##
Updated at UTC 2026-09-24T12:07:40.683860
| CVE | CVSS | EPSS | Posts | Repos | Nuclei | Updated | Description |
|---|---|---|---|---|---|---|---|
| CVE-2026-12227 | 9.8 | 0.00% | 2 | 0 | 2026-09-24T10:17:32.623000 | The Visual Composer Website Builder plugin for WordPress is vulnerable to Local | |
| CVE-2026-78308 | 9.8 | 0.00% | 2 | 0 | 2026-09-24T09:32:00 | Improper Authentication vulnerability in DIAEnergie allows Authentication Bypass | |
| CVE-2026-84502 | 9.9 | 0.00% | 1 | 0 | 2026-09-24T06:31:14 | A flaw was found in Red Hat Ansible Automation Platform's automation- controller | |
| CVE-2026-19599 | 9.9 | 0.00% | 2 | 0 | 2026-09-24T04:17:48.027000 | ZohoCorp ManageEngine OpManager MSP versions 12.8.709 and below were vulnerable | |
| CVE-2026-18467 | 9.8 | 0.00% | 4 | 0 | 2026-09-24T03:30:34 | The Paytium: Mollie payment forms & donations plugin for WordPress is vulnerable | |
| CVE-2026-96891 | 9.8 | 0.00% | 2 | 0 | 2026-09-24T03:16:58.950000 | A vulnerability was identified in D-Link DIR-825 3.00b32. Affected is the functi | |
| CVE-2026-97055 | 8.1 | 0.00% | 2 | 0 | 2026-09-24T02:16:54.333000 | SigNoz from v0.8.0 before v0.143.0 defaults the JWT tokenizer signing secret (to | |
| CVE-2026-70125 | 8.8 | 0.00% | 2 | 0 | 2026-09-24T00:30:34 | Microsoft Outlook Remote Code Execution Vulnerability | |
| CVE-2026-19125 | 8.1 | 0.00% | 2 | 1 | 2026-09-24T00:30:29 | The EthPress – Web3 Login plugin for WordPress is vulnerable to Authentication B | |
| CVE-2026-81536 | 7.7 | 0.00% | 2 | 0 | 2026-09-24T00:30:29 | IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated a | |
| CVE-2026-81208 | 7.7 | 0.00% | 2 | 0 | 2026-09-24T00:30:29 | IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow an authenticated user to | |
| CVE-2026-86583 | 8.8 | 0.00% | 2 | 0 | 2026-09-24T00:30:29 | The Import and export users and customers plugin for WordPress is vulnerable to | |
| CVE-2026-75887 | 7.5 | 0.00% | 2 | 0 | 2026-09-24T00:30:26 | A flaw was found in the OpenShift console. An unauthenticated attacker can explo | |
| CVE-2026-93577 | 9.9 | 0.00% | 3 | 0 | 2026-09-24T00:17:22.850000 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 19.2 | |
| CVE-2026-89078 | 9.9 | 0.00% | 1 | 0 | 2026-09-24T00:17:22.060000 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 19.2 | |
| CVE-2026-93352 | 9.8 | 0.00% | 4 | 0 | 2026-09-23T22:16:59.523000 | Laravel-Mediable 7.0.0 before 7.0.2 contains an incomplete patch for CVE-2026-49 | |
| CVE-2026-81537 | 8.8 | 0.00% | 2 | 0 | 2026-09-23T22:16:57.690000 | IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated a | |
| CVE-2026-80423 | 8.8 | 0.00% | 2 | 0 | 2026-09-23T22:16:57.270000 | IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated a | |
| CVE-2026-6928 | 9.8 | 0.00% | 2 | 0 | 2026-09-23T21:31:08 | IBM Concert 1.0.0 through 3.0.0 references or accesses memory after it has been | |
| CVE-2026-87899 | None | 0.00% | 2 | 0 | 2026-09-23T21:31:03 | Execution with unnecessary privileges in cPanel allows remote authenticated user | |
| CVE-2026-68490 | None | 0.00% | 1 | 0 | 2026-09-23T21:30:56 | Incorrect permission assignment allows local users to obtain sensitive CalDAV/Ca | |
| CVE-2026-6730 | 9.8 | 0.00% | 2 | 0 | 2026-09-23T21:17:02.053000 | IBM Concert 1.0.0 through 3.0.0 is vulnerable to a buffer overflow, caused by im | |
| CVE-2026-88020 | 6.1 | 0.27% | 1 | 0 | 2026-09-23T19:42:48.540000 | Autonomy Logic OpenPLC 3 is susceptible to an improper neutralization of input d | |
| CVE-2026-19202 | 0 | 0.23% | 1 | 0 | 2026-09-23T19:42:48.540000 | A caching flaw in the toolbox-core package of the mcp-toolbox-sdk-python SDK cau | |
| CVE-2026-49881 | 7.8 | 0.11% | 1 | 2 | 2026-09-23T19:23:28.350000 | In serviceClassExists of InCallController.java, there is a possible arbitrary co | |
| CVE-2026-18162 | 9.8 | 0.86% | 2 | 0 | 2026-09-23T19:17:28.687000 | IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remot | |
| CVE-2026-73512 | 7.5 | 0.83% | 1 | 0 | 2026-09-23T18:43:37.403000 | Envoy is an open source edge and service proxy designed for cloud-native applica | |
| CVE-2026-73547 | 7.5 | 0.83% | 1 | 0 | 2026-09-23T18:21:42.327000 | Envoy is an open source edge and service proxy designed for cloud-native applica | |
| CVE-2026-18169 | 9.9 | 0.78% | 1 | 0 | 2026-09-23T18:17:07.270000 | IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remot | |
| CVE-2026-63447 | 7.5 | 0.36% | 1 | 0 | 2026-09-23T18:12:04.247000 | Suricata is a network Intrusion Detection System, Intrusion Prevention System an | |
| CVE-2026-91809 | 7.8 | 0.17% | 1 | 0 | 2026-09-23T17:58:26.570000 | A use-after-free vulnerability exists in Foxit PDF Editor/Reader’s handling of m | |
| CVE-2026-91818 | 7.8 | 0.17% | 1 | 0 | 2026-09-23T17:58:26.570000 | A use-after-free vulnerability exists in Foxit PDF Editor/Reader’s JavaScript ha | |
| CVE-2026-83621 | 8.1 | 0.29% | 1 | 0 | 2026-09-23T17:17:50.090000 | ntopng is a web-based network traffic monitoring application. Prior to 6.7.26071 | |
| CVE-2026-93616 | 9.8 | 2.42% | 15 | 2 | 2026-09-23T16:38:38.987000 | A directory traversal and file upload vulnerability allows an unauthenticated at | |
| CVE-2026-77987 | 0 | 0.89% | 1 | 0 | 2026-09-23T16:16:45.047000 | A server-side request forgery (SSRF) vulnerability was identified in the noteboo | |
| CVE-2026-96257 | 10.0 | 1.04% | 1 | 0 | 2026-09-23T15:17:31.920000 | A flaw has been found in Fast FAC1203R Gigabit Edition 2.0.4. Affected by this i | |
| CVE-2026-93952 | 10.0 | 0.74% | 11 | 0 | 2026-09-23T14:32:12.417000 | VeloCloud Orchestrator (VCO) on-prem has a security issue where this issue may a | |
| CVE-2026-94127 | 9.8 | 1.39% | 16 | 1 | 2026-09-23T14:32:07.910000 | When a BIG-IP APM access policy and an OAuth profile are configured on a virtual | |
| CVE-2026-91811 | 7.8 | 0.17% | 1 | 0 | 2026-09-23T09:30:37 | A heap-based out-of-bounds write vulnerability exists in Foxit PDF Editor/Reader | |
| CVE-2026-74849 | 9.8 | 4.46% | 1 | 0 | 2026-09-23T04:17:44.340000 | Zohocorp ManageEngine ADSelfService Plus versions before build 7001 are vulnerab | |
| CVE-2026-32996 | 0 | 0.16% | 3 | 1 | 2026-09-23T04:17:43.927000 | This vulnerability in Veeam Agent for Microsoft Windows allows for Local Privile | |
| CVE-2026-18163 | 9.8 | 0.81% | 2 | 0 | 2026-09-23T00:31:21 | IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remot | |
| CVE-2026-28324 | 9.8 | 0.65% | 2 | 0 | 2026-09-22T21:31:34 | SolarWinds Observability Self-Hosted was found to be affected by an unauthentica | |
| CVE-2026-87121 | 9.8 | 0.78% | 2 | 0 | 2026-09-22T21:31:34 | lwIP TCP/IP Stack MQTT is vulnerable to an out-of-bounds write, which may allow | |
| CVE-2026-85102 | 9.8 | 0.66% | 15 | 0 | 2026-09-22T21:30:40 | Improper certificate trust validation during VPN negotiation in Check Point Quan | |
| CVE-2026-94411 | 8.8 | 0.28% | 1 | 0 | 2026-09-22T20:43:58.793000 | jshERP 3.6 contains a privilege escalation vulnerability in the updateOneValueBy | |
| CVE-2026-94497 | 8.3 | 0.26% | 1 | 0 | 2026-09-22T20:43:58.793000 | jshERP through 3.6 fails to validate object ownership in by-id info, update, and | |
| CVE-2026-77560 | 8.1 | 0.33% | 1 | 0 | 2026-09-22T20:37:12 | # tinyauth: forward-auth per-app ACL is matched case-sensitively against the (ca | |
| CVE-2026-77322 | 7.5 | 0.61% | 1 | 0 | 2026-09-22T20:34:31 | ### Summary The WebSocket transport allocates a buffer from the frame payload l | |
| CVE-2026-93345 | 7.5 | 0.49% | 1 | 0 | 2026-09-22T20:25:55.870000 | MikroTik RouterOS before 7.25beta4 contains an improper input validation vulnera | |
| CVE-2026-94626 | 7.5 | 0.45% | 1 | 0 | 2026-09-22T20:25:55.870000 | vLLM through 0.29.0 fails to validate the tp_size parameter in kv_transfer_param | |
| CVE-2026-94624 | 7.5 | 0.45% | 1 | 0 | 2026-09-22T20:25:55.870000 | vLLM through 0.29.0 contains a denial of service vulnerability in P2P KV offload | |
| CVE-2026-94623 | 7.5 | 0.45% | 1 | 0 | 2026-09-22T20:25:55.870000 | vLLM through 0.29.0 contains a denial of service vulnerability in the NIXL conne | |
| CVE-2026-88419 | 8.8 | 0.48% | 1 | 0 | 2026-09-22T20:17:11.083000 | An unrestricted upload of files with a dangerous type in the thumbnail-upload en | |
| CVE-2026-87902 | 8.1 | 0.42% | 15 | 13 | 2026-09-22T20:00:03.713000 | An unauthenticated attacker can make `get_page_template()` page-template resolut | |
| CVE-2026-88407 | 7.5 | 0.26% | 1 | 0 | 2026-09-22T20:00:03.713000 | An out-of-bounds read in the node_token_count/relation_token_count component of | |
| CVE-2026-88411 | 7.5 | 0.28% | 1 | 0 | 2026-09-22T20:00:03.713000 | Improper error handling in the GRAPH.EFFECT component (/effects/effects_apply.c) | |
| CVE-2026-88409 | 8.8 | 0.28% | 1 | 0 | 2026-09-22T20:00:03.713000 | FalkorDB (Redis module) v4.20.1 to v4.20.4 was discovered to contain a buffer ov | |
| CVE-2026-94084 | 9.4 | 0.40% | 1 | 0 | 2026-09-22T19:44:01.280000 | Suricata before 8.0.7 has an Http2ThreadMultiBuf use-after-free when a transacti | |
| CVE-2026-25254 | 9.8 | 0.73% | 1 | 0 | 2026-09-22T19:37:36.747000 | Improper authorization leads to Remote Code Execution via SocketIO interface. | |
| CVE-2026-84239 | 7.6 | 0.41% | 1 | 0 | 2026-09-22T19:32:25.730000 | IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to | |
| CVE-2026-19658 | 9.8 | 0.41% | 1 | 1 | 2026-09-22T19:04:55.677000 | The Give Tributes plugin for WordPress is vulnerable to PHP Object Injection in | |
| CVE-2026-81642 | 9.8 | 0.60% | 2 | 1 | 2026-09-22T18:59:21.953000 | In NLnet Labs Unbound up to and including 1.26.0, a vulnerability was found in t | |
| CVE-2026-89275 | 10.0 | 1.25% | 1 | 0 | 2026-09-22T18:33:43 | Adobe Campaign Classic (ACC) is affected by an Improper Control of Generation of | |
| CVE-2026-94099 | 9.9 | 1.69% | 1 | 0 | 2026-09-22T16:18:17.183000 | A security flaw has been discovered in Netcore NBR200V2 1.3.241127.071246. This | |
| CVE-2026-95675 | 9.8 | 3.91% | 1 | 0 | 2026-09-22T15:32:43 | D-Link DAP-1360 firmware version 6.14 and earlier contains an unauthenticated re | |
| CVE-2026-65113 | 9.8 | 0.61% | 1 | 0 | 2026-09-22T15:32:43 | NVIDIA Infrastructure Controller for Linux contains a vulnerability where an att | |
| CVE-2026-84388 | 9.6 | 0.38% | 1 | 1 | 2026-09-22T15:32:41 | A improper restriction of rendered ui layers or frames vulnerability in Fortinet | |
| CVE-2026-88406 | 7.5 | 0.27% | 1 | 0 | 2026-09-22T15:32:31 | FalkorDB (Redis module) v4.20.1 to v4.20.4 was discovered to contain a stack ove | |
| CVE-2026-7273 | 8.8 | 2.41% | 7 | 0 | 2026-09-22T12:10:51.067000 | A stack-based buffer overflow vulnerability in the CGI program of Zyxel GS1900-4 | |
| CVE-2026-13355 | 9.8 | 0.34% | 1 | 1 | 2026-09-22T06:30:35 | The Meta Box AIO plugin for WordPress is vulnerable to Privilege Escalation to A | |
| CVE-2026-94301 | 9.8 | 0.39% | 1 | 0 | 2026-09-22T04:18:02.810000 | The fix for CVE-2026-47065/ZDRES-232 ("resolveProxyClass Not Overridden - accept | |
| CVE-2026-94493 | 10.0 | 0.73% | 1 | 0 | 2026-09-22T03:31:06 | A vulnerability was detected in Gigatech PDV5701 1.0.31_240305_112640. This issu | |
| CVE-2026-94540 | 7.7 | 0.11% | 1 | 0 | 2026-09-22T00:31:02 | DesktopSMS 1.11.0 by MrPear contains an unauthorized access vulnerability that a | |
| CVE-2026-94627 | 7.5 | 0.45% | 1 | 0 | 2026-09-22T00:31:02 | vLLM Mooncake connector through 0.29.0 fails to properly manage GPU KV cache blo | |
| CVE-2026-94425 | 8.8 | 0.11% | 2 | 0 | 2026-09-22T00:31:02 | A vulnerability was found in Moore Threads MTT S80 Driver Package 340.150. The a | |
| CVE-2026-12249 | 9.0 | 0.14% | 1 | 0 | 2026-09-21T22:27:11 | An issue was discovered in Canonical ADSys upstream versions through v0.16.2. Du | |
| CVE-2026-81469 | 7.8 | 0.13% | 1 | 0 | 2026-09-21T21:32:01 | Dell Inventory Collector Client, versions prior to 15.0.0, contain an Unquoted S | |
| CVE-2026-94501 | 8.8 | 0.30% | 1 | 0 | 2026-09-21T21:32:00 | jshERP through 3.6 contains an authorization bypass vulnerability in the userBus | |
| CVE-2026-94424 | 8.8 | 0.14% | 1 | 0 | 2026-09-21T21:31:57 | A vulnerability has been found in Moore Threads MTT S80 Driver Package up to 340 | |
| CVE-2026-93958 | 9.1 | 2.17% | 1 | 1 | 2026-09-21T19:17:18.593000 | A vulnerability was found in D-Link R95 BE9500_1.00.16. This vulnerability affec | |
| CVE-2026-79920 | 9.9 | 0.36% | 1 | 0 | 2026-09-21T19:17:11.323000 | Ajenti is a Linux & BSD modular server admin panel. Prior to version 2.2.16, any | |
| CVE-2026-61674 | 0 | 0.65% | 2 | 0 | 2026-09-21T19:17:07.067000 | Fluent Bit is a fast and lightweight logs, metrics, and traces processor for Lin | |
| CVE-2026-80521 | 7.8 | 0.13% | 3 | 1 | 2026-09-21T15:32:39 | In the Linux kernel, the following vulnerability has been resolved: af_unix: Un | |
| CVE-2026-82187 | 9.8 | 0.30% | 1 | 0 | 2026-09-21T15:17:32.223000 | The Web to Print Online Designer WordPress plugin before 2.15.0 does not validat | |
| CVE-2026-10747 | 10.0 | 0.52% | 1 | 0 | 2026-09-21T13:17:07.147000 | IBM MQ Appliance could allow a remote attacker to cause a denial of service or p | |
| CVE-2026-94101 | 9.9 | 0.45% | 1 | 0 | 2026-09-21T03:30:27 | A security vulnerability has been detected in Netcore NBR200V2 1.3.241127.071246 | |
| CVE-2026-86553 | 8.5 | 0.45% | 1 | 1 | 2026-09-20T06:30:20 | SmartLife app dynamically generates fresh SmartLife application authentication p | |
| CVE-2026-94083 | 9.4 | 0.40% | 1 | 0 | 2026-09-20T03:30:29 | Suricata before 8.0.7 has a DoH2 type confusion that can cause an invalid free, | |
| CVE-2026-93485 | 7.1 | 0.16% | 1 | 2 | 2026-09-19T15:17:08.323000 | Improper neutralization of input during web page generation ('cross-site scripti | |
| CVE-2026-61817 | 8.5 | 0.58% | 1 | 0 | 2026-09-19T15:16:59.910000 | pg_partman is a PostgreSQL extension that manages partitioned tables by time or | |
| CVE-2026-53266 | 8.8 | 0.28% | 2 | 2 | 2026-09-19T04:17:53.580000 | In the Linux kernel, the following vulnerability has been resolved: netfilter: | |
| CVE-2026-88097 | 8.1 | 0.22% | 1 | 0 | 2026-09-18T21:32:43 | Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacke | |
| CVE-2026-84086 | 7.2 | 0.65% | 1 | 0 | 2026-09-18T21:32:40 | IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to | |
| CVE-2026-84085 | 8.1 | 0.32% | 1 | 0 | 2026-09-18T21:32:39 | IBM Guardium Data Protection 12.2 could allow a remote attacker to execute arbit | |
| CVE-2026-81937 | 7.2 | 1.45% | 1 | 0 | 2026-09-18T21:32:35 | IBM Guardium Data Protection 12.2 is vulnerable to a command injection vulnerabi | |
| CVE-2025-39682 | 7.1 | 2.03% | 1 | 3 | 2026-09-18T21:31:33 | In the Linux kernel, the following vulnerability has been resolved: tls: fix ha | |
| CVE-2026-13639 | 9.8 | 0.51% | 1 | 0 | 2026-09-18T20:17:06.860000 | An insufficient entropy vulnerability in login logic in Synology DiskStation Man | |
| CVE-2026-90898 | 9.8 | 0.34% | 1 | 1 | 2026-09-18T19:31:11.370000 | Bifrost registers MCP clients through its management API. A stdio client is a co | |
| CVE-2026-19499 | 7.7 | 0.38% | 1 | 0 | 2026-09-18T18:17:47.257000 | Calling strfmon and strfmon_l in the GNU C Library version 2.38 to 2.44 can writ | |
| CVE-2026-85058 | 7.5 | 0.27% | 1 | 0 | 2026-09-18T17:58:41 | ## Summary Moquette MQTT Broker fails to enforce ACL write permission checks wh | |
| CVE-2025-39964 | 3.3 | 0.79% | 2 | 3 | 2026-09-18T15:31:06 | In the Linux kernel, the following vulnerability has been resolved: crypto: af_ | |
| CVE-2026-13684 | 9.8 | 0.46% | 1 | 0 | 2026-09-18T09:31:20 | An improper encoding or escaping of output vulnerability in SCGI in Synology Dis | |
| CVE-2026-76460 | 10.0 | 0.78% | 2 | 1 | 2026-09-17T12:46:31.670000 | A vulnerability in an API of Cisco Identity Services Engine (ISE) could allow an | |
| CVE-2026-79994 | 0 | 0.11% | 1 | 0 | 2026-09-16T20:38:33.883000 | The guest-to-host Unix-domain socket relay in Docker Sandboxes validates that a | |
| CVE-2026-58704 | 8.0 | 0.21% | 1 | 0 | 2026-09-16T15:30:57 | In Cellular Modem, there is a possible permission bypass due to a logic error in | |
| CVE-2026-77179 | None | 0.16% | 1 | 1 | 2026-09-16T00:32:25 | On macOS, the virtio-fs host server used by Docker Sandboxes improperly follows | |
| CVE-2026-43783 | 7.8 | 0.15% | 2 | 1 | 2026-09-15T19:24:16.433000 | A race condition was addressed with improved locking. This issue is fixed in mac | |
| CVE-2026-59570 | 7.5 | 0.09% | 1 | 0 | 2026-09-14T15:32:56 | On affected versions of Zscaler client connector, a pre-installed peer app can t | |
| CVE-2026-86060 | 9.8 | 1.06% | 1 | 2 | 2026-09-11T15:32:27 | RouterOS contains an argument-handling flaw in the SSH login path involving user | |
| CVE-2026-85103 | 9.8 | 0.36% | 2 | 0 | 2026-09-10T04:18:18.390000 | A heap-based buffer overflow in VPN certificate ASN.1 decoding may allow an unau | |
| CVE-2026-85880 | 7.8 | 0.57% | 1 | 0 | 2026-09-08T21:34:12 | Heap-based buffer overflow in Windows ALPC allows an authorized attacker to elev | |
| CVE-2026-81963 | 7.8 | 0.63% | 1 | 0 | 2026-09-08T21:34:09 | Improper link resolution before file access ('link following') in Windows Update | |
| CVE-2026-86296 | 10.0 | 1.35% | 3 | 0 | 2026-09-08T17:18:39.613000 | A vulnerability was determined in D-Link DIR-822A A_101. This vulnerability affe | |
| CVE-2026-67279 | 0 | 0.45% | 1 | 0 | 2026-09-08T16:18:10.600000 | RouterOS SSH enters the connection protocol after a client-requested rekey even | |
| CVE-2026-75925 | 9.6 | 0.67% | 1 | 0 | 2026-09-08T15:28:33.090000 | Improper neutralization of CRLF sequences in IXON VPN Client before version 1.4. | |
| CVE-2026-50093 | 9.0 | 0.19% | 1 | 0 | 2026-09-08T09:35:45 | A vulnerability has been identified in Siveillance Control Pro V3.0 (All version | |
| CVE-2026-43499 | 7.8 | 0.79% | 2 | 100 | 2026-09-08T09:18:05.213000 | In the Linux kernel, the following vulnerability has been resolved: rtmutex: Us | |
| CVE-2026-78306 | 0 | 0.15% | 1 | 2 | 2026-08-26T16:49:18.760000 | DJI drones expose an unauthenticated DUML command interface over Bluetooth that | |
| CVE-2026-42945 | 8.1 | 68.05% | 1 | 45 | 2026-08-25T15:33:26 | NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_rewrite_mo | |
| CVE-2026-33824 | 9.8 | 72.69% | 1 | 2 | 2026-08-19T04:16:58.560000 | Double free in Windows IKE Extension allows an unauthorized attacker to execute | |
| CVE-2026-59310 | 9.8 | 50.38% | 2 | 2 | 2026-08-18T18:32:52 | VMware vCenter contains a directory traversal vulnerability in the Syslog server | |
| CVE-2026-55040 | 9.1 | 50.59% | 1 | 5 | template | 2026-08-18T18:32:50 | Weak authentication in Microsoft Office SharePoint allows an unauthorized attack |
| CVE-2026-15830 | 5.3 | 1.26% | 2 | 0 | 2026-08-18T16:30:33.827000 | An issue was discovered in Django 5.2 before 5.2.17 and 6.0 before 6.0.8. GeoDja | |
| CVE-2026-68820 | 7.0 | 6.18% | 1 | 4 | 2026-08-11T21:33:01 | Use after free in Windows Ancillary Function Driver for WinSock allows an author | |
| CVE-2026-65660 | 6.5 | 0.81% | 4 | 0 | 2026-08-11T18:31:43 | Improper control of generation of code ('code injection') in Microsoft Office Sh | |
| CVE-2026-63077 | 9.8 | 86.52% | 1 | 6 | template | 2026-08-06T05:17:05.170000 | In JetBrains TeamCity before 2026.1.3, 2025.11.7 unauthenticated remote code exe |
| CVE-2026-39364 | 7.5 | 2.00% | 1 | 0 | template | 2026-08-04T13:18:24.733000 | Vite is a frontend tooling framework for JavaScript. From 7.1.0 to before 7.3.2 |
| CVE-2026-20805 | 5.5 | 5.19% | 1 | 6 | 2026-07-30T21:16:56.810000 | Exposure of sensitive information to an unauthorized actor in Desktop Windows Ma | |
| CVE-2026-59309 | 9.8 | 7.94% | 2 | 0 | 2026-07-30T15:31:54 | VMware vCenter contains an authentication bypass vulnerability in the VMware Dir | |
| CVE-2026-12495 | 0 | 0.17% | 1 | 0 | 2026-07-28T08:17:14.187000 | Denial-of-service (DoS) vulnerability due to a stack buffer overflow in the http | |
| CVE-2025-68686 | 5.9 | 29.60% | 1 | 0 | 2026-07-27T18:31:25 | An Exposure of Sensitive Information to an Unauthorized Actor vulnerability [CWE | |
| CVE-2026-48842 | 8.1 | 0.76% | 3 | 0 | 2026-07-24T10:10:00.197000 | Roundcube Webmail 1.6.x before 1.6.16 and 1.7.x before 1.7.1 has Pre-authenticat | |
| CVE-2026-41091 | 7.8 | 8.20% | 1 | 4 | 2026-07-24T10:10:00.197000 | Improper link resolution before file access ('link following') in Microsoft Defe | |
| CVE-2026-45659 | 8.8 | 76.08% | 1 | 2 | 2026-07-23T11:10:00.120000 | Deserialization of untrusted data in Microsoft Office SharePoint allows an autho | |
| CVE-2026-50522 | 9.8 | 85.40% | 1 | 5 | 2026-07-22T21:31:51 | Deserialization of untrusted data in Microsoft Office SharePoint allows an unaut | |
| CVE-2026-49972 | 8.8 | 1.08% | 3 | 0 | 2026-07-13T21:31:30 | Laravel-Mediable before 7.0.0 contains a file upload vulnerability that allows u | |
| CVE-2026-47065 | 9.8 | 0.50% | 1 | 0 | 2026-07-13T17:24:48 | ZDRES-232: resolveProxyClass Not Overridden - acceptMatchers Filter Bypass via j | |
| CVE-2026-21519 | 7.8 | 2.46% | 1 | 0 | 2026-06-17T10:18:46.287000 | Access of resource using incompatible type ('type confusion') in Desktop Window | |
| CVE-2026-21513 | 8.8 | 15.64% | 1 | 0 | 2026-06-17T10:18:45.540000 | Protection mechanism failure in MSHTML Framework allows an unauthorized attacker | |
| CVE-2022-42475 | 9.8 | 99.47% | 1 | 9 | 2026-06-17T05:04:59.630000 | A heap-based buffer overflow vulnerability [CWE-122] in FortiOS SSL-VPN 7.2.0 th | |
| CVE-2021-44168 | 3.3 | 0.87% | 1 | 1 | 2026-06-17T04:11:59.317000 | A download of code without integrity check vulnerability in the "execute restore | |
| CVE-2020-4428 | 9.1 | 61.69% | 1 | 0 | 2026-06-17T03:19:58.553000 | IBM Data Risk Manager 2.0.1, 2.0.2, 2.0.3, and 2.0.4 could allow a remote authen | |
| CVE-2026-45756 | None | 0.63% | 1 | 0 | 2026-05-28T17:34:56 | ### Description The `JsonPath` component's `match()` and `search()` filter func | |
| CVE-2026-21525 | 6.2 | 5.04% | 1 | 0 | 2026-03-27T21:31:32 | Null pointer dereference in Windows Remote Access Connection Manager allows an u | |
| CVE-2026-4575 | 2.4 | 0.21% | 1 | 0 | 2026-03-23T06:30:39 | A flaw has been found in code-projects Exam Form Submission 1.0. This issue affe | |
| CVE-2020-4427 | 9.8 | 70.03% | 1 | 0 | template | 2025-11-04T00:30:30 | IBM Data Risk Manager 2.0.1, 2.0.2, 2.0.3, 2.0.4, 2.0.5, and 2.0.6 could allow a |
| CVE-2023-48788 | 9.8 | 98.45% | 1 | 1 | 2025-10-22T00:34:05 | A improper neutralization of special elements used in an sql command ('sql injec | |
| CVE-2023-20118 | 7.2 | 54.11% | 2 | 0 | 2025-10-22T00:33:50 | A vulnerability in the web-based management interface of Cisco Small Business Ro | |
| CVE-2025-6625 | 7.5 | 0.48% | 1 | 0 | 2025-08-18T09:31:52 | CWE-20: Improper Input Validation vulnerability exists that could cause a Denial | |
| CVE-2024-20260 | 8.6 | 0.59% | 1 | 0 | 2024-10-23T18:33:16 | A vulnerability in the VPN and management web servers of the Cisco Adaptive Secu | |
| CVE-2024-0244 | 9.8 | 1.38% | 1 | 0 | 2024-02-22T05:08:38 | Buffer overflow in CPCA PCFAX number process of Office Multifunction Printers an | |
| CVE-2026-94545 | 0 | 0.00% | 3 | 2 | N/A | ||
| CVE-2026-84739 | 0 | 0.00% | 2 | 0 | N/A | ||
| CVE-2026-78902 | 0 | 0.00% | 2 | 0 | N/A | ||
| CVE-2026-67231 | 0 | 0.00% | 2 | 0 | N/A | ||
| CVE-2026-88804 | 0 | 0.00% | 2 | 0 | N/A | ||
| CVE-2026-96419 | 0 | 0.00% | 1 | 0 | N/A | ||
| CVE-2026-69184 | 0 | 0.68% | 1 | 0 | N/A | ||
| CVE-2024-85880 | 0 | 0.00% | 1 | 0 | N/A | ||
| CVE-2024-85046 | 0 | 0.00% | 1 | 0 | N/A | ||
| CVE-2024-87491 | 0 | 0.00% | 1 | 0 | N/A | ||
| CVE-2026-89090 | 0 | 0.31% | 1 | 0 | N/A | ||
| CVE-2026-85279 | 0 | 0.21% | 1 | 0 | N/A | ||
| CVE-2026-79916 | 0 | 0.27% | 1 | 0 | N/A | ||
| CVE-2026-73550 | 0 | 0.88% | 1 | 0 | N/A | ||
| CVE-2026-73552 | 0 | 0.66% | 1 | 0 | N/A | ||
| CVE-2026-73548 | 0 | 0.66% | 1 | 0 | N/A |
updated 2026-09-24T10:17:32.623000
2 posts
Visual Composer Website Builder plugin ≤45.16.0 hit by CRITICAL LFI (CVE-2026-12227). Unauthenticated attackers can execute arbitrary PHP files via 'vcv-template'. Patch unconfirmed. Mitigate & monitor now: https://radar.offseq.com/threat/cve-2026-12227-cwe-98-improper-control-of-filename-for-includerequire-statement-in-php-program-php-ed037e731eb4a3e7 #OffSeq #WordPress #Vuln #LFI
##Visual Composer Website Builder plugin ≤45.16.0 hit by CRITICAL LFI (CVE-2026-12227). Unauthenticated attackers can execute arbitrary PHP files via 'vcv-template'. Patch unconfirmed. Mitigate & monitor now: https://radar.offseq.com/threat/cve-2026-12227-cwe-98-improper-control-of-filename-for-includerequire-statement-in-php-program-php-ed037e731eb4a3e7 #OffSeq #WordPress #Vuln #LFI
##updated 2026-09-24T09:32:00
2 posts
CVE-2026-78308 | CRITICAL | DIAEnergie (<1.11.00.022): Improper Authentication lets attackers bypass auth controls. Patch urgently when available. https://radar.offseq.com/threat/cve-2026-78308-cwe-287-improper-authentication-in-deltaww-diaenergie-6cc9f25ab57e2374 #OffSeq #ICS #Vulnerability #Cybersecurity
##CVE-2026-78308 | CRITICAL | DIAEnergie (<1.11.00.022): Improper Authentication lets attackers bypass auth controls. Patch urgently when available. https://radar.offseq.com/threat/cve-2026-78308-cwe-287-improper-authentication-in-deltaww-diaenergie-6cc9f25ab57e2374 #OffSeq #ICS #Vulnerability #Cybersecurity
##updated 2026-09-24T06:31:14
1 posts
Red Hat Ansible Automation Platform CVE-2026-84502: A Low-Privilege Project Permission Can Become Control-Plane RCE + Video
Critical Vulnerability Exposes a Dangerous Privilege Boundary Red Hat has disclosed CVE-2026-84502, a critical argument-injection vulnerability in the Ansible Automation Platform automation-controller. The flaw carries a CVSS score of 9.9 and can allow an authenticated, low-privileged project user to execute arbitrary commands on the controller's…
##updated 2026-09-24T04:17:48.027000
2 posts
ManageEngine security vulnerabilities expose servers to remote code execution. Patch these OpManager vulnerabilities and CVE-2026-19599 to secure your network.
#ManageEngine #Cybersecurity #CVE202619599 #OpManager #Infosec #Vulnerability
##CVE-2026-19599: CRITICAL RCE in ManageEngine OpManager MSP (<12.8.711). Improper OS command neutralization enables remote command execution (CVSS 9.9). Upgrade to 12.8.711+ ASAP. https://radar.offseq.com/threat/cve-2026-19599-cwe-78-improper-neutralization-of-special-elements-used-in-an-os-command-os-command-d62870fccbe1d229 #OffSeq #Vuln #InfoSec #RCE
##updated 2026-09-24T03:30:34
4 posts
🔴 CVE-2026-18467 - Critical (9.8)
The Paytium: Mollie payment forms & donations plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 5.0.3. The 5.0.3 patch introduced a wp_hash()/hash_equals() signature gate on the pt-paytium-user-data f...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-18467/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-18467: CRITICAL privilege escalation in Paytium: Mollie payment forms (≤5.0.3). Unauthenticated users can create admin accounts via exploited payment forms. Restrict forms or disable plugin until full fix. https://radar.offseq.com/threat/cve-2026-18467-cwe-269-improper-privilege-management-in-paytiumsupport-paytium-mollie-payment-forms-816d892a2e04a4c5 #OffSeq #WordPress #CVE202618467 #Security
##🔴 CVE-2026-18467 - Critical (9.8)
The Paytium: Mollie payment forms & donations plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 5.0.3. The 5.0.3 patch introduced a wp_hash()/hash_equals() signature gate on the pt-paytium-user-data f...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-18467/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-18467: CRITICAL privilege escalation in Paytium: Mollie payment forms (≤5.0.3). Unauthenticated users can create admin accounts via exploited payment forms. Restrict forms or disable plugin until full fix. https://radar.offseq.com/threat/cve-2026-18467-cwe-269-improper-privilege-management-in-paytiumsupport-paytium-mollie-payment-forms-816d892a2e04a4c5 #OffSeq #WordPress #CVE202618467 #Security
##updated 2026-09-24T03:16:58.950000
2 posts
🔴 CVE-2026-96891 - Critical (9.8)
A vulnerability was identified in D-Link DIR-825 3.00b32. Affected is the function tunnel_set_params of the file tunnel.c of the component rp-l2tp. The manipulation of the argument peer_hostname leads to out-of-bounds write. The attack may be in...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-96891/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-96891 - Critical (9.8)
A vulnerability was identified in D-Link DIR-825 3.00b32. Affected is the function tunnel_set_params of the file tunnel.c of the component rp-l2tp. The manipulation of the argument peer_hostname leads to out-of-bounds write. The attack may be in...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-96891/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T02:16:54.333000
2 posts
🟠 CVE-2026-97055 - High (8.1)
SigNoz from v0.8.0 before v0.143.0 defaults the JWT tokenizer signing secret (tokenizer::jwt::secret, set via SIGNOZ_TOKENIZER_JWT_SECRET or the deprecated SIGNOZ_JWT_SECRET) to an empty string, and Config.Validate() does not reject the empty valu...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97055/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-97055 - High (8.1)
SigNoz from v0.8.0 before v0.143.0 defaults the JWT tokenizer signing secret (tokenizer::jwt::secret, set via SIGNOZ_TOKENIZER_JWT_SECRET or the deprecated SIGNOZ_JWT_SECRET) to an empty string, and Config.Validate() does not reject the empty valu...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97055/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T00:30:34
2 posts
🟠 CVE-2026-70125 - High (8.8)
Microsoft Outlook Remote Code Execution Vulnerability
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-70125/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-70125 - High (8.8)
Microsoft Outlook Remote Code Execution Vulnerability
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-70125/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T00:30:29
2 posts
1 repos
🟠 CVE-2026-19125 - High (8.1)
The EthPress – Web3 Login plugin for WordPress is vulnerable to Authentication Bypass in all versions up to, and including, 2.3.5. This is due to the verify_login() function in app/Login.php containing a missing return statement in the signature...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-19125/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-19125 - High (8.1)
The EthPress – Web3 Login plugin for WordPress is vulnerable to Authentication Bypass in all versions up to, and including, 2.3.5. This is due to the verify_login() function in app/Login.php containing a missing return statement in the signature...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-19125/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T00:30:29
2 posts
🟠 CVE-2026-81536 - High (7.7)
IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to obtain sensitive information due to an XML external entity (XXE) injection.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-81536/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-81536 - High (7.7)
IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to obtain sensitive information due to an XML external entity (XXE) injection.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-81536/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T00:30:29
2 posts
🟠 CVE-2026-81208 - High (7.7)
IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow an authenticated user to access sensitive information due to improper handling of encrypted credentials. An attacker could exploit this vulnerability to obtain credentials intended for other ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-81208/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-81208 - High (7.7)
IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow an authenticated user to access sensitive information due to improper handling of encrypted credentials. An attacker could exploit this vulnerability to obtain credentials intended for other ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-81208/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T00:30:29
2 posts
🟠 CVE-2026-86583 - High (8.8)
The Import and export users and customers plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 2.4.17 via the plugin's own export and re-import workflow. The vulnerability exists because the exporter wri...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-86583/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-86583 - High (8.8)
The Import and export users and customers plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 2.4.17 via the plugin's own export and re-import workflow. The vulnerability exists because the exporter wri...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-86583/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T00:30:26
2 posts
🟠 CVE-2026-75887 - High (7.5)
A flaw was found in the OpenShift console. An unauthenticated attacker can exploit a path traversal vulnerability by manipulating the `lng` and `ns` query parameters in the `/locales/resource.json` endpoint. This allows the attacker to read sensit...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-75887/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-75887 - High (7.5)
A flaw was found in the OpenShift console. An unauthenticated attacker can exploit a path traversal vulnerability by manipulating the `lng` and `ns` query parameters in the `/locales/resource.json` endpoint. This allows the attacker to read sensit...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-75887/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T00:17:22.850000
3 posts
Toutes nos instances GitLab sont à jour en version 19.4.1 depuis hier soir à 22h.
Il faut mettre à jour rapidement : cette nouvelle version corrige 2 CVE évaluées à 9,9 (CVE-2026-93577 et CVE-2026-84739).
En savoir plus sur nos offres 👇
https://gitlab-saas.bearstech.com/
Critical GitLab Auth RCE via Double-Free in Regex Parser
GitLab은 CE/EE의 정규식 파서 double-free(CVE-2026-89078)와 정규식 컴파일러 integer overflow(CVE-2026-93577)를 포함한 긴급 보안 패치를 19.4.1, 19.3.3, 19.2.7로 배포했다. 두 취약점은 인증된 사용자가 CI/CD 구성에 특수 제작한 정규식을 넣어 GitLab 서버에서 임의 코드 실행을 유발할 수 있으며, 각각 CVSS 9.9로 평가됐다. 또한 Duo AI job troubleshooting의 권한 검증 누락으로 디버그 잡 로그에 포함된 민감한 CI/CD 변수 값을 열...
https://docs.gitlab.com/releases/patches/patch-release-gitlab-19-4-1-released/
##Toutes nos instances GitLab sont à jour en version 19.4.1 depuis hier soir à 22h.
Il faut mettre à jour rapidement : cette nouvelle version corrige 2 CVE évaluées à 9,9 (CVE-2026-93577 et CVE-2026-84739).
En savoir plus sur nos offres 👇
https://gitlab-saas.bearstech.com/
updated 2026-09-24T00:17:22.060000
1 posts
Critical GitLab Auth RCE via Double-Free in Regex Parser
GitLab은 CE/EE의 정규식 파서 double-free(CVE-2026-89078)와 정규식 컴파일러 integer overflow(CVE-2026-93577)를 포함한 긴급 보안 패치를 19.4.1, 19.3.3, 19.2.7로 배포했다. 두 취약점은 인증된 사용자가 CI/CD 구성에 특수 제작한 정규식을 넣어 GitLab 서버에서 임의 코드 실행을 유발할 수 있으며, 각각 CVSS 9.9로 평가됐다. 또한 Duo AI job troubleshooting의 권한 검증 누락으로 디버그 잡 로그에 포함된 민감한 CI/CD 변수 값을 열...
https://docs.gitlab.com/releases/patches/patch-release-gitlab-19-4-1-released/
##updated 2026-09-23T22:16:59.523000
4 posts
plank laravel-mediable <7.0.2 has a CRITICAL vuln (CVE-2026-93352): .pht files not blocked, allowing unauthenticated RCE. Upgrade to 7.0.2+ ASAP. https://radar.offseq.com/threat/cve-2026-93352-unrestricted-upload-of-file-with-dangerous-type-in-plank-laravel-mediable-969ae75c94489a3a #OffSeq #CVE202693352 #RCE #Laravel #Infosec
##🔴 CVE-2026-93352 - Critical (9.8)
Laravel-Mediable 7.0.0 before 7.0.2 contains an incomplete patch for CVE-2026-49972 in which the .pht extension is absent from the forbidden_extensions blocklist in config/mediable.php. The blocklist introduced to address CVE-2026-49972 includes p...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93352/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##plank laravel-mediable <7.0.2 has a CRITICAL vuln (CVE-2026-93352): .pht files not blocked, allowing unauthenticated RCE. Upgrade to 7.0.2+ ASAP. https://radar.offseq.com/threat/cve-2026-93352-unrestricted-upload-of-file-with-dangerous-type-in-plank-laravel-mediable-969ae75c94489a3a #OffSeq #CVE202693352 #RCE #Laravel #Infosec
##🔴 CVE-2026-93352 - Critical (9.8)
Laravel-Mediable 7.0.0 before 7.0.2 contains an incomplete patch for CVE-2026-49972 in which the .pht extension is absent from the forbidden_extensions blocklist in config/mediable.php. The blocklist introduced to address CVE-2026-49972 includes p...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93352/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-23T22:16:57.690000
2 posts
🟠 CVE-2026-81537 - High (8.8)
IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary code due to OS command injection.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-81537/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-81537 - High (8.8)
IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary code due to OS command injection.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-81537/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-23T22:16:57.270000
2 posts
🟠 CVE-2026-80423 - High (8.8)
IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to obtain sensitive information due to the exposure of namespace-wide secrets via accessible file mounts.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-80423/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-80423 - High (8.8)
IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to obtain sensitive information due to the exposure of namespace-wide secrets via accessible file mounts.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-80423/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-23T21:31:08
2 posts
IBM Concert v1.0.0 – 3.0.0 hit by CRITICAL use-after-free bug (CVE-2026-6928, CVSS 9.8). Remote code execution & full compromise possible; no patch confirmed. Monitor IBM advisories. https://radar.offseq.com/threat/cve-2026-6928-cwe-416-use-after-free-in-ibm-concert-2eb5c8a4bd6982d7 #OffSeq #Vuln #IBM #CVE20266928 #Infosec
##IBM Concert v1.0.0 – 3.0.0 hit by CRITICAL use-after-free bug (CVE-2026-6928, CVSS 9.8). Remote code execution & full compromise possible; no patch confirmed. Monitor IBM advisories. https://radar.offseq.com/threat/cve-2026-6928-cwe-416-use-after-free-in-ibm-concert-2eb5c8a4bd6982d7 #OffSeq #Vuln #IBM #CVE20266928 #Infosec
##updated 2026-09-23T21:31:03
2 posts
cPanel patched critical cPanel security vulnerabilities including CVE-2026-87899. Update cPanel and WP Toolkit now to prevent privilege escalation.
#cPanel #WHM #WPToolkit #PrivilegeEscalation #Cybersecurity #Infosec #CVE202687899
##cPanel patched critical cPanel security vulnerabilities including CVE-2026-87899. Update cPanel and WP Toolkit now to prevent privilege escalation.
#cPanel #WHM #WPToolkit #PrivilegeEscalation #Cybersecurity #Infosec #CVE202687899
##updated 2026-09-23T21:30:56
1 posts
cPanel CalDAV/CardDAV Vulnerability Exposes Shared-Hosting Calendars and Contacts Across Accounts
A Critical Privacy Risk for Multi-Tenant Servers cPanel has released security updates addressing CVE-2026-68490, a permissions vulnerability in its CalDAV and CardDAV functionality that could allow a local user on a shared server to access calendar events and contact information belonging to other hosting accounts. The Vulnerability Behind the Exposure The flaw is…
##updated 2026-09-23T21:17:02.053000
2 posts
Buffer overflow (CVE-2026-6730) in IBM Concert 1.0.0-3.0.0 (CVSS 9.8, CRITICAL) lets local users execute arbitrary code. No patch yet — restrict local access, check vendor updates. https://radar.offseq.com/threat/cve-2026-6730-cwe-120-buffer-copy-without-checking-size-of-input-classic-buffer-overflow-in-ibm-concert-cf9a07df005d3ecc #OffSeq #IBM #Vuln #CyberSecurity
##Buffer overflow (CVE-2026-6730) in IBM Concert 1.0.0-3.0.0 (CVSS 9.8, CRITICAL) lets local users execute arbitrary code. No patch yet — restrict local access, check vendor updates. https://radar.offseq.com/threat/cve-2026-6730-cwe-120-buffer-copy-without-checking-size-of-input-classic-buffer-overflow-in-ibm-concert-cf9a07df005d3ecc #OffSeq #IBM #Vuln #CyberSecurity
##updated 2026-09-23T19:42:48.540000
1 posts
CISA reports CVE-2026-88020, XSS in OpenPLC Runtime v3 6.1. Theft of an operator session cookie can enable state-changing requests and PLC-level control. Exposure of OT web interfaces significantly raises impact. #IcsSecurity #OtSecurity #Xss
https://cyberworldops.eu/en/openplc-web-flaw-could-turn-a-stolen-session-into-industrial-process
##updated 2026-09-23T19:42:48.540000
1 posts
CVE-2026-19202: CRITICAL vuln in Google mcp-toolbox-sdk-python (v0 – 1.1.0). Shared cache flaw lets Google ID tokens be reused across audiences — risk of token replay & impersonation. Patch pending. Details: https://radar.offseq.com/threat/cve-2026-19202-cwe-524-use-of-a-shared-cache-with-insufficient-key-granularity-in-google-mcp-toolbox-9bc343c3bcd3d35b #OffSeq #infosec #CVE202619202 #Python
##updated 2026-09-23T19:23:28.350000
1 posts
2 repos
A critical Android Telecom vulnerability (CVE-2026-49881) allows remote code execution. Read the analysis and learn how to secure your device today.
##updated 2026-09-23T19:17:28.687000
2 posts
IBM FTM for OpenShift Faces Critical Unauthenticated RCE Vulnerabilities — CVE-2026-18163 and CVE-2026-18162 + Video
Introduction IBM has issued a Critical security bulletin affecting Financial Transaction Manager (FTM) for Red Hat OpenShift, warning of multiple vulnerabilities that could expose affected deployments to serious attacks. Among more than 40 vulnerabilities addressed in the bulletin, two stand out because they reportedly allow unauthenticated remote code…
##CVE-2026-18162: IBM FTM for RedHat OpenShift v4.0.6.0 has a CRITICAL code injection flaw (CVSS 9.8). Remote attackers can execute arbitrary code via improper input neutralization. No patch yet — monitor vendor updates. https://radar.offseq.com/threat/cve-2026-18162-cwe-94-improper-control-of-generation-of-code-code-injection-in-ibm-financial-7385d789acb1bf6d #OffSeq #CVE202618162 #IBM #RCE
##updated 2026-09-23T18:43:37.403000
1 posts
🟠 CVE-2026-73512 - High (7.5)
Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.36.10, 1.37.6, 1.38.4, and 1.39.1, Envoy's HttpDatagramHandler caches the current RequestDecoder when Capsule Protocol is enabled. Stream recreation,...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-73512/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-23T18:21:42.327000
1 posts
🟠 CVE-2026-73547 - High (7.5)
Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.36.10, 1.37.6, 1.38.4, and 1.39.1, Envoy's ext_authz filter assumes that a request contains a :path pseudoheader when applying query_parameters_to_se...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-73547/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-23T18:17:07.270000
1 posts
CVE-2026-18169: CRITICAL path traversal in IBM FTM for RedHat OpenShift 4.0.6.0 (CVSS 9.9) 🕵️♂️. Authenticated attackers can access sensitive info via symlink abuse. Restrict access & monitor logs. Patch status unknown. https://radar.offseq.com/threat/cve-2026-18169-cwe-22-improper-limitation-of-a-pathname-to-a-restricted-directory-path-traversal-in-871a1d481ef78ea0 #OffSeq #IBM #CVE202618169 #Infosec
##updated 2026-09-23T18:12:04.247000
1 posts
CVE-2026-63447: Suricata FTP parser DoS, CVSS 7.5. Crafted FTP traffic causes quadratic processing that degrades packet inspection. No patch yet. Apply mitigations and watch for updates. https://www.valtersit.com/cve/CVE-2026-63447/ #CVE #infosec #Suricata
##updated 2026-09-23T17:58:26.570000
1 posts
🟠 CVE-2026-91809 - High (7.8)
A use-after-free vulnerability exists in Foxit PDF Editor/Reader’s handling of malformed PDF form fields. Improper validation during field-name traversal may cause the application to access a released object, resulting in an application crash.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-91809/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-23T17:58:26.570000
1 posts
🟠 CVE-2026-91818 - High (7.8)
A use-after-free vulnerability exists in Foxit PDF Editor/Reader’s JavaScript handling of PDF annotations. Reentrant page-event processing during annotation enumeration may release the associated page object, which is subsequently accessed, resu...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-91818/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-23T17:17:50.090000
1 posts
🟠 CVE-2026-83621 - High (8.1)
ntopng is a web-based network traffic monitoring application. Prior to 6.7.260717, POST /lua/rest/v2/edit/system/edit_blacklist.lua in scripts/lua/rest/v2/edit/system/edit_blacklist.lua lacks an administrator check and calls lists_utils.editList f...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-83621/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-23T16:38:38.987000
15 posts
2 repos
https://github.com/Nebula-Consulting-Limited/CVE-2026-93616-PoC
Check Point Warns of Active Exploitation of Critical VPN and Management Server Flaws
Attackers Are Targeting Check Point Security Infrastructure Check Point has issued an urgent security warning after confirming active exploitation of two critical vulnerabilities affecting its VPN gateways and security-management infrastructure. Tracked as CVE-2026-85102 and CVE-2026-93616, both vulnerabilities carry a CVSS score of 9.8 and can allow unauthenticated attackers to…
##Check Point VPN Gateways and Management Server Flaws Actively Exploited
Check Point confirmed active exploitation of three critical vulnerabilities (CVE-2026-85102, CVE-2026-85103, and CVE-2026-93616) affecting VPN gateways and management servers, prompting a 72-hour US federal remediation deadline.
**If you run Check Point Security Gateways, Spark Firewalls or Security Management Servers, patch immediately to LivePatch Take 26 or the latest Jumbo Hotfix. Older unsupported versions R80 through R81.10 must be upgraded first. Make sure the management server's web interface is reachable only from trusted internal networks. Patching isn't enough, since attackers have been active since September 12: check your VPN logs for unknown sessions and internal LDAP scanning, and if you find anything suspicious, treat the device as compromised and escalate to your incident response team.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/check-point-vpn-gateways-and-management-server-flaws-actively-exploited-k-i-7-j-s/gD2P6Ple2L
Até 30 de junho, a Check Point confirma ataques ativos a falhas críticas em seus produtos, recomendando atualização urgente. Piratas informáticos exploram vulnerabilidades nos certificados de VPN do Security Gateway (CVE-2026-85102) e no serviço web de Management (CVE-2026-93616), permitindo a execução remota de código sem autenticação prévia. 🚨
##Check Point VPN Gateways and Management Server Flaws Actively Exploited
Check Point confirmed active exploitation of three critical vulnerabilities (CVE-2026-85102, CVE-2026-85103, and CVE-2026-93616) affecting VPN gateways and management servers, prompting a 72-hour US federal remediation deadline.
**If you run Check Point Security Gateways, Spark Firewalls or Security Management Servers, patch immediately to LivePatch Take 26 or the latest Jumbo Hotfix. Older unsupported versions R80 through R81.10 must be upgraded first. Make sure the management server's web interface is reachable only from trusted internal networks. Patching isn't enough, since attackers have been active since September 12: check your VPN logs for unknown sessions and internal LDAP scanning, and if you find anything suspicious, treat the device as compromised and escalate to your incident response team.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/check-point-vpn-gateways-and-management-server-flaws-actively-exploited-k-i-7-j-s/gD2P6Ple2L
Até 30 de junho, a Check Point confirma ataques ativos a falhas críticas em seus produtos, recomendando atualização urgente. Piratas informáticos exploram vulnerabilidades nos certificados de VPN do Security Gateway (CVE-2026-85102) e no serviço web de Management (CVE-2026-93616), permitindo a execução remota de código sem autenticação prévia. 🚨
##Check Point confirms active exploitation of CVE-2026-85102, unauthenticated RCE in Security Gateway VPN negotiation, and CVE-2026-93616, path traversal leading to script execution on management systems. Internet-exposed gateways and management planes should be patched and reviewed for compromise immediately. #CheckPoint #ThreatIntel #VpnSecurity
https://cyberworldops.eu/en/active-attacks-turn-check-point-vpn-and-management-flaws-into-an
##Checkpoint / CVE-2026-93616: https://support.checkpoint.com/results/sk/sk1000171/
Soooo, it is always fun to translate a vendor advisory into real facts. Here, checkpoint says "Directory Traversal and File upload allows execution of arbitrary script", and provide, as an example:
login(loginRequest=LoginRequest{authenticationInfo=AuthenticationInfoBase{username='abcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdababcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcdabcd'}
And: "if a core dump file was generated at the same time as the login attempt [...]"
Sorry guys, but you are totally misleading whoever is trying to qualify/understand your adivsory. Security vendors should really be accountable of whatever they deliver. I am not even mentioning 1. the triviality of the findings, 2. everything is running as root.
They also discovered that ASN.1 parsing requires extensive fuzzing (https://support.checkpoint.com/results/sk/sk1000118).
I was expected more from checkpoint, but at least they provide a bit more info than the other "similar" vendors.
##🚨 [CISA-2026:0922] CISA Adds 4 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0922)
CISA has added 4 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2026-85102 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85102)
- Name: Check Point Multiple Products Improper Certificate Validation Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Check Point
- Product: Multiple Products
- Notes: https://support.checkpoint.com/results/sk/sk1000117 ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-85102
⚠️ CVE-2026-93616 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93616)
- Name: Check Point Multiple Products Path Traversal Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Check Point
- Product: Multiple Products
- Notes: https://support.checkpoint.com/results/sk/sk1000171/ ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-93616
⚠️ CVE-2026-93952 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93952)
- Name: Arista VeloCloud Orchestrator Improper Input Validation Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Arista
- Product: VeloCloud Orchestrator
- Notes: https://www.arista.com/en/support/advisories-notices/security-advisory/24765-security-advisory-0183 ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-93952
⚠️ CVE-2026-94127 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-94127)
- Name: F5 BIG-IP APM Heap-based Buffer Overflow Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: F5
- Product: BIG-IP APM
- Notes: For temporary mitigation to allow for proactive forensic triage, apply the vendor-provided iRule. Once completed, install the final vendor patch as soon as possible. For more information please see: https://my.f5.com/manage/s/article/K000162605 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-94127
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260922 #cisa20260922 #cve_2026_85102 #cve_2026_93616 #cve_2026_93952 #cve_2026_94127 #cve202685102 #cve202693616 #cve202693952 #cve202694127
###CyberSecurity #ZeroDay #CheckPoint #Vulnerability #ActiveExploitation #PatchedOrPerish (3/3)
##Meanwhile a second zero-day, CVE-2026-93616, materialized in Security Management with its own handful of pinpointed hits.
Policy dictates we inform you patches now exist for both CVE-2026-85102 and CVE-2026-93616. Policy does not require we feel bad about what happens next if you ignore them. Install both immediately.
Reward: Compliance logged. Outcome: your problem. (2/3)
##Check Point has disclosed a zero-day (in Security Management Server) and marked an older bug also as exploited in the wild (in Site-to-Site VPN)
##CVE ID: CVE-2026-93616
Vendor: Check Point
Product: Multiple Products
Date Added: 2026-09-22
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-93616
🚨 Check Point patches Management Server zero-day exploited in attacks
⠀
Check Point has released fixes for CVE-2026-93616, a vulnerability that allows unauthenticated attackers to upload and execute arbitrary scripts on affected management servers.
⠀
The company says a small number of customers have already been attacked.
⠀
Affected products include:
• Security Management Server
• Multi-Domain Security Management Server
• Log Server
• Multi-Domain Log Server
• SmartEvent
⠀
The vulnerability carries a CVSS score of 9.8.
⠀
Check Point advises installing the applicable fixes, restricting management access to trusted IP addresses, and checking for signs of exploitation.
⠀
LivePatch Take 28/29 does not fix this vulnerability.
A critical exploited Check Point Management vulnerability (CVE-2026-93616) allows attackers to execute arbitrary scripts. Secure your servers now.
#CheckPoint #CVE202693616 #Cybersecurity #InfoSec #Vulnerability #RCE
##Check Point Quantum Security Management is affected by CVE-2026-93616 (CRITICAL, CVSS 9.8): unauthenticated attackers can upload & execute scripts via path traversal. Restrict access & monitor activity until patch info is released. https://radar.offseq.com/threat/cve-2026-93616-cwe-22-improper-limitation-of-a-pathname-to-a-restricted-directory-path-traversal-in-4344dfa6a4d98182 #OffSeq #CheckPoint #CyberAlert
##updated 2026-09-23T16:16:45.047000
1 posts
Go hack more GitHub shit.
https://nvd.nist.gov/vuln/detail/cve-2026-77987
A server-side request forgery (SSRF) vulnerability was identified in the notebook viewer of GitHub Enterprise Server. The notebook viewer validated the scheme and host of a user-supplied URL but did not validate the port, allowing requests to be directed to internal services listening on other ports of the same appliance. Response bodies were not returned to the requester, but response timing acted as an oracle that allowed instance secrets to be extracted character by character. An extracted secret could then be used in a separate interaction with an internal service to obtain remote code execution on the appliance. Exploitation required network access to the instance and was unauthenticated when private mode was disabled, or required any authenticated user when private mode was enabled. This vulnerability affected GitHub Enterprise Server versions 3.17 through 3.22 and was fixed in versions 3.22.1, 3.21.6, 3.20.8, 3.19.12, 3.18.15, and 3.17.21. This vulnerability was reported through the GitHub Bug Bounty program.
sev:CRIT 9.3 - CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
updated 2026-09-23T15:17:31.920000
1 posts
Fast FAC1203R Gigabit Edition v2.0.4 hit by CRITICAL stack-based buffer overflow (CVE-2026-96257). Remote, unauthenticated RCE possible. Exploit is public, no patch exists — restrict access to Device Discovery Service now. https://radar.offseq.com/threat/cve-2026-96257-stack-based-buffer-overflow-in-fast-fac1203r-gigabit-edition-4657d2bb397c7614 #OffSeq #CVE #Infosec
##updated 2026-09-23T14:32:12.417000
11 posts
Arista Networks Patches Critical VeloCloud Orchestrator Zero-Day Exploited in the Wild
Arista Networks disclosed a critical CVSS 10.0 vulnerability (CVE-2026-93952) in VeloCloud Orchestrator On-Prem that is being actively exploited to gain unauthenticated remote access to orchestrator hosts and managed edge devices.
**If you run VeloCloud Orchestrator On-Prem, this is urgent. Make sure its web interface is not reachable from the internet and is accessible only from trusted admin networks, then update right away to a fixed version (5.2.3.16, 6.4.2.8 or later). Attackers are already using this flaw to take full control without any password. After patching, look for the hidden file /usr/local/sbin/.vcnode.js or the x-vc-opt header in your web logs, and if you find either, treat the orchestrator and every connected Edge device as compromised.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/arista-networks-patches-critical-velocloud-orchestrator-zero-day-exploited-in-the-wild-4-k-v-7-w/gD2P6Ple2L
Arista Networks Patches Critical VeloCloud Orchestrator Zero-Day Exploited in the Wild
Arista Networks disclosed a critical CVSS 10.0 vulnerability (CVE-2026-93952) in VeloCloud Orchestrator On-Prem that is being actively exploited to gain unauthenticated remote access to orchestrator hosts and managed edge devices.
**If you run VeloCloud Orchestrator On-Prem, this is urgent. Make sure its web interface is not reachable from the internet and is accessible only from trusted admin networks, then update right away to a fixed version (5.2.3.16, 6.4.2.8 or later). Attackers are already using this flaw to take full control without any password. After patching, look for the hidden file /usr/local/sbin/.vcnode.js or the x-vc-opt header in your web logs, and if you find either, treat the orchestrator and every connected Edge device as compromised.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/arista-networks-patches-critical-velocloud-orchestrator-zero-day-exploited-in-the-wild-4-k-v-7-w/gD2P6Ple2L
CVE-2026-93952: CRITICAL zero-day in Arista VeloCloud Orchestrator (on-prem <5.2.3.16, <6.4.2.8) is actively exploited. Remote attackers can access privileged functions w/o creds. Patch now — review logs for signs of compromise. https://radar.offseq.com/threat/arista-urges-immediate-patching-of-exploited-vco-zero-day-0c28c2caa003025a #OffSeq #Arista #ZeroDay #Infosec
##Arista confirmed active exploitation of a CVSS 10 VeloCloud Orchestrator vulnerability (CVE-2026-93952) affecting certificate-based SD-WAN setups. Patch now.
#VeloCloud #Arista #CVE202693952 #SDWAN #Vulnerability #CyberSecurity
##Completing our tour of new known-exploited vulns today, here is Arista's perfect-10.
https://ifin.network/t/arista-cve-2026-93952-auth-bypass-exploited-in-the-wild/856
##🚨 [CISA-2026:0922] CISA Adds 4 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0922)
CISA has added 4 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2026-85102 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85102)
- Name: Check Point Multiple Products Improper Certificate Validation Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Check Point
- Product: Multiple Products
- Notes: https://support.checkpoint.com/results/sk/sk1000117 ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-85102
⚠️ CVE-2026-93616 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93616)
- Name: Check Point Multiple Products Path Traversal Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Check Point
- Product: Multiple Products
- Notes: https://support.checkpoint.com/results/sk/sk1000171/ ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-93616
⚠️ CVE-2026-93952 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93952)
- Name: Arista VeloCloud Orchestrator Improper Input Validation Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Arista
- Product: VeloCloud Orchestrator
- Notes: https://www.arista.com/en/support/advisories-notices/security-advisory/24765-security-advisory-0183 ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-93952
⚠️ CVE-2026-94127 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-94127)
- Name: F5 BIG-IP APM Heap-based Buffer Overflow Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: F5
- Product: BIG-IP APM
- Notes: For temporary mitigation to allow for proactive forensic triage, apply the vendor-provided iRule. Once completed, install the final vendor patch as soon as possible. For more information please see: https://my.f5.com/manage/s/article/K000162605 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-94127
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260922 #cisa20260922 #cve_2026_85102 #cve_2026_93616 #cve_2026_93952 #cve_2026_94127 #cve202685102 #cve202693616 #cve202693952 #cve202694127
##CVE ID: CVE-2026-93952
Vendor: Arista
Product: VeloCloud Orchestrator
Date Added: 2026-09-22
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-93952
Arista disclosed active exploitation of CVE-2026-93952, a CVSS 10.0 unauthenticated flaw in on-prem VeloCloud Orchestrator with certificate authentication enabled. Compromise of the management plane risks full SD-WAN Edge control and lateral movement. Isolate exposed instances and hunt for abuse. #VeloCloud #ThreatIntel #InfoSec
https://cyberworldops.eu/en/active-attacks-target-certificate-enabled-velocloud-orchestrator
##🏆 New Achievement! Exceeds Expectations (Except Security)!
Thank you for joining us for your annual review, Arista VeloCloud Orchestrator team. Uptime? Stellar. Throughput? Impressive. Unauthorized remote access granted to unauthenticated strangers due to CVE-2026-93952, a CVSS 10.0 critical improper-input-validation flaw currently being actively exploited in the wild? That's a "needs improvement," and frankly it drags down the whole scorecard.
Full system compromise is on the table. (1/2)
##CVE-2026-93952 (CRITICAL, CVSS 10) impacts Arista VeloCloud Orchestrator (On-Prem) via improper input validation. Remote, unauthenticated access may lead to full system compromise. Patch urgently. https://radar.offseq.com/threat/cve-2026-93952-cwe-20-improper-input-validation-in-arista-networks-velocloud-orchestrator-vco-on-prem-25dafe8f246f1077 #OffSeq #CVE #infosec #Vulnerability
##An exploited VeloCloud vulnerability with a 10.0 CVSS score hits Arista appliances. Patch the critical VeloCloud vulnerability to stop active attacks.
#VeloCloud #Arista #CVE202693952 #ZeroDay #Cybersecurity #Infosec
##updated 2026-09-23T14:32:07.910000
16 posts
1 repos
📢 CVE-2026-94127 : Vulnérabilité critique F5 BIG-IP APM exploitée en zero-day
SecurityWeek, article de Ionut Arghire publié le 23 septembre 2026. F5 et la CISA ont émis conjointement une alerte concernant l'exploitation active d'une vulnérabilité critique dans le composant BIG-IP Access Policy Manager (APM).
📖 cyberveille : https://cyberveille.ch/posts/2026-09-24-cve-2026-94127-vulnerabilite-critique-f5-big-ip-apm-exploitee-en-zero-day/
🌐 source : https://www.securityweek.com/critical-f5-big-ip-vulnerability-exploited-as-zero-day/
🟡 vérification factuelle moyenne
#APM #F5BIGIP #Cyberveille
Is This A Joke? In The Auth Header? (#F5 BIG-IP UnAuth Heap-Overflow to #RCE CVE-2026-94127)
##Is This A Joke? In The Auth Header? (F5 BIG-IP UnAuth Heap-Overflow to RCE CVE-2026-94127) https://labs.watchtowr.com/is-this-a-joke-in-the-auth-header-f5-big-ip-unauth-heap-overflow-to-rce-cve-2026-94127/
##Is This A Joke? In The Auth Header? (F5 BIG-IP UnAuth Heap-Overflow to RCE CVE-2026-94127) - watchTowr Labs https://labs.watchtowr.com/is-this-a-joke-in-the-auth-header-f5-big-ip-unauth-heap-overflow-to-rce-cve-2026-94127/
##Is This A Joke? In The Auth Header? (#F5 BIG-IP UnAuth Heap-Overflow to #RCE CVE-2026-94127)
##Is This A Joke? In The Auth Header? (F5 BIG-IP UnAuth Heap-Overflow to RCE CVE-2026-94127) - watchTowr Labs https://labs.watchtowr.com/is-this-a-joke-in-the-auth-header-f5-big-ip-unauth-heap-overflow-to-rce-cve-2026-94127/
##🏆 New Achievement! Terms and Conditions of Your Own Destruction!
LOOTBOX DISCLAIMER: By operating F5 BIG-IP APM versions 21.1.0, 17.5.0–17.5.1, or 17.1.0–17.1.3, you have automatically entered our Unauthenticated Remote Code Execution Sweepstakes. Prizes are awarded via CVE-2026-94127, targeting the OAuth Authorization Server component. Odds of receiving a prize are classified as "active exploitation." The System does not guarantee prize desirability. (1/3)
##F5 BIG-IP APM (OAuth Authorization Server) is facing a CRITICAL RCE zero-day, CVE-2026-94127, with active exploitation. Versions 21.1.0, 17.5.0 – 17.5.1, 17.1.0 – 17.1.3 affected. Apply hotfixes now. Details: https://radar.offseq.com/threat/critical-f5-big-ip-vulnerability-exploited-as-zero-day-024f528e7ee83eed #OffSeq #F5 #ZeroDay #Infosec
##F5 patched CVE-2026-94127, a heap-based buffer overflow in BIG-IP APM when operating as OAuth Authorization Server, enabling remote code execution. Active zero-day exploitation poses high risk of full appliance compromise. Patch immediately and review for crafted malicious traffic. #F5BigIp #ZeroDay #RemoteCodeExecution
https://cyberworldops.eu/en/actively-exploited-big-ip-apm-flaw-gives-remote-attackers-a-path-to
##Der Hersteller F5 veröffentlichte ein Advisory zu einer ausgenutzten Zero-Day Schwachstelle in seinem Produkt BIG-IP Access Policy Manager (APM) zur sicheren Zugriffsteuerung und Anwendungszugriff: CVE-2026-94127, CVSS-Score 9.8/10 ("kritisch")
F5 gibt an, dass die Schwachstelle bereits aktiv ausgenutzt wird. IT-Sicherheitsverantwortliche sollten unverzüglich die Patchstände prüfen und, sofern erforderlich, die verfügbaren Engineering Hotfixes einspielen.
##CVE-2026-94127: Critical zero-day in F5 BIG-IP APM exploited for RCE on OAuth Authorization Servers. Patch urgently or use F5's iRule mitigation. Monitor for OAuth auth failures and TMM SIGABRTs. https://radar.offseq.com/threat/f5-patches-big-ip-apm-zero-day-flaw-exploited-in-rce-attacks-191545153729ae57 #OffSeq #F5 #ZeroDay #RCE #Vuln
##🚨 [CISA-2026:0922] CISA Adds 4 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0922)
CISA has added 4 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2026-85102 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85102)
- Name: Check Point Multiple Products Improper Certificate Validation Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Check Point
- Product: Multiple Products
- Notes: https://support.checkpoint.com/results/sk/sk1000117 ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-85102
⚠️ CVE-2026-93616 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93616)
- Name: Check Point Multiple Products Path Traversal Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Check Point
- Product: Multiple Products
- Notes: https://support.checkpoint.com/results/sk/sk1000171/ ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-93616
⚠️ CVE-2026-93952 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93952)
- Name: Arista VeloCloud Orchestrator Improper Input Validation Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Arista
- Product: VeloCloud Orchestrator
- Notes: https://www.arista.com/en/support/advisories-notices/security-advisory/24765-security-advisory-0183 ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-93952
⚠️ CVE-2026-94127 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-94127)
- Name: F5 BIG-IP APM Heap-based Buffer Overflow Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: F5
- Product: BIG-IP APM
- Notes: For temporary mitigation to allow for proactive forensic triage, apply the vendor-provided iRule. Once completed, install the final vendor patch as soon as possible. For more information please see: https://my.f5.com/manage/s/article/K000162605 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-94127
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260922 #cisa20260922 #cve_2026_85102 #cve_2026_93616 #cve_2026_93952 #cve_2026_94127 #cve202685102 #cve202693616 #cve202693952 #cve202694127
##When it rains, it pours. F5 BIG-IP APM also has an exploited CVE!
https://ifin.network/t/f5-big-ip-cve-2026-94127-rce-exploited/855
##CVE ID: CVE-2026-94127
Vendor: F5
Product: BIG-IP APM
Date Added: 2026-09-22
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-94127
An exploited BIG-IP APM vulnerability tracked as CVE-2026-94127 allows RCE attacks. Secure your BIG-IP APM vulnerability deployments with new F5 hotfixes.
#F5 #BIGIP #CVE202694127 #Cybersecurity #InfoSec #RCE #Vulnerability
##EITW 0day in F5 APM.
https://my.f5.com/manage/s/article/K000162605
##When a BIG-IP APM access policy and an OAuth profile are configured on a virtual server, specific malicious traffic can lead to remote code execution (RCE). (CVE-2026-94127)
This vulnerability allows an unauthenticated attacker to perform RCE. The BIG-IP system in Appliance mode is also vulnerable. This is a data plane issue; there is no control plane exposure.
updated 2026-09-23T09:30:37
1 posts
🟠 CVE-2026-91811 - High (7.8)
A heap-based out-of-bounds write vulnerability exists in Foxit PDF Editor/Reader’s PRC parser due to insufficient validation of vertex indices in triangular fan texture meshes. Successful exploitation could result in memory corruption and an app...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-91811/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-23T04:17:44.340000
1 posts
A critical ManageEngine ADSelfService Plus vulnerability (CVE-2026-74849) allows system compromise. Update to build 7001 to secure your endpoints.
#ManageEngine #ADSelfServicePlus #CVE202674849 #Cybersecurity #Infosec #RCE
##updated 2026-09-23T04:17:43.927000
3 posts
1 repos
Veeam Agent LPE PoC https://github.com/suce0155/CVE-2026-32996
##Zyxel GS1900 switches (CVE-2026-7273) and Veeam Agent for Microsoft Windows (CVE-2026-32996) are under active exploitation. The former allows unauthenticated LAN command execution via CGI buffer overflow, the latter enables SYSTEM-level access on endpoints. Both expand persistence and backup tampering risk. #Zyxel #Veeam #ThreatIntel #VulnManagement
https://cyberworldops.eu/en/active-attacks-put-zyxel-switches-and-veeam-protected-windows
##A critical exploited Veeam Agent vulnerability (CVE-2026-32996) is under active attack. Public PoC exploit code has been disclosed. Update systems now.
##updated 2026-09-23T00:31:21
2 posts
IBM FTM for OpenShift Faces Critical Unauthenticated RCE Vulnerabilities — CVE-2026-18163 and CVE-2026-18162 + Video
Introduction IBM has issued a Critical security bulletin affecting Financial Transaction Manager (FTM) for Red Hat OpenShift, warning of multiple vulnerabilities that could expose affected deployments to serious attacks. Among more than 40 vulnerabilities addressed in the bulletin, two stand out because they reportedly allow unauthenticated remote code…
##CVE-2026-18163 (CRITICAL, CVSS 9.8): IBM FTM for RedHat OpenShift v4.0.6.0 has a deserialization vulnerability enabling remote code execution without auth. Restrict access & monitor activity. Patch status unconfirmed. https://radar.offseq.com/threat/cve-2026-18163-cwe-502-deserialization-of-untrusted-data-in-ibm-financial-transaction-manager-ftm-for-0a85c82f9c689e03 #OffSeq #CVE202618163 #IBM #InfoSec 🛡️
##updated 2026-09-22T21:31:34
2 posts
SolarWinds Observability vulnerabilities allow RCE via CVE-2026-28324. Update to version 2026.2.3 to secure your monitoring infrastructure today.
#SolarWinds #Cybersecurity #CVE202628324 #CVE202628325 #RCE #Infosec
##https://www.solarwinds.com/trust-center/security-advisories/cve-2026-28324
SolarWinds Observability Self-Hosted was found to be affected by an unauthenticated remote code execution vulnerability due to the insufficient integrity checks. Installations configured in a non-default and non-secure configuration are affected.
sev:CRIT 9.8 - AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
updated 2026-09-22T21:31:34
2 posts
Go hack more MQTT shit.
##🔴 CVE-2026-87121 - Critical (9.8)
lwIP TCP/IP Stack MQTT is vulnerable to an out-of-bounds write, which may allow an attacker to gain full code execution on the device.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-87121/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-22T21:30:40
15 posts
Check Point Warns of Active Exploitation of Critical VPN and Management Server Flaws
Attackers Are Targeting Check Point Security Infrastructure Check Point has issued an urgent security warning after confirming active exploitation of two critical vulnerabilities affecting its VPN gateways and security-management infrastructure. Tracked as CVE-2026-85102 and CVE-2026-93616, both vulnerabilities carry a CVSS score of 9.8 and can allow unauthenticated attackers to…
##Check Point VPN Gateways and Management Server Flaws Actively Exploited
Check Point confirmed active exploitation of three critical vulnerabilities (CVE-2026-85102, CVE-2026-85103, and CVE-2026-93616) affecting VPN gateways and management servers, prompting a 72-hour US federal remediation deadline.
**If you run Check Point Security Gateways, Spark Firewalls or Security Management Servers, patch immediately to LivePatch Take 26 or the latest Jumbo Hotfix. Older unsupported versions R80 through R81.10 must be upgraded first. Make sure the management server's web interface is reachable only from trusted internal networks. Patching isn't enough, since attackers have been active since September 12: check your VPN logs for unknown sessions and internal LDAP scanning, and if you find anything suspicious, treat the device as compromised and escalate to your incident response team.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/check-point-vpn-gateways-and-management-server-flaws-actively-exploited-k-i-7-j-s/gD2P6Ple2L
Até 30 de junho, a Check Point confirma ataques ativos a falhas críticas em seus produtos, recomendando atualização urgente. Piratas informáticos exploram vulnerabilidades nos certificados de VPN do Security Gateway (CVE-2026-85102) e no serviço web de Management (CVE-2026-93616), permitindo a execução remota de código sem autenticação prévia. 🚨
##Hackers Actively Exploit Check Point VPN Flaw
Check Point Security Gateway의 VPN 인증서 처리 기능에서 인증 전 원격 코드 실행(RCE)이 가능한 CVE-2026-85102가 공개되었고, 이미 실제 공격에 악용되고 있다고 보고됐다. CVSS 9.8의 치명적 취약점으로, 공격자는 유효한 계정 없이 조작된 VPN 인증서를 보내 게이트웨이에서 임의 코드를 실행할 수 있어 원격접속 경계가 직접 침해될 수 있다. 영향을 받는 조직은 9월 23일 배포된 최신 패치를 즉시 적용하고, VPN 장비 로그·비정상 인증서 요청·관리 인터페이스 접근 흔적을 점검해야 한다. AI 서비스 운영 조직도 VP...
https://2tinteractive.com/blog/hackers-actively-exploit-check-point-vpn-flaw/
##Check Point VPN Gateways and Management Server Flaws Actively Exploited
Check Point confirmed active exploitation of three critical vulnerabilities (CVE-2026-85102, CVE-2026-85103, and CVE-2026-93616) affecting VPN gateways and management servers, prompting a 72-hour US federal remediation deadline.
**If you run Check Point Security Gateways, Spark Firewalls or Security Management Servers, patch immediately to LivePatch Take 26 or the latest Jumbo Hotfix. Older unsupported versions R80 through R81.10 must be upgraded first. Make sure the management server's web interface is reachable only from trusted internal networks. Patching isn't enough, since attackers have been active since September 12: check your VPN logs for unknown sessions and internal LDAP scanning, and if you find anything suspicious, treat the device as compromised and escalate to your incident response team.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/check-point-vpn-gateways-and-management-server-flaws-actively-exploited-k-i-7-j-s/gD2P6Ple2L
Até 30 de junho, a Check Point confirma ataques ativos a falhas críticas em seus produtos, recomendando atualização urgente. Piratas informáticos exploram vulnerabilidades nos certificados de VPN do Security Gateway (CVE-2026-85102) e no serviço web de Management (CVE-2026-93616), permitindo a execução remota de código sem autenticação prévia. 🚨
##Check Point confirms active exploitation of CVE-2026-85102, unauthenticated RCE in Security Gateway VPN negotiation, and CVE-2026-93616, path traversal leading to script execution on management systems. Internet-exposed gateways and management planes should be patched and reviewed for compromise immediately. #CheckPoint #ThreatIntel #VpnSecurity
https://cyberworldops.eu/en/active-attacks-turn-check-point-vpn-and-management-flaws-into-an
##Check Point warns of hackers exploiting Security Gateway VPN RCE flaw
Cybersecurity company Check Point has confirmed active exploitation of CVE-2026-85102, a pre-authentication remote code execution (RCE)...
🔗️ [Bleepingcomputer] https://link.is.it/iSJtsD
##🚨 [CISA-2026:0922] CISA Adds 4 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0922)
CISA has added 4 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2026-85102 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-85102)
- Name: Check Point Multiple Products Improper Certificate Validation Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Check Point
- Product: Multiple Products
- Notes: https://support.checkpoint.com/results/sk/sk1000117 ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-85102
⚠️ CVE-2026-93616 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93616)
- Name: Check Point Multiple Products Path Traversal Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Check Point
- Product: Multiple Products
- Notes: https://support.checkpoint.com/results/sk/sk1000171/ ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-93616
⚠️ CVE-2026-93952 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-93952)
- Name: Arista VeloCloud Orchestrator Improper Input Validation Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Arista
- Product: VeloCloud Orchestrator
- Notes: https://www.arista.com/en/support/advisories-notices/security-advisory/24765-security-advisory-0183 ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-93952
⚠️ CVE-2026-94127 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-94127)
- Name: F5 BIG-IP APM Heap-based Buffer Overflow Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: F5
- Product: BIG-IP APM
- Notes: For temporary mitigation to allow for proactive forensic triage, apply the vendor-provided iRule. Once completed, install the final vendor patch as soon as possible. For more information please see: https://my.f5.com/manage/s/article/K000162605 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-94127
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260922 #cisa20260922 #cve_2026_85102 #cve_2026_93616 #cve_2026_93952 #cve_2026_94127 #cve202685102 #cve202693616 #cve202693952 #cve202694127
###CyberSecurity #ZeroDay #CheckPoint #Vulnerability #ActiveExploitation #PatchedOrPerish (3/3)
##Meanwhile a second zero-day, CVE-2026-93616, materialized in Security Management with its own handful of pinpointed hits.
Policy dictates we inform you patches now exist for both CVE-2026-85102 and CVE-2026-93616. Policy does not require we feel bad about what happens next if you ignore them. Install both immediately.
Reward: Compliance logged. Outcome: your problem. (2/3)
##Check Point has disclosed a zero-day (in Security Management Server) and marked an older bug also as exploited in the wild (in Site-to-Site VPN)
##CVE ID: CVE-2026-85102
Vendor: Check Point
Product: Multiple Products
Date Added: 2026-09-22
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-85102
Two Check Point critical vulnerabilities are now listed as exploited in the wild.
##An exploited Check Point VPN vulnerability allows remote code execution. Patch this Check Point VPN vulnerability now to block active in-the-wild attacks.
#CheckPoint #CVE202685102 #VPN #Cybersecurity #Infosec #ZeroDay
##updated 2026-09-22T20:43:58.793000
1 posts
🟠 CVE-2026-94411 - High (8.8)
jshERP 3.6 contains a privilege escalation vulnerability in the updateOneValueByKeyIdAndType endpoint that allows authenticated users to grant themselves arbitrary roles. Attackers can send a POST request with type=UserRole, their own user ID, and...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94411/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-22T20:43:58.793000
1 posts
🟠 CVE-2026-94497 - High (8.3)
jshERP through 3.6 fails to validate object ownership in by-id info, update, and delete endpoints across multiple resource types. Authenticated users can read, modify, and delete other users' business objects by submitting direct object identifier...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94497/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-22T20:37:12
1 posts
🟠 CVE-2026-77560 - High (8.1)
Tinyauth is an authentication and authorization server. Prior to 5.1.2, Tinyauth compares forwarded hostnames case-sensitively while reverse proxies route equivalent hostnames case-insensitively, allowing an authenticated low-privilege user to byp...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77560/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-22T20:34:31
1 posts
🟠 CVE-2026-77322 - High (7.5)
SIPGO is a library for writing SIP services in the GO language. Prior to 1.4.3, WSConnection.Read in sip/transport_ws.go creates a wsutil.Reader without setting MaxFrameSize, allowing NextFrame to accept a client-controlled header.Length before Pa...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77322/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-22T20:25:55.870000
1 posts
🟠 CVE-2026-93345 - High (7.5)
MikroTik RouterOS before 7.25beta4 contains an improper input validation vulnerability in the labelled-VPN NLRI iterators of the routing service that allows an unauthenticated on-path attacker to crash the BGP service by sending a malformed MP_REA...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93345/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-22T20:25:55.870000
1 posts
🟠 CVE-2026-94626 - High (7.5)
vLLM through 0.29.0 fails to validate the tp_size parameter in kv_transfer_params on OpenAI-compatible completion endpoints, allowing attackers to allocate unbounded memory. Attackers can supply arbitrary tp_size values in prefill/decode disaggreg...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94626/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-22T20:25:55.870000
1 posts
🟠 CVE-2026-94624 - High (7.5)
vLLM through 0.29.0 contains a denial of service vulnerability in P2P KV offloading when OffloadingConnector is configured with TieringOffloadingSpec and a peer-to-peer secondary tier. Attackers can supply arbitrary remote host and port values in ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94624/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-22T20:25:55.870000
1 posts
🟠 CVE-2026-94623 - High (7.5)
vLLM through 0.29.0 contains a denial of service vulnerability in the NIXL connector's prefix caching implementation that fails to properly validate block counts across multi-prompt completion requests in prefill/decode disaggregated deployments. ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94623/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-22T20:17:11.083000
1 posts
🟠 CVE-2026-88419 - High (8.8)
An unrestricted upload of files with a dangerous type in the thumbnail-upload endpoint (/index.php?m=member&f=article&v=thumbUpload) of WuzhiCMS 5.0.0 allows an authenticated low-privileged member to upload a crafted .php file and execute arbitrar...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-88419/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-22T20:00:03.713000
15 posts
13 repos
https://github.com/Lutfifakee-Project/CVE-2026-87902
https://github.com/oliveiralimajr/CVE_2026_87902
https://github.com/dinosn/cve-2026-87902-wordpress-lfi-lab
https://github.com/vulpecuna/CVE-2026-87902
https://github.com/abraxas/CVE-2026-87902
https://github.com/bhideki/CVE-2026-87902
https://github.com/rabakuku/CVE-2026-87902-A-working-PoC-for-WordPress-s-critical-path-traversal
https://github.com/Hassham1/CVE-2026-87902
https://github.com/tc4dy/CVE-2026-87902-Toolkit
https://github.com/nextco/wordpress-cve-2026-87902
https://github.com/zer0dayf/CVE-2026-87902
Cybersecurity faces immediate threats as a critical WordPress vulnerability (CVE-2026-87902) was exploited post-disclosure (Sept 24). Ransomware attacks reached a record high in August 2026, marking a significant surge. On the technology front, Meta Connect 2026 showcased key advancements in AI and virtual reality. Geopolitically, the Ukraine war persists, with President Zelensky expressing hope for peace before winter amidst ongoing US-Iran tensions.
##WordPress Exploits CVE-2026-87902 Flaw Within Hours of Disclosure
Within hours of being disclosed, WordPress was exploited through a critical vulnerability, CVE-2026-87902, that could allow hackers to remotely execute code on vulnerable sites. This flaw, with a near-perfect CVSS score of 9.2, lets unauthenticated attackers inject malicious code by tricking WordPress into including a rogue…
#Cve202687902 #Wordpress #RemoteCodeExecution #Rce #VulnerabilityExploitation
##Unauthenticated LFI in WordPress page-template resolution (CVE-2026-87902, CVSS 9.2) is being exploited in the wild. Under specific server and theme conditions it escalates to RCE, enabling full site compromise. Patch and review exposure immediately. #WordPress #InfoSec #RemoteCodeExecution
https://cyberworldops.eu/en/attackers-turn-wordpress-template-flaw-into-remote-code-execution
##Critical WordPress Vulnerability Under Active Attack as Hackers Move Toward Remote Code Execution
Exploitation Has Entered a More Dangerous Phase Threat actors are escalating attacks against a critical WordPress vulnerability, moving beyond basic reconnaissance and vulnerability testing to attempts to write attacker-controlled PHP files onto compromised servers. Tracked as CVE-2026-87902, the flaw affects WordPress versions 4.7.0 through 7.1.1 and can potentially lead…
##Hackers start exploiting critical WordPress flaw for code execution
WordPress의 인증 없는 경로 순회 취약점 CVE-2026-87902(CVSS 9.2)가 실제 공격에 악용되기 시작했다. 공격자는 `pagename`의 이중 인코딩 경로 순회와 유효한 `page_id`를 이용해 로컬 PHP 파일을 포함시키며, 특정 조건에서는 `pearcmd.php`를 통해 디스크에 공격자 제어 PHP 파일을 작성하고 쉘 명령 실행으로 이어질 수 있다. WordPress 7.1.2 및 4.7 이상 지원 브랜치에 패치가 백포트됐으므로...
##Cybersecurity faces immediate threats as a critical WordPress vulnerability (CVE-2026-87902) was exploited post-disclosure (Sept 24). Ransomware attacks reached a record high in August 2026, marking a significant surge. On the technology front, Meta Connect 2026 showcased key advancements in AI and virtual reality. Geopolitically, the Ukraine war persists, with President Zelensky expressing hope for peace before winter amidst ongoing US-Iran tensions.
##Unauthenticated LFI in WordPress page-template resolution (CVE-2026-87902, CVSS 9.2) is being exploited in the wild. Under specific server and theme conditions it escalates to RCE, enabling full site compromise. Patch and review exposure immediately. #WordPress #InfoSec #RemoteCodeExecution
https://cyberworldops.eu/en/attackers-turn-wordpress-template-flaw-into-remote-code-execution
##Hackers start exploiting critical WordPress flaw for code execution
Threat actors have moved from probing WordPress sites vulnerable to CVE-2026-87902 to exploiting the flaw to write files to disk that execute shell...
🔗️ [Bleepingcomputer] https://link.is.it/xdsXDB
##🚨[POC] CVE-2026-87902: WordPress Core versions up to and including 7.1.1 are affected by a Local File Inclusion vulnerability in the locate_template() function.
GitHub: https://github.com/abraxas/CVE-2026-87902
Credit: @abraxas_null (X)
##An exploited WordPress RCE vulnerability (CVE-2026-87902) is under attack. Details and PoC exploit code are public. Patch your sites now.
#WordPress #CVE202687902 #RCE #Cybersecurity #Infosec #ZeroDay
##WordPress unauthenticated LFI to RCE PoC https://github.com/dinosn/cve-2026-87902-wordpress-lfi-lab
##新内容:《WordPress 爆出 9.2 分严重安全漏洞|CVE-2026-87902》
https://www.appinn.com/wordpress-cve-2026-87902-critical-vulnerability/
2026年9月23日,WordPress 爆出 9.2 分的严重安全漏洞,攻击者无需登录即可在服务器上运行代码。漏洞编号 CVE-2026-87902,请务必升级至最新版本 7.1.2。@appinn 根据 W3Techs 2026 年 9 月 22 日的最新统计,全球约 40.2% 的网站都在使用
WordPress patched a critical unauthenticated path traversal vulnerability (CVE-2026-87902, GHSA-7hp8-65ch-5whp, CVSS 9.2) in its page-template resolution function get_page_template(), discovered and responsibly disclosed by Robert Ressl. Under specific preconditions, such as an active theme with a top level directory starting with "page-" and a readable local PHP file usable for the pearcmd.php PEAR RCE chain, an attacker could achieve remote code execution with no authentication. WordPress 7.1.2 fixes the issue, and the patch has been backported to every supported branch back to 4.7.37, so all sites should update immediately.
https://github.com/WordPress/wordpress-develop/security/advisories/GHSA-7hp8-65ch-5whp
##WordPress 7.1.2 patches a critical WordPress RCE vulnerability (CVE-2026-87902). Update your site to prevent conditional remote code execution.
#WordPress #CVE202687902 #RCE #Cybersecurity #Infosec #WordPressSecurity
##Service notice: all hosted/maintained WP websites have been updated to the latest minor version of your current major branch (security release, CVE-2026-87902). No action needed from you!
I don't host or maintain your website? Be sure to update your WordPress ASAP. This one is critical.
Release notes → https://wordpress.org/news/2026/09/wordpress-7-1-2-release/
##updated 2026-09-22T20:00:03.713000
1 posts
🟠 CVE-2026-88407 - High (7.5)
An out-of-bounds read in the node_token_count/relation_token_count component of FalkorDB (Redis module) v4.20.1 to v4.20.4 allows attackers to cause a Denial of Service (DoS) via a crafted input.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-88407/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-22T20:00:03.713000
1 posts
🟠 CVE-2026-88411 - High (7.5)
Improper error handling in the GRAPH.EFFECT component (/effects/effects_apply.c) of FalkorDB (Redis module) v4.20.1 leads to a Denial of Service (DoS) within the application.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-88411/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-22T20:00:03.713000
1 posts
🟠 CVE-2026-88409 - High (8.8)
FalkorDB (Redis module) v4.20.1 to v4.20.4 was discovered to contain a buffer overflow in the _Decode_GrB_Matrix function (/v19/decode_matrix.c). This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-88409/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-22T19:44:01.280000
1 posts
RE: https://infosec.exchange/@suricata/117309241594395404
https://nvd.nist.gov/vuln/detail/cve-2026-94083
sev:CRIT 9.4 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L
https://nvd.nist.gov/vuln/detail/cve-2026-94084
sev:CRIT 9.4 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L
updated 2026-09-22T19:37:36.747000
1 posts
Qualcomm Snapdragon devices hit by CRITICAL CVE-2026-25254: improper authorization in SocketIO allows unauthenticated RCE. No patch yet; monitor advisories and review exposure. CVSS 9.8. https://radar.offseq.com/threat/cve-2026-25254-cwe-285-improper-authorization-in-qualcomm-inc-snapdragon-b8f8f52a617468af #OffSeq #CVE202625254 #Snapdragon #Infosec #Vuln
##updated 2026-09-22T19:32:25.730000
1 posts
CVE-2026-84239 IBM Guardium Data Protection 12.2 SQL injection lets authenticated attackers pull sensitive data. CVSS 7.6, no patch yet. Harden access and monitor until IBM ships a fix. https://www.valtersit.com/cve/CVE-2026-84239/ #CVE #infosec #IBM
##updated 2026-09-22T19:04:55.677000
1 posts
1 repos
LiquidWeb Give Tributes <=2.3.1 is vulnerable (CVE-2026-19658, CRITICAL) to PHP Object Injection via unsafe deserialization. Only exploitable if a POP chain is present from other plugins/themes. Mitigate by disabling "Allow Multiple Recipients" or enabling eCard msg. https://radar.offseq.com/threat/cve-2026-19658-cwe-502-deserialization-of-untrusted-data-in-liquidweb-give-tributes-10b75c50779a09c2 #OffSeq #WordPress #CVE202619658
##updated 2026-09-22T18:59:21.953000
2 posts
1 repos
updated 2026-09-22T18:33:43
1 posts
🔴 CVE-2026-89275 - Critical (10)
Adobe Campaign Classic (ACC) is affected by an Improper Control of Generation of Code ('Code Injection') vulnerability that could result in arbitrary code execution in the context of the current user. An attacker could exploit this vulnerability t...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89275/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-22T16:18:17.183000
1 posts
CVE-2026-94099 | Netcore NBR200V2 (1.3.241127.071246): CRITICAL command injection via restore.cgi (QUERY_STRING). Remote exploit, no patch, vendor silent. Isolate devices & monitor logs. https://radar.offseq.com/threat/cve-2026-94099-command-injection-in-netcore-nbr200v2-adc35b079f75e0e5 #OffSeq #Netcore #CVE202694099 #infosec
##updated 2026-09-22T15:32:43
1 posts
Technical details and a PoC for the D-Link DAP-1360 vulnerability (CVE-2026-95675) are public. Learn how this unauthenticated flaw impacts legacy routers.
#DLink #DAP1360 #CVE202695675 #RCE #RouterSecurity #Cybersecurity
##updated 2026-09-22T15:32:43
1 posts
NVIDIA patched critical NVIDIA Infrastructure Controller vulnerabilities across Linux builds. Learn how CVE-2026-65113 impacts systems and update now.
#NVIDIA #Cybersecurity #CVE202665113 #LinuxSecurity #Infosec #DataCenter
##updated 2026-09-22T15:32:41
1 posts
1 repos
New advisory
CRITICAL: CVE-2026-84388: Fortinet Fortipam Chrome Extension: https://app.opencve.io/cve/?vendor=fortinet&product=fortipam_chrome_extension #Fortinet #Chrome #infosec #vulnerability
##updated 2026-09-22T15:32:31
1 posts
🟠 CVE-2026-88406 - High (7.5)
FalkorDB (Redis module) v4.20.1 to v4.20.4 was discovered to contain a stack overflow in the _ValidateUnion_Clauses function (/ast/ast_validations.c). This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-88406/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-22T12:10:51.067000
7 posts
Zyxel GS1900 Switches Targeted by Chinese Threat Actor in Data Theft Campaign
Zyxel GS1900 series switches are under active exploitation by a Chinese threat actor using a high-severity buffer overflow (CVE-2026-7273) to steal sensitive data from nearly 1,000 devices worldwide. The campaign has compromised government records and relies on unpatched firmware and default credentials to gain system control.
**If you have Zyxel GS1900 series switches, make sure their management interface is isolated from the internet, accessible from trusted networks only and all default passwords are changed. Then update the firmware to version 2.90(xxxx.2)C0 or later ASAP and check the switches for signs of breach. Attackers are actively exploiting this flaw.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/zyxel-gs1900-switches-targeted-by-chinese-threat-actor-in-data-theft-campaign-y-6-z-t-u/gD2P6Ple2L
The vulnerability, tracked as CVE-2026-7273 (CVSS score: 8.8), is a stack-based buffer overflow vulnerability that could result in arbitrary operating system (OS) command execution. https://thehackernews.com/2026/09/zyxel-and-veeam-flaws-under-active.html
##CISA added CVE-2026-7273, a stack-based buffer overflow in Zyxel GS1900 CGI handling, to KEV on Sept 21, 2026 after confirmed active exploitation. Unauthenticated LAN HTTP requests can yield OS command execution, risking switch takeover and lateral movement. #Zyxel #KnownExploitedVulnerabilities #NetworkSecurity
https://cyberworldops.eu/en/actively-exploited-zyxel-switch-flaw-triggers-three-day-federal-patch
##Zyxel GS1900 switches (CVE-2026-7273) and Veeam Agent for Microsoft Windows (CVE-2026-32996) are under active exploitation. The former allows unauthenticated LAN command execution via CGI buffer overflow, the latter enables SYSTEM-level access on endpoints. Both expand persistence and backup tampering risk. #Zyxel #Veeam #ThreatIntel #VulnManagement
https://cyberworldops.eu/en/active-attacks-put-zyxel-switches-and-veeam-protected-windows
##(CISA CS-MAN) The Cyber Mind CSUITE Brief: CVE-2026-7273 – Zyxel GS1900 Series Switches Stack-Based Buffer Overflow Vulnerability
Analyze the executive impact of CVE-2026-7273 with our strategic Zyxel CSUITE brief, covering zero-trust network segmentation, asset risk assessment, and CISA compliance....
##🚨 [CISA-2026:0921] CISA Adds One Known Exploited Vulnerability to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0921)
CISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2026-7273 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-7273)
- Name: Zyxel GS1900 Series Switches Stack-Based Buffer Overflow Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Zyxel
- Product: GS1900 Series Switches
- Notes: https://www.zyxel.com/global/en/support/security-advisories/zyxel-security-advisory-for-stack-based-buffer-overflow-vulnerability-in-gs1900-series-switches-06-16-2026 ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-7273
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260921 #cisa20260921 #cve_2026_7273 #cve20267273
##CVE ID: CVE-2026-7273
Vendor: Zyxel
Product: GS1900 Series Switches
Date Added: 2026-09-21
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-7273
updated 2026-09-22T06:30:35
1 posts
1 repos
Privilege escalation (CRITICAL, CVE-2026-13355) in Meta Box Frontend Submission <=4.5.6 & User Profile <=3.11.0 lets unauthenticated attackers gain admin on WordPress. Patch status TBD — restrict plugin use & monitor activity. Details: https://radar.offseq.com/threat/cve-2026-13355-cwe-269-improper-privilege-management-in-meta-box-meta-box-frontend-submission-7d7ee5c391cbe4a8 #OffSeq #WordPress #CVE2026_13355
##updated 2026-09-22T04:18:02.810000
1 posts
sev:CRIT bypass of CVE-2026-47065 in Apache MINA.
https://nvd.nist.gov/vuln/detail/cve-2026-94301
##The fix for CVE-2026-47065/ZDRES-232 ("resolveProxyClass Not Overridden - acceptMatchers Filter Bypass via java.lang.reflect.Proxy"), released on 2026-06-02 and announced as "Fully addressed" in MINA 2.2.8, 2.1.13 and 2.0.29, was committed to the 2.2.X branch only. The 2.0.X and 2.1.X maintenance branches never received the resolveProxyClass() override, so the 2.0.29 and 2.1.13 artifacts listed as fixed -- and every later release on those lines, up to and including the current 2.0.30 and 2.1.14 -- remain vulnerable to the exact allow-list bypass that CVE-2026-47065 was meant to close.
updated 2026-09-22T03:31:06
1 posts
CVE-2026-94493 (CRITICAL, CVSS 10) in Gigatech PDV5701 1.0.31_240305_112640: WebSocket Service has missing authentication. Remote exploit is public, no vendor fix. Isolate devices, monitor for attacks. https://radar.offseq.com/threat/cve-2026-94493-missing-authentication-in-gigatech-pdv5701-0475e74be58ba45f #OffSeq #CVE #IoTSecurity
##updated 2026-09-22T00:31:02
1 posts
🟠 CVE-2026-94540 - High (7.7)
DesktopSMS 1.11.0 by MrPear contains an unauthorized access vulnerability that allows local attackers to transmit SMS, retrieve SMS-derived content, and persist an attacker-selected paired identity by interacting with the application's local servi...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94540/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-22T00:31:02
1 posts
🟠 CVE-2026-94627 - High (7.5)
vLLM Mooncake connector through 0.29.0 fails to properly manage GPU KV cache block ownership when concurrent child requests share a single transfer ID in prefill/decode disaggregated deployments. Attackers can trigger GPU memory exhaustion by subm...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94627/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-22T00:31:02
2 posts
🟠 CVE-2026-94425 - High (8.8)
A vulnerability was found in Moore Threads MTT S80 Driver Package 340.150. The affected element is the function sub_140006F0C in the library mtdispkm64.sys of the component IOCTL Handler. The manipulation results in improper privilege management. ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94425/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-94425 (CRITICAL, CVSS 9.3) hits Moore Threads MTT S80 Driver v340.150 🛡️. Improper privilege management in IOCTL Handler allows local escalation. No patch yet. Limit local access & monitor! https://radar.offseq.com/threat/cve-2026-94425-improper-privilege-management-in-moore-threads-mtt-s80-driver-package-4eb3a6d262c0dea2 #OffSeq #Vuln #PrivilegeEscalation #Infosec
##updated 2026-09-21T22:27:11
1 posts
Canonical Patches Critical Trust Store Poisoning Flaw in ADSys
Canonical patched a critical vulnerability (CVE-2026-12249) in ADSys that allows attackers to poison the Ubuntu system trust store by intercepting unencrypted certificate enrollment requests. This flaw enables persistent decryption of TLS traffic and full compromise of encrypted communications on affected hosts.
**If you manage Ubuntu machines connected to Active Directory through ADSys, update ADSys to version 0.16.3 or later on all of them. Oder versions fetch certificates over unencrypted HTTP and let an attacker plant a fake root certificate that exposes all encrypted traffic on the machine. After updating, check each machine's trusted certificates for any unfamiliar root certificates and remove them, since a machine that was already compromised stays exposed even after the patch.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/canonical-patches-critical-trust-store-poisoning-flaw-in-adsys-e-j-r-d-v/gD2P6Ple2L
updated 2026-09-21T21:32:01
1 posts
🟠 CVE-2026-81469 - High (7.8)
Dell Inventory Collector Client, versions prior to 15.0.0, contain an Unquoted Search Path or Element vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Code execution and Elevation ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-81469/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-21T21:32:00
1 posts
🟠 CVE-2026-94501 - High (8.8)
jshERP through 3.6 contains an authorization bypass vulnerability in the userBusiness CRUD endpoints that allows authenticated users to create, modify, or delete authorization-relation rows without privilege checks. Attackers can manipulate user-r...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94501/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-21T21:31:57
1 posts
🟠 CVE-2026-94424 - High (8.8)
A vulnerability has been found in Moore Threads MTT S80 Driver Package up to 340.150. Impacted is the function sub_140001000 in the library mtdispkm64.sys of the component IOCTL Handler. The manipulation leads to heap-based buffer overflow. An att...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94424/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-21T19:17:18.593000
1 posts
1 repos
D-Link warns of two major bugs with public POCs
CVE-2026-86296: https://supportannouncement.us.dlink.com/security/publication.aspx?name=SAP10516
CVE-2026-93958: https://supportannouncement.us.dlink.com/security/publication.aspx?name=SAP10518
##updated 2026-09-21T19:17:11.323000
1 posts
🔴 CVE-2026-79920 - Critical (9.9)
Ajenti is a Linux & BSD modular server admin panel. Prior to version 2.2.16, any authenticated user can call /api/core/tasks/start to enqueue InstallPlugin, UnInstallPlugin, or UpgradeAll from plugins/plugins/tasks.py without plugin-management aut...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-79920/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-21T19:17:07.067000
2 posts
Technical details and a PoC for a critical Fluent Bit vulnerability (CVE-2026-61674) are public. Patch this Fluent Bit vulnerability to prevent RCE attacks.
#FluentBit #CVE202661674 #BufferOverflow #RCE #Cybersecurity #InfoSec
##Technical details and a PoC for a critical Fluent Bit vulnerability (CVE-2026-61674) are public. Patch this Fluent Bit vulnerability to prevent RCE attacks.
#FluentBit #CVE202661674 #BufferOverflow #RCE #Cybersecurity #InfoSec
##updated 2026-09-21T15:32:39
3 posts
1 repos
Public Exploit for Linux Kernel Container Escape Could Turn Container Compromise Into Host Root + Video
A Serious New Development for Container Security A newly published Linux kernel exploit has raised the stakes for organizations running Docker, Kubernetes, and other containerized workloads. Researchers at DepthFirst have released technical details and exploit code for CVE-2026-80521, a Linux kernel AF_UNIX use-after-free vulnerability that can allow an attacker…
##🐧 SIGINT // Ubuntu Watch — 2026-09-24
CVE-2026-80521, an AF_UNIX use-after-free, is patched upstream but still unfixed on Ubuntu 22.04/24.04/26.04 with public exploit code out. If you run containers on Ubuntu hosts, this is a real priority-patch-now situation, not theoretical.
🔗 https://thehackernews.com/2026/09/exploit-released-for-unpatched-ubuntu.html
##https://thecybersecguru.com/news/cve-2026-80521-ubuntu-kernel-container-escape/
##updated 2026-09-21T15:17:32.223000
1 posts
Web to Print Online Designer plugin (v1.7.0 – 2.14.9) hit by CRITICAL CVE-2026-82187: unauthenticated attackers can upload & execute arbitrary files (incl. PHP), leading to RCE. Upgrade to 2.15.0+ ASAP. https://radar.offseq.com/threat/cve-2026-82187-cwe-434-unrestricted-upload-of-file-with-dangerous-type-in-web-to-print-online-designer-b337972e4836e68c #OffSeq #WordPress #CVE202682187 #RCE
##updated 2026-09-21T13:17:07.147000
1 posts
🚨 RAPID RESPONSE: IBM MQ Pre-Authentication RCE [CVE-2026-10747]
A critical heap buffer overflow in IBM MQ could allow remote code execution before authentication. CVSS: 10.0.
Censys ARC observes IBM MQ web consoles on 120 hosts and 149 web properties Internet-wide. These numbers indicate IBM MQ presence, not confirmed vulnerable systems.
IBM has released fixes for affected MQ Server and MQ Appliance versions. No public PoC or reported active exploitation is known at this time.
Read the full analysis for affected versions, Internet observations, and remediation guidance. https://censys.com/advisory/cve-2026-10747/
##updated 2026-09-21T03:30:27
1 posts
Netcore NBR200V2 (v1.3.241127.071246) hit by CRITICAL CVE-2026-94101 buffer overflow in /usr/bin/routerd. Remote code exec possible. Public exploit, no patch. Restrict remote access ASAP. https://radar.offseq.com/threat/cve-2026-94101-buffer-overflow-in-netcore-nbr200v2-21b7762bd81c815b #OffSeq #Netcore #RouterSecurity #Infosec
##updated 2026-09-20T06:30:20
1 posts
1 repos
ZTE SmartHome Account Takeover: Password Reset Without Verification Code. 4 CVEs, 100K+ Android Downloads - CVE-2026-86553 https://minanagehsalalma.github.io/zte-smartlife-app-pwned/
##updated 2026-09-20T03:30:29
1 posts
RE: https://infosec.exchange/@suricata/117309241594395404
https://nvd.nist.gov/vuln/detail/cve-2026-94083
sev:CRIT 9.4 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L
https://nvd.nist.gov/vuln/detail/cve-2026-94084
sev:CRIT 9.4 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L
updated 2026-09-19T15:17:08.323000
1 posts
2 repos
Details and PoC exploit code for a critical WordPress stored XSS are public. Learn how CVE-2026-93485 enables RCE and patch WordPress today.
#WordPress #CVE202693485 #StoredXSS #RCE #Cybersecurity #Infosec
https://securityonline.info/wordpress-stored-xss-poc/?utm_source=mastodon&utm_medium=jetpack_social
##updated 2026-09-19T15:16:59.910000
1 posts
CVE-2026-61817: SQL injection in pg_partman before 5.5.0. A partman_user role can poison part_config and inject SQL through run_maintenance. CVSS 8.5, no patch yet. Restrict that role until 5.5.0 lands. https://www.valtersit.com/cve/CVE-2026-61817/ #CVE #infosec #PostgreSQL
##updated 2026-09-19T04:17:53.580000
2 posts
2 repos
https://github.com/mc493/linux-kernel-zero-day-mitigation-zero-downtime-kernel-defense-
(CISA CS-MAN) The Cyber Mind CSUITE Brief: CVE-2026-53266 – Linux Kernel Out-of-Bounds Write Vulnerability
Analyze the executive impact of CVE-2026-53266 with our strategic Linux CSUITE brief, covering kernel out-of-bounds write risks, compliance assurance, and board-level risk communication....
##CISA added CVE-2025-39682, CVE-2025-39964, and CVE-2026-53266 to its KEV catalog after exploitation was reported. The flaws affect TLS, AF_ALG, and ebtables SNAT, with CVSS scores up to 9.8, making rapid exposure assessment and patch validation essential. #LinuxSecurity #VulnerabilityManagement #KEV
https://cyberworldops.eu/en/three-exploited-linux-kernel-flaws-trigger-immediate-cisa-patch
##updated 2026-09-18T21:32:43
1 posts
CVE-2026-88097: Use-after-free in Microsoft Edge lets a local attacker elevate privileges. CVSS 8.1, patch still under review. Limit exposure and watch for updates. https://www.valtersit.com/cve/CVE-2026-88097/ #Microsoft #infosec #CVE
##updated 2026-09-18T21:32:40
1 posts
CVE-2026-84086: IBM Guardium Data Protection 12.2 path traversal lets remote authenticated attackers run arbitrary code. CVSS 7.2, no patch. Restrict access now. https://www.valtersit.com/cve/CVE-2026-84086/ #CVE #infosec #IBM
##updated 2026-09-18T21:32:39
1 posts
CVE-2026-84085 IBM Guardium Data Protection 12.2 RCE via OS command injection, CVSS 8.1, no patch yet. Isolate affected systems and restrict access now: https://www.valtersit.com/cve/CVE-2026-84085/ #CVE #infosec #IBM
##updated 2026-09-18T21:32:35
1 posts
CVE-2026-81937: command injection in IBM Guardium Data Protection 12.2 lets a privileged user run shell commands as root via the import remotelog_config filename. CVSS 7.2. No patch yet - restrict CLI access and watch for vendor https://www.valtersit.com/cve/CVE-2026-81937/ #CVE #infosec #IBM
##updated 2026-09-18T21:31:33
1 posts
3 repos
https://github.com/suominen/CVE-2025-39682
https://github.com/mc493/linux-kernel-zero-day-mitigation-zero-downtime-kernel-defense-
CISA added CVE-2025-39682, CVE-2025-39964, and CVE-2026-53266 to its KEV catalog after exploitation was reported. The flaws affect TLS, AF_ALG, and ebtables SNAT, with CVSS scores up to 9.8, making rapid exposure assessment and patch validation essential. #LinuxSecurity #VulnerabilityManagement #KEV
https://cyberworldops.eu/en/three-exploited-linux-kernel-flaws-trigger-immediate-cisa-patch
##updated 2026-09-18T20:17:06.860000
1 posts
📢 [VULN] Alerte sécurité : deux vulnérabilités majeures menacent vos NAS Synology - CVE-2026-13684 CVE-2026-13639
Huit vulnérabilités viennent d'être identifiées dans le système d'exploitation DiskStation Manager de Synology, dont deux atteignent un score de gravité maximal de 9.8. Ces failles critiques permettent à des attaquants distants de lire, d'écrire ou d'effacer vos fichiers sans aucune…
🔗 https://www.generation-nt.com/actualites/alerte-securite-vulnerabilites-majeures-serveurs-2081523
💬 discussion : https://infosec.pub/post/52624526
#Vulnérabilité #CVE #Cyberveille
updated 2026-09-18T19:31:11.370000
1 posts
1 repos
A critical vulnerability in the open-source Bifrost AI gateway lets unauthenticated attackers execute arbitrary commands on servers.
Source: TechJuice
https://www.techjuice.pk/bifrost-ai-gateway-critical-flaw-cve-2026-90898/
updated 2026-09-18T18:17:47.257000
1 posts
CVE-2026-19499: glibc 2.38-2.44 strfmon buffer overflow via right-justified padding. CVSS 7.7. Unpatched. Audit risky calls, update now.
https://www.valtersit.com/cve/CVE-2026-19499/
#CVE #infosec #glibc
updated 2026-09-18T17:58:41
1 posts
CVE-2026-85058 Moquette MQTT broker: Last Will path skips canWrite ACL check, letting remote clients inject messages into protected topics. CVSS 7.5. No patch confirmed yet. Restrict anonymous access now. https://www.valtersit.com/cve/CVE-2026-85058/ #CVE #infosec #MQTT
##updated 2026-09-18T15:31:06
2 posts
3 repos
https://github.com/n1k0oowang/CVE-2025-39964_EXP
https://github.com/suominen/CVE-2025-39964
https://github.com/mc493/linux-kernel-zero-day-mitigation-zero-downtime-kernel-defense-
(CISA TS+SOC) The Cyber Mind TSUITE Brief: CVE-2025-39964 – Linux Kernel Race Condition Vulnerability
Analyze the mechanics of CVE-2025-39964 with our technical Linux TSUITE brief, covering AF_ALG race conditions, CrowdStrike CQL queries, and endpoint hardening....
##CISA added CVE-2025-39682, CVE-2025-39964, and CVE-2026-53266 to its KEV catalog after exploitation was reported. The flaws affect TLS, AF_ALG, and ebtables SNAT, with CVSS scores up to 9.8, making rapid exposure assessment and patch validation essential. #LinuxSecurity #VulnerabilityManagement #KEV
https://cyberworldops.eu/en/three-exploited-linux-kernel-flaws-trigger-immediate-cisa-patch
##updated 2026-09-18T09:31:20
1 posts
📢 [VULN] Alerte sécurité : deux vulnérabilités majeures menacent vos NAS Synology - CVE-2026-13684 CVE-2026-13639
Huit vulnérabilités viennent d'être identifiées dans le système d'exploitation DiskStation Manager de Synology, dont deux atteignent un score de gravité maximal de 9.8. Ces failles critiques permettent à des attaquants distants de lire, d'écrire ou d'effacer vos fichiers sans aucune…
🔗 https://www.generation-nt.com/actualites/alerte-securite-vulnerabilites-majeures-serveurs-2081523
💬 discussion : https://infosec.pub/post/52624526
#Vulnérabilité #CVE #Cyberveille
updated 2026-09-17T12:46:31.670000
2 posts
1 repos
(CISA TS-MAN) The Cyber Mind TSUITE Brief: CVE-2026-76460 – Cisco Identity Services Engine Incorrect Use of Privileged APIs Vulnerability
Analyze the technical mechanics of CVE-2026-76460 with our Cisco TSUITE brief, covering Cisco ISE authentication bypass, path traversal vectors, and endpoint hardening....
##(CISA TS-MAN) The Cyber Mind TSUITE Brief: CVE-2026-76460 – Cisco Identity Services Engine Incorrect Use of Privileged APIs Vulnerability
Analyze the technical mechanics of CVE-2026-76460 with our Cisco TSUITE brief, covering Cisco ISE authentication bypass, path traversal vectors, and endpoint hardening....
##updated 2026-09-16T20:38:33.883000
1 posts
Docker Sandboxes 0.42.0 security update: CVE-2026-77179 and CVE-2026-79994 #devopsish https://docs.docker.com/security/security-announcements/#docker-sandboxes-0420-security-update-cve-2026-77179-and-cve-2026-79994
##updated 2026-09-16T15:30:57
1 posts
⚪️ Google Patches Zero-Day Vulnerability in Pixel Devices
🗨️ Google has released September patches for Pixel smartphones, fixing 110 vulnerabilities. Among them is a zero-day flaw found in the cellular modem (CVE-2026-58704). The company warned that the issue is already being exploited by hackers in targeted attacks. CVE-2026-58704 has…
##updated 2026-09-16T00:32:25
1 posts
1 repos
Docker Sandboxes 0.42.0 security update: CVE-2026-77179 and CVE-2026-79994 #devopsish https://docs.docker.com/security/security-announcements/#docker-sandboxes-0420-security-update-cve-2026-77179-and-cve-2026-79994
##updated 2026-09-15T19:24:16.433000
2 posts
1 repos
Details and PoC for the critical macOS DesktopServicesHelper vulnerability are public. Learn how CVE-2026-43783 enables root access.
#macOS #CVE202643783 #AppleSecurity #Cybersecurity #Infosec #PrivilegeEscalation
##Details and PoC for the critical macOS DesktopServicesHelper vulnerability are public. Learn how CVE-2026-43783 enables root access.
#macOS #CVE202643783 #AppleSecurity #Cybersecurity #Infosec #PrivilegeEscalation
##updated 2026-09-14T15:32:56
1 posts
CVE-2026-59570 Zscaler client connector: a peer app can kill the tunnel, force logout, toggle packet capture. CVSS 7.5, no patch yet. Limit third-party apps and watch for updates. https://www.valtersit.com/cve/CVE-2026-59570/ #CVE #infosec #Zscaler
##updated 2026-09-11T15:32:27
1 posts
2 repos
MikroTik “MikroTrick” Attack Chain Lets Hackers Take Full Router Control Without a Password
Introduction A serious security warning from CERT Polska highlights a dangerous attack chain affecting MikroTik RouterOS devices. Two vulnerabilities—CVE-2026-67279 and CVE-2026-86060—can reportedly be chained together to achieve full administrative control of an Internet-exposed MikroTik router without knowing the administrator's password or possessing an SSH key. The discovery…
##updated 2026-09-10T04:18:18.390000
2 posts
Check Point VPN Gateways and Management Server Flaws Actively Exploited
Check Point confirmed active exploitation of three critical vulnerabilities (CVE-2026-85102, CVE-2026-85103, and CVE-2026-93616) affecting VPN gateways and management servers, prompting a 72-hour US federal remediation deadline.
**If you run Check Point Security Gateways, Spark Firewalls or Security Management Servers, patch immediately to LivePatch Take 26 or the latest Jumbo Hotfix. Older unsupported versions R80 through R81.10 must be upgraded first. Make sure the management server's web interface is reachable only from trusted internal networks. Patching isn't enough, since attackers have been active since September 12: check your VPN logs for unknown sessions and internal LDAP scanning, and if you find anything suspicious, treat the device as compromised and escalate to your incident response team.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/check-point-vpn-gateways-and-management-server-flaws-actively-exploited-k-i-7-j-s/gD2P6Ple2L
Check Point VPN Gateways and Management Server Flaws Actively Exploited
Check Point confirmed active exploitation of three critical vulnerabilities (CVE-2026-85102, CVE-2026-85103, and CVE-2026-93616) affecting VPN gateways and management servers, prompting a 72-hour US federal remediation deadline.
**If you run Check Point Security Gateways, Spark Firewalls or Security Management Servers, patch immediately to LivePatch Take 26 or the latest Jumbo Hotfix. Older unsupported versions R80 through R81.10 must be upgraded first. Make sure the management server's web interface is reachable only from trusted internal networks. Patching isn't enough, since attackers have been active since September 12: check your VPN logs for unknown sessions and internal LDAP scanning, and if you find anything suspicious, treat the device as compromised and escalate to your incident response team.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/check-point-vpn-gateways-and-management-server-flaws-actively-exploited-k-i-7-j-s/gD2P6Ple2L
updated 2026-09-08T21:34:12
1 posts
Microsoft shipped its largest patch batch to date with at least 974 fixes, including 113 rated Critical. Two local EoP flaws, CVE-2026-81963 and CVE-2026-85880, are under active exploitation and enable SYSTEM privileges, making immediate triage essential. #PatchTuesday #WindowsSecurity #VulnManagement
https://cyberworldops.eu/en/microsoft-s-974-fix-security-release-forces-a-triage-test-for-windows
##updated 2026-09-08T21:34:09
1 posts
Microsoft shipped its largest patch batch to date with at least 974 fixes, including 113 rated Critical. Two local EoP flaws, CVE-2026-81963 and CVE-2026-85880, are under active exploitation and enable SYSTEM privileges, making immediate triage essential. #PatchTuesday #WindowsSecurity #VulnManagement
https://cyberworldops.eu/en/microsoft-s-974-fix-security-release-forces-a-triage-test-for-windows
##updated 2026-09-08T17:18:39.613000
3 posts
Discover the critical CVE-2026-86296 vulnerability in D-Link DIR-822A routers. Learn how this DHCP flaw allows attackers to execute arbitrary code locally.
##D-Link warns of two major bugs with public POCs
CVE-2026-86296: https://supportannouncement.us.dlink.com/security/publication.aspx?name=SAP10516
CVE-2026-93958: https://supportannouncement.us.dlink.com/security/publication.aspx?name=SAP10518
##D-Link warns of max severity zero-day bug in DIR-822A routers
D-Link warned customers of a maximum-severity vulnerability (CVE-2026-86296) with public proof-of-concept (PoC) exploit code and no patch,...
🔗️ [Bleepingcomputer] https://link.is.it/hXngI9
##updated 2026-09-08T16:18:10.600000
1 posts
MikroTik “MikroTrick” Attack Chain Lets Hackers Take Full Router Control Without a Password
Introduction A serious security warning from CERT Polska highlights a dangerous attack chain affecting MikroTik RouterOS devices. Two vulnerabilities—CVE-2026-67279 and CVE-2026-86060—can reportedly be chained together to achieve full administrative control of an Internet-exposed MikroTik router without knowing the administrator's password or possessing an SSH key. The discovery…
##updated 2026-09-08T15:28:33.090000
1 posts
🔒 New CSAF advisory published
VDE-2026-089
Lenze: VPN Client Remote Code Execution in combination with Lenze x500 IoT Gateway
CVE-2026-75925
The Lenze VPN client is vulnerable to a Remote Code Execution. The vulnerability would allow an attacker to perform a remote code execution on the computer running the client with elevated privile…
HTML: https://certvde.com/en/advisories/VDE-2026-089
CSAF JSON: https://lenze.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-089.json
updated 2026-09-08T09:35:45
1 posts
Siemens Patches Root-Level File Upload Flaw in Siveillance Control OIS Module
Siemens patched a critical root-level file upload vulnerability (CVE-2026-50093) in the Siveillance Control OIS web module that affects physical security management systems worldwide.
**If you use Siemens Siveillance Control or Control Pro, make sure all these systems are isolated from the internet and the OIS web module is reachable only from trusted internal networks. Then update right away to the fixed version for your edition.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/siemens-patches-root-level-file-upload-flaw-in-siveillance-control-ois-module-t-9-0-l-g/gD2P6Ple2L
updated 2026-09-08T09:18:05.213000
2 posts
100 repos
https://github.com/MobiusM/CVE-2026-43499
https://github.com/huaguiqi/asus-i005-cve-2026-43499
https://github.com/fusiondrive/CVE-2026-43499-S24U
https://github.com/Meowkis/tcp-zerocopy-sm
https://github.com/joehquak/Mi8E5-Unlocker-by-CVE-2026-43499
https://github.com/knowlily/cve-2026-43499-honor
https://github.com/boxiaolanya2008/CVE-2026-43499-Neo11Plus
https://github.com/0xBlackash/CVE-2026-43499
https://github.com/NothingFumo/ghostlock-aresin
https://github.com/veygax/HORiZonstack
https://github.com/onesmiledx/CVE-2026-43499
https://github.com/CakesTwix/Android-CVE-2026-43499
https://github.com/ReBiliBin/ghostlock-oppo-watch3pro
https://github.com/ctn-Qvo/CVE-2026-43499-so-build
https://github.com/alex193a/Root-My-Pixel
https://github.com/Thiasap/oppo-pgem10-ghostlock
https://github.com/wxxsfxyzm/GhostLock-Galaxy
https://github.com/gagaltotal/CVE-2026-43499-PoC-Scanner
https://github.com/k-o-n-t-o-r/ghostlock-sabrina
https://github.com/hmascs/KSuRoot
https://github.com/sarabpal-dev/IonStack-S22U
https://github.com/fusiondrive/CVE-2026-43499-A36
https://github.com/eroorvbsyes-hotmail/CVE-2026-43499_x86_Exploit
https://github.com/ctn-Qvo/auto_extract_offsets
https://github.com/BuSung-dev/CVE-2026-43499-S25U
https://github.com/HORKimhab/CVE-2026-43499
https://github.com/BuSung-dev/Root-My-Galaxy
https://github.com/xrzcc/s26-m1q-ghostlock-selinux
https://github.com/SammyEnigma/CVE-2026-43499-S26
https://github.com/inforcqb/CVE-2026-43499-pja110
https://github.com/zhubaohe123/ghostlock-kit
https://github.com/Petalrain224/CVE-2026-43499-Redmi-Turbo5
https://github.com/hui191/cve-2026-43499-aak-an00
https://github.com/oopnv70-lab/ghostlock-honor-aak
https://github.com/Bartixxx32/CVE-2026-43499-OnePlus15
https://github.com/dorlow/hazel-cve-2026-43499
https://github.com/yijiacloud/GhostLock-OPPO-PCKM00
https://github.com/MiaPatsune/cve-2026-43499
https://github.com/Bailan766/rmx3888-cve-2026-43499-config
https://github.com/pubglite55/oppo-ghostlock
https://github.com/fusiondrive/CVE-2026-43499-ZFOLD4
https://github.com/xianwan1314/CVE-2026-43499-Poc-Analysis
https://github.com/ankitrawatgit/iQOO-Z9_5G-vivo-T3_5G-Root-GhostLock
https://github.com/pimpamebanihah/cve-2026-43499-app.so
https://github.com/Bugel/cve-2026-43499-m3q-azf1
https://github.com/233laoliu/mt6985-CVE-2026-43499
https://github.com/Colorful-glassblock/duchamp-root
https://github.com/WitAqua-tools/Root-My-Device
https://github.com/oopnv70-lab/ghostlock-aak-apk
https://github.com/XiaoBaiLovesStirring/ghostlock-k419-adapter
https://github.com/slapah/ghostlock-h8q
https://github.com/tc3650/CVE-2026-43499-armv7
https://github.com/mobilehackinglab/ghostlock-a17
https://github.com/fancyzll/CVE-2026-43499_OPPO-MT6835
https://github.com/justsoman/CVE-2026-43499-jinghu
https://github.com/ccp-p/ghostlock-cve-2026-43499-4.19-k40
https://github.com/yakidango-official/GhostLock-H80GT
https://github.com/Wtrwx/smt878u-ionstack-poc
https://github.com/No-22-Github/UnPlus
https://github.com/gitchw/ghostlock-cve-2026-43499
https://github.com/Linuxoid-cn/Mi8E5-Unlocker-by-CVE-2026-43499
https://github.com/oopnv70-lab/ghostlock-apk
https://github.com/jason5545/ghostlock-myron-tw
https://github.com/p2p3p/GhostLock-for-OnePlus
https://github.com/1ndevelopment/ghostlock-s26
https://github.com/woshimaniubi8/CVE-2026-43499-root-KernelSU
https://github.com/lkeld/CVE-2026-43499-poc
https://github.com/cuteaplane/GhostLock-for-OnePlus15T
https://github.com/dmcdtc/openvz-cve-patch-2026
https://github.com/yijiacloud/ghostlock-cve-2026-43499-4.19-k40
https://github.com/soralis0912/CVE-2026-43499-pmg110-root
https://github.com/HYCQAQ/Logitech-G-Cloud-GhostLock-CVE-2026-43499
https://github.com/CatXiaoShi/cve-2026-43499
https://github.com/hybLOVE/iqoo-temp-root
https://github.com/datfooldive/ghostlock-emerald
https://github.com/x-spy/CVE-2026-43499-popsicle
https://github.com/dnlid/CVE-2026-43499
https://github.com/mumaosong/cve-2026-43499-CyberMeowfia
https://github.com/accessmodifier364/cve-2026-43499-firetv-sheldonp-writeup
https://github.com/YuKongA/ghostlock-app
https://github.com/zenyxx-xd/RootMyVivo
https://github.com/Linuxoid-cn/CVE-2026-43499-Poc-Analysis
https://github.com/soralis0912/CVE-2026-43499-warhol-root
https://github.com/soralis0912/CVE-2026-43499-aristotle-apk
https://github.com/JoinChang/ghostlock-oneplus
https://github.com/Cxyofficial/x200-cve-2026-43499
https://github.com/Bobikl/CVE-2026-43499-T807D
https://github.com/zzzxxxxxxxxxx/GhostLock-GOT-W29
https://github.com/xiaohj233/ghostlock-x200-root
https://github.com/snothin/ghostlock-s26
https://github.com/2932796375github/CVE-2026-43499_OPPO-MT6835
https://github.com/PeronGH/ghostlock-selinux-disabler
https://github.com/caspy123/CVE-2026-43499
https://github.com/XingChenRS/CyberMeowfiaNS
https://github.com/R0rt1z2/GhostLock
https://github.com/sorrow404Null/CVE-2026-43499-RMX5200
https://github.com/soralis0912/CVE-2026-43499-aristotle
https://github.com/hackyangwen-lgtm/rmg-s9180-fzg1
@solonovamax@tech.lgbt found a PoC for it https://github.com/NebuSec/CyberMeowfia/tree/main/IonStack/CVE-2026-43499
##@solonovamax@tech.lgbt found a PoC for it https://github.com/NebuSec/CyberMeowfia/tree/main/IonStack/CVE-2026-43499
##updated 2026-08-26T16:49:18.760000
1 posts
2 repos
The DJI Bluetooth vulnerability CVE-2026-78306 lets a nearby attacker send unauthenticated DUML commands to 16 drone models. Update firmware now.
#DJI #CVE202678306 #Bluetooth #DroneSecurity #DUML #CyberSecurity
https://meterpreter.org/dji-bluetooth-vulnerability/?utm_source=mastodon&utm_medium=jetpack_social
##updated 2026-08-25T15:33:26
1 posts
45 repos
https://github.com/soksofos/wazuh-nginx-cve-2026-42945-sca-lab
https://github.com/tal7aouy/nginx-cve-2026-42945
https://github.com/yusufdalbudak/CVE-2026-42945
https://github.com/jelasin/CVE-2026-42945
https://github.com/LiaoZiqi-GZFLS/CVE-2026-42945
https://github.com/imSre9/CVE-2026-42945
https://github.com/nu0l/NGINX-Rift
https://github.com/hnytgl/CVE-2026-42945
https://github.com/Kentox493/CVE-2026-42945_NginxRift
https://github.com/fkj-src/fix_nginx_cve_2026_42945
https://github.com/iammerrida-source/nginx-rift-detect
https://github.com/nanwinata/nginxrift-CVE-2026-42945
https://github.com/FranklinF25/cve-2026-42945
https://github.com/Renison-Gohel/CVE-2026-42945-NGINX-Rift
https://github.com/p3Nt3st3r-sTAr/CVE-2026-42945-POC
https://github.com/chenqin231/CVE-2026-42945
https://github.com/RedCrazyGhost/CVE-2026-42945
https://github.com/CynepMyx/nginx-rift-check
https://github.com/quantumworld-dpdns-io/CVE-2026-42945
https://github.com/BarAppTeam/nginx-cve-fix
https://github.com/limo57640-crypto/nginx-rift-detector
https://github.com/simota/nginx-rift-scanner
https://github.com/aratane/CVE-2026-42945
https://github.com/webdev75950-ux/nginx-rce-cve-2026-42945
https://github.com/hulina9900-boop/DIY-CVE-2026-42945-POC
https://github.com/forxiucn/nginx-cve-2026-42945-poc
https://github.com/MateusVerass/nGixshell
https://github.com/friparia/NGINX_RIFT_SCAN_CVE_2026_42945
https://github.com/oseasfr/Scanner_CVE_2026-42945
https://github.com/byezero/nginx-cve-2026-42945-check
https://github.com/lowilol/CVE-2026-42945-NGINX-Rift-Check-Script
https://github.com/realityone/cve-2026-42945-scan
https://github.com/sec-sys/CVE-2026-42945-Reverse-Shell-POC
https://github.com/ChamsBouzaiene/ai-vuln-rediscovery-nginx-cve-2026-42945
https://github.com/0xBlackash/CVE-2026-42945
https://github.com/sibersan/web-server-audit_CVE-2026-42945
https://github.com/gagaltotal/CVE-2026-42945-NGINX-Rift-Toolkit
https://github.com/strivepan/Nginx_cve-2026-42945-scanner-gui
https://github.com/edgecases-PurpleHax/cve-images
https://github.com/F2u0a0d3/CVE-2026-42945-nginx-rift-poc
https://github.com/rheodev/CVE-2026-42945
https://github.com/josephfelix/CVE-2026-42945-nginx-rift
https://github.com/azilRababe/CVE-2026-42945
Nginx Rift is a proof of concept for CVE-2026-42945, a heap buffer overflow in NGINX's rewrite module that allows unauthenticated remote code execution on servers using rewrite and set directives
The README lists affected and fixed versions
updated 2026-08-19T04:16:58.560000
1 posts
2 repos
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2026-08-18T18:32:52
2 posts
2 repos
@nyanbinary @cR0w here's one
(from the writeup to CVE-2026-59310 from July/August).
Point at the variables in the picture that traversed your path inappropriately...
https://mobeta.fr/blog/vcenter-cve-2026-59309-cve-2026-59310/
vCenter pre-auth RCE: CVE-2026-59309/59310 https://mobeta.fr/blog/vcenter-cve-2026-59309-cve-2026-59310/
##updated 2026-08-18T18:32:50
1 posts
5 repos
https://github.com/sfewer-r7/CVE-2026-55040
https://github.com/l0ggg/CVE-2026-55040
https://github.com/virologi-info/mssharepoint-scanner
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2026-08-18T16:30:33.827000
2 posts
Django Fellow Report - Jacob
Jacob reviewed six Django pull requests and authored changes covering GEOS 3.10 support removal and expanded WKT depth-check coverage related to CVE-2026-15830. He also worked on security reports and Django coordination...
https://forum.djangoproject.com/t/django-fellow-report-jacob-2026/43851/39
##Django Fellow Report - Jacob
Jacob reviewed six Django pull requests and authored changes covering GEOS 3.10 support removal and expanded WKT depth-check coverage related to CVE-2026-15830. He also worked on security reports and Django coordination...
https://forum.djangoproject.com/t/django-fellow-report-jacob-2026/43851/39
##updated 2026-08-11T21:33:01
1 posts
4 repos
https://github.com/fevar54/CVE-2026-68820-Mitigation-PoC-
https://github.com/HORKimhab/CVE-2026-68820
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2026-08-11T18:31:43
4 posts
Microsoft Upgrades SharePoint Flaw From Spoofing to 8.8 RCE
A SharePoint Server vulnerability tracked as CVE-2026-65660 turned out to be far more serious than Microsoft first indicated. The company
🔗️ [Thecyberexpress] https://link.is.it/qUvtLM
##SharePoint CVE-2026-65660: From Anonymous Access to Pre-Auth RCE via EditingPageParser Type-Check Bypass https://blog.viettelcybersecurity.com/sharepoint_cve-2026-65660/
##https://thecybersecguru.com/news/cve-2026-65660-sharepoint-rce/
##CVE-2026-65660 reportedly enables authenticated, low-privilege attackers to execute arbitrary code remotely on SharePoint Server. Its initial spoofing classification makes accurate advisory tracking and impact reassessment especially important. #SharePointSecurity #VulnerabilityManagement #ThreatIntelligence
https://cyberworldops.eu/en/sharepoint-code-injection-flaw-opens-a-low-privilege-route-to-remote
##updated 2026-08-06T05:17:05.170000
1 posts
6 repos
https://github.com/sfewer-r7/CVE-2026-63077
https://github.com/BoredHackerBlog/teamcity-CVE-2026-63077-pcap
https://github.com/unveiledhistory49/teamcity-cve-2026-63077-remediation
https://github.com/AnggaTechI/CVE-2026-63077
https://github.com/0xCyp1337/CVE-2026-63077
https://github.com/bakos-sandor-nx/teamcity-cve-2026-63077-remediation
CVE-2026-63077 - Changed to Known Ransomware Status
JetBrains TeamCity Deserialization of Untrusted Data VulnerabilityVendor: JetBrainsProduct: TeamCityJetBrains TeamCity contains a deserialization of untrusted data vulnerability that could allow unauthenticated remote code execution via the agent polling protocol.Status changed from Unknown to Known for ransomware campaign usage.Flip detected on: September 23, 2026 at 14:08:17 UTCDate Added https://nvd.nist.gov/vuln/detail/CVE-2026-63077
##updated 2026-08-04T13:18:24.733000
1 posts
Cloud Takeover: Mass Scanning for Exposed Vite Endpoints (CVE-2026-39364), by @f5labs.bsky.social:
##updated 2026-07-30T21:16:56.810000
1 posts
6 repos
https://github.com/mrk336/Inside-CVE-2026-20805-How-a-Windows-DWM-Flaw-Exposed-Sensitive-Data
https://github.com/SimoesCTT/SCTT-2026-33-0002-DWM-Visual-Field-Singularity
https://github.com/fevar54/CVE-2026-20805-POC
https://github.com/Uzair-Baig0900/CVE-2026-20805-PoC
https://github.com/SimoesCTT/-SCTT-2026-33-0002-DWM-Visual-Field-Singularity
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2026-07-30T15:31:54
2 posts
@nyanbinary @cR0w here's one
(from the writeup to CVE-2026-59310 from July/August).
Point at the variables in the picture that traversed your path inappropriately...
https://mobeta.fr/blog/vcenter-cve-2026-59309-cve-2026-59310/
vCenter pre-auth RCE: CVE-2026-59309/59310 https://mobeta.fr/blog/vcenter-cve-2026-59309-cve-2026-59310/
##updated 2026-07-28T08:17:14.187000
1 posts
Hardware Hacking: From zero to a Pre-Auth Stack Buffer Overflow on Amazon's best-selling router https://rotcee.github.io/posts/analyzing-the-mersusys-mb115-4g-router/#cve-2026-12495-finding-a-pre-auth-stack-buffer-overflow-in-the-mercusys-mb115-4g
##updated 2026-07-27T18:31:25
1 posts
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2026-07-24T10:10:00.197000
3 posts
Critical Roundcube Webmail SQL Injection Under Active Attack: What Organizations Need to Know + Video
Roundcube Vulnerability Is Now Being Exploited Threat actors are actively exploiting a critical SQL injection vulnerability in Roundcube Webmail, putting internet-facing email servers at immediate risk. Tracked as CVE-2026-48842, the vulnerability affects Roundcube versions earlier than 1.6.16 and 1.7.1. The Canadian Centre for Cyber Security has confirmed that…
##An exploited Roundcube Webmail vulnerability allows SQL injection attacks. Learn how CVE-2026-48842 impacts servers and apply the latest patches immediately.
#Roundcube #Cybersecurity #CVE202648842 #Vulnerability #SQLInjection
##An exploited Roundcube Webmail vulnerability allows SQL injection attacks. Learn how CVE-2026-48842 impacts servers and apply the latest patches immediately.
#Roundcube #Cybersecurity #CVE202648842 #Vulnerability #SQLInjection
##updated 2026-07-24T10:10:00.197000
1 posts
4 repos
https://github.com/ridhinva/defender-privilege-escalation-scanner
https://github.com/s4m98/RedSun-
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2026-07-23T11:10:00.120000
1 posts
2 repos
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2026-07-22T21:31:51
1 posts
5 repos
https://github.com/WismanSec/sharepoint-2026-poc
https://github.com/ChPratik/CVE-2026-50522
https://github.com/HORKimhab/CVE-2026-50522
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2026-07-13T21:31:30
3 posts
🔴 CVE-2026-93352 - Critical (9.8)
Laravel-Mediable 7.0.0 before 7.0.2 contains an incomplete patch for CVE-2026-49972 in which the .pht extension is absent from the forbidden_extensions blocklist in config/mediable.php. The blocklist introduced to address CVE-2026-49972 includes p...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93352/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🚨 EUVD-2026-85706
📊 Score: 9.3/10 (CVSS v3.1)
📦 Product: laravel-mediable
🏢 Vendor: plank
📅 Updated: 2026-09-23
📝 Laravel-Mediable 7.0.0 before 7.0.2 contains an incomplete patch for CVE-2026-49972 in which the .pht extension is absent from the forbidden_extensions blocklist in config/mediable.php. The blocklist introduced to address CVE-2026-49972 includes phpt ...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-85706
##🔴 CVE-2026-93352 - Critical (9.8)
Laravel-Mediable 7.0.0 before 7.0.2 contains an incomplete patch for CVE-2026-49972 in which the .pht extension is absent from the forbidden_extensions blocklist in config/mediable.php. The blocklist introduced to address CVE-2026-49972 includes p...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93352/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-07-13T17:24:48
1 posts
sev:CRIT bypass of CVE-2026-47065 in Apache MINA.
https://nvd.nist.gov/vuln/detail/cve-2026-94301
##The fix for CVE-2026-47065/ZDRES-232 ("resolveProxyClass Not Overridden - acceptMatchers Filter Bypass via java.lang.reflect.Proxy"), released on 2026-06-02 and announced as "Fully addressed" in MINA 2.2.8, 2.1.13 and 2.0.29, was committed to the 2.2.X branch only. The 2.0.X and 2.1.X maintenance branches never received the resolveProxyClass() override, so the 2.0.29 and 2.1.13 artifacts listed as fixed -- and every later release on those lines, up to and including the current 2.0.30 and 2.1.14 -- remain vulnerable to the exact allow-list bypass that CVE-2026-47065 was meant to close.
updated 2026-06-17T10:18:46.287000
1 posts
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2026-06-17T10:18:45.540000
1 posts
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2026-06-17T05:04:59.630000
1 posts
9 repos
https://github.com/bryanster/ioc-cve-2022-42475
https://github.com/Mustafa1986/cve-2022-42475-Fortinet
https://github.com/natceil/cve-2022-42475
https://github.com/scrt/cve-2022-42475
https://github.com/uLl0a/cve-2022-42475-poc
https://github.com/ArthurHendrich/CVE-2022-42475-POC
https://github.com/Amir-hy/cve-2022-42475
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2026-06-17T04:11:59.317000
1 posts
1 repos
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2026-06-17T03:19:58.553000
1 posts
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2026-05-28T17:34:56
1 posts
CVE-2026-45756: attacker-controlled regex in Symfony JsonPath filters (ReDoS) https://daubois.dev/blog/cve-2026-45756-symfony-jsonpath-redos/
##updated 2026-03-27T21:31:32
1 posts
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2026-03-23T06:30:39
1 posts
CVE-2026-45756: attacker-controlled regex in Symfony JsonPath filters (ReDoS) https://daubois.dev/blog/cve-2026-45756-symfony-jsonpath-redos/
##updated 2025-11-04T00:30:30
1 posts
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2025-10-22T00:34:05
1 posts
1 repos
Based on something @cR0w mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw?
Well, yes. One or two. Or three:
(and many more that aren't CVE-2026-*).
... ok, are there any that aren't MS?
Yes, a handful:
For no particular reason:
4.5.3.1 CNAs SHOULD update published CVE Records when information material to the Record changes, for example, when a Fix becomes available.
(data may be incomplete & some FPs may have slipped through, this was some quick & dirty regex work)
##updated 2025-10-22T00:33:50
2 posts
PolarEdge: Unveiling an uncovered ORB network
Discover PolarEdge, a newly identified botnet targeting edge devices via CVE-2023-20118, using a stealthy TLS backdoor.
🔗️ [Sekoia] https://link.is.it/PmRTZ9
##PolarEdge: Unveiling an uncovered ORB network
Discover PolarEdge, a newly identified botnet targeting edge devices via CVE-2023-20118, using a stealthy TLS backdoor.
🔗️ [Sekoia] https://link.is.it/PmRTZ9
##updated 2025-08-18T09:31:52
1 posts
Schneider Electric Modicon M340 controllers and comm modules are vulnerable to DoS via crafted FTP command (CVE-2025-6625, CVSS 7.5, CWE-20). Remote low-complexity exploitation can take OT devices offline, impacting process availability. Apply vendor mitigations and restrict FTP exposure. #IcsSecurity #SchneiderElectric #Cve20256625
https://cyberworldops.eu/en/crafted-ftp-command-can-knock-schneider-electric-modicon-m340-devices
##updated 2024-10-23T18:33:16
1 posts
Broadcom has a long list of advisories addressing some critical vulnerabilities, among others https://support.broadcom.com/web/ecx/security-advisory #Broadcom
Cisco:
This addresses high-severity CVE-2024-20260, first published in October.
Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software SSL VPN Denial of Service Vulnerability https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asaftdvirtual-dos-MuenGnYR @TalosSecurity #Cisco #infosec #vulnerability
##updated 2024-02-22T05:08:38
1 posts
CVE-2024-0244: Connor Ford details how he exploited the #Canon MF753Cdw printer back when he was a #Pwn2Own contestant. Now he's on the judging side as a ZDI analyst, but Doom is still on the table. https://www.zerodayinitiative.com/blog/2026/9/23/cve-2024-0244-a-heap-buffer-overflow-in-the-canon-mf753cdw-printer
##3 posts
2 repos
Vercel Patches Critical Remote Code Execution Vulnerability in Next.js Image Generation Feature
Vercel patched a critical vulnerability (CVE-2026-94545) in Next.js that allows remote code execution through the ImageResponse feature. The flaw involves improper input escaping in the Satori library when processing SVG content on the Node.js runtime.
**If your web apps run Next.js 16 (versions 16.2.0 to 16.3.5), update to 16.3.6 ASAP. Don't rely on dependency scanners to flag this one, because they may miss it. If you can't update right away, make sure your developers sanitize up all user input before it reaches the social preview image feature (ImageResponse).**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/vercel-patches-critical-remote-code-execution-vulnerability-in-next-js-image-generation-feature-t-b-3-t-f/gD2P6Ple2L
Vercel Patches Critical Remote Code Execution Vulnerability in Next.js Image Generation Feature
Vercel patched a critical vulnerability (CVE-2026-94545) in Next.js that allows remote code execution through the ImageResponse feature. The flaw involves improper input escaping in the Satori library when processing SVG content on the Node.js runtime.
**If your web apps run Next.js 16 (versions 16.2.0 to 16.3.5), update to 16.3.6 ASAP. Don't rely on dependency scanners to flag this one, because they may miss it. If you can't update right away, make sure your developers sanitize up all user input before it reaches the social preview image feature (ImageResponse).**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/vercel-patches-critical-remote-code-execution-vulnerability-in-next-js-image-generation-feature-t-b-3-t-f/gD2P6Ple2L
Vercel fixed a critical Next.js RCE vulnerability in image generation. Update to patch this Next.js RCE vulnerability and secure your apps.
#Nextjs #CVE202694545 #RCE #Cybersecurity #WebSecurity #Vulnerability
##Toutes nos instances GitLab sont à jour en version 19.4.1 depuis hier soir à 22h.
Il faut mettre à jour rapidement : cette nouvelle version corrige 2 CVE évaluées à 9,9 (CVE-2026-93577 et CVE-2026-84739).
En savoir plus sur nos offres 👇
https://gitlab-saas.bearstech.com/
Toutes nos instances GitLab sont à jour en version 19.4.1 depuis hier soir à 22h.
Il faut mettre à jour rapidement : cette nouvelle version corrige 2 CVE évaluées à 9,9 (CVE-2026-93577 et CVE-2026-84739).
En savoir plus sur nos offres 👇
https://gitlab-saas.bearstech.com/
Der hier ist auch schön: https://www.netspi.com/blog/technical-blog/web-application-pentesting/cve-2026-78902-xss-to-rce-in-pfsense-with-one-dns-request/
##Der hier ist auch schön: https://www.netspi.com/blog/technical-blog/web-application-pentesting/cve-2026-78902-xss-to-rce-in-pfsense-with-one-dns-request/
##CVE-2026-67231: Critical flaw in rabbitmq-server trust-store plugin (CVSS 9.1) lets attackers bypass TLS client auth with forged certs if they know whitelisted issuer/serial. Patch or disable plugin ASAP. https://radar.offseq.com/threat/cve-2026-67231-cwe-295-improper-certificate-validation-in-rabbitmq-rabbitmq-server-e521f17aa9be427c #OffSeq #RabbitMQ #Vuln #TLS #InfoSec
##CVE-2026-67231: Critical flaw in rabbitmq-server trust-store plugin (CVSS 9.1) lets attackers bypass TLS client auth with forged certs if they know whitelisted issuer/serial. Patch or disable plugin ASAP. https://radar.offseq.com/threat/cve-2026-67231-cwe-295-improper-certificate-validation-in-rabbitmq-rabbitmq-server-e521f17aa9be427c #OffSeq #RabbitMQ #Vuln #TLS #InfoSec
##A critical Rancher XSS vulnerability tracked as CVE-2026-88804 exposes admin sessions. Update your clusters immediately to prevent system compromise.
#Rancher #Kubernetes #CVE202688804 #XSS #Cybersecurity #Infosec
##A critical Rancher XSS vulnerability tracked as CVE-2026-88804 exposes admin sessions. Update your clusters immediately to prevent system compromise.
#Rancher #Kubernetes #CVE202688804 #XSS #Cybersecurity #Infosec
##Megjelent a Wireshark 4.6.9, amely 19 sebezhetőséget és több kritikus összeomlást, végtelen ciklust és memóriaszivárgást javít. Aggódsz, hogy a profilimportálás (CVE-2026-96419) akár kódfuttatást is lehetővé tehetett — frissítettél már? Nézd meg a részleteket és a javítások listáját!
https://linuxmint.hu/hir/2026/09/a-wireshark-469-csomagelemzo-19-biztonsagi-hibat-javit
#Wireshark #CVE2026-96419 #Sharkd #ZigBee #IEEE80211 #LoRaWAN #QUIC #SMB #pcapng #hálózat #sebezhetőség #biztonság
##CVE-2026-69184 c-ares memory corruption, CVSS 7.5. Malicious DNS server can stall any app using the resolver via crafted compression pointers. Patch to 1.34.7 now. https://www.valtersit.com/cve/CVE-2026-69184/ #CVE #infosec #cybersecurity
##🏆 New Achievement! Triple Threat, Zero Regrets!
PATCH NOTES v0.0.0 — KNOWN ISSUES: A China-aligned threat group has successfully shipped a three-zero-day exploit chain targeting Google Chrome and Microsoft Windows. ADDED: coordinated weaponization across CVE-2024-85046, CVE-2024-87491, and CVE-2024-85880. FIXED: nothing on your end, apparently. DEPRECATED: the assumption that one vendor's unpatched flaw is somebody else's problem. (1/2)
##🏆 New Achievement! Triple Threat, Zero Regrets!
PATCH NOTES v0.0.0 — KNOWN ISSUES: A China-aligned threat group has successfully shipped a three-zero-day exploit chain targeting Google Chrome and Microsoft Windows. ADDED: coordinated weaponization across CVE-2024-85046, CVE-2024-87491, and CVE-2024-85880. FIXED: nothing on your end, apparently. DEPRECATED: the assumption that one vendor's unpatched flaw is somebody else's problem. (1/2)
##🏆 New Achievement! Triple Threat, Zero Regrets!
PATCH NOTES v0.0.0 — KNOWN ISSUES: A China-aligned threat group has successfully shipped a three-zero-day exploit chain targeting Google Chrome and Microsoft Windows. ADDED: coordinated weaponization across CVE-2024-85046, CVE-2024-87491, and CVE-2024-85880. FIXED: nothing on your end, apparently. DEPRECATED: the assumption that one vendor's unpatched flaw is somebody else's problem. (1/2)
##CVE-2026-89090 - Denial of service in the event stream header decoder in AWS SDK for Go v2
Bulletin ID: 2026-110-AWS
Scope: AWS
Content Type: Important (requires attention)
Publication Date: 09/11/2026 10:00 AM PDT
Description:
An issue exists in the the EventStream header decoder in AWS SDK for Go v2 in versio...
https://aws.amazon.com/security/security-bulletins/rss/2026-110-aws/
##🟠 CVE-2026-85279 - High (8.6)
Notepad++ is a free and open-source source code editor. Prior to 8.9.8, Notepad++ contains a stack buffer overflow in PluginsManager::loadPluginFromPath in PowerEditor/src/MISC/PluginsManager/PluginsManager.cpp because the plugin-supplied GetLexer...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-85279/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-79916 - Critical (9.1)
MaxKB is an open-source AI assistant for enterprise. Prior to 2.10.5-lts, authenticated workspace members can inject control characters into AWS Bedrock access_key_id and secret_access_key fields that _update_aws_credentials writes to /root/.aws/c...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-79916/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-73550 - High (7.5)
Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.36.10, 1.37.6, 1.38.4, and 1.39.1, Envoy copies every decoded HTTP/2 Host header value before discarding it when :authority is already present. The d...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-73550/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-73552 - High (7.5)
Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.36.10, 1.37.6, 1.38.4, and 1.39.1, Envoy HTTP RBAC accepts RFC-valid opaque header bytes but evaluates safe_regex values with RE2's UTF-8 subject sem...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-73552/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-73548 - High (7.5)
Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.36.10, 1.37.6, 1.38.4, and 1.39.1, Envoy forwards data for a configured non-WebSocket HTTP upgrade before the upstream accepts the upgrade. An unauth...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-73548/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##