##
Updated at UTC 2026-09-27T18:47:45.546402
| CVE | CVSS | EPSS | Posts | Repos | Nuclei | Updated | Description |
|---|---|---|---|---|---|---|---|
| CVE-2026-88778 | 0 | 0.00% | 6 | 0 | 2026-09-27T17:16:57.110000 | Predictable exact value from previous values vulnerability in Citrix NetScaler A | |
| CVE-2026-88777 | 0 | 0.00% | 4 | 0 | 2026-09-27T17:16:56.990000 | Memory overflow vulnerability vulnerability in Citrix NetScaler ADC and Citrix N | |
| CVE-2026-88776 | 0 | 0.00% | 4 | 0 | 2026-09-27T17:16:56.870000 | Memory overflow vulnerability vulnerability in Citrix NetScaler ADC and Citrix N | |
| CVE-2026-88775 | 0 | 0.00% | 4 | 0 | 2026-09-27T17:16:56.750000 | Memory overflow vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gatew | |
| CVE-2026-88774 | 0 | 0.00% | 4 | 0 | 2026-09-27T17:16:56.633000 | Vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway. This issue | |
| CVE-2026-88773 | 0 | 0.00% | 6 | 0 | 2026-09-27T17:16:56.507000 | Inconsistent interpretation of HTTP requests ('HTTP Request/Response smuggling') | |
| CVE-2026-88772 | 0 | 0.00% | 10 | 0 | 2026-09-27T17:16:56.390000 | Vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway. This issue | |
| CVE-2026-88771 | 0 | 0.00% | 14 | 0 | 2026-09-27T17:16:56.260000 | Improper input validation vulnerability in Citrix NetScaler ADC and Citrix NetSc | |
| CVE-2026-100865 | 8.8 | 0.45% | 2 | 0 | 2026-09-27T17:16:55.700000 | Heym before 0.0.53 evaluates workflow condition expressions using Python's eval( | |
| CVE-2026-100841 | 7.8 | 0.12% | 2 | 0 | 2026-09-27T17:16:55.463000 | In MONAI 1.6.0, PersistentDataset (monai/data/dataset.py) explicitly rejects the | |
| CVE-2026-100741 | 9.8 | 1.73% | 2 | 0 | 2026-09-27T09:31:17 | Eval injection in the JScript event-script dispatcher in Progressive Robot Ltd's | |
| CVE-2026-96896 | None | 0.18% | 2 | 0 | 2026-09-27T06:30:28 | The Malcure Malware Shield — Removal, Repair, Monitor WordPress plugin before 19 | |
| CVE-2026-81655 | None | 0.15% | 2 | 0 | 2026-09-27T06:30:27 | The Ad Inserter WordPress plugin before 2.8.19 does not correctly restrict acce | |
| CVE-2026-100840 | 7.8 | 0.21% | 2 | 0 | 2026-09-27T03:31:13 | MONAI through 1.6.0 contains a remote code execution vulnerability in the bundle | |
| CVE-2026-100847 | 7.5 | 0.26% | 2 | 0 | 2026-09-27T03:31:13 | AzuraCast before 0.23.8 contains a DQL injection vulnerability in the sortOrder | |
| CVE-2026-100851 | 7.6 | 0.21% | 2 | 0 | 2026-09-27T03:31:13 | AzuraCast before 0.23.8 contains a broken access control vulnerability in the GE | |
| CVE-2026-100857 | 8.0 | 0.34% | 2 | 0 | 2026-09-27T03:31:13 | AzuraCast before 0.23.4 contains a code injection vulnerability in the ConfigWri | |
| CVE-2026-100856 | 8.8 | 0.37% | 2 | 0 | 2026-09-27T03:31:13 | AzuraCast before 0.23.6 contains a code injection vulnerability in the remote re | |
| CVE-2026-100864 | 8.8 | 0.69% | 2 | 0 | 2026-09-27T03:31:13 | heym before 0.0.91 contains a sandbox escape vulnerability in the expression eng | |
| CVE-2026-100721 | 9.0 | 0.40% | 2 | 0 | 2026-09-27T03:31:12 | vm2 before 3.12.2 contains an authorization bypass in the NodeVM external-module | |
| CVE-2026-100838 | 8.1 | 0.22% | 2 | 0 | 2026-09-27T03:31:12 | Contrast is a confidential-computing runtime for Kubernetes. In versions before | |
| CVE-2026-100852 | 8.8 | 3.72% | 2 | 0 | 2026-09-27T03:31:12 | AzuraCast through 0.23.x contains a command injection vulnerability in the Liqui | |
| CVE-2026-100740 | 9.9 | 0.45% | 4 | 1 | 2026-09-27T03:31:12 | A vulnerability was detected in D-Link DIR-895L A1_102b07. Impacted is the funct | |
| CVE-2026-100845 | 7.8 | 0.14% | 2 | 0 | 2026-09-27T03:31:05 | MONAI before 1.6.0 contains an unsafe deserialization vulnerability in the Numpy | |
| CVE-2026-100850 | 7.7 | 0.22% | 2 | 0 | 2026-09-27T02:17:24.007000 | AzuraCast before 0.23.8 contains a server-side request forgery and local file re | |
| CVE-2026-100846 | 7.6 | 0.27% | 2 | 0 | 2026-09-27T02:17:23.283000 | MONAI before 1.5.2 contains a deserialization of untrusted data vulnerability in | |
| CVE-2026-100839 | 8.4 | 0.15% | 2 | 0 | 2026-09-27T02:17:22.230000 | Contrast is a confidential-computing runtime for Kubernetes. In versions before | |
| CVE-2026-100835 | 7.4 | 0.22% | 2 | 1 | 2026-09-27T02:17:21.640000 | Contrast before 1.16.0 is susceptible to remote attestation relay attacks. Contr | |
| CVE-2026-96533 | 5.8 | 0.19% | 1 | 0 | 2026-09-26T23:16:41.497000 | The Testimonials Widget WordPress plugin through 4.0.4 does not validate a user- | |
| CVE-2026-77203 | 8.8 | 0.33% | 1 | 0 | 2026-09-26T23:16:35.700000 | The Groups – Memberships and Access Control plugin for WordPress is vulnerable t | |
| CVE-2026-100709 | 7.5 | 0.29% | 2 | 0 | 2026-09-26T23:16:32.930000 | Froxlor through 2.3.10 stores only a numeric user ID in remembered-2FA tokens (p | |
| CVE-2026-82901 | 9.8 | 1.11% | 3 | 1 | 2026-09-26T21:30:34 | The Ultra Addons for Contact Form 7 plugin for WordPress is vulnerable to Arbitr | |
| CVE-2026-85984 | 9.8 | 0.67% | 3 | 0 | 2026-09-26T18:31:08 | The miniOrange OTP Login, Verification and SMS Notifications plugin for WordPres | |
| CVE-2026-97163 | None | 0.42% | 1 | 2 | 2026-09-26T15:31:32 | Joomla Extension - lomart.fr - Unauthenticated remote code installation in UP pl | |
| CVE-2026-100720 | 8.7 | 0.21% | 1 | 0 | 2026-09-26T15:31:32 | Froxlor 2.0.0 through 2.3.10 is vulnerable to stored cross-site scripting. When | |
| CVE-2026-100705 | 7.6 | 0.20% | 2 | 0 | 2026-09-26T15:31:28 | Kyverno before 1.19.1 is vulnerable to server-side request forgery. The default | |
| CVE-2026-100711 | 7.5 | 0.26% | 2 | 0 | 2026-09-26T15:31:28 | froxlor versions before 2.3.12 fail to invalidate existing panel sessions, API k | |
| CVE-2026-100717 | 9.9 | 0.30% | 2 | 0 | 2026-09-26T15:31:28 | froxlor is a server administration panel. In versions 2.3.10 and earlier, Valida | |
| CVE-2026-100716 | 9.9 | 0.39% | 2 | 0 | 2026-09-26T15:31:28 | Froxlor is a server administration panel. In versions 2.3.10 and earlier, the cu | |
| CVE-2026-100713 | 7.8 | 0.16% | 1 | 0 | 2026-09-26T15:31:28 | Froxlor 2.3.10 and earlier contain a time-of-check time-of-use (TOCTOU) race con | |
| CVE-2026-100672 | 7.5 | 0.45% | 2 | 0 | 2026-09-26T15:31:27 | The Comments plugin (getgrav/grav-plugin-comments) for Grav CMS through version | |
| CVE-2026-100676 | 8.2 | 0.40% | 2 | 0 | 2026-09-26T15:31:27 | January, the media proxy/embed service of stoatchat (stoatchat/stoatchat), befor | |
| CVE-2026-100673 | 8.2 | 0.29% | 2 | 0 | 2026-09-26T15:31:27 | The Grav Data Manager plugin (getgrav/grav-plugin-datamanager) versions 1.0.1 th | |
| CVE-2026-100685 | 7.7 | 0.21% | 2 | 0 | 2026-09-26T15:31:27 | Budibase before 3.45.0 fails to properly scope the GET /api/chat-links endpoint | |
| CVE-2026-100683 | 8.0 | 0.21% | 2 | 0 | 2026-09-26T15:31:27 | Budibase (@budibase/server) before 3.45.0 builds MySQL and MSSQL column-rename D | |
| CVE-2026-100682 | 8.8 | 0.57% | 2 | 0 | 2026-09-26T15:31:27 | Budibase Server before 3.45.0 contains an arbitrary file write vulnerability in | |
| CVE-2026-100690 | 7.5 | 0.35% | 2 | 0 | 2026-09-26T15:31:27 | Hugo versions from v0.161.0 through v0.165.0 run Node.js tools (css.PostCSS, css | |
| CVE-2026-100686 | 8.1 | 0.21% | 2 | 0 | 2026-09-26T15:31:27 | Budibase versions before 3.45.0 fail to validate per-app authorization in the PO | |
| CVE-2026-100697 | 8.6 | 0.31% | 2 | 0 | 2026-09-26T15:31:27 | Adminer 6.0.0 through 6.0.1, when the official ClickHouse driver plugin (plugins | |
| CVE-2026-100706 | 9.9 | 0.61% | 2 | 0 | 2026-09-26T15:31:27 | kyverno before 1.19.1 fails to properly validate URL-encoded path segments in Po | |
| CVE-2026-100703 | 7.7 | 0.23% | 2 | 0 | 2026-09-26T15:31:27 | Kyverno 1.16.0 through 1.19.0 registers the globalcontext.Lib CEL library in its | |
| CVE-2026-100714 | 9.1 | 0.55% | 1 | 0 | 2026-09-26T15:31:27 | Froxlor before 2.3.12 does not restrict or escape the system.letsencryptchalleng | |
| CVE-2026-100670 | 8.8 | 0.30% | 2 | 0 | 2026-09-26T15:31:26 | Grav CMS 2.0.14 through 2.0.24 contains a privilege escalation vulnerability in | |
| CVE-2026-100669 | 7.5 | 0.44% | 2 | 0 | 2026-09-26T15:31:26 | Grav before 2.0.25 ships web server configuration samples whose access-control d | |
| CVE-2026-100700 | 7.5 | 0.28% | 2 | 0 | 2026-09-26T15:31:24 | nodemailer before 10.0.6 contains a denial of service vulnerability in the addre | |
| CVE-2026-100661 | 7.5 | 0.34% | 2 | 0 | 2026-09-26T15:31:23 | Netty's HTTP/3 codec (io.netty:netty-codec-http3) versions 4.2.0.Final through 4 | |
| CVE-2026-100692 | 7.5 | 0.44% | 2 | 0 | 2026-09-26T15:31:23 | Hugo is a static site generator. In versions after v0.123.0 and before v0.166.0, | |
| CVE-2026-100693 | 8.4 | 0.13% | 2 | 0 | 2026-09-26T15:31:23 | Hugo versions from v0.162.0 before v0.166.0 contain a case-sensitive validation | |
| CVE-2026-100715 | 9.6 | 0.40% | 1 | 0 | 2026-09-26T14:16:57.537000 | Froxlor through 2.3.10 is vulnerable to arbitrary file deletion via symlink foll | |
| CVE-2026-100707 | 7.7 | 0.46% | 2 | 0 | 2026-09-26T14:16:55.983000 | Kyverno before 1.19.1 contains a namespace isolation bypass in the apiCall conte | |
| CVE-2026-100704 | 7.7 | 0.18% | 2 | 0 | 2026-09-26T14:16:55.563000 | Kyverno is a policy engine for Kubernetes. In versions 1.14.0 through 1.19.0, th | |
| CVE-2026-100684 | 8.1 | 0.33% | 2 | 0 | 2026-09-26T14:16:52.720000 | Budibase versions 3.41.0 before 3.45.0 contain an authentication bypass in the O | |
| CVE-2026-100680 | 8.1 | 0.23% | 2 | 0 | 2026-09-26T14:16:52.150000 | Budibase versions before 3.45.0 fail to disable external JSON reference resoluti | |
| CVE-2026-100679 | 8.8 | 0.32% | 2 | 0 | 2026-09-26T14:16:51.993000 | stoatchat before 0.15.5 fails to validate that MFA tickets belong to the authent | |
| CVE-2026-100671 | 8.0 | 0.29% | 2 | 0 | 2026-09-26T14:16:50.860000 | Grav is a flat-file CMS. In versions 2.0.19 through 2.0.24 — and in 2.0.0 throug | |
| CVE-2026-18143 | 9.8 | 0.41% | 2 | 1 | 2026-09-26T09:30:26 | The Request a Quote for WooCommerce plugin for WordPress is vulnerable to Arbitr | |
| CVE-2026-91840 | 7.8 | 0.19% | 1 | 0 | 2026-09-26T04:17:51.307000 | A flaw was found in NetworkManager-vpnc. This vulnerability allows a local unpri | |
| CVE-2026-100596 | 8.8 | 0.25% | 1 | 0 | 2026-09-26T03:30:36 | OpenClaw versions before 2026.7.1 fail to properly authorize non-owner users exe | |
| CVE-2026-100560 | 7.5 | 0.58% | 1 | 0 | 2026-09-26T03:30:35 | OpenClaw versions before 2026.8.1 contain an authorization bypass vulnerability | |
| CVE-2026-100568 | 8.3 | 0.25% | 1 | 0 | 2026-09-26T03:30:35 | OpenClaw versions before 2026.8.1 fail to properly restrict access to operator c | |
| CVE-2026-100567 | 8.2 | 0.25% | 1 | 0 | 2026-09-26T03:30:35 | OpenClaw is an agent gateway distributed as the npm package 'openclaw'. In versi | |
| CVE-2026-100580 | 8.8 | 0.34% | 1 | 0 | 2026-09-26T03:30:35 | OpenClaw (npm package 'openclaw') before 2026.7.1 improperly handles case sensit | |
| CVE-2026-100579 | 7.6 | 0.23% | 1 | 0 | 2026-09-26T03:30:35 | OpenClaw (npm package 'openclaw') before 2026.7.1 incorrectly trusts requester p | |
| CVE-2026-100578 | 7.6 | 0.23% | 1 | 0 | 2026-09-26T03:30:35 | OpenClaw (npm package `openclaw`) before 2026.7.1 fails to restrict owner-only i | |
| CVE-2026-100585 | 8.0 | 0.19% | 1 | 0 | 2026-09-26T03:30:35 | OpenClaw (npm package `openclaw`) before 2026.7.1 fails to enforce the owner-onl | |
| CVE-2026-100582 | 6.5 | 0.21% | 1 | 0 | 2026-09-26T03:30:35 | OpenClaw channel plugins (@openclaw/msteams, @openclaw/feishu, @openclaw/matrix, | |
| CVE-2026-100559 | 8.0 | 0.25% | 1 | 0 | 2026-09-26T03:30:34 | OpenClaw versions before 2026.8.1 contain a command parser vulnerability where e | |
| CVE-2026-100557 | 8.3 | 0.24% | 1 | 0 | 2026-09-26T03:30:34 | OpenClaw versions before 2026.8.1 contain an authorization bypass vulnerability | |
| CVE-2026-100589 | 8.3 | 0.32% | 1 | 0 | 2026-09-26T03:30:29 | OpenClaw versions before 2026.7.1 contain a sandbox bypass vulnerability in the | |
| CVE-2026-100532 | 8.1 | 0.27% | 1 | 0 | 2026-09-26T03:30:28 | @openclaw/whatsapp (npm) before 2026.8.1 exposes the WhatsApp login tool through | |
| CVE-2026-100535 | 7.5 | 0.26% | 1 | 0 | 2026-09-26T03:30:28 | OpenClaw (npm package 'openclaw') versions >= 2026.4.5 and < 2026.8.1 can lose t | |
| CVE-2026-100588 | 8.3 | 0.30% | 1 | 0 | 2026-09-26T03:30:28 | OpenClaw (npm package 'openclaw') before 2026.7.1 does not enforce the administr | |
| CVE-2026-100587 | 8.8 | 0.25% | 1 | 0 | 2026-09-26T03:30:28 | OpenClaw versions before 2026.7.1 fail to properly validate owner authorization | |
| CVE-2026-100599 | 8.8 | 0.30% | 1 | 0 | 2026-09-26T03:30:28 | OpenClaw versions 2026.5.1 through 2026.7.0 fail to apply the configured exec ap | |
| CVE-2026-100543 | 7.5 | 0.35% | 1 | 0 | 2026-09-26T03:30:25 | OpenClaw (npm package openclaw) before 2026.8.1 could include deterministic hash | |
| CVE-2026-100552 | 8.8 | 0.26% | 1 | 0 | 2026-09-26T03:30:25 | OpenClaw (npm package 'openclaw') before 2026.8.1 does not correctly enforce per | |
| CVE-2026-100551 | 8.3 | 0.17% | 2 | 0 | 2026-09-26T03:30:25 | OpenClaw for iOS versions >= 2026.7.1 and < 2026.8.11 do not enforce saved Gatew | |
| CVE-2026-100520 | 8.8 | 0.94% | 1 | 0 | 2026-09-26T03:30:23 | Laranode versions before 1.2.1 contain a path traversal vulnerability in the POS | |
| CVE-2026-100597 | 7.8 | 0.08% | 1 | 0 | 2026-09-26T03:17:08.337000 | OpenClaw (npm package 'openclaw') before 2026.7.1 is vulnerable to a time-of-che | |
| CVE-2026-100586 | 8.8 | 0.25% | 1 | 0 | 2026-09-26T03:17:06.660000 | OpenClaw Codex before 2026.7.1 fails to properly enforce owner authorization whe | |
| CVE-2026-100575 | 8.8 | 0.26% | 2 | 0 | 2026-09-26T03:17:05.030000 | OpenClaw Slack versions before 2026.8.1 fail to properly enforce sender allowlis | |
| CVE-2026-100570 | 7.8 | 0.13% | 1 | 0 | 2026-09-26T03:17:04.177000 | OpenClaw (npm package 'openclaw') versions >= 2026.3.28 and < 2026.8.1 allow an | |
| CVE-2026-100561 | 8.0 | 0.25% | 1 | 0 | 2026-09-26T03:17:02.987000 | OpenClaw (npm package 'openclaw') versions >= 2026.3.22 and < 2026.8.1 contain a | |
| CVE-2026-100558 | 7.5 | 0.28% | 1 | 0 | 2026-09-26T03:17:02.533000 | OpenClaw versions before 2026.8.1 contain a resource exhaustion vulnerability in | |
| CVE-2026-100544 | 8.8 | 0.25% | 1 | 0 | 2026-09-26T03:17:00.440000 | openclaw's @openclaw/voice-call package before 2026.8.1 launches the configured | |
| CVE-2026-100541 | 7.5 | 0.30% | 1 | 0 | 2026-09-26T03:16:59.987000 | OpenClaw's Matrix integration (npm package @openclaw/matrix) versions >= 2026.2. | |
| CVE-2026-100382 | None | 0.95% | 2 | 1 | 2026-09-26T00:32:22 | Improper Neutralization of Special Elements used in an OS Command ('OS Command I | |
| CVE-2026-96795 | 8.8 | 0.30% | 1 | 0 | 2026-09-25T23:16:55.020000 | Horilla is an HR and CRM software. Prior to 2.0.0, HorillaListView.export_data i | |
| CVE-2026-57443 | 7.5 | 0.57% | 1 | 0 | 2026-09-25T21:48:04 | ### Summary The AetherBrowser API server (`scripts/aetherbrowser/api_server.py` | |
| CVE-2026-100368 | 8.4 | 0.58% | 1 | 0 | 2026-09-25T21:41:49 | ### Impact An OS command injection vulnerability exists in the PowerShell and Cm | |
| CVE-2026-100369 | 8.4 | 0.36% | 1 | 0 | 2026-09-25T21:41:37 | ### Impact An argument-injection vulnerability exists in the `CliInvoke` package | |
| CVE-2026-100390 | 7.4 | 0.29% | 1 | 0 | 2026-09-25T21:33:12 | Zoraxy versions 3.2.3 through 3.3.4 fail to properly parse IPv6 addresses in the | |
| CVE-2026-10758 | 7.5 | 0.33% | 1 | 0 | 2026-09-25T21:33:12 | Esri LERC is an open-source image or raster format which supports rapid encoding | |
| CVE-2026-100389 | 8.1 | 0.57% | 2 | 0 | 2026-09-25T21:33:11 | GestSup versions before 3.2.61 contain a remote code execution vulnerability in | |
| CVE-2026-100391 | 8.2 | 0.31% | 1 | 0 | 2026-09-25T21:33:11 | MediaFlow Proxy through 2.4.9 contains a server-side request forgery vulnerabili | |
| CVE-2026-97063 | 9.1 | 0.29% | 1 | 0 | 2026-09-25T21:33:06 | X-SpringBoot through 6.0 returns login verification codes in HTTP responses from | |
| CVE-2026-100208 | 7.5 | 0.35% | 1 | 0 | 2026-09-25T21:33:06 | Integer overflow or wraparound in Microsoft Office Outlook allows an unauthorize | |
| CVE-2026-5267 | 7.5 | 0.36% | 1 | 0 | 2026-09-25T21:17:23.633000 | Ciena Navigator Network Control Suite (NCS) contains an information exposure vul | |
| CVE-2026-100387 | 8.1 | 0.32% | 1 | 0 | 2026-09-25T21:17:22.163000 | pgPointcloud through 1.2.5 contains a heap out-of-bounds read vulnerability in d | |
| CVE-2026-92161 | 9.8 | 0.27% | 1 | 0 | 2026-09-25T20:31:30 | ### Impact An unauthenticated account takeover vulnerability exists in `fof/oau | |
| CVE-2026-97064 | 9.1 | 0.30% | 1 | 0 | 2026-09-25T19:17:59.427000 | X-SpringBoot through 6.0 ships with a hardcoded static master login verification | |
| CVE-2026-67279 | 6.5 | 1.03% | 5 | 3 | 2026-09-25T18:32:21 | RouterOS SSH enters the connection protocol after a client-requested rekey even | |
| CVE-2026-65660 | 6.5 | 2.10% | 8 | 2 | 2026-09-25T18:32:20 | Improper control of generation of code ('code injection') in Microsoft Office Sh | |
| CVE-2026-91841 | 7.8 | 0.19% | 1 | 0 | 2026-09-25T18:31:36 | A flaw was found in NetworkManager-vpnc, a VPN plugin for NetworkManager. A loca | |
| CVE-2026-91839 | 7.8 | 0.20% | 1 | 0 | 2026-09-25T18:31:36 | A flaw was found in NetworkManager-fortisslvpn, the FortiSSLVPN plugin for Netwo | |
| CVE-2026-91838 | 7.8 | 0.10% | 1 | 0 | 2026-09-25T18:31:36 | A flaw was found in NetworkManager-sstp, the SSTP VPN plugin for NetworkManager. | |
| CVE-2026-89032 | 7.7 | 0.27% | 1 | 0 | 2026-09-25T18:31:35 | BerriAI LiteLLM before 1.101.0-rc.1 contains a tenant isolation bypass vulnerabi | |
| CVE-2026-94445 | 8.8 | 0.36% | 1 | 0 | 2026-09-25T18:31:35 | A malicious txtar could escape the intended execution context and force arbitrar | |
| CVE-2026-91837 | 7.8 | 0.14% | 1 | 0 | 2026-09-25T17:17:18.983000 | A flaw was found in NetworkManager-iodine, the iodine VPN plugin for NetworkMana | |
| CVE-2026-92609 | 9.8 | 0.38% | 1 | 0 | 2026-09-25T15:32:40 | Session fixation in HTTP management authentication allows remote attackers to ga | |
| CVE-2026-61825 | 8.7 | 0.22% | 1 | 0 | 2026-09-25T15:00:45 | ### Impact The vulnerability allows an attacker to bypass the HTML sanitizer by | |
| CVE-2026-97818 | 8.6 | 0.32% | 1 | 0 | 2026-09-25T14:17:26.837000 | phpIPAM through 1.8.3 has incorrect authorization for id=="admins" and id=="all" | |
| CVE-2026-92573 | 6.5 | 0.29% | 1 | 0 | 2026-09-25T14:17:22.150000 | Improper handling of compressed data in the shared GZIP decompressor used for AM | |
| CVE-2026-89426 | 8.8 | 0.47% | 1 | 0 | 2026-09-25T14:17:21.750000 | The Knit Pay – Cashfree, Instamojo, Razorpay, PayPal and more plugin for WordPre | |
| CVE-2026-97433 | 8.2 | 0.32% | 1 | 0 | 2026-09-25T13:17:26.930000 | In the Linux kernel, the following vulnerability has been resolved: nvme: valid | |
| CVE-2026-14281 | 9.8 | 0.53% | 1 | 3 | 2026-09-25T13:08:26.930000 | The Automation Web Platform – Notifications and OTP for WooCommerce, Advanced Co | |
| CVE-2026-71362 | 9.1 | 87.51% | 1 | 1 | 2026-09-25T12:53:15.757000 | Adobe Commerce is affected by an Incorrect Authorization vulnerability that coul | |
| CVE-2026-92564 | None | 0.19% | 1 | 0 | 2026-09-25T09:31:16 | A pre-authentication attacker could leverage type nesting to cause a StackOverfl | |
| CVE-2026-89406 | 7.5 | 0.39% | 1 | 0 | 2026-09-25T09:31:16 | The Modula Image Gallery – Photo Grid & Video Gallery plugin for WordPress is vu | |
| CVE-2026-93399 | 9.1 | 0.37% | 2 | 2 | 2026-09-25T09:31:15 | The Bookly plugin for WordPress is vulnerable to Insecure Direct Object Referenc | |
| CVE-2026-19804 | 8.8 | 1.04% | 1 | 0 | 2026-09-25T09:31:15 | The s2Member – Excellent for All Kinds of Memberships, Content Restriction Paywa | |
| CVE-2026-92713 | 8.1 | 0.27% | 1 | 0 | 2026-09-25T09:31:15 | The Modula Image Gallery – Photo Grid & Video Gallery plugin for WordPress is vu | |
| CVE-2026-89055 | 9.1 | 0.39% | 2 | 1 | 2026-09-25T09:31:14 | The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to autho | |
| CVE-2026-62062 | 8.8 | 0.13% | 2 | 1 | 2026-09-25T09:31:05 | Cross-Site Request Forgery (CSRF) vulnerability in Elementor Website Builder all | |
| CVE-2026-97428 | 7.7 | 0.14% | 1 | 0 | 2026-09-25T06:31:36 | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: | |
| CVE-2026-97444 | 7.7 | 0.14% | 1 | 0 | 2026-09-25T06:31:36 | In the Linux kernel, the following vulnerability has been resolved: ACPICA: add | |
| CVE-2026-97450 | 8.4 | 0.14% | 1 | 0 | 2026-09-25T06:31:35 | In the Linux kernel, the following vulnerability has been resolved: ACPICA: val | |
| CVE-2026-97448 | 7.7 | 0.14% | 1 | 0 | 2026-09-25T06:31:35 | In the Linux kernel, the following vulnerability has been resolved: ACPICA: Add | |
| CVE-2026-97509 | 8.8 | 0.24% | 1 | 0 | 2026-09-25T06:31:35 | In the Linux kernel, the following vulnerability has been resolved: thunderbolt | |
| CVE-2026-97508 | 7.5 | 0.21% | 1 | 0 | 2026-09-25T06:31:35 | In the Linux kernel, the following vulnerability has been resolved: thunderbolt | |
| CVE-2026-97445 | 7.7 | 0.15% | 1 | 0 | 2026-09-25T06:31:34 | In the Linux kernel, the following vulnerability has been resolved: ACPICA: Enh | |
| CVE-2026-97442 | 8.8 | 0.24% | 1 | 0 | 2026-09-25T06:31:34 | In the Linux kernel, the following vulnerability has been resolved: wifi: ath11 | |
| CVE-2026-97452 | 8.4 | 0.14% | 1 | 0 | 2026-09-25T06:31:34 | In the Linux kernel, the following vulnerability has been resolved: ACPICA: Pre | |
| CVE-2026-97478 | 7.8 | 0.12% | 1 | 0 | 2026-09-25T06:31:34 | In the Linux kernel, the following vulnerability has been resolved: virt: acrn: | |
| CVE-2026-97454 | 7.7 | 0.14% | 1 | 0 | 2026-09-25T06:31:19 | In the Linux kernel, the following vulnerability has been resolved: ACPICA: add | |
| CVE-2026-97513 | 7.8 | 0.11% | 1 | 0 | 2026-09-25T05:17:07.540000 | In the Linux kernel, the following vulnerability has been resolved: media: chip | |
| CVE-2026-97497 | 7.8 | 0.13% | 1 | 0 | 2026-09-25T05:17:07.180000 | In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: | |
| CVE-2026-97455 | 8.4 | 0.14% | 1 | 0 | 2026-09-25T05:17:06.673000 | In the Linux kernel, the following vulnerability has been resolved: ACPICA: Fix | |
| CVE-2026-97451 | 8.4 | 0.14% | 1 | 0 | 2026-09-25T05:17:06.323000 | In the Linux kernel, the following vulnerability has been resolved: ACPICA: Fix | |
| CVE-2026-89078 | 9.9 | 0.36% | 1 | 0 | 2026-09-25T04:17:48.843000 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 19.2 | |
| CVE-2026-48842 | 8.1 | 0.89% | 3 | 2 | 2026-09-25T04:17:35.357000 | Roundcube Webmail 1.6.x before 1.6.16 and 1.7.x before 1.7.1 has Pre-authenticat | |
| CVE-2026-81473 | 8.1 | 0.09% | 1 | 0 | 2026-09-24T21:32:59 | Dell Rugged Control Center (RCC), versions prior to 5.2.206, contain an Improper | |
| CVE-2026-89325 | 7.8 | 0.13% | 1 | 0 | 2026-09-24T21:32:58 | An uncontrolled search path element in InsightVM assessment content in Rapid7 In | |
| CVE-2026-13248 | 8.8 | 0.44% | 1 | 0 | 2026-09-24T21:32:57 | An Authenticated Remote Code Execution via Arbitrary File Write in the Intermec | |
| CVE-2026-13249 | 9.8 | 0.57% | 1 | 1 | 2026-09-24T21:32:57 | An unauthenticated Remote Code Execution via Arbitrary File Upload vulnerability | |
| CVE-2026-81455 | 8.6 | 0.26% | 1 | 0 | 2026-09-24T21:32:57 | Dell ThinOS 10, versions prior to SecurityAddon_2605.10.2766_T10, contain a Miss | |
| CVE-2026-5430 | 10.0 | 0.59% | 3 | 2 | 2026-09-24T21:32:26 | The JWT authentication mechanism accepts tokens signed with algorithms other tha | |
| CVE-2026-28324 | 9.8 | 0.65% | 1 | 0 | 2026-09-24T21:00:46.893000 | SolarWinds Observability Self-Hosted was found to be affected by an unauthentica | |
| CVE-2026-61816 | 7.5 | 0.39% | 1 | 0 | 2026-09-24T19:45:08 | ### Impact An uncontrolled resource consumption / algorithmic complexity vulner | |
| CVE-2026-61741 | 9.3 | 0.29% | 1 | 0 | 2026-09-24T19:35:18 | http4s-scala-xml provides `EntityDecoder[F, scala.xml.Elem]` instances that pars | |
| CVE-2026-75907 | 7.5 | 0.36% | 1 | 0 | 2026-09-24T19:17:16.220000 | The door access control on a Norwegian Cruise Line asset grants entry based only | |
| CVE-2026-57440 | 7.5 | 0.26% | 1 | 0 | 2026-09-24T19:17:14.630000 | The EmbedVideo Extension is a MediaWiki extension which adds a parser function c | |
| CVE-2026-95985 | 8.8 | 0.14% | 1 | 0 | 2026-09-24T18:31:48 | The file write tool in Amazon Kiro IDE versions before 1.0.242 might allow remot | |
| CVE-2026-85057 | 8.7 | 0.39% | 1 | 0 | 2026-09-24T18:19:34 | ### Summary A vulnerability in ZITADEL Actions V1 allows an organization Action | |
| CVE-2026-85056 | 8.2 | 0.29% | 1 | 0 | 2026-09-24T18:19:04.180000 | ZITADEL is an open source identity management platform. From 4.0.0 until 4.16.1, | |
| CVE-2026-61782 | 7.5 | 0.36% | 1 | 0 | 2026-09-24T18:17:16.333000 | Rsdoctor is a build analyzer tailored for projects built with Rspack. Prior to v | |
| CVE-2026-93577 | 9.9 | 0.43% | 1 | 0 | 2026-09-24T00:30:34 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 19.2 | |
| CVE-2026-94127 | 9.8 | 2.23% | 2 | 2 | 2026-09-22T21:31:17 | When a BIG-IP APM access policy and an OAuth profile is configured on a virtual | |
| CVE-2026-93616 | 9.8 | 19.65% | 1 | 1 | 2026-09-22T21:31:15 | A directory traversal and file upload vulnerability allows an unauthenticated at | |
| CVE-2026-85102 | 9.8 | 0.99% | 1 | 0 | 2026-09-22T21:30:40 | Improper certificate trust validation during VPN negotiation in Check Point Quan | |
| CVE-2026-93854 | 0 | 0.41% | 1 | 0 | 2026-09-22T19:56:19.073000 | In OpenStack Blazar before 17.0.1, the V2 lease API does not enforce object-leve | |
| CVE-2026-93579 | 6.5 | 0.58% | 1 | 0 | 2026-09-22T18:34:29 | A flaw was found in Netty's HTTP/2 stack. This vulnerability allows a remote att | |
| CVE-2026-93871 | 5.4 | 0.27% | 1 | 0 | 2026-09-18T21:32:44 | Cotonti through 1.0.0 fails to validate redirect destinations in page bodies pre | |
| CVE-2026-82890 | 5.9 | 0.32% | 2 | 0 | 2026-09-18T21:32:36 | IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to | |
| CVE-2026-11722 | 4.8 | 0.18% | 1 | 0 | 2026-09-18T21:32:27 | IBM WebSphere Application Server and WebSphere Application Server Liberty are af | |
| CVE-2026-93432 | 6.1 | 0.42% | 1 | 0 | 2026-09-18T20:17:32.267000 | A flaw was found in the Quarkus Qute template engine. When the {#eval} section h | |
| CVE-2026-93751 | 6.5 | 0.40% | 1 | 0 | 2026-09-18T18:32:05 | uri-js through 4.4.1 contains an improper UTF-8 decoding vulnerability in pctDec | |
| CVE-2026-77608 | 6.1 | 0.26% | 1 | 0 | 2026-09-18T16:42:52 | #### Failure mode The `value` parameter was reflected back into rendered output | |
| CVE-2025-39964 | 3.3 | 1.00% | 2 | 2 | 2026-09-18T15:31:06 | In the Linux kernel, the following vulnerability has been resolved: crypto: af_ | |
| CVE-2026-91843 | 9.8 | 0.52% | 1 | 1 | 2026-09-16T15:31:14 | A stack overflow during the unauthenticated login process may allow an attacker | |
| CVE-2026-0310 | 0 | 0.37% | 2 | 0 | 2026-09-11T04:17:13.060000 | A buffer overflow vulnerability in the XML processing functionality of Palo Alto | |
| CVE-2026-55074 | None | 0.44% | 2 | 0 | 2026-08-13T15:58:54 | Through version 1.3.0, the jailexec connection plugin's put_file resolved a tran | |
| CVE-2026-63077 | 9.8 | 9.76% | 1 | 6 | 2026-08-05T18:32:31 | In JetBrains TeamCity before 2026.1.3, 2025.11.7 unauthenticated remote code exe | |
| CVE-2026-39808 | 9.8 | 47.36% | 1 | 6 | 2026-07-16T18:32:24 | A improper neutralization of special elements used in an os command ('os command | |
| CVE-2026-44661 | 4.7 | 0.20% | 1 | 0 | 2026-06-17T10:51:12.463000 | python-utcp is the python implementation of UTCP. Prior to 1.1.3, the utcp-http | |
| CVE-2026-0257 | 9.1 | 96.38% | 1 | 8 | template | 2026-06-17T10:10:37.953000 | Authentication bypass vulnerabilities in the GlobalProtect portal and gateway of |
| CVE-2026-35273 | 9.8 | 9.44% | 4 | 4 | 2026-06-12T18:31:50 | Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleS | |
| CVE-2026-32996 | None | 0.17% | 1 | 1 | 2026-05-28T06:31:09 | This vulnerability in Veeam Agent for Microsoft Windows allows for Local Privile | |
| CVE-2026-42608 | None | 0.52% | 1 | 0 | 2026-05-13T13:52:36 | # Vulnerability Report: Grav CMS Unauthenticated Path Traversal & Arbitrary File | |
| CVE-2026-39813 | 9.8 | 0.72% | 1 | 2 | 2026-04-14T18:30:41 | A path traversal: '../filedir' vulnerability in Fortinet FortiSandbox 5.0.0 thro | |
| CVE-2025-13032 | 9.9 | 0.25% | 7 | 0 | 2025-11-11T18:30:23 | Double fetch in sandbox kernel driver in Avast/AVG Antivirus <25.3 on windows a | |
| CVE-2026-61722 | 0 | 0.20% | 1 | 0 | N/A | ||
| CVE-2026-85271 | 0 | 0.35% | 1 | 0 | N/A | ||
| CVE-2026-87902 | 0 | 18.17% | 4 | 22 | template | N/A | |
| CVE-2026-76654 | 0 | 0.00% | 1 | 0 | N/A | ||
| CVE-2026-2270 | 0 | 0.00% | 1 | 0 | N/A | ||
| CVE-2026-76902 | 0 | 0.27% | 1 | 0 | N/A | ||
| CVE-2026-57229 | 0 | 0.41% | 1 | 0 | N/A | ||
| CVE-2026-61720 | 0 | 0.18% | 1 | 0 | N/A | ||
| CVE-2026-91765 | 0 | 0.52% | 1 | 0 | N/A | ||
| CVE-2026-93676 | 0 | 0.14% | 1 | 0 | N/A | ||
| CVE-2026-87766 | 0 | 0.15% | 1 | 0 | N/A | ||
| CVE-2026-100000 | 0 | 0.00% | 1 | 0 | N/A | ||
| CVE-2026-63645 | 0 | 0.33% | 1 | 0 | N/A | ||
| CVE-2026-71540 | 0 | 0.35% | 1 | 0 | N/A | ||
| CVE-2026-77294 | 0 | 0.31% | 1 | 0 | N/A | ||
| CVE-2026-96749 | 0 | 0.13% | 1 | 0 | N/A |
updated 2026-09-27T17:16:57.110000
6 posts
‼️ Citrix has released a security bulletin regarding zero-day attacks targeting Citrix NetScaler ADC and Citrix NetScaler Gateway.
More info: https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096
CVEs: CVE-2026-88771, CVE-2026-88772, CVE-2026-88773, CVE-2026-88774, CVE-2026-88775, CVE-2026-88776, CVE-2026-88777, and CVE-2026-88778
##@watchTowr Thanks for being on top of it 💪
https://community.citrix.com/techzone-blogs/110_security-updates/netscaler-adc-and-netscaler-gateway-security-bulletin-for-cve-2026-88771-through-cve-2026-88778/
Citrix has finally spoken.
Citrix NetScaler ADC and Citrix NetScaler Gateway Security Bulletin for CVE-2026-88771, CVE-2026-88772, CVE-2026-88773, CVE-2026-88774, CVE-2026-88775, CVE-2026-88776, CVE-2026-88777, and CVE-2026-88778 https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096 #infosec #Citrix #NetScaler #vulnerability
##‼️ Citrix has released a security bulletin regarding zero-day attacks targeting Citrix NetScaler ADC and Citrix NetScaler Gateway.
More info: https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096
CVEs: CVE-2026-88771, CVE-2026-88772, CVE-2026-88773, CVE-2026-88774, CVE-2026-88775, CVE-2026-88776, CVE-2026-88777, and CVE-2026-88778
##@watchTowr Thanks for being on top of it 💪
https://community.citrix.com/techzone-blogs/110_security-updates/netscaler-adc-and-netscaler-gateway-security-bulletin-for-cve-2026-88771-through-cve-2026-88778/
Citrix has finally spoken.
Citrix NetScaler ADC and Citrix NetScaler Gateway Security Bulletin for CVE-2026-88771, CVE-2026-88772, CVE-2026-88773, CVE-2026-88774, CVE-2026-88775, CVE-2026-88776, CVE-2026-88777, and CVE-2026-88778 https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096 #infosec #Citrix #NetScaler #vulnerability
##updated 2026-09-27T17:16:56.990000
4 posts
‼️ Citrix has released a security bulletin regarding zero-day attacks targeting Citrix NetScaler ADC and Citrix NetScaler Gateway.
More info: https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096
CVEs: CVE-2026-88771, CVE-2026-88772, CVE-2026-88773, CVE-2026-88774, CVE-2026-88775, CVE-2026-88776, CVE-2026-88777, and CVE-2026-88778
##Citrix has finally spoken.
Citrix NetScaler ADC and Citrix NetScaler Gateway Security Bulletin for CVE-2026-88771, CVE-2026-88772, CVE-2026-88773, CVE-2026-88774, CVE-2026-88775, CVE-2026-88776, CVE-2026-88777, and CVE-2026-88778 https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096 #infosec #Citrix #NetScaler #vulnerability
##‼️ Citrix has released a security bulletin regarding zero-day attacks targeting Citrix NetScaler ADC and Citrix NetScaler Gateway.
More info: https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096
CVEs: CVE-2026-88771, CVE-2026-88772, CVE-2026-88773, CVE-2026-88774, CVE-2026-88775, CVE-2026-88776, CVE-2026-88777, and CVE-2026-88778
##Citrix has finally spoken.
Citrix NetScaler ADC and Citrix NetScaler Gateway Security Bulletin for CVE-2026-88771, CVE-2026-88772, CVE-2026-88773, CVE-2026-88774, CVE-2026-88775, CVE-2026-88776, CVE-2026-88777, and CVE-2026-88778 https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096 #infosec #Citrix #NetScaler #vulnerability
##updated 2026-09-27T17:16:56.870000
4 posts
‼️ Citrix has released a security bulletin regarding zero-day attacks targeting Citrix NetScaler ADC and Citrix NetScaler Gateway.
More info: https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096
CVEs: CVE-2026-88771, CVE-2026-88772, CVE-2026-88773, CVE-2026-88774, CVE-2026-88775, CVE-2026-88776, CVE-2026-88777, and CVE-2026-88778
##Citrix has finally spoken.
Citrix NetScaler ADC and Citrix NetScaler Gateway Security Bulletin for CVE-2026-88771, CVE-2026-88772, CVE-2026-88773, CVE-2026-88774, CVE-2026-88775, CVE-2026-88776, CVE-2026-88777, and CVE-2026-88778 https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096 #infosec #Citrix #NetScaler #vulnerability
##‼️ Citrix has released a security bulletin regarding zero-day attacks targeting Citrix NetScaler ADC and Citrix NetScaler Gateway.
More info: https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096
CVEs: CVE-2026-88771, CVE-2026-88772, CVE-2026-88773, CVE-2026-88774, CVE-2026-88775, CVE-2026-88776, CVE-2026-88777, and CVE-2026-88778
##Citrix has finally spoken.
Citrix NetScaler ADC and Citrix NetScaler Gateway Security Bulletin for CVE-2026-88771, CVE-2026-88772, CVE-2026-88773, CVE-2026-88774, CVE-2026-88775, CVE-2026-88776, CVE-2026-88777, and CVE-2026-88778 https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096 #infosec #Citrix #NetScaler #vulnerability
##updated 2026-09-27T17:16:56.750000
4 posts
‼️ Citrix has released a security bulletin regarding zero-day attacks targeting Citrix NetScaler ADC and Citrix NetScaler Gateway.
More info: https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096
CVEs: CVE-2026-88771, CVE-2026-88772, CVE-2026-88773, CVE-2026-88774, CVE-2026-88775, CVE-2026-88776, CVE-2026-88777, and CVE-2026-88778
##Citrix has finally spoken.
Citrix NetScaler ADC and Citrix NetScaler Gateway Security Bulletin for CVE-2026-88771, CVE-2026-88772, CVE-2026-88773, CVE-2026-88774, CVE-2026-88775, CVE-2026-88776, CVE-2026-88777, and CVE-2026-88778 https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096 #infosec #Citrix #NetScaler #vulnerability
##‼️ Citrix has released a security bulletin regarding zero-day attacks targeting Citrix NetScaler ADC and Citrix NetScaler Gateway.
More info: https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096
CVEs: CVE-2026-88771, CVE-2026-88772, CVE-2026-88773, CVE-2026-88774, CVE-2026-88775, CVE-2026-88776, CVE-2026-88777, and CVE-2026-88778
##Citrix has finally spoken.
Citrix NetScaler ADC and Citrix NetScaler Gateway Security Bulletin for CVE-2026-88771, CVE-2026-88772, CVE-2026-88773, CVE-2026-88774, CVE-2026-88775, CVE-2026-88776, CVE-2026-88777, and CVE-2026-88778 https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096 #infosec #Citrix #NetScaler #vulnerability
##updated 2026-09-27T17:16:56.633000
4 posts
‼️ Citrix has released a security bulletin regarding zero-day attacks targeting Citrix NetScaler ADC and Citrix NetScaler Gateway.
More info: https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096
CVEs: CVE-2026-88771, CVE-2026-88772, CVE-2026-88773, CVE-2026-88774, CVE-2026-88775, CVE-2026-88776, CVE-2026-88777, and CVE-2026-88778
##Citrix has finally spoken.
Citrix NetScaler ADC and Citrix NetScaler Gateway Security Bulletin for CVE-2026-88771, CVE-2026-88772, CVE-2026-88773, CVE-2026-88774, CVE-2026-88775, CVE-2026-88776, CVE-2026-88777, and CVE-2026-88778 https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096 #infosec #Citrix #NetScaler #vulnerability
##‼️ Citrix has released a security bulletin regarding zero-day attacks targeting Citrix NetScaler ADC and Citrix NetScaler Gateway.
More info: https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096
CVEs: CVE-2026-88771, CVE-2026-88772, CVE-2026-88773, CVE-2026-88774, CVE-2026-88775, CVE-2026-88776, CVE-2026-88777, and CVE-2026-88778
##Citrix has finally spoken.
Citrix NetScaler ADC and Citrix NetScaler Gateway Security Bulletin for CVE-2026-88771, CVE-2026-88772, CVE-2026-88773, CVE-2026-88774, CVE-2026-88775, CVE-2026-88776, CVE-2026-88777, and CVE-2026-88778 https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096 #infosec #Citrix #NetScaler #vulnerability
##updated 2026-09-27T17:16:56.507000
6 posts
‼️ Citrix has released a security bulletin regarding zero-day attacks targeting Citrix NetScaler ADC and Citrix NetScaler Gateway.
More info: https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096
CVEs: CVE-2026-88771, CVE-2026-88772, CVE-2026-88773, CVE-2026-88774, CVE-2026-88775, CVE-2026-88776, CVE-2026-88777, and CVE-2026-88778
##Citrix has finally spoken.
Citrix NetScaler ADC and Citrix NetScaler Gateway Security Bulletin for CVE-2026-88771, CVE-2026-88772, CVE-2026-88773, CVE-2026-88774, CVE-2026-88775, CVE-2026-88776, CVE-2026-88777, and CVE-2026-88778 https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096 #infosec #Citrix #NetScaler #vulnerability
##Netscaler CVEs are out:
https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096
Patch isn’t yet through QA at Citrix still, been a week :02angery:
The primary vulns being exploited are CVE-2026-88771, CVE-2026-88772, CVE-2026-88773 chained.
It gives unauth RCE in default appliance config. Attackers using it to drop webshells all month of September.
Probably nation state aligned as well resourced, espionage rather than teens.
##‼️ Citrix has released a security bulletin regarding zero-day attacks targeting Citrix NetScaler ADC and Citrix NetScaler Gateway.
More info: https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096
CVEs: CVE-2026-88771, CVE-2026-88772, CVE-2026-88773, CVE-2026-88774, CVE-2026-88775, CVE-2026-88776, CVE-2026-88777, and CVE-2026-88778
##Citrix has finally spoken.
Citrix NetScaler ADC and Citrix NetScaler Gateway Security Bulletin for CVE-2026-88771, CVE-2026-88772, CVE-2026-88773, CVE-2026-88774, CVE-2026-88775, CVE-2026-88776, CVE-2026-88777, and CVE-2026-88778 https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096 #infosec #Citrix #NetScaler #vulnerability
##Netscaler CVEs are out:
https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096
Patch isn’t yet through QA at Citrix still, been a week :02angery:
The primary vulns being exploited are CVE-2026-88771, CVE-2026-88772, CVE-2026-88773 chained.
It gives unauth RCE in default appliance config. Attackers using it to drop webshells all month of September.
Probably nation state aligned as well resourced, espionage rather than teens.
##updated 2026-09-27T17:16:56.390000
10 posts
‼️ Citrix has released a security bulletin regarding zero-day attacks targeting Citrix NetScaler ADC and Citrix NetScaler Gateway.
More info: https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096
CVEs: CVE-2026-88771, CVE-2026-88772, CVE-2026-88773, CVE-2026-88774, CVE-2026-88775, CVE-2026-88776, CVE-2026-88777, and CVE-2026-88778
##Two Citrix NetScaler zero-day RCE flaws are under active exploitation. Citrix confirmed CVE-2026-88771 and CVE-2026-88772 and shipped patches. Update now.
#Citrix #NetScaler #ZeroDay #RCE #CyberSecurity #VPN #watchTowr #PatchNow
##Citrix NetScaler zero-days
Exploits of CVE-2026-88771 and CVE-2026-88772 on unmitigated NetScaler deployments have been observed.
This is a Monday problem for me, but you're better off knowing what to expect when coming into work tomorrow. h/t @mttaggart
https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096
##Citrix has finally spoken.
Citrix NetScaler ADC and Citrix NetScaler Gateway Security Bulletin for CVE-2026-88771, CVE-2026-88772, CVE-2026-88773, CVE-2026-88774, CVE-2026-88775, CVE-2026-88776, CVE-2026-88777, and CVE-2026-88778 https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096 #infosec #Citrix #NetScaler #vulnerability
##Netscaler CVEs are out:
https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096
Patch isn’t yet through QA at Citrix still, been a week :02angery:
The primary vulns being exploited are CVE-2026-88771, CVE-2026-88772, CVE-2026-88773 chained.
It gives unauth RCE in default appliance config. Attackers using it to drop webshells all month of September.
Probably nation state aligned as well resourced, espionage rather than teens.
##‼️ Citrix has released a security bulletin regarding zero-day attacks targeting Citrix NetScaler ADC and Citrix NetScaler Gateway.
More info: https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096
CVEs: CVE-2026-88771, CVE-2026-88772, CVE-2026-88773, CVE-2026-88774, CVE-2026-88775, CVE-2026-88776, CVE-2026-88777, and CVE-2026-88778
##Two Citrix NetScaler zero-day RCE flaws are under active exploitation. Citrix confirmed CVE-2026-88771 and CVE-2026-88772 and shipped patches. Update now.
#Citrix #NetScaler #ZeroDay #RCE #CyberSecurity #VPN #watchTowr #PatchNow
##Citrix NetScaler zero-days
Exploits of CVE-2026-88771 and CVE-2026-88772 on unmitigated NetScaler deployments have been observed.
This is a Monday problem for me, but you're better off knowing what to expect when coming into work tomorrow. h/t @mttaggart
https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096
##Citrix has finally spoken.
Citrix NetScaler ADC and Citrix NetScaler Gateway Security Bulletin for CVE-2026-88771, CVE-2026-88772, CVE-2026-88773, CVE-2026-88774, CVE-2026-88775, CVE-2026-88776, CVE-2026-88777, and CVE-2026-88778 https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096 #infosec #Citrix #NetScaler #vulnerability
##Netscaler CVEs are out:
https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096
Patch isn’t yet through QA at Citrix still, been a week :02angery:
The primary vulns being exploited are CVE-2026-88771, CVE-2026-88772, CVE-2026-88773 chained.
It gives unauth RCE in default appliance config. Attackers using it to drop webshells all month of September.
Probably nation state aligned as well resourced, espionage rather than teens.
##updated 2026-09-27T17:16:56.260000
14 posts
Zusätzlich sehr nützliche Betriebs- und Incident-Response-Hinweise gibt es hier: https://www.cyberkendra.com/2026/09/cve-2026-88771-netscaler-zero-days-exploited.html
##‼️ Citrix has released a security bulletin regarding zero-day attacks targeting Citrix NetScaler ADC and Citrix NetScaler Gateway.
More info: https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096
CVEs: CVE-2026-88771, CVE-2026-88772, CVE-2026-88773, CVE-2026-88774, CVE-2026-88775, CVE-2026-88776, CVE-2026-88777, and CVE-2026-88778
##@watchTowr Thanks for being on top of it 💪
https://community.citrix.com/techzone-blogs/110_security-updates/netscaler-adc-and-netscaler-gateway-security-bulletin-for-cve-2026-88771-through-cve-2026-88778/
Two Citrix NetScaler zero-day RCE flaws are under active exploitation. Citrix confirmed CVE-2026-88771 and CVE-2026-88772 and shipped patches. Update now.
#Citrix #NetScaler #ZeroDay #RCE #CyberSecurity #VPN #watchTowr #PatchNow
##Citrix NetScaler zero-days
Exploits of CVE-2026-88771 and CVE-2026-88772 on unmitigated NetScaler deployments have been observed.
This is a Monday problem for me, but you're better off knowing what to expect when coming into work tomorrow. h/t @mttaggart
https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096
##Citrix has finally spoken.
Citrix NetScaler ADC and Citrix NetScaler Gateway Security Bulletin for CVE-2026-88771, CVE-2026-88772, CVE-2026-88773, CVE-2026-88774, CVE-2026-88775, CVE-2026-88776, CVE-2026-88777, and CVE-2026-88778 https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096 #infosec #Citrix #NetScaler #vulnerability
##Netscaler CVEs are out:
https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096
Patch isn’t yet through QA at Citrix still, been a week :02angery:
The primary vulns being exploited are CVE-2026-88771, CVE-2026-88772, CVE-2026-88773 chained.
It gives unauth RCE in default appliance config. Attackers using it to drop webshells all month of September.
Probably nation state aligned as well resourced, espionage rather than teens.
##Zusätzlich sehr nützliche Betriebs- und Incident-Response-Hinweise gibt es hier: https://www.cyberkendra.com/2026/09/cve-2026-88771-netscaler-zero-days-exploited.html
##‼️ Citrix has released a security bulletin regarding zero-day attacks targeting Citrix NetScaler ADC and Citrix NetScaler Gateway.
More info: https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096
CVEs: CVE-2026-88771, CVE-2026-88772, CVE-2026-88773, CVE-2026-88774, CVE-2026-88775, CVE-2026-88776, CVE-2026-88777, and CVE-2026-88778
##@watchTowr Thanks for being on top of it 💪
https://community.citrix.com/techzone-blogs/110_security-updates/netscaler-adc-and-netscaler-gateway-security-bulletin-for-cve-2026-88771-through-cve-2026-88778/
Two Citrix NetScaler zero-day RCE flaws are under active exploitation. Citrix confirmed CVE-2026-88771 and CVE-2026-88772 and shipped patches. Update now.
#Citrix #NetScaler #ZeroDay #RCE #CyberSecurity #VPN #watchTowr #PatchNow
##Citrix NetScaler zero-days
Exploits of CVE-2026-88771 and CVE-2026-88772 on unmitigated NetScaler deployments have been observed.
This is a Monday problem for me, but you're better off knowing what to expect when coming into work tomorrow. h/t @mttaggart
https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096
##Citrix has finally spoken.
Citrix NetScaler ADC and Citrix NetScaler Gateway Security Bulletin for CVE-2026-88771, CVE-2026-88772, CVE-2026-88773, CVE-2026-88774, CVE-2026-88775, CVE-2026-88776, CVE-2026-88777, and CVE-2026-88778 https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096 #infosec #Citrix #NetScaler #vulnerability
##Netscaler CVEs are out:
https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096
Patch isn’t yet through QA at Citrix still, been a week :02angery:
The primary vulns being exploited are CVE-2026-88771, CVE-2026-88772, CVE-2026-88773 chained.
It gives unauth RCE in default appliance config. Attackers using it to drop webshells all month of September.
Probably nation state aligned as well resourced, espionage rather than teens.
##updated 2026-09-27T17:16:55.700000
2 posts
🟠 CVE-2026-100865 - High (8.8)
Heym before 0.0.53 contains multiple independent vulnerabilities. (1) The workflow condition evaluator uses Python eval() without an effective sandbox, allowing any user who can edit a workflow branch/condition node — or who can import a workflo...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100865/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-100865 - High (8.8)
Heym before 0.0.53 contains multiple independent vulnerabilities. (1) The workflow condition evaluator uses Python eval() without an effective sandbox, allowing any user who can edit a workflow branch/condition node — or who can import a workflo...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100865/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-27T17:16:55.463000
2 posts
🟠 CVE-2026-100841 - High (7.8)
In MONAI 1.6.0, PersistentDataset (monai/data/dataset.py) explicitly rejects the combination track_meta=True with weights_only=True, forcing users who cache MetaTensors (the default tensor type in MONAI >= 1.0) to run torch.load(hashfile, weights_...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100841/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-100841 - High (7.8)
In MONAI 1.6.0, PersistentDataset (monai/data/dataset.py) explicitly rejects the combination track_meta=True with weights_only=True, forcing users who cache MetaTensors (the default tensor type in MONAI >= 1.0) to run torch.load(hashfile, weights_...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100841/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-27T09:31:17
2 posts
CVE-2026-100741: CRITICAL eval injection in hMailServer (Windows, 6.0.0 – 6.3.3) enables remote code execution via JScript event scripting. Requires non-default config. Disable event scripting/JScript now. https://radar.offseq.com/threat/cve-2026-100741-cwe-95-improper-neutralization-of-directives-in-dynamically-evaluated-code-eval-a98d3d387bf12b13 #OffSeq #Vulnerability #CyberSec #CVE #hMailServer
##CVE-2026-100741: CRITICAL eval injection in hMailServer (Windows, 6.0.0 – 6.3.3) enables remote code execution via JScript event scripting. Requires non-default config. Disable event scripting/JScript now. https://radar.offseq.com/threat/cve-2026-100741-cwe-95-improper-neutralization-of-directives-in-dynamically-evaluated-code-eval-a98d3d387bf12b13 #OffSeq #Vulnerability #CyberSec #CVE #hMailServer
##updated 2026-09-27T06:30:28
2 posts
CVE-2026-96896: Malcure Malware Shield <19.9.7 has a CRITICAL auth flaw. Subsite admins in WP multisite can write/delete arbitrary files, enabling RCE. Upgrade to 19.9.7+ now. https://radar.offseq.com/threat/cve-2026-96896-cwe-862-missing-authorization-in-malcure-malware-shield-removal-repair-monitor-c3225b7f1fc0a21c #OffSeq #WordPress #Infosec #RCE
##CVE-2026-96896: Malcure Malware Shield <19.9.7 has a CRITICAL auth flaw. Subsite admins in WP multisite can write/delete arbitrary files, enabling RCE. Upgrade to 19.9.7+ now. https://radar.offseq.com/threat/cve-2026-96896-cwe-862-missing-authorization-in-malcure-malware-shield-removal-repair-monitor-c3225b7f1fc0a21c #OffSeq #WordPress #Infosec #RCE
##updated 2026-09-27T06:30:27
2 posts
CVE-2026-81655: CRITICAL code injection in Ad Inserter WP plugin (2.8.12 – 2.8.18). Subscribers can execute PHP or unescaped content. Patch to 2.8.19+ ASAP. More: https://radar.offseq.com/threat/cve-2026-81655-cwe-94-improper-control-of-generation-of-code-code-injection-in-ad-inserter-d330f89b1f759aca #OffSeq #WordPress #Infosec #Vuln
##CVE-2026-81655: CRITICAL code injection in Ad Inserter WP plugin (2.8.12 – 2.8.18). Subscribers can execute PHP or unescaped content. Patch to 2.8.19+ ASAP. More: https://radar.offseq.com/threat/cve-2026-81655-cwe-94-improper-control-of-generation-of-code-code-injection-in-ad-inserter-d330f89b1f759aca #OffSeq #WordPress #Infosec #Vuln
##updated 2026-09-27T03:31:13
2 posts
🟠 CVE-2026-100840 - High (7.8)
MONAI through 1.6.0 contains a remote code execution vulnerability in the bundle configuration engine that resolves _target_ values to arbitrary importable callables without an allow list and passes $ expressions to Python eval(). Attackers can pu...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100840/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-100840 - High (7.8)
MONAI through 1.6.0 contains a remote code execution vulnerability in the bundle configuration engine that resolves _target_ values to arbitrary importable callables without an allow list and passes $ expressions to Python eval(). Attackers can pu...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100840/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-27T03:31:13
2 posts
🟠 CVE-2026-100847 - High (7.5)
AzuraCast before 0.23.8 contains a DQL injection vulnerability in the sortOrder API parameter of AbstractSearchableListAction.php. Attackers can inject arbitrary DQL expressions through the sortOrder parameter to extract sensitive database informa...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100847/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-100847 - High (7.5)
AzuraCast before 0.23.8 contains a DQL injection vulnerability in the sortOrder API parameter of AbstractSearchableListAction.php. Attackers can inject arbitrary DQL expressions through the sortOrder parameter to extract sensitive database informa...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100847/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-27T03:31:13
2 posts
🟠 CVE-2026-100851 - High (7.6)
AzuraCast before 0.23.8 contains a broken access control vulnerability in the GET /api/station/{id}/vue/profile endpoint that allows authenticated users with only View Station Page permission to read Icecast/Shoutcast admin, source, and relay pass...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100851/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-100851 - High (7.6)
AzuraCast before 0.23.8 contains a broken access control vulnerability in the GET /api/station/{id}/vue/profile endpoint that allows authenticated users with only View Station Page permission to read Icecast/Shoutcast admin, source, and relay pass...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100851/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-27T03:31:13
2 posts
🟠 CVE-2026-100857 - High (8)
AzuraCast before 0.23.4 contains a code injection vulnerability in the ConfigWriter::cleanUpString() method that fails to sanitize Liquidsoap string interpolation sequences, allowing authenticated users with Media or Profile permissions to inject ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100857/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-100857 - High (8)
AzuraCast before 0.23.4 contains a code injection vulnerability in the ConfigWriter::cleanUpString() method that fails to sanitize Liquidsoap string interpolation sequences, allowing authenticated users with Media or Profile permissions to inject ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100857/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-27T03:31:13
2 posts
🟠 CVE-2026-100856 - High (8.8)
AzuraCast before 0.23.6 contains a code injection vulnerability in the remote relay password field due to incomplete migration from the vulnerable cleanUpString method to toRawString. Attackers with RemoteRelays station permission can inject neste...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100856/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-100856 - High (8.8)
AzuraCast before 0.23.6 contains a code injection vulnerability in the remote relay password field due to incomplete migration from the vulnerable cleanUpString method to toRawString. Attackers with RemoteRelays station permission can inject neste...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100856/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-27T03:31:13
2 posts
🟠 CVE-2026-100864 - High (8.8)
heym before 0.0.91 contains a sandbox escape vulnerability in the expression engine's DotList map/filter and fallback resolver that allows authenticated users to execute arbitrary Python code. Attackers can craft workflow expressions using dunder ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100864/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-100864 - High (8.8)
heym before 0.0.91 contains a sandbox escape vulnerability in the expression engine's DotList map/filter and fallback resolver that allows authenticated users to execute arbitrary Python code. Attackers can craft workflow expressions using dunder ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100864/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-27T03:31:12
2 posts
CVE-2026-100721: CRITICAL auth bypass in vm2 <3.12.2's NodeVM external-module resolver. Sandbox escape & arbitrary code exec possible. Upgrade to 3.12.2+ ASAP. https://radar.offseq.com/threat/vm2-before-3122-contains-an-authorization-bypass-in-the-nodevm-external-module-resolver-cve-2026-100721-5c70167d00dbbf82 #OffSeq #CVE2026100721 #vm2 #infosec
##CVE-2026-100721: CRITICAL auth bypass in vm2 <3.12.2's NodeVM external-module resolver. Sandbox escape & arbitrary code exec possible. Upgrade to 3.12.2+ ASAP. https://radar.offseq.com/threat/vm2-before-3122-contains-an-authorization-bypass-in-the-nodevm-external-module-resolver-cve-2026-100721-5c70167d00dbbf82 #OffSeq #CVE2026100721 #vm2 #infosec
##updated 2026-09-27T03:31:12
2 posts
🟠 CVE-2026-100838 - High (8.1)
Contrast is a confidential-computing runtime for Kubernetes. In versions before 1.19.1, the Kata agent policies generated by the Contrast CLI contained a flaw in the CopyFile verification that allowed arbitrary writes to the guest root filesystem....
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100838/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-100838 - High (8.1)
Contrast is a confidential-computing runtime for Kubernetes. In versions before 1.19.1, the Kata agent policies generated by the Contrast CLI contained a flaw in the CopyFile verification that allowed arbitrary writes to the guest root filesystem....
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100838/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-27T03:31:12
2 posts
🟠 CVE-2026-100852 - High (8.8)
AzuraCast through 0.23.x contains a command injection vulnerability in the Liquidsoap config generation for live recording that fails to quote the streamer username in process.run calls. Authenticated station users with Streamers and Profile permi...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100852/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-100852 - High (8.8)
AzuraCast through 0.23.x contains a command injection vulnerability in the Liquidsoap config generation for live recording that fails to quote the streamer username in process.run calls. Authenticated station users with Streamers and Profile permi...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100852/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-27T03:31:12
4 posts
1 repos
🔴 CVE-2026-100740 - Critical (9.9)
A vulnerability was detected in D-Link DIR-895L A1_102b07. Impacted is the function tunnel_set_params of the file tunnel.c of the component L2TP Control Channel Parser. Performing a manipulation results in out-of-bounds write. The attack may be in...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100740/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##D-Link DIR-895L hit by CRITICAL vuln: CVE-2026-100740 (CVSS 9.4) in tunnel_set_params — public exploit code enables remote RCE or DoS via out-of-bounds write. No patch yet. Monitor for updates: https://radar.offseq.com/threat/cve-2026-100740-out-of-bounds-write-in-d-link-dir-895l-73af9e0aee6421f0 #OffSeq #CVE2026100740 #infosec #RouterSecurity
##🔴 CVE-2026-100740 - Critical (9.9)
A vulnerability was detected in D-Link DIR-895L A1_102b07. Impacted is the function tunnel_set_params of the file tunnel.c of the component L2TP Control Channel Parser. Performing a manipulation results in out-of-bounds write. The attack may be in...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100740/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##D-Link DIR-895L hit by CRITICAL vuln: CVE-2026-100740 (CVSS 9.4) in tunnel_set_params — public exploit code enables remote RCE or DoS via out-of-bounds write. No patch yet. Monitor for updates: https://radar.offseq.com/threat/cve-2026-100740-out-of-bounds-write-in-d-link-dir-895l-73af9e0aee6421f0 #OffSeq #CVE2026100740 #infosec #RouterSecurity
##updated 2026-09-27T03:31:05
2 posts
🟠 CVE-2026-100845 - High (7.8)
MONAI before 1.6.0 contains an unsafe deserialization vulnerability in the NumpyReader class that unconditionally uses numpy.load with allow_pickle=True when loading .npy and .npz files. Attackers can craft malicious .npy files with pickle payload...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100845/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-100845 - High (7.8)
MONAI before 1.6.0 contains an unsafe deserialization vulnerability in the NumpyReader class that unconditionally uses numpy.load with allow_pickle=True when loading .npy and .npz files. Attackers can craft malicious .npy files with pickle payload...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100845/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-27T02:17:24.007000
2 posts
🟠 CVE-2026-100850 - High (7.7)
AzuraCast before 0.23.8 contains a server-side request forgery and local file read vulnerability in the AutoDJ remote playlist fetch (backend/src/Radio/AutoDJ/QueueBuilder.php, getMediaFromRemoteUrl()). A user with the station Media permission can...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100850/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-100850 - High (7.7)
AzuraCast before 0.23.8 contains a server-side request forgery and local file read vulnerability in the AutoDJ remote playlist fetch (backend/src/Radio/AutoDJ/QueueBuilder.php, getMediaFromRemoteUrl()). A user with the station Media permission can...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100850/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-27T02:17:23.283000
2 posts
🟠 CVE-2026-100846 - High (7.6)
MONAI before 1.5.2 contains a deserialization of untrusted data vulnerability in the algo_from_pickle function in monai/auto3dseg/utils.py. The function reads a .pkl file and passes its contents to pickle.loads without validating the data source o...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100846/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-100846 - High (7.6)
MONAI before 1.5.2 contains a deserialization of untrusted data vulnerability in the algo_from_pickle function in monai/auto3dseg/utils.py. The function reads a .pkl file and passes its contents to pickle.loads without validating the data source o...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100846/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-27T02:17:22.230000
2 posts
🟠 CVE-2026-100839 - High (8.4)
Contrast is a confidential-computing runtime for Kubernetes. In versions before 1.18.0, the guest kernel's ACPI/AML handling is vulnerable to an AML injection attack ("BadAML"). ACPI tables containing AML bytecode are passed from the untrusted hos...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100839/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-100839 - High (8.4)
Contrast is a confidential-computing runtime for Kubernetes. In versions before 1.18.0, the guest kernel's ACPI/AML handling is vulnerable to an AML injection attack ("BadAML"). ACPI tables containing AML bytecode are passed from the untrusted hos...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100839/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-27T02:17:21.640000
2 posts
1 repos
CVE-2026-100835: Contrast <1.16.0 faces CRITICAL remote attestation relay attacks. Any valid TEE attestation report is accepted, risking trust bypass. Upgrade ASAP. https://radar.offseq.com/threat/contrast-before-1160-is-susceptible-to-remote-attestation-relay-attacks-cve-2026-100835-3833ee713219f7e3 #OffSeq #CVE2026100835 #infosec #security
##CVE-2026-100835: Contrast <1.16.0 faces CRITICAL remote attestation relay attacks. Any valid TEE attestation report is accepted, risking trust bypass. Upgrade ASAP. https://radar.offseq.com/threat/contrast-before-1160-is-susceptible-to-remote-attestation-relay-attacks-cve-2026-100835-3833ee713219f7e3 #OffSeq #CVE2026100835 #infosec #security
##updated 2026-09-26T23:16:41.497000
1 posts
CVE-2026-96533: HIGH severity SSRF in Testimonials Widget (<=4.0.4). Unauthenticated users can make the server fetch internal URLs, exposing responses 🛡️. Disable or restrict plugin until patched. https://radar.offseq.com/threat/cve-2026-96533-cwe-918-server-side-request-forgery-ssrf-in-testimonials-widget-de6ac216205e8c74 #OffSeq #WordPress #SSRF #Infosec
##updated 2026-09-26T23:16:35.700000
1 posts
🟠 CVE-2026-77203 - High (8.8)
The Groups – Memberships and Access Control plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 4.6.0. This is due to the groups_join() function deriving group-join eligibility from the ambient post's...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77203/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T23:16:32.930000
2 posts
🟠 CVE-2026-100709 - High (7.5)
Froxlor through 2.3.10 stores only a numeric user ID in remembered-2FA tokens (panel_2fa_tokens) without recording the account namespace, and the remembered-token lookup during login is not constrained to the customer or administrator account type...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100709/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-100709 - High (7.5)
Froxlor through 2.3.10 stores only a numeric user ID in remembered-2FA tokens (panel_2fa_tokens) without recording the account namespace, and the remembered-token lookup during login is not constrained to the customer or administrator account type...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100709/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T21:30:34
3 posts
1 repos
🚨 New security advisory:
CVE-2026-82901 affects multiple systems.
• Impact: Remote code execution or complete system compromise possible
• Risk: Attackers can gain full control of affected systems
• Mitigation: Patch immediately or isolate affected systems
Full breakdown:
https://www.yazoul.net/advisory/cve/cve-2026-82901-contact-form-7-addons-unauth-rce-poc
by Yazoul AI
##CVE-2026-82901: CRITICAL (CVSS 9.8) file upload vuln in Ultra Addons for Contact Form 7 (≤3.5.50). RCE risk if PDF Generator enabled (off by default). Disable/monitor plugin & watch for patches. https://radar.offseq.com/threat/cve-2026-82901-cwe-434-unrestricted-upload-of-file-with-dangerous-type-in-themefic-ultra-addons-for-77a59cd90a3fbad1 #OffSeq #WordPress #Infosec #Vulnerability
##🔴 CVE-2026-82901 - Critical (9.8)
The Ultra Addons for Contact Form 7 plugin for WordPress is vulnerable to Arbitrary File Upload due to insufficient file type validation in the 'uacf7_wpcf7_mail_components' function in all versions up to, and including, 3.5.50. This makes it poss...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-82901/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T18:31:08
3 posts
CVE-2026-85984: CRITICAL auth bypass in miniOrange OTP Login plugin ≤5.5.5. Attackers can log in as admin with just a username if certain options are enabled. Disable risky settings and check vendor guidance. https://radar.offseq.com/threat/cve-2026-85984-cwe-287-improper-authentication-in-cyberlord92-miniorange-otp-login-verification-and-5c3999015784c4c9 #OffSeq #WordPress #CVE202685984
##CVE-2026-85984: CRITICAL auth bypass in miniOrange OTP Login plugin ≤5.5.5. Attackers can log in as admin with just a username if certain options are enabled. Disable risky settings and check vendor guidance. https://radar.offseq.com/threat/cve-2026-85984-cwe-287-improper-authentication-in-cyberlord92-miniorange-otp-login-verification-and-5c3999015784c4c9 #OffSeq #WordPress #CVE202685984
##🔴 CVE-2026-85984 - Critical (9.8)
The miniOrange OTP Login, Verification and SMS Notifications plugin for WordPress is vulnerable to Authentication Bypass via the mo_wp_login_intent parameter in all versions up to, and including, 5.5.5. This is due to a missing password-intent gua...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-85984/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T15:31:32
1 posts
2 repos
🔴 New security advisory:
CVE-2026-97163 affects multiple systems.
• Impact: Remote code execution or complete system compromise possible
• Risk: Attackers can gain full control of affected systems
• Mitigation: Patch immediately or isolate affected systems
Full breakdown:
https://www.yazoul.net/advisory/cve/cve-2026-97163-joomla-up-plugin-rce-patch-now-poc
by Yazoul AI
##updated 2026-09-26T15:31:32
1 posts
🟠 CVE-2026-100720 - High (8.7)
Froxlor 2.0.0 through 2.3.10 is vulnerable to stored cross-site scripting. When a customer (the lowest-privileged authenticated role) uploads an SSL certificate for one of their own domains, the Certificates API add()/update() methods parse it wit...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100720/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T15:31:28
2 posts
🟠 CVE-2026-100705 - High (7.6)
Kyverno before 1.19.1 is vulnerable to server-side request forgery. The default egress blocklist (169.254.169.254, 169.254.169.253, metadata.google.internal, 127.0.0.0/8, ::1/128) and the scoped-token control were wired only into the new CEL http....
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100705/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-100705 - High (7.6)
Kyverno before 1.19.1 is vulnerable to server-side request forgery. The default egress blocklist (169.254.169.254, 169.254.169.253, metadata.google.internal, 127.0.0.0/8, ::1/128) and the scoped-token control were wired only into the new CEL http....
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100705/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T15:31:28
2 posts
🟠 CVE-2026-100711 - High (7.5)
froxlor versions before 2.3.12 fail to invalidate existing panel sessions, API keys, and 2FA trust cookies when a user password is changed. Attackers holding hijacked sessions, valid API keys, or 2FA trust tokens retain full account access after p...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100711/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-100711 - High (7.5)
froxlor versions before 2.3.12 fail to invalidate existing panel sessions, API keys, and 2FA trust cookies when a user password is changed. Attackers holding hijacked sessions, valid API keys, or 2FA trust tokens retain full account access after p...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100711/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T15:31:28
2 posts
🔴 CVE-2026-100717 - Critical (9.9)
froxlor is a server administration panel. In versions 2.3.10 and earlier, Validate::validateUrl rejects carriage return and line feed characters only in the path, query and fragment components returned by parse_url, and never inspects the userinfo...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100717/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-100717 - Critical (9.9)
froxlor is a server administration panel. In versions 2.3.10 and earlier, Validate::validateUrl rejects carriage return and line feed characters only in the path, query and fragment components returned by parse_url, and never inspects the userinfo...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100717/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T15:31:28
2 posts
🔴 CVE-2026-100716 - Critical (9.9)
Froxlor is a server administration panel. In versions 2.3.10 and earlier, the customer data-export (DataDump) cron fails to validate intermediate path components of the export destination: Froxlor\FileDir::makeCorrectDir() contains an off-by-one i...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100716/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-100716 - Critical (9.9)
Froxlor is a server administration panel. In versions 2.3.10 and earlier, the customer data-export (DataDump) cron fails to validate intermediate path components of the export destination: Froxlor\FileDir::makeCorrectDir() contains an off-by-one i...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100716/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T15:31:28
1 posts
🟠 CVE-2026-100713 - High (7.8)
Froxlor 2.3.10 and earlier contain a time-of-check time-of-use (TOCTOU) race condition in the SSH key synchronization cron (lib/Froxlor/Cron/System/SshKeys.php, SshKeys::generateFiles). The containment/symlink validation performed by FileDir::make...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100713/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T15:31:27
2 posts
🟠 CVE-2026-100672 - High (7.5)
The Comments plugin (getgrav/grav-plugin-comments) for Grav CMS through version 1.2.10 registers an admin handler that returns comment data as JSON without any authentication check. The handler branches on isAdmin(), which only indicates that the ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100672/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-100672 - High (7.5)
The Comments plugin (getgrav/grav-plugin-comments) for Grav CMS through version 1.2.10 registers an admin handler that returns comment data as JSON without any authentication check. The handler branches on isAdmin(), which only indicates that the ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100672/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T15:31:27
2 posts
🟠 CVE-2026-100676 - High (8.2)
January, the media proxy/embed service of stoatchat (stoatchat/stoatchat), before version 0.15.5 improperly resolves SVG values as local filesystem paths when a fetched resource is served as image/svg+xml. An unauthenticated remote attacker who c...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100676/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-100676 - High (8.2)
January, the media proxy/embed service of stoatchat (stoatchat/stoatchat), before version 0.15.5 improperly resolves SVG values as local filesystem paths when a fetched resource is served as image/svg+xml. An unauthenticated remote attacker who c...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100676/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T15:31:27
2 posts
🟠 CVE-2026-100673 - High (8.2)
The Grav Data Manager plugin (getgrav/grav-plugin-datamanager) versions 1.0.1 through 1.4.4 render stored data entries in the item-detail view (admin/templates/partials/item.html.twig) without escaping, applying Twig's `raw` filter — in some cas...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100673/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-100673 - High (8.2)
The Grav Data Manager plugin (getgrav/grav-plugin-datamanager) versions 1.0.1 through 1.4.4 render stored data entries in the item-detail view (admin/templates/partials/item.html.twig) without escaping, applying Twig's `raw` filter — in some cas...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100673/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T15:31:27
2 posts
🟠 CVE-2026-100685 - High (7.7)
Budibase before 3.45.0 fails to properly scope the GET /api/chat-links endpoint by workspace, allowing builders to enumerate chat identity link records across all workspaces in a tenant. Attackers with builder access to a single workspace can retr...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100685/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-100685 - High (7.7)
Budibase before 3.45.0 fails to properly scope the GET /api/chat-links endpoint by workspace, allowing builders to enumerate chat identity link records across all workspaces in a tenant. Attackers with builder access to a single workspace can retr...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100685/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T15:31:27
2 posts
🟠 CVE-2026-100683 - High (8)
Budibase (@budibase/server) before 3.45.0 builds MySQL and MSSQL column-rename DDL in packages/backend-core/src/sql/sqlTable.ts by interpolating identifiers directly into a raw query string (backtick-quoted for MySQL, a single-quoted sp_rename lit...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100683/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-100683 - High (8)
Budibase (@budibase/server) before 3.45.0 builds MySQL and MSSQL column-rename DDL in packages/backend-core/src/sql/sqlTable.ts by interpolating identifiers directly into a raw query string (backtick-quoted for MySQL, a single-quoted sp_rename lit...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100683/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T15:31:27
2 posts
🟠 CVE-2026-100682 - High (8.8)
Budibase Server before 3.45.0 contains an arbitrary file write vulnerability in the PWA icon upload endpoint that extracts user-supplied ZIP archives without proper symlink validation. Attackers with BUILDER role can craft a malicious ZIP with lea...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100682/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-100682 - High (8.8)
Budibase Server before 3.45.0 contains an arbitrary file write vulnerability in the PWA icon upload endpoint that extracts user-supplied ZIP archives without proper symlink validation. Attackers with BUILDER role can craft a malicious ZIP with lea...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100682/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T15:31:27
2 posts
🟠 CVE-2026-100690 - High (7.5)
Hugo versions from v0.161.0 through v0.165.0 run Node.js tools (css.PostCSS, css.TailwindCSS, js.Babel) under the Node.js permission model to restrict file system reads to the project directory and configured mounts. Because the Node.js permission...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100690/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-100690 - High (7.5)
Hugo versions from v0.161.0 through v0.165.0 run Node.js tools (css.PostCSS, css.TailwindCSS, js.Babel) under the Node.js permission model to restrict file system reads to the project directory and configured mounts. Because the Node.js permission...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100690/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T15:31:27
2 posts
🟠 CVE-2026-100686 - High (8.1)
Budibase versions before 3.45.0 fail to validate per-app authorization in the POST /api/global/groups/:groupId/apps endpoint, allowing builders to assign application roles across workspace boundaries. A builder of a single workspace can exploit mi...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100686/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-100686 - High (8.1)
Budibase versions before 3.45.0 fail to validate per-app authorization in the POST /api/global/groups/:groupId/apps endpoint, allowing builders to assign application roles across workspace boundaries. A builder of a single workspace can exploit mi...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100686/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T15:31:27
2 posts
🟠 CVE-2026-100697 - High (8.6)
Adminer 6.0.0 through 6.0.1, when the official ClickHouse driver plugin (plugins/drivers/clickhouse.php, rewritten in 6.0.0) is loaded, is vulnerable to pre-authentication server-side request forgery. An unauthenticated attacker can submit auth[dr...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100697/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-100697 - High (8.6)
Adminer 6.0.0 through 6.0.1, when the official ClickHouse driver plugin (plugins/drivers/clickhouse.php, rewritten in 6.0.0) is loaded, is vulnerable to pre-authentication server-side request forgery. An unauthenticated attacker can submit auth[dr...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100697/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T15:31:27
2 posts
🔴 CVE-2026-100706 - Critical (9.9)
kyverno before 1.19.1 fails to properly validate URL-encoded path segments in Policy apiCall urlPath, allowing namespace tenants to bypass the per-namespace clamp and create objects in other namespaces as the admission-controller ServiceAccount. A...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100706/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🔴 CVE-2026-100706 - Critical (9.9)
kyverno before 1.19.1 fails to properly validate URL-encoded path segments in Policy apiCall urlPath, allowing namespace tenants to bypass the per-namespace clamp and create objects in other namespaces as the admission-controller ServiceAccount. A...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100706/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T15:31:27
2 posts
🟠 CVE-2026-100703 - High (7.7)
Kyverno 1.16.0 through 1.19.0 registers the globalcontext.Lib CEL library in its policy environment without confining it to the policy's namespace, unlike the sibling libraries (resource.Lib, http.Lib, configMap loader) which are handed the policy...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100703/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-100703 - High (7.7)
Kyverno 1.16.0 through 1.19.0 registers the globalcontext.Lib CEL library in its policy environment without confining it to the policy's namespace, unlike the sibling libraries (resource.Lib, http.Lib, configMap loader) which are handed the policy...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100703/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T15:31:27
1 posts
🔴 CVE-2026-100714 - Critical (9.1)
Froxlor before 2.3.12 does not restrict or escape the system.letsencryptchallengepath setting: unlike sibling settings hardened in GHSA-33mp, the field has no string_regexp or required_otp guard, and its value is concatenated unescaped into the ac...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100714/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T15:31:26
2 posts
🟠 CVE-2026-100670 - High (8.8)
Grav CMS 2.0.14 through 2.0.24 contains a privilege escalation vulnerability in the group and account blueprints. The access map is gated by a `security@: admin.super` guard that is resolved by the field's exact path, so a submitted flat dot-notat...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100670/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-100670 - High (8.8)
Grav CMS 2.0.14 through 2.0.24 contains a privilege escalation vulnerability in the group and account blueprints. The access map is gated by a `security@: admin.super` guard that is resolved by the field's exact path, so a submitted flat dot-notat...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100670/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T15:31:26
2 posts
🟠 CVE-2026-100669 - High (7.5)
Grav before 2.0.25 ships web server configuration samples whose access-control deny rules are matched case-sensitively. In webserver-configs/web.config (IIS), every deny rule (user_sensitive_folders, user_accounts, user_data, user_error_redirect, ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100669/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-100669 - High (7.5)
Grav before 2.0.25 ships web server configuration samples whose access-control deny rules are matched case-sensitively. In webserver-configs/web.config (IIS), every deny rule (user_sensitive_folders, user_accounts, user_data, user_error_redirect, ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100669/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T15:31:24
2 posts
🟠 CVE-2026-100700 - High (7.5)
nodemailer before 10.0.6 contains a denial of service vulnerability in the addressparser free-text fallback regex pattern that exhibits quadratic backtracking behavior. Attackers can supply crafted email header values with long whitespace-free run...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100700/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-100700 - High (7.5)
nodemailer before 10.0.6 contains a denial of service vulnerability in the addressparser free-text fallback regex pattern that exhibits quadratic backtracking behavior. Attackers can supply crafted email header values with long whitespace-free run...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100700/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T15:31:23
2 posts
🟠 CVE-2026-100661 - High (7.5)
Netty's HTTP/3 codec (io.netty:netty-codec-http3) versions 4.2.0.Final through 4.2.17.Final contain a denial-of-service vulnerability in the QPACK prefixed-integer decoder (QpackUtil.decodePrefixedInteger), which does not bound the number of conti...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100661/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-100661 - High (7.5)
Netty's HTTP/3 codec (io.netty:netty-codec-http3) versions 4.2.0.Final through 4.2.17.Final contain a denial-of-service vulnerability in the QPACK prefixed-integer decoder (QpackUtil.decodePrefixedInteger), which does not bound the number of conti...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100661/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T15:31:23
2 posts
🟠 CVE-2026-100692 - High (7.5)
Hugo is a static site generator. In versions after v0.123.0 and before v0.166.0, Hugo's symlink confinement checks stopped at the mount root itself, so a theme or module checked into themes/ (or a vendored module) could contain a symlink at a moun...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100692/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-100692 - High (7.5)
Hugo is a static site generator. In versions after v0.123.0 and before v0.166.0, Hugo's symlink confinement checks stopped at the mount root itself, so a theme or module checked into themes/ (or a vendored module) could contain a symlink at a moun...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100692/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T15:31:23
2 posts
🟠 CVE-2026-100693 - High (8.4)
Hugo versions from v0.162.0 before v0.166.0 contain a case-sensitive validation flaw in the security.http.urls IP-literal deny rule that allows attackers to bypass restrictions. Attackers can use mixed-case URL schemes in resources.GetRemote calls...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100693/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-100693 - High (8.4)
Hugo versions from v0.162.0 before v0.166.0 contain a case-sensitive validation flaw in the security.http.urls IP-literal deny rule that allows attackers to bypass restrictions. Attackers can use mixed-case URL schemes in resources.GetRemote calls...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100693/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T14:16:57.537000
1 posts
🔴 CVE-2026-100715 - Critical (9.6)
Froxlor through 2.3.10 is vulnerable to arbitrary file deletion via symlink following in the FTP data deletion cron task. Cron task 8 (deleteFtpData), queued when an FTP account is deleted, calls FileDir::makeCorrectDir() without the $fixed_homedi...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100715/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T14:16:55.983000
2 posts
🟠 CVE-2026-100707 - High (7.7)
Kyverno before 1.19.1 contains a namespace isolation bypass in the apiCall context entry of namespaced Policy resources due to inconsistent path interpretation between validation and execution. A low-privilege tenant can use percent-encoded dot-se...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100707/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-100707 - High (7.7)
Kyverno before 1.19.1 contains a namespace isolation bypass in the apiCall context entry of namespaced Policy resources due to inconsistent path interpretation between validation and execution. A low-privilege tenant can use percent-encoded dot-se...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100707/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T14:16:55.563000
2 posts
🟠 CVE-2026-100704 - High (7.7)
Kyverno is a policy engine for Kubernetes. In versions 1.14.0 through 1.19.0, the ImageValidatingPolicy (policies.kyverno.io/v1beta1) evaluator never reads the spec.images and spec.allowedValues fields of a PolicyException. Any PolicyException who...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100704/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-100704 - High (7.7)
Kyverno is a policy engine for Kubernetes. In versions 1.14.0 through 1.19.0, the ImageValidatingPolicy (policies.kyverno.io/v1beta1) evaluator never reads the spec.images and spec.allowedValues fields of a PolicyException. Any PolicyException who...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100704/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T14:16:52.720000
2 posts
🟠 CVE-2026-100684 - High (8.1)
Budibase versions 3.41.0 before 3.45.0 contain an authentication bypass in the OIDC/SSO login path of @budibase/server. In sso.authenticate, when no existing user matches the incoming SSO subject, the server looks up pending user invites by the Id...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100684/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-100684 - High (8.1)
Budibase versions 3.41.0 before 3.45.0 contain an authentication bypass in the OIDC/SSO login path of @budibase/server. In sso.authenticate, when no existing user matches the incoming SSO subject, the server looks up pending user invites by the Id...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100684/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T14:16:52.150000
2 posts
🟠 CVE-2026-100680 - High (8.1)
Budibase versions before 3.45.0 fail to disable external JSON reference resolution in the OpenAPI/Swagger import validator, allowing authenticated builders to read arbitrary local files. Attackers with builder access can embed file:// references i...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100680/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-100680 - High (8.1)
Budibase versions before 3.45.0 fail to disable external JSON reference resolution in the OpenAPI/Swagger import validator, allowing authenticated builders to read arbitrary local files. Attackers with builder access can embed file:// references i...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100680/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T14:16:51.993000
2 posts
🟠 CVE-2026-100679 - High (8.8)
stoatchat before 0.15.5 fails to validate that MFA tickets belong to the authenticated user, allowing attackers to bypass MFA by using their own valid ticket with another user's session token. Attackers can obtain a ticket from their own account a...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100679/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-100679 - High (8.8)
stoatchat before 0.15.5 fails to validate that MFA tickets belong to the authenticated user, allowing attackers to bypass MFA by using their own valid ticket with another user's session token. Attackers can obtain a ticket from their own account a...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100679/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T14:16:50.860000
2 posts
🟠 CVE-2026-100671 - High (8)
Grav is a flat-file CMS. In versions 2.0.19 through 2.0.24 — and in 2.0.0 through 2.0.18 and 1.7.x only where content Twig has been explicitly enabled — page content authored by a user holding only page-write permission is rendered through a T...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100671/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-100671 - High (8)
Grav is a flat-file CMS. In versions 2.0.19 through 2.0.24 — and in 2.0.0 through 2.0.18 and 1.7.x only where content Twig has been explicitly enabled — page content authored by a user holding only page-write permission is rendered through a T...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100671/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T09:30:26
2 posts
1 repos
🔴 CVE-2026-18143 - Critical (9.8)
The Request a Quote for WooCommerce plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 2.9.2 via the `afrfq_submit_quote_via_popup()` function. This is due to missing file extension and MIME type vali...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-18143/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-18143 | CRITICAL unrestricted file upload in Addify Request a Quote for WooCommerce (<=2.9.2). Unauth attackers can achieve RCE. Disable public quote rule/multi-page popup or restrict uploads. https://radar.offseq.com/threat/cve-2026-18143-cwe-434-unrestricted-upload-of-file-with-dangerous-type-in-addify-request-a-quote-for-1e9c37910ddb8c12 #OffSeq #WordPress #Vuln #RCE
##updated 2026-09-26T04:17:51.307000
1 posts
🟠 CVE-2026-91840 - High (7.8)
A flaw was found in NetworkManager-vpnc. This vulnerability allows a local unprivileged user to escalate privileges to root. By injecting a newline character into the VPN username field, an attacker can manipulate the vpnc configuration to execute...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-91840/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T03:30:36
1 posts
🟠 CVE-2026-100596 - High (8.8)
OpenClaw versions before 2026.7.1 fail to properly authorize non-owner users executing MCP configuration changes through /mcp set and /mcp unset commands. Attackers can persist arbitrary stdio MCP commands that execute with OpenClaw process privil...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100596/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T03:30:35
1 posts
🟠 CVE-2026-100560 - High (7.5)
OpenClaw versions before 2026.8.1 contain an authorization bypass vulnerability where Allow Always approvals for exact commands persist as path-only grants on macOS and Linux. Attackers can reuse the same executable with different arguments to exe...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100560/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T03:30:35
1 posts
🟠 CVE-2026-100568 - High (8.3)
OpenClaw versions before 2026.8.1 fail to properly restrict access to operator command cron jobs, allowing model-visible agent callers to read and execute ownerless command jobs. Attackers can inspect stored environment variables and force-run dis...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100568/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T03:30:35
1 posts
🟠 CVE-2026-100567 - High (8.2)
OpenClaw is an agent gateway distributed as the npm package 'openclaw'. In versions >= 2026.4.5 and < 2026.8.1, the Gateway validated a single DNS resolution result for a configured remote Chrome DevTools Protocol (CDP) hostname, but the raw We...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100567/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T03:30:35
1 posts
🟠 CVE-2026-100580 - High (8.8)
OpenClaw (npm package 'openclaw') before 2026.7.1 improperly handles case sensitivity in the model-facing cron tool: a mixed-case payload kind can pass the agent-facing shell-execution guard and later normalize into a command job. An actor able to...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100580/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T03:30:35
1 posts
🟠 CVE-2026-100579 - High (7.6)
OpenClaw (npm package 'openclaw') before 2026.7.1 incorrectly trusts requester provenance in message.action. In identity-bearing Gateway deployments (authentication modes that honor caller identity and narrower operator scopes), a write-scoped cal...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100579/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T03:30:35
1 posts
🟠 CVE-2026-100578 - High (7.6)
OpenClaw (npm package `openclaw`) before 2026.7.1 fails to restrict owner-only infrastructure tools exposed through the chat.send endpoint. In Gateway deployments using authentication modes that honor caller identity and narrower operator scopes, ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100578/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T03:30:35
1 posts
🟠 CVE-2026-100585 - High (8)
OpenClaw (npm package `openclaw`) before 2026.7.1 fails to enforce the owner-only authorization requirement for Claude Code permission prompts delivered through the MCP channel bridge. An authorized non-owner channel sender with channel command ac...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100585/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T03:30:35
1 posts
CVE-2026-100582 (HIGH): openclaw msteams <2026.8.1 has a missing authorization flaw — low-trust users can bypass channel read allowlists and access restricted data. Patch to 2026.8.1 ASAP. https://radar.offseq.com/threat/cve-2026-100582-missing-authorization-in-openclaw-msteams-98e504ab6e11afa6 #OffSeq #Vuln #OpenClaw #Security
##updated 2026-09-26T03:30:34
1 posts
🟠 CVE-2026-100559 - High (8)
OpenClaw versions before 2026.8.1 contain a command parser vulnerability where escaped newlines confuse exec allowlist parsing, allowing hidden commands to execute. Attackers can craft input with escaped newlines to bypass allowlist validation and...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100559/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T03:30:34
1 posts
🟠 CVE-2026-100557 - High (8.3)
OpenClaw versions before 2026.8.1 contain an authorization bypass vulnerability in skill tool dispatch that fails to carry the sender's owner status. Non-owner senders authorized to invoke skill commands can access owner-only tools and server cred...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100557/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T03:30:29
1 posts
🟠 CVE-2026-100589 - High (8.3)
OpenClaw versions before 2026.7.1 contain a sandbox bypass vulnerability in the browser tool that allows sandboxed sessions to access paired node browser actions despite allowHostControl=false configuration. Attackers with control over sandboxed a...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100589/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T03:30:28
1 posts
🟠 CVE-2026-100532 - High (8.1)
@OpenClaw/whatsapp (npm) before 2026.8.1 exposes the WhatsApp login tool through the generic channel-tool path without preserving the originating sender's owner status, so the owner-only tool boundary is not enforced. An admitted non-owner sender ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100532/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T03:30:28
1 posts
🟠 CVE-2026-100535 - High (7.5)
OpenClaw (npm package 'openclaw') versions >= 2026.4.5 and < 2026.8.1 can lose the originating requester's restrictions and untrusted provenance when session-derived text is persisted to session memory. In deployments where session-memory ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100535/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T03:30:28
1 posts
🟠 CVE-2026-100588 - High (8.3)
OpenClaw (npm package 'openclaw') before 2026.7.1 does not enforce the administrator scope requirement on browser control when it is reached through the node.invoke method, although direct browser.request access requires administrator scope. In Ga...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100588/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T03:30:28
1 posts
🟠 CVE-2026-100587 - High (8.8)
OpenClaw versions before 2026.7.1 fail to properly validate owner authorization in the Codex computer-use installation command. Non-owner channel senders can install arbitrary plugins and execute MCP processes with OpenClaw user privileges, affect...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100587/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T03:30:28
1 posts
🟠 CVE-2026-100599 - High (8.8)
OpenClaw versions 2026.5.1 through 2026.7.0 fail to apply the configured exec approval path to Google Meet node commands. The googlemeet.chrome command accepts caller-supplied audio command arrays and executes them on a paired node without going t...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100599/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T03:30:25
1 posts
🟠 CVE-2026-100543 - High (7.5)
OpenClaw (npm package openclaw) before 2026.8.1 could include deterministic hashes computed over the original, unredacted configuration in redacted configuration responses. When the Gateway password had low entropy and the remaining configuration ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100543/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T03:30:25
1 posts
🟠 CVE-2026-100552 - High (8.8)
OpenClaw (npm package 'openclaw') before 2026.8.1 does not correctly enforce per-chat tool policies for Codex app-server runtime tools. A conversation-level tools.allow rule filtered OpenClaw tools but did not restrict the shell, process, file, an...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100552/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T03:30:25
2 posts
🟠 CVE-2026-100551 - High (8.3)
OpenClaw for iOS versions >= 2026.7.1 and < 2026.8.11 do not enforce saved Gateway TLS pins in the Control UI. While native connections enforced the saved Gateway fingerprint, the authenticated Terminal and session Dashboard WebViews omitted it...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100551/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-100551: OpenClaw for iOS (>=2026.7.1, <2026.8.11) has a CRITICAL vuln in Control UI WebViews — TLS pins not enforced. Attackers can steal Gateway creds if they can redirect traffic. Patch to 2026.8.11 ASAP! https://radar.offseq.com/threat/openclaw-for-ios-versions-202671-and-2026811-do-not-enforce-saved-gateway-tls-pins-in-the-control-ui-5ff1fd58a7f58c18 #OffSeq #Vulnerability #iOS #AppSec
##updated 2026-09-26T03:30:23
1 posts
🟠 CVE-2026-100520 - High (8.8)
Laranode versions before 1.2.1 contain a path traversal vulnerability in the POST /filemanager/upload-file endpoint that allows authenticated users to write arbitrary files outside their home directory. Attackers can supply directory traversal seq...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100520/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T03:17:08.337000
1 posts
🟠 CVE-2026-100597 - High (7.8)
OpenClaw (npm package 'openclaw') before 2026.7.1 is vulnerable to a time-of-check time-of-use race condition in OpenShell local mirror filesystem mutation operations. The remove, mkdir, and rename operations could act on a different filesystem ta...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100597/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T03:17:06.660000
1 posts
🟠 CVE-2026-100586 - High (8.8)
OpenClaw Codex before 2026.7.1 fails to properly enforce owner authorization when creating native conversation bindings. Non-owner channel senders with command access can create bindings to the native Codex runtime and execute host-capable turns w...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100586/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T03:17:05.030000
2 posts
🟠 CVE-2026-100575 - High (8.8)
OpenClaw Slack versions before 2026.8.1 fail to properly enforce sender allowlists in multi-person direct messages. Disallowed participants can trigger Slack agents and access tools and data granted to those agents by bypassing configured sender p...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100575/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##CVE-2026-100575 | HIGH severity | OpenClaw Slack (<2026.8.1): Missing authorization in multi-person DMs lets unauthorized users trigger Slack agents and access restricted tools/data. Patch to 2026.8.1+ now. https://radar.offseq.com/threat/cve-2026-100575-missing-authorization-in-openclaw-slack-2a3447a3c9192e9f #OffSeq #Vuln #Infosec #Slack
##updated 2026-09-26T03:17:04.177000
1 posts
🟠 CVE-2026-100570 - High (7.8)
OpenClaw (npm package 'openclaw') versions >= 2026.3.28 and < 2026.8.1 allow an untrusted workspace .env file to set the CLOUDSDK_PYTHON_ARGS environment variable. When an operator starts OpenClaw in attacker-controlled workspace content and th...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100570/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T03:17:02.987000
1 posts
🟠 CVE-2026-100561 - High (8)
OpenClaw (npm package 'openclaw') versions >= 2026.3.22 and < 2026.8.1 contain an approval-bypass flaw in the exec approval policy: the policy could trust a command-running wrapper without inspecting the command carried in its arguments. After ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100561/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T03:17:02.533000
1 posts
🟠 CVE-2026-100558 - High (7.5)
OpenClaw versions before 2026.8.1 contain a resource exhaustion vulnerability in the Gateway listener that allows unauthenticated clients to retain response sockets by sending WebSocket upgrade requests without matching connection semantics. Attac...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100558/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T03:17:00.440000
1 posts
🟠 CVE-2026-100544 - High (8.8)
openclaw's @OpenClaw/voice-call package before 2026.8.1 launches the configured agent for classic inbound voice calls without propagating the caller's identity or non-owner status. As a result, owner-only tool filtering can fail open and expose th...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100544/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T03:16:59.987000
1 posts
🟠 CVE-2026-100541 - High (7.5)
OpenClaw's Matrix integration (npm package @OpenClaw/matrix) versions >= 2026.2.2 and < 2026.8.1 lowercase complete Matrix user IDs — including historical localparts and the case-sensitive server-name portion — when deriving the OpenClaw au...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100541/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-26T00:32:22
2 posts
1 repos
Mediawiki ExternalData Extension <3.7 has a CRITICAL OS Command Injection vuln (CVE-2026-100382). Unauthenticated attackers could run arbitrary OS commands. No exploits yet. Restrict access, monitor activity. https://radar.offseq.com/threat/improper-neutralization-of-special-elements-used-in-an-os-command-os-command-injection-vulnerability-b27f1e4f9d070501 #OffSeq #CVE2026100382 #Mediawiki #Security
##CVE-2026-100382 (CRITICAL, CVSS 10): Wikimedia Mediawiki ExternalData Extension (<3.7) suffers OS Command Injection. Remote, unauthenticated code execution is possible. Restrict access & monitor systems. Details: https://radar.offseq.com/threat/cve-2026-100382-cwe-78-improper-neutralization-of-special-elements-used-in-an-os-command-os-command-75689d73ee2acd97 #OffSeq #CVE2026100382 #infosec #Mediawiki
##updated 2026-09-25T23:16:55.020000
1 posts
🟠 CVE-2026-96795 - High (8.8)
Horilla is an HR and CRM software. Prior to 2.0.0, HorillaListView.export_data in horilla_views/generic/cbv/views.py accepts an authenticated user's columns POST parameter, takes field_tuple[1], interpolates it into dynamic_fn_str as Python source...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-96795/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T21:48:04
1 posts
🟠 CVE-2026-57443 - High (7.5)
SCBE-AETHERMOORE is a geometric AI governance and evaluation framework. Starting in version 4.0.2 and prior to version 4.2.1, the AetherBrowser API server (`scripts/aetherbrowser/api_server.py`) exposes the `POST /api/ops/check-email` endpoint wit...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-57443/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T21:41:49
1 posts
🟠 CVE-2026-100368 - High (8.4)
CliInvoke is a .NET library for invoking command-line programs, and its `CliInvoke.Specializations` packages provide specialized wrappers for shells such as PowerShell and Windows Command Prompt. `CliInvoke.Specializations` versions 2.2.0 through ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100368/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T21:41:37
1 posts
🟠 CVE-2026-100369 - High (8.4)
CliInvoke and its formerly named `AlastairLundy.CliInvoke` package are .NET libraries for invoking command-line programs and wrapping executable processes. `CliInvoke` versions 2.0.0 through 2.8.4, 2.9.0 through 2.9.3, 2.10.0 through 2.10.4, and 3...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100369/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T21:33:12
1 posts
CRITICAL vuln: CVE-2026-100390 in tobychui zoraxy (3.2.3 – 3.3.4). IPv6 parsing flaw lets attackers bypass IP-based controls via spoofed X-Forwarded-For headers. Restrict IPv6 or XFF reliance until patch. https://radar.offseq.com/threat/cve-2026-100390-authentication-bypass-by-spoofing-in-tobychui-zoraxy-92a9e1620a0f6d01 #OffSeq #CVE2026100390 #infosec
##updated 2026-09-25T21:33:12
1 posts
🟠 CVE-2026-10758 - High (7.5)
Esri LERC is an open-source image or raster format which supports rapid encoding and decoding for any pixel type. A Heap based Out-of-Bounds Write via Integer Overflow in LERC versions 4.1.0 and earlier may allow a remote, unauthenticated attacker...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-10758/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T21:33:11
2 posts
GestSup <3.2.61 is vulnerable to CRITICAL RCE (CVE-2026-100389) via IMAP connector. Attackers can send PHP attachments to monitored mailboxes, leading to system compromise. Upgrade to 3.2.61+ ASAP. https://radar.offseq.com/threat/gestsup-versions-before-3261-contain-a-remote-code-execution-vulnerability-in-the-basic-imap-125b3f214ef54f5e #OffSeq #Infosec #RCE #GestSup
##🟠 CVE-2026-100389 - High (8.1)
GestSup versions before 3.2.61 contain a remote code execution vulnerability in the basic IMAP connector's attachment handling that fails to skip blocked file extensions. Unauthenticated attackers can send emails with PHP attachments to monitored ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100389/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T21:33:11
1 posts
🟠 CVE-2026-100391 - High (8.2)
MediaFlow Proxy through 2.4.9 contains a server-side request forgery vulnerability in the /proxy routes due to missing and incomplete destination validation in the d query parameter. Remote attackers can supply arbitrary internal URLs including lo...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100391/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T21:33:06
1 posts
🔴 CVE-2026-97063 - Critical (9.1)
X-SpringBoot through 6.0 returns login verification codes in HTTP responses from unauthenticated endpoints GET /sys/mobile/code and GET /sys/email/code without sending them to account owners. Attackers can request codes using known mobile numbers ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97063/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T21:33:06
1 posts
🟠 CVE-2026-100208 - High (7.5)
Integer overflow or wraparound in Microsoft Office Outlook allows an unauthorized attacker to execute code over a network.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100208/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T21:17:23.633000
1 posts
🟠 CVE-2026-5267 - High (7.5)
Ciena Navigator Network
Control Suite (NCS) contains an information exposure vulnerability in an
event-streaming API that does not properly enforce authentication. An
unauthenticated attacker with network access to the affected service could
acces...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-5267/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T21:17:22.163000
1 posts
🟠 CVE-2026-100387 - High (8.1)
pgPointcloud through 1.2.5 contains a heap out-of-bounds read vulnerability in dimensional patch WKB deserialization that allows authenticated database users to read adjacent heap memory. Attackers can supply crafted pcpatch values with attacker-c...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-100387/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T20:31:30
1 posts
🔴 CVE-2026-92161 - Critical (9.8)
FriendsOfFlarum OAuth allows users to log in to Flarum with GitHub, Twitter, Facebook, and other providers. Prior to 1.7.4 and 2.0.0-beta.4, the Discord OAuth provider does not check the verified field returned for an OAuth email before passing th...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-92161/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T19:17:59.427000
1 posts
🔴 CVE-2026-97064 - Critical (9.1)
X-SpringBoot through 6.0 ships with a hardcoded static master login verification code 172839 enabled by default in the database seed. Unauthenticated attackers can authenticate as any user by submitting the public master code to the emailOrMobileL...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97064/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T18:32:21
5 posts
3 repos
https://github.com/HackSpeak/CVE-2026-67279
📰 CISA Adds SharePoint, MikroTik Bugs to Known Exploited List
CISA adds two actively exploited vulnerabilities to its KEV catalog: a SharePoint RCE (CVE-2026-65660) and a MikroTik RouterOS flaw (CVE-2026-67279). Federal agencies must patch by Sep 28. Prioritize remediation now! #CyberSecurity #PatchNow #CISA
##CISA has updated the catalogue.
- CVE-2026-65660: Microsoft SharePoint Code Injection Vulnerability https://www.cisa.gov/known-exploited-vulnerabilities-catalog?search_api_fulltext=&field_date_added_wrapper=all&sort_by=field_date_added&items_per_page=20
- CVE-2026-67279: Mikrotik RouterOS Improper Enforcement of Behavioral Workflow Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-67279
Yesterday:
- CVE-2026-71362: Adobe Commerce and Magento Incorrect Authorization Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-71362
- CVE-2026-5430: WSO2 Multiple Products Path Traversal Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-5430 #CISA #infosec #vulnerability #Microsoft #Adobe
##🚨 [CISA-2026:0925] CISA Adds 2 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0925)
CISA has added 2 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2026-65660 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-65660)
- Name: Microsoft SharePoint Code Injection Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Microsoft
- Product: SharePoint
- Notes: https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-65660 ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-65660
⚠️ CVE-2026-67279 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-67279)
- Name: Mikrotik RouterOS Improper Enforcement of Behavioral Workflow Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: MikroTik
- Product: RouterOS
- Notes: https://mikrotik.com/supportsec/september-2026-vulnerability/?utm_source=chatgpt.com ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-67279
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260925 #cisa20260925 #cve_2026_65660 #cve_2026_67279 #cve202665660 #cve202667279
##CVE ID: CVE-2026-67279
Vendor: MikroTik
Product: RouterOS
Date Added: 2026-09-25
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-67279
CVE-2026-65660 Microsoft SharePoint Code Injection Vulnerability
CVE-2026-67279 Mikrotik RouterOS Improper Enforcement of Behavioral Workflow Vulnerability
updated 2026-09-25T18:32:20
8 posts
2 repos
Microsoft SharePoint Exploit and Citrix NetScaler Zero-Days Put Enterprise Systems on High Alert + Video
Microsoft SharePoint Vulnerability Is Now Being Exploited Microsoft SharePoint vulnerability CVE-2026-65660 has reportedly moved from disclosure into active exploitation, creating a serious security concern for organizations running affected SharePoint environments. The vulnerability reportedly allows a low-privilege authenticated attacker to achieve remote code…
##📰 CISA Adds SharePoint, MikroTik Bugs to Known Exploited List
CISA adds two actively exploited vulnerabilities to its KEV catalog: a SharePoint RCE (CVE-2026-65660) and a MikroTik RouterOS flaw (CVE-2026-67279). Federal agencies must patch by Sep 28. Prioritize remediation now! #CyberSecurity #PatchNow #CISA
##CISA has updated the catalogue.
- CVE-2026-65660: Microsoft SharePoint Code Injection Vulnerability https://www.cisa.gov/known-exploited-vulnerabilities-catalog?search_api_fulltext=&field_date_added_wrapper=all&sort_by=field_date_added&items_per_page=20
- CVE-2026-67279: Mikrotik RouterOS Improper Enforcement of Behavioral Workflow Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-67279
Yesterday:
- CVE-2026-71362: Adobe Commerce and Magento Incorrect Authorization Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-71362
- CVE-2026-5430: WSO2 Multiple Products Path Traversal Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-5430 #CISA #infosec #vulnerability #Microsoft #Adobe
##🚨 [CISA-2026:0925] CISA Adds 2 Known Exploited Vulnerabilities to Catalog (https://secdb.nttzen.cloud/security-advisory/detail/CISA-2026:0925)
CISA has added 2 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.
⚠️ CVE-2026-65660 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-65660)
- Name: Microsoft SharePoint Code Injection Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Microsoft
- Product: SharePoint
- Notes: https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-65660 ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-65660
⚠️ CVE-2026-67279 (https://secdb.nttzen.cloud/cve/detail/CVE-2026-67279)
- Name: Mikrotik RouterOS Improper Enforcement of Behavioral Workflow Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: MikroTik
- Product: RouterOS
- Notes: https://mikrotik.com/supportsec/september-2026-vulnerability/?utm_source=chatgpt.com ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-67279
#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260925 #cisa20260925 #cve_2026_65660 #cve_2026_67279 #cve202665660 #cve202667279
##CVE ID: CVE-2026-65660
Vendor: Microsoft
Product: SharePoint
Date Added: 2026-09-25
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-65660
CVE-2026-65660 Microsoft SharePoint Code Injection Vulnerability
CVE-2026-67279 Mikrotik RouterOS Improper Enforcement of Behavioral Workflow Vulnerability
Go hunt on your SharePoint shit.
##Update September 25th, 2026: The exploitation creates a webshell backdoor named: "/_layouts/15/sphealth.aspx"
An exploited SharePoint RCE vulnerability is under attack. Technical details for this SharePoint RCE vulnerability are public. Patch CVE-2026-65660 now.
#SharePoint #CVE202665660 #RCE #Cybersecurity #Infosec #ZeroDay
##updated 2026-09-25T18:31:36
1 posts
🟠 CVE-2026-91841 - High (7.8)
A flaw was found in NetworkManager-vpnc, a VPN plugin for NetworkManager. A local unprivileged user can exploit this vulnerability by injecting a newline character into the CA-File path. This manipulation allows the user to execute arbitrary comma...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-91841/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T18:31:36
1 posts
🟠 CVE-2026-91839 - High (7.8)
A flaw was found in NetworkManager-fortisslvpn, the FortiSSLVPN plugin for NetworkManager. The nm-fortisslvpn-service improperly handles carriage-return/line-feed (CR/LF) characters in VPN connection profile credentials. A local unprivileged user ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-91839/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T18:31:36
1 posts
🟠 CVE-2026-91838 - High (7.8)
A flaw was found in NetworkManager-sstp, the SSTP VPN plugin for NetworkManager. A local unprivileged user can exploit this vulnerability by embedding special characters, known as shell metacharacters, into VPN connection profile fields such as CA...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-91838/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T18:31:35
1 posts
🟠 CVE-2026-89032 - High (7.7)
BerriAI LiteLLM before 1.101.0-rc.1 contains a tenant isolation bypass vulnerability in the semantic cache layer that allows authenticated users to read other tenants' cached responses by exploiting a metadata key mismatch between _get_semantic_ca...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89032/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T18:31:35
1 posts
🟠 CVE-2026-94445 - High (8.8)
A malicious txtar could escape the intended execution context and force arbitrary writes to the playground host's trusted filesystem.
Disjointly, one of the three possible paths to invoke go vet on the playground host did not correctly restri...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-94445/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T17:17:18.983000
1 posts
🟠 CVE-2026-91837 - High (7.8)
A flaw was found in NetworkManager-iodine, the iodine VPN plugin for NetworkManager. A local unprivileged user can exploit a vulnerability in how the 'nameserver' setting is processed when establishing an iodine VPN connection. By embedding shell ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-91837/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T15:32:40
1 posts
New Apache Qpid Broker-J vulnerabilities, including CVE-2026-92609, CVE-2026-92573, and CVE-2026-92564, expose brokers to DoS. Patch immediately.
#ApacheQpid #CVE202692609 #CVE202692573 #AMQP #Cybersecurity #Infosec
##updated 2026-09-25T15:00:45
1 posts
🟠 CVE-2026-61825 - High (8.7)
code16 Sharp is a Laravel-based framework for building content-management and administrative interfaces. Versions before 9.22.5 contain a stored cross-site scripting vulnerability in `SharpEditorFormField`: attacker-controlled content bearing the ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-61825/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T14:17:26.837000
1 posts
🟠 CVE-2026-97818 - High (8.6)
phpIPAM through 1.8.3 has incorrect authorization for id=="admins" and id=="all" in api/controllers/User.php.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97818/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T14:17:22.150000
1 posts
New Apache Qpid Broker-J vulnerabilities, including CVE-2026-92609, CVE-2026-92573, and CVE-2026-92564, expose brokers to DoS. Patch immediately.
#ApacheQpid #CVE202692609 #CVE202692573 #AMQP #Cybersecurity #Infosec
##updated 2026-09-25T14:17:21.750000
1 posts
🟠 CVE-2026-89426 - High (8.8)
The Knit Pay – Cashfree, Instamojo, Razorpay, PayPal and more plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 9.6.1.0. This is due to the `maybe_update_user_role()` function reading the target rol...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89426/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T13:17:26.930000
1 posts
🟠 CVE-2026-97433 - High (8.2)
In the Linux kernel, the following vulnerability has been resolved:
nvme: validate FDP configuration descriptor sizes
Validate descriptor sizes while walking the FDP configurations log so
dsze == 0 or a descriptor past the log end cannot cause u...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97433/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T13:08:26.930000
1 posts
3 repos
https://github.com/murrez/CVE-2026-14281
CVE-2026-14281 (CVSS 9.8, CRITICAL) in 101gen Automation Web Platform – Notifications & OTP for WooCommerce (<=4.8.6) allows unauthenticated admin account creation and OTP bypass via REST API. Disable plugin or restrict endpoints now! https://radar.offseq.com/threat/cve-2026-14281-cwe-269-improper-privilege-management-in-101gen-automation-web-platform-notifications-f1da67bf03068bca #OffSeq #WordPress #CVE202614281
##updated 2026-09-25T12:53:15.757000
1 posts
1 repos
CISA has updated the catalogue.
- CVE-2026-65660: Microsoft SharePoint Code Injection Vulnerability https://www.cisa.gov/known-exploited-vulnerabilities-catalog?search_api_fulltext=&field_date_added_wrapper=all&sort_by=field_date_added&items_per_page=20
- CVE-2026-67279: Mikrotik RouterOS Improper Enforcement of Behavioral Workflow Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-67279
Yesterday:
- CVE-2026-71362: Adobe Commerce and Magento Incorrect Authorization Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-71362
- CVE-2026-5430: WSO2 Multiple Products Path Traversal Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-5430 #CISA #infosec #vulnerability #Microsoft #Adobe
##updated 2026-09-25T09:31:16
1 posts
New Apache Qpid Broker-J vulnerabilities, including CVE-2026-92609, CVE-2026-92573, and CVE-2026-92564, expose brokers to DoS. Patch immediately.
#ApacheQpid #CVE202692609 #CVE202692573 #AMQP #Cybersecurity #Infosec
##updated 2026-09-25T09:31:16
1 posts
🟠 CVE-2026-89406 - High (7.5)
The Modula Image Gallery – Photo Grid & Video Gallery plugin for WordPress is vulnerable to unauthorized disclosure of private gallery contents in versions up to, and including, 3.0.1. This is due to the Modula_Meta::add_metas() function being h...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89406/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T09:31:15
2 posts
2 repos
CVE-2026-93399 (CRITICAL): Bookly WordPress plugin (≤28.2) lets unauth'd attackers enumerate, access, and delete bookings via auth bypass in AJAX actions. No patch. Restrict plugin endpoints & monitor for abuse. https://radar.offseq.com/threat/cve-2026-93399-cwe-639-authorization-bypass-through-user-controlled-key-in-ladela-online-scheduling-437a419f1c3d5ec6 #OffSeq #WordPress #Vuln #Cybersecurity
##🔴 CVE-2026-93399 - Critical (9.1)
The Bookly plugin for WordPress is vulnerable to Insecure Direct Object Reference in versions up to, and including, 28.2 via the 'bookly_get_form_id', 'bookly_render_complete', 'bookly_add_to_calendar' and 'bookly_rollback_order' AJAX actions. Thi...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-93399/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T09:31:15
1 posts
🟠 CVE-2026-19804 - High (8.8)
The s2Member – Excellent for All Kinds of Memberships, Content Restriction Paywalls & Member Access Subscriptions plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 260814 via the 'first_name' param...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-19804/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T09:31:15
1 posts
🟠 CVE-2026-92713 - High (8.1)
The Modula Image Gallery – Photo Grid & Video Gallery plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the upload_image function in all versions up to, and including, 3.0.2. This makes it ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-92713/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T09:31:14
2 posts
1 repos
CVE-2026-89055 (CRITICAL, CVSS 9.1): Customer Reviews for WooCommerce <=5.120.0 lets unauthenticated attackers delete arbitrary media via public review-form links. Restrict link access, monitor suspicious review activity. https://radar.offseq.com/threat/cve-2026-89055-cwe-862-missing-authorization-in-ivole-customer-reviews-for-woocommerce-49ae0564154df323 #OffSeq #CVE202689055 #WordPress #Infosec
##🔴 CVE-2026-89055 - Critical (9.1)
The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 5.120.0. This is due to the plugin not properly verifying that a user is authorized to perform an action. This ma...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89055/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T09:31:05
2 posts
1 repos
https://thecybersecguru.com/news/elementor-cve-2026-62062-csrf-vulnerability/
##🟠 CVE-2026-62062 - High (8.8)
Cross-Site Request Forgery (CSRF) vulnerability in Elementor Website Builder allows Cross Site Request Forgery.
This issue affects Elementor Website Builder: from n/a through 4.3.1.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-62062/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T06:31:36
1 posts
🟠 CVE-2026-97428 - High (7.7)
In the Linux kernel, the following vulnerability has been resolved:
drm/amdgpu: harden FRU PIA parsing with bounded helpers
Replace the open-coded TLV walk with fru_pia_advance()
and fru_pia_copy_field() helpers that bound every read
by the actu...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97428/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T06:31:36
1 posts
🟠 CVE-2026-97444 - High (7.7)
In the Linux kernel, the following vulnerability has been resolved:
ACPICA: add boundary checks in two places
Add boundary checks in acpi_ps_get_next_namestring() and
acpi_ps_peek_opcode() to prevent out-of-bounds access.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97444/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T06:31:35
1 posts
🟠 CVE-2026-97450 - High (8.4)
In the Linux kernel, the following vulnerability has been resolved:
ACPICA: validate handler object type in two places
ACPICA: validate handler object type in acpi_ev_has_default_handler()
and acpi_ev_find_region_handler().
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97450/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T06:31:35
1 posts
🟠 CVE-2026-97448 - High (7.7)
In the Linux kernel, the following vulnerability has been resolved:
ACPICA: Add validation for node in acpi_ns_build_normalized_path()
Add validation for node in acpi_ns_build_normalized_path()
to prevent use-after-free vulnerabilities.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97448/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T06:31:35
1 posts
🟠 CVE-2026-97509 - High (8.8)
In the Linux kernel, the following vulnerability has been resolved:
thunderbolt: Keep XDomain reference during the lifetime of a service
This is needed because we release the service ID in tb_service_release()
and the ID array is owned by the pa...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97509/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T06:31:35
1 posts
🟠 CVE-2026-97508 - High (7.5)
In the Linux kernel, the following vulnerability has been resolved:
thunderbolt: Set tb->root_switch to NULL when domain is stopped
Similarly what we do with the firmware connection manager. This makes
tb_xdp_handle_request() return error to the...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97508/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T06:31:34
1 posts
🟠 CVE-2026-97445 - High (7.7)
In the Linux kernel, the following vulnerability has been resolved:
ACPICA: Enhance buffer validation in acpi_ut_walk_aml_resources()
Enhance buffer validation in acpi_ut_walk_aml_resources() to prevent
buffer overflows.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97445/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T06:31:34
1 posts
🟠 CVE-2026-97442 - High (8.8)
In the Linux kernel, the following vulnerability has been resolved:
wifi: ath11k: fix invalid data access in ath11k_dp_rx_h_undecap_nwifi
In certain cases, hardware might provide packets with a
length greater than the maximum native Wi-Fi header...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97442/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T06:31:34
1 posts
🟠 CVE-2026-97452 - High (8.4)
In the Linux kernel, the following vulnerability has been resolved:
ACPICA: Prevent adding invalid references
Prevent adding references for local, argument, and debug objects
in acpi_ut_copy_simple_object().
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97452/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T06:31:34
1 posts
🟠 CVE-2026-97478 - High (7.8)
In the Linux kernel, the following vulnerability has been resolved:
virt: acrn: Fix irqfd use-after-free during eventfd shutdown
acrn_irqfd_deassign() and the eventfd EPOLLHUP wakeup can race and free
the same struct hsm_irqfd:
CPU0 ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97478/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T06:31:19
1 posts
🟠 CVE-2026-97454 - High (7.7)
In the Linux kernel, the following vulnerability has been resolved:
ACPICA: add boundary checks in acpi_ps_get_next_field()
Add boundary checks in acpi_ps_get_next_field() to prevent out-of-bounds
access.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97454/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T05:17:07.540000
1 posts
🟠 CVE-2026-97513 - High (7.8)
In the Linux kernel, the following vulnerability has been resolved:
media: chips-media: wave5: Release m2m_ctx after Instance Removed from List
Possible use after free if IRQ thread manages to obtain spinlock between
m2m_ctx release and wave5_re...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97513/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T05:17:07.180000
1 posts
🟠 CVE-2026-97497 - High (7.8)
In the Linux kernel, the following vulnerability has been resolved:
drm/amdkfd: Check bounds for allocate_sdma_queue restore_sdma_id
allocate_sdma_queue has an option where the sdma queue id can be
specified (used by CRIU). We weren't bounds-che...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97497/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T05:17:06.673000
1 posts
🟠 CVE-2026-97455 - High (8.4)
In the Linux kernel, the following vulnerability has been resolved:
ACPICA: Fix use-after-free in acpi_ds_terminate_control_method()
Fix use-after-free issue in acpi_ds_terminate_control_method() by
clearing references to method locals and argum...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97455/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T05:17:06.323000
1 posts
🟠 CVE-2026-97451 - High (8.4)
In the Linux kernel, the following vulnerability has been resolved:
ACPICA: Fix integer overflow in acpi_ex_opcode_3A_1T_1R() (mid_op)
Add overflow check for Index + Length to prevent integer overflow
when calculating the truncation length. This...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-97451/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-25T04:17:48.843000
1 posts
GitLab Patches Critical Regex Flaws Allowing Remote Code Execution
GitLab released emergency patches for 11 vulnerabilities, including two critical regex-related flaws (CVE-2026-89078 and CVE-2026-93577) that allow authenticated attackers to execute arbitrary code on self-managed servers.
**If you run your own GitLab server, update it to version 19.4.1, 19.3.3, or 19.2.7. Two critical flaws allow any logged-in user take over the whole server. After updating, check your .gitlab-ci.yml files for new or strange-looking regular expressions, and review who has access to your projects in case someone already tried to exploit this. GitLab.com and GitLab Dedicated users don't need to do anything.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/gitlab-patches-critical-regex-flaws-allowing-remote-code-execution-8-p-7-q-t/gD2P6Ple2L
updated 2026-09-25T04:17:35.357000
3 posts
2 repos
🚨 Roundcube SQL injection flaw actively exploited months after patches were released
The Canadian Centre for Cyber Security has warned that CVE-2026-48842, a high-severity vulnerability in Roundcube Webmail, is being exploited in the wild.
⠀
Roundcube is an open-source webmail application that lets people access email through a browser.
The flaw affects its virtuser_query plugin and allows SQL injection before authentication.
⠀
Key details:
• CVSS score: 8.1
• No attacker credentials required
• No user interaction required
• Affects Roundcube 1.6.x before 1.6.16 and 1.7.x before 1.7.1
⠀
Roundcube released the original fixes on May 24, 2026. Canada added the exploitation warning to its advisory on September 21, citing open-source reporting.
The advisory does not identify the attackers, victims or scale of exploitation.
⠀
Administrators should update affected installations promptly. Newer security releases, 1.6.19 and 1.7.4, also address additional vulnerabilities.
Source: https://www.cyber.gc.ca/en/alerts-advisories/roundcube-security-advisory-av26-503
##Canadian Centre for Cyber Security warns CVE-2026-48842, a pre-auth SQL injection in Roundcube Webmail virtuser_query plugin, is actively exploited. Unauthenticated preg_replace escape bypass affects 1.6.x before 1.6.16 and 1.7.x before 1.7.1, enabling backend DB compromise. #Roundcube #SqlInjection #InfoSec
https://cyberworldops.eu/en/active-roundcube-attacks-put-pre-login-sql-injection-at-the-top-of
##Learn how hackers are exploiting the CVE-2026-48842 Roundcube SQL injection vulnerability. Understand the risk and how to patch your webmail server immediately.
#Roundcube #CyberSecurity #SQLInjection #DataBreach #TechNews
##updated 2026-09-24T21:32:59
1 posts
🟠 CVE-2026-81473 - High (8.1)
Dell Rugged Control Center (RCC), versions prior to 5.2.206, contain an Improper Authorization vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of Privileges.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-81473/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T21:32:58
1 posts
🟠 CVE-2026-89325 - High (7.8)
An uncontrolled search path element in InsightVM assessment content in Rapid7 Insight Agent on Windows allows a local, low-privileged user to execute arbitrary code as SYSTEM via a planted executable resolved from the machine PATH.
Assessment con...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-89325/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T21:32:57
1 posts
🟠 CVE-2026-13248 - High (8.8)
An Authenticated Remote Code Execution via Arbitrary File Write in the Intermec Fingerprint Command Interface vulnerability in the web management interface in Honeywell PD45 Industrial Printer version F10.19.010040, allows an authenticated use...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-13248/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T21:32:57
1 posts
1 repos
🔴 CVE-2026-13249 - Critical (9.8)
An unauthenticated Remote Code Execution via Arbitrary File Upload vulnerability in the web management interface in Honeywell PD45 Industrial Printer version F10.19.010040, allows upload of attacker controlled files without requiring authenticatio...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-13249/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T21:32:57
1 posts
🟠 CVE-2026-81455 - High (8.6)
Dell ThinOS 10, versions prior to SecurityAddon_2605.10.2766_T10, contain a Missing Authentication for Critical Function vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Unautho...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-81455/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T21:32:26
3 posts
2 repos
"CISA warns of Sharepoint, WSO2, Adobe Commerce flaws exploited in attacks"
"[...] The Cybersecurity and Infrastructure Security Agency (CISA) warns that hackers are exploiting a critical authentication bypass vulnerability (CVE-2026-5430) affecting multiple products from enterprise software provider WSO2."
##CISA has updated the catalogue.
- CVE-2026-65660: Microsoft SharePoint Code Injection Vulnerability https://www.cisa.gov/known-exploited-vulnerabilities-catalog?search_api_fulltext=&field_date_added_wrapper=all&sort_by=field_date_added&items_per_page=20
- CVE-2026-67279: Mikrotik RouterOS Improper Enforcement of Behavioral Workflow Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-67279
Yesterday:
- CVE-2026-71362: Adobe Commerce and Magento Incorrect Authorization Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-71362
- CVE-2026-5430: WSO2 Multiple Products Path Traversal Vulnerability https://www.cve.org/CVERecord?id=CVE-2026-5430 #CISA #infosec #vulnerability #Microsoft #Adobe
##(CISA TS+SOC) The Cyber Mind TSUITE Brief: CVE-2026-5430 – WSO2 Multiple Products Path Traversal Vulnerability
Analyze the technical mechanics of CVE-2026-5430 with our WSO2 TSUITE brief, covering directory traversal vectors, unrestricted file uploads, and endpoint hardening....
##updated 2026-09-24T21:00:46.893000
1 posts
SolarWinds Critical Vulnerability: RCE Flaw Patched
#SolarWinds #Vulnerability #Cybersecurity #CVE202628324 #InfoSec A monitoring system engineered to oversee corporate infrastructure can inadvertently pave the way for an attacker to breach the network. SolarWinds has rectified a critical vulnerability within Observability Self-Hosted that permitted unauthenticated remote code execution. Tracked as CVE-2026-28324, this flaw achieved a staggering CVSS severity score of 9.8 out of 10. Exploitation requires neither system privileges nor user interaction, and the attack complexity is deemed low.
##updated 2026-09-24T19:45:08
1 posts
🟠 CVE-2026-61816 - High (7.5)
zbateson/mail-mime-parser is a mail mime parser alternative to PHP's imap* functions and Pear libraries for reading messages in Internet Message Format RFC 822. Starting in version 2.0.0 and prior to version 3.0.6 and 4.0.2, an uncontrolled resour...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-61816/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T19:35:18
1 posts
🔴 CVE-2026-61741 - Critical (9.3)
http4s-scala-xml provides `EntityDecoder[F, scala.xml.Elem]` instances that parse XML message bodies. Prior to versions 0.24.1 and 1.0.0-M39, these decoders used a `javax.xml.parsers.SAXParserFactory` obtained from `SAXParserFactory.newInstance` w...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-61741/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T19:17:16.220000
1 posts
A critical Norwegian Cruise Line vulnerability allows attackers to clone RFID keycards. Mitigate CVE-2026-75907 to protect vessel and guest security.
#NorwegianCruiseLine #CVE202675907 #RFID #Cybersecurity #Infosec #AccessControl
##updated 2026-09-24T19:17:14.630000
1 posts
🟠 CVE-2026-57440 - High (7.5)
The EmbedVideo Extension is a MediaWiki extension which adds a parser function called #ev and various parser tags for embedding video clips from various video sharing services. Prior to 4.1.0, with $wgEmbedVideoRequireConsent disabled (not the def...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-57440/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T18:31:48
1 posts
🟠 CVE-2026-95985 - High (8.8)
The file write tool in Amazon Kiro IDE versions before 1.0.242 might allow remote unauthenticated actors to inject crafted instructions into the agent's context. When a user runs the agent in a crafted repository as an untrusted workspace, sending...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-95985/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T18:19:34
1 posts
🟠 CVE-2026-85057 - High (8.7)
ZITADEL is an open source identity management platform. From 3.0.0 until 3.4.13 and 4.16.1, ZITADEL Actions V1 enables the goja Node-compatible require() registry without restricting its filesystem source loader. An organization Action author with...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-85057/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T18:19:04.180000
1 posts
🟠 CVE-2026-85056 - High (8.2)
ZITADEL is an open source identity management platform. From 4.0.0 until 4.16.1, ZITADEL Login V2 creates a browser session after password verification and can reuse that session for a later authentication request without verifying a user's enroll...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-85056/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T18:17:16.333000
1 posts
🟠 CVE-2026-61782 - High (7.5)
Rsdoctor is a build analyzer tailored for projects built with Rspack. Prior to version 1.5.16, the default Rsdoctor report HTTP server started by `@rsdoctor/rspack-plugin` binds to all network interfaces (`0.0.0.0`) and serves a `POST /api/data/ke...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-61782/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##updated 2026-09-24T00:30:34
1 posts
GitLab Patches Critical Regex Flaws Allowing Remote Code Execution
GitLab released emergency patches for 11 vulnerabilities, including two critical regex-related flaws (CVE-2026-89078 and CVE-2026-93577) that allow authenticated attackers to execute arbitrary code on self-managed servers.
**If you run your own GitLab server, update it to version 19.4.1, 19.3.3, or 19.2.7. Two critical flaws allow any logged-in user take over the whole server. After updating, check your .gitlab-ci.yml files for new or strange-looking regular expressions, and review who has access to your projects in case someone already tried to exploit this. GitLab.com and GitLab Dedicated users don't need to do anything.**
#cybersecurity #infosec #advisory #vulnerability
https://beyondmachines.net/event_details/gitlab-patches-critical-regex-flaws-allowing-remote-code-execution-8-p-7-q-t/gD2P6Ple2L
updated 2026-09-22T21:31:17
2 posts
2 repos
https://github.com/watchtowrlabs/watchTowr-vs-f5-bigip-PreAuth-RCE-CVE-2026-94127
Discover the critical F5 BIG-IP zero-day vulnerability CVE-2026-94127. Learn why CISA demands immediate patching for this actively exploited APM flaw.
##Love the energy 😅
>Is This A Joke? In The Auth Header? (F5 BIG-IP UnAuth Heap-Overflow to RCE CVE-2026-94127)
##updated 2026-09-22T21:31:15
1 posts
1 repos
(CISA TS+SOC) The Cyber Mind TSUITE Brief: CVE-2026-93616 – Check Point Multiple Products Path Traversal Vulnerability
Analyze the technical mechanics of CVE-2026-93616 with our Check Point TSUITE brief, covering management server path traversal, remote code execution, and endpoint hardening....
##updated 2026-09-22T21:30:40
1 posts
(CISA TS+SOC) The Cyber Mind TSUITE Brief: CVE-2026-85102 – Check Point Multiple Products Improper Certificate Validation Vulnerability
Analyze the technical mechanics of CVE-2026-85102 with our Check Point TSUITE brief, covering VPN certificate trust validation bypass, multi-platform SIEM queries, and gateway hardening....
##updated 2026-09-22T19:56:19.073000
1 posts
CVE-2026-93854: OpenStack Blazar before 17.0.1 lets any authenticated user update or delete leases they do not own due to a broken authorization lookup. No CVSS or patch yet. Restrict Blazar API access now. https://www.valtersit.com/cve/CVE-2026-93854/ #CVE #infosec #OpenStack
##updated 2026-09-22T18:34:29
1 posts
CVE-2026-93579: Netty HTTP/2 header validation flaw enables request smuggling and header injection via NUL/LF/CR chars. CVSS 6.5, no patch yet. Audit your HTTP/2 proxies. https://www.valtersit.com/cve/CVE-2026-93579/ #CVE #infosec #Netty
##updated 2026-09-18T21:32:44
1 posts
CVE-2026-93871 Cotonti through 1.0.0 open redirect lets authenticated page editors store redirects to malicious hosts for phishing. CVSS 5.4, no patch yet. Restrict page permissions now. https://www.valtersit.com/cve/CVE-2026-93871/ #CVE #infosec #cybersecurity
##updated 2026-09-18T21:32:36
2 posts
CVE-2026-82890 IBM Guardium Data Protection 12.2 allows remote authenticated attackers to execute arbitrary JavaScript via improper input neutralization. CVSS 5.9, patch status unknown. Review and update immediately. https://www.valtersit.com/cve/CVE-2026-82890/ #CVE #infosec #IBM
##CVE-2026-82890 IBM Guardium Data Protection 12.2 allows remote authenticated attackers to execute arbitrary JavaScript via improper input neutralization. CVSS 5.9, patch status unknown. Review and update immediately. https://www.valtersit.com/cve/CVE-2026-82890/ #CVE #infosec #IBM
##updated 2026-09-18T21:32:27
1 posts
CVE-2026-11722: IBM WebSphere HTTP request smuggling, CVSS 4.8, patch status unknown. Update immediately. https://www.valtersit.com/cve/CVE-2026-11722/ #CVE #infosec #IBM
##updated 2026-09-18T20:17:32.267000
1 posts
CVE-2026-93432: Quarkus Qute XSS/JSON injection via eval sub-templates. CVSS 6.1, no patch yet. Audit your templates and watch for updates. https://www.valtersit.com/cve/CVE-2026-93432/ #CVE #infosec #Quarkus
##updated 2026-09-18T18:32:05
1 posts
CVE-2026-93751 uri-js path traversal via improper UTF-8 decoding, CVSS 6.5, no patch yet. Update dependencies immediately. https://www.valtersit.com/cve/CVE-2026-93751/ #CVE #infosec #cybersecurity
##updated 2026-09-18T16:42:52
1 posts
CVE-2026-77608 Semantic MediaWiki reflected XSS before 7.2.0, CVSS 6.1, no patch confirmed. Update to 7.2.0 now. https://www.valtersit.com/cve/CVE-2026-77608/ #CVE #infosec #MediaWiki
##updated 2026-09-18T15:31:06
2 posts
2 repos
I Found a $113,337 Af_alg Linux Local Privilege Escalation Before Copy Fail
CVE-2025-39964는 Linux 커널 AF_ALG의 공유 소켓 동시 `sendmsg()` 처리에서 발생하는 레이스 컨디션으로, `ctx->merge`와 scatterlist 상태 불일치가 `sg[-1]` 접근으로 이어진다. 연구자는 선행 힙 객체의 제어 가능한 메타데이터를 이용해 usercopy 오라클과 임의 커널 쓰기를 만들고, `core_pattern` 덮어쓰기를 통해 일반 사용자 권한 상승 및 Docker 컨테이너 탈출을 시연했다. 취약한 코드는 약 2011년부터 존재했으며, 업스트림 수정은 동일 AF...
https://idnsec.com/research/linux-local-privilege-escalation-with-af-alg/
##Linux kernel flaw enables root and container escape A 14-year-old bug in the AF_ALG cryptographic socket interface, tracked as CVE-2025-39964, allows unprivileged local users to gain root and escape Docker containers. The issue is a race condition in concurrent sendmsg() operations that can be turned into out-of-bounds memory access and an arbitrary kernel write. The vulnerable code dates to Linux 2.6.38
https://cyberpress.org/14-year-old-linux-kernel-vulnerability/
##updated 2026-09-16T15:31:14
1 posts
1 repos
CVE-2026-91843 Fix
Check Point has released a fix for CVE-2026-91843, a critical vulnerability affecting Security Management and Log Servers. The flaw, rated CVSS 9.8, stems from a stack overflow in the login process and can allow unauthenticated remote attackers to execute code as root on affected R80 through R82 systems.
##updated 2026-09-11T04:17:13.060000
2 posts
@watchTowr Now do CVE-2026-0310
##@watchTowr Now do CVE-2026-0310
##updated 2026-08-13T15:58:54
2 posts
For almost a year, my Ansible connection plugin for FreeBSD jails had a jail escape.
A symlink inside a jail, a root-owned mv on the host, and every file transfer could land wherever the jail wanted. Rejecting ".." didn't help at all.
Now it's CVE-2026-55074. Here's the bug, the fix, and what disclosing it looks like when the project has one maintainer.
https://blog.hofstede.it/my-ansible-plugin-had-a-jail-escape-cve-2026-55074/
#FreeBSD #Ansible #InfoSec #CVE #Jails #OpenSource #Security #SysAdmin
##For almost a year, my Ansible connection plugin for FreeBSD jails had a jail escape.
A symlink inside a jail, a root-owned mv on the host, and every file transfer could land wherever the jail wanted. Rejecting ".." didn't help at all.
Now it's CVE-2026-55074. Here's the bug, the fix, and what disclosing it looks like when the project has one maintainer.
https://blog.hofstede.it/my-ansible-plugin-had-a-jail-escape-cve-2026-55074/
#FreeBSD #Ansible #InfoSec #CVE #Jails #OpenSource #Security #SysAdmin
##updated 2026-08-05T18:32:31
1 posts
6 repos
https://github.com/unveiledhistory49/teamcity-cve-2026-63077-remediation
https://github.com/sfewer-r7/CVE-2026-63077
https://github.com/AnggaTechI/CVE-2026-63077
https://github.com/BoredHackerBlog/teamcity-CVE-2026-63077-pcap
https://github.com/bakos-sandor-nx/teamcity-cve-2026-63077-remediation
📰 CISA: Ransomware Gangs Actively Exploiting Critical TeamCity RCE Flaw
CISA confirms ransomware gangs are exploiting a critical RCE flaw (CVE-2026-63077, CVSS 9.8) in JetBrains TeamCity. Unauthenticated attackers can take over CI/CD servers. Patch now! #Ransomware #CVE #TeamCity #SupplyChain
##updated 2026-07-16T18:32:24
1 posts
6 repos
https://github.com/samu-delucas/CVE-2026-39808
https://github.com/error-inside/CVE-2026-39808
https://github.com/HORKimhab/CVE-2026-39808
https://github.com/ynsmroztas/FortiSandbox-RCE-Exploit-CVE-2026-39808
If you missed this, Fortinet posted advisories for two critical vulnerabilities yesterday - CVE-2026-39813 and CVE-2026-39808 https://app.opencve.io/cve/?vendor=fortinet #infosec #Fortinet #vulnerability
##updated 2026-06-17T10:51:12.463000
1 posts
🚨 EUVD-2026-87986
📊 Score: 2.3/10 (CVSS v3.1)
📦 Product: python-utcp
🏢 Vendor: universal-tool-calling-protocol
📅 Updated: 2026-09-27
📝 utcp-gql before 1.1.1 and utcp-websocket before 1.1.1 contain server-side request forgery vulnerabilities due to incomplete application of CVE-2026-44661 fixes. The GraphQL plugin uses a vulnerable prefix check allowing bypass URL...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-87986
##updated 2026-06-17T10:10:37.953000
1 posts
8 repos
https://github.com/tushargurav28/CVE-2026-0257
https://github.com/HORKimhab/CVE-2026-0257
https://github.com/0xBlackash/CVE-2026-0257
https://github.com/sfewer-r7/CVE-2026-0257
https://github.com/Mr-Robot-LP/CVE-2026-0257
https://github.com/grayxploit/CVE-2026-0257
Japan's Digital Agency was breached through a VPN flaw that was public before the attack. Data on ~246,000 officials and contractors may be exposed.
The agency won't name the product. Japanese researcher piyolog points to CVE-2026-0257 (PAN-OS GlobalProtect), added to CISA KEV on May 29. Detection to disclosure: eleven weeks, with no CVE or IOCs in the notice.
Our take on patching by CVSS, "zero trust" as a label, and Japan's disclosure culture:
https://japancyberwatch.com/articles/japan-digital-agency-gss-breach-2026
#infosec #Japan #DataBreach #VulnerabilityManagement #PaloAlto
##updated 2026-06-12T18:31:50
4 posts
4 repos
https://github.com/12hrformat/CVE-2026-35273-POC
https://github.com/0xBlackash/CVE-2026-35273
Cybersecurity: ShinyHunters exploit a critical Oracle PeopleSoft flaw (CVE-2026-35273), bypassing WAFs and deploying SIDEEYE backdoor across sectors. Geopolitics/Tech: President Trump rejects AI regulation, prioritizing innovation despite global concerns (Sept 26, 2026).
##Cybersecurity: ShinyHunters exploit a critical Oracle PeopleSoft flaw (CVE-2026-35273), bypassing WAFs and deploying SIDEEYE backdoor across sectors. Geopolitics/Tech: President Trump rejects AI regulation, prioritizing innovation despite global concerns (Sept 26, 2026).
##Google reports active exploitation of CVE-2026-35273 in Oracle PeopleSoft PeopleTools by UNC6240, linked to ShinyHunters. Encoded requests evade WAF rules to deploy JSP webshells via the Environment Management Hub, enabling persistent access. Prioritize patching and compromise hunting. #OracleSecurity #PeopleSoft #ThreatIntel
https://cyberworldops.eu/en/encoded-requests-let-shinyhunters-linked-attackers-breach-oracle
##🚨 ShinyHunters resumes mass exploitation of critical Oracle PeopleSoft flaw using simple WAF bypass.
Mandiant and Google Threat Intelligence Group have identified renewed mass exploitation of CVE-2026-35273 by UNC6240, also known as ShinyHunters.
⠀
The critical vulnerability allows unauthenticated remote code execution in Oracle PeopleSoft PeopleTools and carries a CVSS score of 9.8.
Oracle released an emergency patch on June 10.
⠀
The new campaign targets organizations that attempted to mitigate the flaw using web application firewall rules but did not install the patch.
ShinyHunters bypassed rules blocking the vulnerable /PSEMHUB/ endpoint by encoding a single character and sending requests to /%50SEMHUB/.
⠀
Google says web shells were deployed on dozens of systems worldwide across:
• Higher education
• Technology
• IT services
• Healthcare
• Agriculture
• Transportation
• Government
⠀
The actors deployed web shells, the SIDEEYE backdoor, Neo-reGeorg tunneling tools and MeshAgent for persistent remote access.
Around one-quarter of the observed commands executed with root or SYSTEM privileges.
⠀
Organizations running PeopleSoft should patch immediately, disable or remove the Environment Management Hub where possible and investigate encoded variants of /PSEMHUB/ in access logs.
WAF rules alone are not sufficient.
##updated 2026-05-28T06:31:09
1 posts
1 repos
Veeam Agent pour Windows : la faille CVE-2026-32996 offre les privilèges SYSTEM, un exploit est public https://www.it-connect.fr/veeam-agent-windows-faille-cve-2026-32996-privileges-system/ #ActuCybersécurité #Cybersécurité #Vulnérabilité #Windows #Veeam
##updated 2026-05-13T13:52:36
1 posts
ShinyHunters Exploits Grav CMS Flaw to Breach Clop Leak Site
The Grav CMS flaw, tracked as CVE-2026-42608, was exploited by ShinyHunters to breach the Clop gang's leak site, and the vulnerability has since been patched in Grav's 2.0 and 1.7 branches. Grav confirmed the legitimacy of the flaw and the threat actor's description, and has implemented a fix to prevent further attacks.
##updated 2026-04-14T18:30:41
1 posts
2 repos
If you missed this, Fortinet posted advisories for two critical vulnerabilities yesterday - CVE-2026-39813 and CVE-2026-39808 https://app.opencve.io/cve/?vendor=fortinet #infosec #Fortinet #vulnerability
##updated 2025-11-11T18:30:23
7 posts
CVE-2025-13032: Entering and Breaking the Avast Antivirus Sandbox Part 2
https://news.ycombinator.com/item?id=49841115
CVE-2025-13032: Entering and Breaking the Avast Antivirus Sandbox Part 2
Link: https://www.safateam.com/intelligence-hub/research/technical-articles/cve-2025-13032-entering-and-breaking-the-avast-antivirus-sandbox-part-2
Discussion: https://news.ycombinator.com/item?id=49841115
CVE-2025-13032: Entering and Breaking the Avast Antivirus Sandbox Part 2 https://www.safateam.com/intelligence-hub/research/technical-articles/cve-2025-13032-entering-and-breaking-the-avast-antivirus-sandbox-part-2
##CVE-2025-13032: Entering and Breaking the Avast Antivirus Sandbox Part 2
Link: https://www.safateam.com/intelligence-hub/research/technical-articles/cve-2025-13032-entering-and-breaking-the-avast-antivirus-sandbox-part-2
Discussion: https://news.ycombinator.com/item?id=49841115
CVE-2025-13032: Entering and Breaking the Avast Antivirus Sandbox Part 2 | https://www.safateam.com/intelligence-hub/research/technical-articles/cve-2025-13032-entering-and-breaking-the-avast-antivirus-sandbox-part-2
##CVE-2025-13032: Entering and Breaking the Avast Antivirus Sandbox Part 2
Link: https://www.safateam.com/intelligence-hub/research/technical-articles/cve-2025-13032-entering-and-breaking-the-avast-antivirus-sandbox-part-2
Comments: https://news.ycombinator.com/item?id=49841115
CVE-2025-13032: Entering and Breaking the Avast Antivirus Sandbox Part 2
Comments: https://news.ycombinator.com/item?id=49841115
#HackerNews #CVE2025 #CVE #AvastAntivirus #CyberSecurity #Vulnerability #Research
##CVE-2026-61722 FluidSynth 2.5.0-2.5.6: crafted DLS file triggers integer overflow in the native parser, bypassing chunk-size checks and causing a denial of service through massive out-of-bounds iterations. CVSS 6.8. Patch to https://www.valtersit.com/cve/CVE-2026-61722/ #CVE #infosec #FluidSynth
##CVE-2026-85271 Open edX: unsanitized discussion titles let enrolled students inject CSS-capable markup into notification emails. CVSS 6.1. No patch yet. Restrict enrollment or filter post_title. Details: https://www.valtersit.com/cve/CVE-2026-85271/ #CVE #infosec #OpenEdX
##4 posts
22 repos
https://github.com/tc4dy/CVE-2026-87902-Toolkit
https://github.com/zyphorixofficialmain-lab/cve-2026-87902
https://github.com/oliveiralimajr/CVE_2026_87902
https://github.com/joaovicdev/EXPLOIT-CVE-2026-87902
https://github.com/dinosn/cve-2026-87902-wordpress-lfi-lab
https://github.com/abraxas/CVE-2026-87902
https://github.com/SVTagan/WP-CVE-2026-87902
https://github.com/bhideki/CVE-2026-87902
https://github.com/Hassham1/CVE-2026-87902
https://github.com/pwnVader/CVE-2026-87902-PoC-pwnVader
https://github.com/rwxrwxs/CVE-2026-87902
https://github.com/nextco/wordpress-cve-2026-87902
https://github.com/itskill-jp/wordpress-upgrade-check
https://github.com/zer0dayf/CVE-2026-87902
https://github.com/crowsec-edtech/CVE-2026-87902
https://github.com/rabakuku/CVE-2026-87902-A-working-PoC-for-WordPress-s-critical-path-traversal
https://github.com/vulpecuna/CVE-2026-87902
https://github.com/ynsmroztas/WPSniper
https://github.com/abatsakidis/wp-cve-2026-87902-checker
https://github.com/Lutfifakee-Project/CVE-2026-87902
CVE-2026-87902: Severe Security Flaw in WordPress #wordpress
WordPress users urgently: CVE-2026-87902 is a severe remote code execution vulnerability that could allow arbitrary code on vulnerable sites. WordPress patched version 7.1.2 and later, but exploitation began within hours of disclosure. Update now to mitigate risk across all affected versions (4.7.0–7.1.1). Learn more and protect your site: https://ift.tt/OPqJ7NS
Source: https://ift.tt/OPqJ7NS | Image: https://ift.tt/xzLj2U6
##📰 Critical WordPress Path Traversal Flaw Actively Exploited (CVE-2026-87902)
🚨 CRITICAL VULNERABILITY: WordPress Core is being actively exploited via CVE-2026-87902 (CVSS 9.2). The unauthenticated path traversal flaw can lead to RCE. Affects versions 4.7.0-7.1.1. Update to 7.1.2 immediately! #WordPress #CVE #CyberSecurity #P...
##WordPress Patch Became Exploit Blueprint: CVE-2026-87902 Webshells Hit 350K Sites
https://www.techtimes.com/articles/328042/20260925/wordpress-patch-became-exploit-blueprint-cve-2026-87902-webshells-hit-350k-sites.htm?utm_source=flipboard&utm_medium=activitypub
Posted into Cybersecurity Today @cybersecurity-today-rhudaur
##CVE ID: CVE-2026-87902
Vendor: WordPress
Product: Core
Date Added: 2026-09-25
CVE URL: https://nvd.nist.gov/vuln/detail/CVE-2026-87902
Scheme (Skate), Atari Jaguar OS (JagOS), ESP32 Linux support, and Arduino libraries.
- **Security vulnerabilities**: CVE-2026-76654, CVE-2026-2270, and a 14-year-old Linux kernel bug (AF_ALG).
- **Web development**: CSS features (scroll-driven animations, anchor positioning), Django, WordPress updates. [2/2]
Scheme (Skate), Atari Jaguar OS (JagOS), ESP32 Linux support, and Arduino libraries.
- **Security vulnerabilities**: CVE-2026-76654, CVE-2026-2270, and a 14-year-old Linux kernel bug (AF_ALG).
- **Web development**: CSS features (scroll-driven animations, anchor positioning), Django, WordPress updates. [2/2]
CVE-2026-76902 CordysCRM IDOR: unauthenticated attackers can download other orgs' files via predictable IDs. CVSS 5. No patch yet. Update to 1.7.4+ https://www.valtersit.com/cve/CVE-2026-76902/ #CVE #infosec
##CVE-2026-57229 Suricata SMTP MIME parser state leak lets crafted mail evade file.data, file.name and URL detections. CVSS 5.3, no patch yet. Isolate or review SMTP MIME decoding now. https://www.valtersit.com/cve/CVE-2026-57229/ #CVE #Suricata #infosec
##CVE-2026-61720 FluidSynth SF2 parser DoS: zero-sized DMOD chunk wraps count to UINT_MAX, triggering billions of allocations and memory exhaustion. CVSS 6.2. Patched in 2.5.6, no workaround. Update now. https://www.valtersit.com/cve/CVE-2026-61720/ #CVE #infosec #FluidSynth
##🟠 CVE-2026-91765 - High (7.5)
cleanup_xml_node() in the SOAP XML parser recurses once per XML nesting level with no depth limit. An unauthenticated attacker can post a SOAP request containing tens of thousands of nested elements to any SoapServer endpoint, exhaust the stack an...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-91765/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##Megjelent a Flatpak 1.18.3: biztonsági függőségek és regressziós javítások érkeztek – kezelik a CVE-2026-87766 és CVE-2026-93676 sebezhetőségeket. Gondoltad volna, hogy az 1.18.2 okozott build-regressziók SELinuxos rendszereken problémát, és téged érinthetnek? Kíváncsi vagy, javult-e a subsandbox és a bundle-telepítési stabilitás a te setupodon?
https://linuxmint.hu/hir/2026/09/megjelent-a-flatpak-1183-biztonsagi-es-regresszios-javitasokkal
#Flatpak #Bubblewrap #xdg-dbus-proxy #CVE2026 #SELinux #Linux #Runtime #FlatpakRelease #Security #Bugfix
##Megjelent a Flatpak 1.18.3: biztonsági függőségek és regressziós javítások érkeztek – kezelik a CVE-2026-87766 és CVE-2026-93676 sebezhetőségeket. Gondoltad volna, hogy az 1.18.2 okozott build-regressziók SELinuxos rendszereken problémát, és téged érinthetnek? Kíváncsi vagy, javult-e a subsandbox és a bundle-telepítési stabilitás a te setupodon?
https://linuxmint.hu/hir/2026/09/megjelent-a-flatpak-1183-biztonsagi-es-regresszios-javitasokkal
#Flatpak #Bubblewrap #xdg-dbus-proxy #CVE2026 #SELinux #Linux #Runtime #FlatpakRelease #Security #Bugfix
##"the kernel.org CNA has CVE-2026-100000 reserved"
🍾
/ @gregkh
##🟠 CVE-2026-63645 - High (7.5)
OpenObserve is a cloud-native observability platform. Prior to 0.90.3, OpenObserve registers the /config/runtime endpoint without authentication and serializes the complete server configuration after applying the hide_sensitive_fields keyword filt...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-63645/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-71540 - High (7.5)
Wazuh is an open-source security platform providing unified XDR and SIEM protection for endpoints and cloud workloads. From 3.9.0 until 4.14.7, wazuh-clusterd in framework/wazuh/core/cluster/common.py allocates a payload buffer using the size decl...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-71540/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-77294 - High (8.1)
TREK is a collaborative travel planner. Prior to 3.3.0, TREK allows an authenticated user to store an attacker-controlled llm_base_url through the settings API when the LLM_PARSING feature is enabled. Write permission to the target trip instance i...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77294/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##🟠 CVE-2026-96749 - High (8.4)
An integer overflow in the BSON document encoding component of the MongoDB Python Driver's bundled native extension may occur when a single document is built from an unusually large amount of caller-supplied data. Size arithmetic is performed in a...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-96749/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
##