## Updated at UTC 2026-08-18T09:14:05.027555

Access data as JSON

CVE CVSS EPSS Posts Repos Nuclei Updated Description
CVE-2026-15748 9.8 0.00% 9 1 2026-08-18T06:16:40.670000 The Forminator Forms plugin for WordPress is vulnerable to Arbitrary File Upload
CVE-2026-75060 8.4 0.00% 2 0 2026-08-18T04:16:47.650000 In JetBrains PyCharm before 2026.2.1 code execution was possible via unauthentic
CVE-2026-75051 8.1 0.00% 2 0 2026-08-18T04:16:47.300000 In JetBrains YouTrack before 2026.2.17917 unauthorised project transfer between
CVE-2026-75045 9.1 0.00% 2 0 2026-08-18T04:16:47.170000 In JetBrains YouTrack before 2025.3.156085, 2026.1.13913, 2026.2.18112 an unau
CVE-2025-62593 8.8 0.37% 15 0 2026-08-18T04:16:40.860000 Ray is an AI compute engine. Prior to version 2.52.0, developers working with Ra
CVE-2026-75094 9.1 0.00% 4 0 2026-08-18T03:31:14 A flaw has been found in COMFAST CF-N1-S 2.6.0.1. This impacts the function sub_
CVE-2026-73045 7.5 0.30% 1 0 2026-08-18T03:16:40.450000 SiYuan before 3.7.4 contains an improper restriction of excessive authentication
CVE-2026-11801 7.5 0.00% 4 0 2026-08-18T03:16:38.650000 The WPAdverts – Classifieds Plugin plugin for WordPress is vulnerable to authori
CVE-2026-67854 None 0.00% 2 0 2026-08-18T00:30:36 SQL Injection vulnerability in Qcms v.6.0.6 allows a remote attacker to execute
CVE-2026-75081 4.3 0.00% 2 0 2026-08-18T00:16:53.710000 A vulnerability was detected in Webkul Bagisto up to 2.4.4. Impacted is an unkno
CVE-2026-9816 8.3 0.00% 2 0 2026-08-17T22:17:27.217000 Mattermost versions 11.7.x <= 11.7.6, 10.11.x <= 10.11.21, 11.8.x <= 11.8.3 fail
CVE-2026-64849 9.3 0.00% 2 0 2026-08-17T21:58:52 ### Summary The default MLflow Tracking Server (`mlflow server`, no authenticati
CVE-2026-56677 8.6 0.00% 2 0 2026-08-17T21:58:44 ### Summary A Server-Side Request Forgery (SSRF) vulnerability exists in the 9R
CVE-2026-75111 7.5 0.00% 2 0 2026-08-17T21:31:35 Evidently UI fails to properly validate the filename parameter in the dataset ma
CVE-2026-71472 9.1 0.00% 2 0 2026-08-17T21:31:30 A flaw was found in acm-search-v2-rhel9. This vulnerability allows an authentica
CVE-2026-70495 8.8 0.00% 2 0 2026-08-17T21:31:30 A flaw was found in search-v2-operator. This component's `search-serviceaccount`
CVE-2026-74234 7.7 0.00% 2 0 2026-08-17T21:31:30 Legora before 2026-08-14 contains a cross-site scripting vulnerability that allo
CVE-2026-66792 9.9 0.00% 2 0 2026-08-17T21:31:30 A flaw was found in the multicloud-operators-subscription component. This vulner
CVE-2026-75479 7.5 0.00% 2 0 2026-08-17T21:31:27 JimuReport contains an authentication bypass vulnerability in the report folder
CVE-2026-75110 9.8 0.00% 2 0 2026-08-17T21:31:27 MemOS is a memory operating system for LLMs and AI agents. In deployments where
CVE-2026-75482 7.5 0.00% 2 0 2026-08-17T21:16:50.833000 SWE-agent's trajectory inspector (sweagent inspector), confirmed in v1.1.0, is a
CVE-2026-75481 8.8 0.00% 2 0 2026-08-17T21:16:50.647000 SkyPilot fails to validate that authenticated users are entitled to grant admini
CVE-2026-75106 9.1 0.00% 2 0 2026-08-17T21:16:49.610000 OpnForm derives editable-submission secrets from sequential row identifiers usin
CVE-2026-75105 7.5 0.00% 2 0 2026-08-17T21:16:49.473000 phpIPAM through 1.8.1 fails to verify that a requested IP address belongs to the
CVE-2026-75103 8.8 0.00% 2 0 2026-08-17T21:16:49.200000 Crawlab fails to verify user ownership or administrative role on the password-ch
CVE-2026-19478 9.4 0.00% 10 2 2026-08-17T21:16:43.490000 GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.2
CVE-2026-19714 9.1 0.16% 1 0 2026-08-17T20:16:42.157000 The Simple JWT Login WordPress plugin before 3.6.8 does not validate the audien
CVE-2026-74238 7.5 0.00% 2 0 2026-08-17T19:16:42.713000 TIER IV Nebula through 1.2.0 contains an out-of-bounds read vulnerability in the
CVE-2026-73044 9.0 0.25% 1 0 2026-08-17T19:16:39.737000 SiYuan versions before v3.7.4 fail to validate or escape table column width valu
CVE-2026-75056 7.8 0.00% 2 0 2026-08-17T18:31:28 In JetBrains IntelliJ IDEA before 2026.2.1 rCE via Markdown export tool was poss
CVE-2026-74791 8.6 0.27% 1 0 2026-08-17T18:18:15.150000 Scriban before 7.0.0 fails to clear the CachedTemplates dictionary when Template
CVE-2026-73061 9.8 0.30% 2 0 2026-08-17T18:18:13.617000 Scriban before 7.2.2 contains an access-modifier bypass vulnerability in TypedOb
CVE-2026-73052 9.0 0.30% 2 0 2026-08-17T18:18:13.377000 SiYuan before v3.7.4 stores attribute-view field names without HTML escaping and
CVE-2026-73041 9.0 0.23% 1 0 2026-08-17T18:18:12.767000 SiYuan versions before v3.7.4 fail to validate or escape annotation fields writt
CVE-2026-17123 8.8 0.36% 1 0 2026-08-17T18:16:33.897000 The Royal Elementor Addons plugin for WordPress is vulnerable to Server-Side Req
CVE-2026-71479 9.1 0.00% 3 0 2026-08-17T16:36:14 ## Summary Multiple billing paths multiplied **user-controlled quantity paramet
CVE-2026-74876 9.8 0.00% 1 0 2026-08-17T16:17:50.397000 openssl_encrypt versions before 1.4.0 contain a vulnerability in PublicKeyBundle
CVE-2026-74795 7.5 0.32% 1 0 2026-08-17T16:17:48.827000 Scriban before 6.6.0 contains an uncontrolled recursion vulnerability in its rec
CVE-2026-74790 9.1 0.29% 1 0 2026-08-17T16:17:48.707000 Scriban before 7.0.0 caches TypedObjectAccessor by Type only without considering
CVE-2026-73060 7.5 0.37% 2 0 2026-08-17T16:17:47 Scriban versions from 3.0.0 through 7.2.5 contain a denial of service vulnerabil
CVE-2026-73042 9.0 0.30% 1 0 2026-08-17T16:17:46.223000 SiYuan before v3.7.4 fails to properly escape database menu metadata in HTML int
CVE-2026-19983 8.3 1.31% 1 0 2026-08-17T16:16:55.197000 A vulnerability was detected in GL.iNet A1300, AX1800, AXT1800, MT2500, MT3000,
CVE-2026-15826 9.8 0.80% 2 1 2026-08-17T16:16:50.140000 The User Profile Builder plugin for WordPress is vulnerable to Authentication By
CVE-2026-15623 0 0.20% 2 0 2026-08-17T16:16:49.250000 A SQL Injection vulnerability in a legacy dashboard widget API in Google Cloud G
CVE-2026-58231 10.0 0.73% 7 1 2026-08-17T15:39:24.573000 SAP Commerce Cloud allows an unauthenticated attacker to abuse a default authent
CVE-2026-15218 7.9 0.00% 1 0 2026-08-17T15:30:43 A flaw was found in the maas-api and maas-controller ServiceAccounts within Red
CVE-2026-74843 10.0 0.00% 2 0 2026-08-17T15:16:58.230000 A vulnerability was determined in Wavlink WN531P3 and WN535M1 V250922. Affected
CVE-2026-14564 9.0 0.00% 2 0 2026-08-17T15:16:53.647000 Insufficiently Protected Credentials vulnerability in Innotim Software Telecommu
CVE-2026-56090 7.3 0.00% 1 0 2026-08-17T14:20:21.077000 Dell ObjectScale, versions prior to 4.3.0.1, contain(s) an Uncontrolled Search P
CVE-2026-65400 9.8 0.50% 19 1 2026-08-17T13:16:52.340000 An authentication issue was addressed with improved state management. This issue
CVE-2026-74889 9.8 0.00% 2 0 2026-08-17T12:32:31 openssl_encrypt versions before 1.4.0 use HKDF with no salt and static info para
CVE-2026-74800 9.0 0.00% 1 0 2026-08-17T12:32:26 SiYuan before v3.7.4 fails to set Content-Disposition and X-Content-Type-Options
CVE-2026-74845 8.8 0.94% 2 0 2026-08-17T12:32:26 Official Document Management System developed by 2100 Technology has an Arbitrar
CVE-2026-19981 7.4 1.05% 1 0 2026-08-17T06:33:56 A weakness has been identified in GL.iNet A1300, AX1800, AXT1800, BE1400, BE3600
CVE-2026-72407 10.0 0.52% 2 0 2026-08-17T06:19:07.453000 In the Linux kernel, the following vulnerability has been resolved: geneve: val
CVE-2026-50602 None 0.10% 2 0 2026-08-17T03:30:28 A security vulnerability has been identified in Planet9 due to incorrect file pe
CVE-2026-19961 9.9 0.47% 4 0 2026-08-17T00:31:35 A vulnerability was detected in Edimax EW-7478APC 1.04. Affected is the function
CVE-2026-19959 9.9 0.47% 4 0 2026-08-16T23:16:24.710000 A weakness has been identified in Edimax EW-7478APC 1.04. This affects the funct
CVE-2026-65775 7.8 2.45% 2 0 2026-08-16T19:17:18.030000 Use after free in Windows Win32K allows an authorized attacker to elevate privil
CVE-2026-62696 7.8 3.17% 2 0 2026-08-16T19:16:52.950000 Integer underflow (wrap or wraparound) in Windows Program Compatibility Assistan
CVE-2026-61358 7.8 3.68% 2 0 2026-08-16T19:16:48.360000 Improper link resolution before file access ('link following') in Windows Access
CVE-2026-74789 7.5 0.34% 2 0 2026-08-16T15:30:38 Scriban before 7.0.0 (affected <= 6.6.0) applies its LoopLimit constraint only t
CVE-2026-74794 7.5 0.28% 1 0 2026-08-16T15:30:38 Scriban before 6.6.0 contains an infinite recursion vulnerability in object rend
CVE-2026-74792 7.5 0.31% 1 0 2026-08-16T15:30:38 Scriban before 7.0.0 (affected versions <= 6.6.0) contains a stack overflow vuln
CVE-2026-73056 9.8 0.45% 4 0 2026-08-16T15:30:33 SiYuan kernel versions before 3.7.4 contain an improper restriction of excessive
CVE-2026-74788 7.5 0.28% 3 0 2026-08-16T15:30:33 Scriban before 7.0.0 (affected versions <= 6.6.0) contains an uncontrolled memor
CVE-2026-74783 7.5 0.28% 1 0 2026-08-16T15:30:33 Scriban versions 6.6.0 through 7.2.0 contain a non-enforcing ExpressionDepthLimi
CVE-2026-74787 7.5 0.28% 3 0 2026-08-16T15:30:26 Scriban before 7.0.0 contains an uncontrolled recursion vulnerability in the obj
CVE-2026-73062 7.5 0.28% 2 0 2026-08-16T15:30:26 Scriban versions 3.0.0 through 7.2.0 contain a denial of service vulnerability i
CVE-2026-73057 7.5 0.28% 2 0 2026-08-16T15:30:25 stoatchat before 0.15.0 fails to validate SVG viewBox dimensions in the proxy en
CVE-2026-74251 None 0.37% 2 1 2026-08-16T15:30:24 Joomla Extension - phoca.cz - Unauthenticated SQL injection via attribute filte
CVE-2026-17087 7.5 0.41% 1 0 2026-08-16T09:30:22 The WP Travel Engine – Tour Booking Plugin – Tour Operator Software plugin for W
CVE-2026-18316 9.1 0.32% 2 0 2026-08-16T06:30:37 The Solace Extra plugin for WordPress is vulnerable to unauthorized modification
CVE-2026-18432 9.8 0.45% 2 0 2026-08-16T06:30:32 The Frontend Admin by DynamiApps plugin for WordPress is vulnerable to Privilege
CVE-2026-14524 9.1 0.70% 2 0 2026-08-16T06:30:32 The ProSolution WP Client plugin for WordPress is vulnerable to arbitrary file d
CVE-2026-16099 8.8 0.59% 1 0 2026-08-16T06:30:32 The Podlove Podcast Publisher plugin for WordPress is vulnerable to arbitrary fi
CVE-2026-14498 8.8 0.55% 1 0 2026-08-16T06:30:31 The Query Wrangler plugin for WordPress is vulnerable to Remote Code Execution i
CVE-2026-16098 9.8 0.64% 2 0 2026-08-16T05:16:47.667000 The ProSolution WP Client plugin for WordPress is vulnerable to Arbitrary File U
CVE-2026-19924 9.8 0.90% 2 0 2026-08-16T03:31:11 A security vulnerability has been detected in Tenda AC10 16.03.10.09_multi_TDE01
CVE-2026-73053 9.0 0.28% 2 0 2026-08-16T00:31:35 SiYuan versions before v3.7.4 contain a cross-site scripting vulnerability in th
CVE-2026-73054 7.5 0.31% 1 0 2026-08-16T00:31:35 SiYuan versions before v3.7.4 contain an authentication bypass vulnerability in
CVE-2026-73055 4.8 0.21% 1 0 2026-08-16T00:31:29 Shescape before 2.1.15 (and 3.0.0 before 3.0.2) fails to properly escape tilde (
CVE-2026-73050 9.0 0.25% 1 0 2026-08-16T00:31:28 SiYuan versions before v3.7.4 fail to validate or escape the color field in attr
CVE-2026-73046 9.8 0.43% 1 0 2026-08-16T00:31:27 SiYuan before v3.7.4 improperly restricts excessive authentication attempts in t
CVE-2026-73043 9.0 0.37% 1 0 2026-08-16T00:31:26 SiYuan versions before v3.7.4 contain a remote code execution vulnerability in t
CVE-2026-69414 7.8 0.24% 2 2 2026-08-15T00:31:32 Microsoft is aware of an elevation of privilege in the Microsoft Malware Protect
CVE-2026-19188 10.0 1.89% 2 0 2026-08-14T19:17:17.480000 A critical OS command injection vulnerability has been identified in the Haiwel
CVE-2026-19681 9.9 2.24% 2 0 2026-08-14T18:31:46 An authenticated command injection vulnerability exists in Security Center relat
CVE-2026-59310 9.8 1.14% 4 2 2026-08-14T05:16:59.407000 VMware vCenter contains a directory traversal vulnerability in the Syslog server
CVE-2026-19771 7.2 2.79% 2 0 2026-08-14T03:31:33 A vulnerability was identified in Baicells EG3661M BaiCE_BQ6_2.0.5.3_NA. This im
CVE-2026-19747 9.8 2.36% 2 0 2026-08-13T21:36:14 A weakness has been identified in Tenda CH7, CH7G, CH10, CP3, CP3 Pro, CP7, TC3B
CVE-2026-55040 9.1 3.97% 1 2 2026-08-13T15:34:13 Weak authentication in Microsoft Office SharePoint allows an unauthorized attack
CVE-2026-73268 9.9 0.37% 2 0 2026-08-12T21:31:50 A flaw was found in the cluster-curator-controller component of multicluster eng
CVE-2026-50656 7.8 10.75% 1 4 2026-08-12T18:31:00 Microsoft is aware of an elevation of privilege in the Microsoft Malware Protect
CVE-2026-72526 9.9 0.30% 2 0 2026-08-12T03:31:18 A flaw was found in the multicloud-integrations component. The Application propa
CVE-2026-68820 7.0 0.33% 4 2 2026-08-11T21:33:01 Use after free in Windows Ancillary Function Driver for WinSock allows an author
CVE-2026-66804 7.8 3.42% 4 2 2026-08-11T18:31:49 Improper access control in Windows Cross Device Service allows an authorized att
CVE-2026-62832 7.8 2.37% 2 0 2026-08-11T18:31:33 Improper link resolution before file access ('link following') in Windows User P
CVE-2026-6837 7.2 0.95% 2 1 2026-08-04T03:31:16 A post-authentication command injection vulnerability in the "export-cgi" CGI pr
CVE-2026-43774 5.5 0.13% 2 0 2026-07-29T19:32:51.167000 An out-of-bounds read was addressed with improved bounds checking. This issue is
CVE-2026-54121 8.8 1.05% 5 12 2026-07-14T18:32:37 Improper authorization in Active Directory Certificate Services (AD CS) allows a
CVE-2026-8452 9.8 0.49% 8 2 2026-07-01T18:32:28 Memory overflow vulnerability NetScaler ADC and NetScaler Gateway leading to unp
CVE-2026-12569 9.8 30.20% 2 1 2026-06-26T15:33:15 A critical remote code execution (RCE) vulnerability has been reported in PTC Wi
CVE-2026-42228 6.5 0.38% 1 1 2026-06-17T10:47:32.723000 n8n is an open source workflow automation platform. Prior to versions 1.123.32,
CVE-2026-32193 8.8 0.34% 2 0 2026-06-09T18:30:48 Improper limitation of a pathname to a restricted directory ('path traversal') i
CVE-2026-44012 None 0.34% 1 0 2026-05-13T16:29:55 ## Summary `AssetsController::actionShowInFolder()` fetches an asset by ID and
CVE-2026-33696 9.9 0.77% 1 0 2026-03-26T16:41:02 ## Impact An authenticated user with permission to create or modify workflows co
CVE-2026-3286 6.3 0.31% 2 0 2026-02-27T06:31:39 A vulnerability was identified in itwanger paicoding 1.0.0/1.0.1/1.0.2/1.0.3. Th
CVE-2024-39302 0 0.45% 2 0 N/A
CVE-2026-45790 0 0.00% 2 0 N/A
CVE-2026-71424 0 0.00% 2 0 N/A
CVE-2026-45698 0 0.00% 2 0 N/A
CVE-2026-62356 0 0.00% 10 0 N/A
CVE-2026-17106 0 0.00% 2 3 N/A
CVE-2024-69414 0 0.00% 2 0 N/A
CVE-2026-72898 0 10.40% 3 6 template N/A
CVE-2026-73296 0 2.61% 2 0 N/A
CVE-2026-73554 0 0.00% 1 0 N/A

CVE-2026-15748
(9.8 CRITICAL)

EPSS: 0.00%

updated 2026-08-18T06:16:40.670000

9 posts

The Forminator Forms plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 1.56.1 via the handle_file_upload function. This is due to insufficient file type validation in handle_file_upload, where the dangerous-extension blocklist performs exact-key matching that is bypassed by pipe-alternative MIME type keys, combined with a public submission handler th

1 repos

https://github.com/HORKimhab/CVE-2026-15826-CVE-2026-15748

offseq at 2026-08-18T06:00:26.598Z ##

CVE-2026-15748 (CRITICAL, CVSS 9.8): wpmudev Forminator Forms for WordPress up to 1.56.1 lets unauthenticated attackers upload dangerous files via handle_file_upload, risking remote code execution. Patch urgently: radar.offseq.com/threat/cve-20

##

ottoto2017@prattohome.com at 2026-08-18T05:26:14.000Z ##

「Forminator WordPressの脆弱性により、悪意のあるPHPファイルのアップロードを介して認証なしのリモートコード実行が可能になる 」: #TheHackerNews

「0万件以上のインストール実績を持つWordPressプラグイン「Forminator Forms」に、重大なセキュリティ上の欠陥が発見された。この欠陥を悪用すれば、脆弱性のあるサイトで任意のコードを実行できる可能性がある。

CVE-2026-15748 として追跡されているこの脆弱性は 、CVSSスコアリングシステムで10点満点中9.8点と評価されている。この脆弱性は、「daroo」というオンライン上のニックネームを持つセキュリティ研究者によって発見され、報告された。

thehackernews.com/2026/08/form

#prattohome

##

DailyCyberSecurity at 2026-08-18T01:52:19.992Z ##

CVE-2026-15748 (CVSS 9.8): Forminator Flaw Enables Pre-Auth RCE

securityonline.info/cve-2026-1

##

cyberworldops at 2026-08-17T20:20:01.079Z ##

Two critical flaws disclosed in WordPress plugins: Forminator Forms (CVE-2026-15748) allows unauthenticated PHP file upload leading to RCE, and User Profile Builder (CVE-2026-15826) lets unauthenticated attackers authenticate as the site admin. Both can result in full site compromise.

cyberworldops.eu/en/two-critic

##

Analyst207@mastodon.social at 2026-08-17T19:56:27.000Z ##

WordPress Plugin Flaw Enables Unauthenticated Remote Code Execution

A critical vulnerability in the Forminator Forms WordPress plugin can let hackers upload malicious PHP files to your site, allowing them to take control and wreak havoc - all without needing a login. This flaw, tracked as CVE-2026-15748, has a near-perfect severity score of 9.8, making it a high-priority threat.

osintsights.com/wordpress-plug

#RemoteCodeExecution #Wordpress #Cve202615748 #ArbitraryFileUpload #PluginVulnerability

##

offseq@infosec.exchange at 2026-08-18T06:00:26.000Z ##

CVE-2026-15748 (CRITICAL, CVSS 9.8): wpmudev Forminator Forms for WordPress up to 1.56.1 lets unauthenticated attackers upload dangerous files via handle_file_upload, risking remote code execution. Patch urgently: radar.offseq.com/threat/cve-20 #OffSeq #WordPress #Vuln

##

ottoto2017@prattohome.com at 2026-08-18T05:26:14.000Z ##

「Forminator WordPressの脆弱性により、悪意のあるPHPファイルのアップロードを介して認証なしのリモートコード実行が可能になる 」: #TheHackerNews

「0万件以上のインストール実績を持つWordPressプラグイン「Forminator Forms」に、重大なセキュリティ上の欠陥が発見された。この欠陥を悪用すれば、脆弱性のあるサイトで任意のコードを実行できる可能性がある。

CVE-2026-15748 として追跡されているこの脆弱性は 、CVSSスコアリングシステムで10点満点中9.8点と評価されている。この脆弱性は、「daroo」というオンライン上のニックネームを持つセキュリティ研究者によって発見され、報告された。

thehackernews.com/2026/08/form

#prattohome

##

DailyCyberSecurity@infosec.exchange at 2026-08-18T01:52:19.000Z ##

CVE-2026-15748 (CVSS 9.8): Forminator Flaw Enables Pre-Auth RCE

securityonline.info/cve-2026-1

##

cyberworldops@infosec.exchange at 2026-08-17T20:20:01.000Z ##

Two critical flaws disclosed in WordPress plugins: Forminator Forms (CVE-2026-15748) allows unauthenticated PHP file upload leading to RCE, and User Profile Builder (CVE-2026-15826) lets unauthenticated attackers authenticate as the site admin. Both can result in full site compromise.

#WordPressSecurity #CVE #RemoteCodeExecution #InfoSec

cyberworldops.eu/en/two-critic

##

CVE-2026-75060
(8.4 HIGH)

EPSS: 0.00%

updated 2026-08-18T04:16:47.650000

2 posts

In JetBrains PyCharm before 2026.2.1 code execution was possible via unauthenticated Jupyter MCP tools

thehackerwire@mastodon.social at 2026-08-17T17:00:14.000Z ##

🟠 CVE-2026-75060 - High (8.4)

In JetBrains PyCharm before 2026.2.1 code execution was possible via unauthenticated Jupyter MCP tools

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-17T17:00:14.000Z ##

🟠 CVE-2026-75060 - High (8.4)

In JetBrains PyCharm before 2026.2.1 code execution was possible via unauthenticated Jupyter MCP tools

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-75051
(8.1 HIGH)

EPSS: 0.00%

updated 2026-08-18T04:16:47.300000

2 posts

In JetBrains YouTrack before 2026.2.17917 unauthorised project transfer between organisations was possible

thehackerwire@mastodon.social at 2026-08-17T17:00:25.000Z ##

🟠 CVE-2026-75051 - High (8.1)

In JetBrains YouTrack before 2026.2.17917 unauthorised project transfer between organisations was possible

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-17T17:00:25.000Z ##

🟠 CVE-2026-75051 - High (8.1)

In JetBrains YouTrack before 2026.2.17917 unauthorised project transfer between organisations was possible

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-75045
(9.1 CRITICAL)

EPSS: 0.00%

updated 2026-08-18T04:16:47.170000

2 posts

In JetBrains YouTrack before 2025.3.156085, 2026.1.13913, 2026.2.18112 an unauthenticated attacker could download database backups via shared draft signature

CVE-2025-62593
(8.8 HIGH)

EPSS: 0.37%

updated 2026-08-18T04:16:40.860000

15 posts

Ray is an AI compute engine. Prior to version 2.52.0, developers working with Ray as a development tool can be exploited via a critical RCE vulnerability exploitable via Firefox and Safari. This vulnerability is due to an insufficient guard against browser-based attacks, as the current defense uses the User-Agent header starting with the string "Mozilla" as a defense mechanism. This defense is ins

Analyst207@mastodon.social at 2026-08-18T07:55:48.000Z ##

CISA Warns of Actively Exploited Ray Flaw Enabling Browser-Based RCE

A critical vulnerability, CVE-2025-62593, is under active exploitation, allowing hackers to execute remote code through web browsers like Firefox and Safari by using a clever DNS rebinding attack. This high-severity flaw, with a CVSS score of 9.4, stems from a weakness in the Ray project's defenses against browser-based…

osintsights.com/cisa-warns-of-

#RemoteCodeExecution #Ray #Cve202562593 #BrowserbasedAttacks #DnsRebinding

##

secdb at 2026-08-17T19:00:11.647Z ##

🚨 [CISA-2026:0817] CISA Adds One Known Exploited Vulnerability to Catalog (secdb.nttzen.cloud/security-ad)

CISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.

⚠️ CVE-2025-62593 (secdb.nttzen.cloud/cve/detail/)
- Name: Ray-Project Ray Code Injection Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset&#39;s internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Ray-Project
- Product: Ray
- Notes: github.com/ray-project/ray/sec ; github.com/ray-project/ray/com ; BOD 26-04: cisa.gov/news-events/directive ; Forensics Triage Requirements: cisa.gov/news-events/directive ; nvd.nist.gov/vuln/detail/CVE-2

##

thecybermind at 2026-08-17T18:20:29.915Z ##

🚨 NEW CISA KEV: CVE-2025-62593 - Ray. Active RCE weaponization via DNS rebinding targeting developers on Firefox/Safari. Vendor patch 2.52.0 is mandatory. Get the full T-Suite brief & SOC detection queries to secure your Precinct Hybrid architecture. Command the wire. Link below 👇
thecybermind.co/jily

##

cisakevtracker@mastodon.social at 2026-08-17T18:00:43.000Z ##

CVE ID: CVE-2025-62593
Vendor: Ray-Project
Product: Ray
Date Added: 2026-08-17
CVE URL: nvd.nist.gov/vuln/detail/CVE-2

##

secdb at 2026-08-17T17:00:12.292Z ##

🚨 [CISA-2026:0818] CISA Adds One Known Exploited Vulnerability to Catalog (secdb.nttzen.cloud/security-ad)

CISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.

⚠️ CVE-2025-62593 (secdb.nttzen.cloud/cve/detail/)
- Name: Ray-Project Ray Code Injection Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset&#39;s internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Ray-Project
- Product: Ray
- Notes: github.com/ray-project/ray/sec ; github.com/ray-project/ray/com ; BOD 26-04: cisa.gov/news-events/directive ; Forensics Triage Requirements: cisa.gov/news-events/directive ; nvd.nist.gov/vuln/detail/CVE-2

##

DailyCyberSecurity at 2026-08-17T16:24:55.107Z ##

CISA confirms CVE-2025-62593, a Ray code injection RCE, is exploited in the wild. A public PoC targets Firefox and Safari.

securityonline.info/cve-2025-6

##

AAKL at 2026-08-17T15:27:13.837Z ##

CISA has added one known vulnerability to the KEV catalogue.

- CVE-2025-62593: Ray-Project Ray Code Injection Vulnerability cve.org/CVERecord?id=CVE-2025-

##

cisakevtracker@mastodon.social at 2026-08-17T14:00:51.000Z ##

CVE ID: CVE-2025-62593
Vendor: Ray-Project
Product: Ray
Date Added: 2026-08-18
CVE URL: nvd.nist.gov/vuln/detail/CVE-2

##

secdb@infosec.exchange at 2026-08-17T19:00:11.000Z ##

🚨 [CISA-2026:0817] CISA Adds One Known Exploited Vulnerability to Catalog (secdb.nttzen.cloud/security-ad)

CISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.

⚠️ CVE-2025-62593 (secdb.nttzen.cloud/cve/detail/)
- Name: Ray-Project Ray Code Injection Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset&#39;s internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Ray-Project
- Product: Ray
- Notes: github.com/ray-project/ray/sec ; github.com/ray-project/ray/com ; BOD 26-04: cisa.gov/news-events/directive ; Forensics Triage Requirements: cisa.gov/news-events/directive ; nvd.nist.gov/vuln/detail/CVE-2

#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260817 #cisa20260817 #cve_2025_62593 #cve202562593

##

thecybermind@infosec.exchange at 2026-08-17T18:20:29.000Z ##

🚨 NEW CISA KEV: CVE-2025-62593 - Ray. Active RCE weaponization via DNS rebinding targeting developers on Firefox/Safari. Vendor patch 2.52.0 is mandatory. Get the full T-Suite brief & SOC detection queries to secure your Precinct Hybrid architecture. Command the wire. Link below 👇
thecybermind.co/jily
#CyberSecurity

##

cisakevtracker@mastodon.social at 2026-08-17T18:00:43.000Z ##

CVE ID: CVE-2025-62593
Vendor: Ray-Project
Product: Ray
Date Added: 2026-08-17
CVE URL: nvd.nist.gov/vuln/detail/CVE-2

##

secdb@infosec.exchange at 2026-08-17T17:00:12.000Z ##

🚨 [CISA-2026:0818] CISA Adds One Known Exploited Vulnerability to Catalog (secdb.nttzen.cloud/security-ad)

CISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.

⚠️ CVE-2025-62593 (secdb.nttzen.cloud/cve/detail/)
- Name: Ray-Project Ray Code Injection Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset&#39;s internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Ray-Project
- Product: Ray
- Notes: github.com/ray-project/ray/sec ; github.com/ray-project/ray/com ; BOD 26-04: cisa.gov/news-events/directive ; Forensics Triage Requirements: cisa.gov/news-events/directive ; nvd.nist.gov/vuln/detail/CVE-2

#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260818 #cisa20260818 #cve_2025_62593 #cve202562593

##

DailyCyberSecurity@infosec.exchange at 2026-08-17T16:24:55.000Z ##

CISA confirms CVE-2025-62593, a Ray code injection RCE, is exploited in the wild. A public PoC targets Firefox and Safari.

#CVE202562593 #Ray #RemoteCodeExecution #DNSRebinding #KEV #ExploitedInTheWild

securityonline.info/cve-2025-6

##

AAKL@infosec.exchange at 2026-08-17T15:27:13.000Z ##

CISA has added one known vulnerability to the KEV catalogue.

- CVE-2025-62593: Ray-Project Ray Code Injection Vulnerability cve.org/CVERecord?id=CVE-2025- #CISA #infosec #vulnerability

##

cisakevtracker@mastodon.social at 2026-08-17T14:00:51.000Z ##

CVE ID: CVE-2025-62593
Vendor: Ray-Project
Product: Ray
Date Added: 2026-08-18
CVE URL: nvd.nist.gov/vuln/detail/CVE-2

##

CVE-2026-75094
(9.1 CRITICAL)

EPSS: 0.00%

updated 2026-08-18T03:31:14

4 posts

A flaw has been found in COMFAST CF-N1-S 2.6.0.1. This impacts the function sub_44B438 of the file /cgi-bin/mbox-config?method=SET&section=ptest_ssid of the component CGI Interface. This manipulation of the argument ssid causes os command injection. Remote exploitation of the attack is possible. The exploit has been published and may be used.

offseq at 2026-08-18T03:00:25.381Z ##

CVE-2026-75094: CRITICAL OS command injection in COMFAST CF-N1-S v2.6.0.1. Exploit code is public, no official patch. Restrict access to /cgi-bin/mbox-config to reduce risk. Details: radar.offseq.com/threat/cve-20

##

thehackerwire@mastodon.social at 2026-08-18T03:00:05.000Z ##

🔴 CVE-2026-75094 - Critical (9.1)

A flaw has been found in COMFAST CF-N1-S 2.6.0.1. This impacts the function sub_44B438 of the file /cgi-bin/mbox-config?method=SET&section=ptest_ssid of the component CGI Interface. This manipulation of the argument ssid causes os command injectio...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

offseq@infosec.exchange at 2026-08-18T03:00:25.000Z ##

CVE-2026-75094: CRITICAL OS command injection in COMFAST CF-N1-S v2.6.0.1. Exploit code is public, no official patch. Restrict access to /cgi-bin/mbox-config to reduce risk. Details: radar.offseq.com/threat/cve-20 #OffSeq #CVE #IoT #Security

##

thehackerwire@mastodon.social at 2026-08-18T03:00:05.000Z ##

🔴 CVE-2026-75094 - Critical (9.1)

A flaw has been found in COMFAST CF-N1-S 2.6.0.1. This impacts the function sub_44B438 of the file /cgi-bin/mbox-config?method=SET&section=ptest_ssid of the component CGI Interface. This manipulation of the argument ssid causes os command injectio...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-73045
(7.5 HIGH)

EPSS: 0.30%

updated 2026-08-18T03:16:40.450000

1 posts

SiYuan before 3.7.4 contains an improper restriction of excessive authentication attempts vulnerability in the authFilePublishAccess endpoint that allows unauthenticated attackers to brute-force per-notebook publish passwords. Attackers can submit unbounded password guesses without rate limiting or CAPTCHA to gain access to password-protected published notebooks.

thehackerwire@mastodon.social at 2026-08-16T00:00:07.000Z ##

🟠 CVE-2026-73045 - High (7.5)

SiYuan before 3.7.4 contains an improper restriction of excessive authentication attempts vulnerability in the authFilePublishAccess endpoint that allows unauthenticated attackers to brute-force per-notebook publish passwords. Attackers can submit...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-11801
(7.5 HIGH)

EPSS: 0.00%

updated 2026-08-18T03:16:38.650000

4 posts

The WPAdverts – Classifieds Plugin plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 2.3.2. This is due to the plugin not properly verifying that a user is authorized to perform an action. This makes it possible for unauthenticated attackers to retrieve internal site configuration data exposed by the classifieds-types REST endpoint, including register

thehackerwire@mastodon.social at 2026-08-18T05:00:21.000Z ##

🟠 CVE-2026-11801 - High (7.5)

The WPAdverts – Classifieds Plugin plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 2.3.2. This is due to the plugin not properly verifying that a user is authorized to perform an action. This make...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

offseq at 2026-08-18T04:30:25.837Z ##

WPAdverts – Classifieds Plugin <=2.3.2 hit by HIGH severity CWE-862 auth bypass (CVE-2026-11801). Unauthenticated users can access internal config data via REST API. Restrict endpoints & monitor for fixes. radar.offseq.com/threat/cve-20

##

thehackerwire@mastodon.social at 2026-08-18T05:00:21.000Z ##

🟠 CVE-2026-11801 - High (7.5)

The WPAdverts – Classifieds Plugin plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 2.3.2. This is due to the plugin not properly verifying that a user is authorized to perform an action. This make...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

offseq@infosec.exchange at 2026-08-18T04:30:25.000Z ##

WPAdverts – Classifieds Plugin <=2.3.2 hit by HIGH severity CWE-862 auth bypass (CVE-2026-11801). Unauthenticated users can access internal config data via REST API. Restrict endpoints & monitor for fixes. radar.offseq.com/threat/cve-20 #OffSeq #WordPress #Vulnerability

##

CVE-2026-67854(CVSS UNKNOWN)

EPSS: 0.00%

updated 2026-08-18T00:30:36

2 posts

SQL Injection vulnerability in Qcms v.6.0.6 allows a remote attacker to execute arbitrary code

offseq at 2026-08-18T01:30:24.798Z ##

SQL Injection flaw (CVE-2026-67854) in Qcms v6.0.6 rated CRITICAL: remote code execution risk. No official patch. Restrict access & monitor for injection attempts. Details: radar.offseq.com/threat/sql-in

##

offseq@infosec.exchange at 2026-08-18T01:30:24.000Z ##

SQL Injection flaw (CVE-2026-67854) in Qcms v6.0.6 rated CRITICAL: remote code execution risk. No official patch. Restrict access & monitor for injection attempts. Details: radar.offseq.com/threat/sql-in #OffSeq #SQLInjection #Vulnerability #Qcms #InfoSec

##

CVE-2026-75081
(4.3 MEDIUM)

EPSS: 0.00%

updated 2026-08-18T00:16:53.710000

2 posts

A vulnerability was detected in Webkul Bagisto up to 2.4.4. Impacted is an unknown function of the file /customer/account/rma/store. The manipulation of the argument rma_qty/resolution_type/rma_reason_id results in enforcement of behavioral workflow. The attack may be performed from remote. The exploit is now public and may be used. The vendor confirms: "The reported issues were already identified

offseq at 2026-08-18T00:00:40.459Z ##

CVE-2026-75081 (MEDIUM): Webkul Bagisto ≤2.4.4 has a vuln in /customer/account/rma/store. Public exploit exists — remote attackers may abuse RMA workflow. Monitor for suspicious RMA activity. radar.offseq.com/threat/cve-20

##

offseq@infosec.exchange at 2026-08-18T00:00:40.000Z ##

CVE-2026-75081 (MEDIUM): Webkul Bagisto ≤2.4.4 has a vuln in /customer/account/rma/store. Public exploit exists — remote attackers may abuse RMA workflow. Monitor for suspicious RMA activity. radar.offseq.com/threat/cve-20 #OffSeq #Bagisto #Vuln #Infosec

##

CVE-2026-9816
(8.3 HIGH)

EPSS: 0.00%

updated 2026-08-17T22:17:27.217000

2 posts

Mattermost versions 11.7.x <= 11.7.6, 10.11.x <= 10.11.21, 11.8.x <= 11.8.3 fail to validate BoardMember.Scheme* fields server-side on insert and archive-import paths which allows a board editor or non-guest team member to grant board admin to arbitrary users via POST /api/v2/boards/{boardID}/members and POST /api/v2/teams/{teamID}/archive/import.. Mattermost Advisory ID: MMSA-2026-00685

thehackerwire@mastodon.social at 2026-08-17T23:00:27.000Z ##

🟠 CVE-2026-9816 - High (8.3)

Mattermost versions 11.7.x &lt;= 11.7.6, 10.11.x &lt;= 10.11.21, 11.8.x &lt;= 11.8.3 fail to validate BoardMember.Scheme* fields server-side on insert and archive-import paths which allows a board editor or non-guest team member to grant board adm...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-17T23:00:27.000Z ##

🟠 CVE-2026-9816 - High (8.3)

Mattermost versions 11.7.x &lt;= 11.7.6, 10.11.x &lt;= 10.11.21, 11.8.x &lt;= 11.8.3 fail to validate BoardMember.Scheme* fields server-side on insert and archive-import paths which allows a board editor or non-guest team member to grant board adm...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-64849
(9.3 CRITICAL)

EPSS: 0.00%

updated 2026-08-17T21:58:52

2 posts

### Summary The default MLflow Tracking Server (`mlflow server`, no authentication, default SQLite backend) exposes the model-registry webhooks API unauthenticated, including a synchronous `POST /api/2.0/mlflow/webhooks/{id}/test` endpoint that returns the upstream response status and body to the caller. The SSRF guard added in PR #20747 (`_validate_webhook_url`, shipped in 3.10.0) resolves the we

thehackerwire@mastodon.social at 2026-08-17T23:01:08.000Z ##

🔴 CVE-2026-64849 - Critical (9.3)

MLflow is an open source AI engineering platform for agents, large language models, and machine learning models. Prior to 3.15.0, the unauthenticated POST /api/2.0/mlflow/webhooks/{id}/test endpoint calls _validate_webhook_url() in mlflow/utils/va...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-17T23:01:08.000Z ##

🔴 CVE-2026-64849 - Critical (9.3)

MLflow is an open source AI engineering platform for agents, large language models, and machine learning models. Prior to 3.15.0, the unauthenticated POST /api/2.0/mlflow/webhooks/{id}/test endpoint calls _validate_webhook_url() in mlflow/utils/va...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-56677
(8.6 HIGH)

EPSS: 0.00%

updated 2026-08-17T21:58:44

2 posts

### Summary A Server-Side Request Forgery (SSRF) vulnerability exists in the 9Router dashboard via the `/api/auth/oidc/test` endpoint. The application accepts a user-controlled URL string through the `issuerUrl` parameter and performs an outbound HTTP request without validating if the destination IP belongs to a restricted internal network range. Notably, this endpoint can be accessed without ac

thehackerwire@mastodon.social at 2026-08-17T23:01:32.000Z ##

🟠 CVE-2026-56677 - High (8.6)

9Router is an AI router & token saver. In 0.5.4 and earlier, the POST /api/auth/oidc/test endpoint in src/app/api/auth/oidc/test/route.js passes the user-controlled issuerUrl parameter to fetchOidcDiscovery() in src/lib/auth/oidc.js without restri...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-17T23:01:32.000Z ##

🟠 CVE-2026-56677 - High (8.6)

9Router is an AI router & token saver. In 0.5.4 and earlier, the POST /api/auth/oidc/test endpoint in src/app/api/auth/oidc/test/route.js passes the user-controlled issuerUrl parameter to fetchOidcDiscovery() in src/lib/auth/oidc.js without restri...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-75111
(7.5 HIGH)

EPSS: 0.00%

updated 2026-08-17T21:31:35

2 posts

Evidently UI fails to properly validate the filename parameter in the dataset materialization endpoint, allowing unauthenticated attackers to read arbitrary files outside the workspace directory. Attackers can supply traversal sequences or absolute paths in the filename field to access system files, which are then materialized into datasets and retrieved through the download endpoint.

thehackerwire@mastodon.social at 2026-08-18T01:00:21.000Z ##

🟠 CVE-2026-75111 - High (7.5)

Evidently UI fails to properly validate the filename parameter in the dataset materialization endpoint, allowing unauthenticated attackers to read arbitrary files outside the workspace directory. Attackers can supply traversal sequences or absolut...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-18T01:00:21.000Z ##

🟠 CVE-2026-75111 - High (7.5)

Evidently UI fails to properly validate the filename parameter in the dataset materialization endpoint, allowing unauthenticated attackers to read arbitrary files outside the workspace directory. Attackers can supply traversal sequences or absolut...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-71472
(9.1 CRITICAL)

EPSS: 0.00%

updated 2026-08-17T21:31:30

2 posts

A flaw was found in acm-search-v2-rhel9. This vulnerability allows an authenticated attacker, such as a hub administrator or a Search Custom Resource (CR) editor, to inject malicious shell commands or SQL statements. This occurs because the WORK_MEM string provided in the Search CR is not properly validated before being used in a bash script and an SQL query. Successful exploitation could lead to

thehackerwire@mastodon.social at 2026-08-17T21:00:33.000Z ##

🔴 CVE-2026-71472 - Critical (9.1)

A flaw was found in acm-search-v2-rhel9. This vulnerability allows an authenticated attacker, such as a hub administrator or a Search Custom Resource (CR) editor, to inject malicious shell commands or SQL statements. This occurs because the WORK_M...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-17T21:00:33.000Z ##

🔴 CVE-2026-71472 - Critical (9.1)

A flaw was found in acm-search-v2-rhel9. This vulnerability allows an authenticated attacker, such as a hub administrator or a Search Custom Resource (CR) editor, to inject malicious shell commands or SQL statements. This occurs because the WORK_M...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-70495
(8.8 HIGH)

EPSS: 0.00%

updated 2026-08-17T21:31:30

2 posts

A flaw was found in search-v2-operator. This component's `search-serviceaccount` has overly broad permissions, allowing it to impersonate users and groups across the entire cluster. If an attacker gains access to any of the pods running under this service account, they could exploit this to achieve `system:masters` access, granting them full control over the cluster.

thehackerwire@mastodon.social at 2026-08-17T21:00:19.000Z ##

🟠 CVE-2026-70495 - High (8.8)

A flaw was found in search-v2-operator. This component's `search-serviceaccount` has overly broad permissions, allowing it to impersonate users and groups across the entire cluster. If an attacker gains access to any of the pods running under this...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-17T21:00:19.000Z ##

🟠 CVE-2026-70495 - High (8.8)

A flaw was found in search-v2-operator. This component's `search-serviceaccount` has overly broad permissions, allowing it to impersonate users and groups across the entire cluster. If an attacker gains access to any of the pods running under this...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-74234
(7.7 HIGH)

EPSS: 0.00%

updated 2026-08-17T21:31:30

2 posts

Legora before 2026-08-14 contains a cross-site scripting vulnerability that allows attackers to achieve arbitrary JavaScript execution in a victim's browser by embedding a Mermaid block prefixed with a gray-matter JavaScript front-matter directive, causing the front-matter parser to invoke eval() before any SVG sanitization occurs. Attackers can exploit this flaw through influenced Mermaid diagram

thehackerwire@mastodon.social at 2026-08-17T21:00:10.000Z ##

🟠 CVE-2026-74234 - High (7.7)

Legora before 2026-08-14 contains a cross-site scripting vulnerability that allows attackers to achieve arbitrary JavaScript execution in a victim's browser by embedding a Mermaid block prefixed with a gray-matter JavaScript front-matter directive...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-17T21:00:10.000Z ##

🟠 CVE-2026-74234 - High (7.7)

Legora before 2026-08-14 contains a cross-site scripting vulnerability that allows attackers to achieve arbitrary JavaScript execution in a victim's browser by embedding a Mermaid block prefixed with a gray-matter JavaScript front-matter directive...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-66792
(9.9 CRITICAL)

EPSS: 0.00%

updated 2026-08-17T21:31:30

2 posts

A flaw was found in the multicloud-operators-subscription component. This vulnerability allows a user on a managed cluster to escalate their privileges by creating a Subscription with specific, crafted annotations. Successful exploitation grants the attacker the ability to deploy resources into any namespace with the elevated permissions of the controller's Service Account, potentially leading to

thehackerwire@mastodon.social at 2026-08-17T20:01:04.000Z ##

🔴 CVE-2026-66792 - Critical (9.9)

A flaw was found in the multicloud-operators-subscription component. This vulnerability allows a user on a managed cluster to escalate their privileges by creating a Subscription with specific, crafted annotations. Successful exploitation grants t...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-17T20:01:04.000Z ##

🔴 CVE-2026-66792 - Critical (9.9)

A flaw was found in the multicloud-operators-subscription component. This vulnerability allows a user on a managed cluster to escalate their privileges by creating a Subscription with specific, crafted annotations. Successful exploitation grants t...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-75479
(7.5 HIGH)

EPSS: 0.00%

updated 2026-08-17T21:31:27

2 posts

JimuReport contains an authentication bypass vulnerability in the report folder template listing endpoint that allows unauthenticated attackers to enumerate all reports and retrieve share tokens. Attackers can use disclosed share tokens to access protected report endpoints and retrieve full report definitions including embedded SQL statements and live query data.

thehackerwire@mastodon.social at 2026-08-18T01:00:31.000Z ##

🟠 CVE-2026-75479 - High (7.5)

JimuReport contains an authentication bypass vulnerability in the report folder template listing endpoint that allows unauthenticated attackers to enumerate all reports and retrieve share tokens. Attackers can use disclosed share tokens to access ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-18T01:00:31.000Z ##

🟠 CVE-2026-75479 - High (7.5)

JimuReport contains an authentication bypass vulnerability in the report folder template listing endpoint that allows unauthenticated attackers to enumerate all reports and retrieve share tokens. Attackers can use disclosed share tokens to access ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-75110
(9.8 CRITICAL)

EPSS: 0.00%

updated 2026-08-17T21:31:27

2 posts

MemOS is a memory operating system for LLMs and AI agents. In deployments where authentication is enabled (AUTH_ENABLED=true) but the undocumented, defaultless INTERNAL_SERVICE_SECRET environment variable is unset, the is_internal_request() check in src/memos/api/middleware/auth.py fails open: os.getenv("INTERNAL_SERVICE_SECRET") returns None and a request omitting the X-Internal-Service header al

thehackerwire@mastodon.social at 2026-08-18T01:00:11.000Z ##

🔴 CVE-2026-75110 - Critical (9.8)

MemOS is a memory operating system for LLMs and AI agents. In deployments where authentication is enabled (AUTH_ENABLED=true) but the undocumented, defaultless INTERNAL_SERVICE_SECRET environment variable is unset, the is_internal_request() check ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-18T01:00:11.000Z ##

🔴 CVE-2026-75110 - Critical (9.8)

MemOS is a memory operating system for LLMs and AI agents. In deployments where authentication is enabled (AUTH_ENABLED=true) but the undocumented, defaultless INTERNAL_SERVICE_SECRET environment variable is unset, the is_internal_request() check ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-75482
(7.5 HIGH)

EPSS: 0.00%

updated 2026-08-17T21:16:50.833000

2 posts

SWE-agent's trajectory inspector (sweagent inspector), confirmed in v1.1.0, is an HTTP server that joins request paths to the trajectory directory in its /trajectory/ handler without rejecting parent-directory ('..') references, bypassing the built-in path sanitization. The server binds all interfaces (0.0.0.0), applies wildcard CORS, and requires no authentication. An unauthenticated network clie

thehackerwire@mastodon.social at 2026-08-18T05:00:44.000Z ##

🟠 CVE-2026-75482 - High (7.5)

SWE-agent's trajectory inspector (sweagent inspector), confirmed in v1.1.0, is an HTTP server that joins request paths to the trajectory directory in its /trajectory/ handler without rejecting parent-directory ('..') references, bypassing the buil...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-18T05:00:44.000Z ##

🟠 CVE-2026-75482 - High (7.5)

SWE-agent's trajectory inspector (sweagent inspector), confirmed in v1.1.0, is an HTTP server that joins request paths to the trajectory directory in its /trajectory/ handler without rejecting parent-directory ('..') references, bypassing the buil...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-75481
(8.8 HIGH)

EPSS: 0.00%

updated 2026-08-17T21:16:50.647000

2 posts

SkyPilot fails to validate that authenticated users are entitled to grant administrator roles when updating service account permissions. Attackers can create a service account, escalate it to administrator role, and authenticate with its bearer token to gain administrative control over all users and workspaces.

thehackerwire@mastodon.social at 2026-08-18T05:00:33.000Z ##

🟠 CVE-2026-75481 - High (8.8)

SkyPilot fails to validate that authenticated users are entitled to grant administrator roles when updating service account permissions. Attackers can create a service account, escalate it to administrator role, and authenticate with its bearer to...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-18T05:00:33.000Z ##

🟠 CVE-2026-75481 - High (8.8)

SkyPilot fails to validate that authenticated users are entitled to grant administrator roles when updating service account permissions. Attackers can create a service account, escalate it to administrator role, and authenticate with its bearer to...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-75106
(9.1 CRITICAL)

EPSS: 0.00%

updated 2026-08-17T21:16:49.610000

2 posts

OpnForm derives editable-submission secrets from sequential row identifiers using Hashids with an empty default salt, allowing unauthenticated attackers to compute hashes for any submission. Attackers can read other respondents' full submission data through the submission-fetch endpoint or overwrite submissions by supplying predicted hashes to the answer endpoint.

thehackerwire@mastodon.social at 2026-08-18T06:01:22.000Z ##

🔴 CVE-2026-75106 - Critical (9.1)

OpnForm derives editable-submission secrets from sequential row identifiers using Hashids with an empty default salt, allowing unauthenticated attackers to compute hashes for any submission. Attackers can read other respondents' full submission da...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-18T06:01:22.000Z ##

🔴 CVE-2026-75106 - Critical (9.1)

OpnForm derives editable-submission secrets from sequential row identifiers using Hashids with an empty default salt, allowing unauthenticated attackers to compute hashes for any submission. Attackers can read other respondents' full submission da...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-75105
(7.5 HIGH)

EPSS: 0.00%

updated 2026-08-17T21:16:49.473000

2 posts

phpIPAM through 1.8.1 fails to verify that a requested IP address belongs to the subnet a temporary share token was issued for. In app/temp_share/index.php and app/temp_share/address.php, when the share type is 'subnets', the subnetId parameter is used directly as a database primary key to fetch an address without confirming the address belongs to the authorized subnet. An unauthenticated party ho

thehackerwire@mastodon.social at 2026-08-18T06:01:12.000Z ##

🟠 CVE-2026-75105 - High (7.5)

phpIPAM through 1.8.1 fails to verify that a requested IP address belongs to the subnet a temporary share token was issued for. In app/temp_share/index.php and app/temp_share/address.php, when the share type is 'subnets', the subnetId parameter is...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-18T06:01:12.000Z ##

🟠 CVE-2026-75105 - High (7.5)

phpIPAM through 1.8.1 fails to verify that a requested IP address belongs to the subnet a temporary share token was issued for. In app/temp_share/index.php and app/temp_share/address.php, when the share type is 'subnets', the subnetId parameter is...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-75103
(8.8 HIGH)

EPSS: 0.00%

updated 2026-08-17T21:16:49.200000

2 posts

Crawlab fails to verify user ownership or administrative role on the password-change endpoint, allowing any authenticated user to reset any account's password. Attackers can enumerate user accounts through the user listing endpoint and change administrator credentials to achieve full account takeover and arbitrary code execution.

thehackerwire@mastodon.social at 2026-08-18T06:01:02.000Z ##

🟠 CVE-2026-75103 - High (8.8)

Crawlab fails to verify user ownership or administrative role on the password-change endpoint, allowing any authenticated user to reset any account's password. Attackers can enumerate user accounts through the user listing endpoint and change admi...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-18T06:01:02.000Z ##

🟠 CVE-2026-75103 - High (8.8)

Crawlab fails to verify user ownership or administrative role on the password-change endpoint, allowing any authenticated user to reset any account's password. Attackers can enumerate user accounts through the user listing endpoint and change admi...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-19478
(9.4 CRITICAL)

EPSS: 0.00%

updated 2026-08-17T21:16:43.490000

10 posts

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.2 before 18.11.11, 19.0 before 19.0.8, 19.1 before 19.1.6, and 19.2 before 19.2.4 that under certain conditions could allow an unauthenticated user to remotely modify or delete public projects and user data via a GraphQL directive.

2 repos

https://github.com/HORKimhab/CVE-2026-19650-CVE-2026-19478

https://github.com/davkharrr/CVE-2026-19478-PoC

guru@thecybersecguru.com at 2026-08-18T08:38:05.000Z ##

Critical GitLab GraphQL Vulnerability CVE-2026-19478: Patch Now to Prevent Unauthenticated Project Modification

GitLab patched critical CVE-2026-19478, a CVSS 9.4 GraphQL flaw allowing unauthenticated attackers to modify or delete public projects

thecybersecguru.com/news/cve-2

##

undercodenews@mastodon.social at 2026-08-18T07:10:01.000Z ##

Critical GitLab GraphQL Vulnerability Puts Public Projects at Risk — Administrators Urged to Patch Immediately

A Dangerous New Threat Inside a Trusted DevOps Platform GitLab has released an emergency security update after discovering a critical vulnerability that could allow unauthenticated attackers to remotely modify or delete public projects and user data. Tracked as CVE-2026-19478, the flaw carries a CVSS score of 9.4/10, placing it among the most serious…

undercodenews.com/critical-git

##

cyberworldops at 2026-08-18T04:20:01.354Z ##

GitLab addressed a critical GraphQL flaw, CVE-2026-19478, with a CVSS score of 9.4, allowing attackers to modify or delete projects in GitLab CE and EE. This poses serious risks to code repositories and requires immediate patching to prevent exploitation.

cyberworldops.eu/en/gitlab-fix

##

security_crawler_carl at 2026-08-18T02:53:30.691Z ##

🏆 New Achievement! Delete Yourself From This Industry!

Welcome to Module 9: GraphQL Directive Hygiene. Today's learning objective: CVE-2026-19478, a CVSS 9.4 flaw in GitLab Community and Enterprise Edition that allows a completely unauthenticated attacker — no credentials, no victim interaction, no participation trophy — to remotely modify or delete public projects and user data. (1/2)

##

DailyCyberSecurity at 2026-08-18T01:41:10.790Z ##

GitLab patched CVE-2026-19478, a CVSS 9.4 GraphQL code injection flaw letting unauthenticated users alter or delete project data.

securityonline.info/gitlab-cve

##

jomo@mstdn.io at 2026-08-17T20:30:02.000Z ##

Unauthenticated remote code execution in GitLab.
Update to 19.2.4 / 19.1.6 / 19.0.8 / 18.11.11!

docs.gitlab.com/releases/patch

#GitLab

##

cyberworldops@infosec.exchange at 2026-08-18T04:20:01.000Z ##

GitLab addressed a critical GraphQL flaw, CVE-2026-19478, with a CVSS score of 9.4, allowing attackers to modify or delete projects in GitLab CE and EE. This poses serious risks to code repositories and requires immediate patching to prevent exploitation. #GitLabCVE #GraphQLFlaw #CyberSecurityUpdate #InfoSecCritical

cyberworldops.eu/en/gitlab-fix

##

security_crawler_carl@infosec.exchange at 2026-08-18T02:53:30.000Z ##

🏆 New Achievement! Delete Yourself From This Industry!

Welcome to Module 9: GraphQL Directive Hygiene. Today's learning objective: CVE-2026-19478, a CVSS 9.4 flaw in GitLab Community and Enterprise Edition that allows a completely unauthenticated attacker — no credentials, no victim interaction, no participation trophy — to remotely modify or delete public projects and user data. (1/2)

##

DailyCyberSecurity@infosec.exchange at 2026-08-18T01:41:10.000Z ##

GitLab patched CVE-2026-19478, a CVSS 9.4 GraphQL code injection flaw letting unauthenticated users alter or delete project data.

#CVE202619478 #GitLab #CodeInjection #GraphQL #CVE202619650 #PatchNow

securityonline.info/gitlab-cve

##

jomo@mstdn.io at 2026-08-17T20:30:02.000Z ##

Unauthenticated remote code execution in GitLab.
Update to 19.2.4 / 19.1.6 / 19.0.8 / 18.11.11!

docs.gitlab.com/releases/patch

#GitLab

##

CVE-2026-19714
(9.1 CRITICAL)

EPSS: 0.16%

updated 2026-08-17T20:16:42.157000

1 posts

The Simple JWT Login WordPress plugin before 3.6.8 does not validate the audience of the Google identity tokens it accepts, allowing unauthenticated users to authenticate as any user whose email address such a token carries, up to and including an administrator. Every site with the Simple JWT Login WordPress plugin before 3.6.8's Google sign-in enabled is affected.

offseq@infosec.exchange at 2026-08-16T07:30:24.000Z ##

CVE-2026-19714 (CRITICAL): Simple JWT Login <3.6.8 for WordPress fails to validate Google token audiences. Sites with Google sign-in enabled risk admin impersonation & takeover. Disable Google sign-in or update ASAP. radar.offseq.com/threat/cve-20 #OffSeq #WordPress #CVE202619714

##

CVE-2026-74238
(7.5 HIGH)

EPSS: 0.00%

updated 2026-08-17T19:16:42.713000

2 posts

TIER IV Nebula through 1.2.0 contains an out-of-bounds read vulnerability in the Vlp32Decoder::unpack() function that allows unauthenticated remote attackers to cause the decoder to read past the end of a received UDP buffer into adjacent heap memory by sending a short UDP datagram. Attackers can send a malformed datagram to the Velodyne UDP sensor port, which lacks sender-address restrictions pre

thehackerwire@mastodon.social at 2026-08-17T20:00:54.000Z ##

🟠 CVE-2026-74238 - High (7.5)

TIER IV Nebula through 1.2.0 contains an out-of-bounds read vulnerability in the Vlp32Decoder::unpack() function that allows unauthenticated remote attackers to cause the decoder to read past the end of a received UDP buffer into adjacent heap mem...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-17T20:00:54.000Z ##

🟠 CVE-2026-74238 - High (7.5)

TIER IV Nebula through 1.2.0 contains an out-of-bounds read vulnerability in the Vlp32Decoder::unpack() function that allows unauthenticated remote attackers to cause the decoder to read past the end of a received UDP buffer into adjacent heap mem...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-73044
(9.0 CRITICAL)

EPSS: 0.25%

updated 2026-08-17T19:16:39.737000

1 posts

SiYuan versions before v3.7.4 fail to validate or escape table column width values, allowing stored cross-site scripting injection into style attributes. Attackers can inject malicious payloads through the setAttrViewColWidth API that break out of style attributes and inject event handlers on every table cell, executing arbitrary code in the Electron renderer with Node integration enabled.

thehackerwire@mastodon.social at 2026-08-15T23:01:35.000Z ##

🔴 CVE-2026-73044 - Critical (9)

SiYuan versions before v3.7.4 fail to validate or escape table column width values, allowing stored cross-site scripting injection into style attributes. Attackers can inject malicious payloads through the setAttrViewColWidth API that break out of...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-75056
(7.8 HIGH)

EPSS: 0.00%

updated 2026-08-17T18:31:28

2 posts

In JetBrains IntelliJ IDEA before 2026.2.1 rCE via Markdown export tool was possible

thehackerwire@mastodon.social at 2026-08-17T17:00:41.000Z ##

🟠 CVE-2026-75056 - High (7.8)

In JetBrains IntelliJ IDEA before 2026.2.1 rCE via Markdown export tool was possible

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-17T17:00:41.000Z ##

🟠 CVE-2026-75056 - High (7.8)

In JetBrains IntelliJ IDEA before 2026.2.1 rCE via Markdown export tool was possible

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-74791
(8.6 HIGH)

EPSS: 0.27%

updated 2026-08-17T18:18:15.150000

1 posts

Scriban before 7.0.0 fails to clear the CachedTemplates dictionary when TemplateContext.Reset() is called, allowing cached templates to persist across reused contexts. Attackers can exploit request-dependent ITemplateLoader implementations to access previously authorized template content from earlier renders without triggering TemplateLoader.Load() again.

thehackerwire@mastodon.social at 2026-08-16T15:00:20.000Z ##

🟠 CVE-2026-74791 - High (8.6)

Scriban before 7.0.0 fails to clear the CachedTemplates dictionary when TemplateContext.Reset() is called, allowing cached templates to persist across reused contexts. Attackers can exploit request-dependent ITemplateLoader implementations to acce...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-73061
(9.8 CRITICAL)

EPSS: 0.30%

updated 2026-08-17T18:18:13.617000

2 posts

Scriban before 7.2.2 contains an access-modifier bypass vulnerability in TypedObjectAccessor that allows template code to write CLR object properties without setter-visibility checks. Attackers can modify properties with private, internal, or init-only setters, and perform mass assignment on public-setter properties, permanently altering live host objects after template rendering.

thehackerwire@mastodon.social at 2026-08-16T17:00:25.000Z ##

🔴 CVE-2026-73061 - Critical (9.8)

Scriban before 7.2.2 contains an access-modifier bypass vulnerability in TypedObjectAccessor that allows template code to write CLR object properties without setter-visibility checks. Attackers can modify properties with private, internal, or init...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-16T17:00:25.000Z ##

🔴 CVE-2026-73061 - Critical (9.8)

Scriban before 7.2.2 contains an access-modifier bypass vulnerability in TypedObjectAccessor that allows template code to write CLR object properties without setter-visibility checks. Attackers can modify properties with private, internal, or init...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-73052
(9.0 CRITICAL)

EPSS: 0.30%

updated 2026-08-17T18:18:13.377000

2 posts

SiYuan before v3.7.4 stores attribute-view field names without HTML escaping and interpolates them directly into option elements via innerHTML in the sort menu. Attackers can inject markup by renaming a database field to execute arbitrary JavaScript when users open the sort menu, with Node integration enabled in the desktop client enabling code execution.

offseq@infosec.exchange at 2026-08-16T04:30:23.000Z ##

CVE-2026-73052: CRITICAL XSS in SiYuan (<3.7.4) enables arbitrary JS & potential code execution if Node integration is enabled. Desktop users most at risk — upgrade ASAP & disable Node integration where possible. radar.offseq.com/threat/cve-20 #OffSeq #XSS #SiYuan #Infosec

##

thehackerwire@mastodon.social at 2026-08-15T23:00:14.000Z ##

🔴 CVE-2026-73052 - Critical (9)

SiYuan before v3.7.4 stores attribute-view field names without HTML escaping and interpolates them directly into option elements via innerHTML in the sort menu. Attackers can inject markup by renaming a database field to execute arbitrary JavaScri...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-73041
(9.0 CRITICAL)

EPSS: 0.23%

updated 2026-08-17T18:18:12.767000

1 posts

SiYuan versions before v3.7.4 fail to validate or escape annotation fields written to disk by the setFileAnnotation endpoint. Attackers can inject malicious markup into annotation fields that execute as script in the PDF renderer with full Node.js access when a user opens an annotated PDF.

thehackerwire@mastodon.social at 2026-08-16T00:01:03.000Z ##

🔴 CVE-2026-73041 - Critical (9)

SiYuan versions before v3.7.4 fail to validate or escape annotation fields written to disk by the setFileAnnotation endpoint. Attackers can inject malicious markup into annotation fields that execute as script in the PDF renderer with full Node.js...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-17123
(8.8 HIGH)

EPSS: 0.36%

updated 2026-08-17T18:16:33.897000

1 posts

The Royal Elementor Addons plugin for WordPress is vulnerable to Server-Side Request Forgery in versions up to, and including, 1.7.1064 via the Form Builder widget's 'webhook_url' setting. The widget's render() method persists the attacker-controlled URL into the wpr_webhook_url_{widget_id} option on every render (including a Contributor previewing their own draft), and the wpr_form_builder_webhoo

thehackerwire@mastodon.social at 2026-08-16T05:59:49.000Z ##

🟠 CVE-2026-17123 - High (8.8)

The Royal Elementor Addons plugin for WordPress is vulnerable to Server-Side Request Forgery in versions up to, and including, 1.7.1064 via the Form Builder widget's 'webhook_url' setting. The widget's render() method persists the attacker-control...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-71479
(9.1 CRITICAL)

EPSS: 0.00%

updated 2026-08-17T16:36:14

3 posts

## Summary Multiple billing paths multiplied **user-controlled quantity parameters** into the quota calculation without an upper bound or overflow-safe integer conversion. A crafted extreme value (e.g. image `n = 18446744073686646784`, a wrapped-negative accepted by a `*uint` field) makes conversions like `int(float64(quota) * n)` wrap past the int64/int32 range into a large **negative** quota. T

sayzard@mastodon.sayzard.org at 2026-08-18T03:39:49.000Z ##

New API integer overflow: one request turned a $0.10 balance into $16.9T

OpenAI 호환 셀프호스팅 LLM 게이트웨이 New API의 CVE-2026-71479는 이미지 수량(n), 비디오 작업 시간, 출력 토큰량 등 클라이언트 입력값의 상한 미검증으로 발생하는 정수 오버플로 취약점이다. v1.0.0-rc.17 이하에서는 과금 정산 단계의 int64 값이 음수로 래핑되어, 소액 잔액 계정이 한 번의 요청으로 사실상 무제한 크레딧을 얻고 사용량 원장을 오염시킬 수 있다. 취약점은 야생에서 악용된 것으로 보고됐으며, v1.0.0-rc.18부터 입력 범위 제한과 포화(saturating) quo...

hellorecon.com/blog/cve-2026-7

##

DailyCyberSecurity at 2026-08-18T02:25:26.410Z ##

CVE-2026-71479, an integer overflow in New API billing, is exploited in the wild to inflate user account balances.

securityonline.info/cve-2026-7

##

DailyCyberSecurity@infosec.exchange at 2026-08-18T02:25:26.000Z ##

CVE-2026-71479, an integer overflow in New API billing, is exploited in the wild to inflate user account balances.

#CVE202671479 #IntegerOverflow #NewAPI #ExploitedInTheWild #AIGateway #BillingFraud

securityonline.info/cve-2026-7

##

CVE-2026-74876
(9.8 CRITICAL)

EPSS: 0.00%

updated 2026-08-17T16:17:50.397000

1 posts

openssl_encrypt versions before 1.4.0 contain a vulnerability in PublicKeyBundle.from_dict() that creates key bundles from untrusted data without verifying signatures. Attackers can call from_dict() followed by to_identity() without signature verification to encrypt data using attacker-controlled public keys, leaking secrets.

hugovalters@mastodon.social at 2026-08-17T15:02:17.000Z ##

CVE-2026-74876 - Critical crypto flaw in openssl_encrypt <1.4.0. Unverified key bundles allow secret leakage via attacker-controlled keys. CVSS 9.8. Unpatched - update immediately. #CVE #infosec #cryptography

valtersit.com/cve/CVE-2026-748

##

CVE-2026-74795
(7.5 HIGH)

EPSS: 0.32%

updated 2026-08-17T16:17:48.827000

1 posts

Scriban before 6.6.0 contains an uncontrolled recursion vulnerability in its recursive-descent parser. The parser does not enforce a default expression depth limit (the ExpressionDepthLimit property in ParserOptions defaults to null/disabled), so an attacker who controls template input can supply a deeply nested template (e.g., thousands of nested parentheses or blocks) that exhausts thread stack

thehackerwire@mastodon.social at 2026-08-16T15:01:18.000Z ##

🟠 CVE-2026-74795 - High (7.5)

Scriban before 6.6.0 contains an uncontrolled recursion vulnerability in its recursive-descent parser. The parser does not enforce a default expression depth limit (the ExpressionDepthLimit property in ParserOptions defaults to null/disabled), so ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-74790
(9.1 CRITICAL)

EPSS: 0.29%

updated 2026-08-17T16:17:48.707000

1 posts

Scriban before 7.0.0 caches TypedObjectAccessor by Type only without considering MemberFilter changes, allowing reused TemplateContext instances to expose members that should be hidden. Attackers can access filtered properties and fields by reusing a TemplateContext after tightening its MemberFilter, bypassing sandbox policies across requests or tenants.

thehackerwire@mastodon.social at 2026-08-16T15:00:08.000Z ##

🔴 CVE-2026-74790 - Critical (9.1)

Scriban before 7.0.0 caches TypedObjectAccessor by Type only without considering MemberFilter changes, allowing reused TemplateContext instances to expose members that should be hidden. Attackers can access filtered properties and fields by reusin...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-73060
(7.5 HIGH)

EPSS: 0.37%

updated 2026-08-17T16:17:47

2 posts

Scriban versions from 3.0.0 through 7.2.5 contain a denial of service vulnerability in the ScriptRange.Multiply operator that bypasses LoopLimit when the left operand is a lazy sequence. Attackers can supply templates with array multiplication on lazy sequences to execute billions of uncharged iterations, pinning CPU cores and exhausting garbage collection resources even when LoopLimit is set to 1

thehackerwire@mastodon.social at 2026-08-16T16:02:01.000Z ##

🟠 CVE-2026-73060 - High (7.5)

Scriban versions from 3.0.0 through 7.2.5 contain a denial of service vulnerability in the ScriptRange.Multiply operator that bypasses LoopLimit when the left operand is a lazy sequence. Attackers can supply templates with array multiplication on ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-16T16:02:01.000Z ##

🟠 CVE-2026-73060 - High (7.5)

Scriban versions from 3.0.0 through 7.2.5 contain a denial of service vulnerability in the ScriptRange.Multiply operator that bypasses LoopLimit when the left operand is a lazy sequence. Attackers can supply templates with array multiplication on ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-73042
(9.0 CRITICAL)

EPSS: 0.30%

updated 2026-08-17T16:17:46.223000

1 posts

SiYuan before v3.7.4 fails to properly escape database menu metadata in HTML interpolation, allowing stored values to execute script when users open group, view, or field-edit menus. Attackers can inject markup through field descriptions or names that close containing elements and execute arbitrary code via event handlers, reaching Node built-ins due to Electron's insecure configuration.

thehackerwire@mastodon.social at 2026-08-15T23:01:13.000Z ##

🔴 CVE-2026-73042 - Critical (9)

SiYuan before v3.7.4 fails to properly escape database menu metadata in HTML interpolation, allowing stored values to execute script when users open group, view, or field-edit menus. Attackers can inject markup through field descriptions or names ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-19983
(8.3 HIGH)

EPSS: 1.31%

updated 2026-08-17T16:16:55.197000

1 posts

A vulnerability was detected in GL.iNet A1300, AX1800, AXT1800, MT2500, MT3000, MT6000, X3000 and XE3000 4.8.x. This issue affects some unknown processing of the file /usr/bin/gl_nas_sys of the component NAS Command Service. The manipulation results in os command injection. The attack may be launched remotely. Upgrading to version 4.9.0 is capable of addressing this issue. It is suggested to upgra

hugovalters@mastodon.social at 2026-08-17T11:12:40.000Z ##

CVE-2026-19983 - Critical OS command injection in GL.iNet routers (A1300, AX1800, MT3000, etc.) via NAS service. CVSS 8.3. Remote exploitation possible. Unpatched in 4.8.x - upgrade to 4.9.0 now. #CVE #infosec #GLiNet

valtersit.com/cve/CVE-2026-199

##

CVE-2026-15826
(9.8 CRITICAL)

EPSS: 0.80%

updated 2026-08-17T16:16:50.140000

2 posts

The User Profile Builder plugin for WordPress is vulnerable to Authentication Bypass via Type Confusion in versions up to, and including, 3.16.4. This is due to the wppb_log_in_user() function calling absint() on the return value of wp_insert_user() before performing an is_wp_error() check — when a registration is submitted with a 61–70 character username, WordPress core rejects it with a WP_Error

1 repos

https://github.com/HORKimhab/CVE-2026-15826-CVE-2026-15748

cyberworldops at 2026-08-17T20:20:01.079Z ##

Two critical flaws disclosed in WordPress plugins: Forminator Forms (CVE-2026-15748) allows unauthenticated PHP file upload leading to RCE, and User Profile Builder (CVE-2026-15826) lets unauthenticated attackers authenticate as the site admin. Both can result in full site compromise.

cyberworldops.eu/en/two-critic

##

cyberworldops@infosec.exchange at 2026-08-17T20:20:01.000Z ##

Two critical flaws disclosed in WordPress plugins: Forminator Forms (CVE-2026-15748) allows unauthenticated PHP file upload leading to RCE, and User Profile Builder (CVE-2026-15826) lets unauthenticated attackers authenticate as the site admin. Both can result in full site compromise.

#WordPressSecurity #CVE #RemoteCodeExecution #InfoSec

cyberworldops.eu/en/two-critic

##

CVE-2026-15623
(0 None)

EPSS: 0.20%

updated 2026-08-17T16:16:49.250000

2 posts

A SQL Injection vulnerability in a legacy dashboard widget API in Google Cloud Google SecOps (Chronicle SOAR) versions prior to 6.3.85 on Google Cloud Platform allows an authenticated attacker to execute blind SQL queries using a crafted request parameter. This vulnerability was patched in version 6.3.85, and no customer action is needed.

offseq at 2026-08-17T07:30:24.932Z ##

CVE-2026-15623: CRITICAL SQL Injection vuln (CVSS 9.4) in Google Cloud Google SecOps (Chronicle SOAR) <6.3.85. Auth attackers could run blind SQL queries. Google patched server-side — no customer action needed. radar.offseq.com/threat/cve-20

##

offseq@infosec.exchange at 2026-08-17T07:30:24.000Z ##

CVE-2026-15623: CRITICAL SQL Injection vuln (CVSS 9.4) in Google Cloud Google SecOps (Chronicle SOAR) <6.3.85. Auth attackers could run blind SQL queries. Google patched server-side — no customer action needed. radar.offseq.com/threat/cve-20 #OffSeq #GoogleCloud #Infosec

##

CVE-2026-58231
(10.0 CRITICAL)

EPSS: 0.73%

updated 2026-08-17T15:39:24.573000

7 posts

SAP Commerce Cloud allows an unauthenticated attacker to abuse a default authentication client and submit specially crafted input to certain functions lacking sufficient validation. Successful exploitation could enable arbitrary code execution and compromise internal components, resulting in high impact on confidentiality, integrity, and availability of the application.

1 repos

https://github.com/HORKimhab/CVE-2026-58231

teezeh@ieji.de at 2026-08-18T06:16:53.000Z ##

“A maximum-severity bug in SAP Commerce Cloud was exploited in the wild, research group Defused posted on X Aug. 14.

The 10.0 bug — CVE-2026-58231 — was described as having insufficient authorization checks and input validation and was earlier patched by SAP on Aug. 11.”

scworld.com/news/critical-sap-

##

ottoto2017@prattohome.com at 2026-08-18T05:35:18.000Z ##

「SAP Commerce Cloudの脆弱性CVE-2026-58231が、パッチ適用後数日で悪用される試みの標的となる 」: #TheHackerNews

「SAP Commerce Cloudに影響を与える、最も深刻なセキュリティ脆弱性について、現在活発な悪用活動が行われています。

CVE-2026-58231 として追跡されているこの脆弱性は、 CVSSスコアリングシステムで10.0と評価されています。これは、認証チェックと入力検証が不十分なケースに関連しています。

CVE.orgによると、「SAP Commerce Cloudでは、認証されていない攻撃者がデフォルトの認証クライアントを悪用し、十分な検証が行われていない特定の機能に特別に細工された入力を送信できる」とのことです。

「脆弱性を悪用されると、任意のコード実行が可能になり、内部コンポーネントが侵害される可能性があり、アプリケーションの機密性、完全性、可用性に重大な影響を与える可能性があります。」 」

thehackernews.com/2026/08/sap-

#prattohome

##

netsecio@mastodon.social at 2026-08-17T15:20:33.000Z ##

📰 Critical SAP Commerce Cloud Flaw (CVE-2026-58231) Under Active Attack

Max-severity SAP Commerce Cloud flaw (CVE-2026-58231, CVSS 10.0) is under active attack just days after patch release. The unauthenticated RCE affects major e-commerce platforms. #SAP #RCE #PatchNow

🔗 cyber.netsecops.io/articles/cr

##

Analyst207@mastodon.social at 2026-08-17T10:57:29.000Z ##

SAP Exploits Maximum-Severity Commerce Cloud Flaw in Active Attacks

SAP Commerce Cloud has a critical vulnerability, known as CVE-2026-58231, that allows unauthenticated attackers to wreak havoc by executing arbitrary code and compromising internal components. This maximum-severity flaw, scoring a perfect 10.0 on the CVSS scale, stems from weak authorization checks and input validation.

osintsights.com/sap-exploits-m

#SapCommerceCloud #Cve202658231 #ZeroDay #EmergingThreats #ArbitraryCodeExecution

##

undercodenews@mastodon.social at 2026-08-17T06:18:14.000Z ##

SAP Commerce Cloud Under Attack: Critical CVE-2026-58231 Draws Active Exploitation Attempts Just Days After Patch Release

A Maximum-Severity Flaw Has Entered the Attacker Crosshairs Enterprise security teams are once again facing a familiar but increasingly dangerous race: vendors release a critical security patch, defenders begin testing it, and attackers immediately start looking for systems that have not yet been updated. That is now the situation surrounding…

undercodenews.com/sap-commerce

##

teezeh@ieji.de at 2026-08-18T06:16:53.000Z ##

“A maximum-severity bug in SAP Commerce Cloud was exploited in the wild, research group Defused posted on X Aug. 14.

The 10.0 bug — CVE-2026-58231 — was described as having insufficient authorization checks and input validation and was earlier patched by SAP on Aug. 11.”

scworld.com/news/critical-sap-

##

ottoto2017@prattohome.com at 2026-08-18T05:35:18.000Z ##

「SAP Commerce Cloudの脆弱性CVE-2026-58231が、パッチ適用後数日で悪用される試みの標的となる 」: #TheHackerNews

「SAP Commerce Cloudに影響を与える、最も深刻なセキュリティ脆弱性について、現在活発な悪用活動が行われています。

CVE-2026-58231 として追跡されているこの脆弱性は、 CVSSスコアリングシステムで10.0と評価されています。これは、認証チェックと入力検証が不十分なケースに関連しています。

CVE.orgによると、「SAP Commerce Cloudでは、認証されていない攻撃者がデフォルトの認証クライアントを悪用し、十分な検証が行われていない特定の機能に特別に細工された入力を送信できる」とのことです。

「脆弱性を悪用されると、任意のコード実行が可能になり、内部コンポーネントが侵害される可能性があり、アプリケーションの機密性、完全性、可用性に重大な影響を与える可能性があります。」 」

thehackernews.com/2026/08/sap-

#prattohome

##

CVE-2026-15218
(7.9 HIGH)

EPSS: 0.00%

updated 2026-08-17T15:30:43

1 posts

A flaw was found in the maas-api and maas-controller ServiceAccounts within Red Hat OpenShift AI. These ServiceAccounts are granted cluster-wide permissions that exceed their operational requirements. An attacker who compromises the identity of these ServiceAccounts, either through a remote code execution vulnerability or by creating a malicious pod in the same namespace, could exploit these exces

hugovalters@mastodon.social at 2026-08-17T17:08:37.000Z ##

CVE-2026-15218 - High-severity RCE risk in Red Hat OpenShift AI. Overprivileged ServiceAccounts could lead to full cluster admin takeover. CVSS 7.9. Patch or restrict access now. #CVE #RedHat #infosec

valtersit.com/cve/CVE-2026-152

##

CVE-2026-74843
(10.0 CRITICAL)

EPSS: 0.00%

updated 2026-08-17T15:16:58.230000

2 posts

A vulnerability was determined in Wavlink WN531P3 and WN535M1 V250922. Affected by this vulnerability is the function strcpy of the file /etc/lighttpd/www/cgi-bin/export_pingortrace.cgi of the component Export Pingortrace CGI. Executing a manipulation of the argument HTTP_COOKIE can lead to stack-based buffer overflow. The attack may be launched remotely. The exploit has been publicly disclosed an

offseq at 2026-08-17T12:00:28.343Z ##

CVE-2026-74843 (CRITICAL, CVSS 10.0) impacts Wavlink WN531P3 & WN535M1: stack buffer overflow in export_pingortrace.cgi enables remote, unauthenticated RCE. No patch. Restrict access & monitor activity. Exploit code public. radar.offseq.com/threat/cve-20

##

offseq@infosec.exchange at 2026-08-17T12:00:28.000Z ##

CVE-2026-74843 (CRITICAL, CVSS 10.0) impacts Wavlink WN531P3 & WN535M1: stack buffer overflow in export_pingortrace.cgi enables remote, unauthenticated RCE. No patch. Restrict access & monitor activity. Exploit code public. radar.offseq.com/threat/cve-20 #OffSeq #CVE202674843 #IoTSecurity

##

CVE-2026-14564
(9.0 CRITICAL)

EPSS: 0.00%

updated 2026-08-17T15:16:53.647000

2 posts

Insufficiently Protected Credentials vulnerability in Innotim Software Telecommunications and Consulting Trade Ltd. Co. Logsign SIEM allows Retrieve Embedded Sensitive Data. This issue affects Logsign SIEM: from 6.4.97 before 6.4.114.

offseq at 2026-08-17T13:30:28.186Z ##

CVE-2026-14564: CRITICAL vuln in Logsign SIEM (6.4.97 – <6.4.114) due to insufficiently protected credentials (CWE-522). High-priv users can retrieve sensitive data. Patch status unknown — restrict access & monitor vendor updates. radar.offseq.com/threat/cve-20

##

offseq@infosec.exchange at 2026-08-17T13:30:28.000Z ##

CVE-2026-14564: CRITICAL vuln in Logsign SIEM (6.4.97 – <6.4.114) due to insufficiently protected credentials (CWE-522). High-priv users can retrieve sensitive data. Patch status unknown — restrict access & monitor vendor updates. radar.offseq.com/threat/cve-20 #OffSeq #SIEM #Vuln

##

CVE-2026-56090
(7.3 HIGH)

EPSS: 0.00%

updated 2026-08-17T14:20:21.077000

1 posts

Dell ObjectScale, versions prior to 4.3.0.1, contain(s) an Uncontrolled Search Path Element vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of privileges.

hugovalters@mastodon.social at 2026-08-17T18:12:22.000Z ##

CVE-2026-56090 - High-severity privilege escalation in Dell ObjectScale (pre-4.3.0.1). Uncontrolled search path, local low-priv attacker. CVSS 7.3. Update immediately. #CVE #Dell #infosec

valtersit.com/cve/CVE-2026-560

##

CVE-2026-65400
(9.8 CRITICAL)

EPSS: 0.50%

updated 2026-08-17T13:16:52.340000

19 posts

An authentication issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.9, macOS Sonoma 14.8.9, macOS Tahoe 26.6.1. An attacker on the network may be able to authenticate to Screen Sharing without valid credentials.

1 repos

https://github.com/HORKimhab/CVE-2026-65400

FlipboardUK@flipboard.com at 2026-08-17T22:41:56.000Z ##

An AI agent built a working exploit for this macOS flaw in four hours
thenextweb.com/news/macos-scre

Posted into Technology (UK Edition) @technology-uk-edition-FlipboardUK

##

thenextweb@flipboard.com at 2026-08-17T22:41:56.000Z ##

An AI agent built a working exploit for this macOS flaw in four hours
thenextweb.com/news/macos-scre

Posted into TNW - All Stories @tnw-all-stories-thenextweb

##

youranonnewsirc@nerdculture.de at 2026-08-17T22:26:25.000Z ##

Here's a summary of the latest geopolitical, technology, and cybersecurity news from the last 24-48 hours:

Cybersecurity: Apple patched a critical macOS Screen Sharing vulnerability (CVE-2026-65400) and issued mercenary spyware alerts across 110 countries. Microsoft's August Patch Tuesday fixed 421 vulnerabilities, including an actively exploited Windows zero-day (CVE-2026-68820). France reported a Bloctel data leak exposing three million phone numbers and a DGFiP tax data leak.

Technology: Massive tech layoffs continue in 2026, surpassing last year's totals, as companies shift to "AI-first" strategies; AI "inference" spending now exceeds "training". Elon Musk's SpaceX committed exclusively to NVIDIA GPUs, forming a major AI partnership.

Geopolitics: US-Iran tensions remain high over the Strait of Hormuz, with new threats and defense contracts emerging. Ukraine faces critical Patriot interceptor shortages, threatening its winter air defense.

#Cybersecurity #TechNews #Geopolitics

##

edovia@mastodon.social at 2026-08-17T16:55:18.000Z ##

⚠️ Important security update for Mac users:

A vulnerability in macOS Screen Sharing (CVE-2026-65400) is being actively exploited.

If you use Screens or another VNC client app to remotely access a Mac, we strongly recommend updating macOS as soon as possible.

blog.edovia.com/CVE-2026-65400

support.apple.com/en-us/148170

##

sayzard@mastodon.sayzard.org at 2026-08-17T14:42:15.000Z ##

Hackers exploit macOS Screen Sharing flaw to deploy Monero miner

macOS Screen Sharing(VNC, TCP 5900)의 인증 우회 취약점 CVE-2026-65400이 공개 익스플로잇 이후 실제 공격에 악용되고 있다. 인터넷에 5900 포트를 노출한 시스템에서 공격자는 인증 없이 접근한 뒤 root 권한을 획득하고 Monero 채굴기를 설치한 사례가 네덜란드 NCSC에 보고됐다. Apple은 macOS Tahoe 26.6.1, Sequoia 15.7.9, Sonoma 14.8.9에서 해당 문제를 수정했으므로 AI 개발용...

bleepingcomputer.com/news/secu

##

DailyCyberSecurity at 2026-08-17T13:07:28.302Z ##

Attackers actively exploit the critical CVE-2026-65400 vulnerability in macOS Screen Sharing. Discover how to protect your Mac from root access and cryptominers.

meterpreter.org/macos-cve-2026

##

offseq at 2026-08-17T09:00:25.989Z ##

CVE-2026-65400 (HIGH) - macOS Screen Sharing vuln lets remote attackers bypass auth and gain root. Active exploitation seen, mainly on systems with port 5900 open. Patch Tahoe 26.6.1, Sequoia 15.7.9, Sonoma 14.8.9. radar.offseq.com/threat/recent

##

guardingpearsoftware@mastodon.social at 2026-08-17T07:49:29.000Z ##

A recently patched Apple macOS security vulnerability is being actively exploited in the wild to deploy crypto-mining malware, researchers have warned.
The flaw, tracked as CVE-2026-65400, is a critical authentication vulnerability in the Screen Sharing component and could allow an attacker to gain root access.

##

security_crawler_carl at 2026-08-16T21:07:35.972Z ##

🏆 New Achievement! Screen Sharing Is Caring (About My Monero Wallet)!

Allow me to monologue, as any proper villain must. CVE-2026-65400 — a gorgeous authentication bypass in macOS Screen Sharing — handed attackers root access through port 5900, wide open to the internet like a velvet rope with no bouncer. Apple patched it August 6 in macOS Tahoe 26.6.1. You simply... did not apply it. Delicious. (1/2)

##

FlipboardUK@flipboard.com at 2026-08-17T22:41:56.000Z ##

An AI agent built a working exploit for this macOS flaw in four hours
thenextweb.com/news/macos-scre

Posted into Technology (UK Edition) @technology-uk-edition-FlipboardUK

##

thenextweb@flipboard.com at 2026-08-17T22:41:56.000Z ##

An AI agent built a working exploit for this macOS flaw in four hours
thenextweb.com/news/macos-scre

Posted into TNW - All Stories @tnw-all-stories-thenextweb

##

youranonnewsirc@nerdculture.de at 2026-08-17T22:26:25.000Z ##

Here's a summary of the latest geopolitical, technology, and cybersecurity news from the last 24-48 hours:

Cybersecurity: Apple patched a critical macOS Screen Sharing vulnerability (CVE-2026-65400) and issued mercenary spyware alerts across 110 countries. Microsoft's August Patch Tuesday fixed 421 vulnerabilities, including an actively exploited Windows zero-day (CVE-2026-68820). France reported a Bloctel data leak exposing three million phone numbers and a DGFiP tax data leak.

Technology: Massive tech layoffs continue in 2026, surpassing last year's totals, as companies shift to "AI-first" strategies; AI "inference" spending now exceeds "training". Elon Musk's SpaceX committed exclusively to NVIDIA GPUs, forming a major AI partnership.

Geopolitics: US-Iran tensions remain high over the Strait of Hormuz, with new threats and defense contracts emerging. Ukraine faces critical Patriot interceptor shortages, threatening its winter air defense.

#Cybersecurity #TechNews #Geopolitics

##

edovia@mastodon.social at 2026-08-17T16:55:18.000Z ##

⚠️ Important security update for Mac users:

A vulnerability in macOS Screen Sharing (CVE-2026-65400) is being actively exploited.

If you use Screens or another VNC client app to remotely access a Mac, we strongly recommend updating macOS as soon as possible.

blog.edovia.com/CVE-2026-65400

support.apple.com/en-us/148170

##

DailyCyberSecurity@infosec.exchange at 2026-08-17T13:07:28.000Z ##

Attackers actively exploit the critical CVE-2026-65400 vulnerability in macOS Screen Sharing. Discover how to protect your Mac from root access and cryptominers.

#macOS #CVE202665400 #ScreenSharing #Vulnerability #Cybersecurity

meterpreter.org/macos-cve-2026

##

offseq@infosec.exchange at 2026-08-17T09:00:25.000Z ##

CVE-2026-65400 (HIGH) - macOS Screen Sharing vuln lets remote attackers bypass auth and gain root. Active exploitation seen, mainly on systems with port 5900 open. Patch Tahoe 26.6.1, Sequoia 15.7.9, Sonoma 14.8.9. radar.offseq.com/threat/recent #OffSeq #macOS #infosec #vuln

##

security_crawler_carl@infosec.exchange at 2026-08-16T21:07:35.000Z ##

🏆 New Achievement! Screen Sharing Is Caring (About My Monero Wallet)!

Allow me to monologue, as any proper villain must. CVE-2026-65400 — a gorgeous authentication bypass in macOS Screen Sharing — handed attackers root access through port 5900, wide open to the internet like a velvet rope with no bouncer. Apple patched it August 6 in macOS Tahoe 26.6.1. You simply... did not apply it. Delicious. (1/2)

##

threatnoir@infosec.exchange at 2026-08-16T15:05:44.000Z ##

⚠️ CRITICAL: Hackers exploit macOS Screen Sharing flaw to deploy Monero miner

Attackers are actively exploiting CVE-2026-65400, an authentication bypass flaw in macOS Screen Sharing, to gain root access and deploy Monero miners on internet-exposed systems. Any macOS system with port 5900 open and unpatched is at immediate risk. This is a known active threat with public explo…

threatnoir.com/focus

#infosec #cybersecurity

🤖 AI generated summary

##

tomshardware@mastodon.online at 2026-08-16T13:04:06.000Z ##

Critical macOS Screen Sharing flaw gives attackers remote root access — CISA bumps bug to 9.8 severity following active Monero cryptojacking attacks

The Dutch National Cyber Security Centre (NCSC-NL) says that attackers are actively exploiting CVE-2026-65400, an authentication bypass in macOS Screen Sharing.
#hardware
tomshardware.com/tech-industry

##

beyondmachines1@infosec.exchange at 2026-08-16T11:01:08.000Z ##

Apple Patches Actively Exploited macOS Screen Sharing Vulnerability Used in Crypto Mining Attacks

Apple patched a macOS Screen Sharing vulnerability (CVE-2026-65400) that allows remote attackers to bypass authentication and gain root access. Attackers are actively exploiting the flaw to install Monero crypto miners on systems with port 5900 exposed to the internet.

**If you use a Mac, update macOS now to Tahoe 26.6.1, Sequoia 15.7.9, or Sonoma 14.8.9 to fix CVE-2026-65400, which attackers are already using to take full control of Macs without a password. Also turn off Screen Sharing when you don't need it and make sure port 5900 is not reachable from the internet.**
#cybersecurity #infosec #attack #activeexploit
beyondmachines.net/event_detai

##

CVE-2026-74889
(9.8 CRITICAL)

EPSS: 0.00%

updated 2026-08-17T12:32:31

2 posts

openssl_encrypt versions before 1.4.0 use HKDF with no salt and static info parameter in key normalization functions, reducing entropy extraction and determinism. Attackers can exploit predictable key derivation with identical inputs to weaken cryptographic security against multi-target attacks.

hugovalters@mastodon.social at 2026-08-18T01:00:27.000Z ##

CVE-2026-74889 - Critical crypto weakness in openssl_encrypt <1.4.0. HKDF with no salt/static info weakens key derivation, enabling multi-target attacks. CVSS 9.8. Update immediately. #CVE #cryptography #infosec

valtersit.com/cve/CVE-2026-748

##

hugovalters@mastodon.social at 2026-08-18T01:00:27.000Z ##

CVE-2026-74889 - Critical crypto weakness in openssl_encrypt <1.4.0. HKDF with no salt/static info weakens key derivation, enabling multi-target attacks. CVSS 9.8. Update immediately. #CVE #cryptography #infosec

valtersit.com/cve/CVE-2026-748

##

CVE-2026-74800
(9.0 None)

EPSS: 0.00%

updated 2026-08-17T12:32:26

1 posts

SiYuan before v3.7.4 fails to set Content-Disposition and X-Content-Type-Options headers when serving arbitrary file assets, allowing stored cross-site scripting attacks. Authenticated attackers can upload HTML files as assets and execute scripts with full kernel API access when the workspace owner opens the asset link.

hugovalters@mastodon.social at 2026-08-17T14:00:21.000Z ##

CVE-2026-74800 - Stored XSS in SiYuan. Missing headers allow script execution with full kernel API access. CVSS 9.0. Unpatched. Update or restrict file uploads now. #CVE #SiYuan #infosec

valtersit.com/cve/CVE-2026-748

##

CVE-2026-74845
(8.8 HIGH)

EPSS: 0.94%

updated 2026-08-17T12:32:26

2 posts

Official Document Management System developed by 2100 Technology has an Arbitrary File Upload vulnerability, allowing authenticated remote attackers to upload and execute web shell backdoors, thereby enabling arbitrary code execution on the server.

offseq at 2026-08-17T10:30:25.451Z ##

CVE-2026-74845 (HIGH, CVSS 8.7): 2100 Technology Official Document Management System lets authenticated attackers upload dangerous files — risk of code execution. No patch yet. Limit upload rights & monitor files. radar.offseq.com/threat/cve-20

##

offseq@infosec.exchange at 2026-08-17T10:30:25.000Z ##

CVE-2026-74845 (HIGH, CVSS 8.7): 2100 Technology Official Document Management System lets authenticated attackers upload dangerous files — risk of code execution. No patch yet. Limit upload rights & monitor files. radar.offseq.com/threat/cve-20 #OffSeq #vuln #infosec #CVE2026_74845

##

CVE-2026-19981
(7.4 HIGH)

EPSS: 1.05%

updated 2026-08-17T06:33:56

1 posts

A weakness has been identified in GL.iNet A1300, AX1800, AXT1800, BE1400, BE3600, BE6500, BE9300, BE10000, E5800, MT2500, MT3000, MT3600BE, MT5000, MT6000, X2000, X3000 and XE3000 up to 4.8.x. This affects an unknown part of the component Wi-Fi Timer Power-Schedule Feature. Executing a manipulation of the argument switch_power/restore_power can lead to os command injection. The attack can be launc

hugovalters@mastodon.social at 2026-08-17T12:03:44.000Z ##

CVE-2026-19981 - OS Command Injection in GL.iNet routers (Wi-Fi Timer feature). Remote attack, CVSS 7.4. Affects many models up to 4.8.x. Unpatched - update immediately. #CVE #GLiNet #infosec

valtersit.com/cve/CVE-2026-199

##

CVE-2026-72407
(10.0 CRITICAL)

EPSS: 0.52%

updated 2026-08-17T06:19:07.453000

2 posts

In the Linux kernel, the following vulnerability has been resolved: geneve: validate inner network offset in geneve_gro_complete() Even with both paths gated on gs->gro_hint, geneve_gro_complete() re-derives the inner dispatch type and length from the packet and the current gs->gro_hint, independently of geneve_gro_receive(). The two can disagree if gs->gro_hint flips under a concurrent geneve_q

jelte@mastodon.nl at 2026-08-17T08:32:47.000Z ##

Say what you will about 'branded' vulnerability disclosures, at least they tend to provide understandable information about the issue, which functionality it concerns, whether you might be affected, and often how to mitigate while waiting for the patch to propagate. As opposed to raw CVEs like cve.org/CVERecord?id=CVE-2026-

##

jelte@mastodon.nl at 2026-08-17T08:32:47.000Z ##

Say what you will about 'branded' vulnerability disclosures, at least they tend to provide understandable information about the issue, which functionality it concerns, whether you might be affected, and often how to mitigate while waiting for the patch to propagate. As opposed to raw CVEs like cve.org/CVERecord?id=CVE-2026-

##

CVE-2026-50602(CVSS UNKNOWN)

EPSS: 0.10%

updated 2026-08-17T03:30:28

2 posts

A security vulnerability has been identified in Planet9 due to incorrect file permissions assigned to an application executable used by the Planet9 background service. The service runs with SYSTEM privileges, while the affected executable grants excessive permissions to non-administrative users. As a result, an authenticated local user could potentially modify or replace the executable and execute

offseq at 2026-08-17T04:30:23.695Z ##

CVE-2026-50602: HIGH severity (CVSS 8.5) vuln in Acer Planet9 background service 🖥️. Incorrect permissions on SYSTEM-level executable allow local users to escalate privileges. Restrict permissions or disable service until patched. radar.offseq.com/threat/cve-20

##

offseq@infosec.exchange at 2026-08-17T04:30:23.000Z ##

CVE-2026-50602: HIGH severity (CVSS 8.5) vuln in Acer Planet9 background service 🖥️. Incorrect permissions on SYSTEM-level executable allow local users to escalate privileges. Restrict permissions or disable service until patched. radar.offseq.com/threat/cve-20 #OffSeq #vuln #Infosec

##

CVE-2026-19961
(9.9 CRITICAL)

EPSS: 0.47%

updated 2026-08-17T00:31:35

4 posts

A vulnerability was detected in Edimax EW-7478APC 1.04. Affected is the function formWlSiteSurvey of the file /goform/formWlSiteSurvey. Performing a manipulation of the argument selSSID results in buffer overflow. The attack is possible to be carried out remotely. The exploit is now public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

thehackerwire@mastodon.social at 2026-08-17T00:00:43.000Z ##

🔴 CVE-2026-19961 - Critical (9.9)

A vulnerability was detected in Edimax EW-7478APC 1.04. Affected is the function formWlSiteSurvey of the file /goform/formWlSiteSurvey. Performing a manipulation of the argument selSSID results in buffer overflow. The attack is possible to be carr...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

offseq at 2026-08-17T00:00:39.411Z ##

CVE-2026-19961: CRITICAL buffer overflow in Edimax EW-7478APC v1.04 via /goform/formWlSiteSurvey (selSSID). Remote code execution is possible; no patch, public exploit exists. Isolate affected devices. radar.offseq.com/threat/cve-20

##

thehackerwire@mastodon.social at 2026-08-17T00:00:43.000Z ##

🔴 CVE-2026-19961 - Critical (9.9)

A vulnerability was detected in Edimax EW-7478APC 1.04. Affected is the function formWlSiteSurvey of the file /goform/formWlSiteSurvey. Performing a manipulation of the argument selSSID results in buffer overflow. The attack is possible to be carr...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

offseq@infosec.exchange at 2026-08-17T00:00:39.000Z ##

CVE-2026-19961: CRITICAL buffer overflow in Edimax EW-7478APC v1.04 via /goform/formWlSiteSurvey (selSSID). Remote code execution is possible; no patch, public exploit exists. Isolate affected devices. radar.offseq.com/threat/cve-20 #OffSeq #CVE202619961 #IoTSecurity

##

CVE-2026-19959
(9.9 CRITICAL)

EPSS: 0.47%

updated 2026-08-16T23:16:24.710000

4 posts

A weakness has been identified in Edimax EW-7478APC 1.04. This affects the function formWanTcpipSetup of the file /goform/formWanTcpipSetup. This manipulation of the argument pppUserName causes stack-based buffer overflow. Remote exploitation of the attack is possible. The exploit has been made available to the public and could be used for attacks. The vendor was contacted early about this disclos

offseq at 2026-08-17T01:30:23.991Z ##

CVE-2026-19959: CRITICAL stack buffer overflow in Edimax EW-7478APC v1.04 (CVSS 9.4). Remote code execution possible. Public exploit out, no fix from vendor. Restrict access or replace device. radar.offseq.com/threat/cve-20

##

thehackerwire@mastodon.social at 2026-08-17T00:00:53.000Z ##

🔴 CVE-2026-19959 - Critical (9.9)

A weakness has been identified in Edimax EW-7478APC 1.04. This affects the function formWanTcpipSetup of the file /goform/formWanTcpipSetup. This manipulation of the argument pppUserName causes stack-based buffer overflow. Remote exploitation of t...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

offseq@infosec.exchange at 2026-08-17T01:30:23.000Z ##

CVE-2026-19959: CRITICAL stack buffer overflow in Edimax EW-7478APC v1.04 (CVSS 9.4). Remote code execution possible. Public exploit out, no fix from vendor. Restrict access or replace device. radar.offseq.com/threat/cve-20 #OffSeq #CVE #IoTSecurity #infosec

##

thehackerwire@mastodon.social at 2026-08-17T00:00:53.000Z ##

🔴 CVE-2026-19959 - Critical (9.9)

A weakness has been identified in Edimax EW-7478APC 1.04. This affects the function formWanTcpipSetup of the file /goform/formWanTcpipSetup. This manipulation of the argument pppUserName causes stack-based buffer overflow. Remote exploitation of t...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-65775
(7.8 HIGH)

EPSS: 2.45%

updated 2026-08-16T19:17:18.030000

2 posts

Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.

secdb at 2026-08-17T00:02:24.594Z ##

📈 CVE Published in last 7 days (2026-08-10 - 2026-08-10)
See more at secdb.nttzen.cloud/dashboard

Total CVEs:

Severity:
- Critical: 326
- High: 1309
- Medium: 1008
- Low: 130
- None: 1222

Status:
- : 39
- Analyzed: 419
- Awaiting Analysis: 226
- Deferred: 197
- Modified: 2
- Received: 2827
- Rejected: 102
- Undergoing Analysis: 183

CISA KEVs:
- CISA-2026:0811 (secdb.nttzen.cloud/security-ad)

Top CNAs:
- kernel.org: 1221
- Microsoft Corporation: 405
- VulnCheck: 343
- GitHub, Inc.: 326
- IBM Corporation: 160
- WPScan: 124
- Patchstack: 111
- VulDB: 104
- Red Hat, Inc.: 101
- Wordfence: 93

Top Affected Products:
- UNKNOWN: 3370
- Microsoft Windows Server 2025: 178
- Microsoft Windows 11 24h2: 171
- Microsoft Windows 11 26h1: 171
- Microsoft Windows 11 25h2: 171
- Microsoft Windows Server 2022: 158
- Microsoft Windows Server 2019: 146
- Microsoft Windows 10 1809: 146
- Microsoft Windows 11 23h2: 146
- Microsoft Windows 10 22h2: 136

Top EPSS Score:
- CVE-2026-72898 - 10.40 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-61358 - 3.68 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-66804 - 3.42 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62696 - 3.18 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19771 - 2.79 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-73296 - 2.61 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-65775 - 2.45 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62832 - 2.37 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19747 - 2.36 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19681 - 2.24 % (secdb.nttzen.cloud/cve/detail/)

##

secdb@infosec.exchange at 2026-08-17T00:02:24.000Z ##

📈 CVE Published in last 7 days (2026-08-10 - 2026-08-10)
See more at secdb.nttzen.cloud/dashboard

Total CVEs:

Severity:
- Critical: 326
- High: 1309
- Medium: 1008
- Low: 130
- None: 1222

Status:
- : 39
- Analyzed: 419
- Awaiting Analysis: 226
- Deferred: 197
- Modified: 2
- Received: 2827
- Rejected: 102
- Undergoing Analysis: 183

CISA KEVs:
- CISA-2026:0811 (secdb.nttzen.cloud/security-ad)

Top CNAs:
- kernel.org: 1221
- Microsoft Corporation: 405
- VulnCheck: 343
- GitHub, Inc.: 326
- IBM Corporation: 160
- WPScan: 124
- Patchstack: 111
- VulDB: 104
- Red Hat, Inc.: 101
- Wordfence: 93

Top Affected Products:
- UNKNOWN: 3370
- Microsoft Windows Server 2025: 178
- Microsoft Windows 11 24h2: 171
- Microsoft Windows 11 26h1: 171
- Microsoft Windows 11 25h2: 171
- Microsoft Windows Server 2022: 158
- Microsoft Windows Server 2019: 146
- Microsoft Windows 10 1809: 146
- Microsoft Windows 11 23h2: 146
- Microsoft Windows 10 22h2: 136

Top EPSS Score:
- CVE-2026-72898 - 10.40 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-61358 - 3.68 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-66804 - 3.42 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62696 - 3.18 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19771 - 2.79 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-73296 - 2.61 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-65775 - 2.45 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62832 - 2.37 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19747 - 2.36 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19681 - 2.24 % (secdb.nttzen.cloud/cve/detail/)

#ZEN #SecDB #InfoSec

##

CVE-2026-62696
(7.8 HIGH)

EPSS: 3.17%

updated 2026-08-16T19:16:52.950000

2 posts

Integer underflow (wrap or wraparound) in Windows Program Compatibility Assistant Service allows an authorized attacker to elevate privileges locally.

secdb at 2026-08-17T00:02:24.594Z ##

📈 CVE Published in last 7 days (2026-08-10 - 2026-08-10)
See more at secdb.nttzen.cloud/dashboard

Total CVEs:

Severity:
- Critical: 326
- High: 1309
- Medium: 1008
- Low: 130
- None: 1222

Status:
- : 39
- Analyzed: 419
- Awaiting Analysis: 226
- Deferred: 197
- Modified: 2
- Received: 2827
- Rejected: 102
- Undergoing Analysis: 183

CISA KEVs:
- CISA-2026:0811 (secdb.nttzen.cloud/security-ad)

Top CNAs:
- kernel.org: 1221
- Microsoft Corporation: 405
- VulnCheck: 343
- GitHub, Inc.: 326
- IBM Corporation: 160
- WPScan: 124
- Patchstack: 111
- VulDB: 104
- Red Hat, Inc.: 101
- Wordfence: 93

Top Affected Products:
- UNKNOWN: 3370
- Microsoft Windows Server 2025: 178
- Microsoft Windows 11 24h2: 171
- Microsoft Windows 11 26h1: 171
- Microsoft Windows 11 25h2: 171
- Microsoft Windows Server 2022: 158
- Microsoft Windows Server 2019: 146
- Microsoft Windows 10 1809: 146
- Microsoft Windows 11 23h2: 146
- Microsoft Windows 10 22h2: 136

Top EPSS Score:
- CVE-2026-72898 - 10.40 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-61358 - 3.68 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-66804 - 3.42 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62696 - 3.18 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19771 - 2.79 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-73296 - 2.61 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-65775 - 2.45 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62832 - 2.37 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19747 - 2.36 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19681 - 2.24 % (secdb.nttzen.cloud/cve/detail/)

##

secdb@infosec.exchange at 2026-08-17T00:02:24.000Z ##

📈 CVE Published in last 7 days (2026-08-10 - 2026-08-10)
See more at secdb.nttzen.cloud/dashboard

Total CVEs:

Severity:
- Critical: 326
- High: 1309
- Medium: 1008
- Low: 130
- None: 1222

Status:
- : 39
- Analyzed: 419
- Awaiting Analysis: 226
- Deferred: 197
- Modified: 2
- Received: 2827
- Rejected: 102
- Undergoing Analysis: 183

CISA KEVs:
- CISA-2026:0811 (secdb.nttzen.cloud/security-ad)

Top CNAs:
- kernel.org: 1221
- Microsoft Corporation: 405
- VulnCheck: 343
- GitHub, Inc.: 326
- IBM Corporation: 160
- WPScan: 124
- Patchstack: 111
- VulDB: 104
- Red Hat, Inc.: 101
- Wordfence: 93

Top Affected Products:
- UNKNOWN: 3370
- Microsoft Windows Server 2025: 178
- Microsoft Windows 11 24h2: 171
- Microsoft Windows 11 26h1: 171
- Microsoft Windows 11 25h2: 171
- Microsoft Windows Server 2022: 158
- Microsoft Windows Server 2019: 146
- Microsoft Windows 10 1809: 146
- Microsoft Windows 11 23h2: 146
- Microsoft Windows 10 22h2: 136

Top EPSS Score:
- CVE-2026-72898 - 10.40 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-61358 - 3.68 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-66804 - 3.42 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62696 - 3.18 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19771 - 2.79 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-73296 - 2.61 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-65775 - 2.45 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62832 - 2.37 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19747 - 2.36 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19681 - 2.24 % (secdb.nttzen.cloud/cve/detail/)

#ZEN #SecDB #InfoSec

##

CVE-2026-61358
(7.8 HIGH)

EPSS: 3.68%

updated 2026-08-16T19:16:48.360000

2 posts

Improper link resolution before file access ('link following') in Windows Accessibility Infrastructure (ATBroker.exe) allows an authorized attacker to elevate privileges locally.

secdb at 2026-08-17T00:02:24.594Z ##

📈 CVE Published in last 7 days (2026-08-10 - 2026-08-10)
See more at secdb.nttzen.cloud/dashboard

Total CVEs:

Severity:
- Critical: 326
- High: 1309
- Medium: 1008
- Low: 130
- None: 1222

Status:
- : 39
- Analyzed: 419
- Awaiting Analysis: 226
- Deferred: 197
- Modified: 2
- Received: 2827
- Rejected: 102
- Undergoing Analysis: 183

CISA KEVs:
- CISA-2026:0811 (secdb.nttzen.cloud/security-ad)

Top CNAs:
- kernel.org: 1221
- Microsoft Corporation: 405
- VulnCheck: 343
- GitHub, Inc.: 326
- IBM Corporation: 160
- WPScan: 124
- Patchstack: 111
- VulDB: 104
- Red Hat, Inc.: 101
- Wordfence: 93

Top Affected Products:
- UNKNOWN: 3370
- Microsoft Windows Server 2025: 178
- Microsoft Windows 11 24h2: 171
- Microsoft Windows 11 26h1: 171
- Microsoft Windows 11 25h2: 171
- Microsoft Windows Server 2022: 158
- Microsoft Windows Server 2019: 146
- Microsoft Windows 10 1809: 146
- Microsoft Windows 11 23h2: 146
- Microsoft Windows 10 22h2: 136

Top EPSS Score:
- CVE-2026-72898 - 10.40 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-61358 - 3.68 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-66804 - 3.42 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62696 - 3.18 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19771 - 2.79 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-73296 - 2.61 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-65775 - 2.45 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62832 - 2.37 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19747 - 2.36 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19681 - 2.24 % (secdb.nttzen.cloud/cve/detail/)

##

secdb@infosec.exchange at 2026-08-17T00:02:24.000Z ##

📈 CVE Published in last 7 days (2026-08-10 - 2026-08-10)
See more at secdb.nttzen.cloud/dashboard

Total CVEs:

Severity:
- Critical: 326
- High: 1309
- Medium: 1008
- Low: 130
- None: 1222

Status:
- : 39
- Analyzed: 419
- Awaiting Analysis: 226
- Deferred: 197
- Modified: 2
- Received: 2827
- Rejected: 102
- Undergoing Analysis: 183

CISA KEVs:
- CISA-2026:0811 (secdb.nttzen.cloud/security-ad)

Top CNAs:
- kernel.org: 1221
- Microsoft Corporation: 405
- VulnCheck: 343
- GitHub, Inc.: 326
- IBM Corporation: 160
- WPScan: 124
- Patchstack: 111
- VulDB: 104
- Red Hat, Inc.: 101
- Wordfence: 93

Top Affected Products:
- UNKNOWN: 3370
- Microsoft Windows Server 2025: 178
- Microsoft Windows 11 24h2: 171
- Microsoft Windows 11 26h1: 171
- Microsoft Windows 11 25h2: 171
- Microsoft Windows Server 2022: 158
- Microsoft Windows Server 2019: 146
- Microsoft Windows 10 1809: 146
- Microsoft Windows 11 23h2: 146
- Microsoft Windows 10 22h2: 136

Top EPSS Score:
- CVE-2026-72898 - 10.40 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-61358 - 3.68 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-66804 - 3.42 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62696 - 3.18 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19771 - 2.79 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-73296 - 2.61 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-65775 - 2.45 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62832 - 2.37 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19747 - 2.36 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19681 - 2.24 % (secdb.nttzen.cloud/cve/detail/)

#ZEN #SecDB #InfoSec

##

CVE-2026-74789
(7.5 HIGH)

EPSS: 0.34%

updated 2026-08-16T15:30:38

2 posts

Scriban before 7.0.0 (affected <= 6.6.0) applies its LoopLimit constraint only to script loop statements and not to expensive iteration performed inside built-in operators and functions. As a result, a single expression such as {{ 1..1000000 | array.size }} — or a memory-amplification expression such as {{ 'A' * 200000000 }} — can force large CPU or memory consumption even when LoopLimit is config

thehackerwire@mastodon.social at 2026-08-16T16:01:00.000Z ##

🟠 CVE-2026-74789 - High (7.5)

Scriban before 7.0.0 (affected &lt;= 6.6.0) applies its LoopLimit constraint only to script loop statements and not to expensive iteration performed inside built-in operators and functions. As a result, a single expression such as {{ 1..1000000 | ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-16T16:01:00.000Z ##

🟠 CVE-2026-74789 - High (7.5)

Scriban before 7.0.0 (affected &lt;= 6.6.0) applies its LoopLimit constraint only to script loop statements and not to expensive iteration performed inside built-in operators and functions. As a result, a single expression such as {{ 1..1000000 | ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-74794
(7.5 HIGH)

EPSS: 0.28%

updated 2026-08-16T15:30:38

1 posts

Scriban before 6.6.0 contains an infinite recursion vulnerability in object rendering when the ObjectRecursionLimit property defaults to unlimited. Attackers can supply circular reference objects to the template context, exhausting stack space and triggering an uncatchable StackOverflowException that terminates the hosting process.

thehackerwire@mastodon.social at 2026-08-16T15:01:06.000Z ##

🟠 CVE-2026-74794 - High (7.5)

Scriban before 6.6.0 contains an infinite recursion vulnerability in object rendering when the ObjectRecursionLimit property defaults to unlimited. Attackers can supply circular reference objects to the template context, exhausting stack space and...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-74792
(7.5 HIGH)

EPSS: 0.31%

updated 2026-08-16T15:30:38

1 posts

Scriban before 7.0.0 (affected versions <= 6.6.0) contains a stack overflow vulnerability in nested array initializer parsing. Deeply nested array initializers recurse through a path (ParseArrayInitializer → ParseExpression → ParseArrayInitializer) that is not covered by the ExpressionDepthLimit counter added in the fix for GHSA-wgh7-7m3c-fx25. An attacker who can supply untrusted input to Templat

thehackerwire@mastodon.social at 2026-08-16T15:00:30.000Z ##

🟠 CVE-2026-74792 - High (7.5)

Scriban before 7.0.0 (affected versions &lt;= 6.6.0) contains a stack overflow vulnerability in nested array initializer parsing. Deeply nested array initializers recurse through a path (ParseArrayInitializer → ParseExpression → ParseArrayInit...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-73056
(9.8 CRITICAL)

EPSS: 0.45%

updated 2026-08-16T15:30:33

4 posts

SiYuan kernel versions before 3.7.4 contain an improper restriction of excessive authentication attempts vulnerability in the CheckAuth() middleware. The middleware accepts the API token (Conf.Api.Token) via an Authorization header (Token/Bearer) or a ?token= query parameter, and neither path is protected by the application's CAPTCHA/lockout mechanism (NeedCaptcha/WrongAuthCount). As a result, an

hugovalters@mastodon.social at 2026-08-17T01:04:28.000Z ##

CVE-2026-73056 - Critical auth bypass in SiYuan kernel <3.7.4. Unauthenticated attackers can brute-force API tokens via CheckAuth() middleware, no lockout. CVSS 9.8. Update immediately. #CVE #SiYuan #infosec

valtersit.com/cve/CVE-2026-730

##

thehackerwire@mastodon.social at 2026-08-16T16:01:38.000Z ##

🔴 CVE-2026-73056 - Critical (9.8)

SiYuan kernel versions before 3.7.4 contain an improper restriction of excessive authentication attempts vulnerability in the CheckAuth() middleware. The middleware accepts the API token (Conf.Api.Token) via an Authorization header (Token/Bearer) ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-16T16:01:38.000Z ##

🔴 CVE-2026-73056 - Critical (9.8)

SiYuan kernel versions before 3.7.4 contain an improper restriction of excessive authentication attempts vulnerability in the CheckAuth() middleware. The middleware accepts the API token (Conf.Api.Token) via an Authorization header (Token/Bearer) ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

offseq@infosec.exchange at 2026-08-16T13:30:26.000Z ##

siyuan-note siyuan (kernel <3.7.4) hit by CRITICAL vuln: CVE-2026-73056 allows unlimited API token brute-forcing via CheckAuth(). Weak tokens = full admin takeover. Update & review tokens! 🔑 radar.offseq.com/threat/cve-20 #OffSeq #CVE202673056 #infosec

##

CVE-2026-74788
(7.5 HIGH)

EPSS: 0.28%

updated 2026-08-16T15:30:33

3 posts

Scriban before 7.0.0 (affected versions <= 6.6.0) contains an uncontrolled memory allocation vulnerability in the string.pad_left and string.pad_right template functions, which perform no validation on the width parameter before delegating to .NET's String.PadLeft/PadRight. When an application exposes Scriban to untrusted template input, an attacker can supply an arbitrarily large width value (e.g

hugovalters@mastodon.social at 2026-08-16T18:11:43.000Z ##

CVE-2026-74788 - DoS in Scriban templates via string.pad_left/right. Unvalidated width triggers ~1GB allocations, OOM. CVSS 7.5. Unpatched. Update to 7.0.0 or restrict template access. #CVE #infosec #Scriban

valtersit.com/cve/CVE-2026-747

##

thehackerwire@mastodon.social at 2026-08-16T16:00:50.000Z ##

🟠 CVE-2026-74788 - High (7.5)

Scriban before 7.0.0 (affected versions &lt;= 6.6.0) contains an uncontrolled memory allocation vulnerability in the string.pad_left and string.pad_right template functions, which perform no validation on the width parameter before delegating to ....

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-16T16:00:50.000Z ##

🟠 CVE-2026-74788 - High (7.5)

Scriban before 7.0.0 (affected versions &lt;= 6.6.0) contains an uncontrolled memory allocation vulnerability in the string.pad_left and string.pad_right template functions, which perform no validation on the width parameter before delegating to ....

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-74783
(7.5 HIGH)

EPSS: 0.28%

updated 2026-08-16T15:30:33

1 posts

Scriban versions 6.6.0 through 7.2.0 contain a non-enforcing ExpressionDepthLimit guard that fails to stop recursive descent parsing of deeply nested expressions. Attackers can supply templates with deeply nested parentheses, array initializers, object initializers, or unary operators to trigger an uncatchable StackOverflowException that immediately terminates the host process.

thehackerwire@mastodon.social at 2026-08-16T15:01:29.000Z ##

🟠 CVE-2026-74783 - High (7.5)

Scriban versions 6.6.0 through 7.2.0 contain a non-enforcing ExpressionDepthLimit guard that fails to stop recursive descent parsing of deeply nested expressions. Attackers can supply templates with deeply nested parentheses, array initializers, o...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-74787
(7.5 HIGH)

EPSS: 0.28%

updated 2026-08-16T15:30:26

3 posts

Scriban before 7.0.0 contains an uncontrolled recursion vulnerability in the object.to_json builtin function that lacks depth limits and circular reference detection. Attackers can craft templates with self-referencing objects to trigger unbounded recursion, causing a StackOverflowException that fatally terminates the hosting .NET process.

hugovalters@mastodon.social at 2026-08-16T17:07:38.000Z ##

CVE-2026-74787 - Uncontrolled recursion in Scriban's object.to_json. Crafted templates cause stack overflow, crashing .NET apps. CVSS 7.5. No patch yet - mitigate by limiting template input. #CVE #Scriban #infosec

valtersit.com/cve/CVE-2026-747

##

thehackerwire@mastodon.social at 2026-08-16T16:00:37.000Z ##

🟠 CVE-2026-74787 - High (7.5)

Scriban before 7.0.0 contains an uncontrolled recursion vulnerability in the object.to_json builtin function that lacks depth limits and circular reference detection. Attackers can craft templates with self-referencing objects to trigger unbounded...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-16T16:00:37.000Z ##

🟠 CVE-2026-74787 - High (7.5)

Scriban before 7.0.0 contains an uncontrolled recursion vulnerability in the object.to_json builtin function that lacks depth limits and circular reference detection. Attackers can craft templates with self-referencing objects to trigger unbounded...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-73062
(7.5 HIGH)

EPSS: 0.28%

updated 2026-08-16T15:30:26

2 posts

Scriban versions 3.0.0 through 7.2.0 contain a denial of service vulnerability in the array multiplication operator that allocates memory without enforcing LoopLimit or overflow-safe arithmetic checks. Attackers can supply a large integer multiplier in a template to force multi-gigabyte memory allocations, causing resource exhaustion and availability degradation.

thehackerwire@mastodon.social at 2026-08-16T17:00:36.000Z ##

🟠 CVE-2026-73062 - High (7.5)

Scriban versions 3.0.0 through 7.2.0 contain a denial of service vulnerability in the array multiplication operator that allocates memory without enforcing LoopLimit or overflow-safe arithmetic checks. Attackers can supply a large integer multipli...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-16T17:00:36.000Z ##

🟠 CVE-2026-73062 - High (7.5)

Scriban versions 3.0.0 through 7.2.0 contain a denial of service vulnerability in the array multiplication operator that allocates memory without enforcing LoopLimit or overflow-safe arithmetic checks. Attackers can supply a large integer multipli...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-73057
(7.5 HIGH)

EPSS: 0.28%

updated 2026-08-16T15:30:25

2 posts

stoatchat before 0.15.0 fails to validate SVG viewBox dimensions in the proxy endpoint, allowing attackers to cause denial of service by memory exhaustion. Attackers can host malicious SVGs with extremely large width and height values and trigger concurrent requests to exhaust available memory across proxy replicas.

thehackerwire@mastodon.social at 2026-08-16T16:01:49.000Z ##

🟠 CVE-2026-73057 - High (7.5)

stoatchat before 0.15.0 fails to validate SVG viewBox dimensions in the proxy endpoint, allowing attackers to cause denial of service by memory exhaustion. Attackers can host malicious SVGs with extremely large width and height values and trigger ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-16T16:01:49.000Z ##

🟠 CVE-2026-73057 - High (7.5)

stoatchat before 0.15.0 fails to validate SVG viewBox dimensions in the proxy endpoint, allowing attackers to cause denial of service by memory exhaustion. Attackers can host malicious SVGs with extremely large width and height values and trigger ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-74251(CVSS UNKNOWN)

EPSS: 0.37%

updated 2026-08-16T15:30:24

2 posts

Joomla Extension - phoca.cz - Unauthenticated SQL injection via attribute filter in Phoca Cart 5.0.0-6.1.6 - The a[] (attribute) and s[] (specification) GET array parameters on Phoca Cart's public shop items page are concatenated raw into SQL WHERE clauses without parameterization or escaping. An unauthenticated attacker can inject arbitrary SQL through these parameters, enabling full database ex

1 repos

https://github.com/toanln-cov/CVE-2026-74251

offseq at 2026-08-17T03:00:28.980Z ##

CVE-2026-74251: Phoca Cart (Joomla ext. v5.0.0 – 6.1.16) suffers CRITICAL SQL injection via unauthenticated a[]/s[] params. Full DB extraction possible. Patch status unclear — check vendor. radar.offseq.com/threat/cve-20

##

offseq@infosec.exchange at 2026-08-17T03:00:28.000Z ##

CVE-2026-74251: Phoca Cart (Joomla ext. v5.0.0 – 6.1.16) suffers CRITICAL SQL injection via unauthenticated a[]/s[] params. Full DB extraction possible. Patch status unclear — check vendor. radar.offseq.com/threat/cve-20 #OffSeq #SQLInjection #Joomla #Infosec

##

CVE-2026-17087
(7.5 HIGH)

EPSS: 0.41%

updated 2026-08-16T09:30:22

1 posts

The WP Travel Engine – Tour Booking Plugin – Tour Operator Software plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 6.8.4. This is due to the plugin not properly verifying that a user is authorized to perform an action. This makes it possible for unauthenticated attackers to view private booking billing details — including the victim customer's firs

thehackerwire@mastodon.social at 2026-08-16T07:59:50.000Z ##

🟠 CVE-2026-17087 - High (7.5)

The WP Travel Engine – Tour Booking Plugin – Tour Operator Software plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 6.8.4. This is due to the plugin not properly verifying that a user is authori...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-18316
(9.1 CRITICAL)

EPSS: 0.32%

updated 2026-08-16T06:30:37

2 posts

The Solace Extra plugin for WordPress is vulnerable to unauthorized modification and loss of data due to a missing capability check on the import_zip() function in versions up to, and including, 1.6.0. The handler is registered on both wp_ajax_action-import-zip and wp_ajax_nopriv_action-import-zip and only verifies the 'ajax-nonce' nonce, which is emitted on every admin page via wp_localize_script

thehackerwire@mastodon.social at 2026-08-16T06:59:50.000Z ##

🔴 CVE-2026-18316 - Critical (9.1)

The Solace Extra plugin for WordPress is vulnerable to unauthorized modification and loss of data due to a missing capability check on the import_zip() function in versions up to, and including, 1.6.0. The handler is registered on both wp_ajax_act...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

offseq@infosec.exchange at 2026-08-16T06:00:23.000Z ##

CVE-2026-18316: CRITICAL auth bypass in Solace Extra WordPress plugin (≤1.6.0). Subscriber-level users can perform destructive actions — no patch yet. Restrict user roles & monitor import_zip() activity. radar.offseq.com/threat/cve-20 #OffSeq #WordPress #Vuln #CVE202618316

##

CVE-2026-18432
(9.8 CRITICAL)

EPSS: 0.45%

updated 2026-08-16T06:30:32

2 posts

The Frontend Admin by DynamiApps plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 3.29.9. The vulnerability exists because `ActionUser::conditions_logic()` gates the `current_user_can('edit_user', $user_id)` authorization check behind an `is_numeric()` test, causing the check to be skipped entirely when `$user_id` is a non-numeric string — a conditio

offseq@infosec.exchange at 2026-08-16T12:00:24.000Z ##

CVE-2026-18432 (CVSS 9.8): CRITICAL privilege escalation in DynamiApps Frontend Admin <=3.29.9. Unauthenticated attackers can become admins via flawed user ID checks. Restrict access to vulnerable forms & endpoints. radar.offseq.com/threat/cve-20 #OffSeq #WordPress #PrivilegeEscalation #CVE

##

thehackerwire@mastodon.social at 2026-08-16T05:59:59.000Z ##

🔴 CVE-2026-18432 - Critical (9.8)

The Frontend Admin by DynamiApps plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 3.29.9. The vulnerability exists because `ActionUser::conditions_logic()` gates the `current_user_can('edit_user', $u...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-14524
(9.1 CRITICAL)

EPSS: 0.70%

updated 2026-08-16T06:30:32

2 posts

The ProSolution WP Client plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the proSol_fileDeleteProcess function in all versions up to, and including, 2.0.8. This makes it possible for unauthenticated attackers to delete arbitrary files on the server, which can easily lead to remote code execution when the right file is deleted (such as wp-c

offseq@infosec.exchange at 2026-08-16T09:00:23.000Z ##

CRITICAL: CVE-2026-14524 in ProSolution WP Client ≤2.0.8 enables unauthenticated file deletion via path traversal — risking RCE if key files are removed. No patch; restrict or disable plugin. radar.offseq.com/threat/cve-20 #OffSeq #WordPress #CVE202614524 #Vuln

##

thehackerwire@mastodon.social at 2026-08-16T06:01:22.000Z ##

🔴 CVE-2026-14524 - Critical (9.1)

The ProSolution WP Client plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the proSol_fileDeleteProcess function in all versions up to, and including, 2.0.8. This makes it possible for unaut...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-16099
(8.8 HIGH)

EPSS: 0.59%

updated 2026-08-16T06:30:32

1 posts

The Podlove Podcast Publisher plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the create_link_item function in all versions up to, and including, 4.5.3. This makes it possible for authenticated attackers, with contributor-level access and above, to delete arbitrary files on the server, which can easily lead to remote code execution when the

thehackerwire@mastodon.social at 2026-08-16T06:00:47.000Z ##

🟠 CVE-2026-16099 - High (8.8)

The Podlove Podcast Publisher plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the create_link_item function in all versions up to, and including, 4.5.3. This makes it possible for authentic...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-14498
(8.8 HIGH)

EPSS: 0.55%

updated 2026-08-16T06:30:31

1 posts

The Query Wrangler plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 1.5.57 via the 'options' parameter parameter. This is due to missing capability check and nonce verification on the wp_ajax_qw_form_ajax handler, combined with unsanitized attacker-controlled options fully replacing saved query options and being passed directly to call_user_func_arr

thehackerwire@mastodon.social at 2026-08-16T06:00:59.000Z ##

🟠 CVE-2026-14498 - High (8.8)

The Query Wrangler plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 1.5.57 via the 'options' parameter parameter. This is due to missing capability check and nonce verification on the wp_ajax_qw_for...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-16098
(9.8 CRITICAL)

EPSS: 0.64%

updated 2026-08-16T05:16:47.667000

2 posts

The ProSolution WP Client plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 2.0.10 via the proSol_handleFileUpload function. This is due to missing validation of the attacker-controlled Content-Disposition header filename, which overrides the allow-listed multipart filename before the file is saved, and a post-save extension check that fails to delet

offseq@infosec.exchange at 2026-08-16T10:30:22.000Z ##

CVE-2026-16098 (CRITICAL): ProSolution WP Client <=2.0.10 lets unauthenticated attackers upload dangerous files via nonce leak, leading to remote code execution. Restrict plugin use & monitor for patches. radar.offseq.com/threat/cve-20 #OffSeq #WordPress #CVE202616098 #Infosec

##

thehackerwire@mastodon.social at 2026-08-16T06:00:11.000Z ##

🔴 CVE-2026-16098 - Critical (9.8)

The ProSolution WP Client plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 2.0.10 via the proSol_handleFileUpload function. This is due to missing validation of the attacker-controlled Content-Dispo...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-19924
(9.8 CRITICAL)

EPSS: 0.90%

updated 2026-08-16T03:31:11

2 posts

A security vulnerability has been detected in Tenda AC10 16.03.10.09_multi_TDE01. This vulnerability affects the function R7WebsSecurityHandler of the component httpd. The manipulation leads to improper authentication. The attack may be initiated remotely. The exploit has been disclosed publicly and may be used.

thehackerwire@mastodon.social at 2026-08-16T02:59:49.000Z ##

🔴 CVE-2026-19924 - Critical (9.8)

A security vulnerability has been detected in Tenda AC10 16.03.10.09_multi_TDE01. This vulnerability affects the function R7WebsSecurityHandler of the component httpd. The manipulation leads to improper authentication. The attack may be initiated ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

offseq@infosec.exchange at 2026-08-16T01:31:24.000Z ##

Tenda AC10 (16.03.10.09_multi_TDE01) hit by CRITICAL auth bypass (CVE-2026-19924) via R7WebsSecurityHandler. Public exploit available — remote compromise possible. Update or restrict access! radar.offseq.com/threat/cve-20 #OffSeq #CVE202619924 #Tenda #Vuln

##

CVE-2026-73053
(9.0 None)

EPSS: 0.28%

updated 2026-08-16T00:31:35

2 posts

SiYuan versions before v3.7.4 contain a cross-site scripting vulnerability in the unicode2Emoji function that fails to sanitize codepoint branch output. Attackers can craft document icons with hex-encoded markup that executes in the renderer with Node integration enabled, achieving arbitrary code execution on the host system.

offseq@infosec.exchange at 2026-08-16T03:00:23.000Z ##

CVE-2026-73053: CRITICAL XSS in SiYuan (pre-v3.7.4) risks code execution on host via crafted icons when Node integration is enabled. No patch confirmed — disable Node integration or avoid untrusted files. radar.offseq.com/threat/cve-20 #OffSeq #XSS #Vuln #SiYuan

##

thehackerwire@mastodon.social at 2026-08-15T23:00:24.000Z ##

🔴 CVE-2026-73053 - Critical (9)

SiYuan versions before v3.7.4 contain a cross-site scripting vulnerability in the unicode2Emoji function that fails to sanitize codepoint branch output. Attackers can craft document icons with hex-encoded markup that executes in the renderer with ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-73054
(7.5 HIGH)

EPSS: 0.31%

updated 2026-08-16T00:31:35

1 posts

SiYuan versions before v3.7.4 contain an authentication bypass vulnerability in the WebSocket endpoint caused by differential parsing of query parameters between authentication exemption and session quarantine checks. Unauthenticated attackers can craft a malicious WebSocket URI with duplicated query parameters to bypass access auth code validation and receive the live kernel event stream includin

thehackerwire@mastodon.social at 2026-08-15T23:00:36.000Z ##

🟠 CVE-2026-73054 - High (7.5)

SiYuan versions before v3.7.4 contain an authentication bypass vulnerability in the WebSocket endpoint caused by differential parsing of query parameters between authentication exemption and session quarantine checks. Unauthenticated attackers can...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-73055
(4.8 MEDIUM)

EPSS: 0.21%

updated 2026-08-16T00:31:29

1 posts

Shescape before 2.1.15 (and 3.0.0 before 3.0.2) fails to properly escape tilde (~) characters in assignment contexts on Unix systems where the shell is explicitly configured to "sh" or true and /bin/sh points to BusyBox. Using the escape and escapeAll APIs with untrusted input in an assignment prefixed to a command, an attacker can inject a tilde payload to disclose the user's home directory locat

offseq@infosec.exchange at 2026-08-16T00:00:34.000Z ##

CVE-2026-73055: CRITICAL vuln in ericcornelissen shescape (<2.1.15, 3.0.0<3.0.2). Improper tilde (~) escaping lets attackers leak home dir & alter cmd targets on BusyBox /bin/sh. Avoid untrusted input in escape APIs. Patch pending. radar.offseq.com/threat/cve-20 #OffSeq #CVE202673055 #infosec

##

CVE-2026-73050
(9.0 None)

EPSS: 0.25%

updated 2026-08-16T00:31:28

1 posts

SiYuan versions before v3.7.4 fail to validate or escape the color field in attribute-view select options, allowing stored cross-site scripting through eight unescaped render sites. Attackers can inject event-handler attributes by including quotation marks in the color value, executing arbitrary JavaScript when viewing databases containing the malicious select field.

thehackerwire@mastodon.social at 2026-08-16T00:00:27.000Z ##

🔴 CVE-2026-73050 - Critical (9)

SiYuan versions before v3.7.4 fail to validate or escape the color field in attribute-view select options, allowing stored cross-site scripting through eight unescaped render sites. Attackers can inject event-handler attributes by including quotat...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-73046
(9.8 CRITICAL)

EPSS: 0.43%

updated 2026-08-16T00:31:27

1 posts

SiYuan before v3.7.4 improperly restricts excessive authentication attempts in the CheckAuth() middleware. The HTTP Basic Authentication branch, which guards nearly the entire /api/* surface, accepts the workspace access code (Conf.AccessAuthCode) as the Basic Auth password but never consults the CAPTCHA/lockout gate or increments the failure counter used by the cookie/session login path. This all

thehackerwire@mastodon.social at 2026-08-16T00:00:17.000Z ##

🔴 CVE-2026-73046 - Critical (9.8)

SiYuan before v3.7.4 improperly restricts excessive authentication attempts in the CheckAuth() middleware. The HTTP Basic Authentication branch, which guards nearly the entire /api/* surface, accepts the workspace access code (Conf.AccessAuthCode)...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-73043
(9.0 None)

EPSS: 0.37%

updated 2026-08-16T00:31:26

1 posts

SiYuan versions before v3.7.4 contain a remote code execution vulnerability in the Template calculation operator, which renders user-authored Go templates and stores output verbatim without sanitization. Attackers can inject malicious HTML and JavaScript into template calculations that execute in the desktop client renderer with Node integration enabled, allowing arbitrary code execution when the

thehackerwire@mastodon.social at 2026-08-15T23:01:24.000Z ##

🔴 CVE-2026-73043 - Critical (9)

SiYuan versions before v3.7.4 contain a remote code execution vulnerability in the Template calculation operator, which renders user-authored Go templates and stores output verbatim without sanitization. Attackers can inject malicious HTML and Jav...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-69414
(7.8 HIGH)

EPSS: 0.24%

updated 2026-08-15T00:31:32

2 posts

Microsoft is aware of an elevation of privilege in the Microsoft Malware Protection Engine in Microsoft Defender publicly referred to as &quot;ShieldBreak &quot;. We are working to provide a high quality security update that addresses this vulnerability. We will provide information in this CVE when the update is available.

2 repos

https://github.com/1neptune/ShieldBreak

https://github.com/HORKimhab/CVE-2026-50656

GossiTheDog@cyberplace.social at 2026-08-17T15:24:10.000Z ##

ShieldBreak appears to be CVE-2026-69414 ht @wdormann msrc.microsoft.com/update-guid

Microsoft is aware of an elevation of privilege in the Microsoft Malware Protection Engine in Microsoft Defender publicly referred to as "ShieldBreak ".
We are working to provide a high quality security update that addresses this vulnerability. We will provide information in this CVE when the update is available.

##

GossiTheDog@cyberplace.social at 2026-08-17T15:24:10.000Z ##

ShieldBreak appears to be CVE-2026-69414 ht @wdormann msrc.microsoft.com/update-guid

Microsoft is aware of an elevation of privilege in the Microsoft Malware Protection Engine in Microsoft Defender publicly referred to as "ShieldBreak ".
We are working to provide a high quality security update that addresses this vulnerability. We will provide information in this CVE when the update is available.

##

CVE-2026-19188
(10.0 CRITICAL)

EPSS: 1.89%

updated 2026-08-14T19:17:17.480000

2 posts

A critical OS command injection vulnerability has been identified in the Haiwell IoT Cloud HMI Gateway product. The vulnerability exists in the Net Check feature accessible via the /setting endpoint. The cmdPing Socket.io event fails to properly sanitize user-supplied input before passing it to the underlying operating system, allowing an attacker to inject and execute arbitrary OS commands w

DailyCyberSecurity at 2026-08-17T12:57:49.029Z ##

A critical Haiwell HMI Gateway flaw (CVE-2026-19188) allows remote attackers to execute arbitrary OS commands with root privileges.

securityonline.info/haiwell-hm

##

DailyCyberSecurity@infosec.exchange at 2026-08-17T12:57:49.000Z ##

A critical Haiwell HMI Gateway flaw (CVE-2026-19188) allows remote attackers to execute arbitrary OS commands with root privileges.

#Haiwell #CVE202619188 #Vulnerability #CISA

securityonline.info/haiwell-hm

##

CVE-2026-19681
(9.9 CRITICAL)

EPSS: 2.24%

updated 2026-08-14T18:31:46

2 posts

An authenticated command injection vulnerability exists in Security Center related to file upload processing. An attacker could exploit this issue by uploading a specially crafted file, potentially resulting in arbitrary command execution on the underlying operating system.

secdb at 2026-08-17T00:02:24.594Z ##

📈 CVE Published in last 7 days (2026-08-10 - 2026-08-10)
See more at secdb.nttzen.cloud/dashboard

Total CVEs:

Severity:
- Critical: 326
- High: 1309
- Medium: 1008
- Low: 130
- None: 1222

Status:
- : 39
- Analyzed: 419
- Awaiting Analysis: 226
- Deferred: 197
- Modified: 2
- Received: 2827
- Rejected: 102
- Undergoing Analysis: 183

CISA KEVs:
- CISA-2026:0811 (secdb.nttzen.cloud/security-ad)

Top CNAs:
- kernel.org: 1221
- Microsoft Corporation: 405
- VulnCheck: 343
- GitHub, Inc.: 326
- IBM Corporation: 160
- WPScan: 124
- Patchstack: 111
- VulDB: 104
- Red Hat, Inc.: 101
- Wordfence: 93

Top Affected Products:
- UNKNOWN: 3370
- Microsoft Windows Server 2025: 178
- Microsoft Windows 11 24h2: 171
- Microsoft Windows 11 26h1: 171
- Microsoft Windows 11 25h2: 171
- Microsoft Windows Server 2022: 158
- Microsoft Windows Server 2019: 146
- Microsoft Windows 10 1809: 146
- Microsoft Windows 11 23h2: 146
- Microsoft Windows 10 22h2: 136

Top EPSS Score:
- CVE-2026-72898 - 10.40 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-61358 - 3.68 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-66804 - 3.42 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62696 - 3.18 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19771 - 2.79 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-73296 - 2.61 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-65775 - 2.45 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62832 - 2.37 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19747 - 2.36 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19681 - 2.24 % (secdb.nttzen.cloud/cve/detail/)

##

secdb@infosec.exchange at 2026-08-17T00:02:24.000Z ##

📈 CVE Published in last 7 days (2026-08-10 - 2026-08-10)
See more at secdb.nttzen.cloud/dashboard

Total CVEs:

Severity:
- Critical: 326
- High: 1309
- Medium: 1008
- Low: 130
- None: 1222

Status:
- : 39
- Analyzed: 419
- Awaiting Analysis: 226
- Deferred: 197
- Modified: 2
- Received: 2827
- Rejected: 102
- Undergoing Analysis: 183

CISA KEVs:
- CISA-2026:0811 (secdb.nttzen.cloud/security-ad)

Top CNAs:
- kernel.org: 1221
- Microsoft Corporation: 405
- VulnCheck: 343
- GitHub, Inc.: 326
- IBM Corporation: 160
- WPScan: 124
- Patchstack: 111
- VulDB: 104
- Red Hat, Inc.: 101
- Wordfence: 93

Top Affected Products:
- UNKNOWN: 3370
- Microsoft Windows Server 2025: 178
- Microsoft Windows 11 24h2: 171
- Microsoft Windows 11 26h1: 171
- Microsoft Windows 11 25h2: 171
- Microsoft Windows Server 2022: 158
- Microsoft Windows Server 2019: 146
- Microsoft Windows 10 1809: 146
- Microsoft Windows 11 23h2: 146
- Microsoft Windows 10 22h2: 136

Top EPSS Score:
- CVE-2026-72898 - 10.40 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-61358 - 3.68 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-66804 - 3.42 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62696 - 3.18 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19771 - 2.79 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-73296 - 2.61 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-65775 - 2.45 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62832 - 2.37 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19747 - 2.36 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19681 - 2.24 % (secdb.nttzen.cloud/cve/detail/)

#ZEN #SecDB #InfoSec

##

CVE-2026-59310
(9.8 CRITICAL)

EPSS: 1.14%

updated 2026-08-14T05:16:59.407000

4 posts

VMware vCenter contains a directory traversal vulnerability in the Syslog server. A malicious actor with network access to vCenter may exploit this issue to execute arbitrary code.

2 repos

https://github.com/HORKimhab/CVE-2026-59310

https://github.com/BiuTrap/CVE-2026-59310

Analyst207@mastodon.social at 2026-08-17T13:56:04.000Z ##

China APT Exploits VMware Flaw in Targeted Attacks

A recent investigation revealed that a suspected China-nexus APT group is actively exploiting a critical VMware vCenter vulnerability, CVE-2026-59310, to execute arbitrary code and deploy a backdoor, with ransomware seemingly used as a smokescreen to distract from the underlying intrusion. The attackers' true intentions appear to go beyond mere…

osintsights.com/china-apt-expl

#ChinaApt #Vmware #Cve202659310 #AdvancedPersistentThreat #NationState

##

guru@thecybersecguru.com at 2026-08-17T08:31:43.000Z ##

The Anatomy of the VMware vCenter Syslog Exploitation and the Babuk ESXi Ransomware Campaign

VMware vCenter CVE-2026-59310 is being actively exploited to compromise vCenter servers and deploy Babuk-derived ransomware on ESXi hosts

thecybersecguru.com/news/vmwar

##

patrickcmiller@infosec.exchange at 2026-08-16T12:12:01.000Z ##

vCenter Flaw Exploited Just Five Days After Disclosure infosecurity-magazine.com/news

##

threatnoir@infosec.exchange at 2026-08-16T05:15:04.000Z ##

2026-W33 — Weekly Threat Roundup

🔥 VMware vCenter RCE (CVE-2026-59310) under active APT exploitation across 47 countries, patch and hunt for persistence now.
🤖 Near-autonomous AI cyberattack observed against Taiwan's government, adapting mid-operation without human direction.
💀 Lazarus Group's Operation Dream Job exploits Windo…

threatnoir.com/weekly/2026-w33

#infosec #cybersecurity #threatintel

🤖 AI generated summary

##

CVE-2026-19771
(7.2 HIGH)

EPSS: 2.79%

updated 2026-08-14T03:31:33

2 posts

A vulnerability was identified in Baicells EG3661M BaiCE_BQ6_2.0.5.3_NA. This impacts an unknown function of the file /cgi-bin/luci of the component LuCI Web Interface. Such manipulation of the argument MaxHops/Timeout/Size leads to os command injection. The attack may be launched remotely. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure bu

secdb at 2026-08-17T00:02:24.594Z ##

📈 CVE Published in last 7 days (2026-08-10 - 2026-08-10)
See more at secdb.nttzen.cloud/dashboard

Total CVEs:

Severity:
- Critical: 326
- High: 1309
- Medium: 1008
- Low: 130
- None: 1222

Status:
- : 39
- Analyzed: 419
- Awaiting Analysis: 226
- Deferred: 197
- Modified: 2
- Received: 2827
- Rejected: 102
- Undergoing Analysis: 183

CISA KEVs:
- CISA-2026:0811 (secdb.nttzen.cloud/security-ad)

Top CNAs:
- kernel.org: 1221
- Microsoft Corporation: 405
- VulnCheck: 343
- GitHub, Inc.: 326
- IBM Corporation: 160
- WPScan: 124
- Patchstack: 111
- VulDB: 104
- Red Hat, Inc.: 101
- Wordfence: 93

Top Affected Products:
- UNKNOWN: 3370
- Microsoft Windows Server 2025: 178
- Microsoft Windows 11 24h2: 171
- Microsoft Windows 11 26h1: 171
- Microsoft Windows 11 25h2: 171
- Microsoft Windows Server 2022: 158
- Microsoft Windows Server 2019: 146
- Microsoft Windows 10 1809: 146
- Microsoft Windows 11 23h2: 146
- Microsoft Windows 10 22h2: 136

Top EPSS Score:
- CVE-2026-72898 - 10.40 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-61358 - 3.68 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-66804 - 3.42 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62696 - 3.18 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19771 - 2.79 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-73296 - 2.61 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-65775 - 2.45 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62832 - 2.37 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19747 - 2.36 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19681 - 2.24 % (secdb.nttzen.cloud/cve/detail/)

##

secdb@infosec.exchange at 2026-08-17T00:02:24.000Z ##

📈 CVE Published in last 7 days (2026-08-10 - 2026-08-10)
See more at secdb.nttzen.cloud/dashboard

Total CVEs:

Severity:
- Critical: 326
- High: 1309
- Medium: 1008
- Low: 130
- None: 1222

Status:
- : 39
- Analyzed: 419
- Awaiting Analysis: 226
- Deferred: 197
- Modified: 2
- Received: 2827
- Rejected: 102
- Undergoing Analysis: 183

CISA KEVs:
- CISA-2026:0811 (secdb.nttzen.cloud/security-ad)

Top CNAs:
- kernel.org: 1221
- Microsoft Corporation: 405
- VulnCheck: 343
- GitHub, Inc.: 326
- IBM Corporation: 160
- WPScan: 124
- Patchstack: 111
- VulDB: 104
- Red Hat, Inc.: 101
- Wordfence: 93

Top Affected Products:
- UNKNOWN: 3370
- Microsoft Windows Server 2025: 178
- Microsoft Windows 11 24h2: 171
- Microsoft Windows 11 26h1: 171
- Microsoft Windows 11 25h2: 171
- Microsoft Windows Server 2022: 158
- Microsoft Windows Server 2019: 146
- Microsoft Windows 10 1809: 146
- Microsoft Windows 11 23h2: 146
- Microsoft Windows 10 22h2: 136

Top EPSS Score:
- CVE-2026-72898 - 10.40 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-61358 - 3.68 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-66804 - 3.42 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62696 - 3.18 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19771 - 2.79 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-73296 - 2.61 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-65775 - 2.45 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62832 - 2.37 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19747 - 2.36 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19681 - 2.24 % (secdb.nttzen.cloud/cve/detail/)

#ZEN #SecDB #InfoSec

##

CVE-2026-19747
(9.8 CRITICAL)

EPSS: 2.36%

updated 2026-08-13T21:36:14

2 posts

A weakness has been identified in Tenda CH7, CH7G, CH10, CP3, CP3 Pro, CP7, TC3B14C, TC3B15C, TC3T14C and TC3T15C up to 20260625. This impacts the function CAte::HandleCmd of the file Kylin of the component ATE Module. This manipulation causes command injection. The attack is possible to be carried out remotely.

secdb at 2026-08-17T00:02:24.594Z ##

📈 CVE Published in last 7 days (2026-08-10 - 2026-08-10)
See more at secdb.nttzen.cloud/dashboard

Total CVEs:

Severity:
- Critical: 326
- High: 1309
- Medium: 1008
- Low: 130
- None: 1222

Status:
- : 39
- Analyzed: 419
- Awaiting Analysis: 226
- Deferred: 197
- Modified: 2
- Received: 2827
- Rejected: 102
- Undergoing Analysis: 183

CISA KEVs:
- CISA-2026:0811 (secdb.nttzen.cloud/security-ad)

Top CNAs:
- kernel.org: 1221
- Microsoft Corporation: 405
- VulnCheck: 343
- GitHub, Inc.: 326
- IBM Corporation: 160
- WPScan: 124
- Patchstack: 111
- VulDB: 104
- Red Hat, Inc.: 101
- Wordfence: 93

Top Affected Products:
- UNKNOWN: 3370
- Microsoft Windows Server 2025: 178
- Microsoft Windows 11 24h2: 171
- Microsoft Windows 11 26h1: 171
- Microsoft Windows 11 25h2: 171
- Microsoft Windows Server 2022: 158
- Microsoft Windows Server 2019: 146
- Microsoft Windows 10 1809: 146
- Microsoft Windows 11 23h2: 146
- Microsoft Windows 10 22h2: 136

Top EPSS Score:
- CVE-2026-72898 - 10.40 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-61358 - 3.68 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-66804 - 3.42 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62696 - 3.18 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19771 - 2.79 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-73296 - 2.61 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-65775 - 2.45 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62832 - 2.37 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19747 - 2.36 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19681 - 2.24 % (secdb.nttzen.cloud/cve/detail/)

##

secdb@infosec.exchange at 2026-08-17T00:02:24.000Z ##

📈 CVE Published in last 7 days (2026-08-10 - 2026-08-10)
See more at secdb.nttzen.cloud/dashboard

Total CVEs:

Severity:
- Critical: 326
- High: 1309
- Medium: 1008
- Low: 130
- None: 1222

Status:
- : 39
- Analyzed: 419
- Awaiting Analysis: 226
- Deferred: 197
- Modified: 2
- Received: 2827
- Rejected: 102
- Undergoing Analysis: 183

CISA KEVs:
- CISA-2026:0811 (secdb.nttzen.cloud/security-ad)

Top CNAs:
- kernel.org: 1221
- Microsoft Corporation: 405
- VulnCheck: 343
- GitHub, Inc.: 326
- IBM Corporation: 160
- WPScan: 124
- Patchstack: 111
- VulDB: 104
- Red Hat, Inc.: 101
- Wordfence: 93

Top Affected Products:
- UNKNOWN: 3370
- Microsoft Windows Server 2025: 178
- Microsoft Windows 11 24h2: 171
- Microsoft Windows 11 26h1: 171
- Microsoft Windows 11 25h2: 171
- Microsoft Windows Server 2022: 158
- Microsoft Windows Server 2019: 146
- Microsoft Windows 10 1809: 146
- Microsoft Windows 11 23h2: 146
- Microsoft Windows 10 22h2: 136

Top EPSS Score:
- CVE-2026-72898 - 10.40 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-61358 - 3.68 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-66804 - 3.42 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62696 - 3.18 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19771 - 2.79 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-73296 - 2.61 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-65775 - 2.45 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62832 - 2.37 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19747 - 2.36 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19681 - 2.24 % (secdb.nttzen.cloud/cve/detail/)

#ZEN #SecDB #InfoSec

##

CVE-2026-55040
(9.1 CRITICAL)

EPSS: 3.97%

updated 2026-08-13T15:34:13

1 posts

Weak authentication in Microsoft Office SharePoint allows an unauthorized attacker to bypass a security feature over a network.

2 repos

https://github.com/sfewer-r7/CVE-2026-55040

https://github.com/l0ggg/CVE-2026-55040

tierrasapiens@mastodon.social at 2026-08-17T23:49:15.000Z ##

🖲️ #Noticia de #CiberSeguridad #CiberGuerra #CiberAtaque #CiberNoticia
⚫ Explotan vulnerabilidad en SharePoint
🔗 blog.segu-info.com.ar/2026/08/

Los ciberdelincuentes han comenzado a explotar una vulnerabilidad de Microsoft
SharePoint recientemente descubierta tras la publicación de una prueba de
concepto (PoC).

La vulnerabilidad en cuestión es
CVE-2026-55040
(CVSS: 9.1), que se refiere a una omisión de una función de seguridad

##

CVE-2026-73268
(9.9 CRITICAL)

EPSS: 0.37%

updated 2026-08-12T21:31:50

2 posts

A flaw was found in the cluster-curator-controller component of multicluster engine (MCE). A tenant with create or update permissions on ClusterCurator resources can inject an arbitrary Job specification. This is possible because the CreateJob() function does not validate user-controlled input when unmarshaling the spec.install.overrideJob raw extension. Successful exploitation allows the injected

DailyCyberSecurity at 2026-08-17T13:16:41.602Z ##

Red Hat fixes RHACM remote code execution flaws, including CVE-2026-72526 and CVE-2026-73268, both CVSS 9.9. See patch and mitigation steps.

securityonline.info/rhacm-remo

##

DailyCyberSecurity@infosec.exchange at 2026-08-17T13:16:41.000Z ##

Red Hat fixes RHACM remote code execution flaws, including CVE-2026-72526 and CVE-2026-73268, both CVSS 9.9. See patch and mitigation steps.

#RHACM #RedHat #Kubernetes #ArgoCD #RCE #CVE #CyberSecurity #InfoSec

securityonline.info/rhacm-remo

##

CVE-2026-50656
(7.8 HIGH)

EPSS: 10.75%

updated 2026-08-12T18:31:00

1 posts

Microsoft is aware of an elevation of privilege in the Microsoft Malware Protection Engine in Microsoft Defender publicly referred to as &quot;RoguePlanet &quot;. We are working to provide a high quality security update that addresses this vulnerability. We will provide information in this CVE when the update is available.

4 repos

https://github.com/g0thamRabb1t/CVE-2026-50656-rogueplanet-validation

https://github.com/0xBlackash/CVE-2026-50656

https://github.com/HORKimhab/CVE-2026-50656

https://github.com/eh-amish/Windows-Defender-Security-Auditor-CVE-2026-50656-

netsecio@mastodon.social at 2026-08-17T15:20:30.000Z ##

📰 New 'ShieldBreak' Exploit Bypasses Microsoft Defender Patch

A new zero-day exploit, 'ShieldBreak,' bypasses Microsoft's patch for the 'RoguePlanet' Defender flaw (CVE-2026-50656). The PoC allows SYSTEM-level access on patched Windows systems. No fix is currently available. #ZeroDay #MicrosoftDefender #CyberSe...

🔗 cyber.netsecops.io/articles/sh

##

CVE-2026-72526
(9.9 CRITICAL)

EPSS: 0.30%

updated 2026-08-12T03:31:18

2 posts

A flaw was found in the multicloud-integrations component. The Application propagation controller processes the `ocm-managed-cluster` annotation from an Application Custom Resource (CR) without proper validation. A tenant with permissions to create Applications on the hub cluster can exploit this to target arbitrary managed clusters. This can force ArgoCD on the spoke clusters to synchronize attac

DailyCyberSecurity at 2026-08-17T13:16:41.602Z ##

Red Hat fixes RHACM remote code execution flaws, including CVE-2026-72526 and CVE-2026-73268, both CVSS 9.9. See patch and mitigation steps.

securityonline.info/rhacm-remo

##

DailyCyberSecurity@infosec.exchange at 2026-08-17T13:16:41.000Z ##

Red Hat fixes RHACM remote code execution flaws, including CVE-2026-72526 and CVE-2026-73268, both CVSS 9.9. See patch and mitigation steps.

#RHACM #RedHat #Kubernetes #ArgoCD #RCE #CVE #CyberSecurity #InfoSec

securityonline.info/rhacm-remo

##

CVE-2026-68820
(7.0 None)

EPSS: 0.33%

updated 2026-08-11T21:33:01

4 posts

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

2 repos

https://github.com/HORKimhab/CVE-2026-68820

https://github.com/ubitquity/Windows-WinSock-UAF-Mitigation

youranonnewsirc@nerdculture.de at 2026-08-17T22:26:25.000Z ##

Here's a summary of the latest geopolitical, technology, and cybersecurity news from the last 24-48 hours:

Cybersecurity: Apple patched a critical macOS Screen Sharing vulnerability (CVE-2026-65400) and issued mercenary spyware alerts across 110 countries. Microsoft's August Patch Tuesday fixed 421 vulnerabilities, including an actively exploited Windows zero-day (CVE-2026-68820). France reported a Bloctel data leak exposing three million phone numbers and a DGFiP tax data leak.

Technology: Massive tech layoffs continue in 2026, surpassing last year's totals, as companies shift to "AI-first" strategies; AI "inference" spending now exceeds "training". Elon Musk's SpaceX committed exclusively to NVIDIA GPUs, forming a major AI partnership.

Geopolitics: US-Iran tensions remain high over the Strait of Hormuz, with new threats and defense contracts emerging. Ukraine faces critical Patriot interceptor shortages, threatening its winter air defense.

#Cybersecurity #TechNews #Geopolitics

##

youranonnewsirc@nerdculture.de at 2026-08-17T04:26:24.000Z ##

Geopolitical tensions rise with a Middle East conflict stalemate and Israeli retaliatory strikes against Hezbollah in Lebanon. Ukraine's air defense faces threats amid Patriot interceptor depletion and drone attacks on Moscow.

In tech, NVIDIA and SpaceX have forged a significant AI partnership, with massive infrastructure spending projected. Cybersecurity sees the US allowing vetted private companies to conduct offensive cyber operations. Microsoft patched a critical, exploited Windows zero-day (CVE-2026-68820), and Cl0p ransomware leveraged a PTC Windchill flaw impacting nearly 50 firms.

#AnonNews_irc #Cybersecurity #News

##

youranonnewsirc@nerdculture.de at 2026-08-17T22:26:25.000Z ##

Here's a summary of the latest geopolitical, technology, and cybersecurity news from the last 24-48 hours:

Cybersecurity: Apple patched a critical macOS Screen Sharing vulnerability (CVE-2026-65400) and issued mercenary spyware alerts across 110 countries. Microsoft's August Patch Tuesday fixed 421 vulnerabilities, including an actively exploited Windows zero-day (CVE-2026-68820). France reported a Bloctel data leak exposing three million phone numbers and a DGFiP tax data leak.

Technology: Massive tech layoffs continue in 2026, surpassing last year's totals, as companies shift to "AI-first" strategies; AI "inference" spending now exceeds "training". Elon Musk's SpaceX committed exclusively to NVIDIA GPUs, forming a major AI partnership.

Geopolitics: US-Iran tensions remain high over the Strait of Hormuz, with new threats and defense contracts emerging. Ukraine faces critical Patriot interceptor shortages, threatening its winter air defense.

#Cybersecurity #TechNews #Geopolitics

##

youranonnewsirc@nerdculture.de at 2026-08-17T04:26:24.000Z ##

Geopolitical tensions rise with a Middle East conflict stalemate and Israeli retaliatory strikes against Hezbollah in Lebanon. Ukraine's air defense faces threats amid Patriot interceptor depletion and drone attacks on Moscow.

In tech, NVIDIA and SpaceX have forged a significant AI partnership, with massive infrastructure spending projected. Cybersecurity sees the US allowing vetted private companies to conduct offensive cyber operations. Microsoft patched a critical, exploited Windows zero-day (CVE-2026-68820), and Cl0p ransomware leveraged a PTC Windchill flaw impacting nearly 50 firms.

#AnonNews_irc #Cybersecurity #News

##

CVE-2026-66804
(7.8 HIGH)

EPSS: 3.42%

updated 2026-08-11T18:31:49

4 posts

Improper access control in Windows Cross Device Service allows an authorized attacker to elevate privileges locally.

2 repos

https://github.com/DavidCarliez/CVE-2026-66804-CrossDevice-LPE

https://github.com/Rat5ak/CVE-2026-66804-CrossDevice-Service-EoP

DailyCyberSecurity at 2026-08-18T02:41:14.528Z ##

A public PoC for CVE-2026-66804 escalates a standard Windows user to SYSTEM through the Cross Device virtual camera COM service.

securityonline.info/cve-2026-6

##

secdb at 2026-08-17T00:02:24.594Z ##

📈 CVE Published in last 7 days (2026-08-10 - 2026-08-10)
See more at secdb.nttzen.cloud/dashboard

Total CVEs:

Severity:
- Critical: 326
- High: 1309
- Medium: 1008
- Low: 130
- None: 1222

Status:
- : 39
- Analyzed: 419
- Awaiting Analysis: 226
- Deferred: 197
- Modified: 2
- Received: 2827
- Rejected: 102
- Undergoing Analysis: 183

CISA KEVs:
- CISA-2026:0811 (secdb.nttzen.cloud/security-ad)

Top CNAs:
- kernel.org: 1221
- Microsoft Corporation: 405
- VulnCheck: 343
- GitHub, Inc.: 326
- IBM Corporation: 160
- WPScan: 124
- Patchstack: 111
- VulDB: 104
- Red Hat, Inc.: 101
- Wordfence: 93

Top Affected Products:
- UNKNOWN: 3370
- Microsoft Windows Server 2025: 178
- Microsoft Windows 11 24h2: 171
- Microsoft Windows 11 26h1: 171
- Microsoft Windows 11 25h2: 171
- Microsoft Windows Server 2022: 158
- Microsoft Windows Server 2019: 146
- Microsoft Windows 10 1809: 146
- Microsoft Windows 11 23h2: 146
- Microsoft Windows 10 22h2: 136

Top EPSS Score:
- CVE-2026-72898 - 10.40 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-61358 - 3.68 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-66804 - 3.42 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62696 - 3.18 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19771 - 2.79 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-73296 - 2.61 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-65775 - 2.45 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62832 - 2.37 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19747 - 2.36 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19681 - 2.24 % (secdb.nttzen.cloud/cve/detail/)

##

DailyCyberSecurity@infosec.exchange at 2026-08-18T02:41:14.000Z ##

A public PoC for CVE-2026-66804 escalates a standard Windows user to SYSTEM through the Cross Device virtual camera COM service.

#CVE202666804 #PrivilegeEscalation #Windows11 #SYSTEMprivileges #EoP #PoCExploit

securityonline.info/cve-2026-6

##

secdb@infosec.exchange at 2026-08-17T00:02:24.000Z ##

📈 CVE Published in last 7 days (2026-08-10 - 2026-08-10)
See more at secdb.nttzen.cloud/dashboard

Total CVEs:

Severity:
- Critical: 326
- High: 1309
- Medium: 1008
- Low: 130
- None: 1222

Status:
- : 39
- Analyzed: 419
- Awaiting Analysis: 226
- Deferred: 197
- Modified: 2
- Received: 2827
- Rejected: 102
- Undergoing Analysis: 183

CISA KEVs:
- CISA-2026:0811 (secdb.nttzen.cloud/security-ad)

Top CNAs:
- kernel.org: 1221
- Microsoft Corporation: 405
- VulnCheck: 343
- GitHub, Inc.: 326
- IBM Corporation: 160
- WPScan: 124
- Patchstack: 111
- VulDB: 104
- Red Hat, Inc.: 101
- Wordfence: 93

Top Affected Products:
- UNKNOWN: 3370
- Microsoft Windows Server 2025: 178
- Microsoft Windows 11 24h2: 171
- Microsoft Windows 11 26h1: 171
- Microsoft Windows 11 25h2: 171
- Microsoft Windows Server 2022: 158
- Microsoft Windows Server 2019: 146
- Microsoft Windows 10 1809: 146
- Microsoft Windows 11 23h2: 146
- Microsoft Windows 10 22h2: 136

Top EPSS Score:
- CVE-2026-72898 - 10.40 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-61358 - 3.68 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-66804 - 3.42 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62696 - 3.18 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19771 - 2.79 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-73296 - 2.61 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-65775 - 2.45 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62832 - 2.37 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19747 - 2.36 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19681 - 2.24 % (secdb.nttzen.cloud/cve/detail/)

#ZEN #SecDB #InfoSec

##

CVE-2026-62832
(7.8 HIGH)

EPSS: 2.37%

updated 2026-08-11T18:31:33

2 posts

Improper link resolution before file access ('link following') in Windows User Profile Service allows an authorized attacker to elevate privileges locally.

secdb at 2026-08-17T00:02:24.594Z ##

📈 CVE Published in last 7 days (2026-08-10 - 2026-08-10)
See more at secdb.nttzen.cloud/dashboard

Total CVEs:

Severity:
- Critical: 326
- High: 1309
- Medium: 1008
- Low: 130
- None: 1222

Status:
- : 39
- Analyzed: 419
- Awaiting Analysis: 226
- Deferred: 197
- Modified: 2
- Received: 2827
- Rejected: 102
- Undergoing Analysis: 183

CISA KEVs:
- CISA-2026:0811 (secdb.nttzen.cloud/security-ad)

Top CNAs:
- kernel.org: 1221
- Microsoft Corporation: 405
- VulnCheck: 343
- GitHub, Inc.: 326
- IBM Corporation: 160
- WPScan: 124
- Patchstack: 111
- VulDB: 104
- Red Hat, Inc.: 101
- Wordfence: 93

Top Affected Products:
- UNKNOWN: 3370
- Microsoft Windows Server 2025: 178
- Microsoft Windows 11 24h2: 171
- Microsoft Windows 11 26h1: 171
- Microsoft Windows 11 25h2: 171
- Microsoft Windows Server 2022: 158
- Microsoft Windows Server 2019: 146
- Microsoft Windows 10 1809: 146
- Microsoft Windows 11 23h2: 146
- Microsoft Windows 10 22h2: 136

Top EPSS Score:
- CVE-2026-72898 - 10.40 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-61358 - 3.68 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-66804 - 3.42 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62696 - 3.18 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19771 - 2.79 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-73296 - 2.61 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-65775 - 2.45 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62832 - 2.37 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19747 - 2.36 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19681 - 2.24 % (secdb.nttzen.cloud/cve/detail/)

##

secdb@infosec.exchange at 2026-08-17T00:02:24.000Z ##

📈 CVE Published in last 7 days (2026-08-10 - 2026-08-10)
See more at secdb.nttzen.cloud/dashboard

Total CVEs:

Severity:
- Critical: 326
- High: 1309
- Medium: 1008
- Low: 130
- None: 1222

Status:
- : 39
- Analyzed: 419
- Awaiting Analysis: 226
- Deferred: 197
- Modified: 2
- Received: 2827
- Rejected: 102
- Undergoing Analysis: 183

CISA KEVs:
- CISA-2026:0811 (secdb.nttzen.cloud/security-ad)

Top CNAs:
- kernel.org: 1221
- Microsoft Corporation: 405
- VulnCheck: 343
- GitHub, Inc.: 326
- IBM Corporation: 160
- WPScan: 124
- Patchstack: 111
- VulDB: 104
- Red Hat, Inc.: 101
- Wordfence: 93

Top Affected Products:
- UNKNOWN: 3370
- Microsoft Windows Server 2025: 178
- Microsoft Windows 11 24h2: 171
- Microsoft Windows 11 26h1: 171
- Microsoft Windows 11 25h2: 171
- Microsoft Windows Server 2022: 158
- Microsoft Windows Server 2019: 146
- Microsoft Windows 10 1809: 146
- Microsoft Windows 11 23h2: 146
- Microsoft Windows 10 22h2: 136

Top EPSS Score:
- CVE-2026-72898 - 10.40 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-61358 - 3.68 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-66804 - 3.42 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62696 - 3.18 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19771 - 2.79 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-73296 - 2.61 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-65775 - 2.45 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62832 - 2.37 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19747 - 2.36 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19681 - 2.24 % (secdb.nttzen.cloud/cve/detail/)

#ZEN #SecDB #InfoSec

##

CVE-2026-6837
(7.2 HIGH)

EPSS: 0.95%

updated 2026-08-04T03:31:16

2 posts

A post-authentication command injection vulnerability in the "export-cgi" CGI program in Zyxel WAX650S firmware versions through 7.10(ABRM.4)C0 could allow an authenticated attacker with administrator privileges to execute OS commands on an affected device.

1 repos

https://github.com/minanagehsalalma/CVE-2026-6837-zyxel-export-cgi-command-injection

_r_netsec at 2026-08-16T18:58:05.526Z ##

CVE-2026-6837: Command Injection in Zyxel export-cgi PKCS#12 Export Handling minanagehsalalma.github.io/CVE

##

_r_netsec@infosec.exchange at 2026-08-16T18:58:05.000Z ##

CVE-2026-6837: Command Injection in Zyxel export-cgi PKCS#12 Export Handling minanagehsalalma.github.io/CVE

##

CVE-2026-43774
(5.5 MEDIUM)

EPSS: 0.13%

updated 2026-07-29T19:32:51.167000

2 posts

An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app may be able to access sensitive user data.

decio at 2026-08-18T08:08:07.688Z ##

Petit insight très sympa sur la recherche de vulnérabilité macOS

Le chercheur Csaba Fitzl revient sur une jolie vuln dans Spotlight (Spotlight PostScript plugin), une sorte de petite chimère qui traînait depuis un moment dans sa TODO list : quelques fonctions décompilées du parser PostScript soumises à Claude, une piste identifiée, puis validation humaine.

Résultat : CVE-2026-43774, un simple fichier .ps pouvant faire fuiter des morceaux de mémoire de mdworker via les métadonnées Spotlight.

Au-delà du bug, le billet montre très directement comment les IA s’intègrent naturellement aux workflows de recherche de vulnérabilités, en partant de l’expertise humaine : une intuition et une approche, puis fuzzing dopé au LLM, reverse, détection de patterns suspects…

...et pourquoi les éditeurs comme la pomme doivent courir toujours plus vite derrière les patchs.

"How a single PostScript file leaks your Mac's memory"
👇
iru.com/blog/how-a-single-post

##

decio@infosec.exchange at 2026-08-18T08:08:07.000Z ##

Petit insight très sympa sur la recherche de vulnérabilité macOS

Le chercheur Csaba Fitzl revient sur une jolie vuln dans Spotlight (Spotlight PostScript plugin), une sorte de petite chimère qui traînait depuis un moment dans sa TODO list : quelques fonctions décompilées du parser PostScript soumises à Claude, une piste identifiée, puis validation humaine.

Résultat : CVE-2026-43774, un simple fichier .ps pouvant faire fuiter des morceaux de mémoire de mdworker via les métadonnées Spotlight.

Au-delà du bug, le billet montre très directement comment les IA s’intègrent naturellement aux workflows de recherche de vulnérabilités, en partant de l’expertise humaine : une intuition et une approche, puis fuzzing dopé au LLM, reverse, détection de patterns suspects…

...et pourquoi les éditeurs comme la pomme doivent courir toujours plus vite derrière les patchs.

"How a single PostScript file leaks your Mac's memory"
👇
iru.com/blog/how-a-single-post

##

sayzard@mastodon.sayzard.org at 2026-08-17T22:42:39.000Z ##

Certighost and the Privilege Hiding in Your Certificate Authority

Certighost(CVE-2026-54121)는 AD CS Enterprise CA의 chase 조회 검증 결함을 악용해 일반 도메인 사용자가 공격자 제어 엔드포인트에서 위조한 DC 식별 정보를 CA에 제공하고, 도메인 컨트롤러용 인증서를 발급받을 수 있는 권한 상승 취약점입니다. 발급된 인증서로 PKINIT 기반 Kerberos TGT를 얻은 뒤 DCSync를 수행하면 krbtgt 해시 탈취와 도메인 전체 장악으로 이어질 수 있습니다. Microsoft는 2...

bleepingcomputer.com/news/secu

##

oversecurity@mastodon.social at 2026-08-17T15:00:50.000Z ##

Certighost and the Privilege Hiding in Your Certificate Authority

CVE-2026-54121 lets a standard domain user turn your Enterprise CA into a Domain Controller. The patch is the easy part. The lesson is standing...

🔗️ [Bleepingcomputer] link.is.it/wWmVkm

##

Analyst207@mastodon.social at 2026-08-17T14:25:42.000Z ##

Certighost Exposes Hidden Privilege Risks in Certificate Authorities

A single misstep in a Certificate Authority can have devastating consequences, as seen in CVE-2026-54121, aka Certighost, which allows a low-privileged domain user to escalate to full domain compromise. This shocking vulnerability exploits a little-known "chase" functionality in Active Directory Certificate…

osintsights.com/certighost-exp

#Cve202654121 #Certighost #CertificateAuthorities #ActiveDirectory #PrivilegeEscalation

##

undercodenews@mastodon.social at 2026-08-17T14:18:14.000Z ##

Certighost CVE-2026-54121: The Active Directory Certificate Flaw That Can Turn a Low-Privilege User Into a Domain Controller

Introduction: When the System That Creates Trust Becomes the Attack Path Active Directory environments are built around trust. Users trust domain controllers, applications trust authentication services, and machines trust certificates issued by an organization's internal Certification Authority. That architecture is powerful precisely because so…

undercodenews.com/certighost-c

##

oversecurity@mastodon.social at 2026-08-17T15:00:50.000Z ##

Certighost and the Privilege Hiding in Your Certificate Authority

CVE-2026-54121 lets a standard domain user turn your Enterprise CA into a Domain Controller. The patch is the easy part. The lesson is standing...

🔗️ [Bleepingcomputer] link.is.it/wWmVkm

##

CVE-2026-8452
(9.8 CRITICAL)

EPSS: 0.49%

updated 2026-07-01T18:32:28

8 posts

Memory overflow vulnerability NetScaler ADC and NetScaler Gateway leading to unpredictable or erroneous behavior and Denial of Service if the appliance is configured as a Gateway (SSL VPN, ICA Proxy, CVPN, RDP Proxy) or AAA virtual server

2 repos

https://github.com/watchtowrlabs/watchTowr-vs-Citrix-Netscaler-PreAuth-RCE-CVE-2026-8452

https://github.com/derekpreston81/CVE_ADC_IOC_2026

GossiTheDog@cyberplace.social at 2026-08-17T21:48:39.000Z ##

CVE-2026-8452 in Netscaler is under active pray and spray exploitation - somebody popped my honeypot with it today. Three webshells, x.php, y.php and z.php

I don't think this one will be super impactful in terms of breach numbers as most orgs don't have SAML IDP enabled - you can check with the paths I posted above.

##

DarkWebInformer at 2026-08-17T16:32:18.699Z ##

‼️ Detection Artifact Generator for Citrix NetScaler CVE-2026-8452

GitHub: github.com/watchtowrlabs/watch

##

darrenpmeyer at 2026-08-17T15:21:32.257Z ##

Oof; if you're a NetScaler shop you probably want to be very sure you update for this one: labs.watchtowr.com/youre-back-

Pre-auth RCE is... yikes. Relatively low EPSS for now, but I wouldn't trust that with the CVSSv4 vectors in play: CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:L/VA:H/SC:L/SI:L/SA:L

##

DailyCyberSecurity at 2026-08-17T03:27:53.985Z ##

PoC exploit code for CVE-2026-8452, a Citrix NetScaler pre-auth RCE, is now public. The SAML heap overflow grants root. Patch now.

securityonline.info/citrix-net

##

GossiTheDog@cyberplace.social at 2026-08-17T21:48:39.000Z ##

CVE-2026-8452 in Netscaler is under active pray and spray exploitation - somebody popped my honeypot with it today. Three webshells, x.php, y.php and z.php

I don't think this one will be super impactful in terms of breach numbers as most orgs don't have SAML IDP enabled - you can check with the paths I posted above.

##

DarkWebInformer@infosec.exchange at 2026-08-17T16:32:18.000Z ##

‼️ Detection Artifact Generator for Citrix NetScaler CVE-2026-8452

GitHub: github.com/watchtowrlabs/watch

##

darrenpmeyer@infosec.exchange at 2026-08-17T15:21:32.000Z ##

Oof; if you're a NetScaler shop you probably want to be very sure you update for this one: labs.watchtowr.com/youre-back-

Pre-auth RCE is... yikes. Relatively low EPSS for now, but I wouldn't trust that with the CVSSv4 vectors in play: CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:L/VA:H/SC:L/SI:L/SA:L

##

DailyCyberSecurity@infosec.exchange at 2026-08-17T03:27:53.000Z ##

PoC exploit code for CVE-2026-8452, a Citrix NetScaler pre-auth RCE, is now public. The SAML heap overflow grants root. Patch now.

#Citrix #NetScaler #CVE #PreAuthRCE #SAML #CyberSecurity #InfoSec #PatchNow

securityonline.info/citrix-net

##

CVE-2026-12569
(9.8 CRITICAL)

EPSS: 30.20%

updated 2026-06-26T15:33:15

2 posts

A critical remote code execution (RCE) vulnerability has been reported in PTC Windchill PDMlink and PTC FlexPLM. The vulnerability may be exploited through the deserialization of untrusted data.  * This advisory also applies to all CPS versions * The identified vulnerability also impacts Windchill and FlexPLM releases prior to 11.0 M030

1 repos

https://github.com/west-wind/Threat-Hunting-With-Splunk

security_crawler_carl at 2026-08-17T14:26:16.700Z ##

🏆 New Achievement! Clop Sends Its Regards to the Living!

Attention, all undead assets and legacy infrastructure currently haunting your network closets: please report to Compliance for re-onboarding. Tech giants General Electric and Philips have confirmed they are investigating claims by the Clop ransomware group that data was stolen, with CVE-2026-12569 tagged in connection with the incident. (1/3)

##

security_crawler_carl@infosec.exchange at 2026-08-17T14:26:16.000Z ##

🏆 New Achievement! Clop Sends Its Regards to the Living!

Attention, all undead assets and legacy infrastructure currently haunting your network closets: please report to Compliance for re-onboarding. Tech giants General Electric and Philips have confirmed they are investigating claims by the Clop ransomware group that data was stolen, with CVE-2026-12569 tagged in connection with the incident. (1/3)

##

CVE-2026-42228
(6.5 MEDIUM)

EPSS: 0.38%

updated 2026-06-17T10:47:32.723000

1 posts

n8n is an open source workflow automation platform. Prior to versions 1.123.32, 2.17.4, and 2.18.1, the /chat WebSocket endpoint used by the Chat Trigger node's Hosted Chat feature did not verify that an incoming connection was authorized to interact with the target execution. An unauthenticated remote attacker who could identify a valid execution ID for a workflow in a waiting state could attach

1 repos

https://github.com/rudSarkar/CVE-2026-42228

sayzard@mastodon.sayzard.org at 2026-08-16T17:39:34.000Z ##

Breaking AI Orchestration: Hijacking N8n HITL Chat Sessions

n8n의 HITL Chat 노드에서 인증 없이 활성 WebSocket 채팅 세션을 탐색·도청·메시지 주입할 수 있는 취약점이 발견됐다. 순차적인 executionId와 공개된 `/form-waiting` 상태 오라클, 클라이언트가 임의 지정 가능한 sessionId가 결합돼 실행 중인 에이전트 대화를 탈취할 수 있으며, 에이전트가 반환하는 도구 결과·검색 컨텍스트 등의 노출 및 대화 조작으로 이어질 수 있다. 이 이슈는 CVE-2026-42228(CVSS 6.3, Moderate)로 수정됐으며, n...

zerolabs.rubrik.com/blog/break

##

CVE-2026-32193
(8.8 HIGH)

EPSS: 0.34%

updated 2026-06-09T18:30:48

2 posts

Improper limitation of a pathname to a restricted directory ('path traversal') in Microsoft Azure Kubernetes Service allows an authorized attacker to execute code locally.

_r_netsec at 2026-08-17T12:28:04.746Z ##

From AKS node root vulnerability to Microsoft Copilot hijack (CVE-2026-32193) zerolabs.rubrik.com/blog/break

##

_r_netsec@infosec.exchange at 2026-08-17T12:28:04.000Z ##

From AKS node root vulnerability to Microsoft Copilot hijack (CVE-2026-32193) zerolabs.rubrik.com/blog/break

##

CVE-2026-44012(CVSS UNKNOWN)

EPSS: 0.34%

updated 2026-05-13T16:29:55

1 posts

## Summary `AssetsController::actionShowInFolder()` fetches an asset by ID and returns its filename and complete folder hierarchy (including volume handle, volume UID, folder names, folder UIDs, and folder URI paths) without checking whether the requesting user has `viewAssets` or `viewPeerAssets` permission on the asset’s volume. Any authenticated CP user — even one with zero volume permissions

cvedatabase@techhub.social at 2026-08-17T10:30:03.000Z ##

🛡️ Weekly CVE Roundup is live! We're diving deep into the critical RCE found in Fast-API-Router (CVE-2026-44012) and discussing the broader trend of API vulnerabilities. Protect your supply chain and patch today. Full details: cvedatabase.com/blog/weekly-cv #InfoSec #CyberSecurity #CVE #APISecurity #FastAPIRouter #PatchTuesday

##

CVE-2026-33696
(9.9 CRITICAL)

EPSS: 0.77%

updated 2026-03-26T16:41:02

1 posts

## Impact An authenticated user with permission to create or modify workflows could exploit a prototype pollution vulnerability in the GSuiteAdmin node. By supplying a crafted parameter as part of node configuration, an attacker could write attacker-controlled values onto `Object.prototype`. An attacker could use this prototype pollution to achieve remote code execution on the n8n instance. ## Pa

CVE-2026-3286
(6.3 MEDIUM)

EPSS: 0.31%

updated 2026-02-27T06:31:39

2 posts

A vulnerability was identified in itwanger paicoding 1.0.0/1.0.1/1.0.2/1.0.3. The impacted element is the function Save of the file paicoding-web/src/main/java/com/github/paicoding/forum/web/common/image/rest/ImageRestController.java of the component Image Save Endpoint. Such manipulation of the argument img leads to server-side request forgery. The attack may be launched remotely. The exploit is

offseq at 2026-08-18T01:30:24.798Z ##

SQL Injection flaw (CVE-2026-67854) in Qcms v6.0.6 rated CRITICAL: remote code execution risk. No official patch. Restrict access & monitor for injection attempts. Details: radar.offseq.com/threat/sql-in

##

offseq@infosec.exchange at 2026-08-18T01:30:24.000Z ##

SQL Injection flaw (CVE-2026-67854) in Qcms v6.0.6 rated CRITICAL: remote code execution risk. No official patch. Restrict access & monitor for injection attempts. Details: radar.offseq.com/threat/sql-in #OffSeq #SQLInjection #Vulnerability #Qcms #InfoSec

##

CVE-2024-39302
(0 None)

EPSS: 0.45%

2 posts

N/A

DailyCyberSecurity at 2026-08-18T00:10:43.964Z ##

A CVSS 10.0 unauthenticated arbitrary file read flaw in BigBlueButton path traversal exposes servers. Prevent attacks like CVE-2024-39302 and update now.

securityonline.info/unauthenti

##

DailyCyberSecurity@infosec.exchange at 2026-08-18T00:10:43.000Z ##

A CVSS 10.0 unauthenticated arbitrary file read flaw in BigBlueButton path traversal exposes servers. Prevent attacks like CVE-2024-39302 and update now.

#BigBlueButton #CyberSecurity #Vulnerability #CVE2026

securityonline.info/unauthenti

##

CVE-2026-45790
(0 None)

EPSS: 0.00%

2 posts

N/A

thehackerwire@mastodon.social at 2026-08-17T23:01:20.000Z ##

🟠 CVE-2026-45790 - High (8)

Dokploy is a free, self-hostable Platform as a Service (PaaS). Prior to 0.29.6, Dokploy's organization.inviteMember tRPC procedure in apps/dokploy/server/api/routers/organization.ts allows a user with member:create permission to invite an account ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-17T23:01:20.000Z ##

🟠 CVE-2026-45790 - High (8)

Dokploy is a free, self-hostable Platform as a Service (PaaS). Prior to 0.29.6, Dokploy's organization.inviteMember tRPC procedure in apps/dokploy/server/api/routers/organization.ts allows a user with member:create permission to invite an account ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-71424
(0 None)

EPSS: 0.00%

2 posts

N/A

thehackerwire@mastodon.social at 2026-08-17T23:00:37.000Z ##

🔴 CVE-2026-71424 - Critical (9.6)

Onyx is an open-source AI platform. Prior to 3.1.10, 3.2.14, and 4.0.0, Onyx's GET /api/mcp/servers and GET /api/mcp/servers/persona/{persona_id} endpoints expose another user's OAuth Authorization header because OnyxTokenStorage.set_tokens and On...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-17T23:00:37.000Z ##

🔴 CVE-2026-71424 - Critical (9.6)

Onyx is an open-source AI platform. Prior to 3.1.10, 3.2.14, and 4.0.0, Onyx's GET /api/mcp/servers and GET /api/mcp/servers/persona/{persona_id} endpoints expose another user's OAuth Authorization header because OnyxTokenStorage.set_tokens and On...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-45698
(0 None)

EPSS: 0.00%

2 posts

N/A

thehackerwire@mastodon.social at 2026-08-17T20:01:17.000Z ##

🟠 CVE-2026-45698 - High (7.5)

Netatalk is a Free and Open Source file server suite for Unix-like operating systems. In versions 3.1.19 through 4.4.2, a stack-based buffer overflow exists in the deletedir() function of Netatalk's afpd daemon due to an integer underflow in the c...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-17T20:01:17.000Z ##

🟠 CVE-2026-45698 - High (7.5)

Netatalk is a Free and Open Source file server suite for Unix-like operating systems. In versions 3.1.19 through 4.4.2, a stack-based buffer overflow exists in the deletedir() function of Netatalk's afpd daemon due to an integer underflow in the c...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-62356
(0 None)

EPSS: 0.00%

10 posts

N/A

redis_release_watcher@kodesumber.com at 2026-08-17T18:15:28.000Z ##

8.4.6

Update urgency: SECURITY: There are security fixes in the release. Security fixes (CVE-2026-62356) Miscalculated buffer size in CMSketch RDB loading may lead to heap OOB write Out-of-bounds access in TopK heap cleanup path...

github.com/redis/redis/release

#redis #cacheserver #github

##

redis_release_watcher@kodesumber.com at 2026-08-17T18:16:15.000Z ##

8.10.1

Update urgency: SECURITY: There are security fixes in the release. Security fixes (CVE-2026-62356) Miscalculated buffer size in CMSketch RDB loading may lead to heap OOB write Out-of-bounds access in TopK heap cleanup path...

github.com/redis/redis/release

#redis #cacheserver #github

##

redis_release_watcher@kodesumber.com at 2026-08-17T18:15:57.000Z ##

8.8.2

Update urgency: SECURITY: There are security fixes in the release. Security fixes (CVE-2026-62356) Miscalculated buffer size in CMSketch RDB loading may lead to heap OOB write Out-of-bounds access in TopK heap cleanup path...

github.com/redis/redis/release

#redis #cacheserver #github

##

redis_release_watcher@kodesumber.com at 2026-08-17T18:15:40.000Z ##

8.6.6

Update urgency: SECURITY: There are security fixes in the release. Security fixes (CVE-2026-62356) Miscalculated buffer size in CMSketch RDB loading may lead to heap OOB write Out-of-bounds access in TopK heap cleanup path...

github.com/redis/redis/release

#redis #cacheserver #github

##

redis_release_watcher@kodesumber.com at 2026-08-17T18:15:10.000Z ##

8.2.9

Security fixes (CVE-2026-62356) Miscalculated buffer size in CMSketch RDB loading may lead to heap OOB write Out-of-bounds access in TopK heap cleanup path (MOD-15410) Use-after-free in the TLS pending-data list when a command closes another...

github.com/redis/redis/release

#redis #cacheserver #github

##

redis_release_watcher@kodesumber.com at 2026-08-17T18:16:15.000Z ##

8.10.1

Update urgency: SECURITY: There are security fixes in the release. Security fixes (CVE-2026-62356) Miscalculated buffer size in CMSketch RDB loading may lead to heap OOB write Out-of-bounds access in TopK heap cleanup path...

github.com/redis/redis/release

#redis #cacheserver #github

##

redis_release_watcher@kodesumber.com at 2026-08-17T18:15:57.000Z ##

8.8.2

Update urgency: SECURITY: There are security fixes in the release. Security fixes (CVE-2026-62356) Miscalculated buffer size in CMSketch RDB loading may lead to heap OOB write Out-of-bounds access in TopK heap cleanup path...

github.com/redis/redis/release

#redis #cacheserver #github

##

redis_release_watcher@kodesumber.com at 2026-08-17T18:15:40.000Z ##

8.6.6

Update urgency: SECURITY: There are security fixes in the release. Security fixes (CVE-2026-62356) Miscalculated buffer size in CMSketch RDB loading may lead to heap OOB write Out-of-bounds access in TopK heap cleanup path...

github.com/redis/redis/release

#redis #cacheserver #github

##

redis_release_watcher@kodesumber.com at 2026-08-17T18:15:28.000Z ##

8.4.6

Update urgency: SECURITY: There are security fixes in the release. Security fixes (CVE-2026-62356) Miscalculated buffer size in CMSketch RDB loading may lead to heap OOB write Out-of-bounds access in TopK heap cleanup path...

github.com/redis/redis/release

#redis #cacheserver #github

##

redis_release_watcher@kodesumber.com at 2026-08-17T18:15:10.000Z ##

8.2.9

Security fixes (CVE-2026-62356) Miscalculated buffer size in CMSketch RDB loading may lead to heap OOB write Out-of-bounds access in TopK heap cleanup path (MOD-15410) Use-after-free in the TLS pending-data list when a command closes another...

github.com/redis/redis/release

#redis #cacheserver #github

##

DailyCyberSecurity at 2026-08-17T14:23:40.733Z ##

CVE-2026-17106 (CVSS 7.1) is the Docker CopyEscape vulnerability, letting malicious containers overwrite host files and trigger code execution.

securityonline.info/docker-cop

##

DailyCyberSecurity@infosec.exchange at 2026-08-17T14:23:40.000Z ##

CVE-2026-17106 (CVSS 7.1) is the Docker CopyEscape vulnerability, letting malicious containers overwrite host files and trigger code execution.

#Docker #CopyEscape #CVE202617106 #InfoSec

securityonline.info/docker-cop

##

CVE-2024-69414
(0 None)

EPSS: 0.00%

2 posts

N/A

security_crawler_carl at 2026-08-17T09:36:52.067Z ##

🏆 New Achievement! Your Antivirus Has a Virus Problem!

PATCH NOTES v0.0.0 — KNOWN ISSUES: Microsoft Defender, the product specifically designed to protect you from threats, is currently a threat. The Microsoft Malware Protection Engine contains a zero-day tracked as CVE-2024-69414, nicknamed ShieldBreak, which attackers in the wild are actively using to elevate their privileges. Think of it as a DLC nobody ordered.

ADDED: Unauthorized privilege escalation. FIXED: Nothing yet. (1/2)

##

security_crawler_carl@infosec.exchange at 2026-08-17T09:36:52.000Z ##

🏆 New Achievement! Your Antivirus Has a Virus Problem!

PATCH NOTES v0.0.0 — KNOWN ISSUES: Microsoft Defender, the product specifically designed to protect you from threats, is currently a threat. The Microsoft Malware Protection Engine contains a zero-day tracked as CVE-2024-69414, nicknamed ShieldBreak, which attackers in the wild are actively using to elevate their privileges. Think of it as a DLC nobody ordered.

ADDED: Unauthorized privilege escalation. FIXED: Nothing yet. (1/2)

##

sayzard@mastodon.sayzard.org at 2026-08-17T00:38:41.000Z ##

The Metabase SQLi: Exploited in the Wild

Metabase Cloud를 대상으로 실제 악용된 제로데이 SQL 인젝션 취약점(CVE-2026-72898)이 공개됐으며, 자체 호스팅 인스턴스도 즉시 패치가 필요하다. 취약점은 `/api/session/reset_password`에서 요청 JSON의 추가 `user-id` 필드가 인증 결과와 병합되는 과정에서 살아남고, HoneySQL의 `:raw` 표현을 통해 비매개변수화 SQL로 전달되는 구조다. 영향 버전은 1.58 이후이며, Wiz는 취약 버전 0.58.22와 수정 버전 0.58.24의 JAR 디프·디컴파일을 AI 에이전트로 분석해 원인을 재구성했다고 설명했다. Metab...

wiz.io/blog/inside-the-metabas

##

secdb at 2026-08-17T00:02:24.594Z ##

📈 CVE Published in last 7 days (2026-08-10 - 2026-08-10)
See more at secdb.nttzen.cloud/dashboard

Total CVEs:

Severity:
- Critical: 326
- High: 1309
- Medium: 1008
- Low: 130
- None: 1222

Status:
- : 39
- Analyzed: 419
- Awaiting Analysis: 226
- Deferred: 197
- Modified: 2
- Received: 2827
- Rejected: 102
- Undergoing Analysis: 183

CISA KEVs:
- CISA-2026:0811 (secdb.nttzen.cloud/security-ad)

Top CNAs:
- kernel.org: 1221
- Microsoft Corporation: 405
- VulnCheck: 343
- GitHub, Inc.: 326
- IBM Corporation: 160
- WPScan: 124
- Patchstack: 111
- VulDB: 104
- Red Hat, Inc.: 101
- Wordfence: 93

Top Affected Products:
- UNKNOWN: 3370
- Microsoft Windows Server 2025: 178
- Microsoft Windows 11 24h2: 171
- Microsoft Windows 11 26h1: 171
- Microsoft Windows 11 25h2: 171
- Microsoft Windows Server 2022: 158
- Microsoft Windows Server 2019: 146
- Microsoft Windows 10 1809: 146
- Microsoft Windows 11 23h2: 146
- Microsoft Windows 10 22h2: 136

Top EPSS Score:
- CVE-2026-72898 - 10.40 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-61358 - 3.68 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-66804 - 3.42 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62696 - 3.18 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19771 - 2.79 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-73296 - 2.61 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-65775 - 2.45 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62832 - 2.37 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19747 - 2.36 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19681 - 2.24 % (secdb.nttzen.cloud/cve/detail/)

##

secdb@infosec.exchange at 2026-08-17T00:02:24.000Z ##

📈 CVE Published in last 7 days (2026-08-10 - 2026-08-10)
See more at secdb.nttzen.cloud/dashboard

Total CVEs:

Severity:
- Critical: 326
- High: 1309
- Medium: 1008
- Low: 130
- None: 1222

Status:
- : 39
- Analyzed: 419
- Awaiting Analysis: 226
- Deferred: 197
- Modified: 2
- Received: 2827
- Rejected: 102
- Undergoing Analysis: 183

CISA KEVs:
- CISA-2026:0811 (secdb.nttzen.cloud/security-ad)

Top CNAs:
- kernel.org: 1221
- Microsoft Corporation: 405
- VulnCheck: 343
- GitHub, Inc.: 326
- IBM Corporation: 160
- WPScan: 124
- Patchstack: 111
- VulDB: 104
- Red Hat, Inc.: 101
- Wordfence: 93

Top Affected Products:
- UNKNOWN: 3370
- Microsoft Windows Server 2025: 178
- Microsoft Windows 11 24h2: 171
- Microsoft Windows 11 26h1: 171
- Microsoft Windows 11 25h2: 171
- Microsoft Windows Server 2022: 158
- Microsoft Windows Server 2019: 146
- Microsoft Windows 10 1809: 146
- Microsoft Windows 11 23h2: 146
- Microsoft Windows 10 22h2: 136

Top EPSS Score:
- CVE-2026-72898 - 10.40 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-61358 - 3.68 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-66804 - 3.42 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62696 - 3.18 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19771 - 2.79 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-73296 - 2.61 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-65775 - 2.45 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62832 - 2.37 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19747 - 2.36 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19681 - 2.24 % (secdb.nttzen.cloud/cve/detail/)

#ZEN #SecDB #InfoSec

##

CVE-2026-73296
(0 None)

EPSS: 2.61%

2 posts

N/A

secdb at 2026-08-17T00:02:24.594Z ##

📈 CVE Published in last 7 days (2026-08-10 - 2026-08-10)
See more at secdb.nttzen.cloud/dashboard

Total CVEs:

Severity:
- Critical: 326
- High: 1309
- Medium: 1008
- Low: 130
- None: 1222

Status:
- : 39
- Analyzed: 419
- Awaiting Analysis: 226
- Deferred: 197
- Modified: 2
- Received: 2827
- Rejected: 102
- Undergoing Analysis: 183

CISA KEVs:
- CISA-2026:0811 (secdb.nttzen.cloud/security-ad)

Top CNAs:
- kernel.org: 1221
- Microsoft Corporation: 405
- VulnCheck: 343
- GitHub, Inc.: 326
- IBM Corporation: 160
- WPScan: 124
- Patchstack: 111
- VulDB: 104
- Red Hat, Inc.: 101
- Wordfence: 93

Top Affected Products:
- UNKNOWN: 3370
- Microsoft Windows Server 2025: 178
- Microsoft Windows 11 24h2: 171
- Microsoft Windows 11 26h1: 171
- Microsoft Windows 11 25h2: 171
- Microsoft Windows Server 2022: 158
- Microsoft Windows Server 2019: 146
- Microsoft Windows 10 1809: 146
- Microsoft Windows 11 23h2: 146
- Microsoft Windows 10 22h2: 136

Top EPSS Score:
- CVE-2026-72898 - 10.40 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-61358 - 3.68 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-66804 - 3.42 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62696 - 3.18 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19771 - 2.79 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-73296 - 2.61 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-65775 - 2.45 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62832 - 2.37 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19747 - 2.36 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19681 - 2.24 % (secdb.nttzen.cloud/cve/detail/)

##

secdb@infosec.exchange at 2026-08-17T00:02:24.000Z ##

📈 CVE Published in last 7 days (2026-08-10 - 2026-08-10)
See more at secdb.nttzen.cloud/dashboard

Total CVEs:

Severity:
- Critical: 326
- High: 1309
- Medium: 1008
- Low: 130
- None: 1222

Status:
- : 39
- Analyzed: 419
- Awaiting Analysis: 226
- Deferred: 197
- Modified: 2
- Received: 2827
- Rejected: 102
- Undergoing Analysis: 183

CISA KEVs:
- CISA-2026:0811 (secdb.nttzen.cloud/security-ad)

Top CNAs:
- kernel.org: 1221
- Microsoft Corporation: 405
- VulnCheck: 343
- GitHub, Inc.: 326
- IBM Corporation: 160
- WPScan: 124
- Patchstack: 111
- VulDB: 104
- Red Hat, Inc.: 101
- Wordfence: 93

Top Affected Products:
- UNKNOWN: 3370
- Microsoft Windows Server 2025: 178
- Microsoft Windows 11 24h2: 171
- Microsoft Windows 11 26h1: 171
- Microsoft Windows 11 25h2: 171
- Microsoft Windows Server 2022: 158
- Microsoft Windows Server 2019: 146
- Microsoft Windows 10 1809: 146
- Microsoft Windows 11 23h2: 146
- Microsoft Windows 10 22h2: 136

Top EPSS Score:
- CVE-2026-72898 - 10.40 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-61358 - 3.68 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-66804 - 3.42 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62696 - 3.18 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19771 - 2.79 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-73296 - 2.61 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-65775 - 2.45 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62832 - 2.37 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19747 - 2.36 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19681 - 2.24 % (secdb.nttzen.cloud/cve/detail/)

#ZEN #SecDB #InfoSec

##

CVE-2026-73554
(0 None)

EPSS: 0.00%

1 posts

N/A

cyberveille@mastobot.ping.moi at 2026-08-17T00:00:06.000Z ##

📢 Bypass d'authentification critique dans Dolt MCP : exécution d'outils sans authentification

Cet article présente la découverte et la divulgation coordonnée d'une vulnérabilité critique d'authentification bypass dans le serveur MCP distant de DoltHub (CVE-2026-73554). La vulnérabilité affecte Dolt MCP versions 0.3.1 à 0.3.6 sur le transport HTTP distant lorsque…

📖 cyberveille : cyberveille.ch/posts/2026-08-1
🌐 source : pillar.security/blog/lose-cont
🟡 vérification factuelle moyenne
#Dolt #MCP #Cyberveille

##

Visit counter For Websites