##
Updated at UTC 2026-07-25T19:50:33.452078
| CVE | CVSS | EPSS | Posts | Repos | Nuclei | Updated | Description |
|---|---|---|---|---|---|---|---|
| CVE-2026-16766 | 0 | 0.67% | 2 | 0 | 2026-07-25T19:16:51.987000 | Catalyst::View::Wkhtmltopdf versions before 0.6.1 for Perl allow shell command i | |
| CVE-2026-64374 | None | 0.22% | 1 | 0 | 2026-07-25T12:31:39 | In the Linux kernel, the following vulnerability has been resolved: sched/rt: H | |
| CVE-2026-64324 | None | 0.21% | 1 | 0 | 2026-07-25T12:31:38 | In the Linux kernel, the following vulnerability has been resolved: udf: valida | |
| CVE-2026-66012 | 10.0 | 0.00% | 4 | 0 | 2026-07-25T11:17:19.053000 | SiYuan before v3.7.2 contains a missing authorization vulnerability in the POST | |
| CVE-2026-64415 | 0 | 0.21% | 1 | 0 | 2026-07-25T10:17:25.343000 | In the Linux kernel, the following vulnerability has been resolved: mm/swap: ad | |
| CVE-2026-64399 | 0 | 0.21% | 1 | 0 | 2026-07-25T10:17:23.397000 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: add | |
| CVE-2026-64368 | 0 | 0.21% | 1 | 0 | 2026-07-25T10:17:19.613000 | In the Linux kernel, the following vulnerability has been resolved: mm/slab: do | |
| CVE-2026-64337 | 0 | 0.22% | 1 | 0 | 2026-07-25T10:17:15.590000 | In the Linux kernel, the following vulnerability has been resolved: usb: mtu3: | |
| CVE-2026-64263 | 0 | 0.21% | 1 | 0 | 2026-07-25T10:17:06.460000 | In the Linux kernel, the following vulnerability has been resolved: fuse-uring: | |
| CVE-2026-10818 | 8.1 | 0.42% | 4 | 0 | 2026-07-25T07:17:08.880000 | The WPForms Pro plugin for WordPress is vulnerable to Arbitrary File Upload in a | |
| CVE-2026-66035 | 7.5 | 0.32% | 1 | 0 | 2026-07-25T05:16:42.900000 | libssh2 through 1.11.1, fixed in commit 42e33d8, contains a pre-authentication h | |
| CVE-2026-66034 | 7.5 | 0.25% | 1 | 0 | 2026-07-25T05:16:42.773000 | libssh2 through 1.11.1, fixed in commit a13bb6c, contains a missing bounds check | |
| CVE-2026-66032 | 8.8 | 0.29% | 1 | 0 | 2026-07-25T05:16:42.643000 | libssh2 through 1.11.1, fixed in commit 5e47761, contains a double-free vulnerab | |
| CVE-2026-56163 | 10.0 | 0.92% | 3 | 0 | 2026-07-25T05:16:35.420000 | Missing authentication for critical function in Microsoft Azure Kubernetes Servi | |
| CVE-2026-66374 | 8.1 | 0.39% | 2 | 1 | 2026-07-25T03:30:55 | Knot Resolver before 6.4.1 allows remote code execution via a heap-based buffer | |
| CVE-2026-66373 | 7.5 | 0.47% | 2 | 0 | 2026-07-25T01:16:26.277000 | Redis before 8.8.0, in the unusual case where an authenticated attacker can exec | |
| CVE-2026-60134 | 8.8 | 0.32% | 1 | 0 | 2026-07-25T00:31:53 | Weintek cMT3092X HMI allows a non-privileged user to modify cookies to gain elev | |
| CVE-2025-71408 | 7.8 | 0.16% | 1 | 0 | 2026-07-25T00:31:53 | NLTK (Natural Language Toolkit) before version 3.9.3 contains an eval injection | |
| CVE-2026-61892 | 8.8 | 0.27% | 1 | 0 | 2026-07-24T23:16:51.333000 | Weintek cMT3092X HMI allows a non-privileged user to modify tokens to escalate p | |
| CVE-2026-61884 | 9.8 | 0.66% | 4 | 0 | 2026-07-24T22:16:50.963000 | The web management interface of Tycon Systems TPDIN-Monitor-WEB2 does not perf | |
| CVE-2026-14603 | 7.5 | 0.24% | 2 | 0 | 2026-07-24T21:33:30 | The WowOptin: Next-Gen Popup Maker WordPress plugin before 1.4.38 does not have | |
| CVE-2026-45815 | 7.5 | 0.37% | 2 | 0 | 2026-07-24T21:33:30 | Reachable Assertion vulnerability in Apache NimBLE. A specially crafted ATT Read | |
| CVE-2026-45813 | 8.8 | 0.27% | 2 | 0 | 2026-07-24T21:33:30 | Out-of-bounds Write, Integer Underflow (Wrap or Wraparound) vulnerability in Apa | |
| CVE-2026-66143 | 7.5 | 0.33% | 2 | 0 | 2026-07-24T21:33:30 | It is possible to bypass the maximum number of normalized policy alternatives th | |
| CVE-2026-12981 | 7.5 | 0.30% | 3 | 0 | 2026-07-24T21:33:29 | The CAFEHAUS API WordPress plugin through 1.0.0 does not have any authentication | |
| CVE-2026-66142 | 7.5 | 0.33% | 2 | 0 | 2026-07-24T21:33:29 | Apache Neethi is vulnerable to uncontrolled recursion when parsing policies that | |
| CVE-2026-62835 | 9.3 | 1.03% | 4 | 0 | 2026-07-24T21:32:28 | Improper authorization in Azure Portal allows an unauthorized attacker to disclo | |
| CVE-2026-66039 | 8.8 | 0.42% | 1 | 0 | 2026-07-24T21:32:28 | FFmpeg through 8.1.2, fixed in commit aafb5c6, contains a signed integer overflo | |
| CVE-2026-66041 | 8.8 | 0.42% | 1 | 0 | 2026-07-24T21:32:28 | FFmpeg 7.0 through 8.1.2, fixed in commit 4da9812, contains a heap out-of-bounds | |
| CVE-2026-17107 | 8.5 | 0.23% | 1 | 0 | 2026-07-24T21:32:28 | A flaw was found in the cluster-proxy service-proxy component used in Red Hat Ad | |
| CVE-2026-12877 | 9.1 | 0.24% | 2 | 0 | 2026-07-24T20:48:39.923000 | The Project Management, Bug and Issue Tracking Plugin WordPress plugin before 5 | |
| CVE-2026-12497 | 7.5 | 0.23% | 2 | 0 | 2026-07-24T20:48:39.923000 | The Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User | |
| CVE-2026-56167 | 8.5 | 0.38% | 2 | 0 | 2026-07-24T20:48:18.380000 | Server-side request forgery (ssrf) in Azure AI Search allows an authorized attac | |
| CVE-2026-16804 | 8.3 | 0.29% | 2 | 0 | 2026-07-24T20:47:41.790000 | Use after free in Input in Google Chrome prior to 150.0.7871.186 allowed a remot | |
| CVE-2026-45811 | 7.5 | 0.25% | 2 | 0 | 2026-07-24T20:47:41.790000 | Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerabi | |
| CVE-2026-45816 | 7.5 | 0.38% | 2 | 0 | 2026-07-24T20:47:41.790000 | NULL Pointer Dereference vulnerability in Apache NimBLE in LE Long Term Key Requ | |
| CVE-2026-66144 | 7.5 | 0.33% | 2 | 0 | 2026-07-24T20:47:41.790000 | Although remote policy references are not retrieved during policy normalization, | |
| CVE-2026-8789 | 8.1 | 0.22% | 1 | 0 | 2026-07-24T20:45:45.697000 | The Easy Appointments plugin for WordPress is vulnerable to unauthorized modific | |
| CVE-2026-66040 | 8.8 | 0.55% | 1 | 0 | 2026-07-24T20:18:21.063000 | FFmpeg through 8.1.2, fixed in commit b506faf, contains a heap out-of-bounds wri | |
| CVE-2026-66036 | 8.8 | 0.29% | 1 | 0 | 2026-07-24T20:18:20.433000 | FFmpeg through 8.1.2, fixed in commit 5d7112c, contains a heap out-of-bounds wri | |
| CVE-2026-49745 | 7.8 | 0.11% | 2 | 0 | 2026-07-24T18:32:33 | Kernel software installed and running inside a Guest VM may post improper comman | |
| CVE-2026-49743 | 7.8 | 0.11% | 2 | 0 | 2026-07-24T18:32:33 | Software installed and run as a non-privileged user may conduct improper GPU sys | |
| CVE-2026-49744 | 7.8 | 0.11% | 2 | 0 | 2026-07-24T18:32:32 | Kernel software installed and running inside a Guest VM may post improper comman | |
| CVE-2026-16801 | 8.8 | 0.29% | 2 | 0 | 2026-07-24T18:32:32 | Improper control of generation of code ('Code Injection') in the variables featu | |
| CVE-2026-65709 | 8.3 | 0.22% | 1 | 0 | 2026-07-24T18:31:41 | sysPass through version 3.2.11 contains a missing object-level authorization vul | |
| CVE-2026-66033 | 7.5 | 0.39% | 1 | 0 | 2026-07-24T18:31:41 | libssh2 through 1.11.1, fixed in commit a2ed82d, contains a pre-authentication i | |
| CVE-2026-65708 | 8.1 | 0.22% | 1 | 0 | 2026-07-24T18:31:37 | sysPass through version 3.2.11 contains an insecure direct object reference vuln | |
| CVE-2026-66027 | 8.3 | 0.26% | 1 | 0 | 2026-07-24T18:31:37 | Suna before 0.9.102 contains a broken access control vulnerability in the messag | |
| CVE-2026-16870 | 8.8 | 0.36% | 1 | 0 | 2026-07-24T18:16:52.770000 | Multiple security vulnerabilities in Snowflake libsnowflakeclient versions prior | |
| CVE-2026-16800 | 8.8 | 0.29% | 2 | 0 | 2026-07-24T18:16:52.303000 | Improper control of generation of code ('Code Injection') in the schedule featur | |
| CVE-2026-16807 | 8.8 | 0.29% | 2 | 0 | 2026-07-24T15:34:00 | Out of bounds write in Codecs in Google Chrome prior to 150.0.7871.186 allowed a | |
| CVE-2026-16806 | 8.8 | 0.43% | 2 | 0 | 2026-07-24T15:34:00 | Use after free in WebMCP in Google Chrome prior to 150.0.7871.186 allowed a remo | |
| CVE-2026-16805 | 8.8 | 0.34% | 2 | 0 | 2026-07-24T15:34:00 | Use after free in Blink in Google Chrome prior to 150.0.7871.186 allowed a remot | |
| CVE-2026-64600 | None | 0.72% | 7 | 3 | 2026-07-24T15:34:00 | In the Linux kernel, the following vulnerability has been resolved: xfs: resamp | |
| CVE-2026-58630 | 10.0 | 0.81% | 4 | 0 | 2026-07-24T15:33:09 | Improper access control in Azure App Service allows an unauthorized attacker to | |
| CVE-2026-57106 | 10.0 | 0.92% | 3 | 0 | 2026-07-24T15:33:03 | Server-side request forgery (ssrf) in Data Quality allows an unauthorized attack | |
| CVE-2026-12503 | 0 | 0.14% | 2 | 0 | 2026-07-24T15:17:10.997000 | Improper Link Resolution (CWE-59) in `/usr/bin/larm_starter` in Loytec L-INX, L- | |
| CVE-2026-24727 | 0 | 0.67% | 1 | 0 | 2026-07-24T13:17:34.217000 | An unrestricted upload of file with dangerous type vulnerability in the e-paper | |
| CVE-2026-14172 | 7.8 | 0.11% | 1 | 0 | 2026-07-24T09:32:22 | Rapid7 InsightVM, Nexpose, and the Insight Agent execute discovered executables | |
| CVE-2026-15704 | 9.8 | 0.35% | 2 | 0 | 2026-07-24T09:32:16 | In Eclipse BaSyx Go Components versions up to and including 1.0.0, ABAC-enabled | |
| CVE-2026-66140 | 8.4 | 0.27% | 2 | 0 | 2026-07-24T06:34:11 | Exim before 4.99.5 allows directory traversal to access files outside of the spo | |
| CVE-2026-35425 | 8.0 | 0.48% | 2 | 0 | 2026-07-24T03:32:01 | Improper access control in Azure API Management (APIM) allows an authorized atta | |
| CVE-2026-54120 | 9.9 | 0.71% | 3 | 0 | 2026-07-24T03:31:56 | Improper input validation in Microsoft Surface allows an authorized attacker to | |
| CVE-2026-56160 | 9.1 | 0.65% | 1 | 0 | 2026-07-24T03:31:56 | Improper authorization in Azure Red Hat OpenShift (ARO) allows an authorized att | |
| CVE-2026-50517 | 9.9 | 1.25% | 2 | 0 | 2026-07-24T03:31:55 | Deserialization of untrusted data in M365 Copilot allows an authorized attacker | |
| CVE-2026-16232 | 9.1 | 12.68% | 4 | 1 | 2026-07-23T15:44:54.743000 | An authentication bypass vulnerability in the Check Point SmartConsole login pro | |
| CVE-2026-50522 | 9.8 | 57.10% | 4 | 2 | 2026-07-23T15:44:10.873000 | Deserialization of untrusted data in Microsoft Office SharePoint allows an unaut | |
| CVE-2026-16723 | 9.0 | 0.41% | 5 | 1 | 2026-07-23T15:01:24.377000 | A remote code execution (RCE) vulnerability exists in fastjson 1.2.68 through 1. | |
| CVE-2026-25089 | 9.8 | 69.83% | 2 | 2 | 2026-07-23T08:10:00.137000 | A improper neutralization of special elements used in an os command ('os command | |
| CVE-2026-53359 | 8.8 | 0.91% | 3 | 6 | 2026-07-22T21:31:50 | In the Linux kernel, the following vulnerability has been resolved: KVM: x86: F | |
| CVE-2026-50454 | 7.8 | 0.44% | 1 | 0 | 2026-07-22T16:17:58.990000 | Relative path traversal in Windows User Interface Core allows an authorized atta | |
| CVE-2026-49176 | 7.8 | 0.40% | 2 | 1 | 2026-07-22T16:17:28.753000 | Improper privilege management in Windows WalletService allows an authorized atta | |
| CVE-2026-60137 | 5.9 | 77.97% | 1 | 41 | 2026-07-22T05:17:11.750000 | WordPress 6.8.x before 6.8.6, 6.9.x before 6.9.5, and 7.0.x before 7.0.2 does no | |
| CVE-2026-8933 | 7.8 | 0.18% | 2 | 0 | 2026-07-21T15:30:51 | A local privilege escalation vulnerability exists in snap-confine, a set-capabil | |
| CVE-2026-46817 | 9.8 | 13.31% | 2 | 2 | 2026-07-21T10:10:00.103000 | Vulnerability in the Oracle Payments product of Oracle E-Business Suite (compone | |
| CVE-2026-16242 | 9.4 | 0.37% | 1 | 0 | 2026-07-20T09:31:15 | A flaw was found in the Konnectivity proxy-server configuration for hosted contr | |
| CVE-2026-39808 | 9.8 | 89.69% | 2 | 6 | template | 2026-07-16T18:32:24 | A improper neutralization of special elements used in an os command ('os command |
| CVE-2026-58644 | 9.8 | 5.06% | 2 | 0 | 2026-07-16T18:31:26 | Deserialization of untrusted data in Microsoft Office SharePoint allows an unaut | |
| CVE-2023-4346 | 7.5 | 0.91% | 2 | 0 | 2026-07-16T05:16:16.603000 | KNX devices that use KNX Connection Authorization and support Option 1 are, dep | |
| CVE-2026-42533 | 8.1 | 2.79% | 1 | 6 | 2026-07-15T15:33:14 | A vulnerability exists in NGINX Plus and NGINX Open Source when a map directive | |
| CVE-2026-56155 | 7.8 | 2.33% | 2 | 0 | 2026-07-15T14:18:24.010000 | Insufficient granularity of access control in Active Directory Federation Servic | |
| CVE-2026-54121 | 8.8 | 1.05% | 6 | 4 | 2026-07-14T18:32:37 | Improper authorization in Active Directory Certificate Services (AD CS) allows a | |
| CVE-2026-11405 | 9.8 | 1.62% | 1 | 1 | 2026-07-08T15:32:52 | The web server binary /bin/httpd contains a hidden backdoor authentication mecha | |
| CVE-2026-55255 | 8.4 | 29.05% | 2 | 1 | 2026-07-08T13:39:12.593000 | Langflow is a tool for building and deploying AI-powered agents and workflows. P | |
| CVE-2026-12569 | 9.8 | 2.26% | 3 | 1 | 2026-06-26T15:33:15 | A critical remote code execution (RCE) vulnerability has been reported in PTC Wi | |
| CVE-2026-32191 | 9.8 | 0.56% | 2 | 0 | 2026-06-17T10:35:18.950000 | Improper neutralization of special elements used in an os command ('os command i | |
| CVE-2026-32194 | 9.8 | 0.70% | 2 | 1 | 2026-03-20T00:31:34 | Improper neutralization of special elements used in a command ('command injectio | |
| CVE-2025-66376 | 7.2 | 21.62% | 1 | 0 | 2026-03-18T18:31:10 | Zimbra Collaboration (ZCS) 10 before 10.0.18 and 10.1 before 10.1.13 allows Clas | |
| CVE-2026-0770 | None | 53.46% | 1 | 7 | template | 2026-02-19T22:09:33 | Langflow exec_globals Inclusion of Functionality from Untrusted Control Sphere R |
| CVE-2025-0679 | 4.3 | 0.29% | 1 | 0 | 2025-05-22T15:35:02 | An issue has been discovered in GitLab CE/EE affecting all versions from 17.1 be | |
| CVE-2026-48021 | 0 | 0.12% | 3 | 0 | N/A | ||
| CVE-2026-54342 | 0 | 0.12% | 1 | 0 | N/A | ||
| CVE-2026-63030 | 0 | 98.05% | 2 | 67 | template | N/A |
updated 2026-07-25T19:16:51.987000
2 posts
CVE-2026-16766: CRITICAL OS command injection in Catalyst::View::Wkhtmltopdf (<0.6.1). Exploitable via unsanitized PDF options — remote code execution possible. No maintained patch; upgrade to 0.6.1+ or migrate. https://radar.offseq.com/threat/cve-2026-16766-cwe-78-improper-neutralization-of-special-elements-used-in-an-os-command-os-command-9e7c09567b0712f8 #OffSeq #infosec #perl #vuln
##CVE-2026-16766: CRITICAL OS command injection in Catalyst::View::Wkhtmltopdf (<0.6.1). Exploitable via unsanitized PDF options — remote code execution possible. No maintained patch; upgrade to 0.6.1+ or migrate. https://radar.offseq.com/threat/cve-2026-16766-cwe-78-improper-neutralization-of-special-elements-used-in-an-os-command-os-command-9e7c09567b0712f8 #OffSeq #infosec #perl #vuln
##updated 2026-07-25T12:31:39
1 posts
CVE-2026-64374 - DoS in Linux kernel RT scheduler. Fix disabled RT_PUSH_IPI by default for non-PREEMPT_RT. CVSS 0. Update kernel if affected. #CVE #Linux #infosec
##updated 2026-07-25T12:31:38
1 posts
CVE-2026-64324 - Out-of-Bounds Access in Linux kernel UDF. CVSS 0.0. No patch available; monitor for updates. #CVE #Linux #infosec
##updated 2026-07-25T11:17:19.053000
4 posts
CVE-2026-66012: CRITICAL flaw in siyuan-note siyuan (<3.7.2). Missing authorization on /mcp lets remote attackers read secrets & plant malicious plugins for admin takeover. Disable anonymous Publish mode & restrict /mcp access. https://radar.offseq.com/threat/cve-2026-66012-missing-authorization-in-siyuan-note-siyuan-af31715ea5b396b1 #OffSeq #CVE #Infosec
##🔴 CVE-2026-66012 - Critical (10)
SiYuan before v3.7.2 contains a missing authorization vulnerability in the POST /mcp kernel endpoint, which is gated only by a general auth check (model.CheckAuth) with no admin-role or read-only enforcement. This exposes 31 MCP tools, including a...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66012/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-66012: CRITICAL flaw in siyuan-note siyuan (<3.7.2). Missing authorization on /mcp lets remote attackers read secrets & plant malicious plugins for admin takeover. Disable anonymous Publish mode & restrict /mcp access. https://radar.offseq.com/threat/cve-2026-66012-missing-authorization-in-siyuan-note-siyuan-af31715ea5b396b1 #OffSeq #CVE #Infosec
##🔴 CVE-2026-66012 - Critical (10)
SiYuan before v3.7.2 contains a missing authorization vulnerability in the POST /mcp kernel endpoint, which is gated only by a general auth check (model.CheckAuth) with no admin-role or read-only enforcement. This exposes 31 MCP tools, including a...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66012/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-25T10:17:25.343000
1 posts
CVE-2026-64415 - DoS in Linux kernel via softlockup in swap_reclaim_full_clusters. CVSS 0. No patch available. Monitor for updates. #CVE #Linux #DoS
##updated 2026-07-25T10:17:23.397000
1 posts
CVE-2026-64399 - Linux ksmbd missing permission checks on FSCTL_DUPLICATE_EXTENTS_TO_FILE. Allows data overwrite on read-only shares. CVSS 0.0. No patch yet; monitor for updates. #CVE #Linux #infosec
##updated 2026-07-25T10:17:19.613000
1 posts
CVE-2026-64368 - Information disclosure in Linux kernel mm/slab. Zeroing logic flaw may leak kernel memory. CVSS 0.0. No patch yet; monitor for updates. #CVE #Linux #infosec
##updated 2026-07-25T10:17:15.590000
1 posts
CVE-2026-64337 | Linux Kernel up to 7.2-rc2 mtu3 mtu3_gadget_queue memory leak A vulnerability classified as very critical was found in Linux Kernel u... #news https://vuldb.com/vuln/383139
##updated 2026-07-25T10:17:06.460000
1 posts
CVE-2026-64263 - Null pointer dereference in Linux kernel fuse-uring. CVSS 0.0. No patch yet. Monitor for updates. #CVE #Linux #infosec
##updated 2026-07-25T07:17:08.880000
4 posts
CVE-2026-10818: WPForms Pro <=1.10.1.1 has a HIGH severity file upload vuln (CVSS 8.1). Unauthenticated RCE possible via ajax_chunk_upload_finalize. Restrict access & monitor uploads until a patch is released. https://radar.offseq.com/threat/cve-2026-10818-cwe-434-unrestricted-upload-of-file-with-dangerous-type-in-wpforms-wpforms-pro-98bc8d14f7da8c03 #OffSeq #WordPress #Infosec #CVE202610818
##🟠 CVE-2026-10818 - High (8.1)
The WPForms Pro plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 1.10.1.1 via the ajax_chunk_upload_finalize function. This is due to the file type validation occurring after chunk metadata and file...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-10818/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-10818: WPForms Pro <=1.10.1.1 has a HIGH severity file upload vuln (CVSS 8.1). Unauthenticated RCE possible via ajax_chunk_upload_finalize. Restrict access & monitor uploads until a patch is released. https://radar.offseq.com/threat/cve-2026-10818-cwe-434-unrestricted-upload-of-file-with-dangerous-type-in-wpforms-wpforms-pro-98bc8d14f7da8c03 #OffSeq #WordPress #Infosec #CVE202610818
##🟠 CVE-2026-10818 - High (8.1)
The WPForms Pro plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 1.10.1.1 via the ajax_chunk_upload_finalize function. This is due to the file type validation occurring after chunk metadata and file...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-10818/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-25T05:16:42.900000
1 posts
🟠 CVE-2026-66035 - High (7.5)
libssh2 through 1.11.1, fixed in commit 42e33d8, contains a pre-authentication heap buffer overflow vulnerability that allows a malicious SSH server to corrupt heap metadata in any connecting client by sending a packet with a packet_length smaller...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66035/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-25T05:16:42.773000
1 posts
🟠 CVE-2026-66034 - High (7.5)
libssh2 through 1.11.1, fixed in commit a13bb6c, contains a missing bounds check vulnerability that allows a malicious SSH server to trigger an arbitrary-length heap out-of-bounds read and a free of an uninitialized pointer via the publickey subsy...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66034/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-25T05:16:42.643000
1 posts
🟠 CVE-2026-66032 - High (8.8)
libssh2 through 1.11.1, fixed in commit 5e47761, contains a double-free vulnerability in the sftp_open() function in src/sftp.c that allows a malicious SSH server to corrupt the heap of any authenticated client opening an SFTP session. When a serv...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66032/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-25T05:16:35.420000
3 posts
CVE-2026-56163: CRITICAL (CVSS 10) in Azure Kubernetes Service — Missing authentication allows remote privilege escalation. Microsoft has released a fix; verify your AKS is updated. https://radar.offseq.com/threat/cve-2026-56163-cwe-306-missing-authentication-for-critical-function-in-microsoft-azure-kubernetes-c5571c5da7b404e3 #OffSeq #Azure #Kubernetes #CloudSecurity
##CVE-2026-56163: CRITICAL (CVSS 10) in Azure Kubernetes Service — Missing authentication allows remote privilege escalation. Microsoft has released a fix; verify your AKS is updated. https://radar.offseq.com/threat/cve-2026-56163-cwe-306-missing-authentication-for-critical-function-in-microsoft-azure-kubernetes-c5571c5da7b404e3 #OffSeq #Azure #Kubernetes #CloudSecurity
##🔴 CVE-2026-56163 - Critical (10)
Missing authentication for critical function in Microsoft Azure Kubernetes Service allows an unauthorized attacker to elevate privileges over a network.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-56163/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-25T03:30:55
2 posts
1 repos
🟠 CVE-2026-66374 - High (8.1)
Knot Resolver before 6.4.1 allows remote code execution via a heap-based buffer overflow in the DoQ (DNS-over-QUIC) receive path.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66374/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-66374 - High (8.1)
Knot Resolver before 6.4.1 allows remote code execution via a heap-based buffer overflow in the DoQ (DNS-over-QUIC) receive path.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66374/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-25T01:16:26.277000
2 posts
🟠 CVE-2026-66373 - High (7.5)
Redis before 8.8.0, in the unusual case where an authenticated attacker can execute RESTORE, allows remote code execution via a RESTORE payload where the same NACK (pending entry) is referenced by more than one consumer, because deleting both cons...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66373/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-66373 - High (7.5)
Redis before 8.8.0, in the unusual case where an authenticated attacker can execute RESTORE, allows remote code execution via a RESTORE payload where the same NACK (pending entry) is referenced by more than one consumer, because deleting both cons...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66373/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-25T00:31:53
1 posts
🟠 CVE-2026-60134 - High (8.8)
Weintek cMT3092X HMI allows a non-privileged user to modify cookies to gain elevated privileges.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-60134/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-25T00:31:53
1 posts
🟠 CVE-2025-71408 - High (7.8)
NLTK (Natural Language Toolkit) before version 3.9.3 contains an eval injection vulnerability in the nltk.collocations module that allows an attacker who controls command-line arguments to execute arbitrary Python code. When collocations.py is inv...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2025-71408/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T23:16:51.333000
1 posts
🟠 CVE-2026-61892 - High (8.8)
Weintek cMT3092X HMI allows a non-privileged user to modify tokens to escalate privileges.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-61892/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T22:16:50.963000
4 posts
CVE-2026-61884 (CRITICAL, CVSS 9.8) in Tycon TPDIN-Monitor-WEB2 v2.3.9: Server-side auth validation missing — empty creds grant admin access. Restrict management interface, monitor for unauthorized logins. https://radar.offseq.com/threat/cve-2026-61884-cwe-288-in-tycon-systems-tpdin-monitor-web2-38fd252c1e4f018a #OffSeq #CVE #IoT #Infosec
##CVE-2026-61884 (CRITICAL, CVSS 9.8) in Tycon TPDIN-Monitor-WEB2 v2.3.9: Server-side auth validation missing — empty creds grant admin access. Restrict management interface, monitor for unauthorized logins. https://radar.offseq.com/threat/cve-2026-61884-cwe-288-in-tycon-systems-tpdin-monitor-web2-38fd252c1e4f018a #OffSeq #CVE #IoT #Infosec
##🔴 CVE-2026-61884 - Critical (9.8)
The web management interface of Tycon Systems TPDIN-Monitor-WEB2
does not perform server-side validation of credentials during the login process. By submitting empty values for both credential fields, an unauthenticated remote attacker can byp...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-61884/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##Tycon Power Monitor Authentication Bypass CVE-2026-61884 Rated CVSS 9.8
##updated 2026-07-24T21:33:30
2 posts
🟠 CVE-2026-14603 - High (7.5)
The WowOptin: Next-Gen Popup Maker WordPress plugin before 1.4.38 does not have proper authorization on a REST endpoint, allowing unauthenticated users to disable all of the site's opt-in forms and insert new template-based opt-in rows into the d...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-14603/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-14603 - High (7.5)
The WowOptin: Next-Gen Popup Maker WordPress plugin before 1.4.38 does not have proper authorization on a REST endpoint, allowing unauthenticated users to disable all of the site's opt-in forms and insert new template-based opt-in rows into the d...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-14603/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T21:33:30
2 posts
🟠 CVE-2026-45815 - High (7.5)
Reachable Assertion vulnerability in Apache NimBLE.
A specially crafted ATT Read Multiple Variable Response (BLE_ATT_OP_READ_MULT_VAR_RSP) may trigger assert in ATT parser.
Severity is medium as this requires DUT to first send ATT Read Multiple ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-45815/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-45815 - High (7.5)
Reachable Assertion vulnerability in Apache NimBLE.
A specially crafted ATT Read Multiple Variable Response (BLE_ATT_OP_READ_MULT_VAR_RSP) may trigger assert in ATT parser.
Severity is medium as this requires DUT to first send ATT Read Multiple ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-45815/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T21:33:30
2 posts
🟠 CVE-2026-45813 - High (8.8)
Out-of-bounds Write, Integer Underflow (Wrap or Wraparound) vulnerability in Apache NimBLE BASS service.
Improper validation when parsing BASS service "Add Source" and "Modify Source" operation PDU could results in stack buffer overflow or arbit...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-45813/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-45813 - High (8.8)
Out-of-bounds Write, Integer Underflow (Wrap or Wraparound) vulnerability in Apache NimBLE BASS service.
Improper validation when parsing BASS service "Add Source" and "Modify Source" operation PDU could results in stack buffer overflow or arbit...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-45813/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T21:33:30
2 posts
🟠 CVE-2026-66143 - High (7.5)
It is possible to bypass the maximum number of normalized policy alternatives that was introduced in Apache Neethi 3.2.2 via certain crafted policies, which may lead to a denial of service attack via resource consumption. Users are recommended t...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66143/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-66143 - High (7.5)
It is possible to bypass the maximum number of normalized policy alternatives that was introduced in Apache Neethi 3.2.2 via certain crafted policies, which may lead to a denial of service attack via resource consumption. Users are recommended t...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66143/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T21:33:29
3 posts
🟠 CVE-2026-12981 - High (7.5)
The CAFEHAUS API WordPress plugin through 1.0.0 does not have any authentication or authorisation when updating user passwords, allowing unauthenticated attackers to set the password of any user, including administrators, and fully take over their...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-12981/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-12981 - High (7.5)
The CAFEHAUS API WordPress plugin through 1.0.0 does not have any authentication or authorisation when updating user passwords, allowing unauthenticated attackers to set the password of any user, including administrators, and fully take over their...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-12981/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-12981: CRITICAL vuln in CAFEHAUS API plugin ≤1.0.0 (WordPress). No authentication on password updates — attackers can reset any user password, including admins. Remove/disable plugin until fixed. https://radar.offseq.com/threat/cve-2026-12981-cwe-269-improper-privilege-management-in-cafehaus-api-47b92cb62ac9c312 #OffSeq #WordPress #Vulnerability #PrivilegeEscalation
##updated 2026-07-24T21:33:29
2 posts
🟠 CVE-2026-66142 - High (7.5)
Apache Neethi is vulnerable to uncontrolled recursion when parsing policies that lack policy Ids or with deeply nested structures, which may lead to a denial of service attack when parsing policies due to runtime memory exhaustion. Users are recom...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66142/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-66142 - High (7.5)
Apache Neethi is vulnerable to uncontrolled recursion when parsing policies that lack policy Ids or with deeply nested structures, which may lead to a denial of service attack when parsing policies due to runtime memory exhaustion. Users are recom...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66142/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T21:32:28
4 posts
CVE-2026-62835 (CRITICAL, CVSS 9.3) affects Microsoft Azure Portal: improper authorization enables remote info disclosure with high confidentiality impact. Microsoft has fixed server-side. More at https://radar.offseq.com/threat/cve-2026-62835-cwe-285-improper-authorization-in-microsoft-azure-portal-defd11bbcf2e17c7 #OffSeq #Azure #Vuln #CloudSecurity
##CVE-2026-62835 (CRITICAL, CVSS 9.3) affects Microsoft Azure Portal: improper authorization enables remote info disclosure with high confidentiality impact. Microsoft has fixed server-side. More at https://radar.offseq.com/threat/cve-2026-62835-cwe-285-improper-authorization-in-microsoft-azure-portal-defd11bbcf2e17c7 #OffSeq #Azure #Vuln #CloudSecurity
##🔴 CVE-2026-62835 - Critical (9.3)
Improper authorization in Azure Portal allows an unauthorized attacker to disclose information over a network.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-62835/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🚨 CVE-2026-62835: Microsoft Azure Portal Information Disclosure Vulnerability
CVE-2026-62835 involves a flaw in the authorization process of Online Services, enabling attackers to access restricted information. The vulnerability documented by this CVE requires no customer action to resolve.
CVSS: 9.3
More information: https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-62835
##updated 2026-07-24T21:32:28
1 posts
🟠 CVE-2026-66039 - High (8.8)
FFmpeg through 8.1.2, fixed in commit aafb5c6, contains a signed integer overflow vulnerability in the MACE6 audio decoder that allows attackers to corrupt heap memory by supplying a crafted CAF file with a malicious bytes_per_packet value. Attack...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66039/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T21:32:28
1 posts
🟠 CVE-2026-66041 - High (8.8)
FFmpeg 7.0 through 8.1.2, fixed in commit 4da9812, contains a heap out-of-bounds write vulnerability in the vf_quirc filter that allows an attacker to corrupt heap memory by supplying a crafted PGS/SUP subtitle file with mismatched frame dimension...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66041/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T21:32:28
1 posts
🟠 CVE-2026-17107 - High (8.5)
A flaw was found in the cluster-proxy service-proxy component used in Red Hat Advanced Cluster Management for Kubernetes (RHACM) and multicluster-engine (MCE). The service-proxy appends impersonation group headers to proxied requests without first...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-17107/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T20:48:39.923000
2 posts
🔴 CVE-2026-12877 - Critical (9.1)
The Project Management, Bug and Issue Tracking Plugin WordPress plugin before 5.1.0 does not sanitise and escape user supplied input before using it in a SQL query, allowing unauthenticated attackers to perform SQL injection attacks. This is expl...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-12877/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-12877 - Critical (9.1)
The Project Management, Bug and Issue Tracking Plugin WordPress plugin before 5.1.0 does not sanitise and escape user supplied input before using it in a SQL query, allowing unauthenticated attackers to perform SQL injection attacks. This is expl...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-12877/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T20:48:39.923000
2 posts
🟠 CVE-2026-12497 - High (7.5)
The Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content WordPress plugin before 4.16.18 does not consistently enforce the role restriction configured on its front-end registration role-selection ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-12497/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-12497 - High (7.5)
The Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content WordPress plugin before 4.16.18 does not consistently enforce the role restriction configured on its front-end registration role-selection ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-12497/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T20:48:18.380000
2 posts
🟠 CVE-2026-56167 - High (8.5)
Server-side request forgery (ssrf) in Azure AI Search allows an authorized attacker to elevate privileges over a network.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-56167/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-56167 - High (8.5)
Server-side request forgery (ssrf) in Azure AI Search allows an authorized attacker to elevate privileges over a network.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-56167/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T20:47:41.790000
2 posts
🟠 CVE-2026-16804 - High (8.3)
Use after free in Input in Google Chrome prior to 150.0.7871.186 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-16804/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-16804 - High (8.3)
Use after free in Input in Google Chrome prior to 150.0.7871.186 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-16804/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T20:47:41.790000
2 posts
🟠 CVE-2026-45811 - High (7.5)
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in Apache NimBLE.
The HCI socket transport did not check whether a received HCI event would fit the configured event pool before copying it, allowing a buffer ove...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-45811/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-45811 - High (7.5)
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in Apache NimBLE.
The HCI socket transport did not check whether a received HCI event would fit the configured event pool before copying it, allowing a buffer ove...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-45811/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T20:47:41.790000
2 posts
🟠 CVE-2026-45816 - High (7.5)
NULL Pointer Dereference vulnerability in Apache NimBLE in LE Long Term Key Request event.
This requires disabled asserts (otherwise assert would trigger before NULL dereference) and bogus (or misbehaving) controller, thus severity is low.
This...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-45816/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-45816 - High (7.5)
NULL Pointer Dereference vulnerability in Apache NimBLE in LE Long Term Key Request event.
This requires disabled asserts (otherwise assert would trigger before NULL dereference) and bogus (or misbehaving) controller, thus severity is low.
This...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-45816/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T20:47:41.790000
2 posts
🟠 CVE-2026-66144 - High (7.5)
Although remote policy references are not retrieved during policy normalization, if they are manually retrieved via the API it can cause a denial of service attack if a huge policy is retrieved. Users are recommended to upgrade to version 3.2.3, w...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66144/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-66144 - High (7.5)
Although remote policy references are not retrieved during policy normalization, if they are manually retrieved via the API it can cause a denial of service attack if a huge policy is retrieved. Users are recommended to upgrade to version 3.2.3, w...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66144/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T20:45:45.697000
1 posts
🟠 CVE-2026-8789 - High (8.1)
The Easy Appointments plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check and missing nonce verification on the `ea_delete_multiple_connections` AJAX action in all versions up to, and including...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-8789/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T20:18:21.063000
1 posts
🟠 CVE-2026-66040 - High (8.8)
FFmpeg through 8.1.2, fixed in commit b506faf, contains a heap out-of-bounds write vulnerability in the native PNG and APNG encoders that allows remote attackers to corrupt heap memory by supplying a crafted PNG image with a malicious eXIf chunk. ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66040/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T20:18:20.433000
1 posts
🟠 CVE-2026-66036 - High (8.8)
FFmpeg through 8.1.2, fixed in commit 5d7112c, contains a heap out-of-bounds write vulnerability in the vf_hqdn3d filter that allows attackers to corrupt heap memory by supplying a crafted video whose frame resolution increases between frames when...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66036/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T18:32:33
2 posts
🟠 CVE-2026-49745 - High (7.8)
Kernel software installed and running inside a Guest VM may post improper commands to the GPU Firmware to trigger a write of data outside the Guest's virtualised GPU memory.
Software installed and run under a Guest VM can send commands to the G...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-49745/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-49745 - High (7.8)
Kernel software installed and running inside a Guest VM may post improper commands to the GPU Firmware to trigger a write of data outside the Guest's virtualised GPU memory.
Software installed and run under a Guest VM can send commands to the G...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-49745/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T18:32:33
2 posts
🟠 CVE-2026-49743 - High (7.8)
Software installed and run as a non-privileged user may conduct improper GPU system calls to manipulate the lifetimes of synchronisation objects in the kernel, leading to read/write UAFs.
During workload submission involving a fence exported by...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-49743/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-49743 - High (7.8)
Software installed and run as a non-privileged user may conduct improper GPU system calls to manipulate the lifetimes of synchronisation objects in the kernel, leading to read/write UAFs.
During workload submission involving a fence exported by...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-49743/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T18:32:32
2 posts
🟠 CVE-2026-49744 - High (7.8)
Kernel software installed and running inside a Guest VM may post improper commands to the GPU Firmware to trigger a write of data outside the Guest's virtualised GPU memory.
Out of bounds accesses triggered by malware introduced to a Guest KMD ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-49744/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-49744 - High (7.8)
Kernel software installed and running inside a Guest VM may post improper commands to the GPU Firmware to trigger a write of data outside the Guest's virtualised GPU memory.
Out of bounds accesses triggered by malware introduced to a Guest KMD ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-49744/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T18:32:32
2 posts
🟠 CVE-2026-16801 - High (8.8)
Improper control of generation of code ('Code Injection') in the variables feature in Devolutions PowerShell Universal 2026.2.2 and earlier allows an authenticated user with variable write permission to execute arbitrary PowerShell code via a craf...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-16801/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-16801 - High (8.8)
Improper control of generation of code ('Code Injection') in the variables feature in Devolutions PowerShell Universal 2026.2.2 and earlier allows an authenticated user with variable write permission to execute arbitrary PowerShell code via a craf...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-16801/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T18:31:41
1 posts
🟠 CVE-2026-65709 - High (8.3)
sysPass through version 3.2.11 contains a missing object-level authorization vulnerability in the JSON-RPC API that allows API token holders to enumerate account metadata, overwrite passwords, and delete accounts across the entire vault without pe...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-65709/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T18:31:41
1 posts
🟠 CVE-2026-66033 - High (7.5)
libssh2 through 1.11.1, fixed in commit a2ed82d, contains a pre-authentication integer underflow vulnerability in the ssh2_cipher_crypt() function in src/openssl.c that allows a malicious SSH server to crash any connecting client by negotiating AE...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66033/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T18:31:37
1 posts
🟠 CVE-2026-65708 - High (8.1)
sysPass through version 3.2.11 contains an insecure direct object reference vulnerability that allows any authenticated attacker to access account file attachments belonging to accounts they do not have ACL permissions for by exploiting missing au...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-65708/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T18:31:37
1 posts
🟠 CVE-2026-66027 - High (8.3)
Suna before 0.9.102 contains a broken access control vulnerability in the message queue API that allows authenticated attackers to access and manipulate queue resources belonging to other users by exploiting missing ownership and account isolation...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66027/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T18:16:52.770000
1 posts
🟠 CVE-2026-16870 - High (8.8)
Multiple security vulnerabilities in Snowflake libsnowflakeclient versions prior to 2.9.2 could allow remote code execution and credential exfiltration. A stack-based buffer overflow in the file download path could allow remote code execution on a...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-16870/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T18:16:52.303000
2 posts
🟠 CVE-2026-16800 - High (8.8)
Improper control of generation of code ('Code Injection') in the schedule feature in Devolutions PowerShell Universal 2026.2.2 and earlier allows an authenticated user with schedule creation permission to execute arbitrary PowerShell code via craf...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-16800/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-16800 - High (8.8)
Improper control of generation of code ('Code Injection') in the schedule feature in Devolutions PowerShell Universal 2026.2.2 and earlier allows an authenticated user with schedule creation permission to execute arbitrary PowerShell code via craf...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-16800/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T15:34:00
2 posts
🟠 CVE-2026-16807 - High (8.8)
Out of bounds write in Codecs in Google Chrome prior to 150.0.7871.186 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-16807/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-16807 - High (8.8)
Out of bounds write in Codecs in Google Chrome prior to 150.0.7871.186 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-16807/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T15:34:00
2 posts
🟠 CVE-2026-16806 - High (8.8)
Use after free in WebMCP in Google Chrome prior to 150.0.7871.186 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-16806/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-16806 - High (8.8)
Use after free in WebMCP in Google Chrome prior to 150.0.7871.186 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-16806/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T15:34:00
2 posts
🟠 CVE-2026-16805 - High (8.8)
Use after free in Blink in Google Chrome prior to 150.0.7871.186 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-16805/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-16805 - High (8.8)
Use after free in Blink in Google Chrome prior to 150.0.7871.186 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-16805/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T15:34:00
7 posts
3 repos
https://github.com/HORKimhab/CVE-2026-64600
🚨 RefluXFS (CVE-2026-64600) has been identified as a notable vulnerability.
In the Linux kernel, the following vulnerability has been resolved:
xfs: resample the data fork mapping after cycling ILOCK
RefluXFS is a local privilege escalation vulnerability in the Linux kernel's XFS filesystem copy-on-write path. It allows local users to overwrite protected files and gain root access.
ℹ️ Additional details on ZEN SecDB https://secdb.nttzen.cloud/updates/1d26eb14-ce27-4846-a8ce-bae087fb1e46/refluxfs-vulnerability
#infosec #refluxfs #linux #kernel #xfs #lpe
#nttdata #zen #secdb
Na, zumindest das kriegen die angelernten neuronalen netzwerke sehr zuverlässig hin: einen haufen uralter fehler in linux aufzufinden. Schön die sicherheitsaktualisierungen einspielen!
#Epic #Fail #Golem #Link #Linux #Security ##⚠️ CRITICAL: New RefluXFS Linux flaw lets attackers gain root privileges
A nine-year-old race condition in the Linux XFS filesystem (CVE-2026-64600) allows local attackers to overwrite protected files and escalate to root. Systems running kernel v4.11+ with XFS and reflink enabled are vulnerable. The exploit leaves no kernel logs and persists across reboots, making dete…
##🚨 RefluXFS (CVE-2026-64600) has been identified as a notable vulnerability.
In the Linux kernel, the following vulnerability has been resolved:
xfs: resample the data fork mapping after cycling ILOCK
RefluXFS is a local privilege escalation vulnerability in the Linux kernel's XFS filesystem copy-on-write path. It allows local users to overwrite protected files and gain root access.
ℹ️ Additional details on ZEN SecDB https://secdb.nttzen.cloud/updates/1d26eb14-ce27-4846-a8ce-bae087fb1e46/refluxfs-vulnerability
#infosec #refluxfs #linux #kernel #xfs #lpe
#nttdata #zen #secdb
Na, zumindest das kriegen die angelernten neuronalen netzwerke sehr zuverlässig hin: einen haufen uralter fehler in linux aufzufinden. Schön die sicherheitsaktualisierungen einspielen!
#Epic #Fail #Golem #Link #Linux #Security ##⚠️ CRITICAL: New RefluXFS Linux flaw lets attackers gain root privileges
A nine-year-old race condition in the Linux XFS filesystem (CVE-2026-64600) allows local attackers to overwrite protected files and escalate to root. Systems running kernel v4.11+ with XFS and reflink enabled are vulnerable. The exploit leaves no kernel logs and persists across reboots, making dete…
##Discover the RefluXFS Linux vulnerability (CVE-2026-64600) in XFS that allows local users to overwrite protected files and gain root privileges.
#RefluXFS #CVE202664600 #LinuxKernel #Cybersecurity #XFS
https://meterpreter.org/refluxfs-linux-vulnerability/?utm_source=mastodon&utm_medium=jetpack_social
##updated 2026-07-24T15:33:09
4 posts
CVE-2026-58630: Improper access control in Azure App Service for Linux (CVSS 10, CRITICAL) lets remote attackers escalate privileges with no auth or user action. Patched by Microsoft — verify updates. Details: https://radar.offseq.com/threat/cve-2026-58630-cwe-284-improper-access-control-in-microsoft-azure-app-service-for-linux-12c1219307778a3e #OffSeq #Azure #Infosec #CVE2026_58630
##CVE-2026-58630: Improper access control in Azure App Service for Linux (CVSS 10, CRITICAL) lets remote attackers escalate privileges with no auth or user action. Patched by Microsoft — verify updates. Details: https://radar.offseq.com/threat/cve-2026-58630-cwe-284-improper-access-control-in-microsoft-azure-app-service-for-linux-12c1219307778a3e #OffSeq #Azure #Infosec #CVE2026_58630
##‼️ CVE-2026-58630: Improper access control in Azure App Service allows an unauthorized attacker to elevate privileges over a network.
CVSS: 10
Details: https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-58630
##🔴 CVE-2026-58630 - Critical (10)
Improper access control in Azure App Service allows an unauthorized attacker to elevate privileges over a network.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-58630/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T15:33:03
3 posts
Microsoft Purview Data Governance is impacted by CVE-2026-57106 (SSRF, CVSS 10, CRITICAL). Remote attackers can escalate privileges — patch ASAP using the official fix: https://radar.offseq.com/threat/cve-2026-57106-cwe-918-server-side-request-forgery-ssrf-in-microsoft-microsoft-purview-data-governance-0983080847f54f67 #OffSeq #Vuln #SSRF #Microsoft #CyberSec
##Microsoft Purview Data Governance is impacted by CVE-2026-57106 (SSRF, CVSS 10, CRITICAL). Remote attackers can escalate privileges — patch ASAP using the official fix: https://radar.offseq.com/threat/cve-2026-57106-cwe-918-server-side-request-forgery-ssrf-in-microsoft-microsoft-purview-data-governance-0983080847f54f67 #OffSeq #Vuln #SSRF #Microsoft #CyberSec
##🔴 CVE-2026-57106 - Critical (10)
Server-side request forgery (ssrf) in Data Quality allows an unauthorized attacker to elevate privileges over a network.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-57106/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T15:17:10.997000
2 posts
CVE-2026-12503 (CRITICAL, CVSS 9.2) affects Loytec LIP-ME20xC: improper link resolution in larm_starter lets larmapp users escalate to root via /etc/passwd symlink. Limit access & monitor! https://radar.offseq.com/threat/cve-2026-12503-cwe-59-improper-link-resolution-before-file-access-link-following-in-loytec-lip-me20xc-acfbe89cb621dc0e #OffSeq #Vulnerability #ICS #Loytec #CVE2026
##CVE-2026-12503 (CRITICAL, CVSS 9.2) affects Loytec LIP-ME20xC: improper link resolution in larm_starter lets larmapp users escalate to root via /etc/passwd symlink. Limit access & monitor! https://radar.offseq.com/threat/cve-2026-12503-cwe-59-improper-link-resolution-before-file-access-link-following-in-loytec-lip-me20xc-acfbe89cb621dc0e #OffSeq #Vulnerability #ICS #Loytec #CVE2026
##updated 2026-07-24T13:17:34.217000
1 posts
CVE-2026-24727 (CRITICAL, CVSS 9.3): SUNNET Corporate Training Mgmt System v10.3 allows admins to upload ZIP files with executable code, enabling server command execution. No patch yet — restrict admin access & monitor uploads. https://radar.offseq.com/threat/cve-2026-24727-cwe-434-unrestricted-upload-of-file-with-dangerous-type-in-sunnet-technology-co-ltd-fe23deeb060f5b6d #OffSeq #CVE202624727 #infosec 🛡️
##updated 2026-07-24T09:32:22
1 posts
🟠 CVE-2026-14172 - High (7.8)
Rapid7 InsightVM, Nexpose, and the Insight Agent execute discovered executables during authenticated assessment without validating file ownership, allowing a local low-privileged user to run code as the scan credential (Scan Engine) or as root/SYS...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-14172/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T09:32:16
2 posts
🔴 CVE-2026-15704 - Critical (9.8)
In Eclipse BaSyx Go Components versions up to and including 1.0.0, ABAC-enabled deployments are vulnerable to an authorization bypass caused by inconsistent trailing-slash handling between the ABAC middleware and the HTTP router.
The shared rou...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-15704/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##Eclipse BaSyx Go Components (<=1.0.0) suffer a CRITICAL auth bypass (CVE-2026-15704): ABAC checks can be evaded by adding a trailing slash to API routes. Immediate upgrade to 1.0.1 is required. https://radar.offseq.com/threat/cve-2026-15704-cwe-863-in-eclipse-foundation-eclipse-basyx-go-components-eeb4ef03f595d434 #OffSeq #CVE202615704 #infosec #AppSec
##updated 2026-07-24T06:34:11
2 posts
🟠 CVE-2026-66140 - High (8.4)
Exim before 4.99.5 allows directory traversal to access files outside of the spool area, and consequently gain privileges, because arguments related to queue-name are mishandled.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66140/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-66140 - High (8.4)
Exim before 4.99.5 allows directory traversal to access files outside of the spool area, and consequently gain privileges, because arguments related to queue-name are mishandled.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-66140/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T03:32:01
2 posts
🟠 CVE-2026-35425 - High (8)
Improper access control in Azure API Management (APIM) allows an authorized attacker to execute code over a network.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-35425/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-35425 - High (8)
Improper access control in Azure API Management (APIM) allows an authorized attacker to execute code over a network.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-35425/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-24T03:31:56
3 posts
🔴 CVE-2026-54120 - Critical (9.9)
Improper input validation in Microsoft Surface allows an authorized attacker to execute code over a network.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-54120/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-54120 - Critical (9.9)
Improper input validation in Microsoft Surface allows an authorized attacker to execute code over a network.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-54120/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-54120 (CRITICAL, CVSS 9.9): Improper input validation in Microsoft Surface Management Services lets authorized attackers run code remotely. Patch now: https://radar.offseq.com/threat/cve-2026-54120-cwe-20-improper-input-validation-in-microsoft-surface-management-services-203a5e59f513d748 🖥️ #OffSeq #infosec #Microsoft #CVE202654120
##updated 2026-07-24T03:31:56
1 posts
CRITICAL improper authorization vuln (CVE-2026-56160) in Azure Red Hat OpenShift (ARO): privilege escalation risk for authorized users. No active exploits. Microsoft has released a fix — ensure your ARO instances are updated. Details: https://radar.offseq.com/threat/cve-2026-56160-cwe-285-improper-authorization-in-microsoft-azure-red-hat-openshift-aro-9a561de9f992bb49 #OffSeq #Azure #CVE202656160
##updated 2026-07-24T03:31:55
2 posts
🔴 CVE-2026-50517 - Critical (9.9)
Deserialization of untrusted data in M365 Copilot allows an authorized attacker to execute code over a network.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-50517/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-50517 - Critical (9.9)
Deserialization of untrusted data in M365 Copilot allows an authorized attacker to execute code over a network.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-50517/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-23T15:44:54.743000
4 posts
1 repos
https://github.com/WadesWeaponShed/Check-Point-Trusted-Access-Review
📰 Analysis Highlights Attacks on "Management Layer" Infrastructure
Analysis reveals a trend of attacks on the "management layer." Recent incidents involving an Iranian APT, a Check Point zero-day (CVE-2026-16232), and a SharePoint RCE (CVE-2026-50522) highlight this high-impact strategy. #CyberSecurity #ThreatIntel ...
🌐 cyber[.]netsecops[.]io
##‼️ CVE-2026-16232: An authentication bypass vulnerability in the Check Point SmartConsole login process allows an unauthenticated remote attacker to obtain an application login token and use it to authenticate with full administrative privileges.
CVSS: 9.1
Scanner: https://github.com/WadesWeaponShed/Check-Point-Trusted-Access-Review
Details and Mitigation: https://support.checkpoint.com/results/sk/sk185169/
##Geopolitical tensions escalated as US strikes on Iran continued and Houthi attacks on Saudi tankers raised oil prices. In cybersecurity, a critical Check Point zero-day (CVE-2026-16232) is actively exploited. US agencies warned of Iranian cyber campaigns targeting critical infrastructure PLCs and Russian state-backed phishing on Zimbra Collaboration Suite. AI agents are now a primary attack surface.
##why am I confronted with this crime against language and common sense? https://discourse.ifin.network/t/cve-2026-16232-authentication-bypass-in-check-point-smart-console-eitw/680 thats why (eitw vuln)
##updated 2026-07-23T15:44:10.873000
4 posts
2 repos
📰 Analysis Highlights Attacks on "Management Layer" Infrastructure
Analysis reveals a trend of attacks on the "management layer." Recent incidents involving an Iranian APT, a Check Point zero-day (CVE-2026-16232), and a SharePoint RCE (CVE-2026-50522) highlight this high-impact strategy. #CyberSecurity #ThreatIntel ...
🌐 cyber[.]netsecops[.]io
##Active exploitation verified for CVE-2026-50522. Microsoft SharePoint's deserialization flaw demands immediate C-Suite oversight, patch prioritization, and strict endpoint hardening. Protect your enterprise assets today. https://thecybermind.co/kc88
##Active exploitation verified for CVE-2026-50522. Microsoft SharePoint's deserialization flaw demands immediate C-Suite oversight, patch prioritization, and strict endpoint hardening. Protect your enterprise assets today. https://thecybermind.co/kc88
##(CISA TS-SOC) CVE-2026-50522 – Microsoft SharePoint Deserialization of Untrusted Data Vulnerability
Severity: CRITICAL Impact Summary: An unauthorized attacker can execute code over a network via deserialization of untrusted data....
##updated 2026-07-23T15:01:24.377000
5 posts
1 repos
CVE-2026-16723 in Fastjson 1.2.68–1.2.83 enables unauthenticated RCE in Spring Boot apps. No patched 1.x release exists. Attackers don't need AutoType enabled or gadget chains—just SafeMode at default and a reachable JSON...
##Critical Spring Boot Security Alert: CVE-2026-16723 Exposes Fastjson Applications to Unauthenticated Remote Code Execution + Video
Introduction: A New Java Security Threat Emerges The cybersecurity community is warning developers and organizations about a newly exploited vulnerability affecting Java-based applications built with Spring Boot and Fastjson 1.x. Tracked as CVE-2026-16723, the flaw allows attackers to achieve unauthenticated remote code execution in…
##Fastjson Vulnerability Exploited in Targeted Attacks
A critical vulnerability in Fastjson, tracked as CVE-2026-16723, has been exploited in targeted attacks, with a severity score of 9.0 out of 10. Attackers are actively probing for exposed paths in Fastjson 1.x, commonly used in Spring Boot deployments.
#FastjsonVulnerability #Cve202616723 #SupplyChain #EmergingThreats #VulnerabilityExploitation
##FastJson RCE vulnerability CVE-2026-16723 is exploited in the wild. Details and PoC exploit code are public for this critical remote code execution flaw.
##FastJson RCE vulnerability CVE-2026-16723 is exploited in the wild. Details and PoC exploit code are public for this critical remote code execution flaw.
##updated 2026-07-23T08:10:00.137000
2 posts
2 repos
(CISA TS-SOC) CVE-2026-25089 – Fortinet FortiSandbox OS Command Injection Vulnerability
Severity: CRITICAL Impact Summary: Allows remote, unauthenticated attackers to execute arbitrary operating system commands on affected FortiSandbox products via HTTP....
##(CISA TS-SOC) CVE-2026-25089 – Fortinet FortiSandbox OS Command Injection Vulnerability
Severity: CRITICAL Impact Summary: Allows remote, unauthenticated attackers to execute arbitrary operating system commands on affected FortiSandbox products via HTTP....
##updated 2026-07-22T21:31:50
3 posts
6 repos
https://github.com/xj2268-TA/KVM-Januscape
https://github.com/ndouglas-cloudsmith/CVE-2026-53359
https://github.com/chuzhongyun/CVE-2026-53359-Kernel-Fix
https://github.com/0xBlackash/CVE-2026-53359
I wonder how many hosters are vulnerable to CVE-2026-53359 (Januscape). Probably a lot.
##I wonder how many hosters are vulnerable to CVE-2026-53359 (Januscape). Probably a lot.
##@janl @jschauma not all LPE do fully break kernel namespaces ("containers”) - not sure about the quoted one though. While I don't disagree with your assessment, I'd still argue that containers made various security related features much more approachable and still provide value. In the end it always has been about defense in depth.
If we start to see more issues in KVM like CVE-2026-53359, we are really screwed! Then we're basically back to hardware isolation for everything that matters 🫣
##updated 2026-07-22T16:17:58.990000
1 posts
A public proof-of-concept details the Windows AppResolver LPE (CVE-2026-50454), a UAC bypass that chains an admin token to a SYSTEM shell.
#Windows #CVE202650454 #PrivilegeEscalation #UACBypass #InfoSec
##updated 2026-07-22T16:17:28.753000
2 posts
1 repos
CVE-2026-49176 Exploit Development: WalletService to SYSTEM https://lobste.rs/s/dxhdqx #security #windows
https://davidcarliez.github.io/blog/cve-2026-49176-walletservice-to-system/
CVE-2026-49176 Exploit Development: WalletService to SYSTEM https://lobste.rs/s/dxhdqx #security #windows
https://davidcarliez.github.io/blog/cve-2026-49176-walletservice-to-system/
updated 2026-07-22T05:17:11.750000
1 posts
41 repos
https://github.com/hidden-investigations/wp2shell-scanner
https://github.com/Adrees-Basheer/wp2shell-vulnerability-scanner
https://github.com/0xjessie21/wp2shell-checker
https://github.com/ekomsSavior/wp2shell
https://github.com/shinthink/CVE-2026-63030
https://github.com/bahartanir/wp2shell-scanner
https://github.com/Lukols-Dev/wp-cve-2026-63030-check
https://github.com/ananay/wp2shell-lab
https://github.com/HackingLZ/wp2shell_stock_chain
https://github.com/Senanfurkan/wordpress-cve-2026-63030
https://github.com/h4cd0c/wp2shell
https://github.com/eyesecurity/wp2shell-compromise-scanner-plugin
https://github.com/Iqbalx7/wp2shell
https://github.com/gagaltotal/CVE-2026-63030-CVE-2026-60137-wp2shell-poc
https://github.com/zi3lak/wp2shell_scanner
https://github.com/0xsha/wp2shell
https://github.com/47Cid/wp2shell-lab
https://github.com/Colere-Sys/wp2shell-poc
https://github.com/Bhanunamikaze/WP2Shell-CVE-2026-63030-POC
https://github.com/razureink/cve-2026-63030_60137-wordpress_rce_reproduction
https://github.com/NULL200OK/WP2Shell
https://github.com/lucifer0xf/wp2shell-Wordpress-TOWN
https://github.com/codeb0ssx/Ultimate-wp2shell
https://github.com/Crypto-Cat/wp2shell
https://github.com/JohenLastGen-JLG/wp2shell
https://github.com/ikow/wp2shell
https://github.com/SentinelXofficial/sxwp2shell
https://github.com/AkbarWiraN/holy-wp2shell
https://github.com/ZephrFish/wp2shell-scanner
https://github.com/Giangdurian/CVE-2026-63030-CVE-2026-60137
https://github.com/0xWhoknows/wp2shell
https://github.com/GhostInExile/CVE-2026-63030-Wp2Shell
https://github.com/kulichr/wp2shell
https://github.com/own2pwn-fr/wp2shell-detect
https://github.com/mcipekci/wp2shell
https://github.com/vulnquest58/PressVector
https://github.com/securelayer7/WordPresShell
https://github.com/Icex0/wp2shell-poc
https://github.com/dinosn/wp2shell-lab
https://github.com/ebrasha/abdal-cve-2026-60137
https://github.com/mrmtwoj/Fix-CVE-2026-60137-CVE-2026-63030-in-wordpress
(CISA TS-SOC) CVE-2026-60137 – WordPress Core SQL Injection Vulnerability
Severity: MEDIUM Impact Summary: Allows unauthenticated attackers to perform SQL injection, which can be chained with CVE-2026-63030 to achieve remote code execution on default WordPress installations....
##updated 2026-07-21T15:30:51
2 posts
CVE-2026-8933, lovingly documented by the Qualys Threat Research Unit, lets a local user squeeze through that gap, drop a malicious AppArmor rules file, prod systemd-udevd into running commands as root, and collect full root access like a door prize. Ubuntu Desktop 24.04, 25.10, and 26.04 ship this by default. It is a trap room with the pressure plate installed by the architect. (2/3)
##CVE-2026-8933, lovingly documented by the Qualys Threat Research Unit, lets a local user squeeze through that gap, drop a malicious AppArmor rules file, prod systemd-udevd into running commands as root, and collect full root access like a door prize. Ubuntu Desktop 24.04, 25.10, and 26.04 ship this by default. It is a trap room with the pressure plate installed by the architect. (2/3)
##updated 2026-07-21T10:10:00.103000
2 posts
2 repos
(CISA TS-MAN) CVE-2026-46817 – Oracle E-Business Suite Improper Privilege Management Vulnerability
Severity: CRITICAL Impact Summary: Allows unauthenticated attacker to compromise Oracle Payments, potentially resulting in full takeover....
##(CISA TS-MAN) CVE-2026-46817 – Oracle E-Business Suite Improper Privilege Management Vulnerability
Severity: CRITICAL Impact Summary: Allows unauthenticated attacker to compromise Oracle Payments, potentially resulting in full takeover....
##updated 2026-07-20T09:31:15
1 posts
A Konnectivity vulnerability (CVE-2026-16242, CVSS 9.4) lets unauthenticated attackers proxy and modify control-plane traffic. See the fix and mitigation.
#Konnectivity #Kubernetes #CVE202616242 #CloudSecurity #ControlPlane #AuthBypass #InfoSec #PatchNow
##updated 2026-07-16T18:32:24
2 posts
6 repos
https://github.com/Lechansky/CVE-2026-39808
https://github.com/HORKimhab/CVE-2026-39808
https://github.com/error-inside/CVE-2026-39808
https://github.com/ynsmroztas/FortiSandbox-RCE-Exploit-CVE-2026-39808
(CISA TS-SOC) CVE-2026-39808 – Fortinet FortiSandbox OS Command Injection Vulnerability
Severity: CRITICAL Impact Summary: Allows unauthenticated attackers to execute unauthorized code or commands on the affected system via crafted HTTP requests....
##(CISA TS-SOC) CVE-2026-39808 – Fortinet FortiSandbox OS Command Injection Vulnerability
Severity: CRITICAL Impact Summary: Allows unauthenticated attackers to execute unauthorized code or commands on the affected system via crafted HTTP requests....
##updated 2026-07-16T18:31:26
2 posts
(CISA TS-SOC) CVE-2026-58644 – Microsoft SharePoint Deserialization of Untrusted Data Vulnerability
Severity: CRITICAL Impact Summary: An unauthorized attacker can execute code over a network via deserialization of untrusted data....
##(CISA TS-SOC) CVE-2026-58644 – Microsoft SharePoint Deserialization of Untrusted Data Vulnerability
Severity: CRITICAL Impact Summary: An unauthorized attacker can execute code over a network via deserialization of untrusted data....
##updated 2026-07-16T05:16:16.603000
2 posts
(CISA TS-MAN) CVE-2023-4346 – KNX Association KNX Protocol Connection Authorization Option 1 Overly Restrictive Account Lockout Mechanism Vulnerability
Severity: HIGH Impact Summary: An attacker could purge all devices and set a BCU key to lock the device, potentially resulting in denial of service if additional security options are not enabled....
##(CISA TS-MAN) CVE-2023-4346 – KNX Association KNX Protocol Connection Authorization Option 1 Overly Restrictive Account Lockout Mechanism Vulnerability
Severity: HIGH Impact Summary: An attacker could purge all devices and set a BCU key to lock the device, potentially resulting in denial of service if additional security options are not enabled....
##updated 2026-07-15T15:33:14
1 posts
6 repos
https://github.com/srkyn/nginx-map-risk-audit
https://github.com/seguridadentrerios/CVE-2026-42533
https://github.com/suominen/CVE-2026-42533
https://github.com/0xCyberstan/CVE-2026-42533-Config-Scanner
15-Year-Old Pre-Auth nginx RCE Across 13 Call Sites: Two-Pass Capture Clobbering CVE-2026-42533 – cyberstan #devopsish https://cyberstan.co.uk/nginx-rce/
##updated 2026-07-15T14:18:24.010000
2 posts
(CISA TS-MAN) CVE-2026-56155 – Microsoft Active Directory Federation Services Insufficient Granularity of Access Control Vulnerability
Severity: HIGH Impact Summary: Allows an authorized attacker to locally elevate privileges due to insufficient granularity of access control....
##(CISA TS-MAN) CVE-2026-56155 – Microsoft Active Directory Federation Services Insufficient Granularity of Access Control Vulnerability
Severity: HIGH Impact Summary: Allows an authorized attacker to locally elevate privileges due to insufficient granularity of access control....
##updated 2026-07-14T18:32:37
6 posts
4 repos
https://github.com/0xBlackash/CVE-2026-54121
https://github.com/HORKimhab/CVE-2026-54121
Certighost (CVE-2026-54121) : un compte AD standard suffit pour usurper un contrôleur de domaine https://www.it-connect.fr/certighost-cve-2026-54121-ad-cs-controleur-de-domaine/ #ActuCybersécurité #ActiveDirectory #Cybersécurité #Vulnérabilité #Microsoft
##⚠️ CRITICAL: Certighost Exploit Lets Low-Privileged Active Directory Users Impersonate a Domain Controller
Certighost (CVE-2026-54121) allows any domain user to obtain a Domain Controller certificate and execute DCSync attacks to steal the krbtgt secret without admin rights. This gives attackers a direct path to full domain compromise. Any organization running unpatched Active Directory is at immediate…
##Certighost (CVE-2026-54121) : un compte AD standard suffit pour usurper un contrôleur de domaine https://www.it-connect.fr/certighost-cve-2026-54121-ad-cs-controleur-de-domaine/ #ActuCybersécurité #ActiveDirectory #Cybersécurité #Vulnérabilité #Microsoft
##⚠️ CRITICAL: Certighost Exploit Lets Low-Privileged Active Directory Users Impersonate a Domain Controller
Certighost (CVE-2026-54121) allows any domain user to obtain a Domain Controller certificate and execute DCSync attacks to steal the krbtgt secret without admin rights. This gives attackers a direct path to full domain compromise. Any organization running unpatched Active Directory is at immediate…
##‼️ PoC released for CVE-2026-54121 codenamed Certighost
CVE-2026-54121 is a privilege escalation vulnerability in Active Directory Certificate Services that enables authorized attackers to elevate privileges.
##New.
GitHub/H0j3n: Certighost (CVE-2026-54121) https://gist.github.com/H0j3n/a5ef2609b5f2944ac2390a191a534c26
More:
The Hacker News: Certighost Exploit Lets Low-Privileged Active Directory Users Impersonate a Domain Controller https://thehackernews.com/2026/07/certighost-exploit-lets-low-privileged.html @thehackernews #infosec #vulnerability #Microsoft #Windows
##updated 2026-07-08T15:32:52
1 posts
1 repos
Odnaleziono backdoor w routerach Tenda
W oprogramowaniu popularnego – również w naszym kraju – chińskiego producenta sprzętu sieciowego Tenda, odkryto ukrytą funkcjonalność. Pozwala ona na dostęp do interfejsu zarządzania WWW na prawach administratora urządzenia przy pomocy zapisanego na stałe hasła. TLDR: Czyli mamy do czynienia z klasyczną tylną furtką, zwaną powszechnie backdoorem. Podatność została oznaczona identyfikatorem CVE-2026-11405 i polega na modyfikacji...
##updated 2026-07-08T13:39:12.593000
2 posts
1 repos
(CISA TS-MAN) CVE-2026-55255 – Langflow Authorization Bypass Through User-Controlled Key Vulnerability
Severity: HIGH Impact Summary: An authenticated attacker can execute any flow belonging to another user by specifying the victim's flow ID in the request, bypassing authorization controls....
##(CISA TS-MAN) CVE-2026-55255 – Langflow Authorization Bypass Through User-Controlled Key Vulnerability
Severity: HIGH Impact Summary: An authenticated attacker can execute any flow belonging to another user by specifying the victim's flow ID in the request, bypassing authorization controls....
##updated 2026-06-26T15:33:15
3 posts
1 repos
Cl0p Ransomware Gang Exploits PTC Windchill Flaw in Data Extortion Drive
PTC Windchill users are under attack, with threat actors actively exploiting a critical flaw (CVE-2026-12569) that allows for remote code execution, prompting PTC to warn customers of heightened threat activity. This vulnerability, with a CVSS score of 9.3, has already been added to the US government's list of known exploited…
#Cl0pRansomware #PtcWindchill #Cve202612569 #Ransomware #SupplyChain
##CVE-2026-12569 - Changed to Known Ransomware Status
PTC Windchill and FlexPLM Improper Input Validation VulnerabilityVendor: PTCProduct: Windchill and FlexPLMPTC Windchill and FlexPLM contains an improper input validation vulnerability allowing an unauthenticated, remote attacker to execute arbitrary code by sending a malicious request to the network.Status changed from Unknown to Known for ransomware campaign usage.Flip detected on: July 24,https://nvd.nist.gov/vuln/detail/CVE-2026-12569
##CVE-2026-12569 - Changed to Known Ransomware Status
PTC Windchill and FlexPLM Improper Input Validation VulnerabilityVendor: PTCProduct: Windchill and FlexPLMPTC Windchill and FlexPLM contains an improper input validation vulnerability allowing an unauthenticated, remote attacker to execute arbitrary code by sending a malicious request to the network.Status changed from Unknown to Known for ransomware campaign usage.Flip detected on: July 24,https://nvd.nist.gov/vuln/detail/CVE-2026-12569
##updated 2026-06-17T10:35:18.950000
2 posts
⚠️ CRITICAL: Bing Images Flaws Let Crafted SVGs Run Commands as SYSTEM on Microsoft's Servers
Microsoft patched two critical RCE flaws in Bing Images (CVE-2026-32194, CVE-2026-32191) that allowed unauthenticated attackers to execute arbitrary commands as SYSTEM/root via malicious SVG files processed by ImageMagick. Exploit details were published publicly in July 2026. Anyone who uploaded im…
##⚠️ CRITICAL: Bing Images Flaws Let Crafted SVGs Run Commands as SYSTEM on Microsoft's Servers
Microsoft patched two critical RCE flaws in Bing Images (CVE-2026-32194, CVE-2026-32191) that allowed unauthenticated attackers to execute arbitrary commands as SYSTEM/root via malicious SVG files processed by ImageMagick. Exploit details were published publicly in July 2026. Anyone who uploaded im…
##updated 2026-03-20T00:31:34
2 posts
1 repos
⚠️ CRITICAL: Bing Images Flaws Let Crafted SVGs Run Commands as SYSTEM on Microsoft's Servers
Microsoft patched two critical RCE flaws in Bing Images (CVE-2026-32194, CVE-2026-32191) that allowed unauthenticated attackers to execute arbitrary commands as SYSTEM/root via malicious SVG files processed by ImageMagick. Exploit details were published publicly in July 2026. Anyone who uploaded im…
##⚠️ CRITICAL: Bing Images Flaws Let Crafted SVGs Run Commands as SYSTEM on Microsoft's Servers
Microsoft patched two critical RCE flaws in Bing Images (CVE-2026-32194, CVE-2026-32191) that allowed unauthenticated attackers to execute arbitrary commands as SYSTEM/root via malicious SVG files processed by ImageMagick. Exploit details were published publicly in July 2026. Anyone who uploaded im…
##updated 2026-03-18T18:31:10
1 posts
Proofpoint uncovered that Russia-aligned threat actor TA488 (Void Blizzard, Laundry Bear) was exploiting a previously unknown vulnerability against Zimbra mailservers for at least five months during 2025, until the issue was patched with CVE-2025-66376. https://www.proofpoint.com/us/blog/threat-insight/ta488-targets-zimbra-mailservers-half-click-exploits
##updated 2026-02-19T22:09:33
1 posts
7 repos
https://github.com/0xBlackash/CVE-2026-0770
https://github.com/0xgh057r3c0n/CVE-2026-0770
https://github.com/razureink/cve-2026-0770-langflow_rce_reproduction
https://github.com/affix/CVE-2026-0770-PoC
https://github.com/diamorphine666/CVE-2026-0770
(CISA TS-SOC) CVE-2026-0770 – Langflow Inclusion of Functionality from Untrusted Control Sphere Vulnerability
Severity: UNKNOWN Impact Summary: Remote attackers can execute arbitrary code on affected installations. Timestamp: 2026-07-24T01:31:37.336Z ATT&CK Mapping…...
##updated 2025-05-22T15:35:02
1 posts
CVE-2025-0679 named them. NVD and MITRE still can't agree on whether you had a fighting chance. You did not.
Update your Zimbra webmail client to the patched version immediately, or TA488 keeps the loot.
Reward: You've received a hollow Authenticator Token — pre-drained.
#ZeroDay #Zimbra #Espionage #CyberSecurity #2FA #AchievementUnlocked (2/2)
##CVE-2026-48021 in med-united epa4all (<2026-05-20): CRITICAL TLS cert validation flaw lets attackers decrypt/modify patient records & tokens. Upgrade to 2026-05-20+ ASAP. Details: https://radar.offseq.com/threat/cve-2026-48021-cwe-295-improper-certificate-validation-in-med-united-epa4all-26e8e441c1a877ee #OffSeq #HealthcareSecurity #Vuln #CVE202648021
##CVE-2026-48021 in med-united epa4all (<2026-05-20): CRITICAL TLS cert validation flaw lets attackers decrypt/modify patient records & tokens. Upgrade to 2026-05-20+ ASAP. Details: https://radar.offseq.com/threat/cve-2026-48021-cwe-295-improper-certificate-validation-in-med-united-epa4all-26e8e441c1a877ee #OffSeq #HealthcareSecurity #Vuln #CVE202648021
##🔴 CVE-2026-48021 - Critical (9.1)
In epa4all, prior to version 2026-05-20, an attacker who can intercept the TLS connection between epa4all and the ePA backend can complete the VAU handshake with attacker-controlled keys and obtain the session encryption keys. All inner HTTP traff...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-48021/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-54342 - High (8.1)
In epa4all, prior to version 2026-05-20, an attacker on the network path between epa4all and any backend (ePA Aktensystem, Konnektor, IDP, TSS) can present a self-signed TLS certificate and intercept the connection. For non-VAU connections (Konnek...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-54342/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##2 posts
67 repos
https://github.com/mrx-arafat/CVE-2026-63030-POC
https://github.com/hidden-investigations/wp2shell-scanner
https://github.com/Adrees-Basheer/wp2shell-vulnerability-scanner
https://github.com/0xjessie21/wp2shell-checker
https://github.com/ekomsSavior/wp2shell
https://github.com/shinthink/CVE-2026-63030
https://github.com/bahartanir/wp2shell-scanner
https://github.com/Lukols-Dev/wp-cve-2026-63030-check
https://github.com/ananay/wp2shell-lab
https://github.com/HackingLZ/wp2shell_stock_chain
https://github.com/Senanfurkan/wordpress-cve-2026-63030
https://github.com/h4cd0c/wp2shell
https://github.com/4B3R4M4-607D/CVE-2026-63030-POC
https://github.com/eyesecurity/wp2shell-compromise-scanner-plugin
https://github.com/skelersecurity/wordpress-skelersecurity-core-security-CVE-2026-63030
https://github.com/Iqbalx7/wp2shell
https://github.com/gagaltotal/CVE-2026-63030-CVE-2026-60137-wp2shell-poc
https://github.com/gbrsh/CVE-2026-63030
https://github.com/zi3lak/wp2shell_scanner
https://github.com/0xsha/wp2shell
https://github.com/47Cid/wp2shell-lab
https://github.com/Colere-Sys/wp2shell-poc
https://github.com/4minx/CVE-2026-63030
https://github.com/Bhanunamikaze/WP2Shell-CVE-2026-63030-POC
https://github.com/razureink/cve-2026-63030_60137-wordpress_rce_reproduction
https://github.com/imXur/WordPress-CVE-2026-63030-Analysis
https://github.com/NULL200OK/WP2Shell
https://github.com/Ch4120N/CVE-2026-63030
https://github.com/lucifer0xf/wp2shell-Wordpress-TOWN
https://github.com/TomorrowX6/CVE-2026-63030-poc
https://github.com/ChiefYoru/CVE-2026-63030_PoC
https://github.com/codeb0ssx/Ultimate-wp2shell
https://github.com/CybersecSpirit/CVE-2026-63030
https://github.com/Crypto-Cat/wp2shell
https://github.com/mhtsec/CVE-2026-63030
https://github.com/JohenLastGen-JLG/wp2shell
https://github.com/ikow/wp2shell
https://github.com/SentinelXofficial/sxwp2shell
https://github.com/joaovicdev/EXPLOIT-CVE-2026-63030
https://github.com/fullhunt/wp2shell-scan
https://github.com/AkbarWiraN/holy-wp2shell
https://github.com/ZephrFish/wp2shell-scanner
https://github.com/J4ck3LSyN-Gen2/CVE-2026-63030-wp2r00t
https://github.com/administrator-01001/CVE-2026-63030
https://github.com/attackercan/wp2shell-poc2
https://github.com/ebrasha/abdal-cve-2026-63030
https://github.com/mverschu/CVE-2026-63030
https://github.com/GhostInExile/CVE-2026-63030-Wp2Shell
https://github.com/0xBlackash/CVE-2026-63030
https://github.com/Giangdurian/CVE-2026-63030-CVE-2026-60137
https://github.com/raphy76/wp2shell-poc-fulljs
https://github.com/0xWhoknows/wp2shell
https://github.com/zeroc00I/CVE-2026-63030
https://github.com/tcyph3r/wp2shell-cve-2026-63030-root-cause
https://github.com/own2pwn-fr/wp2shell-detect
https://github.com/kulichr/wp2shell
https://github.com/c0gnit00/Wp2Shell
https://github.com/mcipekci/wp2shell
https://github.com/ZenithGenius/wordpress-batch-rce-lab
https://github.com/InstaWP/wp2shell-scan
https://github.com/vulnquest58/PressVector
https://github.com/securelayer7/WordPresShell
https://github.com/Lutfifakee-Project/wp2shell
https://github.com/Icex0/wp2shell-poc
https://github.com/dinosn/wp2shell-lab
https://github.com/0xh7ml/CVE-2026-63030
https://github.com/mrmtwoj/Fix-CVE-2026-60137-CVE-2026-63030-in-wordpress
(CISA TS-SOC) CVE-2026-60137 – WordPress Core SQL Injection Vulnerability
Severity: MEDIUM Impact Summary: Allows unauthenticated attackers to perform SQL injection, which can be chained with CVE-2026-63030 to achieve remote code execution on default WordPress installations....
##(CISA TS-SOC) CVE-2026-63030 – WordPress Core Interpretation Conflict Vulnerability
Severity: CRITICAL Impact Summary: An attacker can exploit an interpretation conflict in WordPress Core to perform SQL Injection, which may be chained to achieve Remote Code Execution....
##