response https://www.cisa.gov/resources-tools/resources/using-cyber-decoys-strengthen-detection-and-response
CISA has also added one vulnerability to the catalogue.
CVE-2026-58704: Google Pixel Improper Authorization Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-58704 #Google #infosec #vulnerability #CISA
##🏆 New Achievement! Tutorial: Learning to Live With Being Actively Exploited!
Welcome to the Mandatory Pixel Debuff Sequence. Before you proceed, please note that CVE-2026-58704 has been equipped to your device without your consent. This is a zero-day — that means the tutorial boss was already in your pocket before the level loaded. (1/3)
##📰 Google Patches Actively Exploited Zero-Day Flaw in Pixel Modems
Google patches high-severity zero-day (CVE-2026-58704) in Pixel modems. The flaw allows for remote privilege escalation and is under limited, targeted exploitation. CISA added to KEV. Update your Pixel now! #Pixel #Android #ZeroDay
##🚨 [CISA-2026:0916] CISA Adds One Known Exploited Vulnerability to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0916)
CISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2026-58704 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-58704)
- Name: Google Pixel Improper Authorization Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Google
- Product: Pixel
- Notes: https://source.android.com/docs/security/bulletin/pixel/2026/2026-09-01 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-58704
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260916 #cisa20260916 #cve_2026_58704 #cve202658704
##If you've got a Google Pixel cell phone, do a system patch immediately. There is an active vulnerability that allows the hacker to take control of your device with no user interaction. It is being actively used in the wild.
##Google corrige falha zero-day em telemóveis Pixel com atualização que resolve 110 vulnerabilidades. A falha, identificada como CVE-2026-58704, está a ser explorada em ataques direcionados de alcance limitado. 📱
##CVE ID: CVE-2026-58704
Vendor: Google
Product: Pixel
Date Added: 2026-09-16
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-58704
@skyblitz CVE-2026-58704 is a modem firmware vulnerability with a patch released today and it will be included in our upcoming release.
##Google Discloses Pixel Modem Flaw Under Limited Targeted Exploitation
Google just sounded the alarm on a high-severity bug in Pixel devices that's being exploited in targeted attacks, and they're urging users to take action. The vulnerability, tracked as CVE-2026-58704, affects the Pixel Cellular Modem and could allow attackers to escalate privileges.
#PixelModemFlaw #Cve202658704 #AndroidSecurity #EmergingThreats #Google
##@GrapheneOS funny to see google fixing : CVE-2025-48595 that was fixed looooooong ago in your.
i don't see CVE-2026-58704, is it already fixed ?
##Google Fixes Exploited Android Zero-Day Flaw on Pixel Devices
Google just patched a high-severity zero-day flaw in its Pixel smartphones, warning that hackers may be using it to launch targeted attacks. The vulnerability, tracked as CVE-2026-58704, allows for a permission bypass in the device's modem, posing a significant risk to users.
#AndroidZeroDay #Cve202658704 #GooglePixel #EmergingThreats #MobileSecurity
##「Google Pixel端末がゼロクリック攻撃でハッキングされる
/CISAは連邦政府機関に対し、パッチ適用にわずか3日間しか猶予を与えていない。 」: #TheRegister
「Googleと米国政府は、Pixelスマートフォンの携帯モデムに存在するゼロデイ脆弱性を悪用した攻撃者が、権限チェックを回避し、ユーザーの操作なしに権限を昇格できると警告した。この脆弱性は、アップデートを行うことで既に修正されている。
Googleは 火曜日に、 CVE-2026-58704 として追跡されているこの重大な脆弱性 を公表し 、その際、このセキュリティホールが「限定的かつ標的を絞った悪用を受けている可能性がある」と警告した。つまり、Googleが問題を修正する前に、悪意のある人物がこのバグを発見し、悪用していたということだ。」
##「Google、限定的な標的型攻撃の兆候が見られる中、Pixelモデムの脆弱性を修正 」: #TheHackerNews
「Googleは、 明らかにした。 同社のPixel Cellular Modemに存在する深刻なセキュリティ上の欠陥が、実際に悪用されていることを
(CVSSスコア:8.0)として追跡されているこの脆弱性は CVE-2026-58704 、権限昇格の欠陥です。
によると、「セルラーモデムには、コードの論理エラーにより権限がバイパスされる可能性がある」とのことです NIST(米国国立標準技術研究所)の国家脆弱性データベース(NVD)に掲載されているバグの説明 。「これにより、追加の実行権限を必要とせずに、リモート(近接/隣接)での権限昇格が可能になる可能性がある。悪用にはユーザーの操作は不要である。」 」
https://thehackernews.com/2026/09/google-patches-pixel-modem-flaw-amid.html
##Google confirmed a Pixel modem zero-day (CVE-2026-58704) exploited in a zero-click spyware attack to escape the modem sandbox. Update now.
#Pixel #ZeroDay #CVE202658704 #Google #Spyware #ZeroClick #CyberSecurity
https://securityexpress.info/pixel-modem-zero-day/?utm_source=mastodon&utm_medium=jetpack_social
##(CISA CS-MAN) The Cyber Mind CSUITE Brief: CVE-2026-58704 – Google Pixel Improper Authorization Vulnerability
A strategic executive briefing detailing governance, risk mitigation, and compliance frameworks for CVE-2026-58704 on Google Pixel mobile devices....
##Google and CISA warned that an actively exploited zero-day vulnerability (CVE-2026-58704) affecting Pixel cellular modems.
This allows attackers to silently bypass permission checks and escalate privileges with no user interaction!
It was quickly added to CISA's Known Exploited Vulnerabilities (KEV) catalog [1.2.1, 1.5.1].
Would be an excellent idea for Pixel owners to ownload and apply the September Android OS patches ASAP!
##(CISA TS-MAN) The Cyber Mind TSUITE Brief: CVE-2026-58704 – Google Pixel Improper Authorization Vulnerability
Actionable threat intelligence and end-to-end hardening strategies for CVE-2026-58704, addressing improper authorization flaws in Google Pixel cellular modems....
##Google patched CVE-2026-58704, a high-severity Pixel Cellular Modem privilege-escalation flaw reportedly exploited in limited, targeted attacks. Its addition to CISA’s KEV Catalog underscores the need to prioritize affected device updates. #ZeroDay #MobileSecurity #ThreatIntelligence
https://cyberworldops.eu/en/google-patches-pixel-modem-zero-day-exploited-in-targeted-attacks
##New.
Press release: New CISA Guidance Helps Critical Infrastructure Detect, Observe and Impede Malicious Cyber Activity https://www.cisa.gov/news-events/news/new-cisa-guidance-helps-critical-infrastructure-detect-observe-and-impede-malicious-cyber-activity
The guide: Using Cyber Decoys to Strengthen Detection and Response https://www.cisa.gov/resources-tools/resources/using-cyber-decoys-strengthen-detection-and-response
CISA has also added one vulnerability to the catalogue.
CVE-2026-58704: Google Pixel Improper Authorization Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-58704 #Google #infosec #vulnerability #CISA
##🏆 New Achievement! Tutorial: Learning to Live With Being Actively Exploited!
Welcome to the Mandatory Pixel Debuff Sequence. Before you proceed, please note that CVE-2026-58704 has been equipped to your device without your consent. This is a zero-day — that means the tutorial boss was already in your pocket before the level loaded. (1/3)
##🚨 [CISA-2026:0916] CISA Adds One Known Exploited Vulnerability to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0916)
CISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2026-58704 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-58704)
- Name: Google Pixel Improper Authorization Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Google
- Product: Pixel
- Notes: https://source.android.com/docs/security/bulletin/pixel/2026/2026-09-01 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-58704
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260916 #cisa20260916 #cve_2026_58704 #cve202658704
##If you've got a Google Pixel cell phone, do a system patch immediately. There is an active vulnerability that allows the hacker to take control of your device with no user interaction. It is being actively used in the wild.
##Google corrige falha zero-day em telemóveis Pixel com atualização que resolve 110 vulnerabilidades. A falha, identificada como CVE-2026-58704, está a ser explorada em ataques direcionados de alcance limitado. 📱
##CVE ID: CVE-2026-58704
Vendor: Google
Product: Pixel
Date Added: 2026-09-16
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-58704
@skyblitz CVE-2026-58704 is a modem firmware vulnerability with a patch released today and it will be included in our upcoming release.
##@GrapheneOS funny to see google fixing : CVE-2025-48595 that was fixed looooooong ago in your.
i don't see CVE-2026-58704, is it already fixed ?
##updated 2026-09-17T04:17:41.327000
2 posts
@cR0w was just looking at those, lol. Don't sleep on this great advertisment of a CVE though: https://db.gcve.eu/vuln/cve-2026-20331
##@cR0w was just looking at those, lol. Don't sleep on this great advertisment of a CVE though: https://db.gcve.eu/vuln/cve-2026-20331
##updated 2026-09-17T02:16:28.610000
2 posts
CVE-2026-92838: HIGH severity DLL hijack in GeoVision GV-Remote E-map 18.3.1 🖥️. Local attackers can execute arbitrary code via unsafe DLL load paths. Restrict directory write access; check vendor guidance. https://radar.offseq.com/threat/cve-2026-92838-cwe-427-uncontrolled-search-path-element-in-geovision-inc-gv-remote-e-map-0688637b5de2fbea #OffSeq #Vuln #InfoSec #Windows
##CVE-2026-92838: HIGH severity DLL hijack in GeoVision GV-Remote E-map 18.3.1 🖥️. Local attackers can execute arbitrary code via unsafe DLL load paths. Restrict directory write access; check vendor guidance. https://radar.offseq.com/threat/cve-2026-92838-cwe-427-uncontrolled-search-path-element-in-geovision-inc-gv-remote-e-map-0688637b5de2fbea #OffSeq #Vuln #InfoSec #Windows
##updated 2026-09-17T00:31:30
2 posts
CVE-2026-92578: CRITICAL auth bypass in WWBN AVideo (≤29.0) allows attackers with stolen password hashes to log in as any user — no password needed. Patch pending — restrict hash access, monitor for abuse. https://radar.offseq.com/threat/cve-2026-92578-improper-authentication-in-wwbn-avideo-d660bbe72d13e3dc #OffSeq #CVE202692578 #authentication #infosec
##CVE-2026-92578: CRITICAL auth bypass in WWBN AVideo (≤29.0) allows attackers with stolen password hashes to log in as any user — no password needed. Patch pending — restrict hash access, monitor for abuse. https://radar.offseq.com/threat/cve-2026-92578-improper-authentication-in-wwbn-avideo-d660bbe72d13e3dc #OffSeq #CVE202692578 #authentication #infosec
##updated 2026-09-17T00:31:25
2 posts
CRITICAL SSRF vuln (CVE-2026-92576) in HKUDS nanobot <0.3.0: Inadequate URL validation lets attackers access internal cloud metadata & services. Restrict WebFetchTool, monitor for suspicious requests. Patch status: unconfirmed. https://radar.offseq.com/threat/cve-2026-92576-server-side-request-forgery-ssrf-in-hkuds-nanobot-4673f42d188d2ce5 #OffSeq #infosec #CVE202692576
##CRITICAL SSRF vuln (CVE-2026-92576) in HKUDS nanobot <0.3.0: Inadequate URL validation lets attackers access internal cloud metadata & services. Restrict WebFetchTool, monitor for suspicious requests. Patch status: unconfirmed. https://radar.offseq.com/threat/cve-2026-92576-server-side-request-forgery-ssrf-in-hkuds-nanobot-4673f42d188d2ce5 #OffSeq #infosec #CVE202692576
##updated 2026-09-16T21:32:50
2 posts
CVE-2026-20341: CRITICAL flaw in Cisco Secure FMC Software sftunnel protocol. Admin remote attackers can gain root via insecure deserialization. Limit admin access, monitor for abuse, and check for patch updates. https://radar.offseq.com/threat/a-vulnerability-in-the-sftunnel-inter-device-communication-protocol-of-cisco-secure-fmc-software-could-c3ce1a1e4096035e #OffSeq #Cisco #Infosec #Vulnerability
##CVE-2026-20341: CRITICAL flaw in Cisco Secure FMC Software sftunnel protocol. Admin remote attackers can gain root via insecure deserialization. Limit admin access, monitor for abuse, and check for patch updates. https://radar.offseq.com/threat/a-vulnerability-in-the-sftunnel-inter-device-communication-protocol-of-cisco-secure-fmc-software-could-c3ce1a1e4096035e #OffSeq #Cisco #Infosec #Vulnerability
##updated 2026-09-16T21:32:50
2 posts
New.
Cisco has advisories to address 13 critical vulnerabilities, among other lower-ranking flaws https://sec.cloudapps.cisco.com/security/center/publicationListing.x
This one is new, but there are others:
CRITICAL: CVE-2026-20176, CVE-2026-20211, and CVE-2026-20307 Cisco Identity Services Engine Remote Code Execution Vulnerabilities https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-rce-se7bYU57
Broadcom:
Broadcom has a long list of advisories addressing at least two critical vulnerabilities https://support.broadcom.com/web/ecx/security-advisory #Broadcom
Tenable:
Tenable Research Advisories: CVE-2026-84858: ScadaLTS Multiple Vulnerabilities https://www.tenable.com/security/research/tra-2026-60
And if you missed this, Microsoft posted two advisories for Edge yesterday: https://msrc.microsoft.com/update-guide #Microsoft #infosec #Cisco #vulnerability
##New.
Cisco has advisories to address 13 critical vulnerabilities, among other lower-ranking flaws https://sec.cloudapps.cisco.com/security/center/publicationListing.x
This one is new, but there are others:
CRITICAL: CVE-2026-20176, CVE-2026-20211, and CVE-2026-20307 Cisco Identity Services Engine Remote Code Execution Vulnerabilities https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-rce-se7bYU57
Broadcom:
Broadcom has a long list of advisories addressing at least two critical vulnerabilities https://support.broadcom.com/web/ecx/security-advisory #Broadcom
Tenable:
Tenable Research Advisories: CVE-2026-84858: ScadaLTS Multiple Vulnerabilities https://www.tenable.com/security/research/tra-2026-60
And if you missed this, Microsoft posted two advisories for Edge yesterday: https://msrc.microsoft.com/update-guide #Microsoft #infosec #Cisco #vulnerability
##updated 2026-09-16T21:32:50
2 posts
New.
Cisco has advisories to address 13 critical vulnerabilities, among other lower-ranking flaws https://sec.cloudapps.cisco.com/security/center/publicationListing.x
This one is new, but there are others:
CRITICAL: CVE-2026-20176, CVE-2026-20211, and CVE-2026-20307 Cisco Identity Services Engine Remote Code Execution Vulnerabilities https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-rce-se7bYU57
Broadcom:
Broadcom has a long list of advisories addressing at least two critical vulnerabilities https://support.broadcom.com/web/ecx/security-advisory #Broadcom
Tenable:
Tenable Research Advisories: CVE-2026-84858: ScadaLTS Multiple Vulnerabilities https://www.tenable.com/security/research/tra-2026-60
And if you missed this, Microsoft posted two advisories for Edge yesterday: https://msrc.microsoft.com/update-guide #Microsoft #infosec #Cisco #vulnerability
##New.
Cisco has advisories to address 13 critical vulnerabilities, among other lower-ranking flaws https://sec.cloudapps.cisco.com/security/center/publicationListing.x
This one is new, but there are others:
CRITICAL: CVE-2026-20176, CVE-2026-20211, and CVE-2026-20307 Cisco Identity Services Engine Remote Code Execution Vulnerabilities https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-rce-se7bYU57
Broadcom:
Broadcom has a long list of advisories addressing at least two critical vulnerabilities https://support.broadcom.com/web/ecx/security-advisory #Broadcom
Tenable:
Tenable Research Advisories: CVE-2026-84858: ScadaLTS Multiple Vulnerabilities https://www.tenable.com/security/research/tra-2026-60
And if you missed this, Microsoft posted two advisories for Edge yesterday: https://msrc.microsoft.com/update-guide #Microsoft #infosec #Cisco #vulnerability
##updated 2026-09-16T21:32:48
2 posts
Learn about recent Apache NiFi vulnerabilities (CVE-2026-87976, CVE-2026-70469) and Apache MyFaces flaws. Apply Apache security updates to prevent DoS attacks.
#ApacheNiFi #ApacheMyFaces #Vulnerability #CVE202687976 #Cybersecurity
##Learn about recent Apache NiFi vulnerabilities (CVE-2026-87976, CVE-2026-70469) and Apache MyFaces flaws. Apply Apache security updates to prevent DoS attacks.
#ApacheNiFi #ApacheMyFaces #Vulnerability #CVE202687976 #Cybersecurity
##updated 2026-09-16T21:32:47
2 posts
🟠 CVE-2026-87024 - High (7.5)
Tanium addressed a SQL injection vulnerability in Asset.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-87024/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-87024 - High (7.5)
Tanium addressed a SQL injection vulnerability in Asset.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-87024/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-16T21:32:46
2 posts
Learn about recent Apache NiFi vulnerabilities (CVE-2026-87976, CVE-2026-70469) and Apache MyFaces flaws. Apply Apache security updates to prevent DoS attacks.
#ApacheNiFi #ApacheMyFaces #Vulnerability #CVE202687976 #Cybersecurity
##Learn about recent Apache NiFi vulnerabilities (CVE-2026-87976, CVE-2026-70469) and Apache MyFaces flaws. Apply Apache security updates to prevent DoS attacks.
#ApacheNiFi #ApacheMyFaces #Vulnerability #CVE202687976 #Cybersecurity
##updated 2026-09-16T20:38:33.883000
2 posts
Docker released an update for critical Docker Sandboxes vulnerabilities (CVE-2026-77179, CVE-2026-79994). Patch these Docker Sandboxes vulnerabilities today.
#Docker #DockerSandboxes #CVE202677179 #CVE202679994 #Cybersecurity
##Docker released an update for critical Docker Sandboxes vulnerabilities (CVE-2026-77179, CVE-2026-79994). Patch these Docker Sandboxes vulnerabilities today.
#Docker #DockerSandboxes #CVE202677179 #CVE202679994 #Cybersecurity
##updated 2026-09-16T20:37:16.870000
2 posts
🔴 CVE-2026-70416 - Critical (10)
Dell ObjectScale, versions prior to 4.4.0.0, contains a Deserialization of Untrusted Data vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Remote execution.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-70416/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-70416 - Critical (10)
Dell ObjectScale, versions prior to 4.4.0.0, contains a Deserialization of Untrusted Data vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Remote execution.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-70416/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-16T20:26:50.280000
2 posts
🟠 CVE-2026-92176 - High (7.8)
pdfforge PDF Architect App Object Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of pdfforge PDF Architect. User interaction is required to exp...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-92176/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-92176 - High (7.8)
pdfforge PDF Architect App Object Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of pdfforge PDF Architect. User interaction is required to exp...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-92176/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-16T20:26:50.280000
2 posts
🟠 CVE-2026-92177 - High (7.8)
pdfforge PDF Architect PDF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of pdfforge PDF Architect. User interaction is required...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-92177/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-92177 - High (7.8)
pdfforge PDF Architect PDF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of pdfforge PDF Architect. User interaction is required...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-92177/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-16T20:21:01.047000
2 posts
🔴 CVE-2026-91939 - Critical (9.8)
Cotonti 1.0.0 Comments plugin passes the ci GET parameter to unserialize() without allowed_classes restriction, allowing unauthenticated attackers to instantiate arbitrary PHP classes with attacker-controlled properties. Attackers can exploit PHP ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-91939/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-91939 - Critical (9.8)
Cotonti 1.0.0 Comments plugin passes the ci GET parameter to unserialize() without allowed_classes restriction, allowing unauthenticated attackers to instantiate arbitrary PHP classes with attacker-controlled properties. Attackers can exploit PHP ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-91939/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-16T20:17:37.153000
2 posts
🟠 CVE-2026-86865 - High (8.8)
Tanium addressed a SQL injection vulnerability in Asset.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-86865/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-86865 - High (8.8)
Tanium addressed a SQL injection vulnerability in Asset.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-86865/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-16T19:42:43.623000
2 posts
🟠 CVE-2026-92248 - High (7.8)
A flaw was found in the file-psd plugin in GIMP. When generating a thumbnail preview for a specially crafted PSD (Photoshop Document) image file, an integer overflow occurs during the multiplication of values from an embedded JPEG header. This lea...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-92248/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-92248 - High (7.8)
A flaw was found in the file-psd plugin in GIMP. When generating a thumbnail preview for a specially crafted PSD (Photoshop Document) image file, an integer overflow occurs during the multiplication of values from an embedded JPEG header. This lea...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-92248/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-16T19:42:12.090000
1 posts
[1/4]
Most Impactful Security Incidents ( 2026‑09‑15 → today )
---
PRIORITY 1 – Critical/high‑severity flaws (CVSS 7‑10) in core software stacks :
CVE‑2026‑83339
• Oracle WebCenter Enterprise Capture – Client Bundle
• Unauthenticated remote code execution; attacker can take full control of the capture service.
• 9.8 (Critical)
• HTTP (network‑level)
• <https://cveawg.mitre.org/api/cve/CVE-2026-83339>
CVE‑2026‑83355
• Oracle Enterprise Manager for Fusion Middleware – Metrics
• Remote code execution via unauthenticated HTTP request; full takeover of the management console.
• 9.8
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83355>
CVE‑2026‑83149
• Oracle Application Testing Suite – 13.3.0.1
• Low‑privileged attacker can execute arbitrary code over HTTP; leads to full compromise of the testing suite.
• 9.1
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83149>
CVE‑2026‑83107
• Oracle Forms – 12.2.1.19.0 / 14.1.2.0
• High‑privileged attacker can gain remote code execution via HTTP; full takeover of Forms services.
• 9.1
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83107>
CVE‑2026‑83105
• Oracle Forms – same versions
• Remote code execution (CVSS 9) via HTTP; attacker gains full control.
• 9
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83105>
CVE‑2026‑83103
• Oracle Forms – same versions
• Remote code execution (CVSS 9.1) via HTTP; full compromise.
• 9.1
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83103>
CVE‑2026‑83100
• Oracle Forms – same versions
• Remote code execution (CVSS 9.8) via HTTP; full takeover.
• 9.8
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83100>
CVE‑2026‑83099
• Oracle WebCenter Portal – Runtime Tools
• Remote code execution (CVSS 9.9) via HTTP; full compromise of the portal.
• 9.9
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83099>
CVE‑2026‑83098
• Oracle WebCenter Portal – Composer
• Remote code execution (CVSS 9.8) via HTTP; full takeover.
• 9.8
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83098>
CVE‑2026‑83095
• Oracle WebCenter Portal – Composer
• Remote code execution (CVSS 9.8) via HTTP; full compromise.
• 9.8
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83095>
updated 2026-09-16T19:40:00.317000
3 posts
A critical proxy-addr IP spoofing flaw (CVE-2026-90711) exposes Node.js apps to access control bypasses. Patch this proxy-addr IP spoofing bug today.
##A critical proxy-addr IP spoofing flaw (CVE-2026-90711) exposes Node.js apps to access control bypasses. Patch this proxy-addr IP spoofing bug today.
##🔴 CVE-2026-90711 - Critical (9.1)
proxy-addr is a Node.js module that determines a request's client address behind trusted reverse proxies, and it backs Express req.ip and req.ips. In versions 1.1.0 through 2.0.7, a trust subnet written in IPv4-mapped IPv6 notation with an IPv4-si...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90711/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-16T19:40:00.317000
2 posts
🟠 CVE-2026-87288 - High (8.1)
Vulnerability in the Oracle GraalVM product of Oracle Java SE (component: Compiler). The supported version that is affected is Oracle GraalVM: 25.0.4.1. Difficult to exploit vulnerability allows unauthenticated attacker with network access via H...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-87288/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-87288 - High (8.1)
Vulnerability in the Oracle GraalVM product of Oracle Java SE (component: Compiler). The supported version that is affected is Oracle GraalVM: 25.0.4.1. Difficult to exploit vulnerability allows unauthenticated attacker with network access via H...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-87288/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-16T19:36:43.087000
1 posts
[1/4]
Most Impactful Security Incidents ( 2026‑09‑15 → today )
---
PRIORITY 1 – Critical/high‑severity flaws (CVSS 7‑10) in core software stacks :
CVE‑2026‑83339
• Oracle WebCenter Enterprise Capture – Client Bundle
• Unauthenticated remote code execution; attacker can take full control of the capture service.
• 9.8 (Critical)
• HTTP (network‑level)
• <https://cveawg.mitre.org/api/cve/CVE-2026-83339>
CVE‑2026‑83355
• Oracle Enterprise Manager for Fusion Middleware – Metrics
• Remote code execution via unauthenticated HTTP request; full takeover of the management console.
• 9.8
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83355>
CVE‑2026‑83149
• Oracle Application Testing Suite – 13.3.0.1
• Low‑privileged attacker can execute arbitrary code over HTTP; leads to full compromise of the testing suite.
• 9.1
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83149>
CVE‑2026‑83107
• Oracle Forms – 12.2.1.19.0 / 14.1.2.0
• High‑privileged attacker can gain remote code execution via HTTP; full takeover of Forms services.
• 9.1
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83107>
CVE‑2026‑83105
• Oracle Forms – same versions
• Remote code execution (CVSS 9) via HTTP; attacker gains full control.
• 9
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83105>
CVE‑2026‑83103
• Oracle Forms – same versions
• Remote code execution (CVSS 9.1) via HTTP; full compromise.
• 9.1
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83103>
CVE‑2026‑83100
• Oracle Forms – same versions
• Remote code execution (CVSS 9.8) via HTTP; full takeover.
• 9.8
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83100>
CVE‑2026‑83099
• Oracle WebCenter Portal – Runtime Tools
• Remote code execution (CVSS 9.9) via HTTP; full compromise of the portal.
• 9.9
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83099>
CVE‑2026‑83098
• Oracle WebCenter Portal – Composer
• Remote code execution (CVSS 9.8) via HTTP; full takeover.
• 9.8
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83098>
CVE‑2026‑83095
• Oracle WebCenter Portal – Composer
• Remote code execution (CVSS 9.8) via HTTP; full compromise.
• 9.8
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83095>
updated 2026-09-16T19:27:25.623000
1 posts
🟠 CVE-2026-77853 - High (8.8)
Improper neutralization of special elements used in an OS command ('OS Command Injection') issue exists in FF-RFI079I4 and FF-RFI078I4. A user who can log in to the product's M-Plane (NETCONF) may execute arbitrary OS commands.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77853/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-16T19:17:32.787000
4 posts
Discover the latest mySCADA myPRO Manager vulnerabilities, including CVE-2026-73807, and learn how to patch your systems to prevent remote attacks.
##CVE-2026-73807 | CRITICAL: mySCADA myPRO (v0 – 2.1) API flaw allows unauthenticated access to privileged functions. No patch yet — restrict API network access & monitor logs. https://radar.offseq.com/threat/cve-2026-73807-cwe-862-in-myscada-technologies-myscada-mypro-e06debb83925d7aa #OffSeq #ICS #SCADA #Vulnerability
##Discover the latest mySCADA myPRO Manager vulnerabilities, including CVE-2026-73807, and learn how to patch your systems to prevent remote attacks.
##CVE-2026-73807 | CRITICAL: mySCADA myPRO (v0 – 2.1) API flaw allows unauthenticated access to privileged functions. No patch yet — restrict API network access & monitor logs. https://radar.offseq.com/threat/cve-2026-73807-cwe-862-in-myscada-technologies-myscada-mypro-e06debb83925d7aa #OffSeq #ICS #SCADA #Vulnerability
##updated 2026-09-16T19:17:18.060000
1 posts
🔴 CVE-2026-53713 - Critical (9.1)
Envoy Gateway is an open source project for managing Envoy Proxy as a standalone or Kubernetes-based application gateway. Prior to 1.7.4 and 1.8.1, to_absolute_normalized_path in internal/gatewayapi/luavalidator/security.lua does not collapse redu...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-53713/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-16T19:17:14.183000
8 posts
Patch critical industrial firmware vulnerabilities and authentication bypass flaws like CVE-2026-27565 in Pepperl+Fuchs, Phoenix Contact & Carlo Gavazzi.
#IndustrialSecurity #FirmwareFlaws #Cybersecurity #CVE202627565 #InfoSec
##🔒 New CSAF advisory published
VDE-2026-028
Carlo Gavazzi Automation: YL212* and YN115* are affected by multiple security vulnerabilities
CVE-2026-27565, CVE-2026-27564, CVE-2026-27563, CVE-2026-27562, CVE-2026-27561 (+15 more)
The affected devices have security vulnerabilities that can be used to bypass authentication. Code…
HTML: https://certvde.com/en/advisories/VDE-2026-028
CSAF JSON: https://gavazziautomation.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-028.json
🔒 New CSAF advisory published
VDE-2026-027
Phoenix Contact: Multiple vulnerabilities in the firmware of IOL MA8 EIP DI8 and IOL MA8 PN DI8 devices
CVE-2026-27565, CVE-2026-27564, CVE-2026-27563, CVE-2026-27562, CVE-2026-27561 (+15 more)
The firmware of IOL MA8 EIP DI8 and IOL MA8 PN DI8 devices is affected by security vulnerab…
HTML: https://certvde.com/en/advisories/VDE-2026-027
CSAF JSON: https://phoenixcontact.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-027.json
🔒 New CSAF advisory published
VDE-2026-014
Pepperl+Fuchs: ICE2-* and ICE3-* are affected by multiple security vulnerabilities
CVE-2026-27565, CVE-2026-27564, CVE-2026-27563, CVE-2026-27562, CVE-2026-27561 (+15 more)
The affected devices have security vulnerabilities that can be used to bypass authentication. Code can be execute…
HTML: https://certvde.com/en/advisories/VDE-2026-014
CSAF JSON: https://pepperl-fuchs.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-014.json
Patch critical industrial firmware vulnerabilities and authentication bypass flaws like CVE-2026-27565 in Pepperl+Fuchs, Phoenix Contact & Carlo Gavazzi.
#IndustrialSecurity #FirmwareFlaws #Cybersecurity #CVE202627565 #InfoSec
##🔒 New CSAF advisory published
VDE-2026-028
Carlo Gavazzi Automation: YL212* and YN115* are affected by multiple security vulnerabilities
CVE-2026-27565, CVE-2026-27564, CVE-2026-27563, CVE-2026-27562, CVE-2026-27561 (+15 more)
The affected devices have security vulnerabilities that can be used to bypass authentication. Code…
HTML: https://certvde.com/en/advisories/VDE-2026-028
CSAF JSON: https://gavazziautomation.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-028.json
🔒 New CSAF advisory published
VDE-2026-027
Phoenix Contact: Multiple vulnerabilities in the firmware of IOL MA8 EIP DI8 and IOL MA8 PN DI8 devices
CVE-2026-27565, CVE-2026-27564, CVE-2026-27563, CVE-2026-27562, CVE-2026-27561 (+15 more)
The firmware of IOL MA8 EIP DI8 and IOL MA8 PN DI8 devices is affected by security vulnerab…
HTML: https://certvde.com/en/advisories/VDE-2026-027
CSAF JSON: https://phoenixcontact.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-027.json
🔒 New CSAF advisory published
VDE-2026-014
Pepperl+Fuchs: ICE2-* and ICE3-* are affected by multiple security vulnerabilities
CVE-2026-27565, CVE-2026-27564, CVE-2026-27563, CVE-2026-27562, CVE-2026-27561 (+15 more)
The affected devices have security vulnerabilities that can be used to bypass authentication. Code can be execute…
HTML: https://certvde.com/en/advisories/VDE-2026-014
CSAF JSON: https://pepperl-fuchs.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-014.json
updated 2026-09-16T19:17:13.860000
6 posts
🔒 New CSAF advisory published
VDE-2026-028
Carlo Gavazzi Automation: YL212* and YN115* are affected by multiple security vulnerabilities
CVE-2026-27565, CVE-2026-27564, CVE-2026-27563, CVE-2026-27562, CVE-2026-27561 (+15 more)
The affected devices have security vulnerabilities that can be used to bypass authentication. Code…
HTML: https://certvde.com/en/advisories/VDE-2026-028
CSAF JSON: https://gavazziautomation.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-028.json
🔒 New CSAF advisory published
VDE-2026-027
Phoenix Contact: Multiple vulnerabilities in the firmware of IOL MA8 EIP DI8 and IOL MA8 PN DI8 devices
CVE-2026-27565, CVE-2026-27564, CVE-2026-27563, CVE-2026-27562, CVE-2026-27561 (+15 more)
The firmware of IOL MA8 EIP DI8 and IOL MA8 PN DI8 devices is affected by security vulnerab…
HTML: https://certvde.com/en/advisories/VDE-2026-027
CSAF JSON: https://phoenixcontact.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-027.json
🔒 New CSAF advisory published
VDE-2026-014
Pepperl+Fuchs: ICE2-* and ICE3-* are affected by multiple security vulnerabilities
CVE-2026-27565, CVE-2026-27564, CVE-2026-27563, CVE-2026-27562, CVE-2026-27561 (+15 more)
The affected devices have security vulnerabilities that can be used to bypass authentication. Code can be execute…
HTML: https://certvde.com/en/advisories/VDE-2026-014
CSAF JSON: https://pepperl-fuchs.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-014.json
🔒 New CSAF advisory published
VDE-2026-028
Carlo Gavazzi Automation: YL212* and YN115* are affected by multiple security vulnerabilities
CVE-2026-27565, CVE-2026-27564, CVE-2026-27563, CVE-2026-27562, CVE-2026-27561 (+15 more)
The affected devices have security vulnerabilities that can be used to bypass authentication. Code…
HTML: https://certvde.com/en/advisories/VDE-2026-028
CSAF JSON: https://gavazziautomation.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-028.json
🔒 New CSAF advisory published
VDE-2026-027
Phoenix Contact: Multiple vulnerabilities in the firmware of IOL MA8 EIP DI8 and IOL MA8 PN DI8 devices
CVE-2026-27565, CVE-2026-27564, CVE-2026-27563, CVE-2026-27562, CVE-2026-27561 (+15 more)
The firmware of IOL MA8 EIP DI8 and IOL MA8 PN DI8 devices is affected by security vulnerab…
HTML: https://certvde.com/en/advisories/VDE-2026-027
CSAF JSON: https://phoenixcontact.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-027.json
🔒 New CSAF advisory published
VDE-2026-014
Pepperl+Fuchs: ICE2-* and ICE3-* are affected by multiple security vulnerabilities
CVE-2026-27565, CVE-2026-27564, CVE-2026-27563, CVE-2026-27562, CVE-2026-27561 (+15 more)
The affected devices have security vulnerabilities that can be used to bypass authentication. Code can be execute…
HTML: https://certvde.com/en/advisories/VDE-2026-014
CSAF JSON: https://pepperl-fuchs.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-014.json
updated 2026-09-16T19:14:25.980000
2 posts
Vulnerabilities in a 5g router from T-Mobile, the company known for its security?! I'm shocked. Shocked! Well, not that shocked.
##Vulnerabilities in a 5g router from T-Mobile, the company known for its security?! I'm shocked. Shocked! Well, not that shocked.
##updated 2026-09-16T18:32:09
2 posts
New.
Cisco has advisories to address 13 critical vulnerabilities, among other lower-ranking flaws https://sec.cloudapps.cisco.com/security/center/publicationListing.x
This one is new, but there are others:
CRITICAL: CVE-2026-20176, CVE-2026-20211, and CVE-2026-20307 Cisco Identity Services Engine Remote Code Execution Vulnerabilities https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-rce-se7bYU57
Broadcom:
Broadcom has a long list of advisories addressing at least two critical vulnerabilities https://support.broadcom.com/web/ecx/security-advisory #Broadcom
Tenable:
Tenable Research Advisories: CVE-2026-84858: ScadaLTS Multiple Vulnerabilities https://www.tenable.com/security/research/tra-2026-60
And if you missed this, Microsoft posted two advisories for Edge yesterday: https://msrc.microsoft.com/update-guide #Microsoft #infosec #Cisco #vulnerability
##New.
Cisco has advisories to address 13 critical vulnerabilities, among other lower-ranking flaws https://sec.cloudapps.cisco.com/security/center/publicationListing.x
This one is new, but there are others:
CRITICAL: CVE-2026-20176, CVE-2026-20211, and CVE-2026-20307 Cisco Identity Services Engine Remote Code Execution Vulnerabilities https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-rce-se7bYU57
Broadcom:
Broadcom has a long list of advisories addressing at least two critical vulnerabilities https://support.broadcom.com/web/ecx/security-advisory #Broadcom
Tenable:
Tenable Research Advisories: CVE-2026-84858: ScadaLTS Multiple Vulnerabilities https://www.tenable.com/security/research/tra-2026-60
And if you missed this, Microsoft posted two advisories for Edge yesterday: https://msrc.microsoft.com/update-guide #Microsoft #infosec #Cisco #vulnerability
##updated 2026-09-16T18:32:09
2 posts
🔴 CVE-2026-92397 - Critical (9.1)
A vulnerability has been found in Ruijie RG-EW3000GX EW_3.0(1)B11P380. Affected by this vulnerability is the function cc_set of the file unifyframe-sgi.elf of the component configChange. Such manipulation of the argument data.url leads to os comma...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-92397/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-92397 - Critical (9.1)
A vulnerability has been found in Ruijie RG-EW3000GX EW_3.0(1)B11P380. Affected by this vulnerability is the function cc_set of the file unifyframe-sgi.elf of the component configChange. Such manipulation of the argument data.url leads to os comma...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-92397/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-16T18:31:58
2 posts
A critical KVM guest escape (CVE-2026-89775) enables an LPE to gain root on Linux hosts. Patch this KVM guest escape vulnerability now.
##A critical KVM guest escape (CVE-2026-89775) enables an LPE to gain root on Linux hosts. Patch this KVM guest escape vulnerability now.
##updated 2026-09-16T18:31:53
2 posts
🟠 CVE-2026-87287 - High (8.1)
Vulnerability in the Oracle GraalVM product of Oracle Java SE (component: Compiler). The supported version that is affected is Oracle GraalVM: 25.0.4.1. Difficult to exploit vulnerability allows unauthenticated attacker with network access via H...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-87287/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-87287 - High (8.1)
Vulnerability in the Oracle GraalVM product of Oracle Java SE (component: Compiler). The supported version that is affected is Oracle GraalVM: 25.0.4.1. Difficult to exploit vulnerability allows unauthenticated attacker with network access via H...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-87287/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-16T17:18:09.647000
1 posts
🟠 CVE-2026-82028 - High (8.8)
Magistrala before 1.0.0 contains a SQL injection vulnerability in the timescale-reader and postgres-reader HTTP API services that allows authenticated attackers to inject arbitrary SQL by supplying a malicious format query parameter that is interp...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-82028/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-16T15:32:15
2 posts
🟠 CVE-2026-61595 - High (7.7)
djust provides Phoenix LiveView-style reactive server-side rendering for Django with Rust-powered performance. Prior to version 1.0.7, `djust.tenants` isolation was enforced only on the HTTP path. The current tenant was stored in `threading.local(...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-61595/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-61595 - High (7.7)
djust provides Phoenix LiveView-style reactive server-side rendering for Django with Rust-powered performance. Prior to version 1.0.7, `djust.tenants` isolation was enforced only on the HTTP path. The current tenant was stored in `threading.local(...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-61595/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-16T15:31:13
2 posts
Advantech EKI-1242IEIMS (fw ≤1.06.01) suffers CRITICAL CVE-2026-73172: unauthenticated OS command injection via TCP 5058 enables remote root access. No patch yet — restrict device exposure & monitor traffic. Details: https://radar.offseq.com/threat/cve-2026-73172-cwe-78-improper-neutralization-of-special-elements-used-in-an-os-command-os-command-273be6f3526b5b8e #OffSeq #ICS #CVE202673172 #infosec
##Advantech EKI-1242IEIMS (fw ≤1.06.01) suffers CRITICAL CVE-2026-73172: unauthenticated OS command injection via TCP 5058 enables remote root access. No patch yet — restrict device exposure & monitor traffic. Details: https://radar.offseq.com/threat/cve-2026-73172-cwe-78-improper-neutralization-of-special-elements-used-in-an-os-command-os-command-273be6f3526b5b8e #OffSeq #ICS #CVE202673172 #infosec
##updated 2026-09-16T15:18:00.527000
2 posts
New.
Cisco has advisories to address 13 critical vulnerabilities, among other lower-ranking flaws https://sec.cloudapps.cisco.com/security/center/publicationListing.x
This one is new, but there are others:
CRITICAL: CVE-2026-20176, CVE-2026-20211, and CVE-2026-20307 Cisco Identity Services Engine Remote Code Execution Vulnerabilities https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-rce-se7bYU57
Broadcom:
Broadcom has a long list of advisories addressing at least two critical vulnerabilities https://support.broadcom.com/web/ecx/security-advisory #Broadcom
Tenable:
Tenable Research Advisories: CVE-2026-84858: ScadaLTS Multiple Vulnerabilities https://www.tenable.com/security/research/tra-2026-60
And if you missed this, Microsoft posted two advisories for Edge yesterday: https://msrc.microsoft.com/update-guide #Microsoft #infosec #Cisco #vulnerability
##New.
Cisco has advisories to address 13 critical vulnerabilities, among other lower-ranking flaws https://sec.cloudapps.cisco.com/security/center/publicationListing.x
This one is new, but there are others:
CRITICAL: CVE-2026-20176, CVE-2026-20211, and CVE-2026-20307 Cisco Identity Services Engine Remote Code Execution Vulnerabilities https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-rce-se7bYU57
Broadcom:
Broadcom has a long list of advisories addressing at least two critical vulnerabilities https://support.broadcom.com/web/ecx/security-advisory #Broadcom
Tenable:
Tenable Research Advisories: CVE-2026-84858: ScadaLTS Multiple Vulnerabilities https://www.tenable.com/security/research/tra-2026-60
And if you missed this, Microsoft posted two advisories for Edge yesterday: https://msrc.microsoft.com/update-guide #Microsoft #infosec #Cisco #vulnerability
##updated 2026-09-16T13:42:49.167000
1 posts
🟠 CVE-2026-91990 - High (7.5)
Tornado before 6.5.8 contains a memory amplification vulnerability in parse_multipart_form_data that splits multipart data before validating the max_parts limit. Attackers can send crafted multipart requests with many parts to create large transie...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-91990/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-16T13:42:48.383000
1 posts
🟠 CVE-2026-65838 - High (8.2)
Skipper is an HTTP router and reverse proxy for service composition. Prior to 0.27.35, the opaAuthorizeRequestWithBody filter in filters/openpolicyagent/openpolicyagent.go can allow an oversized declared Content-Length request to bypass a deny-on-...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-65838/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-16T12:30:37
2 posts
CVE-2026-73453: CRITICAL code injection in Arista EOS (4.29.2F – 4.36.1F) via P4Runtime. Allows unauthenticated code execution & admin control if enabled. Disable P4Runtime if not needed. No active exploits yet. https://radar.offseq.com/threat/cve-2026-73453-cwe-94-improper-control-of-generation-of-code-code-injection-in-arista-networks-eos-86cb5135e8adffc5 #OffSeq #CVE202673453 #NetworkSecurity
##CVE-2026-73453: CRITICAL code injection in Arista EOS (4.29.2F – 4.36.1F) via P4Runtime. Allows unauthenticated code execution & admin control if enabled. Disable P4Runtime if not needed. No active exploits yet. https://radar.offseq.com/threat/cve-2026-73453-cwe-94-improper-control-of-generation-of-code-code-injection-in-arista-networks-eos-86cb5135e8adffc5 #OffSeq #CVE202673453 #NetworkSecurity
##updated 2026-09-16T09:30:35
6 posts
🔒 New CSAF advisory published
VDE-2026-028
Carlo Gavazzi Automation: YL212* and YN115* are affected by multiple security vulnerabilities
CVE-2026-27565, CVE-2026-27564, CVE-2026-27563, CVE-2026-27562, CVE-2026-27561 (+15 more)
The affected devices have security vulnerabilities that can be used to bypass authentication. Code…
HTML: https://certvde.com/en/advisories/VDE-2026-028
CSAF JSON: https://gavazziautomation.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-028.json
🔒 New CSAF advisory published
VDE-2026-027
Phoenix Contact: Multiple vulnerabilities in the firmware of IOL MA8 EIP DI8 and IOL MA8 PN DI8 devices
CVE-2026-27565, CVE-2026-27564, CVE-2026-27563, CVE-2026-27562, CVE-2026-27561 (+15 more)
The firmware of IOL MA8 EIP DI8 and IOL MA8 PN DI8 devices is affected by security vulnerab…
HTML: https://certvde.com/en/advisories/VDE-2026-027
CSAF JSON: https://phoenixcontact.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-027.json
🔒 New CSAF advisory published
VDE-2026-014
Pepperl+Fuchs: ICE2-* and ICE3-* are affected by multiple security vulnerabilities
CVE-2026-27565, CVE-2026-27564, CVE-2026-27563, CVE-2026-27562, CVE-2026-27561 (+15 more)
The affected devices have security vulnerabilities that can be used to bypass authentication. Code can be execute…
HTML: https://certvde.com/en/advisories/VDE-2026-014
CSAF JSON: https://pepperl-fuchs.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-014.json
🔒 New CSAF advisory published
VDE-2026-028
Carlo Gavazzi Automation: YL212* and YN115* are affected by multiple security vulnerabilities
CVE-2026-27565, CVE-2026-27564, CVE-2026-27563, CVE-2026-27562, CVE-2026-27561 (+15 more)
The affected devices have security vulnerabilities that can be used to bypass authentication. Code…
HTML: https://certvde.com/en/advisories/VDE-2026-028
CSAF JSON: https://gavazziautomation.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-028.json
🔒 New CSAF advisory published
VDE-2026-027
Phoenix Contact: Multiple vulnerabilities in the firmware of IOL MA8 EIP DI8 and IOL MA8 PN DI8 devices
CVE-2026-27565, CVE-2026-27564, CVE-2026-27563, CVE-2026-27562, CVE-2026-27561 (+15 more)
The firmware of IOL MA8 EIP DI8 and IOL MA8 PN DI8 devices is affected by security vulnerab…
HTML: https://certvde.com/en/advisories/VDE-2026-027
CSAF JSON: https://phoenixcontact.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-027.json
🔒 New CSAF advisory published
VDE-2026-014
Pepperl+Fuchs: ICE2-* and ICE3-* are affected by multiple security vulnerabilities
CVE-2026-27565, CVE-2026-27564, CVE-2026-27563, CVE-2026-27562, CVE-2026-27561 (+15 more)
The affected devices have security vulnerabilities that can be used to bypass authentication. Code can be execute…
HTML: https://certvde.com/en/advisories/VDE-2026-014
CSAF JSON: https://pepperl-fuchs.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-014.json
updated 2026-09-16T09:30:35
6 posts
🔒 New CSAF advisory published
VDE-2026-028
Carlo Gavazzi Automation: YL212* and YN115* are affected by multiple security vulnerabilities
CVE-2026-27565, CVE-2026-27564, CVE-2026-27563, CVE-2026-27562, CVE-2026-27561 (+15 more)
The affected devices have security vulnerabilities that can be used to bypass authentication. Code…
HTML: https://certvde.com/en/advisories/VDE-2026-028
CSAF JSON: https://gavazziautomation.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-028.json
🔒 New CSAF advisory published
VDE-2026-027
Phoenix Contact: Multiple vulnerabilities in the firmware of IOL MA8 EIP DI8 and IOL MA8 PN DI8 devices
CVE-2026-27565, CVE-2026-27564, CVE-2026-27563, CVE-2026-27562, CVE-2026-27561 (+15 more)
The firmware of IOL MA8 EIP DI8 and IOL MA8 PN DI8 devices is affected by security vulnerab…
HTML: https://certvde.com/en/advisories/VDE-2026-027
CSAF JSON: https://phoenixcontact.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-027.json
🔒 New CSAF advisory published
VDE-2026-014
Pepperl+Fuchs: ICE2-* and ICE3-* are affected by multiple security vulnerabilities
CVE-2026-27565, CVE-2026-27564, CVE-2026-27563, CVE-2026-27562, CVE-2026-27561 (+15 more)
The affected devices have security vulnerabilities that can be used to bypass authentication. Code can be execute…
HTML: https://certvde.com/en/advisories/VDE-2026-014
CSAF JSON: https://pepperl-fuchs.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-014.json
🔒 New CSAF advisory published
VDE-2026-028
Carlo Gavazzi Automation: YL212* and YN115* are affected by multiple security vulnerabilities
CVE-2026-27565, CVE-2026-27564, CVE-2026-27563, CVE-2026-27562, CVE-2026-27561 (+15 more)
The affected devices have security vulnerabilities that can be used to bypass authentication. Code…
HTML: https://certvde.com/en/advisories/VDE-2026-028
CSAF JSON: https://gavazziautomation.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-028.json
🔒 New CSAF advisory published
VDE-2026-027
Phoenix Contact: Multiple vulnerabilities in the firmware of IOL MA8 EIP DI8 and IOL MA8 PN DI8 devices
CVE-2026-27565, CVE-2026-27564, CVE-2026-27563, CVE-2026-27562, CVE-2026-27561 (+15 more)
The firmware of IOL MA8 EIP DI8 and IOL MA8 PN DI8 devices is affected by security vulnerab…
HTML: https://certvde.com/en/advisories/VDE-2026-027
CSAF JSON: https://phoenixcontact.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-027.json
🔒 New CSAF advisory published
VDE-2026-014
Pepperl+Fuchs: ICE2-* and ICE3-* are affected by multiple security vulnerabilities
CVE-2026-27565, CVE-2026-27564, CVE-2026-27563, CVE-2026-27562, CVE-2026-27561 (+15 more)
The affected devices have security vulnerabilities that can be used to bypass authentication. Code can be execute…
HTML: https://certvde.com/en/advisories/VDE-2026-014
CSAF JSON: https://pepperl-fuchs.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-014.json
updated 2026-09-16T09:30:34
6 posts
🔒 New CSAF advisory published
VDE-2026-028
Carlo Gavazzi Automation: YL212* and YN115* are affected by multiple security vulnerabilities
CVE-2026-27565, CVE-2026-27564, CVE-2026-27563, CVE-2026-27562, CVE-2026-27561 (+15 more)
The affected devices have security vulnerabilities that can be used to bypass authentication. Code…
HTML: https://certvde.com/en/advisories/VDE-2026-028
CSAF JSON: https://gavazziautomation.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-028.json
🔒 New CSAF advisory published
VDE-2026-027
Phoenix Contact: Multiple vulnerabilities in the firmware of IOL MA8 EIP DI8 and IOL MA8 PN DI8 devices
CVE-2026-27565, CVE-2026-27564, CVE-2026-27563, CVE-2026-27562, CVE-2026-27561 (+15 more)
The firmware of IOL MA8 EIP DI8 and IOL MA8 PN DI8 devices is affected by security vulnerab…
HTML: https://certvde.com/en/advisories/VDE-2026-027
CSAF JSON: https://phoenixcontact.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-027.json
🔒 New CSAF advisory published
VDE-2026-014
Pepperl+Fuchs: ICE2-* and ICE3-* are affected by multiple security vulnerabilities
CVE-2026-27565, CVE-2026-27564, CVE-2026-27563, CVE-2026-27562, CVE-2026-27561 (+15 more)
The affected devices have security vulnerabilities that can be used to bypass authentication. Code can be execute…
HTML: https://certvde.com/en/advisories/VDE-2026-014
CSAF JSON: https://pepperl-fuchs.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-014.json
🔒 New CSAF advisory published
VDE-2026-028
Carlo Gavazzi Automation: YL212* and YN115* are affected by multiple security vulnerabilities
CVE-2026-27565, CVE-2026-27564, CVE-2026-27563, CVE-2026-27562, CVE-2026-27561 (+15 more)
The affected devices have security vulnerabilities that can be used to bypass authentication. Code…
HTML: https://certvde.com/en/advisories/VDE-2026-028
CSAF JSON: https://gavazziautomation.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-028.json
🔒 New CSAF advisory published
VDE-2026-027
Phoenix Contact: Multiple vulnerabilities in the firmware of IOL MA8 EIP DI8 and IOL MA8 PN DI8 devices
CVE-2026-27565, CVE-2026-27564, CVE-2026-27563, CVE-2026-27562, CVE-2026-27561 (+15 more)
The firmware of IOL MA8 EIP DI8 and IOL MA8 PN DI8 devices is affected by security vulnerab…
HTML: https://certvde.com/en/advisories/VDE-2026-027
CSAF JSON: https://phoenixcontact.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-027.json
🔒 New CSAF advisory published
VDE-2026-014
Pepperl+Fuchs: ICE2-* and ICE3-* are affected by multiple security vulnerabilities
CVE-2026-27565, CVE-2026-27564, CVE-2026-27563, CVE-2026-27562, CVE-2026-27561 (+15 more)
The affected devices have security vulnerabilities that can be used to bypass authentication. Code can be execute…
HTML: https://certvde.com/en/advisories/VDE-2026-014
CSAF JSON: https://pepperl-fuchs.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-014.json
updated 2026-09-16T09:30:28
2 posts
CVE-2026-81642: CRITICAL heap buffer overflow in NLnet Labs Unbound ≤1.26.0. Exploitable via DNSKEY with owner compression pointer — possible DoS & RCE. Patch ASAP. https://radar.offseq.com/threat/cve-2026-81642-cwe-122-heap-based-buffer-overflow-in-nlnet-labs-unbound-2ab04cc5a0313c65 #OffSeq #DNS #Unbound #Vuln #RCE
##CVE-2026-81642: CRITICAL heap buffer overflow in NLnet Labs Unbound ≤1.26.0. Exploitable via DNSKEY with owner compression pointer — possible DoS & RCE. Patch ASAP. https://radar.offseq.com/threat/cve-2026-81642-cwe-122-heap-based-buffer-overflow-in-nlnet-labs-unbound-2ab04cc5a0313c65 #OffSeq #DNS #Unbound #Vuln #RCE
##updated 2026-09-16T06:31:34
3 posts
3 repos
https://github.com/murrez/CVE-2026-12793
📰 Critical WordPress Plugin Flaw Allows Unauthenticated Admin Creation
Critical unauthenticated admin creation flaw (CVE-2026-12793, CVSS 9.8) found in JetFormBuilder WordPress plugin (<= 3.6.2). Public exploit available. Update or disable immediately to prevent site takeover! #WordPress #Vulnerability
##CVE-2026-12793: CRITICAL privilege escalation in JetFormBuilder Dynamic Blocks Form Builder (<=3.6.2). Unauthenticated attackers can create admin accounts. Restrict access & monitor until patch. https://radar.offseq.com/threat/cve-2026-12793-cwe-269-improper-privilege-management-in-jetmonsters-jetformbuilder-dynamic-blocks-form-fa1c70f5eeec8d4c #OffSeq #WordPress #CVE202612793 #Infosec
##CVE-2026-12793: CRITICAL privilege escalation in JetFormBuilder Dynamic Blocks Form Builder (<=3.6.2). Unauthenticated attackers can create admin accounts. Restrict access & monitor until patch. https://radar.offseq.com/threat/cve-2026-12793-cwe-269-improper-privilege-management-in-jetmonsters-jetformbuilder-dynamic-blocks-form-fa1c70f5eeec8d4c #OffSeq #WordPress #CVE202612793 #Infosec
##updated 2026-09-16T06:31:34
2 posts
TrueBooker (<=1.2.3) WordPress plugin hit by CVE-2026-14349 (CRITICAL, CVSS 9.8): missing auth lets unauthenticated attackers change user emails & reset passwords. No patch yet — restrict access & monitor! https://radar.offseq.com/threat/cve-2026-14349-cwe-862-missing-authorization-in-themetechmount-truebooker-appointment-booking-and-c8c43284d888ee3a #OffSeq #WordPress #CVE202614349 #AppSec
##TrueBooker (<=1.2.3) WordPress plugin hit by CVE-2026-14349 (CRITICAL, CVSS 9.8): missing auth lets unauthenticated attackers change user emails & reset passwords. No patch yet — restrict access & monitor! https://radar.offseq.com/threat/cve-2026-14349-cwe-862-missing-authorization-in-themetechmount-truebooker-appointment-booking-and-c8c43284d888ee3a #OffSeq #WordPress #CVE202614349 #AppSec
##updated 2026-09-16T00:32:32
1 posts
[1/4]
Most Impactful Security Incidents ( 2026‑09‑15 → today )
---
PRIORITY 1 – Critical/high‑severity flaws (CVSS 7‑10) in core software stacks :
CVE‑2026‑83339
• Oracle WebCenter Enterprise Capture – Client Bundle
• Unauthenticated remote code execution; attacker can take full control of the capture service.
• 9.8 (Critical)
• HTTP (network‑level)
• <https://cveawg.mitre.org/api/cve/CVE-2026-83339>
CVE‑2026‑83355
• Oracle Enterprise Manager for Fusion Middleware – Metrics
• Remote code execution via unauthenticated HTTP request; full takeover of the management console.
• 9.8
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83355>
CVE‑2026‑83149
• Oracle Application Testing Suite – 13.3.0.1
• Low‑privileged attacker can execute arbitrary code over HTTP; leads to full compromise of the testing suite.
• 9.1
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83149>
CVE‑2026‑83107
• Oracle Forms – 12.2.1.19.0 / 14.1.2.0
• High‑privileged attacker can gain remote code execution via HTTP; full takeover of Forms services.
• 9.1
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83107>
CVE‑2026‑83105
• Oracle Forms – same versions
• Remote code execution (CVSS 9) via HTTP; attacker gains full control.
• 9
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83105>
CVE‑2026‑83103
• Oracle Forms – same versions
• Remote code execution (CVSS 9.1) via HTTP; full compromise.
• 9.1
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83103>
CVE‑2026‑83100
• Oracle Forms – same versions
• Remote code execution (CVSS 9.8) via HTTP; full takeover.
• 9.8
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83100>
CVE‑2026‑83099
• Oracle WebCenter Portal – Runtime Tools
• Remote code execution (CVSS 9.9) via HTTP; full compromise of the portal.
• 9.9
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83099>
CVE‑2026‑83098
• Oracle WebCenter Portal – Composer
• Remote code execution (CVSS 9.8) via HTTP; full takeover.
• 9.8
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83098>
CVE‑2026‑83095
• Oracle WebCenter Portal – Composer
• Remote code execution (CVSS 9.8) via HTTP; full compromise.
• 9.8
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83095>
updated 2026-09-16T00:32:27
1 posts
[1/4]
Most Impactful Security Incidents ( 2026‑09‑15 → today )
---
PRIORITY 1 – Critical/high‑severity flaws (CVSS 7‑10) in core software stacks :
CVE‑2026‑83339
• Oracle WebCenter Enterprise Capture – Client Bundle
• Unauthenticated remote code execution; attacker can take full control of the capture service.
• 9.8 (Critical)
• HTTP (network‑level)
• <https://cveawg.mitre.org/api/cve/CVE-2026-83339>
CVE‑2026‑83355
• Oracle Enterprise Manager for Fusion Middleware – Metrics
• Remote code execution via unauthenticated HTTP request; full takeover of the management console.
• 9.8
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83355>
CVE‑2026‑83149
• Oracle Application Testing Suite – 13.3.0.1
• Low‑privileged attacker can execute arbitrary code over HTTP; leads to full compromise of the testing suite.
• 9.1
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83149>
CVE‑2026‑83107
• Oracle Forms – 12.2.1.19.0 / 14.1.2.0
• High‑privileged attacker can gain remote code execution via HTTP; full takeover of Forms services.
• 9.1
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83107>
CVE‑2026‑83105
• Oracle Forms – same versions
• Remote code execution (CVSS 9) via HTTP; attacker gains full control.
• 9
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83105>
CVE‑2026‑83103
• Oracle Forms – same versions
• Remote code execution (CVSS 9.1) via HTTP; full compromise.
• 9.1
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83103>
CVE‑2026‑83100
• Oracle Forms – same versions
• Remote code execution (CVSS 9.8) via HTTP; full takeover.
• 9.8
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83100>
CVE‑2026‑83099
• Oracle WebCenter Portal – Runtime Tools
• Remote code execution (CVSS 9.9) via HTTP; full compromise of the portal.
• 9.9
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83099>
CVE‑2026‑83098
• Oracle WebCenter Portal – Composer
• Remote code execution (CVSS 9.8) via HTTP; full takeover.
• 9.8
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83098>
CVE‑2026‑83095
• Oracle WebCenter Portal – Composer
• Remote code execution (CVSS 9.8) via HTTP; full compromise.
• 9.8
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83095>
updated 2026-09-16T00:32:27
1 posts
[1/4]
Most Impactful Security Incidents ( 2026‑09‑15 → today )
---
PRIORITY 1 – Critical/high‑severity flaws (CVSS 7‑10) in core software stacks :
CVE‑2026‑83339
• Oracle WebCenter Enterprise Capture – Client Bundle
• Unauthenticated remote code execution; attacker can take full control of the capture service.
• 9.8 (Critical)
• HTTP (network‑level)
• <https://cveawg.mitre.org/api/cve/CVE-2026-83339>
CVE‑2026‑83355
• Oracle Enterprise Manager for Fusion Middleware – Metrics
• Remote code execution via unauthenticated HTTP request; full takeover of the management console.
• 9.8
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83355>
CVE‑2026‑83149
• Oracle Application Testing Suite – 13.3.0.1
• Low‑privileged attacker can execute arbitrary code over HTTP; leads to full compromise of the testing suite.
• 9.1
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83149>
CVE‑2026‑83107
• Oracle Forms – 12.2.1.19.0 / 14.1.2.0
• High‑privileged attacker can gain remote code execution via HTTP; full takeover of Forms services.
• 9.1
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83107>
CVE‑2026‑83105
• Oracle Forms – same versions
• Remote code execution (CVSS 9) via HTTP; attacker gains full control.
• 9
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83105>
CVE‑2026‑83103
• Oracle Forms – same versions
• Remote code execution (CVSS 9.1) via HTTP; full compromise.
• 9.1
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83103>
CVE‑2026‑83100
• Oracle Forms – same versions
• Remote code execution (CVSS 9.8) via HTTP; full takeover.
• 9.8
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83100>
CVE‑2026‑83099
• Oracle WebCenter Portal – Runtime Tools
• Remote code execution (CVSS 9.9) via HTTP; full compromise of the portal.
• 9.9
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83099>
CVE‑2026‑83098
• Oracle WebCenter Portal – Composer
• Remote code execution (CVSS 9.8) via HTTP; full takeover.
• 9.8
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83098>
CVE‑2026‑83095
• Oracle WebCenter Portal – Composer
• Remote code execution (CVSS 9.8) via HTTP; full compromise.
• 9.8
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83095>
updated 2026-09-16T00:32:25
2 posts
Docker released an update for critical Docker Sandboxes vulnerabilities (CVE-2026-77179, CVE-2026-79994). Patch these Docker Sandboxes vulnerabilities today.
#Docker #DockerSandboxes #CVE202677179 #CVE202679994 #Cybersecurity
##Docker released an update for critical Docker Sandboxes vulnerabilities (CVE-2026-77179, CVE-2026-79994). Patch these Docker Sandboxes vulnerabilities today.
#Docker #DockerSandboxes #CVE202677179 #CVE202679994 #Cybersecurity
##updated 2026-09-16T00:31:42
2 posts
🟠 CVE-2026-85893 - High (8.8)
Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to elevate privileges over a network.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-85893/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-85893 - High (8.8)
Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to elevate privileges over a network.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-85893/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-16T00:31:41
4 posts
Go hack more Secret Server shit.
https://delinea.com/security-advisories
##Authentication Bypass via SAML Response Manipulation - CVE-2026-15640
Reflected Cross-Site Scripting - CVE-2026-15639
Cryptographic Padding Oracle - CVE-2026-15638
Delinea Secret Server (On-Prem, v10.5.0 – 12.1.3) hit by CRITICAL auth bypass (CVE-2026-15640). SAML spoofing may allow attacker impersonation. Patch info not yet available. Details: https://radar.offseq.com/threat/cve-2026-15640-cwe-290-authentication-bypass-by-spoofing-in-delinea-secret-server-on-prem-e1dc96081cdc3445 #OffSeq #Vuln #Delinea #CVE202615640
##Go hack more Secret Server shit.
https://delinea.com/security-advisories
##Authentication Bypass via SAML Response Manipulation - CVE-2026-15640
Reflected Cross-Site Scripting - CVE-2026-15639
Cryptographic Padding Oracle - CVE-2026-15638
Delinea Secret Server (On-Prem, v10.5.0 – 12.1.3) hit by CRITICAL auth bypass (CVE-2026-15640). SAML spoofing may allow attacker impersonation. Patch info not yet available. Details: https://radar.offseq.com/threat/cve-2026-15640-cwe-290-authentication-bypass-by-spoofing-in-delinea-secret-server-on-prem-e1dc96081cdc3445 #OffSeq #Vuln #Delinea #CVE202615640
##updated 2026-09-16T00:31:41
2 posts
🟠 CVE-2026-69486 - High (8.8)
Heap-based buffer overflow in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-69486/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-69486 - High (8.8)
Heap-based buffer overflow in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-69486/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-16T00:31:34
2 posts
Go hack more Secret Server shit.
https://delinea.com/security-advisories
##Authentication Bypass via SAML Response Manipulation - CVE-2026-15640
Reflected Cross-Site Scripting - CVE-2026-15639
Cryptographic Padding Oracle - CVE-2026-15638
Go hack more Secret Server shit.
https://delinea.com/security-advisories
##Authentication Bypass via SAML Response Manipulation - CVE-2026-15640
Reflected Cross-Site Scripting - CVE-2026-15639
Cryptographic Padding Oracle - CVE-2026-15638
updated 2026-09-16T00:31:33
4 posts
Go hack more Secret Server shit.
https://delinea.com/security-advisories
##Authentication Bypass via SAML Response Manipulation - CVE-2026-15640
Reflected Cross-Site Scripting - CVE-2026-15639
Cryptographic Padding Oracle - CVE-2026-15638
CVE-2026-15639: CRITICAL XSS in Delinea Secret Server (On-Prem, 10.2.19 – 11.9.48). Exploitation allows remote attackers to run JS in user sessions. Patch status unknown — check vendor advisories. https://radar.offseq.com/threat/cve-2026-15639-cwe-79-improper-neutralization-of-input-during-web-page-generation-cross-site-scripting-ac80ea2cb57f59e8 #OffSeq #XSS #Vuln #Delinea #Cybersecurity
##Go hack more Secret Server shit.
https://delinea.com/security-advisories
##Authentication Bypass via SAML Response Manipulation - CVE-2026-15640
Reflected Cross-Site Scripting - CVE-2026-15639
Cryptographic Padding Oracle - CVE-2026-15638
CVE-2026-15639: CRITICAL XSS in Delinea Secret Server (On-Prem, 10.2.19 – 11.9.48). Exploitation allows remote attackers to run JS in user sessions. Patch status unknown — check vendor advisories. https://radar.offseq.com/threat/cve-2026-15639-cwe-79-improper-neutralization-of-input-during-web-page-generation-cross-site-scripting-ac80ea2cb57f59e8 #OffSeq #XSS #Vuln #Delinea #Cybersecurity
##updated 2026-09-16T00:31:27
2 posts
🟠 CVE-2026-87289 - High (7.5)
Vulnerability in the Helidon product of Oracle Fusion Middleware (component: helidon-webserver-static-content). Supported versions that are affected are 4.0.0-4.5.4. Easily exploitable vulnerability allows unauthenticated attacker with network ac...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-87289/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-87289 - High (7.5)
Vulnerability in the Helidon product of Oracle Fusion Middleware (component: helidon-webserver-static-content). Supported versions that are affected are 4.0.0-4.5.4. Easily exploitable vulnerability allows unauthenticated attacker with network ac...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-87289/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-16T00:31:25
1 posts
[1/4]
Most Impactful Security Incidents ( 2026‑09‑15 → today )
---
PRIORITY 1 – Critical/high‑severity flaws (CVSS 7‑10) in core software stacks :
CVE‑2026‑83339
• Oracle WebCenter Enterprise Capture – Client Bundle
• Unauthenticated remote code execution; attacker can take full control of the capture service.
• 9.8 (Critical)
• HTTP (network‑level)
• <https://cveawg.mitre.org/api/cve/CVE-2026-83339>
CVE‑2026‑83355
• Oracle Enterprise Manager for Fusion Middleware – Metrics
• Remote code execution via unauthenticated HTTP request; full takeover of the management console.
• 9.8
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83355>
CVE‑2026‑83149
• Oracle Application Testing Suite – 13.3.0.1
• Low‑privileged attacker can execute arbitrary code over HTTP; leads to full compromise of the testing suite.
• 9.1
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83149>
CVE‑2026‑83107
• Oracle Forms – 12.2.1.19.0 / 14.1.2.0
• High‑privileged attacker can gain remote code execution via HTTP; full takeover of Forms services.
• 9.1
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83107>
CVE‑2026‑83105
• Oracle Forms – same versions
• Remote code execution (CVSS 9) via HTTP; attacker gains full control.
• 9
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83105>
CVE‑2026‑83103
• Oracle Forms – same versions
• Remote code execution (CVSS 9.1) via HTTP; full compromise.
• 9.1
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83103>
CVE‑2026‑83100
• Oracle Forms – same versions
• Remote code execution (CVSS 9.8) via HTTP; full takeover.
• 9.8
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83100>
CVE‑2026‑83099
• Oracle WebCenter Portal – Runtime Tools
• Remote code execution (CVSS 9.9) via HTTP; full compromise of the portal.
• 9.9
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83099>
CVE‑2026‑83098
• Oracle WebCenter Portal – Composer
• Remote code execution (CVSS 9.8) via HTTP; full takeover.
• 9.8
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83098>
CVE‑2026‑83095
• Oracle WebCenter Portal – Composer
• Remote code execution (CVSS 9.8) via HTTP; full compromise.
• 9.8
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83095>
updated 2026-09-16T00:31:25
1 posts
[1/4]
Most Impactful Security Incidents ( 2026‑09‑15 → today )
---
PRIORITY 1 – Critical/high‑severity flaws (CVSS 7‑10) in core software stacks :
CVE‑2026‑83339
• Oracle WebCenter Enterprise Capture – Client Bundle
• Unauthenticated remote code execution; attacker can take full control of the capture service.
• 9.8 (Critical)
• HTTP (network‑level)
• <https://cveawg.mitre.org/api/cve/CVE-2026-83339>
CVE‑2026‑83355
• Oracle Enterprise Manager for Fusion Middleware – Metrics
• Remote code execution via unauthenticated HTTP request; full takeover of the management console.
• 9.8
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83355>
CVE‑2026‑83149
• Oracle Application Testing Suite – 13.3.0.1
• Low‑privileged attacker can execute arbitrary code over HTTP; leads to full compromise of the testing suite.
• 9.1
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83149>
CVE‑2026‑83107
• Oracle Forms – 12.2.1.19.0 / 14.1.2.0
• High‑privileged attacker can gain remote code execution via HTTP; full takeover of Forms services.
• 9.1
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83107>
CVE‑2026‑83105
• Oracle Forms – same versions
• Remote code execution (CVSS 9) via HTTP; attacker gains full control.
• 9
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83105>
CVE‑2026‑83103
• Oracle Forms – same versions
• Remote code execution (CVSS 9.1) via HTTP; full compromise.
• 9.1
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83103>
CVE‑2026‑83100
• Oracle Forms – same versions
• Remote code execution (CVSS 9.8) via HTTP; full takeover.
• 9.8
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83100>
CVE‑2026‑83099
• Oracle WebCenter Portal – Runtime Tools
• Remote code execution (CVSS 9.9) via HTTP; full compromise of the portal.
• 9.9
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83099>
CVE‑2026‑83098
• Oracle WebCenter Portal – Composer
• Remote code execution (CVSS 9.8) via HTTP; full takeover.
• 9.8
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83098>
CVE‑2026‑83095
• Oracle WebCenter Portal – Composer
• Remote code execution (CVSS 9.8) via HTTP; full compromise.
• 9.8
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83095>
updated 2026-09-15T21:33:15
2 posts
🟠 CVE-2026-92000 - High (7.5)
adm-zip versions 0.5.14 through 0.6.0 fail to apply zlib decompression output limits when ZIP entries declare zero uncompressed size. Attackers can craft malicious ZIP archives with highly compressible entries declaring zero size to exhaust memory...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-92000/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-92000 - High (7.5)
adm-zip versions 0.5.14 through 0.6.0 fail to apply zlib decompression output limits when ZIP entries declare zero uncompressed size. Attackers can craft malicious ZIP archives with highly compressible entries declaring zero size to exhaust memory...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-92000/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-15T21:33:13
2 posts
🟠 CVE-2026-68070 - High (8.8)
The affected products are missing authentication for a critical function, which could allow an attacker to run as root and pass received bytes directly to a system command.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-68070/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-68070 - High (8.8)
The affected products are missing authentication for a critical function, which could allow an attacker to run as root and pass received bytes directly to a system command.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-68070/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-15T21:33:13
2 posts
🔴 CVE-2026-66890 - Critical (9.6)
The affected products use hard-coded credentials, which could allow remote access to files with root privileges where FTP is reachable.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66890/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-66890 - Critical (9.6)
The affected products use hard-coded credentials, which could allow remote access to files with root privileges where FTP is reachable.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66890/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-15T21:33:13
2 posts
🟠 CVE-2026-87286 - High (8.1)
Vulnerability in the Oracle GraalVM product of Oracle Java SE (component: Compiler). The supported version that is affected is Oracle GraalVM: 25.0.4.1. Difficult to exploit vulnerability allows unauthenticated attacker with network access via H...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-87286/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-87286 - High (8.1)
Vulnerability in the Oracle GraalVM product of Oracle Java SE (component: Compiler). The supported version that is affected is Oracle GraalVM: 25.0.4.1. Difficult to exploit vulnerability allows unauthenticated attacker with network access via H...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-87286/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-15T21:32:16
1 posts
[1/4]
Most Impactful Security Incidents ( 2026‑09‑15 → today )
---
PRIORITY 1 – Critical/high‑severity flaws (CVSS 7‑10) in core software stacks :
CVE‑2026‑83339
• Oracle WebCenter Enterprise Capture – Client Bundle
• Unauthenticated remote code execution; attacker can take full control of the capture service.
• 9.8 (Critical)
• HTTP (network‑level)
• <https://cveawg.mitre.org/api/cve/CVE-2026-83339>
CVE‑2026‑83355
• Oracle Enterprise Manager for Fusion Middleware – Metrics
• Remote code execution via unauthenticated HTTP request; full takeover of the management console.
• 9.8
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83355>
CVE‑2026‑83149
• Oracle Application Testing Suite – 13.3.0.1
• Low‑privileged attacker can execute arbitrary code over HTTP; leads to full compromise of the testing suite.
• 9.1
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83149>
CVE‑2026‑83107
• Oracle Forms – 12.2.1.19.0 / 14.1.2.0
• High‑privileged attacker can gain remote code execution via HTTP; full takeover of Forms services.
• 9.1
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83107>
CVE‑2026‑83105
• Oracle Forms – same versions
• Remote code execution (CVSS 9) via HTTP; attacker gains full control.
• 9
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83105>
CVE‑2026‑83103
• Oracle Forms – same versions
• Remote code execution (CVSS 9.1) via HTTP; full compromise.
• 9.1
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83103>
CVE‑2026‑83100
• Oracle Forms – same versions
• Remote code execution (CVSS 9.8) via HTTP; full takeover.
• 9.8
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83100>
CVE‑2026‑83099
• Oracle WebCenter Portal – Runtime Tools
• Remote code execution (CVSS 9.9) via HTTP; full compromise of the portal.
• 9.9
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83099>
CVE‑2026‑83098
• Oracle WebCenter Portal – Composer
• Remote code execution (CVSS 9.8) via HTTP; full takeover.
• 9.8
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83098>
CVE‑2026‑83095
• Oracle WebCenter Portal – Composer
• Remote code execution (CVSS 9.8) via HTTP; full compromise.
• 9.8
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83095>
updated 2026-09-15T21:32:14
1 posts
[1/4]
Most Impactful Security Incidents ( 2026‑09‑15 → today )
---
PRIORITY 1 – Critical/high‑severity flaws (CVSS 7‑10) in core software stacks :
CVE‑2026‑83339
• Oracle WebCenter Enterprise Capture – Client Bundle
• Unauthenticated remote code execution; attacker can take full control of the capture service.
• 9.8 (Critical)
• HTTP (network‑level)
• <https://cveawg.mitre.org/api/cve/CVE-2026-83339>
CVE‑2026‑83355
• Oracle Enterprise Manager for Fusion Middleware – Metrics
• Remote code execution via unauthenticated HTTP request; full takeover of the management console.
• 9.8
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83355>
CVE‑2026‑83149
• Oracle Application Testing Suite – 13.3.0.1
• Low‑privileged attacker can execute arbitrary code over HTTP; leads to full compromise of the testing suite.
• 9.1
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83149>
CVE‑2026‑83107
• Oracle Forms – 12.2.1.19.0 / 14.1.2.0
• High‑privileged attacker can gain remote code execution via HTTP; full takeover of Forms services.
• 9.1
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83107>
CVE‑2026‑83105
• Oracle Forms – same versions
• Remote code execution (CVSS 9) via HTTP; attacker gains full control.
• 9
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83105>
CVE‑2026‑83103
• Oracle Forms – same versions
• Remote code execution (CVSS 9.1) via HTTP; full compromise.
• 9.1
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83103>
CVE‑2026‑83100
• Oracle Forms – same versions
• Remote code execution (CVSS 9.8) via HTTP; full takeover.
• 9.8
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83100>
CVE‑2026‑83099
• Oracle WebCenter Portal – Runtime Tools
• Remote code execution (CVSS 9.9) via HTTP; full compromise of the portal.
• 9.9
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83099>
CVE‑2026‑83098
• Oracle WebCenter Portal – Composer
• Remote code execution (CVSS 9.8) via HTTP; full takeover.
• 9.8
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83098>
CVE‑2026‑83095
• Oracle WebCenter Portal – Composer
• Remote code execution (CVSS 9.8) via HTTP; full compromise.
• 9.8
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83095>
updated 2026-09-15T21:32:07
1 posts
[1/4]
Most Impactful Security Incidents ( 2026‑09‑15 → today )
---
PRIORITY 1 – Critical/high‑severity flaws (CVSS 7‑10) in core software stacks :
CVE‑2026‑83339
• Oracle WebCenter Enterprise Capture – Client Bundle
• Unauthenticated remote code execution; attacker can take full control of the capture service.
• 9.8 (Critical)
• HTTP (network‑level)
• <https://cveawg.mitre.org/api/cve/CVE-2026-83339>
CVE‑2026‑83355
• Oracle Enterprise Manager for Fusion Middleware – Metrics
• Remote code execution via unauthenticated HTTP request; full takeover of the management console.
• 9.8
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83355>
CVE‑2026‑83149
• Oracle Application Testing Suite – 13.3.0.1
• Low‑privileged attacker can execute arbitrary code over HTTP; leads to full compromise of the testing suite.
• 9.1
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83149>
CVE‑2026‑83107
• Oracle Forms – 12.2.1.19.0 / 14.1.2.0
• High‑privileged attacker can gain remote code execution via HTTP; full takeover of Forms services.
• 9.1
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83107>
CVE‑2026‑83105
• Oracle Forms – same versions
• Remote code execution (CVSS 9) via HTTP; attacker gains full control.
• 9
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83105>
CVE‑2026‑83103
• Oracle Forms – same versions
• Remote code execution (CVSS 9.1) via HTTP; full compromise.
• 9.1
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83103>
CVE‑2026‑83100
• Oracle Forms – same versions
• Remote code execution (CVSS 9.8) via HTTP; full takeover.
• 9.8
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83100>
CVE‑2026‑83099
• Oracle WebCenter Portal – Runtime Tools
• Remote code execution (CVSS 9.9) via HTTP; full compromise of the portal.
• 9.9
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83099>
CVE‑2026‑83098
• Oracle WebCenter Portal – Composer
• Remote code execution (CVSS 9.8) via HTTP; full takeover.
• 9.8
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83098>
CVE‑2026‑83095
• Oracle WebCenter Portal – Composer
• Remote code execution (CVSS 9.8) via HTTP; full compromise.
• 9.8
• HTTP
• <https://cveawg.mitre.org/api/cve/CVE-2026-83095>
updated 2026-09-15T21:31:34
2 posts
A critical HPE EdgeConnect authorization bypass (CVE-2026-76670) enables full system compromise. Patch this HPE EdgeConnect authorization bypass now.
#HPE #EdgeConnect #AuthorizationBypass #CVE202676670 #Cybersecurity
##A critical HPE EdgeConnect authorization bypass (CVE-2026-76670) enables full system compromise. Patch this HPE EdgeConnect authorization bypass now.
#HPE #EdgeConnect #AuthorizationBypass #CVE202676670 #Cybersecurity
##updated 2026-09-15T21:31:29
2 posts
🟠 CVE-2026-92179 - High (7.8)
pdfforge PDF Architect PDF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of pdfforge PDF Architect. User interaction is required...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-92179/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-92179 - High (7.8)
pdfforge PDF Architect PDF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of pdfforge PDF Architect. User interaction is required...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-92179/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-15T21:31:28
2 posts
🟠 CVE-2026-92178 - High (7.8)
pdfforge PDF Architect PDF File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of pdfforge PDF Architect. User interaction is required t...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-92178/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-92178 - High (7.8)
pdfforge PDF Architect PDF File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of pdfforge PDF Architect. User interaction is required t...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-92178/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-15T21:31:25
2 posts
🟠 CVE-2026-92180 - High (7.8)
pdfforge PDF Architect activation-service Update Service Uncontrolled Search Path Element Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of pdfforge PDF Architec...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-92180/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-92180 - High (7.8)
pdfforge PDF Architect activation-service Update Service Uncontrolled Search Path Element Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of pdfforge PDF Architec...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-92180/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-15T20:19:20.240000
2 posts
🔴 CVE-2026-89040 - Critical (9.8)
Tencent Mass Service Engine in Cluster (MSEC) allows a remote, unauthenticated attacker to send a crafted POST request including ../ and gain root access on the target device. An attacker who uploads a webshell can execute arbitrary code as root.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89040/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-89040 - Critical (9.8)
Tencent Mass Service Engine in Cluster (MSEC) allows a remote, unauthenticated attacker to send a crafted POST request including ../ and gain root access on the target device. An attacker who uploads a webshell can execute arbitrary code as root.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89040/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-15T20:01:24
2 posts
🟠 CVE-2026-88975 - High (7.5)
Http4s is a Scala interface for HTTP services. Prior to 0.23.37 and 1.0.0-M48, Ember’s HTTP/2 read loop parses a frame’s 24-bit declared length but waits to buffer the entire payload before comparing it with SETTINGS_MAX_FRAME_SIZE. An unauthe...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-88975/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-88975 - High (7.5)
Http4s is a Scala interface for HTTP services. Prior to 0.23.37 and 1.0.0-M48, Ember’s HTTP/2 read loop parses a frame’s 24-bit declared length but waits to buffer the entire payload before comparing it with SETTINGS_MAX_FRAME_SIZE. An unauthe...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-88975/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-15T20:00:36
2 posts
🟠 CVE-2026-69213 - High (7.5)
Http4s is a Scala interface for HTTP services. Prior to 0.23.35 and 1.0.0-M47, Ember HTTP/2 serializes outbound frames through one unbounded queue consumed by writeLoop. When the peer stops reading, an unauthenticated HTTP/2 client can continue se...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-69213/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-69213 - High (7.5)
Http4s is a Scala interface for HTTP services. Prior to 0.23.35 and 1.0.0-M47, Ember HTTP/2 serializes outbound frames through one unbounded queue consumed by writeLoop. When the peer stops reading, an unauthenticated HTTP/2 client can continue se...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-69213/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-15T19:17:46.767000
1 posts
EFM ipTIME C200E v1.094 suffers CRITICAL OS command injection (CVE-2026-90847, CVSS 9.4) via iux_set.cgi. Remotely exploitable, public exploit available. Restrict device access and monitor. https://radar.offseq.com/threat/cve-2026-90847-os-command-injection-in-efm-iptime-c200e-1c30057b126bbbf4 #OffSeq #Vulnerability #IoTSecurity #CVE
##updated 2026-09-15T19:17:31.030000
1 posts
🟠 CVE-2026-57586 - High (8.6)
CodeRAG is a lightweight semantic code search and distillation utility for AI coding agents. Prior to 1.3.1, the default agent-coderag sync flow in code_rag/entry/cli.py calls sync_dependencies for an indexed path, and code_rag/core/manager.py tre...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-57586/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-15T18:33:13
1 posts
Cisco has addressed a critical September 2 vulnerability.
CRITICAL: CVE-2026-20274, CVE-2026-20275, and CVE-2026-20276: Cisco IOS XR Software Security Hardening Release: September 2026 https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-hardening-iosxr-qg64NcM @TalosSecurity
More related to Cisco:
Rapid7: CVE-2026-76461: Critical Cisco Secure Email Gateway Vulnerability Exploited in the Wild https://www.rapid7.com/blog/post/etr-cve-2026-76461-critical-cisco-secure-email-gateway-vulnerability-exploited-in-the-wild/ @Rapid7Official #threatresearch #infosec #Cisco #vulnerability
##updated 2026-09-15T18:32:43
1 posts
🟠 CVE-2026-91985 - High (7.5)
Vikunja before 2.6.0 fails to properly restrict access to the link-share hash field in single-share read endpoints, allowing read-only members to obtain the share's secret credential. Attackers can exchange the disclosed hash for a link-share JWT ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-91985/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-15T18:32:42
1 posts
🟠 CVE-2026-91989 - High (7.5)
atomic-agents-stack before 1.1.0 contains a path traversal vulnerability in the dashboard HTTP server that allows remote attackers to read arbitrary files by supplying directory traversal sequences in request paths. Attackers can bypass path conta...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-91989/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-15T18:32:19
1 posts
Welcome to Monday and two new advisories from Cisco.
CRITICAL: CVE-2026-20353, CVE-2026-76440, and CVE-2026-76441: Cisco Secure Email Gateway and Secure Email and Web Manager Security Hardening Release: September 2026 https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-hardening-esa-dfCrfXkm
CRITICAL: CVE-2026-76461: Cisco Secure Email Gateway SQL Injection Vulnerability https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-esa-inj-2bLVGmhX
Two more critical vulnerabilities on the 9th and the 11th https://sec.cloudapps.cisco.com/security/center/publicationListing.x @TalosSecurity #Cisco #infosec #vulnerability
##updated 2026-09-15T18:32:19
1 posts
Welcome to Monday and two new advisories from Cisco.
CRITICAL: CVE-2026-20353, CVE-2026-76440, and CVE-2026-76441: Cisco Secure Email Gateway and Secure Email and Web Manager Security Hardening Release: September 2026 https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-hardening-esa-dfCrfXkm
CRITICAL: CVE-2026-76461: Cisco Secure Email Gateway SQL Injection Vulnerability https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-esa-inj-2bLVGmhX
Two more critical vulnerabilities on the 9th and the 11th https://sec.cloudapps.cisco.com/security/center/publicationListing.x @TalosSecurity #Cisco #infosec #vulnerability
##updated 2026-09-15T18:32:13
1 posts
Cisco has addressed a critical September 2 vulnerability.
CRITICAL: CVE-2026-20274, CVE-2026-20275, and CVE-2026-20276: Cisco IOS XR Software Security Hardening Release: September 2026 https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-hardening-iosxr-qg64NcM @TalosSecurity
More related to Cisco:
Rapid7: CVE-2026-76461: Critical Cisco Secure Email Gateway Vulnerability Exploited in the Wild https://www.rapid7.com/blog/post/etr-cve-2026-76461-critical-cisco-secure-email-gateway-vulnerability-exploited-in-the-wild/ @Rapid7Official #threatresearch #infosec #Cisco #vulnerability
##updated 2026-09-15T18:19:12.950000
1 posts
Welcome to Monday and two new advisories from Cisco.
CRITICAL: CVE-2026-20353, CVE-2026-76440, and CVE-2026-76441: Cisco Secure Email Gateway and Secure Email and Web Manager Security Hardening Release: September 2026 https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-hardening-esa-dfCrfXkm
CRITICAL: CVE-2026-76461: Cisco Secure Email Gateway SQL Injection Vulnerability https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-esa-inj-2bLVGmhX
Two more critical vulnerabilities on the 9th and the 11th https://sec.cloudapps.cisco.com/security/center/publicationListing.x @TalosSecurity #Cisco #infosec #vulnerability
##updated 2026-09-15T18:17:18.413000
1 posts
Cisco has addressed a critical September 2 vulnerability.
CRITICAL: CVE-2026-20274, CVE-2026-20275, and CVE-2026-20276: Cisco IOS XR Software Security Hardening Release: September 2026 https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-hardening-iosxr-qg64NcM @TalosSecurity
More related to Cisco:
Rapid7: CVE-2026-76461: Critical Cisco Secure Email Gateway Vulnerability Exploited in the Wild https://www.rapid7.com/blog/post/etr-cve-2026-76461-critical-cisco-secure-email-gateway-vulnerability-exploited-in-the-wild/ @Rapid7Official #threatresearch #infosec #Cisco #vulnerability
##updated 2026-09-15T17:17:33.510000
7 posts
1 repos
Unauthenticated RCE in Issabel Framework (CVE-2026-89026) is being exploited in the wild. A hardcoded JWT secret in pbxapi/index.php allows token forgery and OS command execution as the Asterisk user, risking full PBX takeover. #Issabel #RemoteCodeExecution #InfoSec
https://cyberworldops.eu/en/one-shared-jwt-secret-exposes-issabel-pbx-servers-to-remote-command
##Critical Issabel PBX Flaw CVE-2026-89026 Is Under Active Exploitation, Exposing Systems to Unauthenticated Remote Command Execution + Video
A Dangerous Authentication Failure in the Heart of Issabel PBX A critical security vulnerability in the Issabel Framework has moved from a newly disclosed software flaw to a confirmed exploitation concern. Tracked as CVE-2026-89026, the vulnerability allows unauthenticated remote attackers to forge JSON Web Tokens and abuse the…
##Thank you to @vulncheck for the smooth collaboration throughout the CNA process.
More details:
https://www.cve.org/CVERecord?id=CVE-2026-89026
🔴 CVE-2026-89026 - Critical (9.8)
The Issabel Framework, the web framework supporting Issabel PBX software, before commit b97dbaf contains a hard-coded HS256 JWT signing key in the pbxapi index.php file that is identical across every installation, allowing unauthenticated remote a...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89026/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##Unauthenticated RCE in Issabel Framework (CVE-2026-89026) is being exploited in the wild. A hardcoded JWT secret in pbxapi/index.php allows token forgery and OS command execution as the Asterisk user, risking full PBX takeover. #Issabel #RemoteCodeExecution #InfoSec
https://cyberworldops.eu/en/one-shared-jwt-secret-exposes-issabel-pbx-servers-to-remote-command
##Thank you to @vulncheck for the smooth collaboration throughout the CNA process.
More details:
https://www.cve.org/CVERecord?id=CVE-2026-89026
🔴 CVE-2026-89026 - Critical (9.8)
The Issabel Framework, the web framework supporting Issabel PBX software, before commit b97dbaf contains a hard-coded HS256 JWT signing key in the pbxapi index.php file that is identical across every installation, allowing unauthenticated remote a...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89026/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-15T15:32:20
2 posts
A Ghostscript buffer overflow enables unauthenticated remote code execution. Patch this Ghostscript buffer overflow flaw (CVE-2026-39919) immediately.
#Ghostscript #CVE202639919 #RemoteCodeExecution #Cybersecurity #InfoSec
##A Ghostscript buffer overflow enables unauthenticated remote code execution. Patch this Ghostscript buffer overflow flaw (CVE-2026-39919) immediately.
#Ghostscript #CVE202639919 #RemoteCodeExecution #Cybersecurity #InfoSec
##updated 2026-09-15T15:32:20
1 posts
Nginx 1.30.5 and 1.31.6 fix HTTP/3 buffer overflow (CVE-2026-90439)
NGINX가 HTTP/3 처리 과정의 버퍼 오버플로 취약점(CVE-2026-90439)을 수정한 1.30.5(Stable)와 1.31.6(Mainline)을 배포했습니다. NGINX는 AI API 게이트웨이, 모델 서빙 프록시, RAG·에이전트 서비스의 인그레스 계층에 널리 사용되므로 HTTP/3를 활성화한 배포 환경은 우선 영향을 점검해야 합니다. 제공된 내용에는 CVSS, 공격 조건, 영향 범위 등 세부 정보가 없지만, 메모리 안전성 문제인 버퍼 오버플로 수정이므로 해당 버전 이상으로의 업데이트와 롤백 가능한 배포 검증이 권장됩니다.
##updated 2026-09-15T15:32:20
1 posts
🔴 CVE-2026-63696 - Critical (9.1)
Dell SmartFabric OS10 Software, versions prior to 10.6.1.3, contains a Download of Code Without Integrity Check vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Code execution.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-63696/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-15T15:32:20
1 posts
🔴 CVE-2026-63695 - Critical (9.8)
Dell SmartFabric OS10 Software, versions prior to 10.6.1.3, contains a Session Fixation vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Session theft.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-63695/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-15T15:17:26.720000
1 posts
🟠 CVE-2026-89025 - High (7.5)
Hirschmann HiOS Switch Platform devices contain a denial-of-service vulnerability in the integrated web server due to missing validation of HTTP(S) content. A remote unauthenticated attacker can send a specially crafted HTTP(S) request to a specif...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89025/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-15T15:17:21.443000
1 posts
🟠 CVE-2026-75983 - High (7.5)
The Eventin – Event Calendar, Tickets, Registration, Booking & WooCommerce plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 4.1.23. This is due to the `PermissionManager::manage_permissions()` func...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-75983/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-15T14:16:54.240000
1 posts
OpenAM <16.1.1 suffers from CRITICAL deserialization vuln (CVE-2026-45051, CVSS 9.2). WebAuthnAuthentication lets attackers run arbitrary code via crafted serialized data. Patch to 16.1.1 ASAP! https://radar.offseq.com/threat/cve-2026-45051-cwe-502-deserialization-of-untrusted-data-in-openidentityplatform-openam-946ad921c23871b6 #OffSeq #CVE202645051 #OpenAM #infosec
##updated 2026-09-15T12:47:32.497000
31 posts
3 repos
https://github.com/HORKimhab/CVE-2026-76461
🏆 New Achievement! Root Access? We'll Get That Escalated for You!
Your ticket has been received. We see you're experiencing an issue where an unauthenticated attacker is executing arbitrary commands with root privileges on your Cisco Secure Email Gateway via CVE-2026-76461. Great news: we've reproduced the bug! It's the email parsing in Cisco AsyncOS — sending a specially crafted email with malicious SQL statements is all it takes. (1/3)
##Recent developments include Cisco patching a critical zero-day (CVE-2026-76461) in its Secure Email Gateway, which was actively exploited for root command execution. Geopolitically, China warned against weaponizing space after the US confirmed orbital weapon deployments. In technology, debates continue on AI safety versus national competitive advantage, with US Speaker Johnson rejecting development pauses.
##📰 Cisco Patches Actively Exploited Zero-Day in Secure Email Gateways
Cisco patches critical, actively exploited zero-day (CVE-2026-76461) in Secure Email Gateways. Unauthenticated attackers can compromise devices via a crafted email. CISA has added it to the KEV catalog. #CyberSecurity #ZeroDay #Infosec #Cisco
##Shownotes:
MacOS 27 - First Boot
https://isc.sans.edu/diary/MacOS%2027%20-%20First%20Boot/33340
Cisco Secure Email Gateway SQL Injection Vulnerability CVE-2026-76461
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/ci
AntennaPod | Anytime Player | Apple Podcasts | Castamatic | CurioCaster | Fountain | gPodder | Overcast | Pocket Casts | Podcast Addict | Podcast Guru | Podnews | Podverse | Truefans
Or Listen right here.
##Global cybersecurity agencies, including CISA & NSA, issued guidance to mitigate 17 Active Directory compromise techniques (Sept 16). Cisco patched an actively exploited email gateway zero-day (CVE-2026-76461). Geopolitically, the US confirmed deploying space weapons, drawing warnings from China about an arms race (Sept 15). AI is now the leading driver for new cybersecurity spending.
##Cisco Email Gateway SQL Injection Yields Unauthenticated Root (CVSS 9.8)
Cisco Secure Email Gateway의 AsyncOS 이메일 파싱 로직에서 인증 없이 악성 이메일만 전송해 SQL 인젝션을 유발하고, 기반 운영체제에서 root 권한 명령 실행까지 가능한 CVE-2026-76461이 공개됐다(CVSS 9.8). 물리·가상 어플라이언스 모두 구성과 무관하게 영향을 받으며, 우회책은 없으므로 해당 버전 사용 조직은 15.5.5-0141, 16.0.4-3021 또는 권장 버전인 16.5.0-780 이상으로 즉시 업그레이드해야 한...
##A critical Cisco Secure Email Gateway vulnerability allows unauthenticated attackers to gain root access via a single email. Learn about CVE-2026-76461.
##⚠️ CRITICAL: Cisco warns customers of actively exploited zero-day in email gateways
Cisco Secure Email Gateway contains a critical unauthenticated root privilege escalation vulnerability (CVE-2026-76461) that was actively exploited in the wild before patches were available. Multiple customers are likely already compromised. This is now tracked in CISA's Known Exploited Vulnerabili…
🤖 AI generated summary
##⚠️ CRITICAL: Cisco patches Secure Email Gateway zero-day exploited in attacks
Cisco Secure Email Gateway has a critical zero-day (CVE-2026-76461) that allows unauthenticated attackers to execute arbitrary commands as root via malicious SQL in crafted emails. This is actively exploited in the wild. Any organization running SEG is at immediate risk of full compromise.
🤖 AI generated summary
##Cisco email security boxes can be rooted by an email
Cisco Secure Email Gateway의 AsyncOS에서 수신 이메일 처리 취약점(CVE-2026-76461)이 악용되고 있으며, 인증 없이 조작된 이메일 하나로 어플라이언스의 root 권한 명령 실행이 가능하다. CVSS는 9.8이고 물리·가상 어플라이언스 구성과 무관하게 영향을 받으며, 우회책이 없어 패치가 유일한 대응이다. 침해 후 공격자는 로컬 로그를 변조해 흔적을 지울 수 있으므로 게이트웨이 로그뿐 아니라 네트워크·방화벽 로그를 함께 조사해야 한다. Cisco는 AsyncO...
##Cisco Secure Email Gateway Zero-Day Under Active Attack: Critical CVE-2026-76461 Puts Root-Level Access at Risk + Video
A Critical Warning for Cisco Customers A serious cybersecurity warning is unfolding around Cisco Secure Email Gateway after Cisco disclosed active exploitation of CVE-2026-76461, a critical zero-day vulnerability that can allow an unauthenticated remote attacker to execute commands with root privileges. The vulnerability has also been added to the…
##🔵 THREAT INTELLIGENCE
Cisco Secure Email Gateway Flaw Exploited in the Wild, Enables Root Command Execution
Vulnerability | CRITICAL
CVEs: CVE-2026-76461
Cisco warned customers to patch a critical Secure Email Gateway zero-day security flaw that threat actors have been exploiting in attacks. [...]
Full analysis:
https://www.yazoul.net/news/article/cisco-secure-email-gateway-flaw-exploited-in-the-wild-enables-root-command-execu
by Yazoul AI
##Cisco Discloses Actively Exploited Zero-Day in Email Gateways
A critical zero-day vulnerability, CVE-2026-76461, is under active exploitation, allowing hackers to remotely execute commands as root on Cisco Secure Email Gateway appliances with just a simple email. This gaping security hole gives attackers total control of the gateway, putting your email security at risk.
#ZeroDay #Cve202676461 #Cisco #EmailGateway #RemoteCodeExecution
##🏆 New Achievement! Root Access? We'll Get That Escalated for You!
Your ticket has been received. We see you're experiencing an issue where an unauthenticated attacker is executing arbitrary commands with root privileges on your Cisco Secure Email Gateway via CVE-2026-76461. Great news: we've reproduced the bug! It's the email parsing in Cisco AsyncOS — sending a specially crafted email with malicious SQL statements is all it takes. (1/3)
##Recent developments include Cisco patching a critical zero-day (CVE-2026-76461) in its Secure Email Gateway, which was actively exploited for root command execution. Geopolitically, China warned against weaponizing space after the US confirmed orbital weapon deployments. In technology, debates continue on AI safety versus national competitive advantage, with US Speaker Johnson rejecting development pauses.
##Global cybersecurity agencies, including CISA & NSA, issued guidance to mitigate 17 Active Directory compromise techniques (Sept 16). Cisco patched an actively exploited email gateway zero-day (CVE-2026-76461). Geopolitically, the US confirmed deploying space weapons, drawing warnings from China about an arms race (Sept 15). AI is now the leading driver for new cybersecurity spending.
##A critical Cisco Secure Email Gateway vulnerability allows unauthenticated attackers to gain root access via a single email. Learn about CVE-2026-76461.
##⚠️ CRITICAL: Cisco warns customers of actively exploited zero-day in email gateways
Cisco Secure Email Gateway contains a critical unauthenticated root privilege escalation vulnerability (CVE-2026-76461) that was actively exploited in the wild before patches were available. Multiple customers are likely already compromised. This is now tracked in CISA's Known Exploited Vulnerabili…
🤖 AI generated summary
##⚠️ CRITICAL: Cisco patches Secure Email Gateway zero-day exploited in attacks
Cisco Secure Email Gateway has a critical zero-day (CVE-2026-76461) that allows unauthenticated attackers to execute arbitrary commands as root via malicious SQL in crafted emails. This is actively exploited in the wild. Any organization running SEG is at immediate risk of full compromise.
🤖 AI generated summary
##Geopolitical tensions: A Russian drone struck a Kyiv-Warsaw train near the Polish border (Sept 13), and Houthi forces secured Yemen's Red Sea coast (Sept 11), affecting maritime routes. Tech news: Apple's Siri AI, powered by Apple Intelligence, began its beta rollout (Sept 14). Cybersecurity: Cisco warned of active exploitation of a critical Secure Email Gateway flaw (CVE-2026-76461) (Sept 15), and Anthropic reported Russia-linked spies used its AI Claude for hacking campaigns.
##Actionable C-Suite threat intelligence and mitigation strategies for CVE-2026-76461, addressing active SQL injection exploitation vectors within enterprise Cisco Secure Email Gateway infrastructures. https://thecybermind.co/r5ry
##Cisco has addressed a critical September 2 vulnerability.
CRITICAL: CVE-2026-20274, CVE-2026-20275, and CVE-2026-20276: Cisco IOS XR Software Security Hardening Release: September 2026 https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-hardening-iosxr-qg64NcM @TalosSecurity
More related to Cisco:
Rapid7: CVE-2026-76461: Critical Cisco Secure Email Gateway Vulnerability Exploited in the Wild https://www.rapid7.com/blog/post/etr-cve-2026-76461-critical-cisco-secure-email-gateway-vulnerability-exploited-in-the-wild/ @Rapid7Official #threatresearch #infosec #Cisco #vulnerability
##📢 [VULN] ⚠️Injection SQL exploitée dans Cisco Secure Email Gateway - CVE-2026-76461
Le 14 septembre 2026 à 16 h 00 UTC, Cisco a publié deux avis de sécurité sur sa passerelle de messagerie.
🔗 https://blog.marcfredericgomez.fr/injection-sql-exploitee-dans-cisco-secure-email-gateway/
💬 discussion : https://infosec.pub/post/52317366
#CVE #Cyberveille
「Ciscoのセキュアメールゲートウェイの脆弱性が実際に悪用され、ルート権限でのコマンド実行が可能になる 」: #TheHackerNews
「スコは、Cisco Secure Email Gateway向けAsyncOSソフトウェアに影響を与える新たな重大な脆弱性が、実際に悪用されていると警告した。
CVE-2026-76461 として追跡されているこの脆弱性は 、CVSSスコアが10.0点満点中9.8点です。これは、メール解析ロジックにおける検証の不備が原因で、認証されていないリモート攻撃者が、基盤となるオペレーティングシステム上でroot権限で任意のコマンドを実行できる可能性があるとされています。
シスコは月曜日の勧告で、「攻撃者は、悪意のあるSQL文を含む細工された電子メールメッセージを影響を受けるデバイスに送信することで、この脆弱性を悪用する可能性がある」 と述べた 。」
https://thehackernews.com/2026/09/cisco-secure-email-gateway-flaw.html
##CRITICAL (CVSS 9.8): CVE-2026-76461 in Cisco AsyncOS for Secure Email Gateway lets unauthenticated attackers execute commands as root via crafted emails. Patch status unknown — monitor Cisco’s updates. https://radar.offseq.com/threat/a-vulnerability-in-the-email-parsing-of-cisco-asyncos-software-for-cisco-secure-email-gateway-could-a5a1b3247d786df4 #OffSeq #Cisco #Vulnerability #EmailSecurity
##CVE-2026-76461 (CVSS 9.8) is a Cisco Secure Email Gateway vulnerability exploited in the wild. SQL injection grants root command execution. Patch now.
#Cisco #EmailSecurity #CVE202676461 #SQLInjection #RCE #ExploitedInTheWild #AsyncOS #InfoSec #PatchNow #RootAccess
##Since no one seems to have noticed the Cisco exploited zero-day:
CISA has added one new vulnerability to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. CVE-2026-76461 Cisco Secure Email Gateway SQL Injection Vulnerability
##🚨 [CISA-2026:0914] CISA Adds One Known Exploited Vulnerability to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0914)
CISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2026-76461 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-76461)
- Name: Cisco Secure Email Gateway SQL Injection Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Cisco
- Product: Secure Email Gateway
- Notes: https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-esa-inj-2bLVGmhX ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-76461
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260914 #cisa20260914 #cve_2026_76461 #cve202676461
##CRITICAL CISA KEV ALERT: CVE-2026-76461 targets Cisco Secure Email Gateway via SQL injection, granting root-level RCE. Active exploitation verified. Access our TSUITE brief for SIEM queries and hardening steps to secure your email perimeter.
##CVE ID: CVE-2026-76461
Vendor: Cisco
Product: Secure Email Gateway
Date Added: 2026-09-14
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-76461
Welcome to Monday and two new advisories from Cisco.
CRITICAL: CVE-2026-20353, CVE-2026-76440, and CVE-2026-76441: Cisco Secure Email Gateway and Secure Email and Web Manager Security Hardening Release: September 2026 https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-hardening-esa-dfCrfXkm
CRITICAL: CVE-2026-76461: Cisco Secure Email Gateway SQL Injection Vulnerability https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-esa-inj-2bLVGmhX
Two more critical vulnerabilities on the 9th and the 11th https://sec.cloudapps.cisco.com/security/center/publicationListing.x @TalosSecurity #Cisco #infosec #vulnerability
##updated 2026-09-15T12:31:54
1 posts
pig-mesh pig <4.1.0 hit by CRITICAL vuln (CVE-2026-91995, CVSS 9.3): remote attackers can reset any account password — admin included — via /register/password auth bypass. Restrict access & monitor logs while awaiting patch. https://radar.offseq.com/threat/cve-2026-91995-unverified-password-change-in-pig-mesh-pig-6a0b879ab4cc0e5c #OffSeq #vulnerability #CVE #infosec
##updated 2026-09-15T12:31:54
1 posts
CVE-2026-89308 in TREXOM TrxTimeATTENDANCE (v1.0.5 – 1.9.5): CRITICAL OS command injection in ping.php allows unauthenticated RCE. Remediate ASAP. https://radar.offseq.com/threat/cve-2026-89308-cwe-78-improper-neutralization-of-special-elements-used-in-an-os-command-os-command-8f863d468f1bf361 #OffSeq #CVE202689308 #infosec #vuln #remediation
##updated 2026-09-15T09:30:39
1 posts
🟠 CVE-2026-80217 - High (8.8)
Hidden functionality issue exists in FF-RFI079I4 and FF-RFI078I4, which may allow a user who can log in via SSH and access the enable mode on the product to execute arbitrary OS commands.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-80217/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-15T06:30:40
2 posts
🔴 CVE-2026-91003 - Critical (9.1)
A flaw has been found in D-Link DI-8300 16.07. The affected element is the function rzgl_asp of the file /rzgl.asp of the component CGI Service. This manipulation of the argument redirct_url causes stack-based buffer overflow. Remote exploitation ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-91003/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##D-Link DI-8300 (fw 16.07) hit by CRITICAL stack buffer overflow (CVE-2026-91003) in /rzgl.asp — remote RCE possible, public exploit code out. Restrict access & monitor traffic until patch. https://radar.offseq.com/threat/cve-2026-91003-stack-based-buffer-overflow-in-d-link-di-8300-ce23f2734338a347 #OffSeq #CVE202691003 #DLink #Security
##updated 2026-09-15T06:30:39
2 posts
🔴 CVE-2026-91001 - Critical (9.9)
A security flaw has been discovered in D-Link DI-8400 16.07. This affects the function ddns_asp of the file /ddns.asp of the component DDNS Configuration. Performing a manipulation of the argument serv/user/host/wild/mx/bmx/cust/ip results in stac...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-91001/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##Stack-based buffer overflow (CVE-2026-91001, CVSS 9.4) in D-Link DI-8400 (16.07) exposes devices to RCE. Exploit code is public. Restrict management access until fix. Details: https://radar.offseq.com/threat/cve-2026-91001-stack-based-buffer-overflow-in-d-link-di-8400-abc2e3e858f255b9 #OffSeq #CVE202691001 #IoTSecurity #Vulnerability
##updated 2026-09-15T03:30:30
1 posts
🟠 CVE-2026-91771 - High (8.8)
Weights & Biases wandb before 0.29.0 fails to validate the file name from server responses in the File.download function, allowing path traversal attacks. Attackers controlling the backend can supply file names with directory traversal sequences t...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-91771/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-15T00:31:22
1 posts
🟠 CVE-2026-91200 - High (8.8)
DevSpace through 6.3.21 fails to reject parent-directory segments in tar entry names from the in-pod sync stream. Attackers operating a malicious container can stream tar entries with traversal sequences to write arbitrary files on the developer w...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-91200/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-15T00:31:21
4 posts
2 repos
A critical Langflow SSRF flaw (CVE-2026-12944) exposes cloud credentials and internal networks. Patch your Langflow OSS servers immediately.
##A critical Langflow SSRF flaw (CVE-2026-12944) exposes cloud credentials and internal networks. Patch your Langflow OSS servers immediately.
##CVE-2026-12944 (CRITICAL, CVSS 9.6) affects IBM Langflow OSS 1.0.0 – 1.10.0. Attackers can execute arbitrary Python as root via SSRF, steal AWS creds, and move laterally. Patch is available — validate remediation. https://radar.offseq.com/threat/cve-2026-12944-cwe-918-server-side-request-forgery-ssrf-in-ibm-langflow-oss-98110564771040c9 #OffSeq #SSRF #IBM #CloudSecurity
##🔴 CVE-2026-12944 - Critical (9.6)
IBM Langflow OSS 1.0.0 through 1.10.0 can allow attackers to execute arbitrary Python code with root privileges (UID=0) on the Langflow server by submitting components containing socket or urllib imports. This enables: (1) AWS credential theft via...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-12944/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-15T00:31:21
1 posts
🟠 CVE-2026-91144 - High (7.5)
ZFile through 5.0.5 fails to validate requested file paths against a share link's allowed entries on the download endpoint. Attackers holding a share link can supply arbitrary file paths as query parameters to download any file under the shared ba...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-91144/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-15T00:31:13
1 posts
Apple acknowledges fixing the Private Relay bug leaking the IP in the secure release notes of iOS 26.6.1 and macOS 26.6.2.
CVE-2026-65352 was assigned to it
updated 2026-09-14T21:32:45
2 posts
Six Apache Syncope vulnerabilities, including CVE-2026-82232, expose severe identity management flaws. Patch your Apache Syncope servers immediately.
#ApacheSyncope #IdentityManagement #CVE202682232 #Cybersecurity #Vulnerability
##Six Apache Syncope vulnerabilities, including CVE-2026-82232, expose severe identity management flaws. Patch your Apache Syncope servers immediately.
#ApacheSyncope #IdentityManagement #CVE202682232 #Cybersecurity #Vulnerability
##updated 2026-09-14T21:31:42
1 posts
🟠 CVE-2026-89023 - High (8.6)
ThemeAtelier Domain For Sale plugin for WordPress before 3.5.2 contains a missing authorization vulnerability in its REST API endpoints that allows unauthenticated attackers to access and manipulate protected resources. Attackers can retrieve stor...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89023/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-14T20:58:48.430000
1 posts
CVE-2026-78330 | CRITICAL: Apache Syncope vuln allows admin escalation if JWKS is exposed and JWT auth used. Affects 3.0.0-M0 – 3.0.16, 4.0.0-M0 – 4.0.7, 4.1.0-M0 – 4.1.2. Upgrade to 4.0.8/4.1.3 to mitigate. Details: https://radar.offseq.com/threat/incorrect-privilege-assignment-vulnerability-in-apache-syncope-cve-2026-78330-b2c023a1d947f76b #OffSeq #Vulnerability #ApacheSyncope
##updated 2026-09-14T20:17:03.600000
1 posts
🟠 CVE-2026-91079 - High (8.5)
Huly Platform through 0.7.426 contains a server-side request forgery vulnerability in the print service due to missing hostname allowlist validation. Authenticated workspace members can supply arbitrary URLs to the print endpoint, which Puppeteer ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-91079/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-14T19:18:13.990000
1 posts
🟠 CVE-2026-90946 - High (7.5)
DeepWiki-Open through commit d92819a contains an arbitrary file read vulnerability in the unauthenticated /ws/chat WebSocket endpoint that accepts repo_url as a filesystem path with no containment. Attackers can supply arbitrary directory paths to...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90946/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-14T19:17:37.617000
1 posts
🔴 CVE-2026-59178 - Critical (9.8)
ESPHome Device Builder Dashboard is a dashboard for the ESPHome home management software. Prior to version 1.0.12, the dashboard reads its authentication credentials from `$ESPHOME_USERNAME` and `$ESPHOME_PASSWORD`. Earlier versions, and the legac...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-59178/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-14T18:31:35
1 posts
🟠 CVE-2026-91080 - High (7.5)
webhook through 2.8.3 reads the entire request body into memory before evaluating trigger rules, allowing unauthenticated attackers to exhaust memory by sending oversized bodies. Attackers can send multi-gigabyte request bodies with invalid signat...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-91080/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-14T18:31:29
1 posts
Looks like Microsoft has a couple of new flaws.
NEW and CRITICAL: CVE-2026-85921: Windows Secure Kernel Mode Elevation of Privilege Vulnerabilityhttps://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-85921
NEW and CRITICAL: CVE-2026-85921: Windows Secure Kernel Mode Elevation of Privilege Vulnerability New https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-85921 #infosec #Microsoft #vulnerability #Windows
##updated 2026-09-14T18:31:28
2 posts
🔴 CVE-2026-90945 - Critical (9.8)
Crawlab through 0.6.3 uses a hard-coded HMAC-SHA256 secret for JWT token signing that cannot be overridden via configuration or environment variables. Unauthenticated attackers can forge valid administrator tokens to access administrative APIs and...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-90945/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##Go fuck with some crawlers.
https://nvd.nist.gov/vuln/detail/cve-2026-90945
##Crawlab through 0.6.3 uses a hard-coded HMAC-SHA256 secret for JWT token signing that cannot be overridden via configuration or environment variables. Unauthenticated attackers can forge valid administrator tokens to access administrative APIs and execute code on worker nodes.
updated 2026-09-14T15:33:32
1 posts
CVE-2026-89471 Linux kernel cros_usbpd-charger out-of-bounds access from unbounded EC port count. CVSS N/A, no patch yet. Apply mitigations or update once fixed. https://www.valtersit.com/cve/CVE-2026-89471/ #CVE #Linux #infosec
##updated 2026-09-14T15:33:29
1 posts
CVE-2026-81008 Linux kernel use-after-free in icc_get() and of_icc_get_by_index(). CVSS N/A, patch status unknown. Update immediately. https://www.valtersit.com/cve/CVE-2026-81008/ #CVE #Linux #infosec
##updated 2026-09-14T15:33:28
1 posts
CVE-2026-81011: Linux kernel hp-bioscfg passes unvalidated element count to package parsers, causing out-of-bounds access. No CVSS, no patch yet. Treat as unpatched. Check your kernel version. https://www.valtersit.com/cve/CVE-2026-81011/ #CVE #Linux #infosec
##updated 2026-09-14T15:33:27
1 posts
CVE-2026-80973 Linux ALSA 6fire: unvalidated MIDI length byte allows out-of-bounds read. CVSS N/A, patch status unknown. Patch now if you use this driver. https://www.valtersit.com/cve/CVE-2026-80973/ #CVE #Linux #infosec
##updated 2026-09-14T15:32:27
1 posts
CVE-2026-89495 Linux ocfs2/dlm out-of-bounds access. A DLM node can corrupt or panic any other node with a malformed message. CVSS N/A, no patch yet. Patch now.
https://www.valtersit.com/cve/CVE-2026-89495/
#CVE #Linux #infosec
updated 2026-09-14T15:32:27
1 posts
CVE-2026-89489 Linux kernel openrisc or1k_atomic lacks access_ok checks, allowing arbitrary kernel memory read/write. No CVSS assigned, patch status unknown. Update your kernel now. https://www.valtersit.com/cve/CVE-2026-89489/ #CVE #Linux #infosec
##updated 2026-09-14T15:32:25
1 posts
CVE-2026-89465 Linux kernel rt9455 power supply use-after-free from unquiesced delayed work, no CVSS assigned yet, patch status unknown. Update your kernel as soon as a fix lands. Details: https://www.valtersit.com/cve/CVE-2026-89465/ #CVE #Linux #infosec
##updated 2026-09-14T15:32:22
1 posts
CVE-2026-80979 Linux kernel net/smc: use-after-free via smc_conn_free() when lgr termination races conn teardown. CVSS N/A, no patch confirmed. Verify your kernel build and update immediately. https://www.valtersit.com/cve/CVE-2026-80979/ #CVE #infosec #Linux
##updated 2026-09-14T15:32:20
1 posts
CVE-2026-80931 Linux kernel w1 ds28e17: OOB access via oversize I2C block read length. No CVSS, patch status unknown. Update now. https://www.valtersit.com/cve/CVE-2026-80931/ #CVE #Linux #infosec
##updated 2026-09-14T15:32:07
1 posts
1 repos
🚨 ZcopyReaper (CVE-2026-43502) has been identified as a notable vulnerability.
In the Linux kernel, the following vulnerability has been resolved:
net/rds: handle zerocopy send cleanup before the message is queued
A zerocopy send can fail after user pages have been pinned but before
the message is attached to the sending socket.
The purge path currently infers zerocopy state from rm->m_rs, so an
unqueued message can be cleaned up as if it owned normal payload pages.
However, zerocopy ownership is really determined by the presence of
op_mmp_znotifier, regardless of whether the message has reached the
socket queue.
Capture op_mmp_znotifier up front in rds_message_purge() and use it as
the cleanup discriminator. If the message is already associated with a
socket, keep the existing completion path. Otherwise, drop the pinned
page accounting directly and release the notifier before putting the
payload pages.
This keeps early send failure cleanup consistent with the zerocopy
lifetime rules without changing the normal queued completion path.
ℹ️ Additional information on ZEN SecDB 👉 https://secdb.nttzen.cloud/cve/detail/CVE-2026-43502
#Infosec #ZcopyReaper #Linux #Kernel #LPE #CVE202643502
#NTTData #ZEN #SecDB
updated 2026-09-14T13:19:03.853000
1 posts
CVE-2026-89475 Linux kernel bq24257 use-after-free on remove. CVSS N/A, patch unpatched. Update now. https://www.valtersit.com/cve/CVE-2026-89475/ #CVE #infosec #Linux
##updated 2026-09-14T13:18:54.210000
1 posts
CVE-2026-81000 Linux kernel tun driver integer underflow in tun_get_user() via oversized headroom from OVS, leading to memory corruption. No CVSS assigned, patch status unpatched. Apply kernel updates now. https://www.valtersit.com/cve/CVE-2026-81000/ #CVE #Linux #infosec
##updated 2026-09-14T13:18:53.647000
1 posts
CVE-2026-80989 Linux kernel thunderbolt net driver: failed bring-up leaves login_sent set, so tear-down repeats and hits dev_WARN, fatal under panic_on_warn. No CVSS or patch yet. Update your kernel now. https://www.valtersit.com/cve/CVE-2026-80989/ #CVE #Linux #infosec
##updated 2026-09-14T12:31:44
2 posts
Parallels Desktop Flaw Exposes Macs to Root Access
A newly discovered flaw in Parallels Desktop, tracked as CVE-2026-90894, leaves Macs vulnerable to root access, allowing ordinary local accounts to run code as root. This security gap, dubbed ParaShells, was uncovered by JFrog's vulnerability team and rated 7.8 out of 10 in severity.
#MacVulnerability #ParallelsDesktop #Cve202690894 #LocalPrivilegeEscalation #RootAccess
##Parallels Desktop “ParaShells” Flaw Could Turn a Low-Privilege Mac Account into Root
A Dangerous Boundary Inside the Mac A critical vulnerability in Parallels Desktop for Mac has exposed a particularly dangerous security boundary: the gap between an ordinary local user and the root account. Tracked as CVE-2026-90894 and dubbed “ParaShells” by JFrog researchers, the flaw can reportedly allow an unprivileged local attacker to execute attacker-controlled code with root…
##updated 2026-09-14T09:31:09
1 posts
Logitech Options+ : une faille donne les privilèges SYSTEM à n’importe quel utilisateur Windows https://www.it-connect.fr/logitech-options-plus-faille-system-cve-2026-12518/ #ActuCybersécurité #Cybersécurité #Vulnérabilité
##updated 2026-09-13T09:33:28
1 posts
CVE-2026-89501 Linux kernel ring-buffer race on subbuf resize, unpatched, CVSS N/A. Update immediately. https://www.valtersit.com/cve/CVE-2026-89501/ #CVE #Linux #infosec
##updated 2026-09-13T09:33:25
1 posts
CVE-2026-80981 Linux kernel use-after-free in net/smc smc_llc_srv_add_link. CVSS N/A, patch status unknown. Update your kernel now. https://www.valtersit.com/cve/CVE-2026-80981/ #CVE #infosec #Linux
##updated 2026-09-13T09:33:21
1 posts
CVE-2026-81006 Linux kernel ipmi: failed registration leaves sysfs files on freed memory, risking use-after-free. CVSS N/A, patch status unknown. Update your kernel now. https://www.valtersit.com/cve/CVE-2026-81006/ #CVE #Linux #infosec
##updated 2026-09-13T07:17:06.230000
1 posts
CVE-2026-80995 Linux kernel use-after-free in mctp_route_lookup can crash systems, possibly worse. No CVSS, no patch yet. Track it and update the moment a fix lands. https://www.valtersit.com/cve/CVE-2026-80995/ #CVE #Linux #infosec
##updated 2026-09-13T07:17:02.700000
1 posts
CVE-2026-80955 Linux kernel dm-pcache use-after-free in kset_replay(). CVSS N/A. Patch status unknown. Update now. https://www.valtersit.com/cve/CVE-2026-80955/ #CVE #infosec #Linux
##updated 2026-09-13T07:17:01.827000
1 posts
CVE-2026-80945 Linux kernel: IAA decompress race corrupts output via stale SWIOTLB bounce buffer on fallback. No CVSS, patch status unknown. Treat as unpatched. Check your kernel build now: https://www.valtersit.com/cve/CVE-2026-80945/ #CVE #Linux #infosec
##updated 2026-09-13T07:17:01.543000
1 posts
CVE-2026-80943 Linux rtlwifi rtl8192du out-of-bounds access. CVSS N/A, patch status unknown. Update immediately. https://www.valtersit.com/cve/CVE-2026-80943/ #CVE #infosec #Linux
##updated 2026-09-13T07:17:01.293000
1 posts
CVE-2026-80936 Linux mt76 mt7925: uncancelled mlo_pm_work fires after teardown, causing a use-after-free-style workqueue warning and kernel crash risk. CVSS N/A, unpatched - update your kernel now. https://www.valtersit.com/cve/CVE-2026-80936/ #CVE #Linux #infosec
##updated 2026-09-12T12:30:50
12 posts
12 repos
https://github.com/gagaltotal/CVE-2026-85706-gitlab-poc
https://github.com/plur1bu5/gitread
https://github.com/gabrielunknown/CVE-2026-85706
https://github.com/solivaquaant/CVE-2026-85706
https://github.com/FlowerWitch/CVE-2026-85706_docker_exp
https://github.com/mhtsec/CVE-2026-85706
https://github.com/0xlyvio/cve-2026-85706-poc-exploit-gitlab
https://github.com/jithinkrishnanrs/gitlab-cve-2026-85706-ioc
https://github.com/brigadeops32/CVE-2026-85706
https://github.com/0xenesbayram/cve-2026-85706
GitLab CVE-2026-85706: unauth arbitrary file read, exploited in the wild, now on CISA KEV. Patch
19.3.2 / 19.2.6 / 19.1.8.
The 10.0 is about the read. The damage is the credentials inside the files, and a commits API
reads history, so secrets you deleted are still there.
Patch, hunt, THEN rotate. Rotating on a readable server hands over the new keys.
blog.relayshield.net/a-file-read-bug-is-a-credential-theft-bug
#GitLab #infosec #DevSecOps
Actionable C-Suite threat intelligence for CVE-2026-85706, covering active path traversal exploitation vectors, endpoint hardening, and patch automation across GitLab environments. https://thecybermind.co/uzke
##Learn why CISA added GitLab CVE-2026-85706 to the Known Exploited Vulnerabilities catalog. Discover how this CVSS 10 flaw allows remote secret extraction.
##Dropped some research and detection/hunt content on CVE-2026-85706 🤓
RE: https://bsky.app/profile/did:plc:lsvsraxh3ckc7frgv5p5d7gy/post/3mvl6a4xflz23
GitLab CVE-2026-85706: unauth arbitrary file read, exploited in the wild, now on CISA KEV. Patch
19.3.2 / 19.2.6 / 19.1.8.
The 10.0 is about the read. The damage is the credentials inside the files, and a commits API
reads history, so secrets you deleted are still there.
Patch, hunt, THEN rotate. Rotating on a readable server hands over the new keys.
blog.relayshield.net/a-file-read-bug-is-a-credential-theft-bug
#GitLab #infosec #DevSecOps
Actionable C-Suite threat intelligence for CVE-2026-85706, covering active path traversal exploitation vectors, endpoint hardening, and patch automation across GitLab environments. https://thecybermind.co/uzke
##Learn why CISA added GitLab CVE-2026-85706 to the Known Exploited Vulnerabilities catalog. Discover how this CVSS 10 flaw allows remote secret extraction.
##🚨 GitLab CVE-2026-85706 is a critical CVSS 10.0 vulnerability under active exploitation.
Censys sees 86K+ GitLab hosts on the Internet.
Patch immediately. If your instance was exposed while vulnerable, rotate credentials and investigate for compromise. https://censys.com/advisory/cve-2026-85706/
##Comment la faille de GitLab peut mettre à nu vos serveurs https://goodtech.info/gitlab-faille-critique-cve-2026-85706-cisa-cert-fr/ #Développement #Revuedepresse #Sécurité
##⚪️ Developers Urge Immediate Fix for Critical GitLab Vulnerability
🗨️ GitLab engineers have released patches for the critical CVE-2026-85706 vulnerability, which received the maximum CVSS score of 10 and allows an unauthenticated attacker to read arbitrary files on a server. Security researchers warn that attackers began attempting to exploit the…
##CRITICAL CISA KEV ALERT: CVE-2026-85706 targets GitLab CE/EE via path traversal in the repository commits API. Active exploitation verified. Access our TSUITE brief for SIEM detection queries and compensating controls to protect your CI/CD pipeline and isolate your secrets.
##New.
Rapid7: CVE-2026-85706: Critical GitLab Path Traversal Exploited in the Wild https://www.rapid7.com/blog/post/etr-cve-2026-85706-critical-gitlab-path-traversal-exploited-in-the-wild/ @Rapid7Official #infosec #GitLab #vulnerability
##updated 2026-09-12T09:33:41
2 posts
CRITICAL: The Events Calendar WP plugin (<6.17.4.1) has two unauthenticated RCEs — CVE-2026-78159 (code injection) & CVE-2026-78006 (object injection, comments enabled). 240K+ sites at risk. Update now: https://radar.offseq.com/threat/unauthenticated-rce-flaws-could-expose-200000-wordpress-sites-to-takeover-7f3911d49bdf2638 #OffSeq #WordPress #RCE #Vuln
##CRITICAL: The Events Calendar WP plugin (<6.17.4.1) has two unauthenticated RCEs — CVE-2026-78159 (code injection) & CVE-2026-78006 (object injection, comments enabled). 240K+ sites at risk. Update now: https://radar.offseq.com/threat/unauthenticated-rce-flaws-could-expose-200000-wordpress-sites-to-takeover-7f3911d49bdf2638 #OffSeq #WordPress #RCE #Vuln
##updated 2026-09-12T09:33:41
2 posts
2 repos
CRITICAL: The Events Calendar WP plugin (<6.17.4.1) has two unauthenticated RCEs — CVE-2026-78159 (code injection) & CVE-2026-78006 (object injection, comments enabled). 240K+ sites at risk. Update now: https://radar.offseq.com/threat/unauthenticated-rce-flaws-could-expose-200000-wordpress-sites-to-takeover-7f3911d49bdf2638 #OffSeq #WordPress #RCE #Vuln
##CRITICAL: The Events Calendar WP plugin (<6.17.4.1) has two unauthenticated RCEs — CVE-2026-78159 (code injection) & CVE-2026-78006 (object injection, comments enabled). 240K+ sites at risk. Update now: https://radar.offseq.com/threat/unauthenticated-rce-flaws-could-expose-200000-wordpress-sites-to-takeover-7f3911d49bdf2638 #OffSeq #WordPress #RCE #Vuln
##updated 2026-09-11T21:31:37
1 posts
CVE-2026-89506 Linux kernel RDMA/uverbs NULL udata crash in mthca, irdma, siw drivers. No CVSS assigned, patch status unknown. Check your exposure and apply fixes when available. https://www.valtersit.com/cve/CVE-2026-89506/ #CVE #Linux #infosec
##updated 2026-09-11T21:31:32
1 posts
CVE-2026-89462 Linux kernel max17040 power supply driver ignores I2C read errors, exposing uninitialized register data to userspace as valid voltage or state of charge. CVSS N/A, patch status unknown. Verify https://www.valtersit.com/cve/CVE-2026-89462/ #CVE #Linux #infosec
##updated 2026-09-11T21:31:26
1 posts
CVE-2026-80960 Linux kernel dm-pcache out-of-bounds access via unchecked seg_num from on-media superblock. Can lead to memory corruption. CVSS N/A, patch status unknown. Patch now if you use dm-pcache. https://www.valtersit.com/cve/CVE-2026-80960/ #CVE #Linux #infosec
##updated 2026-09-11T21:31:17
5 posts
Critical ScreenConnect Vulnerability Enters the Crosshairs as Attackers Exploit CVE-2026-84869 + Video
A New Remote-Access Security Crisis A critical vulnerability in ConnectWise ScreenConnect has moved from a security concern to an active exploitation problem, according to a September 16, 2026 alert shared by Cybersecurity News Everyday. The vulnerability, tracked as CVE-2026-84869, is reportedly being exploited in the wild and can provide attackers with capabilities…
##(CISA CS-MAN) The Cyber Mind CSUITE Brief: CVE-2026-84869 – ConnectWise ScreenConnect Improper Privilege Management and Missing Authorization Vulnerability
C-Suite threat intelligence and mitigation protocols for CVE-2026-84869, addressing active exploitation vectors within enterprise ConnectWise environments....
##(CISA CS-MAN) The Cyber Mind CSUITE Brief: CVE-2026-84869 – ConnectWise ScreenConnect Improper Privilege Management and Missing Authorization Vulnerability
C-Suite threat intelligence and mitigation protocols for CVE-2026-84869, addressing active exploitation vectors within enterprise ConnectWise environments....
##ConnectWise Patches Critical ScreenConnect Flaw Exploited in Worm Attacks
ConnectWise fixed a critical vulnerability (CVE-2026-84869) in ScreenConnect that allows unauthorized file execution and worm-like propagation across remote sessions.
**If you use ConnectWise ScreenConnect, update to version 26.6.5 right away and then reinstall every host client. The update only takes effect once the clients are reinstalled, and this flaw is already being exploited to spread from machine to machine. If you can't patch, turn off the TransferFiles permission for all user roles as a mitigating measures. Don't forget to check integrated tools like ConnectWise Automate for their own patched versions.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/connectwise-patches-critical-screenconnect-flaw-exploited-in-worm-attacks-n-t-h-f-x/gD2P6Ple2L
🏆 New Achievement! The Help Desk Has Turned Against You!
PHASE ONE: ConnectWise ScreenConnect, your trusted remote support companion, enters the arena. PHASE TWO: CVE-2026-84869 awakens — CVSS 9.9, the kind of score that makes sysadmins physically leave their bodies. PHASE THREE: the worm-like propagation begins, chaining active remote sessions into unauthorized file transfers and full remote code execution. Huntress confirmed real-world exploitation. (1/2)
##updated 2026-09-11T21:31:06
3 posts
(CISA CS-MAN) The Cyber Mind CSUITE Brief: CVE-2026-42016 – JFrog Artifactory Incorrect Authorization Vulnerability
C-Suite threat intelligence for CVE-2026-42016, covering OAuth scope validation, lateral movement detection, and repository hardening across JFrog Artifactory instances....
##(CISA CS-MAN) The Cyber Mind CSUITE Brief: CVE-2026-42016 – JFrog Artifactory Incorrect Authorization Vulnerability
C-Suite threat intelligence for CVE-2026-42016, covering OAuth scope validation, lateral movement detection, and repository hardening across JFrog Artifactory instances....
##CRITICAL CISA KEV ALERT: CVE-2026-42016 targets JFrog Artifactory via incorrect authorization and token scope flaws. Active exploitation verified. Access our TSUITE brief for Splunk, Sentinel, QRadar queries, and endpoint hardening steps to secure your software pipelines.
##updated 2026-09-11T20:36:20
1 posts
🔴 CVE-2026-59971 - Critical (10)
MySQL MCP Server is a Model Context Protocol server that enables secure interaction with MySQL databases. Prior to 0.4.2, setting MCP_TRANSPORT=sse causes src/mysql_mcp_server/server.py to construct SseServerTransport without security_settings or ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-59971/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-11T20:19:33.913000
2 posts
CVE-2026-89514 Linux kernel fnic driver allocates memory with GFP_KERNEL under a spinlock, risking deadlock or crash. No CVSS, patch status unknown. Update kernel when fixes land. https://www.valtersit.com/cve/CVE-2026-89514/ #CVE #Linux #infosec
##CVE-2026-89514 Linux kernel fnic driver allocates memory with GFP_KERNEL under a spinlock, risking deadlock or crash. No CVSS, patch status unknown. Update kernel when fixes land. https://www.valtersit.com/cve/CVE-2026-89514/ #CVE #Linux #infosec
##updated 2026-09-11T20:19:25.110000
1 posts
CVE-2026-89446 Linux kernel iommufd IOAS ref leak on xa_store failure. No CVSS assigned yet, patch status unknown. Resource leak risk for iommufd users. Check your kernel version and update. https://www.valtersit.com/cve/CVE-2026-89446/ #CVE #Linux #infosec
##updated 2026-09-11T20:19:13.263000
2 posts
1 repos
https://github.com/abhinavagarwal07/scadapack-secure-lock-poc
Schneider Electric disclosed CVE-2026-81861 (CWE-522) affecting SCADAPack x70 RTUs. Legacy Secure Lock insufficiently protects credentials, exposing RTU authentication data. Exposed credentials matter for OT as they can enable unauthorized access to monitoring and control functions. #IcsSecurity #ScadaSecurity #OtSecurity
https://cyberworldops.eu/en/schneider-electric-scadapack-credential-flaw-exposes-rtu
##Schneider Electric disclosed CVE-2026-81861 (CWE-522) affecting SCADAPack x70 RTUs. Legacy Secure Lock insufficiently protects credentials, exposing RTU authentication data. Exposed credentials matter for OT as they can enable unauthorized access to monitoring and control functions. #IcsSecurity #ScadaSecurity #OtSecurity
https://cyberworldops.eu/en/schneider-electric-scadapack-credential-flaw-exposes-rtu
##updated 2026-09-11T12:52:16.507000
1 posts
1 repos
CRITICAL CISA KEV ALERT: CVE-2026-86060 targets MikroTik RouterOS via improper argument delimiter neutralization and command injection. Active exploitation verified. Access our TSUITE brief for hardening steps and network segmentation protocols to secure your perimeter.
##updated 2026-09-11T03:31:25
3 posts
[Sept 16, 2026] Nintendo Urges Switch Owners to Update Their Firmware After Security Exploit Discovered (CVE-2026-82079, fixed with firmware 23.0.0)
https://www.resetera.com/threads/1635112
#gaming #videogames #resetera
Nintendo Switch : une faille permet d’exécuter du code via le code QR affiché à l’écran https://www.it-connect.fr/nintendo-switch-faille-code-qr-cve-2026-82079/ #ActuCybersécurité #Cybersécurité #Vulnérabilité
##Nintendo Switch : une faille permet d’exécuter du code via le code QR affiché à l’écran https://www.it-connect.fr/nintendo-switch-faille-code-qr-cve-2026-82079/ #ActuCybersécurité #Cybersécurité #Vulnérabilité
##updated 2026-09-09T23:47:56
2 posts
🟠 CVE-2026-59160 - High (8.8)
Yeger is a monorepo for npm packages maintained under the yeger scope. Prior to 2.8.9, the turbo-graph package starts its embedded Next.js server from packages/turbo-graph/src/index.ts on all interfaces, including 0.0.0.0:29312 by default, while t...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-59160/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-59160 - High (8.8)
Yeger is a monorepo for npm packages maintained under the yeger scope. Prior to 2.8.9, the turbo-graph package starts its embedded Next.js server from packages/turbo-graph/src/index.ts on all interfaces, including 0.0.0.0:29312 by default, while t...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-59160/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-09T21:31:33
2 posts
3 repos
https://github.com/CyberAuth/CVE-2026-20079
Cisco Secure FMC: Kritische Auth-Bypass-Lücke (CVSS 10.0) wird aktiv ausgenutzt
Cisco bestätigt, dass eine mit dem Höchstwert CVSS 10.0 bewertete Authentifizierungs-Bypass-Lücke (CVE-2026-20079) in seiner Secure Firewall Management Center (FMC) Software […]
https://netguide.io/news/de/2026/09/14/cisco-secure-fmc-cve-2026-20079-auth-bypass/
##Cisco Secure FMC: Kritische Auth-Bypass-Lücke (CVSS 10.0) wird aktiv ausgenutzt
Cisco bestätigt, dass eine mit dem Höchstwert CVSS 10.0 bewertete Authentifizierungs-Bypass-Lücke (CVE-2026-20079) in seiner Secure Firewall Management Center (FMC) Software […]
https://netguide.io/news/de/2026/09/14/cisco-secure-fmc-cve-2026-20079-auth-bypass/
##updated 2026-09-09T16:17:03.483000
2 posts
Siemens patched CVE-2026-58113, a reflected XSS (CWE-79) in Teamcenter /auth/ redirect flow. An unauthenticated attacker can craft a URL executing JavaScript in an authenticated user's session. Update all four affected branches. #SiemensTeamcenter #CrossSiteScripting #PatchManagement
https://cyberworldops.eu/en/siemens-patches-teamcenter-authentication-redirect-xss-across-four
##Siemens patched CVE-2026-58113, a reflected XSS (CWE-79) in Teamcenter /auth/ redirect flow. An unauthenticated attacker can craft a URL executing JavaScript in an authenticated user's session. Update all four affected branches. #SiemensTeamcenter #CrossSiteScripting #PatchManagement
https://cyberworldops.eu/en/siemens-patches-teamcenter-authentication-redirect-xss-across-four
##updated 2026-09-09T12:32:22
1 posts
CVE-2026-87827 (CVSS 10) is a KGUARD DVR vulnerability exploited by the Mirai botnet for unauthenticated RCE and complete device compromise.
#KGUARD #DVR #CVE202687827 #Mirai #Botnet #IoTSecurity #RCE #DDoS #ExploitedInTheWild #InfoSec
##updated 2026-09-09T05:18:19.193000
1 posts
Microsoft's September 2026 Patch Tuesday addressed a record 974 vulnerabilities, including two actively exploited zero-days (CVE-2026-85880, CVE-2026-81963) allowing privilege escalation. Anthropic also revealed Russia-linked cyber-espionage groups are using Claude AI for hacking operations targeting government and defense organizations. Geopolitically, China is hosting a defense forum amid rising regional tensions over Taiwan and the South China Sea. In technology, OpenAI delayed its IPO beyond 2026, advocating for a global AI development slowdown.
##updated 2026-09-09T05:18:07.237000
1 posts
5 repos
https://github.com/dinosn/cve-2026-75650-magento-validation-lab
https://github.com/jithinkrishnanrs/stylesmuggler-ioc-toolkit
https://github.com/fortbridge/stylesmuggler
https://github.com/disrex-group/stylesmuggler-adobe-patches
https://github.com/disrex-group/stylesmuggler-adobe-patches-mageos
CVE-2026-75650: StyleSmuggler — Critical RCE in Adobe Commerce and Magento
#CVE_2026_75650 #AdobeCommerce
https://www.akamai.com/blog/security-research/2026/sep/cve-2026-75650-stylesmuggler-adobe-commerce-magento
updated 2026-09-09T05:17:26.417000
1 posts
CVE-2026-58240: From Patch Day to PoC in 96 Hours
https://securitybridge.com/blog/cve-2026-58240-from-patch-day-to-poc-in-96-hours/
"The takeaway for SAP security teams: the reasonable planning assumption is now days, not months between a patched CVE and public exploit tooling. If your patch process has ever taken longer than a week, that gap is real risk. Every kernel-level SAP HotNews should be treated as if there is already a working PoC in circulation — because increasingly, there is."
##updated 2026-09-08T22:17:38.113000
2 posts
aom (3.8.2-2ubuntu0.2)
CVE-2026-56208, CVE-2026-56209, CVE-2026-56210, CVE-2026-56211へのセキュリティ対応。
ibaom3
perl (5.38.2-3.2ubuntu0.6)
CVE-2026-15534、CVE-2026-19487へのセキュリティ対応。
libperl5.38t64
perl-base
perl-modules-5.38
sqlite3 (3.45.1-1ubuntu2.8)
CVE-2026-39113へのセキュリティ対応。
libsqlite3-0
セキュリティ対応なのでお早めに。
##aom (3.8.2-2ubuntu0.2)
CVE-2026-56208, CVE-2026-56209, CVE-2026-56210, CVE-2026-56211へのセキュリティ対応。
ibaom3
perl (5.38.2-3.2ubuntu0.6)
CVE-2026-15534、CVE-2026-19487へのセキュリティ対応。
libperl5.38t64
perl-base
perl-modules-5.38
sqlite3 (3.45.1-1ubuntu2.8)
CVE-2026-39113へのセキュリティ対応。
libsqlite3-0
セキュリティ対応なのでお早めに。
##updated 2026-09-08T21:34:09
1 posts
Microsoft's September 2026 Patch Tuesday addressed a record 974 vulnerabilities, including two actively exploited zero-days (CVE-2026-85880, CVE-2026-81963) allowing privilege escalation. Anthropic also revealed Russia-linked cyber-espionage groups are using Claude AI for hacking operations targeting government and defense organizations. Geopolitically, China is hosting a defense forum amid rising regional tensions over Taiwan and the South China Sea. In technology, OpenAI delayed its IPO beyond 2026, advocating for a global AI development slowdown.
##updated 2026-09-08T17:56:31
2 posts
10 repos
https://github.com/0xBlackash/CVE-2026-60004
https://github.com/HORKimhab/CVE-2026-60004
https://github.com/fevar54/cve-2026-60004
https://github.com/imbas007/CVE-2026-60004-POC
https://github.com/HackSpeak/CVE-2026-60004
https://github.com/gagaltotal/CVE-2026-60004-poc-gitea
https://github.com/EQSTLab/CVE-2026-60004
https://github.com/erberkan/CVE-2026-60004-PoC
Acronis TRU uncovered a multinational campaign in which Red Heron, a Chinese-speaking threat actor, rapidly weaponized CVE-2026-60004 to compromise internet-facing instances of Gitea, a self-hosted source-code management platform. https://www.acronis.com/en/tru/posts/red-heron-exploits-gitea-n-day-flaw-in-multinational-campaign-exposing-new-linux-rootkit/
##Red Heron exploited CVE-2026-60004, a critical Gitea RCE, to compromise 13 organizations after scanning 1,386 exposed instances. Exposed dev platforms offer direct access to code and lateral movement. Patch, restrict exposure and review logs. #GiteaSecurity #ThreatIntel #SupplyChain
https://cyberworldops.eu/en/red-heron-exploits-critical-gitea-rce-to-breach-13-organizations
##updated 2026-09-08T13:12:58.310000
1 posts
WooCommerce CVE-2026-48888 is a high-severity flaw an attacker can exploit with no account and no elevated permissions. If my clients have not updated to 11.1.0, their customer data and payment layer are exposed right now. I recommend updating immediately.
#WordPress #WooCommerce #CVE #SecurityHardening #WordPressSecurity
https://wpguy.uk/blog/woocommerce-cve-2026-48888-update-to-1110-now/
##updated 2026-09-04T18:32:18
4 posts
1 repos
In case you didn't have enough problems with cameras, here's another one.
OPSWAT, posted yesterday: Authentication Bypass and DoS Vulnerabilities: OPSWAT Discovers CVE-2026-15315 & CVE-2026-15316 in TP-Link Tapo Cameras https://www.opswat.com/blog/authentication-bypass-and-dos-vulnerabilities-opswat-discovers-cve-2026-15315-cve-2026-15316-in-tp-link-tapo-cameras
More:
Infosecurity-Magazine: Zero-Day Flaw in TP-Link Cameras Enables Eavesdropping https://www.infosecurity-magazine.com/news/zeroday-tplink-cameras/ #infosec #vulnerability #spyware #zeroday #threatresearch
##🏆 New Achievement! Smile, You're on Hacked Camera!
Step right up! For the low, low price of plugging a TP-Link Tapo C200 into your home network, you received two zero-days absolutely free of charge. OPSWAT discovered CVE-2026-15315, a replay-based authentication bypass letting any network-adjacent attacker waltz — sorry, slide — into a valid admin session without ever knowing your password. (1/2)
##In case you didn't have enough problems with cameras, here's another one.
OPSWAT, posted yesterday: Authentication Bypass and DoS Vulnerabilities: OPSWAT Discovers CVE-2026-15315 & CVE-2026-15316 in TP-Link Tapo Cameras https://www.opswat.com/blog/authentication-bypass-and-dos-vulnerabilities-opswat-discovers-cve-2026-15315-cve-2026-15316-in-tp-link-tapo-cameras
More:
Infosecurity-Magazine: Zero-Day Flaw in TP-Link Cameras Enables Eavesdropping https://www.infosecurity-magazine.com/news/zeroday-tplink-cameras/ #infosec #vulnerability #spyware #zeroday #threatresearch
##🏆 New Achievement! Smile, You're on Hacked Camera!
Step right up! For the low, low price of plugging a TP-Link Tapo C200 into your home network, you received two zero-days absolutely free of charge. OPSWAT discovered CVE-2026-15315, a replay-based authentication bypass letting any network-adjacent attacker waltz — sorry, slide — into a valid admin session without ever knowing your password. (1/2)
##updated 2026-09-04T18:31:40
1 posts
🐧 SIGINT // Ubuntu Watch — 2026-09-17
Another Linux kernel CVE patched in Ubuntu. If you run kernel-backed containers or KVM hosts, queue your reboots and check ABI bumps before assuming a live-patch covers it.
##updated 2026-09-04T18:31:13
4 posts
1 repos
In case you didn't have enough problems with cameras, here's another one.
OPSWAT, posted yesterday: Authentication Bypass and DoS Vulnerabilities: OPSWAT Discovers CVE-2026-15315 & CVE-2026-15316 in TP-Link Tapo Cameras https://www.opswat.com/blog/authentication-bypass-and-dos-vulnerabilities-opswat-discovers-cve-2026-15315-cve-2026-15316-in-tp-link-tapo-cameras
More:
Infosecurity-Magazine: Zero-Day Flaw in TP-Link Cameras Enables Eavesdropping https://www.infosecurity-magazine.com/news/zeroday-tplink-cameras/ #infosec #vulnerability #spyware #zeroday #threatresearch
##CVE-2026-15316 throws in a denial-of-service against the onboarding flow as a bonus gift with purchase.
Perhaps you'd like our Extended Vulnerability Warranty? Only $49.99. Or — and hear me out — you could just update your Tapo C200 to firmware V5_1.4.6, released August 18, for the remarkable price of free.
Reward: You've received a slightly-used Tin Foil Lens Cap. Refurbished. Non-returnable.
https://www.infosecurity-magazine.com/news/zeroday-tplink-cameras
#ZeroDay #CyberSecurity (2/2)
##In case you didn't have enough problems with cameras, here's another one.
OPSWAT, posted yesterday: Authentication Bypass and DoS Vulnerabilities: OPSWAT Discovers CVE-2026-15315 & CVE-2026-15316 in TP-Link Tapo Cameras https://www.opswat.com/blog/authentication-bypass-and-dos-vulnerabilities-opswat-discovers-cve-2026-15315-cve-2026-15316-in-tp-link-tapo-cameras
More:
Infosecurity-Magazine: Zero-Day Flaw in TP-Link Cameras Enables Eavesdropping https://www.infosecurity-magazine.com/news/zeroday-tplink-cameras/ #infosec #vulnerability #spyware #zeroday #threatresearch
##CVE-2026-15316 throws in a denial-of-service against the onboarding flow as a bonus gift with purchase.
Perhaps you'd like our Extended Vulnerability Warranty? Only $49.99. Or — and hear me out — you could just update your Tapo C200 to firmware V5_1.4.6, released August 18, for the remarkable price of free.
Reward: You've received a slightly-used Tin Foil Lens Cap. Refurbished. Non-returnable.
https://www.infosecurity-magazine.com/news/zeroday-tplink-cameras
#ZeroDay #CyberSecurity (2/2)
##updated 2026-09-04T17:17:00.390000
1 posts
🐧 SIGINT // Ubuntu Watch — 2026-09-16
Another kernel CVE patched upstream and in Ubuntu. If you run your own kernel builds or LTS HWE stacks, check this against your running version before your next reboot window.
##updated 2026-09-01T20:56:59.203000
1 posts
🔒 New CSAF advisory published
VDE-2026-091
TRUMPF: Multiple products affected by Wibu CodeMeter vulnerabilities
CVE-2026-81572, CVE-2026-81573, CVE-2026-81574, CVE-2026-81575, CVE-2026-81576
The TRUMPF product versions listed below include a Wibu CodeMeter Runtime version that contains several vulnerabilities, e.g. potentially allowin…
HTML: https://certvde.com/en/advisories/VDE-2026-091
CSAF JSON: https://trumpf.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-091.json
updated 2026-09-01T20:56:59.203000
1 posts
🔒 New CSAF advisory published
VDE-2026-091
TRUMPF: Multiple products affected by Wibu CodeMeter vulnerabilities
CVE-2026-81572, CVE-2026-81573, CVE-2026-81574, CVE-2026-81575, CVE-2026-81576
The TRUMPF product versions listed below include a Wibu CodeMeter Runtime version that contains several vulnerabilities, e.g. potentially allowin…
HTML: https://certvde.com/en/advisories/VDE-2026-091
CSAF JSON: https://trumpf.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-091.json
updated 2026-09-01T13:19:50.477000
2 posts
aom (3.8.2-2ubuntu0.2)
CVE-2026-56208, CVE-2026-56209, CVE-2026-56210, CVE-2026-56211へのセキュリティ対応。
ibaom3
perl (5.38.2-3.2ubuntu0.6)
CVE-2026-15534、CVE-2026-19487へのセキュリティ対応。
libperl5.38t64
perl-base
perl-modules-5.38
sqlite3 (3.45.1-1ubuntu2.8)
CVE-2026-39113へのセキュリティ対応。
libsqlite3-0
セキュリティ対応なのでお早めに。
##aom (3.8.2-2ubuntu0.2)
CVE-2026-56208, CVE-2026-56209, CVE-2026-56210, CVE-2026-56211へのセキュリティ対応。
ibaom3
perl (5.38.2-3.2ubuntu0.6)
CVE-2026-15534、CVE-2026-19487へのセキュリティ対応。
libperl5.38t64
perl-base
perl-modules-5.38
sqlite3 (3.45.1-1ubuntu2.8)
CVE-2026-39113へのセキュリティ対応。
libsqlite3-0
セキュリティ対応なのでお早めに。
##updated 2026-08-31T18:31:16
2 posts
1 repos
aom (3.8.2-2ubuntu0.2)
CVE-2026-56208, CVE-2026-56209, CVE-2026-56210, CVE-2026-56211へのセキュリティ対応。
ibaom3
perl (5.38.2-3.2ubuntu0.6)
CVE-2026-15534、CVE-2026-19487へのセキュリティ対応。
libperl5.38t64
perl-base
perl-modules-5.38
sqlite3 (3.45.1-1ubuntu2.8)
CVE-2026-39113へのセキュリティ対応。
libsqlite3-0
セキュリティ対応なのでお早めに。
##aom (3.8.2-2ubuntu0.2)
CVE-2026-56208, CVE-2026-56209, CVE-2026-56210, CVE-2026-56211へのセキュリティ対応。
ibaom3
perl (5.38.2-3.2ubuntu0.6)
CVE-2026-15534、CVE-2026-19487へのセキュリティ対応。
libperl5.38t64
perl-base
perl-modules-5.38
sqlite3 (3.45.1-1ubuntu2.8)
CVE-2026-39113へのセキュリティ対応。
libsqlite3-0
セキュリティ対応なのでお早めに。
##updated 2026-08-31T15:34:31
2 posts
aom (3.8.2-2ubuntu0.2)
CVE-2026-56208, CVE-2026-56209, CVE-2026-56210, CVE-2026-56211へのセキュリティ対応。
ibaom3
perl (5.38.2-3.2ubuntu0.6)
CVE-2026-15534、CVE-2026-19487へのセキュリティ対応。
libperl5.38t64
perl-base
perl-modules-5.38
sqlite3 (3.45.1-1ubuntu2.8)
CVE-2026-39113へのセキュリティ対応。
libsqlite3-0
セキュリティ対応なのでお早めに。
##aom (3.8.2-2ubuntu0.2)
CVE-2026-56208, CVE-2026-56209, CVE-2026-56210, CVE-2026-56211へのセキュリティ対応。
ibaom3
perl (5.38.2-3.2ubuntu0.6)
CVE-2026-15534、CVE-2026-19487へのセキュリティ対応。
libperl5.38t64
perl-base
perl-modules-5.38
sqlite3 (3.45.1-1ubuntu2.8)
CVE-2026-39113へのセキュリティ対応。
libsqlite3-0
セキュリティ対応なのでお早めに。
##updated 2026-08-31T15:34:31
2 posts
aom (3.8.2-2ubuntu0.2)
CVE-2026-56208, CVE-2026-56209, CVE-2026-56210, CVE-2026-56211へのセキュリティ対応。
ibaom3
perl (5.38.2-3.2ubuntu0.6)
CVE-2026-15534、CVE-2026-19487へのセキュリティ対応。
libperl5.38t64
perl-base
perl-modules-5.38
sqlite3 (3.45.1-1ubuntu2.8)
CVE-2026-39113へのセキュリティ対応。
libsqlite3-0
セキュリティ対応なのでお早めに。
##aom (3.8.2-2ubuntu0.2)
CVE-2026-56208, CVE-2026-56209, CVE-2026-56210, CVE-2026-56211へのセキュリティ対応。
ibaom3
perl (5.38.2-3.2ubuntu0.6)
CVE-2026-15534、CVE-2026-19487へのセキュリティ対応。
libperl5.38t64
perl-base
perl-modules-5.38
sqlite3 (3.45.1-1ubuntu2.8)
CVE-2026-39113へのセキュリティ対応。
libsqlite3-0
セキュリティ対応なのでお早めに。
##updated 2026-08-31T15:34:31
2 posts
aom (3.8.2-2ubuntu0.2)
CVE-2026-56208, CVE-2026-56209, CVE-2026-56210, CVE-2026-56211へのセキュリティ対応。
ibaom3
perl (5.38.2-3.2ubuntu0.6)
CVE-2026-15534、CVE-2026-19487へのセキュリティ対応。
libperl5.38t64
perl-base
perl-modules-5.38
sqlite3 (3.45.1-1ubuntu2.8)
CVE-2026-39113へのセキュリティ対応。
libsqlite3-0
セキュリティ対応なのでお早めに。
##aom (3.8.2-2ubuntu0.2)
CVE-2026-56208, CVE-2026-56209, CVE-2026-56210, CVE-2026-56211へのセキュリティ対応。
ibaom3
perl (5.38.2-3.2ubuntu0.6)
CVE-2026-15534、CVE-2026-19487へのセキュリティ対応。
libperl5.38t64
perl-base
perl-modules-5.38
sqlite3 (3.45.1-1ubuntu2.8)
CVE-2026-39113へのセキュリティ対応。
libsqlite3-0
セキュリティ対応なのでお早めに。
##updated 2026-08-27T12:30:27
1 posts
🔒 New CSAF advisory published
VDE-2026-091
TRUMPF: Multiple products affected by Wibu CodeMeter vulnerabilities
CVE-2026-81572, CVE-2026-81573, CVE-2026-81574, CVE-2026-81575, CVE-2026-81576
The TRUMPF product versions listed below include a Wibu CodeMeter Runtime version that contains several vulnerabilities, e.g. potentially allowin…
HTML: https://certvde.com/en/advisories/VDE-2026-091
CSAF JSON: https://trumpf.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-091.json
updated 2026-08-27T12:30:27
1 posts
🔒 New CSAF advisory published
VDE-2026-091
TRUMPF: Multiple products affected by Wibu CodeMeter vulnerabilities
CVE-2026-81572, CVE-2026-81573, CVE-2026-81574, CVE-2026-81575, CVE-2026-81576
The TRUMPF product versions listed below include a Wibu CodeMeter Runtime version that contains several vulnerabilities, e.g. potentially allowin…
HTML: https://certvde.com/en/advisories/VDE-2026-091
CSAF JSON: https://trumpf.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-091.json
updated 2026-08-27T12:30:26
1 posts
🔒 New CSAF advisory published
VDE-2026-091
TRUMPF: Multiple products affected by Wibu CodeMeter vulnerabilities
CVE-2026-81572, CVE-2026-81573, CVE-2026-81574, CVE-2026-81575, CVE-2026-81576
The TRUMPF product versions listed below include a Wibu CodeMeter Runtime version that contains several vulnerabilities, e.g. potentially allowin…
HTML: https://certvde.com/en/advisories/VDE-2026-091
CSAF JSON: https://trumpf.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-091.json
updated 2026-08-26T20:48:48
1 posts
imagemagick (8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm13)
CVE-2026-56366, CVE-2026-56368, CVE-2026-56370, CVE-2026-56371, CVE-2026-56373, CVE-2026-56378, CVE-2026-56379, CVE-2026-61465, CVE-2026-61857, CVE-2026-61863, CVE-2026-61864, CVE-2026-61865, CVE-2026-61866, CVE-2026-61870, CVE-2026-62946へのセキュリティ対応。
imagemagick-6-common imagemagick-6.q16
libmagickcore-6.q16-7-extra libmagickcore-6.q16-7t64
libmagickwand-6.q16-7t64
セキュリティ対応なのでお早めに。
##updated 2026-08-18T18:32:52
2 posts
2 repos
CISA Warns Ransomware Gangs Are Exploiting Critical VMware vCenter RCE Vulnerability + Video
A Critical Warning for Virtual Infrastructure A dangerous VMware vCenter vulnerability has moved into a far more serious phase. CVE-2026-59310, a critical directory traversal vulnerability affecting the vCenter Server Syslog component, is now associated with ransomware activity, according to the latest reporting on CISA's Known Exploited Vulnerabilities program. The…
##CISA Warns VMware vCenter Flaw Is Now in the Hands of Ransomware Gangs + Video
CISA Warns VMware vCenter Flaw Is Now in the Hands of Ransomware Gangs A Critical VMware Vulnerability Has Entered a More Dangerous Phase A critical vulnerability in VMware vCenter Server has moved from a serious patching concern to an active ransomware threat. CISA has warned that ransomware operators are now exploiting CVE-2026-59310, a critical directory-traversal vulnerability that can…
##updated 2026-08-13T21:37:11
2 posts
aom (3.8.2-2ubuntu0.2)
CVE-2026-56208, CVE-2026-56209, CVE-2026-56210, CVE-2026-56211へのセキュリティ対応。
ibaom3
perl (5.38.2-3.2ubuntu0.6)
CVE-2026-15534、CVE-2026-19487へのセキュリティ対応。
libperl5.38t64
perl-base
perl-modules-5.38
sqlite3 (3.45.1-1ubuntu2.8)
CVE-2026-39113へのセキュリティ対応。
libsqlite3-0
セキュリティ対応なのでお早めに。
##aom (3.8.2-2ubuntu0.2)
CVE-2026-56208, CVE-2026-56209, CVE-2026-56210, CVE-2026-56211へのセキュリティ対応。
ibaom3
perl (5.38.2-3.2ubuntu0.6)
CVE-2026-15534、CVE-2026-19487へのセキュリティ対応。
libperl5.38t64
perl-base
perl-modules-5.38
sqlite3 (3.45.1-1ubuntu2.8)
CVE-2026-39113へのセキュリティ対応。
libsqlite3-0
セキュリティ対応なのでお早めに。
##updated 2026-08-11T18:31:23
1 posts
Microsoft today released an out of band update that includes a security update to a vulnerability they first patched in August. I guess the first patch didn't work broadly enough or introduced more flaws (or both). According to MS, though, there aren't any signs this vulnerability is actively being exploited. MS just says "The CVE was updated with links to security updates for Windows 11, version 26H1, 25H2, and 24H2 to address a missed fix."
https://msrc.microsoft.com/update-guide/advisory/CVE-2026-62721
##updated 2026-08-10T12:35:29.103000
6 posts
1 repos
📰 Critical WSO2 API Flaw Under Active Attack, Exposes Enterprise Data
Critical auth bypass (CVE-2026-5430, CVSS 10.0) in WSO2 API Manager is now actively exploited. Attackers can take over admin accounts. Patched in April 2026, ensure your systems are updated! #WSO2 #APISecurity #CyberAttack
##The prosecution notes that your API interception layer, by design, sits squarely between attackers and internal systems, creating what the record describes as "Lateral Movement-as-a-Service." Administrative accounts, sensitive data in transit — all fair game.
Sentencing is immediate. Apply the April patch for CVE-2026-5430 and audit your JWT token validation and administrative account access without further delay. (2/3)
##🏆 New Achievement! The Honorable CVE-2026-5430 Finds You Guilty!
The court has reviewed the evidence. WSO2 API Manager, you stand charged with allowing JWT authentication to be bypassed via an unsupported signing algorithm — a flaw patched in April that threat actors are now actively exploiting in the wild. WatchTowr delivered the indictment on Tuesday. (1/3)
##WSO2 API Manager Flaw Sees Active Exploitation Attempts
A critical flaw in WSO2 API Manager, tracked as CVE-2026-5430, is under active exploitation, allowing hackers to bypass JWT authentication and gain unauthorized access with a CVSS score of 9.8 out of 10.0, potentially leading to account takeover and compromise of administrative accounts.
#Cve20265430 #Wso2ApiManager #JwtBypass #ApiSecurity #HacktronTeam
##The prosecution notes that your API interception layer, by design, sits squarely between attackers and internal systems, creating what the record describes as "Lateral Movement-as-a-Service." Administrative accounts, sensitive data in transit — all fair game.
Sentencing is immediate. Apply the April patch for CVE-2026-5430 and audit your JWT token validation and administrative account access without further delay. (2/3)
##🏆 New Achievement! The Honorable CVE-2026-5430 Finds You Guilty!
The court has reviewed the evidence. WSO2 API Manager, you stand charged with allowing JWT authentication to be bypassed via an unsupported signing algorithm — a flaw patched in April that threat actors are now actively exploiting in the wild. WatchTowr delivered the indictment on Tuesday. (1/3)
##updated 2026-08-04T18:31:31
2 posts
[Django Fellow Reports] Django Fellow Report - Jacob
Jacob reviewed six Django pull requests and authored changes covering GEOS 3.10 support removal and expanded WKT depth-check coverage related to CVE-2026-15830.
https://forum.djangoproject.com/t/django-fellow-report-jacob-2026/43851/39
[Django Fellow Reports] Django Fellow Report - Jacob
Jacob reviewed six Django pull requests and authored changes covering GEOS 3.10 support removal and expanded WKT depth-check coverage related to CVE-2026-15830.
https://forum.djangoproject.com/t/django-fellow-report-jacob-2026/43851/39
updated 2026-08-03T16:19:22.763000
1 posts
imagemagick (8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm13)
CVE-2026-56366, CVE-2026-56368, CVE-2026-56370, CVE-2026-56371, CVE-2026-56373, CVE-2026-56378, CVE-2026-56379, CVE-2026-61465, CVE-2026-61857, CVE-2026-61863, CVE-2026-61864, CVE-2026-61865, CVE-2026-61866, CVE-2026-61870, CVE-2026-62946へのセキュリティ対応。
imagemagick-6-common imagemagick-6.q16
libmagickcore-6.q16-7-extra libmagickcore-6.q16-7t64
libmagickwand-6.q16-7t64
セキュリティ対応なのでお早めに。
##updated 2026-07-23T11:10:00.120000
2 posts
2 repos
CVE-2026-45659: SharePoint Authenticated Deserialization RCE
#CVE_2026_45659
https://blog.securelayer7.net/cve-2026-45659-sharepoint-deserialization-rce/
CVE-2026-45659: SharePoint Authenticated Deserialization RCE
#CVE_2026_45659
https://blog.securelayer7.net/cve-2026-45659-sharepoint-deserialization-rce/
updated 2026-07-15T12:32:06
1 posts
imagemagick (8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm13)
CVE-2026-56366, CVE-2026-56368, CVE-2026-56370, CVE-2026-56371, CVE-2026-56373, CVE-2026-56378, CVE-2026-56379, CVE-2026-61465, CVE-2026-61857, CVE-2026-61863, CVE-2026-61864, CVE-2026-61865, CVE-2026-61866, CVE-2026-61870, CVE-2026-62946へのセキュリティ対応。
imagemagick-6-common imagemagick-6.q16
libmagickcore-6.q16-7-extra libmagickcore-6.q16-7t64
libmagickwand-6.q16-7t64
セキュリティ対応なのでお早めに。
##updated 2026-07-15T12:32:05
1 posts
imagemagick (8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm13)
CVE-2026-56366, CVE-2026-56368, CVE-2026-56370, CVE-2026-56371, CVE-2026-56373, CVE-2026-56378, CVE-2026-56379, CVE-2026-61465, CVE-2026-61857, CVE-2026-61863, CVE-2026-61864, CVE-2026-61865, CVE-2026-61866, CVE-2026-61870, CVE-2026-62946へのセキュリティ対応。
imagemagick-6-common imagemagick-6.q16
libmagickcore-6.q16-7-extra libmagickcore-6.q16-7t64
libmagickwand-6.q16-7t64
セキュリティ対応なのでお早めに。
##updated 2026-07-15T12:32:05
1 posts
imagemagick (8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm13)
CVE-2026-56366, CVE-2026-56368, CVE-2026-56370, CVE-2026-56371, CVE-2026-56373, CVE-2026-56378, CVE-2026-56379, CVE-2026-61465, CVE-2026-61857, CVE-2026-61863, CVE-2026-61864, CVE-2026-61865, CVE-2026-61866, CVE-2026-61870, CVE-2026-62946へのセキュリティ対応。
imagemagick-6-common imagemagick-6.q16
libmagickcore-6.q16-7-extra libmagickcore-6.q16-7t64
libmagickwand-6.q16-7t64
セキュリティ対応なのでお早めに。
##updated 2026-07-15T12:32:05
1 posts
imagemagick (8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm13)
CVE-2026-56366, CVE-2026-56368, CVE-2026-56370, CVE-2026-56371, CVE-2026-56373, CVE-2026-56378, CVE-2026-56379, CVE-2026-61465, CVE-2026-61857, CVE-2026-61863, CVE-2026-61864, CVE-2026-61865, CVE-2026-61866, CVE-2026-61870, CVE-2026-62946へのセキュリティ対応。
imagemagick-6-common imagemagick-6.q16
libmagickcore-6.q16-7-extra libmagickcore-6.q16-7t64
libmagickwand-6.q16-7t64
セキュリティ対応なのでお早めに。
##updated 2026-07-14T15:17:09.260000
1 posts
imagemagick (8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm13)
CVE-2026-56366, CVE-2026-56368, CVE-2026-56370, CVE-2026-56371, CVE-2026-56373, CVE-2026-56378, CVE-2026-56379, CVE-2026-61465, CVE-2026-61857, CVE-2026-61863, CVE-2026-61864, CVE-2026-61865, CVE-2026-61866, CVE-2026-61870, CVE-2026-62946へのセキュリティ対応。
imagemagick-6-common imagemagick-6.q16
libmagickcore-6.q16-7-extra libmagickcore-6.q16-7t64
libmagickwand-6.q16-7t64
セキュリティ対応なのでお早めに。
##updated 2026-07-14T02:16:56.757000
1 posts
imagemagick (8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm13)
CVE-2026-56366, CVE-2026-56368, CVE-2026-56370, CVE-2026-56371, CVE-2026-56373, CVE-2026-56378, CVE-2026-56379, CVE-2026-61465, CVE-2026-61857, CVE-2026-61863, CVE-2026-61864, CVE-2026-61865, CVE-2026-61866, CVE-2026-61870, CVE-2026-62946へのセキュリティ対応。
imagemagick-6-common imagemagick-6.q16
libmagickcore-6.q16-7-extra libmagickcore-6.q16-7t64
libmagickwand-6.q16-7t64
セキュリティ対応なのでお早めに。
##updated 2026-07-13T22:07:31.147000
1 posts
imagemagick (8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm13)
CVE-2026-56366, CVE-2026-56368, CVE-2026-56370, CVE-2026-56371, CVE-2026-56373, CVE-2026-56378, CVE-2026-56379, CVE-2026-61465, CVE-2026-61857, CVE-2026-61863, CVE-2026-61864, CVE-2026-61865, CVE-2026-61866, CVE-2026-61870, CVE-2026-62946へのセキュリティ対応。
imagemagick-6-common imagemagick-6.q16
libmagickcore-6.q16-7-extra libmagickcore-6.q16-7t64
libmagickwand-6.q16-7t64
セキュリティ対応なのでお早めに。
##updated 2026-07-13T15:15:51.143000
1 posts
imagemagick (8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm13)
CVE-2026-56366, CVE-2026-56368, CVE-2026-56370, CVE-2026-56371, CVE-2026-56373, CVE-2026-56378, CVE-2026-56379, CVE-2026-61465, CVE-2026-61857, CVE-2026-61863, CVE-2026-61864, CVE-2026-61865, CVE-2026-61866, CVE-2026-61870, CVE-2026-62946へのセキュリティ対応。
imagemagick-6-common imagemagick-6.q16
libmagickcore-6.q16-7-extra libmagickcore-6.q16-7t64
libmagickwand-6.q16-7t64
セキュリティ対応なのでお早めに。
##updated 2026-07-11T15:30:30
1 posts
imagemagick (8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm13)
CVE-2026-56366, CVE-2026-56368, CVE-2026-56370, CVE-2026-56371, CVE-2026-56373, CVE-2026-56378, CVE-2026-56379, CVE-2026-61465, CVE-2026-61857, CVE-2026-61863, CVE-2026-61864, CVE-2026-61865, CVE-2026-61866, CVE-2026-61870, CVE-2026-62946へのセキュリティ対応。
imagemagick-6-common imagemagick-6.q16
libmagickcore-6.q16-7-extra libmagickcore-6.q16-7t64
libmagickwand-6.q16-7t64
セキュリティ対応なのでお早めに。
##updated 2026-07-03T21:31:47
1 posts
With 1 Extension: $20K in Bounties from Anthropic, Perplexity, Google, Microsoft
Forever Security 연구진은 브라우저 확장 프로그램의 콘텐츠 스크립트·DNR(Declarative Net Request) 권한을 악용해 내장 AI 에이전트를 가로채는 ‘BragJack’ 공격군을 공개했습니다. Chrome, Perplexity Comet, Microsoft Edge, Opera Neon, Claude in Chrome에서 총 5건의 취약점(CVE-2026-0628, CVE-2026-55945 포함)을 보고했으며, 일부 경우 사용자 클릭 없이 로컬 파일·브...
https://forever.security/blog/bragjack-hijacking-5-browsers-via-built-in-ai-assistants/
##updated 2026-07-02T15:17:07.390000
1 posts
imagemagick (8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm13)
CVE-2026-56366, CVE-2026-56368, CVE-2026-56370, CVE-2026-56371, CVE-2026-56373, CVE-2026-56378, CVE-2026-56379, CVE-2026-61465, CVE-2026-61857, CVE-2026-61863, CVE-2026-61864, CVE-2026-61865, CVE-2026-61866, CVE-2026-61870, CVE-2026-62946へのセキュリティ対応。
imagemagick-6-common imagemagick-6.q16
libmagickcore-6.q16-7-extra libmagickcore-6.q16-7t64
libmagickwand-6.q16-7t64
セキュリティ対応なのでお早めに。
##updated 2026-06-30T03:38:15
1 posts
imagemagick (8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm13)
CVE-2026-56366, CVE-2026-56368, CVE-2026-56370, CVE-2026-56371, CVE-2026-56373, CVE-2026-56378, CVE-2026-56379, CVE-2026-61465, CVE-2026-61857, CVE-2026-61863, CVE-2026-61864, CVE-2026-61865, CVE-2026-61866, CVE-2026-61870, CVE-2026-62946へのセキュリティ対応。
imagemagick-6-common imagemagick-6.q16
libmagickcore-6.q16-7-extra libmagickcore-6.q16-7t64
libmagickwand-6.q16-7t64
セキュリティ対応なのでお早めに。
##updated 2026-06-26T21:32:44
2 posts
Say that new authelia exploit looks like one fail2ban already recognises or relies on timing/brute-force then you’re covered even before a patch is available.
Here’s a real authelia vuln:
https://app.opencve.io/cve/CVE-2026-47203
allowing an attacker to circumvent login throttling or account lockouts by simply altering the case of their credentials.
I think fail2ban would help protect authelia here?
##Say that new authelia exploit looks like one fail2ban already recognises or relies on timing/brute-force then you’re covered even before a patch is available.
Here’s a real authelia vuln:
https://app.opencve.io/cve/CVE-2026-47203
allowing an attacker to circumvent login throttling or account lockouts by simply altering the case of their credentials.
I think fail2ban would help protect authelia here?
##updated 2026-06-26T13:41:36.727000
1 posts
imagemagick (8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm13)
CVE-2026-56366, CVE-2026-56368, CVE-2026-56370, CVE-2026-56371, CVE-2026-56373, CVE-2026-56378, CVE-2026-56379, CVE-2026-61465, CVE-2026-61857, CVE-2026-61863, CVE-2026-61864, CVE-2026-61865, CVE-2026-61866, CVE-2026-61870, CVE-2026-62946へのセキュリティ対応。
imagemagick-6-common imagemagick-6.q16
libmagickcore-6.q16-7-extra libmagickcore-6.q16-7t64
libmagickwand-6.q16-7t64
セキュリティ対応なのでお早めに。
##updated 2026-06-24T13:10:05
1 posts
imagemagick (8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm13)
CVE-2026-56366, CVE-2026-56368, CVE-2026-56370, CVE-2026-56371, CVE-2026-56373, CVE-2026-56378, CVE-2026-56379, CVE-2026-61465, CVE-2026-61857, CVE-2026-61863, CVE-2026-61864, CVE-2026-61865, CVE-2026-61866, CVE-2026-61870, CVE-2026-62946へのセキュリティ対応。
imagemagick-6-common imagemagick-6.q16
libmagickcore-6.q16-7-extra libmagickcore-6.q16-7t64
libmagickwand-6.q16-7t64
セキュリティ対応なのでお早めに。
##updated 2026-06-17T10:36:18.783000
6 posts
8 repos
https://github.com/danindiana/cve-2026-32746-mitigation
https://github.com/duduLiu8787/CVE-2026-32746-Exploit
https://github.com/watchtowrlabs/watchtowr-vs-telnetd-CVE-2026-32746
https://github.com/chosenonehacks/CVE-2026-32746
https://github.com/kaleth4/CVE-2026-32746
https://github.com/MonkeySeC-sys/Kangaroo
A 32-year-old bug walks into a Telnet server - https://labs.watchtowr.com/a-32-year-old-bug-walks-into-a-telnet-server-gnu-inetutils-telnetd-cve-2026-32746/
##😂 Oh, look, a bug older than some of you on this site! GNU #inetutils just realized their #Telnet server had a 32-year-old #exploit hiding like a dusty family heirloom. Who knew pre-auth RCE could double as a boomer joke? 🧐🔍
https://labs.watchtowr.com/a-32-year-old-bug-walks-into-a-telnet-server-gnu-inetutils-telnetd-cve-2026-32746/ #bugreport #cybersecurity #humor #technews #HackerNews #ngated
A 32-year-old bug walks into a Telnet server
Comments: https://news.ycombinator.com/item?id=49721291
#HackerNews #bugfix #cybersecurity #Telnet #server #technology #vulnerabilities #GNU #inetutils
##A 32-Year-Old Bug Walks into a Telnet Server
watchTowr는 GNU inetutils 기반 Telnetd의 LINEMODE SLC 협상 처리에 존재하는 1994년 기원 사전 인증 BSS 버퍼 오버플로우(CVE-2026-32746)를 분석했다. 공격자는 조작된 Telnet 옵션 협상 메시지로 고정 크기 전역 배열 뒤의 약 400바이트를 덮어쓸 수 있으며, Ubuntu·Debian·FreeBSD·NetBSD·Citrix NetScaler·macOS Tahoe 등 여러 포크 및 배포판에 영향이 확인됐다. 다만 입력이 3바이트 SLC 트리플릿과 프로토콜...
##😂 Oh, look, a bug older than some of you on this site! GNU #inetutils just realized their #Telnet server had a 32-year-old #exploit hiding like a dusty family heirloom. Who knew pre-auth RCE could double as a boomer joke? 🧐🔍
https://labs.watchtowr.com/a-32-year-old-bug-walks-into-a-telnet-server-gnu-inetutils-telnetd-cve-2026-32746/ #bugreport #cybersecurity #humor #technews #HackerNews #ngated
A 32-year-old bug walks into a Telnet server
Comments: https://news.ycombinator.com/item?id=49721291
#HackerNews #bugfix #cybersecurity #Telnet #server #technology #vulnerabilities #GNU #inetutils
##updated 2026-06-17T10:27:18.693000
5 posts
1 repos
Attackers are actively exploiting CVE-2026-27540 in the WooCommerce Wholesale Lead Capture WordPress plugin to upload PHP web shells without authentication. The flaw affects a plugin with more than 6,000 active installations and can enable remote code execution. #WordPressSecurity #VulnerabilityManagement #ThreatDetection
https://cyberworldops.eu/en/attackers-exploit-woocommerce-plugin-flaw-to-install-php-web-shells
##🏆 New Achievement! Exceeded All KPIs Except Staying Uncompromised!
Your Q3 infrastructure review is in. Uptime: stellar. Deployment pipeline: smooth. WooCommerce Wholesale Lead Capture plugin: actively backdoored via CVE-2026-27540. That last one is what we in management call an "opportunity area."
Attackers are currently exploiting this critical flaw in the wild, planting PHP backdoors and achieving full takeover of WordPress stores. Everything was going so well, team. Really. (1/3)
##Critical WooCommerce Vulnerability Is Under Active Attack, Putting WordPress Stores at Risk of PHP Backdoors and Full Takeover + Video
Introduction: A WordPress Plugin Became an Open Door A critical vulnerability in the WooCommerce Wholesale Lead Capture plugin is now being actively exploited by attackers, turning a seemingly ordinary WordPress extension into a potential gateway for complete website compromise. The vulnerability, tracked as CVE-2026-27540, allows…
##Attackers are actively exploiting CVE-2026-27540 in the WooCommerce Wholesale Lead Capture WordPress plugin to upload PHP web shells without authentication. The flaw affects a plugin with more than 6,000 active installations and can enable remote code execution. #WordPressSecurity #VulnerabilityManagement #ThreatDetection
https://cyberworldops.eu/en/attackers-exploit-woocommerce-plugin-flaw-to-install-php-web-shells
##🏆 New Achievement! Exceeded All KPIs Except Staying Uncompromised!
Your Q3 infrastructure review is in. Uptime: stellar. Deployment pipeline: smooth. WooCommerce Wholesale Lead Capture plugin: actively backdoored via CVE-2026-27540. That last one is what we in management call an "opportunity area."
Attackers are currently exploiting this critical flaw in the wild, planting PHP backdoors and achieving full takeover of WordPress stores. Everything was going so well, team. Really. (1/3)
##updated 2026-06-17T10:11:06.543000
1 posts
2 repos
With 1 Extension: $20K in Bounties from Anthropic, Perplexity, Google, Microsoft
Forever Security 연구진은 브라우저 확장 프로그램의 콘텐츠 스크립트·DNR(Declarative Net Request) 권한을 악용해 내장 AI 에이전트를 가로채는 ‘BragJack’ 공격군을 공개했습니다. Chrome, Perplexity Comet, Microsoft Edge, Opera Neon, Claude in Chrome에서 총 5건의 취약점(CVE-2026-0628, CVE-2026-55945 포함)을 보고했으며, 일부 경우 사용자 클릭 없이 로컬 파일·브...
https://forever.security/blog/bragjack-hijacking-5-browsers-via-built-in-ai-assistants/
##updated 2026-06-17T09:08:21.517000
1 posts
23 repos
https://github.com/ThemeHackers/CVE-2025-30208
https://github.com/iSee857/CVE-2025-30208-PoC
https://github.com/sumeet-darekar/CVE-2025-30208
https://github.com/Lusensec/CVE-2025-30208
https://github.com/TH-SecForge/CVE-2025-30208
https://github.com/r0ngy40/CVE-2025-30208-Series
https://github.com/MiclelsonCN/CVE-2025-30208_POC
https://github.com/imbas007/CVE-2025-30208-template
https://github.com/lilil3333/Vite-CVE-2025-30208-EXP
https://github.com/keklick1337/CVE-2025-30208-ViteVulnScanner
https://github.com/cc3305/CVE-2025-30208
https://github.com/ThumpBo/CVE-2025-30208-EXP
https://github.com/0xshaheen/CVE-2025-30208
https://github.com/marino-admin/Vite-CVE-2025-30208-Scanner
https://github.com/nkuty/CVE-2025-30208-31125-31486-32395
https://github.com/HaGsec/CVE-2025-30208
https://github.com/jackieya/ViteVulScan
https://github.com/4m3rr0r/CVE-2025-30208-PoC
https://github.com/sadhfdw129/CVE-2025-30208-Vite
https://github.com/4xura/CVE-2025-30208
https://github.com/HazaVVIP/CVE-2025-30208
F5 observed mass scanning of exposed Vite dev servers exploiting CVE-2026-39364 and older flaws CVE-2025-30208, CVE-2025-31125, CVE-2024-45811. Stolen AWS/Azure credentials and deployment configs enable full cloud compromise, so isolate dev servers and rotate secrets. #Vite #CloudSecurity #ThreatIntelligence
https://cyberworldops.eu/en/hackers-scan-exposed-vite-servers-for-aws-azure-and-deployment-secrets
##updated 2026-06-17T07:44:11.533000
1 posts
45 repos
https://github.com/W01fh4cker/CVE-2024-3400-RCE-Scan
https://github.com/index2014/CVE-2024-3400-Checker
https://github.com/Yuvvi01/CVE-2024-3400
https://github.com/Yafiah-Darwesh/cs50-cyber-paloalto-oauth
https://github.com/h4x0r-dz/CVE-2024-3400
https://github.com/razureink/cve-2024-3400-panos_rce_reproduction
https://github.com/HackingLZ/panrapidcheck
https://github.com/FoxyProxys/CVE-2024-3400
https://github.com/CyprianAtsyor/letsdefend-cve2024-3400-case-study
https://github.com/SimoesCTT/-CTT-PAN-OS-EXPLOIT-CVE-2024-340
https://github.com/P4rC3L/Global-Protect_VPN_Vuln
https://github.com/Chocapikk/CVE-2024-3400
https://github.com/0x0d3ad/CVE-2024-3400
https://github.com/GhassanSabir/CVE-2024-3400-poc
https://github.com/codeblueprint/CVE-2024-3400
https://github.com/andrelia-hacks/CVE-2024-3400
https://github.com/0xr2r/CVE-2024-3400-Palo-Alto-OS-Command-Injection
https://github.com/wa6n3r/CVE-2024-3400
https://github.com/LoanVitor/CVE-2024-3400-
https://github.com/MurrayR0123/CVE-2024-3400-Compromise-Checker
https://github.com/swaybs/CVE-2024-3400
https://github.com/workshop748/CVE-2024-3400
https://github.com/ZephrFish/CVE-2024-3400-Canary
https://github.com/marconesler/CVE-2024-3400
https://github.com/Kr0ff/cve-2024-3400
https://github.com/zam89/CVE-2024-3400-pot
https://github.com/schooldropout1337/CVE-2024-3400
https://github.com/momika233/CVE-2024-3400
https://github.com/ihebski/CVE-2024-3400
https://github.com/CerTusHack/CVE-2024-3400-PoC
https://github.com/hahasagined/CVE-2024-3400
https://github.com/pwnj0hn/CVE-2024-3400
https://github.com/tfrederick74656/cve-2024-3400-poc
https://github.com/CONDITIONBLACK/CVE-2024-3400-POC
https://github.com/Ravaan21/CVE-2024-3400
https://github.com/ivan-n0v/cve-2024-3400
https://github.com/sxyrxyy/CVE-2024-3400-Check
https://github.com/AdaniKamal/CVE-2024-3400
https://github.com/Zedocun/PAN-OS-CVE-2024-3400-Command-Injection-Investigation
https://github.com/retkoussa/CVE-2024-3400
https://github.com/ak1t4/CVE-2024-3400
SOC triage: one curl call, CVE plus exploit status plus vendor fix, into your ticket.
curl "https://valtersit.com/api/v1/cve/CVE-2024-3400?key=KEY"
Metered, no seat fees. https://www.valtersit.com/cve/pricing/
##updated 2026-06-02T21:30:39
2 posts
3 repos
https://github.com/fevar54/CVE-2025-48595-Android-Framework-Integer-Overflow-
https://github.com/XiaoBaiLovesStirring/CVE-2025-48595-Exploit
@GrapheneOS funny to see google fixing : CVE-2025-48595 that was fixed looooooong ago in your.
i don't see CVE-2026-58704, is it already fixed ?
##@GrapheneOS funny to see google fixing : CVE-2025-48595 that was fixed looooooong ago in your.
i don't see CVE-2026-58704, is it already fixed ?
##updated 2026-04-27T16:30:09
1 posts
25 repos
https://github.com/jasonbernier/CVE-2026-39987
https://github.com/MADA0L/CVE-2026-39987-Poc
https://github.com/iapetus12/cohort-htb
https://github.com/julichaan/CVE-2026-39987_POC
https://github.com/stapat1245/CVE-2026-39987-PoC
https://github.com/gbuyssens/CVE-2026-39987
https://github.com/Clara-M-Grossl/Exploit-Marimo
https://github.com/h3raklez/CVE-2026-39987
https://github.com/keraattin/CVE-2026-39987
https://github.com/Wind010/CVE-2026-39987_PoC
https://github.com/fevar54/marimo_CVE-2026-39987_RCE_PoC
https://github.com/M3PH1569/CVE-2026-39987-POC
https://github.com/rootdirective-sec/CVE-2026-39987-Lab
https://github.com/Nxploited/CVE-2026-39987
https://github.com/mki9/CVE-2026-39987_exploit
https://github.com/alreadyClosed/CVE-2026-39987
https://github.com/Ghxstsec/CVE-2026-39987
https://github.com/0xBlackash/CVE-2026-39987
https://github.com/Dhiaelhak-Rached/CVE-2026-39987-lab-or-marimo-cve-lab
https://github.com/K3ysTr0K3R/CVE-2026-39987
https://github.com/matesz44/cve-2026-39987
https://github.com/0xdeadroot/CVE-2026-39987-marimo-rce
https://github.com/dodeepsink/CVE-2026-39987.py
Sysdig reports a human operator exploited CVE-2026-39987, a pre-auth RCE in Marimo, and pivoted from the notebook to an SSH bastion in eight seconds with a custom Python toolkit. It shows manual tradecraft can match automation speed, shrinking detection windows for exposed dev infrastructure. #MarimoRce #SshBastion #IncidentResponse
https://cyberworldops.eu/en/human-operator-exploits-marimo-rce-and-reaches-ssh-bastion-in-eight
##updated 2026-04-07T22:16:19
3 posts
「ハッカーがViteの開発サーバーを標的にAWSとAzureの機密情報を盗み出す 」: #BLEEPINGCOMPUTER
「インターネットに公開されているVite開発サーバーを標的とした大規模なスキャンキャンペーンが、AWSおよびAzure環境からクラウド認証情報と設定を盗み出そうとしている。
この攻撃は、Vite バージョン 7.1.0 から 7.3.2、および 8.x ブランチの 8.0.5 より前のバージョンにおいて、ファイルの読み取り/アクセス制御を回避できる深刻な脆弱性である CVE-2026-39364 を悪用するものです。
この脆弱性は4月7日に公表され、認証されていない攻撃者がHTTP GETリクエストのクエリパラメータを操作することで、セキュリティ制限を回避し、通常はアクセスできないはずの場所から平文のファイルを取得できるというものである。」
##The Vite development server vulnerability CVE-2026-39364 is exploited in mass scanning for credential harvesting. F5 Labs logged 32,000 events. Patch now.
#Vite #CVE202639364 #CloudSecurity #CredentialHarvesting #F5Labs #DevSecOps #FileDisclosure #InfoSec #AWS #MassScanning
##F5 observed mass scanning of exposed Vite dev servers exploiting CVE-2026-39364 and older flaws CVE-2025-30208, CVE-2025-31125, CVE-2024-45811. Stolen AWS/Azure credentials and deployment configs enable full cloud compromise, so isolate dev servers and rotate secrets. #Vite #CloudSecurity #ThreatIntelligence
https://cyberworldops.eu/en/hackers-scan-exposed-vite-servers-for-aws-azure-and-deployment-secrets
##updated 2026-01-22T21:47:41
1 posts
7 repos
https://github.com/jackieya/ViteVulScan
https://github.com/harshgupptaa/Path-Transversal-CVE-2025-31125-
https://github.com/sunhuiHi666/CVE-2025-31125
https://github.com/0xgh057r3c0n/CVE-2025-31125
https://github.com/MuhammadWaseem29/Vitejs-exploit
F5 observed mass scanning of exposed Vite dev servers exploiting CVE-2026-39364 and older flaws CVE-2025-30208, CVE-2025-31125, CVE-2024-45811. Stolen AWS/Azure credentials and deployment configs enable full cloud compromise, so isolate dev servers and rotate secrets. #Vite #CloudSecurity #ThreatIntelligence
https://cyberworldops.eu/en/hackers-scan-exposed-vite-servers-for-aws-azure-and-deployment-secrets
##updated 2024-10-30T21:30:36
2 posts
Using acme.sh to renew a certificate as root sounds like a RCE-as-root waiting to happen. A Web client written in pure shell, what could possibly go wrong? I just wrote a script to drop its own privilege when it calls acme.sh, so it's safe to use in a root cronjob.
After writing this, I found RCE-as-root is not just "waiting" to happen, it has already happened as CVE-2023-38198. Someone even argued the case as a possible mechanism responsible for the jabber.ru wiretapping incident. https://remyhax.xyz/posts/reproducing-lawful-tls-wiretapping/
Using acme.sh to renew a certificate as root sounds like a RCE-as-root waiting to happen. A Web client written in pure shell, what could possibly go wrong? I just wrote a script to drop its own privilege when it calls acme.sh, so it's safe to use in a root cronjob.
After writing this, I found RCE-as-root is not just "waiting" to happen, it has already happened as CVE-2023-38198. Someone even argued the case as a possible mechanism responsible for the jabber.ru wiretapping incident. https://remyhax.xyz/posts/reproducing-lawful-tls-wiretapping/
updated 2024-10-23T18:33:16
2 posts
Nice of Cisco to finally publish CVE-2024-20260 now that we're almost in 3Q2026.
##Nice of Cisco to finally publish CVE-2024-20260 now that we're almost in 3Q2026.
##updated 2024-09-19T18:34:34
1 posts
F5 observed mass scanning of exposed Vite dev servers exploiting CVE-2026-39364 and older flaws CVE-2025-30208, CVE-2025-31125, CVE-2024-45811. Stolen AWS/Azure credentials and deployment configs enable full cloud compromise, so isolate dev servers and rotate secrets. #Vite #CloudSecurity #ThreatIntelligence
https://cyberworldops.eu/en/hackers-scan-exposed-vite-servers-for-aws-azure-and-deployment-secrets
##updated 2024-03-29T18:30:50
2 posts
90 repos
https://github.com/shefirot/CVE-2024-3094
https://github.com/iheb2b/CVE-2024-3094-Checker
https://github.com/extracoding-dozen/CVE-2024-3094
https://github.com/lypd0/CVE-2024-3094-Vulnerabity-Checker
https://github.com/hackingetico21/revisaxzutils
https://github.com/michalAshurov/writeup-CVE-2024-3094
https://github.com/badsectorlabs/ludus_xz_backdoor
https://github.com/ykhurshudyan-blip/CVE-2024-3094
https://github.com/gensecaihq/CVE-2024-3094-Vulnerability-Checker-Fixer
https://github.com/MagpieRYL/CVE-2024-3094-backdoor-env-container
https://github.com/Juul/xz-backdoor-scan
https://github.com/brinhosa/CVE-2024-3094-One-Liner
https://github.com/namegabevictoire01-sys/cs50-cybersecurity-final-project
https://github.com/amlweems/xzbot
https://github.com/x-cmd-build/xz
https://github.com/laxmikumari615/Linux---Security---Detect-and-Mitigate-CVE-2024-3094
https://github.com/TheTorjanCaptain/CVE-2024-3094-Checker
https://github.com/lockness-Ko/xz-vulnerable-honeypot
https://github.com/valeriot30/cve-2024-3094
https://github.com/vnchk1/sec_review_cve-2024-3094
https://github.com/dah4k/CVE-2024-3094
https://github.com/KaminaDuck/ansible-CVE-2024-3094
https://github.com/pentestfunctions/CVE-2024-3094
https://github.com/OpensourceICTSolutions/xz_utils-CVE-2024-3094
https://github.com/Horizon-Software-Development/CVE-2024-3094
https://github.com/AndreaCicca/Sicurezza-Informatica-Presentazione
https://github.com/Simplifi-ED/CVE-2024-3094-patcher
https://github.com/galacticquest/cve-2024-3094-detect
https://github.com/neuralinhibitor/xzwhy
https://github.com/weltregie/liblzma-scan
https://github.com/0xlane/xz-cve-2024-3094
https://github.com/hackura/xz-cve-2024-3094
https://github.com/hazemkya/CVE-2024-3094-checker
https://github.com/Michel-DV/xz-utils-backdoor-case-study
https://github.com/przemoc/xz-backdoor-links
https://github.com/BOSE122/CVE-2024-3094
https://github.com/ScrimForever/CVE-2024-3094
https://github.com/buluma/ansible-role-cve_2024_3094
https://github.com/HackerHermanos/CVE-2024-3094_xz_check
https://github.com/Preacher98/Report-XZ-Utils-CVE-2024-3094
https://github.com/Ava-Vispilio/CVE-2024-3094
https://github.com/Titus-soc/-CVE-2024-3094-Vulnerability-Checker-Fixer-Public
https://github.com/spidygal/CVE-2024-3094-Nmap-NSE-script
https://github.com/Mustafa1986/CVE-2024-3094
https://github.com/harekrishnarai/xz-utils-vuln-checker
https://github.com/teyhouse/CVE-2024-3094
https://github.com/hariskhalil555000-sketch/What-utility-does-CVE-2024-3094-refer-to-
https://github.com/encikayelwhitehat-glitch/CVE-2024-3094
https://github.com/ashwani95/CVE-2024-3094
https://github.com/Yuma-Tsushima07/CVE-2024-3094
https://github.com/mightysai1997/CVE-2024-3094
https://github.com/r0binak/xzk8s
https://github.com/FabioBaroni/CVE-2024-3094-checker
https://github.com/nnatsopoulos/xz-backdoor-research
https://github.com/mhicairo-hue/cs50-cybersecurity-final-project
https://github.com/bioless/xz_cve-2024-3094_detection
https://github.com/felipecosta09/cve-2024-3094
https://github.com/mightysai1997/CVE-2024-3094-info
https://github.com/Fractal-Tess/CVE-2024-3094
https://github.com/emirkmo/xz-backdoor-github
https://github.com/M1lo25/CS50FinalProject
https://github.com/jfrog/cve-2024-3094-tools
https://github.com/Security-Phoenix-demo/CVE-2024-3094-fix-exploits
https://github.com/bsekercioglu/cve2024-3094-Checker
https://github.com/mesutgungor/xz-backdoor-vulnerability
https://github.com/ackemed/detectar_cve-2024-3094
https://github.com/mrk336/CVE-2024-3094
https://github.com/stevehenderson/lab_xz_backdoor
https://github.com/ElinaNotElina/cve-2024-3094-analysis
https://github.com/jbnetwork-git/CVE-2024-3094-XZ-Utils-Check
https://github.com/24Owais/threat-intel-cve-2024-3094
https://github.com/robertdfrench/ifuncd-up
https://github.com/robertdebock/ansible-playbook-cve-2024-3094
https://github.com/h3raklez/CVE-2024-3094
https://github.com/wgetnz/CVE-2024-3094-check
https://github.com/vesjolyjd/Kaspersky_CVE-2024-3094
https://github.com/zpxlz/CVE-2024-3094
https://github.com/isuruwa/CVE-2024-3094
https://github.com/byinarie/CVE-2024-3094-info
https://github.com/been22426/CVE-2024-3094
https://github.com/0xBlackash/CVE-2024-3094
https://github.com/Dermot-lab/TryHack
https://github.com/MrBUGLF/XZ-Utils_CVE-2024-3094
https://github.com/ThomRgn/xzutils_backdoor_obfuscation
https://github.com/Bella-Bc/xz-backdoor-CVE-2024-3094-Check
https://github.com/Ikram124/CVE-2024-3094-analysis
https://github.com/fevar54/Detectar-Backdoor-en-liblzma-de-XZ-utils-CVE-2024-3094-
https://github.com/gustavorobertux/CVE-2024-3094
https://github.com/robertdebock/ansible-role-cve_2024_3094
https://github.com/devjanger/CVE-2024-3094-XZ-Backdoor-Detector
CVE lookups in your build pipeline: one GET returns CVSS, affected vendors, and known exploits as JSON. Metered, no scraping.
##Scraping NVD means rate limits, pagination, and schema drift you own forever. The ValtersIT CVE API returns normalized CVE, vendor, and exploit data in one call: curl https://valtersit.com/api/cve/CVE-2024-3094 Pricing: https://www.valtersit.com/cve/pricing/
##CVE ID: CVE-2026-87886
Vendor: Acronis
Product: Backup
Date Added: 2026-09-16
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-87886
Acronis warns of actively exploited flaw in its cPanel backup plugin
Acronis가 cPanel & WHM 및 Plesk용 백업 플러그인에서 Linux 로컬 권한 상승 취약점(CVE-2026-87886)이 제한적 표적 공격에 실제 악용된 정황을 공개했다. CVSS 7.8의 고위험 취약점으로, 낮은 권한의 공격자가 사용자 상호작용 없이 서버 권한을 상승시켜 민감 데이터 접근·변조 또는 시스템 중단을 일으킬 수 있다. cPanel & WHM 플러그인은 1.9.3 HF3(빌드 1.9.3.1021 이상), Plesk 확장은...
##Acronis Backup Vulnerability Exploited in the Wild: Critical Warning for cPanel and Plesk Hosting Servers
Introduction: A Quiet Privilege Escalation With Potentially Wide Consequences Acronis has released security updates for its Backup Plugin for cPanel & WHM and Backup Extension for Plesk after detecting limited, targeted exploitation of a high-severity local privilege-escalation vulnerability affecting Linux-based systems. CVE-2026-87886: What Happened? Tracked as…
##Acronis Backup Plugin Under Attack: Critical Linux Privilege Escalation Flaw Puts Hosting Servers at Risk + Video
A New Warning for Web Hosting Administrators Acronis has disclosed CVE-2026-87886, a high-severity Linux local privilege escalation vulnerability affecting its backup integrations for cPanel & WHM and Plesk. The vulnerability carries a CVSS score of 7.8 and, more importantly, Acronis says exploitation has already been detected in limited, targeted attacks…
##Acronis confirmed active exploitation of CVE-2026-87886, a CVSS 7.8 local privilege escalation in its backup plugin for cPanel and WHM and Plesk. Any local user on shared hosting could escalate to root and compromise all tenants, making immediate patching and audit critical. #LinuxSecurity #PrivilegeEscalation #CpanelSecurity
https://cyberworldops.eu/en/acronis-warns-of-exploited-privilege-escalation-flaw-in-cpanel-backup
##Acronis Discloses Exploited Flaw in cPanel Backup Plugin
A high-severity flaw, CVE-2026-87886, has been discovered in the Acronis Backup plugin for cPanel & WHM deployments, and it's been exploited in limited, targeted attacks. This Linux local privilege-escalation vulnerability has a CVSS severity score of 7.8, making it a critical issue that needs attention.
#Cve202687886 #Acronis #Cpanel #Linux #LocalPrivilegeEscalation
##Acronis Backup Vulnerability Puts Linux Hosting Servers at Risk as Limited Attacks Begin + Video
Introduction: A Quiet Flaw With Serious Consequences A vulnerability hiding inside a widely used server-backup integration has turned into an urgent warning for Linux hosting administrators. Acronis has disclosed CVE-2026-87886, a high-severity local privilege escalation flaw affecting its backup integrations for cPanel & WHM and Plesk, two platforms commonly used to manage…
##CVE ID: CVE-2026-87886
Vendor: Acronis
Product: Backup
Date Added: 2026-09-16
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-87886
Acronis confirmed active exploitation of CVE-2026-87886, a CVSS 7.8 local privilege escalation in its backup plugin for cPanel and WHM and Plesk. Any local user on shared hosting could escalate to root and compromise all tenants, making immediate patching and audit critical. #LinuxSecurity #PrivilegeEscalation #CpanelSecurity
https://cyberworldops.eu/en/acronis-warns-of-exploited-privilege-escalation-flaw-in-cpanel-backup
##Multiple critical Squid proxy vulnerabilities, including CVE-2026-61642, allow request smuggling and buffer overflows. Patch your servers immediately.
#SquidProxy #CVE202661642 #Cybersecurity #Vulnerability #InfoSec
##Multiple critical Squid proxy vulnerabilities, including CVE-2026-61642, allow request smuggling and buffer overflows. Patch your servers immediately.
#SquidProxy #CVE202661642 #Cybersecurity #Vulnerability #InfoSec
##krb5 (1.20.1-6ubuntu2.10)
セキュリティ対応ではない。
krb5-locales
libgssapi-krb5-2
libk5crypto3
libkrb5-3
libkrb5support0
netplan.io (1.1.2-8ubuntu1~24.04.3)
セキュリティ対応ではない。
libnetplan1
netplan-generator
python3-netplan
policykit-1 (124-2ubuntu1.24.04.4)
CVE-2026-85498へのセキュリティ対応。
libpolkit-agent-1-0
libpolkit-gobject-1-0
libsrt1.5-gnutls
polkitd
セキュリティ対応もあるので、お早めに。
##krb5 (1.20.1-6ubuntu2.10)
セキュリティ対応ではない。
krb5-locales
libgssapi-krb5-2
libk5crypto3
libkrb5-3
libkrb5support0
netplan.io (1.1.2-8ubuntu1~24.04.3)
セキュリティ対応ではない。
libnetplan1
netplan-generator
python3-netplan
policykit-1 (124-2ubuntu1.24.04.4)
CVE-2026-85498へのセキュリティ対応。
libpolkit-agent-1-0
libpolkit-gobject-1-0
libsrt1.5-gnutls
polkitd
セキュリティ対応もあるので、お早めに。
##🟠 CVE-2026-88065 - High (7.5)
`tts-be` is a backend for a timetable selector that aims to help students better choose their class schedules. Versions prior to 2.1.0 have a Broken Access Control vulnerability across several API endpoints (such as `/api/student/{id}/photo` and `...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-88065/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-88065 - High (7.5)
`tts-be` is a backend for a timetable selector that aims to help students better choose their class schedules. Versions prior to 2.1.0 have a Broken Access Control vulnerability across several API endpoints (such as `/api/student/{id}/photo` and `...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-88065/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-63443 - High (8.3)
Coder allows organizations to provision remote development environments via Terraform. Prior to 2.29.19, 2.32.9, 2.33.10, and 2.34.4, agentConn.apiClient() follows redirects while its custom transport accepts the host from the redirected request U...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-63443/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-63443 - High (8.3)
Coder allows organizations to provision remote development environments via Terraform. Prior to 2.29.19, 2.32.9, 2.33.10, and 2.34.4, agentConn.apiClient() follows redirects while its custom transport accepts the host from the redirected request U...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-63443/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-73496 - High (7.7)
MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, the confluence_upload_attachment and confluence_upload_attachments tools pass a client-controlled file_path through src/mcp_atlas...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-73496/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##