Thu, Aug 06 · 10:18 PM CDTCVE-2026-67622
9.9/10 · Must read/watchNVDvuln
Summary
Flowise through 3.1.4 contains an insecure direct object reference vulnerability in the OpenAI Assistants integration that allows authenticated attackers to access credentials belonging to other workspaces by supplying an arbitrary credential UUID to Assistants endpoints without workspace ownership verification. Attack
CVECVE-2026-67622
SeverityCRITICAL
TypeUPDATED
PublishedThu, Aug 06 · 10:18 PM CDT
ModifiedTue, Sep 15 · 04:07 PM CDT
Thu, May 23 · 04:29 PM CDTCVE-2019-7105
9.8/10 · Must read/watchNVDvuln
Summary
Adobe XD versions 16.0 and earlier have a path traversal vulnerability. Successful exploitation could lead to arbitrary code execution.
CVECVE-2019-7105
SeverityCRITICAL
TypeUPDATED
PublishedThu, May 23 · 04:29 PM CDT
ModifiedTue, Sep 15 · 03:33 PM CDT
Thu, May 23 · 04:29 PM CDTCVE-2019-7106
9.8/10 · Must read/watchNVDvuln
Summary
Adobe XD versions 16.0 and earlier have a path traversal vulnerability. Successful exploitation could lead to arbitrary code execution.
CVECVE-2019-7106
SeverityCRITICAL
TypeUPDATED
PublishedThu, May 23 · 04:29 PM CDT
ModifiedTue, Sep 15 · 03:33 PM CDT
Wed, Sep 02 · 05:17 PM CDTCVE-2026-20274
9.8/10 · Must read/watchNVDvuln
Summary
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XR Software engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening releases that address multiple internally discovered vulnerabilities. The vulnerabilities track
CVECVE-2026-20274
SeverityCRITICAL
TypeUPDATED
PublishedWed, Sep 02 · 05:17 PM CDT
ModifiedTue, Sep 15 · 06:17 PM CDT
Wed, Sep 02 · 05:17 PM CDTCVE-2026-20279
9.8/10 · Must read/watchNVDvuln
Summary
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XR Software engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening releases that address multiple internally discovered vulnerabilities. The vulnerabilities track
CVECVE-2026-20279
SeverityCRITICAL
TypeUPDATED
PublishedWed, Sep 02 · 05:17 PM CDT
ModifiedTue, Sep 15 · 06:17 PM CDT
Wed, Jun 24 · 08:16 AM CDTCVE-2026-52924
9.8/10 · Must read/watchNVDvuln
Summary
In the Linux kernel, the following vulnerability has been resolved: sctp: purge outqueue on stale COOKIE-ECHO handling sctp_stream_update() is only invoked when the association is moved into COOKIE_WAIT during association setup/reconfiguration. In this path, the outbound stream scheduler state (stream->out_curr) is exp
CVECVE-2026-52924
SeverityCRITICAL
TypeUPDATED
PublishedWed, Jun 24 · 08:16 AM CDT
ModifiedTue, Sep 15 · 12:17 PM CDT
Thu, Aug 06 · 10:18 PM CDTCVE-2026-65400
9.8/10 · Must read/watchNVDvuln
Summary
An authentication issue was addressed with improved state management. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.7.9, macOS Sonoma 14.8.9, macOS Tahoe 26.6.1, macOS Tahoe 26.7. An attacker on the network may be able to authenticate to Screen Sharing without valid credentials.
CVECVE-2026-65400
SeverityCRITICAL
TypeUPDATED
PublishedThu, Aug 06 · 10:18 PM CDT
ModifiedTue, Sep 15 · 12:47 PM CDT
Fri, May 22 · 04:16 PM CDTCVE-2026-39821
9.6/10 · Must read/watchNVDvuln
Summary
The ToASCII and ToUnicode functions incorrectly accept Punycode-encoded labels that decode to an ASCII-only label. For example, ToUnicode("xn--example-.com") incorrectly returns the name "example.com" rather than an error. This behavior can lead to privilege escalation in programs using the idna package. For example, a
CVECVE-2026-39821
SeverityCRITICAL
TypeUPDATED
PublishedFri, May 22 · 04:16 PM CDT
ModifiedTue, Sep 15 · 12:17 PM CDT
Wed, May 06 · 10:16 AM CDTCVE-2026-43114
9.4/10 · Must read/watchNVDvuln
Summary
In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_set_pipapo_avx2: don't return non-matching entry on expiry New test case fails unexpectedly when avx2 matching functions are used. The test first loads a ranomly generated pipapo set with 'ipv4 . port' key, i.e. nft -f foo. This works. T
CVECVE-2026-43114
SeverityCRITICAL
TypeUPDATED
PublishedWed, May 06 · 10:16 AM CDT
ModifiedTue, Sep 15 · 12:17 PM CDT
Fri, May 22 · 04:16 AM CDTCVE-2026-39830
9.1/10 · Must read/watchNVDvuln
Summary
A malicious SSH peer could send unsolicited global request responses to fill an internal buffer, blocking the connection's read loop. The blocked goroutine could not be released by calling Close(), resulting in a resource leak per connection. Unsolicited global responses are now discarded.
CVECVE-2026-39830
SeverityCRITICAL
TypeUPDATED
PublishedFri, May 22 · 04:16 AM CDT
ModifiedTue, Sep 15 · 12:17 PM CDT
Fri, May 22 · 04:16 AM CDTCVE-2026-39832
9.1/10 · Must read/watchNVDvuln
Summary
When adding a key to a remote agent constraint extensions such as restrict-destination-v00@openssh.com were not serialized in the request. Destination restrictions were silently stripped when forwarding keys, allowing unrestricted use of the key on the remote host. The client now serializes all constraint extensions. A
CVECVE-2026-39832
SeverityCRITICAL
TypeUPDATED
PublishedFri, May 22 · 04:16 AM CDT
ModifiedTue, Sep 15 · 12:17 PM CDT
Fri, May 22 · 04:16 AM CDTCVE-2026-42508
9.1/10 · Must read/watchNVDvuln
Summary
Previously, a revoked 'SignatureKey' belonging to a CA was not correctly checked for revocation. Now, both the 'key' and 'key.SignatureKey' are checked for @revoked.
CVECVE-2026-42508
SeverityCRITICAL
TypeUPDATED
PublishedFri, May 22 · 04:16 AM CDT
ModifiedTue, Sep 15 · 12:17 PM CDT
Wed, Aug 19 · 05:18 PM CDTCVE-2026-48024
9.1/10 · Must read/watchNVDvuln
Summary
Wazuh is a free and open source platform used for threat prevention, detection, and response. From 4.0.0 until 4.14.6 and 5.0.0-beta3, cluster.unmerge_info() in framework/wazuh/core/cluster/cluster.py constructs paths from peer-controlled merge_type and name values in a merged synchronization archive. process_files_fro
CVECVE-2026-48024
SeverityCRITICAL
TypeUPDATED
PublishedWed, Aug 19 · 05:18 PM CDT
ModifiedTue, Sep 15 · 07:25 PM CDT
Wed, Aug 19 · 05:18 PM CDTCVE-2026-48162
9.1/10 · Must read/watchNVDvuln
Summary
Wazuh is a free and open source platform used for threat prevention, detection, and response. From 4.0.0 until 4.14.6 and 5.0.0-beta3, DistributedAPI.send_tmp_file() in framework/wazuh/core/cluster/dapi/dapi.py joins an attacker-controlled tmp_file value to WAZUH_PATH without canonicalization or confinement. A cluster
CVECVE-2026-48162
SeverityCRITICAL
TypeUPDATED
PublishedWed, Aug 19 · 05:18 PM CDT
ModifiedTue, Sep 15 · 07:24 PM CDT
Wed, Aug 19 · 05:18 PM CDTCVE-2026-49441
9.1/10 · Must read/watchNVDvuln
Summary
Wazuh is a free and open source platform used for threat prevention, detection, and response. From 4.3.0 until 4.14.6 and 5.0.0-beta3, the non-merged branch of process_files_from_worker() in framework/wazuh/core/cluster/master.py trusts a peer-controlled file_path key from files_metadata.json. The destination is joined
CVECVE-2026-49441
SeverityCRITICAL
TypeUPDATED
PublishedWed, Aug 19 · 05:18 PM CDT
ModifiedTue, Sep 15 · 07:21 PM CDT
Fri, Aug 28 · 02:16 AM CDTCVE-2026-61800
9.1/10 · Must read/watchNVDvuln
Summary
Wazuh is an open-source security platform providing unified XDR and SIEM protection for endpoints and cloud workloads. In versions 4.4.0 through 4.14.6, a party holding the cluster key can write, overwrite, or delete arbitrary files under /var/ossec on worker nodes, leading to remote code execution as root. During clus
CVECVE-2026-61800
SeverityCRITICAL
TypeUPDATED
PublishedFri, Aug 28 · 02:16 AM CDT
ModifiedTue, Sep 15 · 07:12 PM CDT
Tue, Aug 11 · 06:18 PM CDTCVE-2026-71362
9.1/10 · Must read/watchNVDvuln
Summary
Adobe Commerce is affected by an Incorrect Authorization vulnerability that could result in privilege escalation. An attacker could leverage this vulnerability to gain elevated access to sensitive resources. Exploitation of this issue does not require user interaction.
CVECVE-2026-71362
SeverityCRITICAL
TypeUPDATED
PublishedTue, Aug 11 · 06:18 PM CDT
ModifiedTue, Sep 15 · 02:33 PM CDT
Mon, Aug 17 · 04:17 PM CDTCVE-2026-75045
9.1/10 · Must read/watchNVDvuln
Summary
In JetBrains YouTrack before 2025.3.156085, 2026.1.13913, 2026.2.18112 an unauthenticated attacker could download database backups via shared draft signature
CVECVE-2026-75045
SeverityCRITICAL
TypeUPDATED
PublishedMon, Aug 17 · 04:17 PM CDT
ModifiedTue, Sep 15 · 05:46 PM CDT
Fri, Sep 04 · 10:17 AM CDTCVE-2026-85184
9.1/10 · Must read/watchNVDvuln
Summary
@fastify/middie versions >= 9.1.0 and before 9.3.4 decide whether to run path-scoped middleware by matching against the raw request target, while the Fastify router resolves an absolute-form request target to its path before dispatching. Because the two layers evaluate different strings, a request using an absolute-for
CVECVE-2026-85184
SeverityCRITICAL
TypeUPDATED
PublishedFri, Sep 04 · 10:17 AM CDT
ModifiedTue, Sep 15 · 08:02 PM CDT
Fri, Sep 04 · 05:16 PM CDTCVE-2026-18486
8.8/10 · Worth your timeNVDvuln
Summary
IBM ContextForge MCP Gateway <= v1.0.7 MCP Context Forge could allow a remote authenticated attacker to obtain sensitive credentials and escalate privileges due to improper validation of jq filters.
CVECVE-2026-18486
SeverityHIGH
TypeUPDATED
PublishedFri, Sep 04 · 05:16 PM CDT
ModifiedTue, Sep 15 · 03:05 PM CDT
Wed, Sep 02 · 05:17 PM CDTCVE-2026-20275
8.8/10 · Worth your timeNVDvuln
Summary
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XR Software engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening releases that address multiple internally discovered vulnerabilities. The vulnerabilities track
CVECVE-2026-20275
SeverityHIGH
TypeUPDATED
PublishedWed, Sep 02 · 05:17 PM CDT
ModifiedTue, Sep 15 · 06:17 PM CDT
Wed, Sep 02 · 05:17 PM CDTCVE-2026-20278
8.8/10 · Worth your timeNVDvuln
Summary
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XR Software engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening releases that address multiple internally discovered vulnerabilities. The vulnerabilities track
CVECVE-2026-20278
SeverityHIGH
TypeUPDATED
PublishedWed, Sep 02 · 05:17 PM CDT
ModifiedTue, Sep 15 · 06:17 PM CDT
Wed, Sep 02 · 05:17 PM CDTCVE-2026-20280
8.8/10 · Worth your timeNVDvuln
Summary
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XR Software engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening releases that address multiple internally discovered vulnerabilities. The vulnerabilities
CVECVE-2026-20280
SeverityHIGH
TypeUPDATED
PublishedWed, Sep 02 · 05:17 PM CDT
ModifiedTue, Sep 15 · 06:17 PM CDT
Wed, May 06 · 10:16 AM CDTCVE-2026-43112
8.8/10 · Worth your timeNVDvuln
Summary
In the Linux kernel, the following vulnerability has been resolved: fs/smb/client: fix out-of-bounds read in cifs_sanitize_prepath When cifs_sanitize_prepath is called with an empty string or a string containing only delimiters (e.g., "/"), the current logic attempts to check *(cursor2 - 1) before cursor2 has advanced.
CVECVE-2026-43112
SeverityHIGH
TypeUPDATED
PublishedWed, May 06 · 10:16 AM CDT
ModifiedTue, Sep 15 · 12:17 PM CDT
Mon, Jul 27 · 08:16 PM CDTCVE-2026-66014
8.8/10 · Worth your timeNVDvuln
Summary
JFrog Artifactory contains an authentication handling weakness in internal request processing that, under specific conditions, may allow an attacker to escalate privileges beyond the intended access level.
CVECVE-2026-66014
SeverityHIGH
TypeUPDATED
PublishedMon, Jul 27 · 08:16 PM CDT
ModifiedTue, Sep 15 · 06:30 PM CDT