## Updated at UTC 2026-08-19T19:11:30.862075

Access data as JSON

CVE CVSS EPSS Posts Repos Nuclei Updated Description
CVE-2026-64849 9.3 1.11% 9 3 2026-08-19T18:34:33.337000 MLflow is an open source AI engineering platform for agents, large language mode
CVE-2026-60730 9.9 0.45% 1 0 2026-08-19T18:32:35 Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware
CVE-2026-60702 9.9 0.48% 2 0 2026-08-19T18:32:34 Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware
CVE-2026-69414 7.8 0.23% 2 2 2026-08-19T18:32:28 Microsoft is aware of an elevation of privilege in the Microsoft Malware Protect
CVE-2026-75143 9.8 0.00% 2 0 2026-08-19T18:17:25.960000 FFmpeg before commit 1c10bcc contains a heap buffer overflow in the RIST protoco
CVE-2026-72530 9.0 0.00% 2 0 2026-08-19T18:17:24.933000 A remote unauthorized attacker with network access via port 4307/TCP to the True
CVE-2026-60728 9.1 0.51% 1 0 2026-08-19T18:16:49.543000 Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware
CVE-2026-60727 9.8 0.49% 1 0 2026-08-19T18:16:49.433000 Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middleware
CVE-2026-32475 9.0 0.00% 2 0 2026-08-19T18:16:38.537000 Unrestricted Upload of File with Dangerous Type vulnerability in Elementor Eleme
CVE-2026-75146 8.1 0.00% 2 0 2026-08-19T17:21:13.057000 FFmpeg before commit 65b0dab contains an out-of-bounds read in the DASH demuxer
CVE-2026-75144 7.8 0.00% 2 0 2026-08-19T17:21:12.720000 FFmpeg before commit 1cdeb3c contains a heap buffer overflow vulnerability in th
CVE-2026-75142 7.8 0.00% 2 0 2026-08-19T17:21:12.437000 FFmpeg before commit 9d786e4 contains a stack buffer overflow in the MPEG-PS mux
CVE-2026-75141 7.8 0.00% 2 0 2026-08-19T17:21:12.287000 FFmpeg before commit acf5d7c contains a heap buffer overflow in the hvcC box wri
CVE-2026-52872 8.8 0.14% 2 0 2026-08-19T17:19:22.820000 Streambert is a cross-platform Electron Desktop App to stream and download video
CVE-2026-18051 10.0 0.18% 2 0 2026-08-19T17:18:36.337000 The W3 Total Cache WordPress plugin before 2.10.5 does not properly validate the
CVE-2026-76008 10.0 0.57% 4 0 2026-08-19T16:19:10.337000 A flaw has been found in Comfast CF-N1-S 2.6.0.1. This affects the function get_
CVE-2026-71176 8.8 0.00% 2 0 2026-08-19T16:19:08.997000 Dell OpenManage Enterprise, versions prior to 4.7.0, contains an Improper Neutra
CVE-2026-58562 7.3 0.00% 1 0 2026-08-19T16:18:09.263000 Dell Command Update (DCU), versions prior to 5.7.1, contain a Missing Authorizat
CVE-2026-73921 9.8 0.36% 2 0 2026-08-19T15:33:23 Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imp
CVE-2026-73938 7.5 0.40% 2 0 2026-08-19T15:33:23 Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imp
CVE-2026-76219 8.1 0.00% 1 0 2026-08-19T15:32:38 GitPython versions before 3.1.58 contain an arbitrary file overwrite vulnerabili
CVE-2026-76234 7.5 0.00% 2 0 2026-08-19T15:32:36 libcrux-ecdh and libcrux-ed25519 before 0.0.6, and libcrux-psq before 0.0.7, con
CVE-2026-67364 None 0.00% 2 0 2026-08-19T15:32:24 Joomla Extension - balbooa.com - Pre-auth PHP Code Injection in Balbooa Forms <
CVE-2026-73937 8.2 0.41% 2 0 2026-08-19T15:32:20 Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imp
CVE-2026-73935 7.5 0.32% 2 0 2026-08-19T15:32:20 Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imp
CVE-2026-73934 7.5 0.32% 2 0 2026-08-19T15:32:20 Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imp
CVE-2026-73939 8.6 0.34% 2 0 2026-08-19T15:32:20 Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imp
CVE-2026-73922 9.1 0.30% 2 0 2026-08-19T15:32:19 Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imp
CVE-2026-73931 8.3 0.24% 2 0 2026-08-19T15:32:19 Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imp
CVE-2026-73936 7.5 0.44% 2 0 2026-08-19T15:18:06.730000 Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imp
CVE-2026-73925 8.2 0.24% 2 0 2026-08-19T15:18:06.010000 Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imp
CVE-2026-73924 9.1 0.30% 2 0 2026-08-19T15:18:05.823000 Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imp
CVE-2026-71961 8.8 0.00% 2 0 2026-08-19T15:18:02.083000 Cudy WR3000 2.0 running firmware before 2.5.24 contains an OS command injection
CVE-2026-76004 9.9 0.44% 4 0 2026-08-19T14:17:44.740000 A security vulnerability has been detected in UTT HiPER 1250GW up to 3.2.7-21090
CVE-2026-60392 7.8 0.16% 1 0 2026-08-19T14:17:35.177000 Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middl
CVE-2026-9816 8.3 0.24% 1 0 2026-08-19T13:29:28.910000 Mattermost versions 11.7.x <= 11.7.6, 10.11.x <= 10.11.21, 11.8.x <= 11.8.3 fail
CVE-2026-75935 7.5 0.44% 2 0 2026-08-19T13:18:11.400000 Uncontrolled memory allocation in the binary Ion stream cursor in Amazon ion-jav
CVE-2026-75877 9.9 0.61% 2 0 2026-08-19T13:18:11.260000 A flaw has been found in TRENDnet TV-IP751WIC 11.03.03. This vulnerability affec
CVE-2026-73930 9.9 0.38% 2 0 2026-08-19T13:18:09.650000 Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imp
CVE-2026-73390 9.8 0.00% 1 0 2026-08-19T13:18:08.417000 Unauthenticated Privilege Escalation in Total Donations <= 2.0.5 versions.
CVE-2026-19490 0 0.00% 2 0 2026-08-19T13:17:45 Vulnerability in NetScaler ADC and NetScaler Gateway. This issue affects ADC: f
CVE-2026-15780 7.2 0.39% 1 0 2026-08-19T09:31:30 The WP Statistics – Simple, privacy-friendly Google Analytics alternative plugin
CVE-2026-76050 7.3 0.33% 1 0 2026-08-19T06:31:24 A vulnerability was found in SourceCodester Simple Online Food Ordering System 1
CVE-2026-76049 7.3 0.33% 1 0 2026-08-19T06:31:24 A vulnerability has been found in SourceCodester Simple Online Food Ordering Sys
CVE-2026-70408 8.8 0.33% 2 0 2026-08-19T06:31:24 An incorrect authorization vulnerability exists in acmailer, which may allow a u
CVE-2026-19942 8.1 0.69% 2 0 2026-08-19T05:17:02.217000 The Atarim – AI Agency for WordPress: Edit Pages, Fix Code, Update Plugins, SEO
CVE-2026-65400 9.8 0.75% 14 1 2026-08-19T04:17:34.547000 An authentication issue was addressed with improved state management. This issue
CVE-2026-59310 9.8 2.40% 3 2 2026-08-19T04:17:24.940000 VMware vCenter contains a directory traversal vulnerability in the Syslog server
CVE-2026-76003 9.9 0.44% 4 0 2026-08-19T03:31:23 A weakness has been identified in UTT HiPER 1200GW up to 2.5.3-170306. Affected
CVE-2026-18963 9.1 0.39% 2 0 2026-08-19T03:16:52.443000 A flaw was found in the reset-credentials flow of the keycloak-services componen
CVE-2026-75976 9.9 0.63% 4 0 2026-08-19T00:31:19 A weakness has been identified in TRENDnet TEW-823DRU 1.1.02b01. Impacted is the
CVE-2026-66602 8.8 0.15% 2 0 2026-08-19T00:31:18 Cross-Site Request Forgery (CSRF) vulnerability in DevItems HashBar – WordPress
CVE-2026-74015 9.3 0.29% 1 0 2026-08-18T22:17:34.023000 Unauthenticated SQL Injection in Readabler < 2.0.18 versions.
CVE-2026-52876 8.8 0.15% 2 0 2026-08-18T22:16:54.173000 Streambert is a cross-platform Electron Desktop App to stream and download video
CVE-2026-50142 7.5 0.56% 2 1 2026-08-18T22:16:52.633000 libheif is a HEIF and AVIF file format decoder and encoder. From 1.19.0 until 1.
CVE-2026-21580 0 0.36% 2 0 2026-08-18T22:16:50.140000 This Critical severity Stored XSS, PrivEsc (Privilege Escalation), and Security
CVE-2026-60782 9.8 0.49% 1 0 2026-08-18T21:32:07 Vulnerability in the Oracle Payments product of Oracle E-Business Suite (compone
CVE-2026-60720 9.9 0.45% 1 0 2026-08-18T21:32:06 Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middleware
CVE-2026-60721 9.8 0.49% 1 0 2026-08-18T21:31:57 Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middleware
CVE-2026-47628 7.5 0.35% 4 0 2026-08-18T21:31:54 NVIDIA Triton Inference Server for Linux contains a vulnerability where an attac
CVE-2026-47606 6.5 0.41% 2 0 2026-08-18T21:31:54 NVIDIA Triton Inference Server for Linux contains a vulnerability where an attac
CVE-2026-47627 9.8 0.43% 4 0 2026-08-18T21:31:53 NVIDIA Triton Inference Server for Linux contains a vulnerability where an attac
CVE-2026-17106 None 0.19% 1 3 2026-08-18T21:17:30 ### Summary The tar extraction routines in `moby/go-archive` (`Unpack`, `UnpackL
CVE-2026-75911 7.8 0.17% 2 0 2026-08-18T20:17:33.760000 CodeWhale versions before 0.8.64 fail to properly validate the allow_shell confi
CVE-2026-75625 9.0 0.20% 2 0 2026-08-18T20:17:32.460000 Kraken agents fail to verify peer-to-peer downloaded blobs against their request
CVE-2026-47719 8.2 0.48% 1 0 2026-08-18T20:17:15.103000 FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. Prior
CVE-2026-11801 7.5 0.30% 2 0 2026-08-18T20:17:11.423000 The WPAdverts – Classifieds Plugin plugin for WordPress is vulnerable to authori
CVE-2026-47630 5.5 0.14% 2 0 2026-08-18T19:16:52.650000 NVIDIA Triton Inference Server for Linux contains a vulnerability where an attac
CVE-2026-47629 7.5 0.35% 4 0 2026-08-18T19:16:52.217000 NVIDIA Triton Inference Server for Linux contains a vulnerability where an attac
CVE-2026-75130 9.0 0.28% 2 0 2026-08-18T18:32:11 Context7 through 2.1.2 contains a prompt injection vulnerability that allows att
CVE-2026-33824 9.8 77.90% 8 2 2026-08-18T18:31:46 Double free in Windows IKE Extension allows an unauthorized attacker to execute
CVE-2026-71424 9.6 0.29% 1 0 2026-08-18T18:19:32.247000 Onyx is an open-source AI platform. Prior to 3.1.10, 3.2.14, and 4.0.0, Onyx's G
CVE-2026-75103 8.8 0.34% 1 0 2026-08-18T16:18:20.127000 Crawlab fails to verify user ownership or administrative role on the password-ch
CVE-2026-67854 9.8 0.40% 1 0 2026-08-18T16:18:14.327000 SQL Injection vulnerability in Qcms v.6.0.6 allows a remote attacker to execute
CVE-2026-56677 8.6 0.27% 1 0 2026-08-18T16:17:59.650000 9Router is an AI router & token saver. In 0.5.4 and earlier, the POST /api/auth/
CVE-2026-73062 7.5 0.28% 1 0 2026-08-18T15:17:01.647000 Scriban versions 3.0.0 through 7.2.0 contain a denial of service vulnerability i
CVE-2026-73057 7.5 0.28% 1 0 2026-08-18T15:17:01.497000 stoatchat before 0.15.0 fails to validate SVG viewBox dimensions in the proxy en
CVE-2026-24301 8.8 1.63% 4 0 2026-08-18T15:16:51.903000 Improper neutralization of special elements used in a command ('command injectio
CVE-2026-19478 9.4 0.72% 14 3 2026-08-18T14:57:10.630000 GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.2
CVE-2026-75851 9.9 0.32% 1 0 2026-08-18T14:18:12.117000 ArcadeDB server (com.arcadedb:arcadedb-server) in versions 26.7.3 and earlier fa
CVE-2026-75783 9.6 0.40% 2 0 2026-08-18T14:18:10.200000 A security vulnerability has been detected in TRENDnet TEW-WLC100P 12.07b01. Aff
CVE-2026-75081 4.3 0.27% 1 0 2026-08-18T14:18:08.373000 A vulnerability was detected in Webkul Bagisto up to 2.4.4. Impacted is an unkno
CVE-2026-19959 9.9 0.47% 2 0 2026-08-18T14:16:59.543000 A weakness has been identified in Edimax EW-7478APC 1.04. This affects the funct
CVE-2026-75853 8.8 0.39% 2 0 2026-08-18T12:31:30 ArcadeDB's Gremlin wire-protocol plugin (com.arcadedb:arcadedb-gremlin) in versi
CVE-2026-75852 9.8 0.45% 1 0 2026-08-18T12:31:30 ArcadeDB versions before 26.8.1 fail to enforce SASL authentication on data comm
CVE-2026-75854 9.8 1.07% 1 0 2026-08-18T12:31:30 ArcadeDB versions before 26.8.1 contain a missing authentication vulnerability i
CVE-2026-15748 9.8 1.18% 10 3 2026-08-18T06:31:55 The Forminator Forms plugin for WordPress is vulnerable to Arbitrary File Upload
CVE-2026-75060 8.4 0.14% 1 0 2026-08-18T04:16:47.650000 In JetBrains PyCharm before 2026.2.1 code execution was possible via unauthentic
CVE-2026-75094 9.1 2.09% 2 0 2026-08-18T03:31:14 A flaw has been found in COMFAST CF-N1-S 2.6.0.1. This impacts the function sub_
CVE-2026-19771 7.2 2.79% 1 0 2026-08-18T02:17:25.770000 A vulnerability was identified in Baicells EG3661M BaiCE_BQ6_2.0.5.3_NA. This im
CVE-2026-75482 7.5 0.62% 1 0 2026-08-17T21:31:35 SWE-agent's trajectory inspector (sweagent inspector), confirmed in v1.1.0, is a
CVE-2026-66792 9.9 0.30% 3 0 2026-08-17T21:31:30 A flaw was found in the multicloud-operators-subscription component. This vulner
CVE-2026-19650 7.1 0.24% 4 1 2026-08-17T21:31:30 GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.2
CVE-2026-68005 7.5 0.41% 1 0 2026-08-17T21:31:30 An issue in ACME mini_httpd 1.30 and prior allows a remote attacker to cause a d
CVE-2026-75106 9.1 0.30% 1 0 2026-08-17T21:31:30 OpnForm derives editable-submission secrets from sequential row identifiers usin
CVE-2026-71472 9.1 0.39% 1 0 2026-08-17T21:31:30 A flaw was found in acm-search-v2-rhel9. This vulnerability allows an authentica
CVE-2026-70495 8.8 0.10% 1 0 2026-08-17T21:31:30 A flaw was found in search-v2-operator. This component's `search-serviceaccount`
CVE-2026-75481 8.8 0.28% 1 0 2026-08-17T21:31:27 SkyPilot fails to validate that authenticated users are entitled to grant admini
CVE-2026-75479 7.5 0.36% 1 0 2026-08-17T21:31:27 JimuReport contains an authentication bypass vulnerability in the report folder
CVE-2026-75110 9.8 0.52% 1 0 2026-08-17T21:31:27 MemOS is a memory operating system for LLMs and AI agents. In deployments where
CVE-2026-75111 7.5 0.39% 1 0 2026-08-17T21:16:50.193000 Evidently UI fails to properly validate the filename parameter in the dataset ma
CVE-2026-75105 7.5 0.28% 1 0 2026-08-17T21:16:49.473000 phpIPAM through 1.8.1 fails to verify that a requested IP address belongs to the
CVE-2026-74234 7.7 0.28% 2 0 2026-08-17T20:16:46.813000 Legora before 2026-08-14 contains a cross-site scripting vulnerability that allo
CVE-2026-45698 7.5 0.27% 1 0 2026-08-17T20:16:43.153000 Netatalk is a Free and Open Source file server suite for Unix-like operating sys
CVE-2026-74238 7.5 0.38% 1 0 2026-08-17T19:16:42.713000 TIER IV Nebula through 1.2.0 contains an out-of-bounds read vulnerability in the
CVE-2026-73056 9.8 0.45% 1 0 2026-08-17T19:16:40.153000 SiYuan kernel versions before 3.7.4 contain an improper restriction of excessive
CVE-2026-71479 9.1 0.52% 1 0 2026-08-17T19:16:35.383000 New API is a large language mode (LLM) gateway and artificial intelligence (AI)
CVE-2026-17482 9.8 0.55% 2 0 2026-08-17T19:16:28.953000 IBM Documentation Offline 1.0.0 through 1.4.1 could allow a remote attacker to e
CVE-2026-40145 None 0.11% 2 0 2026-08-17T18:31:28 A vulnerability exists in the interaction between a Endpoint Privilege Managemen
CVE-2026-75056 7.8 0.15% 1 0 2026-08-17T18:31:28 In JetBrains IntelliJ IDEA before 2026.2.1 rCE via Markdown export tool was poss
CVE-2026-40144 None 0.11% 2 0 2026-08-17T18:31:22 A memory-corruption vulnerability exists in a kernel-mode component of BeyondTru
CVE-2026-75045 9.1 0.30% 1 0 2026-08-17T18:31:22 In JetBrains YouTrack before 2025.3.156085, 2026.1.13913, 2026.2.18112 an unau
CVE-2026-75051 8.1 0.22% 1 0 2026-08-17T18:31:19 In JetBrains YouTrack before 2026.2.17917 unauthorised project transfer between
CVE-2026-74788 7.5 0.28% 1 0 2026-08-17T17:16:52.490000 Scriban before 7.0.0 (affected versions <= 6.6.0) contains an uncontrolled memor
CVE-2026-74789 7.5 0.34% 1 0 2026-08-17T16:17:48.590000 Scriban before 7.0.0 (affected <= 6.6.0) applies its LoopLimit constraint only t
CVE-2026-74251 0 0.37% 1 1 2026-08-17T16:17:48.243000 Joomla Extension - phoca.cz - Unauthenticated SQL injection via attribute filte
CVE-2026-15826 9.8 0.80% 3 1 2026-08-17T16:16:50.140000 The User Profile Builder plugin for WordPress is vulnerable to Authentication By
CVE-2026-58231 10.0 0.73% 4 1 2026-08-17T15:39:24.573000 SAP Commerce Cloud allows an unauthenticated attacker to abuse a default authent
CVE-2026-14564 9.0 0.24% 1 0 2026-08-17T15:30:38 Insufficiently Protected Credentials vulnerability in Innotim Software Telecommu
CVE-2026-74889 9.8 0.20% 1 0 2026-08-17T12:32:31 openssl_encrypt versions before 1.4.0 use HKDF with no salt and static info para
CVE-2026-74843 10.0 0.97% 1 0 2026-08-17T12:32:28 A vulnerability was determined in Wavlink WN531P3 and WN535M1 V250922. Affected
CVE-2026-74845 8.8 0.65% 1 0 2026-08-17T11:16:40.780000 Official Document Management System developed by 2100 Technology has an Arbitrar
CVE-2026-15623 None 0.20% 1 0 2026-08-17T09:30:29 A SQL Injection vulnerability in a legacy dashboard widget API in Google Cloud G
CVE-2026-72407 10.0 0.52% 1 0 2026-08-17T06:33:28 In the Linux kernel, the following vulnerability has been resolved: geneve: val
CVE-2026-50602 None 0.10% 1 0 2026-08-17T03:30:28 A security vulnerability has been identified in Planet9 due to incorrect file pe
CVE-2026-19961 9.9 0.47% 2 0 2026-08-17T00:31:35 A vulnerability was detected in Edimax EW-7478APC 1.04. Affected is the function
CVE-2026-68820 7.0 0.33% 6 2 2026-08-16T19:17:24.183000 Use after free in Windows Ancillary Function Driver for WinSock allows an author
CVE-2026-73060 7.5 0.37% 1 0 2026-08-16T15:30:33 Scriban versions from 3.0.0 through 7.2.5 contain a denial of service vulnerabil
CVE-2026-73061 9.8 0.30% 1 0 2026-08-16T15:30:26 Scriban before 7.2.2 contains an access-modifier bypass vulnerability in TypedOb
CVE-2026-17186 9.9 0.47% 2 0 2026-08-14T21:31:35 IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to execute
CVE-2026-19188 10.0 1.89% 1 0 2026-08-14T19:17:17.480000 A critical OS command injection vulnerability has been identified in the Haiwel
CVE-2026-19747 9.8 2.36% 1 0 2026-08-14T19:09:39.140000 A weakness has been identified in Tenda CH7, CH7G, CH10, CP3, CP3 Pro, CP7, TC3B
CVE-2026-73268 9.9 0.37% 1 0 2026-08-14T19:07:46.080000 A flaw was found in the cluster-curator-controller component of multicluster eng
CVE-2026-19681 9.9 2.24% 1 0 2026-08-14T18:31:46 An authenticated command injection vulnerability exists in Security Center relat
CVE-2026-8715 9.6 0.32% 2 0 2026-08-14T13:19:11.077000 Vault Secrets Operator 1.3.0 up to 1.4.1 is vulnerable to an arbitrary file read
CVE-2026-68138 7.8 0.13% 2 3 2026-08-14T00:31:53 In the Linux kernel, the following vulnerability has been resolved: net/sched:
CVE-2026-71290 9.1 0.19% 3 0 2026-08-13T18:31:23 Improper TLS hostname verification vulnerability in Apache HttpComponents Client
CVE-2026-18146 7.2 0.36% 2 0 2026-08-13T09:31:16 The Fluent Forms – Customizable Contact Forms, Survey, Quiz, & Conversational Fo
CVE-2026-19001 9.8 0.38% 2 0 2026-08-12T21:31:51 The MongoDB BI Connector ODBC Driver may write outside the bounds of a fixed-siz
CVE-2026-72898 10.0 10.40% 1 6 template 2026-08-12T15:18:30.347000 Metabase allows a remote, unauthenticated attacker to inject arbitrary SQL via t
CVE-2026-72526 9.9 0.30% 1 0 2026-08-12T03:31:18 A flaw was found in the multicloud-integrations component. The Application propa
CVE-2026-66804 7.8 3.42% 2 3 2026-08-11T18:31:49 Improper access control in Windows Cross Device Service allows an authorized att
CVE-2026-65775 7.8 2.45% 1 0 2026-08-11T18:31:44 Use after free in Windows Win32K allows an authorized attacker to elevate privil
CVE-2026-62832 7.8 2.37% 1 0 2026-08-11T18:31:33 Improper link resolution before file access ('link following') in Windows User P
CVE-2026-62696 7.8 3.17% 1 0 2026-08-11T18:31:18 Integer underflow (wrap or wraparound) in Windows Program Compatibility Assistan
CVE-2026-61358 7.8 3.68% 1 0 2026-08-11T18:31:13 Improper link resolution before file access ('link following') in Windows Access
CVE-2026-13738 None 0.53% 2 0 2026-08-11T18:30:43 CommServe contained an authorization bypass vulnerability affecting a limited se
CVE-2026-13737 0 0.43% 2 0 2026-08-11T17:17:47.540000 CommServe contained an allowlist bypass vulnerability affecting command executio
CVE-2026-71958 9.8 0.56% 2 0 2026-08-08T18:30:30 D-Link DWR-M961 devices with hardware version C1 and software version 1.1.2_C1_2
CVE-2026-6540 7.5 0.37% 2 1 2026-08-08T01:10:43.697000 Calico's Application Layer Policy (disabled by default), which enforces HTTP rul
CVE-2026-6837 7.2 0.95% 1 1 2026-08-04T03:31:16 A post-authentication command injection vulnerability in the "export-cgi" CGI pr
CVE-2026-12569 9.8 30.20% 12 1 2026-08-01T05:16:55.023000 A critical remote code execution (RCE) vulnerability has been reported in PTC Wi
CVE-2026-43774 5.5 0.13% 1 0 2026-07-29T19:32:51.167000 An out-of-bounds read was addressed with improved bounds checking. This issue is
CVE-2026-54121 8.8 1.05% 1 13 2026-07-21T19:54:33.623000 Improper authorization in Active Directory Certificate Services (AD CS) allows a
CVE-2026-8452 9.8 0.49% 5 2 2026-07-01T15:52:28.390000 Memory overflow vulnerability NetScaler ADC and NetScaler Gateway leading to unp
CVE-2025-60710 7.8 4.60% 1 2 2026-06-17T09:50:01.133000 Improper link resolution before file access ('link following') in Host Process f
CVE-2021-33045 9.8 99.56% 1 4 2026-06-17T03:54:04.020000 The identity authentication bypass vulnerability found in some Dahua products du
CVE-2021-33044 9.8 99.87% 1 10 2026-06-17T03:54:03.827000 The identity authentication bypass vulnerability found in some Dahua products du
CVE-2008-5161 3.7 15.39% 2 1 2026-06-16T22:59:22.107000 Error handling in the SSH protocol in (1) SSH Tectia Client and Server and Conne
CVE-2026-32193 8.8 0.34% 1 0 2026-06-09T18:30:48 Improper limitation of a pathname to a restricted directory ('path traversal') i
CVE-2026-0075 5.9 0.09% 2 1 2026-06-02T15:33:09 In multiple functions, there is a possible way to access the contacts database d
CVE-2026-27912 8.0 0.24% 2 3 2026-04-14T18:30:50 Improper authorization in Windows Kerberos allows an authorized attacker to elev
CVE-2026-3286 6.3 0.31% 1 0 2026-02-27T06:31:39 A vulnerability was identified in itwanger paicoding 1.0.0/1.0.1/1.0.2/1.0.3. Th
CVE-2025-62593 None 1.01% 11 1 2025-12-01T16:02:43 # Summary Developers working with Ray as a development tool can be exploited vi
CVE-2026-50191 0 0.33% 2 0 N/A
CVE-2026-50186 0 0.43% 2 0 N/A
CVE-2026-53958 0 0.28% 2 0 N/A
CVE-2026-52877 0 0.30% 2 0 N/A
CVE-2026-75936 0 0.44% 2 0 N/A
CVE-2025-53906 0 0.73% 2 0 N/A
CVE-2026-75914 0 0.41% 2 0 N/A
CVE-2026-75913 0 0.33% 2 0 N/A
CVE-2024-39302 0 0.45% 1 0 N/A
CVE-2026-45790 0 0.28% 1 0 N/A
CVE-2026-62356 0 0.00% 5 0 N/A
CVE-2024-69414 0 0.00% 1 0 N/A
CVE-2026-73296 0 2.61% 1 0 N/A

CVE-2026-64849
(9.3 CRITICAL)

EPSS: 1.11%

updated 2026-08-19T18:34:33.337000

9 posts

MLflow is an open source AI engineering platform for agents, large language models, and machine learning models. Prior to 3.15.0, the unauthenticated POST /api/2.0/mlflow/webhooks/{id}/test endpoint calls _validate_webhook_url() in mlflow/utils/validation.py only for the original URL while mlflow/webhooks/delivery.py follows redirects and re-resolves the hostname without pinning the validated addr

3 repos

https://github.com/zavisco/CVE-2026-64849.yaml

https://github.com/codeb0ssx/CVE-2026-64849-PoC

https://github.com/BiuTrap/CVE-2026-64849

cisakevtracker@mastodon.social at 2026-08-19T18:00:51.000Z ##

CVE ID: CVE-2026-64849
Vendor: MLflow
Product: MLflow
Date Added: 2026-08-19
CVE URL: nvd.nist.gov/vuln/detail/CVE-2

##

beyondmachines1 at 2026-08-19T08:01:23.736Z ##

Attackers Exploit a Critical MLflow Vulnerability

Attackers are actively exploiting a critical flaw in MLflow (CVE-2026-64849) to steal cloud credentials and gain remote code execution.

**If you run MLflow, update it to version 3.15.0 or later ASAP, and make sure the server is not reachable from the internet. Then check your audit logs for any odd requests to cloud metadata services. If you see any (or aren't sure), rotate your cloud credentials and keys as a precaution.**

beyondmachines.net/event_detai

##

cyberworldops at 2026-08-18T20:20:00.481Z ##

Active exploitation of CVE-2026-64849 in MLflow enables unauthenticated SSRF to internal endpoints including cloud metadata services. FUXA, a SCADA/HMI platform for industrial automation, faces parallel exposure. Both flaws were confirmed independently by watchTowr and VulnCheck.

cyberworldops.eu/en/mlflow-and

##

Analyst207@mastodon.social at 2026-08-18T18:56:58.000Z ##

Attackers Exploit MLflow Flaw to Steal Cloud Credentials

A newly discovered vulnerability in MLflow, CVE-2026-64849, with a near-perfect CVSS score of 9.3 is being exploited by attackers to infiltrate cloud metadata services and steal sensitive credentials. This critical flaw allows hackers to issue unauthorized requests and extract confidential data, putting your cloud security at risk.

osintsights.com/attackers-expl

#Mlflow #CloudCredentialsTheft #Cve202664849 #ServersideRequestForgery #Ssrf

##

cisakevtracker@mastodon.social at 2026-08-19T18:00:51.000Z ##

CVE ID: CVE-2026-64849
Vendor: MLflow
Product: MLflow
Date Added: 2026-08-19
CVE URL: nvd.nist.gov/vuln/detail/CVE-2

##

beyondmachines1@infosec.exchange at 2026-08-19T08:01:23.000Z ##

Attackers Exploit a Critical MLflow Vulnerability

Attackers are actively exploiting a critical flaw in MLflow (CVE-2026-64849) to steal cloud credentials and gain remote code execution.

**If you run MLflow, update it to version 3.15.0 or later ASAP, and make sure the server is not reachable from the internet. Then check your audit logs for any odd requests to cloud metadata services. If you see any (or aren't sure), rotate your cloud credentials and keys as a precaution.**
#cybersecurity #infosec #attack #activeexploit
beyondmachines.net/event_detai

##

cyberworldops@infosec.exchange at 2026-08-18T20:20:00.000Z ##

Active exploitation of CVE-2026-64849 in MLflow enables unauthenticated SSRF to internal endpoints including cloud metadata services. FUXA, a SCADA/HMI platform for industrial automation, faces parallel exposure. Both flaws were confirmed independently by watchTowr and VulnCheck.

#MLflowVulnerability #FUXACVE #IndustrialOT #AISecurity

cyberworldops.eu/en/mlflow-and

##

DailyCyberSecurity@infosec.exchange at 2026-08-18T12:33:19.000Z ##

A public PoC for CVE-2026-64849, an unauthenticated MLflow SSRF (CVSS 9.3), is now live. watchTowr reports exploitation attempts. Patch to 3.15.0.

#MLflow #CVE202664849 #SSRF #watchTowr #AISecurity #InfoSec

securityonline.info/mlflow-ssr

##

thehackerwire@mastodon.social at 2026-08-17T23:01:08.000Z ##

🔴 CVE-2026-64849 - Critical (9.3)

MLflow is an open source AI engineering platform for agents, large language models, and machine learning models. Prior to 3.15.0, the unauthenticated POST /api/2.0/mlflow/webhooks/{id}/test endpoint calls _validate_webhook_url() in mlflow/utils/va...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-60730
(9.9 CRITICAL)

EPSS: 0.45%

updated 2026-08-19T18:32:35

1 posts

Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Composer). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle WebCenter Portal. While the vulnerability is in Oracle WebCenter Portal, attacks may significantly impact addit

infosecbot@mastodon.hofud.com at 2026-08-19T06:09:14.000Z ##

[1/9]

Most Impactful Security Incidents ( 2026‑08‑18 → 2026‑08‑19 )

---

PRIORITY 1 – Critical / High‑Severity Flaws (CVSS 7‑10):

CVE‑2026‑60392
• 7.8 (HIGH)
• Oracle Outside In Technology – PDF Export SDK (Fusion Middleware)
• Local‑privilege escalation; requires attacker to have a logon on the host where the SDK runs. Successful exploitation can lead to full takeover of the component.
• 8.5.8
• Easily exploitable (local) – requires user interaction.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60782
• 9.8 (CRITICAL)
• Oracle Payments (E‑Business Suite) – File Transmission
• Remote unauthenticated attacker can compromise the Payments module via HTTP. Leads to full takeover of the Payments service.
• 12.2.3‑12.2.15
• Network‑accessible, no authentication required.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60730
• 9.9 (CRITICAL)
• Oracle WebCenter Portal – Composer component
• Remote unauthenticated attacker can compromise the portal via HTTP. Full takeover of the portal.
• 12.2.1.4.0, 14.1.2.0.0
• Network‑accessible, no auth.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60728
• 9.1 (CRITICAL)
• Oracle WebCenter Portal – Portlet Services
• Remote unauthenticated attacker can cause denial‑of‑service and full compromise of portal data.
• 12.2.1.4.0, 14.1.2.0.0
• Network‑accessible, no auth.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60727
• 9.8 (CRITICAL)
• Oracle Identity Manager – OIM Legacy UI
• Remote unauthenticated attacker can take over the IAM system via HTTP.
• 12.2.1.4.0, 14.1.2.1.0
• Network‑accessible, no auth.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60721
• 9.8 (CRITICAL)
• Oracle Identity Manager – OIM Legacy UI
• Same vector as above; full takeover possible.
• 12.2.1.4.0, 14.1.2.1.0
• Network‑accessible, no auth.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60720
• 9.9 (CRITICAL)
• Oracle Identity Manager – OIM Legacy UI
• Remote unauthenticated attacker can compromise the IAM system.
• 12.2.1.4.0, 14.1.2.1.0
• Network‑accessible, no auth.
cveawg.mitre.org/api/cve/CVE-2

#infosecnews

##

CVE-2026-60702
(9.9 CRITICAL)

EPSS: 0.48%

updated 2026-08-19T18:32:34

2 posts

Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via T3, IIOP to compromise Oracle WebLogic Server. While the vulnerability is in Oracle WebLogic Server, attacks may signi

DailyCyberSecurity at 2026-08-19T02:42:04.742Z ##

An Oracle WebLogic vulnerability, CVE-2026-60702 (CVSS 9.9), allows full server takeover. Oracle patched nine flaws, five rated critical. Update now.

securityonline.info/oracle-web

##

DailyCyberSecurity@infosec.exchange at 2026-08-19T02:42:04.000Z ##

An Oracle WebLogic vulnerability, CVE-2026-60702 (CVSS 9.9), allows full server takeover. Oracle patched nine flaws, five rated critical. Update now.

#OracleWebLogic #CVE202660702 #RCE #FusionMiddleware #ServerTakeover #InfoSec

securityonline.info/oracle-web

##

CVE-2026-69414
(7.8 HIGH)

EPSS: 0.23%

updated 2026-08-19T18:32:28

2 posts

Microsoft is aware of an elevation of privilege in the Microsoft Malware Protection Engine in Microsoft Defender publicly referred to as &quot;ShieldBreak &quot;. We are working to provide a high quality security update that addresses this vulnerability. We will provide information in this CVE when the update is available.

2 repos

https://github.com/1neptune/ShieldBreak

https://github.com/HORKimhab/CVE-2026-50656

benzogaga33@mamot.fr at 2026-08-18T09:40:03.000Z ##

ShieldBreak : cette faille zero-day menace Windows, Microsoft prépare un patch it-connect.fr/shieldbreak-zero #ActuCybersécurité #Cybersécurité #Vulnérabilité #Microsoft #Windows

##

GossiTheDog@cyberplace.social at 2026-08-17T15:24:10.000Z ##

ShieldBreak appears to be CVE-2026-69414 ht @wdormann msrc.microsoft.com/update-guid

Microsoft is aware of an elevation of privilege in the Microsoft Malware Protection Engine in Microsoft Defender publicly referred to as "ShieldBreak ".
We are working to provide a high quality security update that addresses this vulnerability. We will provide information in this CVE when the update is available.

##

CVE-2026-75143
(9.8 CRITICAL)

EPSS: 0.00%

updated 2026-08-19T18:17:25.960000

2 posts

FFmpeg before commit 1c10bcc contains a heap buffer overflow in the RIST protocol reader (libavformat/librist.c). librist_read() ignored its size argument and copied the full received payload length into the caller-provided destination buffer, overflowing it when the payload exceeds the destination size. This is reachable via the async:rist:// URL scheme, where the async wrapper supplies a smaller

thehackerwire@mastodon.social at 2026-08-19T18:01:18.000Z ##

🔴 CVE-2026-75143 - Critical (9.8)

FFmpeg before commit 1c10bcc contains a heap buffer overflow in the RIST protocol reader (libavformat/librist.c). librist_read() ignored its size argument and copied the full received payload length into the caller-provided destination buffer, ove...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-19T18:01:18.000Z ##

🔴 CVE-2026-75143 - Critical (9.8)

FFmpeg before commit 1c10bcc contains a heap buffer overflow in the RIST protocol reader (libavformat/librist.c). librist_read() ignored its size argument and copied the full received payload length into the caller-provided destination buffer, ove...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-72530
(9.0 CRITICAL)

EPSS: 0.00%

updated 2026-08-19T18:17:24.933000

2 posts

A remote unauthorized attacker with network access via port 4307/TCP to the TrueConf server versions 5.3.X to 5.3.9, 5.4.X to 5.4.9, 5.5.X to 5.5.5, and earlier could use a specially crafted script to break out of the isolated environment and execute arbitrary code on the host system.

thehackerwire@mastodon.social at 2026-08-19T18:01:44.000Z ##

🔴 CVE-2026-72530 - Critical (9)

A remote unauthorized attacker with network access via port 4307/TCP to the TrueConf server versions 5.3.X to 5.3.9, 5.4.X to 5.4.9, 5.5.X to 5.5.5, and earlier could use a specially crafted script to break out of the isolated environment and exec...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-19T18:01:44.000Z ##

🔴 CVE-2026-72530 - Critical (9)

A remote unauthorized attacker with network access via port 4307/TCP to the TrueConf server versions 5.3.X to 5.3.9, 5.4.X to 5.4.9, 5.5.X to 5.5.5, and earlier could use a specially crafted script to break out of the isolated environment and exec...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-60728
(9.1 CRITICAL)

EPSS: 0.51%

updated 2026-08-19T18:16:49.543000

1 posts

Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Portlet Services). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle WebCenter Portal. Successful attacks of this vulnerability can result in unauthorized access to criti

infosecbot@mastodon.hofud.com at 2026-08-19T06:09:14.000Z ##

[1/9]

Most Impactful Security Incidents ( 2026‑08‑18 → 2026‑08‑19 )

---

PRIORITY 1 – Critical / High‑Severity Flaws (CVSS 7‑10):

CVE‑2026‑60392
• 7.8 (HIGH)
• Oracle Outside In Technology – PDF Export SDK (Fusion Middleware)
• Local‑privilege escalation; requires attacker to have a logon on the host where the SDK runs. Successful exploitation can lead to full takeover of the component.
• 8.5.8
• Easily exploitable (local) – requires user interaction.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60782
• 9.8 (CRITICAL)
• Oracle Payments (E‑Business Suite) – File Transmission
• Remote unauthenticated attacker can compromise the Payments module via HTTP. Leads to full takeover of the Payments service.
• 12.2.3‑12.2.15
• Network‑accessible, no authentication required.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60730
• 9.9 (CRITICAL)
• Oracle WebCenter Portal – Composer component
• Remote unauthenticated attacker can compromise the portal via HTTP. Full takeover of the portal.
• 12.2.1.4.0, 14.1.2.0.0
• Network‑accessible, no auth.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60728
• 9.1 (CRITICAL)
• Oracle WebCenter Portal – Portlet Services
• Remote unauthenticated attacker can cause denial‑of‑service and full compromise of portal data.
• 12.2.1.4.0, 14.1.2.0.0
• Network‑accessible, no auth.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60727
• 9.8 (CRITICAL)
• Oracle Identity Manager – OIM Legacy UI
• Remote unauthenticated attacker can take over the IAM system via HTTP.
• 12.2.1.4.0, 14.1.2.1.0
• Network‑accessible, no auth.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60721
• 9.8 (CRITICAL)
• Oracle Identity Manager – OIM Legacy UI
• Same vector as above; full takeover possible.
• 12.2.1.4.0, 14.1.2.1.0
• Network‑accessible, no auth.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60720
• 9.9 (CRITICAL)
• Oracle Identity Manager – OIM Legacy UI
• Remote unauthenticated attacker can compromise the IAM system.
• 12.2.1.4.0, 14.1.2.1.0
• Network‑accessible, no auth.
cveawg.mitre.org/api/cve/CVE-2

#infosecnews

##

CVE-2026-60727
(9.8 CRITICAL)

EPSS: 0.49%

updated 2026-08-19T18:16:49.433000

1 posts

Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middleware (component: OIM Legacy UI). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.1.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Identity Manager. Successful attacks of this vulnerability can result in takeover of Oracle Identity Mana

infosecbot@mastodon.hofud.com at 2026-08-19T06:09:14.000Z ##

[1/9]

Most Impactful Security Incidents ( 2026‑08‑18 → 2026‑08‑19 )

---

PRIORITY 1 – Critical / High‑Severity Flaws (CVSS 7‑10):

CVE‑2026‑60392
• 7.8 (HIGH)
• Oracle Outside In Technology – PDF Export SDK (Fusion Middleware)
• Local‑privilege escalation; requires attacker to have a logon on the host where the SDK runs. Successful exploitation can lead to full takeover of the component.
• 8.5.8
• Easily exploitable (local) – requires user interaction.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60782
• 9.8 (CRITICAL)
• Oracle Payments (E‑Business Suite) – File Transmission
• Remote unauthenticated attacker can compromise the Payments module via HTTP. Leads to full takeover of the Payments service.
• 12.2.3‑12.2.15
• Network‑accessible, no authentication required.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60730
• 9.9 (CRITICAL)
• Oracle WebCenter Portal – Composer component
• Remote unauthenticated attacker can compromise the portal via HTTP. Full takeover of the portal.
• 12.2.1.4.0, 14.1.2.0.0
• Network‑accessible, no auth.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60728
• 9.1 (CRITICAL)
• Oracle WebCenter Portal – Portlet Services
• Remote unauthenticated attacker can cause denial‑of‑service and full compromise of portal data.
• 12.2.1.4.0, 14.1.2.0.0
• Network‑accessible, no auth.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60727
• 9.8 (CRITICAL)
• Oracle Identity Manager – OIM Legacy UI
• Remote unauthenticated attacker can take over the IAM system via HTTP.
• 12.2.1.4.0, 14.1.2.1.0
• Network‑accessible, no auth.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60721
• 9.8 (CRITICAL)
• Oracle Identity Manager – OIM Legacy UI
• Same vector as above; full takeover possible.
• 12.2.1.4.0, 14.1.2.1.0
• Network‑accessible, no auth.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60720
• 9.9 (CRITICAL)
• Oracle Identity Manager – OIM Legacy UI
• Remote unauthenticated attacker can compromise the IAM system.
• 12.2.1.4.0, 14.1.2.1.0
• Network‑accessible, no auth.
cveawg.mitre.org/api/cve/CVE-2

#infosecnews

##

CVE-2026-32475
(9.0 CRITICAL)

EPSS: 0.00%

updated 2026-08-19T18:16:38.537000

2 posts

Unrestricted Upload of File with Dangerous Type vulnerability in Elementor Elementor Pro allows Using Malicious Files. This issue affects Elementor Pro: from n/a through 4.2.1.

shawnhooper@fosstodon.org at 2026-08-19T18:17:50.000Z ##

WordPress admins running Elementor Pro:

CVSS 9.8 - CVE-2026-32475

WordPress Elementor Pro Plugin <= 4.2.1 is vulnerable to a high priority Arbitrary File Upload

patchstack.com/articles/critic

#wordpresss

##

shawnhooper@fosstodon.org at 2026-08-19T18:17:50.000Z ##

WordPress admins running Elementor Pro:

CVSS 9.8 - CVE-2026-32475

WordPress Elementor Pro Plugin <= 4.2.1 is vulnerable to a high priority Arbitrary File Upload

patchstack.com/articles/critic

#wordpresss

##

CVE-2026-75146
(8.1 HIGH)

EPSS: 0.00%

updated 2026-08-19T17:21:13.057000

2 posts

FFmpeg before commit 65b0dab contains an out-of-bounds read in the DASH demuxer (libavformat/dashdec.c). When a live DASH manifest is refreshed with a startNumber that is lower than the previous value, the current sequence number is driven negative. The fragment retrieval function checked only the upper bound before indexing the fragments array, allowing a negative index to be used and causing an

thehackerwire@mastodon.social at 2026-08-19T18:00:06.000Z ##

🟠 CVE-2026-75146 - High (8.1)

FFmpeg before commit 65b0dab contains an out-of-bounds read in the DASH demuxer (libavformat/dashdec.c). When a live DASH manifest is refreshed with a startNumber that is lower than the previous value, the current sequence number is driven negativ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-19T18:00:06.000Z ##

🟠 CVE-2026-75146 - High (8.1)

FFmpeg before commit 65b0dab contains an out-of-bounds read in the DASH demuxer (libavformat/dashdec.c). When a live DASH manifest is refreshed with a startNumber that is lower than the previous value, the current sequence number is driven negativ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-75144
(7.8 HIGH)

EPSS: 0.00%

updated 2026-08-19T17:21:12.720000

2 posts

FFmpeg before commit 1cdeb3c contains a heap buffer overflow vulnerability in the VC-2/Dirac RTP packetizer (libavformat/rtpenc_vc2hq.c) that allows attackers to trigger memory corruption by supplying a crafted Dirac data unit. The packetizer copies an input-derived data unit or fragment size into a fixed-size buffer without an upper bound check, causing a heap buffer overflow when the crafted inp

thehackerwire@mastodon.social at 2026-08-19T18:01:28.000Z ##

🟠 CVE-2026-75144 - High (7.8)

FFmpeg before commit 1cdeb3c contains a heap buffer overflow vulnerability in the VC-2/Dirac RTP packetizer (libavformat/rtpenc_vc2hq.c) that allows attackers to trigger memory corruption by supplying a crafted Dirac data unit. The packetizer copi...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-19T18:01:28.000Z ##

🟠 CVE-2026-75144 - High (7.8)

FFmpeg before commit 1cdeb3c contains a heap buffer overflow vulnerability in the VC-2/Dirac RTP packetizer (libavformat/rtpenc_vc2hq.c) that allows attackers to trigger memory corruption by supplying a crafted Dirac data unit. The packetizer copi...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-75142
(7.8 HIGH)

EPSS: 0.00%

updated 2026-08-19T17:21:12.437000

2 posts

FFmpeg before commit 9d786e4 contains a stack buffer overflow in the MPEG-PS muxer (libavformat/mpegenc.c). When muxing input with more streams than the muxer's fixed-size stack buffer accommodates, the buffer is overflowed. A crafted input with an excessive number of streams triggers the overflow during MPEG-PS muxing.

thehackerwire@mastodon.social at 2026-08-19T18:00:35.000Z ##

🟠 CVE-2026-75142 - High (7.8)

FFmpeg before commit 9d786e4 contains a stack buffer overflow in the MPEG-PS muxer (libavformat/mpegenc.c). When muxing input with more streams than the muxer's fixed-size stack buffer accommodates, the buffer is overflowed. A crafted input with a...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-19T18:00:35.000Z ##

🟠 CVE-2026-75142 - High (7.8)

FFmpeg before commit 9d786e4 contains a stack buffer overflow in the MPEG-PS muxer (libavformat/mpegenc.c). When muxing input with more streams than the muxer's fixed-size stack buffer accommodates, the buffer is overflowed. A crafted input with a...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-75141
(7.8 HIGH)

EPSS: 0.00%

updated 2026-08-19T17:21:12.287000

2 posts

FFmpeg before commit acf5d7c contains a heap buffer overflow in the hvcC box writer. When writing an HEVC configuration record with more NAL units of a single type than the count field can represent, the NAL unit count overflows, causing a heap buffer overflow. A crafted HEVC input file triggers the overflow during muxing.

thehackerwire@mastodon.social at 2026-08-19T18:00:20.000Z ##

🟠 CVE-2026-75141 - High (7.8)

FFmpeg before commit acf5d7c contains a heap buffer overflow in the hvcC box writer. When writing an HEVC configuration record with more NAL units of a single type than the count field can represent, the NAL unit count overflows, causing a heap bu...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-19T18:00:20.000Z ##

🟠 CVE-2026-75141 - High (7.8)

FFmpeg before commit acf5d7c contains a heap buffer overflow in the hvcC box writer. When writing an HEVC configuration record with more NAL units of a single type than the count field can represent, the NAL unit count overflows, causing a heap bu...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-52872
(8.8 HIGH)

EPSS: 0.14%

updated 2026-08-19T17:19:22.820000

2 posts

Streambert is a cross-platform Electron Desktop App to stream and download video content. Prior to 2.5.0, the downloadSubtitleFile utility in src/ipc/downloads.js, reached through the run-download IPC channel, accepts a renderer-supplied subtitle url using the file: URI scheme and passes its decoded pathname to fs.copyFileSync. The renderer also controls downloadPath, which determines the destinat

thehackerwire@mastodon.social at 2026-08-18T23:01:36.000Z ##

🟠 CVE-2026-52872 - High (8.8)

Streambert is a cross-platform Electron Desktop App to stream and download video content. Prior to 2.5.0, the downloadSubtitleFile utility in src/ipc/downloads.js, reached through the run-download IPC channel, accepts a renderer-supplied subtitle ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-18T23:01:36.000Z ##

🟠 CVE-2026-52872 - High (8.8)

Streambert is a cross-platform Electron Desktop App to stream and download video content. Prior to 2.5.0, the downloadSubtitleFile utility in src/ipc/downloads.js, reached through the run-download IPC channel, accepts a renderer-supplied subtitle ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-18051
(10.0 CRITICAL)

EPSS: 0.18%

updated 2026-08-19T17:18:36.337000

2 posts

The W3 Total Cache WordPress plugin before 2.10.5 does not properly validate the request path it uses to build cache file names, allowing unauthenticated attackers to write a file into any existing directory on the server, inside or outside the web root, overwriting whatever occupies the target name. On Apache, the same flaw overwrites the site's .htaccess files, which breaks the site and can stri

DailyCyberSecurity at 2026-08-19T08:53:58.362Z ##

CVE-2026-18051 (CVSS 10) is an unauthenticated arbitrary file write in W3 Total Cache, exposing 900k+ WordPress sites. Update to 2.10.5 now.

securityonline.info/w3-total-c

##

DailyCyberSecurity@infosec.exchange at 2026-08-19T08:53:58.000Z ##

CVE-2026-18051 (CVSS 10) is an unauthenticated arbitrary file write in W3 Total Cache, exposing 900k+ WordPress sites. Update to 2.10.5 now.

#W3TotalCache #WordPress #CVE202618051 #PathTraversal #InfoSec

securityonline.info/w3-total-c

##

CVE-2026-76008
(10.0 CRITICAL)

EPSS: 0.57%

updated 2026-08-19T16:19:10.337000

4 posts

A flaw has been found in Comfast CF-N1-S 2.6.0.1. This affects the function get_para_from_uri of the file /cgi-bin/mbox-config of the component URI Parameter Parsing. This manipulation of the argument width/height causes stack-based buffer overflow. The attack can be initiated remotely.

thehackerwire@mastodon.social at 2026-08-19T04:00:34.000Z ##

🔴 CVE-2026-76008 - Critical (10)

A flaw has been found in Comfast CF-N1-S 2.6.0.1. This affects the function get_para_from_uri of the file /cgi-bin/mbox-config of the component URI Parameter Parsing. This manipulation of the argument width/height causes stack-based buffer overflo...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

offseq at 2026-08-19T03:00:25.355Z ##

Comfast CF-N1-S v2.6.0.1 hit by CRITICAL CVE-2026-76008: stack-based buffer overflow in /cgi-bin/mbox-config (get_para_from_uri). Remote exploitation risk; mitigation unavailable. Monitor for patches. radar.offseq.com/threat/cve-20

##

thehackerwire@mastodon.social at 2026-08-19T04:00:34.000Z ##

🔴 CVE-2026-76008 - Critical (10)

A flaw has been found in Comfast CF-N1-S 2.6.0.1. This affects the function get_para_from_uri of the file /cgi-bin/mbox-config of the component URI Parameter Parsing. This manipulation of the argument width/height causes stack-based buffer overflo...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

offseq@infosec.exchange at 2026-08-19T03:00:25.000Z ##

Comfast CF-N1-S v2.6.0.1 hit by CRITICAL CVE-2026-76008: stack-based buffer overflow in /cgi-bin/mbox-config (get_para_from_uri). Remote exploitation risk; mitigation unavailable. Monitor for patches. #OffSeq #CVE202676008 #IoTSecurity radar.offseq.com/threat/cve-20

##

CVE-2026-71176
(8.8 HIGH)

EPSS: 0.00%

updated 2026-08-19T16:19:08.997000

2 posts

Dell OpenManage Enterprise, versions prior to 4.7.0, contains an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Information exposure.

thehackerwire@mastodon.social at 2026-08-19T16:01:27.000Z ##

🟠 CVE-2026-71176 - High (8.8)

Dell OpenManage Enterprise, versions prior to 4.7.0, contains an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability. A low privileged attacker with remote access could potentially exploit this vulner...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-19T16:01:27.000Z ##

🟠 CVE-2026-71176 - High (8.8)

Dell OpenManage Enterprise, versions prior to 4.7.0, contains an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability. A low privileged attacker with remote access could potentially exploit this vulner...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-58562
(7.3 HIGH)

EPSS: 0.00%

updated 2026-08-19T16:18:09.263000

1 posts

Dell Command Update (DCU), versions prior to 5.7.1, contain a Missing Authorization vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Unauthorized access.

hugovalters@mastodon.social at 2026-08-19T17:08:26.000Z ##

CVE-2026-58562 - Dell Command Update <5.7.1 missing authorization. Local attacker can gain unauthorized access. CVSS 7.3. No patch yet - restrict local access and monitor. #CVE #Dell #infosec

valtersit.com/cve/CVE-2026-585

##

CVE-2026-73921
(9.8 CRITICAL)

EPSS: 0.36%

updated 2026-08-19T15:33:23

2 posts

Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 1.4.20. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Helidon. Successful attacks of this vulnerability can result in takeover of Helidon. CVSS 3.1 Base Score 9.8 (Confidentiality, Integrity a

thehackerwire@mastodon.social at 2026-08-19T05:00:39.000Z ##

🔴 CVE-2026-73921 - Critical (9.8)

Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 1.4.20. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-19T05:00:39.000Z ##

🔴 CVE-2026-73921 - Critical (9.8)

Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 1.4.20. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-73938
(7.5 HIGH)

EPSS: 0.40%

updated 2026-08-19T15:33:23

2 posts

Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 4.5.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Helidon. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Helidon acc

thehackerwire@mastodon.social at 2026-08-19T05:00:24.000Z ##

🟠 CVE-2026-73938 - High (7.5)

Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 4.5.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP t...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-19T05:00:24.000Z ##

🟠 CVE-2026-73938 - High (7.5)

Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 4.5.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP t...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-76219
(8.1 HIGH)

EPSS: 0.00%

updated 2026-08-19T15:32:38

1 posts

GitPython versions before 3.1.58 contain an arbitrary file overwrite vulnerability in IndexFile.from_tree, IndexFile.reset, and IndexFile.merge_tree methods that append caller-influenced treeish strings to git read-tree without option validation or argument separation. Attackers can inject the --index-output option to overwrite arbitrary files with a valid git-index blob, destroying existing file

hugovalters@mastodon.social at 2026-08-19T15:14:29.000Z ##

CVE-2026-76219 - Arbitrary file overwrite in GitPython before 3.1.58 via IndexFile methods. Inject --index-output to clobber files. CVSS 8.1. Unpatched - update or mitigate now. #CVE #GitPython #infosec

valtersit.com/cve/CVE-2026-762

##

CVE-2026-76234
(7.5 HIGH)

EPSS: 0.00%

updated 2026-08-19T15:32:36

2 posts

libcrux-ecdh and libcrux-ed25519 before 0.0.6, and libcrux-psq before 0.0.7, contain cryptographic implementation bugs. libcrux-ecdh did not properly check length and clamping during X25519 secret validation (and had a broken clamping check for imported X25519 secret keys); libcrux-ed25519 performed a duplicated clamping step during key generation; and libcrux-psq panicked instead of propagating a

thehackerwire@mastodon.social at 2026-08-19T15:00:19.000Z ##

🟠 CVE-2026-76234 - High (7.5)

libcrux-ecdh and libcrux-ed25519 before 0.0.6, and libcrux-psq before 0.0.7, contain cryptographic implementation bugs. libcrux-ecdh did not properly check length and clamping during X25519 secret validation (and had a broken clamping check for im...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-19T15:00:19.000Z ##

🟠 CVE-2026-76234 - High (7.5)

libcrux-ecdh and libcrux-ed25519 before 0.0.6, and libcrux-psq before 0.0.7, contain cryptographic implementation bugs. libcrux-ecdh did not properly check length and clamping during X25519 secret validation (and had a broken clamping check for im...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-67364(CVSS UNKNOWN)

EPSS: 0.00%

updated 2026-08-19T15:32:24

2 posts

Joomla Extension - balbooa.com - Pre-auth PHP Code Injection in Balbooa Forms < 2.4.3.2 - CWE-94 / CWE-95 | CVSS 3.1: 9.8 Critical (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H) The form's optional custom-PHP post-submission handler is executed via eval(). The [URL parameter = X] shortcode is substituted with the raw, unescaped value of a query parameter, letting an unauthenticated attacker inject arbitrar

offseq at 2026-08-19T13:30:25.893Z ##

CVE-2026-67364 (CVSS 10): CRITICAL pre-auth PHP code injection in Balbooa Forms for Joomla (v1.0.0 – 2.4.3.1). Exploitable via unescaped query param in custom-PHP handler. Update to 2.4.3.2+ now. radar.offseq.com/threat/cve-20

##

offseq@infosec.exchange at 2026-08-19T13:30:25.000Z ##

CVE-2026-67364 (CVSS 10): CRITICAL pre-auth PHP code injection in Balbooa Forms for Joomla (v1.0.0 – 2.4.3.1). Exploitable via unescaped query param in custom-PHP handler. Update to 2.4.3.2+ now. radar.offseq.com/threat/cve-20 #OffSeq #Joomla #CVE202667364 #WebSecurity

##

CVE-2026-73937
(8.2 HIGH)

EPSS: 0.41%

updated 2026-08-19T15:32:20

2 posts

Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 4.5.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP/2 to compromise Helidon. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (comp

thehackerwire@mastodon.social at 2026-08-19T05:00:12.000Z ##

🟠 CVE-2026-73937 - High (8.2)

Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 4.5.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP/2...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-19T05:00:12.000Z ##

🟠 CVE-2026-73937 - High (8.2)

Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 4.5.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP/2...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-73935
(7.5 HIGH)

EPSS: 0.32%

updated 2026-08-19T15:32:20

2 posts

Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 4.5.1. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP/2 to compromise Helidon. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (comp

thehackerwire@mastodon.social at 2026-08-19T03:00:28.000Z ##

🟠 CVE-2026-73935 - High (7.5)

Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 4.5.1. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP/2...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-19T03:00:28.000Z ##

🟠 CVE-2026-73935 - High (7.5)

Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 4.5.1. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP/2...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-73934
(7.5 HIGH)

EPSS: 0.32%

updated 2026-08-19T15:32:20

2 posts

Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 3.2.19. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP/2 to compromise Helidon. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (com

thehackerwire@mastodon.social at 2026-08-19T00:00:29.000Z ##

🟠 CVE-2026-73934 - High (7.5)

Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 3.2.19. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP/...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-19T00:00:29.000Z ##

🟠 CVE-2026-73934 - High (7.5)

Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 3.2.19. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP/...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-73939
(8.6 HIGH)

EPSS: 0.34%

updated 2026-08-19T15:32:20

2 posts

Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 3.2.20. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Helidon. While the vulnerability is in Helidon, attacks may significantly impact additional products (scope change). Successful attacks o

thehackerwire@mastodon.social at 2026-08-18T22:00:01.000Z ##

🟠 CVE-2026-73939 - High (8.6)

Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 3.2.20. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-18T22:00:01.000Z ##

🟠 CVE-2026-73939 - High (8.6)

Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 3.2.20. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-73922
(9.1 CRITICAL)

EPSS: 0.30%

updated 2026-08-19T15:32:19

2 posts

Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 1.4.19. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Helidon. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data o

thehackerwire@mastodon.social at 2026-08-19T11:00:31.000Z ##

🔴 CVE-2026-73922 - Critical (9.1)

Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 1.4.19. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-19T11:00:31.000Z ##

🔴 CVE-2026-73922 - Critical (9.1)

Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 1.4.19. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-73931
(8.3 HIGH)

EPSS: 0.24%

updated 2026-08-19T15:32:19

2 posts

Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 4.5.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Helidon. While the vulnerability is in Helidon, attacks may significantly impact additional products (scope change). Successful attacks of

thehackerwire@mastodon.social at 2026-08-18T22:00:29.000Z ##

🟠 CVE-2026-73931 - High (8.3)

Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 4.5.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP t...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-18T22:00:29.000Z ##

🟠 CVE-2026-73931 - High (8.3)

Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 4.5.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP t...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-73936
(7.5 HIGH)

EPSS: 0.44%

updated 2026-08-19T15:18:06.730000

2 posts

Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 4.5.1. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Helidon. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (comple

thehackerwire@mastodon.social at 2026-08-19T03:00:37.000Z ##

🟠 CVE-2026-73936 - High (7.5)

Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 4.5.1. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP t...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-19T03:00:37.000Z ##

🟠 CVE-2026-73936 - High (7.5)

Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 4.5.1. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP t...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-73925
(8.2 HIGH)

EPSS: 0.24%

updated 2026-08-19T15:18:06.010000

2 posts

Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 1.4.19. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Helidon. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data o

thehackerwire@mastodon.social at 2026-08-19T11:01:03.000Z ##

🟠 CVE-2026-73925 - High (8.2)

Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 1.4.19. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-19T11:01:03.000Z ##

🟠 CVE-2026-73925 - High (8.2)

Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 1.4.19. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-73924
(9.1 CRITICAL)

EPSS: 0.30%

updated 2026-08-19T15:18:05.823000

2 posts

Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 1.4.19. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Helidon. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data o

thehackerwire@mastodon.social at 2026-08-19T11:00:46.000Z ##

🔴 CVE-2026-73924 - Critical (9.1)

Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 1.4.19. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-19T11:00:46.000Z ##

🔴 CVE-2026-73924 - Critical (9.1)

Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 1.4.19. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-71961
(8.8 HIGH)

EPSS: 0.00%

updated 2026-08-19T15:18:02.083000

2 posts

Cudy WR3000 2.0 running firmware before 2.5.24 contains an OS command injection vulnerability that allows authenticated attackers to execute arbitrary OS commands with root privileges by sending unsanitized input through the mesh MQTT command interface. The sync_command binary forwards unsanitized input directly to a shell execution sink in command.lua, enabling attackers with access to the MQTT b

thehackerwire@mastodon.social at 2026-08-19T16:01:15.000Z ##

🟠 CVE-2026-71961 - High (8.8)

Cudy WR3000 2.0 running firmware before 2.5.24 contains an OS command injection vulnerability that allows authenticated attackers to execute arbitrary OS commands with root privileges by sending unsanitized input through the mesh MQTT command inte...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-19T16:01:15.000Z ##

🟠 CVE-2026-71961 - High (8.8)

Cudy WR3000 2.0 running firmware before 2.5.24 contains an OS command injection vulnerability that allows authenticated attackers to execute arbitrary OS commands with root privileges by sending unsanitized input through the mesh MQTT command inte...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-76004
(9.9 CRITICAL)

EPSS: 0.44%

updated 2026-08-19T14:17:44.740000

4 posts

A security vulnerability has been detected in UTT HiPER 1250GW up to 3.2.7-210907-180535. Affected by this vulnerability is the function strcpy of the file /goform/aspApBasicConfigUrcp of the component HTTP Handler. The manipulation of the argument pvid leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed publicly and may be used.

offseq at 2026-08-19T04:30:24.438Z ##

UTT HiPER 1250GW v3.2.7-210907-180535 hit by CRITICAL stack-based buffer overflow (CVE-2026-76004) in HTTP handler. Exploitable via 'pvid' arg. No patch yet — restrict remote access & monitor traffic. radar.offseq.com/threat/cve-20

##

thehackerwire@mastodon.social at 2026-08-19T04:00:55.000Z ##

🔴 CVE-2026-76004 - Critical (9.9)

A security vulnerability has been detected in UTT HiPER 1250GW up to 3.2.7-210907-180535. Affected by this vulnerability is the function strcpy of the file /goform/aspApBasicConfigUrcp of the component HTTP Handler. The manipulation of the argumen...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

offseq@infosec.exchange at 2026-08-19T04:30:24.000Z ##

UTT HiPER 1250GW v3.2.7-210907-180535 hit by CRITICAL stack-based buffer overflow (CVE-2026-76004) in HTTP handler. Exploitable via 'pvid' arg. No patch yet — restrict remote access & monitor traffic. radar.offseq.com/threat/cve-20 #OffSeq #CVE202676004 #Vuln #Infosec

##

thehackerwire@mastodon.social at 2026-08-19T04:00:55.000Z ##

🔴 CVE-2026-76004 - Critical (9.9)

A security vulnerability has been detected in UTT HiPER 1250GW up to 3.2.7-210907-180535. Affected by this vulnerability is the function strcpy of the file /goform/aspApBasicConfigUrcp of the component HTTP Handler. The manipulation of the argumen...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-60392
(7.8 HIGH)

EPSS: 0.16%

updated 2026-08-19T14:17:35.177000

1 posts

Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middleware (component: Outside In PDF Export SDK). The supported version that is affected is 8.5.8. Easily exploitable vulnerability allows unauthenticated attacker with logon to the infrastructure where Oracle Outside In Technology executes to compromise Oracle Outside In Technology. Successful attacks require human int

infosecbot@mastodon.hofud.com at 2026-08-19T06:09:14.000Z ##

[1/9]

Most Impactful Security Incidents ( 2026‑08‑18 → 2026‑08‑19 )

---

PRIORITY 1 – Critical / High‑Severity Flaws (CVSS 7‑10):

CVE‑2026‑60392
• 7.8 (HIGH)
• Oracle Outside In Technology – PDF Export SDK (Fusion Middleware)
• Local‑privilege escalation; requires attacker to have a logon on the host where the SDK runs. Successful exploitation can lead to full takeover of the component.
• 8.5.8
• Easily exploitable (local) – requires user interaction.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60782
• 9.8 (CRITICAL)
• Oracle Payments (E‑Business Suite) – File Transmission
• Remote unauthenticated attacker can compromise the Payments module via HTTP. Leads to full takeover of the Payments service.
• 12.2.3‑12.2.15
• Network‑accessible, no authentication required.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60730
• 9.9 (CRITICAL)
• Oracle WebCenter Portal – Composer component
• Remote unauthenticated attacker can compromise the portal via HTTP. Full takeover of the portal.
• 12.2.1.4.0, 14.1.2.0.0
• Network‑accessible, no auth.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60728
• 9.1 (CRITICAL)
• Oracle WebCenter Portal – Portlet Services
• Remote unauthenticated attacker can cause denial‑of‑service and full compromise of portal data.
• 12.2.1.4.0, 14.1.2.0.0
• Network‑accessible, no auth.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60727
• 9.8 (CRITICAL)
• Oracle Identity Manager – OIM Legacy UI
• Remote unauthenticated attacker can take over the IAM system via HTTP.
• 12.2.1.4.0, 14.1.2.1.0
• Network‑accessible, no auth.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60721
• 9.8 (CRITICAL)
• Oracle Identity Manager – OIM Legacy UI
• Same vector as above; full takeover possible.
• 12.2.1.4.0, 14.1.2.1.0
• Network‑accessible, no auth.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60720
• 9.9 (CRITICAL)
• Oracle Identity Manager – OIM Legacy UI
• Remote unauthenticated attacker can compromise the IAM system.
• 12.2.1.4.0, 14.1.2.1.0
• Network‑accessible, no auth.
cveawg.mitre.org/api/cve/CVE-2

#infosecnews

##

CVE-2026-9816
(8.3 HIGH)

EPSS: 0.24%

updated 2026-08-19T13:29:28.910000

1 posts

Mattermost versions 11.7.x <= 11.7.6, 10.11.x <= 10.11.21, 11.8.x <= 11.8.3 fail to validate BoardMember.Scheme* fields server-side on insert and archive-import paths which allows a board editor or non-guest team member to grant board admin to arbitrary users via POST /api/v2/boards/{boardID}/members and POST /api/v2/teams/{teamID}/archive/import.. Mattermost Advisory ID: MMSA-2026-00685

thehackerwire@mastodon.social at 2026-08-17T23:00:27.000Z ##

🟠 CVE-2026-9816 - High (8.3)

Mattermost versions 11.7.x &lt;= 11.7.6, 10.11.x &lt;= 10.11.21, 11.8.x &lt;= 11.8.3 fail to validate BoardMember.Scheme* fields server-side on insert and archive-import paths which allows a board editor or non-guest team member to grant board adm...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-75935
(7.5 HIGH)

EPSS: 0.44%

updated 2026-08-19T13:18:11.400000

2 posts

Uncontrolled memory allocation in the binary Ion stream cursor in Amazon ion-java before 1.12.0 might allow remote actors to cause a denial of service via a crafted Ion binary document containing a declared-length field that causes excessive heap preallocation. To remediate this issue, users should upgrade to version 1.12.0.

thehackerwire@mastodon.social at 2026-08-18T21:00:11.000Z ##

🟠 CVE-2026-75935 - High (7.5)

Uncontrolled memory allocation in the binary Ion stream cursor in Amazon ion-java before 1.12.0 might allow remote actors to cause a denial of service via a crafted Ion binary document containing a declared-length field that causes excessive heap ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-18T21:00:11.000Z ##

🟠 CVE-2026-75935 - High (7.5)

Uncontrolled memory allocation in the binary Ion stream cursor in Amazon ion-java before 1.12.0 might allow remote actors to cause a denial of service via a crafted Ion binary document containing a declared-length field that causes excessive heap ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-75877
(9.9 CRITICAL)

EPSS: 0.61%

updated 2026-08-19T13:18:11.260000

2 posts

A flaw has been found in TRENDnet TV-IP751WIC 11.03.03. This vulnerability affects the function SystemNetworkChanged/SystemDDNSChanged/SystemEmailChanged/SystemFTPChanged/websCheckRealm/FUN_00432574/FUN_0043372C of the component alphapd. Executing a manipulation can lead to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been published and may be used.

thehackerwire@mastodon.social at 2026-08-18T21:00:41.000Z ##

🔴 CVE-2026-75877 - Critical (9.9)

A flaw has been found in TRENDnet TV-IP751WIC 11.03.03. This vulnerability affects the function SystemNetworkChanged/SystemDDNSChanged/SystemEmailChanged/SystemFTPChanged/websCheckRealm/FUN_00432574/FUN_0043372C of the component alphapd. Executing...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-18T21:00:41.000Z ##

🔴 CVE-2026-75877 - Critical (9.9)

A flaw has been found in TRENDnet TV-IP751WIC 11.03.03. This vulnerability affects the function SystemNetworkChanged/SystemDDNSChanged/SystemEmailChanged/SystemFTPChanged/websCheckRealm/FUN_00432574/FUN_0043372C of the component alphapd. Executing...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-73930
(9.9 CRITICAL)

EPSS: 0.38%

updated 2026-08-19T13:18:09.650000

2 posts

Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 4.5.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Helidon. While the vulnerability is in Helidon, attacks may significantly impact additional products (scope change). Successful attacks of

thehackerwire@mastodon.social at 2026-08-18T22:00:16.000Z ##

🔴 CVE-2026-73930 - Critical (9.9)

Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 4.5.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP t...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-18T22:00:16.000Z ##

🔴 CVE-2026-73930 - Critical (9.9)

Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). The supported version that is affected is 4.5.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP t...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-73390
(9.8 CRITICAL)

EPSS: 0.00%

updated 2026-08-19T13:18:08.417000

1 posts

Unauthenticated Privilege Escalation in Total Donations <= 2.0.5 versions.

hugovalters@mastodon.social at 2026-08-19T18:05:34.000Z ##

CVE-2026-73390 - Unauthenticated Privilege Escalation in Total Donations <=2.0.5. CVSS 9.8. Unpatched. Disable now. #CVE #WordPress #infosec

valtersit.com/cve/CVE-2026-733

##

CVE-2026-19490
(0 None)

EPSS: 0.00%

updated 2026-08-19T13:17:45

2 posts

Vulnerability in NetScaler ADC and NetScaler Gateway. This issue affects ADC: from 14.1 through 73.32 and from 13.1 through 63.21; Gateway: from 14.1 through 73.32 and from 13.1 through 63.21.

DailyCyberSecurity at 2026-08-19T15:23:33.424Z ##

CVE-2026-19490 (CVSS 9.3) is a critical NetScaler authentication bypass in NetScaler Gateway and ADC. Patch now to block unauthenticated access.

securityonline.info/netscaler-

##

DailyCyberSecurity@infosec.exchange at 2026-08-19T15:23:33.000Z ##

CVE-2026-19490 (CVSS 9.3) is a critical NetScaler authentication bypass in NetScaler Gateway and ADC. Patch now to block unauthenticated access.

#NetScaler #Citrix #CVE202619490 #AuthBypass #InfoSec

securityonline.info/netscaler-

##

CVE-2026-15780
(7.2 HIGH)

EPSS: 0.39%

updated 2026-08-19T09:31:30

1 posts

The WP Statistics – Simple, privacy-friendly Google Analytics alternative plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'utm_campaign' parameter in all versions up to, and including, 14.16.8 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that will execute whenever

hugovalters@mastodon.social at 2026-08-19T11:05:37.000Z ##

CVE-2026-15780 - Stored XSS in WP Statistics plugin ≤14.16.8 via utm_campaign param. Unauthenticated payload injection. CVSS 7.2. Unpatched - update/disable now. #CVE #WordPress #infosec

valtersit.com/cve/CVE-2026-157

##

CVE-2026-76050
(7.3 HIGH)

EPSS: 0.33%

updated 2026-08-19T06:31:24

1 posts

A vulnerability was found in SourceCodester Simple Online Food Ordering System 1.0. This impacts an unknown function of the file /admin/ajax.php?action=delete_menu. The manipulation of the argument ID results in sql injection. It is possible to launch the attack remotely. The exploit has been made public and could be used.

hugovalters@mastodon.social at 2026-08-19T14:00:58.000Z ##

CVE-2026-76050 – SQLi in SourceCodester Simple Online Food Ordering System 1.0 via /admin/ajax.php?action=delete_menu. CVSS 7.3. Unpatched. Patch/update immediately. #CVE #infosec #cybersecurity

valtersit.com/cve/CVE-2026-760

##

CVE-2026-76049
(7.3 HIGH)

EPSS: 0.33%

updated 2026-08-19T06:31:24

1 posts

A vulnerability has been found in SourceCodester Simple Online Food Ordering System 1.0. This affects an unknown function of the file /admin/ajax.php?action=save_menu. The manipulation of the argument ID leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

hugovalters@mastodon.social at 2026-08-19T12:07:02.000Z ##

CVE-2026-76049 - SQLi in SourceCodester Simple Online Food Ordering System 1.0 via /admin/ajax.php. Remote exploit public, unpatched. CVSS 7.3. Update or isolate now. #CVE #infosec #SQLi

valtersit.com/cve/CVE-2026-760

##

CVE-2026-70408
(8.8 HIGH)

EPSS: 0.33%

updated 2026-08-19T06:31:24

2 posts

An incorrect authorization vulnerability exists in acmailer, which may allow a user to create a sub-account that has administrative privileges.

thehackerwire@mastodon.social at 2026-08-19T06:00:01.000Z ##

🟠 CVE-2026-70408 - High (8.8)

An incorrect authorization vulnerability exists in acmailer, which may allow a user to create a sub-account that has administrative privileges.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-19T06:00:01.000Z ##

🟠 CVE-2026-70408 - High (8.8)

An incorrect authorization vulnerability exists in acmailer, which may allow a user to create a sub-account that has administrative privileges.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-19942
(8.1 HIGH)

EPSS: 0.69%

updated 2026-08-19T05:17:02.217000

2 posts

The Atarim – AI Agency for WordPress: Edit Pages, Fix Code, Update Plugins, SEO & Client Feedback plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the AVCF_Abilities_Media::register (replace-media-file execute_callback) function in all versions up to, and including, 5.1.1. This makes it possible for authenticated attackers, with author-level

thehackerwire@mastodon.social at 2026-08-19T06:00:13.000Z ##

🟠 CVE-2026-19942 - High (8.1)

The Atarim – AI Agency for WordPress: Edit Pages, Fix Code, Update Plugins, SEO & Client Feedback plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the AVCF_Abilities_Media::register (repla...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-19T06:00:13.000Z ##

🟠 CVE-2026-19942 - High (8.1)

The Atarim – AI Agency for WordPress: Edit Pages, Fix Code, Update Plugins, SEO & Client Feedback plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the AVCF_Abilities_Media::register (repla...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-65400
(9.8 CRITICAL)

EPSS: 0.75%

updated 2026-08-19T04:17:34.547000

14 posts

An authentication issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.9, macOS Sonoma 14.8.9, macOS Tahoe 26.6.1. An attacker on the network may be able to authenticate to Screen Sharing without valid credentials.

1 repos

https://github.com/HORKimhab/CVE-2026-65400

DailyCyberSecurity at 2026-08-19T03:25:39.939Z ##

Attackers are exploiting CVE-2026-65400, a critical macOS Screen Sharing auth bypass, to gain root access and deploy Monero miners on Macs with exposed port 5900.

meterpreter.org/macos-screen-s

##

hackmag at 2026-08-18T22:31:05.124Z ##

⚪️ Hackers Exploit macOS Screen Sharing Vulnerability to Install Crypto Miners

🗨️ The Netherlands’ National Cyber Security Centre (NCSC) has warned that attackers have begun exploiting the critical CVE-2026-65400 vulnerability in macOS Screen Sharing. The flaw allows authentication to be bypassed, granting access to a Mac without a password, and is already…

🔗 hackmag.com/news/cve-2026-6540

##

threatnoir at 2026-08-18T15:05:54.719Z ##

⚠️ CRITICAL: ⚡ Weekly Recap: VMware Exploits, Windows 0-Day, MCP Attacks, Browser Hijacks and More

Three critical vulnerabilities are under active exploitation: VMware vCenter (CVE-2026-59310) by China-nexus APT for potential ransomware deployment, Windows 0-day (CVE-2026-68820) by Lazarus Group targeting defense contractors with backdoors, and macOS flaw (CVE-2026-65400) distributing crypto min…

threatnoir.com/focus

🤖 AI generated summary

##

PC_Fluesterer@social.tchncs.de at 2026-08-18T13:02:28.000Z ##

Apple aktualisiert allerhand 2026-08

Wer jetzt denkt "ja klar, Apples Flickentag (gestern, 17.8.) bringt die Updates", irrt. Zumindest ist das nur die halbe Wahrheit. Apple hat nämlich bereits am 6.8. Updates für die drei noch gepflegten Versionen von macOS veröffentlicht (Sonoma 14.8.9; Sequoia 15.7.9; Tahoe 26.6.1). Diese schließen die Sicherheitslücke CVE-2026-65400 in der Funktion Screen Sharing (Bildschirmfreigabe für Fernzugriff) von macOS. Die ursprünglich mit dem Risiko 7,1 (von 10) bewertete Lücke wurde gerade auf 9,8 hoch gestuft, da inzwischen ein Exploit öffentlich verfügbar ist und die Lücke aktiv für Angriffe ausgenutzt wird. ... Weiterlesen:

pc-fluesterer.info/wordpress/2

#apple #browser #exploits #ios #macos #sicherheit #UnplugApple #UnplugTrump #webkit

##

DailyCyberSecurity@infosec.exchange at 2026-08-19T03:25:39.000Z ##

Attackers are exploiting CVE-2026-65400, a critical macOS Screen Sharing auth bypass, to gain root access and deploy Monero miners on Macs with exposed port 5900.

#CVE202665400 #macOS #ScreenSharing #Monero #AppleSecurity

meterpreter.org/macos-screen-s

##

hackmag@infosec.exchange at 2026-08-18T22:31:05.000Z ##

⚪️ Hackers Exploit macOS Screen Sharing Vulnerability to Install Crypto Miners

🗨️ The Netherlands’ National Cyber Security Centre (NCSC) has warned that attackers have begun exploiting the critical CVE-2026-65400 vulnerability in macOS Screen Sharing. The flaw allows authentication to be bypassed, granting access to a Mac without a password, and is already…

🔗 hackmag.com/news/cve-2026-6540

#news

##

threatnoir@infosec.exchange at 2026-08-18T15:05:54.000Z ##

⚠️ CRITICAL: ⚡ Weekly Recap: VMware Exploits, Windows 0-Day, MCP Attacks, Browser Hijacks and More

Three critical vulnerabilities are under active exploitation: VMware vCenter (CVE-2026-59310) by China-nexus APT for potential ransomware deployment, Windows 0-day (CVE-2026-68820) by Lazarus Group targeting defense contractors with backdoors, and macOS flaw (CVE-2026-65400) distributing crypto min…

threatnoir.com/focus

#infosec #cybersecurity

🤖 AI generated summary

##

FlipboardUK@flipboard.com at 2026-08-17T22:41:56.000Z ##

An AI agent built a working exploit for this macOS flaw in four hours
thenextweb.com/news/macos-scre

Posted into Technology (UK Edition) @technology-uk-edition-FlipboardUK

##

thenextweb@flipboard.com at 2026-08-17T22:41:56.000Z ##

An AI agent built a working exploit for this macOS flaw in four hours
thenextweb.com/news/macos-scre

Posted into TNW - All Stories @tnw-all-stories-thenextweb

##

youranonnewsirc@nerdculture.de at 2026-08-17T22:26:25.000Z ##

Here's a summary of the latest geopolitical, technology, and cybersecurity news from the last 24-48 hours:

Cybersecurity: Apple patched a critical macOS Screen Sharing vulnerability (CVE-2026-65400) and issued mercenary spyware alerts across 110 countries. Microsoft's August Patch Tuesday fixed 421 vulnerabilities, including an actively exploited Windows zero-day (CVE-2026-68820). France reported a Bloctel data leak exposing three million phone numbers and a DGFiP tax data leak.

Technology: Massive tech layoffs continue in 2026, surpassing last year's totals, as companies shift to "AI-first" strategies; AI "inference" spending now exceeds "training". Elon Musk's SpaceX committed exclusively to NVIDIA GPUs, forming a major AI partnership.

Geopolitics: US-Iran tensions remain high over the Strait of Hormuz, with new threats and defense contracts emerging. Ukraine faces critical Patriot interceptor shortages, threatening its winter air defense.

#Cybersecurity #TechNews #Geopolitics

##

edovia@mastodon.social at 2026-08-17T16:55:18.000Z ##

⚠️ Important security update for Mac users:

A vulnerability in macOS Screen Sharing (CVE-2026-65400) is being actively exploited.

If you use Screens or another VNC client app to remotely access a Mac, we strongly recommend updating macOS as soon as possible.

blog.edovia.com/CVE-2026-65400

support.apple.com/en-us/148170

##

DailyCyberSecurity@infosec.exchange at 2026-08-17T13:07:28.000Z ##

Attackers actively exploit the critical CVE-2026-65400 vulnerability in macOS Screen Sharing. Discover how to protect your Mac from root access and cryptominers.

#macOS #CVE202665400 #ScreenSharing #Vulnerability #Cybersecurity

meterpreter.org/macos-cve-2026

##

offseq@infosec.exchange at 2026-08-17T09:00:25.000Z ##

CVE-2026-65400 (HIGH) - macOS Screen Sharing vuln lets remote attackers bypass auth and gain root. Active exploitation seen, mainly on systems with port 5900 open. Patch Tahoe 26.6.1, Sequoia 15.7.9, Sonoma 14.8.9. radar.offseq.com/threat/recent #OffSeq #macOS #infosec #vuln

##

security_crawler_carl@infosec.exchange at 2026-08-16T21:07:35.000Z ##

🏆 New Achievement! Screen Sharing Is Caring (About My Monero Wallet)!

Allow me to monologue, as any proper villain must. CVE-2026-65400 — a gorgeous authentication bypass in macOS Screen Sharing — handed attackers root access through port 5900, wide open to the internet like a velvet rope with no bouncer. Apple patched it August 6 in macOS Tahoe 26.6.1. You simply... did not apply it. Delicious. (1/2)

##

CVE-2026-59310
(9.8 CRITICAL)

EPSS: 2.40%

updated 2026-08-19T04:17:24.940000

3 posts

VMware vCenter contains a directory traversal vulnerability in the Syslog server. A malicious actor with network access to vCenter may exploit this issue to execute arbitrary code.

2 repos

https://github.com/BiuTrap/CVE-2026-59310

https://github.com/HORKimhab/CVE-2026-59310

undercodenews@mastodon.social at 2026-08-19T05:20:11.000Z ##

CISA Sounds the Alarm on Critical VMware vCenter Flaw: Active Exploitation Puts Enterprise Virtual Infrastructure at Risk

A New Warning for VMware Administrators A critical security vulnerability in VMware vCenter has become an urgent concern for organizations running virtualized infrastructure. Tracked as CVE-2026-59310, the flaw is a directory traversal vulnerability in the vCenter Syslog server that can ultimately allow a network-accessible attacker to execute…

undercodenews.com/cisa-sounds-

##

threatnoir at 2026-08-18T15:05:54.719Z ##

⚠️ CRITICAL: ⚡ Weekly Recap: VMware Exploits, Windows 0-Day, MCP Attacks, Browser Hijacks and More

Three critical vulnerabilities are under active exploitation: VMware vCenter (CVE-2026-59310) by China-nexus APT for potential ransomware deployment, Windows 0-day (CVE-2026-68820) by Lazarus Group targeting defense contractors with backdoors, and macOS flaw (CVE-2026-65400) distributing crypto min…

threatnoir.com/focus

🤖 AI generated summary

##

threatnoir@infosec.exchange at 2026-08-18T15:05:54.000Z ##

⚠️ CRITICAL: ⚡ Weekly Recap: VMware Exploits, Windows 0-Day, MCP Attacks, Browser Hijacks and More

Three critical vulnerabilities are under active exploitation: VMware vCenter (CVE-2026-59310) by China-nexus APT for potential ransomware deployment, Windows 0-day (CVE-2026-68820) by Lazarus Group targeting defense contractors with backdoors, and macOS flaw (CVE-2026-65400) distributing crypto min…

threatnoir.com/focus

#infosec #cybersecurity

🤖 AI generated summary

##

CVE-2026-76003
(9.9 CRITICAL)

EPSS: 0.44%

updated 2026-08-19T03:31:23

4 posts

A weakness has been identified in UTT HiPER 1200GW up to 2.5.3-170306. Affected is the function strcpy of the file /goform/formGroupConfig. Executing a manipulation of the argument timestart can lead to stack-based buffer overflow. The attack may be performed from remote. The exploit has been made available to the public and could be used for attacks.

offseq at 2026-08-19T06:00:27.615Z ##

CVE-2026-76003 (CRITICAL): Stack-based buffer overflow in UTT HiPER 1200GW (2.5.3-170306). Remote code execution possible via timestart argument; public exploit exists. No patch yet. Restrict access & monitor. radar.offseq.com/threat/cve-20

##

thehackerwire@mastodon.social at 2026-08-19T04:00:44.000Z ##

🔴 CVE-2026-76003 - Critical (9.9)

A weakness has been identified in UTT HiPER 1200GW up to 2.5.3-170306. Affected is the function strcpy of the file /goform/formGroupConfig. Executing a manipulation of the argument timestart can lead to stack-based buffer overflow. The attack may ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

offseq@infosec.exchange at 2026-08-19T06:00:27.000Z ##

CVE-2026-76003 (CRITICAL): Stack-based buffer overflow in UTT HiPER 1200GW (2.5.3-170306). Remote code execution possible via timestart argument; public exploit exists. No patch yet. Restrict access & monitor. radar.offseq.com/threat/cve-20 #OffSeq #CVE202676003 #infosec #vuln

##

thehackerwire@mastodon.social at 2026-08-19T04:00:44.000Z ##

🔴 CVE-2026-76003 - Critical (9.9)

A weakness has been identified in UTT HiPER 1200GW up to 2.5.3-170306. Affected is the function strcpy of the file /goform/formGroupConfig. Executing a manipulation of the argument timestart can lead to stack-based buffer overflow. The attack may ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-18963
(9.1 CRITICAL)

EPSS: 0.39%

updated 2026-08-19T03:16:52.443000

2 posts

A flaw was found in the reset-credentials flow of the keycloak-services component, which is the core engine for identity and access management in Red Hat Build of Keycloak. The issue allows an unauthenticated attacker to force the password reset process for any user without needing to click the required email verification link. This can result in the attacker gaining full control over target user

hacksilon at 2026-08-19T17:02:26.802Z ##

PSA: Critical unauthenticated account takeover vulnerability in - allows resetting arbitrary users‘ passwords. Update to 26.7.2 immediately or disable password reset. Tracked as CVE-2026-18963. github.com/keycloak/keycloak/i

##

hacksilon@infosec.exchange at 2026-08-19T17:02:26.000Z ##

PSA: Critical unauthenticated account takeover vulnerability in #Keycloak - allows resetting arbitrary users‘ passwords. Update to 26.7.2 immediately or disable password reset. Tracked as CVE-2026-18963. github.com/keycloak/keycloak/i

#infosec

##

CVE-2026-75976
(9.9 CRITICAL)

EPSS: 0.63%

updated 2026-08-19T00:31:19

4 posts

A weakness has been identified in TRENDnet TEW-823DRU 1.1.02b01. Impacted is the function strcpy of the file /cgi-bin/wan.cgi of the component NVRAM. This manipulation of the argument wan_l2tp_password causes stack-based buffer overflow. The attack can be initiated remotely. The exploit has been made available to the public and could be used for attacks.

thehackerwire@mastodon.social at 2026-08-19T03:00:12.000Z ##

🔴 CVE-2026-75976 - Critical (9.9)

A weakness has been identified in TRENDnet TEW-823DRU 1.1.02b01. Impacted is the function strcpy of the file /cgi-bin/wan.cgi of the component NVRAM. This manipulation of the argument wan_l2tp_password causes stack-based buffer overflow. The attac...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

offseq at 2026-08-19T00:00:36.865Z ##

Stack-based buffer overflow (CVE-2026-75976, CVSS 9.4) in TRENDnet TEW-823DRU 1.1.02b01: remote exploitation possible via /cgi-bin/wan.cgi. Public exploit exists. Assess exposure & monitor for patches: radar.offseq.com/threat/cve-20

##

thehackerwire@mastodon.social at 2026-08-19T03:00:12.000Z ##

🔴 CVE-2026-75976 - Critical (9.9)

A weakness has been identified in TRENDnet TEW-823DRU 1.1.02b01. Impacted is the function strcpy of the file /cgi-bin/wan.cgi of the component NVRAM. This manipulation of the argument wan_l2tp_password causes stack-based buffer overflow. The attac...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

offseq@infosec.exchange at 2026-08-19T00:00:36.000Z ##

Stack-based buffer overflow (CVE-2026-75976, CVSS 9.4) in TRENDnet TEW-823DRU 1.1.02b01: remote exploitation possible via /cgi-bin/wan.cgi. Public exploit exists. Assess exposure & monitor for patches: radar.offseq.com/threat/cve-20 #OffSeq #Vulnerability #Infosec #IoTSecurity

##

CVE-2026-66602
(8.8 HIGH)

EPSS: 0.15%

updated 2026-08-19T00:31:18

2 posts

Cross-Site Request Forgery (CSRF) vulnerability in DevItems HashBar – WordPress Notification Bar allows Cross Site Request Forgery. This issue affects HashBar – WordPress Notification Bar: from n/a through 2.0.0.

thehackerwire@mastodon.social at 2026-08-18T23:00:11.000Z ##

🟠 CVE-2026-66602 - High (8.8)

Cross-Site Request Forgery (CSRF) vulnerability in DevItems HashBar – WordPress Notification Bar allows Cross Site Request Forgery.

This issue affects HashBar – WordPress Notification Bar: from n/a through 2.0.0.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-18T23:00:11.000Z ##

🟠 CVE-2026-66602 - High (8.8)

Cross-Site Request Forgery (CSRF) vulnerability in DevItems HashBar – WordPress Notification Bar allows Cross Site Request Forgery.

This issue affects HashBar – WordPress Notification Bar: from n/a through 2.0.0.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-74015
(9.3 CRITICAL)

EPSS: 0.29%

updated 2026-08-18T22:17:34.023000

1 posts

Unauthenticated SQL Injection in Readabler < 2.0.18 versions.

hugovalters@mastodon.social at 2026-08-18T17:05:47.000Z ##

CVE-2026-74015 - Unauthenticated SQLi in Readabler < 2.0.18. CVSS 9.3. No patch yet. Disable or isolate now. #CVE #infosec #SQLi

valtersit.com/cve/CVE-2026-740

##

CVE-2026-52876
(8.8 HIGH)

EPSS: 0.15%

updated 2026-08-18T22:16:54.173000

2 posts

Streambert is a cross-platform Electron Desktop App to stream and download video content. Prior to version 2.6.0, the open-path-at-time IPC handler in src/ipc/player.js accepts a renderer-controlled filePath without validating its type or location. If the mpv or VLC launch attempts are skipped or fail, the handler passes filePath to Electron's shell.openPath. A compromised renderer can provide the

thehackerwire@mastodon.social at 2026-08-18T23:00:25.000Z ##

🟠 CVE-2026-52876 - High (8.8)

Streambert is a cross-platform Electron Desktop App to stream and download video content. Prior to version 2.6.0, the open-path-at-time IPC handler in src/ipc/player.js accepts a renderer-controlled filePath without validating its type or location...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-18T23:00:25.000Z ##

🟠 CVE-2026-52876 - High (8.8)

Streambert is a cross-platform Electron Desktop App to stream and download video content. Prior to version 2.6.0, the open-path-at-time IPC handler in src/ipc/player.js accepts a renderer-controlled filePath without validating its type or location...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-50142
(7.5 HIGH)

EPSS: 0.56%

updated 2026-08-18T22:16:52.633000

2 posts

libheif is a HEIF and AVIF file format decoder and encoder. From 1.19.0 until 1.23.0, a crafted HEIF sequence accepted by heif_context_read_from_memory() with the msf1 sequence brand can cause unbounded heap allocation. In libheif/sequences/seq_boxes.cc, Box_stsz::parse() applies max_sequence_frames only to variable-size samples, so fixed-size mode accepts an attacker-controlled sample_count witho

1 repos

https://github.com/MuhammedHussein17/libheif-cve-2026-50142

thehackerwire@mastodon.social at 2026-08-18T23:01:47.000Z ##

🟠 CVE-2026-50142 - High (7.5)

libheif is a HEIF and AVIF file format decoder and encoder. From 1.19.0 until 1.23.0, a crafted HEIF sequence accepted by heif_context_read_from_memory() with the msf1 sequence brand can cause unbounded heap allocation. In libheif/sequences/seq_bo...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-18T23:01:47.000Z ##

🟠 CVE-2026-50142 - High (7.5)

libheif is a HEIF and AVIF file format decoder and encoder. From 1.19.0 until 1.23.0, a crafted HEIF sequence accepted by heif_context_read_from_memory() with the msf1 sequence brand can cause unbounded heap allocation. In libheif/sequences/seq_bo...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-21580
(0 None)

EPSS: 0.36%

updated 2026-08-18T22:16:50.140000

2 posts

This Critical severity Stored XSS, PrivEsc (Privilege Escalation), and Security Misconfiguration vulnerability was introduced in versions 7.1.1, 7.4.0, 7.13.0, 7.17.0, 7.19.0, 8.0.0, 8.5.0, 8.9.0, 9.0.1, 9.1.0, 9.2.0, 9.3.1, 9.4.0, 9.5.1, 10.0.2, 10.1.0 and 10.2.0 of Confluence Data Center and Server. This Stored XSS, PrivEsc (Privilege Escalation), and Security Misconfiguration vulnerability,

DailyCyberSecurity at 2026-08-19T06:40:51.499Z ##

A Confluence vulnerability, CVE-2026-21580, is a stored XSS flaw (CVSS 8.6) allowing unauthenticated attacks. A Jira flaw also patched. Update now.

securityonline.info/confluence

##

DailyCyberSecurity@infosec.exchange at 2026-08-19T06:40:51.000Z ##

A Confluence vulnerability, CVE-2026-21580, is a stored XSS flaw (CVSS 8.6) allowing unauthenticated attacks. A Jira flaw also patched. Update now.

#Atlassian #Confluence #CVE202621580 #StoredXSS #Jira #InfoSec

securityonline.info/confluence

##

CVE-2026-60782
(9.8 CRITICAL)

EPSS: 0.49%

updated 2026-08-18T21:32:07

1 posts

Vulnerability in the Oracle Payments product of Oracle E-Business Suite (component: File Transmission). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Payments. Successful attacks of this vulnerability can result in takeover of Oracle Payments. CVSS 3.1 Base Score 9.8 (Con

infosecbot@mastodon.hofud.com at 2026-08-19T06:09:14.000Z ##

[1/9]

Most Impactful Security Incidents ( 2026‑08‑18 → 2026‑08‑19 )

---

PRIORITY 1 – Critical / High‑Severity Flaws (CVSS 7‑10):

CVE‑2026‑60392
• 7.8 (HIGH)
• Oracle Outside In Technology – PDF Export SDK (Fusion Middleware)
• Local‑privilege escalation; requires attacker to have a logon on the host where the SDK runs. Successful exploitation can lead to full takeover of the component.
• 8.5.8
• Easily exploitable (local) – requires user interaction.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60782
• 9.8 (CRITICAL)
• Oracle Payments (E‑Business Suite) – File Transmission
• Remote unauthenticated attacker can compromise the Payments module via HTTP. Leads to full takeover of the Payments service.
• 12.2.3‑12.2.15
• Network‑accessible, no authentication required.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60730
• 9.9 (CRITICAL)
• Oracle WebCenter Portal – Composer component
• Remote unauthenticated attacker can compromise the portal via HTTP. Full takeover of the portal.
• 12.2.1.4.0, 14.1.2.0.0
• Network‑accessible, no auth.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60728
• 9.1 (CRITICAL)
• Oracle WebCenter Portal – Portlet Services
• Remote unauthenticated attacker can cause denial‑of‑service and full compromise of portal data.
• 12.2.1.4.0, 14.1.2.0.0
• Network‑accessible, no auth.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60727
• 9.8 (CRITICAL)
• Oracle Identity Manager – OIM Legacy UI
• Remote unauthenticated attacker can take over the IAM system via HTTP.
• 12.2.1.4.0, 14.1.2.1.0
• Network‑accessible, no auth.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60721
• 9.8 (CRITICAL)
• Oracle Identity Manager – OIM Legacy UI
• Same vector as above; full takeover possible.
• 12.2.1.4.0, 14.1.2.1.0
• Network‑accessible, no auth.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60720
• 9.9 (CRITICAL)
• Oracle Identity Manager – OIM Legacy UI
• Remote unauthenticated attacker can compromise the IAM system.
• 12.2.1.4.0, 14.1.2.1.0
• Network‑accessible, no auth.
cveawg.mitre.org/api/cve/CVE-2

#infosecnews

##

CVE-2026-60720
(9.9 CRITICAL)

EPSS: 0.45%

updated 2026-08-18T21:32:06

1 posts

Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middleware (component: OIM Legacy UI). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.1.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Identity Manager. While the vulnerability is in Oracle Identity Manager, attacks may significantly impact

infosecbot@mastodon.hofud.com at 2026-08-19T06:09:14.000Z ##

[1/9]

Most Impactful Security Incidents ( 2026‑08‑18 → 2026‑08‑19 )

---

PRIORITY 1 – Critical / High‑Severity Flaws (CVSS 7‑10):

CVE‑2026‑60392
• 7.8 (HIGH)
• Oracle Outside In Technology – PDF Export SDK (Fusion Middleware)
• Local‑privilege escalation; requires attacker to have a logon on the host where the SDK runs. Successful exploitation can lead to full takeover of the component.
• 8.5.8
• Easily exploitable (local) – requires user interaction.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60782
• 9.8 (CRITICAL)
• Oracle Payments (E‑Business Suite) – File Transmission
• Remote unauthenticated attacker can compromise the Payments module via HTTP. Leads to full takeover of the Payments service.
• 12.2.3‑12.2.15
• Network‑accessible, no authentication required.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60730
• 9.9 (CRITICAL)
• Oracle WebCenter Portal – Composer component
• Remote unauthenticated attacker can compromise the portal via HTTP. Full takeover of the portal.
• 12.2.1.4.0, 14.1.2.0.0
• Network‑accessible, no auth.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60728
• 9.1 (CRITICAL)
• Oracle WebCenter Portal – Portlet Services
• Remote unauthenticated attacker can cause denial‑of‑service and full compromise of portal data.
• 12.2.1.4.0, 14.1.2.0.0
• Network‑accessible, no auth.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60727
• 9.8 (CRITICAL)
• Oracle Identity Manager – OIM Legacy UI
• Remote unauthenticated attacker can take over the IAM system via HTTP.
• 12.2.1.4.0, 14.1.2.1.0
• Network‑accessible, no auth.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60721
• 9.8 (CRITICAL)
• Oracle Identity Manager – OIM Legacy UI
• Same vector as above; full takeover possible.
• 12.2.1.4.0, 14.1.2.1.0
• Network‑accessible, no auth.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60720
• 9.9 (CRITICAL)
• Oracle Identity Manager – OIM Legacy UI
• Remote unauthenticated attacker can compromise the IAM system.
• 12.2.1.4.0, 14.1.2.1.0
• Network‑accessible, no auth.
cveawg.mitre.org/api/cve/CVE-2

#infosecnews

##

CVE-2026-60721
(9.8 CRITICAL)

EPSS: 0.49%

updated 2026-08-18T21:31:57

1 posts

Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middleware (component: OIM Legacy UI). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.1.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Identity Manager. Successful attacks of this vulnerability can result in takeover of Oracle Identity Mana

infosecbot@mastodon.hofud.com at 2026-08-19T06:09:14.000Z ##

[1/9]

Most Impactful Security Incidents ( 2026‑08‑18 → 2026‑08‑19 )

---

PRIORITY 1 – Critical / High‑Severity Flaws (CVSS 7‑10):

CVE‑2026‑60392
• 7.8 (HIGH)
• Oracle Outside In Technology – PDF Export SDK (Fusion Middleware)
• Local‑privilege escalation; requires attacker to have a logon on the host where the SDK runs. Successful exploitation can lead to full takeover of the component.
• 8.5.8
• Easily exploitable (local) – requires user interaction.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60782
• 9.8 (CRITICAL)
• Oracle Payments (E‑Business Suite) – File Transmission
• Remote unauthenticated attacker can compromise the Payments module via HTTP. Leads to full takeover of the Payments service.
• 12.2.3‑12.2.15
• Network‑accessible, no authentication required.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60730
• 9.9 (CRITICAL)
• Oracle WebCenter Portal – Composer component
• Remote unauthenticated attacker can compromise the portal via HTTP. Full takeover of the portal.
• 12.2.1.4.0, 14.1.2.0.0
• Network‑accessible, no auth.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60728
• 9.1 (CRITICAL)
• Oracle WebCenter Portal – Portlet Services
• Remote unauthenticated attacker can cause denial‑of‑service and full compromise of portal data.
• 12.2.1.4.0, 14.1.2.0.0
• Network‑accessible, no auth.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60727
• 9.8 (CRITICAL)
• Oracle Identity Manager – OIM Legacy UI
• Remote unauthenticated attacker can take over the IAM system via HTTP.
• 12.2.1.4.0, 14.1.2.1.0
• Network‑accessible, no auth.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60721
• 9.8 (CRITICAL)
• Oracle Identity Manager – OIM Legacy UI
• Same vector as above; full takeover possible.
• 12.2.1.4.0, 14.1.2.1.0
• Network‑accessible, no auth.
cveawg.mitre.org/api/cve/CVE-2

CVE‑2026‑60720
• 9.9 (CRITICAL)
• Oracle Identity Manager – OIM Legacy UI
• Remote unauthenticated attacker can compromise the IAM system.
• 12.2.1.4.0, 14.1.2.1.0
• Network‑accessible, no auth.
cveawg.mitre.org/api/cve/CVE-2

#infosecnews

##

CVE-2026-47628
(7.5 HIGH)

EPSS: 0.35%

updated 2026-08-18T21:31:54

4 posts

NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker could cause an allocation of resources without limits. A successful exploit might lead to denial of service.

thehackerwire@mastodon.social at 2026-08-18T20:01:19.000Z ##

🟠 CVE-2026-47628 - High (7.5)

NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker could cause an allocation of resources without limits. A successful exploit might lead to denial of service.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

AAKL at 2026-08-18T17:07:44.318Z ##

Nvidia has new advisories addressing two vulnerabilities:

- NVIDIA Cumulus Linux and NVOS - August 2026 nvidia.custhelp.com/app/answer

- CRITICAL, affecting the following: CVE-2026-47627, CVE-2026-47628, CVE-2026-47629, CVE-2026-47606, CVE-2026-47630

NVIDIA Triton Inference Server - August 2026 nvidia.custhelp.com/app/answer

##

thehackerwire@mastodon.social at 2026-08-18T20:01:19.000Z ##

🟠 CVE-2026-47628 - High (7.5)

NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker could cause an allocation of resources without limits. A successful exploit might lead to denial of service.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

AAKL@infosec.exchange at 2026-08-18T17:07:44.000Z ##

Nvidia has new advisories addressing two vulnerabilities:

- NVIDIA Cumulus Linux and NVOS - August 2026 nvidia.custhelp.com/app/answer

- CRITICAL, affecting the following: CVE-2026-47627, CVE-2026-47628, CVE-2026-47629, CVE-2026-47606, CVE-2026-47630

NVIDIA Triton Inference Server - August 2026 nvidia.custhelp.com/app/answer #Nvidia #infosec #vulnerability #Linux

##

CVE-2026-47606
(6.5 MEDIUM)

EPSS: 0.41%

updated 2026-08-18T21:31:54

2 posts

NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker could cause an absolute path traversal. A successful exploit might lead to code execution and information disclosure.

AAKL at 2026-08-18T17:07:44.318Z ##

Nvidia has new advisories addressing two vulnerabilities:

- NVIDIA Cumulus Linux and NVOS - August 2026 nvidia.custhelp.com/app/answer

- CRITICAL, affecting the following: CVE-2026-47627, CVE-2026-47628, CVE-2026-47629, CVE-2026-47606, CVE-2026-47630

NVIDIA Triton Inference Server - August 2026 nvidia.custhelp.com/app/answer

##

AAKL@infosec.exchange at 2026-08-18T17:07:44.000Z ##

Nvidia has new advisories addressing two vulnerabilities:

- NVIDIA Cumulus Linux and NVOS - August 2026 nvidia.custhelp.com/app/answer

- CRITICAL, affecting the following: CVE-2026-47627, CVE-2026-47628, CVE-2026-47629, CVE-2026-47606, CVE-2026-47630

NVIDIA Triton Inference Server - August 2026 nvidia.custhelp.com/app/answer #Nvidia #infosec #vulnerability #Linux

##

CVE-2026-47627
(9.8 CRITICAL)

EPSS: 0.43%

updated 2026-08-18T21:31:53

4 posts

NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker could cause path traversal. A successful exploit might lead to denial of service.

thehackerwire@mastodon.social at 2026-08-18T20:01:05.000Z ##

🔴 CVE-2026-47627 - Critical (9.8)

NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker could cause path traversal. A successful exploit might lead to denial of service.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

AAKL at 2026-08-18T17:07:44.318Z ##

Nvidia has new advisories addressing two vulnerabilities:

- NVIDIA Cumulus Linux and NVOS - August 2026 nvidia.custhelp.com/app/answer

- CRITICAL, affecting the following: CVE-2026-47627, CVE-2026-47628, CVE-2026-47629, CVE-2026-47606, CVE-2026-47630

NVIDIA Triton Inference Server - August 2026 nvidia.custhelp.com/app/answer

##

thehackerwire@mastodon.social at 2026-08-18T20:01:05.000Z ##

🔴 CVE-2026-47627 - Critical (9.8)

NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker could cause path traversal. A successful exploit might lead to denial of service.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

AAKL@infosec.exchange at 2026-08-18T17:07:44.000Z ##

Nvidia has new advisories addressing two vulnerabilities:

- NVIDIA Cumulus Linux and NVOS - August 2026 nvidia.custhelp.com/app/answer

- CRITICAL, affecting the following: CVE-2026-47627, CVE-2026-47628, CVE-2026-47629, CVE-2026-47606, CVE-2026-47630

NVIDIA Triton Inference Server - August 2026 nvidia.custhelp.com/app/answer #Nvidia #infosec #vulnerability #Linux

##

CVE-2026-17106(CVSS UNKNOWN)

EPSS: 0.19%

updated 2026-08-18T21:17:30

1 posts

### Summary The tar extraction routines in `moby/go-archive` (`Unpack`, `UnpackLayer`, `Untar`/`UntarUncompressed`, and the `ApplyLayer` helpers) do not confine filesystem operations to the destination directory. A crafted archive can create or overwrite files **outside** the intended destination. ### Details The extractor decides where each archive entry lands using lexical string checks and th

3 repos

https://github.com/masasron/CopyEscape-CVE-2026-17106

https://github.com/686f6c61/POC-CopyEscape-CVE-2026-17106

https://github.com/HackSpeak/CVE-2026-17106

DailyCyberSecurity@infosec.exchange at 2026-08-17T14:23:40.000Z ##

CVE-2026-17106 (CVSS 7.1) is the Docker CopyEscape vulnerability, letting malicious containers overwrite host files and trigger code execution.

#Docker #CopyEscape #CVE202617106 #InfoSec

securityonline.info/docker-cop

##

CVE-2026-75911
(7.8 HIGH)

EPSS: 0.17%

updated 2026-08-18T20:17:33.760000

2 posts

CodeWhale versions before 0.8.64 fail to properly validate the allow_shell configuration parameter from project config files, allowing attackers to enable arbitrary shell command execution by committing a malicious .codewhale/config.toml file to a repository. When a user clones and opens the repository in CodeWhale, the AI model gains access to exec_shell and task_shell tools, enabling execution o

thehackerwire@mastodon.social at 2026-08-18T17:00:28.000Z ##

🟠 CVE-2026-75911 - High (7.8)

CodeWhale versions before 0.8.64 fail to properly validate the allow_shell configuration parameter from project config files, allowing attackers to enable arbitrary shell command execution by committing a malicious .codewhale/config.toml file to a...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-18T17:00:28.000Z ##

🟠 CVE-2026-75911 - High (7.8)

CodeWhale versions before 0.8.64 fail to properly validate the allow_shell configuration parameter from project config files, allowing attackers to enable arbitrary shell command execution by committing a malicious .codewhale/config.toml file to a...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-75625
(9.0 CRITICAL)

EPSS: 0.20%

updated 2026-08-18T20:17:32.460000

2 posts

Kraken agents fail to verify peer-to-peer downloaded blobs against their requested SHA-256 digest before committing to the content-addressable cache, relying only on CRC32 checksums for piece validation. Attackers on the agent-to-agent path or malicious peers can supply substituted content with forged CRC32 corrections that passes per-piece checks, poisoning the cache with attacker-chosen containe

thehackerwire@mastodon.social at 2026-08-18T19:00:16.000Z ##

🔴 CVE-2026-75625 - Critical (9)

Kraken agents fail to verify peer-to-peer downloaded blobs against their requested SHA-256 digest before committing to the content-addressable cache, relying only on CRC32 checksums for piece validation. Attackers on the agent-to-agent path or mal...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-18T19:00:16.000Z ##

🔴 CVE-2026-75625 - Critical (9)

Kraken agents fail to verify peer-to-peer downloaded blobs against their requested SHA-256 digest before committing to the content-addressable cache, relying only on CRC32 checksums for piece validation. Attackers on the agent-to-agent path or mal...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-47719
(8.2 HIGH)

EPSS: 0.48%

updated 2026-08-18T20:17:15.103000

1 posts

FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. Prior to 1.3.2, the DEVICE_WEBAPI_REQUEST and DEVICE_PROPERTY Socket.IO handlers in server/runtime/index.js omit isSocketWriteAuthorized and accept attacker-controlled property.address or endpoint connection data. A remote unauthenticated attacker can make server/runtime/devices/httprequest/index.js call axios.get against ar

hugovalters@mastodon.social at 2026-08-19T01:11:46.000Z ##

CVE-2026-47719 - Critical SSRF in FUXA SCADA/HMI. Unauthenticated attackers can probe internal networks via axios. CVSS 8.2. Unpatched - restrict access now. #CVE #ICS #cybersecurity

valtersit.com/cve/CVE-2026-477

##

CVE-2026-11801
(7.5 HIGH)

EPSS: 0.30%

updated 2026-08-18T20:17:11.423000

2 posts

The WPAdverts – Classifieds Plugin plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 2.3.2. This is due to the plugin not properly verifying that a user is authorized to perform an action. This makes it possible for unauthenticated attackers to retrieve internal site configuration data exposed by the classifieds-types REST endpoint, including register

thehackerwire@mastodon.social at 2026-08-18T05:00:21.000Z ##

🟠 CVE-2026-11801 - High (7.5)

The WPAdverts – Classifieds Plugin plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 2.3.2. This is due to the plugin not properly verifying that a user is authorized to perform an action. This make...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

offseq@infosec.exchange at 2026-08-18T04:30:25.000Z ##

WPAdverts – Classifieds Plugin <=2.3.2 hit by HIGH severity CWE-862 auth bypass (CVE-2026-11801). Unauthenticated users can access internal config data via REST API. Restrict endpoints & monitor for fixes. radar.offseq.com/threat/cve-20 #OffSeq #WordPress #Vulnerability

##

CVE-2026-47630
(5.5 MEDIUM)

EPSS: 0.14%

updated 2026-08-18T19:16:52.650000

2 posts

NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker could cause an absolute path traversal. A successful exploit might lead to code execution.

AAKL at 2026-08-18T17:07:44.318Z ##

Nvidia has new advisories addressing two vulnerabilities:

- NVIDIA Cumulus Linux and NVOS - August 2026 nvidia.custhelp.com/app/answer

- CRITICAL, affecting the following: CVE-2026-47627, CVE-2026-47628, CVE-2026-47629, CVE-2026-47606, CVE-2026-47630

NVIDIA Triton Inference Server - August 2026 nvidia.custhelp.com/app/answer

##

AAKL@infosec.exchange at 2026-08-18T17:07:44.000Z ##

Nvidia has new advisories addressing two vulnerabilities:

- NVIDIA Cumulus Linux and NVOS - August 2026 nvidia.custhelp.com/app/answer

- CRITICAL, affecting the following: CVE-2026-47627, CVE-2026-47628, CVE-2026-47629, CVE-2026-47606, CVE-2026-47630

NVIDIA Triton Inference Server - August 2026 nvidia.custhelp.com/app/answer #Nvidia #infosec #vulnerability #Linux

##

CVE-2026-47629
(7.5 HIGH)

EPSS: 0.35%

updated 2026-08-18T19:16:52.217000

4 posts

NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker could cause improper input validation. A successful exploit might lead to denial of service.

thehackerwire@mastodon.social at 2026-08-18T20:00:49.000Z ##

🟠 CVE-2026-47629 - High (7.5)

NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker could cause improper input validation. A successful exploit might lead to denial of service.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

AAKL at 2026-08-18T17:07:44.318Z ##

Nvidia has new advisories addressing two vulnerabilities:

- NVIDIA Cumulus Linux and NVOS - August 2026 nvidia.custhelp.com/app/answer

- CRITICAL, affecting the following: CVE-2026-47627, CVE-2026-47628, CVE-2026-47629, CVE-2026-47606, CVE-2026-47630

NVIDIA Triton Inference Server - August 2026 nvidia.custhelp.com/app/answer

##

thehackerwire@mastodon.social at 2026-08-18T20:00:49.000Z ##

🟠 CVE-2026-47629 - High (7.5)

NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker could cause improper input validation. A successful exploit might lead to denial of service.

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

AAKL@infosec.exchange at 2026-08-18T17:07:44.000Z ##

Nvidia has new advisories addressing two vulnerabilities:

- NVIDIA Cumulus Linux and NVOS - August 2026 nvidia.custhelp.com/app/answer

- CRITICAL, affecting the following: CVE-2026-47627, CVE-2026-47628, CVE-2026-47629, CVE-2026-47606, CVE-2026-47630

NVIDIA Triton Inference Server - August 2026 nvidia.custhelp.com/app/answer #Nvidia #infosec #vulnerability #Linux

##

CVE-2026-75130
(9.0 None)

EPSS: 0.28%

updated 2026-08-18T18:32:11

2 posts

Context7 through 2.1.2 contains a prompt injection vulnerability that allows attackers to execute malicious instructions in connected AI coding agents by injecting unsanitized content through the Custom AI Instructions feature served via the MCP server. Attackers can poison the custom instructions to exfiltrate credentials from environment files to an attacker-controlled service and perform destru

thehackerwire@mastodon.social at 2026-08-18T19:00:02.000Z ##

🔴 CVE-2026-75130 - Critical (9)

Context7 through 2.1.2 contains a prompt injection vulnerability that allows attackers to execute malicious instructions in connected AI coding agents by injecting unsanitized content through the Custom AI Instructions feature served via the MCP s...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-18T19:00:02.000Z ##

🔴 CVE-2026-75130 - Critical (9)

Context7 through 2.1.2 contains a prompt injection vulnerability that allows attackers to execute malicious instructions in connected AI coding agents by injecting unsanitized content through the Custom AI Instructions feature served via the MCP s...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-33824
(9.8 CRITICAL)

EPSS: 77.90%

updated 2026-08-18T18:31:46

8 posts

Double free in Windows IKE Extension allows an unauthorized attacker to execute code over a network.

2 repos

https://github.com/EpSiLoNPoInTOrI/IKEV2-POC

https://github.com/kaleth4/CVE-2026-33824

undercodenews@mastodon.social at 2026-08-19T13:09:37.000Z ##

CISA Sounds the Alarm: Critical Windows IKE Vulnerability Is Now an Actively Exploited Threat

Introduction: The VPN Door Attackers Are Watching A dangerous Windows vulnerability has moved from the long list of security advisories into a far more urgent category: CISA’s Known Exploited Vulnerabilities catalog. Tracked as CVE-2026-33824, the flaw affects the Windows Internet Key Exchange (IKE) Service Extensions and can allow an unauthenticated attacker to execute…

undercodenews.com/cisa-sounds-

##

offseq at 2026-08-19T10:30:25.671Z ##

CVE-2026-33824: CRITICAL RCE in Windows IKE Extension is being actively exploited. All supported Windows 10, 11 & Server are impacted. Patch immediately or block UDP 500/4500 if IKE not used. More at radar.offseq.com/threat/critic

##

Analyst207@mastodon.social at 2026-08-19T10:25:40.000Z ##

Hackers Actively Exploit Windows IKE Flaw

Hackers are actively exploiting a critical Windows flaw, known as CVE-2026-33824, that lets them execute code over a network, putting your system at risk. This vulnerability, found in the Windows Internet Key Exchange (IKE) Service Extensions, affects all supported Windows 10 and other Windows systems.

osintsights.com/hackers-active

#WindowsIkeFlaw #Cve202633824 #EmergingThreats #ZeroDay #Microsoft

##

thecybermind at 2026-08-18T20:57:29.470Z ##

🚨 NEW CISA KEV: CVE-2026-33824. Active RCE weaponization targeting Microsoft Internet Key Exchange (IKE) via double-free memory corruption. Unauthenticated access possible. Get the full T-Suite brief & custom CrowdStrike detection queries to secure your Precinct Hybrid architecture.
Link below 👇
thecybermind.co/jily

##

cR0w at 2026-08-18T17:51:24.675Z ##

Looks like CVE-2026-33824 was added to KEV. Keep in mind that this service isn't just for IPSec VPNs. It's also used with some Windows Firewall policies so check your internal systems for listeners, not just public-facing systems.

An unauthenticated attacker could send specially crafted packets to a Windows machine with Internet Key Exchange (IKE) version 2 enabled, which could enable remote code execution.

msrc.microsoft.com/update-guid

nvd.nist.gov/vuln/detail/CVE-2

##

offseq@infosec.exchange at 2026-08-19T10:30:25.000Z ##

CVE-2026-33824: CRITICAL RCE in Windows IKE Extension is being actively exploited. All supported Windows 10, 11 & Server are impacted. Patch immediately or block UDP 500/4500 if IKE not used. More at radar.offseq.com/threat/critic #OffSeq #RCE #Windows #BlueTeam

##

thecybermind@infosec.exchange at 2026-08-18T20:57:29.000Z ##

🚨 NEW CISA KEV: CVE-2026-33824. Active RCE weaponization targeting Microsoft Internet Key Exchange (IKE) via double-free memory corruption. Unauthenticated access possible. Get the full T-Suite brief & custom CrowdStrike detection queries to secure your Precinct Hybrid architecture.
Link below 👇
thecybermind.co/jily

#ThreatIntelligence #CISAKEV

##

cR0w@infosec.exchange at 2026-08-18T17:51:24.000Z ##

Looks like CVE-2026-33824 was added to KEV. Keep in mind that this service isn't just for IPSec VPNs. It's also used with some Windows Firewall policies so check your internal systems for listeners, not just public-facing systems.

An unauthenticated attacker could send specially crafted packets to a Windows machine with Internet Key Exchange (IKE) version 2 enabled, which could enable remote code execution.

msrc.microsoft.com/update-guid

nvd.nist.gov/vuln/detail/CVE-2

##

CVE-2026-71424
(9.6 CRITICAL)

EPSS: 0.29%

updated 2026-08-18T18:19:32.247000

1 posts

Onyx is an open-source AI platform. Prior to 3.1.10, 3.2.14, and 4.0.0, Onyx's GET /api/mcp/servers and GET /api/mcp/servers/persona/{persona_id} endpoints expose another user's OAuth Authorization header because OnyxTokenStorage.set_tokens and OnyxTokenStorage.set_client_info in backend/onyx/server/features/mcp/api.py copy per-user tokens into a shared admin MCPConnectionConfig row and _db_mcp_se

thehackerwire@mastodon.social at 2026-08-17T23:00:37.000Z ##

🔴 CVE-2026-71424 - Critical (9.6)

Onyx is an open-source AI platform. Prior to 3.1.10, 3.2.14, and 4.0.0, Onyx's GET /api/mcp/servers and GET /api/mcp/servers/persona/{persona_id} endpoints expose another user's OAuth Authorization header because OnyxTokenStorage.set_tokens and On...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-75103
(8.8 HIGH)

EPSS: 0.34%

updated 2026-08-18T16:18:20.127000

1 posts

Crawlab fails to verify user ownership or administrative role on the password-change endpoint, allowing any authenticated user to reset any account's password. Attackers can enumerate user accounts through the user listing endpoint and change administrator credentials to achieve full account takeover and arbitrary code execution.

thehackerwire@mastodon.social at 2026-08-18T06:01:02.000Z ##

🟠 CVE-2026-75103 - High (8.8)

Crawlab fails to verify user ownership or administrative role on the password-change endpoint, allowing any authenticated user to reset any account's password. Attackers can enumerate user accounts through the user listing endpoint and change admi...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-67854
(9.8 CRITICAL)

EPSS: 0.40%

updated 2026-08-18T16:18:14.327000

1 posts

SQL Injection vulnerability in Qcms v.6.0.6 allows a remote attacker to execute arbitrary code

offseq@infosec.exchange at 2026-08-18T01:30:24.000Z ##

SQL Injection flaw (CVE-2026-67854) in Qcms v6.0.6 rated CRITICAL: remote code execution risk. No official patch. Restrict access & monitor for injection attempts. Details: radar.offseq.com/threat/sql-in #OffSeq #SQLInjection #Vulnerability #Qcms #InfoSec

##

CVE-2026-56677
(8.6 HIGH)

EPSS: 0.27%

updated 2026-08-18T16:17:59.650000

1 posts

9Router is an AI router & token saver. In 0.5.4 and earlier, the POST /api/auth/oidc/test endpoint in src/app/api/auth/oidc/test/route.js passes the user-controlled issuerUrl parameter to fetchOidcDiscovery() in src/lib/auth/oidc.js without restricting private or loopback destinations, allowing unauthenticated attackers when dashboard login is disabled to scan internal services and reflect OIDC di

thehackerwire@mastodon.social at 2026-08-17T23:01:32.000Z ##

🟠 CVE-2026-56677 - High (8.6)

9Router is an AI router & token saver. In 0.5.4 and earlier, the POST /api/auth/oidc/test endpoint in src/app/api/auth/oidc/test/route.js passes the user-controlled issuerUrl parameter to fetchOidcDiscovery() in src/lib/auth/oidc.js without restri...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-73062
(7.5 HIGH)

EPSS: 0.28%

updated 2026-08-18T15:17:01.647000

1 posts

Scriban versions 3.0.0 through 7.2.0 contain a denial of service vulnerability in the array multiplication operator that allocates memory without enforcing LoopLimit or overflow-safe arithmetic checks. Attackers can supply a large integer multiplier in a template to force multi-gigabyte memory allocations, causing resource exhaustion and availability degradation.

thehackerwire@mastodon.social at 2026-08-16T17:00:36.000Z ##

🟠 CVE-2026-73062 - High (7.5)

Scriban versions 3.0.0 through 7.2.0 contain a denial of service vulnerability in the array multiplication operator that allocates memory without enforcing LoopLimit or overflow-safe arithmetic checks. Attackers can supply a large integer multipli...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-73057
(7.5 HIGH)

EPSS: 0.28%

updated 2026-08-18T15:17:01.497000

1 posts

stoatchat before 0.15.0 fails to validate SVG viewBox dimensions in the proxy endpoint, allowing attackers to cause denial of service by memory exhaustion. Attackers can host malicious SVGs with extremely large width and height values and trigger concurrent requests to exhaust available memory across proxy replicas.

thehackerwire@mastodon.social at 2026-08-16T16:01:49.000Z ##

🟠 CVE-2026-73057 - High (7.5)

stoatchat before 0.15.0 fails to validate SVG viewBox dimensions in the proxy endpoint, allowing attackers to cause denial of service by memory exhaustion. Attackers can host malicious SVGs with extremely large width and height values and trigger ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-24301
(8.8 HIGH)

EPSS: 1.63%

updated 2026-08-18T15:16:51.903000

4 posts

Improper neutralization of special elements used in a command ('command injection') in Microsoft Copilot allows an unauthorized attacker to disclose information over a network.

PC_Fluesterer@social.tchncs.de at 2026-08-19T13:38:47.000Z ##

Von wegen KI: MS Copilot ist strunzdumm

Das Sicherheitsunternehmen Varonis hat eine Sicherheitslücke in Microsoft (MS) Copilot gefunden. Die hat inzwischen auch einen Namen bekommen und eine CVE-Nummer: CVE-2026-24301 oder CoSnitch. Sie ist mit 8,8 von 10 als kritisch eingestuft. Anscheinend gibt es noch keinen Flicken dagegen. Wer diese Lücke ausnutzt, kann Copilot von Ferne heimlich (ohne Interaktion des Opfers) dazu veranlassen, sensible geheime Daten zu senden. Zwar hat Copilot Schutzvorkehrungen gegen solchen Missbrauch, aber die sind unvollständig. Der Trick der Forscher/innen bestand darin, Copilot sich selbst hacken zu lassen! Immer wenn die KI einen ... Weiterlesen:

pc-fluesterer.info/wordpress/2

#cybercrime #datenleck #KI #Microsoft #sicherheit #spionage #unplugMicrosoft #UnplugTrump

##

AAKL at 2026-08-18T16:50:44.912Z ##

Microsoft has an advisory for a new critical Copilot vulnerability.

CRITICAL: CVE-2026-24301: Microsoft Copilot Information Disclosure Vulnerability msrc.microsoft.com/update-guid

More information:

CWE-77: Improper Neutralization of Special Elements used in a Command ('Command Injection') cwe.mitre.org/data/definitions

##

PC_Fluesterer@social.tchncs.de at 2026-08-19T13:38:47.000Z ##

Von wegen KI: MS Copilot ist strunzdumm

Das Sicherheitsunternehmen Varonis hat eine Sicherheitslücke in Microsoft (MS) Copilot gefunden. Die hat inzwischen auch einen Namen bekommen und eine CVE-Nummer: CVE-2026-24301 oder CoSnitch. Sie ist mit 8,8 von 10 als kritisch eingestuft. Anscheinend gibt es noch keinen Flicken dagegen. Wer diese Lücke ausnutzt, kann Copilot von Ferne heimlich (ohne Interaktion des Opfers) dazu veranlassen, sensible geheime Daten zu senden. Zwar hat Copilot Schutzvorkehrungen gegen solchen Missbrauch, aber die sind unvollständig. Der Trick der Forscher/innen bestand darin, Copilot sich selbst hacken zu lassen! Immer wenn die KI einen ... Weiterlesen:

pc-fluesterer.info/wordpress/2

#cybercrime #datenleck #KI #Microsoft #sicherheit #spionage #unplugMicrosoft #UnplugTrump

##

AAKL@infosec.exchange at 2026-08-18T16:50:44.000Z ##

Microsoft has an advisory for a new critical Copilot vulnerability.

CRITICAL: CVE-2026-24301: Microsoft Copilot Information Disclosure Vulnerability msrc.microsoft.com/update-guid

More information:

CWE-77: Improper Neutralization of Special Elements used in a Command ('Command Injection') cwe.mitre.org/data/definitions #infosec #Microsoft #Copilot #vulnerability

##

CVE-2026-19478
(9.4 CRITICAL)

EPSS: 0.72%

updated 2026-08-18T14:57:10.630000

14 posts

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.2 before 18.11.11, 19.0 before 19.0.8, 19.1 before 19.1.6, and 19.2 before 19.2.4 that under certain conditions could allow an unauthenticated user to remotely modify or delete public projects and user data via a GraphQL directive.

3 repos

https://github.com/HORKimhab/CVE-2026-19650-CVE-2026-19478

https://github.com/renzi25031469/CVE-2026-19478

https://github.com/davkharrr/CVE-2026-19478-PoC

threatcodex at 2026-08-19T14:17:54.524Z ##

Critical and High-Severity GraphQL CVEs in GitLab: Code Injection and CSRF via One Directive

ox.security/blog/gitlab-graphq

##

tierrasapiens@mastodon.social at 2026-08-19T12:35:11.000Z ##

🖲️ #Cybersecurity #Ciberseguridad #Ciberseguranca #Security #Seguridad #Seguranca #News #Noticia #Noticias #Tecnologia #Technology
⚫ Critical GitLab Zero-Click Flaw Poses Mitigation Challenges
🔗 darkreading.com/application-se

A lack of technical details could make it hard for organizations running self-managed GitLab versions to detect potential exploitation of CVE-2026-19478.

##

oversecurity@mastodon.social at 2026-08-19T08:13:08.000Z ##

Critical GitLab Flaw Lets Hackers Alter or Delete Public Projects

GitLab has patched two security flaws, including CVE-2026-19478, a critical code injection vulnerability that could allow unauthenticated attackers...

🔗️ [Thecyberexpress] link.is.it/otTWyh

##

sayzard@mastodon.sayzard.org at 2026-08-19T07:44:37.000Z ##

GitLab CVE-2026-19478: GraphQL authorization bypass

본문은 자체 운영 GitLab의 GraphQL directive 결함(CVE-2026-19478)이 인증 없이 공개 프로젝트와 사용자 데이터를 변경·삭제할 수 있는 CVSS 9.4급 취약점이라고 주장합니다. 영향 범위로 GitLab 18.2~18.11.10, 19.0~19.0.7, 19.1~19.1.5, 19.2~19.2.3을 제시하며, 각각 18.11.11·19.0.8·19.1.6·19.2.4 이상으로 즉시 업그레이드할 것을 권고합니다. 함께 수정됐다는 CVE-2026-19650은 GraphQL multiplex handler의 CSRF 결함으로, 인증 사용자의 상호작용이 필요...

techupdate24.com/gitlab-cve-20

##

threatnoir at 2026-08-18T16:08:32.234Z ##

⚠️ CRITICAL: GitLab Patches Critical Code Injection Vulnerability

GitLab released patches for a critical unauthenticated code injection vulnerability (CVE-2026-19478, CVSS 9.4) in GraphQL directives that allows attackers to modify or delete user data and public projects. A secondary CSRF flaw (CVE-2026-19650) affects the GraphQL multiplex query handler. Versions…

threatnoir.com/focus

🤖 AI generated summary

##

threatcodex@infosec.exchange at 2026-08-19T14:17:54.000Z ##

Critical and High-Severity GraphQL CVEs in GitLab: Code Injection and CSRF via One Directive
#GitLab #CVE_2026_19478 #CVE_2026_19650
ox.security/blog/gitlab-graphq

##

oversecurity@mastodon.social at 2026-08-19T08:13:08.000Z ##

Critical GitLab Flaw Lets Hackers Alter or Delete Public Projects

GitLab has patched two security flaws, including CVE-2026-19478, a critical code injection vulnerability that could allow unauthenticated attackers...

🔗️ [Thecyberexpress] link.is.it/otTWyh

##

threatnoir@infosec.exchange at 2026-08-18T16:08:32.000Z ##

⚠️ CRITICAL: GitLab Patches Critical Code Injection Vulnerability

GitLab released patches for a critical unauthenticated code injection vulnerability (CVE-2026-19478, CVSS 9.4) in GraphQL directives that allows attackers to modify or delete user data and public projects. A secondary CSRF flaw (CVE-2026-19650) affects the GraphQL multiplex query handler. Versions…

threatnoir.com/focus

#infosec #cybersecurity

🤖 AI generated summary

##

beyondmachines1@infosec.exchange at 2026-08-18T11:01:46.000Z ##

GitLab Issues Emergency Patch for Critical GraphQL Flaw Allowing Remote Project Deletion

GitLab issued an emergency security update to fix a critical GraphQL code injection vulnerability (CVE-2026-19478) that allows unauthenticated attackers to remotely delete or modify public projects and user data.

**If you run a self-managed GitLab server (version 18.2 through 19.2.3), update it ASAP to 19.2.4, 19.1.6, 19.0.8, or 18.11.11. The patch is quick and won't take your system offline. Before you patch, check your logs for unusual GraphQL activity so you know nobody has already deleted or altered your projects or user data.**
#cybersecurity #infosec #advisory #vulnerability
beyondmachines.net/event_detai

##

offseq@infosec.exchange at 2026-08-18T09:00:28.000Z ##

CRITICAL: GitLab CE/EE (v18.2+ to 19.2.4) patched CVE-2026-19478, a code injection bug allowing unauthenticated data modification/deletion via GraphQL. CSRF (CVE-2026-19650) also fixed. Upgrade to safe versions ASAP. radar.offseq.com/threat/gitlab #OffSeq #GitLab #Infosec #CVE

##

cyberworldops@infosec.exchange at 2026-08-18T04:20:01.000Z ##

GitLab addressed a critical GraphQL flaw, CVE-2026-19478, with a CVSS score of 9.4, allowing attackers to modify or delete projects in GitLab CE and EE. This poses serious risks to code repositories and requires immediate patching to prevent exploitation. #GitLabCVE #GraphQLFlaw #CyberSecurityUpdate #InfoSecCritical

cyberworldops.eu/en/gitlab-fix

##

security_crawler_carl@infosec.exchange at 2026-08-18T02:53:30.000Z ##

🏆 New Achievement! Delete Yourself From This Industry!

Welcome to Module 9: GraphQL Directive Hygiene. Today's learning objective: CVE-2026-19478, a CVSS 9.4 flaw in GitLab Community and Enterprise Edition that allows a completely unauthenticated attacker — no credentials, no victim interaction, no participation trophy — to remotely modify or delete public projects and user data. (1/2)

##

DailyCyberSecurity@infosec.exchange at 2026-08-18T01:41:10.000Z ##

GitLab patched CVE-2026-19478, a CVSS 9.4 GraphQL code injection flaw letting unauthenticated users alter or delete project data.

#CVE202619478 #GitLab #CodeInjection #GraphQL #CVE202619650 #PatchNow

securityonline.info/gitlab-cve

##

jomo@mstdn.io at 2026-08-17T20:30:02.000Z ##

Unauthenticated remote code execution in GitLab.
Update to 19.2.4 / 19.1.6 / 19.0.8 / 18.11.11!

docs.gitlab.com/releases/patch

#GitLab

##

CVE-2026-75851
(9.9 CRITICAL)

EPSS: 0.32%

updated 2026-08-18T14:18:12.117000

1 posts

ArcadeDB server (com.arcadedb:arcadedb-server) in versions 26.7.3 and earlier fails to propagate the authenticated principal to asynchronous command worker threads. When an HTTP command is submitted with awaitResponse:false, it executes on an async worker whose DatabaseContext has no bound user, causing the scripting authorization gate to become a no-op. A user with only read access to a single da

thehackerwire@mastodon.social at 2026-08-18T13:00:16.000Z ##

🔴 CVE-2026-75851 - Critical (9.9)

ArcadeDB server (com.arcadedb:arcadedb-server) in versions 26.7.3 and earlier fails to propagate the authenticated principal to asynchronous command worker threads. When an HTTP command is submitted with awaitResponse:false, it executes on an asyn...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-75783
(9.6 CRITICAL)

EPSS: 0.40%

updated 2026-08-18T14:18:10.200000

2 posts

A security vulnerability has been detected in TRENDnet TEW-WLC100P 12.07b01. Affected by this vulnerability is an unknown functionality of the file /sbin/netifd of the component DHCP blobmsg Handler. The manipulation leads to stack-based buffer overflow. The attack must be carried out from within the local network. The exploit has been disclosed publicly and may be used.

offseq at 2026-08-18T13:30:26.474Z ##

TRENDnet TEW-WLC100P v12.07b01 impacted by CRITICAL stack-based buffer overflow (CVE-2026-75783, CVSS 9.4) in DHCP blobmsg Handler. Exploit needs local network access. No patch yet — restrict access & monitor logs. radar.offseq.com/threat/cve-20

##

offseq@infosec.exchange at 2026-08-18T13:30:26.000Z ##

TRENDnet TEW-WLC100P v12.07b01 impacted by CRITICAL stack-based buffer overflow (CVE-2026-75783, CVSS 9.4) in DHCP blobmsg Handler. Exploit needs local network access. No patch yet — restrict access & monitor logs. radar.offseq.com/threat/cve-20 #OffSeq #CVE202675783 #Vuln #IoTSecurity

##

CVE-2026-75081
(4.3 MEDIUM)

EPSS: 0.27%

updated 2026-08-18T14:18:08.373000

1 posts

A vulnerability was detected in Webkul Bagisto up to 2.4.4. Impacted is an unknown function of the file /customer/account/rma/store. The manipulation of the argument rma_qty/resolution_type/rma_reason_id results in enforcement of behavioral workflow. The attack may be performed from remote. The exploit is now public and may be used. The vendor confirms: "The reported issues were already identified

offseq@infosec.exchange at 2026-08-18T00:00:40.000Z ##

CVE-2026-75081 (MEDIUM): Webkul Bagisto ≤2.4.4 has a vuln in /customer/account/rma/store. Public exploit exists — remote attackers may abuse RMA workflow. Monitor for suspicious RMA activity. radar.offseq.com/threat/cve-20 #OffSeq #Bagisto #Vuln #Infosec

##

CVE-2026-19959
(9.9 CRITICAL)

EPSS: 0.47%

updated 2026-08-18T14:16:59.543000

2 posts

A weakness has been identified in Edimax EW-7478APC 1.04. This affects the function formWanTcpipSetup of the file /goform/formWanTcpipSetup. This manipulation of the argument pppUserName causes stack-based buffer overflow. Remote exploitation of the attack is possible. The exploit has been made available to the public and could be used for attacks. The vendor was contacted early about this disclos

offseq@infosec.exchange at 2026-08-17T01:30:23.000Z ##

CVE-2026-19959: CRITICAL stack buffer overflow in Edimax EW-7478APC v1.04 (CVSS 9.4). Remote code execution possible. Public exploit out, no fix from vendor. Restrict access or replace device. radar.offseq.com/threat/cve-20 #OffSeq #CVE #IoTSecurity #infosec

##

thehackerwire@mastodon.social at 2026-08-17T00:00:53.000Z ##

🔴 CVE-2026-19959 - Critical (9.9)

A weakness has been identified in Edimax EW-7478APC 1.04. This affects the function formWanTcpipSetup of the file /goform/formWanTcpipSetup. This manipulation of the argument pppUserName causes stack-based buffer overflow. Remote exploitation of t...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-75853
(8.8 HIGH)

EPSS: 0.39%

updated 2026-08-18T12:31:30

2 posts

ArcadeDB's Gremlin wire-protocol plugin (com.arcadedb:arcadedb-gremlin) in versions <= 26.7.3 enforces authentication (SASL PLAIN) but performs no authorization: it never checks database access permissions (canAccessToDatabase) and never binds the authenticated principal into the engine. As a result, any valid server credential — even one provisioned for zero or one unrelated database — can read,

thehackerwire@mastodon.social at 2026-08-18T13:00:39.000Z ##

🟠 CVE-2026-75853 - High (8.8)

ArcadeDB's Gremlin wire-protocol plugin (com.arcadedb:arcadedb-gremlin) in versions &lt;= 26.7.3 enforces authentication (SASL PLAIN) but performs no authorization: it never checks database access permissions (canAccessToDatabase) and never binds ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-18T13:00:39.000Z ##

🟠 CVE-2026-75853 - High (8.8)

ArcadeDB's Gremlin wire-protocol plugin (com.arcadedb:arcadedb-gremlin) in versions &lt;= 26.7.3 enforces authentication (SASL PLAIN) but performs no authorization: it never checks database access permissions (canAccessToDatabase) and never binds ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-75852
(9.8 CRITICAL)

EPSS: 0.45%

updated 2026-08-18T12:31:30

1 posts

ArcadeDB versions before 26.8.1 fail to enforce SASL authentication on data commands in the MongoDB wire-protocol plugin. Unauthenticated attackers can issue insert, find, update, delete, and create commands against any database by connecting to port 27017 without credentials.

thehackerwire@mastodon.social at 2026-08-18T13:00:28.000Z ##

🔴 CVE-2026-75852 - Critical (9.8)

ArcadeDB versions before 26.8.1 fail to enforce SASL authentication on data commands in the MongoDB wire-protocol plugin. Unauthenticated attackers can issue insert, find, update, delete, and create commands against any database by connecting to p...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-75854
(9.8 CRITICAL)

EPSS: 1.07%

updated 2026-08-18T12:31:30

1 posts

ArcadeDB versions before 26.8.1 contain a missing authentication vulnerability in the Redis wire-protocol plugin that allows unauthenticated attackers to read, write, and delete data. Attackers can connect to the Redis port and execute arbitrary commands against any database on the server without providing credentials, bypassing all security gates.

offseq@infosec.exchange at 2026-08-18T12:00:24.000Z ##

CVE-2026-75854: ArcadeDB <26.8.1 has a CRITICAL Redis plugin vuln (CVSS 9.3). Missing auth lets attackers run any command & access/modify/delete all DB data. Restrict Redis port access & monitor for fixes. radar.offseq.com/threat/cve-20 #OffSeq #Vuln #ArcadeDB #Infosec

##

CVE-2026-15748
(9.8 CRITICAL)

EPSS: 1.18%

updated 2026-08-18T06:31:55

10 posts

The Forminator Forms plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 1.56.1 via the handle_file_upload function. This is due to insufficient file type validation in handle_file_upload, where the dangerous-extension blocklist performs exact-key matching that is bypassed by pipe-alternative MIME type keys, combined with a public submission handler th

3 repos

https://github.com/HORKimhab/CVE-2026-15826-CVE-2026-15748

https://github.com/yora1928/cve-2026-15748

https://github.com/ubaydev/CVE-2026-15748

beyondmachines1 at 2026-08-19T09:01:23.027Z ##

Unauthenticated RCE Vulnerability Patched in Forminator Forms Plugin

WPMU DEV patched a critical vulnerability (CVE-2026-15748) in the Forminator Forms plugin that allowed unauthenticated attackers to upload and execute PHP files. The flaw can lead to full remote code execution and site compromise.

**If you use the Forminator Forms plugin on your WordPress site, update it to version 1.56.2 or later ASAP away: attackers can take over the whole site without logging in. After updating, check your upload folders for any unfamiliar PHP files. If you can't update yet, delete any forms that use both File Upload and Select fields.**

beyondmachines.net/event_detai

##

cyberveille@mastobot.ping.moi at 2026-08-19T07:00:06.000Z ##

📢 [VULN] 600 000 sites WordPress menacés par une faille critique dans Forminator Forms CVE-2026-15748

Une faille critique touche Forminator Forms, une extension WordPress utilisée sur plus de 600 000 sites. Référencée CVE-2026-15748, la vulnérabilité obtient un score de 9,8/10 et peut permettre à un attaquant non authentifié d’exécuter du code sur un serveur vulnérable.

🔗 cyberattaque.org/600-000-sites
💬 discussion : infosec.pub/post/51136301
#Vulnérabilité #CVE #Cyberveille

##

guru@thecybersecguru.com at 2026-08-19T05:14:10.000Z ##

Critical WordPress Alert: Dissecting CVE-2026-15748 (Forminator RCE) & CVE-2026-15826 (UPB Auth Bypass)

CVE-2026-15748 enables critical Forminator RCE, while CVE-2026-15826 allows User Profile Builder authentication bypass. Learn how to detect and patch both

thecybersecguru.com/news/cve-2

##

security_crawler_carl at 2026-08-19T01:00:33.684Z ##

CVE-2026-15748, scored 9.8 out of 10, allows unauthenticated attackers to manipulate Select field configurations and bypass the plugin's blocklist entirely, uploading executable files through handle_file_upload. Defiant confirms this is several weaknesses working together in a kind of tragic team-building exercise.

Remote code execution is not a learning objective we endorse. Please update Forminator Forms to version 1.56.2 or later immediately. (2/3)

##

beyondmachines1@infosec.exchange at 2026-08-19T09:01:23.000Z ##

Unauthenticated RCE Vulnerability Patched in Forminator Forms Plugin

WPMU DEV patched a critical vulnerability (CVE-2026-15748) in the Forminator Forms plugin that allowed unauthenticated attackers to upload and execute PHP files. The flaw can lead to full remote code execution and site compromise.

**If you use the Forminator Forms plugin on your WordPress site, update it to version 1.56.2 or later ASAP away: attackers can take over the whole site without logging in. After updating, check your upload folders for any unfamiliar PHP files. If you can't update yet, delete any forms that use both File Upload and Select fields.**
#cybersecurity #infosec #advisory #vulnerability
beyondmachines.net/event_detai

##

security_crawler_carl@infosec.exchange at 2026-08-19T01:00:33.000Z ##

CVE-2026-15748, scored 9.8 out of 10, allows unauthenticated attackers to manipulate Select field configurations and bypass the plugin's blocklist entirely, uploading executable files through handle_file_upload. Defiant confirms this is several weaknesses working together in a kind of tragic team-building exercise.

Remote code execution is not a learning objective we endorse. Please update Forminator Forms to version 1.56.2 or later immediately. (2/3)

##

offseq@infosec.exchange at 2026-08-18T06:00:26.000Z ##

CVE-2026-15748 (CRITICAL, CVSS 9.8): wpmudev Forminator Forms for WordPress up to 1.56.1 lets unauthenticated attackers upload dangerous files via handle_file_upload, risking remote code execution. Patch urgently: radar.offseq.com/threat/cve-20 #OffSeq #WordPress #Vuln

##

ottoto2017@prattohome.com at 2026-08-18T05:26:14.000Z ##

「Forminator WordPressの脆弱性により、悪意のあるPHPファイルのアップロードを介して認証なしのリモートコード実行が可能になる 」: #TheHackerNews

「0万件以上のインストール実績を持つWordPressプラグイン「Forminator Forms」に、重大なセキュリティ上の欠陥が発見された。この欠陥を悪用すれば、脆弱性のあるサイトで任意のコードを実行できる可能性がある。

CVE-2026-15748 として追跡されているこの脆弱性は 、CVSSスコアリングシステムで10点満点中9.8点と評価されている。この脆弱性は、「daroo」というオンライン上のニックネームを持つセキュリティ研究者によって発見され、報告された。

thehackernews.com/2026/08/form

#prattohome

##

DailyCyberSecurity@infosec.exchange at 2026-08-18T01:52:19.000Z ##

CVE-2026-15748 (CVSS 9.8): Forminator Flaw Enables Pre-Auth RCE

securityonline.info/cve-2026-1

##

cyberworldops@infosec.exchange at 2026-08-17T20:20:01.000Z ##

Two critical flaws disclosed in WordPress plugins: Forminator Forms (CVE-2026-15748) allows unauthenticated PHP file upload leading to RCE, and User Profile Builder (CVE-2026-15826) lets unauthenticated attackers authenticate as the site admin. Both can result in full site compromise.

#WordPressSecurity #CVE #RemoteCodeExecution #InfoSec

cyberworldops.eu/en/two-critic

##

CVE-2026-75060
(8.4 HIGH)

EPSS: 0.14%

updated 2026-08-18T04:16:47.650000

1 posts

In JetBrains PyCharm before 2026.2.1 code execution was possible via unauthenticated Jupyter MCP tools

thehackerwire@mastodon.social at 2026-08-17T17:00:14.000Z ##

🟠 CVE-2026-75060 - High (8.4)

In JetBrains PyCharm before 2026.2.1 code execution was possible via unauthenticated Jupyter MCP tools

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-75094
(9.1 CRITICAL)

EPSS: 2.09%

updated 2026-08-18T03:31:14

2 posts

A flaw has been found in COMFAST CF-N1-S 2.6.0.1. This impacts the function sub_44B438 of the file /cgi-bin/mbox-config?method=SET&section=ptest_ssid of the component CGI Interface. This manipulation of the argument ssid causes os command injection. Remote exploitation of the attack is possible. The exploit has been published and may be used.

offseq@infosec.exchange at 2026-08-18T03:00:25.000Z ##

CVE-2026-75094: CRITICAL OS command injection in COMFAST CF-N1-S v2.6.0.1. Exploit code is public, no official patch. Restrict access to /cgi-bin/mbox-config to reduce risk. Details: radar.offseq.com/threat/cve-20 #OffSeq #CVE #IoT #Security

##

thehackerwire@mastodon.social at 2026-08-18T03:00:05.000Z ##

🔴 CVE-2026-75094 - Critical (9.1)

A flaw has been found in COMFAST CF-N1-S 2.6.0.1. This impacts the function sub_44B438 of the file /cgi-bin/mbox-config?method=SET&section=ptest_ssid of the component CGI Interface. This manipulation of the argument ssid causes os command injectio...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-19771
(7.2 HIGH)

EPSS: 2.79%

updated 2026-08-18T02:17:25.770000

1 posts

A vulnerability was identified in Baicells EG3661M BaiCE_BQ6_2.0.5.3_NA. This impacts an unknown function of the file /cgi-bin/luci of the component LuCI Web Interface. Such manipulation of the argument MaxHops/Timeout/Size leads to os command injection. The attack may be launched remotely. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure bu

secdb@infosec.exchange at 2026-08-17T00:02:24.000Z ##

📈 CVE Published in last 7 days (2026-08-10 - 2026-08-10)
See more at secdb.nttzen.cloud/dashboard

Total CVEs:

Severity:
- Critical: 326
- High: 1309
- Medium: 1008
- Low: 130
- None: 1222

Status:
- : 39
- Analyzed: 419
- Awaiting Analysis: 226
- Deferred: 197
- Modified: 2
- Received: 2827
- Rejected: 102
- Undergoing Analysis: 183

CISA KEVs:
- CISA-2026:0811 (secdb.nttzen.cloud/security-ad)

Top CNAs:
- kernel.org: 1221
- Microsoft Corporation: 405
- VulnCheck: 343
- GitHub, Inc.: 326
- IBM Corporation: 160
- WPScan: 124
- Patchstack: 111
- VulDB: 104
- Red Hat, Inc.: 101
- Wordfence: 93

Top Affected Products:
- UNKNOWN: 3370
- Microsoft Windows Server 2025: 178
- Microsoft Windows 11 24h2: 171
- Microsoft Windows 11 26h1: 171
- Microsoft Windows 11 25h2: 171
- Microsoft Windows Server 2022: 158
- Microsoft Windows Server 2019: 146
- Microsoft Windows 10 1809: 146
- Microsoft Windows 11 23h2: 146
- Microsoft Windows 10 22h2: 136

Top EPSS Score:
- CVE-2026-72898 - 10.40 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-61358 - 3.68 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-66804 - 3.42 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62696 - 3.18 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19771 - 2.79 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-73296 - 2.61 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-65775 - 2.45 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62832 - 2.37 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19747 - 2.36 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19681 - 2.24 % (secdb.nttzen.cloud/cve/detail/)

#ZEN #SecDB #InfoSec

##

CVE-2026-75482
(7.5 HIGH)

EPSS: 0.62%

updated 2026-08-17T21:31:35

1 posts

SWE-agent's trajectory inspector (sweagent inspector), confirmed in v1.1.0, is an HTTP server that joins request paths to the trajectory directory in its /trajectory/ handler without rejecting parent-directory ('..') references, bypassing the built-in path sanitization. The server binds all interfaces (0.0.0.0), applies wildcard CORS, and requires no authentication. An unauthenticated network clie

thehackerwire@mastodon.social at 2026-08-18T05:00:44.000Z ##

🟠 CVE-2026-75482 - High (7.5)

SWE-agent's trajectory inspector (sweagent inspector), confirmed in v1.1.0, is an HTTP server that joins request paths to the trajectory directory in its /trajectory/ handler without rejecting parent-directory ('..') references, bypassing the buil...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-66792
(9.9 CRITICAL)

EPSS: 0.30%

updated 2026-08-17T21:31:30

3 posts

A flaw was found in the multicloud-operators-subscription component. This vulnerability allows a user on a managed cluster to escalate their privileges by creating a Subscription with specific, crafted annotations. Successful exploitation grants the attacker the ability to deploy resources into any namespace with the elevated permissions of the controller's Service Account, potentially leading to

DailyCyberSecurity at 2026-08-19T13:45:53.565Z ##

Three critical Red Hat ACM/MCE flaws, led by CVE-2026-66792 (CVSS 9.9), allow full compromise of the managed cluster.

securityonline.info/red-hat-ac

##

DailyCyberSecurity@infosec.exchange at 2026-08-19T13:45:53.000Z ##

Three critical Red Hat ACM/MCE flaws, led by CVE-2026-66792 (CVSS 9.9), allow full compromise of the managed cluster.

#CVE202666792 #RedHat #Kubernetes #PrivilegeEscalation #ACM #ClusterAdmin

securityonline.info/red-hat-ac

##

thehackerwire@mastodon.social at 2026-08-17T20:01:04.000Z ##

🔴 CVE-2026-66792 - Critical (9.9)

A flaw was found in the multicloud-operators-subscription component. This vulnerability allows a user on a managed cluster to escalate their privileges by creating a Subscription with specific, crafted annotations. Successful exploitation grants t...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-19650
(7.1 HIGH)

EPSS: 0.24%

updated 2026-08-17T21:31:30

4 posts

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.2 before 18.11.11, 19.0 before 19.0.8, 19.1 before 19.1.6, and 19.2 before 19.2.4 that under certain conditions could have allowed an unauthenticated user to execute mutations via GET requests due to improper request validation in GraphQL multiplex query handling.

1 repos

https://github.com/HORKimhab/CVE-2026-19650-CVE-2026-19478

sayzard@mastodon.sayzard.org at 2026-08-19T07:44:37.000Z ##

GitLab CVE-2026-19478: GraphQL authorization bypass

본문은 자체 운영 GitLab의 GraphQL directive 결함(CVE-2026-19478)이 인증 없이 공개 프로젝트와 사용자 데이터를 변경·삭제할 수 있는 CVSS 9.4급 취약점이라고 주장합니다. 영향 범위로 GitLab 18.2~18.11.10, 19.0~19.0.7, 19.1~19.1.5, 19.2~19.2.3을 제시하며, 각각 18.11.11·19.0.8·19.1.6·19.2.4 이상으로 즉시 업그레이드할 것을 권고합니다. 함께 수정됐다는 CVE-2026-19650은 GraphQL multiplex handler의 CSRF 결함으로, 인증 사용자의 상호작용이 필요...

techupdate24.com/gitlab-cve-20

##

threatnoir at 2026-08-18T16:08:32.234Z ##

⚠️ CRITICAL: GitLab Patches Critical Code Injection Vulnerability

GitLab released patches for a critical unauthenticated code injection vulnerability (CVE-2026-19478, CVSS 9.4) in GraphQL directives that allows attackers to modify or delete user data and public projects. A secondary CSRF flaw (CVE-2026-19650) affects the GraphQL multiplex query handler. Versions…

threatnoir.com/focus

🤖 AI generated summary

##

threatnoir@infosec.exchange at 2026-08-18T16:08:32.000Z ##

⚠️ CRITICAL: GitLab Patches Critical Code Injection Vulnerability

GitLab released patches for a critical unauthenticated code injection vulnerability (CVE-2026-19478, CVSS 9.4) in GraphQL directives that allows attackers to modify or delete user data and public projects. A secondary CSRF flaw (CVE-2026-19650) affects the GraphQL multiplex query handler. Versions…

threatnoir.com/focus

#infosec #cybersecurity

🤖 AI generated summary

##

offseq@infosec.exchange at 2026-08-18T09:00:28.000Z ##

CRITICAL: GitLab CE/EE (v18.2+ to 19.2.4) patched CVE-2026-19478, a code injection bug allowing unauthenticated data modification/deletion via GraphQL. CSRF (CVE-2026-19650) also fixed. Upgrade to safe versions ASAP. radar.offseq.com/threat/gitlab #OffSeq #GitLab #Infosec #CVE

##

CVE-2026-68005
(7.5 HIGH)

EPSS: 0.41%

updated 2026-08-17T21:31:30

1 posts

An issue in ACME mini_httpd 1.30 and prior allows a remote attacker to cause a denial of service via the HTTP request header parser in the handle_request() function

hugovalters@mastodon.social at 2026-08-18T15:06:53.000Z ##

CVE-2026-68005 DoS in ACME mini_httpd 1.30. Remote HTTP header parser crash. CVSS 7.5. Unpatched. Update immediately. #CVE #infosec #ACME

valtersit.com/cve/CVE-2026-680

##

CVE-2026-75106
(9.1 CRITICAL)

EPSS: 0.30%

updated 2026-08-17T21:31:30

1 posts

OpnForm derives editable-submission secrets from sequential row identifiers using Hashids with an empty default salt, allowing unauthenticated attackers to compute hashes for any submission. Attackers can read other respondents' full submission data through the submission-fetch endpoint or overwrite submissions by supplying predicted hashes to the answer endpoint.

thehackerwire@mastodon.social at 2026-08-18T06:01:22.000Z ##

🔴 CVE-2026-75106 - Critical (9.1)

OpnForm derives editable-submission secrets from sequential row identifiers using Hashids with an empty default salt, allowing unauthenticated attackers to compute hashes for any submission. Attackers can read other respondents' full submission da...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-71472
(9.1 CRITICAL)

EPSS: 0.39%

updated 2026-08-17T21:31:30

1 posts

A flaw was found in acm-search-v2-rhel9. This vulnerability allows an authenticated attacker, such as a hub administrator or a Search Custom Resource (CR) editor, to inject malicious shell commands or SQL statements. This occurs because the WORK_MEM string provided in the Search CR is not properly validated before being used in a bash script and an SQL query. Successful exploitation could lead to

thehackerwire@mastodon.social at 2026-08-17T21:00:33.000Z ##

🔴 CVE-2026-71472 - Critical (9.1)

A flaw was found in acm-search-v2-rhel9. This vulnerability allows an authenticated attacker, such as a hub administrator or a Search Custom Resource (CR) editor, to inject malicious shell commands or SQL statements. This occurs because the WORK_M...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-70495
(8.8 HIGH)

EPSS: 0.10%

updated 2026-08-17T21:31:30

1 posts

A flaw was found in search-v2-operator. This component's `search-serviceaccount` has overly broad permissions, allowing it to impersonate users and groups across the entire cluster. If an attacker gains access to any of the pods running under this service account, they could exploit this to achieve `system:masters` access, granting them full control over the cluster.

thehackerwire@mastodon.social at 2026-08-17T21:00:19.000Z ##

🟠 CVE-2026-70495 - High (8.8)

A flaw was found in search-v2-operator. This component's `search-serviceaccount` has overly broad permissions, allowing it to impersonate users and groups across the entire cluster. If an attacker gains access to any of the pods running under this...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-75481
(8.8 HIGH)

EPSS: 0.28%

updated 2026-08-17T21:31:27

1 posts

SkyPilot fails to validate that authenticated users are entitled to grant administrator roles when updating service account permissions. Attackers can create a service account, escalate it to administrator role, and authenticate with its bearer token to gain administrative control over all users and workspaces.

thehackerwire@mastodon.social at 2026-08-18T05:00:33.000Z ##

🟠 CVE-2026-75481 - High (8.8)

SkyPilot fails to validate that authenticated users are entitled to grant administrator roles when updating service account permissions. Attackers can create a service account, escalate it to administrator role, and authenticate with its bearer to...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-75479
(7.5 HIGH)

EPSS: 0.36%

updated 2026-08-17T21:31:27

1 posts

JimuReport contains an authentication bypass vulnerability in the report folder template listing endpoint that allows unauthenticated attackers to enumerate all reports and retrieve share tokens. Attackers can use disclosed share tokens to access protected report endpoints and retrieve full report definitions including embedded SQL statements and live query data.

thehackerwire@mastodon.social at 2026-08-18T01:00:31.000Z ##

🟠 CVE-2026-75479 - High (7.5)

JimuReport contains an authentication bypass vulnerability in the report folder template listing endpoint that allows unauthenticated attackers to enumerate all reports and retrieve share tokens. Attackers can use disclosed share tokens to access ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-75110
(9.8 CRITICAL)

EPSS: 0.52%

updated 2026-08-17T21:31:27

1 posts

MemOS is a memory operating system for LLMs and AI agents. In deployments where authentication is enabled (AUTH_ENABLED=true) but the undocumented, defaultless INTERNAL_SERVICE_SECRET environment variable is unset, the is_internal_request() check in src/memos/api/middleware/auth.py fails open: os.getenv("INTERNAL_SERVICE_SECRET") returns None and a request omitting the X-Internal-Service header al

thehackerwire@mastodon.social at 2026-08-18T01:00:11.000Z ##

🔴 CVE-2026-75110 - Critical (9.8)

MemOS is a memory operating system for LLMs and AI agents. In deployments where authentication is enabled (AUTH_ENABLED=true) but the undocumented, defaultless INTERNAL_SERVICE_SECRET environment variable is unset, the is_internal_request() check ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-75111
(7.5 HIGH)

EPSS: 0.39%

updated 2026-08-17T21:16:50.193000

1 posts

Evidently UI fails to properly validate the filename parameter in the dataset materialization endpoint, allowing unauthenticated attackers to read arbitrary files outside the workspace directory. Attackers can supply traversal sequences or absolute paths in the filename field to access system files, which are then materialized into datasets and retrieved through the download endpoint.

thehackerwire@mastodon.social at 2026-08-18T01:00:21.000Z ##

🟠 CVE-2026-75111 - High (7.5)

Evidently UI fails to properly validate the filename parameter in the dataset materialization endpoint, allowing unauthenticated attackers to read arbitrary files outside the workspace directory. Attackers can supply traversal sequences or absolut...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-75105
(7.5 HIGH)

EPSS: 0.28%

updated 2026-08-17T21:16:49.473000

1 posts

phpIPAM through 1.8.1 fails to verify that a requested IP address belongs to the subnet a temporary share token was issued for. In app/temp_share/index.php and app/temp_share/address.php, when the share type is 'subnets', the subnetId parameter is used directly as a database primary key to fetch an address without confirming the address belongs to the authorized subnet. An unauthenticated party ho

thehackerwire@mastodon.social at 2026-08-18T06:01:12.000Z ##

🟠 CVE-2026-75105 - High (7.5)

phpIPAM through 1.8.1 fails to verify that a requested IP address belongs to the subnet a temporary share token was issued for. In app/temp_share/index.php and app/temp_share/address.php, when the share type is 'subnets', the subnetId parameter is...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-74234
(7.7 HIGH)

EPSS: 0.28%

updated 2026-08-17T20:16:46.813000

2 posts

Legora before 2026-08-14 contains a cross-site scripting vulnerability that allows attackers to achieve arbitrary JavaScript execution in a victim's browser by embedding a Mermaid block prefixed with a gray-matter JavaScript front-matter directive, causing the front-matter parser to invoke eval() before any SVG sanitization occurs. Attackers can exploit this flaw through influenced Mermaid diagram

hugovalters@mastodon.social at 2026-08-18T14:02:23.000Z ##

CVE-2026-74234 - Critical XSS in Legora. Mermaid block + JS front-matter triggers eval() before sanitization. CVSS 7.7. Arbitrary JS in victim's browser. Patch unknown. Update immediately. #CVE #Legora #infosec

valtersit.com/cve/CVE-2026-742

##

thehackerwire@mastodon.social at 2026-08-17T21:00:10.000Z ##

🟠 CVE-2026-74234 - High (7.7)

Legora before 2026-08-14 contains a cross-site scripting vulnerability that allows attackers to achieve arbitrary JavaScript execution in a victim's browser by embedding a Mermaid block prefixed with a gray-matter JavaScript front-matter directive...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-45698
(7.5 HIGH)

EPSS: 0.27%

updated 2026-08-17T20:16:43.153000

1 posts

Netatalk is a Free and Open Source file server suite for Unix-like operating systems. In versions 3.1.19 through 4.4.2, a stack-based buffer overflow exists in the deletedir() function of Netatalk's afpd daemon due to an integer underflow in the calculation of the remaining buffer size used for path construction. deletedir() is a utility function called when a file operation crosses a device bound

thehackerwire@mastodon.social at 2026-08-17T20:01:17.000Z ##

🟠 CVE-2026-45698 - High (7.5)

Netatalk is a Free and Open Source file server suite for Unix-like operating systems. In versions 3.1.19 through 4.4.2, a stack-based buffer overflow exists in the deletedir() function of Netatalk's afpd daemon due to an integer underflow in the c...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-74238
(7.5 HIGH)

EPSS: 0.38%

updated 2026-08-17T19:16:42.713000

1 posts

TIER IV Nebula through 1.2.0 contains an out-of-bounds read vulnerability in the Vlp32Decoder::unpack() function that allows unauthenticated remote attackers to cause the decoder to read past the end of a received UDP buffer into adjacent heap memory by sending a short UDP datagram. Attackers can send a malformed datagram to the Velodyne UDP sensor port, which lacks sender-address restrictions pre

thehackerwire@mastodon.social at 2026-08-17T20:00:54.000Z ##

🟠 CVE-2026-74238 - High (7.5)

TIER IV Nebula through 1.2.0 contains an out-of-bounds read vulnerability in the Vlp32Decoder::unpack() function that allows unauthenticated remote attackers to cause the decoder to read past the end of a received UDP buffer into adjacent heap mem...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-73056
(9.8 CRITICAL)

EPSS: 0.45%

updated 2026-08-17T19:16:40.153000

1 posts

SiYuan kernel versions before 3.7.4 contain an improper restriction of excessive authentication attempts vulnerability in the CheckAuth() middleware. The middleware accepts the API token (Conf.Api.Token) via an Authorization header (Token/Bearer) or a ?token= query parameter, and neither path is protected by the application's CAPTCHA/lockout mechanism (NeedCaptcha/WrongAuthCount). As a result, an

thehackerwire@mastodon.social at 2026-08-16T16:01:38.000Z ##

🔴 CVE-2026-73056 - Critical (9.8)

SiYuan kernel versions before 3.7.4 contain an improper restriction of excessive authentication attempts vulnerability in the CheckAuth() middleware. The middleware accepts the API token (Conf.Api.Token) via an Authorization header (Token/Bearer) ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-71479
(9.1 CRITICAL)

EPSS: 0.52%

updated 2026-08-17T19:16:35.383000

1 posts

New API is a large language mode (LLM) gateway and artificial intelligence (AI) asset management system. Prior to 1.0.0-rc.18, user-controlled image n, video seconds and duration, max_tokens, max_completion_tokens, maxOutputTokens, audio duration, and billing-expression quantities can overflow conversions in common/quota_math.go and related settlement paths, allowing a low-privileged account with

CVE-2026-17482
(9.8 CRITICAL)

EPSS: 0.55%

updated 2026-08-17T19:16:28.953000

2 posts

IBM Documentation Offline 1.0.0 through 1.4.1 could allow a remote attacker to execute arbitrary code due to improper control of file paths.

DailyCyberSecurity at 2026-08-19T01:34:45.699Z ##

A critical IBM remote code execution flaw (CVE-2026-17482, CVSS 9.8) allows attackers to compromise workstations. Discover how to apply the software patch.

securityonline.info/ibm-remote

##

DailyCyberSecurity@infosec.exchange at 2026-08-19T01:34:45.000Z ##

A critical IBM remote code execution flaw (CVE-2026-17482, CVSS 9.8) allows attackers to compromise workstations. Discover how to apply the software patch.

#IBM #CyberSecurity #CVE202617482 #RCE #VulnerabilityManagement

securityonline.info/ibm-remote

##

CVE-2026-40145(CVSS UNKNOWN)

EPSS: 0.11%

updated 2026-08-17T18:31:28

2 posts

A vulnerability exists in the interaction between a Endpoint Privilege Management (Windows Deployment) support utility and the agent's tamper protection controls. Under certain conditions, the protections applied to the utility process may not be enforced as intended.

CVE-2026-75056
(7.8 HIGH)

EPSS: 0.15%

updated 2026-08-17T18:31:28

1 posts

In JetBrains IntelliJ IDEA before 2026.2.1 rCE via Markdown export tool was possible

thehackerwire@mastodon.social at 2026-08-17T17:00:41.000Z ##

🟠 CVE-2026-75056 - High (7.8)

In JetBrains IntelliJ IDEA before 2026.2.1 rCE via Markdown export tool was possible

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-40144(CVSS UNKNOWN)

EPSS: 0.11%

updated 2026-08-17T18:31:22

2 posts

A memory-corruption vulnerability exists in a kernel-mode component of BeyondTrust Endpoint Privilege Management (Windows deployments) prior to version 26.1.2. Insufficient validation of input processed by the component may result in memory being accessed outside its intended bounds.

CVE-2026-75045
(9.1 CRITICAL)

EPSS: 0.30%

updated 2026-08-17T18:31:22

1 posts

In JetBrains YouTrack before 2025.3.156085, 2026.1.13913, 2026.2.18112 an unauthenticated attacker could download database backups via shared draft signature

CVE-2026-75051
(8.1 HIGH)

EPSS: 0.22%

updated 2026-08-17T18:31:19

1 posts

In JetBrains YouTrack before 2026.2.17917 unauthorised project transfer between organisations was possible

thehackerwire@mastodon.social at 2026-08-17T17:00:25.000Z ##

🟠 CVE-2026-75051 - High (8.1)

In JetBrains YouTrack before 2026.2.17917 unauthorised project transfer between organisations was possible

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-74788
(7.5 HIGH)

EPSS: 0.28%

updated 2026-08-17T17:16:52.490000

1 posts

Scriban before 7.0.0 (affected versions <= 6.6.0) contains an uncontrolled memory allocation vulnerability in the string.pad_left and string.pad_right template functions, which perform no validation on the width parameter before delegating to .NET's String.PadLeft/PadRight. When an application exposes Scriban to untrusted template input, an attacker can supply an arbitrarily large width value (e.g

thehackerwire@mastodon.social at 2026-08-16T16:00:50.000Z ##

🟠 CVE-2026-74788 - High (7.5)

Scriban before 7.0.0 (affected versions &lt;= 6.6.0) contains an uncontrolled memory allocation vulnerability in the string.pad_left and string.pad_right template functions, which perform no validation on the width parameter before delegating to ....

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-74789
(7.5 HIGH)

EPSS: 0.34%

updated 2026-08-17T16:17:48.590000

1 posts

Scriban before 7.0.0 (affected <= 6.6.0) applies its LoopLimit constraint only to script loop statements and not to expensive iteration performed inside built-in operators and functions. As a result, a single expression such as {{ 1..1000000 | array.size }} — or a memory-amplification expression such as {{ 'A' * 200000000 }} — can force large CPU or memory consumption even when LoopLimit is config

thehackerwire@mastodon.social at 2026-08-16T16:01:00.000Z ##

🟠 CVE-2026-74789 - High (7.5)

Scriban before 7.0.0 (affected &lt;= 6.6.0) applies its LoopLimit constraint only to script loop statements and not to expensive iteration performed inside built-in operators and functions. As a result, a single expression such as {{ 1..1000000 | ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-74251
(0 None)

EPSS: 0.37%

updated 2026-08-17T16:17:48.243000

1 posts

Joomla Extension - phoca.cz - Unauthenticated SQL injection via attribute filter in Phoca Cart 5.0.0-6.1.6 - The a[] (attribute) and s[] (specification) GET array parameters on Phoca Cart's public shop items page are concatenated raw into SQL WHERE clauses without parameterization or escaping. An unauthenticated attacker can inject arbitrary SQL through these parameters, enabling full database ex

1 repos

https://github.com/toanln-cov/CVE-2026-74251

offseq@infosec.exchange at 2026-08-17T03:00:28.000Z ##

CVE-2026-74251: Phoca Cart (Joomla ext. v5.0.0 – 6.1.16) suffers CRITICAL SQL injection via unauthenticated a[]/s[] params. Full DB extraction possible. Patch status unclear — check vendor. radar.offseq.com/threat/cve-20 #OffSeq #SQLInjection #Joomla #Infosec

##

CVE-2026-15826
(9.8 CRITICAL)

EPSS: 0.80%

updated 2026-08-17T16:16:50.140000

3 posts

The User Profile Builder plugin for WordPress is vulnerable to Authentication Bypass via Type Confusion in versions up to, and including, 3.16.4. This is due to the wppb_log_in_user() function calling absint() on the return value of wp_insert_user() before performing an is_wp_error() check — when a registration is submitted with a 61–70 character username, WordPress core rejects it with a WP_Error

1 repos

https://github.com/HORKimhab/CVE-2026-15826-CVE-2026-15748

guru@thecybersecguru.com at 2026-08-19T05:14:10.000Z ##

Critical WordPress Alert: Dissecting CVE-2026-15748 (Forminator RCE) & CVE-2026-15826 (UPB Auth Bypass)

CVE-2026-15748 enables critical Forminator RCE, while CVE-2026-15826 allows User Profile Builder authentication bypass. Learn how to detect and patch both

thecybersecguru.com/news/cve-2

##

beyondmachines1@infosec.exchange at 2026-08-18T10:01:46.000Z ##

Critical Authentication Bypass Reported in User Profile Builder

Cozmoslabs patched a critical authentication bypass vulnerability (CVE-2026-15826) in the User Profile Builder WordPress plugin that allowed unauthenticated attackers to gain full administrative control.

**If you run the User Profile Builder plugin on WordPress, update it to version 3.16.5 or later ASAP. If you can't update immediately, turn off the "Automatically Log In after Registration" setting in the plugin options, and check whether your admin account is user ID 1 and if possible switch to a different admin account.**
#cybersecurity #infosec #advisory #vulnerability
beyondmachines.net/event_detai

##

cyberworldops@infosec.exchange at 2026-08-17T20:20:01.000Z ##

Two critical flaws disclosed in WordPress plugins: Forminator Forms (CVE-2026-15748) allows unauthenticated PHP file upload leading to RCE, and User Profile Builder (CVE-2026-15826) lets unauthenticated attackers authenticate as the site admin. Both can result in full site compromise.

#WordPressSecurity #CVE #RemoteCodeExecution #InfoSec

cyberworldops.eu/en/two-critic

##

CVE-2026-58231
(10.0 CRITICAL)

EPSS: 0.73%

updated 2026-08-17T15:39:24.573000

4 posts

SAP Commerce Cloud allows an unauthenticated attacker to abuse a default authentication client and submit specially crafted input to certain functions lacking sufficient validation. Successful exploitation could enable arbitrary code execution and compromise internal components, resulting in high impact on confidentiality, integrity, and availability of the application.

1 repos

https://github.com/HORKimhab/CVE-2026-58231

DailyCyberSecurity at 2026-08-18T13:31:10.237Z ##

DefusedCyber detected exploitation attempts against CVE-2026-58231, a critical unauthenticated SAP Commerce Cloud flaw, just three days after SAP's patch shipped.

meterpreter.org/cve-2026-58231

##

DailyCyberSecurity@infosec.exchange at 2026-08-18T13:31:10.000Z ##

DefusedCyber detected exploitation attempts against CVE-2026-58231, a critical unauthenticated SAP Commerce Cloud flaw, just three days after SAP's patch shipped.

#SAPCommerceCloud #CVE202658231 #SAPSecurity #Vulnerability #DataHubAdapter

meterpreter.org/cve-2026-58231

##

teezeh@ieji.de at 2026-08-18T06:16:53.000Z ##

“A maximum-severity bug in SAP Commerce Cloud was exploited in the wild, research group Defused posted on X Aug. 14.

The 10.0 bug — CVE-2026-58231 — was described as having insufficient authorization checks and input validation and was earlier patched by SAP on Aug. 11.”

scworld.com/news/critical-sap-

##

ottoto2017@prattohome.com at 2026-08-18T05:35:18.000Z ##

「SAP Commerce Cloudの脆弱性CVE-2026-58231が、パッチ適用後数日で悪用される試みの標的となる 」: #TheHackerNews

「SAP Commerce Cloudに影響を与える、最も深刻なセキュリティ脆弱性について、現在活発な悪用活動が行われています。

CVE-2026-58231 として追跡されているこの脆弱性は、 CVSSスコアリングシステムで10.0と評価されています。これは、認証チェックと入力検証が不十分なケースに関連しています。

CVE.orgによると、「SAP Commerce Cloudでは、認証されていない攻撃者がデフォルトの認証クライアントを悪用し、十分な検証が行われていない特定の機能に特別に細工された入力を送信できる」とのことです。

「脆弱性を悪用されると、任意のコード実行が可能になり、内部コンポーネントが侵害される可能性があり、アプリケーションの機密性、完全性、可用性に重大な影響を与える可能性があります。」 」

thehackernews.com/2026/08/sap-

#prattohome

##

CVE-2026-14564
(9.0 None)

EPSS: 0.24%

updated 2026-08-17T15:30:38

1 posts

Insufficiently Protected Credentials vulnerability in Innotim Software Telecommunications and Consulting Trade Ltd. Co. Logsign SIEM allows Retrieve Embedded Sensitive Data. This issue affects Logsign SIEM: from 6.4.97 before 6.4.114.

offseq@infosec.exchange at 2026-08-17T13:30:28.000Z ##

CVE-2026-14564: CRITICAL vuln in Logsign SIEM (6.4.97 – <6.4.114) due to insufficiently protected credentials (CWE-522). High-priv users can retrieve sensitive data. Patch status unknown — restrict access & monitor vendor updates. radar.offseq.com/threat/cve-20 #OffSeq #SIEM #Vuln

##

CVE-2026-74889
(9.8 CRITICAL)

EPSS: 0.20%

updated 2026-08-17T12:32:31

1 posts

openssl_encrypt versions before 1.4.0 use HKDF with no salt and static info parameter in key normalization functions, reducing entropy extraction and determinism. Attackers can exploit predictable key derivation with identical inputs to weaken cryptographic security against multi-target attacks.

hugovalters@mastodon.social at 2026-08-18T01:00:27.000Z ##

CVE-2026-74889 - Critical crypto weakness in openssl_encrypt <1.4.0. HKDF with no salt/static info weakens key derivation, enabling multi-target attacks. CVSS 9.8. Update immediately. #CVE #cryptography #infosec

valtersit.com/cve/CVE-2026-748

##

CVE-2026-74843
(10.0 CRITICAL)

EPSS: 0.97%

updated 2026-08-17T12:32:28

1 posts

A vulnerability was determined in Wavlink WN531P3 and WN535M1 V250922. Affected by this vulnerability is the function strcpy of the file /etc/lighttpd/www/cgi-bin/export_pingortrace.cgi of the component Export Pingortrace CGI. Executing a manipulation of the argument HTTP_COOKIE can lead to stack-based buffer overflow. The attack may be launched remotely. The exploit has been publicly disclosed an

offseq@infosec.exchange at 2026-08-17T12:00:28.000Z ##

CVE-2026-74843 (CRITICAL, CVSS 10.0) impacts Wavlink WN531P3 & WN535M1: stack buffer overflow in export_pingortrace.cgi enables remote, unauthenticated RCE. No patch. Restrict access & monitor activity. Exploit code public. radar.offseq.com/threat/cve-20 #OffSeq #CVE202674843 #IoTSecurity

##

CVE-2026-74845
(8.8 HIGH)

EPSS: 0.65%

updated 2026-08-17T11:16:40.780000

1 posts

Official Document Management System developed by 2100 Technology has an Arbitrary File Upload vulnerability, allowing authenticated remote attackers to upload and execute web shell backdoors, thereby enabling arbitrary code execution on the server.

offseq@infosec.exchange at 2026-08-17T10:30:25.000Z ##

CVE-2026-74845 (HIGH, CVSS 8.7): 2100 Technology Official Document Management System lets authenticated attackers upload dangerous files — risk of code execution. No patch yet. Limit upload rights & monitor files. radar.offseq.com/threat/cve-20 #OffSeq #vuln #infosec #CVE2026_74845

##

CVE-2026-15623(CVSS UNKNOWN)

EPSS: 0.20%

updated 2026-08-17T09:30:29

1 posts

A SQL Injection vulnerability in a legacy dashboard widget API in Google Cloud Google SecOps (Chronicle SOAR) versions prior to 6.3.85 on Google Cloud Platform allows an authenticated attacker to execute blind SQL queries using a crafted request parameter. This vulnerability was patched in version 6.3.85, and no customer action is needed.

offseq@infosec.exchange at 2026-08-17T07:30:24.000Z ##

CVE-2026-15623: CRITICAL SQL Injection vuln (CVSS 9.4) in Google Cloud Google SecOps (Chronicle SOAR) <6.3.85. Auth attackers could run blind SQL queries. Google patched server-side — no customer action needed. radar.offseq.com/threat/cve-20 #OffSeq #GoogleCloud #Infosec

##

CVE-2026-72407
(10.0 CRITICAL)

EPSS: 0.52%

updated 2026-08-17T06:33:28

1 posts

In the Linux kernel, the following vulnerability has been resolved: geneve: validate inner network offset in geneve_gro_complete() Even with both paths gated on gs->gro_hint, geneve_gro_complete() re-derives the inner dispatch type and length from the packet and the current gs->gro_hint, independently of geneve_gro_receive(). The two can disagree if gs->gro_hint flips under a concurrent geneve_q

jelte@mastodon.nl at 2026-08-17T08:32:47.000Z ##

Say what you will about 'branded' vulnerability disclosures, at least they tend to provide understandable information about the issue, which functionality it concerns, whether you might be affected, and often how to mitigate while waiting for the patch to propagate. As opposed to raw CVEs like cve.org/CVERecord?id=CVE-2026-

##

CVE-2026-50602(CVSS UNKNOWN)

EPSS: 0.10%

updated 2026-08-17T03:30:28

1 posts

A security vulnerability has been identified in Planet9 due to incorrect file permissions assigned to an application executable used by the Planet9 background service. The service runs with SYSTEM privileges, while the affected executable grants excessive permissions to non-administrative users. As a result, an authenticated local user could potentially modify or replace the executable and execute

offseq@infosec.exchange at 2026-08-17T04:30:23.000Z ##

CVE-2026-50602: HIGH severity (CVSS 8.5) vuln in Acer Planet9 background service 🖥️. Incorrect permissions on SYSTEM-level executable allow local users to escalate privileges. Restrict permissions or disable service until patched. radar.offseq.com/threat/cve-20 #OffSeq #vuln #Infosec

##

CVE-2026-19961
(9.9 CRITICAL)

EPSS: 0.47%

updated 2026-08-17T00:31:35

2 posts

A vulnerability was detected in Edimax EW-7478APC 1.04. Affected is the function formWlSiteSurvey of the file /goform/formWlSiteSurvey. Performing a manipulation of the argument selSSID results in buffer overflow. The attack is possible to be carried out remotely. The exploit is now public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

thehackerwire@mastodon.social at 2026-08-17T00:00:43.000Z ##

🔴 CVE-2026-19961 - Critical (9.9)

A vulnerability was detected in Edimax EW-7478APC 1.04. Affected is the function formWlSiteSurvey of the file /goform/formWlSiteSurvey. Performing a manipulation of the argument selSSID results in buffer overflow. The attack is possible to be carr...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

offseq@infosec.exchange at 2026-08-17T00:00:39.000Z ##

CVE-2026-19961: CRITICAL buffer overflow in Edimax EW-7478APC v1.04 via /goform/formWlSiteSurvey (selSSID). Remote code execution is possible; no patch, public exploit exists. Isolate affected devices. radar.offseq.com/threat/cve-20 #OffSeq #CVE202619961 #IoTSecurity

##

CVE-2026-68820
(7.0 HIGH)

EPSS: 0.33%

updated 2026-08-16T19:17:24.183000

6 posts

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

2 repos

https://github.com/HORKimhab/CVE-2026-68820

https://github.com/ubitquity/Windows-WinSock-UAF-Mitigation

youranonnewsirc@nerdculture.de at 2026-08-18T16:26:33.000Z ##

August 17-18, 2026:

**Geopolitical:** Saudi Arabia, Türkiye, and Pakistan formalized a strategic defense pact. Commercial tanker traffic in the Strait of Hormuz plummeted to near-zero following recent strikes and stalled US-Iran negotiations.

**Technology:** Nvidia plans significant AI data center investments for OpenAI. AI-driven tech layoffs have now surpassed 2025 totals. Google Cloud targets 2029 for post-quantum cryptographic readiness.

**Cybersecurity:** Major data breaches impacted RingCentral (1.6M users) and Poland's MyDr healthcare platform (19M citizens). Microsoft patched 421 vulnerabilities, including an actively exploited Windows zero-day by Lazarus Group (CVE-2026-68820).

#AnonNews_irc #Cybersecurity #News

##

threatnoir at 2026-08-18T15:05:54.719Z ##

⚠️ CRITICAL: ⚡ Weekly Recap: VMware Exploits, Windows 0-Day, MCP Attacks, Browser Hijacks and More

Three critical vulnerabilities are under active exploitation: VMware vCenter (CVE-2026-59310) by China-nexus APT for potential ransomware deployment, Windows 0-day (CVE-2026-68820) by Lazarus Group targeting defense contractors with backdoors, and macOS flaw (CVE-2026-65400) distributing crypto min…

threatnoir.com/focus

🤖 AI generated summary

##

youranonnewsirc@nerdculture.de at 2026-08-18T16:26:33.000Z ##

August 17-18, 2026:

**Geopolitical:** Saudi Arabia, Türkiye, and Pakistan formalized a strategic defense pact. Commercial tanker traffic in the Strait of Hormuz plummeted to near-zero following recent strikes and stalled US-Iran negotiations.

**Technology:** Nvidia plans significant AI data center investments for OpenAI. AI-driven tech layoffs have now surpassed 2025 totals. Google Cloud targets 2029 for post-quantum cryptographic readiness.

**Cybersecurity:** Major data breaches impacted RingCentral (1.6M users) and Poland's MyDr healthcare platform (19M citizens). Microsoft patched 421 vulnerabilities, including an actively exploited Windows zero-day by Lazarus Group (CVE-2026-68820).

#AnonNews_irc #Cybersecurity #News

##

threatnoir@infosec.exchange at 2026-08-18T15:05:54.000Z ##

⚠️ CRITICAL: ⚡ Weekly Recap: VMware Exploits, Windows 0-Day, MCP Attacks, Browser Hijacks and More

Three critical vulnerabilities are under active exploitation: VMware vCenter (CVE-2026-59310) by China-nexus APT for potential ransomware deployment, Windows 0-day (CVE-2026-68820) by Lazarus Group targeting defense contractors with backdoors, and macOS flaw (CVE-2026-65400) distributing crypto min…

threatnoir.com/focus

#infosec #cybersecurity

🤖 AI generated summary

##

youranonnewsirc@nerdculture.de at 2026-08-17T22:26:25.000Z ##

Here's a summary of the latest geopolitical, technology, and cybersecurity news from the last 24-48 hours:

Cybersecurity: Apple patched a critical macOS Screen Sharing vulnerability (CVE-2026-65400) and issued mercenary spyware alerts across 110 countries. Microsoft's August Patch Tuesday fixed 421 vulnerabilities, including an actively exploited Windows zero-day (CVE-2026-68820). France reported a Bloctel data leak exposing three million phone numbers and a DGFiP tax data leak.

Technology: Massive tech layoffs continue in 2026, surpassing last year's totals, as companies shift to "AI-first" strategies; AI "inference" spending now exceeds "training". Elon Musk's SpaceX committed exclusively to NVIDIA GPUs, forming a major AI partnership.

Geopolitics: US-Iran tensions remain high over the Strait of Hormuz, with new threats and defense contracts emerging. Ukraine faces critical Patriot interceptor shortages, threatening its winter air defense.

#Cybersecurity #TechNews #Geopolitics

##

youranonnewsirc@nerdculture.de at 2026-08-17T04:26:24.000Z ##

Geopolitical tensions rise with a Middle East conflict stalemate and Israeli retaliatory strikes against Hezbollah in Lebanon. Ukraine's air defense faces threats amid Patriot interceptor depletion and drone attacks on Moscow.

In tech, NVIDIA and SpaceX have forged a significant AI partnership, with massive infrastructure spending projected. Cybersecurity sees the US allowing vetted private companies to conduct offensive cyber operations. Microsoft patched a critical, exploited Windows zero-day (CVE-2026-68820), and Cl0p ransomware leveraged a PTC Windchill flaw impacting nearly 50 firms.

#AnonNews_irc #Cybersecurity #News

##

CVE-2026-73060
(7.5 HIGH)

EPSS: 0.37%

updated 2026-08-16T15:30:33

1 posts

Scriban versions from 3.0.0 through 7.2.5 contain a denial of service vulnerability in the ScriptRange.Multiply operator that bypasses LoopLimit when the left operand is a lazy sequence. Attackers can supply templates with array multiplication on lazy sequences to execute billions of uncharged iterations, pinning CPU cores and exhausting garbage collection resources even when LoopLimit is set to 1

thehackerwire@mastodon.social at 2026-08-16T16:02:01.000Z ##

🟠 CVE-2026-73060 - High (7.5)

Scriban versions from 3.0.0 through 7.2.5 contain a denial of service vulnerability in the ScriptRange.Multiply operator that bypasses LoopLimit when the left operand is a lazy sequence. Attackers can supply templates with array multiplication on ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-73061
(9.8 CRITICAL)

EPSS: 0.30%

updated 2026-08-16T15:30:26

1 posts

Scriban before 7.2.2 contains an access-modifier bypass vulnerability in TypedObjectAccessor that allows template code to write CLR object properties without setter-visibility checks. Attackers can modify properties with private, internal, or init-only setters, and perform mass assignment on public-setter properties, permanently altering live host objects after template rendering.

thehackerwire@mastodon.social at 2026-08-16T17:00:25.000Z ##

🔴 CVE-2026-73061 - Critical (9.8)

Scriban before 7.2.2 contains an access-modifier bypass vulnerability in TypedObjectAccessor that allows template code to write CLR object properties without setter-visibility checks. Attackers can modify properties with private, internal, or init...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-17186
(9.9 CRITICAL)

EPSS: 0.47%

updated 2026-08-14T21:31:35

2 posts

IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to execute arbitrary CL commands due to improper neutralization of special elements in a command.

CVE-2026-19188
(10.0 CRITICAL)

EPSS: 1.89%

updated 2026-08-14T19:17:17.480000

1 posts

A critical OS command injection vulnerability has been identified in the Haiwell IoT Cloud HMI Gateway product. The vulnerability exists in the Net Check feature accessible via the /setting endpoint. The cmdPing Socket.io event fails to properly sanitize user-supplied input before passing it to the underlying operating system, allowing an attacker to inject and execute arbitrary OS commands w

DailyCyberSecurity@infosec.exchange at 2026-08-17T12:57:49.000Z ##

A critical Haiwell HMI Gateway flaw (CVE-2026-19188) allows remote attackers to execute arbitrary OS commands with root privileges.

#Haiwell #CVE202619188 #Vulnerability #CISA

securityonline.info/haiwell-hm

##

CVE-2026-19747
(9.8 CRITICAL)

EPSS: 2.36%

updated 2026-08-14T19:09:39.140000

1 posts

A weakness has been identified in Tenda CH7, CH7G, CH10, CP3, CP3 Pro, CP7, TC3B14C, TC3B15C, TC3T14C and TC3T15C up to 20260625. This impacts the function CAte::HandleCmd of the file Kylin of the component ATE Module. This manipulation causes command injection. The attack is possible to be carried out remotely.

secdb@infosec.exchange at 2026-08-17T00:02:24.000Z ##

📈 CVE Published in last 7 days (2026-08-10 - 2026-08-10)
See more at secdb.nttzen.cloud/dashboard

Total CVEs:

Severity:
- Critical: 326
- High: 1309
- Medium: 1008
- Low: 130
- None: 1222

Status:
- : 39
- Analyzed: 419
- Awaiting Analysis: 226
- Deferred: 197
- Modified: 2
- Received: 2827
- Rejected: 102
- Undergoing Analysis: 183

CISA KEVs:
- CISA-2026:0811 (secdb.nttzen.cloud/security-ad)

Top CNAs:
- kernel.org: 1221
- Microsoft Corporation: 405
- VulnCheck: 343
- GitHub, Inc.: 326
- IBM Corporation: 160
- WPScan: 124
- Patchstack: 111
- VulDB: 104
- Red Hat, Inc.: 101
- Wordfence: 93

Top Affected Products:
- UNKNOWN: 3370
- Microsoft Windows Server 2025: 178
- Microsoft Windows 11 24h2: 171
- Microsoft Windows 11 26h1: 171
- Microsoft Windows 11 25h2: 171
- Microsoft Windows Server 2022: 158
- Microsoft Windows Server 2019: 146
- Microsoft Windows 10 1809: 146
- Microsoft Windows 11 23h2: 146
- Microsoft Windows 10 22h2: 136

Top EPSS Score:
- CVE-2026-72898 - 10.40 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-61358 - 3.68 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-66804 - 3.42 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62696 - 3.18 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19771 - 2.79 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-73296 - 2.61 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-65775 - 2.45 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62832 - 2.37 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19747 - 2.36 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19681 - 2.24 % (secdb.nttzen.cloud/cve/detail/)

#ZEN #SecDB #InfoSec

##

CVE-2026-73268
(9.9 CRITICAL)

EPSS: 0.37%

updated 2026-08-14T19:07:46.080000

1 posts

A flaw was found in the cluster-curator-controller component of multicluster engine (MCE). A tenant with create or update permissions on ClusterCurator resources can inject an arbitrary Job specification. This is possible because the CreateJob() function does not validate user-controlled input when unmarshaling the spec.install.overrideJob raw extension. Successful exploitation allows the injected

DailyCyberSecurity@infosec.exchange at 2026-08-17T13:16:41.000Z ##

Red Hat fixes RHACM remote code execution flaws, including CVE-2026-72526 and CVE-2026-73268, both CVSS 9.9. See patch and mitigation steps.

#RHACM #RedHat #Kubernetes #ArgoCD #RCE #CVE #CyberSecurity #InfoSec

securityonline.info/rhacm-remo

##

CVE-2026-19681
(9.9 CRITICAL)

EPSS: 2.24%

updated 2026-08-14T18:31:46

1 posts

An authenticated command injection vulnerability exists in Security Center related to file upload processing. An attacker could exploit this issue by uploading a specially crafted file, potentially resulting in arbitrary command execution on the underlying operating system.

secdb@infosec.exchange at 2026-08-17T00:02:24.000Z ##

📈 CVE Published in last 7 days (2026-08-10 - 2026-08-10)
See more at secdb.nttzen.cloud/dashboard

Total CVEs:

Severity:
- Critical: 326
- High: 1309
- Medium: 1008
- Low: 130
- None: 1222

Status:
- : 39
- Analyzed: 419
- Awaiting Analysis: 226
- Deferred: 197
- Modified: 2
- Received: 2827
- Rejected: 102
- Undergoing Analysis: 183

CISA KEVs:
- CISA-2026:0811 (secdb.nttzen.cloud/security-ad)

Top CNAs:
- kernel.org: 1221
- Microsoft Corporation: 405
- VulnCheck: 343
- GitHub, Inc.: 326
- IBM Corporation: 160
- WPScan: 124
- Patchstack: 111
- VulDB: 104
- Red Hat, Inc.: 101
- Wordfence: 93

Top Affected Products:
- UNKNOWN: 3370
- Microsoft Windows Server 2025: 178
- Microsoft Windows 11 24h2: 171
- Microsoft Windows 11 26h1: 171
- Microsoft Windows 11 25h2: 171
- Microsoft Windows Server 2022: 158
- Microsoft Windows Server 2019: 146
- Microsoft Windows 10 1809: 146
- Microsoft Windows 11 23h2: 146
- Microsoft Windows 10 22h2: 136

Top EPSS Score:
- CVE-2026-72898 - 10.40 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-61358 - 3.68 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-66804 - 3.42 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62696 - 3.18 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19771 - 2.79 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-73296 - 2.61 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-65775 - 2.45 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62832 - 2.37 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19747 - 2.36 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19681 - 2.24 % (secdb.nttzen.cloud/cve/detail/)

#ZEN #SecDB #InfoSec

##

CVE-2026-8715
(9.6 CRITICAL)

EPSS: 0.32%

updated 2026-08-14T13:19:11.077000

2 posts

Vault Secrets Operator 1.3.0 up to 1.4.1 is vulnerable to an arbitrary file read and credential exfiltration issue in the AppRole authentication configuration that may allow a tenant with limited Kubernetes RBAC permissions to read files from the operator pod's filesystem and transmit their contents to a tenant-controlled endpoint, potentially leading to privilege escalation within the cluster. Th

CVE-2026-68138
(7.8 HIGH)

EPSS: 0.13%

updated 2026-08-14T00:31:53

2 posts

In the Linux kernel, the following vulnerability has been resolved: net/sched: serialize qdisc_rtab_list against concurrent get/put qdisc_get_rtab() and qdisc_put_rtab() mutate the process-global singly linked list qdisc_rtab_list and a plain non-atomic 'int refcnt' with no lock. This was only safe because every caller historically held the RTNL mutex, which serialized all rate-table lookups, in

3 repos

https://github.com/aramosf/CVE-2026-68138

https://github.com/suominen/CVE-2026-68138

https://github.com/jangkrikkbozz/CVE-2026-68138

CVE-2026-71290
(9.1 CRITICAL)

EPSS: 0.19%

updated 2026-08-13T18:31:23

3 posts

Improper TLS hostname verification vulnerability in Apache HttpComponents Client 5.4 or newer. HostnameVerificationPolicy#BUILTIN setting has no effect when used with the async version of HttpClient. An attacker that can intercept and modify traffic between the client and the server can impersonate the server by presenting a valid certificate for a different domain.  Please note the classic ve

undercodenews@mastodon.social at 2026-08-19T08:36:09.000Z ##

Apache HttpClient TLS Flaw Could Let Attackers Impersonate Trusted Servers in MITM Attacks + Video

Introduction: When HTTPS Looks Secure but the Hostname Check Quietly Fails HTTPS is built around a simple promise: when an application connects to api.example.com, it should be able to confirm that the server on the other end is actually authorized to represent api.example.com. That trust relationship is now under scrutiny after the disclosure of CVE-2026-71290, a serious…

undercodenews.com/apache-httpc

##

DailyCyberSecurity at 2026-08-18T13:02:55.906Z ##

CVE-2026-71290: Apache HttpClient Flaw Lets Attackers Intercept and Modify Traffic (CVSS 9.1)

securityonline.info/apache-htt

##

DailyCyberSecurity@infosec.exchange at 2026-08-18T13:02:55.000Z ##

CVE-2026-71290: Apache HttpClient Flaw Lets Attackers Intercept and Modify Traffic (CVSS 9.1)

securityonline.info/apache-htt

##

CVE-2026-18146
(7.2 HIGH)

EPSS: 0.36%

updated 2026-08-13T09:31:16

2 posts

The Fluent Forms – Customizable Contact Forms, Survey, Quiz, & Conversational Form Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Notification Smartcode Values in all versions up to, and including, 6.2.11 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts that execute in the

wpguyuk at 2026-08-18T20:58:56.601Z ##

If you are running Fluent Forms and have not updated since 13 August 2026, attackers may already be scanning for your installation. CVE-2026-18146 is high-severity and affects every version below 6.2.12. Update now.

wpguy.uk/blog/high-vulnerabili

##

wpguyuk@infosec.exchange at 2026-08-18T20:58:56.000Z ##

If you are running Fluent Forms and have not updated since 13 August 2026, attackers may already be scanning for your installation. CVE-2026-18146 is high-severity and affects every version below 6.2.12. Update now.

#WordPress #WordPressSecurity #FluentForms #CVE #WebSecurity

wpguy.uk/blog/high-vulnerabili

##

CVE-2026-19001
(9.8 CRITICAL)

EPSS: 0.38%

updated 2026-08-12T21:31:51

2 posts

The MongoDB BI Connector ODBC Driver may write outside the bounds of a fixed-size buffer when an application supplies an unusually long catalog, schema, or object name to a metadata retrieval function. This may result in memory corruption within the calling application's process, leading to abnormal termination and, under certain conditions, the potential for arbitrary code execution.

CVE-2026-72898
(10.0 CRITICAL)

EPSS: 10.40%

updated 2026-08-12T15:18:30.347000

1 posts

Metabase allows a remote, unauthenticated attacker to inject arbitrary SQL via the '/reset_password' database endpoint and gain administrator access to the connected Metabase instance.

Nuclei template

6 repos

https://github.com/0xBlackash/CVE-2026-72898

https://github.com/VuxNx/CVE-2026-72898

https://github.com/Franc-Zar/CVE-2026-72898-safe-detection

https://github.com/codeb0ssx/CVE-2026-72898-PoC

https://github.com/ubitquity/Metabase-Setup-Endpoint-SQLi-Fix

https://github.com/4minx/CVE-2026-72898

secdb@infosec.exchange at 2026-08-17T00:02:24.000Z ##

📈 CVE Published in last 7 days (2026-08-10 - 2026-08-10)
See more at secdb.nttzen.cloud/dashboard

Total CVEs:

Severity:
- Critical: 326
- High: 1309
- Medium: 1008
- Low: 130
- None: 1222

Status:
- : 39
- Analyzed: 419
- Awaiting Analysis: 226
- Deferred: 197
- Modified: 2
- Received: 2827
- Rejected: 102
- Undergoing Analysis: 183

CISA KEVs:
- CISA-2026:0811 (secdb.nttzen.cloud/security-ad)

Top CNAs:
- kernel.org: 1221
- Microsoft Corporation: 405
- VulnCheck: 343
- GitHub, Inc.: 326
- IBM Corporation: 160
- WPScan: 124
- Patchstack: 111
- VulDB: 104
- Red Hat, Inc.: 101
- Wordfence: 93

Top Affected Products:
- UNKNOWN: 3370
- Microsoft Windows Server 2025: 178
- Microsoft Windows 11 24h2: 171
- Microsoft Windows 11 26h1: 171
- Microsoft Windows 11 25h2: 171
- Microsoft Windows Server 2022: 158
- Microsoft Windows Server 2019: 146
- Microsoft Windows 10 1809: 146
- Microsoft Windows 11 23h2: 146
- Microsoft Windows 10 22h2: 136

Top EPSS Score:
- CVE-2026-72898 - 10.40 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-61358 - 3.68 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-66804 - 3.42 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62696 - 3.18 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19771 - 2.79 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-73296 - 2.61 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-65775 - 2.45 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62832 - 2.37 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19747 - 2.36 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19681 - 2.24 % (secdb.nttzen.cloud/cve/detail/)

#ZEN #SecDB #InfoSec

##

CVE-2026-72526
(9.9 CRITICAL)

EPSS: 0.30%

updated 2026-08-12T03:31:18

1 posts

A flaw was found in the multicloud-integrations component. The Application propagation controller processes the `ocm-managed-cluster` annotation from an Application Custom Resource (CR) without proper validation. A tenant with permissions to create Applications on the hub cluster can exploit this to target arbitrary managed clusters. This can force ArgoCD on the spoke clusters to synchronize attac

DailyCyberSecurity@infosec.exchange at 2026-08-17T13:16:41.000Z ##

Red Hat fixes RHACM remote code execution flaws, including CVE-2026-72526 and CVE-2026-73268, both CVSS 9.9. See patch and mitigation steps.

#RHACM #RedHat #Kubernetes #ArgoCD #RCE #CVE #CyberSecurity #InfoSec

securityonline.info/rhacm-remo

##

CVE-2026-66804
(7.8 HIGH)

EPSS: 3.42%

updated 2026-08-11T18:31:49

2 posts

Improper access control in Windows Cross Device Service allows an authorized attacker to elevate privileges locally.

3 repos

https://github.com/Rat5ak/CVE-2026-66804-CrossDevice-Service-EoP

https://github.com/DavidCarliez/CVE-2026-66804-CrossDevice-LPE

https://github.com/CypherHippie/CVE-2026-66804

DailyCyberSecurity@infosec.exchange at 2026-08-18T02:41:14.000Z ##

A public PoC for CVE-2026-66804 escalates a standard Windows user to SYSTEM through the Cross Device virtual camera COM service.

#CVE202666804 #PrivilegeEscalation #Windows11 #SYSTEMprivileges #EoP #PoCExploit

securityonline.info/cve-2026-6

##

secdb@infosec.exchange at 2026-08-17T00:02:24.000Z ##

📈 CVE Published in last 7 days (2026-08-10 - 2026-08-10)
See more at secdb.nttzen.cloud/dashboard

Total CVEs:

Severity:
- Critical: 326
- High: 1309
- Medium: 1008
- Low: 130
- None: 1222

Status:
- : 39
- Analyzed: 419
- Awaiting Analysis: 226
- Deferred: 197
- Modified: 2
- Received: 2827
- Rejected: 102
- Undergoing Analysis: 183

CISA KEVs:
- CISA-2026:0811 (secdb.nttzen.cloud/security-ad)

Top CNAs:
- kernel.org: 1221
- Microsoft Corporation: 405
- VulnCheck: 343
- GitHub, Inc.: 326
- IBM Corporation: 160
- WPScan: 124
- Patchstack: 111
- VulDB: 104
- Red Hat, Inc.: 101
- Wordfence: 93

Top Affected Products:
- UNKNOWN: 3370
- Microsoft Windows Server 2025: 178
- Microsoft Windows 11 24h2: 171
- Microsoft Windows 11 26h1: 171
- Microsoft Windows 11 25h2: 171
- Microsoft Windows Server 2022: 158
- Microsoft Windows Server 2019: 146
- Microsoft Windows 10 1809: 146
- Microsoft Windows 11 23h2: 146
- Microsoft Windows 10 22h2: 136

Top EPSS Score:
- CVE-2026-72898 - 10.40 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-61358 - 3.68 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-66804 - 3.42 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62696 - 3.18 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19771 - 2.79 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-73296 - 2.61 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-65775 - 2.45 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62832 - 2.37 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19747 - 2.36 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19681 - 2.24 % (secdb.nttzen.cloud/cve/detail/)

#ZEN #SecDB #InfoSec

##

CVE-2026-65775
(7.8 HIGH)

EPSS: 2.45%

updated 2026-08-11T18:31:44

1 posts

Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.

secdb@infosec.exchange at 2026-08-17T00:02:24.000Z ##

📈 CVE Published in last 7 days (2026-08-10 - 2026-08-10)
See more at secdb.nttzen.cloud/dashboard

Total CVEs:

Severity:
- Critical: 326
- High: 1309
- Medium: 1008
- Low: 130
- None: 1222

Status:
- : 39
- Analyzed: 419
- Awaiting Analysis: 226
- Deferred: 197
- Modified: 2
- Received: 2827
- Rejected: 102
- Undergoing Analysis: 183

CISA KEVs:
- CISA-2026:0811 (secdb.nttzen.cloud/security-ad)

Top CNAs:
- kernel.org: 1221
- Microsoft Corporation: 405
- VulnCheck: 343
- GitHub, Inc.: 326
- IBM Corporation: 160
- WPScan: 124
- Patchstack: 111
- VulDB: 104
- Red Hat, Inc.: 101
- Wordfence: 93

Top Affected Products:
- UNKNOWN: 3370
- Microsoft Windows Server 2025: 178
- Microsoft Windows 11 24h2: 171
- Microsoft Windows 11 26h1: 171
- Microsoft Windows 11 25h2: 171
- Microsoft Windows Server 2022: 158
- Microsoft Windows Server 2019: 146
- Microsoft Windows 10 1809: 146
- Microsoft Windows 11 23h2: 146
- Microsoft Windows 10 22h2: 136

Top EPSS Score:
- CVE-2026-72898 - 10.40 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-61358 - 3.68 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-66804 - 3.42 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62696 - 3.18 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19771 - 2.79 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-73296 - 2.61 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-65775 - 2.45 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62832 - 2.37 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19747 - 2.36 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19681 - 2.24 % (secdb.nttzen.cloud/cve/detail/)

#ZEN #SecDB #InfoSec

##

CVE-2026-62832
(7.8 HIGH)

EPSS: 2.37%

updated 2026-08-11T18:31:33

1 posts

Improper link resolution before file access ('link following') in Windows User Profile Service allows an authorized attacker to elevate privileges locally.

secdb@infosec.exchange at 2026-08-17T00:02:24.000Z ##

📈 CVE Published in last 7 days (2026-08-10 - 2026-08-10)
See more at secdb.nttzen.cloud/dashboard

Total CVEs:

Severity:
- Critical: 326
- High: 1309
- Medium: 1008
- Low: 130
- None: 1222

Status:
- : 39
- Analyzed: 419
- Awaiting Analysis: 226
- Deferred: 197
- Modified: 2
- Received: 2827
- Rejected: 102
- Undergoing Analysis: 183

CISA KEVs:
- CISA-2026:0811 (secdb.nttzen.cloud/security-ad)

Top CNAs:
- kernel.org: 1221
- Microsoft Corporation: 405
- VulnCheck: 343
- GitHub, Inc.: 326
- IBM Corporation: 160
- WPScan: 124
- Patchstack: 111
- VulDB: 104
- Red Hat, Inc.: 101
- Wordfence: 93

Top Affected Products:
- UNKNOWN: 3370
- Microsoft Windows Server 2025: 178
- Microsoft Windows 11 24h2: 171
- Microsoft Windows 11 26h1: 171
- Microsoft Windows 11 25h2: 171
- Microsoft Windows Server 2022: 158
- Microsoft Windows Server 2019: 146
- Microsoft Windows 10 1809: 146
- Microsoft Windows 11 23h2: 146
- Microsoft Windows 10 22h2: 136

Top EPSS Score:
- CVE-2026-72898 - 10.40 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-61358 - 3.68 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-66804 - 3.42 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62696 - 3.18 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19771 - 2.79 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-73296 - 2.61 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-65775 - 2.45 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62832 - 2.37 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19747 - 2.36 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19681 - 2.24 % (secdb.nttzen.cloud/cve/detail/)

#ZEN #SecDB #InfoSec

##

CVE-2026-62696
(7.8 HIGH)

EPSS: 3.17%

updated 2026-08-11T18:31:18

1 posts

Integer underflow (wrap or wraparound) in Windows Program Compatibility Assistant Service allows an authorized attacker to elevate privileges locally.

secdb@infosec.exchange at 2026-08-17T00:02:24.000Z ##

📈 CVE Published in last 7 days (2026-08-10 - 2026-08-10)
See more at secdb.nttzen.cloud/dashboard

Total CVEs:

Severity:
- Critical: 326
- High: 1309
- Medium: 1008
- Low: 130
- None: 1222

Status:
- : 39
- Analyzed: 419
- Awaiting Analysis: 226
- Deferred: 197
- Modified: 2
- Received: 2827
- Rejected: 102
- Undergoing Analysis: 183

CISA KEVs:
- CISA-2026:0811 (secdb.nttzen.cloud/security-ad)

Top CNAs:
- kernel.org: 1221
- Microsoft Corporation: 405
- VulnCheck: 343
- GitHub, Inc.: 326
- IBM Corporation: 160
- WPScan: 124
- Patchstack: 111
- VulDB: 104
- Red Hat, Inc.: 101
- Wordfence: 93

Top Affected Products:
- UNKNOWN: 3370
- Microsoft Windows Server 2025: 178
- Microsoft Windows 11 24h2: 171
- Microsoft Windows 11 26h1: 171
- Microsoft Windows 11 25h2: 171
- Microsoft Windows Server 2022: 158
- Microsoft Windows Server 2019: 146
- Microsoft Windows 10 1809: 146
- Microsoft Windows 11 23h2: 146
- Microsoft Windows 10 22h2: 136

Top EPSS Score:
- CVE-2026-72898 - 10.40 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-61358 - 3.68 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-66804 - 3.42 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62696 - 3.18 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19771 - 2.79 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-73296 - 2.61 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-65775 - 2.45 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62832 - 2.37 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19747 - 2.36 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19681 - 2.24 % (secdb.nttzen.cloud/cve/detail/)

#ZEN #SecDB #InfoSec

##

CVE-2026-61358
(7.8 HIGH)

EPSS: 3.68%

updated 2026-08-11T18:31:13

1 posts

Improper link resolution before file access ('link following') in Windows Accessibility Infrastructure (ATBroker.exe) allows an authorized attacker to elevate privileges locally.

secdb@infosec.exchange at 2026-08-17T00:02:24.000Z ##

📈 CVE Published in last 7 days (2026-08-10 - 2026-08-10)
See more at secdb.nttzen.cloud/dashboard

Total CVEs:

Severity:
- Critical: 326
- High: 1309
- Medium: 1008
- Low: 130
- None: 1222

Status:
- : 39
- Analyzed: 419
- Awaiting Analysis: 226
- Deferred: 197
- Modified: 2
- Received: 2827
- Rejected: 102
- Undergoing Analysis: 183

CISA KEVs:
- CISA-2026:0811 (secdb.nttzen.cloud/security-ad)

Top CNAs:
- kernel.org: 1221
- Microsoft Corporation: 405
- VulnCheck: 343
- GitHub, Inc.: 326
- IBM Corporation: 160
- WPScan: 124
- Patchstack: 111
- VulDB: 104
- Red Hat, Inc.: 101
- Wordfence: 93

Top Affected Products:
- UNKNOWN: 3370
- Microsoft Windows Server 2025: 178
- Microsoft Windows 11 24h2: 171
- Microsoft Windows 11 26h1: 171
- Microsoft Windows 11 25h2: 171
- Microsoft Windows Server 2022: 158
- Microsoft Windows Server 2019: 146
- Microsoft Windows 10 1809: 146
- Microsoft Windows 11 23h2: 146
- Microsoft Windows 10 22h2: 136

Top EPSS Score:
- CVE-2026-72898 - 10.40 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-61358 - 3.68 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-66804 - 3.42 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62696 - 3.18 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19771 - 2.79 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-73296 - 2.61 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-65775 - 2.45 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62832 - 2.37 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19747 - 2.36 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19681 - 2.24 % (secdb.nttzen.cloud/cve/detail/)

#ZEN #SecDB #InfoSec

##

CVE-2026-13738(CVSS UNKNOWN)

EPSS: 0.53%

updated 2026-08-11T18:30:43

2 posts

CommServe contained an authorization bypass vulnerability affecting a limited set of command execution operations. Software customers upgrade to resolved maintenance release. Update all Commvault installations, including Commserve, Webserver, Command Center, Media Agents, Clients and HyperScale X.

DailyCyberSecurity at 2026-08-19T12:57:03.837Z ##

Protect your network from CVE-2026-13737 and CVE-2026-13738. These critical Commvault command execution flaws allow hackers to bypass authorization checks.

securityonline.info/commvault-

##

DailyCyberSecurity@infosec.exchange at 2026-08-19T12:57:03.000Z ##

Protect your network from CVE-2026-13737 and CVE-2026-13738. These critical Commvault command execution flaws allow hackers to bypass authorization checks.

#Commvault #CVE202613737 #CVE202613738 #Cybersecurity #Vulnerability

securityonline.info/commvault-

##

CVE-2026-13737
(0 None)

EPSS: 0.43%

updated 2026-08-11T17:17:47.540000

2 posts

CommServe contained an allowlist bypass vulnerability affecting command execution authorization. Software customers upgrade to resolved maintenance release. Update all Commvault installations, including Commserve, Webserver, Command Center, Media Agents, Clients and HyperScale X.

DailyCyberSecurity at 2026-08-19T12:57:03.837Z ##

Protect your network from CVE-2026-13737 and CVE-2026-13738. These critical Commvault command execution flaws allow hackers to bypass authorization checks.

securityonline.info/commvault-

##

DailyCyberSecurity@infosec.exchange at 2026-08-19T12:57:03.000Z ##

Protect your network from CVE-2026-13737 and CVE-2026-13738. These critical Commvault command execution flaws allow hackers to bypass authorization checks.

#Commvault #CVE202613737 #CVE202613738 #Cybersecurity #Vulnerability

securityonline.info/commvault-

##

CVE-2026-71958
(9.8 CRITICAL)

EPSS: 0.56%

updated 2026-08-08T18:30:30

2 posts

D-Link DWR-M961 devices with hardware version C1 and software version 1.1.2_C1_202602110044 contain a buffer overflow vulnerability in the quicksetup.cgi interface. A remote attacker can write overly long strings to the test4, ssid2, and username fields and execute arbitrary commands by crafting a specific payload, or cause the device to crash.

CVE-2026-6540
(7.5 HIGH)

EPSS: 0.37%

updated 2026-08-08T01:10:43.697000

2 posts

Calico's Application Layer Policy (disabled by default), which enforces HTTP rules through Dikastes, fails to perform URL path normalization. As a result, HTTP requests using path-traversal segments, encoded slashes, or repeated slashes are not correctly evaluated by Prefix path rules. Dikastes authorizes the request under the permitted prefix while the downstream workload or a fronting proxy norm

1 repos

https://github.com/HORKimhab/CVE-2026-65400

hackmag at 2026-08-18T22:31:05.124Z ##

⚪️ Hackers Exploit macOS Screen Sharing Vulnerability to Install Crypto Miners

🗨️ The Netherlands’ National Cyber Security Centre (NCSC) has warned that attackers have begun exploiting the critical CVE-2026-65400 vulnerability in macOS Screen Sharing. The flaw allows authentication to be bypassed, granting access to a Mac without a password, and is already…

🔗 hackmag.com/news/cve-2026-6540

##

hackmag@infosec.exchange at 2026-08-18T22:31:05.000Z ##

⚪️ Hackers Exploit macOS Screen Sharing Vulnerability to Install Crypto Miners

🗨️ The Netherlands’ National Cyber Security Centre (NCSC) has warned that attackers have begun exploiting the critical CVE-2026-65400 vulnerability in macOS Screen Sharing. The flaw allows authentication to be bypassed, granting access to a Mac without a password, and is already…

🔗 hackmag.com/news/cve-2026-6540

#news

##

CVE-2026-6837
(7.2 HIGH)

EPSS: 0.95%

updated 2026-08-04T03:31:16

1 posts

A post-authentication command injection vulnerability in the "export-cgi" CGI program in Zyxel WAX650S firmware versions through 7.10(ABRM.4)C0 could allow an authenticated attacker with administrator privileges to execute OS commands on an affected device.

1 repos

https://github.com/minanagehsalalma/CVE-2026-6837-zyxel-export-cgi-command-injection

CVE-2026-12569
(9.8 CRITICAL)

EPSS: 30.20%

updated 2026-08-01T05:16:55.023000

12 posts

A critical remote code execution (RCE) vulnerability has been reported in PTC Windchill PDMlink and PTC FlexPLM. The vulnerability may be exploited through the deserialization of untrusted data.  * This advisory also applies to all CPS versions * The identified vulnerability also impacts Windchill and FlexPLM releases prior to 11.0 M030

1 repos

https://github.com/west-wind/Threat-Hunting-With-Splunk

Analyst207@mastodon.social at 2026-08-19T17:56:35.000Z ##

Clop Exploits PTC Zero-Day in Large-Scale Data Theft Spree

Clop's latest large-scale data theft spree exploited a critical PTC zero-day vulnerability, CVE-2026-12569, affecting supply chain systems used by manufacturers, retailers, and industries like aerospace and automotive. This attack continues Clop's trend of targeting SaaS logistics companies with zero-days to carry out mass-exploitation campaigns.

osintsights.com/clop-exploits-

#Clop #Ptc #ZeroDay #Cve202612569 #SupplyChain

##

security_crawler_carl at 2026-08-19T16:30:24.086Z ##

You built your product lifecycle management empire on unpatched servers. Magnificent. Truly. Patch CVE-2026-12569 on all PTC Windchill and FlexPLM instances immediately, and hunt for unauthorized web shells before Clop finishes admiring your data.

Reward: You've unlocked the Hollow Trophy — a shiny gold cup with absolutely nothing inside it, just like your patch management schedule.

(2/2)

##

security_crawler_carl at 2026-08-19T16:30:23.934Z ##

🏆 New Achievement! Shell We Dance, PTC?

Ahem. Allow me to explain my genius. Clop — yes, the ransomware operation, the one you've heard about in hushed tones — identified CVE-2026-12569 in PTC Windchill and FlexPLM servers and deployed a custom web shell so elegantly minimal it needs no additional tooling whatsoever. Credentials? Siphoned. Sensitive engineering data? Exfiltrated. It's almost beautiful, like a Bond villain who remembered to actually press the button. (1/2)

##

cyberworldops at 2026-08-19T14:20:00.484Z ##

ReliaQuest has documented a custom JSP web shell deployed by Clop after exploitation of CVE-2026-12569 on PTC Windchill and FlexPLM servers. The implant maps design vaults, decrypts keystore credentials, and queries databases via the application's own identity.

cyberworldops.eu/en/clop-explo

##

offseq at 2026-08-19T12:00:30.769Z ##

PTC Windchill/FlexPLM (CVE-2026-12569) exploited by Cl0p ransomware: CRITICAL severity, remote code execution, 40+ orgs hit. Patch ASAP to block active data theft & extortion. Full details: radar.offseq.com/threat/cl0p-r

##

sayzard@mastodon.sayzard.org at 2026-08-19T09:39:07.000Z ##

Clop Returns with Custom Implant in Mass-Extortion Campaign

Clop으로 추정되는 공격 그룹이 PTC Windchill의 원격 코드 실행 취약점 CVE-2026-12569(CVSS 9.3)를 대량 악용해 애플리케이션 전용 JSP 웹셸을 배포하고 있다. 이 임플란트는 Windchill 키스토어의 LDAP·관리자·스토리지 자격증명을 복호화하고, 내부 DB 스키마와 vault 구조를 이용해 고가치 엔지니어링 파일을 열거·유출할 수 있다. 또한 Base64 ZIP 형태의 Java 바이트코드를 메모리에서 로드·실행하는 커스텀 클래스 로더를 포함해, 디스크 흔적을 최소화하면서 횡적 이동...

reliaquest.com/blog/clop-retur

##

undercodenews@mastodon.social at 2026-08-19T06:45:12.000Z ##

Cl0p Turns PTC Windchill Into a Data-Theft Weapon: Critical CVE-2026-12569 Exploited to Steal Industrial Secrets + Video

Introduction: When the Blueprint Becomes the Target The most dangerous cyberattacks do not always begin with a locked computer, a destroyed server, or a ransom note appearing across an employee's screen. Sometimes, the attack begins quietly against an application that nobody outside the engineering department thinks of as a critical security…

undercodenews.com/cl0p-turns-p

##

security_crawler_carl@infosec.exchange at 2026-08-19T16:30:24.000Z ##

You built your product lifecycle management empire on unpatched servers. Magnificent. Truly. Patch CVE-2026-12569 on all PTC Windchill and FlexPLM instances immediately, and hunt for unauthorized web shells before Clop finishes admiring your data.

Reward: You've unlocked the Hollow Trophy — a shiny gold cup with absolutely nothing inside it, just like your patch management schedule.

#Ransomware #CyberSecurity #ClopRansomware #PtcWindchill #WebShell #PatchedOrPerish (2/2)

##

security_crawler_carl@infosec.exchange at 2026-08-19T16:30:23.000Z ##

🏆 New Achievement! Shell We Dance, PTC?

Ahem. Allow me to explain my genius. Clop — yes, the ransomware operation, the one you've heard about in hushed tones — identified CVE-2026-12569 in PTC Windchill and FlexPLM servers and deployed a custom web shell so elegantly minimal it needs no additional tooling whatsoever. Credentials? Siphoned. Sensitive engineering data? Exfiltrated. It's almost beautiful, like a Bond villain who remembered to actually press the button. (1/2)

##

cyberworldops@infosec.exchange at 2026-08-19T14:20:00.000Z ##

ReliaQuest has documented a custom JSP web shell deployed by Clop after exploitation of CVE-2026-12569 on PTC Windchill and FlexPLM servers. The implant maps design vaults, decrypts keystore credentials, and queries databases via the application's own identity.

#Clop #PTCWindchill #WebShell #ThreatIntelligence

cyberworldops.eu/en/clop-explo

##

offseq@infosec.exchange at 2026-08-19T12:00:30.000Z ##

PTC Windchill/FlexPLM (CVE-2026-12569) exploited by Cl0p ransomware: CRITICAL severity, remote code execution, 40+ orgs hit. Patch ASAP to block active data theft & extortion. Full details: radar.offseq.com/threat/cl0p-r #OffSeq #Ransomware #CVE202612569 #Infosec

##

security_crawler_carl@infosec.exchange at 2026-08-17T14:26:16.000Z ##

🏆 New Achievement! Clop Sends Its Regards to the Living!

Attention, all undead assets and legacy infrastructure currently haunting your network closets: please report to Compliance for re-onboarding. Tech giants General Electric and Philips have confirmed they are investigating claims by the Clop ransomware group that data was stolen, with CVE-2026-12569 tagged in connection with the incident. (1/3)

##

CVE-2026-43774
(5.5 MEDIUM)

EPSS: 0.13%

updated 2026-07-29T19:32:51.167000

1 posts

An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app may be able to access sensitive user data.

decio@infosec.exchange at 2026-08-18T08:08:07.000Z ##

Petit insight très sympa sur la recherche de vulnérabilité macOS

Le chercheur Csaba Fitzl revient sur une jolie vuln dans Spotlight (Spotlight PostScript plugin), une sorte de petite chimère qui traînait depuis un moment dans sa TODO list : quelques fonctions décompilées du parser PostScript soumises à Claude, une piste identifiée, puis validation humaine.

Résultat : CVE-2026-43774, un simple fichier .ps pouvant faire fuiter des morceaux de mémoire de mdworker via les métadonnées Spotlight.

Au-delà du bug, le billet montre très directement comment les IA s’intègrent naturellement aux workflows de recherche de vulnérabilités, en partant de l’expertise humaine : une intuition et une approche, puis fuzzing dopé au LLM, reverse, détection de patterns suspects…

...et pourquoi les éditeurs comme la pomme doivent courir toujours plus vite derrière les patchs.

"How a single PostScript file leaks your Mac's memory"
👇
iru.com/blog/how-a-single-post

##

oversecurity@mastodon.social at 2026-08-17T15:00:50.000Z ##

Certighost and the Privilege Hiding in Your Certificate Authority

CVE-2026-54121 lets a standard domain user turn your Enterprise CA into a Domain Controller. The patch is the easy part. The lesson is standing...

🔗️ [Bleepingcomputer] link.is.it/wWmVkm

##

CVE-2026-8452
(9.8 CRITICAL)

EPSS: 0.49%

updated 2026-07-01T15:52:28.390000

5 posts

Memory overflow vulnerability NetScaler ADC and NetScaler Gateway leading to unpredictable or erroneous behavior and Denial of Service if the appliance is configured as a Gateway (SSL VPN, ICA Proxy, CVPN, RDP Proxy) or AAA virtual server

2 repos

https://github.com/derekpreston81/CVE_ADC_IOC_2026

https://github.com/watchtowrlabs/watchTowr-vs-Citrix-Netscaler-PreAuth-RCE-CVE-2026-8452

patrickcmiller@infosec.exchange at 2026-08-18T10:12:00.000Z ##

You’re Back In The Room (Citrix NetScaler Pre-Auth RCE CVE-2026-8452(?)) labs.watchtowr.com/youre-back-

##

GossiTheDog@cyberplace.social at 2026-08-17T21:48:39.000Z ##

CVE-2026-8452 in Netscaler is under active pray and spray exploitation - somebody popped my honeypot with it today. Three webshells, x.php, y.php and z.php

I don't think this one will be super impactful in terms of breach numbers as most orgs don't have SAML IDP enabled - you can check with the paths I posted above.

##

DarkWebInformer@infosec.exchange at 2026-08-17T16:32:18.000Z ##

‼️ Detection Artifact Generator for Citrix NetScaler CVE-2026-8452

GitHub: github.com/watchtowrlabs/watch

##

darrenpmeyer@infosec.exchange at 2026-08-17T15:21:32.000Z ##

Oof; if you're a NetScaler shop you probably want to be very sure you update for this one: labs.watchtowr.com/youre-back-

Pre-auth RCE is... yikes. Relatively low EPSS for now, but I wouldn't trust that with the CVSSv4 vectors in play: CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:L/VA:H/SC:L/SI:L/SA:L

##

DailyCyberSecurity@infosec.exchange at 2026-08-17T03:27:53.000Z ##

PoC exploit code for CVE-2026-8452, a Citrix NetScaler pre-auth RCE, is now public. The SAML heap overflow grants root. Patch now.

#Citrix #NetScaler #CVE #PreAuthRCE #SAML #CyberSecurity #InfoSec #PatchNow

securityonline.info/citrix-net

##

CVE-2025-60710
(7.8 HIGH)

EPSS: 4.60%

updated 2026-06-17T09:50:01.133000

1 posts

Improper link resolution before file access ('link following') in Host Process for Windows Tasks allows an authorized attacker to elevate privileges locally.

2 repos

https://github.com/Wh04m1001/CVE-2025-60710

https://github.com/redpack-kr/CVE-2025-60710

sayzard@mastodon.sayzard.org at 2026-08-18T18:42:15.000Z ##

CISA: Windows Task Host flaw now exploited by ransomware gangs

CISA는 Windows Task Host의 권한 상승 취약점 CVE-2025-60710이 랜섬웨어 그룹에 의해 악용되고 있다고 KEV 카탈로그에 추가했습니다. 이 취약점은 Windows 11 및 Windows Server 2025의 링크 추적(link following) 문제로, 기본 사용자 권한을 가진 로컬 공격자가 SYSTEM 권한을 획득할 수 있습니다. Microsoft는 2025년 11월 패치를 배포했으므로, AI 개발·학습·추론 워크로드를 운영하는 Windows...

bleepingcomputer.com/news/secu

##

CVE-2021-33045
(9.8 CRITICAL)

EPSS: 99.56%

updated 2026-06-17T03:54:04.020000

1 posts

The identity authentication bypass vulnerability found in some Dahua products during the login process. Attackers can bypass device identity authentication by constructing malicious data packets.

4 repos

https://github.com/dongpohezui/cve-2021-33045

https://github.com/umair-aziz025/dahua-cve-research

https://github.com/Bd-Mutant7/DahuaLoginBypass

https://github.com/bp2008/DahuaLoginBypass

sayzard@mastodon.sayzard.org at 2026-08-19T16:39:17.000Z ##

Operation CameraSwarm: 14,500 Dahua Cameras Compromised via P2P Relay Abuse

Hunt.io가 ‘Operation CameraSwarm’ 캠페인에서 Dahua 감시 카메라 14,530대 이상이 탈취됐다고 보고했다. 공격자는 기본·약한 비밀번호 대상 크리덴셜 공격, CVSS 9.8의 인증 우회 취약점 CVE-2021-33044 및 CVE-2021-33045, 그리고 Easy4IP 계열 P2P 릴레이 악용을 결합했다. 특히 장비 일련번호를 이용한 P2P 터널은 NAT 뒤에 있는 카메라에도 접근할 수 있어, 단순한 네트워크 경계 방어만으로는 부족하다는 점이 핵심이다. Dahua 장비 운영 조직은 즉시 펌웨어와 노...

cyberupdates365.com/operation-

##

sayzard@mastodon.sayzard.org at 2026-08-19T16:39:17.000Z ##

Operation CameraSwarm: 14,500 Dahua Cameras Compromised via P2P Relay Abuse

Hunt.io가 ‘Operation CameraSwarm’ 캠페인에서 Dahua 감시 카메라 14,530대 이상이 탈취됐다고 보고했다. 공격자는 기본·약한 비밀번호 대상 크리덴셜 공격, CVSS 9.8의 인증 우회 취약점 CVE-2021-33044 및 CVE-2021-33045, 그리고 Easy4IP 계열 P2P 릴레이 악용을 결합했다. 특히 장비 일련번호를 이용한 P2P 터널은 NAT 뒤에 있는 카메라에도 접근할 수 있어, 단순한 네트워크 경계 방어만으로는 부족하다는 점이 핵심이다. Dahua 장비 운영 조직은 즉시 펌웨어와 노...

cyberupdates365.com/operation-

##

CVE-2008-5161
(3.7 LOW)

EPSS: 15.39%

updated 2026-06-16T22:59:22.107000

2 posts

Error handling in the SSH protocol in (1) SSH Tectia Client and Server and Connector 4.0 through 4.4.11, 5.0 through 5.2.4, and 5.3 through 5.3.8; Client and Server and ConnectSecure 6.0 through 6.0.4; Server for Linux on IBM System z 6.0.4; Server for IBM z/OS 5.5.1 and earlier, 6.0.0, and 6.0.1; and Client 4.0-J through 4.3.3-J and 4.0-K through 4.3.10-K; and (2) OpenSSH 4.7p1 and possibly other

1 repos

https://github.com/talha3117/OpenSSH-4.7p1-CVE-2008-5161-Exploit

CVE-2026-32193
(8.8 HIGH)

EPSS: 0.34%

updated 2026-06-09T18:30:48

1 posts

Improper limitation of a pathname to a restricted directory ('path traversal') in Microsoft Azure Kubernetes Service allows an authorized attacker to execute code locally.

_r_netsec@infosec.exchange at 2026-08-17T12:28:04.000Z ##

From AKS node root vulnerability to Microsoft Copilot hijack (CVE-2026-32193) zerolabs.rubrik.com/blog/break

##

CVE-2026-0075
(5.9 MEDIUM)

EPSS: 0.09%

updated 2026-06-02T15:33:09

2 posts

In multiple functions, there is a possible way to access the contacts database due to a SQL injection. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

1 repos

https://github.com/QM4RS/CVE-2026-0075

CVE-2026-27912
(8.0 HIGH)

EPSS: 0.24%

updated 2026-04-14T18:30:50

2 posts

Improper authorization in Windows Kerberos allows an authorized attacker to elevate privileges over an adjacent network.

3 repos

https://github.com/mihat2/ResetNightmare-impacket

https://github.com/Semperis-Community/ResetNightmare

https://github.com/oxstussz-eng/Kerberos-CVE-2026-27912

CVE-2026-3286
(6.3 MEDIUM)

EPSS: 0.31%

updated 2026-02-27T06:31:39

1 posts

A vulnerability was identified in itwanger paicoding 1.0.0/1.0.1/1.0.2/1.0.3. The impacted element is the function Save of the file paicoding-web/src/main/java/com/github/paicoding/forum/web/common/image/rest/ImageRestController.java of the component Image Save Endpoint. Such manipulation of the argument img leads to server-side request forgery. The attack may be launched remotely. The exploit is

offseq@infosec.exchange at 2026-08-18T01:30:24.000Z ##

SQL Injection flaw (CVE-2026-67854) in Qcms v6.0.6 rated CRITICAL: remote code execution risk. No official patch. Restrict access & monitor for injection attempts. Details: radar.offseq.com/threat/sql-in #OffSeq #SQLInjection #Vulnerability #Qcms #InfoSec

##

CVE-2025-62593(CVSS UNKNOWN)

EPSS: 1.01%

updated 2025-12-01T16:02:43

11 posts

# Summary Developers working with Ray as a development tool can be exploited via a critical RCE vulnerability exploitable via Firefox and Safari. Due to the longstanding [decision](https://docs.ray.io/en/releases-2.51.1/ray-security/index.html) by the Ray Development team to not implement any sort of authentication on critical endpoints, like the `/api/jobs` & `/api/job_agent/jobs/` has once ag

1 repos

https://github.com/Boreas37/CVE-2025-62593-PoC

youranonnewsirc@nerdculture.de at 2026-08-18T22:26:21.000Z ##

Recent alerts include CISA adding a critical RCE flaw in Ray-Project Ray (CVE-2025-62593) to its KEV catalog (Aug 18). Heights Finance also reported a data breach impacting over 1.2 million customers. Globally, ransomware incidents remain high, with AI increasingly used in attacks. Geopolitically, US-Iran talks have stalled, intensifying Middle East tensions and affecting global shipping.

#Cybersecurity #AnonNews_irc #TechNews

##

thecybermind at 2026-08-18T15:28:33.007Z ##

🚨 C-SUITE ALERT: CISA has flagged CVE-2025-62593 (Ray-Project) for active exploitation. This critical RCE flaw requires immediate executive oversight. Read our board-ready risk assessment and compliance framework to secure your enterprise. Command the wire. 👇 Link below
thecybermind.co/k3rh

##

youranonnewsirc@nerdculture.de at 2026-08-18T22:26:21.000Z ##

Recent alerts include CISA adding a critical RCE flaw in Ray-Project Ray (CVE-2025-62593) to its KEV catalog (Aug 18). Heights Finance also reported a data breach impacting over 1.2 million customers. Globally, ransomware incidents remain high, with AI increasingly used in attacks. Geopolitically, US-Iran talks have stalled, intensifying Middle East tensions and affecting global shipping.

#Cybersecurity #AnonNews_irc #TechNews

##

thecybermind@infosec.exchange at 2026-08-18T15:28:33.000Z ##

🚨 C-SUITE ALERT: CISA has flagged CVE-2025-62593 (Ray-Project) for active exploitation. This critical RCE flaw requires immediate executive oversight. Read our board-ready risk assessment and compliance framework to secure your enterprise. Command the wire. 👇 Link below
thecybermind.co/k3rh
#CyberSecurity

##

secdb@infosec.exchange at 2026-08-17T19:00:11.000Z ##

🚨 [CISA-2026:0817] CISA Adds One Known Exploited Vulnerability to Catalog (secdb.nttzen.cloud/security-ad)

CISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.

⚠️ CVE-2025-62593 (secdb.nttzen.cloud/cve/detail/)
- Name: Ray-Project Ray Code Injection Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset&#39;s internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Ray-Project
- Product: Ray
- Notes: github.com/ray-project/ray/sec ; github.com/ray-project/ray/com ; BOD 26-04: cisa.gov/news-events/directive ; Forensics Triage Requirements: cisa.gov/news-events/directive ; nvd.nist.gov/vuln/detail/CVE-2

#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260817 #cisa20260817 #cve_2025_62593 #cve202562593

##

thecybermind@infosec.exchange at 2026-08-17T18:20:29.000Z ##

🚨 NEW CISA KEV: CVE-2025-62593 - Ray. Active RCE weaponization via DNS rebinding targeting developers on Firefox/Safari. Vendor patch 2.52.0 is mandatory. Get the full T-Suite brief & SOC detection queries to secure your Precinct Hybrid architecture. Command the wire. Link below 👇
thecybermind.co/jily
#CyberSecurity

##

cisakevtracker@mastodon.social at 2026-08-17T18:00:43.000Z ##

CVE ID: CVE-2025-62593
Vendor: Ray-Project
Product: Ray
Date Added: 2026-08-17
CVE URL: nvd.nist.gov/vuln/detail/CVE-2

##

secdb@infosec.exchange at 2026-08-17T17:00:12.000Z ##

🚨 [CISA-2026:0818] CISA Adds One Known Exploited Vulnerability to Catalog (secdb.nttzen.cloud/security-ad)

CISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise.

⚠️ CVE-2025-62593 (secdb.nttzen.cloud/cve/detail/)
- Name: Ray-Project Ray Code Injection Vulnerability
- Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset&#39;s internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
- Known To Be Used in Ransomware Campaigns? Unknown
- Vendor: Ray-Project
- Product: Ray
- Notes: github.com/ray-project/ray/sec ; github.com/ray-project/ray/com ; BOD 26-04: cisa.gov/news-events/directive ; Forensics Triage Requirements: cisa.gov/news-events/directive ; nvd.nist.gov/vuln/detail/CVE-2

#ZEN #SecDB #InfoSec #CVE #CISA_KEV #cisa_20260818 #cisa20260818 #cve_2025_62593 #cve202562593

##

DailyCyberSecurity@infosec.exchange at 2026-08-17T16:24:55.000Z ##

CISA confirms CVE-2025-62593, a Ray code injection RCE, is exploited in the wild. A public PoC targets Firefox and Safari.

#CVE202562593 #Ray #RemoteCodeExecution #DNSRebinding #KEV #ExploitedInTheWild

securityonline.info/cve-2025-6

##

AAKL@infosec.exchange at 2026-08-17T15:27:13.000Z ##

CISA has added one known vulnerability to the KEV catalogue.

- CVE-2025-62593: Ray-Project Ray Code Injection Vulnerability cve.org/CVERecord?id=CVE-2025- #CISA #infosec #vulnerability

##

cisakevtracker@mastodon.social at 2026-08-17T14:00:51.000Z ##

CVE ID: CVE-2025-62593
Vendor: Ray-Project
Product: Ray
Date Added: 2026-08-18
CVE URL: nvd.nist.gov/vuln/detail/CVE-2

##

CVE-2026-50191
(0 None)

EPSS: 0.33%

2 posts

N/A

thehackerwire@mastodon.social at 2026-08-19T00:00:15.000Z ##

🟠 CVE-2026-50191 - High (8.8)

4gaBoards is a boards system for realtime project management. Prior to 3.3.8, 4gaBoards is vulnerable to pre-account takeover when registrationEnabled, localRegistrationEnabled, and ssoRegistrationEnabled are enabled and Google, GitHub, Microsoft,...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-19T00:00:15.000Z ##

🟠 CVE-2026-50191 - High (8.8)

4gaBoards is a boards system for realtime project management. Prior to 3.3.8, 4gaBoards is vulnerable to pre-account takeover when registrationEnabled, localRegistrationEnabled, and ssoRegistrationEnabled are enabled and Google, GitHub, Microsoft,...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-50186
(0 None)

EPSS: 0.43%

2 posts

N/A

thehackerwire@mastodon.social at 2026-08-19T00:00:04.000Z ##

🟠 CVE-2026-50186 - High (8.8)

4gaBoards is a boards system for realtime project management. Prior to 3.3.8, 4gaBoards allows an authenticated project manager to supply traversal sequences in the filename parameter of GET /exports/:id/:filename. In server/api/controllers/boards...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-19T00:00:04.000Z ##

🟠 CVE-2026-50186 - High (8.8)

4gaBoards is a boards system for realtime project management. Prior to 3.3.8, 4gaBoards allows an authenticated project manager to supply traversal sequences in the filename parameter of GET /exports/:id/:filename. In server/api/controllers/boards...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-53958
(0 None)

EPSS: 0.28%

2 posts

N/A

thehackerwire@mastodon.social at 2026-08-18T23:01:19.000Z ##

🟠 CVE-2026-53958 - High (7.6)

4gaBoards is a boards system for realtime project management. Prior to 3.3.9, 4gaBoards allows an authenticated user to modify ssoGoogleId, ssoGoogleEmail, ssoGithubId, ssoGithubUsername, ssoGithubEmail, ssoMicrosoftId, ssoMicrosoftEmail, ssoOidcI...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-18T23:01:19.000Z ##

🟠 CVE-2026-53958 - High (7.6)

4gaBoards is a boards system for realtime project management. Prior to 3.3.9, 4gaBoards allows an authenticated user to modify ssoGoogleId, ssoGoogleEmail, ssoGithubId, ssoGithubUsername, ssoGithubEmail, ssoMicrosoftId, ssoMicrosoftEmail, ssoOidcI...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-52877
(0 None)

EPSS: 0.30%

2 posts

N/A

thehackerwire@mastodon.social at 2026-08-18T23:00:38.000Z ##

🟠 CVE-2026-52877 - High (8.3)

Streambert is a cross-platform Electron Desktop App to stream and download video content. Prior to version 2.6.0, the open-external IPC handler in src/ipc/downloads.js passes a renderer-supplied url directly to Electron's shell.openExternal withou...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-18T23:00:38.000Z ##

🟠 CVE-2026-52877 - High (8.3)

Streambert is a cross-platform Electron Desktop App to stream and download video content. Prior to version 2.6.0, the open-external IPC handler in src/ipc/downloads.js passes a renderer-supplied url directly to Electron's shell.openExternal withou...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-75936
(0 None)

EPSS: 0.44%

2 posts

N/A

thehackerwire@mastodon.social at 2026-08-18T21:00:27.000Z ##

🟠 CVE-2026-75936 - High (7.5)

Improper handling of highly compressed data in the GZIP auto-decompression handler in Amazon ion-java before 1.12.0 might allow remote actors to cause a denial of service via a crafted compressed Ion document that expands to an arbitrarily large s...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-18T21:00:27.000Z ##

🟠 CVE-2026-75936 - High (7.5)

Improper handling of highly compressed data in the GZIP auto-decompression handler in Amazon ion-java before 1.12.0 might allow remote actors to cause a denial of service via a crafted compressed Ion document that expands to an arbitrarily large s...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2025-53906
(0 None)

EPSS: 0.73%

2 posts

N/A

normalmode@mastodon.social at 2026-08-18T17:22:18.000Z ##

@hugovalters I’m curious. What does “unpatched” mean in this context? I had presumed it meant the vulnerability hasn’t been fixed yet, but this doesn’t seem to be the case. e.g. this page lists the CVE as “unpatched” but also says what version of Vim it was fixed in: valtersit.com/cve/CVE-2025-539

##

normalmode@mastodon.social at 2026-08-18T17:22:18.000Z ##

@hugovalters I’m curious. What does “unpatched” mean in this context? I had presumed it meant the vulnerability hasn’t been fixed yet, but this doesn’t seem to be the case. e.g. this page lists the CVE as “unpatched” but also says what version of Vim it was fixed in: valtersit.com/cve/CVE-2025-539

##

CVE-2026-75914
(0 None)

EPSS: 0.41%

2 posts

N/A

thehackerwire@mastodon.social at 2026-08-18T17:00:49.000Z ##

🟠 CVE-2026-75914 - High (7.5)

CodeWhale versions before 0.8.64 contain a path traversal vulnerability in the image_analyze tool that fails to canonicalize symlinks before reading files. Attackers can create workspace symlinks pointing to external files with image extensions to...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-18T17:00:49.000Z ##

🟠 CVE-2026-75914 - High (7.5)

CodeWhale versions before 0.8.64 contain a path traversal vulnerability in the image_analyze tool that fails to canonicalize symlinks before reading files. Attackers can create workspace symlinks pointing to external files with image extensions to...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-75913
(0 None)

EPSS: 0.33%

2 posts

N/A

thehackerwire@mastodon.social at 2026-08-18T17:00:42.000Z ##

🔴 CVE-2026-75913 - Critical (9.3)

CodeWhale (codewhale / codewhale-tui) versions >= 0.8.41 and &lt; 0.8.64 contain an argument injection vulnerability in the git_show tool. The model-supplied rev parameter is passed unvalidated into the git show argv without an --end-of-options se...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

thehackerwire@mastodon.social at 2026-08-18T17:00:42.000Z ##

🔴 CVE-2026-75913 - Critical (9.3)

CodeWhale (codewhale / codewhale-tui) versions >= 0.8.41 and &lt; 0.8.64 contain an argument injection vulnerability in the git_show tool. The model-supplied rev parameter is passed unvalidated into the git show argv without an --end-of-options se...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2024-39302
(0 None)

EPSS: 0.45%

1 posts

N/A

DailyCyberSecurity@infosec.exchange at 2026-08-18T00:10:43.000Z ##

A CVSS 10.0 unauthenticated arbitrary file read flaw in BigBlueButton path traversal exposes servers. Prevent attacks like CVE-2024-39302 and update now.

#BigBlueButton #CyberSecurity #Vulnerability #CVE2026

securityonline.info/unauthenti

##

CVE-2026-45790
(0 None)

EPSS: 0.28%

1 posts

N/A

thehackerwire@mastodon.social at 2026-08-17T23:01:20.000Z ##

🟠 CVE-2026-45790 - High (8)

Dokploy is a free, self-hostable Platform as a Service (PaaS). Prior to 0.29.6, Dokploy's organization.inviteMember tRPC procedure in apps/dokploy/server/api/routers/organization.ts allows a user with member:create permission to invite an account ...

🔗 thehackerwire.com/vulnerabilit

#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

##

CVE-2026-62356
(0 None)

EPSS: 0.00%

5 posts

N/A

redis_release_watcher@kodesumber.com at 2026-08-17T18:16:15.000Z ##

8.10.1

Update urgency: SECURITY: There are security fixes in the release. Security fixes (CVE-2026-62356) Miscalculated buffer size in CMSketch RDB loading may lead to heap OOB write Out-of-bounds access in TopK heap cleanup path...

github.com/redis/redis/release

#redis #cacheserver #github

##

redis_release_watcher@kodesumber.com at 2026-08-17T18:15:57.000Z ##

8.8.2

Update urgency: SECURITY: There are security fixes in the release. Security fixes (CVE-2026-62356) Miscalculated buffer size in CMSketch RDB loading may lead to heap OOB write Out-of-bounds access in TopK heap cleanup path...

github.com/redis/redis/release

#redis #cacheserver #github

##

redis_release_watcher@kodesumber.com at 2026-08-17T18:15:40.000Z ##

8.6.6

Update urgency: SECURITY: There are security fixes in the release. Security fixes (CVE-2026-62356) Miscalculated buffer size in CMSketch RDB loading may lead to heap OOB write Out-of-bounds access in TopK heap cleanup path...

github.com/redis/redis/release

#redis #cacheserver #github

##

redis_release_watcher@kodesumber.com at 2026-08-17T18:15:28.000Z ##

8.4.6

Update urgency: SECURITY: There are security fixes in the release. Security fixes (CVE-2026-62356) Miscalculated buffer size in CMSketch RDB loading may lead to heap OOB write Out-of-bounds access in TopK heap cleanup path...

github.com/redis/redis/release

#redis #cacheserver #github

##

redis_release_watcher@kodesumber.com at 2026-08-17T18:15:10.000Z ##

8.2.9

Security fixes (CVE-2026-62356) Miscalculated buffer size in CMSketch RDB loading may lead to heap OOB write Out-of-bounds access in TopK heap cleanup path (MOD-15410) Use-after-free in the TLS pending-data list when a command closes another...

github.com/redis/redis/release

#redis #cacheserver #github

##

CVE-2024-69414
(0 None)

EPSS: 0.00%

1 posts

N/A

security_crawler_carl@infosec.exchange at 2026-08-17T09:36:52.000Z ##

🏆 New Achievement! Your Antivirus Has a Virus Problem!

PATCH NOTES v0.0.0 — KNOWN ISSUES: Microsoft Defender, the product specifically designed to protect you from threats, is currently a threat. The Microsoft Malware Protection Engine contains a zero-day tracked as CVE-2024-69414, nicknamed ShieldBreak, which attackers in the wild are actively using to elevate their privileges. Think of it as a DLC nobody ordered.

ADDED: Unauthorized privilege escalation. FIXED: Nothing yet. (1/2)

##

CVE-2026-73296
(0 None)

EPSS: 2.61%

1 posts

N/A

secdb@infosec.exchange at 2026-08-17T00:02:24.000Z ##

📈 CVE Published in last 7 days (2026-08-10 - 2026-08-10)
See more at secdb.nttzen.cloud/dashboard

Total CVEs:

Severity:
- Critical: 326
- High: 1309
- Medium: 1008
- Low: 130
- None: 1222

Status:
- : 39
- Analyzed: 419
- Awaiting Analysis: 226
- Deferred: 197
- Modified: 2
- Received: 2827
- Rejected: 102
- Undergoing Analysis: 183

CISA KEVs:
- CISA-2026:0811 (secdb.nttzen.cloud/security-ad)

Top CNAs:
- kernel.org: 1221
- Microsoft Corporation: 405
- VulnCheck: 343
- GitHub, Inc.: 326
- IBM Corporation: 160
- WPScan: 124
- Patchstack: 111
- VulDB: 104
- Red Hat, Inc.: 101
- Wordfence: 93

Top Affected Products:
- UNKNOWN: 3370
- Microsoft Windows Server 2025: 178
- Microsoft Windows 11 24h2: 171
- Microsoft Windows 11 26h1: 171
- Microsoft Windows 11 25h2: 171
- Microsoft Windows Server 2022: 158
- Microsoft Windows Server 2019: 146
- Microsoft Windows 10 1809: 146
- Microsoft Windows 11 23h2: 146
- Microsoft Windows 10 22h2: 136

Top EPSS Score:
- CVE-2026-72898 - 10.40 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-61358 - 3.68 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-66804 - 3.42 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62696 - 3.18 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19771 - 2.79 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-73296 - 2.61 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-65775 - 2.45 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-62832 - 2.37 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19747 - 2.36 % (secdb.nttzen.cloud/cve/detail/)
- CVE-2026-19681 - 2.24 % (secdb.nttzen.cloud/cve/detail/)

#ZEN #SecDB #InfoSec

##

Visit counter For Websites