Tag

#Vulnerability

newsHIGH 8.2

CVE-2026-47877: Spring Security Authorization Server Vulnerability

A vulnerability in Spring Security Authorization Server's default consent page allows an attacker to inject user-controlled values without HTML entity encoding, potentially leading to XSS attacks. Affected versions include Spring Security 7.1.0 and 7.0.0-7.0.6. The CVSS score is 8.2, indicating a high severity vulnerability.

1 source
articleCRITICAL 9.8

Critical Vulnerability in Spring Framework: CVE-2026-47891

A critical vulnerability (CVE-2026-47891) with a CVSS score of 9.8 affects multiple versions of the Spring Framework, allowing for remote code execution. The vulnerability occurs due to incorrect enforcement of the maxInMemorySize limit in Spring WebFlux applications relying on the Aalto XML processor. Immediate patching is recommended to prevent potential exploitation.

1 source
newsHIGH 7.5

Linux Kernel Vulnerability: CVE-2026-74741 - NULL Pointer Dereference in Non-MSI-X Interrupt Enabling

A vulnerability in the Linux kernel, specifically in the ngbe driver, allows for a NULL pointer dereference in non-MSI-X interrupt enabling. This issue has a CVSS score of 7.5 and can lead to a denial of service (DoS) attack. Affected systems include Linux versions prior to specific commits and version 6.16.

1 source
articleCRITICAL 9.8

Critical Nokogiri Vulnerability: CVE-2025-71407

A critical vulnerability (CVE-2025-71407) with a CVSS score of 9.8 affects Nokogiri, a popular Ruby gem for parsing XML and HTML. The vulnerability involves a stack buffer overflow and a use-after-free issue in libxml2, which can lead to denial of service or potential code execution. Affected versions are Nokogiri before 1.18.3. Immediate patching is recommended.

1 source
blogHIGH 8.8

DNS Rebinding Vulnerability in GenieACS MCP

A DNS rebinding vulnerability exists in the genieacs-mcp package, allowing a malicious web page to interact with a victim's local GenieACS MCP server. This can lead to unauthorized access and control of the GenieACS system.

1 source
newsCRITICAL 9.1

CVE-2026-67602: phpIPAM REST API Authentication Bypass Vulnerability

A critical vulnerability (CVE-2026-67602, CVSS 9.1) in phpIPAM before 1.8.2 allows unauthenticated attackers to bypass authentication and gain full API access, enabling them to read, write, and delete IP address management records. This vulnerability is due to an insecure object cache keying mechanism in the REST API.

1 source
blogHIGH 8.8

CVE-2026-78170: Buffer Overflow in UTT HiPER 1200GW

A buffer overflow vulnerability was discovered in UTT HiPER 1200GW up to version 2.5.3-170306. The flaw exists in the strcpy function of the file /goform/formConfigFastDirectionW, which can be exploited remotely by manipulating the ssid argument. This vulnerability has a CVSS score of 8.8 and is classified as a CWE-119 and CWE-120 weakness.

1 source
newsHIGH 8.9

Critical Vulnerability in Velociraptor: CVE-2026-19200

A critical vulnerability (CVE-2026-19200, CVSS 8.9) in Velociraptor allows attackers with NOTEBOOK_EDIT permission to overwrite existing artifacts without required permissions, potentially leading to high impact on confidentiality and integrity. Affected versions are Velociraptor < 0.77.2 on Linux and Windows. Immediate mitigation is required.

1 source
articleHIGH 7.5

Critical Symlink-Based Sandbox Bypass in NLTK FramenetCorpusReader (CVE-2026-62384)

CVE-2026-62384 is a critical symlink-based sandbox bypass vulnerability in NLTK's FramenetCorpusReader, affecting versions before 3.10.2. This vulnerability allows attackers to read arbitrary XML files outside the corpus root, with a CVSS score of 7.5. Organizations should immediately upgrade to NLTK version 3.10.2 or later to mitigate this high-severity threat.

1 source
newsHIGH 7.5

Authorization Bypass Vulnerability in WWBN AVideo (CVE-2026-59256)

A vulnerability in WWBN AVideo allows attackers to bypass authorization checks by retrieving a token from the Gallery endpoint, affecting video content access. The vulnerability has a CVSS score of 7.5 and is classified as HIGH severity. AVideo users should update to a fixed version to mitigate this risk.

1 source
newsCRITICAL 9.8

CVE-2026-14950: Critical Session Fixation Vulnerability in Frauscher Sensortechnik FDS 102

A critical vulnerability (CVE-2026-14950, CVSS 9.8) exists in Frauscher Sensortechnik's FDS 102, allowing an unauthenticated remote attacker to continue using a valid session after it has expired. This could enable unauthorized access to the FDS web interface. Affected versions are 2.1.0 to 2.13.3; users should update to version 2.13.4 or later.

1 source
blogHIGH 8.1

Understanding and Defending Against CVE-2026-15371: A JavaScript XSS Vulnerability in Velociraptor

CVE-2026-15371 is a high-severity vulnerability in Velociraptor, a security tool used for endpoint monitoring and response. The vulnerability allows an attacker to inject malicious JavaScript code via a crafted URL, leading to a cross-site scripting (XSS) attack. This vulnerability has a CVSS score of 8.1, indicating a high level of severity. Understanding and mitigating this vulnerability is crucial to prevent potential attacks.

1 source
newsHIGH 8.1

CVE-2026-75044: JetBrains YouTrack Authorization Bypass Vulnerability

A vulnerability in JetBrains YouTrack before versions 2025.3.156085, 2026.1.13914, and 2026.2.18095 allows an authenticated user to delete arbitrary entities via the mailbox endpoint due to missing authorization. This vulnerability has a CVSS score of 8.1, indicating high severity. Affected organizations should update to a patched version immediately.

1 source
articleCRITICAL 9.0

Critical Mac Screen Sharing Vulnerability Under Active Exploitation

A vulnerability in Mac Screen Sharing is being actively exploited in the wild, allowing attackers to gain root access and install Monero cryptominers. This vulnerability poses a significant threat to Mac users, particularly those with Screen Sharing enabled. Immediate action is required to patch vulnerable systems and prevent further exploitation. The vulnerability is being exploited in the wild, and organizations should prioritize patching to prevent potential compromise.

1 source
blogHIGH 8.7

Zero-Click Account Takeover via OAuth Identity Linking to Unverified Email Accounts

CVE-2026-35511 is an 8.7 severity vulnerability in Authorizer that allows for zero-click account takeover via OAuth identity linking to unverified email accounts. An attacker can pre-register with a victim's email address without verifying it and gain persistent password-based access to the victim's account after the victim completes a normal OAuth login.

1 source
newsCRITICAL 9.3

Critical Vulnerability in Priority ERP Portal Generator Addon: CVE-2026-59507

A critical vulnerability (CVE-2026-59507, CVSS 9.3) was discovered in the Priority ERP Portal Generator addon, developed by Soft Solutions. This vulnerability affects all versions without Priwall v3 and allows for exposure of sensitive information, improper access control, and use of hard-coded credentials. Security professionals should immediately assess and mitigate this vulnerability to prevent potential exploitation.

1 source
newsHIGH 7.3

Ansible FreeBSD Jail Connection Plugin Vulnerability: CVE-2026-55074

A vulnerability in the Ansible FreeBSD Jail Connection Plugin (CVE-2026-55074, CVSS 7.3) allows a party controlling content inside a managed jail to cause an arbitrary root-owned write on the host, outside the jail, leading to a full jail escape. This affects versions up to 1.3.0; upgrade to 2.0.0 or later to mitigate.

1 source
newsHIGH 7.5

CVE-2026-15562: Denial of Service Vulnerability in Red Hat JBoss Enterprise Application Platform

A remote unauthenticated attacker can exploit a vulnerability in Red Hat JBoss Enterprise Application Platform's jboss-remoting component to cause Out-of-Memory (OOM) errors, leading to a denial of service. The vulnerability has a CVSS score of 7.5 and affects multiple versions of the platform. Affected administrators should update to the latest version to mitigate the vulnerability.

1 source
newsHIGH 7.5

CVE-2026-20339: ClamAV PESpin File Format Parser Vulnerability

A vulnerability in ClamAV's PESpin file format parser could allow an unauthenticated, remote attacker to cause a DoS condition or possibly other expanded impacts as a result of memory corruption on an affected device. The vulnerability has a CVSS score of 7.5 and is not currently being actively exploited.

1 source
articleCRITICAL 9.6

Critical CSRF and SSRF Vulnerability in Eclipse GlassFish: CVE-2026-12605

A critical vulnerability, CVE-2026-12605, with a CVSS score of 9.6, was discovered in Eclipse GlassFish versions 8.0.x before 8.0.4. This vulnerability combines Cross-Site Request Forgery (CSRF) and Server-Side Request Forgery (SSRF) flaws in the DownloadServlet ContentSources, allowing an attacker to leak the admin `gfresttoken` and potentially take over the Eclipse GlassFish domain. The vulnerability requires user interaction but can lead to full unauthenticated takeover of the domain. Immediate patching is recommended.

1 source
blogCRITICAL 9.1

Understanding and Defending Against CVE-2026-15360: Time-Based Blind SQL Injection in Ajax Load More WordPress Plugin

CVE-2026-15360 is a critical vulnerability in the Ajax Load More WordPress plugin that allows unauthenticated attackers to perform time-based blind SQL injection. This vulnerability has a CVSS score of 9.1 and can lead to the extraction of sensitive data from the database. In this analysis, we will delve into the root cause, attack surface, exploitation mechanics, and provide defensive recommendations.

1 source
newsHIGH 8.6

CVE-2026-68587: SiYuan Information Disclosure Vulnerability

A critical vulnerability (CVE-2026-68587) has been discovered in SiYuan versions before v3.7.3, allowing anonymous readers or users with publish RoleReader tokens to access restricted content. The vulnerability has a CVSS score of 8.6 and is classified as HIGH severity. Affected users should update to version 3.7.3 or later.

1 source
newsMEDIUM 6.0

CVE-2026-20467: Local Privilege Escalation in MediaTek Chipsets

A vulnerability in MediaTek chipsets could allow local escalation of privilege if a malicious actor has already obtained the System privilege. This vulnerability has a CVSS score of 6 and is not actively exploited. Affected products include MT8195, MT8196, and MT8366.

1 source
blogHIGH 8.8

Understanding and Defending Against CVE-2026-15988: Cross-Site Request Forgery in AI Engine Plugin

This educational analysis covers CVE-2026-15988, a Cross-Site Request Forgery (CSRF) vulnerability in the AI Engine – The Chatbot, AI Framework & MCP for WordPress plugin. The vulnerability allows unauthenticated attackers to create new administrator accounts with attacker-supplied credentials. We will delve into the root cause, attack surface, exploitation mechanics, real-world impact, detection strategies, and defensive recommendations.

1 source
newsCRITICAL 9.8

Critical Remote Code Execution Vulnerability in Admin and Site Enhancements (ASE) Pro Plugin for WordPress (CVE-2026-16610)

A critical vulnerability (CVE-2026-16610, CVSS score: 9.8) was discovered in the Admin and Site Enhancements (ASE) Pro plugin for WordPress, allowing unauthenticated attackers to execute code on the server. The vulnerability affects all versions up to and including 8.9.0 and requires the [post_cf_form] shortcode to be present on at least one publicly accessible page. Immediate action is required to update the plugin to a patched version.

1 source
articleCRITICAL 10.0

Critical Vulnerability in Prebid Server: CVE-2026-54735

A critical vulnerability (CVE-2026-54735) with a CVSS score of 10 has been discovered in Prebid Server, an open-source solution for real-time advertising auctions. The vulnerability allows crafted bid request parameters to cause server-side requests to unintended destinations, potentially exposing internal network services or sensitive server endpoints. This issue affects Prebid Server versions prior to 4.4.0 and has been fixed in version 4.4.0. Organizations using Prebid Server should immediately upgrade to version 4.4.0 to mitigate this vulnerability.

1 source
articleCRITICAL 10.0

Critical Apache Traffic Server Vulnerability: CVE-2026-57834

A critical vulnerability, CVE-2026-57834, with a CVSS score of 10, was discovered in Apache Traffic Server, allowing request smuggling if chunked messages are malformed. This issue affects multiple versions of Apache Traffic Server, and users are recommended to upgrade to version 9.2.15 or 10.1.4 to fix the issue. The vulnerability has not been actively exploited but poses a significant risk due to its severity and potential impact.

1 source
newsHIGH 8.0

Linux Kernel Vulnerability: CVE-2026-64530 - Use-After-Free in net/sched/cls_api.c

A use-after-free vulnerability was discovered in the Linux kernel's net/sched/cls_api.c, specifically in the tcf_qevent_handle function. This vulnerability can be exploited by an attacker to potentially execute arbitrary code or cause a denial-of-service (DoS) condition. Linux kernel versions 5.15.148, 6.1.75, 6.6.14, and 6.7.2 are affected.

1 source
articleMEDIUM 6.5

Linux Kernel Vulnerability: CVE-2024-14040 - Insufficient Weight Representation in Nexthop Group Members

A vulnerability in the Linux kernel's nexthop group member configuration allows for potential issues with weight representation, affecting the ability to configure certain network deployments. The vulnerability has been resolved by increasing the weight representation from u8 to u16. This change impacts the Linux kernel's networking functionality, specifically in CLOS networks where ECMP weights are adjusted. Affected systems should apply patches to ensure proper weight configuration and prevent potential network instability.

1 source
newsHIGH 8.0

Linux Kernel Vulnerability: CVE-2026-64257 - Reject Overlapping Data Areas in SMB2 Responses

A vulnerability in the Linux kernel's SMB2 response handling can allow an attacker to trigger an invalid response that appears to have no data area, potentially leading to security issues. This vulnerability affects various Linux kernel versions. Users should update to the latest version to mitigate the risk.

1 source