Wed, Mar 04 · 06:16 PM CST
CVE-2026-20079
10.0/10 · Must read/watch
NVDvuln
Summary
A vulnerability in the web interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remote attacker to bypass authentication and execute script files on an affected device to obtain root access to the underlying operating system. This vulnerability is due to an improper
CVECVE-2026-20079
SeverityCRITICAL
TypeUPDATED
PublishedWed, Mar 04 · 06:16 PM CST
ModifiedWed, Sep 16 · 05:17 PM CDT
Fri, Jan 19 · 02:15 PM CST
CVE-2023-27168
9.8/10 · Must read/watch
NVDvuln
Summary
An arbitrary file upload vulnerability in Xpand IT Write-back Manager v2.3.1 allows attackers to execute arbitrary code via a crafted jsp file.
CVECVE-2023-27168
SeverityCRITICAL
TypeUPDATED
PublishedFri, Jan 19 · 02:15 PM CST
ModifiedWed, Sep 16 · 08:17 PM CDT
Thu, Jun 04 · 06:16 PM CDT
CVE-2026-25550
9.8/10 · Must read/watch
NVDvuln
Summary
Seagull Software BarTender 2010, 2016, and 2019 contain an unauthenticated remote code execution vulnerability in the .NET Remoting service exposed on TCP port 7375 via BtSystem.Service.exe. The service registers an unauthenticated singleton endpoint — BarTenderSystem for BarTender 2016 <= R9, and DataServiceSingleton
CVECVE-2026-25550
SeverityCRITICAL
TypeUPDATED
PublishedThu, Jun 04 · 06:16 PM CDT
ModifiedWed, Sep 16 · 04:17 PM CDT
Wed, Jun 24 · 05:17 PM CDT
CVE-2026-53006
9.8/10 · Must read/watch
NVDvuln
Summary
In the Linux kernel, the following vulnerability has been resolved: ipv6: fix possible UAF in icmpv6_rcv() Caching saddr and daddr before pskb_pull() is problematic since skb->head can change. Remove these temporary variables: - We only access &ipv6_hdr(skb)->saddr and &ipv6_hdr(skb)->daddr when net_dbg_ratelimited() i
CVECVE-2026-53006
SeverityCRITICAL
TypeUPDATED
PublishedWed, Jun 24 · 05:17 PM CDT
ModifiedWed, Sep 16 · 01:18 PM CDT
Wed, Jul 29 · 10:16 AM CDT
CVE-2026-59243
9.8/10 · Must read/watch
NVDvuln
Summary
The FAB auth manager's Azure AD OAuth login defaulted `verify_signature=False` when decoding the ID token, so an attacker able to present a forged or unsigned (`alg:none`) ID token to the OAuth callback could bypass authentication and log in as an arbitrary user, including one holding the Admin role (CWE-347). Deployme
CVECVE-2026-59243
SeverityCRITICAL
TypeUPDATED
PublishedWed, Jul 29 · 10:16 AM CDT
ModifiedWed, Sep 16 · 03:17 PM CDT
Wed, May 06 · 10:16 AM CDT
CVE-2026-43114
9.4/10 · Must read/watch
NVDvuln
Summary
In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_set_pipapo_avx2: don't return non-matching entry on expiry New test case fails unexpectedly when avx2 matching functions are used. The test first loads a ranomly generated pipapo set with 'ipv4 . port' key, i.e. nft -f foo. This works. T
CVECVE-2026-43114
SeverityCRITICAL
TypeUPDATED
PublishedWed, May 06 · 10:16 AM CDT
ModifiedWed, Sep 16 · 01:17 PM CDT
Tue, Jun 09 · 01:16 PM CDT
CVE-2026-46316
9.3/10 · Must read/watch
NVDvuln
Summary
In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: vgic-its: Drop the translation cache reference only for the erased entry vgic_its_invalidate_cache() walks the per-ITS translation cache with xa_for_each() and drops the cache's reference on each entry with vgic_put_irq(). It puts the itera
CVECVE-2026-46316
SeverityCRITICAL
TypeUPDATED
PublishedTue, Jun 09 · 01:16 PM CDT
ModifiedWed, Sep 16 · 01:18 PM CDT
Wed, Dec 20 · 01:15 AM CST
CVE-2023-27172
9.1/10 · Must read/watch
NVDvuln
Summary
Xpand IT Write-back Manager v2.3.1 uses weak secret keys to sign JWT tokens. This allows attackers to easily obtain the secret key used to sign JWT tokens via a bruteforce attack.
CVECVE-2023-27172
SeverityCRITICAL
TypeUPDATED
PublishedWed, Dec 20 · 01:15 AM CST
ModifiedWed, Sep 16 · 08:17 PM CDT
Fri, Apr 26 · 01:15 AM CDT
CVE-2024-33668
9.1/10 · Must read/watch
NVDvuln
Summary
An issue was discovered in Zammad before 6.3.0. The Zammad Upload Cache uses insecure, partially guessable FormIDs to identify content. An attacker could try to brute force them to upload malicious content to article drafts they have no access to.
CVECVE-2024-33668
SeverityCRITICAL
TypeUPDATED
PublishedFri, Apr 26 · 01:15 AM CDT
ModifiedWed, Sep 16 · 08:17 PM CDT
Thu, Aug 22 · 04:15 AM CDT
CVE-2024-45163
9.1/10 · Must read/watch
NVDvuln
Summary
The Mirai botnet through 2024-08-19 mishandles simultaneous TCP connections to the CNC (command and control) server. Unauthenticated sessions remain open, causing resource consumption. For example, an attacker can send a recognized username (such as root), or can send arbitrary data.
CVECVE-2024-45163
SeverityCRITICAL
TypeUPDATED
PublishedThu, Aug 22 · 04:15 AM CDT
ModifiedWed, Sep 16 · 09:17 PM CDT
Fri, Mar 20 · 11:16 PM CDT
CVE-2026-33186
9.1/10 · Must read/watch
NVDvuln
Summary
gRPC-Go is the Go language implementation of gRPC. Versions prior to 1.79.3 have an authorization bypass resulting from improper input validation of the HTTP/2 `:path` pseudo-header. The gRPC-Go server was too lenient in its routing logic, accepting requests where the `:path` omitted the mandatory leading slash (e.g.,
CVECVE-2026-33186
SeverityCRITICAL
TypeUPDATED
PublishedFri, Mar 20 · 11:16 PM CDT
ModifiedWed, Sep 16 · 01:17 PM CDT
Fri, May 22 · 04:16 AM CDT
CVE-2026-39830
9.1/10 · Must read/watch
NVDvuln
Summary
A malicious SSH peer could send unsolicited global request responses to fill an internal buffer, blocking the connection's read loop. The blocked goroutine could not be released by calling Close(), resulting in a resource leak per connection. Unsolicited global responses are now discarded.
CVECVE-2026-39830
SeverityCRITICAL
TypeUPDATED
PublishedFri, May 22 · 04:16 AM CDT
ModifiedWed, Sep 16 · 01:17 PM CDT
Mon, Jun 22 · 11:16 PM CDT
CVE-2026-48746
9.1/10 · Must read/watch
NVDvuln
Summary
vLLM is an inference and serving engine for large language models (LLMs). From 0.3.0 until 0.22.0, a vulnerability in ASGI web servers and starlette's trust on those web servers enables an authentication bypass of the OpenAI API AuthenticationMiddleware. It allows to use the API without providing the configured VLLM_AP
CVECVE-2026-48746
SeverityCRITICAL
TypeUPDATED
PublishedMon, Jun 22 · 11:16 PM CDT
ModifiedWed, Sep 16 · 01:18 PM CDT
Tue, Aug 04 · 04:16 PM CDT
CVE-2026-69110
9.1/10 · Must read/watch
NVDvuln
Summary
OpenCode Studio before 2.4.4 contains a missing authentication vulnerability that allows unauthenticated remote attackers to read arbitrary files within the temp and static/music directories by directly accessing the GET /api/tmp/:tmpFile and GET /api/music/:fileName endpoints. Attackers can retrieve intermediate audio
CVECVE-2026-69110
SeverityCRITICAL
TypeUPDATED
PublishedTue, Aug 04 · 04:16 PM CDT
ModifiedWed, Sep 16 · 08:34 PM CDT
Wed, Mar 25 · 06:16 PM CDT
CVE-2025-67030
8.8/10 · Worth your time
NVDvuln
Summary
Directory Traversal vulnerability in the extractFile method of org.codehaus.plexus.util.Expand in plexus-utils before 6d780b3378829318ba5c2d29547e0012d5b29642. This allows an attacker to execute arbitrary code
CVECVE-2025-67030
SeverityHIGH
TypeUPDATED
PublishedWed, Mar 25 · 06:16 PM CDT
ModifiedWed, Sep 16 · 01:17 PM CDT
Wed, Jun 24 · 05:17 PM CDT
CVE-2026-53071
8.8/10 · Worth your time
NVDvuln
Summary
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: l2cap: Add missing chan lock in l2cap_ecred_reconf_rsp l2cap_ecred_reconf_rsp() calls l2cap_chan_del() without holding l2cap_chan_lock(). Every other l2cap_chan_del() caller in the file acquires the lock first. A remote BLE device can send a
CVECVE-2026-53071
SeverityHIGH
TypeUPDATED
PublishedWed, Jun 24 · 05:17 PM CDT
ModifiedWed, Sep 16 · 01:18 PM CDT
Tue, Aug 04 · 04:16 PM CDT
CVE-2026-69100
8.8/10 · Worth your time
NVDvuln
Summary
LAMP Rapid Development Platform through 5.6.2, fixed in commit 84b0c27, contains a remote code execution vulnerability in GlueFactory that executes unsandboxed Groovy scripts from database template fields without compilation restrictions or whitelisting. Attackers can write or influence the script field via message tem
CVECVE-2026-69100
SeverityHIGH
TypeUPDATED
PublishedTue, Aug 04 · 04:16 PM CDT
ModifiedWed, Sep 16 · 08:32 PM CDT
Wed, Oct 23 · 05:15 PM CDT
CVE-2024-20260
8.6/10 · Worth your time
NVDvuln
Summary
Update for September 16, 2026: The original 1.0 version of this advisory was specific to the Cisco Adaptive Security Virtual Appliance (ASAv) and Cisco Secure Firewall Threat Defense Virtual (FTDv) models. However, it was later found that this vulnerability affects all Cisco Secure Firewall Adaptive Security Appliance
CVECVE-2024-20260
SeverityHIGH
TypeUPDATED
PublishedWed, Oct 23 · 05:15 PM CDT
ModifiedWed, Sep 16 · 09:17 PM CDT
Sun, Aug 02 · 01:16 PM CDT
CVE-2025-71399
8.6/10 · Worth your time
NVDvuln
Summary
Better Auth relies on better-call, which uses the rou3 router library. In affected versions of rou3, paths are normalized by removing empty segments, so /path, //path, and ///path resolve to the same route. In Better Auth versions prior to 1.4.5 (which bundles the fixed rou3), this can allow attackers to bypass disable
CVECVE-2025-71399
SeverityHIGH
TypeUPDATED
PublishedSun, Aug 02 · 01:16 PM CDT
ModifiedWed, Sep 16 · 08:32 PM CDT
Wed, Apr 08 · 02:16 AM CDT
CVE-2026-33810
8.2/10 · Worth your time
NVDvuln
Summary
When verifying a certificate chain containing excluded DNS constraints, these constraints are not correctly applied to wildcard DNS SANs which use a different case than the constraint. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in th
CVECVE-2026-33810
SeverityHIGH
TypeUPDATED
PublishedWed, Apr 08 · 02:16 AM CDT
ModifiedWed, Sep 16 · 01:17 PM CDT
Mon, Jul 13 · 04:16 PM CDT
CVE-2026-58065
8.1/10 · Worth your time
NVDvuln
Summary
The Apache Airflow Git provider runs its git-over-SSH operations with `StrictHostKeyChecking=no` by default, disabling SSH host-key verification. An attacker who can intercept the network path between an Airflow worker and the Git server can impersonate the server (man-in-the-middle), capturing the SSH deploy key or in
CVECVE-2026-58065
SeverityHIGH
TypeUPDATED
PublishedMon, Jul 13 · 04:16 PM CDT
ModifiedWed, Sep 16 · 04:17 PM CDT
Mon, Jul 13 · 04:16 PM CDT
CVE-2026-59245
8.1/10 · Worth your time
NVDvuln
Summary
In the Apache Airflow FAB auth manager, a DAG whose `dag_id` is `DAGs` collided with the global all-DAGs permission resource name produced by `resource_name()`, so a user granted per-DAG `access_control` on that one DAG was silently granted the global all-DAGs permission (privilege escalation). The escalation triggers
CVECVE-2026-59245
SeverityHIGH
TypeUPDATED
PublishedMon, Jul 13 · 04:16 PM CDT
ModifiedWed, Sep 16 · 03:17 PM CDT
Wed, Aug 05 · 08:17 PM CDT
CVE-2026-70617
8.1/10 · Worth your time
NVDvuln
Summary
Spacebar Server before commit dcfd910 contains a missing authorization vulnerability that allows any authenticated attacker to add themselves to arbitrary group DM channels by sending a PUT request to the channels recipient endpoint without membership verification. Attackers can exploit the unguarded PUT /channels/{cha
CVECVE-2026-70617
SeverityHIGH
TypeUPDATED
PublishedWed, Aug 05 · 08:17 PM CDT
ModifiedWed, Sep 16 · 08:34 PM CDT
Wed, May 27 · 11:16 AM CDT
CVE-2026-3012
8.0/10 · Worth your time
NVDvuln
Summary
A flaw was found in Samba’s certificate auto-enrollment Group Policy handling. When certificate auto-enrollment is enabled, Samba may retrieve a CA certificate over an unencrypted HTTP connection and install it into the local trust store without proper verification. An attacker with the ability to intercept or redirect
CVECVE-2026-3012
SeverityHIGH
TypeUPDATED
PublishedWed, May 27 · 11:16 AM CDT
ModifiedThu, Sep 17 · 08:17 AM CDT
Wed, Jul 15 · 01:17 PM CDT
CVE-2026-15809
7.8/10 · Worth your time
NVDvuln
Summary
A flaw was found in CRI-O. The fix for a previous vulnerability (CVE-2022-4318) was incorrect, allowing it to be bypassed. An attacker capable of setting environment variables on a container can inject a newline character into the HOME environment variable. This issue allows the addition of arbitrary lines into /etc/pa
CVECVE-2026-15809
SeverityHIGH
TypeUPDATED
PublishedWed, Jul 15 · 01:17 PM CDT
ModifiedThu, Sep 17 · 09:16 AM CDT