##
Updated at UTC 2026-09-20T05:20:56.049859
| CVE | CVSS | EPSS | Posts | Repos | Nuclei | Updated | Description |
|---|---|---|---|---|---|---|---|
| CVE-2026-93958 | 9.1 | 0.00% | 2 | 0 | 2026-09-20T03:30:31 | A vulnerability was found in D-Link R95 BE9500_1.00.16. This vulnerability affec | |
| CVE-2026-94084 | 9.4 | 0.00% | 4 | 0 | 2026-09-20T03:30:29 | Suricata before 8.0.7 has an Http2ThreadMultiBuf use-after-free when a transacti | |
| CVE-2026-94083 | 9.4 | 0.00% | 4 | 0 | 2026-09-20T02:16:53.520000 | Suricata before 8.0.7 has a DoH2 type confusion that can cause an invalid free, | |
| CVE-2026-93993 | 8.8 | 0.00% | 2 | 0 | 2026-09-20T00:30:32 | Mistral Vibe before 2.25.5 contains a remote code execution vulnerability in the | |
| CVE-2026-93992 | 8.1 | 0.00% | 2 | 0 | 2026-09-20T00:30:32 | Gopeed through 2.0.0-beta.3 contains a path traversal vulnerability in archive e | |
| CVE-2026-93990 | 7.5 | 0.00% | 2 | 0 | 2026-09-20T00:30:31 | Expat through 2.8.4 fails to validate low surrogates following high surrogates i | |
| CVE-2026-94056 | 7.5 | 0.00% | 2 | 0 | 2026-09-19T23:17:11.113000 | Exim before 4.100.1, when Proxy-Protocol is used with an attacker-controlled pro | |
| CVE-2026-93991 | 7.7 | 0.00% | 2 | 0 | 2026-09-19T23:17:10.360000 | Argo Workflows versions 4.1.0 through 4.1.3 contain an authorization bypass vuln | |
| CVE-2026-86814 | 8.1 | 0.14% | 4 | 0 | 2026-09-19T15:32:25 | The UsersWP WordPress plugin before 1.5.10 does not verify that a social login | |
| CVE-2026-88926 | 8.6 | 0.18% | 2 | 0 | 2026-09-19T15:31:25 | The VikRentItems Flexible Rental Management System WordPress plugin before 1.2.4 | |
| CVE-2026-85680 | 8.8 | 0.17% | 2 | 0 | 2026-09-19T15:31:24 | The Ultimate Member WordPress plugin before 2.13.1 does not escape a value deri | |
| CVE-2026-84750 | 6.5 | 0.20% | 2 | 0 | 2026-09-19T15:31:24 | The Ultra Addons for Contact Form 7 WordPress plugin before 3.5.51 does not vali | |
| CVE-2026-86591 | 9.8 | 0.18% | 4 | 0 | 2026-09-19T15:31:23 | The Botiga Pro WordPress plugin before 1.6.5 does not perform any authorisation | |
| CVE-2026-93761 | 7.5 | 0.27% | 2 | 0 | 2026-09-19T15:17:08.503000 | An inefficient regular expression complexity issue in the in-memory query evalua | |
| CVE-2026-84398 | 7.5 | 0.24% | 2 | 0 | 2026-09-19T15:17:05.863000 | CM2507 IP cameras accept an empty password for a privileged account exposed thro | |
| CVE-2026-84083 | 7.8 | 0.11% | 2 | 0 | 2026-09-19T15:17:05.750000 | IBM Guardium Data Protection 12.2 is vulnerable to local privilege escalation vi | |
| CVE-2026-84081 | 8.1 | 0.20% | 3 | 0 | 2026-09-19T15:17:05.537000 | IBM Guardium Data Protection 12.2 could allow a remote attacker to bypass securi | |
| CVE-2026-84078 | 9.9 | 0.28% | 3 | 0 | 2026-09-19T15:17:05.430000 | IBM Guardium Data Protection 12.2 is vulnerable to a missing authentication vuln | |
| CVE-2026-84076 | 7.6 | 0.31% | 2 | 0 | 2026-09-19T15:17:05.317000 | IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to | |
| CVE-2026-84075 | 9.9 | 0.35% | 3 | 0 | 2026-09-19T15:17:05.217000 | IBM Guardium Data Protection 12.2 could allow a remote attacker to bypass securi | |
| CVE-2026-84070 | 8.9 | 0.32% | 3 | 0 | 2026-09-19T15:17:04.867000 | IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to | |
| CVE-2026-82967 | 9.8 | 0.43% | 3 | 0 | 2026-09-19T15:17:04.430000 | IBM Guardium Data Protection 12.2 is vulnerable to an authentication bypass that | |
| CVE-2026-80441 | 9.8 | 0.38% | 2 | 0 | 2026-09-19T15:17:02.430000 | IBM Guardium Data Protection 12.2 is vulnerable to an unauthenticated second-ord | |
| CVE-2026-92807 | 8.8 | 0.25% | 4 | 0 | 2026-09-19T14:17:05.850000 | The Save as PDF Plugin by PDFCrowd plugin for WordPress is vulnerable to Arbitra | |
| CVE-2026-92404 | 7.5 | 0.14% | 2 | 0 | 2026-09-19T14:17:04.240000 | The MgoSync WordPress plugin before 2.1.7 does not have authorization controls | |
| CVE-2026-89274 | 9.1 | 0.38% | 4 | 1 | 2026-09-19T14:17:03.127000 | The WP Recipe Maker plugin for WordPress is vulnerable to Arbitrary Shortcode Ex | |
| CVE-2026-88824 | 8.8 | 0.17% | 2 | 0 | 2026-09-19T14:17:02.290000 | The Master Blocks WordPress plugin before 1.5.0 does not have authorisation on | |
| CVE-2026-85658 | 8.1 | 0.36% | 2 | 0 | 2026-09-19T14:17:00.627000 | The Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User | |
| CVE-2026-85574 | 8.0 | 0.13% | 2 | 0 | 2026-09-19T14:17:00.477000 | The Unbounce Landing Pages WordPress plugin before 1.1.5 does not perform any au | |
| CVE-2026-84241 | 8.1 | 0.30% | 3 | 0 | 2026-09-19T14:17:00.260000 | IBM Guardium Data Protection 12.2 could allow a remote attacker to bypass securi | |
| CVE-2026-84239 | 7.6 | 0.41% | 3 | 0 | 2026-09-19T14:17:00.143000 | IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to | |
| CVE-2026-84105 | 7.7 | 0.35% | 2 | 0 | 2026-09-19T14:16:59.917000 | IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to | |
| CVE-2026-84089 | 7.8 | 0.11% | 3 | 0 | 2026-09-19T14:16:59.813000 | IBM Guardium Data Protection 12.2 could allow a local attacker to gain elevated | |
| CVE-2026-84085 | 8.1 | 0.32% | 2 | 0 | 2026-09-19T14:16:59.587000 | IBM Guardium Data Protection 12.2 could allow a remote attacker to execute arbit | |
| CVE-2026-93985 | 9.9 | 0.00% | 4 | 0 | 2026-09-19T12:16:41.873000 | OpenPanel js-runtime through commit bad75bdd contains a sandbox escape vulnerabi | |
| CVE-2026-93742 | 9.9 | 1.88% | 5 | 0 | 2026-09-19T09:32:25 | A weakness has been identified in Totolink A3002MU Hh-B20211125.1046. Affected b | |
| CVE-2026-4327 | 8.8 | 0.70% | 2 | 0 | 2026-09-19T09:32:22 | The The Welcomizer plugin for WordPress is vulnerable to Remote Code Execution i | |
| CVE-2026-1255 | 7.5 | 0.29% | 2 | 0 | 2026-09-19T09:32:16 | The YS LeadGen plugin for WordPress is vulnerable to Sensitive Information Expos | |
| CVE-2026-93741 | 10.0 | 0.64% | 5 | 0 | 2026-09-19T06:16:30.557000 | A security flaw has been discovered in Totolink A3002MU Hh-B20211125.1046. Affec | |
| CVE-2026-93374 | 9.6 | 0.35% | 1 | 0 | 2026-09-19T04:18:02.537000 | Use after free in Dawn in Google Chrome on on Android prior to 153.0.8010.52 all | |
| CVE-2026-53266 | 8.8 | 0.28% | 4 | 0 | 2026-09-19T04:17:53.580000 | In the Linux kernel, the following vulnerability has been resolved: netfilter: | |
| CVE-2025-39682 | 9.8 | 1.20% | 3 | 1 | 2026-09-19T04:17:35.263000 | In the Linux kernel, the following vulnerability has been resolved: tls: fix ha | |
| CVE-2026-92229 | 9.1 | 0.40% | 4 | 1 | 2026-09-19T03:32:15 | The The Forminator Forms – Contact Form, Payment Form & Custom Form Builder plug | |
| CVE-2026-87909 | 7.5 | 0.53% | 2 | 0 | 2026-09-19T03:32:11 | The WP Photo Album Plus plugin for WordPress is vulnerable to Remote Code Execut | |
| CVE-2026-84434 | 9.8 | 0.70% | 2 | 1 | 2026-09-19T03:32:11 | The Gravity Forms plugin for WordPress is vulnerable to Arbitrary File Upload in | |
| CVE-2026-93739 | 9.9 | 0.49% | 2 | 0 | 2026-09-19T00:32:51 | A vulnerability was determined in Totolink A3002MU Hh-B20211125.1046. This impac | |
| CVE-2026-93923 | 8.8 | 0.41% | 2 | 0 | 2026-09-19T00:32:50 | SiYuan through 3.8.4 fails to escape heading style attributes when rendering out | |
| CVE-2026-93922 | 8.8 | 0.54% | 2 | 0 | 2026-09-19T00:16:57.913000 | SiYuan through 3.8.4 renders notebook names as raw HTML in the Daily Note picker | |
| CVE-2026-93740 | 10.0 | 0.61% | 2 | 0 | 2026-09-18T22:17:10.890000 | A vulnerability was identified in Totolink A3002MU Hh-B20211125.1046. Affected i | |
| CVE-2026-75885 | 9.3 | 0.41% | 4 | 0 | 2026-09-18T22:17:10.313000 | A flaw was found in the OpenShift console. Unauthenticated access to the `/api/d | |
| CVE-2026-88097 | 8.1 | 0.22% | 2 | 0 | 2026-09-18T21:32:43 | Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacke | |
| CVE-2026-93031 | 8.8 | 0.58% | 2 | 0 | 2026-09-18T21:32:41 | The WP Cloud Plugins Use-your-Drive, Out-of-the-Box, Share-one-Drive, and Lets-B | |
| CVE-2026-84077 | 8.1 | 0.19% | 2 | 0 | 2026-09-18T21:32:40 | IBM Guardium Data Protection 12.2 could allow a remote attacker to bypass securi | |
| CVE-2026-84082 | 9.8 | 0.40% | 2 | 0 | 2026-09-18T21:32:39 | IBM Guardium Data Protection 12.2 could allow a remote attacker to execute arbit | |
| CVE-2026-84074 | 8.9 | 0.32% | 2 | 0 | 2026-09-18T21:32:38 | IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to | |
| CVE-2026-84064 | 9.9 | 0.37% | 2 | 0 | 2026-09-18T21:32:38 | IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to | |
| CVE-2026-84108 | 8.1 | 0.40% | 2 | 0 | 2026-09-18T21:32:38 | IBM Guardium Data Protection 12.2 could allow a remote attacker to execute arbit | |
| CVE-2026-82887 | 8.8 | 0.41% | 2 | 0 | 2026-09-18T21:32:37 | IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to | |
| CVE-2026-82896 | 7.6 | 0.36% | 2 | 0 | 2026-09-18T21:32:37 | IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to | |
| CVE-2026-84073 | 9.1 | 0.26% | 2 | 0 | 2026-09-18T21:32:37 | IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to | |
| CVE-2026-84034 | 8.8 | 0.25% | 2 | 0 | 2026-09-18T21:32:37 | IBM Guardium Data Protection 12.2 is vulnerable to a hardcoded credentials vulne | |
| CVE-2026-82885 | 8.8 | 0.28% | 2 | 0 | 2026-09-18T21:32:36 | IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to | |
| CVE-2026-82832 | 9.6 | 0.38% | 2 | 0 | 2026-09-18T21:32:36 | IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to | |
| CVE-2026-82893 | 7.8 | 0.11% | 2 | 0 | 2026-09-18T21:32:36 | IBM Guardium Data Protection 12.2 could allow a local attacker to gain elevated | |
| CVE-2026-82340 | 9.8 | 0.51% | 2 | 0 | 2026-09-18T21:32:35 | IBM Guardium Data Protection 12.2 is vulnerable to unauthenticated insecure dese | |
| CVE-2026-81933 | 8.8 | 0.32% | 2 | 0 | 2026-09-18T21:32:35 | IBM Guardium Data Protection 12.2 is vulnerable to a SQL injection vulnerability | |
| CVE-2026-82892 | 8.1 | 0.39% | 2 | 0 | 2026-09-18T21:32:35 | IBM Guardium Data Protection 12.2 could allow a remote attacker to execute arbit | |
| CVE-2026-93868 | 8.1 | 0.61% | 2 | 0 | 2026-09-18T21:18:49.023000 | Cotonti through 1.0.0 derives password recovery validation tokens from md5(micro | |
| CVE-2026-93738 | 9.9 | 0.50% | 2 | 0 | 2026-09-18T21:18:48.660000 | A vulnerability was found in Totolink A3002MU Hh-B20211125.1046. This affects th | |
| CVE-2026-93572 | 7.5 | 0.34% | 2 | 0 | 2026-09-18T21:18:48.020000 | A flaw was found in Netty's `RedisArrayAggregator` component. A remote attacker | |
| CVE-2026-84106 | 8.9 | 0.32% | 2 | 0 | 2026-09-18T21:18:44.520000 | IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to | |
| CVE-2026-84084 | 8.8 | 0.18% | 2 | 0 | 2026-09-18T21:18:44.413000 | IBM Guardium Data Protection 12.2 could allow a remote attacker to bypass securi | |
| CVE-2026-84031 | 9.0 | 0.33% | 3 | 0 | 2026-09-18T21:18:44.080000 | IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to | |
| CVE-2026-68928 | 8.6 | 0.13% | 2 | 0 | 2026-09-18T21:17:14.377000 | Acode is a powerful text and code editor for Android. From 1.11.6 until 1.12.7, | |
| CVE-2026-63447 | 7.5 | 0.36% | 2 | 0 | 2026-09-18T21:17:03.913000 | Suricata is a network Intrusion Detection System, Intrusion Prevention System an | |
| CVE-2026-63446 | 7.5 | 0.39% | 2 | 0 | 2026-09-18T21:17:03.763000 | Suricata is a network Intrusion Detection System, Intrusion Prevention System an | |
| CVE-2026-57227 | 7.5 | 0.40% | 2 | 0 | 2026-09-18T21:17:01.217000 | Suricata is a network Intrusion Detection System, Intrusion Prevention System an | |
| CVE-2026-93872 | 7.5 | 0.44% | 2 | 0 | 2026-09-18T20:17:35.250000 | Cotonti 1.0.0 passes the base64-decoded cb parameter to unserialize() without al | |
| CVE-2026-93839 | 9.8 | 0.60% | 4 | 0 | 2026-09-18T20:17:34.047000 | LightLLM through 1.2.0 contains an authentication bypass vulnerability in the /p | |
| CVE-2026-93452 | 7.5 | 0.49% | 1 | 0 | 2026-09-18T20:17:32.397000 | snappy-java through 1.1.10.8 contains a buffer overflow vulnerability in Snappy. | |
| CVE-2026-92948 | 9.9 | 0.45% | 1 | 0 | 2026-09-18T20:17:30.980000 | vm2 versions >= 3.9.6 and <= 3.11.6 are affected by a NodeVM builtin allowlist b | |
| CVE-2026-92937 | 10.0 | 0.79% | 1 | 0 | 2026-09-18T20:17:30.707000 | vm2 3.11.6 is vulnerable to a sandbox escape leading to remote code execution in | |
| CVE-2026-54767 | 9.1 | 0.43% | 1 | 0 | 2026-09-18T20:17:17.253000 | WeGIA is a web manager for charitable institutions. Prior to 3.8.5, web/html/soc | |
| CVE-2026-54734 | 10.0 | 0.36% | 1 | 0 | 2026-09-18T20:17:17.137000 | Prebid Server Java is the Java version of Prebid Server. Prior to 3.43.0, certai | |
| CVE-2026-20332 | 9.9 | 0.30% | 1 | 0 | 2026-09-18T20:17:14.310000 | As part of Cisco's ongoing commitment to proactive security and product quality, | |
| CVE-2026-20331 | 9.6 | 0.23% | 2 | 0 | 2026-09-18T20:17:14.087000 | As part of Cisco's ongoing commitment to proactive security and product quality, | |
| CVE-2026-20330 | 9.9 | 0.34% | 2 | 0 | 2026-09-18T20:17:13.870000 | As part of Cisco's ongoing commitment to proactive security and product quality, | |
| CVE-2026-18911 | 7.5 | 1.06% | 1 | 0 | 2026-09-18T20:17:11.233000 | ManageEngine DataSecurity Plus versions before 6310 are vulnerable to an agent a | |
| CVE-2026-13684 | 9.8 | 0.46% | 3 | 0 | 2026-09-18T20:17:08.373000 | An improper encoding or escaping of output vulnerability in SCGI in Synology Dis | |
| CVE-2026-13639 | 9.8 | 0.51% | 1 | 0 | 2026-09-18T20:17:06.860000 | An insufficient entropy vulnerability in login logic in Synology DiskStation Man | |
| CVE-2026-28197 | 8.8 | 0.37% | 2 | 0 | 2026-09-18T19:24:36.593000 | An authenticated, low-privileged user with access to the NetBackup Flex OS mana | |
| CVE-2026-91149 | 7.5 | 0.35% | 2 | 0 | 2026-09-18T19:06:08.407000 | A flaw was found in Cockpit. An unauthenticated remote attacker can exploit this | |
| CVE-2026-93760 | 8.2 | 0.28% | 2 | 0 | 2026-09-18T19:05:01.127000 | Mongoid does not restrict which query operators may come from caller-supplied fi | |
| CVE-2026-93762 | 9.8 | 0.34% | 2 | 0 | 2026-09-18T19:05:01.127000 | Mongoid contains an unsafe reflection weakness in the query path used for embedd | |
| CVE-2026-93758 | 8.1 | 0.21% | 2 | 0 | 2026-09-18T19:05:01.127000 | An insecure direct object reference in the nested attributes handling of the Mon | |
| CVE-2026-86863 | 9.8 | 0.36% | 1 | 0 | 2026-09-18T19:05:01.127000 | pgAdmin 4's Webserver authentication source is intended to accept an identity as | |
| CVE-2026-93752 | 7.5 | 0.47% | 2 | 0 | 2026-09-18T18:32:08 | CSSOM through 0.5.0 contains a denial of service vulnerability in CSSStyleDeclar | |
| CVE-2026-93759 | 8.6 | 0.24% | 2 | 0 | 2026-09-18T18:32:04 | Mongoid does not neutralize a string-typed query criterion supplied to its query | |
| CVE-2026-93687 | 7.5 | 0.41% | 2 | 0 | 2026-09-18T18:32:02 | braces through 3.0.3 contains a stack overflow vulnerability in the recursive AS | |
| CVE-2026-93753 | 7.5 | 0.36% | 2 | 0 | 2026-09-18T18:32:01 | deepmerge through 4.3.1 contains a prototype poisoning vulnerability in the merg | |
| CVE-2026-93765 | 9.1 | 0.29% | 2 | 0 | 2026-09-18T18:31:58 | Mongoid contains an unsafe reflection weakness in the document persistence layer | |
| CVE-2026-85497 | 9.8 | 0.21% | 2 | 0 | 2026-09-18T18:31:57 | CareCam CM2507 IP cameras store the device's root-account password using a fixed | |
| CVE-2026-93688 | 7.5 | 0.40% | 2 | 0 | 2026-09-18T18:31:55 | SGLang through 0.5.19 in prefill/decode disaggregation mode with Mooncake KV tra | |
| CVE-2026-93606 | 10.0 | 0.52% | 2 | 0 | 2026-09-18T18:18:31.267000 | vm2 (npm) versions 3.12.0 and earlier contain a sandbox escape in `VM` and `Node | |
| CVE-2026-90999 | 9.8 | 0.51% | 2 | 0 | 2026-09-18T17:49:08.457000 | Sentry Seer is vulnerable to a multi-stage trust-boundary violation that allows | |
| CVE-2026-92943 | 8.1 | 0.27% | 1 | 0 | 2026-09-18T17:48:19.003000 | Improper validation of certificate with host mismatch in the MQTT client TLS con | |
| CVE-2026-61672 | 7.1 | 0.20% | 1 | 0 | 2026-09-18T17:14:32 | ## Summary Capsule lets a cluster administrator forbid specific metadata keys t | |
| CVE-2026-84383 | 9.8 | 0.64% | 2 | 0 | 2026-09-18T16:17:11.853000 | libheif is a HEIF and AVIF file format decoder and encoder. From 1.22.0 until 1. | |
| CVE-2026-93603 | 10.0 | 0.43% | 2 | 0 | 2026-09-18T15:32:25 | vm2 through 3.12.0 (fixed in 3.12.1) does not correctly handle a nullish `this` | |
| CVE-2026-93592 | 7.5 | 0.38% | 2 | 0 | 2026-09-18T15:32:24 | vLLM versions before 0.28.0 fail to validate the lower bound of token IDs in the | |
| CVE-2026-93591 | 7.6 | 0.29% | 2 | 0 | 2026-09-18T15:32:24 | SiYuan versions before 3.8.3 contain an SQL injection vulnerability in the graph | |
| CVE-2026-93597 | 7.7 | 0.33% | 2 | 0 | 2026-09-18T15:32:24 | ArcadeDB versions before 26.9.1 fail to validate IPv6 transition addresses in th | |
| CVE-2026-93491 | 7.5 | 0.44% | 2 | 0 | 2026-09-18T15:32:17 | A flaw was found in Netty's HttpServerCodec. A remote, unauthenticated attacker | |
| CVE-2025-39964 | 3.3 | 0.79% | 4 | 1 | 2026-09-18T15:31:06 | In the Linux kernel, the following vulnerability has been resolved: crypto: af_ | |
| CVE-2026-17086 | 8.8 | 0.89% | 1 | 0 | 2026-09-18T15:17:06.153000 | The ShortPixel Image Optimizer – Optimize Images, Convert WebP & AVIF plugin for | |
| CVE-2026-93605 | 10.0 | 0.38% | 2 | 0 | 2026-09-18T14:19:12.453000 | vm2 NodeVM versions before 3.12.1 contain a sandbox escape vulnerability where t | |
| CVE-2026-20192 | 10.0 | 0.43% | 5 | 0 | 2026-09-18T14:17:16.023000 | As part of Cisco's ongoing commitment to proactive security and product quality, | |
| CVE-2026-28198 | 8.8 | 0.20% | 2 | 0 | 2026-09-18T12:31:28 | An authenticated, low-privileged user with access to the NetBackup Flex OS mana | |
| CVE-2026-85410 | 8.1 | 0.31% | 2 | 0 | 2026-09-18T09:31:24 | The Master Addons for Elementor – Elementor Addons, Widgets, Mega Menu Builder, | |
| CVE-2026-6205 | 8.1 | 0.32% | 2 | 0 | 2026-09-18T09:31:21 | An external control of file name or path vulnerability in Upload API in Synology | |
| CVE-2026-67101 | 9.3 | 0.27% | 1 | 0 | 2026-09-18T09:31:08 | HCL BigFix Service Management is affected by a Server-Side Request Forgery (SSRF | |
| CVE-2026-67100 | 9.8 | 0.35% | 2 | 0 | 2026-09-18T09:31:08 | HCL BigFix Service Management is affected by SQL Injection flaw and a Cross-Tena | |
| CVE-2026-18912 | 7.7 | 1.50% | 1 | 0 | 2026-09-18T06:32:11 | ManageEngine DataSecurity Plus versions before 6310 are vulnerable to an authent | |
| CVE-2026-93456 | 8.2 | 0.15% | 1 | 0 | 2026-09-18T03:30:28 | django-page-cms through 2.0.13 exempts five admin mutation views from CSRF prote | |
| CVE-2026-93450 | 7.5 | 0.66% | 1 | 0 | 2026-09-18T00:31:21 | go-openapi/swag jsonutils before 0.27.1 contains a stack overflow vulnerability | |
| CVE-2026-85889 | 10.0 | 0.49% | 5 | 0 | 2026-09-18T00:31:16 | Missing authentication for critical function in Azure AI Foundry allows an unaut | |
| CVE-2026-13584 | 0 | 0.13% | 1 | 0 | 2026-09-18T00:16:53.720000 | Improper Enforcement of Message Integrity During Transmission in a Communication | |
| CVE-2026-92956 | 10.0 | 0.40% | 1 | 0 | 2026-09-17T20:18:59.730000 | vm2 versions 3.10.1 through 3.11.6 contain a sandbox escape reachable from a def | |
| CVE-2026-92951 | 9.9 | 0.37% | 1 | 0 | 2026-09-17T20:18:59.610000 | vm2 before 3.11.7 contains an incorrect authorization vulnerability in the exter | |
| CVE-2026-92946 | 10.0 | 0.59% | 1 | 0 | 2026-09-17T20:18:59.483000 | vm2 before 3.11.7 contains a remote code execution vulnerability when require.ex | |
| CVE-2026-92940 | 10.0 | 0.34% | 1 | 0 | 2026-09-17T20:18:59.213000 | vm2 versions 3.11.3 through 3.11.6 expose the host process's real https.globalAg | |
| CVE-2026-92919 | 8.1 | 0.38% | 1 | 0 | 2026-09-17T20:18:58.840000 | admin3 through 3.0.0 fails to sanitize client-supplied filenames in the upload h | |
| CVE-2026-54752 | 9.6 | 0.35% | 1 | 0 | 2026-09-17T20:16:52.877000 | NetBox Device Type Library is a collection of community-sourced device type defi | |
| CVE-2026-28326 | 8.8 | 0.55% | 2 | 0 | 2026-09-17T18:32:05 | SolarWinds Access Rights Manager was reported to be affected by an unauthenticat | |
| CVE-2026-92941 | 10.0 | 0.27% | 1 | 0 | 2026-09-17T16:18:34.520000 | vm2 versions from 3.11.3 before 3.11.7 expose the host tls module to NodeVM sand | |
| CVE-2026-79752 | 0 | 0.46% | 1 | 1 | 2026-09-17T16:17:44.693000 | CakePHP is a rapid development framework for PHP. Prior to 4.5.12, 4.6.5, 5.1.9, | |
| CVE-2026-92950 | 8.6 | 0.22% | 1 | 0 | 2026-09-17T15:32:35 | vm2 before 3.11.7 contains a sandbox escape vulnerability in the CLI tool that a | |
| CVE-2026-92939 | 9.9 | 0.53% | 1 | 0 | 2026-09-17T15:32:28 | vm2 3.11.3 through 3.11.6 exposes the host Node.js crypto module to a NodeVM san | |
| CVE-2026-92938 | 9.9 | 0.42% | 1 | 0 | 2026-09-17T15:32:28 | vm2 versions 3.11.3 through 3.11.6 expose Node.js's host node:sqlite module to c | |
| CVE-2026-92960 | 10.0 | 0.43% | 1 | 0 | 2026-09-17T15:32:27 | vm2 before 3.11.6 fails to restrict access to os and dns builtins under the buil | |
| CVE-2026-92935 | 9.0 | 0.50% | 1 | 0 | 2026-09-17T15:32:26 | vm2 is a sandbox for running untrusted Node.js code. In versions >= 3.11.4 and < | |
| CVE-2026-92944 | 9.8 | 0.58% | 1 | 0 | 2026-09-17T15:32:26 | vm2 versions 3.10.2 through 3.11.6 contain a sandbox escape vulnerability on Nod | |
| CVE-2026-92957 | 9.9 | 0.49% | 1 | 0 | 2026-09-17T15:32:26 | vm2 through 3.11.6 does not normalize `node:`-prefixed builtin specifiers when e | |
| CVE-2026-92918 | 8.8 | 0.35% | 1 | 0 | 2026-09-17T15:32:24 | admin3 through 3.0.0 persists user session tokens in the audit log event body wh | |
| CVE-2026-92953 | 10.0 | 0.34% | 1 | 0 | 2026-09-17T15:32:22 | vm2 versions from 3.11.0 before 3.11.8 fail to protect host TypedArray and Array | |
| CVE-2026-92947 | 10.0 | 0.43% | 1 | 0 | 2026-09-17T15:32:21 | vm2 before 3.11.7 exposes Node's shared Buffer pool to sandboxed code, allowing | |
| CVE-2026-81481 | 7.5 | 0.53% | 1 | 0 | 2026-09-17T15:32:18 | Dell OpenManage Server Administrator, versions prior to 11.1.0.3, contains an Im | |
| CVE-2026-92955 | 10.0 | 0.62% | 1 | 0 | 2026-09-17T15:17:01.040000 | vm2 before 3.11.8 contains a sandbox escape vulnerability in NodeVM that allows | |
| CVE-2026-92934 | 9.0 | 0.74% | 1 | 0 | 2026-09-17T15:17:00.520000 | vm2 before 3.11.8 contains an incomplete fix for Error.cause sanitization that a | |
| CVE-2026-92954 | 8.6 | 0.34% | 1 | 0 | 2026-09-17T14:18:01.430000 | vm2 is a sandbox library for running untrusted JavaScript in Node.js. In version | |
| CVE-2026-15688 | None | 0.12% | 1 | 0 | 2026-09-17T09:33:03 | Incorrect Implementation of Authentication Algorithm Vulnerability in Mitsubishi | |
| CVE-2026-58704 | 8.8 | 0.21% | 2 | 0 | 2026-09-17T04:17:54.930000 | In Cellular Modem, there is a possible permission bypass due to a logic error in | |
| CVE-2026-76460 | 10.0 | 0.78% | 14 | 1 | 2026-09-16T21:33:00 | A vulnerability in an API of Cisco Identity Services Engine (ISE) could allow an | |
| CVE-2026-89082 | None | 0.51% | 1 | 0 | 2026-09-16T21:32:55 | HP has identified potential security vulnerabilities in the HP Advance software | |
| CVE-2026-20329 | 9.9 | 0.45% | 2 | 0 | 2026-09-16T21:32:50 | As part of Cisco's ongoing commitment to proactive security and product quality, | |
| CVE-2026-20324 | 9.9 | 0.44% | 1 | 0 | 2026-09-16T21:32:50 | A vulnerability in the sftunnel inter-device communication protocol of Cisco Sec | |
| CVE-2026-77179 | 0 | 0.16% | 5 | 1 | 2026-09-16T20:38:33.883000 | On macOS, the virtio-fs host server used by Docker Sandboxes improperly follows | |
| CVE-2026-20306 | 9.1 | 1.37% | 2 | 0 | 2026-09-16T18:32:09 | A vulnerability in the REST API of Cisco ISE and ISE-PIC could allow an authenti | |
| CVE-2026-20305 | 9.1 | 1.37% | 2 | 0 | 2026-09-16T18:32:04 | A vulnerability in the diagnostic tools of Cisco ISE and ISE-PIC could allow an | |
| CVE-2026-91843 | 9.8 | 0.50% | 9 | 1 | 2026-09-16T15:31:14 | A stack overflow during the unauthenticated login process may allow an attacker | |
| CVE-2026-81642 | None | 0.52% | 1 | 1 | 2026-09-16T09:30:28 | In NLnet Labs Unbound up to and including 1.26.0, a vulnerability was found in t | |
| CVE-2026-79994 | None | 0.11% | 1 | 0 | 2026-09-16T00:32:32 | The guest-to-host Unix-domain socket relay in Docker Sandboxes validates that a | |
| CVE-2026-76461 | 9.8 | 2.01% | 2 | 4 | 2026-09-15T12:47:32.497000 | A vulnerability in the email parsing of Cisco AsyncOS Software for Cisco Secure | |
| CVE-2026-89497 | 7.8 | 0.13% | 1 | 0 | 2026-09-14T15:33:33 | In the Linux kernel, the following vulnerability has been resolved: orangefs: s | |
| CVE-2026-89510 | 7.8 | 0.18% | 1 | 0 | 2026-09-14T15:33:33 | In the Linux kernel, the following vulnerability has been resolved: RDMA/cxgb4: | |
| CVE-2026-81000 | 7.8 | 0.16% | 5 | 1 | 2026-09-14T15:33:28 | In the Linux kernel, the following vulnerability has been resolved: net: tun: b | |
| CVE-2026-89496 | None | 0.18% | 1 | 0 | 2026-09-14T15:32:27 | In the Linux kernel, the following vulnerability has been resolved: ocfs2: alwa | |
| CVE-2026-89460 | None | 0.17% | 1 | 0 | 2026-09-14T15:32:24 | In the Linux kernel, the following vulnerability has been resolved: s390/cpum_c | |
| CVE-2026-80944 | 7.8 | 0.13% | 1 | 0 | 2026-09-14T15:32:21 | In the Linux kernel, the following vulnerability has been resolved: wifi: mwifi | |
| CVE-2026-89480 | 7.5 | 0.41% | 1 | 0 | 2026-09-14T13:19:04.623000 | In the Linux kernel, the following vulnerability has been resolved: nvme-tcp: r | |
| CVE-2026-89479 | 9.8 | 0.51% | 1 | 0 | 2026-09-14T13:19:04.457000 | In the Linux kernel, the following vulnerability has been resolved: sctp: stop | |
| CVE-2026-89473 | 0 | 0.20% | 1 | 0 | 2026-09-14T13:19:03.620000 | In the Linux kernel, the following vulnerability has been resolved: power: supp | |
| CVE-2026-80990 | 0 | 0.20% | 1 | 0 | 2026-09-14T13:18:53.787000 | In the Linux kernel, the following vulnerability has been resolved: net: thunde | |
| CVE-2026-80949 | 0 | 0.18% | 1 | 0 | 2026-09-14T13:18:50.457000 | In the Linux kernel, the following vulnerability has been resolved: wifi: brcmf | |
| CVE-2026-80941 | 0 | 0.21% | 1 | 0 | 2026-09-14T13:18:50.160000 | In the Linux kernel, the following vulnerability has been resolved: wifi: rtw88 | |
| CVE-2026-89520 | 7.8 | 0.16% | 1 | 0 | 2026-09-13T09:33:29 | In the Linux kernel, the following vulnerability has been resolved: sched/core: | |
| CVE-2026-89492 | 9.8 | 0.60% | 1 | 0 | 2026-09-13T09:33:27 | In the Linux kernel, the following vulnerability has been resolved: ocfs2: vali | |
| CVE-2026-80986 | 9.8 | 0.60% | 1 | 0 | 2026-09-13T09:33:25 | In the Linux kernel, the following vulnerability has been resolved: net/smc: bo | |
| CVE-2026-80953 | 8.4 | 0.18% | 1 | 0 | 2026-09-13T09:32:12 | In the Linux kernel, the following vulnerability has been resolved: i3c: master | |
| CVE-2026-80954 | 7.8 | 0.15% | 1 | 0 | 2026-09-13T09:32:11 | In the Linux kernel, the following vulnerability has been resolved: i3c: Fix un | |
| CVE-2026-89523 | 7.8 | 0.14% | 1 | 0 | 2026-09-13T07:17:14.697000 | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: | |
| CVE-2026-89459 | 7.0 | 0.11% | 1 | 0 | 2026-09-13T07:17:09.733000 | In the Linux kernel, the following vulnerability has been resolved: s390/percpu | |
| CVE-2026-89452 | 8.4 | 0.18% | 1 | 0 | 2026-09-13T07:17:09.477000 | In the Linux kernel, the following vulnerability has been resolved: iommu/msm: | |
| CVE-2026-80998 | 7.5 | 0.47% | 1 | 0 | 2026-09-13T07:17:06.483000 | In the Linux kernel, the following vulnerability has been resolved: net: bnxt: | |
| CVE-2026-78175 | 8.8 | 0.59% | 2 | 0 | 2026-09-12T09:33:41 | The Tutor LMS – eLearning and online course solution plugin for WordPress is vul | |
| CVE-2026-89267 | 4.3 | 0.19% | 1 | 0 | 2026-09-12T03:30:28 | starlette-admin versions 0.16.1 through 0.17.1 fail to enforce the searchable_fi | |
| CVE-2026-89455 | None | 0.20% | 1 | 0 | 2026-09-11T21:31:28 | In the Linux kernel, the following vulnerability has been resolved: PCI: plda: | |
| CVE-2026-80934 | None | 0.17% | 1 | 0 | 2026-09-11T21:31:20 | In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: | |
| CVE-2026-89453 | 0 | 0.20% | 1 | 0 | 2026-09-11T20:19:25.967000 | In the Linux kernel, the following vulnerability has been resolved: iommu/amd: | |
| CVE-2026-80957 | 0 | 0.17% | 1 | 0 | 2026-09-11T20:19:01.520000 | In the Linux kernel, the following vulnerability has been resolved: dm-pcache: | |
| CVE-2026-80942 | 0 | 0.17% | 1 | 0 | 2026-09-11T20:18:59.660000 | In the Linux kernel, the following vulnerability has been resolved: wifi: rtlwi | |
| CVE-2026-0310 | None | 0.34% | 1 | 0 | 2026-09-10T06:31:55 | A buffer overflow vulnerability in the XML processing functionality of Palo Alto | |
| CVE-2026-80844 | 0 | 0.19% | 5 | 1 | 2026-09-04T16:18:13.023000 | In the Linux kernel, the following vulnerability has been resolved: xfrm: ah6: | |
| CVE-2026-13348 | None | 0.31% | 2 | 0 | 2026-09-01T15:31:17 | CWE-307: Improper Restriction of Excessive Authentication Attempts vulnerability | |
| CVE-2026-18963 | 9.1 | 3.18% | 1 | 15 | template | 2026-08-28T22:53:42 | A flaw was found in the reset-credentials flow of the keycloak-services componen |
| CVE-2026-56389 | 8.6 | 0.16% | 1 | 0 | 2026-08-24T18:32:30 | GNU Bison allows for an execution of an arbitrary program during HTML report gen | |
| CVE-2026-74469 | 8.8 | 0.47% | 5 | 1 | 2026-08-19T18:33:35 | In the Linux kernel, the following vulnerability has been resolved: sctp: preve | |
| CVE-2026-68121 | 7.8 | 0.14% | 5 | 1 | 2026-08-19T18:32:06 | In the Linux kernel, the following vulnerability has been resolved: pppoe: relo | |
| CVE-2026-59310 | 9.8 | 49.68% | 2 | 2 | 2026-08-19T04:17:24.940000 | VMware vCenter contains a directory traversal vulnerability in the Syslog server | |
| CVE-2026-7646 | 6.5 | 0.30% | 2 | 5 | 2026-08-06T19:27:33.433000 | IBM Langflow OSS 1.0.0 through 1.10.3 allows users to read arbitrary files from | |
| CVE-2026-58138 | 9.8 | 9.26% | 4 | 6 | template | 2026-07-14T22:17:26.797000 | Orkes Conductor 3.21.21 before 3.30.2 contains an unauthenticated remote code ex |
| CVE-2026-45321 | 9.6 | 2.34% | 1 | 13 | 2026-06-08T23:53:12 | ## Summary On 2026-05-11, between approximately 19:20 and 19:26 UTC, 84 malicio | |
| CVE-2026-78030 | 0 | 0.00% | 4 | 0 | N/A | ||
| CVE-2026-57228 | 0 | 0.56% | 2 | 0 | N/A | ||
| CVE-2026-63452 | 0 | 0.36% | 2 | 0 | N/A | ||
| CVE-2026-71418 | 0 | 0.35% | 2 | 0 | N/A | ||
| CVE-2026-92708 | 0 | 0.34% | 2 | 0 | N/A | ||
| CVE-2026-72878 | 0 | 0.27% | 1 | 0 | N/A | ||
| CVE-2026-54520 | 0 | 0.40% | 1 | 1 | N/A | ||
| CVE-2026-54670 | 0 | 0.55% | 1 | 0 | N/A | ||
| CVE-2026-54671 | 0 | 0.41% | 1 | 0 | N/A | ||
| CVE-2026-93426 | 0 | 0.37% | 1 | 0 | N/A | ||
| CVE-2026-54716 | 0 | 0.32% | 1 | 0 | N/A | ||
| CVE-2026-54692 | 0 | 0.14% | 1 | 0 | N/A | ||
| CVE-2026-54627 | 0 | 0.44% | 1 | 0 | N/A | ||
| CVE-2026-93337 | 0 | 0.15% | 1 | 0 | N/A | ||
| CVE-2026-85500 | 0 | 0.55% | 1 | 0 | N/A |
updated 2026-09-20T03:30:31
2 posts
🔴 CVE-2026-93958 - Critical (9.1)
A vulnerability was found in D-Link R95 BE9500_1.00.16. This vulnerability affects the function system of the file /bin/ssi of the component DHMAPI. The manipulation of the argument NTPServer results in os command injection. The attack can be exec...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93958/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-93958 - Critical (9.1)
A vulnerability was found in D-Link R95 BE9500_1.00.16. This vulnerability affects the function system of the file /bin/ssi of the component DHMAPI. The manipulation of the argument NTPServer results in os command injection. The attack can be exec...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93958/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-20T03:30:29
4 posts
🔴 CVE-2026-94084 - Critical (9.4)
Suricata before 8.0.7 has an Http2ThreadMultiBuf use-after-free when a transaction is inspected by rules that use http.response_header with and without a transform.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94084/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CRITICAL use-after-free (CVE-2026-94084) in Suricata <8.0.7 🛡️. Exploitable via HTTP/2 rules with http.response_header. Risk: code execution, memory corruption. Patch by upgrading to 8.0.7+. https://radar.offseq.com/threat/cve-2026-94084-cwe-416-use-after-free-in-oisf-suricata-f54e858a25f14d6f #OffSeq #Suricata #Vuln #Infosec
##🔴 CVE-2026-94084 - Critical (9.4)
Suricata before 8.0.7 has an Http2ThreadMultiBuf use-after-free when a transaction is inspected by rules that use http.response_header with and without a transform.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94084/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CRITICAL use-after-free (CVE-2026-94084) in Suricata <8.0.7 🛡️. Exploitable via HTTP/2 rules with http.response_header. Risk: code execution, memory corruption. Patch by upgrading to 8.0.7+. https://radar.offseq.com/threat/cve-2026-94084-cwe-416-use-after-free-in-oisf-suricata-f54e858a25f14d6f #OffSeq #Suricata #Vuln #Infosec
##updated 2026-09-20T02:16:53.520000
4 posts
Suricata 8.0.0 – 8.0.6 affected by CRITICAL CVE-2026-94083: Type confusion in DoH2 (CWE-843) can trigger DoS via invalid free. Patch to 8.0.7+. No known exploits yet. https://radar.offseq.com/threat/cve-2026-94083-cwe-843-access-of-resource-using-incompatible-type-type-confusion-in-oisf-suricata-a9f0752b258da862 #OffSeq #Suricata #Vuln #BlueTeam
##🔴 CVE-2026-94083 - Critical (9.4)
Suricata before 8.0.7 has a DoH2 type confusion that can cause an invalid free, because cleanup code for the HTTP2 state is executed even though the actual state is HTTP1 (when there is a DoH2 request with an HTTP1 to HTTP2 upgrade). This requires...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94083/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##Suricata 8.0.0 – 8.0.6 affected by CRITICAL CVE-2026-94083: Type confusion in DoH2 (CWE-843) can trigger DoS via invalid free. Patch to 8.0.7+. No known exploits yet. https://radar.offseq.com/threat/cve-2026-94083-cwe-843-access-of-resource-using-incompatible-type-type-confusion-in-oisf-suricata-a9f0752b258da862 #OffSeq #Suricata #Vuln #BlueTeam
##🔴 CVE-2026-94083 - Critical (9.4)
Suricata before 8.0.7 has a DoH2 type confusion that can cause an invalid free, because cleanup code for the HTTP2 state is executed even though the actual state is HTTP1 (when there is a DoH2 request with an HTTP1 to HTTP2 upgrade). This requires...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94083/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-20T00:30:32
2 posts
🟠 CVE-2026-93993 - High (8.8)
Mistral Vibe before 2.25.5 contains a remote code execution vulnerability in the worktree creation process that executes git hooks before trust validation. Attackers can supply a repository with a crafted post-checkout hook that executes arbitrary...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93993/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-93993 - High (8.8)
Mistral Vibe before 2.25.5 contains a remote code execution vulnerability in the worktree creation process that executes git hooks before trust validation. Attackers can supply a repository with a crafted post-checkout hook that executes arbitrary...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93993/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-20T00:30:32
2 posts
🟠 CVE-2026-93992 - High (8.1)
Gopeed through 2.0.0-beta.3 contains a path traversal vulnerability in archive extraction that allows attackers to write arbitrary files outside the extraction directory. Attackers can craft malicious archives with entries containing directory tra...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93992/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-93992 - High (8.1)
Gopeed through 2.0.0-beta.3 contains a path traversal vulnerability in archive extraction that allows attackers to write arbitrary files outside the extraction directory. Attackers can craft malicious archives with entries containing directory tra...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93992/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-20T00:30:31
2 posts
🟠 CVE-2026-93990 - High (7.5)
Expat through 2.8.4 fails to validate low surrogates following high surrogates in UTF-16 input, allowing malformed UTF-16 sequences to be accepted. Attackers can craft UTF-16 encoded XML with lone high surrogates that consume following code units,...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93990/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-93990 - High (7.5)
Expat through 2.8.4 fails to validate low surrogates following high surrogates in UTF-16 input, allowing malformed UTF-16 sequences to be accepted. Attackers can craft UTF-16 encoded XML with lone high surrogates that consume following code units,...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93990/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-19T23:17:11.113000
2 posts
🟠 CVE-2026-94056 - High (7.5)
Exim before 4.100.1, when Proxy-Protocol is used with an attacker-controlled proxy, allows attackers to read certain uninitialized data from stack memory.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94056/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-94056 - High (7.5)
Exim before 4.100.1, when Proxy-Protocol is used with an attacker-controlled proxy, allows attackers to read certain uninitialized data from stack memory.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94056/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-19T23:17:10.360000
2 posts
🟠 CVE-2026-93991 - High (7.7)
Argo Workflows versions 4.1.0 through 4.1.3 contain an authorization bypass vulnerability in ListArchivedWorkflows that fails to apply cluster-scoped access review when the metadata.namespace field selector uses the NotEquals operator. Attackers w...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93991/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-93991 - High (7.7)
Argo Workflows versions 4.1.0 through 4.1.3 contain an authorization bypass vulnerability in ListArchivedWorkflows that fails to apply cluster-scoped access review when the metadata.namespace field selector uses the NotEquals operator. Attackers w...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93991/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-19T15:32:25
4 posts
🟠 CVE-2026-86814 - High (8.1)
The UsersWP WordPress plugin before 1.5.10 does not verify that a social login provider has confirmed ownership of an email address before using it to resolve an existing account, allowing unauthenticated attackers to log in as any user, includin...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-86814/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##UsersWP <1.5.10 is affected by CRITICAL privilege management flaw (CVE-2026-86814). Attackers can hijack any account — including admins — by abusing social login email validation. Update to 1.5.10+ ASAP. https://radar.offseq.com/threat/cve-2026-86814-cwe-269-improper-privilege-management-in-userswp-e3906890fe20564a #OffSeq #WordPress #CVE202686814 #infosec
##🟠 CVE-2026-86814 - High (8.1)
The UsersWP WordPress plugin before 1.5.10 does not verify that a social login provider has confirmed ownership of an email address before using it to resolve an existing account, allowing unauthenticated attackers to log in as any user, includin...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-86814/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##UsersWP <1.5.10 is affected by CRITICAL privilege management flaw (CVE-2026-86814). Attackers can hijack any account — including admins — by abusing social login email validation. Update to 1.5.10+ ASAP. https://radar.offseq.com/threat/cve-2026-86814-cwe-269-improper-privilege-management-in-userswp-e3906890fe20564a #OffSeq #WordPress #CVE202686814 #infosec
##updated 2026-09-19T15:31:25
2 posts
🟠 CVE-2026-88926 - High (8.6)
The VikRentItems Flexible Rental Management System WordPress plugin before 1.2.4 does not sanitise and escape some of its parameters before using them in SQL statements, allowing unauthenticated users to perform SQL injection attacks.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-88926/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-88926 - High (8.6)
The VikRentItems Flexible Rental Management System WordPress plugin before 1.2.4 does not sanitise and escape some of its parameters before using them in SQL statements, allowing unauthenticated users to perform SQL injection attacks.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-88926/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-19T15:31:24
2 posts
🟠 CVE-2026-85680 - High (8.8)
The Ultimate Member WordPress plugin before 2.13.1 does not escape a value derived from user supplied profile names before outputting it in the page title, and decodes HTML entities in it after its own sanitisation has already run, allowing unaut...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-85680/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-85680 - High (8.8)
The Ultimate Member WordPress plugin before 2.13.1 does not escape a value derived from user supplied profile names before outputting it in the page title, and decodes HTML entities in it after its own sanitisation has already run, allowing unaut...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-85680/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-19T15:31:24
2 posts
Ultra Addons for Contact Form 7 (<3.5.51) is vulnerable (CVE-2026-84750, CRITICAL). Unrestricted file upload enables unauthenticated RCE on Debian/Ubuntu Apache (.phar) or stored XSS. Upgrade to 3.5.51+ ASAP. https://radar.offseq.com/threat/cve-2026-84750-cwe-434-unrestricted-upload-of-file-with-dangerous-type-in-ultra-addons-for-contact-cea8950917a550ac #OffSeq #WordPress #Infosec #RCE
##Ultra Addons for Contact Form 7 (<3.5.51) is vulnerable (CVE-2026-84750, CRITICAL). Unrestricted file upload enables unauthenticated RCE on Debian/Ubuntu Apache (.phar) or stored XSS. Upgrade to 3.5.51+ ASAP. https://radar.offseq.com/threat/cve-2026-84750-cwe-434-unrestricted-upload-of-file-with-dangerous-type-in-ultra-addons-for-contact-cea8950917a550ac #OffSeq #WordPress #Infosec #RCE
##updated 2026-09-19T15:31:23
4 posts
🔴 CVE-2026-86591 - Critical (9.8)
The Botiga Pro WordPress plugin before 1.6.5 does not perform any authorisation checks on one of its REST routes, allowing unauthenticated users to update arbitrary WordPress options with arbitrary values, which could lead to privilege escalation ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-86591/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-86591 | CRITICAL | Botiga Pro <1.6.5 allows unauthenticated attackers to modify WP options, inject persistent XSS, and trash posts due to missing REST API authorization. Immediate upgrade to 1.6.5+ is essential. https://radar.offseq.com/threat/cve-2026-86591-cwe-862-missing-authorization-in-botiga-pro-dcf5d6244d090e38 #OffSeq #WordPress #CVE202686591
##🔴 CVE-2026-86591 - Critical (9.8)
The Botiga Pro WordPress plugin before 1.6.5 does not perform any authorisation checks on one of its REST routes, allowing unauthenticated users to update arbitrary WordPress options with arbitrary values, which could lead to privilege escalation ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-86591/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-86591 | CRITICAL | Botiga Pro <1.6.5 allows unauthenticated attackers to modify WP options, inject persistent XSS, and trash posts due to missing REST API authorization. Immediate upgrade to 1.6.5+ is essential. https://radar.offseq.com/threat/cve-2026-86591-cwe-862-missing-authorization-in-botiga-pro-dcf5d6244d090e38 #OffSeq #WordPress #CVE202686591
##updated 2026-09-19T15:17:08.503000
2 posts
🟠 CVE-2026-93761 - High (7.5)
An inefficient regular expression complexity issue in the in-memory query evaluation component of the Mongoid library may allow an unauthenticated party to cause excessive processing within an embedding application process. Applications that place...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93761/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-93761 - High (7.5)
An inefficient regular expression complexity issue in the in-memory query evaluation component of the Mongoid library may allow an unauthenticated party to cause excessive processing within an embedding application process. Applications that place...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93761/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-19T15:17:05.863000
2 posts
🟠 CVE-2026-84398 - High (7.5)
CM2507 IP cameras accept an empty password for a privileged account exposed through its ONVIF management service. An attacker with network access to the affected device could access privileged management functions and obtain device, user, media-pr...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84398/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-84398 - High (7.5)
CM2507 IP cameras accept an empty password for a privileged account exposed through its ONVIF management service. An attacker with network access to the affected device could access privileged management functions and obtain device, user, media-pr...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84398/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-19T15:17:05.750000
2 posts
🟠 CVE-2026-84083 - High (7.8)
IBM Guardium Data Protection 12.2 is vulnerable to local privilege escalation via the SUID-root nmap_wrapper binary on the Collector appliance. A local attacker with low-privileged access to the Collector can exploit insufficient argument validati...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84083/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-84083 - High (7.8)
IBM Guardium Data Protection 12.2 is vulnerable to local privilege escalation via the SUID-root nmap_wrapper binary on the Collector appliance. A local attacker with low-privileged access to the Collector can exploit insufficient argument validati...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84083/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-19T15:17:05.537000
3 posts
[1/3]
High‑impact security incidents ( CVSS ≥ 7 ) reported between 2026‑09‑18 and today
CVE‑2026‑84241
• 8.1 (High)
• IBM Guardium Data Protection 12.2
• Remote attacker can bypass security restrictions because the product performs improper authorization checks.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84241/
CVE‑2026‑84078
• 9.9 (Critical)
• IBM Guardium Data Protection 12.2
• Missing authentication in the LoadBalanc… component allows unauthenticated remote code execution.
• https://stemshop.top/cve/CVE-2026-84078
CVE‑2026‑84075
• 9.9 (Critical)
• IBM Guardium Data Protection 12.2
• The ChangeTrackerServlet lacks authentication, enabling a remote attacker to bypass all security controls.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84075/
CVE‑2026‑84070
• 8.9 (High)
• IBM Guardium Data Protection 12.2
• Authenticated remote attacker can execute arbitrary code via improper input neutralisation during page generation.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84070/
CVE‑2026‑84031
• 9.0 (Critical)
• IBM Guardium Data Protection 12.2
• Authenticated remote attacker can execute arbitrary code because of improper input sanitisation in web pages.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84031/
CVE‑2026‑84089
• 7.8 (High)
• IBM Guardium Data Protection 12.2
• Local attacker can obtain elevated privileges due to flawed privilege‑management logic.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84089/
CVE‑2026‑84081
• 8.1 (High)
• IBM Guardium Data Protection 12.2
• Remote attacker bypasses security restrictions because of improper certificate validation.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84081/
CVE‑2026‑84239
• 7.6 (High)
• IBM Guardium Data Protection 12.2
• Authenticated remote attacker can harvest sensitive data; the flaw stems from improper neutralisation of special SQL elements.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84239/
CVE‑2026‑82967
• 9.8 (Critical)
• IBM Guardium Data Protection 12.2
• Authentication bypass permits unauthenticated remote attackers to gain full access.
• https://www.thehackerwire.com/vulnerability/CVE-2026-82967/
🟠 CVE-2026-84081 - High (8.1)
IBM Guardium Data Protection 12.2 could allow a remote attacker to bypass security restrictions due to improper certificate validation.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84081/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-84081 - High (8.1)
IBM Guardium Data Protection 12.2 could allow a remote attacker to bypass security restrictions due to improper certificate validation.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84081/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-19T15:17:05.430000
3 posts
[1/3]
High‑impact security incidents ( CVSS ≥ 7 ) reported between 2026‑09‑18 and today
CVE‑2026‑84241
• 8.1 (High)
• IBM Guardium Data Protection 12.2
• Remote attacker can bypass security restrictions because the product performs improper authorization checks.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84241/
CVE‑2026‑84078
• 9.9 (Critical)
• IBM Guardium Data Protection 12.2
• Missing authentication in the LoadBalanc… component allows unauthenticated remote code execution.
• https://stemshop.top/cve/CVE-2026-84078
CVE‑2026‑84075
• 9.9 (Critical)
• IBM Guardium Data Protection 12.2
• The ChangeTrackerServlet lacks authentication, enabling a remote attacker to bypass all security controls.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84075/
CVE‑2026‑84070
• 8.9 (High)
• IBM Guardium Data Protection 12.2
• Authenticated remote attacker can execute arbitrary code via improper input neutralisation during page generation.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84070/
CVE‑2026‑84031
• 9.0 (Critical)
• IBM Guardium Data Protection 12.2
• Authenticated remote attacker can execute arbitrary code because of improper input sanitisation in web pages.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84031/
CVE‑2026‑84089
• 7.8 (High)
• IBM Guardium Data Protection 12.2
• Local attacker can obtain elevated privileges due to flawed privilege‑management logic.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84089/
CVE‑2026‑84081
• 8.1 (High)
• IBM Guardium Data Protection 12.2
• Remote attacker bypasses security restrictions because of improper certificate validation.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84081/
CVE‑2026‑84239
• 7.6 (High)
• IBM Guardium Data Protection 12.2
• Authenticated remote attacker can harvest sensitive data; the flaw stems from improper neutralisation of special SQL elements.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84239/
CVE‑2026‑82967
• 9.8 (Critical)
• IBM Guardium Data Protection 12.2
• Authentication bypass permits unauthenticated remote attackers to gain full access.
• https://www.thehackerwire.com/vulnerability/CVE-2026-82967/
🔴 CVE-2026-84078 - Critical (9.9)
IBM Guardium Data Protection 12.2 is vulnerable to a missing authentication vulnerability in the LoadBalancerServlet. An unauthenticated user can access privileged load-balancer operations, potentially resulting in unauthorized actions and impact ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84078/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-84078 - Critical (9.9)
IBM Guardium Data Protection 12.2 is vulnerable to a missing authentication vulnerability in the LoadBalancerServlet. An unauthenticated user can access privileged load-balancer operations, potentially resulting in unauthorized actions and impact ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84078/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-19T15:17:05.317000
2 posts
🟠 CVE-2026-84076 - High (7.6)
IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to bypass security restrictions due to improper authorization.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84076/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-84076 - High (7.6)
IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to bypass security restrictions due to improper authorization.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84076/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-19T15:17:05.217000
3 posts
[1/3]
High‑impact security incidents ( CVSS ≥ 7 ) reported between 2026‑09‑18 and today
CVE‑2026‑84241
• 8.1 (High)
• IBM Guardium Data Protection 12.2
• Remote attacker can bypass security restrictions because the product performs improper authorization checks.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84241/
CVE‑2026‑84078
• 9.9 (Critical)
• IBM Guardium Data Protection 12.2
• Missing authentication in the LoadBalanc… component allows unauthenticated remote code execution.
• https://stemshop.top/cve/CVE-2026-84078
CVE‑2026‑84075
• 9.9 (Critical)
• IBM Guardium Data Protection 12.2
• The ChangeTrackerServlet lacks authentication, enabling a remote attacker to bypass all security controls.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84075/
CVE‑2026‑84070
• 8.9 (High)
• IBM Guardium Data Protection 12.2
• Authenticated remote attacker can execute arbitrary code via improper input neutralisation during page generation.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84070/
CVE‑2026‑84031
• 9.0 (Critical)
• IBM Guardium Data Protection 12.2
• Authenticated remote attacker can execute arbitrary code because of improper input sanitisation in web pages.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84031/
CVE‑2026‑84089
• 7.8 (High)
• IBM Guardium Data Protection 12.2
• Local attacker can obtain elevated privileges due to flawed privilege‑management logic.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84089/
CVE‑2026‑84081
• 8.1 (High)
• IBM Guardium Data Protection 12.2
• Remote attacker bypasses security restrictions because of improper certificate validation.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84081/
CVE‑2026‑84239
• 7.6 (High)
• IBM Guardium Data Protection 12.2
• Authenticated remote attacker can harvest sensitive data; the flaw stems from improper neutralisation of special SQL elements.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84239/
CVE‑2026‑82967
• 9.8 (Critical)
• IBM Guardium Data Protection 12.2
• Authentication bypass permits unauthenticated remote attackers to gain full access.
• https://www.thehackerwire.com/vulnerability/CVE-2026-82967/
🔴 CVE-2026-84075 - Critical (9.9)
IBM Guardium Data Protection 12.2 could allow a remote attacker to bypass security restrictions due to missing authentication for the ChangeTrackerServlet.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84075/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-84075 - Critical (9.9)
IBM Guardium Data Protection 12.2 could allow a remote attacker to bypass security restrictions due to missing authentication for the ChangeTrackerServlet.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84075/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-19T15:17:04.867000
3 posts
[1/3]
High‑impact security incidents ( CVSS ≥ 7 ) reported between 2026‑09‑18 and today
CVE‑2026‑84241
• 8.1 (High)
• IBM Guardium Data Protection 12.2
• Remote attacker can bypass security restrictions because the product performs improper authorization checks.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84241/
CVE‑2026‑84078
• 9.9 (Critical)
• IBM Guardium Data Protection 12.2
• Missing authentication in the LoadBalanc… component allows unauthenticated remote code execution.
• https://stemshop.top/cve/CVE-2026-84078
CVE‑2026‑84075
• 9.9 (Critical)
• IBM Guardium Data Protection 12.2
• The ChangeTrackerServlet lacks authentication, enabling a remote attacker to bypass all security controls.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84075/
CVE‑2026‑84070
• 8.9 (High)
• IBM Guardium Data Protection 12.2
• Authenticated remote attacker can execute arbitrary code via improper input neutralisation during page generation.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84070/
CVE‑2026‑84031
• 9.0 (Critical)
• IBM Guardium Data Protection 12.2
• Authenticated remote attacker can execute arbitrary code because of improper input sanitisation in web pages.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84031/
CVE‑2026‑84089
• 7.8 (High)
• IBM Guardium Data Protection 12.2
• Local attacker can obtain elevated privileges due to flawed privilege‑management logic.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84089/
CVE‑2026‑84081
• 8.1 (High)
• IBM Guardium Data Protection 12.2
• Remote attacker bypasses security restrictions because of improper certificate validation.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84081/
CVE‑2026‑84239
• 7.6 (High)
• IBM Guardium Data Protection 12.2
• Authenticated remote attacker can harvest sensitive data; the flaw stems from improper neutralisation of special SQL elements.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84239/
CVE‑2026‑82967
• 9.8 (Critical)
• IBM Guardium Data Protection 12.2
• Authentication bypass permits unauthenticated remote attackers to gain full access.
• https://www.thehackerwire.com/vulnerability/CVE-2026-82967/
🟠 CVE-2026-84070 - High (8.9)
IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary code due to improper neutralization of input during web page generation.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84070/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-84070 - High (8.9)
IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary code due to improper neutralization of input during web page generation.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84070/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-19T15:17:04.430000
3 posts
[1/3]
High‑impact security incidents ( CVSS ≥ 7 ) reported between 2026‑09‑18 and today
CVE‑2026‑84241
• 8.1 (High)
• IBM Guardium Data Protection 12.2
• Remote attacker can bypass security restrictions because the product performs improper authorization checks.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84241/
CVE‑2026‑84078
• 9.9 (Critical)
• IBM Guardium Data Protection 12.2
• Missing authentication in the LoadBalanc… component allows unauthenticated remote code execution.
• https://stemshop.top/cve/CVE-2026-84078
CVE‑2026‑84075
• 9.9 (Critical)
• IBM Guardium Data Protection 12.2
• The ChangeTrackerServlet lacks authentication, enabling a remote attacker to bypass all security controls.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84075/
CVE‑2026‑84070
• 8.9 (High)
• IBM Guardium Data Protection 12.2
• Authenticated remote attacker can execute arbitrary code via improper input neutralisation during page generation.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84070/
CVE‑2026‑84031
• 9.0 (Critical)
• IBM Guardium Data Protection 12.2
• Authenticated remote attacker can execute arbitrary code because of improper input sanitisation in web pages.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84031/
CVE‑2026‑84089
• 7.8 (High)
• IBM Guardium Data Protection 12.2
• Local attacker can obtain elevated privileges due to flawed privilege‑management logic.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84089/
CVE‑2026‑84081
• 8.1 (High)
• IBM Guardium Data Protection 12.2
• Remote attacker bypasses security restrictions because of improper certificate validation.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84081/
CVE‑2026‑84239
• 7.6 (High)
• IBM Guardium Data Protection 12.2
• Authenticated remote attacker can harvest sensitive data; the flaw stems from improper neutralisation of special SQL elements.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84239/
CVE‑2026‑82967
• 9.8 (Critical)
• IBM Guardium Data Protection 12.2
• Authentication bypass permits unauthenticated remote attackers to gain full access.
• https://www.thehackerwire.com/vulnerability/CVE-2026-82967/
🔴 CVE-2026-82967 - Critical (9.8)
IBM Guardium Data Protection 12.2 is vulnerable to an authentication bypass that allows an unauthenticated remote attacker to bypass IP-based access controls and access the Guardium management interface.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-82967/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-82967 - Critical (9.8)
IBM Guardium Data Protection 12.2 is vulnerable to an authentication bypass that allows an unauthenticated remote attacker to bypass IP-based access controls and access the Guardium management interface.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-82967/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-19T15:17:02.430000
2 posts
🔴 CVE-2026-80441 - Critical (9.8)
IBM Guardium Data Protection 12.2 is vulnerable to an unauthenticated second-order SQL injection vulnerability in the generateInsertQuery functionality of change-tracker-data.sql. A remote attacker could inject malicious SQL that is subsequently p...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-80441/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-80441 - Critical (9.8)
IBM Guardium Data Protection 12.2 is vulnerable to an unauthenticated second-order SQL injection vulnerability in the generateInsertQuery functionality of change-tracker-data.sql. A remote attacker could inject malicious SQL that is subsequently p...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-80441/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-19T14:17:05.850000
4 posts
🟠 CVE-2026-92807 - High (8.8)
The Save as PDF Plugin by PDFCrowd plugin for WordPress is vulnerable to Arbitrary Function Invocation in all versions up to, and including, 4.6.1 via the `pdf_created_callback` shortcode attribute. The `eval_shortcode()` function copies any non-`...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-92807/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-92807: HIGH severity (CVSS 8.8) code injection in pdfcrowd Save as PDF Plugin for WordPress (<=4.6.1). Contributor+ users can run arbitrary PHP — risking API credential leaks & server compromise. Restrict access, monitor for patch. https://radar.offseq.com/threat/cve-2026-92807-cwe-94-improper-control-of-generation-of-code-code-injection-in-pdfcrowd-save-as-pdf-bd60570e4aef57a5 #OffSeq #WordPress #Infosec
##🟠 CVE-2026-92807 - High (8.8)
The Save as PDF Plugin by PDFCrowd plugin for WordPress is vulnerable to Arbitrary Function Invocation in all versions up to, and including, 4.6.1 via the `pdf_created_callback` shortcode attribute. The `eval_shortcode()` function copies any non-`...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-92807/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-92807: HIGH severity (CVSS 8.8) code injection in pdfcrowd Save as PDF Plugin for WordPress (<=4.6.1). Contributor+ users can run arbitrary PHP — risking API credential leaks & server compromise. Restrict access, monitor for patch. https://radar.offseq.com/threat/cve-2026-92807-cwe-94-improper-control-of-generation-of-code-code-injection-in-pdfcrowd-save-as-pdf-bd60570e4aef57a5 #OffSeq #WordPress #Infosec
##updated 2026-09-19T14:17:04.240000
2 posts
🟠 CVE-2026-92404 - High (7.5)
The MgoSync WordPress plugin before 2.1.7 does not have authorization controls on one of its REST API endpoints, allowing unauthenticated users to retrieve the stored WooCommerce API credentials, including a read/write consumer key and secret, fr...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-92404/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-92404 - High (7.5)
The MgoSync WordPress plugin before 2.1.7 does not have authorization controls on one of its REST API endpoints, allowing unauthenticated users to retrieve the stored WooCommerce API credentials, including a read/write consumer key and secret, fr...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-92404/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-19T14:17:03.127000
4 posts
1 repos
🔴 CVE-2026-89274 - Critical (9.1)
The WP Recipe Maker plugin for WordPress is vulnerable to Arbitrary Shortcode Execution in all versions up to, and including, 10.8.1. The vulnerability exists because `WPRM_Metadata::sanitize_metadata()` recursively calls `do_shortcode()` on every...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89274/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##WP Recipe Maker <=10.8.1 hit by CVE-2026-89274: CRITICAL code injection via unsanitized shortcodes in comment ratings. Unauthenticated attackers can trigger arbitrary shortcode execution on recipe pages. Upgrade ASAP. https://radar.offseq.com/threat/cve-2026-89274-cwe-94-improper-control-of-generation-of-code-code-injection-in-brechtvds-wp-recipe-77a2426acb987f3a #OffSeq #WordPress #CVE202689274 #Infosec
##🔴 CVE-2026-89274 - Critical (9.1)
The WP Recipe Maker plugin for WordPress is vulnerable to Arbitrary Shortcode Execution in all versions up to, and including, 10.8.1. The vulnerability exists because `WPRM_Metadata::sanitize_metadata()` recursively calls `do_shortcode()` on every...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89274/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##WP Recipe Maker <=10.8.1 hit by CVE-2026-89274: CRITICAL code injection via unsanitized shortcodes in comment ratings. Unauthenticated attackers can trigger arbitrary shortcode execution on recipe pages. Upgrade ASAP. https://radar.offseq.com/threat/cve-2026-89274-cwe-94-improper-control-of-generation-of-code-code-injection-in-brechtvds-wp-recipe-77a2426acb987f3a #OffSeq #WordPress #CVE202689274 #Infosec
##updated 2026-09-19T14:17:02.290000
2 posts
🟠 CVE-2026-88824 - High (8.8)
The Master Blocks WordPress plugin before 1.5.0 does not have authorisation on one of its REST routes, allowing unauthenticated users to update its settings, including a value that is output unescaped in the admin area, leading to Stored XSS that...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-88824/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-88824 - High (8.8)
The Master Blocks WordPress plugin before 1.5.0 does not have authorisation on one of its REST routes, allowing unauthenticated users to update its settings, including a value that is output unescaped in the admin area, leading to Stored XSS that...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-88824/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-19T14:17:00.627000
2 posts
🟠 CVE-2026-85658 - High (8.1)
The Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content – ProfilePress plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 4.17.2 This is du...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-85658/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-85658 - High (8.1)
The Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content – ProfilePress plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 4.17.2 This is du...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-85658/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-19T14:17:00.477000
2 posts
🟠 CVE-2026-85574 - High (8)
The Unbounce Landing Pages WordPress plugin before 1.1.5 does not perform any authorisation check when updating the configuration its front-end proxy relies on, allowing any authenticated user, such as a subscriber, to point that proxy at a host t...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-85574/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-85574 - High (8)
The Unbounce Landing Pages WordPress plugin before 1.1.5 does not perform any authorisation check when updating the configuration its front-end proxy relies on, allowing any authenticated user, such as a subscriber, to point that proxy at a host t...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-85574/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-19T14:17:00.260000
3 posts
[1/3]
High‑impact security incidents ( CVSS ≥ 7 ) reported between 2026‑09‑18 and today
CVE‑2026‑84241
• 8.1 (High)
• IBM Guardium Data Protection 12.2
• Remote attacker can bypass security restrictions because the product performs improper authorization checks.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84241/
CVE‑2026‑84078
• 9.9 (Critical)
• IBM Guardium Data Protection 12.2
• Missing authentication in the LoadBalanc… component allows unauthenticated remote code execution.
• https://stemshop.top/cve/CVE-2026-84078
CVE‑2026‑84075
• 9.9 (Critical)
• IBM Guardium Data Protection 12.2
• The ChangeTrackerServlet lacks authentication, enabling a remote attacker to bypass all security controls.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84075/
CVE‑2026‑84070
• 8.9 (High)
• IBM Guardium Data Protection 12.2
• Authenticated remote attacker can execute arbitrary code via improper input neutralisation during page generation.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84070/
CVE‑2026‑84031
• 9.0 (Critical)
• IBM Guardium Data Protection 12.2
• Authenticated remote attacker can execute arbitrary code because of improper input sanitisation in web pages.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84031/
CVE‑2026‑84089
• 7.8 (High)
• IBM Guardium Data Protection 12.2
• Local attacker can obtain elevated privileges due to flawed privilege‑management logic.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84089/
CVE‑2026‑84081
• 8.1 (High)
• IBM Guardium Data Protection 12.2
• Remote attacker bypasses security restrictions because of improper certificate validation.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84081/
CVE‑2026‑84239
• 7.6 (High)
• IBM Guardium Data Protection 12.2
• Authenticated remote attacker can harvest sensitive data; the flaw stems from improper neutralisation of special SQL elements.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84239/
CVE‑2026‑82967
• 9.8 (Critical)
• IBM Guardium Data Protection 12.2
• Authentication bypass permits unauthenticated remote attackers to gain full access.
• https://www.thehackerwire.com/vulnerability/CVE-2026-82967/
🟠 CVE-2026-84241 - High (8.1)
IBM Guardium Data Protection 12.2 could allow a remote attacker to bypass security restrictions due to improper authorization.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84241/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-84241 - High (8.1)
IBM Guardium Data Protection 12.2 could allow a remote attacker to bypass security restrictions due to improper authorization.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84241/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-19T14:17:00.143000
3 posts
[1/3]
High‑impact security incidents ( CVSS ≥ 7 ) reported between 2026‑09‑18 and today
CVE‑2026‑84241
• 8.1 (High)
• IBM Guardium Data Protection 12.2
• Remote attacker can bypass security restrictions because the product performs improper authorization checks.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84241/
CVE‑2026‑84078
• 9.9 (Critical)
• IBM Guardium Data Protection 12.2
• Missing authentication in the LoadBalanc… component allows unauthenticated remote code execution.
• https://stemshop.top/cve/CVE-2026-84078
CVE‑2026‑84075
• 9.9 (Critical)
• IBM Guardium Data Protection 12.2
• The ChangeTrackerServlet lacks authentication, enabling a remote attacker to bypass all security controls.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84075/
CVE‑2026‑84070
• 8.9 (High)
• IBM Guardium Data Protection 12.2
• Authenticated remote attacker can execute arbitrary code via improper input neutralisation during page generation.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84070/
CVE‑2026‑84031
• 9.0 (Critical)
• IBM Guardium Data Protection 12.2
• Authenticated remote attacker can execute arbitrary code because of improper input sanitisation in web pages.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84031/
CVE‑2026‑84089
• 7.8 (High)
• IBM Guardium Data Protection 12.2
• Local attacker can obtain elevated privileges due to flawed privilege‑management logic.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84089/
CVE‑2026‑84081
• 8.1 (High)
• IBM Guardium Data Protection 12.2
• Remote attacker bypasses security restrictions because of improper certificate validation.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84081/
CVE‑2026‑84239
• 7.6 (High)
• IBM Guardium Data Protection 12.2
• Authenticated remote attacker can harvest sensitive data; the flaw stems from improper neutralisation of special SQL elements.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84239/
CVE‑2026‑82967
• 9.8 (Critical)
• IBM Guardium Data Protection 12.2
• Authentication bypass permits unauthenticated remote attackers to gain full access.
• https://www.thehackerwire.com/vulnerability/CVE-2026-82967/
🟠 CVE-2026-84239 - High (7.6)
IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to obtain sensitive information due to improper neutralization of special elements used in an SQL command.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84239/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-84239 - High (7.6)
IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to obtain sensitive information due to improper neutralization of special elements used in an SQL command.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84239/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-19T14:16:59.917000
2 posts
🟠 CVE-2026-84105 - High (7.7)
IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to obtain sensitive information due to improper neutralization of special elements used in an SQL command.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84105/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-84105 - High (7.7)
IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to obtain sensitive information due to improper neutralization of special elements used in an SQL command.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84105/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-19T14:16:59.813000
3 posts
[1/3]
High‑impact security incidents ( CVSS ≥ 7 ) reported between 2026‑09‑18 and today
CVE‑2026‑84241
• 8.1 (High)
• IBM Guardium Data Protection 12.2
• Remote attacker can bypass security restrictions because the product performs improper authorization checks.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84241/
CVE‑2026‑84078
• 9.9 (Critical)
• IBM Guardium Data Protection 12.2
• Missing authentication in the LoadBalanc… component allows unauthenticated remote code execution.
• https://stemshop.top/cve/CVE-2026-84078
CVE‑2026‑84075
• 9.9 (Critical)
• IBM Guardium Data Protection 12.2
• The ChangeTrackerServlet lacks authentication, enabling a remote attacker to bypass all security controls.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84075/
CVE‑2026‑84070
• 8.9 (High)
• IBM Guardium Data Protection 12.2
• Authenticated remote attacker can execute arbitrary code via improper input neutralisation during page generation.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84070/
CVE‑2026‑84031
• 9.0 (Critical)
• IBM Guardium Data Protection 12.2
• Authenticated remote attacker can execute arbitrary code because of improper input sanitisation in web pages.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84031/
CVE‑2026‑84089
• 7.8 (High)
• IBM Guardium Data Protection 12.2
• Local attacker can obtain elevated privileges due to flawed privilege‑management logic.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84089/
CVE‑2026‑84081
• 8.1 (High)
• IBM Guardium Data Protection 12.2
• Remote attacker bypasses security restrictions because of improper certificate validation.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84081/
CVE‑2026‑84239
• 7.6 (High)
• IBM Guardium Data Protection 12.2
• Authenticated remote attacker can harvest sensitive data; the flaw stems from improper neutralisation of special SQL elements.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84239/
CVE‑2026‑82967
• 9.8 (Critical)
• IBM Guardium Data Protection 12.2
• Authentication bypass permits unauthenticated remote attackers to gain full access.
• https://www.thehackerwire.com/vulnerability/CVE-2026-82967/
🟠 CVE-2026-84089 - High (7.8)
IBM Guardium Data Protection 12.2 could allow a local attacker to gain elevated privileges due to improper privilege management.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84089/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-84089 - High (7.8)
IBM Guardium Data Protection 12.2 could allow a local attacker to gain elevated privileges due to improper privilege management.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84089/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-19T14:16:59.587000
2 posts
🟠 CVE-2026-84085 - High (8.1)
IBM Guardium Data Protection 12.2 could allow a remote attacker to execute arbitrary OS commands due to improper neutralization of special elements used in an OS command.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84085/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-84085 - High (8.1)
IBM Guardium Data Protection 12.2 could allow a remote attacker to execute arbitrary OS commands due to improper neutralization of special elements used in an OS command.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84085/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-19T12:16:41.873000
4 posts
🔴 CVE-2026-93985 - Critical (9.9)
OpenPanel js-runtime through commit bad75bdd contains a sandbox escape vulnerability in the JavaScript webhook template validator that fails to block computed member access to constructor chains. Attackers with project write access can create webh...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93985/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-93985 (CVSS 9.4) in Openpanel-dev openpanel v0: Critical code injection via JS webhook template validator. Attackers with project write access can run arbitrary code in the worker process. Limit permissions & monitor. https://radar.offseq.com/threat/cve-2026-93985-improper-control-of-generation-of-code-code-injection-in-openpanel-dev-openpanel-f8ef9daa74899f8b #OffSeq #Vuln #AppSec
##🔴 CVE-2026-93985 - Critical (9.9)
OpenPanel js-runtime through commit bad75bdd contains a sandbox escape vulnerability in the JavaScript webhook template validator that fails to block computed member access to constructor chains. Attackers with project write access can create webh...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93985/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-93985 (CVSS 9.4) in Openpanel-dev openpanel v0: Critical code injection via JS webhook template validator. Attackers with project write access can run arbitrary code in the worker process. Limit permissions & monitor. https://radar.offseq.com/threat/cve-2026-93985-improper-control-of-generation-of-code-code-injection-in-openpanel-dev-openpanel-f8ef9daa74899f8b #OffSeq #Vuln #AppSec
##updated 2026-09-19T09:32:25
5 posts
🔴 CVE-2026-93742 - Critical (9.9)
A weakness has been identified in Totolink A3002MU Hh-B20211125.1046. Affected by this issue is the function formWsc of the file /boafrm/formWsc. This manipulation of the argument localPin causes command injection. The attack can be initiated remo...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93742/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-93742 - Unpatched Command Injection in Totolink A3002MU routers enables remote RCE. Public exploit released. CVSS 9.9. Isolate devices now. #CVE #Totolink #infosec
##Totolink A3002MU routers suffer a CRITICAL (CVSS 9.4) command injection vuln (CVE-2026-93742) in formWsc (/boafrm/formWsc). Public exploit available — remote compromise risk. Restrict access, monitor devices, patch ASAP. https://radar.offseq.com/threat/cve-2026-93742-command-injection-in-totolink-a3002mu-0eaffbb279ea62b7 #OffSeq #CVE #IoTSecurity
##🔴 CVE-2026-93742 - Critical (9.9)
A weakness has been identified in Totolink A3002MU Hh-B20211125.1046. Affected by this issue is the function formWsc of the file /boafrm/formWsc. This manipulation of the argument localPin causes command injection. The attack can be initiated remo...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93742/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##Totolink A3002MU routers suffer a CRITICAL (CVSS 9.4) command injection vuln (CVE-2026-93742) in formWsc (/boafrm/formWsc). Public exploit available — remote compromise risk. Restrict access, monitor devices, patch ASAP. https://radar.offseq.com/threat/cve-2026-93742-command-injection-in-totolink-a3002mu-0eaffbb279ea62b7 #OffSeq #CVE #IoTSecurity
##updated 2026-09-19T09:32:22
2 posts
🟠 CVE-2026-4327 - High (8.8)
The The Welcomizer plugin for WordPress is vulnerable to Remote Code Execution in all versions up to and including 2.8.1. This is due to missing authorization checks on the twiz_ajax_callback AJAX action's 'savesection' handler combined with the u...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-4327/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-4327 - High (8.8)
The The Welcomizer plugin for WordPress is vulnerable to Remote Code Execution in all versions up to and including 2.8.1. This is due to missing authorization checks on the twiz_ajax_callback AJAX action's 'savesection' handler combined with the u...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-4327/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-19T09:32:16
2 posts
🟠 CVE-2026-1255 - High (7.5)
The YS LeadGen plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.1.4 due to the 'ysleadgen_get_captured_data' AJAX action being accessible to unauthenticated users. This makes it possible ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-1255/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-1255 - High (7.5)
The YS LeadGen plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.1.4 due to the 'ysleadgen_get_captured_data' AJAX action being accessible to unauthenticated users. This makes it possible ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-1255/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-19T06:16:30.557000
5 posts
CVE-2026-93741: Totolink A3002MU (Hh-B20211125.1046) hit by CRITICAL buffer overflow in formWlWds (CVSS 10). Exploit is public; remote code exec risk. Isolate affected routers or block attacks at the network. https://radar.offseq.com/threat/cve-2026-93741-buffer-overflow-in-totolink-a3002mu-bc2e06f7d2d53482 #OffSeq #CVE202693741 #IoT #Exploit
##CVE-2026-93741 - Critical CVSS 10 Buffer Overflow in Totolink A3002MU routers. Public exploit available for remote attacks. Isolate affected devices now. #CVE #Totolink #infosec
##🔴 CVE-2026-93741 - Critical (10)
A security flaw has been discovered in Totolink A3002MU Hh-B20211125.1046. Affected by this vulnerability is the function formWlWds of the file /boafrm/formWlWds. The manipulation of the argument submit-url results in buffer overflow. It is possib...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93741/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-93741: Totolink A3002MU (Hh-B20211125.1046) hit by CRITICAL buffer overflow in formWlWds (CVSS 10). Exploit is public; remote code exec risk. Isolate affected routers or block attacks at the network. https://radar.offseq.com/threat/cve-2026-93741-buffer-overflow-in-totolink-a3002mu-bc2e06f7d2d53482 #OffSeq #CVE202693741 #IoT #Exploit
##🔴 CVE-2026-93741 - Critical (10)
A security flaw has been discovered in Totolink A3002MU Hh-B20211125.1046. Affected by this vulnerability is the function formWlWds of the file /boafrm/formWlWds. The manipulation of the argument submit-url results in buffer overflow. It is possib...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93741/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-19T04:18:02.537000
1 posts
Google patched critical Google Chrome vulnerabilities. Update now to address multiple Google Chrome vulnerabilities like CVE-2026-93374 and stay secure.
#GoogleChrome #ChromeSecurity #CVE202693374 #BrowserSecurity #InfoSec
##updated 2026-09-19T04:17:53.580000
4 posts
New.
CISA Adds Two Known Exploited Vulnerabilities to Catalog.
CVE-2025-39964 Linux Kernel Race Condition Vulnerability https://www.cve.org/CVERecord?id=CVE-2025-39964
CVE-2026-53266 Linux Kernel Out-of-Bounds Write Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-53266 #CISA #Linux #infosec #vulnerability
##🚨 [CISA-2026:0918] CISA Adds 2 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0918)
CISA has added 2 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2025-39964 (https://secdb.nttzen.cloud/cve/detail/CVE-2025-39964)
- Name: Linux Kernel Race Condition Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Linux
- Product: Kernel
- Notes: This vulnerability affects an open-source component, third-party library, protocol, or proprietary implementation that could be used by different products. For more information, please see: ; https://git.kernel.org/stable/c/0f28c4adbc4a97437874c9b669fd7958a8c6d6ce; https://git.kernel.org/stable/c/e4c1ec11132ec466f7362a95f36a506ce4dc08c9; https://git.kernel.org/stable/c/1f323a48e9b5ebfe6dc7d130fdf5c3c0e92a07c8; https://git.kernel.org/stable/c/7c4491b5644e3a3708f3dbd7591be0a570135b84; https://git.kernel.org/stable/c/9aee87da5572b3a14075f501752e209801160d3d; https://git.kernel.org/stable/c/45bcf60fe49b37daab1acee57b27211ad1574042; https://git.kernel.org/stable/c/1b34cbbf4f011a121ef7b2d7d6e6920a036d5285 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2025-39964
⚠️ CVE-2026-53266 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-53266)
- Name: Linux Kernel Out-of-Bounds Write Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Linux
- Product: Kernel
- Notes: This vulnerability affects an open-source component, third-party library, protocol, or proprietary implementation that could be used by different products. For more information, please see: ; https://git.kernel.org/stable/c/bf84ad7c7a9ede46e31afaa41a1ba06a159e8c87; https://git.kernel.org/stable/c/76280b78cc9f23bdc6438e10ad6dff148ef8375b; https://git.kernel.org/stable/c/b7e91939ba9be805a62a257fa4e227dffbb88fa0; https://git.kernel.org/stable/c/afd64b59c3de9bbbdd3759e834fdc55cda716e0b; https://git.kernel.org/stable/c/153ea96c806aea395daba907a4f88480b6ad5093; https://git.kernel.org/stable/c/b18675263db1147c8e1cab625400c13a0d87bd2d; https://git.kernel.org/stable/c/c9b5ff59feffb92a147a84a5aa28acd2cb8ff4c5; https://git.kernel.org/stable/c/67ba971ae02514d85818fe0c32549ab4bfa3bf49 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-53266
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260918 #cisa20260918 #cve_2025_39964 #cve_2026_53266 #cve202539964 #cve202653266
##New.
CISA Adds Two Known Exploited Vulnerabilities to Catalog.
CVE-2025-39964 Linux Kernel Race Condition Vulnerability https://www.cve.org/CVERecord?id=CVE-2025-39964
CVE-2026-53266 Linux Kernel Out-of-Bounds Write Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-53266 #CISA #Linux #infosec #vulnerability
##🚨 [CISA-2026:0918] CISA Adds 2 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0918)
CISA has added 2 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2025-39964 (https://secdb.nttzen.cloud/cve/detail/CVE-2025-39964)
- Name: Linux Kernel Race Condition Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Linux
- Product: Kernel
- Notes: This vulnerability affects an open-source component, third-party library, protocol, or proprietary implementation that could be used by different products. For more information, please see: ; https://git.kernel.org/stable/c/0f28c4adbc4a97437874c9b669fd7958a8c6d6ce; https://git.kernel.org/stable/c/e4c1ec11132ec466f7362a95f36a506ce4dc08c9; https://git.kernel.org/stable/c/1f323a48e9b5ebfe6dc7d130fdf5c3c0e92a07c8; https://git.kernel.org/stable/c/7c4491b5644e3a3708f3dbd7591be0a570135b84; https://git.kernel.org/stable/c/9aee87da5572b3a14075f501752e209801160d3d; https://git.kernel.org/stable/c/45bcf60fe49b37daab1acee57b27211ad1574042; https://git.kernel.org/stable/c/1b34cbbf4f011a121ef7b2d7d6e6920a036d5285 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2025-39964
⚠️ CVE-2026-53266 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-53266)
- Name: Linux Kernel Out-of-Bounds Write Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Linux
- Product: Kernel
- Notes: This vulnerability affects an open-source component, third-party library, protocol, or proprietary implementation that could be used by different products. For more information, please see: ; https://git.kernel.org/stable/c/bf84ad7c7a9ede46e31afaa41a1ba06a159e8c87; https://git.kernel.org/stable/c/76280b78cc9f23bdc6438e10ad6dff148ef8375b; https://git.kernel.org/stable/c/b7e91939ba9be805a62a257fa4e227dffbb88fa0; https://git.kernel.org/stable/c/afd64b59c3de9bbbdd3759e834fdc55cda716e0b; https://git.kernel.org/stable/c/153ea96c806aea395daba907a4f88480b6ad5093; https://git.kernel.org/stable/c/b18675263db1147c8e1cab625400c13a0d87bd2d; https://git.kernel.org/stable/c/c9b5ff59feffb92a147a84a5aa28acd2cb8ff4c5; https://git.kernel.org/stable/c/67ba971ae02514d85818fe0c32549ab4bfa3bf49 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-53266
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260918 #cisa20260918 #cve_2025_39964 #cve_2026_53266 #cve202539964 #cve202653266
##updated 2026-09-19T04:17:35.263000
3 posts
1 repos
🔵 THREAT INTELLIGENCE
CISA Flags Three Linux Kernel Vulnerabilities Exploited in the Wild
Vulnerability | CRITICAL
CVEs: CVE-2025-39682
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday added three security flaws impacting the Linux kernel to its Known...
Full analysis:
https://www.yazoul.net/news/article/cisa-flags-three-linux-kernel-vulnerabilities-exploited-in-the-wild
by Yazoul AI
##CVE ID: CVE-2025-39682
Vendor: Linux
Product: Kernel
Date Added: 2026-09-18
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2025-39682
CVE ID: CVE-2025-39682
Vendor: Linux
Product: Kernel
Date Added: 2026-09-18
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2025-39682
updated 2026-09-19T03:32:15
4 posts
1 repos
🔴 CVE-2026-92229 - Critical (9.1)
The The Forminator Forms – Contact Form, Payment Form & Custom Form Builder plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 1.57.2. This is due to the software allowing users to execute a...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-92229/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-92229: CRITICAL code injection in wpmudev Forminator Forms plugin (≤1.57.2). Unauthenticated attackers can execute arbitrary shortcodes, risking full WordPress site compromise. Restrict or disable plugin now. https://radar.offseq.com/threat/cve-2026-92229-cwe-94-improper-control-of-generation-of-code-code-injection-in-wpmudev-forminator-8ac627c2b84841fc #OffSeq #WordPress #CVE202692229
##🔴 CVE-2026-92229 - Critical (9.1)
The The Forminator Forms – Contact Form, Payment Form & Custom Form Builder plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 1.57.2. This is due to the software allowing users to execute a...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-92229/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-92229: CRITICAL code injection in wpmudev Forminator Forms plugin (≤1.57.2). Unauthenticated attackers can execute arbitrary shortcodes, risking full WordPress site compromise. Restrict or disable plugin now. https://radar.offseq.com/threat/cve-2026-92229-cwe-94-improper-control-of-generation-of-code-code-injection-in-wpmudev-forminator-8ac627c2b84841fc #OffSeq #WordPress #CVE202692229
##updated 2026-09-19T03:32:11
2 posts
🟠 CVE-2026-87909 - High (7.5)
The WP Photo Album Plus plugin for WordPress is vulnerable to Remote Code Execution in all versions via the wppa_image_magick function. This is due to insufficient sanitization of the multipart upload filename before concatenation into an ImageMag...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-87909/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-87909 - High (7.5)
The WP Photo Album Plus plugin for WordPress is vulnerable to Remote Code Execution in all versions via the wppa_image_magick function. This is due to insufficient sanitization of the multipart upload filename before concatenation into an ImageMag...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-87909/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-19T03:32:11
2 posts
1 repos
🔴 CVE-2026-84434 - Critical (9.8)
The Gravity Forms plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 3.1.0.4 via the upload_file function. This is due to a mismatch between the field validation pipeline and the file persistence pipe...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84434/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-84434 - Critical (9.8)
The Gravity Forms plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 3.1.0.4 via the upload_file function. This is due to a mismatch between the field validation pipeline and the file persistence pipe...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84434/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-19T00:32:51
2 posts
🔴 CVE-2026-93739 - Critical (9.9)
A vulnerability was determined in Totolink A3002MU Hh-B20211125.1046. This impacts the function formWlAc of the file /boafrm/formWlAc. Executing a manipulation of the argument submit-url can lead to buffer overflow. The attack may be performed fro...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93739/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-93739 - Critical (9.9)
A vulnerability was determined in Totolink A3002MU Hh-B20211125.1046. This impacts the function formWlAc of the file /boafrm/formWlAc. Executing a manipulation of the argument submit-url can lead to buffer overflow. The attack may be performed fro...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93739/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-19T00:32:50
2 posts
🟠 CVE-2026-93923 - High (8.8)
SiYuan through 3.8.4 fails to escape heading style attributes when rendering outline and bookmark dock HTML, allowing stored cross-site scripting. Attackers can supply crafted notebooks or call administrative endpoints to inject malicious style va...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93923/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-93923 - High (8.8)
SiYuan through 3.8.4 fails to escape heading style attributes when rendering outline and bookmark dock HTML, allowing stored cross-site scripting. Attackers can supply crafted notebooks or call administrative endpoints to inject malicious style va...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93923/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-19T00:16:57.913000
2 posts
🟠 CVE-2026-93922 - High (8.8)
SiYuan through 3.8.4 renders notebook names as raw HTML in the Daily Note picker dialog without escaping, allowing stored cross-site scripting in the Electron renderer. Attackers can create notebooks with HTML payloads in names that execute JavaSc...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93922/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-93922 - High (8.8)
SiYuan through 3.8.4 renders notebook names as raw HTML in the Daily Note picker dialog without escaping, allowing stored cross-site scripting in the Electron renderer. Attackers can create notebooks with HTML payloads in names that execute JavaSc...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93922/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T22:17:10.890000
2 posts
🔴 CVE-2026-93740 - Critical (10)
A vulnerability was identified in Totolink A3002MU Hh-B20211125.1046. Affected is the function formWlEncrypt of the file /boafrm/formWlEncrypt. The manipulation of the argument submit-url leads to buffer overflow. It is possible to initiate the at...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93740/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-93740 - Critical (10)
A vulnerability was identified in Totolink A3002MU Hh-B20211125.1046. Affected is the function formWlEncrypt of the file /boafrm/formWlEncrypt. The manipulation of the argument submit-url leads to buffer overflow. It is possible to initiate the at...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93740/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T22:17:10.313000
4 posts
CVE-2026-75885: CRITICAL SSRF & DoS in Red Hat OpenShift Container Platform 4. Unauthenticated access to /api/devfile/ endpoints can expose internal services & cause resource exhaustion. No fix yet — restrict access & monitor advisories. https://radar.offseq.com/threat/cve-2026-75885-server-side-request-forgery-ssrf-in-red-hat-red-hat-openshift-container-platform-4-7be62bac64620783 #OffSeq #OpenShift #SSRF
##🔴 CVE-2026-75885 - Critical (9.3)
A flaw was found in the OpenShift console. Unauthenticated access to the `/api/devfile/` and `/api/devfile/samples/` endpoints allows a remote attacker to send crafted devfile payloads. This can lead to Server-Side Request Forgery (SSRF), where th...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-75885/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-75885: CRITICAL SSRF & DoS in Red Hat OpenShift Container Platform 4. Unauthenticated access to /api/devfile/ endpoints can expose internal services & cause resource exhaustion. No fix yet — restrict access & monitor advisories. https://radar.offseq.com/threat/cve-2026-75885-server-side-request-forgery-ssrf-in-red-hat-red-hat-openshift-container-platform-4-7be62bac64620783 #OffSeq #OpenShift #SSRF
##🔴 CVE-2026-75885 - Critical (9.3)
A flaw was found in the OpenShift console. Unauthenticated access to the `/api/devfile/` and `/api/devfile/samples/` endpoints allows a remote attacker to send crafted devfile payloads. This can lead to Server-Side Request Forgery (SSRF), where th...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-75885/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T21:32:43
2 posts
🟠 CVE-2026-88097 - High (8.1)
Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to elevate privileges locally.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-88097/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-88097 - High (8.1)
Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to elevate privileges locally.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-88097/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T21:32:41
2 posts
🟠 CVE-2026-93031 - High (8.8)
The WP Cloud Plugins Use-your-Drive, Out-of-the-Box, Share-one-Drive, and Lets-Box plugins for WordPress are vulnerable to Arbitrary File Upload in all versions from 2.0 up to, and including, 3.8.3 via the download_file_to_uploads function. This i...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93031/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-93031 - High (8.8)
The WP Cloud Plugins Use-your-Drive, Out-of-the-Box, Share-one-Drive, and Lets-Box plugins for WordPress are vulnerable to Arbitrary File Upload in all versions from 2.0 up to, and including, 3.8.3 via the download_file_to_uploads function. This i...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93031/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T21:32:40
2 posts
🟠 CVE-2026-84077 - High (8.1)
IBM Guardium Data Protection 12.2 could allow a remote attacker to bypass security restrictions due to a cross-site request forgery vulnerability.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84077/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-84077 - High (8.1)
IBM Guardium Data Protection 12.2 could allow a remote attacker to bypass security restrictions due to a cross-site request forgery vulnerability.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84077/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T21:32:39
2 posts
🔴 CVE-2026-84082 - Critical (9.8)
IBM Guardium Data Protection 12.2 could allow a remote attacker to execute arbitrary SQL commands due to improper neutralization of special elements used in an SQL command.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84082/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-84082 - Critical (9.8)
IBM Guardium Data Protection 12.2 could allow a remote attacker to execute arbitrary SQL commands due to improper neutralization of special elements used in an SQL command.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84082/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T21:32:38
2 posts
🟠 CVE-2026-84074 - High (8.9)
IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary code due to improper neutralization of input during web page generation.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84074/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-84074 - High (8.9)
IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary code due to improper neutralization of input during web page generation.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84074/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T21:32:38
2 posts
🔴 CVE-2026-84064 - Critical (9.9)
IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary SQL commands due to improper neutralization of special elements used in an SQL command.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84064/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-84064 - Critical (9.9)
IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary SQL commands due to improper neutralization of special elements used in an SQL command.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84064/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T21:32:38
2 posts
🟠 CVE-2026-84108 - High (8.1)
IBM Guardium Data Protection 12.2 could allow a remote attacker to execute arbitrary code due to improper neutralization of input during web page generation.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84108/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-84108 - High (8.1)
IBM Guardium Data Protection 12.2 could allow a remote attacker to execute arbitrary code due to improper neutralization of input during web page generation.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84108/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T21:32:37
2 posts
🟠 CVE-2026-82887 - High (8.8)
IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-82887/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-82887 - High (8.8)
IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-82887/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T21:32:37
2 posts
🟠 CVE-2026-82896 - High (7.6)
IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to traverse directories on the system due to a path traversal vulnerability.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-82896/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-82896 - High (7.6)
IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to traverse directories on the system due to a path traversal vulnerability.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-82896/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T21:32:37
2 posts
🔴 CVE-2026-84073 - Critical (9.1)
IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary SQL commands due to improper neutralization of special elements used in an SQL command.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84073/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-84073 - Critical (9.1)
IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary SQL commands due to improper neutralization of special elements used in an SQL command.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84073/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T21:32:37
2 posts
🟠 CVE-2026-84034 - High (8.8)
IBM Guardium Data Protection 12.2 is vulnerable to a hardcoded credentials vulnerability in the hardware_assess/obstore binaries. A low-privileged authenticated user can recover hardcoded product master secrets, potentially resulting in unauthoriz...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84034/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-84034 - High (8.8)
IBM Guardium Data Protection 12.2 is vulnerable to a hardcoded credentials vulnerability in the hardware_assess/obstore binaries. A low-privileged authenticated user can recover hardcoded product master secrets, potentially resulting in unauthoriz...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84034/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T21:32:36
2 posts
🟠 CVE-2026-82885 - High (8.8)
IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to gain elevated privileges due to missing authorization in the REST API.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-82885/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-82885 - High (8.8)
IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to gain elevated privileges due to missing authorization in the REST API.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-82885/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T21:32:36
2 posts
🔴 CVE-2026-82832 - Critical (9.6)
IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary code due to improper neutralization of input during web page generation.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-82832/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-82832 - Critical (9.6)
IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary code due to improper neutralization of input during web page generation.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-82832/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T21:32:36
2 posts
🟠 CVE-2026-82893 - High (7.8)
IBM Guardium Data Protection 12.2 could allow a local attacker to gain elevated privileges due to improper privilege management.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-82893/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-82893 - High (7.8)
IBM Guardium Data Protection 12.2 could allow a local attacker to gain elevated privileges due to improper privilege management.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-82893/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T21:32:35
2 posts
🔴 CVE-2026-82340 - Critical (9.8)
IBM Guardium Data Protection 12.2 is vulnerable to unauthenticated insecure deserialization and attacker-controlled reflective method dispatch in the Change Audit System (CAS) listener. A network attacker able to reach TCP port 16017 may submit cr...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-82340/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-82340 - Critical (9.8)
IBM Guardium Data Protection 12.2 is vulnerable to unauthenticated insecure deserialization and attacker-controlled reflective method dispatch in the Change Audit System (CAS) listener. A network attacker able to reach TCP port 16017 may submit cr...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-82340/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T21:32:35
2 posts
🟠 CVE-2026-81933 - High (8.8)
IBM Guardium Data Protection 12.2 is vulnerable to a SQL injection vulnerability in the Analytic Grid Service Handler. A low-privileged authenticated user can inject SQL statements through the analytic cases grid endpoint, potentially resulting in...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-81933/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-81933 - High (8.8)
IBM Guardium Data Protection 12.2 is vulnerable to a SQL injection vulnerability in the Analytic Grid Service Handler. A low-privileged authenticated user can inject SQL statements through the analytic cases grid endpoint, potentially resulting in...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-81933/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T21:32:35
2 posts
🟠 CVE-2026-82892 - High (8.1)
IBM Guardium Data Protection 12.2 could allow a remote attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-82892/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-82892 - High (8.1)
IBM Guardium Data Protection 12.2 could allow a remote attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-82892/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T21:18:49.023000
2 posts
🟠 CVE-2026-93868 - High (8.1)
Cotonti through 1.0.0 derives password recovery validation tokens from md5(microtime()) in users.passrecover.php, creating a predictable token space of approximately one million values per second. Unauthenticated attackers can read the server Date...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93868/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-93868 - High (8.1)
Cotonti through 1.0.0 derives password recovery validation tokens from md5(microtime()) in users.passrecover.php, creating a predictable token space of approximately one million values per second. Unauthenticated attackers can read the server Date...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93868/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T21:18:48.660000
2 posts
🔴 CVE-2026-93738 - Critical (9.9)
A vulnerability was found in Totolink A3002MU Hh-B20211125.1046. This affects the function formSchedule of the file /boafrm/formSchedule. Performing a manipulation of the argument webpage results in buffer overflow. The attack is possible to be ca...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93738/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-93738 - Critical (9.9)
A vulnerability was found in Totolink A3002MU Hh-B20211125.1046. This affects the function formSchedule of the file /boafrm/formSchedule. Performing a manipulation of the argument webpage results in buffer overflow. The attack is possible to be ca...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93738/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T21:18:48.020000
2 posts
🟠 CVE-2026-93572 - High (7.5)
## Summary
`RedisArrayAggregator` recently added `maxElements` and `maxNestedArrayDepth` limits to fix public Redis resource-exhaustion advisories. The limits are independent, but the allocator remains eager: every positive nested RESP array he...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93572/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-93572 - High (7.5)
## Summary
`RedisArrayAggregator` recently added `maxElements` and `maxNestedArrayDepth` limits to fix public Redis resource-exhaustion advisories. The limits are independent, but the allocator remains eager: every positive nested RESP array he...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93572/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T21:18:44.520000
2 posts
🟠 CVE-2026-84106 - High (8.9)
IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary code due to improper neutralization of input during web page generation.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84106/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-84106 - High (8.9)
IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary code due to improper neutralization of input during web page generation.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84106/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T21:18:44.413000
2 posts
🟠 CVE-2026-84084 - High (8.8)
IBM Guardium Data Protection 12.2 could allow a remote attacker to bypass security restrictions due to a cross-site request forgery (CSRF) vulnerability.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84084/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-84084 - High (8.8)
IBM Guardium Data Protection 12.2 could allow a remote attacker to bypass security restrictions due to a cross-site request forgery (CSRF) vulnerability.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84084/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T21:18:44.080000
3 posts
[1/3]
High‑impact security incidents ( CVSS ≥ 7 ) reported between 2026‑09‑18 and today
CVE‑2026‑84241
• 8.1 (High)
• IBM Guardium Data Protection 12.2
• Remote attacker can bypass security restrictions because the product performs improper authorization checks.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84241/
CVE‑2026‑84078
• 9.9 (Critical)
• IBM Guardium Data Protection 12.2
• Missing authentication in the LoadBalanc… component allows unauthenticated remote code execution.
• https://stemshop.top/cve/CVE-2026-84078
CVE‑2026‑84075
• 9.9 (Critical)
• IBM Guardium Data Protection 12.2
• The ChangeTrackerServlet lacks authentication, enabling a remote attacker to bypass all security controls.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84075/
CVE‑2026‑84070
• 8.9 (High)
• IBM Guardium Data Protection 12.2
• Authenticated remote attacker can execute arbitrary code via improper input neutralisation during page generation.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84070/
CVE‑2026‑84031
• 9.0 (Critical)
• IBM Guardium Data Protection 12.2
• Authenticated remote attacker can execute arbitrary code because of improper input sanitisation in web pages.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84031/
CVE‑2026‑84089
• 7.8 (High)
• IBM Guardium Data Protection 12.2
• Local attacker can obtain elevated privileges due to flawed privilege‑management logic.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84089/
CVE‑2026‑84081
• 8.1 (High)
• IBM Guardium Data Protection 12.2
• Remote attacker bypasses security restrictions because of improper certificate validation.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84081/
CVE‑2026‑84239
• 7.6 (High)
• IBM Guardium Data Protection 12.2
• Authenticated remote attacker can harvest sensitive data; the flaw stems from improper neutralisation of special SQL elements.
• https://www.thehackerwire.com/vulnerability/CVE-2026-84239/
CVE‑2026‑82967
• 9.8 (Critical)
• IBM Guardium Data Protection 12.2
• Authentication bypass permits unauthenticated remote attackers to gain full access.
• https://www.thehackerwire.com/vulnerability/CVE-2026-82967/
🔴 CVE-2026-84031 - Critical (9)
IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary code due to improper neutralization of input during web page generation.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84031/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-84031 - Critical (9)
IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute arbitrary code due to improper neutralization of input during web page generation.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-84031/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T21:17:14.377000
2 posts
🟠 CVE-2026-68928 - High (8.6)
Acode is a powerful text and code editor for Android. From 1.11.6 until 1.12.7, com.foxdebug.acode.rk.exec.terminal.TerminalService is declared as an exported service in src/plugins/terminal/plugin.xml without a binding permission, and src/plugins...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-68928/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-68928 - High (8.6)
Acode is a powerful text and code editor for Android. From 1.11.6 until 1.12.7, com.foxdebug.acode.rk.exec.terminal.TerminalService is declared as an exported service in src/plugins/terminal/plugin.xml without a binding permission, and src/plugins...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-68928/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T21:17:03.913000
2 posts
🟠 CVE-2026-63447 - High (7.5)
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. From 8.0.5 until 8.0.6, the FTP parser in src/app-layer-ftp.c can continue allocating transactions after app-layer.protocols.ftp....
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-63447/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-63447 - High (7.5)
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. From 8.0.5 until 8.0.6, the FTP parser in src/app-layer-ftp.c can continue allocating transactions after app-layer.protocols.ftp....
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-63447/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T21:17:03.763000
2 posts
🟠 CVE-2026-63446 - High (7.5)
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. From 8.0.0 until 8.0.6, AppLayerParserSetTransactionInspectId() in src/app-layer-parser.c uses an inverted guard and marks only a...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-63446/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-63446 - High (7.5)
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. From 8.0.0 until 8.0.6, AppLayerParserSetTransactionInspectId() in src/app-layer-parser.c uses an inverted guard and marks only a...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-63446/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T21:17:01.217000
2 posts
🟠 CVE-2026-57227 - High (7.5)
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. From 7.0.0 until 7.0.17 and 8.0.6, the MQTT parser in rust/src/mqtt/mqtt.rs permits repeated PUBREC or PUBREL messages to be appe...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-57227/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-57227 - High (7.5)
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. From 7.0.0 until 7.0.17 and 8.0.6, the MQTT parser in rust/src/mqtt/mqtt.rs permits repeated PUBREC or PUBREL messages to be appe...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-57227/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T20:17:35.250000
2 posts
🟠 CVE-2026-93872 - High (7.5)
Cotonti 1.0.0 passes the base64-decoded cb parameter to unserialize() without allowed_classes restriction in the comments plugin EditAction. Registered users with comment write permissions can instantiate arbitrary PHP objects and potentially achi...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93872/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-93872 - High (7.5)
Cotonti 1.0.0 passes the base64-decoded cb parameter to unserialize() without allowed_classes restriction in the comments plugin EditAction. Registered users with comment write permissions can instantiate arbitrary PHP objects and potentially achi...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93872/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T20:17:34.047000
4 posts
Go hack more LLM shit.
https://nvd.nist.gov/vuln/detail/cve-2026-93839
sev:CRIT 9.3 - CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
##LightLLM through 1.2.0 contains an authentication bypass vulnerability in the /pd_register WebSocket endpoint that allows unauthenticated attackers to register arbitrary nodes by supplying crafted JSON without peer address validation. Attackers can disclose full user prompts routed to their socket, trigger denial of service by replacing legitimate nodes, or make the PD Master issue requests to internal network addresses.
🔴 CVE-2026-93839 - Critical (9.8)
LightLLM through 1.2.0 contains an authentication bypass vulnerability in the /pd_register WebSocket endpoint that allows unauthenticated attackers to register arbitrary nodes by supplying crafted JSON without peer address validation. Attackers ca...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93839/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##Go hack more LLM shit.
https://nvd.nist.gov/vuln/detail/cve-2026-93839
sev:CRIT 9.3 - CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
##LightLLM through 1.2.0 contains an authentication bypass vulnerability in the /pd_register WebSocket endpoint that allows unauthenticated attackers to register arbitrary nodes by supplying crafted JSON without peer address validation. Attackers can disclose full user prompts routed to their socket, trigger denial of service by replacing legitimate nodes, or make the PD Master issue requests to internal network addresses.
🔴 CVE-2026-93839 - Critical (9.8)
LightLLM through 1.2.0 contains an authentication bypass vulnerability in the /pd_register WebSocket endpoint that allows unauthenticated attackers to register arbitrary nodes by supplying crafted JSON without peer address validation. Attackers ca...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93839/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T20:17:32.397000
1 posts
🟠 CVE-2026-93452 - High (7.5)
snappy-java through 1.1.10.8 contains a buffer overflow vulnerability in Snappy.compress(ByteBuffer, ByteBuffer) that writes past the end of the destination buffer. Attackers can supply incompressible data that exceeds the destination buffer's rem...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93452/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T20:17:30.980000
1 posts
ICYMI: 19 sev:CRIT CVEs in Node VM2, which is supposed to be a sandbox, but apparently it's built like the AI "sandboxes."
https://www.cve.org/CVERecord?id=CVE-2026-92934
https://www.cve.org/CVERecord?id=CVE-2026-92935
https://www.cve.org/CVERecord?id=CVE-2026-92937
https://www.cve.org/CVERecord?id=CVE-2026-92938
https://www.cve.org/CVERecord?id=CVE-2026-92939
https://www.cve.org/CVERecord?id=CVE-2026-92940
https://www.cve.org/CVERecord?id=CVE-2026-92941
https://www.cve.org/CVERecord?id=CVE-2026-92944
https://www.cve.org/CVERecord?id=CVE-2026-92946
https://www.cve.org/CVERecord?id=CVE-2026-92947
https://www.cve.org/CVERecord?id=CVE-2026-92948
https://www.cve.org/CVERecord?id=CVE-2026-92950
https://www.cve.org/CVERecord?id=CVE-2026-92951
https://www.cve.org/CVERecord?id=CVE-2026-92953
https://www.cve.org/CVERecord?id=CVE-2026-92954
https://www.cve.org/CVERecord?id=CVE-2026-92955
https://www.cve.org/CVERecord?id=CVE-2026-92956
https://www.cve.org/CVERecord?id=CVE-2026-92957
https://www.cve.org/CVERecord?id=CVE-2026-92960
updated 2026-09-18T20:17:30.707000
1 posts
ICYMI: 19 sev:CRIT CVEs in Node VM2, which is supposed to be a sandbox, but apparently it's built like the AI "sandboxes."
https://www.cve.org/CVERecord?id=CVE-2026-92934
https://www.cve.org/CVERecord?id=CVE-2026-92935
https://www.cve.org/CVERecord?id=CVE-2026-92937
https://www.cve.org/CVERecord?id=CVE-2026-92938
https://www.cve.org/CVERecord?id=CVE-2026-92939
https://www.cve.org/CVERecord?id=CVE-2026-92940
https://www.cve.org/CVERecord?id=CVE-2026-92941
https://www.cve.org/CVERecord?id=CVE-2026-92944
https://www.cve.org/CVERecord?id=CVE-2026-92946
https://www.cve.org/CVERecord?id=CVE-2026-92947
https://www.cve.org/CVERecord?id=CVE-2026-92948
https://www.cve.org/CVERecord?id=CVE-2026-92950
https://www.cve.org/CVERecord?id=CVE-2026-92951
https://www.cve.org/CVERecord?id=CVE-2026-92953
https://www.cve.org/CVERecord?id=CVE-2026-92954
https://www.cve.org/CVERecord?id=CVE-2026-92955
https://www.cve.org/CVERecord?id=CVE-2026-92956
https://www.cve.org/CVERecord?id=CVE-2026-92957
https://www.cve.org/CVERecord?id=CVE-2026-92960
updated 2026-09-18T20:17:17.253000
1 posts
🔴 CVE-2026-54767 - Critical (9.1)
WeGIA is a web manager for charitable institutions. Prior to 3.8.5, web/html/socio/sistema/controller/deletar_socios.php exposes an unauthenticated GET endpoint whose chave parameter is checked only against a hardcoded chave_correta value embedded...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-54767/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T20:17:17.137000
1 posts
🔴 CVE-2026-54734 - Critical (10)
Prebid Server Java is the Java version of Prebid Server. Prior to 3.43.0, certain bidder adapters interpolate user-supplied parameters into outbound request URLs without using HttpUtil to validate the resulting domain or path segment. A malicious ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-54734/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T20:17:14.310000
1 posts
Cisco Patches 18 Critical and High-Severity Firewall Vulnerabilities, One Actively Exploited
Cisco released a massive security hardening update fixing 18 vulnerabilities in its Secure Firewall suite, including an actively exploited authentication bypass (CVE-2026-20332) and multiple critical remote code execution flaws.
**If you use Cisco Secure Firewall (ASA, FTD, or FMC), this is urgent. Patch now to the fixed versions Cisco lists. At least one flaw is already being exploited by attackers. Make sure the management interfaces are reachable only from your trusted internal network and never from the internet.**
#cybersecurity #infosec #attack #activeexploit
https://beyondmachines.net/event_details/cisco-patches-18-critical-and-high-severity-firewall-vulnerabilities-one-actively-exploited-3-v-t-c-t/gD2P6Ple2L
updated 2026-09-18T20:17:14.087000
2 posts
Grab a coffee. Cisco has posted several advisories, one of them addressing a critical vulnerability that was first published on the 16th. More here https://sec.cloudapps.cisco.com/security/center/publicationListing.x
CRITICAL: CVE-2026-20329, CVE-2026-20330, and CVE-2026-20331: Cisco Secure Firewall Adaptive Security Appliance, Secure Firewall Threat Defense, and Secure Firewall Management Center Software Hardening Release: September 2026 @TalosSecurity #Cisco #vulnerability #infosec
##Grab a coffee. Cisco has posted several advisories, one of them addressing a critical vulnerability that was first published on the 16th. More here https://sec.cloudapps.cisco.com/security/center/publicationListing.x
CRITICAL: CVE-2026-20329, CVE-2026-20330, and CVE-2026-20331: Cisco Secure Firewall Adaptive Security Appliance, Secure Firewall Threat Defense, and Secure Firewall Management Center Software Hardening Release: September 2026 @TalosSecurity #Cisco #vulnerability #infosec
##updated 2026-09-18T20:17:13.870000
2 posts
Grab a coffee. Cisco has posted several advisories, one of them addressing a critical vulnerability that was first published on the 16th. More here https://sec.cloudapps.cisco.com/security/center/publicationListing.x
CRITICAL: CVE-2026-20329, CVE-2026-20330, and CVE-2026-20331: Cisco Secure Firewall Adaptive Security Appliance, Secure Firewall Threat Defense, and Secure Firewall Management Center Software Hardening Release: September 2026 @TalosSecurity #Cisco #vulnerability #infosec
##Grab a coffee. Cisco has posted several advisories, one of them addressing a critical vulnerability that was first published on the 16th. More here https://sec.cloudapps.cisco.com/security/center/publicationListing.x
CRITICAL: CVE-2026-20329, CVE-2026-20330, and CVE-2026-20331: Cisco Secure Firewall Adaptive Security Appliance, Secure Firewall Threat Defense, and Secure Firewall Management Center Software Hardening Release: September 2026 @TalosSecurity #Cisco #vulnerability #infosec
##updated 2026-09-18T20:17:11.233000
1 posts
🟠 CVE-2026-18911 - High (7.5)
ManageEngine DataSecurity Plus versions before 6310 are vulnerable to an agent authentication bypass, allowing unenrolled agents to send requests without proper authentication.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-18911/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T20:17:08.373000
3 posts
🔴 CVE-2026-13684 - Critical (9.8)
An improper encoding or escaping of output vulnerability in SCGI in Synology DiskStation Manager (DSM) before 7.2.1-69057-12, 7.2.2-72806-9, 7.3.2-86009-4 and 7.4-90075 allows remote attackers to read or write arbitrary files and conduct denial-of...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-13684/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-13684 - Critical (9.8)
An improper encoding or escaping of output vulnerability in SCGI in Synology DiskStation Manager (DSM) before 7.2.1-69057-12, 7.2.2-72806-9, 7.3.2-86009-4 and 7.4-90075 allows remote attackers to read or write arbitrary files and conduct denial-of...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-13684/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##Synology fixed 8 DSM vulnerabilities, including two critical unauthenticated flaws (CVE-2026-13684, CVE-2026-13639) on DiskStation Manager. Update now.
#Synology #DSM #NAS #CVE #Vulnerability #DiskStation #InfoSec #PatchNow #NetworkSecurity #DataStorage
##updated 2026-09-18T20:17:06.860000
1 posts
Synology fixed 8 DSM vulnerabilities, including two critical unauthenticated flaws (CVE-2026-13684, CVE-2026-13639) on DiskStation Manager. Update now.
#Synology #DSM #NAS #CVE #Vulnerability #DiskStation #InfoSec #PatchNow #NetworkSecurity #DataStorage
##updated 2026-09-18T19:24:36.593000
2 posts
🟠 CVE-2026-28197 - High (8.8)
An authenticated, low-privileged user with access to the NetBackup Flex
OS management shell could supply a specially crafted input to a
privileged administrative command, causing it to execute arbitrary code
with root-level permissions. Success...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-28197/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-28197 - High (8.8)
An authenticated, low-privileged user with access to the NetBackup Flex
OS management shell could supply a specially crafted input to a
privileged administrative command, causing it to execute arbitrary code
with root-level permissions. Success...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-28197/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T19:06:08.407000
2 posts
🟠 CVE-2026-91149 - High (7.5)
A flaw was found in Cockpit. An unauthenticated remote attacker can exploit this vulnerability by initiating and sustaining numerous simultaneous connections to the `cockpit-tls` service. This forces the service to create an unbounded number of de...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-91149/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-91149 - High (7.5)
A flaw was found in Cockpit. An unauthenticated remote attacker can exploit this vulnerability by initiating and sustaining numerous simultaneous connections to the `cockpit-tls` service. This forces the service to create an unbounded number of de...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-91149/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T19:05:01.127000
2 posts
🟠 CVE-2026-93760 - High (8.2)
Mongoid does not restrict which query operators may come from caller-supplied filter data when an application hands that data to its query-building methods. In an application that forwards externally supplied filter parameters in this way, a party...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93760/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-93760 - High (8.2)
Mongoid does not restrict which query operators may come from caller-supplied filter data when an application hands that data to its query-building methods. In an application that forwards externally supplied filter parameters in this way, a party...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93760/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T19:05:01.127000
2 posts
🔴 CVE-2026-93762 - Critical (9.8)
Mongoid contains an unsafe reflection weakness in the query path used for embedded documents. An application that passes an externally supplied field name to certain in-memory query methods may allow an unauthenticated party to obtain unintended d...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93762/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-93762 - Critical (9.8)
Mongoid contains an unsafe reflection weakness in the query path used for embedded documents. An application that passes an externally supplied field name to certain in-memory query methods may allow an unauthenticated party to obtain unintended d...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93762/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T19:05:01.127000
2 posts
🟠 CVE-2026-93758 - High (8.1)
An insecure direct object reference in the nested attributes handling of the Mongoid object-document mapper may allow a user with basic application privileges to reference a record identifier that is not their own. Processing such a request can ca...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93758/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-93758 - High (8.1)
An insecure direct object reference in the nested attributes handling of the Mongoid object-document mapper may allow a user with basic application privileges to reference a record identifier that is not their own. Processing such a request can ca...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93758/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T19:05:01.127000
1 posts
A critical pgAdmin 4 authentication bypass (CVE-2026-86863) allows remote admin takeover. Patch this pgAdmin 4 authentication bypass vulnerability now.
#pgAdmin #PostgreSQL #CVE202686863 #AuthenticationBypass #Cybersecurity
##updated 2026-09-18T18:32:08
2 posts
🟠 CVE-2026-93752 - High (7.5)
CSSOM through 0.5.0 contains a denial of service vulnerability in CSSStyleDeclaration.setProperty() that fails to validate reserved property names. Attackers can supply a stylesheet with a declaration named length to replace the internal counter a...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93752/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-93752 - High (7.5)
CSSOM through 0.5.0 contains a denial of service vulnerability in CSSStyleDeclaration.setProperty() that fails to validate reserved property names. Attackers can supply a stylesheet with a declaration named length to replace the internal counter a...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93752/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T18:32:04
2 posts
🟠 CVE-2026-93759 - High (8.6)
Mongoid does not neutralize a string-typed query criterion supplied to its query builder, and instead passes it to the database as a server-side JavaScript expression. An unauthenticated party able to influence the value an application supplies as...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93759/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-93759 - High (8.6)
Mongoid does not neutralize a string-typed query criterion supplied to its query builder, and instead passes it to the database as a server-side JavaScript expression. An unauthenticated party able to influence the value an application supplies as...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93759/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T18:32:02
2 posts
🟠 CVE-2026-93687 - High (7.5)
braces through 3.0.3 contains a stack overflow vulnerability in the recursive AST walkers that lack depth guards. Attackers can supply deeply nested brace patterns under the character limit to exhaust the call stack and terminate the Node.js proce...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93687/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-93687 - High (7.5)
braces through 3.0.3 contains a stack overflow vulnerability in the recursive AST walkers that lack depth guards. Attackers can supply deeply nested brace patterns under the character limit to exhaust the call stack and terminate the Node.js proce...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93687/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T18:32:01
2 posts
🟠 CVE-2026-93753 - High (7.5)
deepmerge through 4.3.1 contains a prototype poisoning vulnerability in the mergeObject() function that fails to properly validate keys being written to target objects. Attackers can supply malicious source objects in merge operations to inject at...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93753/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-93753 - High (7.5)
deepmerge through 4.3.1 contains a prototype poisoning vulnerability in the mergeObject() function that fails to properly validate keys being written to target objects. Attackers can supply malicious source objects in merge operations to inject at...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93753/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T18:31:58
2 posts
🔴 CVE-2026-93765 - Critical (9.1)
Mongoid contains an unsafe reflection weakness in the document persistence layer of its object-document mapping code. Input whose keys are passed through from an unauthenticated party by an embedding application can cause unintended internal metho...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93765/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-93765 - Critical (9.1)
Mongoid contains an unsafe reflection weakness in the document persistence layer of its object-document mapping code. Input whose keys are passed through from an unauthenticated party by an embedding application can cause unintended internal metho...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93765/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T18:31:57
2 posts
Oh look, yet another sev:CRIT CVE where the CVSS string doesn't match the description. Thanks, Doge.
sev:CRIT 9.3 - CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
##CareCam CM2507 IP cameras store the device's root-account password using a fixed legacy password hash that provides insufficient resistance to offline cracking. An attacker who obtains the firmware image or password database could recover the associated credential, which may also be reusable across other devices running the same firmware.
Oh look, yet another sev:CRIT CVE where the CVSS string doesn't match the description. Thanks, Doge.
sev:CRIT 9.3 - CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
##CareCam CM2507 IP cameras store the device's root-account password using a fixed legacy password hash that provides insufficient resistance to offline cracking. An attacker who obtains the firmware image or password database could recover the associated credential, which may also be reusable across other devices running the same firmware.
updated 2026-09-18T18:31:55
2 posts
🟠 CVE-2026-93688 - High (7.5)
SGLang through 0.5.19 in prefill/decode disaggregation mode with Mooncake KV transfer backend fails to validate bootstrap_room values, allowing unbounded transfer state allocation. Unauthenticated attackers can reach the decode engine's POST /gene...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93688/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-93688 - High (7.5)
SGLang through 0.5.19 in prefill/decode disaggregation mode with Mooncake KV transfer backend fails to validate bootstrap_room values, allowing unbounded transfer state allocation. Unauthenticated attackers can reach the decode engine's POST /gene...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93688/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T18:18:31.267000
2 posts
RE: https://infosec.exchange/@cR0w/117287817060203283
But wait, there's more perfect 10s!
🥳
https://www.cve.org/CVERecord?id=CVE-2026-93603
RE: https://infosec.exchange/@cR0w/117287817060203283
But wait, there's more perfect 10s!
🥳
https://www.cve.org/CVERecord?id=CVE-2026-93603
updated 2026-09-18T17:49:08.457000
2 posts
PhantomFix: A fake bug to Sentry Seer gets a coding agent to run attacker code
CERT/CC는 Sentry Seer가 이슈를 코딩 에이전트에 자동으로 넘기도록 설정된 경우, 공개 DSN으로 제출한 조작된 오류 이벤트가 에이전트 프롬프트에 유입되는 취약점(CVE-2026-90999)을 공개했습니다. 공격자는 예외 메시지·스택 트레이스·breadcrumb 등 텔레메트리 필드를 이용해 가짜 버그 분석을 만들고, 코딩 에이전트가 공격자 제어 패키지를 내려받아 실행하도록 유도할 수 있습니다. 그 결과 PR 검토 이전에 연결된 저장소에 접근 가능한 에이전트 실행 환경에서 임의 코드 실행이 가능할 수 있습니다. 현재 공급업체 패치 정보는 없으므로 Seer의 자동 re...
##CVE-2026-90999: A fabricated Sentry bug report can make Seer's coding agent run attacker code https://agyn.io/blog/sentry-seer-autofix-vulnerability
##updated 2026-09-18T17:48:19.003000
1 posts
🟠 CVE-2026-92943 - High (8.1)
Improper validation of certificate with host mismatch in the MQTT client TLS connection layer in AWS IoT Device SDK for Python 1.5.3 through 1.6.0 on Python 3.7 and later might allow an adversary-in-the-middle actor to impersonate the AWS IoT Core...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-92943/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T17:14:32
1 posts
CVE-2026-61672 - Policy bypass vulnerability in Capsule for Kubernetes allows metadata restriction evasion. CVSS 7.1. Update to 0.13.7 now. #CVE #Kubernetes #infosec
##updated 2026-09-18T16:17:11.853000
2 posts
@paul @arda AVIF is a specific profile/subtype of HEIF. Mastodon uses libvips to handle images and libvips uses libheif to handle both HEIF and AVIF.
libheif was disabled in mastodon 4.7.2 due to unspecified security issues but it's probably because of CVE-2026-84383
##@paul @arda AVIF is a specific profile/subtype of HEIF. Mastodon uses libvips to handle images and libvips uses libheif to handle both HEIF and AVIF.
libheif was disabled in mastodon 4.7.2 due to unspecified security issues but it's probably because of CVE-2026-84383
##updated 2026-09-18T15:32:25
2 posts
RE: https://infosec.exchange/@cR0w/117287817060203283
But wait, there's more perfect 10s!
🥳
https://www.cve.org/CVERecord?id=CVE-2026-93603
RE: https://infosec.exchange/@cR0w/117287817060203283
But wait, there's more perfect 10s!
🥳
https://www.cve.org/CVERecord?id=CVE-2026-93603
updated 2026-09-18T15:32:24
2 posts
🟠 CVE-2026-93592 - High (7.5)
vLLM versions before 0.28.0 fail to validate the lower bound of token IDs in the /v1/embeddings and /pooling endpoints, allowing unauthenticated attackers to crash the engine by submitting negative token IDs. A single request with a negative token...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93592/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-93592 - High (7.5)
vLLM versions before 0.28.0 fail to validate the lower bound of token IDs in the /v1/embeddings and /pooling endpoints, allowing unauthenticated attackers to crash the engine by submitting negative token IDs. A single request with a negative token...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93592/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T15:32:24
2 posts
🟠 CVE-2026-93591 - High (7.6)
SiYuan versions before 3.8.3 contain an SQL injection vulnerability in the graph.go query2Stmt function where tag values are concatenated raw into SQL string literals without escaping single quotes. A publish-mode reader or anonymous visitor can i...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93591/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-93591 - High (7.6)
SiYuan versions before 3.8.3 contain an SQL injection vulnerability in the graph.go query2Stmt function where tag values are concatenated raw into SQL string literals without escaping single quotes. A publish-mode reader or anonymous visitor can i...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93591/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T15:32:24
2 posts
🟠 CVE-2026-93597 - High (7.7)
ArcadeDB versions before 26.9.1 fail to validate IPv6 transition addresses in the SSRF guard used by IMPORT DATABASE and server commands. Authenticated attackers can supply URLs resolving to NAT64, 6to4, or Teredo addresses embedding RFC 1918 or l...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93597/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-93597 - High (7.7)
ArcadeDB versions before 26.9.1 fail to validate IPv6 transition addresses in the SSRF guard used by IMPORT DATABASE and server commands. Authenticated attackers can supply URLs resolving to NAT64, 6to4, or Teredo addresses embedding RFC 1918 or l...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93597/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T15:32:17
2 posts
🟠 CVE-2026-93491 - High (7.5)
A flaw was found in Netty's HttpServerCodec. A remote, unauthenticated attacker can exploit this vulnerability by pipelining HTTP/1.1 requests on a single connection and withholding reads. This action causes the methodOverflowQueue to grow without...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93491/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-93491 - High (7.5)
A flaw was found in Netty's HttpServerCodec. A remote, unauthenticated attacker can exploit this vulnerability by pipelining HTTP/1.1 requests on a single connection and withholding reads. This action causes the methodOverflowQueue to grow without...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93491/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T15:31:06
4 posts
1 repos
New.
CISA Adds Two Known Exploited Vulnerabilities to Catalog.
CVE-2025-39964 Linux Kernel Race Condition Vulnerability https://www.cve.org/CVERecord?id=CVE-2025-39964
CVE-2026-53266 Linux Kernel Out-of-Bounds Write Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-53266 #CISA #Linux #infosec #vulnerability
##🚨 [CISA-2026:0918] CISA Adds 2 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0918)
CISA has added 2 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2025-39964 (https://secdb.nttzen.cloud/cve/detail/CVE-2025-39964)
- Name: Linux Kernel Race Condition Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Linux
- Product: Kernel
- Notes: This vulnerability affects an open-source component, third-party library, protocol, or proprietary implementation that could be used by different products. For more information, please see: ; https://git.kernel.org/stable/c/0f28c4adbc4a97437874c9b669fd7958a8c6d6ce; https://git.kernel.org/stable/c/e4c1ec11132ec466f7362a95f36a506ce4dc08c9; https://git.kernel.org/stable/c/1f323a48e9b5ebfe6dc7d130fdf5c3c0e92a07c8; https://git.kernel.org/stable/c/7c4491b5644e3a3708f3dbd7591be0a570135b84; https://git.kernel.org/stable/c/9aee87da5572b3a14075f501752e209801160d3d; https://git.kernel.org/stable/c/45bcf60fe49b37daab1acee57b27211ad1574042; https://git.kernel.org/stable/c/1b34cbbf4f011a121ef7b2d7d6e6920a036d5285 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2025-39964
⚠️ CVE-2026-53266 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-53266)
- Name: Linux Kernel Out-of-Bounds Write Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Linux
- Product: Kernel
- Notes: This vulnerability affects an open-source component, third-party library, protocol, or proprietary implementation that could be used by different products. For more information, please see: ; https://git.kernel.org/stable/c/bf84ad7c7a9ede46e31afaa41a1ba06a159e8c87; https://git.kernel.org/stable/c/76280b78cc9f23bdc6438e10ad6dff148ef8375b; https://git.kernel.org/stable/c/b7e91939ba9be805a62a257fa4e227dffbb88fa0; https://git.kernel.org/stable/c/afd64b59c3de9bbbdd3759e834fdc55cda716e0b; https://git.kernel.org/stable/c/153ea96c806aea395daba907a4f88480b6ad5093; https://git.kernel.org/stable/c/b18675263db1147c8e1cab625400c13a0d87bd2d; https://git.kernel.org/stable/c/c9b5ff59feffb92a147a84a5aa28acd2cb8ff4c5; https://git.kernel.org/stable/c/67ba971ae02514d85818fe0c32549ab4bfa3bf49 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-53266
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260918 #cisa20260918 #cve_2025_39964 #cve_2026_53266 #cve202539964 #cve202653266
##New.
CISA Adds Two Known Exploited Vulnerabilities to Catalog.
CVE-2025-39964 Linux Kernel Race Condition Vulnerability https://www.cve.org/CVERecord?id=CVE-2025-39964
CVE-2026-53266 Linux Kernel Out-of-Bounds Write Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-53266 #CISA #Linux #infosec #vulnerability
##🚨 [CISA-2026:0918] CISA Adds 2 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0918)
CISA has added 2 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2025-39964 (https://secdb.nttzen.cloud/cve/detail/CVE-2025-39964)
- Name: Linux Kernel Race Condition Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Linux
- Product: Kernel
- Notes: This vulnerability affects an open-source component, third-party library, protocol, or proprietary implementation that could be used by different products. For more information, please see: ; https://git.kernel.org/stable/c/0f28c4adbc4a97437874c9b669fd7958a8c6d6ce; https://git.kernel.org/stable/c/e4c1ec11132ec466f7362a95f36a506ce4dc08c9; https://git.kernel.org/stable/c/1f323a48e9b5ebfe6dc7d130fdf5c3c0e92a07c8; https://git.kernel.org/stable/c/7c4491b5644e3a3708f3dbd7591be0a570135b84; https://git.kernel.org/stable/c/9aee87da5572b3a14075f501752e209801160d3d; https://git.kernel.org/stable/c/45bcf60fe49b37daab1acee57b27211ad1574042; https://git.kernel.org/stable/c/1b34cbbf4f011a121ef7b2d7d6e6920a036d5285 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2025-39964
⚠️ CVE-2026-53266 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-53266)
- Name: Linux Kernel Out-of-Bounds Write Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Linux
- Product: Kernel
- Notes: This vulnerability affects an open-source component, third-party library, protocol, or proprietary implementation that could be used by different products. For more information, please see: ; https://git.kernel.org/stable/c/bf84ad7c7a9ede46e31afaa41a1ba06a159e8c87; https://git.kernel.org/stable/c/76280b78cc9f23bdc6438e10ad6dff148ef8375b; https://git.kernel.org/stable/c/b7e91939ba9be805a62a257fa4e227dffbb88fa0; https://git.kernel.org/stable/c/afd64b59c3de9bbbdd3759e834fdc55cda716e0b; https://git.kernel.org/stable/c/153ea96c806aea395daba907a4f88480b6ad5093; https://git.kernel.org/stable/c/b18675263db1147c8e1cab625400c13a0d87bd2d; https://git.kernel.org/stable/c/c9b5ff59feffb92a147a84a5aa28acd2cb8ff4c5; https://git.kernel.org/stable/c/67ba971ae02514d85818fe0c32549ab4bfa3bf49 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-53266
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260918 #cisa20260918 #cve_2025_39964 #cve_2026_53266 #cve202539964 #cve202653266
##updated 2026-09-18T15:17:06.153000
1 posts
🟠 CVE-2026-17086 - High (8.8)
The ShortPixel Image Optimizer – Optimize Images, Convert WebP & AVIF plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 6.5.5 via deserialization of untrusted input . This makes it possible for auth...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-17086/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T14:19:12.453000
2 posts
RE: https://infosec.exchange/@cR0w/117287817060203283
But wait, there's more perfect 10s!
🥳
https://www.cve.org/CVERecord?id=CVE-2026-93603
RE: https://infosec.exchange/@cR0w/117287817060203283
But wait, there's more perfect 10s!
🥳
https://www.cve.org/CVERecord?id=CVE-2026-93603
updated 2026-09-18T14:17:16.023000
5 posts
Reward: You've received the Cursed Amulet of Maximum CVSS — it goes great with your existing collection of regrets.
https://www.ionix.io/threat-center/cve-2026-20192
#CyberSecurity #CVE #Cisco #CriticalVulnerability #AccessControl #PatchedOrPerish (3/3)
##🏆 New Achievement! Perfect Score, Perfect Doom!
Splendid news, brave adventurer! Your quest to secure the network is absolutely still possible — and to help you on your way, Cisco has gifted the world CVE-2026-20192, a shiny CVSS 10.0 access control bypass in Cisco Identity Services Engine and ISE Passive Identity Connector. Maximum score! Like a Tamagotchi dying the moment you crack the box open.
Cisco caught this one themselves during an internal review, which is the good news. (1/3)
##Reward: You've received the Cursed Amulet of Maximum CVSS — it goes great with your existing collection of regrets.
https://www.ionix.io/threat-center/cve-2026-20192
#CyberSecurity #CVE #Cisco #CriticalVulnerability #AccessControl #PatchedOrPerish (3/3)
##🏆 New Achievement! Perfect Score, Perfect Doom!
Splendid news, brave adventurer! Your quest to secure the network is absolutely still possible — and to help you on your way, Cisco has gifted the world CVE-2026-20192, a shiny CVSS 10.0 access control bypass in Cisco Identity Services Engine and ISE Passive Identity Connector. Maximum score! Like a Tamagotchi dying the moment you crack the box open.
Cisco caught this one themselves during an internal review, which is the good news. (1/3)
##Cisco Patches 21 Flaws in ISE Identity Infrastructure Including Actively Exploited Zero-Days
Cisco released a set of security updates for Identity Services Engine (ISE) addressing 21 vulnerabilities, including two critical authentication bypasses (CVE-2026-20192 and CVE-2026-76460) currently exploited by attackers to gain root access.
**Treat this as a top-priority emergency attackers are already using some of these flaws to take over identity servers. If you run Cisco ISE or ISE-PIC, first make sure the management interface is never reachable from the internet. Then patch ASAP to 3.1 P12, 3.2 P11, 3.3 P12, 3.4 P7 or 3.5 P4. Check your access logs for strange accounts like "dummyuser". Assume a breach if you find anything weird.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/cisco-patches-21-flaws-in-ise-identity-infrastructure-including-actively-exploited-zero-days-e-2-9-l-x/gD2P6Ple2L
updated 2026-09-18T12:31:28
2 posts
🟠 CVE-2026-28198 - High (8.8)
An authenticated, low-privileged user with access to the NetBackup Flex
OS management shell could bypass the cryptographic signature
verification step of a privileged support command by supplying a
specially formed access credential. Successful...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-28198/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-28198 - High (8.8)
An authenticated, low-privileged user with access to the NetBackup Flex
OS management shell could bypass the cryptographic signature
verification step of a privileged support command by supplying a
specially formed access credential. Successful...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-28198/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T09:31:24
2 posts
🟠 CVE-2026-85410 - High (8.1)
The Master Addons for Elementor – Elementor Addons, Widgets, Mega Menu Builder, Popup Builder, Widget Builder & Template Kits plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 3.2.2. This is due to ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-85410/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-85410 - High (8.1)
The Master Addons for Elementor – Elementor Addons, Widgets, Mega Menu Builder, Popup Builder, Widget Builder & Template Kits plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 3.2.2. This is due to ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-85410/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T09:31:21
2 posts
🟠 CVE-2026-6205 - High (8.1)
An external control of file name or path vulnerability in Upload API in Synology DiskStation Manager (DSM) before 7.2.1-69057-12, 7.2.2-72806-9, 7.3.2-86009-4 and 7.4-90075 allows remote authenticated users to write arbitrary files and conduct den...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-6205/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-6205 - High (8.1)
An external control of file name or path vulnerability in Upload API in Synology DiskStation Manager (DSM) before 7.2.1-69057-12, 7.2.2-72806-9, 7.3.2-86009-4 and 7.4-90075 allows remote authenticated users to write arbitrary files and conduct den...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-6205/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T09:31:08
1 posts
CVE-2026-67101: CRITICAL SSRF in HCL BigFix Service Management v23 (CVSS 9.3). Unauthenticated attackers can access internal systems. No patch yet — restrict service and monitor requests. https://radar.offseq.com/threat/cve-2026-67101-cwe-918-server-side-request-forgery-ssrf-in-hcl-software-hcl-bigfix-service-management-ca42c9cfa875105e #OffSeq #SSRF #Vuln #Infosec
##updated 2026-09-18T09:31:08
2 posts
HCL Software patched critical HCL BigFix vulnerabilities, including CVE-2026-67100 and CVE-2026-18963. Patch now to prevent total account takeovers.
#HCLBigFix #Cybersecurity #CVE202667100 #Vulnerability #InfoSec
##CVE-2026-67100: HCL BigFix Service Management v23 faces CRITICAL SQL injection & cross-tenant data exposure (CVSS 9.8). Authenticated attackers can access PII across orgs. No patch yet — restrict access & monitor logs. https://radar.offseq.com/threat/cve-2026-67100-cwe-89-improper-neutralization-of-special-elements-used-in-an-sql-command-sql-injection-dc5bf090924b31aa #OffSeq #Vuln #SQLi #Infosec
##updated 2026-09-18T06:32:11
1 posts
🟠 CVE-2026-18912 - High (7.7)
ManageEngine DataSecurity Plus versions before 6310 are vulnerable to an authenticated SQL injection vulnerability, allowing an authenticated technician to execute arbitrary SQL queries through the Reports module.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-18912/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T03:30:28
1 posts
🟠 CVE-2026-93456 - High (8.2)
django-page-cms through 2.0.13 exempts five admin mutation views from CSRF protection in pages/admin/views.py, allowing attackers to forge requests that modify page content. Signed-in editors visiting a malicious page can be tricked into storing u...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93456/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T00:31:21
1 posts
🟠 CVE-2026-93450 - High (7.5)
go-openapi/swag jsonutils before 0.27.1 contains a stack overflow vulnerability in ordered JSON parsing and serialization due to unbounded recursion with no depth limit. Remote unauthenticated attackers can submit deeply nested JSON documents to s...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93450/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-18T00:31:16
5 posts
If you missed this, Microsoft patched this vulnerability yesterday:
CVE-2026-85889: Azure AI Foundry Elevation of Privilege Vulnerability (new) https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-85889
More:
The Hacker News: Microsoft Patches CVSS 10.0 Azure AI Foundry Flaw Enabling Unauthorized Privilege Escalation https://thehackernews.com/2026/09/microsoft-patches-cvss-100-azure-ai.html @thehackernews #infosec #vulnerability #Microsoft #Azure
##Microsoft patched CVE-2026-85889 in Azure AI Foundry, a missing authentication for critical function flaw with CVSS 10.0 enabling unauthenticated remote privilege escalation. MSRC reports full mitigation, but the network-accessible, no-auth vector makes tenant privilege review and log auditing critical. #AzureSecurity #PrivilegeEscalation #AiSecurity
https://cyberworldops.eu/en/azure-ai-foundry-authentication-failure-earns-maximum-severity-cvss
##If you missed this, Microsoft patched this vulnerability yesterday:
CVE-2026-85889: Azure AI Foundry Elevation of Privilege Vulnerability (new) https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-85889
More:
The Hacker News: Microsoft Patches CVSS 10.0 Azure AI Foundry Flaw Enabling Unauthorized Privilege Escalation https://thehackernews.com/2026/09/microsoft-patches-cvss-100-azure-ai.html @thehackernews #infosec #vulnerability #Microsoft #Azure
##Microsoft patched CVE-2026-85889 in Azure AI Foundry, a missing authentication for critical function flaw with CVSS 10.0 enabling unauthenticated remote privilege escalation. MSRC reports full mitigation, but the network-accessible, no-auth vector makes tenant privilege review and log auditing critical. #AzureSecurity #PrivilegeEscalation #AiSecurity
https://cyberworldops.eu/en/azure-ai-foundry-authentication-failure-earns-maximum-severity-cvss
##CVE-2026-85889 | CRITICAL flaw in Azure AI Foundry: missing authentication for a critical function (CVSS 10) allows remote privilege escalation. Microsoft patched this cloud vulnerability — verify your environment per MSRC: https://radar.offseq.com/threat/cve-2026-85889-cwe-306-missing-authentication-for-critical-function-in-microsoft-azure-ai-foundry-e4d903ee0861658f #OffSeq #Azure #Infosec #CVE202685889
##updated 2026-09-18T00:16:53.720000
1 posts
Mitsubishi Electric CC-Link IE TSN is affected by CVE-2026-13584, CWE-924 message integrity failure. An adjacent attacker can inject crafted packets under timing conditions to tamper with OT traffic. It matters for ICS integrity and safety assumptions on trusted segments. #IcsSecurity #OtSecurity #MessageIntegrity
https://cyberworldops.eu/en/mitsubishi-protocol-flaw-exposes-industrial-control-traffic-to-on
##updated 2026-09-17T20:18:59.730000
1 posts
ICYMI: 19 sev:CRIT CVEs in Node VM2, which is supposed to be a sandbox, but apparently it's built like the AI "sandboxes."
https://www.cve.org/CVERecord?id=CVE-2026-92934
https://www.cve.org/CVERecord?id=CVE-2026-92935
https://www.cve.org/CVERecord?id=CVE-2026-92937
https://www.cve.org/CVERecord?id=CVE-2026-92938
https://www.cve.org/CVERecord?id=CVE-2026-92939
https://www.cve.org/CVERecord?id=CVE-2026-92940
https://www.cve.org/CVERecord?id=CVE-2026-92941
https://www.cve.org/CVERecord?id=CVE-2026-92944
https://www.cve.org/CVERecord?id=CVE-2026-92946
https://www.cve.org/CVERecord?id=CVE-2026-92947
https://www.cve.org/CVERecord?id=CVE-2026-92948
https://www.cve.org/CVERecord?id=CVE-2026-92950
https://www.cve.org/CVERecord?id=CVE-2026-92951
https://www.cve.org/CVERecord?id=CVE-2026-92953
https://www.cve.org/CVERecord?id=CVE-2026-92954
https://www.cve.org/CVERecord?id=CVE-2026-92955
https://www.cve.org/CVERecord?id=CVE-2026-92956
https://www.cve.org/CVERecord?id=CVE-2026-92957
https://www.cve.org/CVERecord?id=CVE-2026-92960
updated 2026-09-17T20:18:59.610000
1 posts
ICYMI: 19 sev:CRIT CVEs in Node VM2, which is supposed to be a sandbox, but apparently it's built like the AI "sandboxes."
https://www.cve.org/CVERecord?id=CVE-2026-92934
https://www.cve.org/CVERecord?id=CVE-2026-92935
https://www.cve.org/CVERecord?id=CVE-2026-92937
https://www.cve.org/CVERecord?id=CVE-2026-92938
https://www.cve.org/CVERecord?id=CVE-2026-92939
https://www.cve.org/CVERecord?id=CVE-2026-92940
https://www.cve.org/CVERecord?id=CVE-2026-92941
https://www.cve.org/CVERecord?id=CVE-2026-92944
https://www.cve.org/CVERecord?id=CVE-2026-92946
https://www.cve.org/CVERecord?id=CVE-2026-92947
https://www.cve.org/CVERecord?id=CVE-2026-92948
https://www.cve.org/CVERecord?id=CVE-2026-92950
https://www.cve.org/CVERecord?id=CVE-2026-92951
https://www.cve.org/CVERecord?id=CVE-2026-92953
https://www.cve.org/CVERecord?id=CVE-2026-92954
https://www.cve.org/CVERecord?id=CVE-2026-92955
https://www.cve.org/CVERecord?id=CVE-2026-92956
https://www.cve.org/CVERecord?id=CVE-2026-92957
https://www.cve.org/CVERecord?id=CVE-2026-92960
updated 2026-09-17T20:18:59.483000
1 posts
ICYMI: 19 sev:CRIT CVEs in Node VM2, which is supposed to be a sandbox, but apparently it's built like the AI "sandboxes."
https://www.cve.org/CVERecord?id=CVE-2026-92934
https://www.cve.org/CVERecord?id=CVE-2026-92935
https://www.cve.org/CVERecord?id=CVE-2026-92937
https://www.cve.org/CVERecord?id=CVE-2026-92938
https://www.cve.org/CVERecord?id=CVE-2026-92939
https://www.cve.org/CVERecord?id=CVE-2026-92940
https://www.cve.org/CVERecord?id=CVE-2026-92941
https://www.cve.org/CVERecord?id=CVE-2026-92944
https://www.cve.org/CVERecord?id=CVE-2026-92946
https://www.cve.org/CVERecord?id=CVE-2026-92947
https://www.cve.org/CVERecord?id=CVE-2026-92948
https://www.cve.org/CVERecord?id=CVE-2026-92950
https://www.cve.org/CVERecord?id=CVE-2026-92951
https://www.cve.org/CVERecord?id=CVE-2026-92953
https://www.cve.org/CVERecord?id=CVE-2026-92954
https://www.cve.org/CVERecord?id=CVE-2026-92955
https://www.cve.org/CVERecord?id=CVE-2026-92956
https://www.cve.org/CVERecord?id=CVE-2026-92957
https://www.cve.org/CVERecord?id=CVE-2026-92960
updated 2026-09-17T20:18:59.213000
1 posts
ICYMI: 19 sev:CRIT CVEs in Node VM2, which is supposed to be a sandbox, but apparently it's built like the AI "sandboxes."
https://www.cve.org/CVERecord?id=CVE-2026-92934
https://www.cve.org/CVERecord?id=CVE-2026-92935
https://www.cve.org/CVERecord?id=CVE-2026-92937
https://www.cve.org/CVERecord?id=CVE-2026-92938
https://www.cve.org/CVERecord?id=CVE-2026-92939
https://www.cve.org/CVERecord?id=CVE-2026-92940
https://www.cve.org/CVERecord?id=CVE-2026-92941
https://www.cve.org/CVERecord?id=CVE-2026-92944
https://www.cve.org/CVERecord?id=CVE-2026-92946
https://www.cve.org/CVERecord?id=CVE-2026-92947
https://www.cve.org/CVERecord?id=CVE-2026-92948
https://www.cve.org/CVERecord?id=CVE-2026-92950
https://www.cve.org/CVERecord?id=CVE-2026-92951
https://www.cve.org/CVERecord?id=CVE-2026-92953
https://www.cve.org/CVERecord?id=CVE-2026-92954
https://www.cve.org/CVERecord?id=CVE-2026-92955
https://www.cve.org/CVERecord?id=CVE-2026-92956
https://www.cve.org/CVERecord?id=CVE-2026-92957
https://www.cve.org/CVERecord?id=CVE-2026-92960
updated 2026-09-17T20:18:58.840000
1 posts
🟠 CVE-2026-92919 - High (8.1)
admin3 through 3.0.0 fails to sanitize client-supplied filenames in the upload handler, allowing authenticated users to write files outside the storage root on Windows deployments. Attackers can use dot-dot path segments in filenames to escape the...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-92919/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-17T20:16:52.877000
1 posts
🔴 CVE-2026-54752 - Critical (9.6)
NetBox Device Type Library is a collection of community-sourced device type definitions for import into NetBox. The validation test harness can deserialize pull-request-controlled tracked pickle cache files through pickle.load in the read_pickle_d...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-54752/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-17T18:32:05
2 posts
SolarWinds Patches Critical Access Rights Manager Flaw That Could Open the Door to Unauthenticated Remote Code Execution + Video
Introduction SolarWinds has patched a serious security vulnerability in its Access Rights Manager (ARM) platform that could potentially allow an attacker to execute malicious code remotely without first authenticating to the affected system. Tracked as CVE-2026-28326, the vulnerability is tied to a hard-coded static key and affects Access…
##SolarWinds Fixes Hard-Coded Key Flaw in Access Rights Manager
SolarWinds has patched a high-severity vulnerability in its Access Rights Manager software, known as CVE-2026-28326, which could have allowed hackers to remotely execute code without authentication due to a hard-coded static key. The flaw, scoring 8.8 out of 10 in severity, has been fixed in ARM 2026.2.1, and users are…
#Solarwinds #AccessRightsManager #Cve202628326 #RemoteCodeExecution #UnauthenticatedRce
##updated 2026-09-17T16:18:34.520000
1 posts
ICYMI: 19 sev:CRIT CVEs in Node VM2, which is supposed to be a sandbox, but apparently it's built like the AI "sandboxes."
https://www.cve.org/CVERecord?id=CVE-2026-92934
https://www.cve.org/CVERecord?id=CVE-2026-92935
https://www.cve.org/CVERecord?id=CVE-2026-92937
https://www.cve.org/CVERecord?id=CVE-2026-92938
https://www.cve.org/CVERecord?id=CVE-2026-92939
https://www.cve.org/CVERecord?id=CVE-2026-92940
https://www.cve.org/CVERecord?id=CVE-2026-92941
https://www.cve.org/CVERecord?id=CVE-2026-92944
https://www.cve.org/CVERecord?id=CVE-2026-92946
https://www.cve.org/CVERecord?id=CVE-2026-92947
https://www.cve.org/CVERecord?id=CVE-2026-92948
https://www.cve.org/CVERecord?id=CVE-2026-92950
https://www.cve.org/CVERecord?id=CVE-2026-92951
https://www.cve.org/CVERecord?id=CVE-2026-92953
https://www.cve.org/CVERecord?id=CVE-2026-92954
https://www.cve.org/CVERecord?id=CVE-2026-92955
https://www.cve.org/CVERecord?id=CVE-2026-92956
https://www.cve.org/CVERecord?id=CVE-2026-92957
https://www.cve.org/CVERecord?id=CVE-2026-92960
updated 2026-09-17T16:17:44.693000
1 posts
1 repos
CVE-2026-79752: CakePHP <4.5.12, 4.6.0-4.6.4, 5.0.0-5.1.8, 5.2.0-5.2.13, 5.3.0-5.3.6 FunctionsBuilder SQL injection risk! CRITICAL severity — patch ASAP or avoid user input in $dataType, $part, $unit. https://radar.offseq.com/threat/database-cakephp-multiple-methods-in-functionsbuilder-vulnerable-to-sql-injection-cve-2026-79752-16b04fe3ca4b5527 #OffSeq #CakePHP #SQLi #Infosec
##updated 2026-09-17T15:32:35
1 posts
ICYMI: 19 sev:CRIT CVEs in Node VM2, which is supposed to be a sandbox, but apparently it's built like the AI "sandboxes."
https://www.cve.org/CVERecord?id=CVE-2026-92934
https://www.cve.org/CVERecord?id=CVE-2026-92935
https://www.cve.org/CVERecord?id=CVE-2026-92937
https://www.cve.org/CVERecord?id=CVE-2026-92938
https://www.cve.org/CVERecord?id=CVE-2026-92939
https://www.cve.org/CVERecord?id=CVE-2026-92940
https://www.cve.org/CVERecord?id=CVE-2026-92941
https://www.cve.org/CVERecord?id=CVE-2026-92944
https://www.cve.org/CVERecord?id=CVE-2026-92946
https://www.cve.org/CVERecord?id=CVE-2026-92947
https://www.cve.org/CVERecord?id=CVE-2026-92948
https://www.cve.org/CVERecord?id=CVE-2026-92950
https://www.cve.org/CVERecord?id=CVE-2026-92951
https://www.cve.org/CVERecord?id=CVE-2026-92953
https://www.cve.org/CVERecord?id=CVE-2026-92954
https://www.cve.org/CVERecord?id=CVE-2026-92955
https://www.cve.org/CVERecord?id=CVE-2026-92956
https://www.cve.org/CVERecord?id=CVE-2026-92957
https://www.cve.org/CVERecord?id=CVE-2026-92960
updated 2026-09-17T15:32:28
1 posts
ICYMI: 19 sev:CRIT CVEs in Node VM2, which is supposed to be a sandbox, but apparently it's built like the AI "sandboxes."
https://www.cve.org/CVERecord?id=CVE-2026-92934
https://www.cve.org/CVERecord?id=CVE-2026-92935
https://www.cve.org/CVERecord?id=CVE-2026-92937
https://www.cve.org/CVERecord?id=CVE-2026-92938
https://www.cve.org/CVERecord?id=CVE-2026-92939
https://www.cve.org/CVERecord?id=CVE-2026-92940
https://www.cve.org/CVERecord?id=CVE-2026-92941
https://www.cve.org/CVERecord?id=CVE-2026-92944
https://www.cve.org/CVERecord?id=CVE-2026-92946
https://www.cve.org/CVERecord?id=CVE-2026-92947
https://www.cve.org/CVERecord?id=CVE-2026-92948
https://www.cve.org/CVERecord?id=CVE-2026-92950
https://www.cve.org/CVERecord?id=CVE-2026-92951
https://www.cve.org/CVERecord?id=CVE-2026-92953
https://www.cve.org/CVERecord?id=CVE-2026-92954
https://www.cve.org/CVERecord?id=CVE-2026-92955
https://www.cve.org/CVERecord?id=CVE-2026-92956
https://www.cve.org/CVERecord?id=CVE-2026-92957
https://www.cve.org/CVERecord?id=CVE-2026-92960
updated 2026-09-17T15:32:28
1 posts
ICYMI: 19 sev:CRIT CVEs in Node VM2, which is supposed to be a sandbox, but apparently it's built like the AI "sandboxes."
https://www.cve.org/CVERecord?id=CVE-2026-92934
https://www.cve.org/CVERecord?id=CVE-2026-92935
https://www.cve.org/CVERecord?id=CVE-2026-92937
https://www.cve.org/CVERecord?id=CVE-2026-92938
https://www.cve.org/CVERecord?id=CVE-2026-92939
https://www.cve.org/CVERecord?id=CVE-2026-92940
https://www.cve.org/CVERecord?id=CVE-2026-92941
https://www.cve.org/CVERecord?id=CVE-2026-92944
https://www.cve.org/CVERecord?id=CVE-2026-92946
https://www.cve.org/CVERecord?id=CVE-2026-92947
https://www.cve.org/CVERecord?id=CVE-2026-92948
https://www.cve.org/CVERecord?id=CVE-2026-92950
https://www.cve.org/CVERecord?id=CVE-2026-92951
https://www.cve.org/CVERecord?id=CVE-2026-92953
https://www.cve.org/CVERecord?id=CVE-2026-92954
https://www.cve.org/CVERecord?id=CVE-2026-92955
https://www.cve.org/CVERecord?id=CVE-2026-92956
https://www.cve.org/CVERecord?id=CVE-2026-92957
https://www.cve.org/CVERecord?id=CVE-2026-92960
updated 2026-09-17T15:32:27
1 posts
ICYMI: 19 sev:CRIT CVEs in Node VM2, which is supposed to be a sandbox, but apparently it's built like the AI "sandboxes."
https://www.cve.org/CVERecord?id=CVE-2026-92934
https://www.cve.org/CVERecord?id=CVE-2026-92935
https://www.cve.org/CVERecord?id=CVE-2026-92937
https://www.cve.org/CVERecord?id=CVE-2026-92938
https://www.cve.org/CVERecord?id=CVE-2026-92939
https://www.cve.org/CVERecord?id=CVE-2026-92940
https://www.cve.org/CVERecord?id=CVE-2026-92941
https://www.cve.org/CVERecord?id=CVE-2026-92944
https://www.cve.org/CVERecord?id=CVE-2026-92946
https://www.cve.org/CVERecord?id=CVE-2026-92947
https://www.cve.org/CVERecord?id=CVE-2026-92948
https://www.cve.org/CVERecord?id=CVE-2026-92950
https://www.cve.org/CVERecord?id=CVE-2026-92951
https://www.cve.org/CVERecord?id=CVE-2026-92953
https://www.cve.org/CVERecord?id=CVE-2026-92954
https://www.cve.org/CVERecord?id=CVE-2026-92955
https://www.cve.org/CVERecord?id=CVE-2026-92956
https://www.cve.org/CVERecord?id=CVE-2026-92957
https://www.cve.org/CVERecord?id=CVE-2026-92960
updated 2026-09-17T15:32:26
1 posts
ICYMI: 19 sev:CRIT CVEs in Node VM2, which is supposed to be a sandbox, but apparently it's built like the AI "sandboxes."
https://www.cve.org/CVERecord?id=CVE-2026-92934
https://www.cve.org/CVERecord?id=CVE-2026-92935
https://www.cve.org/CVERecord?id=CVE-2026-92937
https://www.cve.org/CVERecord?id=CVE-2026-92938
https://www.cve.org/CVERecord?id=CVE-2026-92939
https://www.cve.org/CVERecord?id=CVE-2026-92940
https://www.cve.org/CVERecord?id=CVE-2026-92941
https://www.cve.org/CVERecord?id=CVE-2026-92944
https://www.cve.org/CVERecord?id=CVE-2026-92946
https://www.cve.org/CVERecord?id=CVE-2026-92947
https://www.cve.org/CVERecord?id=CVE-2026-92948
https://www.cve.org/CVERecord?id=CVE-2026-92950
https://www.cve.org/CVERecord?id=CVE-2026-92951
https://www.cve.org/CVERecord?id=CVE-2026-92953
https://www.cve.org/CVERecord?id=CVE-2026-92954
https://www.cve.org/CVERecord?id=CVE-2026-92955
https://www.cve.org/CVERecord?id=CVE-2026-92956
https://www.cve.org/CVERecord?id=CVE-2026-92957
https://www.cve.org/CVERecord?id=CVE-2026-92960
updated 2026-09-17T15:32:26
1 posts
ICYMI: 19 sev:CRIT CVEs in Node VM2, which is supposed to be a sandbox, but apparently it's built like the AI "sandboxes."
https://www.cve.org/CVERecord?id=CVE-2026-92934
https://www.cve.org/CVERecord?id=CVE-2026-92935
https://www.cve.org/CVERecord?id=CVE-2026-92937
https://www.cve.org/CVERecord?id=CVE-2026-92938
https://www.cve.org/CVERecord?id=CVE-2026-92939
https://www.cve.org/CVERecord?id=CVE-2026-92940
https://www.cve.org/CVERecord?id=CVE-2026-92941
https://www.cve.org/CVERecord?id=CVE-2026-92944
https://www.cve.org/CVERecord?id=CVE-2026-92946
https://www.cve.org/CVERecord?id=CVE-2026-92947
https://www.cve.org/CVERecord?id=CVE-2026-92948
https://www.cve.org/CVERecord?id=CVE-2026-92950
https://www.cve.org/CVERecord?id=CVE-2026-92951
https://www.cve.org/CVERecord?id=CVE-2026-92953
https://www.cve.org/CVERecord?id=CVE-2026-92954
https://www.cve.org/CVERecord?id=CVE-2026-92955
https://www.cve.org/CVERecord?id=CVE-2026-92956
https://www.cve.org/CVERecord?id=CVE-2026-92957
https://www.cve.org/CVERecord?id=CVE-2026-92960
updated 2026-09-17T15:32:26
1 posts
ICYMI: 19 sev:CRIT CVEs in Node VM2, which is supposed to be a sandbox, but apparently it's built like the AI "sandboxes."
https://www.cve.org/CVERecord?id=CVE-2026-92934
https://www.cve.org/CVERecord?id=CVE-2026-92935
https://www.cve.org/CVERecord?id=CVE-2026-92937
https://www.cve.org/CVERecord?id=CVE-2026-92938
https://www.cve.org/CVERecord?id=CVE-2026-92939
https://www.cve.org/CVERecord?id=CVE-2026-92940
https://www.cve.org/CVERecord?id=CVE-2026-92941
https://www.cve.org/CVERecord?id=CVE-2026-92944
https://www.cve.org/CVERecord?id=CVE-2026-92946
https://www.cve.org/CVERecord?id=CVE-2026-92947
https://www.cve.org/CVERecord?id=CVE-2026-92948
https://www.cve.org/CVERecord?id=CVE-2026-92950
https://www.cve.org/CVERecord?id=CVE-2026-92951
https://www.cve.org/CVERecord?id=CVE-2026-92953
https://www.cve.org/CVERecord?id=CVE-2026-92954
https://www.cve.org/CVERecord?id=CVE-2026-92955
https://www.cve.org/CVERecord?id=CVE-2026-92956
https://www.cve.org/CVERecord?id=CVE-2026-92957
https://www.cve.org/CVERecord?id=CVE-2026-92960
updated 2026-09-17T15:32:24
1 posts
🟠 CVE-2026-92918 - High (8.8)
admin3 through 3.0.0 persists user session tokens in the audit log event body when publishing UserLoggedIn domain events. Attackers with log:view permission can read the JSON response from the GET /logs endpoint to harvest session tokens and repla...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-92918/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-17T15:32:22
1 posts
ICYMI: 19 sev:CRIT CVEs in Node VM2, which is supposed to be a sandbox, but apparently it's built like the AI "sandboxes."
https://www.cve.org/CVERecord?id=CVE-2026-92934
https://www.cve.org/CVERecord?id=CVE-2026-92935
https://www.cve.org/CVERecord?id=CVE-2026-92937
https://www.cve.org/CVERecord?id=CVE-2026-92938
https://www.cve.org/CVERecord?id=CVE-2026-92939
https://www.cve.org/CVERecord?id=CVE-2026-92940
https://www.cve.org/CVERecord?id=CVE-2026-92941
https://www.cve.org/CVERecord?id=CVE-2026-92944
https://www.cve.org/CVERecord?id=CVE-2026-92946
https://www.cve.org/CVERecord?id=CVE-2026-92947
https://www.cve.org/CVERecord?id=CVE-2026-92948
https://www.cve.org/CVERecord?id=CVE-2026-92950
https://www.cve.org/CVERecord?id=CVE-2026-92951
https://www.cve.org/CVERecord?id=CVE-2026-92953
https://www.cve.org/CVERecord?id=CVE-2026-92954
https://www.cve.org/CVERecord?id=CVE-2026-92955
https://www.cve.org/CVERecord?id=CVE-2026-92956
https://www.cve.org/CVERecord?id=CVE-2026-92957
https://www.cve.org/CVERecord?id=CVE-2026-92960
updated 2026-09-17T15:32:21
1 posts
ICYMI: 19 sev:CRIT CVEs in Node VM2, which is supposed to be a sandbox, but apparently it's built like the AI "sandboxes."
https://www.cve.org/CVERecord?id=CVE-2026-92934
https://www.cve.org/CVERecord?id=CVE-2026-92935
https://www.cve.org/CVERecord?id=CVE-2026-92937
https://www.cve.org/CVERecord?id=CVE-2026-92938
https://www.cve.org/CVERecord?id=CVE-2026-92939
https://www.cve.org/CVERecord?id=CVE-2026-92940
https://www.cve.org/CVERecord?id=CVE-2026-92941
https://www.cve.org/CVERecord?id=CVE-2026-92944
https://www.cve.org/CVERecord?id=CVE-2026-92946
https://www.cve.org/CVERecord?id=CVE-2026-92947
https://www.cve.org/CVERecord?id=CVE-2026-92948
https://www.cve.org/CVERecord?id=CVE-2026-92950
https://www.cve.org/CVERecord?id=CVE-2026-92951
https://www.cve.org/CVERecord?id=CVE-2026-92953
https://www.cve.org/CVERecord?id=CVE-2026-92954
https://www.cve.org/CVERecord?id=CVE-2026-92955
https://www.cve.org/CVERecord?id=CVE-2026-92956
https://www.cve.org/CVERecord?id=CVE-2026-92957
https://www.cve.org/CVERecord?id=CVE-2026-92960
updated 2026-09-17T15:32:18
1 posts
🟠 CVE-2026-81481 - High (7.5)
Dell OpenManage Server Administrator, versions prior to 11.1.0.3, contains an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability. An unauthenticated attacker with remote access could potentially exploit th...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-81481/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-17T15:17:01.040000
1 posts
ICYMI: 19 sev:CRIT CVEs in Node VM2, which is supposed to be a sandbox, but apparently it's built like the AI "sandboxes."
https://www.cve.org/CVERecord?id=CVE-2026-92934
https://www.cve.org/CVERecord?id=CVE-2026-92935
https://www.cve.org/CVERecord?id=CVE-2026-92937
https://www.cve.org/CVERecord?id=CVE-2026-92938
https://www.cve.org/CVERecord?id=CVE-2026-92939
https://www.cve.org/CVERecord?id=CVE-2026-92940
https://www.cve.org/CVERecord?id=CVE-2026-92941
https://www.cve.org/CVERecord?id=CVE-2026-92944
https://www.cve.org/CVERecord?id=CVE-2026-92946
https://www.cve.org/CVERecord?id=CVE-2026-92947
https://www.cve.org/CVERecord?id=CVE-2026-92948
https://www.cve.org/CVERecord?id=CVE-2026-92950
https://www.cve.org/CVERecord?id=CVE-2026-92951
https://www.cve.org/CVERecord?id=CVE-2026-92953
https://www.cve.org/CVERecord?id=CVE-2026-92954
https://www.cve.org/CVERecord?id=CVE-2026-92955
https://www.cve.org/CVERecord?id=CVE-2026-92956
https://www.cve.org/CVERecord?id=CVE-2026-92957
https://www.cve.org/CVERecord?id=CVE-2026-92960
updated 2026-09-17T15:17:00.520000
1 posts
ICYMI: 19 sev:CRIT CVEs in Node VM2, which is supposed to be a sandbox, but apparently it's built like the AI "sandboxes."
https://www.cve.org/CVERecord?id=CVE-2026-92934
https://www.cve.org/CVERecord?id=CVE-2026-92935
https://www.cve.org/CVERecord?id=CVE-2026-92937
https://www.cve.org/CVERecord?id=CVE-2026-92938
https://www.cve.org/CVERecord?id=CVE-2026-92939
https://www.cve.org/CVERecord?id=CVE-2026-92940
https://www.cve.org/CVERecord?id=CVE-2026-92941
https://www.cve.org/CVERecord?id=CVE-2026-92944
https://www.cve.org/CVERecord?id=CVE-2026-92946
https://www.cve.org/CVERecord?id=CVE-2026-92947
https://www.cve.org/CVERecord?id=CVE-2026-92948
https://www.cve.org/CVERecord?id=CVE-2026-92950
https://www.cve.org/CVERecord?id=CVE-2026-92951
https://www.cve.org/CVERecord?id=CVE-2026-92953
https://www.cve.org/CVERecord?id=CVE-2026-92954
https://www.cve.org/CVERecord?id=CVE-2026-92955
https://www.cve.org/CVERecord?id=CVE-2026-92956
https://www.cve.org/CVERecord?id=CVE-2026-92957
https://www.cve.org/CVERecord?id=CVE-2026-92960
updated 2026-09-17T14:18:01.430000
1 posts
ICYMI: 19 sev:CRIT CVEs in Node VM2, which is supposed to be a sandbox, but apparently it's built like the AI "sandboxes."
https://www.cve.org/CVERecord?id=CVE-2026-92934
https://www.cve.org/CVERecord?id=CVE-2026-92935
https://www.cve.org/CVERecord?id=CVE-2026-92937
https://www.cve.org/CVERecord?id=CVE-2026-92938
https://www.cve.org/CVERecord?id=CVE-2026-92939
https://www.cve.org/CVERecord?id=CVE-2026-92940
https://www.cve.org/CVERecord?id=CVE-2026-92941
https://www.cve.org/CVERecord?id=CVE-2026-92944
https://www.cve.org/CVERecord?id=CVE-2026-92946
https://www.cve.org/CVERecord?id=CVE-2026-92947
https://www.cve.org/CVERecord?id=CVE-2026-92948
https://www.cve.org/CVERecord?id=CVE-2026-92950
https://www.cve.org/CVERecord?id=CVE-2026-92951
https://www.cve.org/CVERecord?id=CVE-2026-92953
https://www.cve.org/CVERecord?id=CVE-2026-92954
https://www.cve.org/CVERecord?id=CVE-2026-92955
https://www.cve.org/CVERecord?id=CVE-2026-92956
https://www.cve.org/CVERecord?id=CVE-2026-92957
https://www.cve.org/CVERecord?id=CVE-2026-92960
updated 2026-09-17T09:33:03
1 posts
Mitsubishi GX Works3 and bundled Motion Control Settings allow local bypass of block-password auth via in-memory patching (CVE-2026-15688). It matters because it breaks project protection for PLC logic, enabling undetected modification. #OtSecurity #PlcSecurity #VulnerabilityManagement
https://cyberworldops.eu/en/mitsubishi-engineering-tools-expose-control-programs-through-local
##updated 2026-09-17T04:17:54.930000
2 posts
Google sieht Hinweise auf eine begrenzte, gezielte Ausnutzung von
CVE-2026-58704 auf Pixel-Geräten. Die Schwachstelle steckt im Modem
und ermöglicht eine Rechteausweitung. Der September-Patchlevel
2026-09-05 behebt die Lücke.
https://source.android.com/docs/security/bulletin/pixel/2026/2026-09-01
##🚨 Google confirms Pixel phones targeted in zero-click zero-day attacks
Google has patched CVE-2026-58704, a high-severity vulnerability in Pixel phones' cellular modem that the company says was already under "limited, targeted exploitation."
⠀
The flaw is caused by a logic error that can allow an attacker to bypass permission checks and escalate privileges beyond the modem's isolated environment.
⠀
Most importantly, exploitation requires no interaction from the victim.
No malicious link needs to be clicked and no file needs to be opened, making it a zero-click attack.
⠀
Google has not disclosed:
• Who carried out the attacks
• How many Pixel owners were targeted
• How the victims were selected
• What tools or spyware may have been deployed
⠀
CISA has added CVE-2026-58704 to its Known Exploited Vulnerabilities catalog and set a September 19 remediation deadline for affected federal systems.
⠀
Google says Pixel devices with the September 5, 2026 security patch level or later are protected.
Pixel owners should update their devices immediately.
##updated 2026-09-16T21:33:00
14 posts
1 repos
🖲️ #Cybersecurity #Ciberseguridad #Ciberseguranca #Security #Seguridad #Seguranca #News #Noticia #Noticias #Tecnologia #Technology
⚫ Cisco Zero-Day Highlights API Endpoint Authentication Issues
🔗 https://www.darkreading.com/vulnerabilities-threats/cisco-zero-day-api-endpoint-authentication-issues
The authentication bypass flaw CVE-2026-76460 impacts Cisco's Identity Services Engine (ISE) and received a maximum 10 out of 10 CVSS score.
##CVE-2026-76460 scores a perfect 10 out of 10 — which is, tragically, the only perfect score on this report card. Two companion command-injection flaws, CVE-2026-20306 and CVE-2026-20305, round out the disclosure. Active exploitation is confirmed. Attackers can delete their own footprints from the device, so the auditors won't find anything. Convenient for them. (2/3)
##Cisco Identity Services Engine Authentication Bypass Vulnerability
Cisco Identity Services Engine(ISE) 및 ISE Passive Identity Connector에서 인증되지 않은 원격 공격자가 API 엔드포인트의 인증 우회를 통해 관리 인터페이스에 접근할 수 있는 CVE-2026-76460이 공개됐다. CVSS 10.0의 Critical 취약점이며, Cisco는 실제 공격에 악용되고 있음을 인지하고 있다. 공격 성공 시 루트 권한의 명령 실행까지 가능해 로그 증거가 삭제·은닉될 수 있으므로, ISE 접근 로그뿐 아...
##📰 Cisco ISE Zero-Day (CVSS 10.0) Under Active Attack, Bypasses Auth
Cisco warns of a critical (CVSS 10.0) zero-day in Identity Services Engine (ISE) actively exploited in the wild. The flaw, CVE-2026-76460, allows full authentication bypass. CISA added to KEV catalog. Patch immediately! #Cisco #ZeroDay #CyberSecurity
##Cisco ISE zero-day CVE-2026-76460 is being actively exploited.
The CVSS 10.0 flaw allows remote, unauthenticated attackers to bypass authentication and potentially execute commands with root privileges.
Cisco says there is no complete workaround and recommends upgrading immediately.
Read more here:
https://forum.hashpwn.net/post/16740
Noch ein Cisco Zero-Day (perfekte 10) unter Angriff
Ja, Cisco-Evangelisten müssen dieser Tage ganz stark sein. Kurz nach dem Desaster mit dem "sicheren" E-Mail-Gateway ist die nächste "Sicherheitslücke" aufgefallen, weil sie bereits angegriffen wird. CVE-2026-76460 hat eine perfekte 10 (von 10) als Risiko-Einstufung erhalten. Die "Sicherheitslücke" steckt in der Cisco Identity Services Engine (ISE). Wie der Name nahelegt, ist die Aufgabe dieser Funktion, Benutzer/innen zu identifizieren und dann für bestimmte Tätigkeiten zu autorisieren. Die Schwachstelle entsteht durch, ich zitiere: "... insufficient authentication control ... Weiterlesen:
#0day #backdoor #closedsource #exploits #hersteller #identität #sicherheit #UnplugTrump #zeroday #cisco
##CVE-2026-76460 scores a perfect 10 out of 10 — which is, tragically, the only perfect score on this report card. Two companion command-injection flaws, CVE-2026-20306 and CVE-2026-20305, round out the disclosure. Active exploitation is confirmed. Attackers can delete their own footprints from the device, so the auditors won't find anything. Convenient for them. (2/3)
##Cisco ISE zero-day CVE-2026-76460 is being actively exploited.
The CVSS 10.0 flaw allows remote, unauthenticated attackers to bypass authentication and potentially execute commands with root privileges.
Cisco says there is no complete workaround and recommends upgrading immediately.
Read more here:
https://forum.hashpwn.net/post/16740
Noch ein Cisco Zero-Day (perfekte 10) unter Angriff
Ja, Cisco-Evangelisten müssen dieser Tage ganz stark sein. Kurz nach dem Desaster mit dem "sicheren" E-Mail-Gateway ist die nächste "Sicherheitslücke" aufgefallen, weil sie bereits angegriffen wird. CVE-2026-76460 hat eine perfekte 10 (von 10) als Risiko-Einstufung erhalten. Die "Sicherheitslücke" steckt in der Cisco Identity Services Engine (ISE). Wie der Name nahelegt, ist die Aufgabe dieser Funktion, Benutzer/innen zu identifizieren und dann für bestimmte Tätigkeiten zu autorisieren. Die Schwachstelle entsteht durch, ich zitiere: "... insufficient authentication control ... Weiterlesen:
#0day #backdoor #closedsource #exploits #hersteller #identität #sicherheit #UnplugTrump #zeroday #cisco
##Cisco ISE Vulnerability With CVSS 10.0 Score Under Active Attack
Cisco patched CVE-2026-76460, a critical Cisco Identity Services Engine (ISE) bug under active attack. CISA lists it as an exploited vulnerability.
🔗️ [Thecyberexpress] https://link.is.it/LOu95i
##「Cisco、ISE認証バイパスの新たなゼロデイ脆弱性(CVSS 10.0)が現在進行中の攻撃で悪用されていると警告 」: #TheHackerNews
「Ciscoは、Identity Services Engine(ISE)に影響を与える新たな最高レベルのセキュリティ脆弱性が発見され、現在悪用されていると警告した。
CVE-2026-76460 (CVSSスコア:10.0)として追跡されているこの脆弱性により 、認証されていないリモート攻撃者が認証を回避できる可能性がある。
「この脆弱性は、APIエンドポイントにおける認証制御の不備に起因するものです」とシスコは述べています。「攻撃者は、細工されたリクエストを影響を受けるAPIエンドポイントに送信することで、この脆弱性を悪用する可能性があります。攻撃が成功すると、攻撃者はWebベースの管理インターフェースを迂回して、影響を受けるデバイスへの不正アクセスを取得できる可能性があります。」 」
https://thehackernews.com/2026/09/cisco-warns-of-new-zero-day-ise-auth.html
##Critical cybersecurity alerts issued as Check Point (CVE-2026-91843) and Cisco (CVE-2026-76460) disclose severe vulnerabilities, with Cisco's already exploited. Geopolitically, USCG/FBI investigate suspected foreign cyberattacks on two oil tankers; Iran reportedly targeted another in the Strait of Hormuz. Tech advances with OpenAI's 'Astra for Law' for legal AI workflows.
##⚠️ CRITICAL: Cisco alerts customers to second actively exploited zero-day in as many days
Cisco ISE zero-day CVE-2026-76460 is actively exploited in the wild. Remote attackers can bypass authentication, take full device control, modify network policies, and steal credentials. If you run ISE, this is a direct threat to your network perimeter and access controls.
🤖 AI generated summary
##Cisco Patches 21 Flaws in ISE Identity Infrastructure Including Actively Exploited Zero-Days
Cisco released a set of security updates for Identity Services Engine (ISE) addressing 21 vulnerabilities, including two critical authentication bypasses (CVE-2026-20192 and CVE-2026-76460) currently exploited by attackers to gain root access.
**Treat this as a top-priority emergency attackers are already using some of these flaws to take over identity servers. If you run Cisco ISE or ISE-PIC, first make sure the management interface is never reachable from the internet. Then patch ASAP to 3.1 P12, 3.2 P11, 3.3 P12, 3.4 P7 or 3.5 P4. Check your access logs for strange accounts like "dummyuser". Assume a breach if you find anything weird.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/cisco-patches-21-flaws-in-ise-identity-infrastructure-including-actively-exploited-zero-days-e-2-9-l-x/gD2P6Ple2L
updated 2026-09-16T21:32:55
1 posts
HP released updates to fix critical HP Advance vulnerabilities (CVE-2026-89082). Patch these HP Advance vulnerabilities to stop remote code execution.
##updated 2026-09-16T21:32:50
2 posts
Grab a coffee. Cisco has posted several advisories, one of them addressing a critical vulnerability that was first published on the 16th. More here https://sec.cloudapps.cisco.com/security/center/publicationListing.x
CRITICAL: CVE-2026-20329, CVE-2026-20330, and CVE-2026-20331: Cisco Secure Firewall Adaptive Security Appliance, Secure Firewall Threat Defense, and Secure Firewall Management Center Software Hardening Release: September 2026 @TalosSecurity #Cisco #vulnerability #infosec
##Grab a coffee. Cisco has posted several advisories, one of them addressing a critical vulnerability that was first published on the 16th. More here https://sec.cloudapps.cisco.com/security/center/publicationListing.x
CRITICAL: CVE-2026-20329, CVE-2026-20330, and CVE-2026-20331: Cisco Secure Firewall Adaptive Security Appliance, Secure Firewall Threat Defense, and Secure Firewall Management Center Software Hardening Release: September 2026 @TalosSecurity #Cisco #vulnerability #infosec
##updated 2026-09-16T21:32:50
1 posts
https://thecybersecguru.com/news/cisco-fmc-cve-2026-20324-sftunnel-root-rce/
##updated 2026-09-16T20:38:33.883000
5 posts
1 repos
Guest to host: escaping Docker's hypervisor
Docker의 macOS용 하이퍼바이저(VMM)에서 컨테이너가 호스트 파일시스템을 임의로 읽고 쓸 수 있는 샌드박스 탈출 취약점 CVE-2026-77179가 공개되었습니다. virtio-fs 서버가 파일의 inode 기반 재확인에 실패한 뒤 저장된 경로 문자열로 폴백하는 과정에서, 공격자가 부모 디렉터리를 심볼릭 링크로 교체하면 마운트 범위 밖의 호스트 경로로 접근할 수 있었습니다. Docker Sandboxes 0.42.0 및 Docker Desktop 4.88.0에서 수정됐으며, 특히 Docker Desktop에서 Docker VMM을 활성화한 macOS 사용자는 즉시 업데이트해야 합니다. 에이전트...
##CVE-2026-77179: Docker's hypervisor for Mac compromised (Docker Desktop, Docker Sandboxes) https://www.accomplish.ai/blog/escaping-dockers-hypervisor/
##CVE-2026-77179: Docker's hypervisor for Mac compromised (Docker Desktop, Docker Sandboxes) https://www.accomplish.ai/blog/escaping-dockers-hypervisor/
##「Dockerサンドボックスの重大な脆弱性により、悪意のあるゲストコードがmacOSホストファイルを読み取り、変更することが可能になる。 」: #TheHackerNews
「Dockerは9月15日のセキュリティ発表 で、macOS上のDocker Sandboxes 仮想マシン内で実行されている悪意のあるコードが、 共有されているプロジェクトディレクトリから脱出し、ホスト上の他の場所にあるファイルを読み取ったり変更したりする可能性があると警告した 。
このエスケープ処理は、仮想マシンを実行するホストアカウントの権限で実行されます。この脆弱性( CVE-2026-77179 )は、深刻度が「重大」と評価されており、macOS 版のバージョン 0.28.0 から 0.42.0 まで(0.42.0 は含まない)に影響があり、 9 月 7 日にリリースされたバージョン 0.42.0 で修正されました。 」
https://thehackernews.com/2026/09/critical-docker-sandboxes-flaw-lets.html
##https://thecybersecguru.com/news/docker-sandboxes-cve-2026-77179-cve-2026-79994/
##updated 2026-09-16T18:32:09
2 posts
CVE-2026-76460 scores a perfect 10 out of 10 — which is, tragically, the only perfect score on this report card. Two companion command-injection flaws, CVE-2026-20306 and CVE-2026-20305, round out the disclosure. Active exploitation is confirmed. Attackers can delete their own footprints from the device, so the auditors won't find anything. Convenient for them. (2/3)
##CVE-2026-76460 scores a perfect 10 out of 10 — which is, tragically, the only perfect score on this report card. Two companion command-injection flaws, CVE-2026-20306 and CVE-2026-20305, round out the disclosure. Active exploitation is confirmed. Attackers can delete their own footprints from the device, so the auditors won't find anything. Convenient for them. (2/3)
##updated 2026-09-16T18:32:04
2 posts
CVE-2026-76460 scores a perfect 10 out of 10 — which is, tragically, the only perfect score on this report card. Two companion command-injection flaws, CVE-2026-20306 and CVE-2026-20305, round out the disclosure. Active exploitation is confirmed. Attackers can delete their own footprints from the device, so the auditors won't find anything. Convenient for them. (2/3)
##CVE-2026-76460 scores a perfect 10 out of 10 — which is, tragically, the only perfect score on this report card. Two companion command-injection flaws, CVE-2026-20306 and CVE-2026-20305, round out the disclosure. Active exploitation is confirmed. Attackers can delete their own footprints from the device, so the auditors won't find anything. Convenient for them. (2/3)
##updated 2026-09-16T15:31:14
9 posts
1 repos
Two companion curses arrived earlier: an auth bypass in August and a heap overflow in VPN certificate decoding in September.
INVENTORY PENALTY: Your management plane is now haunted. Patch Check Point Security Management Server immediately to close CVE-2026-91843 and its critical siblings.
Reward: You've received the Debuffed Robe of Five Failures — Armor Class: negative five. The "found internally, no exploitation detected" enchantment is fading fast. (2/3)
##🏆 New Achievement! Stack Overflow, Stack Underdelivery!
ITEM ACQUIRED: Cursed Login Request (very long username, -9.8 integrity, equips in zero hands). Check Point's Security Management Server has taken its fifth critical unauthenticated hit since July — CVE-2026-91843, a 9.8-rated stack overflow in the login handler that lets attackers execute code as root before a single password is checked. Censys confirms the trigger: just send a comically oversized username. (1/3)
##📰 Check Point Patches Critical RCE Flaw in Management Servers
Check Point patches critical RCE flaw (CVE-2026-91843, CVSS 9.8) in Security Management Servers. Unauthenticated attackers can gain root access via a long username. LivePatch is available. Restrict trusted client access now! #CyberSecurity #CheckPoin...
##Two companion curses arrived earlier: an auth bypass in August and a heap overflow in VPN certificate decoding in September.
INVENTORY PENALTY: Your management plane is now haunted. Patch Check Point Security Management Server immediately to close CVE-2026-91843 and its critical siblings.
Reward: You've received the Debuffed Robe of Five Failures — Armor Class: negative five. The "found internally, no exploitation detected" enchantment is fading fast. (2/3)
##🏆 New Achievement! Stack Overflow, Stack Underdelivery!
ITEM ACQUIRED: Cursed Login Request (very long username, -9.8 integrity, equips in zero hands). Check Point's Security Management Server has taken its fifth critical unauthenticated hit since July — CVE-2026-91843, a 9.8-rated stack overflow in the login handler that lets attackers execute code as root before a single password is checked. Censys confirms the trigger: just send a comically oversized username. (1/3)
##Check Point Security Mgmt & Log Server face CRITICAL stack buffer overflow (CVE-2026-91843). Remote, unauthenticated RCE as root possible. Patch now or restrict access, monitor for 'Username too long' login failures. https://radar.offseq.com/threat/new-check-point-flaw-lets-hackers-execute-code-with-root-privileges-00056aa571ef0004 #OffSeq #CheckPoint #Vuln #RCE
##Critical Check Point Management Flaw Allows Unauthenticated Remote Root Access
Check Point issued an patch for a critical stack overflow vulnerability (CVE-2026-91843) in its Security Management and Log Servers that allows unauthenticated attackers to gain root-level code execution.
**If you run Check Point Security Management or Log Servers, make sure they are never reachable from the internet and restrict the Trusted Clients setting so only specific, known admin IP addresses can connect (use a VPN for remote access). Then apply the LivePatch fix released on September 16, 2026 to every management and log server, confirm it installed with `cplp list`, and check your logs for "Administrator failed to log in: Username too long" to spot attempted attacks.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/critical-check-point-management-flaw-allows-unauthenticated-remote-root-access-9-x-m-8-o/gD2P6Ple2L
Check Point Security Mgmt & Log Server hit by CRITICAL RCE (CVE-2026-91843) via unauthenticated login. No active exploitation yet. Patch ASAP. Tanium (SQLi, RCE) & Kaspersky (Redis) also patched. https://radar.offseq.com/threat/check-point-kaspersky-tanium-patch-product-vulnerabilities-ae8c3757ea9b181a #OffSeq #Vulnerability #RCE #PatchNow
##Critical cybersecurity alerts issued as Check Point (CVE-2026-91843) and Cisco (CVE-2026-76460) disclose severe vulnerabilities, with Cisco's already exploited. Geopolitically, USCG/FBI investigate suspected foreign cyberattacks on two oil tankers; Iran reportedly targeted another in the Strait of Hormuz. Tech advances with OpenAI's 'Astra for Law' for legal AI workflows.
##updated 2026-09-16T09:30:28
1 posts
1 repos
NLnet Labs Unbound before 1.26.1 contains heap overflow CVE-2026-81642 in the DNSSEC validator via crafted DNSKEY with compression pointer into RDATA. Any resolver induced to query a malicious zone risks crash or potential RCE, exposing core DNS infrastructure. #Unbound #DnsSec #HeapOverflow
https://cyberworldops.eu/en/unbound-dnssec-heap-overflow-puts-vulnerable-resolvers-at-risk-of
##updated 2026-09-16T00:32:32
1 posts
https://thecybersecguru.com/news/docker-sandboxes-cve-2026-77179-cve-2026-79994/
##updated 2026-09-15T12:47:32.497000
2 posts
4 repos
https://github.com/fevar54/CVE-2026-76461-Detection-Kit-
https://github.com/HORKimhab/CVE-2026-76461
⚪️ Cisco Secure Email Gateway Appliances Can Be Hacked with a Malicious Email
🗨️ Cisco researchers have fixed a critical vulnerability in Secure Email Gateway, a gateway designed to protect email from malicious messages. Ironically, to compromise the gateway itself, an attacker only had to send a specially crafted email through it. The vulnerability…
##⚪️ Cisco Secure Email Gateway Appliances Can Be Hacked with a Malicious Email
🗨️ Cisco researchers have fixed a critical vulnerability in Secure Email Gateway, a gateway designed to protect email from malicious messages. Ironically, to compromise the gateway itself, an attacker only had to send a specially crafted email through it. The vulnerability…
##updated 2026-09-14T15:33:33
1 posts
CVE-2026-89497: buffer overflow in Linux kernel orangefs debug parsing can lead to memory corruption. CVSS N/A but unpatched. Patch now if you run orangefs. https://www.valtersit.com/cve/CVE-2026-89497/ #CVE #Linux #infosec
##updated 2026-09-14T15:33:33
1 posts
CVE-2026-89510 Linux kernel RDMA/cxgb4 use-after-free in c4iw_remove, reg_work frees device while registration work still runs. No CVSS, no patch yet. Update your kernel now. https://www.valtersit.com/cve/CVE-2026-89510/ #CVE #infosec #Linux
##updated 2026-09-14T15:33:28
5 posts
1 repos
Researcher Asim Manizada released working local root exploits for four Linux kernel flaws: CVE-2026-80844, CVE-2026-81000, CVE-2026-68121 and CVE-2026-74469. Public code lowers exploitation barrier for unpatched hosts, increasing post-compromise privilege escalation risk. #LinuxSecurity #PrivilegeEscalation #KernelSecurity
https://cyberworldops.eu/en/four-public-linux-kernel-exploits-put-unpatched-hosts-at-risk-of-local
##A quartet of Linux local root vulns: DirtyAH6, PPPoEject, TUNderflow, DiagSpill
Linux 커널에서 일반 로컬 사용자를 root로 승격할 수 있는 4개 취약점 DirtyAH6(CVE-2026-80844), TUNderflow(CVE-2026-81000), PPPoEject(CVE-2026-68121), DiagSpill(CVE-2026-74469)가 공개됐다. 취약점들은 네트워크 서브시스템의 오래된 메모리 손상 문제이며, DiagSpill은 별도 capability나 비특권 사용자 네임스페이스 없이도 조건 충족 시 LPE가 가능하고 컨테이너 호스트 탈출 가능성도 있다. 수정은 Linux stable 5.10.270,...
##Researcher Asim Manizada released working local root exploits for four Linux kernel flaws: CVE-2026-80844, CVE-2026-81000, CVE-2026-68121 and CVE-2026-74469. Public code lowers exploitation barrier for unpatched hosts, increasing post-compromise privilege escalation risk. #LinuxSecurity #PrivilegeEscalation #KernelSecurity
https://cyberworldops.eu/en/four-public-linux-kernel-exploits-put-unpatched-hosts-at-risk-of-local
##Ouep, vendredi vuln assisté is back : le kernel Linux, toujours la cible préférée du branding CVE 🐧
DirtyAH6 (CVE-2026-80844), TUNderflow (CVE-2026-81000), PPPoEject (CVE-2026-68121) et DiagSpill (CVE-2026-74469) permettent, dans les configurations adaptées, à un utilisateur local non privilégié d'obtenir root.
Bugs présents dans le kernel depuis 10 à 21 ans.
Risque pas uniforme : les trois premières nécessitent des user namespaces non privilégiés + des fonctionnalités réseau particulières (AH6/XFRM, TUN/TAP, PPPoE).
DiagSpill est directement accessible sans capability, MAIS nécessite SCTP + sctp_diag.
Pas de RCE distante générique, mais nuance à connaître pour les passerelles : DirtyAH6 peut causer un DoS distant sur un routeur IPv6 faisant de l'AH en mode transport (root distant obtenu en labo par l'auteur, via grooming côté cible--> jugé "extrêmement difficile").
DiagSpill a aussi un vecteur DoS distant si ASCONF/ADD-IP + SCTP-AUTH (ou addip_noauth_enable=1) sont actifs-->désactivés par défaut.
➡️ À surveiller en priorité : systèmes multi-utilisateurs, conteneurs, hôtes TUN/TAP, PPPoE, XFRM/AH6 ou SCTP.
🔎 Analyse complète
👇
https://heyitsas.im/posts/lpe-quartet/
:debian:
👇
DirtyAH6 corrigé sur Bookworm-security, encore vulnérable sur Trixie.
TUNderflow corrigée uniquement dans sid
PPPoEject et DiagSpill corrigés sur Bookworm-security et Trixie.
⬇️
DirtyAH6 — CVE-2026-80844
Debian Security Tracker
TUNderflow — CVE-2026-81000
Debian Security Tracker
PPPoEject — CVE-2026-68121
Debian Security Tracker
DiagSpill — CVE-2026-74469
Debian Security Tracker
PoCs 👀
👇
DirtyAH6 — CVE-2026-80844 : https://github.com/manizada/DirtyAH6
TUNderflow — CVE-2026-81000 : https://github.com/manizada/TUNderflow
PPPoEject — CVE-2026-68121 : https://github.com/manizada/PPPoEject
DiagSpill — CVE-2026-74469 : https://github.com/manizada/DiagSpill
It's Friday, and we have 4 more local privilege escalation vulnerabilities disclosed for the Linux kernel:
- DirtyAH6 (CVE-2026-80844)
- TUNderflow (CVE-2026-81000)
- PPPoEject (CVE-2026-68121)
- DiagSpill (CVE-2026-74469)
"The underlying bugs have been around for 10-21 years. The first three LPEs require either unprivileged user namespaces or specific CAPs; DiagSpill does not."
https://www.openwall.com/lists/oss-security/2026/09/18/3
https://heyitsas.im/posts/lpe-quartet/
#CVE_2026_80844 #CVE_2026_81000 #CVE_2026_68121 #CVE_2026_74469
##updated 2026-09-14T15:32:27
1 posts
CVE-2026-89496 Linux kernel ocfs2 memory leak via copy_file_range, local fuzzing found it, patch status unknown. Patch now. https://www.valtersit.com/cve/CVE-2026-89496/ #CVE #Linux #infosec
##updated 2026-09-14T15:32:24
1 posts
CVE-2026-89460: Linux kernel s390 cpum_cf crash on CPU hotplug, DoS risk. CVSS N/A, patch status unknown. Audit and update now. https://www.valtersit.com/cve/CVE-2026-89460/ #CVE #Linux #infosec
##updated 2026-09-14T15:32:21
1 posts
CVE-2026-80944: Linux kernel mwifiex flaw. An interrupted wait can free a stack buffer while firmware still holds it, risking use-after-free in the WiFi driver. No patch or CVSS yet. Track it and update when a https://www.valtersit.com/cve/CVE-2026-80944/ #CVE #infosec #Linux
##updated 2026-09-14T13:19:04.623000
1 posts
CVE-2026-89480: Linux nvme-tcp accepts short reads without comparing received bytes to requested length, risking data corruption. CVSS N/A, unpatched. Patch now: https://www.valtersit.com/cve/CVE-2026-89480/ #CVE #Linux #infosec
##updated 2026-09-14T13:19:04.457000
1 posts
CVE-2026-89479 Linux kernel SCTP use-after-free, unpatched, no CVSS assigned. Crafted packet can free an association mid-processing. Patch status unclear, so track kernel updates now. Details: https://www.valtersit.com/cve/CVE-2026-89479/ #CVE #Linux #infosec
##updated 2026-09-14T13:19:03.620000
1 posts
CVE-2026-89473 Linux kernel bq25890 driver ref leak on probe fail or detach, causing resource exhaustion. No CVSS, no patch yet. Update when vendor fix lands. https://www.valtersit.com/cve/CVE-2026-89473/ #CVE #Linux #infosec
##updated 2026-09-14T13:18:53.787000
1 posts
CVE-2026-80990 Linux kernel thunderbolt net driver leaks Rx HopID on mismatch, leading to resource exhaustion over time. CVSS N/A, no patch confirmed. Update your kernel now. https://www.valtersit.com/cve/CVE-2026-80990/ #CVE #Linux #infosec
##updated 2026-09-14T13:18:50.457000
1 posts
CVE-2026-80949 Linux kernel brcmfmac memory leak in brcmf_sdio_read_control() error paths. CVSS N/A, unpatched. Patch now. https://www.valtersit.com/cve/CVE-2026-80949/ #CVE #infosec #Linux
##updated 2026-09-14T13:18:50.160000
1 posts
CVE-2026-80941 Linux rtw88 wifi driver memory leak in rtw_txq_push_skb error path. No CVSS or patch confirmed yet. Update your kernel as soon as fixes land. https://www.valtersit.com/cve/CVE-2026-80941/ #CVE #Linux #infosec
##updated 2026-09-13T09:33:29
1 posts
CVE-2026-89520 Linux kernel core-sched race lets __sched_core_flip rebind rq_lockp mid-selection. No CVSS, no patch yet. Update to latest stable kernel when fixed. https://www.valtersit.com/cve/CVE-2026-89520/ #CVE #Linux #infosec
##updated 2026-09-13T09:33:27
1 posts
CVE-2026-89492 Linux kernel ocfs2 out-of-bounds access via unchecked directory-index entry counts. No CVSS or patch yet. Treat as unpatched and update immediately if ocfs2 is in use. https://www.valtersit.com/cve/CVE-2026-89492/ #CVE #infosec #Linux
##updated 2026-09-13T09:33:25
1 posts
CVE-2026-80986 Linux kernel out-of-bounds access in net/smc SMC-Rv2 LLC handling. CVSS N/A, patch status unknown. Review and mitigate now. https://www.valtersit.com/cve/CVE-2026-80986/ #CVE #Linux #infosec
##updated 2026-09-13T09:32:12
1 posts
CVE-2026-80953 Linux i3c adi driver inits lock after enabling IRQ, risking race and memory corruption. CVSS N/A, unpatched. Patch or mitigate now. https://www.valtersit.com/cve/CVE-2026-80953/ #CVE #Linux #infosec
##updated 2026-09-13T09:32:11
1 posts
CVE-2026-80954 Linux kernel i3c unlocked dev->desc dereference, unpatched, CVSS N/A. Patch now if you run i3c. https://www.valtersit.com/cve/CVE-2026-80954/ #CVE #infosec #Linux
##updated 2026-09-13T07:17:14.697000
1 posts
CVE-2026-89523 Linux kernel mt76 mt7925 wifi: pending mlo_pm_work can touch freed memory or send MCU commands during reset/suspend. No CVSS yet, patch status unknown. Update promptly. https://www.valtersit.com/cve/CVE-2026-89523/ #CVE #infosec #LinuxKernel
##updated 2026-09-13T07:17:09.733000
1 posts
CVE-2026-89459 Linux kernel s390/percpu build flaw with older binutils, CVSS N/A, patch status unknown. Check if you are affected and update kernel immediately. https://www.valtersit.com/cve/CVE-2026-89459/ #CVE #Linux #infosec
##updated 2026-09-13T07:17:09.477000
1 posts
CVE-2026-89452 Linux kernel iommu/msm probe failure leaves a dangling list entry, risking use-after-free on later list walks. No CVSS score and no patch yet. Track it and update the kernel as soon as a fix https://www.valtersit.com/cve/CVE-2026-89452/ #CVE #LinuxKernel #infosec
##updated 2026-09-13T07:17:06.483000
1 posts
CVE-2026-80998 Linux kernel bnxt driver: missed doorbell on early SW USO exit stalls TX queue. No CVSS assigned. Patch status unknown. Check your kernel version and update immediately. https://www.valtersit.com/cve/CVE-2026-80998/ #CVE #Linux #infosec
##updated 2026-09-12T09:33:41
2 posts
https://thecybersecguru.com/news/cve-2026-78175-tutor-lms-rce/
##https://thecybersecguru.com/news/cve-2026-78175-tutor-lms-rce/
##updated 2026-09-12T03:30:28
1 posts
CVE-2026-89267: Starlette-Admin 0.16.1-0.17.1 ignores empty searchable_fields allowlists, letting authenticated users query excluded columns via the where parameter. CVSS 4.3, patch status unknown. Audit https://www.valtersit.com/cve/CVE-2026-89267/ #CVE #infosec #cybersecurity
##updated 2026-09-11T21:31:28
1 posts
CVE-2026-89455 Linux kernel PCI plda use-after-free during IRQ teardown. No CVSS or patch yet. Audit and update affected systems. https://www.valtersit.com/cve/CVE-2026-89455/ #CVE #Linux #infosec
##updated 2026-09-11T21:31:20
1 posts
CVE-2026-80934 Linux kernel mt76 mt7996 TX DMA mapping leak. No CVSS or patch yet. Update now if you run mt7996 wifi. https://www.valtersit.com/cve/CVE-2026-80934/ #CVE #Linux #infosec
##updated 2026-09-11T20:19:25.967000
1 posts
CVE-2026-89453 Linux kernel iommu/amd PPR fault handling leaks PCI device references. Unpatched. Patch now https://www.valtersit.com/cve/CVE-2026-89453/ #CVE #infosec #Linux
##updated 2026-09-11T20:19:01.520000
1 posts
CVE-2026-80957 Linux kernel dm-pcache infinite loop via forged last-kset chain during replay, DoS on mount. No CVSS yet, unpatched. Update now: https://www.valtersit.com/cve/CVE-2026-80957/ #CVE #Linux #infosec
##updated 2026-09-11T20:18:59.660000
1 posts
CVE-2026-80942 Linux rtlwifi rtl8192du: memory leak in error paths of rtl92du_init_sw_vars(), unfixed. No CVSS assigned. Patch status unknown, update now. https://www.valtersit.com/cve/CVE-2026-80942/ #CVE #Linux #infosec
##updated 2026-09-10T06:31:55
1 posts
updated 2026-09-04T16:18:13.023000
5 posts
1 repos
Researcher Asim Manizada released working local root exploits for four Linux kernel flaws: CVE-2026-80844, CVE-2026-81000, CVE-2026-68121 and CVE-2026-74469. Public code lowers exploitation barrier for unpatched hosts, increasing post-compromise privilege escalation risk. #LinuxSecurity #PrivilegeEscalation #KernelSecurity
https://cyberworldops.eu/en/four-public-linux-kernel-exploits-put-unpatched-hosts-at-risk-of-local
##A quartet of Linux local root vulns: DirtyAH6, PPPoEject, TUNderflow, DiagSpill
Linux 커널에서 일반 로컬 사용자를 root로 승격할 수 있는 4개 취약점 DirtyAH6(CVE-2026-80844), TUNderflow(CVE-2026-81000), PPPoEject(CVE-2026-68121), DiagSpill(CVE-2026-74469)가 공개됐다. 취약점들은 네트워크 서브시스템의 오래된 메모리 손상 문제이며, DiagSpill은 별도 capability나 비특권 사용자 네임스페이스 없이도 조건 충족 시 LPE가 가능하고 컨테이너 호스트 탈출 가능성도 있다. 수정은 Linux stable 5.10.270,...
##Researcher Asim Manizada released working local root exploits for four Linux kernel flaws: CVE-2026-80844, CVE-2026-81000, CVE-2026-68121 and CVE-2026-74469. Public code lowers exploitation barrier for unpatched hosts, increasing post-compromise privilege escalation risk. #LinuxSecurity #PrivilegeEscalation #KernelSecurity
https://cyberworldops.eu/en/four-public-linux-kernel-exploits-put-unpatched-hosts-at-risk-of-local
##Ouep, vendredi vuln assisté is back : le kernel Linux, toujours la cible préférée du branding CVE 🐧
DirtyAH6 (CVE-2026-80844), TUNderflow (CVE-2026-81000), PPPoEject (CVE-2026-68121) et DiagSpill (CVE-2026-74469) permettent, dans les configurations adaptées, à un utilisateur local non privilégié d'obtenir root.
Bugs présents dans le kernel depuis 10 à 21 ans.
Risque pas uniforme : les trois premières nécessitent des user namespaces non privilégiés + des fonctionnalités réseau particulières (AH6/XFRM, TUN/TAP, PPPoE).
DiagSpill est directement accessible sans capability, MAIS nécessite SCTP + sctp_diag.
Pas de RCE distante générique, mais nuance à connaître pour les passerelles : DirtyAH6 peut causer un DoS distant sur un routeur IPv6 faisant de l'AH en mode transport (root distant obtenu en labo par l'auteur, via grooming côté cible--> jugé "extrêmement difficile").
DiagSpill a aussi un vecteur DoS distant si ASCONF/ADD-IP + SCTP-AUTH (ou addip_noauth_enable=1) sont actifs-->désactivés par défaut.
➡️ À surveiller en priorité : systèmes multi-utilisateurs, conteneurs, hôtes TUN/TAP, PPPoE, XFRM/AH6 ou SCTP.
🔎 Analyse complète
👇
https://heyitsas.im/posts/lpe-quartet/
:debian:
👇
DirtyAH6 corrigé sur Bookworm-security, encore vulnérable sur Trixie.
TUNderflow corrigée uniquement dans sid
PPPoEject et DiagSpill corrigés sur Bookworm-security et Trixie.
⬇️
DirtyAH6 — CVE-2026-80844
Debian Security Tracker
TUNderflow — CVE-2026-81000
Debian Security Tracker
PPPoEject — CVE-2026-68121
Debian Security Tracker
DiagSpill — CVE-2026-74469
Debian Security Tracker
PoCs 👀
👇
DirtyAH6 — CVE-2026-80844 : https://github.com/manizada/DirtyAH6
TUNderflow — CVE-2026-81000 : https://github.com/manizada/TUNderflow
PPPoEject — CVE-2026-68121 : https://github.com/manizada/PPPoEject
DiagSpill — CVE-2026-74469 : https://github.com/manizada/DiagSpill
It's Friday, and we have 4 more local privilege escalation vulnerabilities disclosed for the Linux kernel:
- DirtyAH6 (CVE-2026-80844)
- TUNderflow (CVE-2026-81000)
- PPPoEject (CVE-2026-68121)
- DiagSpill (CVE-2026-74469)
"The underlying bugs have been around for 10-21 years. The first three LPEs require either unprivileged user namespaces or specific CAPs; DiagSpill does not."
https://www.openwall.com/lists/oss-security/2026/09/18/3
https://heyitsas.im/posts/lpe-quartet/
#CVE_2026_80844 #CVE_2026_81000 #CVE_2026_68121 #CVE_2026_74469
##updated 2026-09-01T15:31:17
2 posts
Schneider Electric disclosed CVE-2026-13348 (CWE-307) in PowerChute Serial Shutdown, allowing unrestricted authentication attempts. Successful brute-forcing enables account takeover with impact on UPS management and operational continuity. #SchneiderElectric #PowerChute #BruteForce
https://cyberworldops.eu/en/powerchute-authentication-flaw-opens-the-door-to-unlimited-login
##Schneider Electric disclosed CVE-2026-13348 (CWE-307) in PowerChute Serial Shutdown, allowing unrestricted authentication attempts. Successful brute-forcing enables account takeover with impact on UPS management and operational continuity. #SchneiderElectric #PowerChute #BruteForce
https://cyberworldops.eu/en/powerchute-authentication-flaw-opens-the-door-to-unlimited-login
##updated 2026-08-28T22:53:42
1 posts
15 repos
https://github.com/gman0x00/keycloak-CVE-2026-18963
https://github.com/ivanesk315/CVE-2026-18963
https://github.com/EQSTLab/CVE-2026-18963
https://github.com/T0w0T/POC-CVE-2026-18963
https://github.com/alt3kx/CVE-2026-18963
https://github.com/minh3102011/CVE-2026-18963_analyst
https://github.com/BlackHatExploitation/Exploit-For-CVE-2026-18963
https://github.com/Snizi/CVE-2026-18963-Exploit
https://github.com/debugactiveprocess/CVE-2026-18963
https://github.com/Red-Darkin/CVE-2026-18963-keycloak
https://github.com/kyos-public/keycloak-cve-2026-18963-hunt
https://github.com/prot0tw/Keycloak_CVE-2026-18963_PoC
https://github.com/ynsmroztas/KeySniper
HCL Software patched critical HCL BigFix vulnerabilities, including CVE-2026-67100 and CVE-2026-18963. Patch now to prevent total account takeovers.
#HCLBigFix #Cybersecurity #CVE202667100 #Vulnerability #InfoSec
##updated 2026-08-24T18:32:30
1 posts
bison (2:3.8.2+dfsg-1ubuntu0.24.04.1)
CVE-2026-56389へのセキュリティ対応。
セキュリティ対応なのでお早めに。
##updated 2026-08-19T18:33:35
5 posts
1 repos
Researcher Asim Manizada released working local root exploits for four Linux kernel flaws: CVE-2026-80844, CVE-2026-81000, CVE-2026-68121 and CVE-2026-74469. Public code lowers exploitation barrier for unpatched hosts, increasing post-compromise privilege escalation risk. #LinuxSecurity #PrivilegeEscalation #KernelSecurity
https://cyberworldops.eu/en/four-public-linux-kernel-exploits-put-unpatched-hosts-at-risk-of-local
##A quartet of Linux local root vulns: DirtyAH6, PPPoEject, TUNderflow, DiagSpill
Linux 커널에서 일반 로컬 사용자를 root로 승격할 수 있는 4개 취약점 DirtyAH6(CVE-2026-80844), TUNderflow(CVE-2026-81000), PPPoEject(CVE-2026-68121), DiagSpill(CVE-2026-74469)가 공개됐다. 취약점들은 네트워크 서브시스템의 오래된 메모리 손상 문제이며, DiagSpill은 별도 capability나 비특권 사용자 네임스페이스 없이도 조건 충족 시 LPE가 가능하고 컨테이너 호스트 탈출 가능성도 있다. 수정은 Linux stable 5.10.270,...
##Researcher Asim Manizada released working local root exploits for four Linux kernel flaws: CVE-2026-80844, CVE-2026-81000, CVE-2026-68121 and CVE-2026-74469. Public code lowers exploitation barrier for unpatched hosts, increasing post-compromise privilege escalation risk. #LinuxSecurity #PrivilegeEscalation #KernelSecurity
https://cyberworldops.eu/en/four-public-linux-kernel-exploits-put-unpatched-hosts-at-risk-of-local
##Ouep, vendredi vuln assisté is back : le kernel Linux, toujours la cible préférée du branding CVE 🐧
DirtyAH6 (CVE-2026-80844), TUNderflow (CVE-2026-81000), PPPoEject (CVE-2026-68121) et DiagSpill (CVE-2026-74469) permettent, dans les configurations adaptées, à un utilisateur local non privilégié d'obtenir root.
Bugs présents dans le kernel depuis 10 à 21 ans.
Risque pas uniforme : les trois premières nécessitent des user namespaces non privilégiés + des fonctionnalités réseau particulières (AH6/XFRM, TUN/TAP, PPPoE).
DiagSpill est directement accessible sans capability, MAIS nécessite SCTP + sctp_diag.
Pas de RCE distante générique, mais nuance à connaître pour les passerelles : DirtyAH6 peut causer un DoS distant sur un routeur IPv6 faisant de l'AH en mode transport (root distant obtenu en labo par l'auteur, via grooming côté cible--> jugé "extrêmement difficile").
DiagSpill a aussi un vecteur DoS distant si ASCONF/ADD-IP + SCTP-AUTH (ou addip_noauth_enable=1) sont actifs-->désactivés par défaut.
➡️ À surveiller en priorité : systèmes multi-utilisateurs, conteneurs, hôtes TUN/TAP, PPPoE, XFRM/AH6 ou SCTP.
🔎 Analyse complète
👇
https://heyitsas.im/posts/lpe-quartet/
:debian:
👇
DirtyAH6 corrigé sur Bookworm-security, encore vulnérable sur Trixie.
TUNderflow corrigée uniquement dans sid
PPPoEject et DiagSpill corrigés sur Bookworm-security et Trixie.
⬇️
DirtyAH6 — CVE-2026-80844
Debian Security Tracker
TUNderflow — CVE-2026-81000
Debian Security Tracker
PPPoEject — CVE-2026-68121
Debian Security Tracker
DiagSpill — CVE-2026-74469
Debian Security Tracker
PoCs 👀
👇
DirtyAH6 — CVE-2026-80844 : https://github.com/manizada/DirtyAH6
TUNderflow — CVE-2026-81000 : https://github.com/manizada/TUNderflow
PPPoEject — CVE-2026-68121 : https://github.com/manizada/PPPoEject
DiagSpill — CVE-2026-74469 : https://github.com/manizada/DiagSpill
It's Friday, and we have 4 more local privilege escalation vulnerabilities disclosed for the Linux kernel:
- DirtyAH6 (CVE-2026-80844)
- TUNderflow (CVE-2026-81000)
- PPPoEject (CVE-2026-68121)
- DiagSpill (CVE-2026-74469)
"The underlying bugs have been around for 10-21 years. The first three LPEs require either unprivileged user namespaces or specific CAPs; DiagSpill does not."
https://www.openwall.com/lists/oss-security/2026/09/18/3
https://heyitsas.im/posts/lpe-quartet/
#CVE_2026_80844 #CVE_2026_81000 #CVE_2026_68121 #CVE_2026_74469
##updated 2026-08-19T18:32:06
5 posts
1 repos
Researcher Asim Manizada released working local root exploits for four Linux kernel flaws: CVE-2026-80844, CVE-2026-81000, CVE-2026-68121 and CVE-2026-74469. Public code lowers exploitation barrier for unpatched hosts, increasing post-compromise privilege escalation risk. #LinuxSecurity #PrivilegeEscalation #KernelSecurity
https://cyberworldops.eu/en/four-public-linux-kernel-exploits-put-unpatched-hosts-at-risk-of-local
##A quartet of Linux local root vulns: DirtyAH6, PPPoEject, TUNderflow, DiagSpill
Linux 커널에서 일반 로컬 사용자를 root로 승격할 수 있는 4개 취약점 DirtyAH6(CVE-2026-80844), TUNderflow(CVE-2026-81000), PPPoEject(CVE-2026-68121), DiagSpill(CVE-2026-74469)가 공개됐다. 취약점들은 네트워크 서브시스템의 오래된 메모리 손상 문제이며, DiagSpill은 별도 capability나 비특권 사용자 네임스페이스 없이도 조건 충족 시 LPE가 가능하고 컨테이너 호스트 탈출 가능성도 있다. 수정은 Linux stable 5.10.270,...
##Researcher Asim Manizada released working local root exploits for four Linux kernel flaws: CVE-2026-80844, CVE-2026-81000, CVE-2026-68121 and CVE-2026-74469. Public code lowers exploitation barrier for unpatched hosts, increasing post-compromise privilege escalation risk. #LinuxSecurity #PrivilegeEscalation #KernelSecurity
https://cyberworldops.eu/en/four-public-linux-kernel-exploits-put-unpatched-hosts-at-risk-of-local
##Ouep, vendredi vuln assisté is back : le kernel Linux, toujours la cible préférée du branding CVE 🐧
DirtyAH6 (CVE-2026-80844), TUNderflow (CVE-2026-81000), PPPoEject (CVE-2026-68121) et DiagSpill (CVE-2026-74469) permettent, dans les configurations adaptées, à un utilisateur local non privilégié d'obtenir root.
Bugs présents dans le kernel depuis 10 à 21 ans.
Risque pas uniforme : les trois premières nécessitent des user namespaces non privilégiés + des fonctionnalités réseau particulières (AH6/XFRM, TUN/TAP, PPPoE).
DiagSpill est directement accessible sans capability, MAIS nécessite SCTP + sctp_diag.
Pas de RCE distante générique, mais nuance à connaître pour les passerelles : DirtyAH6 peut causer un DoS distant sur un routeur IPv6 faisant de l'AH en mode transport (root distant obtenu en labo par l'auteur, via grooming côté cible--> jugé "extrêmement difficile").
DiagSpill a aussi un vecteur DoS distant si ASCONF/ADD-IP + SCTP-AUTH (ou addip_noauth_enable=1) sont actifs-->désactivés par défaut.
➡️ À surveiller en priorité : systèmes multi-utilisateurs, conteneurs, hôtes TUN/TAP, PPPoE, XFRM/AH6 ou SCTP.
🔎 Analyse complète
👇
https://heyitsas.im/posts/lpe-quartet/
:debian:
👇
DirtyAH6 corrigé sur Bookworm-security, encore vulnérable sur Trixie.
TUNderflow corrigée uniquement dans sid
PPPoEject et DiagSpill corrigés sur Bookworm-security et Trixie.
⬇️
DirtyAH6 — CVE-2026-80844
Debian Security Tracker
TUNderflow — CVE-2026-81000
Debian Security Tracker
PPPoEject — CVE-2026-68121
Debian Security Tracker
DiagSpill — CVE-2026-74469
Debian Security Tracker
PoCs 👀
👇
DirtyAH6 — CVE-2026-80844 : https://github.com/manizada/DirtyAH6
TUNderflow — CVE-2026-81000 : https://github.com/manizada/TUNderflow
PPPoEject — CVE-2026-68121 : https://github.com/manizada/PPPoEject
DiagSpill — CVE-2026-74469 : https://github.com/manizada/DiagSpill
It's Friday, and we have 4 more local privilege escalation vulnerabilities disclosed for the Linux kernel:
- DirtyAH6 (CVE-2026-80844)
- TUNderflow (CVE-2026-81000)
- PPPoEject (CVE-2026-68121)
- DiagSpill (CVE-2026-74469)
"The underlying bugs have been around for 10-21 years. The first three LPEs require either unprivileged user namespaces or specific CAPs; DiagSpill does not."
https://www.openwall.com/lists/oss-security/2026/09/18/3
https://heyitsas.im/posts/lpe-quartet/
#CVE_2026_80844 #CVE_2026_81000 #CVE_2026_68121 #CVE_2026_74469
##updated 2026-08-19T04:17:24.940000
2 posts
2 repos
Oracle's quarterly release fixed 800+ flaws, none flagged as exploited. Meanwhile CVE-2026-59310, an unauthenticated directory traversal in the VMware vCenter Syslog server patched in July, is now in ransomware hands after...
##Discover how ransomware gangs actively exploit the critical VMware vCenter flaw, CVE-2026-59310. Learn about the swift weaponization and severe infrastructure risks.
##updated 2026-08-06T19:27:33.433000
2 posts
5 repos
https://github.com/fevar54/CVE-2026-76461-Detection-Kit-
https://github.com/S3v3n-JG/CVE-2026-76460
https://github.com/HORKimhab/CVE-2026-76461
⚪️ Cisco Secure Email Gateway Appliances Can Be Hacked with a Malicious Email
🗨️ Cisco researchers have fixed a critical vulnerability in Secure Email Gateway, a gateway designed to protect email from malicious messages. Ironically, to compromise the gateway itself, an attacker only had to send a specially crafted email through it. The vulnerability…
##⚪️ Cisco Secure Email Gateway Appliances Can Be Hacked with a Malicious Email
🗨️ Cisco researchers have fixed a critical vulnerability in Secure Email Gateway, a gateway designed to protect email from malicious messages. Ironically, to compromise the gateway itself, an attacker only had to send a specially crafted email through it. The vulnerability…
##updated 2026-07-14T22:17:26.797000
4 posts
6 repos
https://github.com/Procjevt/CVE-2026-58138
https://github.com/0xBlackash/CVE-2026-58138
https://github.com/BiiTts/CVE-2026-58138-Conductor-Unauth-RCE
https://github.com/Ch4120N/CVE-2026-58138
⚠️ CRITICAL: Critical Orkes Conductor Vulnerability Exploited in Attacks
Orkes Conductor versions below 3.30.2 have an unauthenticated remote code execution vulnerability (CVE-2026-58138) that is actively being exploited. Attackers can execute arbitrary system commands by injecting malicious JavaScript or Python into workflow definitions. Any organization running Conduc…
🤖 AI generated summary
##Orkes Conductor 3.21.21 through before 3.30.2 is affected by CVE-2026-58138, an unauthenticated RCE via malicious workflow definitions using inline JS/Python. Exposed APIs allow arbitrary OS command execution with host-level impact. Patch to 3.30.2 and restrict exposure. #OrkesConductor #RemoteCodeExecution #ThreatIntel
https://cyberworldops.eu/en/exposed-orkes-conductor-apis-turn-workflow-scripts-into-root-level
##⚠️ CRITICAL: Critical Orkes Conductor Vulnerability Exploited in Attacks
Orkes Conductor versions below 3.30.2 have an unauthenticated remote code execution vulnerability (CVE-2026-58138) that is actively being exploited. Attackers can execute arbitrary system commands by injecting malicious JavaScript or Python into workflow definitions. Any organization running Conduc…
🤖 AI generated summary
##Orkes Conductor 3.21.21 through before 3.30.2 is affected by CVE-2026-58138, an unauthenticated RCE via malicious workflow definitions using inline JS/Python. Exposed APIs allow arbitrary OS command execution with host-level impact. Patch to 3.30.2 and restrict exposure. #OrkesConductor #RemoteCodeExecution #ThreatIntel
https://cyberworldops.eu/en/exposed-orkes-conductor-apis-turn-workflow-scripts-into-root-level
##updated 2026-06-08T23:53:12
1 posts
13 repos
https://github.com/digi4care/shai-scan
https://github.com/Intrudify/mini-shai-hulud-scanner
https://github.com/nkopylov/tanscript-exploit-check
https://github.com/7whyex/CVE-2026-45321-Tanstack
https://github.com/renewablehacking/CVE-2026-45321-Tanstack
https://github.com/Yomisana/are-you-get-tanstack-attack
https://github.com/Breakingcircuitsllc/teampcp_shai_hulud.yar
https://github.com/fabriziosalmi/tanstack-compromise-checker
https://github.com/qi-scape/scan-shai-hulud
https://github.com/ry-allan/tanstack-compromise-checker
https://github.com/prashanthnataraj/mini-shai-hulud-detector
TanStack npm Attack Exposes 170 Private GitHub Repositories
A shocking npm attack on TanStack exposed a massive 170 private GitHub repositories after a malicious actor exploited a stolen OAuth token from a former employee's account. The breach was linked to a supply-chain compromise of TanStack's npm packages, tracked as CVE-2026-45321, which allowed attackers to steal sensitive credentials.
#TanstackNpmAttack #SupplyChain #Github #OauthToken #Cve202645321
##🔴 CVE-2026-78030 - Critical (9.8)
DBI versions before 1.653 for Perl load arbitrary modules via unvalidated dbm_type and dbm_mldbm attributes in DBD::DBM.
DBD::DBM passes the dbm_type and dbm_mldbm connect attributes to require without checking that the value names a module. requ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-78030/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##DBD::DBM (<1.653) for Perl is affected by CVE-2026-78030 (CRITICAL, CVSS 9.8). Unvalidated dbm_type/dbm_mldbm allow arbitrary code execution if attacker controls input. Patch status unknown — sanitize attributes now! https://radar.offseq.com/threat/cve-2026-78030-cwe-470-use-of-externally-controlled-input-to-select-classes-or-code-unsafe-reflection-40dda2d9a2124c29 #OffSeq #CVE202678030 #Perl #Infosec
##🔴 CVE-2026-78030 - Critical (9.8)
DBI versions before 1.653 for Perl load arbitrary modules via unvalidated dbm_type and dbm_mldbm attributes in DBD::DBM.
DBD::DBM passes the dbm_type and dbm_mldbm connect attributes to require without checking that the value names a module. requ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-78030/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##DBD::DBM (<1.653) for Perl is affected by CVE-2026-78030 (CRITICAL, CVSS 9.8). Unvalidated dbm_type/dbm_mldbm allow arbitrary code execution if attacker controls input. Patch status unknown — sanitize attributes now! https://radar.offseq.com/threat/cve-2026-78030-cwe-470-use-of-externally-controlled-input-to-select-classes-or-code-unsafe-reflection-40dda2d9a2124c29 #OffSeq #CVE202678030 #Perl #Infosec
##🟠 CVE-2026-57228 - High (8.2)
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. From 7.0.13 until 7.0.17, the SMTP MIME quoted-printable decoder in src/util-decode-mime.c can read one byte past a heap buffer w...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-57228/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-57228 - High (8.2)
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. From 7.0.13 until 7.0.17, the SMTP MIME quoted-printable decoder in src/util-decode-mime.c can read one byte past a heap buffer w...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-57228/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-63452 - High (7.5)
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. From 8.0.0 until 8.0.6, the HTTP/1 parser limits decompression work per transaction but does not limit how many small brotli comp...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-63452/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-63452 - High (7.5)
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. From 8.0.0 until 8.0.6, the HTTP/1 parser limits decompression work per transaction but does not limit how many small brotli comp...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-63452/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-71418 - High (7.5)
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. From 8.0.0 until 8.0.6, DNS-over-HTTP/2 processing in rust/src/http2/http2.rs retains previously processed HTTP/2 DATA frame cont...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-71418/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-71418 - High (7.5)
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. From 8.0.0 until 8.0.6, DNS-over-HTTP/2 processing in rust/src/http2/http2.rs retains previously processed HTTP/2 DATA frame cont...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-71418/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-92708 - High (7.5)
Svelte devalue is a JavaScript library that serializes values into strings when JSON.stringify isn't sufficient for the job. In versions 5.1.0 through 5.9.2, stringify and uneval functions serialize a typed array by emitting its entire backing Arr...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-92708/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-92708 - High (7.5)
Svelte devalue is a JavaScript library that serializes values into strings when JSON.stringify isn't sufficient for the job. In versions 5.1.0 through 5.9.2, stringify and uneval functions serialize a typed array by emitting its entire backing Arr...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-92708/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##A critical Dokploy OS command injection flaw (CVE-2026-72878) exposes servers to root takeover via backups. Patch this Dokploy OS command injection now.
#Dokploy #CommandInjection #CVE202672878 #Cybersecurity #PaaS
##🟠 CVE-2026-54520 - High (8.1)
AI Agent Automation is a modular AI agent workflow automation platform with schedulers, tools, and observability. Prior to 0.9.1, the executeStep file-step implementation in backend/src/agents/executor.js passes the user-controlled step.path value...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-54520/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-54670 - Critical (9.1)
WeGIA is a web manager for charitable institutions. Prior to 3.8.5, the contribution request dispatcher in web/html/contribuicao/controller/control.php accepts attacker-controlled nomeClasse and metodo values without a complete controller and meth...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-54670/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-54671 - High (8.8)
WeGIA is a web manager for charitable institutions. Prior to 3.8.5, WeGIA maps InternoControle to an empty resource array in web/controle/control.php, and verificarPermissao in web/dao/MiddlewareDAO.php treats that empty array as unconditional acc...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-54671/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-93426 - High (8.5)
SigNoz versions 0.87.0 before 0.142.0 fail to escape user-supplied telemetry field-key names in the v5 query_range API, allowing authenticated users to inject SQL. Attackers with Viewer role or higher can embed backticks and quotes in field names ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93426/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-54716 - High (7.5)
Valhalla is an open source routing engine and accompanying libraries for use with OpenStreetMap data. In 3.7.0 and earlier, a POST request to /sources_to_targets containing an exclude_polygons ring formed by three collinear points can cause unboun...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-54716/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-54692 - High (7.8)
SAIL is a cross-platform library for loading and saving images with support for animation, metadata, and ICC profiles. Prior to 1.0.0, sail_codec_load_frame_v8_xbm() in src/sail-codecs/xbm/xbm.c allocates the decoded pixel buffer using the X11 one...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-54692/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-54627 - Critical (9.8)
SAIL is a cross-platform library for loading and saving images with support for animation, metadata, and ICC profiles. In 0.9.10 and earlier, psd_private_sail_pixel_format() in src/sail-codecs/psd/helpers.c resolves a one-channel PSD in Bitmap col...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-54627/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-93337 - High (7.8)
NetworkManager-l2tp contains an improper input validation vulnerability that allows local users with VPN connection creation permissions to inject arbitrary pppd directives by supplying mru or mtu property values containing trailing non-numeric co...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93337/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-85500: team-alembic ash_authentication (4.3.8 – 4.15.0, 5.0.0-rc.14) suffers a CRITICAL auth bypass — unconfirmed users may gain sessions, defeating email confirmation. Patch urgently. https://radar.offseq.com/threat/cve-2026-85500-cwe-305-authentication-bypass-by-primary-weakness-in-team-alembic-ashauthentication-cb315bb57ae7fd92 #OffSeq #Vuln #CVE202685500 #AshAuthentication
##