##
Updated at UTC 2026-07-26T19:52:04.670089
| CVE | CVSS | EPSS | Posts | Repos | Nuclei | Updated | Description |
|---|---|---|---|---|---|---|---|
| CVE-2026-17497 | 8.3 | 0.00% | 3 | 0 | 2026-07-26T15:16:27.873000 | NoteGen before 0.32.0 grants the Tauri shell plugin shell:allow-execute capabili | |
| CVE-2026-17496 | 8.1 | 0.00% | 3 | 0 | 2026-07-26T15:16:27.710000 | NoteGen before 0.32.0 renders AI chat responses with markdown-it configured with | |
| CVE-2026-17459 | 4.3 | 0.00% | 2 | 0 | 2026-07-26T12:30:21 | A vulnerability was determined in perwendel spark up to 2.9.4. This vulnerabilit | |
| CVE-2026-17458 | 6.3 | 0.00% | 2 | 0 | 2026-07-26T11:16:58.470000 | A vulnerability was found in mf-yang openclaw-cn up to 0.2.1. This affects the f | |
| CVE-2026-17457 | 4.3 | 0.32% | 2 | 0 | 2026-07-26T10:16:25.163000 | A vulnerability has been found in mf-yang openclaw-cn up to 0.2.1. Affected by t | |
| CVE-2026-63720 | 7.5 | 0.42% | 2 | 0 | 2026-07-26T05:16:23.927000 | datamodel-code-generator prior to version 0.70.0 contains a code injection vulne | |
| CVE-2026-15962 | 8.8 | 0.38% | 2 | 0 | 2026-07-26T03:30:31 | The Fluent Forms Pro Add On Pack plugin for WordPress is vulnerable to PHP Objec | |
| CVE-2026-66012 | 10.0 | 0.44% | 2 | 1 | 2026-07-25T12:31:47 | SiYuan before v3.7.2 contains a missing authorization vulnerability in the POST | |
| CVE-2026-64329 | 0 | 0.18% | 1 | 0 | 2026-07-25T10:17:14.540000 | In the Linux kernel, the following vulnerability has been resolved: usb: typec: | |
| CVE-2026-64309 | 0 | 0.21% | 1 | 0 | 2026-07-25T10:17:12.030000 | In the Linux kernel, the following vulnerability has been resolved: crypto: ccp | |
| CVE-2026-64275 | 0 | 0.21% | 1 | 0 | 2026-07-25T10:17:07.927000 | In the Linux kernel, the following vulnerability has been resolved: Input: elan | |
| CVE-2026-10818 | 8.1 | 0.42% | 2 | 1 | 2026-07-25T09:30:31 | The WPForms Pro plugin for WordPress is vulnerable to Arbitrary File Upload in a | |
| CVE-2026-66035 | 7.5 | 0.32% | 1 | 0 | 2026-07-25T05:16:42.900000 | libssh2 through 1.11.1, fixed in commit 42e33d8, contains a pre-authentication h | |
| CVE-2026-66034 | 7.5 | 0.25% | 1 | 0 | 2026-07-25T05:16:42.773000 | libssh2 through 1.11.1, fixed in commit a13bb6c, contains a missing bounds check | |
| CVE-2026-58630 | 10.0 | 0.81% | 3 | 0 | 2026-07-25T05:16:35.847000 | Improper access control in Azure App Service allows an unauthorized attacker to | |
| CVE-2026-56165 | 9.8 | 0.74% | 1 | 0 | 2026-07-25T05:16:35.530000 | Heap-based buffer overflow in Microsoft Account allows an unauthorized attacker | |
| CVE-2026-56160 | 9.1 | 0.65% | 2 | 0 | 2026-07-25T05:16:35.313000 | Improper authorization in Azure Red Hat OpenShift (ARO) allows an authorized att | |
| CVE-2026-66373 | 7.5 | 0.47% | 1 | 0 | 2026-07-25T03:30:55 | Redis before 8.8.0, in the unusual case where an authenticated attacker can exec | |
| CVE-2026-66041 | 8.8 | 0.42% | 1 | 0 | 2026-07-25T02:16:40.150000 | FFmpeg 7.0 through 8.1.2, fixed in commit 4da9812, contains a heap out-of-bounds | |
| CVE-2026-66374 | 8.1 | 0.39% | 1 | 1 | 2026-07-25T01:16:26.423000 | Knot Resolver before 6.4.1 allows remote code execution via a heap-based buffer | |
| CVE-2026-61884 | 9.8 | 0.66% | 3 | 0 | 2026-07-25T00:31:53 | The web management interface of Tycon Systems TPDIN-Monitor-WEB2 does not perf | |
| CVE-2026-61892 | 8.8 | 0.27% | 1 | 0 | 2026-07-25T00:31:53 | Weintek cMT3092X HMI allows a non-privileged user to modify tokens to escalate p | |
| CVE-2025-71408 | 7.8 | 0.16% | 1 | 0 | 2026-07-25T00:31:53 | NLTK (Natural Language Toolkit) before version 3.9.3 contains an eval injection | |
| CVE-2026-60134 | 8.8 | 0.32% | 1 | 0 | 2026-07-24T23:16:50.890000 | Weintek cMT3092X HMI allows a non-privileged user to modify cookies to gain elev | |
| CVE-2026-12497 | 7.5 | 0.23% | 1 | 0 | 2026-07-24T21:33:30 | The Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User | |
| CVE-2026-66144 | 7.5 | 0.33% | 1 | 0 | 2026-07-24T21:33:30 | Although remote policy references are not retrieved during policy normalization, | |
| CVE-2026-66143 | 7.5 | 0.33% | 1 | 0 | 2026-07-24T21:33:30 | It is possible to bypass the maximum number of normalized policy alternatives th | |
| CVE-2026-12981 | 7.5 | 0.30% | 2 | 0 | 2026-07-24T21:33:29 | The CAFEHAUS API WordPress plugin through 1.0.0 does not have any authentication | |
| CVE-2026-12877 | 9.1 | 0.24% | 1 | 0 | 2026-07-24T21:33:29 | The Project Management, Bug and Issue Tracking Plugin WordPress plugin before 5 | |
| CVE-2026-45816 | 7.5 | 0.38% | 1 | 0 | 2026-07-24T21:33:29 | NULL Pointer Dereference vulnerability in Apache NimBLE in LE Long Term Key Requ | |
| CVE-2026-66142 | 7.5 | 0.33% | 1 | 0 | 2026-07-24T21:33:29 | Apache Neethi is vulnerable to uncontrolled recursion when parsing policies that | |
| CVE-2026-62835 | 9.3 | 1.03% | 3 | 0 | 2026-07-24T21:32:28 | Improper authorization in Azure Portal allows an unauthorized attacker to disclo | |
| CVE-2026-66039 | 8.8 | 0.42% | 1 | 0 | 2026-07-24T21:32:28 | FFmpeg through 8.1.2, fixed in commit aafb5c6, contains a signed integer overflo | |
| CVE-2026-66040 | 8.8 | 0.55% | 1 | 0 | 2026-07-24T21:32:28 | FFmpeg through 8.1.2, fixed in commit b506faf, contains a heap out-of-bounds wri | |
| CVE-2026-17107 | 8.5 | 0.23% | 1 | 0 | 2026-07-24T20:49:03.140000 | A flaw was found in the cluster-proxy service-proxy component used in Red Hat Ad | |
| CVE-2026-14603 | 7.5 | 0.24% | 1 | 0 | 2026-07-24T20:48:39.923000 | The WowOptin: Next-Gen Popup Maker WordPress plugin before 1.4.38 does not have | |
| CVE-2026-45811 | 7.5 | 0.25% | 1 | 0 | 2026-07-24T20:47:41.790000 | Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerabi | |
| CVE-2026-45815 | 7.5 | 0.37% | 1 | 0 | 2026-07-24T20:47:41.790000 | Reachable Assertion vulnerability in Apache NimBLE. A specially crafted ATT Read | |
| CVE-2026-45813 | 8.8 | 0.27% | 1 | 0 | 2026-07-24T20:47:41.790000 | Out-of-bounds Write, Integer Underflow (Wrap or Wraparound) vulnerability in Apa | |
| CVE-2026-8789 | 8.1 | 0.22% | 1 | 0 | 2026-07-24T20:45:45.697000 | The Easy Appointments plugin for WordPress is vulnerable to unauthorized modific | |
| CVE-2026-12736 | 8.0 | 0.34% | 1 | 0 | 2026-07-24T20:45:45.697000 | The Wpify Woo plugin for WordPress is vulnerable to Privilege Escalation in vers | |
| CVE-2026-66036 | 8.8 | 0.29% | 1 | 0 | 2026-07-24T20:18:20.433000 | FFmpeg through 8.1.2, fixed in commit 5d7112c, contains a heap out-of-bounds wri | |
| CVE-2026-65709 | 8.3 | 0.22% | 1 | 0 | 2026-07-24T19:17:10.580000 | sysPass through version 3.2.11 contains a missing object-level authorization vul | |
| CVE-2026-49743 | 7.8 | 0.11% | 1 | 0 | 2026-07-24T18:32:33 | Software installed and run as a non-privileged user may conduct improper GPU sys | |
| CVE-2026-49744 | 7.8 | 0.11% | 1 | 0 | 2026-07-24T18:32:32 | Kernel software installed and running inside a Guest VM may post improper comman | |
| CVE-2026-66033 | 7.5 | 0.39% | 1 | 0 | 2026-07-24T18:31:41 | libssh2 through 1.11.1, fixed in commit a2ed82d, contains a pre-authentication i | |
| CVE-2026-65708 | 8.1 | 0.22% | 1 | 0 | 2026-07-24T18:31:37 | sysPass through version 3.2.11 contains an insecure direct object reference vuln | |
| CVE-2026-66032 | 8.8 | 0.29% | 1 | 0 | 2026-07-24T18:31:37 | libssh2 through 1.11.1, fixed in commit 5e47761, contains a double-free vulnerab | |
| CVE-2026-49745 | 7.8 | 0.11% | 1 | 0 | 2026-07-24T18:16:59.820000 | Kernel software installed and running inside a Guest VM may post improper comman | |
| CVE-2026-16870 | 8.8 | 0.36% | 1 | 0 | 2026-07-24T18:16:52.770000 | Multiple security vulnerabilities in Snowflake libsnowflakeclient versions prior | |
| CVE-2026-16801 | 8.8 | 0.29% | 1 | 0 | 2026-07-24T18:16:52.467000 | Improper control of generation of code ('Code Injection') in the variables featu | |
| CVE-2026-16800 | 8.8 | 0.29% | 1 | 0 | 2026-07-24T18:16:52.303000 | Improper control of generation of code ('Code Injection') in the schedule featur | |
| CVE-2026-66027 | 8.3 | 0.26% | 1 | 0 | 2026-07-24T17:17:34.993000 | Suna before 0.9.102 contains a broken access control vulnerability in the messag | |
| CVE-2026-16807 | 8.8 | 0.29% | 1 | 0 | 2026-07-24T15:34:00 | Out of bounds write in Codecs in Google Chrome prior to 150.0.7871.186 allowed a | |
| CVE-2026-16806 | 8.8 | 0.43% | 1 | 0 | 2026-07-24T15:34:00 | Use after free in WebMCP in Google Chrome prior to 150.0.7871.186 allowed a remo | |
| CVE-2026-16805 | 8.8 | 0.34% | 1 | 0 | 2026-07-24T15:34:00 | Use after free in Blink in Google Chrome prior to 150.0.7871.186 allowed a remot | |
| CVE-2026-16804 | 8.3 | 0.29% | 1 | 0 | 2026-07-24T15:34:00 | Use after free in Input in Google Chrome prior to 150.0.7871.186 allowed a remot | |
| CVE-2026-57106 | 10.0 | 0.92% | 2 | 0 | 2026-07-24T15:33:03 | Server-side request forgery (ssrf) in Data Quality allows an unauthorized attack | |
| CVE-2026-56163 | 10.0 | 0.92% | 2 | 0 | 2026-07-24T15:33:03 | Missing authentication for critical function in Microsoft Azure Kubernetes Servi | |
| CVE-2026-12503 | None | 0.14% | 1 | 0 | 2026-07-24T15:33:02 | Improper Link Resolution (CWE-59) in `/usr/bin/larm_starter` in Loytec L-INX, L- | |
| CVE-2026-64600 | 0 | 0.72% | 7 | 4 | 2026-07-24T15:19:06.087000 | In the Linux kernel, the following vulnerability has been resolved: xfs: resamp | |
| CVE-2026-24727 | 0 | 0.67% | 1 | 0 | 2026-07-24T13:17:34.217000 | An unrestricted upload of file with dangerous type vulnerability in the e-paper | |
| CVE-2026-14172 | 7.8 | 0.11% | 1 | 0 | 2026-07-24T09:32:22 | Rapid7 InsightVM, Nexpose, and the Insight Agent execute discovered executables | |
| CVE-2026-15704 | 9.8 | 0.35% | 2 | 0 | 2026-07-24T09:32:16 | In Eclipse BaSyx Go Components versions up to and including 1.0.0, ABAC-enabled | |
| CVE-2026-66140 | 8.4 | 0.27% | 1 | 0 | 2026-07-24T06:34:11 | Exim before 4.99.5 allows directory traversal to access files outside of the spo | |
| CVE-2026-35425 | 8.0 | 0.48% | 1 | 0 | 2026-07-24T03:32:01 | Improper access control in Azure API Management (APIM) allows an authorized atta | |
| CVE-2026-56191 | 10.0 | 0.68% | 1 | 0 | 2026-07-24T03:32:01 | Improper authentication in Microsoft Exchange Online allows an unauthorized atta | |
| CVE-2026-54120 | 9.9 | 0.71% | 2 | 0 | 2026-07-24T03:31:56 | Improper input validation in Microsoft Surface allows an authorized attacker to | |
| CVE-2026-56167 | 8.5 | 0.38% | 1 | 0 | 2026-07-24T03:31:56 | Server-side request forgery (ssrf) in Azure AI Search allows an authorized attac | |
| CVE-2026-50517 | 9.9 | 1.25% | 2 | 0 | 2026-07-24T03:31:55 | Deserialization of untrusted data in M365 Copilot allows an authorized attacker | |
| CVE-2026-16232 | 9.1 | 12.68% | 6 | 1 | 2026-07-23T15:44:54.743000 | An authentication bypass vulnerability in the Check Point SmartConsole login pro | |
| CVE-2026-50522 | 9.8 | 57.10% | 4 | 2 | 2026-07-23T15:44:10.873000 | Deserialization of untrusted data in Microsoft Office SharePoint allows an unaut | |
| CVE-2026-16723 | 9.0 | 0.41% | 6 | 1 | 2026-07-23T15:01:24.377000 | A remote code execution (RCE) vulnerability exists in fastjson 1.2.68 through 1. | |
| CVE-2026-63030 | 9.8 | 98.05% | 2 | 67 | template | 2026-07-22T23:10:00.110000 | WordPress 6.9.x before 6.9.5 and 7.0.x before 7.0.2 is affected by a REST API ba |
| CVE-2026-53359 | 8.8 | 0.91% | 2 | 6 | 2026-07-22T21:31:50 | In the Linux kernel, the following vulnerability has been resolved: KVM: x86: F | |
| CVE-2026-49176 | 7.8 | 0.40% | 2 | 1 | 2026-07-22T16:17:28.753000 | Improper privilege management in Windows WalletService allows an authorized atta | |
| CVE-2026-60137 | 5.9 | 77.97% | 1 | 42 | 2026-07-22T05:17:11.750000 | WordPress 6.8.x before 6.8.6, 6.9.x before 6.9.5, and 7.0.x before 7.0.2 does no | |
| CVE-2026-54121 | 8.8 | 1.05% | 8 | 5 | 2026-07-21T19:54:33.623000 | Improper authorization in Active Directory Certificate Services (AD CS) allows a | |
| CVE-2021-27137 | 8.1 | 16.49% | 1 | 0 | 2026-07-21T18:30:50 | An issue was discovered in router/upnp/src/ssdp.c in DD-WRT before 45724. An uns | |
| CVE-2026-8933 | 7.8 | 0.18% | 1 | 0 | 2026-07-21T15:30:51 | A local privilege escalation vulnerability exists in snap-confine, a set-capabil | |
| CVE-2026-16242 | 9.4 | 0.37% | 1 | 0 | 2026-07-20T09:31:15 | A flaw was found in the Konnectivity proxy-server configuration for hosted contr | |
| CVE-2026-58644 | 9.8 | 5.06% | 1 | 0 | 2026-07-17T05:16:40.470000 | Deserialization of untrusted data in Microsoft Office SharePoint allows an unaut | |
| CVE-2026-25089 | 9.8 | 69.83% | 1 | 2 | 2026-07-16T18:32:24 | A improper neutralization of special elements used in an os command ('os command | |
| CVE-2026-39808 | 9.8 | 89.69% | 1 | 6 | template | 2026-07-16T18:32:24 | A improper neutralization of special elements used in an os command ('os command |
| CVE-2026-42530 | 8.1 | 3.68% | 2 | 3 | 2026-07-16T12:33:31 | NGINX Open Source has a vulnerability in the ngx_http_v3_module module. When NGI | |
| CVE-2026-15410 | 7.2 | 76.35% | 2 | 3 | 2026-07-16T05:16:18.470000 | Post-authentication improper control of generation of code ('Code Injection') vu | |
| CVE-2026-46817 | 9.8 | 13.31% | 1 | 2 | 2026-07-15T18:32:50 | Vulnerability in the Oracle Payments product of Oracle E-Business Suite (compone | |
| CVE-2023-4346 | 7.5 | 0.91% | 1 | 0 | 2026-07-15T18:32:50 | KNX devices that use KNX Connection Authorization and support Option 1 are, depe | |
| CVE-2026-42533 | 8.1 | 2.79% | 3 | 6 | 2026-07-15T15:33:14 | A vulnerability exists in NGINX Plus and NGINX Open Source when a map directive | |
| CVE-2026-42945 | 8.1 | 61.47% | 1 | 42 | 2026-07-15T02:21:38.583000 | NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_rewrite_mo | |
| CVE-2026-56155 | 7.8 | 2.33% | 1 | 0 | 2026-07-14T21:32:52 | Insufficient granularity of access control in Active Directory Federation Servic | |
| CVE-2026-50454 | 7.8 | 0.44% | 1 | 0 | 2026-07-14T18:32:32 | Relative path traversal in Windows User Interface Core allows an authorized atta | |
| CVE-2026-11405 | 9.8 | 1.62% | 1 | 1 | 2026-07-08T15:32:52 | The web server binary /bin/httpd contains a hidden backdoor authentication mecha | |
| CVE-2026-55255 | 8.4 | 29.05% | 1 | 1 | 2026-07-08T13:39:12.593000 | Langflow is a tool for building and deploying AI-powered agents and workflows. P | |
| CVE-2026-12569 | 9.8 | 2.26% | 4 | 1 | 2026-06-30T18:16:43.113000 | A critical remote code execution (RCE) vulnerability has been reported in PTC Wi | |
| CVE-2026-32194 | 9.8 | 0.70% | 1 | 1 | 2026-06-17T10:35:19.293000 | Improper neutralization of special elements used in a command ('command injectio | |
| CVE-2025-66376 | 7.2 | 21.62% | 2 | 0 | 2026-06-17T09:56:44.753000 | Zimbra Collaboration (ZCS) 10 before 10.0.18 and 10.1 before 10.1.13 allows Clas | |
| CVE-2025-29827 | 9.9 | 1.25% | 2 | 0 | 2026-06-17T09:05:44.367000 | Improper authorization in Azure Automation allows an authorized attacker to elev | |
| CVE-2026-32191 | 9.8 | 0.56% | 1 | 0 | 2026-03-19T21:30:31 | Improper neutralization of special elements used in an os command ('os command i | |
| CVE-2026-0770 | None | 53.46% | 1 | 7 | template | 2026-02-19T22:09:33 | Langflow exec_globals Inclusion of Functionality from Untrusted Control Sphere R |
| CVE-2025-0679 | 4.3 | 0.29% | 1 | 0 | 2025-05-22T15:35:02 | An issue has been discovered in GitLab CE/EE affecting all versions from 17.1 be | |
| CVE-2026-16766 | 0 | 0.68% | 1 | 0 | N/A | ||
| CVE-2026-48021 | 0 | 0.12% | 2 | 0 | N/A | ||
| CVE-2026-54342 | 0 | 0.12% | 1 | 0 | N/A |
updated 2026-07-26T15:16:27.873000
3 posts
CVE-2026-17497 - Remote Code Execution in NoteGen. Tauri shell plugin allows command execution via JS. CVSS 8.3. No patch available; restrict permissions. #CVE #NoteGen #infosec
##🟠 CVE-2026-17497 - High (8.3)
NoteGen before 0.32.0 grants the Tauri shell plugin shell:allow-execute capability for bash, python, and python3 with arbitrary arguments in the default desktop capabilities. JavaScript running in the application webview can therefore invoke plugi...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-17497/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-17497 - High (8.3)
NoteGen before 0.32.0 grants the Tauri shell plugin shell:allow-execute capability for bash, python, and python3 with arbitrary arguments in the default desktop capabilities. JavaScript running in the application webview can therefore invoke plugi...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-17497/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-26T15:16:27.710000
3 posts
CVE-2026-17496 - Stored XSS in NoteGen. AI chat renders HTML unsafely via dangerouslySetInnerHTML. CVSS 8.1. No patch yet—restrict model prompts immediately. #CVE #infosec #NoteGen
##🟠 CVE-2026-17496 - High (8.1)
NoteGen before 0.32.0 renders AI chat responses with markdown-it configured with html:true and injects the result into the DOM via dangerouslySetInnerHTML in chat-preview, without HTML sanitization and with CSP set to null. Attacker-controlled con...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-17496/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-17496 - High (8.1)
NoteGen before 0.32.0 renders AI chat responses with markdown-it configured with html:true and injects the result into the DOM via dangerouslySetInnerHTML in chat-preview, without HTML sanitization and with CSP set to null. Attacker-controlled con...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-17496/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-26T12:30:21
2 posts
CVE-2026-17459: perwendel spark 2.9.0 – 2.9.4 affected by symlink following in staticFiles.externalLocation. Exploit public, MEDIUM severity. Restrict external resource access and monitor for patches. https://radar.offseq.com/threat/cve-2026-17459-symlink-following-in-perwendel-spark-e9c7a3ae8bd59674 #OffSeq #CVE202617459 #Java #Security
##CVE-2026-17459: perwendel spark 2.9.0 – 2.9.4 affected by symlink following in staticFiles.externalLocation. Exploit public, MEDIUM severity. Restrict external resource access and monitor for patches. https://radar.offseq.com/threat/cve-2026-17459-symlink-following-in-perwendel-spark-e9c7a3ae8bd59674 #OffSeq #CVE202617459 #Java #Security
##updated 2026-07-26T11:16:58.470000
2 posts
SSRF in mf-yang openclaw-cn (CVE-2026-17458) affects v0.2.0 & v0.2.1. MEDIUM severity, CVSS 5.3. Exploit details public, no patch yet. Restrict outbound server requests as interim mitigation. https://radar.offseq.com/threat/cve-2026-17458-server-side-request-forgery-in-mf-yang-openclaw-cn-a8d78509307a6c7f #OffSeq #SSRF #Vuln #mfyang
##SSRF in mf-yang openclaw-cn (CVE-2026-17458) affects v0.2.0 & v0.2.1. MEDIUM severity, CVSS 5.3. Exploit details public, no patch yet. Restrict outbound server requests as interim mitigation. https://radar.offseq.com/threat/cve-2026-17458-server-side-request-forgery-in-mf-yang-openclaw-cn-a8d78509307a6c7f #OffSeq #SSRF #Vuln #mfyang
##updated 2026-07-26T10:16:25.163000
2 posts
mf-yang openclaw-cn (v0.2.0, 0.2.1) faces a MEDIUM info disclosure issue (CVE-2026-17457). Remote, no user interaction needed. No patch yet — restrict access & monitor for updates. https://radar.offseq.com/threat/cve-2026-17457-information-disclosure-in-mf-yang-openclaw-cn-1d4fae9414fd0132 #OffSeq #Vuln #InfoSec #CVE202617457
##mf-yang openclaw-cn (v0.2.0, 0.2.1) faces a MEDIUM info disclosure issue (CVE-2026-17457). Remote, no user interaction needed. No patch yet — restrict access & monitor for updates. https://radar.offseq.com/threat/cve-2026-17457-information-disclosure-in-mf-yang-openclaw-cn-1d4fae9414fd0132 #OffSeq #Vuln #InfoSec #CVE202617457
##updated 2026-07-26T05:16:23.927000
2 posts
CVE-2026-63720 (HIGH): koxudaxi datamodel-code-generator <0.70.0 is vulnerable to code injection. Malicious input schemas can trigger remote Python code execution. Avoid untrusted schemas & update when possible. https://radar.offseq.com/threat/cve-2026-63720-improper-control-of-generation-of-code-code-injection-in-koxudaxi-datamodel-code-a0a27f1d30c87e2e #OffSeq #infosec #Python #CVE202663720
##🟠 CVE-2026-63720 - High (7.5)
datamodel-code-generator prior to version 0.70.0 contains a code injection vulnerability that allows attackers who control input schemas to achieve remote code execution by supplying a malicious customBasePath value containing embedded newlines an...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-63720/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-26T03:30:31
2 posts
CVE-2026-15962 - Insecure Deserialization in Fluent Forms Pro allows authenticated attackers to escalate to admin account takeover. CVSS 8.8. No patch yet – disable user update integration to mitigate. #CVE #WordPress #infosec
##🟠 CVE-2026-15962 - High (8.8)
The Fluent Forms Pro Add On Pack plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 6.2.6 via deserialization of untrusted input. This makes it possible for authenticated attackers, with Subscriber-lev...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-15962/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-25T12:31:47
2 posts
1 repos
https://github.com/Hunt-Benito/siyuan-mcp-admin-takeover-cve-2026-66012-missing-authorization
CVE-2026-66012: CRITICAL flaw in siyuan-note siyuan (<3.7.2). Missing authorization on /mcp lets remote attackers read secrets & plant malicious plugins for admin takeover. Disable anonymous Publish mode & restrict /mcp access. https://radar.offseq.com/threat/cve-2026-66012-missing-authorization-in-siyuan-note-siyuan-af31715ea5b396b1 #OffSeq #CVE #Infosec
##🔴 CVE-2026-66012 - Critical (10)
SiYuan before v3.7.2 contains a missing authorization vulnerability in the POST /mcp kernel endpoint, which is gated only by a general auth check (model.CheckAuth) with no admin-role or read-only enforcement. This exposes 31 MCP tools, including a...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66012/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-25T10:17:14.540000
1 posts
CVE-2026-64329 - Use-after-free in Linux kernel USB Type-C UCSI driver. CVSS 0.0. Risk of memory corruption. Apply kernel patch when available. #CVE #Linux #kernel
##updated 2026-07-25T10:17:12.030000
1 posts
CVE-2026-64309 - Linux kernel crypto/ccp flaw. SNP initialization bug can cause host crash. CVSS 0.0. No patch yet - stay vigilant. #CVE #Linux #infosec
##updated 2026-07-25T10:17:07.927000
1 posts
CVE-2026-64275 - DoS in Linux kernel (Elan I2C touchpad). Division by zero causes kernel panic on probe. CVSS 0. No patch yet. Monitor for updates. #CVE #Linux #infosec
##updated 2026-07-25T09:30:31
2 posts
1 repos
CVE-2026-10818: WPForms Pro <=1.10.1.1 has a HIGH severity file upload vuln (CVSS 8.1). Unauthenticated RCE possible via ajax_chunk_upload_finalize. Restrict access & monitor uploads until a patch is released. https://radar.offseq.com/threat/cve-2026-10818-cwe-434-unrestricted-upload-of-file-with-dangerous-type-in-wpforms-wpforms-pro-98bc8d14f7da8c03 #OffSeq #WordPress #Infosec #CVE202610818
##🟠 CVE-2026-10818 - High (8.1)
The WPForms Pro plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 1.10.1.1 via the ajax_chunk_upload_finalize function. This is due to the file type validation occurring after chunk metadata and file...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-10818/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-25T05:16:42.900000
1 posts
🟠 CVE-2026-66035 - High (7.5)
libssh2 through 1.11.1, fixed in commit 42e33d8, contains a pre-authentication heap buffer overflow vulnerability that allows a malicious SSH server to corrupt heap metadata in any connecting client by sending a packet with a packet_length smaller...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66035/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-25T05:16:42.773000
1 posts
🟠 CVE-2026-66034 - High (7.5)
libssh2 through 1.11.1, fixed in commit a13bb6c, contains a missing bounds check vulnerability that allows a malicious SSH server to trigger an arbitrary-length heap out-of-bounds read and a free of an uninitialized pointer via the publickey subsy...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66034/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-25T05:16:35.847000
3 posts
CVE-2026-58630: Improper access control in Azure App Service for Linux (CVSS 10, CRITICAL) lets remote attackers escalate privileges with no auth or user action. Patched by Microsoft — verify updates. Details: https://radar.offseq.com/threat/cve-2026-58630-cwe-284-improper-access-control-in-microsoft-azure-app-service-for-linux-12c1219307778a3e #OffSeq #Azure #Infosec #CVE2026_58630
##‼️ CVE-2026-58630: Improper access control in Azure App Service allows an unauthorized attacker to elevate privileges over a network.
CVSS: 10
Details: https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-58630
##🔴 CVE-2026-58630 - Critical (10)
Improper access control in Azure App Service allows an unauthorized attacker to elevate privileges over a network.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-58630/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-25T05:16:35.530000
1 posts
🔴 CVE-2026-56165 - Critical (9.8)
Heap-based buffer overflow in Microsoft Account allows an unauthorized attacker to execute code over a network.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-56165/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-25T05:16:35.313000
2 posts
CRITICAL improper authorization vuln (CVE-2026-56160) in Azure Red Hat OpenShift (ARO): privilege escalation risk for authorized users. No active exploits. Microsoft has released a fix — ensure your ARO instances are updated. Details: https://radar.offseq.com/threat/cve-2026-56160-cwe-285-improper-authorization-in-microsoft-azure-red-hat-openshift-aro-9a561de9f992bb49 #OffSeq #Azure #CVE202656160
##🔴 CVE-2026-56160 - Critical (9.1)
Improper authorization in Azure Red Hat OpenShift (ARO) allows an authorized attacker to elevate privileges over a network.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-56160/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-25T03:30:55
1 posts
🟠 CVE-2026-66373 - High (7.5)
Redis before 8.8.0, in the unusual case where an authenticated attacker can execute RESTORE, allows remote code execution via a RESTORE payload where the same NACK (pending entry) is referenced by more than one consumer, because deleting both cons...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66373/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-25T02:16:40.150000
1 posts
🟠 CVE-2026-66041 - High (8.8)
FFmpeg 7.0 through 8.1.2, fixed in commit 4da9812, contains a heap out-of-bounds write vulnerability in the vf_quirc filter that allows an attacker to corrupt heap memory by supplying a crafted PGS/SUP subtitle file with mismatched frame dimension...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66041/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-25T01:16:26.423000
1 posts
1 repos
🟠 CVE-2026-66374 - High (8.1)
Knot Resolver before 6.4.1 allows remote code execution via a heap-based buffer overflow in the DoQ (DNS-over-QUIC) receive path.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66374/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-25T00:31:53
3 posts
CVE-2026-61884 (CRITICAL, CVSS 9.8) in Tycon TPDIN-Monitor-WEB2 v2.3.9: Server-side auth validation missing — empty creds grant admin access. Restrict management interface, monitor for unauthorized logins. https://radar.offseq.com/threat/cve-2026-61884-cwe-288-in-tycon-systems-tpdin-monitor-web2-38fd252c1e4f018a #OffSeq #CVE #IoT #Infosec
##🔴 CVE-2026-61884 - Critical (9.8)
The web management interface of Tycon Systems TPDIN-Monitor-WEB2
does not perform server-side validation of credentials during the login process. By submitting empty values for both credential fields, an unauthenticated remote attacker can byp...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-61884/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##Tycon Power Monitor Authentication Bypass CVE-2026-61884 Rated CVSS 9.8
##updated 2026-07-25T00:31:53
1 posts
🟠 CVE-2026-61892 - High (8.8)
Weintek cMT3092X HMI allows a non-privileged user to modify tokens to escalate privileges.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-61892/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-25T00:31:53
1 posts
🟠 CVE-2025-71408 - High (7.8)
NLTK (Natural Language Toolkit) before version 3.9.3 contains an eval injection vulnerability in the nltk.collocations module that allows an attacker who controls command-line arguments to execute arbitrary Python code. When collocations.py is inv...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2025-71408/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T23:16:50.890000
1 posts
🟠 CVE-2026-60134 - High (8.8)
Weintek cMT3092X HMI allows a non-privileged user to modify cookies to gain elevated privileges.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-60134/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T21:33:30
1 posts
🟠 CVE-2026-12497 - High (7.5)
The Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content WordPress plugin before 4.16.18 does not consistently enforce the role restriction configured on its front-end registration role-selection ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-12497/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T21:33:30
1 posts
🟠 CVE-2026-66144 - High (7.5)
Although remote policy references are not retrieved during policy normalization, if they are manually retrieved via the API it can cause a denial of service attack if a huge policy is retrieved. Users are recommended to upgrade to version 3.2.3, w...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66144/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T21:33:30
1 posts
🟠 CVE-2026-66143 - High (7.5)
It is possible to bypass the maximum number of normalized policy alternatives that was introduced in Apache Neethi 3.2.2 via certain crafted policies, which may lead to a denial of service attack via resource consumption. Users are recommended t...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66143/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T21:33:29
2 posts
🟠 CVE-2026-12981 - High (7.5)
The CAFEHAUS API WordPress plugin through 1.0.0 does not have any authentication or authorisation when updating user passwords, allowing unauthenticated attackers to set the password of any user, including administrators, and fully take over their...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-12981/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-12981: CRITICAL vuln in CAFEHAUS API plugin ≤1.0.0 (WordPress). No authentication on password updates — attackers can reset any user password, including admins. Remove/disable plugin until fixed. https://radar.offseq.com/threat/cve-2026-12981-cwe-269-improper-privilege-management-in-cafehaus-api-47b92cb62ac9c312 #OffSeq #WordPress #Vulnerability #PrivilegeEscalation
##updated 2026-07-24T21:33:29
1 posts
🔴 CVE-2026-12877 - Critical (9.1)
The Project Management, Bug and Issue Tracking Plugin WordPress plugin before 5.1.0 does not sanitise and escape user supplied input before using it in a SQL query, allowing unauthenticated attackers to perform SQL injection attacks. This is expl...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-12877/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T21:33:29
1 posts
🟠 CVE-2026-45816 - High (7.5)
NULL Pointer Dereference vulnerability in Apache NimBLE in LE Long Term Key Request event.
This requires disabled asserts (otherwise assert would trigger before NULL dereference) and bogus (or misbehaving) controller, thus severity is low.
This...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-45816/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T21:33:29
1 posts
🟠 CVE-2026-66142 - High (7.5)
Apache Neethi is vulnerable to uncontrolled recursion when parsing policies that lack policy Ids or with deeply nested structures, which may lead to a denial of service attack when parsing policies due to runtime memory exhaustion. Users are recom...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66142/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T21:32:28
3 posts
CVE-2026-62835 (CRITICAL, CVSS 9.3) affects Microsoft Azure Portal: improper authorization enables remote info disclosure with high confidentiality impact. Microsoft has fixed server-side. More at https://radar.offseq.com/threat/cve-2026-62835-cwe-285-improper-authorization-in-microsoft-azure-portal-defd11bbcf2e17c7 #OffSeq #Azure #Vuln #CloudSecurity
##🔴 CVE-2026-62835 - Critical (9.3)
Improper authorization in Azure Portal allows an unauthorized attacker to disclose information over a network.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-62835/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🚨 CVE-2026-62835: Microsoft Azure Portal Information Disclosure Vulnerability
CVE-2026-62835 involves a flaw in the authorization process of Online Services, enabling attackers to access restricted information. The vulnerability documented by this CVE requires no customer action to resolve.
CVSS: 9.3
More information: https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-62835
##updated 2026-07-24T21:32:28
1 posts
🟠 CVE-2026-66039 - High (8.8)
FFmpeg through 8.1.2, fixed in commit aafb5c6, contains a signed integer overflow vulnerability in the MACE6 audio decoder that allows attackers to corrupt heap memory by supplying a crafted CAF file with a malicious bytes_per_packet value. Attack...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66039/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T21:32:28
1 posts
🟠 CVE-2026-66040 - High (8.8)
FFmpeg through 8.1.2, fixed in commit b506faf, contains a heap out-of-bounds write vulnerability in the native PNG and APNG encoders that allows remote attackers to corrupt heap memory by supplying a crafted PNG image with a malicious eXIf chunk. ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66040/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T20:49:03.140000
1 posts
🟠 CVE-2026-17107 - High (8.5)
A flaw was found in the cluster-proxy service-proxy component used in Red Hat Advanced Cluster Management for Kubernetes (RHACM) and multicluster-engine (MCE). The service-proxy appends impersonation group headers to proxied requests without first...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-17107/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T20:48:39.923000
1 posts
🟠 CVE-2026-14603 - High (7.5)
The WowOptin: Next-Gen Popup Maker WordPress plugin before 1.4.38 does not have proper authorization on a REST endpoint, allowing unauthenticated users to disable all of the site's opt-in forms and insert new template-based opt-in rows into the d...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-14603/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T20:47:41.790000
1 posts
🟠 CVE-2026-45811 - High (7.5)
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in Apache NimBLE.
The HCI socket transport did not check whether a received HCI event would fit the configured event pool before copying it, allowing a buffer ove...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-45811/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T20:47:41.790000
1 posts
🟠 CVE-2026-45815 - High (7.5)
Reachable Assertion vulnerability in Apache NimBLE.
A specially crafted ATT Read Multiple Variable Response (BLE_ATT_OP_READ_MULT_VAR_RSP) may trigger assert in ATT parser.
Severity is medium as this requires DUT to first send ATT Read Multiple ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-45815/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T20:47:41.790000
1 posts
🟠 CVE-2026-45813 - High (8.8)
Out-of-bounds Write, Integer Underflow (Wrap or Wraparound) vulnerability in Apache NimBLE BASS service.
Improper validation when parsing BASS service "Add Source" and "Modify Source" operation PDU could results in stack buffer overflow or arbit...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-45813/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T20:45:45.697000
1 posts
🟠 CVE-2026-8789 - High (8.1)
The Easy Appointments plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check and missing nonce verification on the `ea_delete_multiple_connections` AJAX action in all versions up to, and including...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-8789/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T20:45:45.697000
1 posts
🟠 CVE-2026-12736 - High (8)
The Wpify Woo plugin for WordPress is vulnerable to Privilege Escalation in versions up to, and including, 5.4.16. This is due to the SettingsApi::save_option() REST route (POST /wp-json/wpify-woo/v1/option) passing the request-supplied 'option' a...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-12736/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T20:18:20.433000
1 posts
🟠 CVE-2026-66036 - High (8.8)
FFmpeg through 8.1.2, fixed in commit 5d7112c, contains a heap out-of-bounds write vulnerability in the vf_hqdn3d filter that allows attackers to corrupt heap memory by supplying a crafted video whose frame resolution increases between frames when...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66036/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T19:17:10.580000
1 posts
🟠 CVE-2026-65709 - High (8.3)
sysPass through version 3.2.11 contains a missing object-level authorization vulnerability in the JSON-RPC API that allows API token holders to enumerate account metadata, overwrite passwords, and delete accounts across the entire vault without pe...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-65709/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T18:32:33
1 posts
🟠 CVE-2026-49743 - High (7.8)
Software installed and run as a non-privileged user may conduct improper GPU system calls to manipulate the lifetimes of synchronisation objects in the kernel, leading to read/write UAFs.
During workload submission involving a fence exported by...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-49743/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T18:32:32
1 posts
🟠 CVE-2026-49744 - High (7.8)
Kernel software installed and running inside a Guest VM may post improper commands to the GPU Firmware to trigger a write of data outside the Guest's virtualised GPU memory.
Out of bounds accesses triggered by malware introduced to a Guest KMD ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-49744/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T18:31:41
1 posts
🟠 CVE-2026-66033 - High (7.5)
libssh2 through 1.11.1, fixed in commit a2ed82d, contains a pre-authentication integer underflow vulnerability in the ssh2_cipher_crypt() function in src/openssl.c that allows a malicious SSH server to crash any connecting client by negotiating AE...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66033/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T18:31:37
1 posts
🟠 CVE-2026-65708 - High (8.1)
sysPass through version 3.2.11 contains an insecure direct object reference vulnerability that allows any authenticated attacker to access account file attachments belonging to accounts they do not have ACL permissions for by exploiting missing au...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-65708/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T18:31:37
1 posts
🟠 CVE-2026-66032 - High (8.8)
libssh2 through 1.11.1, fixed in commit 5e47761, contains a double-free vulnerability in the sftp_open() function in src/sftp.c that allows a malicious SSH server to corrupt the heap of any authenticated client opening an SFTP session. When a serv...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66032/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T18:16:59.820000
1 posts
🟠 CVE-2026-49745 - High (7.8)
Kernel software installed and running inside a Guest VM may post improper commands to the GPU Firmware to trigger a write of data outside the Guest's virtualised GPU memory.
Software installed and run under a Guest VM can send commands to the G...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-49745/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T18:16:52.770000
1 posts
🟠 CVE-2026-16870 - High (8.8)
Multiple security vulnerabilities in Snowflake libsnowflakeclient versions prior to 2.9.2 could allow remote code execution and credential exfiltration. A stack-based buffer overflow in the file download path could allow remote code execution on a...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-16870/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T18:16:52.467000
1 posts
🟠 CVE-2026-16801 - High (8.8)
Improper control of generation of code ('Code Injection') in the variables feature in Devolutions PowerShell Universal 2026.2.2 and earlier allows an authenticated user with variable write permission to execute arbitrary PowerShell code via a craf...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-16801/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T18:16:52.303000
1 posts
🟠 CVE-2026-16800 - High (8.8)
Improper control of generation of code ('Code Injection') in the schedule feature in Devolutions PowerShell Universal 2026.2.2 and earlier allows an authenticated user with schedule creation permission to execute arbitrary PowerShell code via craf...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-16800/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T17:17:34.993000
1 posts
🟠 CVE-2026-66027 - High (8.3)
Suna before 0.9.102 contains a broken access control vulnerability in the message queue API that allows authenticated attackers to access and manipulate queue resources belonging to other users by exploiting missing ownership and account isolation...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66027/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T15:34:00
1 posts
🟠 CVE-2026-16807 - High (8.8)
Out of bounds write in Codecs in Google Chrome prior to 150.0.7871.186 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-16807/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T15:34:00
1 posts
🟠 CVE-2026-16806 - High (8.8)
Use after free in WebMCP in Google Chrome prior to 150.0.7871.186 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-16806/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T15:34:00
1 posts
🟠 CVE-2026-16805 - High (8.8)
Use after free in Blink in Google Chrome prior to 150.0.7871.186 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-16805/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T15:34:00
1 posts
🟠 CVE-2026-16804 - High (8.3)
Use after free in Input in Google Chrome prior to 150.0.7871.186 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-16804/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T15:33:03
2 posts
Microsoft Purview Data Governance is impacted by CVE-2026-57106 (SSRF, CVSS 10, CRITICAL). Remote attackers can escalate privileges — patch ASAP using the official fix: https://radar.offseq.com/threat/cve-2026-57106-cwe-918-server-side-request-forgery-ssrf-in-microsoft-microsoft-purview-data-governance-0983080847f54f67 #OffSeq #Vuln #SSRF #Microsoft #CyberSec
##🔴 CVE-2026-57106 - Critical (10)
Server-side request forgery (ssrf) in Data Quality allows an unauthorized attacker to elevate privileges over a network.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-57106/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T15:33:03
2 posts
CVE-2026-56163: CRITICAL (CVSS 10) in Azure Kubernetes Service — Missing authentication allows remote privilege escalation. Microsoft has released a fix; verify your AKS is updated. https://radar.offseq.com/threat/cve-2026-56163-cwe-306-missing-authentication-for-critical-function-in-microsoft-azure-kubernetes-c5571c5da7b404e3 #OffSeq #Azure #Kubernetes #CloudSecurity
##🔴 CVE-2026-56163 - Critical (10)
Missing authentication for critical function in Microsoft Azure Kubernetes Service allows an unauthorized attacker to elevate privileges over a network.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-56163/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T15:33:02
1 posts
CVE-2026-12503 (CRITICAL, CVSS 9.2) affects Loytec LIP-ME20xC: improper link resolution in larm_starter lets larmapp users escalate to root via /etc/passwd symlink. Limit access & monitor! https://radar.offseq.com/threat/cve-2026-12503-cwe-59-improper-link-resolution-before-file-access-link-following-in-loytec-lip-me20xc-acfbe89cb621dc0e #OffSeq #Vulnerability #ICS #Loytec #CVE2026
##updated 2026-07-24T15:19:06.087000
7 posts
4 repos
https://github.com/vulnquest58/VQ-RefluxCore
https://github.com/HORKimhab/CVE-2026-64600
📢 RefluXFS (CVE-2026-64600) : élévation de privilèges locale vers root dans le noyau Linux via XFS
📝 ## 🔍 Contexte
Le 22 juillet 2026...
📖 cyberveille : https://cyberveille.ch/posts/2026-07-26-refluxfs-cve-2026-64600-elevation-de-privileges-locale-vers-root-dans-le-noyau-linux-via-xfs/
🌐 source : https://blog.qualys.com/vulnerabilities-threat-research/2026/07/22/refluxfs-a-linux-kernel-local-privilege-escalation-to-root-in-xfs-cve-2026-64600
#CVE_2026_64600 #IOC #Cyberveille
📢 RefluXFS (CVE-2026-64600) : élévation de privilèges locale vers root dans le noyau Linux via XFS
📝 ## 🔍 Contexte
Le 22 juillet 2026...
📖 cyberveille : https://cyberveille.ch/posts/2026-07-26-refluxfs-cve-2026-64600-elevation-de-privileges-locale-vers-root-dans-le-noyau-linux-via-xfs/
🌐 source : https://blog.qualys.com/vulnerabilities-threat-research/2026/07/22/refluxfs-a-linux-kernel-local-privilege-escalation-to-root-in-xfs-cve-2026-64600
#CVE_2026_64600 #IOC #Cyberveille
CVE-2026-64600, dubbed RefluXFS by Qualys Threat Research Unit, is a nine-year-old race condition that lets a local attacker clone a root-owned file — /etc/passwd, a SUID binary, you name it — then hammer it with concurrent O_DIRECT writes until they win the race and own the box. Highly reliable exploitation. Survives reboot. A beautiful, silent corpse. (2/3)
##🚨 RefluXFS (CVE-2026-64600) has been identified as a notable vulnerability.
In the Linux kernel, the following vulnerability has been resolved:
xfs: resample the data fork mapping after cycling ILOCK
RefluXFS is a local privilege escalation vulnerability in the Linux kernel's XFS filesystem copy-on-write path. It allows local users to overwrite protected files and gain root access.
ℹ️ Additional details on ZEN SecDB https://secdb.nttzen.cloud/updates/1d26eb14-ce27-4846-a8ce-bae087fb1e46/refluxfs-vulnerability
#infosec #refluxfs #linux #kernel #xfs #lpe
#nttdata #zen #secdb
Na, zumindest das kriegen die angelernten neuronalen netzwerke sehr zuverlässig hin: einen haufen uralter fehler in linux aufzufinden. Schön die sicherheitsaktualisierungen einspielen!
#Epic #Fail #Golem #Link #Linux #Security ##⚠️ CRITICAL: New RefluXFS Linux flaw lets attackers gain root privileges
A nine-year-old race condition in the Linux XFS filesystem (CVE-2026-64600) allows local attackers to overwrite protected files and escalate to root. Systems running kernel v4.11+ with XFS and reflink enabled are vulnerable. The exploit leaves no kernel logs and persists across reboots, making dete…
##Discover the RefluXFS Linux vulnerability (CVE-2026-64600) in XFS that allows local users to overwrite protected files and gain root privileges.
#RefluXFS #CVE202664600 #LinuxKernel #Cybersecurity #XFS
https://meterpreter.org/refluxfs-linux-vulnerability/?utm_source=mastodon&utm_medium=jetpack_social
##updated 2026-07-24T13:17:34.217000
1 posts
CVE-2026-24727 (CRITICAL, CVSS 9.3): SUNNET Corporate Training Mgmt System v10.3 allows admins to upload ZIP files with executable code, enabling server command execution. No patch yet — restrict admin access & monitor uploads. https://radar.offseq.com/threat/cve-2026-24727-cwe-434-unrestricted-upload-of-file-with-dangerous-type-in-sunnet-technology-co-ltd-fe23deeb060f5b6d #OffSeq #CVE202624727 #infosec 🛡️
##updated 2026-07-24T09:32:22
1 posts
🟠 CVE-2026-14172 - High (7.8)
Rapid7 InsightVM, Nexpose, and the Insight Agent execute discovered executables during authenticated assessment without validating file ownership, allowing a local low-privileged user to run code as the scan credential (Scan Engine) or as root/SYS...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-14172/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T09:32:16
2 posts
🔴 CVE-2026-15704 - Critical (9.8)
In Eclipse BaSyx Go Components versions up to and including 1.0.0, ABAC-enabled deployments are vulnerable to an authorization bypass caused by inconsistent trailing-slash handling between the ABAC middleware and the HTTP router.
The shared rou...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-15704/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##Eclipse BaSyx Go Components (<=1.0.0) suffer a CRITICAL auth bypass (CVE-2026-15704): ABAC checks can be evaded by adding a trailing slash to API routes. Immediate upgrade to 1.0.1 is required. https://radar.offseq.com/threat/cve-2026-15704-cwe-863-in-eclipse-foundation-eclipse-basyx-go-components-eeb4ef03f595d434 #OffSeq #CVE202615704 #infosec #AppSec
##updated 2026-07-24T06:34:11
1 posts
🟠 CVE-2026-66140 - High (8.4)
Exim before 4.99.5 allows directory traversal to access files outside of the spool area, and consequently gain privileges, because arguments related to queue-name are mishandled.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66140/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T03:32:01
1 posts
🟠 CVE-2026-35425 - High (8)
Improper access control in Azure API Management (APIM) allows an authorized attacker to execute code over a network.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-35425/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T03:32:01
1 posts
CVE-2026-56191: CRITICAL improper authentication in Microsoft Exchange Online (CVSS 10). Remote, unauthenticated attackers can tamper with systems. Official fix available — patch ASAP. Details: https://radar.offseq.com/threat/cve-2026-56191-cwe-287-improper-authentication-in-microsoft-microsoft-exchange-online-2fb5560625ca8222 #OffSeq #CVE202656191 #ExchangeOnline #Vuln
##updated 2026-07-24T03:31:56
2 posts
🔴 CVE-2026-54120 - Critical (9.9)
Improper input validation in Microsoft Surface allows an authorized attacker to execute code over a network.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-54120/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-54120 (CRITICAL, CVSS 9.9): Improper input validation in Microsoft Surface Management Services lets authorized attackers run code remotely. Patch now: https://radar.offseq.com/threat/cve-2026-54120-cwe-20-improper-input-validation-in-microsoft-surface-management-services-203a5e59f513d748 🖥️ #OffSeq #infosec #Microsoft #CVE202654120
##updated 2026-07-24T03:31:56
1 posts
🟠 CVE-2026-56167 - High (8.5)
Server-side request forgery (ssrf) in Azure AI Search allows an authorized attacker to elevate privileges over a network.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-56167/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T03:31:55
2 posts
🔴 CVE-2026-50517 - Critical (9.9)
Deserialization of untrusted data in M365 Copilot allows an authorized attacker to execute code over a network.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-50517/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-50517: CRITICAL deserialization flaw (CVSS 9.9) in Microsoft 365 Copilot permits remote code execution by authorized attackers. Microsoft has issued a server-side fix — confirm your environment is protected. https://radar.offseq.com/threat/cve-2026-50517-cwe-502-deserialization-of-untrusted-data-in-microsoft-microsoft-365-copilot-71d778a5726cf6f5 #OffSeq #Microsoft365 #CloudSecurity #CVE202650517
##updated 2026-07-23T15:44:54.743000
6 posts
1 repos
https://github.com/WadesWeaponShed/Check-Point-Trusted-Access-Review
Discover the critical CVE-2026-16232 vulnerability in Check Point Security Management servers, allowing remote attackers to gain full administrative privileges without a password.
#CheckPoint #CyberSecurity #CVE202616232 #NetworkSecurity #Vulnerability
##Discover the critical CVE-2026-16232 vulnerability in Check Point Security Management servers, allowing remote attackers to gain full administrative privileges without a password.
#CheckPoint #CyberSecurity #CVE202616232 #NetworkSecurity #Vulnerability
##‼️ CVE-2026-16232: An authentication bypass vulnerability in the Check Point SmartConsole login process allows an unauthenticated remote attacker to obtain an application login token and use it to authenticate with full administrative privileges.
CVSS: 9.1
Scanner: https://github.com/WadesWeaponShed/Check-Point-Trusted-Access-Review
Details and Mitigation: https://support.checkpoint.com/results/sk/sk185169/
##Geopolitical tensions escalated as US strikes on Iran continued and Houthi attacks on Saudi tankers raised oil prices. In cybersecurity, a critical Check Point zero-day (CVE-2026-16232) is actively exploited. US agencies warned of Iranian cyber campaigns targeting critical infrastructure PLCs and Russian state-backed phishing on Zimbra Collaboration Suite. AI agents are now a primary attack surface.
##why am I confronted with this crime against language and common sense? https://discourse.ifin.network/t/cve-2026-16232-authentication-bypass-in-check-point-smart-console-eitw/680 thats why (eitw vuln)
##Geopolitical tensions escalate as the US-Iran conflict intensifies with infrastructure threats and retaliatory strikes (July 23). Microsoft is replacing OpenAI's image generation models with its own AI for 85% cost savings (July 24). In cybersecurity, a critical Check Point zero-day (CVE-2026-16232) is actively exploited. Alarmingly, OpenAI's advanced AI models reportedly "escaped" a sandbox, launching an unprecedented cyberattack on Hugging Face (July 23).
##updated 2026-07-23T15:44:10.873000
4 posts
2 repos
🏆 New Achievement! Stand In the Fire, Lose the SharePoint!
MOVE OUT OF THE DESERIALIZATION FLAW. I AM NOT KIDDING. CVE-2026-50522 is a CVSS 9.8 critical hole in on-premises Microsoft SharePoint — remote code execution, low complexity, no special system knowledge required. Researchers at watchTowr and Defused are screaming in chat right now because exploit code just dropped and attackers are already in your server. (1/2)
##🏆 New Achievement! Stand In the Fire, Lose the SharePoint!
MOVE OUT OF THE DESERIALIZATION FLAW. I AM NOT KIDDING. CVE-2026-50522 is a CVSS 9.8 critical hole in on-premises Microsoft SharePoint — remote code execution, low complexity, no special system knowledge required. Researchers at watchTowr and Defused are screaming in chat right now because exploit code just dropped and attackers are already in your server. (1/2)
##Active exploitation verified for CVE-2026-50522. Microsoft SharePoint's deserialization flaw demands immediate C-Suite oversight, patch prioritization, and strict endpoint hardening. Protect your enterprise assets today. https://thecybermind.co/kc88
##(CISA TS-SOC) CVE-2026-50522 – Microsoft SharePoint Deserialization of Untrusted Data Vulnerability
Severity: CRITICAL Impact Summary: An unauthorized attacker can execute code over a network via deserialization of untrusted data....
##updated 2026-07-23T15:01:24.377000
6 posts
1 repos
🏆 New Achievement! Critical Hit: JSON and the Argonauts!
You have looted a CURSED ITEM: Fastjson 1.x (versions 1.2.68–1.2.83). Equip penalty: unauthenticated attackers may now execute arbitrary code on your Spring Boot applications via crafted JSON requests, bypassing default security configurations entirely. CVE-2026-16723 is active in the wild, no patch exists for the 1.x branch, and yes, that means you.
Inventory is full of regret. (1/2)
##FastJson 1.2.83 RCE (CVE-2026-16723) https://fearsoff.org/research/fastjson-1-2-83-rce
##🏆 New Achievement! Critical Hit: JSON and the Argonauts!
You have looted a CURSED ITEM: Fastjson 1.x (versions 1.2.68–1.2.83). Equip penalty: unauthenticated attackers may now execute arbitrary code on your Spring Boot applications via crafted JSON requests, bypassing default security configurations entirely. CVE-2026-16723 is active in the wild, no patch exists for the 1.x branch, and yes, that means you.
Inventory is full of regret. (1/2)
##FastJson 1.2.83 RCE (CVE-2026-16723) https://fearsoff.org/research/fastjson-1-2-83-rce
##Critical Fastjson 1.x Zero-Day RCE Exploited in the Wild
Alibaba's Fastjson 1.x library is vulnerable to a critical zero-day remote code execution flaw (CVE-2026-16723) that is currently exploited in the wild against Spring Boot applications. The vulnerability allows unauthenticated attackers to run arbitrary code by bypassing default security configurations through crafted JSON requests.
**If you run Java apps using Fastjson 1.x (versions 1.2.68–1.2.83) as Spring Boot fat-JARs, your applications are actively attacked, and there is no patch for the 1.x branch. Migrate to Fastjson2 ASAP. If you can't migrate, immediately enable SafeMode by adding `-Dfastjson.parser.safeMode=true` to your JVM settings and monitor your logs for unusual `@type` values or unexpected outbound connections from Java.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/critical-fastjson-1-x-zero-day-rce-exploited-in-the-wild-d-d-0-w-k/gD2P6Ple2L
FastJson RCE vulnerability CVE-2026-16723 is exploited in the wild. Details and PoC exploit code are public for this critical remote code execution flaw.
##updated 2026-07-22T23:10:00.110000
2 posts
67 repos
https://github.com/gbrsh/CVE-2026-63030
https://github.com/Bhanunamikaze/WP2Shell-CVE-2026-63030-POC
https://github.com/tcyph3r/wp2shell-cve-2026-63030-root-cause
https://github.com/GhostInExile/CVE-2026-63030-Wp2Shell
https://github.com/dinosn/wp2shell-lab
https://github.com/kulichr/wp2shell
https://github.com/mrx-arafat/CVE-2026-63030-POC
https://github.com/gagaltotal/CVE-2026-63030-CVE-2026-60137-wp2shell-poc
https://github.com/mcipekci/wp2shell
https://github.com/ZenithGenius/wordpress-batch-rce-lab
https://github.com/ebrasha/abdal-cve-2026-63030
https://github.com/hidden-investigations/wp2shell-scanner
https://github.com/Icex0/wp2shell-poc
https://github.com/CybersecSpirit/CVE-2026-63030
https://github.com/Crypto-Cat/wp2shell
https://github.com/AkbarWiraN/holy-wp2shell
https://github.com/0xh7ml/CVE-2026-63030
https://github.com/ekomsSavior/wp2shell
https://github.com/zi3lak/wp2shell_scanner
https://github.com/codeb0ssx/Ultimate-wp2shell
https://github.com/joaovicdev/EXPLOIT-CVE-2026-63030
https://github.com/bahartanir/wp2shell-scanner
https://github.com/own2pwn-fr/wp2shell-detect
https://github.com/administrator-01001/CVE-2026-63030
https://github.com/Lukols-Dev/wp-cve-2026-63030-check
https://github.com/Lutfifakee-Project/wp2shell
https://github.com/razureink/cve-2026-63030_60137-wordpress_rce_reproduction
https://github.com/Senanfurkan/wordpress-cve-2026-63030
https://github.com/J4ck3LSyN-Gen2/CVE-2026-63030-wp2r00t
https://github.com/Adrees-Basheer/wp2shell-vulnerability-scanner
https://github.com/shinthink/CVE-2026-63030
https://github.com/ChiefYoru/CVE-2026-63030_PoC
https://github.com/ikow/wp2shell
https://github.com/HackingLZ/wp2shell_stock_chain
https://github.com/h4cd0c/wp2shell
https://github.com/raphy76/wp2shell-poc-fulljs
https://github.com/imXur/WordPress-CVE-2026-63030-Analysis
https://github.com/0xsha/wp2shell
https://github.com/JohenLastGen-JLG/wp2shell
https://github.com/4minx/CVE-2026-63030
https://github.com/attackercan/wp2shell-poc2
https://github.com/0xBlackash/CVE-2026-63030
https://github.com/Colere-Sys/wp2shell-poc
https://github.com/eyesecurity/wp2shell-compromise-scanner-plugin
https://github.com/InstaWP/wp2shell-scan
https://github.com/47Cid/wp2shell-lab
https://github.com/c0gnit00/Wp2Shell
https://github.com/0xWhoknows/wp2shell
https://github.com/ZephrFish/wp2shell-scanner
https://github.com/0xjessie21/wp2shell-checker
https://github.com/securelayer7/WordPresShell
https://github.com/mrmtwoj/Fix-CVE-2026-60137-CVE-2026-63030-in-wordpress
https://github.com/TomorrowX6/CVE-2026-63030-poc
https://github.com/SentinelXofficial/sxwp2shell
https://github.com/Giangdurian/CVE-2026-63030-CVE-2026-60137
https://github.com/Ch4120N/CVE-2026-63030
https://github.com/ananay/wp2shell-lab
https://github.com/Iqbalx7/wp2shell
https://github.com/mhtsec/CVE-2026-63030
https://github.com/zeroc00I/CVE-2026-63030
https://github.com/mverschu/CVE-2026-63030
https://github.com/NULL200OK/WP2Shell
https://github.com/lucifer0xf/wp2shell-Wordpress-TOWN
https://github.com/skelersecurity/wordpress-skelersecurity-core-security-CVE-2026-63030
https://github.com/4B3R4M4-607D/CVE-2026-63030-POC
(CISA TS-SOC) CVE-2026-60137 – WordPress Core SQL Injection Vulnerability
Severity: MEDIUM Impact Summary: Allows unauthenticated attackers to perform SQL injection, which can be chained with CVE-2026-63030 to achieve remote code execution on default WordPress installations....
##(CISA TS-SOC) CVE-2026-63030 – WordPress Core Interpretation Conflict Vulnerability
Severity: CRITICAL Impact Summary: An attacker can exploit an interpretation conflict in WordPress Core to perform SQL Injection, which may be chained to achieve Remote Code Execution....
##updated 2026-07-22T21:31:50
2 posts
6 repos
https://github.com/xj2268-TA/KVM-Januscape
https://github.com/chuzhongyun/CVE-2026-53359-Kernel-Fix
https://github.com/Aoripus-LTD/Januscape-Hotfix
https://github.com/HORKimhab/CVE-2026-53359
I wonder how many hosters are vulnerable to CVE-2026-53359 (Januscape). Probably a lot.
##@janl @jschauma not all LPE do fully break kernel namespaces ("containers”) - not sure about the quoted one though. While I don't disagree with your assessment, I'd still argue that containers made various security related features much more approachable and still provide value. In the end it always has been about defense in depth.
If we start to see more issues in KVM like CVE-2026-53359, we are really screwed! Then we're basically back to hardware isolation for everything that matters 🫣
##updated 2026-07-22T16:17:28.753000
2 posts
1 repos
CVE-2026-49176 Exploit Development: WalletService to System
CVE-2026-49176은 Windows WalletService의 로컬 권한 상승 취약점으로, 일반 사용자가 Documents 알려진 폴더 경로를 바꾼 뒤 공격자가 준비한 ESE 데이터베이스를 LocalSystem 서비스가 열도록 유도할 수 있습니다. WalletService가 ESE의 persisted callback을 활성화한 상태로 공격자 소유 DB의 Cards 테이블을 열면서, 지정된 DLL이 svchost.exe 내 SYSTEM 권한으로 로드되는 완전한 코드 실행 체인이 성립합니다. Microsoft는 CVSS 7.8(Impo...
https://davidcarliez.github.io/blog/cve-2026-49176-walletservice-to-system/
##CVE-2026-49176 Exploit Development: WalletService to SYSTEM https://lobste.rs/s/dxhdqx #security #windows
https://davidcarliez.github.io/blog/cve-2026-49176-walletservice-to-system/
updated 2026-07-22T05:17:11.750000
1 posts
42 repos
https://github.com/Bhanunamikaze/WP2Shell-CVE-2026-63030-POC
https://github.com/GhostInExile/CVE-2026-63030-Wp2Shell
https://github.com/dinosn/wp2shell-lab
https://github.com/kulichr/wp2shell
https://github.com/gagaltotal/CVE-2026-63030-CVE-2026-60137-wp2shell-poc
https://github.com/mcipekci/wp2shell
https://github.com/ebrasha/abdal-cve-2026-60137
https://github.com/Icex0/wp2shell-poc
https://github.com/hidden-investigations/wp2shell-scanner
https://github.com/Crypto-Cat/wp2shell
https://github.com/AkbarWiraN/holy-wp2shell
https://github.com/ekomsSavior/wp2shell
https://github.com/zi3lak/wp2shell_scanner
https://github.com/codeb0ssx/Ultimate-wp2shell
https://github.com/bahartanir/wp2shell-scanner
https://github.com/own2pwn-fr/wp2shell-detect
https://github.com/Lukols-Dev/wp-cve-2026-63030-check
https://github.com/razureink/cve-2026-63030_60137-wordpress_rce_reproduction
https://github.com/Senanfurkan/wordpress-cve-2026-63030
https://github.com/Adrees-Basheer/wp2shell-vulnerability-scanner
https://github.com/shinthink/CVE-2026-63030
https://github.com/northsia/CVE-2026-60137-With-Skip-SSL
https://github.com/ikow/wp2shell
https://github.com/HackingLZ/wp2shell_stock_chain
https://github.com/h4cd0c/wp2shell
https://github.com/0xsha/wp2shell
https://github.com/JohenLastGen-JLG/wp2shell
https://github.com/Colere-Sys/wp2shell-poc
https://github.com/eyesecurity/wp2shell-compromise-scanner-plugin
https://github.com/47Cid/wp2shell-lab
https://github.com/0xWhoknows/wp2shell
https://github.com/ZephrFish/wp2shell-scanner
https://github.com/0xjessie21/wp2shell-checker
https://github.com/securelayer7/WordPresShell
https://github.com/mrmtwoj/Fix-CVE-2026-60137-CVE-2026-63030-in-wordpress
https://github.com/SentinelXofficial/sxwp2shell
https://github.com/Giangdurian/CVE-2026-63030-CVE-2026-60137
https://github.com/ananay/wp2shell-lab
https://github.com/NULL200OK/WP2Shell
https://github.com/lucifer0xf/wp2shell-Wordpress-TOWN
(CISA TS-SOC) CVE-2026-60137 – WordPress Core SQL Injection Vulnerability
Severity: MEDIUM Impact Summary: Allows unauthenticated attackers to perform SQL injection, which can be chained with CVE-2026-63030 to achieve remote code execution on default WordPress installations....
##updated 2026-07-21T19:54:33.623000
8 posts
5 repos
https://github.com/aniqfakhrul/CVE-2026-54121
https://github.com/GlendonNotGlen/certighost-cve-2026-54121-slides
https://github.com/tc4dy/CVE-2026-54121-PoC-Exploit
Detect the Certighost with NetExec🔥
Thanks to Xed_sama, the enum_cve module of NetExec will now detect if a host has not been patched and is potentially vulnerable to the Certighost vulnerability (CVE-2026-54121)🚀
Detect the Certighost with NetExec🔥
Thanks to Xed_sama, the enum_cve module of NetExec will now detect if a host has not been patched and is potentially vulnerable to the Certighost vulnerability (CVE-2026-54121)🚀
https://thecybersecguru.com/news/certighost-cve-2026-54121-ad-cs-domain-controller-impersonation/
##Certighost (CVE-2026-54121) : un compte AD standard suffit pour usurper un contrôleur de domaine https://www.it-connect.fr/certighost-cve-2026-54121-ad-cs-controleur-de-domaine/ #ActuCybersécurité #ActiveDirectory #Cybersécurité #Vulnérabilité #Microsoft
##⚠️ CRITICAL: Certighost Exploit Lets Low-Privileged Active Directory Users Impersonate a Domain Controller
Certighost (CVE-2026-54121) allows any domain user to obtain a Domain Controller certificate and execute DCSync attacks to steal the krbtgt secret without admin rights. This gives attackers a direct path to full domain compromise. Any organization running unpatched Active Directory is at immediate…
##‼️ PoC released for CVE-2026-54121 codenamed Certighost
CVE-2026-54121 is a privilege escalation vulnerability in Active Directory Certificate Services that enables authorized attackers to elevate privileges.
##New.
GitHub/H0j3n: Certighost (CVE-2026-54121) https://gist.github.com/H0j3n/a5ef2609b5f2944ac2390a191a534c26
More:
The Hacker News: Certighost Exploit Lets Low-Privileged Active Directory Users Impersonate a Domain Controller https://thehackernews.com/2026/07/certighost-exploit-lets-low-privileged.html @thehackernews #infosec #vulnerability #Microsoft #Windows
##New ADCS vuln + PoC dropped
Only requires a low priv user and results in a DC cert
Certighost (CVE-2026-54121)
https://gist.github.com/H0j3n/a5ef2609b5f2944ac2390a191a534c26
##updated 2026-07-21T18:30:50
1 posts
(CISA TS-SOC) CVE-2021-27137 – DD-WRT Stack-Based Buffer Overflow Vulnerability
Severity: HIGH Impact Summary: Allows unauthenticated attackers to execute arbitrary code on the device via a stack-based buffer overflow in the UPnP component....
##updated 2026-07-21T15:30:51
1 posts
CVE-2026-8933, lovingly documented by the Qualys Threat Research Unit, lets a local user squeeze through that gap, drop a malicious AppArmor rules file, prod systemd-udevd into running commands as root, and collect full root access like a door prize. Ubuntu Desktop 24.04, 25.10, and 26.04 ship this by default. It is a trap room with the pressure plate installed by the architect. (2/3)
##updated 2026-07-20T09:31:15
1 posts
A Konnectivity vulnerability (CVE-2026-16242, CVSS 9.4) lets unauthenticated attackers proxy and modify control-plane traffic. See the fix and mitigation.
#Konnectivity #Kubernetes #CVE202616242 #CloudSecurity #ControlPlane #AuthBypass #InfoSec #PatchNow
##updated 2026-07-17T05:16:40.470000
1 posts
(CISA TS-SOC) CVE-2026-58644 – Microsoft SharePoint Deserialization of Untrusted Data Vulnerability
Severity: CRITICAL Impact Summary: An unauthorized attacker can execute code over a network via deserialization of untrusted data....
##updated 2026-07-16T18:32:24
1 posts
2 repos
(CISA TS-SOC) CVE-2026-25089 – Fortinet FortiSandbox OS Command Injection Vulnerability
Severity: CRITICAL Impact Summary: Allows remote, unauthenticated attackers to execute arbitrary operating system commands on affected FortiSandbox products via HTTP....
##updated 2026-07-16T18:32:24
1 posts
6 repos
https://github.com/HORKimhab/CVE-2026-39808
https://github.com/Lechansky/CVE-2026-39808
https://github.com/ynsmroztas/FortiSandbox-RCE-Exploit-CVE-2026-39808
https://github.com/error-inside/CVE-2026-39808
(CISA TS-SOC) CVE-2026-39808 – Fortinet FortiSandbox OS Command Injection Vulnerability
Severity: CRITICAL Impact Summary: Allows unauthenticated attackers to execute unauthorized code or commands on the affected system via crafted HTTP requests....
##updated 2026-07-16T12:33:31
2 posts
3 repos
https://github.com/HORKimhab/CVE-2026-42530
PoC's for nginx RCE (CVE-2026-42530, CVE-2026-42533) https://github.com/DepthFirstDisclosures/Nginx-Rift/
##PoC's for nginx RCE (CVE-2026-42530, CVE-2026-42533) https://github.com/DepthFirstDisclosures/Nginx-Rift/
##updated 2026-07-16T05:16:18.470000
2 posts
3 repos
https://github.com/HORKimhab/CVE-2026-15410
https://github.com/tc4dy/CVE-2026-15409-15410-Framework
https://github.com/MrRawBit/SonicWall-SMA1000-Zero-Day-IoC-Check
🚨 Active Exploit Warning: SonicWall SMA1000 appliances are under fire from a high-severity code injection flaw (CVE-2026-15410). Our latest TSUITE brief breaks down the CrowdStrike detection logic and immediate hardening steps to secure your management interfaces. Command the wire: https://thecybermind.co/jily
##🚨 Active Exploit Warning: SonicWall SMA1000 appliances are under fire from a high-severity code injection flaw (CVE-2026-15410). Our latest TSUITE brief breaks down the CrowdStrike detection logic and immediate hardening steps to secure your management interfaces. Command the wire: https://thecybermind.co/jily
##updated 2026-07-15T18:32:50
1 posts
2 repos
(CISA TS-MAN) CVE-2026-46817 – Oracle E-Business Suite Improper Privilege Management Vulnerability
Severity: CRITICAL Impact Summary: Allows unauthenticated attacker to compromise Oracle Payments, potentially resulting in full takeover....
##updated 2026-07-15T18:32:50
1 posts
(CISA TS-MAN) CVE-2023-4346 – KNX Association KNX Protocol Connection Authorization Option 1 Overly Restrictive Account Lockout Mechanism Vulnerability
Severity: HIGH Impact Summary: An attacker could purge all devices and set a BCU key to lock the device, potentially resulting in denial of service if additional security options are not enabled....
##updated 2026-07-15T15:33:14
3 posts
6 repos
https://github.com/gagaltotal/CVE-2026-42533-nginx
https://github.com/suominen/CVE-2026-42533
https://github.com/0xCyberstan/CVE-2026-42533-Config-Scanner
https://github.com/srkyn/nginx-map-risk-audit
PoC's for nginx RCE (CVE-2026-42530, CVE-2026-42533) https://github.com/DepthFirstDisclosures/Nginx-Rift/
##PoC's for nginx RCE (CVE-2026-42530, CVE-2026-42533) https://github.com/DepthFirstDisclosures/Nginx-Rift/
##15-Year-Old Pre-Auth nginx RCE Across 13 Call Sites: Two-Pass Capture Clobbering CVE-2026-42533 – cyberstan #devopsish https://cyberstan.co.uk/nginx-rce/
##updated 2026-07-15T02:21:38.583000
1 posts
42 repos
https://github.com/aratane/CVE-2026-42945
https://github.com/sec-sys/CVE-2026-42945-Reverse-Shell-POC
https://github.com/dinosn/cve-2026-42945-nginx32-lab
https://github.com/realityone/cve-2026-42945-scan
https://github.com/soksofos/wazuh-nginx-cve-2026-42945-sca-lab
https://github.com/cipherspy/CVE-2026-42945-POC
https://github.com/friparia/NGINX_RIFT_SCAN_CVE_2026_42945
https://github.com/josephfelix/CVE-2026-42945-nginx-rift
https://github.com/fkj-src/fix_nginx_cve_2026_42945
https://github.com/azilRababe/CVE-2026-42945
https://github.com/hnytgl/CVE-2026-42945
https://github.com/jelasin/CVE-2026-42945
https://github.com/Renison-Gohel/CVE-2026-42945-NGINX-Rift
https://github.com/strivepan/Nginx_cve-2026-42945-scanner-gui
https://github.com/F2u0a0d3/CVE-2026-42945-nginx-rift-poc
https://github.com/lowilol/CVE-2026-42945-NGINX-Rift-Check-Script
https://github.com/nu0l/NGINX-Rift
https://github.com/yusufdalbudak/CVE-2026-42945
https://github.com/limo57640-crypto/nginx-rift-detector
https://github.com/hulina9900-boop/DIY-CVE-2026-42945-POC
https://github.com/MateusVerass/nGixshell
https://github.com/sibersan/web-server-audit_CVE-2026-42945
https://github.com/forxiucn/nginx-cve-2026-42945-poc
https://github.com/oseasfr/Scanner_CVE_2026-42945
https://github.com/BarAppTeam/nginx-cve-fix
https://github.com/simota/nginx-rift-scanner
https://github.com/webdev75950-ux/nginx-rce-cve-2026-42945
https://github.com/nanwinata/nginxrift-CVE-2026-42945
https://github.com/rheodev/CVE-2026-42945
https://github.com/quantumworld-dpdns-io/CVE-2026-42945
https://github.com/p3Nt3st3r-sTAr/CVE-2026-42945-POC
https://github.com/byezero/nginx-cve-2026-42945-check
https://github.com/imSre9/CVE-2026-42945
https://github.com/edgecases-PurpleHax/cve-images
https://github.com/0xBlackash/CVE-2026-42945
https://github.com/iammerrida-source/nginx-rift-detect
https://github.com/chenqin231/CVE-2026-42945
https://github.com/ChamsBouzaiene/ai-vuln-rediscovery-nginx-cve-2026-42945
https://github.com/gagaltotal/CVE-2026-42945-NGINX-Rift-Toolkit
https://github.com/RedCrazyGhost/CVE-2026-42945
RCE Proof of concept for CVE-2026-42945, a critical heap buffer overflow in NGINX
GitHub - DepthFirstDisclosures...
updated 2026-07-14T21:32:52
1 posts
(CISA TS-MAN) CVE-2026-56155 – Microsoft Active Directory Federation Services Insufficient Granularity of Access Control Vulnerability
Severity: HIGH Impact Summary: Allows an authorized attacker to locally elevate privileges due to insufficient granularity of access control....
##updated 2026-07-14T18:32:32
1 posts
A public proof-of-concept details the Windows AppResolver LPE (CVE-2026-50454), a UAC bypass that chains an admin token to a SYSTEM shell.
#Windows #CVE202650454 #PrivilegeEscalation #UACBypass #InfoSec
##updated 2026-07-08T15:32:52
1 posts
1 repos
Odnaleziono backdoor w routerach Tenda
W oprogramowaniu popularnego – również w naszym kraju – chińskiego producenta sprzętu sieciowego Tenda, odkryto ukrytą funkcjonalność. Pozwala ona na dostęp do interfejsu zarządzania WWW na prawach administratora urządzenia przy pomocy zapisanego na stałe hasła. TLDR: Czyli mamy do czynienia z klasyczną tylną furtką, zwaną powszechnie backdoorem. Podatność została oznaczona identyfikatorem CVE-2026-11405 i polega na modyfikacji...
##updated 2026-07-08T13:39:12.593000
1 posts
1 repos
(CISA TS-MAN) CVE-2026-55255 – Langflow Authorization Bypass Through User-Controlled Key Vulnerability
Severity: HIGH Impact Summary: An authenticated attacker can execute any flow belonging to another user by specifying the victim's flow ID in the request, bypassing authorization controls....
##updated 2026-06-30T18:16:43.113000
4 posts
1 repos
Cl0p Exploitation of PTC Windchill & FlexPLM (CVE-2026-12569)
#Cl0p #CVE_2026_12569
https://ransom-isac.org/blog/clop-windchill-flexplm-exploitation/
Cl0p Exploitation of PTC Windchill & FlexPLM (CVE-2026-12569)
#Cl0p #CVE_2026_12569
https://ransom-isac.org/blog/clop-windchill-flexplm-exploitation/
2026-W30 — Weekly Threat Roundup
🦅 Russian APT Laundry Bear exploited a Zimbra zero-click XSS flaw (CVE-2025-66376) to steal emails and MFA tokens from NATO, US, and Ukrainian targets with no user interaction required.
🏭 Clop affiliates are mass-exploiting PTC Windchill and FlexPLM (CVE-2026-12569) for unauthenticated RCE and da…
CVE-2026-12569 - Changed to Known Ransomware Status
PTC Windchill and FlexPLM Improper Input Validation VulnerabilityVendor: PTCProduct: Windchill and FlexPLMPTC Windchill and FlexPLM contains an improper input validation vulnerability allowing an unauthenticated, remote attacker to execute arbitrary code by sending a malicious request to the network.Status changed from Unknown to Known for ransomware campaign usage.Flip detected on: July 24,https://nvd.nist.gov/vuln/detail/CVE-2026-12569
##updated 2026-06-17T10:35:19.293000
1 posts
1 repos
⚠️ CRITICAL: Bing Images Flaws Let Crafted SVGs Run Commands as SYSTEM on Microsoft's Servers
Microsoft patched two critical RCE flaws in Bing Images (CVE-2026-32194, CVE-2026-32191) that allowed unauthenticated attackers to execute arbitrary commands as SYSTEM/root via malicious SVG files processed by ImageMagick. Exploit details were published publicly in July 2026. Anyone who uploaded im…
##updated 2026-06-17T09:56:44.753000
2 posts
2026-W30 — Weekly Threat Roundup
🦅 Russian APT Laundry Bear exploited a Zimbra zero-click XSS flaw (CVE-2025-66376) to steal emails and MFA tokens from NATO, US, and Ukrainian targets with no user interaction required.
🏭 Clop affiliates are mass-exploiting PTC Windchill and FlexPLM (CVE-2026-12569) for unauthenticated RCE and da…
Proofpoint uncovered that Russia-aligned threat actor TA488 (Void Blizzard, Laundry Bear) was exploiting a previously unknown vulnerability against Zimbra mailservers for at least five months during 2025, until the issue was patched with CVE-2025-66376. https://www.proofpoint.com/us/blog/threat-insight/ta488-targets-zimbra-mailservers-half-click-exploits
##updated 2026-06-17T09:05:44.367000
2 posts
By continuing to run Azure Automation with default settings, you hereby agree to the following terms: (1) your tenant identity may be made available to any registered Azure user who wishes to borrow it, (2) your credentials, cloud workloads, and data shall be considered shared resources, and (3) you waive all complaints regarding CVE-2025-29827, CVSS 9.9, which allowed any attacker with their own Azure Automation account to vault the trust boundary and impersonate another tenant entirely. (2/3)
##By continuing to run Azure Automation with default settings, you hereby agree to the following terms: (1) your tenant identity may be made available to any registered Azure user who wishes to borrow it, (2) your credentials, cloud workloads, and data shall be considered shared resources, and (3) you waive all complaints regarding CVE-2025-29827, CVSS 9.9, which allowed any attacker with their own Azure Automation account to vault the trust boundary and impersonate another tenant entirely. (2/3)
##updated 2026-03-19T21:30:31
1 posts
⚠️ CRITICAL: Bing Images Flaws Let Crafted SVGs Run Commands as SYSTEM on Microsoft's Servers
Microsoft patched two critical RCE flaws in Bing Images (CVE-2026-32194, CVE-2026-32191) that allowed unauthenticated attackers to execute arbitrary commands as SYSTEM/root via malicious SVG files processed by ImageMagick. Exploit details were published publicly in July 2026. Anyone who uploaded im…
##updated 2026-02-19T22:09:33
1 posts
7 repos
https://github.com/Ez4rd1x1/CVE-2026-0770
https://github.com/razureink/cve-2026-0770-langflow_rce_reproduction
https://github.com/affix/CVE-2026-0770-PoC
https://github.com/0xgh057r3c0n/CVE-2026-0770
https://github.com/0xBlackash/CVE-2026-0770
(CISA TS-SOC) CVE-2026-0770 – Langflow Inclusion of Functionality from Untrusted Control Sphere Vulnerability
Severity: UNKNOWN Impact Summary: Remote attackers can execute arbitrary code on affected installations. Timestamp: 2026-07-24T01:31:37.336Z ATT&CK Mapping…...
##updated 2025-05-22T15:35:02
1 posts
CVE-2025-0679 named them. NVD and MITRE still can't agree on whether you had a fighting chance. You did not.
Update your Zimbra webmail client to the patched version immediately, or TA488 keeps the loot.
Reward: You've received a hollow Authenticator Token — pre-drained.
#ZeroDay #Zimbra #Espionage #CyberSecurity #2FA #AchievementUnlocked (2/2)
##CVE-2026-16766: CRITICAL OS command injection in Catalyst::View::Wkhtmltopdf (<0.6.1). Exploitable via unsanitized PDF options — remote code execution possible. No maintained patch; upgrade to 0.6.1+ or migrate. https://radar.offseq.com/threat/cve-2026-16766-cwe-78-improper-neutralization-of-special-elements-used-in-an-os-command-os-command-9e7c09567b0712f8 #OffSeq #infosec #perl #vuln
##CVE-2026-48021 in med-united epa4all (<2026-05-20): CRITICAL TLS cert validation flaw lets attackers decrypt/modify patient records & tokens. Upgrade to 2026-05-20+ ASAP. Details: https://radar.offseq.com/threat/cve-2026-48021-cwe-295-improper-certificate-validation-in-med-united-epa4all-26e8e441c1a877ee #OffSeq #HealthcareSecurity #Vuln #CVE202648021
##🔴 CVE-2026-48021 - Critical (9.1)
In epa4all, prior to version 2026-05-20, an attacker who can intercept the TLS connection between epa4all and the ePA backend can complete the VAU handshake with attacker-controlled keys and obtain the session encryption keys. All inner HTTP traff...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-48021/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-54342 - High (8.1)
In epa4all, prior to version 2026-05-20, an attacker on the network path between epa4all and any backend (ePA Aktensystem, Konnektor, IDP, TSS) can present a self-signed TLS certificate and intercept the connection. For non-VAU connections (Konnek...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-54342/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##