{"metadata":{"generatedAt":"2026-08-21T03:01:29.634Z","reportDate":"2026-08-21","totalItems":3339,"sourceBreakdown":{"cisa-kev":8,"nvd":3068,"cisa-advisories":7,"vendor-blogs":87,"malware-bazaar":9,"abuse-ipdb":20,"threatfox":2,"otx":33,"general-news":112},"categoryBreakdown":{"vulnerability":3073,"advisory":91,"malware":9,"ip-reputation":20,"threat-intel":35,"news":111},"fetchErrors":[]},"highlights":[{"id":"cisa-kev-CVE-2026-72530","source":"cisa-kev, nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72530 — TrueConf Server Code Injection Vulnerability","description":"TrueConf Server contains a code injection vulnerability that could allow an unauthorized remote attacker with network access via port 4307/TCP to use a specially crafted script to break out of the isolated environment and execute arbitrary code on the host system.","indicators":{"cves":["CVE-2026-72530"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T00:00:00.000Z","fetchedAt":"2026-08-21T03:00:00.192Z","references":[{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-72530","label":"NVD","domainType":"primary"},{"url":"https://ics-cert.kaspersky.com/advisories/2026/08/11/trueconf-server-breakout-from-isolated-environment/","label":"vulnerability@kaspersky.com","domainType":"other"},{"url":"https://securelist.com/tr/head-mare-targets-trueconf-server-with-phantomcore/120988/","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"other"},{"url":"https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-72530","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"cisa-kev-CVE-2026-72529","source":"cisa-kev, nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72529 — TrueConf Server Missing Authentication for Critical Function Vulnerability","description":"TrueConf Server contains a missing authentication for critical function vulnerability which could allow a remote unauthorized attacker with network access via port 4307/TCP to execute an arbitrary script.","indicators":{"cves":["CVE-2026-72529"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T00:00:00.000Z","fetchedAt":"2026-08-21T03:00:00.192Z","references":[{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-72529","label":"NVD","domainType":"primary"},{"url":"https://ics-cert.kaspersky.com/advisories/2026/08/11/trueconf-server-missing-authentication-for-critical-function/","label":"vulnerability@kaspersky.com","domainType":"other"},{"url":"https://securelist.com/tr/head-mare-targets-trueconf-server-with-phantomcore/120988/","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"other"},{"url":"https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-72529","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"cisa-kev-CVE-2026-64849","source":"cisa-kev, nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-64849 — MLflow Server-Side Request Forgery Vulnerability","description":"MLflow contains a server-side request forgery vulnerability that can allow attackers to reach internal or cloud metadata services and receive response_status and response_body.","indicators":{"cves":["CVE-2026-64849","CVE-2026-69146","CVE-2026-69148"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T00:00:00.000Z","fetchedAt":"2026-08-21T03:00:00.192Z","references":[{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-64849","label":"NVD","domainType":"primary"},{"url":"https://github.com/mlflow/mlflow/commit/ba949522477cbd5915aa55d29b0cfad7d5ddf939","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mlflow/mlflow/issues/24179","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mlflow/mlflow/pull/24258","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mlflow/mlflow/releases/tag/v3.15.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mlflow/mlflow/security/advisories/GHSA-7gwp-5pfp-969j","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-64849","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"},{"url":"https://github.com/mlflow/mlflow/commit/5c34aec5669e2386b38b5ee0855cd61174e27693","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mlflow/mlflow/pull/24291","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mlflow/mlflow/security/advisories/GHSA-3p64-6gvh-82v5","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mlflow/mlflow/commit/4bb7474771c3be808cd9e129defef9305f2869be","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mlflow/mlflow/pull/24293","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mlflow/mlflow/security/advisories/GHSA-gqch-g4w5-7qcw","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"cisa-adv-siemens-simcenter-nastran","source":"cisa-advisories, vendor-blogs","category":"advisory","severity":"critical","title":"Siemens Simcenter Nastran","description":"View CSAF\nSummary\nSimcenter Nastran is affected by a stack overflow vulnerability that could be triggered when an application binary reads arbitrary string as a file argument. If a user is tricked to run one of the impacted application binary with a malicious string, an attacker could leverage the v…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ics","rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:00:00.000Z","fetchedAt":"2026-08-21T03:00:00.147Z","references":[{"url":"https://www.cisa.gov/news-events/ics-advisories/icsa-26-230-02","label":"CISA Advisory","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-12949","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-12949 — The Wishlist Member plugin for WordPress is vulnerable to Account Takeover via Insufficient Verifica…","description":"The Wishlist Member plugin for WordPress is vulnerable to Account Takeover via Insufficient Verification of Data Authenticity in versions up to and including 3.34.1. This is due to the wpm_register() function validating the registration cookie only against the GET reg parameter while accepting the P…","indicators":{"cves":["CVE-2026-12949"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T06:16:53.237Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://wishlistmember.com/","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/84afe5a7-1bf4-4b83-bf77-efbb003a30cd?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72811","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72811 — SiYuan versions <= v3.7.2 contain a SQL injection vulnerability in the backlink/mention search query…","description":"SiYuan versions <= v3.7.2 contain a SQL injection vulnerability in the backlink/mention search query (kernel/model/backlink.go), which concatenates stored block metadata (title, name, alias, anchor text) and the client-supplied keyword into a SQL MATCH/search statement while escaping only the double…","indicators":{"cves":["CVE-2026-72811"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T12:16:43.903Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-q2vg-7qgx-x5fc","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/siyuan-before-sql-injection-via-backlink-search","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72822","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72822 — The getgrav/grav-plugin-api Composer package before 1.0.13 (affected <= 1.0.12) fails to enforce API…","description":"The getgrav/grav-plugin-api Composer package before 1.0.13 (affected <= 1.0.12) fails to enforce API key scope caps on the disable2fa endpoint. Unlike the sibling generate2fa endpoint, disable2fa authorizes the admin (non-self) path solely via ACL reads (isSuperAdmin/hasPermission) and never invokes…","indicators":{"cves":["CVE-2026-72822"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T12:16:45.267Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-22p9-6fh4-mmf2","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/grav-before-authentication-bypass-via-disable2fa","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-22p9-6fh4-mmf2","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-72823","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72823 — The Grav API plugin (getgrav/grav-plugin-api) before 1.0.13 contains an API-key scope cap bypass in…","description":"The Grav API plugin (getgrav/grav-plugin-api) before 1.0.13 contains an API-key scope cap bypass in DemoController. Its private requireSuper() method checks isSuperAdmin() and returns early before invoking requirePermission(), so the api_key_scopes cap (enforced only in requirePermission()) is skipp…","indicators":{"cves":["CVE-2026-72823","CVE-2026-72824","CVE-2026-72829"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T12:16:45.397Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-vq9w-jwj5-wfjg","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/grav-before-api-key-scope-cap-bypass-via-democontroller","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-96xv-p87j-58mx","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/grav-before-api-key-scope-bypass-via-pagescontroller","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-jrm3-jpp7-3gmx","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/grav-before-api-key-scope-bypass-via-userscontroller","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72826","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72826 — The getgrav/grav-plugin-api plugin before 1.0.13 fails to validate that the scopes of a newly create…","description":"The getgrav/grav-plugin-api plugin before 1.0.13 fails to validate that the scopes of a newly created API key are a subset of the caller's scopes in createApiKey. The self-target path of requireApiKeyPermission() requires only the baseline api.access scope, and the new key's scopes are read directly…","indicators":{"cves":["CVE-2026-72826"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T12:16:45.780Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-95v9-4fcj-96gh","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/grav-before-scope-bypass-via-createapikey","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-95v9-4fcj-96gh","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-72830","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72830 — Grav API plugin versions before 1.0.13 fail to enforce API key scope caps in ConfigController super-…","description":"Grav API plugin versions before 1.0.13 fail to enforce API key scope caps in ConfigController super-scope gates, allowing scoped keys to write scheduler configuration. Attackers with a scoped api.config.write key can inject arbitrary commands into scheduler.custom_jobs that execute via Symfony Proce…","indicators":{"cves":["CVE-2026-72830"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T12:16:46.277Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-2x29-3mjq-2pvx","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/grav-api-plugin-before-rce-via-configcontroller-scope-bypass","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-2x29-3mjq-2pvx","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null}],"items":[{"id":"cisa-kev-CVE-2026-72530","source":"cisa-kev, nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72530 — TrueConf Server Code Injection Vulnerability","description":"TrueConf Server contains a code injection vulnerability that could allow an unauthorized remote attacker with network access via port 4307/TCP to use a specially crafted script to break out of the isolated environment and execute arbitrary code on the host system.","indicators":{"cves":["CVE-2026-72530"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T00:00:00.000Z","fetchedAt":"2026-08-21T03:00:00.192Z","references":[{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-72530","label":"NVD","domainType":"primary"},{"url":"https://ics-cert.kaspersky.com/advisories/2026/08/11/trueconf-server-breakout-from-isolated-environment/","label":"vulnerability@kaspersky.com","domainType":"other"},{"url":"https://securelist.com/tr/head-mare-targets-trueconf-server-with-phantomcore/120988/","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"other"},{"url":"https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-72530","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"cisa-kev-CVE-2026-72529","source":"cisa-kev, nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72529 — TrueConf Server Missing Authentication for Critical Function Vulnerability","description":"TrueConf Server contains a missing authentication for critical function vulnerability which could allow a remote unauthorized attacker with network access via port 4307/TCP to execute an arbitrary script.","indicators":{"cves":["CVE-2026-72529"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T00:00:00.000Z","fetchedAt":"2026-08-21T03:00:00.192Z","references":[{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-72529","label":"NVD","domainType":"primary"},{"url":"https://ics-cert.kaspersky.com/advisories/2026/08/11/trueconf-server-missing-authentication-for-critical-function/","label":"vulnerability@kaspersky.com","domainType":"other"},{"url":"https://securelist.com/tr/head-mare-targets-trueconf-server-with-phantomcore/120988/","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"other"},{"url":"https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-72529","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"cisa-kev-CVE-2026-64849","source":"cisa-kev, nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-64849 — MLflow Server-Side Request Forgery Vulnerability","description":"MLflow contains a server-side request forgery vulnerability that can allow attackers to reach internal or cloud metadata services and receive response_status and response_body.","indicators":{"cves":["CVE-2026-64849","CVE-2026-69146","CVE-2026-69148"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T00:00:00.000Z","fetchedAt":"2026-08-21T03:00:00.192Z","references":[{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-64849","label":"NVD","domainType":"primary"},{"url":"https://github.com/mlflow/mlflow/commit/ba949522477cbd5915aa55d29b0cfad7d5ddf939","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mlflow/mlflow/issues/24179","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mlflow/mlflow/pull/24258","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mlflow/mlflow/releases/tag/v3.15.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mlflow/mlflow/security/advisories/GHSA-7gwp-5pfp-969j","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-64849","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"},{"url":"https://github.com/mlflow/mlflow/commit/5c34aec5669e2386b38b5ee0855cd61174e27693","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mlflow/mlflow/pull/24291","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mlflow/mlflow/security/advisories/GHSA-3p64-6gvh-82v5","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mlflow/mlflow/commit/4bb7474771c3be808cd9e129defef9305f2869be","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mlflow/mlflow/pull/24293","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mlflow/mlflow/security/advisories/GHSA-gqch-g4w5-7qcw","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"cisa-adv-siemens-simcenter-nastran","source":"cisa-advisories, vendor-blogs","category":"advisory","severity":"critical","title":"Siemens Simcenter Nastran","description":"View CSAF\nSummary\nSimcenter Nastran is affected by a stack overflow vulnerability that could be triggered when an application binary reads arbitrary string as a file argument. If a user is tricked to run one of the impacted application binary with a malicious string, an attacker could leverage the v…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ics","rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:00:00.000Z","fetchedAt":"2026-08-21T03:00:00.147Z","references":[{"url":"https://www.cisa.gov/news-events/ics-advisories/icsa-26-230-02","label":"CISA Advisory","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-12949","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-12949 — The Wishlist Member plugin for WordPress is vulnerable to Account Takeover via Insufficient Verifica…","description":"The Wishlist Member plugin for WordPress is vulnerable to Account Takeover via Insufficient Verification of Data Authenticity in versions up to and including 3.34.1. This is due to the wpm_register() function validating the registration cookie only against the GET reg parameter while accepting the P…","indicators":{"cves":["CVE-2026-12949"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T06:16:53.237Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://wishlistmember.com/","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/84afe5a7-1bf4-4b83-bf77-efbb003a30cd?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72811","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72811 — SiYuan versions <= v3.7.2 contain a SQL injection vulnerability in the backlink/mention search query…","description":"SiYuan versions <= v3.7.2 contain a SQL injection vulnerability in the backlink/mention search query (kernel/model/backlink.go), which concatenates stored block metadata (title, name, alias, anchor text) and the client-supplied keyword into a SQL MATCH/search statement while escaping only the double…","indicators":{"cves":["CVE-2026-72811"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T12:16:43.903Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-q2vg-7qgx-x5fc","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/siyuan-before-sql-injection-via-backlink-search","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72822","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72822 — The getgrav/grav-plugin-api Composer package before 1.0.13 (affected <= 1.0.12) fails to enforce API…","description":"The getgrav/grav-plugin-api Composer package before 1.0.13 (affected <= 1.0.12) fails to enforce API key scope caps on the disable2fa endpoint. Unlike the sibling generate2fa endpoint, disable2fa authorizes the admin (non-self) path solely via ACL reads (isSuperAdmin/hasPermission) and never invokes…","indicators":{"cves":["CVE-2026-72822"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T12:16:45.267Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-22p9-6fh4-mmf2","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/grav-before-authentication-bypass-via-disable2fa","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-22p9-6fh4-mmf2","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-72823","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72823 — The Grav API plugin (getgrav/grav-plugin-api) before 1.0.13 contains an API-key scope cap bypass in…","description":"The Grav API plugin (getgrav/grav-plugin-api) before 1.0.13 contains an API-key scope cap bypass in DemoController. Its private requireSuper() method checks isSuperAdmin() and returns early before invoking requirePermission(), so the api_key_scopes cap (enforced only in requirePermission()) is skipp…","indicators":{"cves":["CVE-2026-72823","CVE-2026-72824","CVE-2026-72829"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T12:16:45.397Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-vq9w-jwj5-wfjg","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/grav-before-api-key-scope-cap-bypass-via-democontroller","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-96xv-p87j-58mx","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/grav-before-api-key-scope-bypass-via-pagescontroller","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-jrm3-jpp7-3gmx","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/grav-before-api-key-scope-bypass-via-userscontroller","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72826","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72826 — The getgrav/grav-plugin-api plugin before 1.0.13 fails to validate that the scopes of a newly create…","description":"The getgrav/grav-plugin-api plugin before 1.0.13 fails to validate that the scopes of a newly created API key are a subset of the caller's scopes in createApiKey. The self-target path of requireApiKeyPermission() requires only the baseline api.access scope, and the new key's scopes are read directly…","indicators":{"cves":["CVE-2026-72826"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T12:16:45.780Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-95v9-4fcj-96gh","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/grav-before-scope-bypass-via-createapikey","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-95v9-4fcj-96gh","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-72830","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72830 — Grav API plugin versions before 1.0.13 fail to enforce API key scope caps in ConfigController super-…","description":"Grav API plugin versions before 1.0.13 fail to enforce API key scope caps in ConfigController super-scope gates, allowing scoped keys to write scheduler configuration. Attackers with a scoped api.config.write key can inject arbitrary commands into scheduler.custom_jobs that execute via Symfony Proce…","indicators":{"cves":["CVE-2026-72830"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T12:16:46.277Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-2x29-3mjq-2pvx","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/grav-api-plugin-before-rce-via-configcontroller-scope-bypass","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-2x29-3mjq-2pvx","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-19626","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-19626 — A remote code execution vulnerability exists in Tenable Security Center's report generation function…","description":"A remote code execution vulnerability exists in Tenable Security Center's report generation functionality. An authenticated, non-administrative user could exploit this issue by supplying specially crafted input that is later processed unsafely during server-side report rendering, resulting in arbitr…","indicators":{"cves":["CVE-2026-19626"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T17:17:30.940Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://www.tenable.com/security/tns-2026-22","label":"vulnreport@tenable.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-47766","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-47766 — crun is an open source OCI Container Runtime fully written in C. Prior to version 1.28, crun's defau…","description":"crun is an open source OCI Container Runtime fully written in C. Prior to version 1.28, crun's default device setup opens the container rootfs `/dev` directory without `O_NOFOLLOW`. If an OCI bundle contains `rootfs/dev` as a symlink and the bundle configuration does not mount `/dev`, crun follows t…","indicators":{"cves":["CVE-2026-47766"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T17:18:18.723Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/containers/crun/releases/tag/1.28","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/containers/crun/security/advisories/GHSA-7vwr-4279-7gq5","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-19681","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-19681 — An authenticated command injection vulnerability exists in Security Center related to file upload pr…","description":"An authenticated command injection vulnerability exists in Security Center related to file upload processing. An attacker could exploit this issue by uploading a specially crafted file, potentially resulting in arbitrary command execution on the underlying operating system.","indicators":{"cves":["CVE-2026-19681"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T18:17:23.480Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://www.tenable.com/security/tns-2026-22","label":"vulnreport@tenable.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19682","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-19682 — A command injection vulnerability exists in Security Center where a remote, unauthenticated attacker…","description":"A command injection vulnerability exists in Security Center where a remote, unauthenticated attacker could exploit this issue to execute arbitrary commands on the underlying operating system with the privileges of the service account.","indicators":{"cves":["CVE-2026-19682"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T18:17:23.623Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://www.tenable.com/security/tns-2026-22","label":"vulnreport@tenable.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-48528","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-48528 — Metacat is data repository software that helps researchers preserve, share, and discover data. Metac…","description":"Metacat is data repository software that helps researchers preserve, share, and discover data. Metacat versions 2.0.0 through 3.4.0 contain an unauthenticated SQL injection vulnerability in the `/cn/v1/object` and `/cn/v2/object` REST API endpoints due to unsanitized user input that can be passed th…","indicators":{"cves":["CVE-2026-48528"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T18:17:27.993Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/NCEAS/metacat/security/advisories/GHSA-6g6j-wh5h-77h5","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-73849","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-73849 — Emlog is an open source website building system. In 2.6.26 and earlier, install.php accepts action=r…","description":"Emlog is an open source website building system. In 2.6.26 and earlier, install.php accepts action=reinstall without authentication and deliberately skips the already-installed check because the guard runs only when $act != 'reinstall'. A remote attacker can submit hostname, dbuser, dbpasswd, dbname…","indicators":{"cves":["CVE-2026-73849"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T18:19:09.987Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/emlog/emlog/security/advisories/GHSA-v5qq-p8mp-3gxm","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/emlog/emlog/security/advisories/GHSA-v5qq-p8mp-3gxm","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-19188","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-19188 — A critical OS command injection vulnerability has been identified in the Haiwell IoT Cloud HMI Gatew…","description":"A critical OS command injection vulnerability has been identified in the\n Haiwell IoT Cloud HMI Gateway product. The vulnerability exists in the \nNet Check feature accessible via the /setting endpoint. The cmdPing \nSocket.io event fails to properly sanitize user-supplied input before \npassing it to…","indicators":{"cves":["CVE-2026-19188"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T19:17:17.480Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://en.haiwell.com/app/system/entrance.php?m=include&c=access&a=dodown&lang=en&id=361","label":"ics-cert@hq.dhs.gov","domainType":"other"},{"url":"https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2026/icsa-26-225-02.json","label":"ics-cert@hq.dhs.gov","domainType":"primary"},{"url":"https://www.cisa.gov/news-events/ics-advisories/icsa-26-225-02","label":"ics-cert@hq.dhs.gov","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-49457","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-49457 — erlang_quic is a pure Erlang QUIC implementation. Prior to version 1.4.4, the QUIC client did not au…","description":"erlang_quic is a pure Erlang QUIC implementation. Prior to version 1.4.4, the QUIC client did not authenticate the server during the TLS 1.3 handshake. The CertificateVerify signature was not checked, the certificate chain was not validated, and the hostname was not compared against the certificate,…","indicators":{"cves":["CVE-2026-49457"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T19:17:18.707Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/benoitc/erlang_quic/security/advisories/GHSA-2r8v-p65x-3663","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-50027","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-50027 — mcp-memory-service is a semantic memory layer for AI applications. Prior to 10.67.1, all HTTP routes…","description":"mcp-memory-service is a semantic memory layer for AI applications. Prior to 10.67.1, all HTTP routes under /api/documents/* in mcp-memory-service are served without any authentication dependency, even when the server is configured with an API key (MCP_API_KEY) or OAuth. An unauthenticated remote att…","indicators":{"cves":["CVE-2026-50027"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T19:17:18.843Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/advisories/GHSA-84hp-mqvj-3p8h","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://pypi.org/project/mcp-memory-service","label":"security-advisories@github.com","domainType":"other"},{"url":"https://web.archive.org/web/20260508112116/https://github.com/doobidoo/mcp-memory-service","label":"security-advisories@github.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73678","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-73678 — MindsDB Minds Platform version 26.1.0 and earlier contains an unauthenticated remote code execution…","description":"MindsDB Minds Platform version 26.1.0 and earlier contains an unauthenticated remote code execution vulnerability that allows unauthenticated attackers to execute arbitrary OS commands by submitting crafted prompts to the unprotected POST /api/v1/responses/ endpoint, which reaches the Anton agent's…","indicators":{"cves":["CVE-2026-73678"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T19:18:01.457Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://github.com/mindsdb/minds-platform","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/mindsdb/minds-platform/security/advisories/GHSA-jcxw-h8ph-pxpv","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/mindsdb-minds-platform-unauthenticated-rce-via-scratchpad-exec","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/mindsdb/mindshub/security/advisories/GHSA-jcxw-h8ph-pxpv","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-17181","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-17181 — IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to write files to arbitrary loc…","description":"IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to write files to arbitrary locations due to path traversal.","indicators":{"cves":["CVE-2026-17181"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T20:16:50.777Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283359","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-17182","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-17182 — IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to bypass authentication and ob…","description":"IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to bypass authentication and obtain or alter sensitive information due to improper validation of request URI path segments.","indicators":{"cves":["CVE-2026-17182"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T20:16:50.893Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283359","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-17184","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-17184 — IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to execute arbitrary code due t…","description":"IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to execute arbitrary code due to external control of file name or path.","indicators":{"cves":["CVE-2026-17184"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T20:16:51.010Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283359","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-17186","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-17186 — IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to execute arbitrary CL command…","description":"IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to execute arbitrary CL commands due to improper neutralization of special elements in a command.","indicators":{"cves":["CVE-2026-17186"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T20:16:51.127Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283359","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19909","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-19909 — PAX Technology Q80 AIP File Parsing Link Following Remote Code Execution Vulnerability. This vulnera…","description":"PAX Technology Q80 AIP File Parsing Link Following Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of PAX Technology Q80. Authentication is not required to exploit this vulnerability.\n\nThe specific flaw exi…","indicators":{"cves":["CVE-2026-19909"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T20:16:52.437Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-525/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19910","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-19910 — PAX Technology Q80 Application Installer Signature Verification Bypass Remote Code Execution Vulnera…","description":"PAX Technology Q80 Application Installer Signature Verification Bypass Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of PAX Technology Q80. Authentication is not required to exploit this vulnerability.\n\nT…","indicators":{"cves":["CVE-2026-19910"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T20:16:52.550Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-526/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-14484","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-14484 — The RapiSafe – Secure Multi File Upload for Contact Form 7 plugin for WordPress is vulnerable to arb…","description":"The RapiSafe – Secure Multi File Upload for Contact Form 7 plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the handleAjaxRemoveUpload function in all versions up to, and including, 1.0.4. This makes it possible for unauthenticated attackers t…","indicators":{"cves":["CVE-2026-14484"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T03:16:47.263Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/rapisafe-multi-file-cf7/trunk/src/RSMFCF7_Assets.php#L201","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/rapisafe-multi-file-cf7/trunk/src/RSMFCF7_Assets.php#L235","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/rapisafe-multi-file-cf7/trunk/src/RSMFCF7_Assets.php#L237","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/rapisafe-multi-file-cf7/trunk/src/RSMFCF7_Assets.php#L244","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/rapisafe-multi-file-cf7/trunk/src/RSMFCF7_Assets.php#L264","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/rapisafe-multi-file-cf7/trunk/src/RSMFCF7_Plugin.php#L49","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/49f67bbb-cbd0-40ae-ae00-9cb72b041e22?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15303","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-15303 — The 6Storage Rentals plugin for WordPress is vulnerable to authentication bypass in versions up to,…","description":"The 6Storage Rentals plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 2.27.0. This is due to the six_storage_create_wp_user() AJAX handler being registered on wp_ajax_nopriv_six_storage_create_wp_user without any nonce, capability, credential, or ownershi…","indicators":{"cves":["CVE-2026-15303"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T03:16:47.670Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/6storage-rentals/tags/2.27.0/inc/Base/Six_Storage_DashboardController.php#L14","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/6storage-rentals/tags/2.27.0/inc/Base/Six_Storage_DashboardController.php#L3834","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/6storage-rentals/tags/2.27.0/inc/Base/Six_Storage_DashboardController.php#L3905","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/94e987be-bdfc-4691-b250-2b7d7249df0a?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15341","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-15341 — The User Session Synchronizer plugin for WordPress is vulnerable to Authentication Bypass leading to…","description":"The User Session Synchronizer plugin for WordPress is vulnerable to Authentication Bypass leading to Account Takeover in all versions up to, and including, 1.4.0. The `synchronize_session()` function, hooked on `init` and therefore executed on every request, performs no nonce, capability, or shared-…","indicators":{"cves":["CVE-2026-15341"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T03:16:47.943Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/user-session-synchronizer/tags/1.4.0/includes/class-user-session-synchronizer.php#L117","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/user-session-synchronizer/tags/1.4.0/includes/class-user-session-synchronizer.php#L286","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/user-session-synchronizer/tags/1.4.0/includes/class-user-session-synchronizer.php#L310","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/user-session-synchronizer/tags/1.4.0/includes/class-user-session-synchronizer.php#L422","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/user-session-synchronizer/tags/1.4.0/includes/class-user-session-synchronizer.php#L598","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/user-session-synchronizer/tags/1.4.0/includes/class-user-session-synchronizer.php#L631","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/cbc32e6d-47c5-4050-ba77-5a54203fe56a?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-68457","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-68457 — In the Linux kernel, the following vulnerability has been resolved: ksmbd: use opener credentials fo…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nksmbd: use opener credentials for FSCTL mutations\n\nSET_SPARSE, SET_ZERO_DATA and SET_COMPRESSION operate on an open SMB\nhandle but call VFS xattr, fallocate or fileattr helpers with the current\nksmbd worker credentials. Those helpe…","indicators":{"cves":["CVE-2026-68457"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:17:48.460Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://git.kernel.org/stable/c/1e112c47ec5dd1942e2d4ca6e8e9b712238e20c2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a8c18434e1f0d9f7989170bdb0490c0160baf065","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c6394bcaf254c5baf9aff43376020be5db6d3316","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cfb2c6f71d61ed807c9d7a7af331d406f1f31877","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e205f3e7e8c31a47cd11efb6cf663a527177e432","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fb1cae6302d58414ddf029e3f642711bd30243f7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-68476","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-68476 — In the Linux kernel, the following vulnerability has been resolved: ipvs: reload ip header after hea…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nipvs: reload ip header after head reallocation\n\n__ip_vs_get_out_rt() calls skb_ensure_writable() which may\nreallocate skb->head.","indicators":{"cves":["CVE-2026-68476"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:20:41.387Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://git.kernel.org/stable/c/3fb7edd2018bb1ad0a68157383d9b9dac33dd645","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a2f57827bf7c695b8c72dc4511cae8e86582369d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ac6ac3d35bfc0ade9d17d354c84e503a946ebdab","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ad1e14710b360bda087ebf9fb82460eb5ef775de","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e51687fc56c2e39ea6e9532925f1aabd4d529f61","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-68477","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-68477 — In the Linux kernel, the following vulnerability has been resolved: ipvs: fix more places with wrong…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nipvs: fix more places with wrong ipv6 transport offsets\n\nSashiko reports for more incorrect IPv6 transport offsets.\n\nThe app code for TCP was assuming IPv4 network header\neven after the ipvsh argument was provided. This can\ncause p…","indicators":{"cves":["CVE-2026-68477"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:20:47.440Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://git.kernel.org/stable/c/3a9dc9b55b53d94613a587604b77d3b20024090c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/613ce63711b8d431bba90781f133c39a21684f87","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7350eb7ead172ae8024897d4b0f2e15c5318279c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/905d7a363ade96a19f214815361e11981142c547","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/95d4511d81b2b37e5d2bdde5d912e48243eae517","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a3f0d5b605cd5da5c95279969fb8cea4e55cee5b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b3fe4cbd583895987935a9bdad01c8f9d3a02310","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d4ec18f48ce78a3bf7c999ac908691007375fe99","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72014","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72014 — In the Linux kernel, the following vulnerability has been resolved: drbd: reject data replies with a…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrbd: reject data replies with an out-of-range payload size\n\nrecv_dless_read() receives a P_DATA_REPLY from a peer into the bio of an\noutstanding read request. The peer-supplied payload length reaches it as\nthe signed int data_size…","indicators":{"cves":["CVE-2026-72014"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:00.173Z","fetchedAt":"2026-08-21T03:01:29.055Z","references":[{"url":"https://git.kernel.org/stable/c/38cc4867540ae8beedfe41a1a1a6ed37052c77d6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5f59a8142000f0b8f75c432209ead73c424a745d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/648d4317326e6aa3f8c05cbf0fd14cc2eba6ca99","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/741a682535deffe9ab7e5c89caf83571efbc9dd9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bca33f5442c3094511719d9db792ce3165d87e76","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bd910a7660d280595ef94cb6d193951d855d330f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f14e87d7b166490bceb9603b39310e51595d05b9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f16866c62656865854106b79bcf6e4ca97a51a92","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72020","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72020 — In the Linux kernel, the following vulnerability has been resolved: ipvs: reset full ip_vs_seq struc…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nipvs: reset full ip_vs_seq structs in ip_vs_conn_new\n\nCommit 9a05475cebdd (\"ipvs: avoid kmem_cache_zalloc in\nip_vs_conn_new\") changed ip_vs_conn_new() to allocate an ip_vs_conn\nobject with kmem_cache_alloc().  The function then ini…","indicators":{"cves":["CVE-2026-72020"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:00.920Z","fetchedAt":"2026-08-21T03:01:29.055Z","references":[{"url":"https://git.kernel.org/stable/c/2975324d164c552b028632f107b567302863b7f6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/32c299e28b8eea6cbbd23b97dc61401e9ef9c445","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3bf9a260188b2a5449cbddc032a749ab433fe328","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6335ab62d5fc9ed875279238233fba3462c168f5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6378c5cb360eb1750f88839d7c3613ea92ac1816","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/83fb4c2c5344f02eac929f66de3c9d1adfcde04c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9e36602cbec552286f7e691cfd366525c565ee74","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d0eed7177e822cab83141e5c44b2aa345c7fd379","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72033","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72033 — In the Linux kernel, the following vulnerability has been resolved: orangefs: keep the readdir entry…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\norangefs: keep the readdir entry size 64-bit in fill_from_part()\n\nfill_from_part() computes the size of a directory entry in size_t but\nstores it in a __u32. An entry length near U32_MAX wraps it to a small\nvalue, bypasses the boun…","indicators":{"cves":["CVE-2026-72033"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:12.247Z","fetchedAt":"2026-08-21T03:01:29.055Z","references":[{"url":"https://git.kernel.org/stable/c/07c05601a9a8e5d4481b2a4a16dc0e3c5bc63ad9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1679780f482feeb82acb5995587d4fb1d1fe82fd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/18227a6bc98bd0ba96ed3ce9d5b28776a5a28dfc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/36723b28e3293047f087f4501f1ef4ead418dd84","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/82fc886e244c76fadf05ef1958aaf8815478ccde","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a72bbb43689591c9d36e3bb45c2d4e688cf92682","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e3d325c0bdb7bc5d1b4cc8d8441d79794cd03729","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fdf06a1b66ff39664b01c6bb6a2aa98d81e8ebe1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72041","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72041 — In the Linux kernel, the following vulnerability has been resolved: espintcp: use sk_msg_free_partia…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nespintcp: use sk_msg_free_partial to fix partial send\n\nsk_msg_free_partial() ensures consistency of the skmsg at every\niteration, without having to manually handle uncharges and offsets.\nThis simplifies the code, and fixes some bug…","indicators":{"cves":["CVE-2026-72041"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:13.257Z","fetchedAt":"2026-08-21T03:01:29.055Z","references":[{"url":"https://git.kernel.org/stable/c/007800408002d871f5699bdb944f985896730b8f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/14c0b42c8a2cd9b5361bbff45b52f69c62c6a286","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/54d73f18f8919735f4d04d6f43374f75756c0180","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a338ce41bc933d8f74c39d9b3b6f1d8ca53d9714","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a66d45e0ce6d73cd79962d422388e61bfaf0cb50","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72046","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72046 — In the Linux kernel, the following vulnerability has been resolved: gve: fix header buffer corruptio…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ngve: fix header buffer corruption with header-split and HW-GRO\n\nThe DQO RX datapath programs a per-buffer-queue-descriptor\nheader_buf_addr at post time and reads the split header back at\ncompletion time. Both the post and the read…","indicators":{"cves":["CVE-2026-72046"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:13.810Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/35267819b25074084130b6a7be18bbaf44d3ae74","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/84d3753d4bf284ef770ead6dee2270aaabb3ef41","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9f8e7f59b0c2f466be74bd923726b0f5496c27ad","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d676c9a73bdcd8237425dbb826f2bd1a25c36e40","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72064","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72064 — In the Linux kernel, the following vulnerability has been resolved: net: mana: Sync page pool RX fra…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: mana: Sync page pool RX frags for CPU\n\nMANA allocates RX buffers from page pool fragments when frag_count is\ngreater than 1. In that case the buffers remain DMA mapped by page pool\nand the RX completion path does not call dma_…","indicators":{"cves":["CVE-2026-72064"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:16.003Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/bc650dd5ce6434286b96e2b26a41af81f679cc7c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c72a0f09c57f92113df69f9b902d11c9e4b132f5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72065","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72065 — In the Linux kernel, the following vulnerability has been resolved: net: mana: Validate the packet l…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: mana: Validate the packet length reported by the NIC\n\nValidate the packet length reported in the RX CQE before passing it\nto skb processing. The CQE is supplied by the NIC device and should\nnot be blindly trusted.","indicators":{"cves":["CVE-2026-72065"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:16.100Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/282c5214ca4eb3799158c76782646e86d2945d1b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2e276b14b6d378372bf0152df89286cbe7632fb0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2e2a83b4998af4384e677d3b2ac08565274279bf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6080189291d958604dcefe513a13900835ac982f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6d13eaa13341a8f80aaf86f78591e1b1d393711d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72069","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72069 — In the Linux kernel, the following vulnerability has been resolved: locking/rt: Fix the incorrect RC…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nlocking/rt: Fix the incorrect RCU protection in rt_spin_unlock()\n\nrt_spin_unlock() releases the RCU protection before unlocking the\nlock. That opens the door for the following UAF scenario:\n\n T1\t\t\t\t\tT2\n spin_lock(&p->lock);\t\trcu_re…","indicators":{"cves":["CVE-2026-72069"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:16.607Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/1f0d56d3f1e88f20f6e46109402f8c15d59bac37","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3cfaac77b3c32ac3940df28866de263c3f45d24c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/633cadbc0b8323f5cc140a285d2432089dbb534e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/83f9fb561c1c3917e19f95523dd933c7d30291aa","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/89038cc87d80c77e7aa6f42a64b2573b74af339f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72083","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72083 — In the Linux kernel, the following vulnerability has been resolved: scsi: target: core: Fix iSCSI IS…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nscsi: target: core: Fix iSCSI ISID use-after-free in REGISTER AND MOVE\n\ncore_scsi3_emulate_pro_register_and_move() maps the PERSISTENT RESERVE OUT\nparameter list with transport_kmap_data_sg() and parses the destination\nTransportID…","indicators":{"cves":["CVE-2026-72083"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:20.167Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/05b3e37433cf2eaf8867f1c16528aa347bb212ab","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/59a2a5a37dc49a641ad6bc64aee34e5a61025ffd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7d56f5c868d92c9d504a34a3ea450bce481c7f63","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9f8076cc73dfa6b10155978c160587e986b22169","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a040004846f1fbe687f6ec76d9ccc27b4ead42e4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cb7bdae7fba404852ade34b0c1445fbaf3e54fbb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ef2ee18fec92088c7d8877baf7674e89389ccd66","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fda6a1f3c3d7047b5ce5654487649c2daa738bfc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72084","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72084 — In the Linux kernel, the following vulnerability has been resolved: scsi: target: Bound PR-OUT Trans…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nscsi: target: Bound PR-OUT TransportID parsing to the received buffer\n\ncore_scsi3_decode_spec_i_port() and core_scsi3_emulate_register_and_move()\nhand the raw PERSISTENT RESERVE OUT parameter buffer to\ntarget_parse_pr_out_transport…","indicators":{"cves":["CVE-2026-72084"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:22.333Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/004ccd2d3b4ac36a300e05e01df152e5c02a5a82","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/03fbc7de8d5e85fc8420e57e8304c855efd453ab","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/555a89846ed888d7401b3f7200934c0fbedcbb46","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6ca5de8782e67573a61a6736b6dc0ffe58dcdf59","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/842248047ef28dbf3b3f7f49a0ec315054d4dab8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9298078a8f7d8181a04614a34ab655ccdf038204","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d04a179085c262c9ed577d0a4cbc6482ff1fd9a3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72085","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72085 — In the Linux kernel, the following vulnerability has been resolved: scsi: xen: scsiback: Free unsubm…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nscsi: xen: scsiback: Free unsubmitted command instead of double-putting it\n\nscsiback_get_pend_req() obtains a command tag and returns a vscsibk_pend\nwhose embedded se_cmd has only been memset to 0, so its cmd_kref is 0;\nthe se_cmd…","indicators":{"cves":["CVE-2026-72085"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:22.470Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/1e97c404e44991fb087c38ccd7414f2d326f9b74","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9c0f6894982b1f13bda220707497b25ac9c95bdb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a13b789497a7fdd27d4d63f5c69d23db706ef0fe","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ca978f8a93d4d36841839bf2847d29b88c2591d6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f1516c56ac540da1769f264c3cfefe4499548a5d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fa588f28401102652068c4cc75e135507f4b5106","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fcd64d4d97af5d9736f31040f8ed8cd4c17e4c45","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72098","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72098 — In the Linux kernel, the following vulnerability has been resolved: dm-verity: fix buffer overflow i…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndm-verity: fix buffer overflow in FEC calculation\n\nThere's a buffer overflow in dm-verity-fec:\n\nif (neras && *neras <= v->fec->roots)\n\tfio->erasures[(*neras)++] = i;\n\nThis allows *neras to reach roots + 1 (the post-increment pushes…","indicators":{"cves":["CVE-2026-72098"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:23.897Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/31d6e6c0ba8d5a7bd59660035a089307100c5e8e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5488d3a69d205e28f74f18857b853aa12e778e66","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f7990c2b0f08b8841fcd2652d1d7002f5994a7a7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72129","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72129 — In the Linux kernel, the following vulnerability has been resolved: nvmet-rdma: handle inline data w…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnvmet-rdma: handle inline data with a nonzero offset\n\nnvmet_rdma_use_inline_sg() maps the host-controlled inline data offset\ninto the per-command inline scatterlist.  The bounds check admits any\noffset with off + len <= inline_data…","indicators":{"cves":["CVE-2026-72129"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:30.320Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/11401371152b228448a41d79c6de1c938f93049a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2944113ad5fbcdf5d349d857c03d2a44b6de75b8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/42a8ea3acd883f4f210d9e54e0975b1e2292b529","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/48c0162f647bb47e6084ffbc71b8f213f5e2f4f8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7c96581169c9d9a7d0726e554313acfbead6141c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/98bcdfa619150b2f41fa15bac140dbaf2584ad05","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bf8bcc1c137d54a62a428b00051fdbb13660673b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c2106ba1b14d644a5203bea1a50dbe25dcad713c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72130","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72130 — In the Linux kernel, the following vulnerability has been resolved: nvmet-auth: reject short AUTH_RE…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnvmet-auth: reject short AUTH_RECEIVE buffers\n\nnvmet_execute_auth_receive() trusts the AUTH_RECEIVE allocation length\nafter checking only that it is nonzero and matches the transfer length.\nIn the SUCCESS1 and FAILURE1/default stat…","indicators":{"cves":["CVE-2026-72130"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:30.453Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/2eaa3ad450141cfcf187bb43cb8335eb336b5f87","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/779575bc35c687697ba69e904f2cd22e60112534","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/80bf7b7f676e3987bbe06af3c359bd56ac91a5a9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bc111698b46e43eddd8664cceaa621cd559e99a0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72137","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72137 — In the Linux kernel, the following vulnerability has been resolved: xfrm: nat_keepalive: avoid doubl…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nxfrm: nat_keepalive: avoid double free on send error\n\nnat_keepalive_send() frees the keepalive skb whenever the IPv4 or IPv6\nsend helper reports an error.\n\nThat cleanup is only correct before the skb is handed to the output\npath. O…","indicators":{"cves":["CVE-2026-72137"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:31.223Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/226f4a490d1a938fc838d8f8c46a4eca864c0d78","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5b0c4c916f202b8fd13d12afb6af62b385622f81","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a8a7e6a9ff8a4c1f067694ddbd44be67fdf36693","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d0a4dc7efa825bce60a8da8f7d43c864a159abde","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72139","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72139 — In the Linux kernel, the following vulnerability has been resolved: tcp: defer md5sig_info kfree pas…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ntcp: defer md5sig_info kfree past RCU grace period in tcp_connect\n\nThe md5+ao reconciliation in tcp_connect() (net/ipv4/tcp_output.c)\nhas two symmetric branches:\n\n\tif (needs_md5) {\n\t\ttcp_ao_destroy_sock(sk, false);\n\t} else if (need…","indicators":{"cves":["CVE-2026-72139"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:31.460Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/33a1bee413628378fd036a4f2b17ba86b0bc560c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b74cd55038905d5e74c1de109ab78a30b2ea0e1f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/da48b9bf1eb95a9cfd09d615ca58cfc2b03de369","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72185","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72185 — In the Linux kernel, the following vulnerability has been resolved: ntfs: fix WARN_ON for resident a…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nntfs: fix WARN_ON for resident attribute in ntfs_map_runlist_nolock()\n\nWhen ntfs_map_runlist_nolock() needs to look up the attribute extent\ncontaining a target VCN (ctx_needs_reset == true), it calls\nntfs_attr_lookup() and then exp…","indicators":{"cves":["CVE-2026-72185"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:36.870Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/b397b1238a217264bb02f963a1a1eadf71906375","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b8d6c528e9d57d263fee1a648409f84a68b2561d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72186","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72186 — In the Linux kernel, the following vulnerability has been resolved: ntfs: make system files immutabl…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nntfs: make system files immutable to prevent corruption\n\nWhen a system file such as $Bitmap is exposed via show_sys_files and\nwritten from userspace, the volume is corrupted and, because the cluster\nallocator scans $Bitmap through…","indicators":{"cves":["CVE-2026-72186"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:36.973Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/8f313e92522ac41d273ea137db13ea8a8df2beed","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f72df3a4c33b64de3418ec74d1ad4f028e09d161","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72188","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72188 — In the Linux kernel, the following vulnerability has been resolved: ntfs: sanitize MFT references re…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nntfs: sanitize MFT references returned from ntfs_lookup_inode_by_name()\n\nntfs_lookup_inode_by_name() returns MFT references read from directory\nindex entries on disk. These values are untrusted, but the function can\ncurrently retur…","indicators":{"cves":["CVE-2026-72188"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:37.197Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/83f396d881c4fd312c7fd5fff2c157fc21104464","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d97a36bae86a9a4021562ded2987f904e6bcb1d7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72191","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72191 — In the Linux kernel, the following vulnerability has been resolved: ntfs3: validate split-point offs…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nntfs3: validate split-point offset in indx_insert_into_buffer\n\nindx_insert_into_buffer() computes\n\n    used = used1 - to_copy - sp_size;\n    memmove(de_t, Add2Ptr(sp, sp_size), used - le32_to_cpu(hdr1->de_off));\n\nwhere sp and sp_si…","indicators":{"cves":["CVE-2026-72191"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:37.537Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/1758a564b6ebe7f4a82f23c9851d1cae15549457","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7bf74e6baf810fe325f111996496c678fc6e244f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b232eb5c9fe11ec2368e9b565db69c724c35fbd2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f1df9d771df47aa40de6d70949c28720ae1e430d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f3624cc069195001c88df7a291af215f2133ff2c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72192","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72192 — In the Linux kernel, the following vulnerability has been resolved: ntfs3: bound to_move in indx_ins…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nntfs3: bound to_move in indx_insert_into_root before hdr_insert_head\n\nindx_insert_into_root() promotes a full resident $INDEX_ROOT into\n$INDEX_ALLOCATION and copies all non-last resident root entries into\na newly allocated INDEX_BU…","indicators":{"cves":["CVE-2026-72192"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:37.663Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/0af83b8155cc848e9f5d2c36e20a70d024214649","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/194b00c99ba971fa7cf6acd747a36032c6de54eb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/53c5f3b2da3774b41534728aba295c098c9efa19","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9b6926ac9c970ae0b2c2fe6289b16e9aa10b6a67","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/aaa1f956c0fc41089a4a534da7df91552a08a47c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cb3161deebcaf8d36d3115abf452c633f2180fc1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d240f5f9d036b8180224954d9873f172b6be4dd8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72193","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72193 — In the Linux kernel, the following vulnerability has been resolved: ntfs3: cap RESTART_TABLE free-ch…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nntfs3: cap RESTART_TABLE free-chain walker at rt->used\n\nA crafted NTFS3 disk image triggers an in-kernel infinite loop at\nmount time, hanging the mounting thread and firing the soft-lockup\nwatchdog within ~22s on multi-CPU hosts (p…","indicators":{"cves":["CVE-2026-72193"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:37.797Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/0fad25687d4d3fa1fdd313d31b9cb5817c425029","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/29b86dbe88cbbef53bb9aaec2e279359f8c450f8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7972df425687daa70d971fe6ed415e78683133dd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7ac4c86915c24c208a0f0611b71d9676686fe756","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8128bec895075253c779d67afdc90ae513265fca","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9611f644302c07d21bc8af97e3e06a3d30064253","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d313416280d41bea272f02a6034dfa88008692a0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72194","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72194 — In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: add depth limit to ind…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nfs/ntfs3: add depth limit to indx_find_buffer to prevent stack overflow\n\nindx_find_buffer() recursively descends the B+ tree index with no depth\nlimit.  A crafted NTFS image with circular index node references causes\nunbounded recu…","indicators":{"cves":["CVE-2026-72194"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:37.943Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/1ebd684b8f627f75bc3e03f8b2ad8400fd1f02cd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/65357a81f64cb3fbe13b4b937586755e4b3a072f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/78612f478f9fadcec4f9b3b089970da67ffb47e9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/908c9243ba309997b73cbda3e4c563d0fb345ee9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/96fb64f9da86fd2dbd78fbe9d9e41ae27e12ce34","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/99031d4f63c785d2a985b6a4c64c4256f7117052","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fdf50c788e0991e42a187ff75479a0df7fb752f1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72199","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72199 — In the Linux kernel, the following vulnerability has been resolved: ntfs: validate resident index ro…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nntfs: validate resident index root values on lookup\n\nResident $INDEX_ROOT values carry index header fields that callers\nconsume after lookup. Some callers already validate parts of the layout\nbefore walking entries, but those check…","indicators":{"cves":["CVE-2026-72199"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:38.533Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/bfb01dd319b6b4c3e79756de7b75ccf0b9a0a247","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fcf5bf0e8570798970e3ae8c95d04765ba2c5b97","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72200","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72200 — In the Linux kernel, the following vulnerability has been resolved: ntfs: detect mapping-pairs LCN a…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nntfs: detect mapping-pairs LCN accumulator overflow\n\nThe NTFS mapping-pairs parser accumulates relative LCN deltas in a\nsigned integer.  A corrupted attribute can drive that addition past\nthe representable range.\n\nOne corrupt runli…","indicators":{"cves":["CVE-2026-72200"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:38.640Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/7fb64788812d137b37f6d8724e1e41c624c1e814","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7ffa8f3d30236e0ab897c30bdb01224ff1fe1c89","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ec4f061f2219e0f0c6465d56d0380bf749235a53","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72201","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72201 — In the Linux kernel, the following vulnerability has been resolved: ntfs: validate index entries on…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nntfs: validate index entries on reading\n\nValidate index entries immediately after reading an index root or index\nblock from disk. This eliminates repeated checks in lookup and readdir,\nand reduce the risk of missing checks in those…","indicators":{"cves":["CVE-2026-72201"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:38.747Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/2221b691d7b2e17f08153f95848dacaa5d87e21d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e2b95d3adb558ddd5685f9e072ec8661d57ee3a9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72206","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72206 — In the Linux kernel, the following vulnerability has been resolved: ntfs: validate index block heade…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nntfs: validate index block header more strictly\n\nModify ntfs_index_block_inconsisent() to perform stricter validation of\nINDEX_HEADER geometry in INDX blocks, and update\nntfs_lookup_inode_by_name() to use that function to validate…","indicators":{"cves":["CVE-2026-72206"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:39.307Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/14bc34fe948523dc2b0174691f9af9e74eb4f3fd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/34a49b3e94a50f45b62c6e6f574f676a079ba23e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72207","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72207 — In the Linux kernel, the following vulnerability has been resolved: ntfs: not change 0-byte $DATA at…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nntfs: not change 0-byte $DATA attribute to non-resident\n\nWhen ntfs_resident_attr_resize() cannot grow a resident attribute in\nplace, it retries after converting other resident attributes to\nnon-resident to free space in the MFT rec…","indicators":{"cves":["CVE-2026-72207"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:39.417Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/0aad21570197973af4a1b25b3fb8ed3aeb9e7670","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ceb49c37250125d418410988f2376ed4d57a6706","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72208","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72208 — In the Linux kernel, the following vulnerability has been resolved: ntfs: add bounds check before ac…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nntfs: add bounds check before accessing EA entries\n\nin ntfs_ea_lookup and ntfs_listxattr, this verifies that there is enough\nspace in the EA entry before accessing the next_entry_offset field of\nthe EA entry.","indicators":{"cves":["CVE-2026-72208"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:39.510Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/937282f7d15b593d0be765fa2ced164130ec87f7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d9d9925de1d8f233cc60d3dc356e12f232f97c15","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72209","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72209 — In the Linux kernel, the following vulnerability has been resolved: ntfs: validate attribute values…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nntfs: validate attribute values on lookup\n\nntfs_attr_find() and ntfs_external_attr_find() check that generic\nresident attribute values fit in their attribute records and that\nfixed-size resident values are large enough. For variabl…","indicators":{"cves":["CVE-2026-72209"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:39.607Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/d5803e3345dae9c6470bb61869885236276b9a35","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e4c36dfac57a7261e9aeb0f3a7f30944a8aefb56","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72210","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72210 — In the Linux kernel, the following vulnerability has been resolved: ntfs: fix off-by-one in mapping…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nntfs: fix off-by-one in mapping pairs decoding bounds checks\n\nIn ntfs_mapping_pairs_decompress(), attr_end points one byte past the\nend of the attribute record:\n\n    attr_end = (u8 *)attr + le32_to_cpu(attr->length);\n\nThe two bound…","indicators":{"cves":["CVE-2026-72210"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:39.713Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/18760a74ef7c28df93726445b5595162e62ed341","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bfe835e535fe0aa5767fdd8116f62e835ba50b55","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72211","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72211 — In the Linux kernel, the following vulnerability has been resolved: ntfs: grow index root value befo…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nntfs: grow index root value before reparent header update\n\nntfs_ir_reparent() moves the resident index root entries into an index\nblock and leaves a small root stub containing the child VCN. That root\nstub can be larger than the ex…","indicators":{"cves":["CVE-2026-72211"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:39.803Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/0bb508fb3b97e4802ec727fd2af4d608f65dd190","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/38d444271604afc6381ddb5a181e391915c35fae","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72217","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72217 — In the Linux kernel, the following vulnerability has been resolved: SUNRPC: Bound-check xdr_buf_to_b…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nSUNRPC: Bound-check xdr_buf_to_bvec() stores before writing\n\nxdr_buf_to_bvec() writes a bio_vec into the caller's array before\ntesting whether that slot is in range, and the head branch performs\nthe store with no check at all. When…","indicators":{"cves":["CVE-2026-72217"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:40.493Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/42f5b80dda6b86e424054baf1475df686c403d5c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4a1148f2739d5089c3ca8ae2e9d1053e219ab5df","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6029e711a818bf34d6c4b90cafee24f3afffa110","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/69e18135e2a004a79505451dbef07314ea16e1eb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/98414b42530af65cb984ffc12685096a3b5e179a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72220","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72220 — In the Linux kernel, the following vulnerability has been resolved: sunrpc: harden rq_procinfo lifec…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nsunrpc: harden rq_procinfo lifecycle to prevent double-free\n\nThe svc_release_rqst() function executes the callback inside\nrqstp->rq_procinfo->pc_release. However, if a worker thread begins\nprocessing a new request and encounters an…","indicators":{"cves":["CVE-2026-72220"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:40.883Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/18d216788bef06332ff8901670ecf1ed8f6eb614","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/31ba490c02d476a5e4f90b8845932ac9db8aa71b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/66014ab165cb01bfef5836939412a8ef98d5d5ff","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72221","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72221 — In the Linux kernel, the following vulnerability has been resolved: sunrpc: wait for in-flight TLS h…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nsunrpc: wait for in-flight TLS handshake callback when cancel loses race\n\nWhen wait_for_completion_interruptible_timeout() in\nsvc_tcp_handshake() returns 0 (timeout) or -ERESTARTSYS (signal) and\ntls_handshake_cancel() then returns…","indicators":{"cves":["CVE-2026-72221"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:40.990Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/0d8ceb39884148dc7a2fdf71e1cac5961ed1d2b9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/65b23bec1fca6e9ebdc3e6041ebf8c6ab074141b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a4f878e8ecd729ccf2e50993444e217583adeace","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d00e32f84ca1a77cb67a3fbf59f58dada95f5a21","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e0f4691d42a54d359d8b64509fd9ab938d4f2a33","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72222","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72222 — In the Linux kernel, the following vulnerability has been resolved: sunrpc: pin svc_xprt across the…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nsunrpc: pin svc_xprt across the asynchronous TLS handshake callback\n\nsvc_tcp_handshake() stores the raw svc_xprt pointer in\ntls_handshake_args.ta_data and submits the request through\ntls_server_hello_x509(). The handshake core take…","indicators":{"cves":["CVE-2026-72222"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:41.120Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/083e9c2ec7e8bb13b79c9fd7b337abdd758ecc5f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2d4f97d13fff91e0bc539216be88b884b544d49f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3f9ee75a97a769be258784c22b89657acb5ed9bd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4f988f3a2808fb659f3880c282041ff067acad78","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f3b55945dd99f29d83e1965d0141040a35262346","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72226","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72226 — In the Linux kernel, the following vulnerability has been resolved: batman-adv: tt: prevent TVLV OOB…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbatman-adv: tt: prevent TVLV OOB check overflow\n\nA TT unicast TVLV contains the number of VLANs stored in it. This number is\nan u16 and gets multiplied by the size of the struct\nbatadv_tvlv_tt_vlan_data (8 bytes). The size can ther…","indicators":{"cves":["CVE-2026-72226"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:49.383Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/0de12a4c4847f571d82a9cd96bc633eded41d7c6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1898273c5dc8148267ef9f97cd2517a2822350e7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3256c05d5a9db34346eaf20f52dddde984852d77","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/604bd5042fbcd1ab9f7cd98fd847ec017aeede8a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6222b443686525cb5a9b6a9cecf23b2e2ab23e2a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7319c0794f91be2734aac695794e7203606b49f8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7a581d9aaba8c82bd6177fa36b2588eea77f6e2b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d6ff4764ff784ede25f5c83a6f5883a74c93a5ea","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72234","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72234 — In the Linux kernel, the following vulnerability has been resolved: batman-adv: access unicast_ttvn…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbatman-adv: access unicast_ttvn skb->data only after skb realloc\n\nThe pskb_may_pull() called by batadv_get_vid() could reallocate the buffer\nbehind the skb. Variables which were pointing to the old buffer need to be\nreassigned to a…","indicators":{"cves":["CVE-2026-72234"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:50.390Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/7141990add3f75436f2933cb310654cad3b1e3e9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7b162b36de750565404cd3b98315706622c6974f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/979175834a699ccc3c4c0b0ba60ecae0f135a587","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9a7b7248798123efbd5fafe58461d57c7cc718af","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9c2c05629e46c1fd43931506d41c56a885a98eb4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/aa9558af859934f24717d4bab97d61004f91a736","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b8afcf799b2cc92c41beebd029e53ed18960184a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ed90eb5c68420cdfe67ec1f773324198d2ef6f50","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72239","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72239 — In the Linux kernel, the following vulnerability has been resolved: x86/virt/sev: Revert \"Drop WBINV…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nx86/virt/sev: Revert \"Drop WBINVD before setting MSR_AMD64_SYSCFG_SNP_EN\"\n\nRevert\n\n  99cf1fb58e68 (\"x86/virt/sev: Drop WBINVD before setting MSR_AMD64_SYSCFG_SNP_EN\").\n\nSection 8.8 of the SNP spec says:\n\n  Before invoking SNP_INIT_…","indicators":{"cves":["CVE-2026-72239"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:50.970Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/4c2509f3b79756679a02bea649c6a7501b58f52c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e5158ff53fdff9c229bf13aa5f75eb17cdcfcd2d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72248","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72248 — In the Linux kernel, the following vulnerability has been resolved: netfilter: flowtable: support IP…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: flowtable: support IPIP tunnel with direct xmit\n\nThe combination of IPIP tunnel with direct xmit, eg. bridge device,\nbreaks because no dst_entry is provided to check the skb headroom and to\nset the iph->frag_off field. T…","indicators":{"cves":["CVE-2026-72248"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:52.030Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/0880c4ed122d0cddc9f29a2b28f055d1f24f0fca","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fa7395c02d95e51bad2952325d2d6503bfbad437","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72249","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72249 — In the Linux kernel, the following vulnerability has been resolved: netfilter: flowtable: use dst in…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: flowtable: use dst in this direction when pushing IPIP header\n\nWhen pushing the IPIP header, the route of the other direction is used\nto calculate the headroom, use the route in this direction. Accessing\nthe other tuple…","indicators":{"cves":["CVE-2026-72249"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:52.150Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/c328b90c17fc5fa7786503695152880b2afb9326","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ecb78fbb03d3f86e2e93767875e273308086a424","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72251","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72251 — In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_nat_sip: reload po…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: nf_nat_sip: reload possible stale data pointer\n\nquoting sashiko:\n ------------------------------------------------------------------------\n [..] noticed a potential memory bug and header corruption involving the\n SIP NAT…","indicators":{"cves":["CVE-2026-72251"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:52.393Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/0e76e3e886cc9ee027337d5ad39cb96f57b7bdc7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2bcf2c5052fb5e73e255140ab43f056aef409c27","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/57e4e29644ec054d7021d296407e7ddd844afea2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/77e43bcb7ec177e293a5c3f1b91a2c5aebfb6c68","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bded21a4bf9bf86a79148be735723a97ca9a7532","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dc11f26685aa850f237226f0f463647aea58ab7c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e38143c9b477f2968024c47c647dd4456a40aff1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/eae9c6ccb5af69c713a65f8ae219f5c1aa32cd17","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72277","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72277 — In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: nv: Inject SEA if gu…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nKVM: arm64: nv: Inject SEA if guest VNCR isn't normal memory\n\nWhen constructing an L1 VNCR mapping, KVM unconditionally uses cacheable\nmemory attributes, even if the underlying PFN isn't memory. This gets\nparticularly hairy if the…","indicators":{"cves":["CVE-2026-72277"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:57.750Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/4bd7dbe0b2243e6aa735cae4d5e1ff988b30b2a6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bc00e0e376ee3572f5d26c174473abef1e35decc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d5436e18e4fc2886ac306304d884ea3b92e1edbf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72278","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72278 — In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: nv: Re-translate VNC…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nKVM: arm64: nv: Re-translate VNCR before injecting abort\n\nKVM faults in the VNCR page with FOLL_WRITE whenever the guest aborts\nfor a write, similar to how a regular stage-2 mapping is handled. It is\nentirely possible that the gues…","indicators":{"cves":["CVE-2026-72278"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:57.927Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/0a5dd8cf4d58ea28da132c2097cd1c525302ac48","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bb645aa0a4caeaf7f9cd32e9a948594d434c1a8f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ea7a76d7d614b5f82b4d0785f9af3550e860a71a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72279","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72279 — In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: nv: Respect read-onl…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nKVM: arm64: nv: Respect read-only PFN when mapping L1 VNCR\n\nKVM currently maps the L1 VNCR into the host stage-1 by relying entirely\non the permissions of the guest stage-1. At the same time, it is\nentirely possible that the backin…","indicators":{"cves":["CVE-2026-72279"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:58.077Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/2684e02bac41c5220f6c1ab2bdcc957b71812977","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5c50db5bcbb9073cb2fd97be51b962de92f429e9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d35defbdfcb15296ebe28968ad7452c1a8c11cea","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72288","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72288 — In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: vgic: Handle race be…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nKVM: arm64: vgic: Handle race between interrupt affinity change and LPI disabling\n\nHyunwoo Kim reports some really bad races should the following\nsituation occur:\n\n- LPI-I is pending in vcpu-B's AP list\n- vcpu-A writes to vcpu-B's…","indicators":{"cves":["CVE-2026-72288"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:00.450Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/7258770e5814f15e8308ebda82ac9acf6964ba8e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b1a89d12d35a8256d2b170ced0b1c86851f3def2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d19dca8194ebed371e624331c6be2cb73b562caf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72289","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72289 — In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: vgic: Check the inte…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nKVM: arm64: vgic: Check the interrupt is still ours before migrating it\n\nvgic_prune_ap_list() drops both ap_list_lock and irq_lock while migrating\nan interrupt to another vCPU. After reacquiring the locks it only checks\nthat the af…","indicators":{"cves":["CVE-2026-72289"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:00.630Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/0074b82cdfcb5fd13710a0ac308ade68ac6f6fbe","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/0658b09cba7fe866c6cd70cd2dcdfdcabe80328f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3893e1fcf6f306b327a8358dcd1cbd077989a240","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/654be81c4c637af12709d47c7efc3302cd336513","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/79fdd2aa774e44847cd9bb7edc811e73e3dc7bfe","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cb3efe1a354f1638726725c3ecee1ce8d1a7e2dc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/da2d249a39a1881681c303ceea33f38ba1c5bbeb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e363c0bc0226dc5ea5046a88e9a6864b82c45399","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72291","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72291 — In the Linux kernel, the following vulnerability has been resolved: KVM: s390: Fix unlikely race in…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nKVM: s390: Fix unlikely race in try_get_locked_pte()\n\nFix an unlikely race in try_get_locked_pte(), which could have happened\nif puds or pmds get unmapped between the p?dp_get() and p?d_offset()\nfunctions.","indicators":{"cves":["CVE-2026-72291"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:01.130Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/5670b7f927f8d98685f3f5873dbf9f8d7a5a63f3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ce587046baacdeb774b7756ab29b3f594e429004","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72296","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72296 — In the Linux kernel, the following vulnerability has been resolved: net: ife: require ETH_HLEN to be…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: ife: require ETH_HLEN to be pullable in ife_decode()\n\nife decode may return after making only the outer IFE header and\nmetadata pullable. The caller then passes the decapsulated packet to\neth_type_trans(), which expects the in…","indicators":{"cves":["CVE-2026-72296"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:02.160Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/1cb42ec10294a55380e52e674b3df2b962648242","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5526d1997aea6c9bd865ca4d4894b52e799d735c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/70013f9163bef7fbd9fa62f81cf91b2a7ba66163","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8c8818e52fddb247ff3214622401a4de6ff8482e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9406f6012b7343661efb516a11c62d4db2b62f75","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9433578bff9c100c466a6354574892e55293cb8f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b69ad768cd4a2ef4e07c18492ae85438ed17c7cb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/be272e159dfe1207b67332ad6e17adcf59b4ea4b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72299","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72299 — In the Linux kernel, the following vulnerability has been resolved: tipc: restrict socket queue dump…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ntipc: restrict socket queue dumps in enqueue tracepoints\n\ntipc_sk_enqueue() runs with sk->sk_lock.slock held while the socket is\nowned by user context. The spinlock protects the backlog queue in this\npath, but it does not serialize…","indicators":{"cves":["CVE-2026-72299"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:02.567Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/12876864f9de5fa6f611a30c6c17e405a773bf0a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/61a55fa24a5d737436018764a647fe5b6cb36371","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6acbbe54215d5f4251593000cff2bf51d6748713","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/acd7df8d955480a6f6e5bb809da67b1500cc3cf4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b9e100815f4b55e9ccaf6af9a3aba173eb13d381","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72313","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72313 — In the Linux kernel, the following vulnerability has been resolved: drm/fb-helper: Only consider act…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/fb-helper: Only consider active CRTCs for vblank sync\n\nOnly synchronize fbdev output to the vblank of an active CRTC. Go over\nthe list of CRTCs and pick the first that matches. Fixes warnings as\nthe one shown below\n\n[   77.2013…","indicators":{"cves":["CVE-2026-72313"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:04.123Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/06c2b8d7ea2bcb014dd974fc3bc6d128d65d7477","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7d84acf641afb68aa8efe40815ef43779ddb12fd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72317","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72317 — In the Linux kernel, the following vulnerability has been resolved: SUNRPC: pin upper rpc_clnt acros…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nSUNRPC: pin upper rpc_clnt across the TLS connect_worker\n\nThe TLS connect path has a use-after-free: nothing pins the\nupper rpc_clnt across the delayed connect_worker. xs_connect()\nstores task->tk_client in sock_xprt::clnt as a raw…","indicators":{"cves":["CVE-2026-72317"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:04.620Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/46bc86c833956219bbfd246c1ffd832a479c5199","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5b0427ba582d143a364301f825f4e32272f06d2d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/79cd550f8c884523b604fbfa43eb02def74d6224","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7a65b41b657b71d5a77861f47dd13eb4bc8e10d0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d49f6d098ed48775b9d27a9f9c5c220fdf76f102","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72318","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72318 — In the Linux kernel, the following vulnerability has been resolved: cifs: validate DFS referral stri…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncifs: validate DFS referral string offsets\n\nparse_dfs_referrals() validates that the response header and referral\narray fit in the received buffer, but each referral also contains string\noffsets supplied by the server.\n\nThose offse…","indicators":{"cves":["CVE-2026-72318"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:04.737Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/027a84ac6b50c12ef767c15abfc58aa865820e9e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/76c607b9353d377b1d1b11db50e743eee0ccf658","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/929a85932d14190988f1eafd6ee8cc68d66ace0b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b784cd1c24d89bf71be2efe1e948ff7c03371e57","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c37abc99bb3de3d3219ecef253d649f74117fd83","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d64b6be5740ce230aca184d8d224c75d9866045d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72319","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72319 — In the Linux kernel, the following vulnerability has been resolved: ipvs: ensure inner headers in IC…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nipvs: ensure inner headers in ICMP errors are in headroom\n\nSashiko points out that after stripping the outer headers\nwith pskb_pull() we should ensure the inner IP headers\nin ICMP errors from tunnels are present in the skb headroom…","indicators":{"cves":["CVE-2026-72319"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:04.857Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/19657b3a17b774ae4e2f2635b5ae8638c9344a40","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3f7a535ff0fa627a0132803e4c2f903ceffcbc1c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8f48cfe657409fb5c7ba0521b14da6d47546d9cf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/92185d6f7819bc558939ae83de7b1abe90e3b5c2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9bc9b95aee2b2e3f1301a16a67ee504960402875","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a735f9964a3d9ed97daf9b08507f8b5bcafe6326","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dac813101914c21219ac221a60a31a11bc90e7ec","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dd22f74a09e25ca298ced0a3763ef353242cb78d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72320","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72320 — In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_lookup: fix catch…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: nft_lookup: fix catchall element handling with inverted lookups\n\nnft_lookup_eval() decides whether a lookup matched (`found`) from the\ndirect set lookup and priv->invert before falling back to the\ncatchall element used b…","indicators":{"cves":["CVE-2026-72320"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:04.993Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/0ab8880865f9678eb6174e72c1fc4712e44c745c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/238c612357b5a25f03eacf356f95034f8551f218","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e6107a4c74b54cb33e3bce162a63048ae5a6b198","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ef0c7d4b04a0e6ad175323c24bc84e11470dd79d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72322","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72322 — In the Linux kernel, the following vulnerability has been resolved: ipv6: mcast: Fix potential UAF i…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nipv6: mcast: Fix potential UAF in MLD delayed work\n\nA race condition exists between device teardown and incoming MLD query\nprocessing, leading to a Use-After-Free in the MLD delayed work.\n\nDuring device destruction, the primary ref…","indicators":{"cves":["CVE-2026-72322"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:05.207Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/0401d6cf7877c9be36652385dfcbf7f891b8b590","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/0458ba1cda830ba4ccfcd9e19c0891438bcdbe4e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9815e834f5ff8b39e0ea9f0dbd532f4a3b8f0785","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9b26518b6896a16b809b1e42986f4ebac7bccc1e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9ce741c22df4fd9546e30306317ac7df3607e48f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ebbebf6cee950d7f1c81990256c0eae9e62572ae","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f03b0a45535d49bdab7e502efaacee205b2a7865","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f12b63ef26a035c5a29b3ef56401e38199010d4a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72323","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72323 — In the Linux kernel, the following vulnerability has been resolved: ipv4: igmp: Fix potential UAF in…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nipv4: igmp: Fix potential UAF in igmp_gq_start_timer()\n\nA race condition exists between device teardown (inetdev_destroy) and\nincoming IGMP query processing (igmp_rcv), leading to a Use-After-Free\nin the IGMP timer callback.\n\nDurin…","indicators":{"cves":["CVE-2026-72323"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:05.333Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/165258303357e54b75fc19b341ae2a2b7c9e3910","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/40a1e998cb266ed4cb529a0bb4fee2b0ba732702","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/75e984fe0cb9e7fbde0c8ee838c61ce8573d3ea3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7b19c0f81ed1fdaec6bc522569be367199a9edf3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8d4394ffa40508e0de72f464af351f6ca6a6cdc3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72329","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72329 — In the Linux kernel, the following vulnerability has been resolved: net/liquidio: drop cached VF pci…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet/liquidio: drop cached VF pci_dev LUT\n\nThe PF SR-IOV enable path caches VF pci_dev pointers in\ndpiring_to_vfpcidev_lut[] by iterating with pci_get_device(). Those\nentries do not own a reference, because the iterator drops the pr…","indicators":{"cves":["CVE-2026-72329"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:05.980Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/5c0e3ba4f500fd4314ceb42f07f16bc445156431","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/81acef3a247fd523513a2e9f71de1c167bc0f882","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72339","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72339 — In the Linux kernel, the following vulnerability has been resolved: qede: fix off-by-one in BD ring…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nqede: fix off-by-one in BD ring consumption on build_skb failure\n\nqede_rx_build_skb() and qede_tpa_rx_build_skb() do not check for a\nNULL return from qede_build_skb(). When it returns NULL under memory\npressure, the functions still…","indicators":{"cves":["CVE-2026-72339"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:07.150Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/07be8b8adf91b7ada4c3dacce064d572a6066421","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/0bf78df2d3ecb1f4964ff42a7327d25845955153","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1624aa100c0b218181aa74e3696a389b509298cb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/814a5edac8c9fc04051808d5faaa93768e989281","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/982d6d6bc059c5dff37a2201c2f08c14bcfcbd20","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a0a558ca7e75b49e71f8c545c30e8c005e6e4e2f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b066420e57f3402a52c998678b4678252ac9bb63","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ecc05d4b20220a09c9c69584fc46ca55248a374a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72348","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72348 — In the Linux kernel, the following vulnerability has been resolved: netfilter: ip6tables: mark malfo…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: ip6tables: mark malformed IPv6 extension headers for hotdrop\n\nThe ah, hbh and rt matches check that the fixed extension header is\npresent, then use the header length field to derive the advertised\nextension header length…","indicators":{"cves":["CVE-2026-72348"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:08.177Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/2fd89a50a9783eed8ed23866b11c8b3d8779a7a8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3578b6d92a5b1e603ae6e8c8f5538a709f03aba4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3d441be2b1c5e98167302fa1c7b61960a067b112","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/43ccc20b5a733226417832cf16ef45322e594990","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d5e39e5eb6b30bc4a3bb7aba54c293cf36a806c7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f16d856b6af5fd0e7cb0b0212f70825b599ef72e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f775fcf384b06f35b612f78fa5601fee99eb6513","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fc416870100cf16d5b9495199355a679c3a02d48","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72351","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72351 — In the Linux kernel, the following vulnerability has been resolved: gue: validate REMCSUM private op…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ngue: validate REMCSUM private option length\n\nGUE private flags can indicate that remote checksum offload metadata is\npresent. The private flags field itself is accounted for by\nguehdr_flags_len(), but guehdr_priv_flags_len() curren…","indicators":{"cves":["CVE-2026-72351"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:08.520Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/158b9995d3c87f3b93f5c22df54a12e12a3438b3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2a99224c120823987e4d829726f4ecb33e03fc1e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2c4de9988e9ddc760b750d6b6e701c35ff60ad14","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4a4a1d41c6e901e773bcf795f562a47fa71f692a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/61e78679c7c9ca685bff58e4b6348304dc60aafd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7c6876ec1b227261b51803f784c7be1b2242a1a0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d335dcc6f521571d57117b8deeebc940836e5450","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f618cbe9b24cd0202004d2db781d5f80ab77037f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72355","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72355 — In the Linux kernel, the following vulnerability has been resolved: netfs: Fix barriering when walki…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfs: Fix barriering when walking subrequest list\n\nFix the barriering used when walking the subrequest list in retry as\nthere's a possibility of seeing a subreq that's just been added by the\napplication thread.","indicators":{"cves":["CVE-2026-72355"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:08.960Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/5c6ce05e406520290c1d89da97fb3cd70c09137d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/be47c047250671c9225c0319ca4695be9b391c59","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72366","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72366 — In the Linux kernel, the following vulnerability has been resolved: netfs: Fix netfs_create_write_re…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfs: Fix netfs_create_write_req() to handle async cache object creation\n\nnetfs_create_write_req() will skip caching if the fscache cookie is\ndisabled, but this is a problem because async cache object creation might\nnot have got f…","indicators":{"cves":["CVE-2026-72366"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:10.017Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/1188a9846fadeacf9d1430b528e5217f749d665b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8ab75e445c161c4cb504aa98e20ce1dd1ecd8e9a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dbd6f56d975b23241b7bbb11bb8f562af548a0aa","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72381","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72381 — In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free of fp-…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nksmbd: fix use-after-free of fp->owner.name in durable handle owner check\n\nTwo concurrent SMB2 durable reconnects (DH2C/DHnC) on the same\npersistent_id race the fp->owner.name compare-read in\nksmbd_vfs_compare_durable_owner() again…","indicators":{"cves":["CVE-2026-72381"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:11.587Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/38637163501fd9e2f684b8cd275d0db5d79f37c6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5a5ac2852cd326529d02f778bc1aa6184701f4d7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/93d4d46bf9d442a12ea87278049ec416962c627f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ed98719be41389d416953b8ef9f07a07dfea6b2b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fb978d72052704c6b06c6b0f129fcd60b77169f5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72393","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72393 — In the Linux kernel, the following vulnerability has been resolved: eth: fbnic: don't cache shinfo a…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\neth: fbnic: don't cache shinfo across skb realloc\n\nfbnic_tx_lso() calls skb_cow_head() which may reallocate the skb\nincluding the shared info. We can't use the pointer calculated\nbefore the call.\n\n    BUG: KASAN: slab-use-after-fre…","indicators":{"cves":["CVE-2026-72393"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:12.847Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/21f304c2aae46625e050c28d979f4b9d83faa85e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/62b68b774f06bf52e329f254f0199bc43d350ccf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/83df3e2594cd78aa40b1246a19879abb4891945b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72398","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72398 — In the Linux kernel, the following vulnerability has been resolved: sctp: add INIT verification afte…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nsctp: add INIT verification after cookie unpacking\n\nIn SCTP handshake, the INIT chunk is initially processed by the server\nand embedded into the cookie carried in INIT-ACK. The client then\nreturns this cookie via COOKIE-ECHO, where…","indicators":{"cves":["CVE-2026-72398"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:13.363Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/062bcbf8d1f1051fdeb20b94920031b0e2cb95a2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/414c5447fe6a200613dd46d7fdc8454622076cb1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bca3100f550281c2f2418652338bced3b35af0e6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72399","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72399 — In the Linux kernel, the following vulnerability has been resolved: net: enetc: check the number of…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: enetc: check the number of BDs needed for xdp_frame\n\nThe size of xdp_redirect_arr array is ENETC_MAX_SKB_FRAGS. However, the\nnumber of fragments contained in xdp_frame may be greater than or equal\nto ENETC_MAX_SKB_FRAGS, which…","indicators":{"cves":["CVE-2026-72399"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:13.460Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/1681cc7974a6123f5d5740b03bc11e4784bd2542","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1ecb199b0e6d12ab6c26c0b7edf1a8f4472d9aed","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/555c5475e787802eeae0d2b91c2f66c330db2767","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cfbc6e9b84dcc0aa2d65c84ea4745af327763209","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d22829101ab675607ad6c3d420fb3ab875f46bbb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f55276160ffad3e235b657ee4b7304eb99b90e5c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72407","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72407 — In the Linux kernel, the following vulnerability has been resolved: geneve: validate inner network o…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ngeneve: validate inner network offset in geneve_gro_complete()\n\nEven with both paths gated on gs->gro_hint, geneve_gro_complete()\nre-derives the inner dispatch type and length from the packet and the\ncurrent gs->gro_hint, independe…","indicators":{"cves":["CVE-2026-72407"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:14.300Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/cbb0d30a1ad6fc9439b1dc9b4f5a7a9140d3b11f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e2087447f562692ff0cd08a0554d8d4ad083aa5c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72408","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72408 — In the Linux kernel, the following vulnerability has been resolved: geneve: gate GRO hint in geneve_…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ngeneve: gate GRO hint in geneve_gro_complete() on gs->gro_hint\n\ngeneve_gro_receive() reads the GRO hint through geneve_sk_gro_hint_off(),\nwhich honours it only when the socket enabled IFLA_GENEVE_GRO_HINT\n(gs->gro_hint). geneve_gro…","indicators":{"cves":["CVE-2026-72408"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:14.397Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/2651c174445884ac9e85622aeade9c1f7b98d8e5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/49c2e7c0a69999a75ef5eaebe1559a20d0b3c15a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72412","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72412 — In the Linux kernel, the following vulnerability has been resolved: s390/mm: Fix handling of _PAGE_U…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ns390/mm: Fix handling of _PAGE_UNUSED pte bit\n\nThe _PAGE_UNUSED softbit should not really be lying around. Its sole\npurpose is to signal to try_to_unmap_one() and try_to_migrate_one()\nthat the page can be discarded instead of being…","indicators":{"cves":["CVE-2026-72412"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:14.817Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/d4bb00704a66024502261fa7a523c07420249fea","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fda07c8e4b54b9105f1ca73f0adea7b244d405f4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72417","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72417 — In the Linux kernel, the following vulnerability has been resolved: netfilter: flowtable: Validate i…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: flowtable: Validate iph->ihl in nf_flow_ip4_tunnel_proto()\n\nAdd sanity check for iph->ihl field in nf_flow_ip4_tunnel_proto() before\nusing it to compute the header size, avoiding out-of-bounds access with\nmalformed IP he…","indicators":{"cves":["CVE-2026-72417"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:15.323Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/025a41e76b51fbc7b8eaa5bacbaa9621d00e6aa7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/84460b644329e25809b4a6d9279d6359d7fd8ebc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72421","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72421 — In the Linux kernel, the following vulnerability has been resolved: ipv4: fib: Don't ignore error ro…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nipv4: fib: Don't ignore error route in local/main tables.\n\nWhen CONFIG_IP_MULTIPLE_TABLES is enabled but no rule is added,\nfib_lookup() performs route lookup directly on two tables.\n\nSince the first lookup does not properly bail ou…","indicators":{"cves":["CVE-2026-72421"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:15.867Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/49eaf1403201357762d745a35882fb734107d763","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5ae18d87a45698e8244d0fcba64c658c35a7dd3d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/828fad4fd418bcdb9f5d66fec0d184c52a85ec31","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9127589aabdee588278e8d0d0bd3709a760a92c8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a29e95fbc51e8a1b932773fd0e259b2080881443","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a668fa160247d7bbe921548cb845f607b8b9305f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b72f0db64205d9ce462038ba995d5d31eff32dc1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fd25996f57a95d56bc568c89b4921edcf334b7d8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72422","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72422 — In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free of con…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nksmbd: fix use-after-free of conn->preauth_info in concurrent SMB2 NEGOTIATE\n\nconn->preauth_info is shared connection state (struct\npreauth_integrity_info, kmalloc-96) that is allocated and freed by the\nSMB2 NEGOTIATE handler and r…","indicators":{"cves":["CVE-2026-72422"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:15.987Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/0c054227479ed7e36ebccb3a558bc0ef698264f6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/16a1ecf39c217e3d164bd32ef2a4f650abc067fa","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1c89da3baa2b1f269178afa87dc30479b8535776","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7470511d085af1c7a043a60e53d52b512d5a10b1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/77bb0bbfcc4e777ca653174689e5e363f8ee63d1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c7bef84740d1d57848c74f6f5b996606e43ea4fe","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d0a469122e7bf8338fec1949fb1e8e1290ed8caa","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72429","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72429 — In the Linux kernel, the following vulnerability has been resolved: ipv6: ioam: fix type confusion o…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nipv6: ioam: fix type confusion of dst_entry\n\nIOAM uses a dummy dst_entry(null_dst) to mark that the destination should\nnot be changed after the transformation. This dst is stored in the IOAM lwt\nstate and may be passed to dst_cache…","indicators":{"cves":["CVE-2026-72429"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:16.770Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/5a3b2ee1e96d0580a8ed8deda6dfa430604f9ab0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9ed19e11d2146076d117d51a940643990118449b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ea24f911ead85ba3d570a31e37c52b6c949f6928","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72436","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72436 — In the Linux kernel, the following vulnerability has been resolved: netfilter: ipset: Don't use test…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: ipset: Don't use test_bit() in lockless RCU readers in hash types\n\nSashiko pointed out that there are a few lockless RCU readers\nusing test_bit() which is a relaxed atomic operation and\nprovides no memory barrier guarant…","indicators":{"cves":["CVE-2026-72436"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:17.453Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/3219d74e4536658c937fd878a327257b86ce80dd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6329d3a9afe715fddda0460cfa46b496d61c2fe0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7445fe965b7d8756070a40e80f8b73348ccda1d7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c107233d2ff4fd7cef5d02f9124b99194957a710","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c4d257734e91bfcdc71d41843392dd6400b5bb1b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e4b4984e28c16406ecb318444dea4a8bf47def3e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72442","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72442 — In the Linux kernel, the following vulnerability has been resolved: netfilter: flowtable: fix and si…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: flowtable: fix and simplify IP6IP6 tunnel handling\n\nFix nf_flow_ip6_tunnel_proto() to use pskb_may_pull() instead of\nskb_header_pointer() to ensure the outer IPv6 header is in the skb\nheadroom, which is required for subs…","indicators":{"cves":["CVE-2026-72442"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:18.063Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/7f8d816a9aa2729d270418f00c9ef5e85bfc1b31","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f4c2d8668d85ed125985da663c824a9c25498257","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72451","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72451 — In the Linux kernel, the following vulnerability has been resolved: xfrm: Fix xfrm state cache inser…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nxfrm: Fix xfrm state cache insertion race\n\nThe xfrm input state cache insertion code checks the validity of\nthe state before acquiring the global xfrm_state_lock.  Thus it's\npossible for someone else to kill the state after it pass…","indicators":{"cves":["CVE-2026-72451"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:19.087Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/041859fd55c81ea55e76d051e39b7b79975b8c7d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6dab4dec9a49121d079981ac913569f232c06b06","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a1a3360a0c44b8b5c134db2a9d0667b61c9cf523","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ddd3d0132920319ac426e12456013eadbae67e15","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72463","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72463 — In the Linux kernel, the following vulnerability has been resolved: xfrm: Fix dev use-after-free in…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nxfrm: Fix dev use-after-free in xfrm async resumption\n\nxfrm async resumption hold skb->dev refcnt until after transport_finish.\nHowever, xfrm_rcv_cb may modify skb->dev to tunnel dev without taking\ndevice reference, such as vti_rcv…","indicators":{"cves":["CVE-2026-72463"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:20.303Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/63a30015199912bd5055bead8001b1ae68a67cdb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8045c0df98d4f14c54e5cb875f1c9c0ce89fe4ff","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72466","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72466 — In the Linux kernel, the following vulnerability has been resolved: xprtrdma: Fix bcall rep leak and…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nxprtrdma: Fix bcall rep leak and unbounded peek\n\nrpcrdma_is_bcall() decodes a reply's first words to decide whether\nthe frame is a backchannel call. Two issues in that decode path\nlet a short or malformed reply leak the receive buf…","indicators":{"cves":["CVE-2026-72466"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:20.637Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/07aa506436be7634e381e1e1f6d0efa9efc81ecc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/0cee8f9c3b14bd6dee9c4310090a7f45b89b834f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/118a16a18c59f7ad8084b2d13988839b669fca10","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7afc2f8d2fd9394724df9eaf22ce7a71029a5fba","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/88b5346284a184a6b7d019912232a571d672d3e3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c7653d5cebc8492c77ec0415b5e9c0fb3e644bc6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d7a2870dde3bb09d51d6b9c877642996ad6b92dd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72472","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72472 — In the Linux kernel, the following vulnerability has been resolved: nfs: use nfsi->rwsem to protect…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnfs: use nfsi->rwsem to protect traversal of the file lock list\n\nLingfeng identified a bug and suggested two solutions, but both appear\nto have issues.\n\nGenerally, we cannot release flc_lock while iterating over the file lock\nlist…","indicators":{"cves":["CVE-2026-72472"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:21.313Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/1cda95bf2e9c0e6b63545b7565fe4a1e474322f4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4837fb36219e6c08b666bc31a86841bad8526358","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e68035178e65e2b3aa386ce61202ff33724ae418","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f161ef7b0dd2f51fdb002ba4a4e9bf0ee7409218","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72473","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72473 — In the Linux kernel, the following vulnerability has been resolved: xprtrdma: Decouple req recycling…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nxprtrdma: Decouple req recycling from RPC completion\n\nrl_kref formerly served two distinct lifetimes through a single\nrefcount: it gated when a Reply could wake its RPC task, and it\ngated when an rpcrdma_req could return to its fre…","indicators":{"cves":["CVE-2026-72473"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:21.423Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/53442c7d0c888e51b8bc3da196970a669cc6b294","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/740975054a1970c0cf15f70ac39724a064f45847","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8203f760a72bd39a3b66bc4eff0aa272a99fe22b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9f3d9b68c1c6c51746e5ecdb52b2e6a2901de37e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e7632089523acddcdd8f090ad19e96fb3107b04d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e786233d2e0bbff9a82e43f02ae3a46ab4b08ec3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72477","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72477 — In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: call _ntfs_bad_inode()…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nfs/ntfs3: call _ntfs_bad_inode() when failing to rename\n\nIt is safe to call _ntfs_bad_inode on live inodes since:\n  commit 519b078998ce (\"fs/ntfs3: Exclude call make_bad_inode for live nodes.\")\n\nThe WARN_ON was added when it wasn't…","indicators":{"cves":["CVE-2026-72477"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:21.867Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/e8ed78f40eecd0176fda71d673f6957c98e7ffbe","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ff825bf0521f6da2f30878cbad18ab7b341bc31b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72491","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72491 — In the Linux kernel, the following vulnerability has been resolved: net/9p: fix race condition on rd…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet/9p: fix race condition on rdma->state in trans_rdma.c\n\nThe rdma->state field is modified without holding req_lock in both\nrecv_done() and p9_cm_event_handler(), while rdma_request() accesses\nthe same field under the req_lock sp…","indicators":{"cves":["CVE-2026-72491"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:23.400Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/13bf9879b778b2f4b260b45bed18f31806120d1e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/151f8cf5b23d8a534d884432a82a6d54d5a61989","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3970a19a80de530b801b6256354d4a529a9a2d6c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4cee2b8766045059d5e0b8114837b4a8efe827ac","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5424138848eb7d7d8a7196676e90a2cbf2142454","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7d54894a1ee265a72d70f7cae1da6cc774cccc71","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8aadc136d8e8d8fc95d7982d213cfe2234dfcf2b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ebbcbe5c0db215feecc17def06178da443f4eea6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72493","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72493 — In the Linux kernel, the following vulnerability has been resolved: net: serialize netif_running() c…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: serialize netif_running() check in enqueue_to_backlog()\n\nSyzbot reported a KASAN slab-use-after-free in fib_rules_lookup().\n\nThe root cause is a race condition where packets can escape the backlog\nflushing during device unregi…","indicators":{"cves":["CVE-2026-72493"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:23.643Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/2fface6e0bbd6314d1d9d071abf2c4d67548511c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/46762cefe7f4e5bffc1eb467810a7bbb02e461d7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72494","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72494 — In the Linux kernel, the following vulnerability has been resolved: RDMA/irdma: Replace waitqueue an…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nRDMA/irdma: Replace waitqueue and flag with completion\n\nThe driver previously used a waitqueue along with an explicit\nrequest_done flag, but without proper barriers around request_done.\n\nAn earlier patch by Gui-Dong Han <hanguidong…","indicators":{"cves":["CVE-2026-72494"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:23.747Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/bde37aed0724c0139dea177f3aae8d989b6babb1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d9c8c45e6d2f438a3c8e643ae78b59454fa0fadd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72495","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72495 — In the Linux kernel, the following vulnerability has been resolved: RDMA/bnxt_re: Avoid repeated req…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nRDMA/bnxt_re: Avoid repeated requests to allocate WC pages\n\nApplications can request multiple WC pages for the same ucontext.\nAs of now, only 1 WC page per ucontext is supported. Add a lock to\navoid concurrent access and a check to…","indicators":{"cves":["CVE-2026-72495"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:23.840Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/441baa79043431807115fd030d7d0bb14ed441a0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/478c4d24193fe3e6aa2accd4874ae43000e4a217","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/da406b8b49c1dfe661a497483940d7ee781430db","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72496","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72496 — In the Linux kernel, the following vulnerability has been resolved: RDMA/bnxt_re: Proper rollback if…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nRDMA/bnxt_re: Proper rollback if the ioremap fails\n\nbnxt_qplib_alloc_dpi returns success even if ioremap fails.\nAdd the proper rollback when the ioremap fails and return\n-ENOMEM status.","indicators":{"cves":["CVE-2026-72496"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:23.940Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/303f6fef95df5e5316970746d861cf6daeeca77f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/87267803a8c824616eb147c5dad7030a5db6f878","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72498","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72498 — In the Linux kernel, the following vulnerability has been resolved: RDMA/bnxt_re: Avoid displaying t…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nRDMA/bnxt_re: Avoid displaying the kernel pointer\n\nWhile dumping the info on MR using the rdma tool, we\ndump the mr_hwq which is a kernel pointer. There is\nno need to expose this value for end user. So avoid\nit.","indicators":{"cves":["CVE-2026-72498"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:24.127Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/0c403e0786768d88cabe0ccf4e45425da2fd8841","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7d70c704a06f620d5d421ab76bac5e225bfb4308","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/95d46a8d3ba9fdbe356fe7ed0117bc78dac9d557","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74255","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74255 — In the Linux kernel, the following vulnerability has been resolved: tipc: fix UAF in tipc_l2_send_ms…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ntipc: fix UAF in tipc_l2_send_msg()\n\nSyzbot reported a slab-use-after-free in ipvlan_hard_header() when\ncalled from tipc_l2_send_msg().\n\nThe root cause is that tipc_disable_l2_media() calls synchronize_net()\nwhile b->media_ptr is s…","indicators":{"cves":["CVE-2026-74255"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:24.627Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/0d8a12d7143126afdf9fbe2e3d438650dd6603ed","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/35e0297a93c3c34a3924eeef816c03504e3ab5c5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/50ff092633b06382e5091dd5b093ce943d4ac2f9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/609ced2301be1df7e7ed2ef47d1d916674e6ba3b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/71aafa16d79b107b33837f60b6cbc7d0cb8c5708","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/aef12b5ce793dea6b3a97a58fd0f946000ae8945","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f4002f1c669cc02e3763f479fc25ff1dfa9e2420","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f4c3d89fc986b0da196ddfc6cfe0ea5d5d08bec6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74267","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74267 — In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_codel: Do not cal…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet/sched: sch_codel: Do not call qdisc_tree_reduce_backlog during peek before restoring qlen\n\nWhenever codel drops packets during peek, it calls\nqdisc_tree_reduce_backlog. An issue arises because it calls\nqdisc_tree_reduce_backlog…","indicators":{"cves":["CVE-2026-74267"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:26.030Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/52f1da34c9f4d5bdc1e8b44242da5c7ba8db85f3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/755108bb7a5083e911294c416cfea605dc75632f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7a05af7f58566682b73578b72ca8e53a268c43bd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/91e0a793a72374c20ab31a40ccec21373e82e973","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bb9cfd874ee884117b33e92a002b9a45b48202f4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e4615aa6bb7802944ae790cb4b3ef8c1b7491af3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e8c6dbadf139cb14ea6ed14add6ed6e88504dedd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/eba49fd85995a3851c597fa2d214f8d21736e1d8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74268","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74268 — In the Linux kernel, the following vulnerability has been resolved: tcp: clear sock_ops cb flags bef…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ntcp: clear sock_ops cb flags before force-closing a child socket\n\nA child socket inherits the listener's bpf_sock_ops_cb_flags via\nsk_clone_lock(). If its setup fails in tcp_v4_syn_recv_sock() /\ntcp_v6_syn_recv_sock(), the child is…","indicators":{"cves":["CVE-2026-74268"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:26.183Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/8874dafc9099bc49c2e5ebba030f85d276421f92","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/990348e5bb457697c2f1f7f7b65154a3334d9d2b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ce311bd2e36596f0aa2c92ca86fb3e019ac57eae","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74269","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74269 — In the Linux kernel, the following vulnerability has been resolved: bnxt: fix head underflow on XDP…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbnxt: fix head underflow on XDP head-grow\n\nThe xdp.py test test_xdp_native_adjst_head_grow_data crashes when run on\na bnxt machine (and also crashes in NIPA).\n\nIt seems that the bug is an underflow in bnxt_rx_multi_page_skb, which…","indicators":{"cves":["CVE-2026-74269"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:26.280Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/bb72b1c6755631c74b7e0878ee55bb81c06776c0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e26657fe3b85c068b01f42bb0c602f242d643ba9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74279","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74279 — In the Linux kernel, the following vulnerability has been resolved: crypto: cavium/cpt - fix DMA cle…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncrypto: cavium/cpt - fix DMA cleanup using wrong loop index\n\nThe sg_cleanup error path used list[i] instead of list[j] when unmapping\nDMA buffers, leaking successfully mapped entries and repeatedly unmapping\nthe failed one.","indicators":{"cves":["CVE-2026-74279"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:27.317Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/23c6174e48f66fc10b998b0acdb406cb0caf5c80","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/23d3a7e896a1fe2d7a6bcb42f093948b79f8a198","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/28141f95ae93b18f9bfde953cb787fcb151fb9da","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3b8a1e1f4e4071a62b20374028744e8cc8310d48","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8afd1007ef79898a6e010eaade97097e49405fce","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9dbf173bd32d5f81b005008b682bfb50aa093455","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d319b83b97b3585550d9ae592dfa78c755b6129e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fb4d57b83356d4bd411b45ede3024e0ff42c9b5e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74280","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74280 — In the Linux kernel, the following vulnerability has been resolved: crypto: marvell/octeontx - fix D…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncrypto: marvell/octeontx - fix DMA cleanup using wrong loop index\n\nThe sg_cleanup path used list[i] instead of list[j] when unmapping DMA\nbuffers, leaking successfully mapped entries and repeatedly unmapping\nthe failed one.","indicators":{"cves":["CVE-2026-74280"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:27.430Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/5f99a396f706afc749448659d1565991330e4f71","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6c721a3e43344f8560ee4ef506fc1f72b4646dcd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7891c64c0520519782470ba29bac8a5761e295d8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8a0db9fad3c97e6447a92417cb95d7c55eaa9530","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8d301e5a51173ba56ce4f632a2a33bf6b14b0fcf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/97f150ba3e372256eabb93bd80c2cf3740077fb5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/acff30cfc0d72465b51b0bfdf019f1cb54e15314","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ed374dbc70c10c4a864414b3d9c257faec8fd485","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74287","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74287 — In the Linux kernel, the following vulnerability has been resolved: sctp: validate embedded address…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nsctp: validate embedded address parameter length\n\nsctp_verify_asconf() and sctp_verify_param() only validate ADD_IP, DEL_IP,\nand SET_PRIMARY parameters against a fixed minimum size of sizeof(struct\nsctp_addip_param) + sizeof(struct…","indicators":{"cves":["CVE-2026-74287"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:28.220Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/06c8bf48505f2fef265931db82d5003d302a347b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/0c674b20c9cdb54f8a46c88b4d00cadf82b8f0c0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/28ba1d3c956604a89168adfb4c97cfc6c509bba5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3a44b2602d57e11e2eb85958d4cd500d14a27d9e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/85f54cf589163a75fa06e37d8c2a4a72824c6dd1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/92e4adfee56f32a963ebb105c6cd9a1ed707262a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e9361d0ca55c4af12aac09e2572852fa91046229","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ed8605c6f39b9b84f9a4631db6deb25e7f1e973c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74309","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74309 — In the Linux kernel, the following vulnerability has been resolved: vdpa/octeon_ep: fix IRQ-to-ring…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nvdpa/octeon_ep: fix IRQ-to-ring mapping in interrupt handler\n\nLook up the IRQ index in oct_hw->irqs instead of assuming\nirq - irqs[0]. This supports non-contiguous IRQ numbers and\navoids incorrect ring indexing when irqs[0] is not…","indicators":{"cves":["CVE-2026-74309"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:30.823Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/0d21a1d6375a05274291e32c1ab7cd57dbb69513","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3ef0cfa77a3d526591be069850d186c255e3f0cc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c6c7eae5de798442987619434171ac886035d57c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74310","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74310 — In the Linux kernel, the following vulnerability has been resolved: vhost/net: complete zerocopy ubu…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nvhost/net: complete zerocopy ubufs only once\n\nvhost-net initializes one ubuf_info per outstanding zerocopy TX\ndescriptor and hands it to the backend socket.  The networking stack may\nthen clone a zerocopy skb before all skb referen…","indicators":{"cves":["CVE-2026-74310"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:30.987Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/321c73baf54d971ce3771fea275c98a247f7ee35","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6445b945024f4c7675ae5352b2d5885cb1deea71","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8f6898fe80794f2d7c3d38c1158c806e4074a1c4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a9f8a1d2e3ff511eafd4c5462481950c2f4d2b5d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c069437924663539a93a1e5afe90838d9ccee284","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ea71f873423fb73e66ad88936d6759ac0ad4aa53","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74315","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74315 — In the Linux kernel, the following vulnerability has been resolved: lockd: Avoid hashing uninitializ…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nlockd: Avoid hashing uninitialized bytes in nlm4svc_lookup_file()\n\nfile_hash() digests the first LOCKD_FH_HASH_SIZE bytes of\nnfs_fh.data when bucketing nlm_files[], independent of fh.size.\nCommit 3de744ee4e45 (\"lockd: Use xdrgen XD…","indicators":{"cves":["CVE-2026-74315"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:31.763Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/686c2434f9f16b87aeed18d76cc562df9f2695ab","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6e4c62caecf792e8a15ad9bc7f371e57c17e3302","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74345","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74345 — In the Linux kernel, the following vulnerability has been resolved: RDMA/siw: Fix endpoint/socket as…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nRDMA/siw: Fix endpoint/socket association handling\n\nDisassociating a socket from an endpoint via siw_socket_disassoc() may\nrelease the last reference on that endpoint and free it. Therefore, don't\nclear the endpoints socket pointer…","indicators":{"cves":["CVE-2026-74345"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:35.607Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/b28d513393f81e2de00f82970487a9d001557e4e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b6cf763eee0a932792bef64ceaca568d324192fc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ea4f6f6c53577fb3f05dbd78b15e586772d49831","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f6183983ce1ff254d629a333739082b39d7c5eb6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74350","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74350 — In the Linux kernel, the following vulnerability has been resolved: ocfs2: validate fast symlink tar…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nocfs2: validate fast symlink target during inode read\n\nocfs2_validate_inode_block() already rejects several inconsistent\nself-contained dinodes before they are exposed to the rest of the\nfilesystem.  Fast symlinks need the same tre…","indicators":{"cves":["CVE-2026-74350"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:36.270Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/e234973f286ed2e8961a24561ec91594ec3e3ff8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f9e2cb692b77a679b1f4cc2b7b277fa908586533","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74361","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74361 — In the Linux kernel, the following vulnerability has been resolved: nvme: fix FDP fdpcidx bounds che…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnvme: fix FDP fdpcidx bounds check\n\nThe fdpcidx bounds check sets n = NUMFDPC + 1 but used > instead of >=,\nincorrectly accepting fdp_idx when it equals n (i.e. NUMFDPC + 1).","indicators":{"cves":["CVE-2026-74361"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:37.677Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/0967074f6830718fd2597404ef119bddd0dbfd00","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5d0e7d2af884b91329235abb16652ae4eead8079","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5e406928404d67a8da8aa3ae21732e1ea1a04118","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74376","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74376 — In the Linux kernel, the following vulnerability has been resolved: md/raid10: reset read_slot when…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmd/raid10: reset read_slot when reusing r10bio for discard\n\nput_all_bios() always drops devs[i].bio, but it only drops\ndevs[i].repl_bio when r10_bio->read_slot < 0. If discard reuses an\nr10bio that was previously used for a read, r…","indicators":{"cves":["CVE-2026-74376"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:39.373Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/3cb2a606ce4902eceabe68338df0653312f861f8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/561c9711e4f545d6464a023168bdee03b00fa945","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6b8a26af065ddc93de2aa5c9f0df98dce9723442","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/742e4afd247d9c972695227716b03d432a7e1d26","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b7313f23ea5a79b199a007bfad64a866cc2c22e7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ce3030e92f14362880055de5fe3c258971118853","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/eb04e3e9c14ed15914f5fd2eae8b6435f54f095f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74384","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74384 — In the Linux kernel, the following vulnerability has been resolved: nvme-multipath: fix flex array s…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnvme-multipath: fix flex array size in struct nvme_ns_head\n\nstruct nvme_ns_head contains a flexible array member, current_path[],\nwhich is indexed using the NUMA node ID:\nhead->current_path[numa_node_id()]\n\nThe structure is current…","indicators":{"cves":["CVE-2026-74384"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:40.270Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/001e57554de81aa79c25c18fd53911d8a415c304","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/140d6fff4ed266592492a23444043842b4af7a62","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1d4131b5c9823c7d2c86389898ad1b466af7df5e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/316b5f1168264844aa125959de1d6da2b1905795","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7173a741fed73de6247384056fe92e582ba12507","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7e7b167e65610dfa7564d449474f4b477f9d4c1c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9ffdd11bd6c961b46b3689850ff6c5d7af5c5fe5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bde4d6eb53f7d3cdae7e62c9ee84345fdd6e70a6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74394","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74394 — In the Linux kernel, the following vulnerability has been resolved: RDMA/srpt: fix integer overflow…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nRDMA/srpt: fix integer overflow in immediate data length check\n\nimm_buf->len is a user-controlled uint32_t received from the network.\nAdding it to imm_data_offset without overflow checking allows a\nmalicious initiator to send len=0…","indicators":{"cves":["CVE-2026-74394"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:41.363Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/067b9556eeb007f28b7c2033b4dcde5b6d88418f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/07dec3f6dcb6c6cc891162d252b800eb0e6d5e8e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3efa5301137140a3ca3677a9098c0a93a0acfd49","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/65572fbd86033ae2370125593d59b8be34253aaf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/72497172a4799119a0282a5eb5e2b8ddcc821921","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c82c860f8c8e4f4f454c9f14d0ad0c0466965f7d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dcf7a986f377cce0749ed53f1d64195fbd5fdf91","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/eb4ecdf631fe00e8020bf461503cb9b7017ed796","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74398","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74398 — In the Linux kernel, the following vulnerability has been resolved: ipv6: addrconf: bail out of dad_…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nipv6: addrconf: bail out of dad_failure when state is no longer POSTDAD\n\naddrconf_dad_failure() transitions ifp->state from DAD to POSTDAD\nvia addrconf_dad_end(), which drops ifp->lock on return.  The lock\nis re-acquired after net_…","indicators":{"cves":["CVE-2026-74398"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:41.790Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/3bdc86d89fd6c6523753fa6f42fcfaf30ee699cb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/47b05836705b63dab93d9ac7c69a3a507375ef80","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/627ac78f2741e2ebd2225e2e953b6964a8a9182f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/875c284c0f98b042bb97abad460f63a24c977f88","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8ed0ce9ea58d677d1bac92614ee5f60f8ea57363","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b61af0268e3d1308c466bf0be5dced844eafc1ef","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d21be7d051012c6b572fa4e3334443c250216f7b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e889aa99ad3ed48bb0ddcff6475b17542532d18b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74401","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74401 — In the Linux kernel, the following vulnerability has been resolved: dlm: fix add msg handle in send_…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndlm: fix add msg handle in send_queue ordered\n\nIn a benchmark scenario triggering a lot of requests that triggers a lot\nof DLM messages on the network it can be that the mh->seq is not ordered\naccording the oldest seq number. This…","indicators":{"cves":["CVE-2026-74401"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:42.120Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/4d45250b1d22960f86d83245be188b16e456218b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6369619f1b665f12d8c99cc6ff733c64eb08b22e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/712714f818d83373847874ab0f8e426be79296cf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ae9e534e502a0f48c12baf83608c5de0ff0eab11","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d2248cb70c070f8f04762872772e155b59016f17","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74406","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74406 — In the Linux kernel, the following vulnerability has been resolved: vxlan: Fix potential null-ptr-de…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nvxlan: Fix potential null-ptr-deref in vxlan_gro_prepare_receive().\n\nudp_tunnel_sock_release() could set sk->sk_user_data to NULL\nwhile vxlan_gro_prepare_receive() is running.\n\nLet's check if rcu_dereference_sk_user_data() is NULL…","indicators":{"cves":["CVE-2026-74406"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:42.633Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/08f40c0d23c67c3aa4224c3311e134999c721fb4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/30a45c0bffdd62350261e2f2689fdba426a33578","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4a8cde6f7281ea2c4c290f9ad9923b3631defceb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9c58c729d32e7cea5772cc44929c6cd61e5a31cd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ef44dac2a37f86eeae6b88ed10a6d60b35387dfd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f79c80f173fda9545b220c1f094b65fc06c252d0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74424","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74424 — In the Linux kernel, the following vulnerability has been resolved: fbcon: fix NULL pointer derefere…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nfbcon: fix NULL pointer dereference for a console without vc_data\n\nfbcon_new_modelist() runs when a framebuffer's modelist changes. For each\nconsole mapped to it with fb_display[i].mode set, it reads vc_cons[i].d and\npasses the vc_…","indicators":{"cves":["CVE-2026-74424"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:44.480Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/5fae9a928482d4845bca169a3a098789203a1ca4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6617df8c246311c82cebf061a4cee55b9df60922","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8e9b8b008f4036df0318870c5d754134ff1b94cc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9b783b7e03dc78ec102edf618259a2b55911fc6a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ac970358c5ca0775841bd2a56ce15dc464b99003","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b134ad2f7c06b3c1098dcc95008e2045ff4b49b2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cc4382dc5134826a3936a6b08de17f7dc7abe232","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74427","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74427 — In the Linux kernel, the following vulnerability has been resolved: afs: Fix netns teardown to cance…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nafs: Fix netns teardown to cancel the preallocation charger\n\nFix the teardown of an afs network namespace to make sure it cancels the\nwork item that keeps the preallocated rxrpc call/conn/peer queue charged\nbefore incoming calls ar…","indicators":{"cves":["CVE-2026-74427"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:44.810Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/47694fbc9d24ab6bf210f91e8efe06a10a478064","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/59e8b7652f6cbfb62d377ead0ad553c1b4e39a7a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/63ccaf1bdf8be2330f47f9b5b233dd3fd04acbd9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/85d5fb80fe4f0cc836b6df83f26de204fe102ff7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a33975ff2b6ea47b8f29956403374b1cdd057539","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b83ecf80e28afb7b6595ba79932e77ca68a5a83d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/eec89c5f8e1adc1de4824042ef75f62aed804153","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f5096e18b6b7fbd1c2a1942e275a51bcfdfb2ad1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74428","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74428 — In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix double unlock in rxrp…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nrxrpc: Fix double unlock in rxrpc_recvmsg()\n\nFix a double unlock in rxrpc_recvmsg() when dealing with OOB messages.","indicators":{"cves":["CVE-2026-74428"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:44.923Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/1297ae6aeebc3863cb437e42a1bc4cd6173e43d9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8cd8cf3052fff9a4b86b25734f610e4af03786d3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a2f299b4d5510147fa8629a6aba2869bbcc88aea","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74433","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74433 — In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix UAF in rxgk_issue_cha…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nrxrpc: Fix UAF in rxgk_issue_challenge()\n\nFix rxgk_issue_challenge() to free the page containing the challenge\ncontent after invoking the tracepoint as the whdr passed to the tracepoint\npoints into the page just freed.","indicators":{"cves":["CVE-2026-74433"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:45.417Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/107a4cb0d47e735830f852d83970d5c81f8e1e08","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/83bb0ed050e2ad9453d8ef50e4d6e624eac6eed8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/844b8525ce503405c462ad67f750bec648720397","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74434","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74434 — In the Linux kernel, the following vulnerability has been resolved: rxrpc: Don't move a peeked OOB m…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nrxrpc: Don't move a peeked OOB message onto the pending queue\n\nrxrpc_recvmsg_oob() takes a received oob message off recvmsg_oobq and,\nif a response is needed, moves it onto the pending_oobq tree. However,\nonly the unlink from recvm…","indicators":{"cves":["CVE-2026-74434"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:45.510Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/5801cff7d5d7b4e9d877dfb627b23eb63167f02c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5f470cc883416fea6d3bce18ef96bf91dd49ffc3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9ada3931beb37068fcb725b34b0398457009f343","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74436","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74436 — In the Linux kernel, the following vulnerability has been resolved: rxrpc: serialize kernel accept p…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nrxrpc: serialize kernel accept preallocation with socket teardown\n\nrxrpc_kernel_charge_accept() reads rx->backlog without any\nsocket/backlog synchronization and passes that raw pointer into\nrxrpc_service_prealloc_one(). A concurren…","indicators":{"cves":["CVE-2026-74436"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:45.710Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/0337cdba0c477f176c0459bed012109453184573","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1741378a7a83dfd8e53a9196730df709b903cd33","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/35a967ff8b24db09ee429c39c5b5e6571639997d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dc175389b18c29a5303ee83169ec653adfae3e17","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dfa0b2bbc5e50119f89c6b5407faa5ed86dfa7c5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74439","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74439 — In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Clear Present bit be…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\niommu/vt-d: Clear Present bit before tearing down scalable-mode context entry\n\ndevice_pasid_table_teardown() zeroes the 128-bit scalable-mode context\nentry with context_clear_entry() while the Present bit is still set. This\ncreates…","indicators":{"cves":["CVE-2026-74439"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:46.023Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/588718101e8449605f1c7e858fecb7cfa701cdab","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7fd4077dc92b91b1b844333c0a06bb9e286db10a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e9e83bcfe37dc719182500dd823c03ab57d934f0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f46452c3df7a8d8a5addc0926e76ef19ea7da0a0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15826","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-15826 — The User Profile Builder plugin for WordPress is vulnerable to Authentication Bypass via Type Confus…","description":"The User Profile Builder plugin for WordPress is vulnerable to Authentication Bypass via Type Confusion in versions up to, and including, 3.16.4. This is due to the wppb_log_in_user() function calling absint() on the return value of wp_insert_user() before performing an is_wp_error() check — when a…","indicators":{"cves":["CVE-2026-15826"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T07:16:19.280Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/profile-builder/tags/3.16.4/features/functions.php#L1481","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/profile-builder/tags/3.16.4/front-end/class-formbuilder.php#L262","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/profile-builder/tags/3.16.4/front-end/class-formbuilder.php#L364","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/profile-builder/tags/3.16.4/front-end/class-formbuilder.php#L742","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/profile-builder/tags/3.16.4/front-end/class-formbuilder.php#L945","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/profile-builder/tags/3.16.4/front-end/default-fields/username/username.php#L28","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/profile-builder/tags/3.16.4/front-end/default-fields/username/username.php#L49","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset/3609855/profile-builder","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/9f606fba-f779-42ea-a160-6c3b20dc5e79?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16142","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-16142 — The TrueBooker plugin for WordPress is vulnerable to Account Takeover in all versions up to, and inc…","description":"The TrueBooker plugin for WordPress is vulnerable to Account Takeover in all versions up to, and including, 1.2.6. This is due to the add_front_user_update() AJAX handler being registered for unauthenticated users and accepting an arbitrary truebooker_wp_user_id value, which is passed directly to wp…","indicators":{"cves":["CVE-2026-16142"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T09:16:29.560Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://plugins.trac.wordpress.org/changeset/3640018/truebooker-appointment-booking","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/f0d3f7cb-4974-4b0f-9658-1895e5966276?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73193","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-73193 — DBI versions before 1.652 for Perl allow a heap out-of-bounds write on 32-bit perl via an integer wr…","description":"DBI versions before 1.652 for Perl allow a heap out-of-bounds write on 32-bit perl via an integer wraparound in the output buffer size computed by preparse.\n\npreparse reserves its output buffer with `newSV(strlen(statement) * 7 + 16)`, budgeting seven output bytes per input byte for the longest ':p9…","indicators":{"cves":["CVE-2026-73193"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:48.327Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://github.com/perl5-dbi/dbi/commit/c751ae5a5a6f56c2f8284f37c1f4d43500352ef1.patch","label":"9b29abf9-4ab0-4765-b253-1875cd9b441e","domainType":"primary"},{"url":"https://github.com/perl5-dbi/dbi/security/advisories/GHSA-wj3v-c3hh-mhqr","label":"9b29abf9-4ab0-4765-b253-1875cd9b441e","domainType":"primary"},{"url":"https://www.cve.org/CVERecord?id=CVE-2026-14739","label":"9b29abf9-4ab0-4765-b253-1875cd9b441e","domainType":"other"},{"url":"https://github.com/perl5-dbi/dbi/security/advisories/GHSA-wj3v-c3hh-mhqr","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-73194","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-73194 — DBI versions before 1.652 for Perl allow a heap out-of-bounds write via an unvalidated numeric place…","description":"DBI versions before 1.652 for Perl allow a heap out-of-bounds write via an unvalidated numeric placeholder that sets the binder counter in preparse.\n\npreparse reserves seven output bytes per input byte, the width of the longest ':p99999' expansion. The ':N' branch parses the number with `atoi(src)`…","indicators":{"cves":["CVE-2026-73194"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:48.433Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://github.com/perl5-dbi/dbi/commit/29b72ae7d2a8114a734a55840bf1c45b89207809.patch","label":"9b29abf9-4ab0-4765-b253-1875cd9b441e","domainType":"primary"},{"url":"https://github.com/perl5-dbi/dbi/security/advisories/GHSA-623j-hfpc-mrc4","label":"9b29abf9-4ab0-4765-b253-1875cd9b441e","domainType":"primary"},{"url":"https://www.cve.org/CVERecord?id=CVE-2026-10879","label":"9b29abf9-4ab0-4765-b253-1875cd9b441e","domainType":"other"},{"url":"https://www.cve.org/CVERecord?id=CVE-2026-14739","label":"9b29abf9-4ab0-4765-b253-1875cd9b441e","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74473","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74473 — In the Linux kernel, the following vulnerability has been resolved: vxlan: use pskb_network_may_pull…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nvxlan: use pskb_network_may_pull() in route_shortcircuit()\n\nroute_shortcircuit() currently calls pskb_may_pull(skb, sizeof(struct iphdr))\n(or ipv6hdr), which checks if bytes are available starting from skb->data.\n\nHowever, in vxlan…","indicators":{"cves":["CVE-2026-74473","CVE-2026-74474"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:52.060Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/214ba43faf106cb06cd3dd30999c5c809c868b53","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/26bb2dd0a8839617e2c79ffbbe1923f8e4bab9fb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/42887be7c4cf283cce02cd0fb6411221167c8b6c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4f3f96e771a20263635bb5e1307c112d613b4bbd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6bd0a3a1b5744166946f0c551a6665c3b46b05e4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/aa0d31376d574ac858a40078431a77127bf04ee4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c419af4924c1593500a40519730ed98575d04a3e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ee799977d7941dbfb11049e17edd9eaf4f8820f7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7076a34b6e33315dc160b4612bfea1c597495585","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/94dee751aad627b3645d424b5d0c736d394573e9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b9553558b48db54ac9273e6b98d7263ef5c1a329","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74475","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74475 — In the Linux kernel, the following vulnerability has been resolved: vxlan: use neigh_ha_snapshot() i…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nvxlan: use neigh_ha_snapshot() in route_shortcircuit()\n\nThe neighbour hardware address n->ha can be updated asynchronously by the\nneighbour subsystem, protected by n->ha_lock seqlock. Reading n->ha without\nholding the seqlock loop…","indicators":{"cves":["CVE-2026-74475"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:52.293Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/05f2987f73daa05333fd713d05546142f9f7c5f0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/32a9590a8d30426e3db63e6b20893e47e02576c0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/87210054bad82bbae6f483a742dc45722fb47a6b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8eca411347e1d38964f9ed2c8d3b6ab0e7e4473d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d08e8ac13f2e228cc7fc3c70b5ebe71557b624a0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d0993fc053f29e15cc7c9fe2029df3882a2ab5ab","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ec341bb76d77b4c2948764375ee6bfeef4bb41c3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ff89415d34c3ab9f5312316423122e664ed3524f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74476","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74476 — In the Linux kernel, the following vulnerability has been resolved: veth: convert frag_list skbs bef…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nveth: convert frag_list skbs before running XDP\n\nA frag_list skb can reach veth with data_len set but nr_frags zero.\nveth_convert_skb_to_xdp_buff() only converts skbs that are shared,\nlocked, have frags[], or do not have enough hea…","indicators":{"cves":["CVE-2026-74476"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:52.397Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/5c1c15c540fc45820ce3033c319151ec891bc10a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b24ba0bbffe3e23eb2f6838881c1fabcb29fb9fb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d0d6415963040c401e7a7e4e482a698ba52448cb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f9c1fff857e93be709c8b52ed1a643f37bd82c66","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74478","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74478 — In the Linux kernel, the following vulnerability has been resolved: um: vector: fix use-after-free i…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\num: vector: fix use-after-free in vector_mmsg_rx()\n\nWhen vector_mmsg_rx() discards a packet whose overlay header fails\nverify_header(), it frees the skb and continues the loop:\n\n\tif (header_check < 0) {\n\t\tdev_kfree_skb_irq(skb);…","indicators":{"cves":["CVE-2026-74478"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:52.600Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/180ff4c81faf01ec4e06082c9daa7c40518ead89","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4b9601595e8b6b5d18878cac0aeabc687d241111","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/67d58ab4f2ccf7145f3da07e025735a09c79de1b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7dc9781e320d664c9bdd50003c9acfddf363d1e1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/804b681002ead233abf49a3efd681f5468a835f9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/967c779c9853d2a1cc9cd8e61d300250c348f3d9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a7bc015bb798c525e7a82dd14225c6aeb994274b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/af421e9aed3920c7ac88c24daa48606c7112feca","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74480","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74480 — In the Linux kernel, the following vulnerability has been resolved: net: bridge: stop fast-leave aft…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: bridge: stop fast-leave after deleting a port group\n\nbr_multicast_leave_group() iterates mp->ports with pp = &p->next in\nits fast-leave path. After br_multicast_del_pg() removes p,\ncontinuing the loop advances pp through the d…","indicators":{"cves":["CVE-2026-74480"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:52.820Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/0309ebbc570000ea0df11c06b69798e5860c5f6f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/159ad90cb929c033308bb39a2c5f8fbf393b77aa","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1a109cc9890d017c41d77e6c82da739579c49f0b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4695430e8132420bf8de94da3eb36a6cf35fde6b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/482bcb85139addb4e8ac8ed10baeda3e0aad4031","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4c57056ca6aace2e9f94ae9298bf49ef6b0c95e4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a39789f211b8a4125f0c70e05b30cf715f4f187d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d6c32e2e25a9a06ba021030e26b6d602a277eb72","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74486","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74486 — In the Linux kernel, the following vulnerability has been resolved: binfmt_misc: use exe_file_deny_w…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbinfmt_misc: use exe_file_deny_write_access() for the interpreter clone\n\nFor MISC_FMT_OPEN_FILE entries load_misc_binary() clones the\nregistered interpreter file and denies write access to the clone via\nplain deny_write_access(). T…","indicators":{"cves":["CVE-2026-74486"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:53.497Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/255a758697da87a205e072e0cfc35897b8f743b1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f0edbaf487e4653a680a7abb91c1df94cb7886aa","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fa5990ca8fd917003e526036bcc50413edb9722c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74493","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74493 — In the Linux kernel, the following vulnerability has been resolved: net/smc: fix socket use-after-fr…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet/smc: fix socket use-after-free during link group termination\n\n__smc_lgr_terminate() drops conns_lock after finding a connection in\nlgr->conns_all, but before taking a reference on its socket. The connection\nis embedded in the s…","indicators":{"cves":["CVE-2026-74493"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:54.240Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/281c103a8eaed59001ce952f231df1b07674215a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5a42f162b857019a4c10ff687dc3bcdf51831865","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9fb17c95b8f0683570fca1fb2792264147af937a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bea8dc14de2d56aca749d368563e6888217710a5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f0541a775d04c88e90ba448e35ce0d743512822a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f621d6ebeebb6374342571e4ddf45fdbc420f6cd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f807a63d0d95680c34f677700da9148a07d7c78f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ff44f2df57fb5560bdc75eb977867643e764a262","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74495","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74495 — In the Linux kernel, the following vulnerability has been resolved: igbvf: Fix leak in TX DMA error…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nigbvf: Fix leak in TX DMA error cleanup\n\nIf an error is encountered while mapping TX buffers, the driver should\nunmap any buffers already mapped for that skb.\n\nBecause count is incremented before each frag mapping, it will always\nm…","indicators":{"cves":["CVE-2026-74495"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:54.453Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/0565052b7e2f436b7f1541f4849da96dc0aa7a0e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/31089f4eab42e0fc248ec80c26f9b0bad59ba4cc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/56726ff12cb6759ab90d6f5332c2377aeca7d249","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/845a9cdd9b03b7b6fa8de3ee80579780350a7f65","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bc25d56c03e41c10bc4b40e99ca5d7b941675c04","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/df07003b5a6c6c9fce60d765d6a3da815a74c41c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e3ed89c257f6361f13df23023cd10ace830330ad","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e42b7225c45f57b42306b80cdd3bda202bae7293","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74517","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74517 — In the Linux kernel, the following vulnerability has been resolved: KVM: x86: Cancel delayed I/O API…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nKVM: x86: Cancel delayed I/O APIC EOI handling before destroying vCPUs\n\nCancel (and flush) the I/O APIC's delayed EOI handling work during the\n\"pre VM destroy\" phase, before vCPUs are destroyed, as processing the EOI\nbroadcast will…","indicators":{"cves":["CVE-2026-74517"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:56.850Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/9910e835580fef3bef53b70241dd00c4bffad693","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ed56a6b58222f9c1f4115a0bd2788dd6ed6022e2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74521","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74521 — In the Linux kernel, the following vulnerability has been resolved: ksmbd: use memcmp() to compare C…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nksmbd: use memcmp() to compare ClientGUIDs\n\nClientGUID is a fixed-size binary value and can contain embedded NUL\nbytes. strncmp() stops comparing at the first NUL byte, so different\nClientGUID values can incorrectly be treated as e…","indicators":{"cves":["CVE-2026-74521"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:57.333Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/d535363299822c5caa543787b21bd5cfa3e41949","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e8bb506e6ef749ac0336f3e579d8d02396b7d832","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74545","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74545 — In the Linux kernel, the following vulnerability has been resolved: rtase: fix double free of multi-…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nrtase: fix double free of multi-frag skb on DMA map failure\n\nIn rtase_start_xmit(), when the head buffer DMA mapping fails after\nrtase_xmit_frags() has mapped all fragments, the error path clears\nthe fragment descriptors with rtase…","indicators":{"cves":["CVE-2026-74545"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:59.850Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/4f09172aff5f73a5e914f4fbc0d00a1c2ea9f7cb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6fb7b769d6ed6d1d2e02af4a80e57a2477f35086","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/db986098f30881fafcc752800aa3b13fd289c922","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/de691dc3227b061c4d0beba9f0128fe1ff33dd68","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74556","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74556 — In the Linux kernel, the following vulnerability has been resolved: scsi: libiscsi_tcp: Bound SCSI R…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nscsi: libiscsi_tcp: Bound SCSI Response data segment to the connection buffer\n\niscsi_tcp_hdr_dissect() receives the data segment of several PDU types\ninto the fixed-size conn->data buffer, which is allocated for\nISCSI_DEF_MAX_RECV_…","indicators":{"cves":["CVE-2026-74556"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:18:01.047Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/084af0253673425ce2ae62e3c7f74f0dd023711b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/72815741715bd41556dac5eeb068bf0f8af06ee7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a51812842084fd390590ab8dc0431f10c73ddc56","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a8f94cc9f0e5759252551be3a172960c57f21f54","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b0aa3e8e2ab4ca92adb28a3ef41873b3363b8676","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c1dea15f819cded9b3faf58f8bec72323568b6e6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c97b5265cc47775f77fd2a23d6bde0426997b233","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f1a3a51fc5dba0e99532379665069f1700da6b44","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74568","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74568 — In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: vgic: Fix race betwe…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nKVM: arm64: vgic: Fix race between LPI release and re-registration\n\nFix a potential race between decrementing an LPI's reference count and\nevicting that structure from the LPI xarray.\n\nLPI structures are maintained in the VGIC LPI…","indicators":{"cves":["CVE-2026-74568"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:18:02.370Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/292e80a159aa88635bf668a7212cfdf526b8bd52","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cbfe2b24a1ea9de35032dbdd100fdc700f5be92d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74569","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74569 — In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conntrack_sip: wid…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: nf_conntrack_sip: widen NAT rewrite delta to s32 in sip_help_tcp()\n\nsip_help_tcp() stores the size change of each NAT-rewritten SIP message\nin s16 diff and accumulates it in s16 tdiff, but a single message can\ngrow by mo…","indicators":{"cves":["CVE-2026-74569"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:18:02.517Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/1b0843f9e9b9b0b9b4b70d143b67e58163c85b2c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/32d4abc8923b0d4046fd63ad6e4917872e44eb6d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/63eea41759fd682229c14e0a2205802b46d106f3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c97621a110e386b2dd69e276eb699e1d3cec581d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/db3d0e0e5d4bc5ab4fe445b9f413d1b486508ca5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ed1f9be6dc8e2e280b8725e44ccdc6e0cd38640d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ef5e2c6555d2bb52dfe0e4053a8c6193f9d83b64","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f74554e67ccf04d1fa71069e8c9afa2717e40716","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74570","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74570 — In the Linux kernel, the following vulnerability has been resolved: ntfs: harden runlist realloc siz…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nntfs: harden runlist realloc size calculations\n\nAdd a shared helper to safely convert runlist element counts to byte sizes\nusing overflow checks, and use it in both ntfs_rl_realloc() and\nntfs_rl_realloc_nofail().","indicators":{"cves":["CVE-2026-74570"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:18:02.637Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/57e7b8bf7b02a0140463fea786e5172cbdf2da2f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8bed376124ab4505b70083a2b91f2c7ef6d51e24","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74573","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74573 — In the Linux kernel, the following vulnerability has been resolved: iommu/arm-smmu-v3-iommufd: Requi…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\niommu/arm-smmu-v3-iommufd: Require exactly one Stream ID for a vDEVICE\n\narm_vsmmu_vsid_to_sid() maps a guest's vSID to a single physical Stream ID\ntaken from master->streams[0], assuming a device has exactly one stream. A\ndevice wi…","indicators":{"cves":["CVE-2026-74573"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:18:02.963Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/0acbc621341aca4eb94d9c2f43e1ab273ff088f0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3808bab5d95ae79e333e11f6a73d178e084c645d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c3b8ee84a965058b41275069d4696f37a8b14bf6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15689","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-15689 — Dancer2::Plugin::Auth::Extensible versions through 0.713 for Perl allow password reset link poisonin…","description":"Dancer2::Plugin::Auth::Extensible versions through 0.713 for Perl allow password reset link poisoning via the request Host header in _default_email_password_reset and _default_welcome_send.\n\nBoth default emails emit a link of the form `$base/login/$code`, whose authority comes from the request Host…","indicators":{"cves":["CVE-2026-15689"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T14:17:06.480Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://metacpan.org/release/ABEVERLEY/Dancer2-Plugin-Auth-Extensible-0.711/source/lib/Dancer2/Plugin/Auth/Extensible.pm#L1031-1053","label":"9b29abf9-4ab0-4765-b253-1875cd9b441e","domainType":"other"},{"url":"https://metacpan.org/release/ABEVERLEY/Dancer2-Plugin-Auth-Extensible-0.711/source/lib/Dancer2/Plugin/Auth/Extensible.pm#L1097-1121","label":"9b29abf9-4ab0-4765-b253-1875cd9b441e","domainType":"other"},{"url":"https://metacpan.org/release/ABEVERLEY/Dancer2-Plugin-Auth-Extensible-0.712/source/lib/Dancer2/Plugin/Auth/Extensible.pm#L178-194","label":"9b29abf9-4ab0-4765-b253-1875cd9b441e","domainType":"other"},{"url":"https://metacpan.org/release/ABEVERLEY/Dancer2-Plugin-Auth-Extensible-0.713/changes","label":"9b29abf9-4ab0-4765-b253-1875cd9b441e","domainType":"other"},{"url":"https://metacpan.org/release/ABEVERLEY/Dancer2-Plugin-Auth-Extensible-0.713/source/lib/Dancer2/Plugin/Auth/Extensible.pm#L178-196","label":"9b29abf9-4ab0-4765-b253-1875cd9b441e","domainType":"other"},{"url":"http://www.openwall.com/lists/oss-security/2026/08/15/4","label":"af854a3a-2127-422b-91ae-364da2661108","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19598","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-19598 — The Pods – Custom Content Types and Fields plugin for WordPress is vulnerable to Privilege Escalatio…","description":"The Pods – Custom Content Types and Fields plugin for WordPress is vulnerable to Privilege Escalation via Authorization Bypass in all versions up to, and including, 3.3.9. The vulnerability exists because the pods_admin AJAX router funnels every access check — including the method allowlist, nonce v…","indicators":{"cves":["CVE-2026-19598"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T18:16:23.860Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/pods/tags/3.3.9/includes/general.php#L400","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/3628032a-3121-45a7-8a78-cfcd8ba6af2f?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18855","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-18855 — The Link Library plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient f…","description":"The Link Library plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the ll_delete_link_fields function in all versions up to, and including, 7.9.4 This makes it possible for unauthenticated attackers to delete arbitrary files on the server, whic…","indicators":{"cves":["CVE-2026-18855"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T19:16:32.160Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/link-library/tags/7.9.4/link-library-admin.php#L7865","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/link-library/tags/7.9.4/link-library-admin.php#L7874","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/link-library/tags/7.9.4/link-library.php#L2288","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/link-library/tags/7.9.4/usersubmission.php#L476","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/link-library/tags/7.9.4/usersubmission.php#L52","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset/3646360/link-library/trunk/link-library-admin.php","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?old_path=%2Flink-library/tags/7.9.4&new_path=%2Flink-library/tags/7.9.5","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&new=3646361%40link-library%2Ftags%2F7.9.5&old=3626573%40link-library%2Ftags%2F7.9.4","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/41327dfa-db64-476a-a263-7bd4f69fb857?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73041","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-73041 — SiYuan versions before v3.7.4 fail to validate or escape annotation fields written to disk by the se…","description":"SiYuan versions before v3.7.4 fail to validate or escape annotation fields written to disk by the setFileAnnotation endpoint. Attackers can inject malicious markup into annotation fields that execute as script in the PDF renderer with full Node.js access when a user opens an annotated PDF.","indicators":{"cves":["CVE-2026-73041"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T22:16:53.883Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-fqpw-c3pj-w8g9","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/siyuan-before-remote-code-execution-via-pdf-annotations","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-fqpw-c3pj-w8g9","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-73042","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-73042 — SiYuan before v3.7.4 fails to properly escape database menu metadata in HTML interpolation, allowing…","description":"SiYuan before v3.7.4 fails to properly escape database menu metadata in HTML interpolation, allowing stored values to execute script when users open group, view, or field-edit menus. Attackers can inject markup through field descriptions or names that close containing elements and execute arbitrary…","indicators":{"cves":["CVE-2026-73042"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T22:16:54.030Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-gcm3-qcq3-72rv","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/siyuan-before-remote-code-execution-via-menu-metadata","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73043","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-73043 — SiYuan versions before v3.7.4 contain a remote code execution vulnerability in the Template calculat…","description":"SiYuan versions before v3.7.4 contain a remote code execution vulnerability in the Template calculation operator, which renders user-authored Go templates and stores output verbatim without sanitization. Attackers can inject malicious HTML and JavaScript into template calculations that execute in th…","indicators":{"cves":["CVE-2026-73043"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T22:16:54.200Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-rwh7-gm74-67h6","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/siyuan-before-remote-code-execution-via-template-calculation","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73044","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-73044 — SiYuan versions before v3.7.4 fail to validate or escape table column width values, allowing stored…","description":"SiYuan versions before v3.7.4 fail to validate or escape table column width values, allowing stored cross-site scripting injection into style attributes. Attackers can inject malicious payloads through the setAttrViewColWidth API that break out of style attributes and inject event handlers on every…","indicators":{"cves":["CVE-2026-73044"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T22:16:54.330Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-rj55-w3xr-gj62","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/siyuan-before-stored-cross-site-scripting-via-column-width","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-rj55-w3xr-gj62","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-73046","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-73046 — SiYuan before v3.7.4 improperly restricts excessive authentication attempts in the CheckAuth() middl…","description":"SiYuan before v3.7.4 improperly restricts excessive authentication attempts in the CheckAuth() middleware. The HTTP Basic Authentication branch, which guards nearly the entire /api/* surface, accepts the workspace access code (Conf.AccessAuthCode) as the Basic Auth password but never consults the CA…","indicators":{"cves":["CVE-2026-73046"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T22:16:54.600Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-w3xh-mmmh-r54v","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/siyuan-before-authentication-bypass-via-http-basic-auth","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-w3xh-mmmh-r54v","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-73050","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-73050 — SiYuan versions before v3.7.4 fail to validate or escape the color field in attribute-view select op…","description":"SiYuan versions before v3.7.4 fail to validate or escape the color field in attribute-view select options, allowing stored cross-site scripting through eight unescaped render sites. Attackers can inject event-handler attributes by including quotation marks in the color value, executing arbitrary Jav…","indicators":{"cves":["CVE-2026-73050"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T22:16:54.870Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-m7cc-jh9q-wxg8","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/siyuan-before-stored-xss-via-select-option-color","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-m7cc-jh9q-wxg8","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-73052","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-73052 — SiYuan before v3.7.4 stores attribute-view field names without HTML escaping and interpolates them d…","description":"SiYuan before v3.7.4 stores attribute-view field names without HTML escaping and interpolates them directly into option elements via innerHTML in the sort menu. Attackers can inject markup by renaming a database field to execute arbitrary JavaScript when users open the sort menu, with Node integrati…","indicators":{"cves":["CVE-2026-73052"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T22:16:55.017Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-g3jx-227v-x2x4","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/siyuan-before-stored-xss-via-attribute-view-field-names","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-g3jx-227v-x2x4","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-73053","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-73053 — SiYuan versions before v3.7.4 contain a cross-site scripting vulnerability in the unicode2Emoji func…","description":"SiYuan versions before v3.7.4 contain a cross-site scripting vulnerability in the unicode2Emoji function that fails to sanitize codepoint branch output. Attackers can craft document icons with hex-encoded markup that executes in the renderer with Node integration enabled, achieving arbitrary code ex…","indicators":{"cves":["CVE-2026-73053"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T22:16:55.157Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-vx5w-qrvp-mmcq","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/siyuan-before-cross-site-scripting-via-unicode2emoji","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-vx5w-qrvp-mmcq","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-19924","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-19924 — A security vulnerability has been detected in Tenda AC10 16.03.10.09_multi_TDE01. This vulnerability…","description":"A security vulnerability has been detected in Tenda AC10 16.03.10.09_multi_TDE01. This vulnerability affects the function R7WebsSecurityHandler of the component httpd. The manipulation leads to improper authentication. The attack may be initiated remotely. The exploit has been disclosed publicly and…","indicators":{"cves":["CVE-2026-19924"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T02:16:47.247Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://github.com/teiwiet/tenda-ac10-vulnerabilities/blob/main/authen-bypass-tenda-ac10.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19924","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/871957","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390174","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390174/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.tenda.com.cn/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-14524","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-14524 — The ProSolution WP Client plugin for WordPress is vulnerable to arbitrary file deletion due to insuf…","description":"The ProSolution WP Client plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the proSol_fileDeleteProcess function in all versions up to, and including, 2.0.8. This makes it possible for unauthenticated attackers to delete arbitrary files on the…","indicators":{"cves":["CVE-2026-14524"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T05:16:46.493Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/prosolution-wp-client/tags/2.0.3/includes/class-prosolwpclient.php#L260","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/prosolution-wp-client/tags/2.0.3/public/class-prosolwpclient-public.php#L1135","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/prosolution-wp-client/tags/2.0.3/public/class-prosolwpclient-public.php#L1256","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3634993%40prosolution-wp-client&new=3634993%40prosolution-wp-client","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/4e9698f0-b228-4f4e-838b-c0c0a193d675?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16098","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-16098 — The ProSolution WP Client plugin for WordPress is vulnerable to Arbitrary File Upload in all version…","description":"The ProSolution WP Client plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 2.0.10 via the proSol_handleFileUpload function. This is due to missing validation of the attacker-controlled Content-Disposition header filename, which overrides the allow-lis…","indicators":{"cves":["CVE-2026-16098"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T05:16:47.667Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/prosolution-wp-client/tags/2.0.6/includes/UploadHandler.php#L1090","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/prosolution-wp-client/tags/2.0.6/includes/UploadHandler.php#L1327","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/prosolution-wp-client/tags/2.0.6/includes/class-prosolwpclient.php#L254","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/prosolution-wp-client/tags/2.0.6/public/class-prosolwpclient-public.php#L1033","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3644463%40prosolution-wp-client&new=3644463%40prosolution-wp-client","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/3c4a7aef-09ec-4d17-87d6-f507d64e0afa?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18432","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-18432 — The Frontend Admin by DynamiApps plugin for WordPress is vulnerable to Privilege Escalation in all v…","description":"The Frontend Admin by DynamiApps plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 3.29.9. The vulnerability exists because `ActionUser::conditions_logic()` gates the `current_user_can('edit_user', $user_id)` authorization check behind an `is_numeric()`…","indicators":{"cves":["CVE-2026-18432"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T05:16:48.307Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/acf-frontend-form-element/tags/3.29.3/main/frontend/forms/actions/user.php#L565","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/acf-frontend-form-element/tags/3.29.3/main/frontend/forms/actions/user.php#L680","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/acf-frontend-form-element/tags/3.29.3/main/frontend/forms/classes/display.php#L1654","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/acf-frontend-form-element/tags/3.29.3/main/frontend/forms/classes/display.php#L1953","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/acf-frontend-form-element/tags/3.29.3/main/frontend/forms/classes/display.php#L37","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/acf-frontend-form-element/tags/3.29.9/main/frontend/forms/actions/user.php#L565","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/acf-frontend-form-element/tags/3.29.9/main/frontend/forms/actions/user.php#L680","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/acf-frontend-form-element/tags/3.29.9/main/frontend/forms/classes/display.php#L1654","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/acf-frontend-form-element/tags/3.29.9/main/frontend/forms/classes/display.php#L1953","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/acf-frontend-form-element/tags/3.29.9/main/frontend/forms/classes/display.php#L37","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3633030%40acf-frontend-form-element&new=3633030%40acf-frontend-form-element","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/01404fad-7b5a-485a-b557-c608fe25e6c9?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18316","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-18316 — The Solace Extra plugin for WordPress is vulnerable to unauthorized modification and loss of data du…","description":"The Solace Extra plugin for WordPress is vulnerable to unauthorized modification and loss of data due to a missing capability check on the import_zip() function in versions up to, and including, 1.6.0. The handler is registered on both wp_ajax_action-import-zip and wp_ajax_nopriv_action-import-zip a…","indicators":{"cves":["CVE-2026-18316"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T06:16:51.683Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/solace-extra/tags/1.6.0/admin/class-solace-extra-admin.php#L289","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/solace-extra/tags/1.6.0/admin/import.php#L2382","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/solace-extra/tags/1.6.0/includes/class-solace-extra.php#L336","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3627961%40solace-extra&new=3627961%40solace-extra","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/4e427c4e-3e27-49e3-ba64-6241b430d5d8?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19714","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-19714 — The Simple JWT Login WordPress plugin before 3.6.8 does not validate the audience of the Google iden…","description":"The Simple JWT Login  WordPress plugin before 3.6.8 does not validate the audience of the Google identity tokens it accepts, allowing unauthenticated users to authenticate as any user whose email address such a token carries, up to and including an administrator. Every site with the Simple JWT Login…","indicators":{"cves":["CVE-2026-19714"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T06:16:52.300Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://wpscan.com/vulnerability/dc6e54eb-d856-484b-88c1-b3e04a37669d/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19725","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-19725 — The WPvivid — Backup, Migration & Staging WordPress plugin before 0.9.131 does not sanitise a value…","description":"The WPvivid — Backup, Migration & Staging WordPress plugin before 0.9.131 does not sanitise a value taken from an unauthenticated request before using it to build a log file path, allowing an attacker holding a site to site transfer key to create a log file in any existing writable directory of the…","indicators":{"cves":["CVE-2026-19725"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T06:16:52.487Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://wpscan.com/vulnerability/999889f4-f8be-4b44-b665-1a94df8d050d/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19349","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-19349 — Lemonldap::NG::Portal versions from 2.0.0 before 2.16.9, from 2.17.0 before 2.21.5, from 2.22.0 befo…","description":"Lemonldap::NG::Portal versions from 2.0.0 before 2.16.9, from 2.17.0 before 2.21.5, from 2.22.0 before 2.23.3 for Perl allow authentication bypass via an OAuth2 state parameter stored as an SSO session in the GitHub and LinkedIn backends.\n\nBefore redirecting to the identity provider, extractFormInfo…","indicators":{"cves":["CVE-2026-19349"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T14:16:54.720Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://gitlab.ow2.org/lemonldap-ng/lemonldap-ng/-/releases/v2.16.9","label":"9b29abf9-4ab0-4765-b253-1875cd9b441e","domainType":"other"},{"url":"https://gitlab.ow2.org/lemonldap-ng/lemonldap-ng/-/releases/v2.21.5","label":"9b29abf9-4ab0-4765-b253-1875cd9b441e","domainType":"other"},{"url":"https://gitlab.ow2.org/lemonldap-ng/lemonldap-ng/-/releases/v2.23.3","label":"9b29abf9-4ab0-4765-b253-1875cd9b441e","domainType":"other"},{"url":"http://www.openwall.com/lists/oss-security/2026/08/16/2","label":"af854a3a-2127-422b-91ae-364da2661108","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72887","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72887 — Net::OAuth::Client versions before 0.32 for Perl allow the service provider to silently downgrade OA…","description":"Net::OAuth::Client versions before 0.32 for Perl allow the service provider to silently downgrade OAuth 1.0a to OAuth 1.0 in get_request_token.\n\nPassing a callback to the constructor selects OAuth 1.0a. get_request_token then revokes that choice when the request token response omits oauth_callback_c…","indicators":{"cves":["CVE-2026-72887"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T14:16:54.860Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://datatracker.ietf.org/doc/html/rfc5849#section-2.1","label":"9b29abf9-4ab0-4765-b253-1875cd9b441e","domainType":"other"},{"url":"https://datatracker.ietf.org/doc/html/rfc5849#section-2.3","label":"9b29abf9-4ab0-4765-b253-1875cd9b441e","domainType":"other"},{"url":"https://github.com/vurtdev/Net-OAuth/commit/fd505dac1988723ed96721657663f2e4ac731644.patch","label":"9b29abf9-4ab0-4765-b253-1875cd9b441e","domainType":"primary"},{"url":"https://github.com/vurtdev/Net-OAuth/security/advisories/GHSA-jh72-4qq2-8j6g","label":"9b29abf9-4ab0-4765-b253-1875cd9b441e","domainType":"primary"},{"url":"https://metacpan.org/release/RRWO/Net-OAuth-0.32/changes","label":"9b29abf9-4ab0-4765-b253-1875cd9b441e","domainType":"other"},{"url":"http://www.openwall.com/lists/oss-security/2026/08/16/3","label":"af854a3a-2127-422b-91ae-364da2661108","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73056","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-73056 — SiYuan kernel versions before 3.7.4 contain an improper restriction of excessive authentication atte…","description":"SiYuan kernel versions before 3.7.4 contain an improper restriction of excessive authentication attempts vulnerability in the CheckAuth() middleware. The middleware accepts the API token (Conf.Api.Token) via an Authorization header (Token/Bearer) or a ?token= query parameter, and neither path is pro…","indicators":{"cves":["CVE-2026-73056"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T14:16:55.083Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-m6w6-p7pc-fpg2","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/siyuan-kernel-before-unthrottled-brute-force-via-api-token","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-m6w6-p7pc-fpg2","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-73061","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-73061 — Scriban before 7.2.2 contains an access-modifier bypass vulnerability in TypedObjectAccessor that al…","description":"Scriban before 7.2.2 contains an access-modifier bypass vulnerability in TypedObjectAccessor that allows template code to write CLR object properties without setter-visibility checks. Attackers can modify properties with private, internal, or init-only setters, and perform mass assignment on public-…","indicators":{"cves":["CVE-2026-73061"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T14:16:55.770Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/scriban/scriban/security/advisories/GHSA-7jvp-hj45-2f2m","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/scriban-before-arbitrary-property-write-via-typedobjectaccessor","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/scriban/scriban/security/advisories/GHSA-7jvp-hj45-2f2m","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-74790","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74790 — Scriban before 7.0.0 caches TypedObjectAccessor by Type only without considering MemberFilter change…","description":"Scriban before 7.0.0 caches TypedObjectAccessor by Type only without considering MemberFilter changes, allowing reused TemplateContext instances to expose members that should be hidden. Attackers can access filtered properties and fields by reusing a TemplateContext after tightening its MemberFilter…","indicators":{"cves":["CVE-2026-74790"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T14:16:57.050Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/scriban/scriban/security/advisories/GHSA-5wr9-m6jw-xx44","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/scriban-before-memberfilter-bypass-via-templatecontext-cache","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/scriban/scriban/security/advisories/GHSA-5wr9-m6jw-xx44","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-19959","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-19959 — A weakness has been identified in Edimax EW-7478APC 1.04. This affects the function formWanTcpipSetu…","description":"A weakness has been identified in Edimax EW-7478APC 1.04. This affects the function formWanTcpipSetup of the file /goform/formWanTcpipSetup. This manipulation of the argument pppUserName causes stack-based buffer overflow. Remote exploitation of the attack is possible. The exploit has been made avai…","indicators":{"cves":["CVE-2026-19959"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T23:16:24.710Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://lavender-bicycle-a5a.notion.site/EDIMAX-EW-7478APC-formWanTcpipSetup-34b53a41781f8047b36bd11dbcaa84dc?source=copy_link","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/cve/CVE-2026-19959","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/872873","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391136","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391136/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19961","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-19961 — A vulnerability was detected in Edimax EW-7478APC 1.04. Affected is the function formWlSiteSurvey of…","description":"A vulnerability was detected in Edimax EW-7478APC 1.04. Affected is the function formWlSiteSurvey of the file /goform/formWlSiteSurvey. Performing a manipulation of the argument selSSID results in buffer overflow. The attack is possible to be carried out remotely. The exploit is now public and may b…","indicators":{"cves":["CVE-2026-19961"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T23:16:25.050Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://lavender-bicycle-a5a.notion.site/EDIMAX-EW-7478APC-formWlSiteSurvey-34b53a41781f804fb328d87416095401?source=copy_link","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/cve/CVE-2026-19961","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/872875","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391138","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391138/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19977","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-19977 — A vulnerability was detected in EFM ipTIME A3004T 14.19.0. The affected element is the function http…","description":"A vulnerability was detected in EFM ipTIME A3004T 14.19.0. The affected element is the function httpcon_check_session_url of the component Session Validation. Performing a manipulation results in improper authentication. Remote exploitation of the attack is possible. The exploit is now public and ma…","indicators":{"cves":["CVE-2026-19977"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T03:16:50.517Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/AdminSafe/CVE/issues/1","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19977","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/873848","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391156","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391156/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74799","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74799 — SiYuan before 3.7.4 registers Go net/http/pprof debug endpoints including heap and goroutine dumps w…","description":"SiYuan before 3.7.4 registers Go net/http/pprof debug endpoints including heap and goroutine dumps without authentication when --mode flag is not set to exactly prod. Attackers can access /debug/pprof/heap and related endpoints to extract in-memory secrets including AccessAuthCode and AI provider AP…","indicators":{"cves":["CVE-2026-74799"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T11:16:40.017Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-9cqq-p2hw-mj3f","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/siyuan-before-unauthenticated-debug-endpoint-information-disclosure","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-9cqq-p2hw-mj3f","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-74800","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74800 — SiYuan before v3.7.4 fails to set Content-Disposition and X-Content-Type-Options headers when servin…","description":"SiYuan before v3.7.4 fails to set Content-Disposition and X-Content-Type-Options headers when serving arbitrary file assets, allowing stored cross-site scripting attacks. Authenticated attackers can upload HTML files as assets and execute scripts with full kernel API access when the workspace owner…","indicators":{"cves":["CVE-2026-74800"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T11:16:40.187Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-mjf3-jwmf-r6wf","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/siyuan-before-stored-xss-via-assets-endpoint","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74872","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74872 — openssl_encrypt versions before 1.4.0 contain an arbitrary code execution vulnerability in the Whirl…","description":"openssl_encrypt versions before 1.4.0 contain an arbitrary code execution vulnerability in the Whirlpool hash implementation that uses broad glob patterns to load .so modules without integrity verification. Attackers can place malicious .so files matching the whirlpool*py313*.so pattern in site-pack…","indicators":{"cves":["CVE-2026-74872"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T11:16:41.560Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/jahlives/openssl_encrypt/security/advisories/GHSA-j48q-4c78-rhf9","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/openssl-encrypt-before-arbitrary-code-execution-via-whirlpool","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74875","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74875 — openssl_encrypt versions before 1.4.0 silently skip JSON schema validation when the jsonschema libra…","description":"openssl_encrypt versions before 1.4.0 silently skip JSON schema validation when the jsonschema library is not installed, allowing malformed metadata to be accepted. Attackers can remove the jsonschema package or supply unknown metadata format versions to bypass all schema checks and process maliciou…","indicators":{"cves":["CVE-2026-74875"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T11:16:41.943Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/jahlives/openssl_encrypt/security/advisories/GHSA-425g-fjhq-5h92","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/openssl-encrypt-before-schema-validation-bypass","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74876","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74876 — openssl_encrypt versions before 1.4.0 contain a vulnerability in PublicKeyBundle.from_dict() that cr…","description":"openssl_encrypt versions before 1.4.0 contain a vulnerability in PublicKeyBundle.from_dict() that creates key bundles from untrusted data without verifying signatures. Attackers can call from_dict() followed by to_identity() without signature verification to encrypt data using attacker-controlled pu…","indicators":{"cves":["CVE-2026-74876"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T11:16:42.073Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/jahlives/openssl_encrypt/security/advisories/GHSA-8h88-gxp3-j7pg","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/openssl-encrypt-before-unverified-key-bundle-encryption","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74878","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74878 — openssl_encrypt versions before 1.4.0 use an in-memory rate limiter for TOTP brute-force protection…","description":"openssl_encrypt versions before 1.4.0 use an in-memory rate limiter for TOTP brute-force protection that is not shared across workers and is lost on server restart. Attackers can distribute authentication attempts across multiple server instances or retry immediately after a restart to bypass rate l…","indicators":{"cves":["CVE-2026-74878"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T11:16:42.330Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/jahlives/openssl_encrypt/security/advisories/GHSA-h45m-mgcp-q388","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/openssl-encrypt-before-totp-rate-limiter-bypass","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74880","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74880 — openssl_encrypt versions before 1.4.0 accept refresh tokens as URL query parameters in keyserver and…","description":"openssl_encrypt versions before 1.4.0 accept refresh tokens as URL query parameters in keyserver and telemetry server routes. Attackers can extract tokens from server logs, proxy logs, browser history, and HTTP Referer headers to gain unauthorized access.","indicators":{"cves":["CVE-2026-74880"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T11:16:42.593Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/jahlives/openssl_encrypt/security/advisories/GHSA-4rh7-jwg9-m28m","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/openssl-encrypt-before-token-leakage-via-query-parameters","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74886","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74886 — openssl_encrypt versions before 1.4.0 contain a plugin sandbox bypass vulnerability where the Plugin…","description":"openssl_encrypt versions before 1.4.0 contain a plugin sandbox bypass vulnerability where the PluginImportGuard blocks a different set of modules than the AST analyzer's DANGEROUS_MODULES set. Attackers can bypass AST analysis through string obfuscation or encoding to import unblocked dangerous modu…","indicators":{"cves":["CVE-2026-74886"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T11:16:43.390Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/jahlives/openssl_encrypt/security/advisories/GHSA-9pgj-v69p-q586","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/openssl-encrypt-before-plugin-import-guard-bypass","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74889","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74889 — openssl_encrypt versions before 1.4.0 use HKDF with no salt and static info parameter in key normali…","description":"openssl_encrypt versions before 1.4.0 use HKDF with no salt and static info parameter in key normalization functions, reducing entropy extraction and determinism. Attackers can exploit predictable key derivation with identical inputs to weaken cryptographic security against multi-target attacks.","indicators":{"cves":["CVE-2026-74889"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T11:16:43.803Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/jahlives/openssl_encrypt/security/advisories/GHSA-j9mh-57cc-665x","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/openssl-encrypt-before-weak-key-derivation-via-hkdf","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74891","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74891 — openssl_encrypt versions before 1.4.0 contain hardcoded database credentials in standalone server co…","description":"openssl_encrypt versions before 1.4.0 contain hardcoded database credentials in standalone server configuration files. Attackers on the same network can access PostgreSQL databases using well-known default credentials to retrieve sensitive data.","indicators":{"cves":["CVE-2026-74891"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T11:16:44.120Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/jahlives/openssl_encrypt/security/advisories/GHSA-v4vm-4xf2-fhqj","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/openssl-encrypt-before-hardcoded-database-credentials","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74894","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74894 — openssl_encrypt before 1.4.0 contains an authentication bypass vulnerability in the verify_api_token…","description":"openssl_encrypt before 1.4.0 contains an authentication bypass vulnerability in the verify_api_token function that accepts any non-empty Bearer token string without validation. Attackers can upload arbitrary public keys, enumerate all keys, and revoke keys belonging to any user by providing any Bear…","indicators":{"cves":["CVE-2026-74894"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T11:16:44.523Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/jahlives/openssl_encrypt/security/advisories/GHSA-4g2c-wpgj-49w8","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/openssl-encrypt-before-authentication-bypass-via-bearer-token","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74895","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74895 — openssl_encrypt versions before 1.4.0 fail to apply sandbox restrictions in the default process isol…","description":"openssl_encrypt versions before 1.4.0 fail to apply sandbox restrictions in the default process isolation mode for plugin execution. Attackers can execute malicious plugins with unrestricted access to the filesystem, network, subprocess execution, and all Python modules.","indicators":{"cves":["CVE-2026-74895"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T11:16:44.653Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/jahlives/openssl_encrypt/security/advisories/GHSA-623h-chj7-hfx8","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/openssl-encrypt-before-plugin-sandbox-bypass-via-process-isolation","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74896","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74896 — openssl_encrypt versions before 1.4.0 contain a sandbox escape vulnerability in the DangerousPattern…","description":"openssl_encrypt versions before 1.4.0 contain a sandbox escape vulnerability in the DangerousPatternVisitor AST analyzer that fails to detect dunder attribute traversal techniques. Attackers can use __class__, __bases__, __subclasses__(), and __globals__ chains to access restricted functions and exe…","indicators":{"cves":["CVE-2026-74896"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T11:16:44.787Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/jahlives/openssl_encrypt/security/advisories/GHSA-w7gr-9g4g-33mx","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/openssl-encrypt-before-sandbox-escape-via-dunder-attribute-traversal","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/jahlives/openssl_encrypt/security/advisories/GHSA-w7gr-9g4g-33mx","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-74899","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74899 — openssl_encrypt versions before 1.4.0 contain a sandbox escape vulnerability in IsolatedPluginExecut…","description":"openssl_encrypt versions before 1.4.0 contain a sandbox escape vulnerability in IsolatedPluginExecutor that exposes Python type objects in restricted exec() builtins. Attackers can traverse the Python class hierarchy via __class__.__mro__.__subclasses__() to access system functions and execute arbit…","indicators":{"cves":["CVE-2026-74899"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T11:16:44.917Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/jahlives/openssl_encrypt/security/advisories/GHSA-m25m-ggxg-239c","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/openssl-encrypt-before-sandbox-escape-via-type-hierarchy","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-43jx-gxq4-jpjc","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-74900","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74900 — openssl_encrypt versions before 1.4.0 contain a critical vulnerability in pqc.py where KEM decapsula…","description":"openssl_encrypt versions before 1.4.0 contain a critical vulnerability in pqc.py where KEM decapsulation failures silently fall back to simulation mode, generating a deterministic shared secret from only 16 bytes of the private key and publicly available encapsulated key data. Attackers who obtain 1…","indicators":{"cves":["CVE-2026-74900"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T11:16:45.050Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/jahlives/openssl_encrypt/security/advisories/GHSA-p3gq-pcg9-qvfv","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/openssl-encrypt-before-weak-shared-secret-via-pqc-simulation-mode","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74901","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74901 — openssl_encrypt versions before 1.4.0 contain an authentication bypass vulnerability in pqc.py where…","description":"openssl_encrypt versions before 1.4.0 contain an authentication bypass vulnerability in pqc.py where AES-GCM decryption failures trigger fallback to unauthenticated AES-CTR mode. Attackers can modify ciphertext in transit to bypass integrity verification and perform bit-flipping attacks without dete…","indicators":{"cves":["CVE-2026-74901"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T11:16:45.183Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/jahlives/openssl_encrypt/security/advisories/GHSA-w4j7-wfgw-r52w","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/openssl-encrypt-before-authentication-bypass-via-aes-ctr-fallback","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74843","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74843 — A vulnerability was determined in Wavlink WN531P3 and WN535M1 V250922. Affected by this vulnerabilit…","description":"A vulnerability was determined in Wavlink WN531P3 and WN535M1 V250922. Affected by this vulnerability is the function strcpy of the file /etc/lighttpd/www/cgi-bin/export_pingortrace.cgi of the component Export Pingortrace CGI. Executing a manipulation of the argument HTTP_COOKIE can lead to stack-ba…","indicators":{"cves":["CVE-2026-74843"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T12:18:58.180Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/wcndsb-sketch/WAVLINK_WN535M1-M35M1_V250922-Buffer-Overflow/blob/main/CVE-Report-WAVLINK-WN535M1-RCE.pdf","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-74843","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/875331","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391205","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391205/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-14564","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-14564 — Insufficiently Protected Credentials vulnerability in Innotim Software Telecommunications and Consul…","description":"Insufficiently Protected Credentials vulnerability in Innotim Software Telecommunications and Consulting Trade Ltd. Co. Logsign SIEM allows Retrieve Embedded Sensitive Data.\n\nThis issue affects Logsign SIEM: from 6.4.97 before 6.4.114.","indicators":{"cves":["CVE-2026-14564"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T13:16:50.797Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-26-0847","label":"iletisim@usom.gov.tr","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-71566","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-71566 — FakeFish handles incoming credentials by passing them down to scripts. This works for real hardware…","description":"FakeFish handles incoming credentials by passing them down\n to scripts. This works for real hardware because in the end it's up to \nthe BMC to validate them. However, KubeVirt relies on a KUBECONFIG file \nmounted to the container and completely ignores the credentials. This allows any user of the cl…","indicators":{"cves":["CVE-2026-71566"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T15:16:57.610Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/openshift-metal3/fakefish/security/advisories/GHSA-qpfr-jqjq-v83w","label":"74b3a70d-cca6-4d34-9789-e83b222ae3be","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-53960","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-53960 — Discourse is an open-source discussion platform. Prior to 2026.1.6, 2026.5.2, 2026.6.1, and 2026.7.0…","description":"Discourse is an open-source discussion platform. Prior to 2026.1.6, 2026.5.2, 2026.6.1, and 2026.7.0, hidden or otherwise unviewable first-post content was leaked as an excerpt in the publicly-served Q&A (QAPage) JSON-LD structured data, exposing it to any unauthenticated visitor and to search-engin…","indicators":{"cves":["CVE-2026-53960","CVE-2026-55674"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T16:16:58.423Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/discourse/discourse/security/advisories/GHSA-j5j7-w5g3-43q8","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/discourse/discourse/security/advisories/GHSA-qx4v-rg4v-pm2g","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-64859","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-64859 — New API is a large language mode (LLM) gateway and artificial intelligence (AI) asset management sys…","description":"New API is a large language mode (LLM) gateway and artificial intelligence (AI) asset management system. Prior to 1.0.0-rc.7, the admin user list and user lookup APIs, including GET /api/user/, return User.AccessToken as access_token because User model objects are serialized after queries use Omit(\"…","indicators":{"cves":["CVE-2026-64859","CVE-2026-64865","CVE-2026-64866","CVE-2026-64868","CVE-2026-71479"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T16:17:22.280Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/QuantumNous/new-api/commit/0936e2504655a5cbf7bc3c388f6d3e2bb24916d3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/QuantumNous/new-api/pull/4929","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/QuantumNous/new-api/releases/tag/v1.0.0-rc.7","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/QuantumNous/new-api/security/advisories/GHSA-6x2c-phff-wx57","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/QuantumNous/new-api/commit/dfc0d6324b40c1d6c2972e524409f933541bfb0f","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/QuantumNous/new-api/releases/tag/v1.0.0-rc.16","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/QuantumNous/new-api/security/advisories/GHSA-j6gc-4893-qwmp","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/QuantumNous/new-api/security/advisories/GHSA-p845-629j-rcj6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/QuantumNous/new-api/commit/d2f7f9ee3adf3ef66798783a60d7bc712451c85c","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/QuantumNous/new-api/pull/5244","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/QuantumNous/new-api/releases/tag/v1.0.0-rc.11","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/QuantumNous/new-api/security/advisories/GHSA-v828-m3pf-vq9q","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/QuantumNous/new-api/commit/c9943d37ad93477dd937fc4901cc3c4e0fd8aaab","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/QuantumNous/new-api/commit/d0bd8aac742d1e160a5ca61743fe35f4fff880e8","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/QuantumNous/new-api/releases/tag/v1.0.0-rc.18","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/QuantumNous/new-api/security/advisories/GHSA-8r8v-xf7q-rcpr","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75045","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-75045 — In JetBrains YouTrack before 2025.3.156085, 2026.1.13913, 2026.2.18112 an unauthenticated attacker c…","description":"In JetBrains YouTrack before 2025.3.156085, \n2026.1.13913, \n2026.2.18112 an unauthenticated attacker could download database backups via shared draft signature","indicators":{"cves":["CVE-2026-75045"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T16:17:51.530Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://www.jetbrains.com/privacy-security/issues-fixed/","label":"cve@jetbrains.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-50768","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-50768 — File Upload vulnerability in T-Systems International GmbH ImageMaster Version: 9.14.2.8.1 allows a r…","description":"File Upload vulnerability in T-Systems International GmbH ImageMaster Version: 9.14.2.8.1 allows a remote attacker to execute arbitrary code via the add attachments feature in the create new document function.","indicators":{"cves":["CVE-2026-50768"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T18:17:08.760Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/Henkel-CyberVM/CVEs/tree/main/CVE-2026-50768","label":"cve@mitre.org","domainType":"primary"},{"url":"https://www.t-systems.com/in/en/content-and-collaboration/solutions/enterprise-content-management/imagemaster","label":"cve@mitre.org","domainType":"other"},{"url":"https://github.com/Henkel-CyberVM/CVEs/tree/main/CVE-2026-50768","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-50769","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-50769 — The CRM+ application before and including version 2025.6 from Brainformatik is vulnerable to SQL Inj…","description":"The CRM+ application before and including version 2025.6 from Brainformatik is vulnerable to SQL Injection (time-based) vulnerability. The check conflict endpoint index.php?module=Appointments&action=CheckConflictOfDates&ajaxSkipHeader=true which is used to check any conflicts for user calendar is v…","indicators":{"cves":["CVE-2026-50769"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T18:17:08.880Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/Henkel-CyberVM/CVEs/tree/main/CVE-2026-50769","label":"cve@mitre.org","domainType":"primary"},{"url":"https://www.brainformatik.com/","label":"cve@mitre.org","domainType":"other"},{"url":"https://github.com/Henkel-CyberVM/CVEs/tree/main/CVE-2026-50769","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-50770","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-50770 — An issue in Squirro Cognitive Search before v.3.14.2 allows a remote attacker to escalate privileges…","description":"An issue in Squirro Cognitive Search before v.3.14.2 allows a remote attacker to escalate privileges via a crafted request.","indicators":{"cves":["CVE-2026-50770"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T18:17:08.990Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://docs.squirro.com/en/latest/products/cognitive-search.html","label":"cve@mitre.org","domainType":"other"},{"url":"https://github.com/Henkel-CyberVM/CVEs/tree/main/CVE-2026-50770","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/Henkel-CyberVM/CVEs/tree/main/CVE-2026-50770","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-50772","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-50772 — An issue in Squirro Cognitive Search < 3.14.2 allows a remote attacker to execute arbitrary code via…","description":"An issue in Squirro Cognitive Search < 3.14.2 allows a remote attacker to execute arbitrary code via a crafted payload to the password reset function.","indicators":{"cves":["CVE-2026-50772"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T18:17:09.207Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://docs.squirro.com/en/latest/products/cognitive-search.html","label":"cve@mitre.org","domainType":"other"},{"url":"https://github.com/Henkel-CyberVM/CVEs/tree/main/CVE-2026-50772","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/Henkel-CyberVM/CVEs/tree/main/CVE-2026-50772","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-51346","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-51346 — SQL Injection vulnerability in StudIP 6.0.x before 6.0.3 and 5.4.x before 5.4.12 allows a remote att…","description":"SQL Injection vulnerability in StudIP 6.0.x before 6.0.3 and 5.4.x before 5.4.12 allows a remote attacker to execute arbitrary code and obtain sensitive information via the store() functions.","indicators":{"cves":["CVE-2026-51346"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T18:17:09.320Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://gitlab.studip.de/studip/studip/-/releases/v6.0.3","label":"cve@mitre.org","domainType":"other"},{"url":"https://simon.hilchenba.ch/blog/studip-sql-injection/","label":"cve@mitre.org","domainType":"other"},{"url":"https://simon.hilchenba.ch/blog/studip-sql-injection/","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74253","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74253 — Joomla Extension - regularlabs.com - Unauthenticated RCE through unverified reflected user input in…","description":"Joomla Extension - regularlabs.com - Unauthenticated RCE through unverified reflected user input in Sourcerer < 14.0.0 - Regular Labs Sourcerer before 14.0.0 processes {source} blocks found in Joomla’s final rendered HTML without reliably determining where that code originated.","indicators":{"cves":["CVE-2026-74253"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T18:18:14.780Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://regularlabs.com/","label":"security@joomla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-50774","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-50774 — An issue in GAPTEQ Designer v.3.5 allows a remote attacker to escalate privileges via the Company Ma…","description":"An issue in GAPTEQ Designer v.3.5 allows a remote attacker to escalate privileges via the Company Manger role.","indicators":{"cves":["CVE-2026-50774"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T19:16:31.767Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://gapteq.com/en/","label":"cve@mitre.org","domainType":"other"},{"url":"https://github.com/Henkel-CyberVM/CVEs/tree/main/CVE-2026-50774","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/Henkel-CyberVM/CVEs/tree/main/CVE-2026-50774","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-50775","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-50775 — A blind SSRF attack in DataHub v.1.5.0.1 allows a remote attacker to execute arbitrary code via the…","description":"A blind SSRF attack in DataHub v.1.5.0.1 allows a remote attacker to execute arbitrary code via the server retrieving an image from a crafted URL, and it fails to return the content or any errors directly.","indicators":{"cves":["CVE-2026-50775"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T19:16:31.873Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://datahub.com/","label":"cve@mitre.org","domainType":"other"},{"url":"https://github.com/Henkel-CyberVM/CVEs/tree/main/CVE-2026-50775","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/Henkel-CyberVM/CVEs/tree/main/CVE-2026-50775","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-66792","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-66792 — A flaw was found in the multicloud-operators-subscription component. This vulnerability allows a use…","description":"A flaw was found in the multicloud-operators-subscription component. This vulnerability allows a user on a managed cluster to escalate their privileges by creating a Subscription with specific, crafted annotations. Successful exploitation grants the attacker the ability to deploy resources into any…","indicators":{"cves":["CVE-2026-66792"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T19:16:34.237Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-66792","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2507537","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19478","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-19478 — GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.2 before 18.11.11, 19.…","description":"GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.2 before 18.11.11, 19.0 before 19.0.8, 19.1 before 19.1.6, and 19.2 before 19.2.4 that under certain conditions could allow an unauthenticated user to remotely modify or delete public projects and user data via a GraphQL d…","indicators":{"cves":["CVE-2026-19478","CVE-2026-19650"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T20:16:41.777Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://docs.gitlab.com/releases/patches/patch-release-gitlab-19-2-4-released/","label":"cve@gitlab.com","domainType":"other"},{"url":"https://gitlab.com/gitlab-org/gitlab/-/work_items/611377","label":"cve@gitlab.com","domainType":"other"},{"url":"https://hackerone.com/reports/3926431","label":"cve@gitlab.com","domainType":"other"},{"url":"https://gitlab.com/gitlab-org/gitlab/-/work_items/612617","label":"cve@gitlab.com","domainType":"other"},{"url":"https://hackerone.com/reports/3903669","label":"cve@gitlab.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-67678","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-67678 — File Upload vulnerability in RainyGao-Hithub DocSys v.2.02.80 allows a remote attacker to execute ar…","description":"File Upload vulnerability in RainyGao-Hithub DocSys v.2.02.80 allows a remote attacker to execute arbitrary code","indicators":{"cves":["CVE-2026-67678"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T20:16:45.137Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/RainyGao-GitHub/DocSys/issues/49","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/Y4y17/CVE/blob/main/DocSys/%E4%BB%BB%E6%84%8F%E6%96%87%E4%BB%B6%E4%B8%8A%E4%BC%A0%E6%BC%8F%E6%B4%9E.md","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/Y4y17/CVE/blob/main/DocSys/%E4%BB%BB%E6%84%8F%E6%96%87%E4%BB%B6%E4%B8%8A%E4%BC%A0%E6%BC%8F%E6%B4%9E.md","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-68004","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-68004 — An issue in OSSRS SRS (Simple Realtime Server) <v5.0.213 allows a remote attacker to execute arbitra…","description":"An issue in OSSRS SRS (Simple Realtime Server) <v5.0.213 allows a remote attacker to execute arbitrary code via RTMP publish authorization, vhost-level security configuration (security.enabled), SrsSecurity::check(), trunk/src/app/srs_app_security.cpp, and SRS RTMP listener components","indicators":{"cves":["CVE-2026-68004"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T20:16:45.240Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/ossrs/srs/releases/tag/v5.0-r3","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/xuwu-xuwu/CVE-2026-68004","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/xuwu-xuwu/CVE-2026-68004","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-71472","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-71472 — A flaw was found in acm-search-v2-rhel9. This vulnerability allows an authenticated attacker, such a…","description":"A flaw was found in acm-search-v2-rhel9. This vulnerability allows an authenticated attacker, such as a hub administrator or a Search Custom Resource (CR) editor, to inject malicious shell commands or SQL statements. This occurs because the WORK_MEM string provided in the Search CR is not properly v…","indicators":{"cves":["CVE-2026-71472"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T20:16:45.777Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-71472","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2512151","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-39254","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-39254 — Buffer Overflow vulnerability in SteelSeries GG (macOS) v.107.0.0 allows a remote attacker to execut…","description":"Buffer Overflow vulnerability in SteelSeries GG (macOS) v.107.0.0 allows a remote attacker to execute arbitrary code via the libSSEdevice.dylib, CxAudioHidDevice::DeviceGetDescriptionString components","indicators":{"cves":["CVE-2026-39254","CVE-2026-39255"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:44.710Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/Cipher-Security-Labs/research/tree/main/CSL-2026-03","label":"cve@mitre.org","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-47686","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-47686 — vm2 is an open source vm/sandbox for Node.js. Prior to 3.11.6, handleException() in lib/setup-sandbo…","description":"vm2 is an open source vm/sandbox for Node.js. Prior to 3.11.6, handleException() in lib/setup-sandbox.js sanitizes SuppressedError.error, SuppressedError.suppressed, and AggregateError.errors but does not sanitize Error.cause, allowing sandbox code to obtain a powerful host object such as process fr…","indicators":{"cves":["CVE-2026-47686"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:45.507Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/patriksimek/vm2/commit/7e3faaf550f4ab975bf4cdde183fcec49b056d8e","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/patriksimek/vm2/releases/tag/3.11.6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/patriksimek/vm2/security/advisories/GHSA-m283-3h24-438v","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-47698","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-47698 — vm2 is an open source vm/sandbox for Node.js. Prior to 3.11.6, lib/bridge.js and lib/setup-sandbox.j…","description":"vm2 is an open source vm/sandbox for Node.js. Prior to 3.11.6, lib/bridge.js and lib/setup-sandbox.js fail to block stacked indirection through Function.prototype.call around dangerous host prototype getter and setter mutators, allowing sandbox code to sever a host intrinsic's prototype chain and re…","indicators":{"cves":["CVE-2026-47698"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:45.640Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/patriksimek/vm2/commit/a85acb61f81402c6eabf32760aa11272af6d0f9e","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/patriksimek/vm2/releases/tag/3.11.6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/patriksimek/vm2/security/advisories/GHSA-cfcw-xp6x-25gj","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/patriksimek/vm2/security/advisories/GHSA-cfcw-xp6x-25gj","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-65640","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-65640 — WordPress is vulnerable to a remote code execution vulnerability via malicious Postscript file uploa…","description":"WordPress is vulnerable to a remote code execution vulnerability via malicious Postscript file upload by an Author level user or higher.\n\nPrerequisites:\n* Imagick and Ghostscript in use on the server\n* A malicious user with the `upload_files` capability\n\nThis issue affects all versions of WordPress.…","indicators":{"cves":["CVE-2026-65640"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:46.470Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://wordpress.org/news/2026/08/wordpress-7-0-4-release/","label":"support@hackerone.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-65974","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-65974 — ERPNext is a free and open source Enterprise Resource Planning tool. Prior to 15.111.0 and 16.22.0,…","description":"ERPNext is a free and open source Enterprise Resource Planning tool. Prior to 15.111.0 and 16.22.0, limited authenticated users can cross a permission boundary in Frappe safe execution because frappe.render_template is exposed without forcing restrict_globals, allowing server-side template injection…","indicators":{"cves":["CVE-2026-65974"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:46.887Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/frappe/erpnext/releases/tag/v15.111.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frappe/erpnext/releases/tag/v16.22.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frappe/erpnext/security/advisories/GHSA-w996-r7v3-87wr","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frappe/frappe/commit/529d190a252863672164d10bfcd91d1de0ac1c7c","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-66795","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-66795 — A flaw was found in the managedcluster-import-controller. The Certificate Signing Request (CSR) auto…","description":"A flaw was found in the managedcluster-import-controller. The Certificate Signing Request (CSR) auto-approval logic improperly validates incoming CSRs, specifically by not inspecting the signer name or decoding the PEM-encoded x509 CSR. This vulnerability allows a privileged service account on a spo…","indicators":{"cves":["CVE-2026-66795"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:47.163Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-66795","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2507540","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-67917","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-67917 — zuraCast versions up to and including 0.23.7 contain a SQL injection vulnerability in the backup res…","description":"zuraCast versions up to and including 0.23.7 contain a SQL injection vulnerability in the backup restore functionality. The `azuracast:restore` command executes the `db.sql` file extracted from a backup archive without any content validation or sanitization. This allows a remote attacker to escalate…","indicators":{"cves":["CVE-2026-67917"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:47.290Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/luoxuanxi/SQL-Injection-PoC","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/luoxuanxi/SQL-Injection-PoC/tree/main/SQL-Injection-PoC","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/luoxuanxi/SQL-Injection-PoC/tree/main/SQL-Injection-PoC","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-67926","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-67926 — An issue in JeecgBoot v.3.9.2 allows a remote attacker to execute arbitrary code via the files Param…","description":"An issue in JeecgBoot v.3.9.2 allows a remote attacker to execute arbitrary code via the files Parameter in JeecgBoot AI Chat Module","indicators":{"cves":["CVE-2026-67926"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:47.507Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/jeecgboot/JeecgBoot/issues/9774","label":"cve@mitre.org","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-67965","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-67965 — An issue in Tneda W20E v.16.01.0.6(2782) allows a remote attacker to execute arbitrary code via the…","description":"An issue in Tneda W20E v.16.01.0.6(2782) allows a remote attacker to execute arbitrary code via the url_need_login function","indicators":{"cves":["CVE-2026-67965"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:47.610Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/H0111mes/Tenda-W20E-Vulnerability-Disclosure","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/H0111mes/Tenda-W20E-Vulnerability-Disclosure","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-67966","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-67966 — Tenda W20E V16.01.0.6(2782) /goform/telnet endpoint allows unauthenticated remote attackers to activ…","description":"Tenda W20E V16.01.0.6(2782) /goform/telnet endpoint allows unauthenticated remote attackers to activate the Telnet daemon and obtain root shell access.","indicators":{"cves":["CVE-2026-67966"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:47.737Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/H0111mes/Tenda-W20E-Vulnerability-Disclosure","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/H0111mes/Tenda-W20E-Vulnerability-Disclosure","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-67967","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-67967 — Buffer Overflow vulnerability in Tenda W20E V16.01.0.6(2782) allows an attacker to execute arbitrary…","description":"Buffer Overflow vulnerability in Tenda W20E V16.01.0.6(2782) allows an attacker to execute arbitrary code. This is an incomplete fix for CVE-2025-44867 and CVE-2026-36819","indicators":{"cves":["CVE-2026-67967"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:47.840Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/H0111mes/Tenda-W20E-Vulnerability-Disclosure","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/H0111mes/Tenda-W20E-Vulnerability-Disclosure","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75106","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-75106 — OpnForm derives editable-submission secrets from sequential row identifiers using Hashids with an em…","description":"OpnForm derives editable-submission secrets from sequential row identifiers using Hashids with an empty default salt, allowing unauthenticated attackers to compute hashes for any submission. Attackers can read other respondents' full submission data through the submission-fetch endpoint or overwrite…","indicators":{"cves":["CVE-2026-75106"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:49.610Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/OpnForm/OpnForm","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/OpnForm/OpnForm/commit/6c67ff0a9bc0ac27ae26b32b8e108a176f8161b1","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/OpnForm/OpnForm/issues/1259","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/OpnForm/OpnForm/releases/tag/v2.0.2","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/opnform-editable-submission-secret-derivation-via-empty-hashids-salt","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/OpnForm/OpnForm/issues/1259","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75110","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-75110 — MemOS is a memory operating system for LLMs and AI agents. In deployments where authentication is en…","description":"MemOS is a memory operating system for LLMs and AI agents. In deployments where authentication is enabled (AUTH_ENABLED=true) but the undocumented, defaultless INTERNAL_SERVICE_SECRET environment variable is unset, the is_internal_request() check in src/memos/api/middleware/auth.py fails open: os.ge…","indicators":{"cves":["CVE-2026-75110"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:50.043Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/MemTensor/MemOS","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/MemTensor/MemOS/blob/main/src/memos/api/middleware/auth.py","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/MemTensor/MemOS/issues/2259","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/memos-authentication-bypass-via-unset-internal-service-secret","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/MemTensor/MemOS/issues/2259","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-42163","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-42163 — Mahara before 25.04.5 and 26.04.0 is vulnerable to unauthorized access to internal accounts via Lear…","description":"Mahara before 25.04.5 and 26.04.0 is vulnerable to unauthorized access to internal accounts via Learning Tools Interoperability (LTI) under certain circumstances. This applies to LTI 1.1 and LTI 1.3 Advantage.","indicators":{"cves":["CVE-2026-42163"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T22:17:05.687Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://mahara.org/interaction/forum/topic.php?id=10077","label":"cve@mitre.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-51977","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-51977 — An issue in Trueview T18061 WiFi 3MP Robot Pan-Tilt Security Camera Version 1.0 allows a physically…","description":"An issue in Trueview T18061 WiFi 3MP Robot Pan-Tilt Security Camera Version 1.0 allows a physically proximate attacker to escalate privileges via the RSA private key component","indicators":{"cves":["CVE-2026-51977"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T22:17:14.487Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/EmbdCDACHyd/CVE/blob/main/CVE-2026-51977/README.md","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/EmbdCDACHyd/CVE/blob/main/CVE-2026-51977/README.md","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-67854","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-67854 — SQL Injection vulnerability in Qcms v.6.0.6 allows a remote attacker to execute arbitrary code","description":"SQL Injection vulnerability in Qcms v.6.0.6 allows a remote attacker to execute arbitrary code","indicators":{"cves":["CVE-2026-67854"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T22:17:25.680Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://jiuzero.github.io/2026/07/04/QCMS-tableField-Action-Backend-SQL-Injection-Vulnerability-White-box-Audit-Report?PASSWORD=cve520cve","label":"cve@mitre.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-67868","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-67868 — A heap-based out-of-bounds write vulnerability exists in S2OPC 1.7.3 in server-side EventFilter hand…","description":"A heap-based out-of-bounds write vulnerability exists in S2OPC 1.7.3 in server-side EventFilter handling during CreateMonitoredItems processing. This allows a remote attacker to execute arbitrary code.","indicators":{"cves":["CVE-2026-67868"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T22:17:25.790Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/gff-cw/information/issues/16","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/systerel/S2OPC/blob/b4c5c7d63cd69698461d514b905a7c92b3c377c4/src/ClientServer/services/b2c/monitored_item_event_filter_treatment_bs.c","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/systerel/S2OPC/blob/b4c5c7d63cd69698461d514b905a7c92b3c377c4/src/ClientServer/services/b2c/monitored_item_event_filter_where_clause_bs.c","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/systerel/S2OPC/tree/S2OPC_Toolkit_1.7.3/samples/ClientServer/demo_server_alarms","label":"cve@mitre.org","domainType":"primary"},{"url":"https://gitlab.com/systerel/S2OPC/-/work_items/1779","label":"cve@mitre.org","domainType":"other"},{"url":"https://github.com/gff-cw/information/issues/16","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-67960","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-67960 — An issue in PbootCMS v.3.2.15 allows an attacker to execute arbitrary code via the MemberController.…","description":"An issue in PbootCMS v.3.2.15 allows an attacker to execute arbitrary code via the MemberController.php, UserController.php, CommentController.php, ContentController.php, and helper.php components","indicators":{"cves":["CVE-2026-67960"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T22:17:26.020Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/user-attachments/files/30816503/PbootCMS-3.2.15URL.Redirection.Vulnerability.docx","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/xy-f0/CVE/issues/1#issue-4890245413","label":"cve@mitre.org","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-71424","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-71424 — Onyx is an open-source AI platform. Prior to 3.1.10, 3.2.14, and 4.0.0, Onyx's GET /api/mcp/servers…","description":"Onyx is an open-source AI platform. Prior to 3.1.10, 3.2.14, and 4.0.0, Onyx's GET /api/mcp/servers and GET /api/mcp/servers/persona/{persona_id} endpoints expose another user's OAuth Authorization header because OnyxTokenStorage.set_tokens and OnyxTokenStorage.set_client_info in backend/onyx/server…","indicators":{"cves":["CVE-2026-71424"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T22:17:26.527Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/onyx-dot-app/onyx/commit/3f3d79d1a7722fdc84a1c61c8aa830d890017e9e","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/onyx-dot-app/onyx/commit/4001cedd0a8968723bfe95dd188914ed56777910","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/onyx-dot-app/onyx/commit/b103937888fd5008067c2bb6eb6e5424576394f2","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/onyx-dot-app/onyx/pull/11238","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/onyx-dot-app/onyx/pull/11242","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/onyx-dot-app/onyx/pull/11243","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/onyx-dot-app/onyx/releases/tag/v4.0.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/onyx-dot-app/onyx/security/advisories/GHSA-q62f-rv3h-f822","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-38165","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-38165 — A Server-Side Template Injection (SSTI) vulnerability in the Velocity template engine configuration…","description":"A Server-Side Template Injection (SSTI) vulnerability in the Velocity template engine configuration of xdocreport v0.9.2 to v2.2.0 allows attackers to execute arbitrary code via a crafted expression.","indicators":{"cves":["CVE-2026-38165"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T23:16:51.230Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/AT190510-Cuong/CVE-2026-38165-SSTI-","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/opensagres/xdocreport","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/opensagres/xdocreport/pull/723","label":"cve@mitre.org","domainType":"primary"},{"url":"https://hackmd.io/@cuongnh/H1sB1RIy-g","label":"cve@mitre.org","domainType":"other"},{"url":"https://hackmd.io/@cuongnh/SyPn-XF0ll","label":"cve@mitre.org","domainType":"other"},{"url":"https://github.com/AT190510-Cuong/CVE-2026-38165-SSTI-","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-42162","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-42162 — Mahara before 25.04.5 and 26.04.0 is vulnerable to artefacts being accessible to others under certai…","description":"Mahara before 25.04.5 and 26.04.0 is vulnerable to artefacts being accessible to others under certain circumstances when the file path to an artefact in a page is manipulated.","indicators":{"cves":["CVE-2026-42162"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T23:16:52.023Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://mahara.org","label":"cve@mitre.org","domainType":"other"},{"url":"https://mahara.org/interaction/forum/topic.php?id=10057","label":"cve@mitre.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-42164","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-42164 — Mahara before 25.04.5 and 26.04.0 is vulnerable in the Text block/section functionality when a call…","description":"Mahara before 25.04.5 and 26.04.0 is vulnerable in the Text block/section functionality when a call is crafted in a certain way that allows it to recall the backed-up content from another Text section.","indicators":{"cves":["CVE-2026-42164"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T23:16:52.123Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://mahara.org","label":"cve@mitre.org","domainType":"other"},{"url":"https://mahara.org/interaction/forum/topic.php?id=10057","label":"cve@mitre.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-67919","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-67919 — An issue in Halo 2.25.4 allows a remote attacker to execute arbitrary code via the PluginEndpoint.ja…","description":"An issue in Halo 2.25.4 allows a remote attacker to execute arbitrary code via the PluginEndpoint.java, installFromUri method, and DefaultPluginApplicationContextFactory components","indicators":{"cves":["CVE-2026-67919"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T23:16:52.240Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://gist.github.com/unpredictable21/d392c26986e81a95676f2a370ecb272b","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/halo-dev/halo/blob/main/README.md","label":"cve@mitre.org","domainType":"primary"},{"url":"https://gist.github.com/unpredictable21/d392c26986e81a95676f2a370ecb272b","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75094","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-75094 — A flaw has been found in COMFAST CF-N1-S 2.6.0.1. This impacts the function sub_44B438 of the file /…","description":"A flaw has been found in COMFAST CF-N1-S 2.6.0.1. This impacts the function sub_44B438 of the file /cgi-bin/mbox-config?method=SET&section=ptest_ssid of the component CGI Interface. This manipulation of the argument ssid causes os command injection. Remote exploitation of the attack is possible. The…","indicators":{"cves":["CVE-2026-75094"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T02:17:30.757Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/1ChaoRen1/IOT_1","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-75094","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/877482","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391346","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391346/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15748","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-15748 — The Forminator Forms plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up…","description":"The Forminator Forms plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 1.56.1 via the handle_file_upload function. This is due to insufficient file type validation in handle_file_upload, where the dangerous-extension blocklist performs exact-key matchi…","indicators":{"cves":["CVE-2026-15748"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T06:16:40.670Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/forminator/tags/1.55.1/admin/classes/class-admin-ajax.php#L1196","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/forminator/tags/1.55.1/library/abstracts/abstract-class-field.php#L2308","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/forminator/tags/1.55.1/library/fields/upload.php#L552","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/forminator/tags/1.55.1/library/helpers/helper-fields.php#L3425","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/forminator/tags/1.55.1/library/modules/custom-forms/front/front-action.php#L2767","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/forminator/tags/1.55.1/library/modules/custom-forms/front/front-action.php#L738","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/263ac05d-f1ca-46e3-a43e-3b45eb8066d4?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-34884","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-34884 — SSRF via set_skywalking_url Tool and GraphQL expression injection vulnerability in Apache SkyWalking…","description":"SSRF via set_skywalking_url Tool and GraphQL expression injection vulnerability in Apache SkyWalking MCP.\n\n\n\n\n\nThis issue affects Apache SkyWalking MCP: 0.1.0.\n\nUsers are recommended to upgrade to version 0.2.0, which fixes this issue.","indicators":{"cves":["CVE-2026-34884"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T08:16:42.470Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://lists.apache.org/thread/s447p6h5dfr02lx17v27phoksgb8mkkp","label":"security@apache.org","domainType":"other"},{"url":"http://www.openwall.com/lists/oss-security/2026/04/13/5","label":"af854a3a-2127-422b-91ae-364da2661108","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75626","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-75626 — SpiderFoot fails to HTML-escape correlation titles built from external scan data sources including s…","description":"SpiderFoot fails to HTML-escape correlation titles built from external scan data sources including server banners and metadata. Attackers can inject malicious HTML elements with event handlers into correlation results that execute scripts in the operator's browser when the correlations view is opene…","indicators":{"cves":["CVE-2026-75626"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T11:16:51.920Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/smicallef/spiderfoot","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/smicallef/spiderfoot/blob/master/spiderfoot/correlation.py","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/smicallef/spiderfoot/issues/2012","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/spiderfoot-stored-cross-site-scripting-via-correlation-titles","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/smicallef/spiderfoot/issues/2012","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75627","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-75627 — Bastillion fails to properly validate request URI paths in its controller dispatcher, allowing unaut…","description":"Bastillion fails to properly validate request URI paths in its controller dispatcher, allowing unauthenticated attackers to bypass authentication filters by prefixing requests with arbitrary path segments. Attackers can access administrative controllers to read user listings, create manager accounts…","indicators":{"cves":["CVE-2026-75627"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T11:16:52.060Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/bastillion-io/Bastillion","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/bastillion-io/Bastillion/blob/master/src/main/java/loophole/mvc/base/BaseKontroller.java","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/bastillion-io/Bastillion/commit/d759fb686a1a097b1b026e286fd9b20e5ba349c8","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/bastillion-io/Bastillion/issues/669","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/bastillion-authentication-bypass-via-path-prefix-routing-mismatch","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/bastillion-io/Bastillion/issues/669","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75837","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-75837 — Grav before 2.0.14 fails to guard the access field in the core group blueprint with the required sec…","description":"Grav before 2.0.14 fails to guard the access field in the core group blueprint with the required security@: admin.super restriction. A delegated admin.users operator can save a group with access[admin][super]=true to escalate to super-admin, gaining scheduler and Twig evaluation capabilities.","indicators":{"cves":["CVE-2026-75837"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:19:33.913Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-xhfv-7758-r9hx","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/grav-before-privilege-escalation-via-group-access-field","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-xhfv-7758-r9hx","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75843","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-75843 — ArcadeDB before 26.8.1 fails to bind the authenticated principal on the gRPC transaction executor th…","description":"ArcadeDB before 26.8.1 fails to bind the authenticated principal on the gRPC transaction executor thread in beginTransaction, allowing authenticated readers to execute JavaScript commands without scripting authorization checks. Attackers can execute executeCommand with a transaction ID to run unrest…","indicators":{"cves":["CVE-2026-75843"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:19:34.740Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/ArcadeData/arcadedb/security/advisories/GHSA-p29f-345w-4qwf","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/arcadedb-before-privilege-escalation-via-grpc-transaction","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/ArcadeData/arcadedb/security/advisories/GHSA-p29f-345w-4qwf","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75851","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-75851 — ArcadeDB server (com.arcadedb:arcadedb-server) in versions 26.7.3 and earlier fails to propagate the…","description":"ArcadeDB server (com.arcadedb:arcadedb-server) in versions 26.7.3 and earlier fails to propagate the authenticated principal to asynchronous command worker threads. When an HTTP command is submitted with awaitResponse:false, it executes on an async worker whose DatabaseContext has no bound user, cau…","indicators":{"cves":["CVE-2026-75851"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:19:35.457Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://github.com/ArcadeData/arcadedb/security/advisories/GHSA-5j4x-3jfw-8xv3","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/arcadedb-before-authentication-bypass-via-async-command","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/ArcadeData/arcadedb/security/advisories/GHSA-5j4x-3jfw-8xv3","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75852","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-75852 — ArcadeDB versions before 26.8.1 fail to enforce SASL authentication on data commands in the MongoDB…","description":"ArcadeDB versions before 26.8.1 fail to enforce SASL authentication on data commands in the MongoDB wire-protocol plugin. Unauthenticated attackers can issue insert, find, update, delete, and create commands against any database by connecting to port 27017 without credentials.","indicators":{"cves":["CVE-2026-75852"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:19:35.593Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://github.com/ArcadeData/arcadedb/security/advisories/GHSA-fq9c-x968-g278","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/arcadedb-mongodb-wire-protocol-authentication-bypass-cross-database","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75854","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-75854 — ArcadeDB versions before 26.8.1 contain a missing authentication vulnerability in the Redis wire-pro…","description":"ArcadeDB versions before 26.8.1 contain a missing authentication vulnerability in the Redis wire-protocol plugin that allows unauthenticated attackers to read, write, and delete data. Attackers can connect to the Redis port and execute arbitrary commands against any database on the server without pr…","indicators":{"cves":["CVE-2026-75854"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:19:35.860Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://github.com/ArcadeData/arcadedb/security/advisories/GHSA-m46c-jh3x-xwrp","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/arcadedb-redis-wire-protocol-plugin-missing-authentication","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/ArcadeData/arcadedb/security/advisories/GHSA-m46c-jh3x-xwrp","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-74936","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74936 — Use-after-free in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 154…","description":"Use-after-free in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74936"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:29.850Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2052688","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-76/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-79/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74938","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74938 — Mitigation bypass in the JavaScript: GC component. This vulnerability was fixed in Firefox 154, Fire…","description":"Mitigation bypass in the JavaScript: GC component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74938"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:30.103Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2053688","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74940","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74940 — Use-after-free in the Graphics: Text component. This vulnerability was fixed in Firefox 154, Firefox…","description":"Use-after-free in the Graphics: Text component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74940"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:30.370Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2054842","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-75/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-76/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-79/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74943","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74943 — Use-after-free in the Graphics: ImageLib component. This vulnerability was fixed in Firefox 154, Fir…","description":"Use-after-free in the Graphics: ImageLib component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74943"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:30.817Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2057308","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-75/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-76/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-79/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74944","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74944 — Use-after-free in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 154, Firef…","description":"Use-after-free in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74944"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:30.983Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2057778","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-76/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-79/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74956","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74956 — Same-origin policy bypass in the DOM: Service Workers component. This vulnerability was fixed in Fir…","description":"Same-origin policy bypass in the DOM: Service Workers component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74956"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:32.623Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2032406","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74961","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74961 — Side-channel in the Web Audio component. This vulnerability was fixed in Firefox 154, Firefox ESR 15…","description":"Side-channel in the Web Audio component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74961"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:33.300Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2050380","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74964","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74964 — Integer overflow in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR…","description":"Integer overflow in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74964","CVE-2026-74977"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:33.683Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2053327","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-76/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-79/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"},{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2028440","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74979","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74979 — Mitigation bypass in the Add-ons Manager component. This vulnerability was fixed in Firefox 154, Fir…","description":"Mitigation bypass in the Add-ons Manager component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74979"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:36.683Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2045676","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74985","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74985 — Privilege escalation in the Enterprise Policies component. This vulnerability was fixed in Firefox 1…","description":"Privilege escalation in the Enterprise Policies component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74985"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:40.317Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2059825","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74986","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74986 — Site isolation issue in the CSS Parsing and Computation component. This vulnerability was fixed in F…","description":"Site isolation issue in the CSS Parsing and Computation component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74986"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:40.433Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2060048","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74987","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74987 — Internally found bugs present in Thunderbird ESR 140.13, Thunderbird ESR 153.0 and Thunderbird 153.…","description":"Internally found bugs present in Thunderbird ESR 140.13, Thunderbird ESR 153.0 and Thunderbird 153. Some of these bugs showed evidence of memory corruption or another security-relevant defect and we presume that with enough effort some of these could have been exploited. This vulnerability was fixed…","indicators":{"cves":["CVE-2026-74987","CVE-2026-74990"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:40.560Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/buglist.cgi?bug_id=1500946%2C1788109%2C2045379%2C2045380%2C2049339%2C2049393%2C2053580%2C2054662%2C2054665%2C2054673%2C2054785%2C2058645","label":"security@mozilla.org","domainType":"other"},{"url":"https://bugzilla.mozilla.org/buglist.cgi?bug_id=2048797%2C2050536%2C2053272%2C2053579%2C2057115%2C2057116%2C2057130%2C2057991%2C2057995%2C2058002%2C2058008%2C2058032%2C2058102%2C2058667","label":"security@mozilla.org","domainType":"other"},{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2059424","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-76/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-79/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"},{"url":"https://bugzilla.mozilla.org/buglist.cgi?bug_id=2045762%2C2052401%2C2058208","label":"security@mozilla.org","domainType":"other"},{"url":"https://bugzilla.mozilla.org/buglist.cgi?bug_id=2045774%2C2048490%2C2050864%2C2053159%2C2053260%2C2053261%2C2053582%2C2053599%2C2053607%2C2053608%2C2053853%2C2054626%2C2054627%2C2054635%2C2054677%2C2054740%2C2054832%2C2056792%2C2057098%2C2057100%2C2057101%2C2057103%2C2057117%2C2057118%2C2058048%2C2058049%2C2058622%2C2058623%2C2058665%2C2058666%2C2059121%2C2059164%2C2059188","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-75/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74988","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74988 — Internally found bugs present in Thunderbird ESR 153.0 and Thunderbird 153. Some of these bugs showe…","description":"Internally found bugs present in Thunderbird ESR 153.0 and Thunderbird 153. Some of these bugs showed evidence of memory corruption or another security-relevant defect and we presume that with enough effort some of these could have been exploited. This vulnerability was fixed in Firefox 154, Firefox…","indicators":{"cves":["CVE-2026-74988"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:40.687Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/buglist.cgi?bug_id=2018164%2C2045404%2C2045507%2C2045711%2C2052403%2C2053174%2C2054643%2C2054667%2C2054671%2C2054674%2C2054687%2C2054717%2C2054761%2C2054787%2C2055676%2C2056779%2C2056781%2C2058629%2C2059019%2C2059138","label":"security@mozilla.org","domainType":"other"},{"url":"https://bugzilla.mozilla.org/buglist.cgi?bug_id=2045796%2C2046734%2C2051424%2C2054721%2C2057994%2C2058094%2C2058611%2C2058615%2C2058616%2C2061315","label":"security@mozilla.org","domainType":"other"},{"url":"https://bugzilla.mozilla.org/buglist.cgi?bug_id=2053153%2C2053262%2C2054763%2C2059198%2C2059224","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74989","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74989 — Internally found bugs present in Thunderbird 153. Some of these bugs showed evidence of memory corru…","description":"Internally found bugs present in Thunderbird 153. Some of these bugs showed evidence of memory corruption or another security-relevant defect and we presume that with enough effort some of these could have been exploited. This vulnerability was fixed in Firefox 154 and Thunderbird 154.","indicators":{"cves":["CVE-2026-74989"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:40.810Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/buglist.cgi?bug_id=2022257%2C2027351%2C2027380%2C2029289","label":"security@mozilla.org","domainType":"other"},{"url":"https://bugzilla.mozilla.org/buglist.cgi?bug_id=2027388%2C2029750%2C2029794%2C2043298%2C2045126%2C2049810%2C2051741","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75783","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-75783 — A security vulnerability has been detected in TRENDnet TEW-WLC100P 12.07b01. Affected by this vulner…","description":"A security vulnerability has been detected in TRENDnet TEW-WLC100P 12.07b01. Affected by this vulnerability is an unknown functionality of the file /sbin/netifd of the component DHCP blobmsg Handler. The manipulation leads to stack-based buffer overflow. The attack must be carried out from within th…","indicators":{"cves":["CVE-2026-75783"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:43.287Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://github.com/meishigana/CVE/blob/main/team15_20260702/01_wlc100p-netifd/poc/poc-netifd-overflow.py","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/meishigana/CVE/tree/main/team15_20260702/01_wlc100p-netifd","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-75783","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/877772","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391524","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391524/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75874","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-75874 — Sandbox escape in the Remote Settings Client component. This vulnerability was fixed in Firefox 154…","description":"Sandbox escape in the Remote Settings Client component. This vulnerability was fixed in Firefox 154 and Thunderbird 154.","indicators":{"cves":["CVE-2026-75874"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:43.500Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2039972","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-28192","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-28192 — Unauthenticated Arbitrary File Upload in Piotnet Addons For Elementor Pro <= 7.1.67 versions.","description":"Unauthenticated Arbitrary File Upload in Piotnet Addons For Elementor Pro <= 7.1.67 versions.","indicators":{"cves":["CVE-2026-28192"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T14:17:02.197Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/piotnet-addons-for-elementor-pro/vulnerability/wordpress-piotnet-addons-for-elementor-pro-plugin-7-1-67-arbitrary-file-upload-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-32444","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-32444 — Contributor Remote Code Execution (RCE) in Cwicly <= 1.4.4 versions.","description":"Contributor Remote Code Execution (RCE) in Cwicly <= 1.4.4 versions.","indicators":{"cves":["CVE-2026-32444"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T14:17:03.263Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/cwicly/vulnerability/wordpress-cwicly-plugin-1-4-4-remote-code-execution-rce-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-32463","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-32463 — Contributor Arbitrary File Upload in Sync Post With Other Site <= 1.9.3 versions.","description":"Contributor Arbitrary File Upload in Sync Post With Other Site <= 1.9.3 versions.","indicators":{"cves":["CVE-2026-32463"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T14:17:03.400Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/sync-post-with-other-site/vulnerability/wordpress-sync-post-with-other-site-plugin-1-9-3-arbitrary-file-upload-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-32470","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-32470 — Unauthenticated PHP Object Injection in FundEngine <= 1.7.9 versions.","description":"Unauthenticated PHP Object Injection in FundEngine <= 1.7.9 versions.","indicators":{"cves":["CVE-2026-32470","CVE-2026-73993"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:52.690Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/wp-fundraising-donation/vulnerability/wordpress-fundengine-plugin-1-7-9-php-object-injection-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"},{"url":"https://patchstack.com/database/wordpress/plugin/wp-fundraising-donation/vulnerability/wordpress-fundengine-plugin-1-7-9-php-object-injection-vulnerability-2?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-32474","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-32474 — Contributor Arbitrary File Upload in Templatiq <= 0.2.5 versions.","description":"Contributor Arbitrary File Upload in Templatiq <= 0.2.5 versions.","indicators":{"cves":["CVE-2026-32474"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:53.083Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/templatiq/vulnerability/wordpress-templatiq-plugin-0-2-5-arbitrary-file-upload-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-59940","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-59940 — Seroval facilitates JS value stringification, including complex structures beyond JSON.stringify cap…","description":"Seroval facilitates JS value stringification, including complex structures beyond JSON.stringify capabilities. Prior to 1.5.3, seroval.fromJSON() allows attacker-controlled JSON Promise control nodes to operate on values from the general deserialization reference table without verifying genuine inte…","indicators":{"cves":["CVE-2026-59940"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:56.007Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://github.com/lxsmnsyc/seroval/security/advisories/GHSA-mv8w-475r-vwqw","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-66627","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-66627 — Contributor Arbitrary File Upload in GP Premium <= 2.5.5 versions.","description":"Contributor Arbitrary File Upload in GP Premium <= 2.5.5 versions.","indicators":{"cves":["CVE-2026-66627"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:57.563Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/gp-premium/vulnerability/wordpress-gp-premium-plugin-2-5-5-arbitrary-file-upload-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73187","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-73187 — Unauthenticated SQL Injection in Sticky Chat Widget <= 1.4.2 versions.","description":"Unauthenticated SQL Injection in Sticky Chat Widget <= 1.4.2 versions.","indicators":{"cves":["CVE-2026-73187"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:01.930Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/sticky-chat-widget/vulnerability/wordpress-sticky-chat-widget-plugin-1-4-2-sql-injection-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73339","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-73339 — Unauthenticated SQL Injection in Modern Events Calendar < 7.35.0 versions.","description":"Unauthenticated SQL Injection in Modern Events Calendar < 7.35.0 versions.","indicators":{"cves":["CVE-2026-73339"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:02.480Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/modern-events-calendar/vulnerability/wordpress-modern-events-calendar-plugin-7-35-0-sql-injection-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73341","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-73341 — Unauthenticated PHP Object Injection in RegistrationMagic <= 6.0.9.7 versions.","description":"Unauthenticated PHP Object Injection in RegistrationMagic <= 6.0.9.7 versions.","indicators":{"cves":["CVE-2026-73341"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:02.647Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/custom-registration-form-builder-with-submission-manager/vulnerability/wordpress-registrationmagic-plugin-6-0-9-7-php-object-injection-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73343","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-73343 — Unauthenticated Remote Code Execution (RCE) in WP Compress < 7.20.01 versions.","description":"Unauthenticated Remote Code Execution (RCE) in WP Compress < 7.20.01 versions.","indicators":{"cves":["CVE-2026-73343"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:02.943Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/wp-compress-image-optimizer/vulnerability/wordpress-wp-compress-plugin-7-20-01-remote-code-execution-rce-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73355","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-73355 — Unauthenticated SQL Injection in Affiliates Manager <= 2.9.53 versions.","description":"Unauthenticated SQL Injection in Affiliates Manager <= 2.9.53 versions.","indicators":{"cves":["CVE-2026-73355"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:03.780Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/affiliates-manager/vulnerability/wordpress-affiliates-manager-plugin-2-9-53-sql-injection-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73365","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-73365 — Unauthenticated SQL Injection in JetAppointment <= 2.5.2 versions.","description":"Unauthenticated SQL Injection in JetAppointment <= 2.5.2 versions.","indicators":{"cves":["CVE-2026-73365"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:04.820Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/jet-appointments-booking/vulnerability/wordpress-jetappointment-plugin-2-5-2-sql-injection-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73366","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-73366 — Unauthenticated PHP Object Injection in Easy Google Maps <= 1.13.0 versions.","description":"Unauthenticated PHP Object Injection in Easy Google Maps <= 1.13.0 versions.","indicators":{"cves":["CVE-2026-73366"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:04.960Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/google-maps-easy/vulnerability/wordpress-easy-google-maps-plugin-1-13-0-php-object-injection-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73376","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-73376 — Unauthenticated PHP Object Injection in Ultimate Maps by Supsystic < 1.5.0 versions.","description":"Unauthenticated PHP Object Injection in Ultimate Maps by Supsystic < 1.5.0 versions.","indicators":{"cves":["CVE-2026-73376"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:05.410Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/ultimate-maps-by-supsystic/vulnerability/wordpress-ultimate-maps-by-supsystic-plugin-1-5-0-php-object-injection-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73380","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-73380 — Unauthenticated PHP Object Injection in Popup by Supsystic <= 1.13.0 versions.","description":"Unauthenticated PHP Object Injection in Popup by Supsystic <= 1.13.0 versions.","indicators":{"cves":["CVE-2026-73380"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:06.003Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/popup-by-supsystic/vulnerability/wordpress-popup-by-supsystic-plugin-1-13-0-php-object-injection-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73381","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-73381 — Unauthenticated Broken Authentication in Popup by Supsystic <= 1.13.0 versions.","description":"Unauthenticated Broken Authentication in Popup by Supsystic <= 1.13.0 versions.","indicators":{"cves":["CVE-2026-73381"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:06.143Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/popup-by-supsystic/vulnerability/wordpress-popup-by-supsystic-plugin-1-13-0-broken-authentication-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73392","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-73392 — Unauthenticated SQL Injection in Super Store Finder <= 7.8 versions.","description":"Unauthenticated SQL Injection in Super Store Finder <= 7.8 versions.","indicators":{"cves":["CVE-2026-73392"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:06.543Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/superstorefinder-wp/vulnerability/wordpress-super-store-finder-plugin-7-8-sql-injection-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73397","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-73397 — Unauthenticated Deserialization of untrusted data in Youzify <= 1.3.7 versions.","description":"Unauthenticated Deserialization of untrusted data in Youzify <= 1.3.7 versions.","indicators":{"cves":["CVE-2026-73397"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:07.103Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/youzify/vulnerability/wordpress-youzify-plugin-1-3-7-deserialization-of-untrusted-data-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73996","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-73996 — Unauthenticated Arbitrary File Upload in Masteriyo - LMS <= 2.3.2 versions.","description":"Unauthenticated Arbitrary File Upload in Masteriyo - LMS <= 2.3.2 versions.","indicators":{"cves":["CVE-2026-73996"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:08.600Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/learning-management-system/vulnerability/wordpress-masteriyo-lms-plugin-2-3-2-arbitrary-file-upload-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74015","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74015 — Unauthenticated SQL Injection in Readabler < 2.0.18 versions.","description":"Unauthenticated SQL Injection in Readabler < 2.0.18 versions.","indicators":{"cves":["CVE-2026-74015"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:09.833Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/readabler/vulnerability/wordpress-readabler-plugin-2-0-18-sql-injection-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75784","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-75784 — A vulnerability was detected in TRENDnet TEW-WLC100 1v2.07b01. Affected by this issue is the functio…","description":"A vulnerability was detected in TRENDnet TEW-WLC100 1v2.07b01. Affected by this issue is the function FUN_0040da4c of the file /usr/nginx/sbin/nginx of the component HTTP Header Handler. The manipulation of the argument Server results in stack-based buffer overflow. The attack may be launched remote…","indicators":{"cves":["CVE-2026-75784"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:13.857Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://github.com/meishigana/CVE/blob/main/team15_20260702/02_wlc100-nginx/poc/poc-nginx-overflow.py","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/meishigana/CVE/tree/main/team15_20260702/02_wlc100-nginx","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-75784","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/877773","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391525","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391525/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-12564","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-12564 — A flaw was found in the AAP Controller's HashiCorp Vault credential plugin. The kubernetes_auth() fu…","description":"A flaw was found in the AAP Controller's HashiCorp Vault credential plugin. The kubernetes_auth() function in awx_plugins/credentials/hashivault.py reads the controller pod's Kubernetes service account token and sends it to an attacker-controlled URL when a HashiCorp Vault Secret Lookup credential w…","indicators":{"cves":["CVE-2026-12564"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:17:01.917Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-12564","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2490556","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-45117","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-45117 — MyBB is free and open source forum software. From 1.8.13 until 1.8.40, the installer module does not…","description":"MyBB is free and open source forum software. From 1.8.13 until 1.8.40, the installer module does not properly escape user-supplied database configuration values written to the configuration file, resulting in PHP code injection and remote code execution when the installer is available. install/index…","indicators":{"cves":["CVE-2026-45117"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:17:06.493Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://github.com/mybb/mybb/commit/0fe713e3b964bfc878ea65bdd9f746f585f6ebbf","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mybb/mybb/releases/tag/mybb_1840","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mybb/mybb/security/advisories/GHSA-gpc4-77rp-3xqr","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://mybb.com/versions/1.8.40","label":"security-advisories@github.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-45118","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-45118 — MyBB is free and open source forum software. Prior to 1.8.40, the Contact module does not validate a…","description":"MyBB is free and open source forum software. Prior to 1.8.40, the Contact module does not validate a redirect URL or protocol correctly, resulting in an open redirect and reflected JavaScript code injection. contact.php accepts the redirect target from the from HTTP parameter in $mybb->input['from']…","indicators":{"cves":["CVE-2026-45118"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:17:06.633Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://github.com/mybb/mybb/releases/tag/mybb_1840","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mybb/mybb/security/advisories/GHSA-wf92-5q5h-qr53","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://mybb.com/versions/1.8.40","label":"security-advisories@github.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75913","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-75913 — CodeWhale (codewhale / codewhale-tui) versions >= 0.8.41 and < 0.8.64 contain an argument injection…","description":"CodeWhale (codewhale / codewhale-tui) versions >= 0.8.41 and < 0.8.64 contain an argument injection vulnerability in the git_show tool. The model-supplied rev parameter is passed unvalidated into the git show argv without an --end-of-options sentinel, so a value beginning with --output= is interpret…","indicators":{"cves":["CVE-2026-75913"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:18:23.363Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/Hmbown/CodeWhale/commit/9a34b5034d29f05d1f28fa61b04719ca6a741020","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/Hmbown/CodeWhale/security/advisories/GHSA-7j5w-7r7x-9v27","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/codewhale-before-argument-injection-via-git-show","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18963","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-18963 — A flaw was found in the reset-credentials flow of the keycloak-services component, which is the core…","description":"A flaw was found in the reset-credentials flow of the keycloak-services component, which is the core engine for identity and access management in Red Hat Build of Keycloak. The issue allows an unauthenticated attacker to force the password reset process for any user without needing to click the requ…","indicators":{"cves":["CVE-2026-18963"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T17:16:57.083Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://access.redhat.com/errata/RHSA-2026:56519","label":"secalert@redhat.com","domainType":"other"},{"url":"https://access.redhat.com/errata/RHSA-2026:56520","label":"secalert@redhat.com","domainType":"other"},{"url":"https://access.redhat.com/errata/RHSA-2026:56523","label":"secalert@redhat.com","domainType":"other"},{"url":"https://access.redhat.com/errata/RHSA-2026:56524","label":"secalert@redhat.com","domainType":"other"},{"url":"https://access.redhat.com/security/cve/CVE-2026-18963","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2511595","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-50576","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-50576 — ePA 3.x Integration implements the authorization workflow and writes Medical Information Objects to…","description":"ePA 3.x Integration implements the authorization workflow and writes Medical Information Objects to Germany's electronic patient record. Prior to 1.3.0, ePA 3.x Integration does not neutralize CRLF characters in values used by app/vau/VAUProtokoll.py to construct VAU inner HTTP requests. The build_i…","indicators":{"cves":["CVE-2026-50576","CVE-2026-50577","CVE-2026-50578","CVE-2026-52723"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T17:16:58.633Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/fbeta-GmbH/ePA3-Service-OpenSource/commit/b984d15d261423302de337adae25e84c54e9c2d1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/fbeta-GmbH/ePA3-Service-OpenSource/pull/11","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/fbeta-GmbH/ePA3-Service-OpenSource/releases/tag/1.3.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/fbeta-GmbH/ePA3-Service-OpenSource/security/advisories/GHSA-j8jg-7fqf-4xx9","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://www.machinespirits.de/advisory/013a60","label":"security-advisories@github.com","domainType":"other"},{"url":"https://github.com/fbeta-GmbH/ePA3-Service-OpenSource/commit/85c4c516088c38b9cf2343f388ad67a6744e9814","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/fbeta-GmbH/ePA3-Service-OpenSource/pull/10","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/fbeta-GmbH/ePA3-Service-OpenSource/security/advisories/GHSA-vmfm-3f7g-r9qg","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://www.machinespirits.de/advisory/df27cd","label":"security-advisories@github.com","domainType":"other"},{"url":"https://github.com/fbeta-GmbH/ePA3-Service-OpenSource/commit/0d94a76aa4d57a849f0c18fb3d6d337ec2505170","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/fbeta-GmbH/ePA3-Service-OpenSource/pull/9","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/fbeta-GmbH/ePA3-Service-OpenSource/security/advisories/GHSA-j9m9-pmwv-hwwr","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://www.machinespirits.de/advisory/4b68b0","label":"security-advisories@github.com","domainType":"other"},{"url":"https://github.com/fbeta-GmbH/ePA3-Service-OpenSource/commit/197c8c7fc41675f19c7f448696a2bc63fab9db5b","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/fbeta-GmbH/ePA3-Service-OpenSource/pull/12","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/fbeta-GmbH/ePA3-Service-OpenSource/security/advisories/GHSA-q2jw-6c4w-86jc","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://www.machinespirits.de/advisory/a1da93","label":"security-advisories@github.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-67271","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-67271 — Dell PowerStore SDNAS, contains an Out-of-bounds Write vulnerability in the SMB/CIFS. An unauthentic…","description":"Dell PowerStore SDNAS, contains an Out-of-bounds Write vulnerability in the SMB/CIFS. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Denial of service and Remote execution. This is a Critical vulnerability as a remote user could send a special…","indicators":{"cves":["CVE-2026-67271"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T17:17:00.973Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://www.dell.com/support/kbdoc/en-us/000497829/dsa-2026-330-dell-powerstore-t-security-update-for-multiple-vulnerabilities","label":"security_alert@emc.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-52608","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-52608 — An incorrect access control vulnerability in reportico-web <= 8.1.0 allows an unauthenticated attack…","description":"An incorrect access control vulnerability in reportico-web <= 8.1.0 allows an unauthenticated attacker to inject arbitrary php code into the PreExecuteCode attribute of any report regardless of the safe_mode setting leading to remote code execution.","indicators":{"cves":["CVE-2026-52608"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T18:18:20.020Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/kilotel/vulnerability-research/tree/main/CVE-2026-52608","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/reportico-web/reportico","label":"cve@mitre.org","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-52610","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-52610 — An arbitrary file write/directory traversal vulnerability in reportico-web <= 8.1.0 allows remote at…","description":"An arbitrary file write/directory traversal vulnerability in reportico-web <= 8.1.0 allows remote attackers to create or overwrite files anywhere on the filesystem subject to the permissions of the web user by specifying a filename in the \"saveTemplate\" parameter in conjuction with \"execute_mode=PRE…","indicators":{"cves":["CVE-2026-52610"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T18:18:20.263Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/kilotel/vulnerability-research/tree/main/CVE-2026-52610","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/reportico-web/reportico","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/kilotel/vulnerability-research/tree/main/CVE-2026-52610","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-66780","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-66780 — A flaw was found in the submariner-operator component. The `submariner-k8s-broker-cluster` Role, whi…","description":"A flaw was found in the submariner-operator component. The `submariner-k8s-broker-cluster` Role, which is assigned to joined clusters, possesses excessive permissions. This allows a compromised cluster to alter network configurations, specifically by overwriting other clusters' endpoint information.…","indicators":{"cves":["CVE-2026-66780"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T18:19:23.940Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-66780","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2507524","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-67921","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-67921 — Cross-Site Request Forgery (CSRF) vulnerability exists in Halo CMS versions up to 2.25.4 via the Cor…","description":"Cross-Site Request Forgery (CSRF) vulnerability exists in Halo CMS versions up to 2.25.4 via the CorsConfigurer.java and the CsrfConfigurer.java components. This allows a remote attacker to execute arbitrary code.","indicators":{"cves":["CVE-2026-67921"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T18:19:25.483Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://gist.github.com/unpredictable21/01b053bcf8bb5a3c557df92f5c2c3c30","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/halo-dev/halo","label":"cve@mitre.org","domainType":"primary"},{"url":"https://gist.github.com/unpredictable21/01b053bcf8bb5a3c557df92f5c2c3c30","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75130","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-75130 — Context7 through 2.1.2 contains a prompt injection vulnerability that allows attackers to execute ma…","description":"Context7 through 2.1.2 contains a prompt injection vulnerability that allows attackers to execute malicious instructions in connected AI coding agents by injecting unsanitized content through the Custom AI Instructions feature served via the MCP server. Attackers can poison the custom instructions t…","indicators":{"cves":["CVE-2026-75130"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T18:19:34.197Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://noma.security/blog/contextcrush-context7-the-mcp-server-vulnerability/","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://www.linkedin.com/posts/upstash_mcp-server-vulnerability-in-context-7-activity-7435686676049387520-PBVo/","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://www.vulncheck.com/advisories/context7-prompt-injection-via-custom-ai-instructions","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75625","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-75625 — Kraken agents fail to verify peer-to-peer downloaded blobs against their requested SHA-256 digest be…","description":"Kraken agents fail to verify peer-to-peer downloaded blobs against their requested SHA-256 digest before committing to the content-addressable cache, relying only on CRC32 checksums for piece validation. Attackers on the agent-to-agent path or malicious peers can supply substituted content with forg…","indicators":{"cves":["CVE-2026-75625"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T18:19:34.343Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/uber/kraken","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/uber/kraken/blob/master/lib/torrent/storage/agentstorage/torrent.go","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/uber/kraken/issues/638","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/kraken-agents-peer-to-peer-download-cache-poisoning-via-digest-verification-bypass","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/uber/kraken/issues/638","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-47627","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-47627 — NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker could cause path…","description":"NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker could cause path traversal. A successful exploit might lead to denial of service.","indicators":{"cves":["CVE-2026-47627"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T19:16:51.290Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/NVIDIA/product-security/tree/main/2026/5865","label":"psirt@nvidia.com","domainType":"primary"},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-47627","label":"psirt@nvidia.com","domainType":"primary"},{"url":"https://www.cve.org/CVERecord?id=CVE-2026-47627","label":"psirt@nvidia.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-55166","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-55166 — Lemur manages TLS certificate creation. Prior to 1.9.2, authenticated users could influence an ACME…","description":"Lemur manages TLS certificate creation. Prior to 1.9.2, authenticated users could influence an ACME authority acme_url without an effective server-side destination restriction and trigger AcmeHandler.setup_acme_client to make backend requests. An attacker could target cloud instance metadata or inte…","indicators":{"cves":["CVE-2026-55166"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T19:16:58.783Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/Netflix/lemur/commit/872f6e282542352f2bf3f6e2bcc504ab81e1843d","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Netflix/lemur/releases/tag/v1.9.2","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Netflix/lemur/security/advisories/GHSA-v2wp-frmc-5q3v","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Netflix/lemur/security/advisories/GHSA-v2wp-frmc-5q3v","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-57826","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-57826 — An issue was discovered in openHiTLS 0.2.0 through 0.3.2. In the X.509 certificate chain verificatio…","description":"An issue was discovered in openHiTLS 0.2.0 through 0.3.2. In the X.509 certificate chain verification, the basic constraints extension and CA flag processing of intermediate CAs are only verified for v3 certificates, and v1/v2 certificates are ignored.","indicators":{"cves":["CVE-2026-57826"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:17:19.193Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://gitcode.com/openHiTLS/openhitls/pull/1399","label":"cve@mitre.org","domainType":"other"},{"url":"https://gitcode.com/openHiTLS/openhitls/pull/1657","label":"cve@mitre.org","domainType":"other"},{"url":"https://github.com/openHiTLS/openHiTLS/commit/2d3b221d113b452bc197012b185978b8314ee8a4","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/openHiTLS/openHiTLS/commit/4355cdf5b043d5b9ef698f8f57860f77f8e92561","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/openHiTLS/openHiTLS/compare/openhitls-0.3.2...openhitls-0.3.3","label":"cve@mitre.org","domainType":"primary"},{"url":"https://www.openhitls.net/zh/support/HTLS-2026-001.html","label":"cve@mitre.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75877","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-75877 — A flaw has been found in TRENDnet TV-IP751WIC 11.03.03. This vulnerability affects the function Syst…","description":"A flaw has been found in TRENDnet TV-IP751WIC 11.03.03. This vulnerability affects the function SystemNetworkChanged/SystemDDNSChanged/SystemEmailChanged/SystemFTPChanged/websCheckRealm/FUN_00432574/FUN_0043372C of the component alphapd. Executing a manipulation can lead to stack-based buffer overfl…","indicators":{"cves":["CVE-2026-75877"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:17:33.340Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/meishigana/CVE/blob/main/team15_20260702/09_751wic-apd-password-overflow/poc/poc-password-overflow.py","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/meishigana/CVE/tree/main/team15_20260702/09_751wic-apd-password-overflow","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-75877","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/877795","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391571","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391571/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60391","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-60391 — Vulnerability in the Oracle Hyperion Financial Reporting product of Oracle Hyperion (component: Serv…","description":"Vulnerability in the Oracle Hyperion Financial Reporting product of Oracle Hyperion (component: Server).   The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Hyperion Financial Re…","indicators":{"cves":["CVE-2026-60391","CVE-2026-70739","CVE-2026-70740","CVE-2026-70741","CVE-2026-70742","CVE-2026-70743","CVE-2026-70744","CVE-2026-70745","CVE-2026-70746","CVE-2026-70749","CVE-2026-70750","CVE-2026-70751","CVE-2026-70752","CVE-2026-70753","CVE-2026-70754","CVE-2026-70758","CVE-2026-70759","CVE-2026-70765","CVE-2026-70766","CVE-2026-70767","CVE-2026-70768","CVE-2026-70769","CVE-2026-70776","CVE-2026-70780","CVE-2026-70784","CVE-2026-70785","CVE-2026-70787","CVE-2026-70788","CVE-2026-70789","CVE-2026-70793","CVE-2026-70794"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:37.370Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60393","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-60393 — Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component…","description":"Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component: Lifecycle Management).   The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle H…","indicators":{"cves":["CVE-2026-60393","CVE-2026-62457","CVE-2026-62463","CVE-2026-62467","CVE-2026-62471","CVE-2026-62477","CVE-2026-62481","CVE-2026-62485","CVE-2026-62492","CVE-2026-62499","CVE-2026-62500","CVE-2026-62501","CVE-2026-62502","CVE-2026-62506","CVE-2026-62509","CVE-2026-62510","CVE-2026-62511","CVE-2026-62520","CVE-2026-62522","CVE-2026-62523","CVE-2026-62526","CVE-2026-62531","CVE-2026-62535","CVE-2026-62536","CVE-2026-62537","CVE-2026-62538","CVE-2026-62539","CVE-2026-62541","CVE-2026-62543","CVE-2026-62544","CVE-2026-62545","CVE-2026-62550","CVE-2026-62551","CVE-2026-62552","CVE-2026-62553","CVE-2026-62554","CVE-2026-62555","CVE-2026-62558","CVE-2026-62564","CVE-2026-62566","CVE-2026-62568","CVE-2026-62569","CVE-2026-62570","CVE-2026-62572","CVE-2026-62573","CVE-2026-62575","CVE-2026-62576","CVE-2026-62577","CVE-2026-62579","CVE-2026-62581","CVE-2026-62583","CVE-2026-62584","CVE-2026-70956","CVE-2026-70957","CVE-2026-70958","CVE-2026-70959","CVE-2026-70961","CVE-2026-70962","CVE-2026-70963","CVE-2026-70964","CVE-2026-70965","CVE-2026-70966","CVE-2026-70967","CVE-2026-70968","CVE-2026-70971","CVE-2026-70972","CVE-2026-70973"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:37.633Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60415","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-60415 — Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). S…","description":"Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core).  Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0, 14.1.2.0.0 and  15.1.1.0.0. Difficult to exploit vulnerability allows unauthenticated attacker with network access via T3, IIOP to comp…","indicators":{"cves":["CVE-2026-60415","CVE-2026-60672","CVE-2026-60679","CVE-2026-60680","CVE-2026-60696","CVE-2026-60698","CVE-2026-60699","CVE-2026-60702"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:38.130Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60590","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-60590 — Vulnerability in the Oracle Hospitality Simphony product of Oracle Food and Beverage Applications (c…","description":"Vulnerability in the Oracle Hospitality Simphony product of Oracle Food and Beverage Applications (component: POS).  Supported versions that are affected are 19.8-19.8.5, 19.9-19.9.3 and  19.10-19.10.1. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to…","indicators":{"cves":["CVE-2026-60590","CVE-2026-60591"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:38.367Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60715","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-60715 — Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middleware (component: OIM Leg…","description":"Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middleware (component: OIM Legacy UI).  Supported versions that are affected are 12.2.1.4.0 and  14.1.2.1.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Identit…","indicators":{"cves":["CVE-2026-60715","CVE-2026-60716","CVE-2026-60720","CVE-2026-60721","CVE-2026-60722","CVE-2026-60727","CVE-2026-61066","CVE-2026-61118"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:39.897Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60728","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-60728 — Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Portlet…","description":"Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Portlet Services).  Supported versions that are affected are 12.2.1.4.0 and  14.1.2.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Web…","indicators":{"cves":["CVE-2026-60728"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:40.743Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60729","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-60729 — Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Compose…","description":"Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Composer).  Supported versions that are affected are 12.2.1.4.0 and  14.1.2.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle WebCenter Po…","indicators":{"cves":["CVE-2026-60729","CVE-2026-60730","CVE-2026-60731","CVE-2026-60733"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:40.873Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60737","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-60737 — Vulnerability in the Oracle Web Services Manager product of Oracle Fusion Middleware (component: Web…","description":"Vulnerability in the Oracle Web Services Manager product of Oracle Fusion Middleware (component: Web Services Security).  Supported versions that are affected are 12.2.1.4.0 and  14.1.2.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise O…","indicators":{"cves":["CVE-2026-60737","CVE-2026-61001","CVE-2026-70924"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:41.323Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60751","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-60751 — Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel CRM (component: Marketing). Su…","description":"Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel CRM (component: Marketing).  Supported versions that are affected are 17.0-26.6. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Siebel Apps - Marketing.  Successful attac…","indicators":{"cves":["CVE-2026-60751","CVE-2026-60752","CVE-2026-60754","CVE-2026-60765","CVE-2026-60767","CVE-2026-60779","CVE-2026-60803"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:41.680Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60781","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-60781 — Vulnerability in the Oracle Payments product of Oracle E-Business Suite (component: File Transmissio…","description":"Vulnerability in the Oracle Payments product of Oracle E-Business Suite (component: File Transmission).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Payments.  Successful at…","indicators":{"cves":["CVE-2026-60781","CVE-2026-60782","CVE-2026-70694","CVE-2026-70695","CVE-2026-70696","CVE-2026-70699","CVE-2026-70702"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:43.117Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60821","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-60821 — Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Busi…","description":"Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Business Interlink).  Supported versions that are affected are 8.61-8.63. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise…","indicators":{"cves":["CVE-2026-60821"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:44.280Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60853","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-60853 — Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server).…","description":"Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server).   The supported version that is affected is 3.2.20. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Helidon.  Successful attacks of this…","indicators":{"cves":["CVE-2026-60853","CVE-2026-60915","CVE-2026-70716","CVE-2026-70727","CVE-2026-70908","CVE-2026-70923","CVE-2026-71029","CVE-2026-71065","CVE-2026-71074","CVE-2026-71110","CVE-2026-71152","CVE-2026-71153","CVE-2026-71154","CVE-2026-71155","CVE-2026-71156","CVE-2026-71157","CVE-2026-71158","CVE-2026-71159","CVE-2026-71160","CVE-2026-71161","CVE-2026-71162","CVE-2026-71164","CVE-2026-71165","CVE-2026-71166","CVE-2026-71167","CVE-2026-73865","CVE-2026-73866","CVE-2026-73867","CVE-2026-73868","CVE-2026-73869","CVE-2026-73870","CVE-2026-73871","CVE-2026-73872","CVE-2026-73873","CVE-2026-73874","CVE-2026-73875","CVE-2026-73876","CVE-2026-73877","CVE-2026-73878","CVE-2026-73879","CVE-2026-73880","CVE-2026-73881","CVE-2026-73882","CVE-2026-73883","CVE-2026-73884","CVE-2026-73885","CVE-2026-73886","CVE-2026-73887","CVE-2026-73888","CVE-2026-73889","CVE-2026-73890","CVE-2026-73891","CVE-2026-73892","CVE-2026-73893","CVE-2026-73894","CVE-2026-73895","CVE-2026-73896","CVE-2026-73897","CVE-2026-73898","CVE-2026-73899","CVE-2026-73900","CVE-2026-73901","CVE-2026-73902","CVE-2026-73903","CVE-2026-73904","CVE-2026-73905","CVE-2026-73906","CVE-2026-73907","CVE-2026-73908","CVE-2026-73909","CVE-2026-73910","CVE-2026-73911","CVE-2026-73912","CVE-2026-73913","CVE-2026-73914","CVE-2026-73915","CVE-2026-73916","CVE-2026-73917","CVE-2026-73918","CVE-2026-73919","CVE-2026-73920","CVE-2026-73921","CVE-2026-73922","CVE-2026-73923","CVE-2026-73924","CVE-2026-73925","CVE-2026-73927","CVE-2026-73928","CVE-2026-73929","CVE-2026-73930","CVE-2026-73931","CVE-2026-73932","CVE-2026-73933","CVE-2026-73934","CVE-2026-73935","CVE-2026-73936","CVE-2026-73937","CVE-2026-73938","CVE-2026-73939"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:45.140Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60858","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-60858 — Vulnerability in the Oracle Hyperion Calculation Manager product of Oracle Hyperion (component: Secu…","description":"Vulnerability in the Oracle Hyperion Calculation Manager product of Oracle Hyperion (component: Security).   The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Hyperion Calculatio…","indicators":{"cves":["CVE-2026-60858","CVE-2026-61206","CVE-2026-61259","CVE-2026-61276","CVE-2026-61281","CVE-2026-61293","CVE-2026-61313","CVE-2026-61342","CVE-2026-62441","CVE-2026-62446","CVE-2026-62459","CVE-2026-62460","CVE-2026-62461","CVE-2026-62529","CVE-2026-62532","CVE-2026-62533","CVE-2026-62571","CVE-2026-62578","CVE-2026-62580","CVE-2026-62582","CVE-2026-62598","CVE-2026-62602","CVE-2026-62603","CVE-2026-62604","CVE-2026-62606","CVE-2026-70676","CVE-2026-70677","CVE-2026-70678","CVE-2026-70679","CVE-2026-70682","CVE-2026-70683","CVE-2026-70685","CVE-2026-70705","CVE-2026-70711","CVE-2026-70714","CVE-2026-70719"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:45.373Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60860","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-60860 — Vulnerability in the Service Delivery Platform product of Oracle Fusion Middleware (component: Messa…","description":"Vulnerability in the Service Delivery Platform product of Oracle Fusion Middleware (component: Messaging Enabler).  Supported versions that are affected are 14.1.2.0.0 and  12.2.1.4.0. Difficult to exploit vulnerability allows unauthenticated attacker with network access via TCP to compromise Servic…","indicators":{"cves":["CVE-2026-60860","CVE-2026-60861","CVE-2026-60865","CVE-2026-60866"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:45.500Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60903","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-60903 — Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Conten…","description":"Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server).  Supported versions that are affected are 12.2.1.4.0 and  14.1.2.0.0. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle We…","indicators":{"cves":["CVE-2026-60903","CVE-2026-60905","CVE-2026-60906","CVE-2026-60909","CVE-2026-60928","CVE-2026-60933","CVE-2026-60934","CVE-2026-60935","CVE-2026-60944","CVE-2026-60949","CVE-2026-60954","CVE-2026-60955","CVE-2026-60961","CVE-2026-60980","CVE-2026-60981","CVE-2026-60983","CVE-2026-61288","CVE-2026-61290","CVE-2026-61291","CVE-2026-61295","CVE-2026-70858"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:46.877Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60916","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-60916 — Vulnerability in the Oracle WebCenter Enterprise Capture product of Oracle Fusion Middleware (compon…","description":"Vulnerability in the Oracle WebCenter Enterprise Capture product of Oracle Fusion Middleware (component: Client Bundle).  Supported versions that are affected are 12.2.1.4.0 and  14.1.2.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise O…","indicators":{"cves":["CVE-2026-60916","CVE-2026-60921","CVE-2026-60946","CVE-2026-60947","CVE-2026-60958","CVE-2026-60970","CVE-2026-60971"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:47.590Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60977","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-60977 — Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: WLS Core…","description":"Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: WLS Core Components).  Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0 and  14.1.2.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via RMI to compromi…","indicators":{"cves":["CVE-2026-60977"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:50.097Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60990","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-60990 — Vulnerability in the Oracle Identity Manager Connector product of Oracle Fusion Middleware (componen…","description":"Vulnerability in the Oracle Identity Manager Connector product of Oracle Fusion Middleware (component: Core).  Supported versions that are affected are 12.2.1.4.0 and  14.1.2.1.0. Easily exploitable vulnerability allows low privileged attacker with network access via TLS to compromise Oracle Identit…","indicators":{"cves":["CVE-2026-60990","CVE-2026-60991","CVE-2026-60992","CVE-2026-60993","CVE-2026-60994","CVE-2026-60995","CVE-2026-60996","CVE-2026-60998"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:50.567Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-61003","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-61003 — Vulnerability in the Oracle Managed File Transfer product of Oracle Fusion Middleware (component: MF…","description":"Vulnerability in the Oracle Managed File Transfer product of Oracle Fusion Middleware (component: MFT Runtime Server).  Supported versions that are affected are 12.2.1.4.0 and  14.1.2.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via T3, IIOP to compromise…","indicators":{"cves":["CVE-2026-61003"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:51.760Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-61007","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-61007 — Vulnerability in the Oracle WebCenter Sites product of Oracle Fusion Middleware (component: WebCente…","description":"Vulnerability in the Oracle WebCenter Sites product of Oracle Fusion Middleware (component: WebCenter Sites).  Supported versions that are affected are 12.2.1.4.0 and  14.1.2.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle WebCe…","indicators":{"cves":["CVE-2026-61007","CVE-2026-61008","CVE-2026-61011","CVE-2026-61016","CVE-2026-61017","CVE-2026-61018","CVE-2026-61021","CVE-2026-61022","CVE-2026-61029","CVE-2026-61032","CVE-2026-61033","CVE-2026-61034","CVE-2026-61038","CVE-2026-61040","CVE-2026-61042","CVE-2026-61045","CVE-2026-61054","CVE-2026-61058"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:51.887Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-61124","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-61124 — Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Runtime…","description":"Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Runtime Tools).  Supported versions that are affected are 12.2.1.4.0 and  14.1.2.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle WebCen…","indicators":{"cves":["CVE-2026-61124","CVE-2026-61177","CVE-2026-61193","CVE-2026-61199","CVE-2026-61208","CVE-2026-61212","CVE-2026-61213","CVE-2026-61215","CVE-2026-61219","CVE-2026-61222","CVE-2026-61227","CVE-2026-61228","CVE-2026-61229","CVE-2026-61230","CVE-2026-70970"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:54.297Z","fetchedAt":"2026-08-21T03:01:29.075Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-61241","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-61241 — Vulnerability in the Oracle Internet Directory product of Oracle Fusion Middleware (component: OID L…","description":"Vulnerability in the Oracle Internet Directory product of Oracle Fusion Middleware (component: OID LDAP Server).  Supported versions that are affected are 12.2.1.4.0 and  14.1.2.1.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via LDAP to compromise Oracle In…","indicators":{"cves":["CVE-2026-61241","CVE-2026-61248","CVE-2026-61258"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:56.467Z","fetchedAt":"2026-08-21T03:01:29.075Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-61272","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-61272 — Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Web Run…","description":"Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Web Runtime SEC).  Supported versions that are affected are 9.2.0.0-9.2.26.4. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise JD Edwards Enterprise…","indicators":{"cves":["CVE-2026-61272"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:57.340Z","fetchedAt":"2026-08-21T03:01:29.075Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-61317","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-61317 — Vulnerability in the Siebel CRM Cloud Applications product of Oracle Siebel CRM (component: Siebel C…","description":"Vulnerability in the Siebel CRM Cloud Applications product of Oracle Siebel CRM (component: Siebel Cloud Manager).  Supported versions that are affected are 22.3-26.6. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Siebel CRM Cloud Applicat…","indicators":{"cves":["CVE-2026-61317","CVE-2026-61318","CVE-2026-61321","CVE-2026-61326","CVE-2026-61330","CVE-2026-61332","CVE-2026-61339","CVE-2026-61341","CVE-2026-62442","CVE-2026-62452","CVE-2026-62454","CVE-2026-62455","CVE-2026-62512"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:59.737Z","fetchedAt":"2026-08-21T03:01:29.075Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-62585","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-62585 — Vulnerability in the Siebel CRM Administration product of Oracle Siebel CRM (component: Data Archiva…","description":"Vulnerability in the Siebel CRM Administration product of Oracle Siebel CRM (component: Data Archival).  Supported versions that are affected are 25.12-26.6. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Siebel CRM Administration.  Succes…","indicators":{"cves":["CVE-2026-62585","CVE-2026-62586","CVE-2026-62587"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:10.653Z","fetchedAt":"2026-08-21T03:01:29.076Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-62588","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-62588 — Vulnerability in the Siebel CRM Integration product of Oracle Siebel CRM (component: Open Integratio…","description":"Vulnerability in the Siebel CRM Integration product of Oracle Siebel CRM (component: Open Integration).  Supported versions that are affected are 25.12-26.6. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Siebel CRM Integration.  While the…","indicators":{"cves":["CVE-2026-62588","CVE-2026-62589","CVE-2026-62590","CVE-2026-62591","CVE-2026-62592","CVE-2026-62593","CVE-2026-62594","CVE-2026-62595","CVE-2026-62596"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:11.003Z","fetchedAt":"2026-08-21T03:01:29.076Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-62608","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-62608 — Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Securi…","description":"Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authentication).   The supported version that is affected is 12.2.1.19.0. Easily exploitable vulnerability allows low privileged attacker with network access via CORBA to compromise Oracle Repo…","indicators":{"cves":["CVE-2026-62608","CVE-2026-62609","CVE-2026-62610","CVE-2026-62611","CVE-2026-62612","CVE-2026-62613","CVE-2026-62614","CVE-2026-62615","CVE-2026-62616","CVE-2026-62617","CVE-2026-62618","CVE-2026-62619","CVE-2026-62620","CVE-2026-62621","CVE-2026-62622","CVE-2026-62623","CVE-2026-62624","CVE-2026-62625","CVE-2026-62626","CVE-2026-62627","CVE-2026-62628","CVE-2026-62629","CVE-2026-62630","CVE-2026-62631","CVE-2026-62632","CVE-2026-62633","CVE-2026-62634","CVE-2026-62635","CVE-2026-62636","CVE-2026-62637","CVE-2026-62638","CVE-2026-62639","CVE-2026-62640","CVE-2026-70668","CVE-2026-70669","CVE-2026-70670","CVE-2026-70671","CVE-2026-70672","CVE-2026-70673","CVE-2026-70674","CVE-2026-70675"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:13.300Z","fetchedAt":"2026-08-21T03:01:29.076Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-62988","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-62988 — Froxlor is open source server administration software. From 2.3.7 until 2.3.8, the Customers.get, Cu…","description":"Froxlor is open source server administration software. From 2.3.7 until 2.3.8, the Customers.get, Customers.listing, Admins.get, Admins.listing, Ftps.get, and Ftps.listing API commands in lib/Froxlor/Api/Commands/Customers.php, lib/Froxlor/Api/Commands/Admins.php, and lib/Froxlor/Api/Commands/Ftps.p…","indicators":{"cves":["CVE-2026-62988"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:18.077Z","fetchedAt":"2026-08-21T03:01:29.076Z","references":[{"url":"https://github.com/froxlor/froxlor/commit/52a43fb826bb9a058faf9c39feeef7ac4444ceba","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/froxlor/froxlor/commit/8667fa3a4d77d6e322b7b8f7b9edbc1613ab5797","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/froxlor/froxlor/releases/tag/2.3.8","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/froxlor/froxlor/security/advisories/GHSA-7788-ghfq-c6mh","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-70689","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-70689 — Vulnerability in Oracle Essbase (component: Infrastructure). The supported version that is affected…","description":"Vulnerability in Oracle Essbase (component: Infrastructure).   The supported version that is affected is 21.8.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Essbase.  Successful attacks of this vulnerability can result in tak…","indicators":{"cves":["CVE-2026-70689"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:20.887Z","fetchedAt":"2026-08-21T03:01:29.076Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70721","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-70721 — Vulnerability in the Oracle Hyperion Profitability and Cost Management product of Oracle Hyperion (c…","description":"Vulnerability in the Oracle Hyperion Profitability and Cost Management product of Oracle Hyperion (component: Deployment).   The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Hyp…","indicators":{"cves":["CVE-2026-70721","CVE-2026-70723","CVE-2026-70730","CVE-2026-70733","CVE-2026-70735","CVE-2026-70736","CVE-2026-70738"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:24.550Z","fetchedAt":"2026-08-21T03:01:29.077Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70817","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-70817 — Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Sec…","description":"Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security).   The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Hyperion Financial…","indicators":{"cves":["CVE-2026-70817","CVE-2026-70818","CVE-2026-70819","CVE-2026-70821","CVE-2026-70822","CVE-2026-70823","CVE-2026-70824","CVE-2026-70825","CVE-2026-70826","CVE-2026-70828","CVE-2026-70831","CVE-2026-70832","CVE-2026-70834","CVE-2026-70836","CVE-2026-70838","CVE-2026-70840","CVE-2026-70841","CVE-2026-70842","CVE-2026-70843","CVE-2026-70847","CVE-2026-70848","CVE-2026-70849","CVE-2026-70850","CVE-2026-70851","CVE-2026-70853","CVE-2026-70854","CVE-2026-70909","CVE-2026-70911","CVE-2026-70912","CVE-2026-70914","CVE-2026-70916","CVE-2026-70917","CVE-2026-70919","CVE-2026-70920","CVE-2026-70921","CVE-2026-70925","CVE-2026-70928","CVE-2026-70929","CVE-2026-70933","CVE-2026-70934","CVE-2026-70935","CVE-2026-70936","CVE-2026-70937","CVE-2026-70938","CVE-2026-70939","CVE-2026-70940","CVE-2026-70942","CVE-2026-70943","CVE-2026-70944","CVE-2026-70946","CVE-2026-70950","CVE-2026-70952","CVE-2026-70960","CVE-2026-70969","CVE-2026-70974","CVE-2026-70975","CVE-2026-71013","CVE-2026-71060","CVE-2026-71085","CVE-2026-71090","CVE-2026-71091","CVE-2026-71103","CVE-2026-71105","CVE-2026-71108","CVE-2026-71109","CVE-2026-71117","CVE-2026-71118","CVE-2026-71119","CVE-2026-71120","CVE-2026-71121","CVE-2026-71123","CVE-2026-71144","CVE-2026-71145","CVE-2026-71146","CVE-2026-71147","CVE-2026-71148","CVE-2026-71149","CVE-2026-71150"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:36.490Z","fetchedAt":"2026-08-21T03:01:29.077Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70846","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-70846 — Vulnerability in the Oracle Demand Planning product of Oracle Supply Chain (component: Internal Oper…","description":"Vulnerability in the Oracle Demand Planning product of Oracle Supply Chain (component: Internal Operations).  Supported versions that are affected are 12.1 and  12.2. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Demand Planning.  W…","indicators":{"cves":["CVE-2026-70846","CVE-2026-70852"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["supply-chain"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:40.430Z","fetchedAt":"2026-08-21T03:01:29.078Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70855","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-70855 — Vulnerability in the Siebel Apps - Self Service product of Oracle Siebel CRM (component: Helpdesk/Tr…","description":"Vulnerability in the Siebel Apps - Self Service product of Oracle Siebel CRM (component: Helpdesk/Training).  Supported versions that are affected are 17.0-26.6. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Siebel Apps - Self Service.  S…","indicators":{"cves":["CVE-2026-70855"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:41.600Z","fetchedAt":"2026-08-21T03:01:29.078Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70862","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-70862 — Vulnerability in Oracle Application Testing Suite. The supported version that is affected is 13.3.0.…","description":"Vulnerability in Oracle Application Testing Suite.   The supported version that is affected is 13.3.0.1. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Application Testing Suite.  Successful attacks of this vulnerability can result…","indicators":{"cves":["CVE-2026-70862","CVE-2026-70863","CVE-2026-70864","CVE-2026-70865","CVE-2026-70866","CVE-2026-70867","CVE-2026-70868"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:42.370Z","fetchedAt":"2026-08-21T03:01:29.078Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70870","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-70870 — Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (compon…","description":"Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (component: Web Client - Unicode).   The supported version that is affected is 11.2.23.0.000. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracl…","indicators":{"cves":["CVE-2026-70870","CVE-2026-70871","CVE-2026-70872","CVE-2026-70873","CVE-2026-70874","CVE-2026-70875","CVE-2026-70876","CVE-2026-70877","CVE-2026-70878","CVE-2026-70879","CVE-2026-70880","CVE-2026-70881","CVE-2026-70882","CVE-2026-70883","CVE-2026-70884","CVE-2026-70885","CVE-2026-70886","CVE-2026-70887","CVE-2026-70888","CVE-2026-70889","CVE-2026-70890","CVE-2026-70891","CVE-2026-70892","CVE-2026-70893","CVE-2026-70894","CVE-2026-70895","CVE-2026-70896","CVE-2026-70897","CVE-2026-70898","CVE-2026-70899","CVE-2026-70900","CVE-2026-70901","CVE-2026-70902","CVE-2026-70903","CVE-2026-70904"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:43.240Z","fetchedAt":"2026-08-21T03:01:29.078Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70905","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-70905 — Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Agent inf…","description":"Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Agent infrastructure).  Supported versions that are affected are 12.2.1.4.0 and  14.1.2.1.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via SAML to compromise Oracle A…","indicators":{"cves":["CVE-2026-70905"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:48.283Z","fetchedAt":"2026-08-21T03:01:29.078Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70926","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-70926 — Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Workflow Notific…","description":"Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Workflow Notification Mailer).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via SMTP to compromise Oracle Workflow.  S…","indicators":{"cves":["CVE-2026-70926","CVE-2026-70927","CVE-2026-70931"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:50.510Z","fetchedAt":"2026-08-21T03:01:29.078Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70953","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-70953 — Vulnerability in the Oracle Commerce Platform product of Oracle Commerce (component: Dynamo Applicat…","description":"Vulnerability in the Oracle Commerce Platform product of Oracle Commerce (component: Dynamo Application Framework).   The supported version that is affected is 11.4.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via TCP to compromise Oracle Commerce Platform.…","indicators":{"cves":["CVE-2026-70953","CVE-2026-70954","CVE-2026-70955"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:53.607Z","fetchedAt":"2026-08-21T03:01:29.078Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70976","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-70976 — Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of O…","description":"Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of Oracle Commerce (component: Content Acquisition System).   The supported version that is affected is 11.4.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTT…","indicators":{"cves":["CVE-2026-70976","CVE-2026-70977","CVE-2026-70978","CVE-2026-70979","CVE-2026-70980","CVE-2026-70981","CVE-2026-70982","CVE-2026-70983","CVE-2026-70984","CVE-2026-70985","CVE-2026-70986","CVE-2026-70987","CVE-2026-70988","CVE-2026-70989","CVE-2026-70990","CVE-2026-70991","CVE-2026-70992","CVE-2026-70993","CVE-2026-70994","CVE-2026-70995","CVE-2026-70996","CVE-2026-70997","CVE-2026-70998","CVE-2026-70999","CVE-2026-71000","CVE-2026-71001","CVE-2026-71002","CVE-2026-71003","CVE-2026-71004","CVE-2026-71005","CVE-2026-71006","CVE-2026-71007","CVE-2026-71008","CVE-2026-71009","CVE-2026-71010","CVE-2026-71011","CVE-2026-71012","CVE-2026-71014","CVE-2026-71015","CVE-2026-71016","CVE-2026-71017","CVE-2026-71018","CVE-2026-71019","CVE-2026-71020","CVE-2026-71021","CVE-2026-71022","CVE-2026-71023","CVE-2026-71024","CVE-2026-71025","CVE-2026-71026","CVE-2026-71027","CVE-2026-71028","CVE-2026-71030","CVE-2026-71031","CVE-2026-71032","CVE-2026-71033","CVE-2026-71034","CVE-2026-71035","CVE-2026-71036","CVE-2026-71037","CVE-2026-71038"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:56.337Z","fetchedAt":"2026-08-21T03:01:29.079Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-71040","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-71040 — Vulnerability in the Oracle Agile PLM product of Oracle Supply Chain (component: Security). The supp…","description":"Vulnerability in the Oracle Agile PLM product of Oracle Supply Chain (component: Security).   The supported version that is affected is 9.3.6. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Agile PLM.  Successful attacks of this vul…","indicators":{"cves":["CVE-2026-71040","CVE-2026-71043","CVE-2026-71045","CVE-2026-71046"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["supply-chain"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:18:03.763Z","fetchedAt":"2026-08-21T03:01:29.079Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-71058","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-71058 — Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: Web Service API). S…","description":"Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: Web Service API).  Supported versions that are affected are 8.2.0.0.0, 12.2.1.4.0 and  26.01.0.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle BI Pu…","indicators":{"cves":["CVE-2026-71058","CVE-2026-71059"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:18:05.630Z","fetchedAt":"2026-08-21T03:01:29.079Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-71063","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-71063 — Vulnerability in the Portable Clusterware component of Oracle Database Server. Supported versions th…","description":"Vulnerability in the Portable Clusterware component of Oracle Database Server.  Supported versions that are affected are 19.3-19.32, 21.3-21.23 and  23.4.0-23.26.3. Easily exploitable vulnerability allows unauthenticated attacker with access to the physical communication segment attached to the hard…","indicators":{"cves":["CVE-2026-71063","CVE-2026-71064","CVE-2026-71102"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:18:06.193Z","fetchedAt":"2026-08-21T03:01:29.079Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76035","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-76035 — Inappropriate implementation in Media in Google Chrome on on Mac prior to 151.0.7922.169 allowed a r…","description":"Inappropriate implementation in Media in Google Chrome on on Mac prior to 151.0.7922.169 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)","indicators":{"cves":["CVE-2026-76035"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:18:27.500Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_0826575033.html","label":"chrome-cve-admin@google.com","domainType":"other"},{"url":"https://issues.chromium.org/issues/536439844","label":"chrome-cve-admin@google.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76036","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-76036 — Buffer overflow in Dawn in Google Chrome on on Android prior to 151.0.7922.169 allowed a remote atta…","description":"Buffer overflow in Dawn in Google Chrome on on Android prior to 151.0.7922.169 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)","indicators":{"cves":["CVE-2026-76036"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:18:27.617Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_0826575033.html","label":"chrome-cve-admin@google.com","domainType":"other"},{"url":"https://issues.chromium.org/issues/540087398","label":"chrome-cve-admin@google.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75976","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-75976 — A weakness has been identified in TRENDnet TEW-823DRU 1.1.02b01. Impacted is the function strcpy of…","description":"A weakness has been identified in TRENDnet TEW-823DRU 1.1.02b01. Impacted is the function strcpy of the file /cgi-bin/wan.cgi of the component NVRAM. This manipulation of the argument wan_l2tp_password causes stack-based buffer overflow. The attack can be initiated remotely. The exploit has been mad…","indicators":{"cves":["CVE-2026-75976"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T00:16:28.510Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://github.com/meishigana/CVE/blob/main/team15_20260702/10_823dru-rc-bof/poc/poc-rc-overflow.py","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/meishigana/CVE/tree/main/team15_20260702/10_823dru-rc-bof","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-75976","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/877796","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391892","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391892/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76003","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-76003 — A weakness has been identified in UTT HiPER 1200GW up to 2.5.3-170306. Affected is the function strc…","description":"A weakness has been identified in UTT HiPER 1200GW up to 2.5.3-170306. Affected is the function strcpy of the file /goform/formGroupConfig. Executing a manipulation of the argument timestart can lead to stack-based buffer overflow. The attack may be performed from remote. The exploit has been made a…","indicators":{"cves":["CVE-2026-76003"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T03:16:52.727Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://github.com/7wkajk/CVE-VUL/blob/main/105.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-76003","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/877884","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391919","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391919/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76004","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-76004 — A security vulnerability has been detected in UTT HiPER 1250GW up to 3.2.7-210907-180535. Affected b…","description":"A security vulnerability has been detected in UTT HiPER 1250GW up to 3.2.7-210907-180535. Affected by this vulnerability is the function strcpy of the file /goform/aspApBasicConfigUrcp of the component HTTP Handler. The manipulation of the argument pvid leads to stack-based buffer overflow. It is po…","indicators":{"cves":["CVE-2026-76004"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T03:16:52.900Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://github.com/7wkajk/CVE-VUL/blob/main/106.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-76004","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/877885","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391920","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391920/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76008","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-76008 — A flaw has been found in Comfast CF-N1-S 2.6.0.1. This affects the function get_para_from_uri of the…","description":"A flaw has been found in Comfast CF-N1-S 2.6.0.1. This affects the function get_para_from_uri of the file /cgi-bin/mbox-config of the component URI Parameter Parsing. This manipulation of the argument width/height causes stack-based buffer overflow. The attack can be initiated remotely.","indicators":{"cves":["CVE-2026-76008"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T03:16:53.077Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://github.com/1ChaoRen1/IOT_3","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-76008","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/878007","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391922","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391922/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18031","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-18031 — The TabaPay Gateway WordPress plugin through 1.4.0 does not validate the payment callback before est…","description":"The TabaPay Gateway WordPress plugin through 1.4.0 does not validate the payment callback before establishing a session for the account associated with the referenced order, allowing unauthenticated attackers to log in as any registered user, including an administrator.","indicators":{"cves":["CVE-2026-18031"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:36.537Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://wpscan.com/vulnerability/6576dcd1-aea6-47c0-9157-4ca56f426612/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18051","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-18051 — The W3 Total Cache WordPress plugin before 2.10.5 does not properly validate the request path it use…","description":"The W3 Total Cache WordPress plugin before 2.10.5 does not properly validate the request path it uses to build cache file names, allowing unauthenticated attackers to write a file into any existing directory on the server, inside or outside the web root, overwriting whatever occupies the target name…","indicators":{"cves":["CVE-2026-18051"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:36.863Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://wpscan.com/vulnerability/dc56cdd2-419b-4a64-9d2a-29dc7e79cb6d/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18776","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-18776 — The TrueBooker WordPress plugin before 1.2.7 does not have proper authorisation checks in some of it…","description":"The TrueBooker  WordPress plugin before 1.2.7 does not have proper authorisation checks in some of its AJAX actions, allowing unauthenticated users to change the email address of arbitrary users, including administrators, and subsequently take over their account via the password reset flow.","indicators":{"cves":["CVE-2026-18776","CVE-2026-18778"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:37.973Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://wpscan.com/vulnerability/4b6abb2d-941b-429f-a480-33d1aafad450/","label":"contact@wpscan.com","domainType":"other"},{"url":"https://wpscan.com/vulnerability/0a9b6706-ff3a-4a41-b85c-fce696471217/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18937","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-18937 — The Broken Link Checker WordPress plugin before 2.4.12 does not limit which query variables it accep…","description":"The Broken Link Checker WordPress plugin before 2.4.12 does not limit which query variables it accepts from user input on sites using plain permalinks, allowing unauthenticated users to overwrite arbitrary PHP global variables, and to execute arbitrary code on the server when a classic (non-block)…","indicators":{"cves":["CVE-2026-18937"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:38.847Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://wpscan.com/vulnerability/a23b76eb-107d-4e02-8eae-c3c5fa5b003d/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-58085","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-58085 — After dispatching a decrypt operation to OCF and receiving the result, the wg(4) driver failed to ch…","description":"After dispatching a decrypt operation to OCF and receiving the result, the wg(4) driver failed to check whether the MAC verification step succeeded.  The driver thus silently accepted packets with an invalid Poly1305 authentication tag.\n\nA remote attacker who can send UDP packets to a WireGuard endp…","indicators":{"cves":["CVE-2026-58085"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T08:17:12.673Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://security.freebsd.org/advisories/FreeBSD-SA-26:52.if_wg.asc","label":"secteam@freebsd.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18371","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-18371 — HTML injection vulnerability in M-Files Web before 26.8.16330.2 allows an authenticated attacker to…","description":"HTML injection vulnerability in M-Files Web before 26.8.16330.2 allows an authenticated attacker to affect web user interface contents displayed to other users.","indicators":{"cves":["CVE-2026-18371"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T12:17:16.900Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://empower.m-files.com/security-advisories/CVE-2026-18371","label":"security@m-files.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18372","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-18372 — CSS injection vulnerability in M-Files Web before 26.8.16330.2 allows an authenticated vault adminis…","description":"CSS injection vulnerability in M-Files Web before 26.8.16330.2 allows an authenticated vault administrator to inject arbitrary CSS, affecting the web user interface displayed to other vault users.","indicators":{"cves":["CVE-2026-18372"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T12:17:17.043Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://empower.m-files.com/security-advisories/CVE-2026-18372","label":"security@m-files.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66613","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-66613 — Unauthenticated Remote Code Execution (RCE) in JetEngine <= 3.8.14 versions.","description":"Unauthenticated Remote Code Execution (RCE) in JetEngine <= 3.8.14 versions.","indicators":{"cves":["CVE-2026-66613"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T13:17:50.563Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/jet-engine/vulnerability/wordpress-jetengine-plugin-3-8-14-remote-code-execution-rce-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73183","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-73183 — Unauthenticated SQL Injection in Maps Marker Pro <= 4.32 versions.","description":"Unauthenticated SQL Injection in Maps Marker Pro <= 4.32 versions.","indicators":{"cves":["CVE-2026-73183"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T13:18:06.737Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/maps-marker-pro/vulnerability/wordpress-maps-marker-pro-plugin-4-32-sql-injection-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73185","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-73185 — Unauthenticated SQL Injection in NGG Smart Image Search < 4.0.0 versions.","description":"Unauthenticated SQL Injection in NGG Smart Image Search < 4.0.0 versions.","indicators":{"cves":["CVE-2026-73185"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T13:18:06.997Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/ngg-smart-image-search/vulnerability/wordpress-ngg-smart-image-search-plugin-4-0-0-sql-injection-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73347","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-73347 — Unauthenticated Privilege Escalation in TrueBooker <= 1.2.6 versions.","description":"Unauthenticated Privilege Escalation in TrueBooker <= 1.2.6 versions.","indicators":{"cves":["CVE-2026-73347"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T13:18:07.123Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/truebooker-appointment-booking/vulnerability/wordpress-truebooker-plugin-1-2-6-privilege-escalation-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73364","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-73364 — Customer PHP Object Injection in Flexible Subscriptions <= 1.8.1 versions.","description":"Customer PHP Object Injection in Flexible Subscriptions <= 1.8.1 versions.","indicators":{"cves":["CVE-2026-73364"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T13:18:07.520Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/flexible-subscriptions/vulnerability/wordpress-flexible-subscriptions-plugin-1-8-1-php-object-injection-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73388","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-73388 — Unauthenticated SQL Injection in Nikstore Core <= 1.5 versions.","description":"Unauthenticated SQL Injection in Nikstore Core <= 1.5 versions.","indicators":{"cves":["CVE-2026-73388"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T13:18:08.160Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/nikstore-core/vulnerability/wordpress-nikstore-core-plugin-1-5-sql-injection-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73389","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-73389 — Unauthenticated PHP Object Injection in Kalles Addons <= 1.0.6 versions.","description":"Unauthenticated PHP Object Injection in Kalles Addons <= 1.0.6 versions.","indicators":{"cves":["CVE-2026-73389"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T13:18:08.283Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/kalles-addons/vulnerability/wordpress-kalles-addons-plugin-1-0-6-php-object-injection-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73390","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-73390 — Unauthenticated Privilege Escalation in Total Donations <= 2.0.5 versions.","description":"Unauthenticated Privilege Escalation in Total Donations <= 2.0.5 versions.","indicators":{"cves":["CVE-2026-73390"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T13:18:08.417Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/totaldonations/vulnerability/wordpress-total-donations-plugin-2-0-5-privilege-escalation-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73391","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-73391 — Unauthenticated SQL Injection in Total Donations <= 2.0.5 versions.","description":"Unauthenticated SQL Injection in Total Donations <= 2.0.5 versions.","indicators":{"cves":["CVE-2026-73391"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T13:18:08.547Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/totaldonations/vulnerability/wordpress-total-donations-plugin-2-0-5-sql-injection-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16019","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-16019 — Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability i…","description":"Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Faydam Innovation Inc. FAYDAM Datalogger allows SQL Injection.\n\nThis issue affects FAYDAM Datalogger: from 2.7.1 before 2.8.0.","indicators":{"cves":["CVE-2026-16019","CVE-2026-74011","CVE-2026-63037","CVE-2026-63038","CVE-2026-63039"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:27.093Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-26-0871","label":"iletisim@usom.gov.tr","domainType":"other"},{"url":"https://patchstack.com/database/wordpress/plugin/iwp-client/vulnerability/wordpress-infinitewp-client-plugin-1-13-9-sql-injection-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"},{"url":"https://lists.apache.org/thread/po2gvsl30mfjk9cy415hsbzrmqkqpd5r","label":"security@apache.org","domainType":"other"},{"url":"http://www.openwall.com/lists/oss-security/2026/08/20/11","label":"af854a3a-2127-422b-91ae-364da2661108","domainType":"other"},{"url":"https://lists.apache.org/thread/79w0cfnkhs3hctv8yn861qx3qwlc3p37","label":"security@apache.org","domainType":"other"},{"url":"http://www.openwall.com/lists/oss-security/2026/08/20/12","label":"af854a3a-2127-422b-91ae-364da2661108","domainType":"other"},{"url":"https://lists.apache.org/thread/wzpsgwcx2hxj025pcml0loxr16kl93qt","label":"security@apache.org","domainType":"other"},{"url":"http://www.openwall.com/lists/oss-security/2026/08/20/13","label":"af854a3a-2127-422b-91ae-364da2661108","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15065","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-15065 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 NIM could allow a remote attacker to bypass security r…","description":"IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 NIM could allow a remote attacker to bypass security restrictions due to the exposure of intermediate certificate authority private keys in a publicly available update file.","indicators":{"cves":["CVE-2026-15065"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:16:55.787Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283858","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15068","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-15068 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 NIM could allow a remote authenticated attacker to exe…","description":"IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 NIM could allow a remote authenticated attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command.","indicators":{"cves":["CVE-2026-15068"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:16:55.963Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283858","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16656","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-16656 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to gain root privileges…","description":"IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to gain root privileges due to improper authentication.","indicators":{"cves":["CVE-2026-16656"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:16:56.563Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283858","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16690","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-16690 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to cause a denial of ser…","description":"IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to cause a denial of service due to uncontrolled resource consumption.","indicators":{"cves":["CVE-2026-16690","CVE-2026-16706","CVE-2026-16817","CVE-2026-16818","CVE-2026-16824","CVE-2026-16827","CVE-2026-16829","CVE-2026-16831","CVE-2026-16834","CVE-2026-16836","CVE-2026-16837","CVE-2026-16846","CVE-2026-16849","CVE-2026-16851","CVE-2026-16852","CVE-2026-16866","CVE-2026-16886","CVE-2026-16924","CVE-2026-16928","CVE-2026-16958","CVE-2026-17120","CVE-2026-17121","CVE-2026-17159","CVE-2026-17163","CVE-2026-17165","CVE-2026-17170","CVE-2026-17425","CVE-2026-18670","CVE-2026-18828"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:16:56.887Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283858","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16814","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-16814 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary cod…","description":"IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to a heap buffer overflow.","indicators":{"cves":["CVE-2026-16814","CVE-2026-16840","CVE-2026-16841","CVE-2026-16845","CVE-2026-16847","CVE-2026-16850","CVE-2026-16862","CVE-2026-16864","CVE-2026-16865","CVE-2026-16872","CVE-2026-16885","CVE-2026-16894","CVE-2026-16901","CVE-2026-16903","CVE-2026-16909","CVE-2026-16913","CVE-2026-16917","CVE-2026-16919","CVE-2026-17000","CVE-2026-17006","CVE-2026-17024","CVE-2026-17040","CVE-2026-17118","CVE-2026-17122","CVE-2026-17136","CVE-2026-17138","CVE-2026-17141","CVE-2026-17145","CVE-2026-17152","CVE-2026-17157","CVE-2026-17160","CVE-2026-17436","CVE-2026-18832","CVE-2026-19437"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:16:57.367Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283858","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16816","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-16816 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote authenticated attacker to execute…","description":"IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote authenticated attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command.","indicators":{"cves":["CVE-2026-16816","CVE-2026-16877","CVE-2026-16911","CVE-2026-17168","CVE-2026-18824","CVE-2026-18835"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:16:57.523Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283858","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-47187","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-47187 — SSHFS is a network filesystem client for connecting to SSH servers. Prior to version 3.7.6, a rogue…","description":"SSHFS is a network filesystem client for connecting to SSH servers. Prior to version 3.7.6, a rogue SFTP server can return absolute symlink targets or relative targets containing parent-directory components that SSHFS passes through FUSE for resolution by the client kernel against the local filesyst…","indicators":{"cves":["CVE-2026-47187"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:17:05.310Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/libfuse/sshfs/commit/bcd132f17ccf1b8592a229df797c9b08883fec26","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libfuse/sshfs/pull/361","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libfuse/sshfs/releases/tag/sshfs-3.7.6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libfuse/sshfs/security/advisories/GHSA-pjv6-2c3f-r357","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-52889","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-52889 — Formie is a Craft CMS plugin for creating forms. Prior to 3.1.27, Formie can pass request-derived Hi…","description":"Formie is a Craft CMS plugin for creating forms. Prior to 3.1.27, Formie can pass request-derived Hidden field defaults such as HTTP User Agent, Referer URL, Current URL, Current URL without Query String, Query Parameter, and Cookie Value to Craft's Twig rendering layer during front-end form renderi…","indicators":{"cves":["CVE-2026-52889"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:17:09.957Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/verbb/formie/commit/d3b9d15290405e484e3b5c91c5d8fab93047f9b2","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/verbb/formie/releases/tag/3.1.27","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/verbb/formie/security/advisories/GHSA-565m-g33j-jq96","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-53451","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-53451 — Ground Station is a browser-based suite for satellite tracking, SDR reception, hardware control, and…","description":"Ground Station is a browser-based suite for satellite tracking, SDR reception, hardware control, and telemetry decoding. Prior to version 0.4.13, the unauthenticated save-waterfall-snapshot Socket.IO command passes attacker-controlled snapshotName input from backend/handlers/entities/sdr.py to backe…","indicators":{"cves":["CVE-2026-53451","CVE-2026-53452"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:17:10.120Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/sgoudelis/ground-station/commit/5649905f1021155933463a54a76030924adffb9d","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/sgoudelis/ground-station/releases/tag/v0.4.13","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/sgoudelis/ground-station/security/advisories/GHSA-q35x-w3h6-36w8","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/sgoudelis/ground-station/security/advisories/GHSA-g344-jqcx-cr7q","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-71960","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-71960 — Cudy WR3000 2.0 running firmware before 2.5.24 contains a hard-coded JWT HMAC signing secret vulnera…","description":"Cudy WR3000 2.0 running firmware before 2.5.24 contains a hard-coded JWT HMAC signing secret vulnerability in the Mosquitto MQTT broker's authentication plugin that allows unauthenticated attackers to forge valid JWT tokens by extracting the secret from the firmware image. Attackers can use the extr…","indicators":{"cves":["CVE-2026-71960"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:18:01.943Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://www.cudy.com/en-us/pages/download-center/wr3000-2-0","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://www.vulncheck.com/advisories/cudy-wr3000-hard-coded-jwt-secret-authentication-bypass-via-mqtt","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-44252","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-44252 — Wazuh is a free and open source platform used for threat prevention, detection, and response. From 4…","description":"Wazuh is a free and open source platform used for threat prevention, detection, and response. From 4.0.0 until 4.14.5, Wazuh Manager allows a low-privilege read-only API user with manager:read permission to retrieve the cluster key from the element in ossec.conf through GET /manager/configuration?ra…","indicators":{"cves":["CVE-2026-44252","CVE-2026-46343","CVE-2026-41424","CVE-2026-44255","CVE-2026-44256","CVE-2026-44901","CVE-2026-45798","CVE-2026-48024","CVE-2026-48162","CVE-2026-49392","CVE-2026-49441"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T16:17:10.690Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/wazuh/wazuh/commit/b3459f5663702aea14e91330a7a6912081fed2eb","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/pull/35307","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/releases/tag/v4.14.5","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/releases/tag/v5.0.0-beta3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/security/advisories/GHSA-34fx-c2xw-xcpg","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/commit/90d43547d166cdbe65e9a3d011f946214df9179c","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/pull/36060","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/releases/tag/v4.14.6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/releases/tag/v5.0.0-beta2","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/security/advisories/GHSA-cqvw-w2rg-327f","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/commit/1a38d11574c6d35a4272e1e7145d55d293e7dda4","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/commit/813add3575ecd4df484b2326715ca78f65505b4e","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/pull/35442","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/pull/35469","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/releases/tag/v4.10.4","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/security/advisories/GHSA-gj9h-8hmr-xjjr","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/commit/5ecea7b38b998407cb0d205467dd247140a0f981","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/pull/35757","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/security/advisories/GHSA-3978-44q9-9px9","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/commit/cddf3fd16b0f945b28eb9c27714de3cc344e0926","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/pull/35866","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/security/advisories/GHSA-c3m6-fp2h-wmr4","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/commit/b29849f8abb08d78f257e6106b6111a8a1b0e621","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/security/advisories/GHSA-8c6v-7g3w-prrq","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/commit/b6aac379982d6144b8da38450cbea6c8dc15be44","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/pull/36059","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/security/advisories/GHSA-4fvp-jfc3-qr6r","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/commit/88fc89fdfb1bf37b9d826e9c281a3d22655733de","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/pull/36204","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/security/advisories/GHSA-gh4h-fx78-q8xc","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/commit/de1eeedbe336744934be4e20d87d84a76e438cee","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/pull/36246","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/security/advisories/GHSA-r6f5-h662-8ffc","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/commit/8e4e25b971dfb7b15bc492f10f8a350e6b37e70e","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/pull/36399","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/security/advisories/GHSA-9c4x-mrjh-rmw5","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/commit/7f13682cf5f01f69452f723a608ab2d89cfb2133","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/pull/36296","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/security/advisories/GHSA-3v57-hgvj-3vj2","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-20030","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-20030 — As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Crosswork…","description":"As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Crosswork engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities.\r\n\r\nThe vul…","indicators":{"cves":["CVE-2026-20030","CVE-2026-20357","CVE-2026-20358","CVE-2026-20359"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T17:18:38.957Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-hardening-crosswork-UzDTU9Vh","label":"psirt@cisco.com","domainType":"primary"},{"url":"https://www.cve.org/Media/News/item/blog/2026/06/16/Preserving-Vulnerability-Level-Identification","label":"af854a3a-2127-422b-91ae-364da2661108","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-20231","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-20231 — As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Wo…","description":"As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Workload engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities.\r\n&nb…","indicators":{"cves":["CVE-2026-20231","CVE-2026-20315","CVE-2026-20317","CVE-2026-20318","CVE-2026-20319"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T17:18:39.227Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-hardening-csw1-shSvndWP","label":"psirt@cisco.com","domainType":"primary"},{"url":"https://www.cve.org/Media/News/item/blog/2026/06/16/Preserving-Vulnerability-Level-Identification","label":"af854a3a-2127-422b-91ae-364da2661108","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-71470","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-71470 — A flaw was found in the search-v2-operator. This vulnerability allows a privileged user, specificall…","description":"A flaw was found in the search-v2-operator. This vulnerability allows a privileged user, specifically a Custom Resource (CR) editor, to manipulate Search CR fields such as imageOverride, arguments, and environment variables without proper validation. By exploiting this, an attacker can mount arbitra…","indicators":{"cves":["CVE-2026-71470"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T17:20:57.063Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-71470","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2512149","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75143","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-75143 — FFmpeg before commit 1c10bcc contains a heap buffer overflow in the RIST protocol reader (libavforma…","description":"FFmpeg before commit 1c10bcc contains a heap buffer overflow in the RIST protocol reader (libavformat/librist.c). librist_read() ignored its size argument and copied the full received payload length into the caller-provided destination buffer, overflowing it when the payload exceeds the destination…","indicators":{"cves":["CVE-2026-75143"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T17:21:12.577Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://code.ffmpeg.org/FFmpeg/FFmpeg/commit/1c10bcc2e17255dacb717a25ab3db142ce390602","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://code.ffmpeg.org/FFmpeg/FFmpeg/pulls/24089","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://www.vulncheck.com/advisories/ffmpeg-heap-buffer-overflow-via-rist-protocol-reader","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-32475","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-32475 — Unrestricted Upload of File with Dangerous Type vulnerability in Elementor Elementor Pro allows Usin…","description":"Unrestricted Upload of File with Dangerous Type vulnerability in Elementor Elementor Pro allows Using Malicious Files.\n\nThis issue affects Elementor Pro: from n/a through 4.2.1.","indicators":{"cves":["CVE-2026-32475"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T18:16:38.537Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://patchstack.com/articles/critical-unauthenticated-file-upload-to-rce-in-elementor-pro-plugin?_s_id=cve","label":"audit@patchstack.com","domainType":"other"},{"url":"https://patchstack.com/database/wordpress/plugin/elementor-pro/vulnerability/wordpress-elementor-pro-plugin-4-2-1-arbitrary-file-upload-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66794","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-66794 — A flaw was found in the `cluster-proxy-addon` component of Multicluster Engine for Kubernetes. This…","description":"A flaw was found in the `cluster-proxy-addon` component of Multicluster Engine for Kubernetes. This vulnerability allows an unauthenticated attacker, who can access the user-facing route, to bypass authentication and authorization checks. By manipulating URL path segments, the attacker can proxy req…","indicators":{"cves":["CVE-2026-66794"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T18:17:16.547Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-66794","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2507539","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-67581","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-67581 — Authentication Bypass by Capture-replay in ZenHive mpp allows an unauthenticated remote client to ob…","description":"Authentication Bypass by Capture-replay in ZenHive mpp allows an unauthenticated remote client to obtain paid resources by resubmitting one settled on-chain transfer.\n\nMPP.Methods.EVM.verify/2 accepts a transaction-hash credential and matches a transfer purely on token, to and amount (ERC-20) or to…","indicators":{"cves":["CVE-2026-67581"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T18:17:17.303Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://cna.erlef.org/cves/CVE-2026-67581.html","label":"6b3ad84c-e1a6-4bf7-a703-f496b71e49db","domainType":"other"},{"url":"https://github.com/ZenHive/mpp/commit/ecc038088b1cda09ad8a84acc6cc112addb4a68f","label":"6b3ad84c-e1a6-4bf7-a703-f496b71e49db","domainType":"primary"},{"url":"https://github.com/ZenHive/mpp/security/advisories/GHSA-vp5h-xh25-44wf","label":"6b3ad84c-e1a6-4bf7-a703-f496b71e49db","domainType":"primary"},{"url":"https://osv.dev/vulnerability/EEF-CVE-2026-67581","label":"6b3ad84c-e1a6-4bf7-a703-f496b71e49db","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73136","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-73136 — Authentication Bypass by Capture-replay in ZenHive mpp allows an unauthenticated third party to obta…","description":"Authentication Bypass by Capture-replay in ZenHive mpp allows an unauthenticated third party to obtain paid resources by replaying a transfer settled by an unrelated payer.\n\nMPP.Methods.Tempo normally binds a settled TIP-20 TransferWithMemo to the specific challenge under verification through an att…","indicators":{"cves":["CVE-2026-73136"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T18:17:25.453Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://cna.erlef.org/cves/CVE-2026-73136.html","label":"6b3ad84c-e1a6-4bf7-a703-f496b71e49db","domainType":"other"},{"url":"https://github.com/ZenHive/mpp/commit/2207d7f456ae14c1d3fcacc6f635bf4f8cee1a34","label":"6b3ad84c-e1a6-4bf7-a703-f496b71e49db","domainType":"primary"},{"url":"https://github.com/ZenHive/mpp/security/advisories/GHSA-34g7-vx6g-82mq","label":"6b3ad84c-e1a6-4bf7-a703-f496b71e49db","domainType":"primary"},{"url":"https://osv.dev/vulnerability/EEF-CVE-2026-73136","label":"6b3ad84c-e1a6-4bf7-a703-f496b71e49db","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73829","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-73829 — Time-of-check Time-of-use (TOCTOU) Race Condition in ZenHive mpp allows an unauthenticated remote cl…","description":"Time-of-check Time-of-use (TOCTOU) Race Condition in ZenHive mpp allows an unauthenticated remote client to redeem one confirmed on-chain payment for multiple paid-resource accesses.\n\nThe type=\"hash\" credential path in MPP.Methods.Tempo.verify/2 guards against replay with a non-atomic check-then-mar…","indicators":{"cves":["CVE-2026-73829"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T18:17:25.800Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://cna.erlef.org/cves/CVE-2026-73829.html","label":"6b3ad84c-e1a6-4bf7-a703-f496b71e49db","domainType":"other"},{"url":"https://github.com/ZenHive/mpp/commit/46c5b0e1311da7d92190dc7d9ea89027a1d365e9","label":"6b3ad84c-e1a6-4bf7-a703-f496b71e49db","domainType":"primary"},{"url":"https://github.com/ZenHive/mpp/security/advisories/GHSA-w8j7-7qc3-5f24","label":"6b3ad84c-e1a6-4bf7-a703-f496b71e49db","domainType":"primary"},{"url":"https://osv.dev/vulnerability/EEF-CVE-2026-73829","label":"6b3ad84c-e1a6-4bf7-a703-f496b71e49db","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16687","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-16687 — IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and…","description":"IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2  is affected by a vulnerability in the ASMI web interface. An unauthenticated attacker with network access can send the FSP a malformed request, allowing arbitrary code execu…","indicators":{"cves":["CVE-2026-16687","CVE-2026-16828","CVE-2026-16832","CVE-2026-16835","CVE-2026-16938","CVE-2026-18848"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T19:17:10.280Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283893","label":"psirt@us.ibm.com","domainType":"other"},{"url":"https://www.ibm.com/support/pages/node/7283898","label":"psirt@us.ibm.com","domainType":"other"},{"url":"https://www.ibm.com/support/pages/node/7283895","label":"psirt@us.ibm.com","domainType":"other"},{"url":"https://www.ibm.com/support/pages/node/7283894","label":"psirt@us.ibm.com","domainType":"other"},{"url":"https://www.ibm.com/support/pages/node/7283896","label":"psirt@us.ibm.com","domainType":"other"},{"url":"https://www.ibm.com/support/pages/node/7283897","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18315","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-18315 — The TrueBooker – Appointment Booking and Scheduler System plugin for WordPress is vulnerable to Auth…","description":"The TrueBooker – Appointment Booking and Scheduler System plugin for WordPress is vulnerable to Authorization Bypass Through User-Controlled Key leading to Account Takeover in all versions up to, and including, 1.2.6. This is due to the admin_user_create_cus AJAX handler lacking any authentication o…","indicators":{"cves":["CVE-2026-18315"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T19:17:11.980Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://plugins.svn.wordpress.org/truebooker-appointment-booking/tags/1.2.6/main/config/truebooker-style.php","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.svn.wordpress.org/truebooker-appointment-booking/tags/1.2.6/main/function_ajax.php","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.svn.wordpress.org/truebooker-appointment-booking/tags/1.2.6/templates/login-register.php","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset/3640018/truebooker-appointment-booking","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/73251a74-5be3-446b-8e0a-ff2d1484c467?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70496","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-70496 — A flaw was found in search-v2-operator. The operator's ClusterRole has permissions equivalent to a c…","description":"A flaw was found in search-v2-operator. The operator's ClusterRole has permissions equivalent to a cluster administrator, allowing it to impersonate other entities, write Role-Based Access Control (RBAC) configurations, approve Certificate Signing Requests (CSRs), and manage ManifestWork. This grant…","indicators":{"cves":["CVE-2026-70496"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T19:17:23.230Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-70496","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2511032","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16822","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-16822 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to impersonate the TNC p…","description":"IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to impersonate the TNC policy server and modify traffic due to improper certificate validation.","indicators":{"cves":["CVE-2026-16822"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:02.720Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283858","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16839","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-16839 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to obtain sensitive info…","description":"IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to obtain sensitive information due to an integer underflow in the IPv4 IP-options parser.","indicators":{"cves":["CVE-2026-16839","CVE-2026-16888","CVE-2026-16972","CVE-2026-17060","CVE-2026-17423"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:05.030Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283858","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16842","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-16842 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary com…","description":"IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command.","indicators":{"cves":["CVE-2026-16842","CVE-2026-16844","CVE-2026-16848","CVE-2026-16882","CVE-2026-17142"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:05.513Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283858","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16869","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-16869 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to execute arbitrary code…","description":"IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to execute arbitrary code due to improperly scrubbed environment variables.","indicators":{"cves":["CVE-2026-16869","CVE-2026-16914","CVE-2026-16922","CVE-2026-16936","CVE-2026-16943","CVE-2026-16944","CVE-2026-16945","CVE-2026-16996","CVE-2026-17124","CVE-2026-17422","CVE-2026-18840"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:08.120Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283858","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-22306","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-22306 — Download of code without integrity check, inclusion of functionality from untrusted control sphere,…","description":"Download of code without integrity check, inclusion of functionality from untrusted control sphere, and cleartext \ntransmission of sensitive information vulnerability in Ozols Grupa OZOLS\n on Windows caused by an abandoned auto-update domain. Affected\ncomponent: the automatic update channel - OzolsS…","indicators":{"cves":["CVE-2026-22306"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:16.007Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://offseq.com/en/research/ozols-cve-2026-22306","label":"a6d3dc9e-0591-4a13-bce7-0f5b31ff6158","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-55085","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-55085 — Etherpad is a real-time collaborative editor. Prior to 3.3.1, result.appendSpan in src/static/js/dom…","description":"Etherpad is a real-time collaborative editor. Prior to 3.3.1, result.appendSpan in src/static/js/domline.ts interpolates the start attribute of a numbered list directly into an unquoted ol start attribute before assigning the generated markup to node.innerHTML. ImportEtherpad.setPadRaw in src/node/u…","indicators":{"cves":["CVE-2026-55085"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:17.280Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://github.com/ether/etherpad/commit/d828185efcac9abc2e46e6da1c171393500fa319","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ether/etherpad/pull/7937","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ether/etherpad/releases/tag/v3.3.1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ether/etherpad/security/advisories/GHSA-f7h5-v9hm-548j","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-55089","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-55089 — Etherpad is a real-time collaborative editor. From 2.1.0 until 3.1.0, Etherpad's src/node/handler/AP…","description":"Etherpad is a real-time collaborative editor. From 2.1.0 until 3.1.0, Etherpad's src/node/handler/APIHandler.ts authorizes requests to /api/2/* in the authorization_code OAuth path by using requiredClaims with the admin claim. This check requires only that the claim exists, while src/node/security/O…","indicators":{"cves":["CVE-2026-55089"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:18.050Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://github.com/ether/etherpad/commit/8c6104c5d5daf41f0d454acc04d42dffa0e0d996","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ether/etherpad/pull/7784","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ether/etherpad/releases/tag/v3.1.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ether/etherpad/security/advisories/GHSA-qfmh-fph3-mw8q","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ether/etherpad/security/advisories/GHSA-qfmh-fph3-mw8q","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-63722","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-63722 — ICEcoder 8.1 contains an unauthenticated remote code execution vulnerability that allows unauthentic…","description":"ICEcoder 8.1 contains an unauthenticated remote code execution vulnerability that allows unauthenticated attackers to execute arbitrary OS commands by chaining an authentication bypass, CSRF validation bypass, and unsanitized command execution. Attackers can send a single HTTP POST request to the te…","indicators":{"cves":["CVE-2026-63722"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:20.380Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://gist.github.com/axg11/fc2b86648d8f385b51f4576ff0f392d8","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/icecoder/ICEcoder","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/icecoder-unauthenticated-rce-via-terminal-xhr-php","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://gist.github.com/axg11/fc2b86648d8f385b51f4576ff0f392d8","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-53542","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-53542 — Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capa…","description":"Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities. Prior to 2.3.2, the archive creation endpoint in src/backend/ssh/file-manager.ts passes selected file basenames to tar without an end-of-options marker and without making the operands unambi…","indicators":{"cves":["CVE-2026-53542","CVE-2026-53545","CVE-2026-53546","CVE-2026-53547","CVE-2026-53548","CVE-2026-53549"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T21:16:56.400Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://github.com/Termix-SSH/Termix/commit/52f4e51ae03b5b8d2608e1383e2ccf79d290132b","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Termix-SSH/Termix/pull/874","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Termix-SSH/Termix/releases/tag/release-2.3.2-tag","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Termix-SSH/Termix/security/advisories/GHSA-rwj6-6vh7-45pv","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Termix-SSH/Termix/security/advisories/GHSA-5p86-jgr7-4hwx","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Termix-SSH/Termix/security/advisories/GHSA-57gp-39c7-4g9r","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Termix-SSH/Termix/security/advisories/GHSA-6r97-7wp3-2g3x","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Termix-SSH/Termix/security/advisories/GHSA-j6h8-mww6-pgw6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Termix-SSH/Termix/security/advisories/GHSA-x9pr-795g-rm5f","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-54494","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-54494 — Koel is a free, open-source music streaming solution. Prior to 9.7.1, App\\Helpers\\Network::isPublicH…","description":"Koel is a free, open-source music streaming solution. Prior to 9.7.1, App\\Helpers\\Network::isPublicHost() uses filter_var() with FILTER_FLAG_NO_PRIV_RANGE and FILTER_FLAG_NO_RES_RANGE, which treats NAT64 64:ff9b::/96 and 6to4 2002::/16 wrappers of private, loopback, or link-local IPv4 addresses as p…","indicators":{"cves":["CVE-2026-54494"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T21:16:57.910Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://github.com/koel/koel/commit/5f6ce2cefd08f437a269236b677ad971517ccbb6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/koel/koel/pull/2549","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/koel/koel/releases/tag/v9.7.1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/koel/koel/security/advisories/GHSA-rjg7-r26h-cfp2","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-76584","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-76584 — A security flaw has been discovered in TRENDnet TV-IP751WIC 11.03.03. Affected by this issue is some…","description":"A security flaw has been discovered in TRENDnet TV-IP751WIC 11.03.03. Affected by this issue is some unknown functionality of the file /cgi-bin/admin/set_time.cgi of the component alphapd. The manipulation of the argument Currenttime results in stack-based buffer overflow. The attack can be launched…","indicators":{"cves":["CVE-2026-76584"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T21:17:38.857Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://github.com/meishigana/CVE/blob/main/team15_20260702/07_751wic-apd-time-cmdi/poc/poc-time-injection.py","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/meishigana/CVE/tree/main/team15_20260702/07_751wic-apd-time-cmdi","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-76584","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/877793","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393043","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393043/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76310","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-76310 — In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, an unauthenticated user who…","description":"In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, an unauthenticated user who has an embedded report token could download the associated search job dispatch archive, recover session material, and use it to access all relevant data available to the report owner and affect system…","indicators":{"cves":["CVE-2026-76310","CVE-2026-76311","CVE-2026-76338"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:14.700Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0801","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76312","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-76312 — In Splunk Enterprise versions below 10.4.1, 10.2.6, 10.0.9, and 9.4.14, an unauthenticated user who…","description":"In Splunk Enterprise versions below 10.4.1, 10.2.6, 10.0.9, and 9.4.14, an unauthenticated user who can read the Hypertext Markup Language (HTML) source of a page that embeds a Splunk report could use exposed session material to access all relevant data and affect system integrity. The vulnerability…","indicators":{"cves":["CVE-2026-76312"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:14.960Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0801","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76404","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-76404 — In Splunk MCP Server app versions below 1.2.1, a user who holds the \"admin\" Splunk role could execut…","description":"In Splunk MCP Server app versions below 1.2.1, a user who holds the \"admin\" Splunk role could execute arbitrary commands on the underlying operating system. The vulnerability is possible because of missing input validation in the app's credential management component, which deserializes stored data…","indicators":{"cves":["CVE-2026-76404"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:27.170Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0808","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76589","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-76589 — A vulnerability was found in TRENDnet TEW-755AP up to 20260702. Affected is the function FUN_401000…","description":"A vulnerability was found in TRENDnet TEW-755AP up to 20260702. Affected is the function FUN_401000 of the file /sbin/mycli. The manipulation of the argument ssid results in stack-based buffer overflow. The attack may be launched remotely. The exploit has been made public and could be used.","indicators":{"cves":["CVE-2026-76589"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:27.447Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://github.com/meishigana/CVE/blob/main/team15_20260702/13_755ap-mycli-bof/poc/poc-mycli-overflow.py","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/meishigana/CVE/tree/main/team15_20260702/13_755ap-mycli-bof","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-76589","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/877845","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393085","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393085/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76590","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-76590 — A vulnerability was identified in TRENDnet TEW-755AP up to 20260702. Affected by this issue is some…","description":"A vulnerability was identified in TRENDnet TEW-755AP up to 20260702. Affected by this issue is some unknown functionality of the file /cgi-bin/wan.cgi of the component ssi. Such manipulation of the argument cameo.wan.wan_pppoe_password_00 leads to stack-based buffer overflow. The attack can be execu…","indicators":{"cves":["CVE-2026-76590"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:27.613Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://github.com/meishigana/CVE/blob/main/team15_20260702/15_755ap-ssi-bof/poc/poc-ssi-overflow.py","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/meishigana/CVE/tree/main/team15_20260702/15_755ap-ssi-bof","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-76590","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/877850","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393087","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393087/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76850","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-76850 — LMDeploy deserializes disaggregated-serving peer messages with pickle. The handle_zmq_recv coroutine…","description":"LMDeploy deserializes disaggregated-serving peer messages with pickle. The handle_zmq_recv coroutine in lmdeploy/pytorch/disagg/conn/engine_conn.py reads peer-to-peer cache-free requests with recv_pyobj(), which deserializes the received bytes with pickle.loads(), and the isinstance check against Di…","indicators":{"cves":["CVE-2026-76850"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:28.123Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://github.com/InternLM/lmdeploy","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/InternLM/lmdeploy/blob/v0.15.0/lmdeploy/pytorch/disagg/conn/engine_conn.py#L61","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/InternLM/lmdeploy/blob/v0.15.0/lmdeploy/pytorch/disagg/conn/engine_conn.py#L79","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/InternLM/lmdeploy/commit/f05b4ad8bf2e2d84101a1d63b3c44fadd99223b2","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/InternLM/lmdeploy/issues/4804","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/InternLM/lmdeploy/releases/tag/v0.16.0","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/lmdeploy-remote-code-execution-via-unsafe-pickle-deserialization-in-the-disaggregated-serving-peer-connector","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/InternLM/lmdeploy/issues/4804","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75860","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-75860 — The JSON Options WordPress plugin through 0.0.4 does not have any capability check or nonce verifica…","description":"The JSON Options WordPress plugin through 0.0.4 does not have any capability check or nonce verification on one of its actions, which runs on every request and is available to unauthenticated users, allowing them to update arbitrary WordPress options. This can be leveraged to enable user registratio…","indicators":{"cves":["CVE-2026-75860"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T06:17:32.207Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://wpscan.com/vulnerability/6c9bbd44-cd10-40e2-af6f-440e7ccabf9a/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-14950","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-14950 — An unauthenticated remote attacker in possession of a valid session identifier is able to continue u…","description":"An unauthenticated remote attacker in possession of a valid session identifier is able to continue using the session after it should have expired. This increases the risk associated with stolen, leaked, shared, or unattended sessions and may enable unauthorized continued access to the FDS web interf…","indicators":{"cves":["CVE-2026-14950"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T09:16:47.450Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://www.certvde.com/en/advisories/VDE-2026-078/","label":"info@cert.vde.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-11861","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-11861 — A flaw was found in FreeIPA. When a trust relationship is configured between FreeIPA and Active Dire…","description":"A flaw was found in FreeIPA. When a trust relationship is configured between FreeIPA and Active Directory, Active Directory users can bypass authentication for FreeIPA services, including the portal, SMB server, and LDAP directory. This is possible by impersonating a client name in the Ticket Granti…","indicators":{"cves":["CVE-2026-11861"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T11:16:19.270Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-11861","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2487472","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-13097","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-13097 — A privilege escalation flaw was found in FreeIPA. The uniqueness constraint enforced on Kerberos pri…","description":"A privilege escalation flaw was found in FreeIPA. The uniqueness constraint enforced on Kerberos principal name attributes in the 389-ds directory server does not properly account for equivalent representations of the same principal name, allowing a user with sufficient LDAP write privileges to crea…","indicators":{"cves":["CVE-2026-13097"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T11:16:20.293Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-13097","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2515974","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2025-15688","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2025-15688 — Unauthenticated SQL Injection in Capella <= 2.5.5 versions.","description":"Unauthenticated SQL Injection in Capella <= 2.5.5 versions.","indicators":{"cves":["CVE-2025-15688"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:31.763Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/theme/capella/vulnerability/wordpress-capella-theme-2-5-5-sql-injection-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2025-15689","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2025-15689 — Unauthenticated Privilege Escalation in Capella <= 2.5.5 versions.","description":"Unauthenticated Privilege Escalation in Capella <= 2.5.5 versions.","indicators":{"cves":["CVE-2025-15689"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:31.890Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/theme/capella/vulnerability/wordpress-capella-theme-2-5-5-privilege-escalation-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66583","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-66583 — Unauthenticated PHP Object Injection in Forminator <= 1.57.0 versions.","description":"Unauthenticated PHP Object Injection in Forminator <= 1.57.0 versions.","indicators":{"cves":["CVE-2026-66583"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:32.670Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/forminator/vulnerability/wordpress-forminator-plugin-1-57-0-php-object-injection-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66592","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-66592 — Unauthenticated SQL Injection in rtMedia for WordPress, BuddyPress and bbPress <= 4.7.11 versions.","description":"Unauthenticated SQL Injection in rtMedia for WordPress, BuddyPress and bbPress <= 4.7.11 versions.","indicators":{"cves":["CVE-2026-66592"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:33.057Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/buddypress-media/vulnerability/wordpress-rtmedia-for-wordpress-buddypress-and-bbpress-plugin-4-7-11-sql-injection-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66593","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-66593 — Unauthenticated SQL Injection in Security & Malware scan by CleanTalk <= 2.184 versions.","description":"Unauthenticated SQL Injection in Security & Malware scan by CleanTalk <= 2.184 versions.","indicators":{"cves":["CVE-2026-66593"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:33.187Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/security-malware-firewall/vulnerability/wordpress-security-malware-scan-by-cleantalk-plugin-2-184-sql-injection-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66600","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-66600 — Author Arbitrary File Upload in Media LIbrary Assistant <= 3.39 versions.","description":"Author Arbitrary File Upload in Media LIbrary Assistant <= 3.39 versions.","indicators":{"cves":["CVE-2026-66600"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:33.810Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/media-library-assistant/vulnerability/wordpress-media-library-assistant-plugin-3-39-arbitrary-file-upload-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66609","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-66609 — Unauthenticated SQL Injection in TheGem (Elementor) <= 5.12.3 versions.","description":"Unauthenticated SQL Injection in TheGem (Elementor) <= 5.12.3 versions.","indicators":{"cves":["CVE-2026-66609"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:34.563Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/theme/thegem-elementor/vulnerability/wordpress-thegem-elementor-theme-5-12-3-sql-injection-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66649","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-66649 — Unauthenticated SQL Injection in Directory Pro <= 2.5.8 versions.","description":"Unauthenticated SQL Injection in Directory Pro <= 2.5.8 versions.","indicators":{"cves":["CVE-2026-66649"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:35.450Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/directory-pro/vulnerability/wordpress-directory-pro-plugin-2-5-8-sql-injection-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66672","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-66672 — Unauthenticated PHP Object Injection in Flatastic <= 2.0 versions.","description":"Unauthenticated PHP Object Injection in Flatastic <= 2.0 versions.","indicators":{"cves":["CVE-2026-66672"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:35.570Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/theme/flatastic/vulnerability/wordpress-flatastic-theme-2-0-php-object-injection-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66680","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-66680 — Unauthenticated SQL Injection in Locatoraid Store Locator <= 3.9.72 versions.","description":"Unauthenticated SQL Injection in Locatoraid Store Locator <= 3.9.72 versions.","indicators":{"cves":["CVE-2026-66680"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:35.943Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/locatoraid/vulnerability/wordpress-locatoraid-store-locator-plugin-3-9-72-sql-injection-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66682","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-66682 — Unauthenticated Privilege Escalation in Abandoned Cart Pro for WooCommerce <= 10.4.0 versions.","description":"Unauthenticated Privilege Escalation in Abandoned Cart Pro for WooCommerce <= 10.4.0 versions.","indicators":{"cves":["CVE-2026-66682"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:36.063Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/woocommerce-abandon-cart-pro/vulnerability/wordpress-abandoned-cart-pro-for-woocommerce-plugin-10-4-0-privilege-escalation-vulnerability-2?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-68566","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-68566 — Unauthenticated SQL Injection in BookingPress Appointment Booking Pro <= 6.0.2 versions.","description":"Unauthenticated SQL Injection in BookingPress Appointment Booking Pro <= 6.0.2 versions.","indicators":{"cves":["CVE-2026-68566"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:36.313Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/bookingpress-appointment-booking-pro/vulnerability/wordpress-bookingpress-appointment-booking-pro-plugin-6-0-2-sql-injection-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73992","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-73992 — Subscriber Remote Code Execution (RCE) in Query Wrangler <= 1.5.57 versions.","description":"Subscriber Remote Code Execution (RCE) in Query Wrangler <= 1.5.57 versions.","indicators":{"cves":["CVE-2026-73992"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:36.563Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/query-wrangler/vulnerability/wordpress-query-wrangler-plugin-1-5-57-remote-code-execution-rce-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74001","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74001 — Unauthenticated Broken Authentication in User Registration & Membership Pro <= 5.4.5 versions.","description":"Unauthenticated Broken Authentication in User Registration & Membership Pro <= 5.4.5 versions.","indicators":{"cves":["CVE-2026-74001"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:36.940Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/user-registration-pro/vulnerability/wordpress-user-registration-membership-pro-plugin-5-4-5-account-takeover-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74014","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74014 — Subscriber Arbitrary File Upload in IT Residence <= 3.2.1 versions.","description":"Subscriber Arbitrary File Upload in IT Residence <= 3.2.1 versions.","indicators":{"cves":["CVE-2026-74014"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:37.187Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/theme/it-residence/vulnerability/wordpress-it-residence-theme-3-2-1-arbitrary-file-upload-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74016","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74016 — Subscriber Arbitrary File Upload in Smart Cleaning <= 4.8.6 versions.","description":"Subscriber Arbitrary File Upload in Smart Cleaning <= 4.8.6 versions.","indicators":{"cves":["CVE-2026-74016"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:37.317Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/theme/smart-cleaning/vulnerability/wordpress-smart-cleaning-theme-4-8-6-arbitrary-file-upload-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74018","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-74018 — Subscriber Arbitrary File Upload in Warehouse Cargo <= 2.6.9 versions.","description":"Subscriber Arbitrary File Upload in Warehouse Cargo <= 2.6.9 versions.","indicators":{"cves":["CVE-2026-74018"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:37.440Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/theme/warehouse-cargo/vulnerability/wordpress-warehouse-cargo-theme-2-6-9-arbitrary-file-upload-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77068","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-77068 — n8n before 2.33.4 and 2.34.x before 2.34.1 contain a remote code execution vulnerability in the @n8n…","description":"n8n before 2.33.4 and 2.34.x before 2.34.1 contain a remote code execution vulnerability in the @n8n/workflow-sdk node-schema loader used for MCP node-schema loading. The loader derives a node's schema module path directly from the attacker-supplied node type string without validating path-traversal…","indicators":{"cves":["CVE-2026-77068"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:37.963Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://github.com/n8n-io/n8n/security/advisories/GHSA-6h4x-896x-fw5m","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/n8n-before-remote-code-execution-via-path-traversal","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18482","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-18482 — Neo.mjs contains a command injection vulnerability within the FileSystemService.mjs component of the…","description":"Neo.mjs contains a command injection vulnerability within the FileSystemService.mjs component of the ai/mcp/server/file-system MCP server, where the checkSyntax() and runPlaywrightTest() functions unsafely interpolate caller-controlled absolutePath values into shell commands, enabling arbitrary OS c…","indicators":{"cves":["CVE-2026-18482"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T13:16:58.560Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://github.com/neomjs/neo/commit/5acc564ea1b278bca5fab1f8f397a6ba9b849d75","label":"cret@cert.org","domainType":"primary"},{"url":"https://github.com/neomjs/neo/commit/88c77fc4","label":"cret@cert.org","domainType":"primary"},{"url":"https://novice-22.com/posts/neo-mjs/","label":"cret@cert.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-28164","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-28164 — Cross-Site Request Forgery (CSRF) vulnerability in HashThemes Easy Elementor Addons allows Cross Sit…","description":"Cross-Site Request Forgery (CSRF) vulnerability in HashThemes Easy Elementor Addons allows Cross Site Request Forgery.\n\nThis issue affects Easy Elementor Addons: from n/a through 2.3.7.","indicators":{"cves":["CVE-2026-28164"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T13:17:27.250Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/easy-elementor-addons/vulnerability/wordpress-easy-elementor-addons-plugin-2-3-7-cross-site-request-forgery-csrf-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15706","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-15706 — Missing authentication for critical function vulnerability in Baylan Measuring Instruments Industry…","description":"Missing authentication for critical function vulnerability in Baylan Measuring Instruments Industry and Trade Inc. Baylan Smart Meter Management Application (BMS) allows Authentication Bypass.\n\nThis issue affects Baylan Smart Meter Management Application (BMS): before v1.1.10.142.","indicators":{"cves":["CVE-2026-15706"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:17:09.617Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-26-0881","label":"iletisim@usom.gov.tr","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-64960","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-64960 — ATutor Gameme module allows users to upload files of any type and extension without restriction. Due…","description":"ATutor Gameme module allows users to upload files of any type and extension without restriction. Due to improper handling of file uploads, files are stored in a web-accessible location before their content is validated. An authenticated attacker who knows a valid course_id can upload a server-execut…","indicators":{"cves":["CVE-2026-64960"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:17:44.400Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://atutor.github.io/","label":"cvd@cert.pl","domainType":"other"},{"url":"https://cert.pl/en/posts/2026/08/CVE-2026-64960","label":"cvd@cert.pl","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-64966","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-64966 — ATutor is vulnerable to a Path Traversal vulnerability in ZIP extraction functionality. An attacker…","description":"ATutor is vulnerable to a Path Traversal vulnerability in ZIP extraction functionality. An attacker with instructor privileges can upload and extract a specially crafted ZIP archive, causing files to be written outside the intended extraction directory. This allows an attacker to place a server-exec…","indicators":{"cves":["CVE-2026-64966"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:17:45.270Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://atutor.github.io/","label":"cvd@cert.pl","domainType":"other"},{"url":"https://cert.pl/en/posts/2026/08/CVE-2026-64960","label":"cvd@cert.pl","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16926","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-16926 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to overwrite arbitrary f…","description":"IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to overwrite arbitrary files due to improper neutralization of special elements in input.","indicators":{"cves":["CVE-2026-16926"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T15:17:28.963Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283858","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15679","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-15679 — Hugging Face PyTorch Image Models checkpoint Deserialization of Untrusted Data Remote Code Execution…","description":"Hugging Face PyTorch Image Models checkpoint Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Hugging Face PyTorch Image Models. User interaction is required to exploit this vulner…","indicators":{"cves":["CVE-2026-15679"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:21.050Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-523/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15686","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-15686 — Adminer multi_query Incorrect Check of Function Return Value Remote Code Execution Vulnerability. Th…","description":"Adminer multi_query Incorrect Check of Function Return Value Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Adminer. Authentication is required to exploit this vulnerability.\n\nThe specific flaw exists within the…","indicators":{"cves":["CVE-2026-15686"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:21.180Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/vrana/adminer/security/advisories/GHSA-3582-q6xq-5vf7#event-826206","label":"zdi-disclosures@trendmicro.com","domainType":"primary"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-478/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18264","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-18264 — NoMachine getstat Command Injection Remote Code Execution Vulnerability. This vulnerability allows r…","description":"NoMachine getstat Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of NoMachine. Authentication is required to exploit this vulnerability.\n\nThe specific flaw exists within the web service, which list…","indicators":{"cves":["CVE-2026-18264"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:22.890Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://kb.nomachine.com/TR06X11869","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-483/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18265","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-18265 — OSNEXUS QuantaStor Missing Authentication Remote Code Execution Vulnerability. This vulnerability al…","description":"OSNEXUS QuantaStor Missing Authentication Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of OSNEXUS QuantaStor. Authentication is not required to exploit this vulnerability.\n\nThe specific flaw exists within the conf…","indicators":{"cves":["CVE-2026-18265"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:23.017Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-480/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18274","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-18274 — Heimdall Data Database Proxy uploadJar Directory Traversal Remote Code Execution Vulnerability. This…","description":"Heimdall Data Database Proxy uploadJar Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Heimdall Data Database Proxy. Authentication is required to exploit this vulnerability.\n\nThe specific flaw…","indicators":{"cves":["CVE-2026-18274"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:24.003Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-479/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18279","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-18279 — Sony XAV-9500ES RTSP SETUP Buffer Overflow Remote Code Execution Vulnerability. This vulnerability a…","description":"Sony XAV-9500ES RTSP SETUP Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Sony XAV-9500ES devices. Authentication is not required to exploit this vulnerability.\n\nThe specific flaw exists…","indicators":{"cves":["CVE-2026-18279"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:24.280Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://www.sony.com/electronics/support/mobile-cd-players-digital-media-players-xav-series/xav-9500es/software/00274922","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-472/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18281","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-18281 — Sony XAV-9500ES l2_reassemble_sdu Heap-based Buffer Overflow Remote Code Execution Vulnerability. Th…","description":"Sony XAV-9500ES l2_reassemble_sdu Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Sony XAV-9500ES devices. An attacker must first obtain the ability to pair a malicious Bluetoo…","indicators":{"cves":["CVE-2026-18281"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:24.523Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://www.sony.com/electronics/support/mobile-cd-players-digital-media-players-xav-series/xav-9500es/software/00274922","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-474/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18282","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-18282 — Sony XAV-9500ES AVRCP_Br_Response_Parser Heap-based Buffer Overflow Remote Code Execution Vulnerabil…","description":"Sony XAV-9500ES AVRCP_Br_Response_Parser Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Sony XAV-9500ES devices. An attacker must first obtain the ability to pair a malicious…","indicators":{"cves":["CVE-2026-18282"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:24.643Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://www.sony.com/electronics/support/mobile-cd-players-digital-media-players-xav-series/xav-9500es/software/00274922","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-475/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18285","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-18285 — Aeon load_rehab_pile_dataset Deserialization of Untrusted Data Remote Code Execution Vulnerability.…","description":"Aeon load_rehab_pile_dataset Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Aeon. User interaction is required to exploit this vulnerability in that the target must visit a malic…","indicators":{"cves":["CVE-2026-18285"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:25.007Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/aeon-toolkit/aeon/commit/751918052c0cce266b4f7cd4b084408526efc015","label":"zdi-disclosures@trendmicro.com","domainType":"primary"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-468/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18286","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-18286 — Aeon load_human_activity_segmentation_datasets Code Injection Remote Code Execution Vulnerability. T…","description":"Aeon load_human_activity_segmentation_datasets Code Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of aeon. User interaction is required to exploit this vulnerability in that the target must visit a malici…","indicators":{"cves":["CVE-2026-18286"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:25.140Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/aeon-toolkit/aeon/commit/751918052c0cce266b4f7cd4b084408526efc015","label":"zdi-disclosures@trendmicro.com","domainType":"primary"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-469/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18287","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-18287 — Aeon load_time_series_segmentation_benchmark Code Injection Remote Code Execution Vulnerability. Thi…","description":"Aeon load_time_series_segmentation_benchmark Code Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of aeon. User interaction is required to exploit this vulnerability in that the target must visit a maliciou…","indicators":{"cves":["CVE-2026-18287"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:25.263Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/aeon-toolkit/aeon/commit/751918052c0cce266b4f7cd4b084408526efc015","label":"zdi-disclosures@trendmicro.com","domainType":"primary"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-470/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18288","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-18288 — OriginLab OriginPro OPJU File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This…","description":"OriginLab OriginPro OPJU File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of OriginLab OriginPro. User interaction is required to exploit this vulnerability in that the target must vis…","indicators":{"cves":["CVE-2026-18288"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:25.397Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://docs.originlab.com/cve/CVE-2026-18288","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-547/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18289","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-18289 — OriginLab OriginPro OPJ File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This v…","description":"OriginLab OriginPro OPJ File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of OriginLab OriginPro. User interaction is required to exploit this vulnerability in that the target must visi…","indicators":{"cves":["CVE-2026-18289"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:25.523Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://docs.originlab.com/cve/CVE-2026-18289","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-548/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18290","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-18290 — OriginLab OriginPro OGG File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This v…","description":"OriginLab OriginPro OGG File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of OriginLab OriginPro. User interaction is required to exploit this vulnerability in that the target must visi…","indicators":{"cves":["CVE-2026-18290"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:25.647Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://docs.originlab.com/cve/CVE-2026-18290","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-549/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18291","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-18291 — OriginLab OriginPro OGW File Parsing Memory Corruption Remote Code Execution Vulnerability. This vul…","description":"OriginLab OriginPro OGW File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of OriginLab OriginPro. User interaction is required to exploit this vulnerability in that the target must visit…","indicators":{"cves":["CVE-2026-18291"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:25.767Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://docs.originlab.com/cve/CVE-2026-18291","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-550/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18292","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-18292 — OriginLab OriginPro OGG File Parsing Memory Corruption Remote Code Execution Vulnerability. This vul…","description":"OriginLab OriginPro OGG File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of OriginLab OriginPro . User interaction is required to exploit this vulnerability in that the target must visit…","indicators":{"cves":["CVE-2026-18292"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:25.890Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://docs.originlab.com/cve/CVE-2026-18292","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-551/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18293","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-18293 — OriginLab Origin Viewer OPJ File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. Th…","description":"OriginLab Origin Viewer OPJ File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of OriginLab Origin Viewer. User interaction is required to exploit this vulnerability in that the target m…","indicators":{"cves":["CVE-2026-18293"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:26.010Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://docs.originlab.com/cve/CVE-2026-18293","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-552/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18294","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-18294 — OriginLab Origin Viewer OGW File Parsing Memory Corruption Remote Code Execution Vulnerability. This…","description":"OriginLab Origin Viewer OGW File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of OriginLab Origin Viewer. User interaction is required to exploit this vulnerability in that the target mus…","indicators":{"cves":["CVE-2026-18294"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:26.130Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://docs.originlab.com/cve/CVE-2026-18294","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-553/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18295","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-18295 — GStreamer MRF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerabili…","description":"GStreamer MRF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page o…","indicators":{"cves":["CVE-2026-18295"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:26.260Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://gstreamer.freedesktop.org/security/sa-2026-0050.html","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-463/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18296","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-18296 — GStreamer MRF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vuln…","description":"GStreamer MRF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. User interaction is required to exploit this vulnerability in that the target must visit a malicious…","indicators":{"cves":["CVE-2026-18296"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:26.390Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://gstreamer.freedesktop.org/security/sa-2026-0050.html","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-464/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18297","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-18297 — GStreamer OGG File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vul…","description":"GStreamer OGG File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. User interaction is required to exploit this vulnerability in that the target must visit a maliciou…","indicators":{"cves":["CVE-2026-18297"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:26.507Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://gstreamer.freedesktop.org/security/sa-2026-0053.html","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-465/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18298","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-18298 — GStreamer PNG File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vuln…","description":"GStreamer PNG File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. User interaction is required to exploit this vulnerability in that the target must visit a malicious…","indicators":{"cves":["CVE-2026-18298"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:26.643Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://gstreamer.freedesktop.org/security/sa-2026-0052.html","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-466/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18299","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-18299 — GStreamer rtpsbcdepay Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows…","description":"GStreamer rtpsbcdepay Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interaction with this library is required to exploit this vulnerability but attack vectors may vary depending on the…","indicators":{"cves":["CVE-2026-18299"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:26.767Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://gstreamer.freedesktop.org/security/sa-2026-0051.html","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-467/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18300","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-18300 — GIMP HDR File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allow…","description":"GIMP HDR File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a mali…","indicators":{"cves":["CVE-2026-18300"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:26.890Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://gitlab.gnome.org/GNOME/gegl/-/commit/d3d262008299341c5b032b354021632ceadb2799","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-453/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18301","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-18301 — GIMP PSD File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allow…","description":"GIMP PSD File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a mali…","indicators":{"cves":["CVE-2026-18301"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:27.017Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://gitlab.gnome.org/GNOME/gimp/-/merge_requests/2772","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-454/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18302","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-18302 — GIMP TIF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerabi…","description":"GIMP TIF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or o…","indicators":{"cves":["CVE-2026-18302","CVE-2026-18307"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:27.143Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://gitlab.gnome.org/GNOME/gimp/-/commit/77e1a11636fae53c922fe92273b8f4e33c7a9176","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-455/","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://gitlab.gnome.org/GNOME/gimp/-/commit/bace3e7fd54104fe6b70c1703e9b982a4770811d","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-460/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18303","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-18303 — GIMP TIF File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerab…","description":"GIMP TIF File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or…","indicators":{"cves":["CVE-2026-18303"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:27.277Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://gitlab.gnome.org/GNOME/gimp/-/commit/5633b362026c6e5b2beb559a10cd76fa32a47592","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-456/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18304","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-18304 — GIMP TIF File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allow…","description":"GIMP TIF File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a mali…","indicators":{"cves":["CVE-2026-18304","CVE-2026-18305","CVE-2026-18308"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:27.403Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://gitlab.gnome.org/GNOME/gimp/-/commit/ad32d22c347674fa1bb5b60935c376b673d946e7","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-457/","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://gitlab.gnome.org/GNOME/gimp/-/commit/0a45a2b51b877829ef523131b50c0eb2a933b8a1","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-458/","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://gitlab.gnome.org/GNOME/gimp/-/commit/d84f8e58f56681a0b4c66129c568cb796725ab9d","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-461/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18306","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-18306 — GIMP SGI File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allow…","description":"GIMP SGI File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a mali…","indicators":{"cves":["CVE-2026-18306"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:27.633Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://gitlab.gnome.org/GNOME/gimp/-/commit/76531da9732f38566e5fd8f8f80c837158511ae5","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-459/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18309","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-18309 — GIMP APNG File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allo…","description":"GIMP APNG File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a mal…","indicators":{"cves":["CVE-2026-18309"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:27.987Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://gitlab.gnome.org/GNOME/gimp/-/commit/c760c8309d18bdf5259f1e04ced0779462c7c636","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-462/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-55642","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-55642 — dbx is a cross-platform database client for databases. Prior to 0.5.51, dbx-web auth_middleware in c…","description":"dbx is a cross-platform database client for databases. Prior to 0.5.51, dbx-web auth_middleware in crates/dbx-web/src/auth.rs passes every protected request to the handler chain when password_hash is None. A fresh deployment reaches that state when DBX_PASSWORD is unset and no stored password exists…","indicators":{"cves":["CVE-2026-55642"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:18:27.873Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/t8y2/dbx/commit/fb919efe0a62869631f49242d1f4fe8d41718c2a","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/t8y2/dbx/issues/2887","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/t8y2/dbx/releases/tag/v0.5.51","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/t8y2/dbx/security/advisories/GHSA-rqp4-8fxh-22vh","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/t8y2/dbx/security/advisories/GHSA-rqp4-8fxh-22vh","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-71428","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-71428 — The unstructured library provides open-source components for ingesting and pre-processing images and…","description":"The unstructured library provides open-source components for ingesting and pre-processing images and text documents, such as PDFs, HTML, Word docs, and many more. From 0.4.7 until 0.24.0, the url argument of partition, partition_html, and partition_md is fetched without host validation in unstructur…","indicators":{"cves":["CVE-2026-71428"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:19:40.773Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/Unstructured-IO/unstructured/commit/445c95735c4045057f51f399bc04c657751923bd","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Unstructured-IO/unstructured/pull/4388","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Unstructured-IO/unstructured/releases/tag/0.24.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Unstructured-IO/unstructured/security/advisories/GHSA-4mvj-m6j5-pmf7","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-77022","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-77022 — A security flaw has been discovered in Comfast CF-N1-S 2.6.0.1. Affected by this issue is the functi…","description":"A security flaw has been discovered in Comfast CF-N1-S 2.6.0.1. Affected by this issue is the function sub_44B438 of the file /cgi-bin/mbox-config?method=SET&section=ptest_ssid of the component SSID Configuration. The manipulation of the argument ssid results in stack-based buffer overflow. The atta…","indicators":{"cves":["CVE-2026-77022"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:19:49.413Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/AdminSafe/CVE/issues/5","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-77022","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/880599","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393637","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393637/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-2334","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-2334 — An issue was discovered in vsDesk v14.0101. An authenticated attacker with administrative privileges…","description":"An issue was discovered in vsDesk v14.0101. An authenticated attacker with administrative privileges can bypass client-side file validation in the \"Import via CSV\" component due to a lack of server-side validation. This allows the upload of an arbitrary file, which can lead to Remote Code Execution…","indicators":{"cves":["CVE-2026-2334"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T18:16:26.047Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/klsecservices/Advisories/blob/master/KLSA-00415-Missing-Server-Side-File-Extension-Validation-in-vsDesk.md","label":"vulnerability@kaspersky.com","domainType":"primary"},{"url":"https://vsdesk.ru/news/vyshla-novaya-versiya-140422","label":"vulnerability@kaspersky.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-53424","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-53424 — Authentication Bypass by Capture-replay vulnerability in dropbox samly allows an attacker to authent…","description":"Authentication Bypass by Capture-replay vulnerability in dropbox samly allows an attacker to authenticate as the subject of a captured SAML assertion by resubmitting it.\n\nSamly.Helper.decode_idp_auth_resp/3 in lib/samly/helper.ex calls esaml_sp:validate_assertion/2, whose default duplicate detector…","indicators":{"cves":["CVE-2026-53424"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T18:16:27.680Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://cna.erlef.org/cves/CVE-2026-53424.html","label":"6b3ad84c-e1a6-4bf7-a703-f496b71e49db","domainType":"other"},{"url":"https://osv.dev/vulnerability/EEF-CVE-2026-53424","label":"6b3ad84c-e1a6-4bf7-a703-f496b71e49db","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73256","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-73256 — Mongoose is an embedded web server and network library. Prior to 7.22, a remote unauthenticated atta…","description":"Mongoose is an embedded web server and network library. Prior to 7.22, a remote unauthenticated attacker can exploit an HTTP/1.0 reverse-proxy deployment by sending a request with Transfer-Encoding: chunked and conflicting framing. The http_cb() function in src/http.c tests hm.proto.len with an impo…","indicators":{"cves":["CVE-2026-73256"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T18:16:46.523Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://github.com/cesanta/mongoose/commit/a9df523f76f43a38bd53b4232b9cfd4c16869e71","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cesanta/mongoose/pull/3611","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cesanta/mongoose/releases/tag/7.22","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cesanta/mongoose/security/advisories/GHSA-mgp5-rjrv-h5j3","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-73257","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-73257 — Mongoose is an embedded web server and network library. Priro to version 7.22, a remote unauthentica…","description":"Mongoose is an embedded web server and network library. Priro to version 7.22, a remote unauthenticated attacker can send an HTTP request containing both Content-Length and Transfer-Encoding: chunked. The cl_count and te_count checks in the mg_http_parse() and http_cb() paths in src/http.c accept bo…","indicators":{"cves":["CVE-2026-73257"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T18:16:46.973Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://github.com/cesanta/mongoose/commit/a9df523f76f43a38bd53b4232b9cfd4c16869e71","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cesanta/mongoose/pull/3611","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cesanta/mongoose/releases/tag/7.22","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cesanta/mongoose/security/advisories/GHSA-5wfq-r6mr-wqp6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cesanta/mongoose/security/advisories/GHSA-5wfq-r6mr-wqp6","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-66785","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-66785 — A flaw was found in Submariner. This vulnerability allows a malicious cluster (spoke) to redirect ne…","description":"A flaw was found in Submariner. This vulnerability allows a malicious cluster (spoke) to redirect network traffic from other connected clusters (peer clusters) by publishing a specially crafted network endpoint. The system fails to properly validate the network subnets provided by the malicious clus…","indicators":{"cves":["CVE-2026-66785"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T19:16:58.463Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-66785","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2507530","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66788","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-66788 — A flaw was found in Lighthouse. A remote attacker, by compromising a spoke cluster, can exploit a vu…","description":"A flaw was found in Lighthouse. A remote attacker, by compromising a spoke cluster, can exploit a vulnerability where the destination namespace for resource injection is derived from an attacker-controlled label or annotation on the broker object. This allows the attacker to inject unauthorized Endp…","indicators":{"cves":["CVE-2026-66788"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T19:16:58.823Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-66788","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2507533","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77148","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-77148 — A vulnerability was found in Comfast CF-N1-S 2.6.0.1. This impacts the function sub_44B50C of the fi…","description":"A vulnerability was found in Comfast CF-N1-S 2.6.0.1. This impacts the function sub_44B50C of the file /cgi-bin/mbox-config?method=SET&section=ptest_channel of the component Web Management. The manipulation results in stack-based buffer overflow. The attack can be launched remotely. The exploit has…","indicators":{"cves":["CVE-2026-77148"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T19:17:04.710Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://github.com/AdminSafe/CVE/issues/7","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-77148","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/880910","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393733","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393733/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-67567","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-67567 — A flaw was found in the multicloud-operators-subscription component. This vulnerability allows a ten…","description":"A flaw was found in the multicloud-operators-subscription component. This vulnerability allows a tenant, who has the ability to create HelmRelease custom resources (CRs), to bypass existing security controls. The system's HelmRelease controller processes Helm chart templates using its own elevated S…","indicators":{"cves":["CVE-2026-67567"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T21:17:07.403Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-67567","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2514224","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-69242","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-69242 — libvips is a fast image processing library with low memory needs. Prior to version 8.18.3, a crafted…","description":"libvips is a fast image processing library with low memory needs. Prior to version 8.18.3, a crafted many-band TIFF processed through VipsForeignLoadTiff can evade scanline validation in libvips/iofuncs/image.c and cause an integer overflow in vips_image_sanity. The resulting buffer-region calculati…","indicators":{"cves":["CVE-2026-69242"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T21:17:07.697Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://github.com/libvips/libvips/commit/c72f50927413cd2451837d9813f954bc5d88f548","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libvips/libvips/pull/5012","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libvips/libvips/releases/tag/v8.18.3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libvips/libvips/security/advisories/GHSA-9rwc-f68v-4482","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-71485","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-71485 — Centrifugo is an open-source scalable real-time messaging server. Prior to 6.9.0, Centrifugo copies…","description":"Centrifugo is an open-source scalable real-time messaging server. Prior to 6.9.0, Centrifugo copies the client-controlled protocol.ConnectRequest.headers map through OnClientConnecting in internal/client/handler.go, ConnectEvent.Headers, and SetEmulatedHeadersToContext. The requestHeaders path in in…","indicators":{"cves":["CVE-2026-71485"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T21:17:08.707Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://github.com/centrifugal/centrifugo/commit/84d38cea1dd2efa24375a148817a974c8727f4b0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/centrifugal/centrifugo/pull/1182","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/centrifugal/centrifugo/releases/tag/v6.9.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/centrifugal/centrifugo/security/advisories/GHSA-9468-v6mj-fppw","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-62834","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-62834 — Improper verification of cryptographic signature in Azure Data Factory allows an unauthorized attack…","description":"Improper verification of cryptographic signature in Azure Data Factory allows an unauthorized attacker to elevate privileges over a network.","indicators":{"cves":["CVE-2026-62834"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:43.070Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-62834","label":"secure@microsoft.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-63509","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-63509 — Relative path traversal in Microsoft Fabric allows an authorized attacker to elevate privileges over…","description":"Relative path traversal in Microsoft Fabric allows an authorized attacker to elevate privileges over a network.","indicators":{"cves":["CVE-2026-63509"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:46.963Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-63509","label":"secure@microsoft.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-65770","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-65770 — Improper neutralization of argument delimiters in a command ('argument injection') in Azure Managed…","description":"Improper neutralization of argument delimiters in a command ('argument injection') in Azure Managed Instance for Apache Cassandra allows an unauthorized attacker to execute code over a network.","indicators":{"cves":["CVE-2026-65770"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:52.010Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-65770","label":"secure@microsoft.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-65801","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-65801 — Server-side request forgery (ssrf) in Microsoft Exchange Online allows an unauthorized attacker to e…","description":"Server-side request forgery (ssrf) in Microsoft Exchange Online allows an unauthorized attacker to elevate privileges over a network.","indicators":{"cves":["CVE-2026-65801"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:54.897Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-65801","label":"secure@microsoft.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-65816","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-65816 — Use of incorrectly-resolved name or reference in Azure Arc allows an unauthorized attacker to elevat…","description":"Use of incorrectly-resolved name or reference in Azure Arc allows an unauthorized attacker to elevate privileges over a network.","indicators":{"cves":["CVE-2026-65816"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:55.597Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-65816","label":"secure@microsoft.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-66309","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-66309 — Improper access control in Azure SQL Database allows an authorized attacker to elevate privileges ov…","description":"Improper access control in Azure SQL Database allows an authorized attacker to elevate privileges over a network.","indicators":{"cves":["CVE-2026-66309"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:55.790Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-66309","label":"secure@microsoft.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-68782","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-68782 — Improper neutralization of special elements used in an sql command ('sql injection') in Azure SQL Da…","description":"Improper neutralization of special elements used in an sql command ('sql injection') in Azure SQL Database allows an authorized attacker to elevate privileges over a network.","indicators":{"cves":["CVE-2026-68782","CVE-2026-68789"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:57.020Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-68782","label":"secure@microsoft.com","domainType":"primary"},{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-68789","label":"secure@microsoft.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-69400","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-69400 — Improper limitation of a pathname to a restricted directory ('path traversal') in Azure Logic Apps a…","description":"Improper limitation of a pathname to a restricted directory ('path traversal') in Azure Logic Apps allows an unauthorized attacker to elevate privileges over a network.","indicators":{"cves":["CVE-2026-69400"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:59.783Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69400","label":"secure@microsoft.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-69555","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-69555 — Incorrect authorization in Azure Arc allows an unauthorized attacker to elevate privileges over a ne…","description":"Incorrect authorization in Azure Arc allows an unauthorized attacker to elevate privileges over a network.","indicators":{"cves":["CVE-2026-69555"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:18:00.477Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69555","label":"secure@microsoft.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-69836","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-69836 — Deserialization of untrusted data in Microsoft Entra ID allows an unauthorized attacker to execute c…","description":"Deserialization of untrusted data in Microsoft Entra ID allows an unauthorized attacker to execute code over a network.","indicators":{"cves":["CVE-2026-69836"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:18:00.740Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69836","label":"secure@microsoft.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-69851","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-69851 — Server-side request forgery (ssrf) in Azure Active Directory allows an authorized attacker to elevat…","description":"Server-side request forgery (ssrf) in Azure Active Directory allows an authorized attacker to elevate privileges over a network.","indicators":{"cves":["CVE-2026-69851"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:18:00.877Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69851","label":"secure@microsoft.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-72843","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-72843 — The customer update route in EverShop is declared with \"access\": \"public\" in packages/evershop/src/m…","description":"The customer update route in EverShop is declared with \"access\": \"public\" in packages/evershop/src/modules/customer/api/updateCustomer/route.json, which causes the admin authentication middleware to call next() without checking the caller, and no customer-session middleware guards the route; the onl…","indicators":{"cves":["CVE-2026-72843"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:18:05.253Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://github.com/evershopcommerce/evershop","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/evershopcommerce/evershop/blob/v2.1.2/packages/evershop/src/modules/customer/api/updateCustomer/route.json","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/evershopcommerce/evershop/blob/v2.1.2/packages/evershop/src/modules/customer/api/updateCustomer/updateCustomer.js","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/evershopcommerce/evershop/issues/952","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/evershopcommerce/evershop/releases/tag/v2.2.1","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/evershop-missing-authorization-on-patch-api-customers-id-allows-unauthenticated-account-takeover","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77645","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-77645 — A critical remote code execution (RCE) vulnerability has been reported in PTC Windchill and PTC Flex…","description":"A critical remote code execution (RCE) vulnerability has been reported in PTC Windchill and PTC FlexPLM. The vulnerability may be exploited through the deserialization of untrusted data.","indicators":{"cves":["CVE-2026-77645"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:18:06.510Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://www.ptc.com/en/support/article/CS474826","label":"0b655efc-079c-4cb9-9e8d-164871239f4e","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77647","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-77647 — SPIP before 4.4.20 allows unauthenticated remote attackers to execute arbitrary code, as exploited i…","description":"SPIP before 4.4.20 allows unauthenticated remote attackers to execute arbitrary code, as exploited in the wild in August 2026. This is related to incorrect identification of <?php blocks, and var_export's mishandling of certain cases such as presence of a '<' character.","indicators":{"cves":["CVE-2026-77647"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T23:16:28.647Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://blog.spip.net/Mise-a-jour-critique-de-securite-sortie-de-SPIP-4-4-20.html","label":"cve@mitre.org","domainType":"other"},{"url":"https://lists.debian.org/debian-security-announce/2026/msg00359.html","label":"cve@mitre.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77649","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-77649 — The internment crate 0.8.7 for Rust can trigger execution of malicious code when compiling a project…","description":"The internment crate 0.8.7 for Rust can trigger execution of malicious code when compiling a project that uses the crate, because it has a rogue dependency that registers with a command-and-control server to offer arbitrary code execution.","indicators":{"cves":["CVE-2026-77649"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-21T01:17:01.837Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://blog.rust-lang.org/2026/08/20/supply-chain-attack-on-arrayref","label":"cve@mitre.org","domainType":"other"},{"url":"https://github.com/rustsec/advisory-db/issues/3161","label":"cve@mitre.org","domainType":"primary"},{"url":"https://rustsec.org/advisories/RUSTSEC-2026-0266.html","label":"cve@mitre.org","domainType":"other"},{"url":"https://safedep.io/arrayref-proc-macro1-rust-build-time-malware/","label":"cve@mitre.org","domainType":"other"},{"url":"https://www.stepsecurity.io/blog/arrayref-rust-crate-supply-chain-attack","label":"cve@mitre.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77650","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-77650 — The append-only-vec crate 0.1.9 for Rust can trigger execution of malicious code when compiling a pr…","description":"The append-only-vec crate 0.1.9 for Rust can trigger execution of malicious code when compiling a project that uses the crate, because it has a rogue dependency that registers with a command-and-control server to offer arbitrary code execution.","indicators":{"cves":["CVE-2026-77650"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-21T01:17:01.993Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://blog.rust-lang.org/2026/08/20/supply-chain-attack-on-arrayref","label":"cve@mitre.org","domainType":"other"},{"url":"https://github.com/rustsec/advisory-db/issues/3161","label":"cve@mitre.org","domainType":"primary"},{"url":"https://rustsec.org/advisories/RUSTSEC-2026-0262.html","label":"cve@mitre.org","domainType":"other"},{"url":"https://safedep.io/arrayref-proc-macro1-rust-build-time-malware/","label":"cve@mitre.org","domainType":"other"},{"url":"https://www.stepsecurity.io/blog/arrayref-rust-crate-supply-chain-attack","label":"cve@mitre.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77651","source":"nvd","category":"vulnerability","severity":"critical","title":"CVE-2026-77651 — The arrayref crate 0.3.10 for Rust can trigger execution of malicious code when compiling a project…","description":"The arrayref crate 0.3.10 for Rust can trigger execution of malicious code when compiling a project that uses the crate, because it has a rogue dependency that registers with a command-and-control server to offer arbitrary code execution.","indicators":{"cves":["CVE-2026-77651"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-21T01:17:02.140Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://blog.rust-lang.org/2026/08/20/supply-chain-attack-on-arrayref","label":"cve@mitre.org","domainType":"other"},{"url":"https://github.com/rustsec/advisory-db/issues/3161","label":"cve@mitre.org","domainType":"primary"},{"url":"https://rustsec.org/advisories/RUSTSEC-2026-0260.html","label":"cve@mitre.org","domainType":"other"},{"url":"https://safedep.io/arrayref-proc-macro1-rust-build-time-malware/","label":"cve@mitre.org","domainType":"other"},{"url":"https://www.stepsecurity.io/blog/arrayref-rust-crate-supply-chain-attack","label":"cve@mitre.org","domainType":"other"}],"feedLabel":null},{"id":"vendor-cve-2026-69836-microsoft-entra-id-remote-code-execution-vulnerability","source":"vendor-blogs","category":"advisory","severity":"critical","title":"CVE-2026-69836 Microsoft Entra ID Remote Code Execution Vulnerability","description":"Deserialization of untrusted data in Microsoft Entra ID allows an unauthorized attacker to execute code over a network.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69836","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-61363-remote-desktop-client-remote-code-execution-vulnerability","source":"vendor-blogs","category":"advisory","severity":"critical","title":"CVE-2026-61363 Remote Desktop Client Remote Code Execution Vulnerability","description":"Updated an acknowledgement. This is an informational change only.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-61363","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-66802-windows-device-health-attestation-dha-remote-code-execution-vulne","source":"vendor-blogs","category":"advisory","severity":"critical","title":"CVE-2026-66802 Windows Device Health Attestation (DHA) Remote Code Execution Vulnerability","description":"Corrected the Executive Summary to clarify that the vulnerability affects Windows Device Health Attestation (DHA), not Microsoft Azure Attestation. This is an informational change only.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-66802","label":"Microsoft MSRC","domainType":"primary"},{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-71331","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-65770-azure-managed-instance-for-apache-cassandra-remote-code-execution","source":"vendor-blogs","category":"advisory","severity":"critical","title":"CVE-2026-65770 Azure Managed Instance for Apache Cassandra Remote Code Execution Vulnerability","description":"Improper neutralization of argument delimiters in a command ('argument injection') in Azure Managed Instance for Apache Cassandra allows an unauthorized attacker to execute code over a network.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-65770","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-69419-azure-data-manager-for-energy-remote-code-execution-vulnerability","source":"vendor-blogs","category":"advisory","severity":"critical","title":"CVE-2026-69419 Azure Data Manager for Energy Remote Code Execution Vulnerability","description":"Integer overflow or wraparound in Azure Data Manager for Energy allows an authorized attacker to execute code over a network.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69419","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-33824-windows-internet-key-exchange-ike-service-extensions-remote-code-","source":"vendor-blogs","category":"advisory","severity":"critical","title":"CVE-2026-33824 Windows Internet Key Exchange (IKE) Service Extensions Remote Code Execution Vulnerability","description":"Added clarifying information to the mitigation. This is an informational change only.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-33824","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-54118-microsoft-sql-server-remote-code-execution-vulnerability","source":"vendor-blogs","category":"advisory","severity":"critical","title":"CVE-2026-54118 Microsoft SQL Server Remote Code Execution Vulnerability","description":"The CVSS vector string was update to reflect that an attacker does not require any privileges to successfully exploit this vulnerability (PR:N).  This is an informational change only.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-54118","label":"Microsoft MSRC","domainType":"primary"},{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-54117","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-65811-power-bi-remote-code-execution-vulnerability","source":"vendor-blogs","category":"advisory","severity":"critical","title":"CVE-2026-65811 Power BI Remote Code Execution Vulnerability","description":"Corrected the Power BI Report Server version in the Security Updates table to use the public release version instead of the internal build number. This is an informational change only.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-65811","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-65791-windows-iscsi-target-service-remote-code-execution-vulnerability","source":"vendor-blogs","category":"advisory","severity":"critical","title":"CVE-2026-65791 Windows iSCSI Target Service Remote Code Execution Vulnerability","description":"Acknowledgement Updated","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-65791","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-56642-microsoft-fabric-data-warehouse-remote-code-execution-vulnerabili","source":"vendor-blogs","category":"advisory","severity":"critical","title":"CVE-2026-56642 Microsoft Fabric Data Warehouse Remote Code Execution Vulnerability","description":"Updated the Security Updates table by removing an affected software entry. No user action is required. This is an informational change only.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-56642","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-40400-windows-powershell-remote-code-execution-vulnerability","source":"vendor-blogs","category":"advisory","severity":"critical","title":"CVE-2026-40400 Windows PowerShell Remote Code Execution Vulnerability","description":"Acknowledgement Updated","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-40400","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-56188-windows-server-network-driver-remote-code-execution-vulnerability","source":"vendor-blogs","category":"advisory","severity":"critical","title":"CVE-2026-56188 Windows Server Network driver Remote Code Execution Vulnerability","description":"Updated an acknowledgement. This is an informational change only.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-56188","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-66807-microsoft-office-graphics-component-remote-code-execution-vulnera","source":"vendor-blogs","category":"advisory","severity":"critical","title":"CVE-2026-66807 Microsoft Office Graphics Component Remote Code Execution Vulnerability","description":"Acknowledgement Updated","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-66807","label":"Microsoft MSRC","domainType":"primary"},{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-63519","label":"Microsoft MSRC","domainType":"primary"},{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-63513","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-70337-microsoft-powershell-remote-code-execution-vulnerability","source":"vendor-blogs","category":"advisory","severity":"critical","title":"CVE-2026-70337 Microsoft PowerShell Remote Code Execution Vulnerability","description":"Acknowledgement Updated","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-70337","label":"Microsoft MSRC","domainType":"primary"},{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-50523","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-63518-microsoft-office-word-remote-code-execution-vulnerability","source":"vendor-blogs","category":"advisory","severity":"critical","title":"CVE-2026-63518 Microsoft Office Word Remote Code Execution Vulnerability","description":"Acknowledgement Updated","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-63518","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-65768-microsoft-teams-remote-code-execution-vulnerability","source":"vendor-blogs","category":"advisory","severity":"critical","title":"CVE-2026-65768 Microsoft Teams Remote Code Execution Vulnerability","description":"Corrected build number for the security update.  This in an informational change only.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-65768","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-59124-microsoft-high-performance-computing-hpc-pack-remote-code-executi","source":"vendor-blogs","category":"advisory","severity":"critical","title":"CVE-2026-59124 Microsoft High Performance Computing (HPC) Pack Remote Code Execution Vulnerability","description":"Corrected the listed software in the Security Updates table.  Microsoft recommends installing the security update as soon as possible.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-59124","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-72970-microsoft-edge-chromium-based-remote-code-execution-vulnerability","source":"vendor-blogs","category":"advisory","severity":"critical","title":"CVE-2026-72970 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability","description":"Heap-based buffer overflow in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-72970","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-50313-windows-ntfs-remote-code-execution-vulnerability","source":"vendor-blogs","category":"advisory","severity":"critical","title":"CVE-2026-50313 Windows NTFS Remote Code Execution Vulnerability","description":"Acknowledgement Updated","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-50313","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-fbi-cisa-hhs-update-medusa-ransomware-advisory-detail-raas-affiliate-model-explo","source":"vendor-blogs","category":"advisory","severity":"critical","title":"FBI, CISA, HHS update Medusa ransomware advisory, detail RaaS affiliate model, exploited flaws and attack tools","description":"The Federal Bureau of Investigation (FBI), Cybersecurity and Infrastructure Security Agency (CISA), and U.S. Department of Health and...\nThe post FBI, CISA, HHS update Medusa ransomware advisory, detail RaaS affiliate model, exploited flaws and attack tools appeared first on Industrial Cyber.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T10:10:24.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://industrialcyber.co/cisa/fbi-cisa-hhs-update-medusa-ransomware-advisory-detail-raas-affiliate-model-exploited-flaws-and-attack-tools/","label":"Industrial Cyber","domainType":"other"}],"feedLabel":null},{"id":"vendor-black-kite-report-finds-73-of-ransomware-incidents-hit-mid-market-companies-amid","source":"vendor-blogs","category":"advisory","severity":"critical","title":"Black Kite report finds 73% of ransomware incidents hit mid-market companies amid growing third-party and AI risks","description":"Black Kite, vendor of third-party cyber risk management, released on Tuesday its newest report, Mid-Market Is the Routine...\nThe post Black Kite report finds 73% of ransomware incidents hit mid-market companies amid growing third-party and AI risks appeared first on Industrial Cyber.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T09:58:03.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://industrialcyber.co/news/black-kite-report-finds-73-of-ransomware-incidents-hit-mid-market-companies-amid-growing-third-party-and-ai-risks/","label":"Industrial Cyber","domainType":"other"}],"feedLabel":null},{"id":"abuseip-213.209.159.241","source":"abuse-ipdb","category":"ip-reputation","severity":"critical","title":"Malicious IP: 213.209.159.241","description":"Country: DE | ISP: unknown | Abuse score: 100%","indicators":{"cves":[],"ips":["213.209.159.241"],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":100,"publishedAt":"2026-08-21T02:17:02.000Z","fetchedAt":"2026-08-21T03:00:00.167Z","references":[{"url":"https://www.abuseipdb.com/check/213.209.159.241","label":"AbuseIPDB","domainType":"primary"}],"feedLabel":null},{"id":"abuseip-64.62.197.138","source":"abuse-ipdb","category":"ip-reputation","severity":"critical","title":"Malicious IP: 64.62.197.138","description":"Country: US | ISP: unknown | Abuse score: 100%","indicators":{"cves":[],"ips":["64.62.197.138"],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":100,"publishedAt":"2026-08-21T02:17:02.000Z","fetchedAt":"2026-08-21T03:00:00.167Z","references":[{"url":"https://www.abuseipdb.com/check/64.62.197.138","label":"AbuseIPDB","domainType":"primary"}],"feedLabel":null},{"id":"abuseip-119.92.70.82","source":"abuse-ipdb","category":"ip-reputation","severity":"critical","title":"Malicious IP: 119.92.70.82","description":"Country: PH | ISP: unknown | Abuse score: 100%","indicators":{"cves":[],"ips":["119.92.70.82"],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":100,"publishedAt":"2026-08-21T02:17:02.000Z","fetchedAt":"2026-08-21T03:00:00.167Z","references":[{"url":"https://www.abuseipdb.com/check/119.92.70.82","label":"AbuseIPDB","domainType":"primary"}],"feedLabel":null},{"id":"abuseip-195.26.18.111","source":"abuse-ipdb","category":"ip-reputation","severity":"critical","title":"Malicious IP: 195.26.18.111","description":"Country: UA | ISP: unknown | Abuse score: 100%","indicators":{"cves":[],"ips":["195.26.18.111"],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":100,"publishedAt":"2026-08-21T02:17:02.000Z","fetchedAt":"2026-08-21T03:00:00.167Z","references":[{"url":"https://www.abuseipdb.com/check/195.26.18.111","label":"AbuseIPDB","domainType":"primary"}],"feedLabel":null},{"id":"abuseip-181.115.171.216","source":"abuse-ipdb","category":"ip-reputation","severity":"critical","title":"Malicious IP: 181.115.171.216","description":"Country: BO | ISP: unknown | Abuse score: 100%","indicators":{"cves":[],"ips":["181.115.171.216"],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":100,"publishedAt":"2026-08-21T02:17:01.000Z","fetchedAt":"2026-08-21T03:00:00.167Z","references":[{"url":"https://www.abuseipdb.com/check/181.115.171.216","label":"AbuseIPDB","domainType":"primary"}],"feedLabel":null},{"id":"abuseip-118.196.68.35","source":"abuse-ipdb","category":"ip-reputation","severity":"critical","title":"Malicious IP: 118.196.68.35","description":"Country: CN | ISP: unknown | Abuse score: 100%","indicators":{"cves":[],"ips":["118.196.68.35"],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":100,"publishedAt":"2026-08-21T02:17:01.000Z","fetchedAt":"2026-08-21T03:00:00.167Z","references":[{"url":"https://www.abuseipdb.com/check/118.196.68.35","label":"AbuseIPDB","domainType":"primary"}],"feedLabel":null},{"id":"abuseip-79.124.59.178","source":"abuse-ipdb","category":"ip-reputation","severity":"critical","title":"Malicious IP: 79.124.59.178","description":"Country: BG | ISP: unknown | Abuse score: 100%","indicators":{"cves":[],"ips":["79.124.59.178"],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":100,"publishedAt":"2026-08-21T02:17:01.000Z","fetchedAt":"2026-08-21T03:00:00.167Z","references":[{"url":"https://www.abuseipdb.com/check/79.124.59.178","label":"AbuseIPDB","domainType":"primary"}],"feedLabel":null},{"id":"abuseip-79.124.56.142","source":"abuse-ipdb","category":"ip-reputation","severity":"critical","title":"Malicious IP: 79.124.56.142","description":"Country: BG | ISP: unknown | Abuse score: 100%","indicators":{"cves":[],"ips":["79.124.56.142"],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":100,"publishedAt":"2026-08-21T02:17:01.000Z","fetchedAt":"2026-08-21T03:00:00.167Z","references":[{"url":"https://www.abuseipdb.com/check/79.124.56.142","label":"AbuseIPDB","domainType":"primary"}],"feedLabel":null},{"id":"abuseip-68.225.61.18","source":"abuse-ipdb","category":"ip-reputation","severity":"critical","title":"Malicious IP: 68.225.61.18","description":"Country: US | ISP: unknown | Abuse score: 100%","indicators":{"cves":[],"ips":["68.225.61.18"],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":100,"publishedAt":"2026-08-21T02:17:01.000Z","fetchedAt":"2026-08-21T03:00:00.167Z","references":[{"url":"https://www.abuseipdb.com/check/68.225.61.18","label":"AbuseIPDB","domainType":"primary"}],"feedLabel":null},{"id":"abuseip-193.47.62.69","source":"abuse-ipdb","category":"ip-reputation","severity":"critical","title":"Malicious IP: 193.47.62.69","description":"Country: NL | ISP: unknown | Abuse score: 100%","indicators":{"cves":[],"ips":["193.47.62.69"],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":100,"publishedAt":"2026-08-21T02:17:01.000Z","fetchedAt":"2026-08-21T03:00:00.167Z","references":[{"url":"https://www.abuseipdb.com/check/193.47.62.69","label":"AbuseIPDB","domainType":"primary"}],"feedLabel":null},{"id":"abuseip-163.7.9.55","source":"abuse-ipdb","category":"ip-reputation","severity":"critical","title":"Malicious IP: 163.7.9.55","description":"Country: ID | ISP: unknown | Abuse score: 100%","indicators":{"cves":[],"ips":["163.7.9.55"],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":100,"publishedAt":"2026-08-21T02:17:01.000Z","fetchedAt":"2026-08-21T03:00:00.167Z","references":[{"url":"https://www.abuseipdb.com/check/163.7.9.55","label":"AbuseIPDB","domainType":"primary"}],"feedLabel":null},{"id":"abuseip-68.221.130.146","source":"abuse-ipdb","category":"ip-reputation","severity":"critical","title":"Malicious IP: 68.221.130.146","description":"Country: ES | ISP: unknown | Abuse score: 100%","indicators":{"cves":[],"ips":["68.221.130.146"],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":100,"publishedAt":"2026-08-21T02:17:01.000Z","fetchedAt":"2026-08-21T03:00:00.167Z","references":[{"url":"https://www.abuseipdb.com/check/68.221.130.146","label":"AbuseIPDB","domainType":"primary"}],"feedLabel":null},{"id":"abuseip-61.184.128.210","source":"abuse-ipdb","category":"ip-reputation","severity":"critical","title":"Malicious IP: 61.184.128.210","description":"Country: CN | ISP: unknown | Abuse score: 100%","indicators":{"cves":[],"ips":["61.184.128.210"],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":100,"publishedAt":"2026-08-21T02:17:01.000Z","fetchedAt":"2026-08-21T03:00:00.167Z","references":[{"url":"https://www.abuseipdb.com/check/61.184.128.210","label":"AbuseIPDB","domainType":"primary"}],"feedLabel":null},{"id":"abuseip-70.183.230.195","source":"abuse-ipdb","category":"ip-reputation","severity":"critical","title":"Malicious IP: 70.183.230.195","description":"Country: US | ISP: unknown | Abuse score: 100%","indicators":{"cves":[],"ips":["70.183.230.195"],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":100,"publishedAt":"2026-08-21T02:17:00.000Z","fetchedAt":"2026-08-21T03:00:00.167Z","references":[{"url":"https://www.abuseipdb.com/check/70.183.230.195","label":"AbuseIPDB","domainType":"primary"}],"feedLabel":null},{"id":"abuseip-47.254.134.254","source":"abuse-ipdb","category":"ip-reputation","severity":"critical","title":"Malicious IP: 47.254.134.254","description":"Country: DE | ISP: unknown | Abuse score: 100%","indicators":{"cves":[],"ips":["47.254.134.254"],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":100,"publishedAt":"2026-08-21T02:17:00.000Z","fetchedAt":"2026-08-21T03:00:00.167Z","references":[{"url":"https://www.abuseipdb.com/check/47.254.134.254","label":"AbuseIPDB","domainType":"primary"}],"feedLabel":null},{"id":"abuseip-4.206.92.183","source":"abuse-ipdb","category":"ip-reputation","severity":"critical","title":"Malicious IP: 4.206.92.183","description":"Country: CA | ISP: unknown | Abuse score: 100%","indicators":{"cves":[],"ips":["4.206.92.183"],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":100,"publishedAt":"2026-08-21T02:17:00.000Z","fetchedAt":"2026-08-21T03:00:00.167Z","references":[{"url":"https://www.abuseipdb.com/check/4.206.92.183","label":"AbuseIPDB","domainType":"primary"}],"feedLabel":null},{"id":"abuseip-45.148.10.240","source":"abuse-ipdb","category":"ip-reputation","severity":"critical","title":"Malicious IP: 45.148.10.240","description":"Country: NL | ISP: unknown | Abuse score: 100%","indicators":{"cves":[],"ips":["45.148.10.240"],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":100,"publishedAt":"2026-08-21T02:17:00.000Z","fetchedAt":"2026-08-21T03:00:00.167Z","references":[{"url":"https://www.abuseipdb.com/check/45.148.10.240","label":"AbuseIPDB","domainType":"primary"}],"feedLabel":null},{"id":"abuseip-194.88.98.114","source":"abuse-ipdb","category":"ip-reputation","severity":"critical","title":"Malicious IP: 194.88.98.114","description":"Country: DE | ISP: unknown | Abuse score: 100%","indicators":{"cves":[],"ips":["194.88.98.114"],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":100,"publishedAt":"2026-08-21T02:17:00.000Z","fetchedAt":"2026-08-21T03:00:00.167Z","references":[{"url":"https://www.abuseipdb.com/check/194.88.98.114","label":"AbuseIPDB","domainType":"primary"}],"feedLabel":null},{"id":"abuseip-181.116.43.25","source":"abuse-ipdb","category":"ip-reputation","severity":"critical","title":"Malicious IP: 181.116.43.25","description":"Country: AR | ISP: unknown | Abuse score: 100%","indicators":{"cves":[],"ips":["181.116.43.25"],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":100,"publishedAt":"2026-08-21T02:17:00.000Z","fetchedAt":"2026-08-21T03:00:00.167Z","references":[{"url":"https://www.abuseipdb.com/check/181.116.43.25","label":"AbuseIPDB","domainType":"primary"}],"feedLabel":null},{"id":"abuseip-45.249.246.17","source":"abuse-ipdb","category":"ip-reputation","severity":"critical","title":"Malicious IP: 45.249.246.17","description":"Country: HK | ISP: unknown | Abuse score: 100%","indicators":{"cves":[],"ips":["45.249.246.17"],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":100,"publishedAt":"2026-08-21T02:17:00.000Z","fetchedAt":"2026-08-21T03:00:00.167Z","references":[{"url":"https://www.abuseipdb.com/check/45.249.246.17","label":"AbuseIPDB","domainType":"primary"}],"feedLabel":null},{"id":"threatfox-1883554","source":"threatfox","category":"threat-intel","severity":"critical","title":"payload_delivery: undefined","description":"https://honeylabs.net/lookup/153.117.40.47","indicators":{"cves":[],"ips":[""],"domains":[""],"urls":[""],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ClearFake","mac-0xdcf2","macOS","Cloudflare","gif","PHP","webshell","WordPress","workers.dev","wp-admin","21August2026","Commandline","mac-0x68dc","CobaltStrike","Vshell","8560","asyncrat","c2","censys","compromised","etherhide","ClickFix","etherhiding","AISURU","elf","IoT","Mozi","Remus","mac-0x76c7","drb-ra","mac-0x0f14","20August2026","ErrTraffic","Viper","Havoc","dcrat","PureHVNC","PureRAT","RAT","HypeAgent","Mythic","Supershell","1xxbot","ArechClient","SectopRAT","CinaRAT","Quasar RAT","QuasarRAT","Yggdrasil","sliver","ResolverRAT","ConnectWise","ScreenConnect","903ac24fcd9670b9ef2e674243d550d8","Loader","stealer","Vidar","RemusStealer","fake-plugin","nochain","SmartApeSG","win-0xa770","Windows","ValleyRAT","Kongtuke","AgentTesla","XWorm","Dropper","SocGholish","Pink","Adaptix","RevStealer","DomainShadowing","NEWTEST","Stealc","test_2","STRRAT","DanBot","CONTABO","CTFLoaderService","FakeAdobe","iso","LNK","pre-ransomware","velociraptor","cs-watermark-987654321","RemcosRAT","remcos","OffLoader","Socks5Systemz","Mirai","Vjw0rm","RedGuard","shodan","orcus","NetSupport","StarKillerC2","UNAM","AdaptixC2","PowerSploit","locust","GoPhish","phishing","cs-watermark-100000","Amos","nakedpages","Lud","36903","MetaSploit","fake-copilot","RedLineStealer","19August2026","njrat","Covenant","NeedleStealer","sliverfox","Gafgyt","rmm","117ee8f56cb68a9f6a440e1b4329f856","SparkRAT","ExtRat","XTRAT","Xtreme RAT","Agentemis","Beacon","Cobalt Strike","cobeacon","clipboard","ACRStealer","Mac","Breut","darkcomet","Fynloski","klovbot","Lumma","NanoCore","SnappyClient","Diamotrix","URLscan","EvilGinx","EvilGoPhish","CHAOS","x4tte","PureLogsStealer","LxBaseRAT","ProRat","Panda","EpsteinClient","NetSupportManager","NetSupportRAT","592a9e009f92c0e8eaea74a337b4f67c","capture-drop","honeypot","ssh-dropper","HTA","mexico","WhatsApp","sepolia","tofsee","web-inject","Spynote","HookBot","Byakugan","nc","gs-netcat","gsocket","moobot","nimplant","quasar","sectop","shadowpad","cs-watermark-1234567890","valleyrat_s2","8395ea90eca49b3f66c2a339ab377348","974b6b4ed30ddaa4b6f4ec27976e52d8","IRAHook","40999","45090","gated","poshc2","BianLian","PG","hook","Deimos","Magecart","userr","4-72","card-theft","COLOMBIA","otp-relay","phishing-kit","telegram-exfil","tg.pe","BlakcSeeStealer","726a8431d5d2ee941d0e6046b5948889","17August2026","Loki","DinDoor","16August2026","NetSupportManager RAT","Nancrat","NanoCore RAT","Remvio","Socmer","Bladabindi","Lime-Worm","Venom RAT","Farfli","Gh0st RAT","Ghost RAT","PCRat","Polygon","6c0969259a3975582cd8a48f4c8913d7","UnamPanel","v1","8075","329556","214961","kimwolf","5fdb6df778631818165110294c620890","a6416186c7730e38c492792c820881c3","majinahanashi","Ransomware","whack.sh","013c5d2d6312702c9bd8d7499170ed6b","aa462c8dcc4d1e29e6e35cbe1cd9ac85","build3","newbuild","0f81469cc7638ba7c82eaddbd6b3c20a","cs-watermark-666666666","Cloudflare Inc.","15August2026","mac-0xfb64","mac-0xe447","be6f50208246a51977f7066c1ea613a0","e9bf104a963da535b0fb5aaebe6f06e1","51c45d4bde39c5d7874e05e8c68314ca","14August2026","cc382e7a75ab8441eee2f40142be37ed","AnimateClipper","LegionLoader","SheetRAT","MintsLoader","build1","L1","WilsonC2","panel","PhantomStrikeC2","EvilgnixC2","Tr4nsHack","ZygiskC2","AuraStealer","domain","DPRK","kimsuky","MoonPeak","Stella","golang","zimbra","zimbra-exfil","ZMBX","workes.dev","14618","a77f04bc08864469eb801630c24264ba","AsynRAT","malware","d8b0m","ransomware","apt","botnet","infostealer"],"malwareFamily":"ClearFake","confidence":100,"publishedAt":"2026-08-21T01:59:50Z","fetchedAt":"2026-08-21T03:00:01.482Z","references":[{"url":"https://honeylabs.net/lookup/153.117.40.47","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/125.44.18.27","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/7e788bd6e7940f7c57dbfd94da87a48b4f36fad48c04a8bb1ba82971317f9023/","label":"ThreatFox","domainType":"primary"},{"url":"https://clickfix.carsonww.com/domains/apartments-review261634860.sbs","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/e313c09240d94d6f8aed6e6f4c802f1dce4e204cb7020e72d5344a8cd93b3b26/","label":"ThreatFox","domainType":"primary"},{"url":"https://clickfix.carsonww.com/domains/ksr-racingparts.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/www.accademiadeiromani.it","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/825fe5ad51d9ecb3f33cf9b1ff7d92ddc47192a3b4dba4cc67150b33f8863832/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/74a1e4dead91d597b2474e157272794d0c43c877d79565b3ce306331f0bfe8b0/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/178fd830163f46b127955422415f10d5f5a337212940ecfbb16f715b8ab2a711/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/75b78d8c29a3dbe369c38cff68dcd8a509f88fbdc5af1aac2d3684a3f2c3207e/","label":"ThreatFox","domainType":"primary"},{"url":"https://honeylabs.net/lookup/202.70.139.165","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/160.30.142.218","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/202.47.57.186","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/110.38.0.239","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/112.123.98.99","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/psicopress.com","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/0ec8cd5306167f1c4a1480d0fc5f09099834435ec6ea308c48eabaa8eb2cd019/","label":"ThreatFox","domainType":"primary"},{"url":"https://clickfix.carsonww.com/domains/zaeroks.website","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/einfach-einfach.digital","label":"ThreatFox","domainType":"other"},{"url":"https://infosec.exchange/@monitorsg/117128471193325362","label":"ThreatFox","domainType":"other"},{"url":"https://www.microsoft.com/en-us/security/blog/2026/05/06/clickfix-campaign-uses-fake-macos-utilities-lures-deliver-infostealers/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/b781b07429a51a7a9b786160ad9ac0bc037b7ee062d1f88b9aff2e42b292270b/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/d478ce0f1dfabc910bf785490d577bc6c85cc47c6a35ccb9e5ca220f56914016/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/73d3fc27bb8991f739e2d52007e5a466e24682e0595fc7b12c5e0fec6457827e/","label":"ThreatFox","domainType":"primary"},{"url":"https://infosec.exchange/@monitorsg/117128226111472251","label":"ThreatFox","domainType":"other"},{"url":"https://infosec.exchange/@monitorsg/117128234563756631","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/fibre-industries.de","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/serve2lead.com","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/91.92.47.97","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/dcf42e88c3688f575a490e5b51a7ecce9a930630e230523679736dd6b8ae4ce3/","label":"ThreatFox","domainType":"primary"},{"url":"https://clickfix.carsonww.com/domains/freedomfamiliesfoundation.org","label":"ThreatFox","domainType":"other"},{"url":"https://app.any.run/tasks/0ca35420-52dc-4fd4-b3e2-055e1e43dee0","label":"ThreatFox","domainType":"other"},{"url":"https://www.virustotal.com/gui/domain/ntc-redirect.akamai-live.workers.dev/relations","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/2f4b0265ae7f7d1672082a13211346c81ae1ae2f1ee6451851d4fa8a56d6469d/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/c5103eaa70a4a80176440a0e0dc75136a0e7bcfd9a68d7c8440a4d0edea72011/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/545df941a12726eececab025c21f30ca6b96f4dca86883b5e834d2084f40ff9e/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/ca2f6a6a991da93820340a30003176dcea7bd568175991fc5dfdb644a0d65bdc/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/a909567fd036f81727e0bda7da6d9993d8eeed60207cce185d8862b40f5a2220/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/f6117413027a3ddba78e3dcc7e975a626bf0e8f9ffe1dc5dd2387237b40f378f/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/f6faf9fc35489cec62820f6f3cc353e0af986d67314bdbd5a5abf4fa4c067a3a/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/9024eaf8b8c84042848edd66ad69c09afff1cceaaee314b2c550c07c85b1a8e5/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/8a802c9ee489aac5864b648bd3db2d1ec2db952001776582158df04d83b2d361/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/539d07048204358515864a5a896f1b92cc1b2cd40ec8d596380ba870eaf73324/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/6e482ca3bf3fcc53e4e91c43c50b1720a48090f3149fe7ff760c447a37c1ef04/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/03d9b9675a98583ec96b59fec63059641e320cbc8774de2dfa736ab06cd008b1/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/cd2cbf3277a263102361c9ee187e542c15ee02bc257dc17cd207f355f1d0f959/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/d2d5abf113cb0723ba13b3e4c2c007de844f19673bdae5639b53cd01bb6859ec/","label":"ThreatFox","domainType":"primary"},{"url":"https://honeylabs.net/lookup/190.196.253.119","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/223.123.44.122","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/103.176.16.59","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/116.140.6.114","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/103.225.191.202","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/153.117.40.170","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/110.186.229.108","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/115.57.182.131","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/183.63.8.194","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/f626335064988d1687d5bc75faee7a1ff782c84efb62ae539ca2b7a0809df3fd/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/b9eabf9c1e7eda061eb824e4d6eee8dcebfa10e85a45bbfd623c87169c2f7a8e/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/f636ff2834f3f113d068225ba9fa1465aa6211c183ef9b10a043382bce6bff3b/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/af4ee79582992e348a8739579da478d50daccbaa6ec97420311916a2ac0fc503/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/3922a4af520229c368788879ca8312fba656bb9b1285d91a8f62429e979ba6cf/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/e747deb0d49a53cda8ebc02a97c5eeb875d6b5b07e1be8dfac5545adb78760f6/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/616b0525deac1fecbfa3f4a3d08f09748a027c9a850521c5df13fa193970890b/","label":"ThreatFox","domainType":"primary"},{"url":"https://www.shodan.io/host/129.226.174.180#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/185.130.45.240#80","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/102.220.160.204#10134","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/181.167.80.196#5603","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/78.186.49.17#1337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/193.233.130.223#80","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/94.249.230.177#80","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/152.32.133.192#7001","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/1.14.104.208#4321","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/50.6.44.138#4321","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/84.71.50.253#8443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/34.134.90.188#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/35.254.102.75#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/45.198.55.168#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/141.125.158.53#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/130.61.239.223#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/172.236.7.224#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/91.134.62.41#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/192.144.187.97#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/14.103.50.128#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/139.84.164.248#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/94.154.32.18#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/66.154.127.217#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/185.245.182.240#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/104.236.230.184#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/91.229.23.96#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/47.89.175.103#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/202.181.177.148#31337","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/c126a83d1def8e6458bdb92216892a0500984a979346676124c12a4b2dd4b41d/","label":"ThreatFox","domainType":"primary"},{"url":"https://www.shodan.io/host/64.176.175.194#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/103.253.75.155#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/51.77.46.205#7777","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/111.229.112.115#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/4.204.25.104#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/35.254.58.72#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/146.19.185.37#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/120.26.238.236#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/195.246.231.131#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/201.189.58.129#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/172.234.231.31#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/151.115.144.4#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/200.155.77.90#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/156.224.18.21#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/152.32.132.82#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/46.8.236.158#8090","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/47.84.50.235#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/52.56.222.66#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/8.219.220.240#7443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/104.199.132.123#10443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/52.147.196.140#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/137.59.110.53#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/156.224.18.21#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/82.29.71.121#8443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/81.69.15.52#51003","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/817067c431557ad88cd4fb18dc28a988a7a714f66b6b0f219cf9b03b5b665390/","label":"ThreatFox","domainType":"primary"},{"url":"https://clickfix.carsonww.com/domains/zaerkos.rest","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/proclean-ci.com","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/f94db5a93b19e1800be99cb0be2fb21794d3c89ccb588b53739a62c587bc20e6/","label":"ThreatFox","domainType":"primary"},{"url":"https://x.com/masaomi346/status/2089288204101066803","label":"ThreatFox","domainType":"other"},{"url":"https://x.com/skocherhan/status/2090166619435683931","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/sci-lumiere.ci","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/082370aaf679a20e722fec6c88ab73803063e34683b0106e11b0d1999508cec4/","label":"ThreatFox","domainType":"primary"},{"url":"https://clickfix.carsonww.com/domains/richplusglobal.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/meraapnabharat.ca","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/vidyalekha.co.in","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/vefasigorta.net","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/bathandyou.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/www.faceit-verification.help","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/noise.lat","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/hyperliquid-solana.xyz","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/taliy.sbs","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/tradegenius.sbs","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/sixpences.xyz","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/vvagyu.xyz","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/grvt.lat","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/cro-ent.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/essexfertilitystore.co.uk","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/cssfounder.us","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/shopforet.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/agendaurbanaribeira.gal","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/d684fb1e82d42041802c676440d58e964b19ae74e8e7669e84d15da1a1e9c7ee/","label":"ThreatFox","domainType":"primary"},{"url":"https://clickfix.carsonww.com/domains/palaciomaravilla.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/www.silviozamora.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/tarahenovin.ir","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/ovarquitectura.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/smdrsdptk.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/sevtapcapan.com.tr","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/www.uniticstudio.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/almomega.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/www.mciturkiye.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/www.masartech.io","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/jamesrichard.net","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/fixthatappliance.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/veryanjones.co.uk","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/drdolati.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/glenchua.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/mclropadetrabajo.cl","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/lovenet.org","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/avsafiyeyilmaz.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/izmirdellservisi.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/mjforwarding.pl","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/mgihub.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/monomit.com","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/60f3280493c50acf8ccc3b128177e714a7dd58dc5f89871ad6683ab1539b382c/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/4f92f1b658856b2662100c26dcd5f81525a74482b4fdebb16923ec27234f0a7e/","label":"ThreatFox","domainType":"primary"},{"url":"https://clickfix.carsonww.com/domains/mujerilumina.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/namaste.cat","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/saatavukatlikburosu.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/rotariosjurica.org","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/ofi-med.pl","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/onlinetarabar.ir","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/openmedia.ro","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/obesidadydiabetes.info","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/pasoapasofam.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/necckaduna.gov.ng","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/necckaduna.com.ng","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/thesomersetlocal.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/stomatolog-rybnik.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/smartheartboardgame.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/tmtweld.pl","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/sibilphone.ir","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/theset.co.za","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/spiritofadventureacademy.com","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/65af8ffdecfc2394c2a27c6d53880ad5b89de8fd201a69d33a34e31e320a3a5d/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/440cb05dbc1425d4e40e70c260ac1aed00152c2d348ecb7c87aa7a8198cd9eae/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/50774a5f75176f9698fc536e82a6106c04ccd1db4f1d788574fdb288952c6d7b/","label":"ThreatFox","domainType":"primary"},{"url":"https://clickfix.carsonww.com/domains/valokse.lol","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/c4227301dd23eb6ebd80bf1f5e48455413ba78cf1a33be2296a857618d5588dd/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/2dae1df14d0cc6ea8e670e0b327101d0fe5c475dc06a376e99a6df426bddf418/","label":"ThreatFox","domainType":"primary"},{"url":"https://x.com/solostalking/status/2089616109213569336","label":"ThreatFox","domainType":"other"},{"url":"https://x.com/tdatwja/status/2089986369544405063","label":"ThreatFox","domainType":"other"},{"url":"https://x.com/tdatwja/status/2089996616359174472","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/5d5f894ef71d10255620990abd68ba7ef14b7da956f6317375e9adbe04f2e5a5/","label":"ThreatFox","domainType":"primary"},{"url":"https://clickfix.carsonww.com/domains/varzeshsb.ir","label":"ThreatFox","domainType":"other"},{"url":"https://x.com/skocherhan/status/2090111458142994915","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/dugrangranitos.com.br","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/39a180aeadc544e9423433352159ebc88407455a24eb9f0c266b1e78e134ac8f/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/490ab4a48bebf291311d3c71046e2b3d44d846401f5258b8e1f96355c7e7c3fd/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/1da3b9d89c8932b5597e752fe1468ebe236d21328a2453769624f69becf05656/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/2d91a4c89713cfa5e9435141be213b568d9094b5e8d0f50f392140b019ddbd43/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/b3e1379e763c84c598fbf49006b46b6df57499efbaf6d018fdc5b236c756cdd8/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/edaff13bad2401227db98e70ecef36c910a4ad7079796b03da6a7977e3b7713c/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/8e11c717fa2e8c37b5f1ed695d8c8e1898d4e1f40a976e79ece0a8f4260fa9b4/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/1d1764ee1c71dd5da7339e1ac13b84fc6d041782ba66cd310bf268184fb43951/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/94ac07fc63269ca404c5f47a8298d92a227e8da5917e6fd3f96a1f06f90572b7/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/2d1ad9929558eff7927026b4b9286c03b75640431955d37d22b77b920198ed22/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/edb7f446f91211fcb38d3d38b69dc3e503a554a7b1399700af6aa4635266af15/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/684716407fac9db2bf2540db8c7c74928b98dbfbebeae2181d7bd0aa73656a31/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/ab81e32fd9260645a5a4e6534a69d4a8c8db5e5c873a2a8f5aae600902bd4a8c/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/d9630814908b32ab2454226015db48cc39f32f6a6fc0829367b5fe7f6db5161b/","label":"ThreatFox","domainType":"primary"},{"url":"https://infosec.exchange/@monitorsg/117122578470569567","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/207410d97d1af036297be90cf72c1a7bbd209a891beddfec222f19a081c346fa/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/6e15ca7dd35f30060885ed042912b306388abe7085bfdf3d3716df95a1f9459c/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/d3840bcd452fbd7df0083393d79e5848192231195a7242a018c0b8a991e3d3f8/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/cce3ddac2dbcaf1a4f4db50b48fcc4e65341096b51c7bc6c13e7bd98c867e1f2/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/71e5bb794cf80e7bfeae891138b6acaf5d391f75dd665d5ea7c6e024df8e2f9d/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/cd77dd458f512935cc8912da7964570f1efe44bb497968204877890b397bbfac/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/7ff4fe3f3d7784da58e257cc7ea7e4f7ce63255817e4b79be123144d3027cd62/","label":"ThreatFox","domainType":"primary"},{"url":"https://honeylabs.net/lookup/45.120.161.86","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/kalekos.world","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/1d62a76d0311297527849b772fcb42eb964d10bbb0eeced50d7b83a94a9e7ef7/","label":"ThreatFox","domainType":"primary"},{"url":"https://urlscan.io/result/01a0196e-970b-7389-a7a8-fecf720b7752","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/4bba11f8ae554be3cabbd44c1e67dde6a85c7f192e645c7aea7e35617ea38def/","label":"ThreatFox","domainType":"primary"},{"url":"https://urlscan.io/result/01a0196c-0490-779b-bb63-ec40c2fb4817","label":"ThreatFox","domainType":"other"},{"url":"https://urlscan.io/result/01a01969-5ab9-746e-9db5-2a93416478af","label":"ThreatFox","domainType":"other"},{"url":"https://urlscan.io/result/01a01969-56a4-7177-848c-25f5881151bf","label":"ThreatFox","domainType":"other"},{"url":"https://urlscan.io/result/01a01969-5336-708a-b813-7d1eaeea4a14","label":"ThreatFox","domainType":"other"},{"url":"https://urlscan.io/result/01a01968-e30d-745f-b07e-8609e729e5de","label":"ThreatFox","domainType":"other"},{"url":"https://urlscan.io/result/01a01968-cb76-7209-b7c6-c9dfc1e5f24b","label":"ThreatFox","domainType":"other"},{"url":"https://urlscan.io/result/01a01968-b996-744c-ab29-54c66343f2fb","label":"ThreatFox","domainType":"other"},{"url":"https://urlscan.io/result/01a01968-bb2a-772f-97fc-c5ece7061207","label":"ThreatFox","domainType":"other"},{"url":"https://urlscan.io/result/01a01968-bcee-718a-9e4c-b53c75894e11","label":"ThreatFox","domainType":"other"},{"url":"https://urlscan.io/result/01a01968-b695-766b-92ad-e95c23b1341a","label":"ThreatFox","domainType":"other"},{"url":"https://urlscan.io/result/01a01968-b321-708f-a23a-b80f2192d2da","label":"ThreatFox","domainType":"other"},{"url":"https://urlscan.io/result/01a01968-ade4-7031-a496-ccadf997859c","label":"ThreatFox","domainType":"other"},{"url":"https://urlscan.io/result/01a01968-abaa-7101-881d-980e5f6191e5","label":"ThreatFox","domainType":"other"},{"url":"https://urlscan.io/result/01a01968-a836-7291-82ef-16b53b2b4923","label":"ThreatFox","domainType":"other"},{"url":"https://urlscan.io/result/01a01968-a213-7670-be69-b2c06baab084","label":"ThreatFox","domainType":"other"},{"url":"https://urlscan.io/result/01a01968-a4e1-738a-8d47-b0b5b27574b5","label":"ThreatFox","domainType":"other"},{"url":"https://urlscan.io/result/01a01968-9e1a-7660-a50f-578e7113fb65","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/3e5ee46a8876358fbf020a710c1107f8d04812a22cbc47e39241594b7b1cd159/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/9768b7e31324805672cfcba91cf4d6da91494e9899db58f22da9dda6c91931d6/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/92b4af0bd6c1e058c9cce2fe34272ce6e15d5039aa57ac489022127aaafbdc3d/","label":"ThreatFox","domainType":"primary"},{"url":"https://clickfix.carsonww.com/domains/kakabrands.com","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/b7c60bc7570406370984e95e12934ecb7e935558d473e9444cee85951d202c67/","label":"ThreatFox","domainType":"primary"},{"url":"https://clickfix.carsonww.com/domains/casaandaimemarica.com.br","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/one1ppp.com.pk","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/speed.hirebiz.pro","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/autosolutionsconnect.com","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/64494586d79711a0c12ad714f5f895a5d14200247cc02f0434f2bcd8b3b8002f/","label":"ThreatFox","domainType":"primary"},{"url":"https://clickfix.carsonww.com/domains/topqualityroofingsolutionsltd.co.uk","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/120.48.63.129#8090","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/38.247.165.127#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/118.122.8.157#7634","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/112.45.129.157#7634","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/44.195.73.113#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/3.129.203.73#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/192.169.176.54#449","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/13.51.79.99#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/45.76.0.96#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/45.197.12.73#8888","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/38.190.245.20#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/138.16.160.172#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/5.189.145.93#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/212.50.234.154#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/185.207.154.238#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/185.208.175.18#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/45.39.60.110#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/2.58.197.179#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/192.169.176.54#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/62.3.32.232#1337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/103.79.118.60#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/45.136.13.14#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/81.17.101.18#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/34.69.181.211#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/172.234.208.153#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/20.82.45.152#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/157.245.42.93#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/57.129.100.77#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/138.2.168.165#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/34.57.211.177#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/34.60.126.85#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/34.80.62.77#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/195.66.24.49#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/136.110.112.87#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/34.138.65.248#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/85.210.172.79#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/34.16.89.64#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/194.156.67.69#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/42.117.13.122#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/154.12.24.149#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/54.250.85.43#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/23.149.36.116#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/43.203.36.6#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/38.60.216.38#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/106.13.186.173#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/134.209.219.114#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/167.233.157.154#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/43.156.210.9#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/195.245.229.109#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/62.171.176.111#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/8.130.81.118#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/167.71.105.40#4545","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/63.88.138.76#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/40.81.184.48#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/15.224.148.171#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/62.234.144.140#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/137.131.157.110#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/80.225.78.233#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/14.103.129.205#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/3.148.207.89#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/50.78.48.241#9443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/159.75.110.224#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/119.45.198.250#55555","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/118.24.42.214#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/172.232.97.189#4444","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/47.251.29.219#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/47.254.68.68#50050","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/8910f0cb2eb97c3b1ced8b512bb34884a958ba7d81829841b2e60eb487157662/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/1863c944ff0f5f06cafe0f98d6a6f54084ac266936c0dbc16a9d13ab03dda421/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/837278104e5d4ed94c286bd8ea3845377fd03c2f1fa4b7b43555b9fca3455115/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/79990567c7458e6c7274f0d61011f9ce4718c47f76dec51a604182f182e3aac7/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/d0e5808cea92aa335ba889cb401a51506a13e79f5fe18c21a1e765c8f5c897a3/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/3b1d59c71cf19f0be3f66f4ad7d89e3593bbcd1c461b835f663bce969d07dc53/","label":"ThreatFox","domainType":"primary"},{"url":"https://infosec.exchange/@RecklessPush38671/117118098460752628","label":"ThreatFox","domainType":"other"},{"url":"https://x.com/skocherhan/status/2089830470884143452","label":"ThreatFox","domainType":"other"},{"url":"https://x.com/skocherhan/status/2089834462951408044","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/12c2152d740d079902e326329ab53a9ac76bae36858475b5e0af1c217c4d46c3/","label":"ThreatFox","domainType":"primary"},{"url":"https://honeylabs.net/lookup/223.123.43.192","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/103.190.23.91","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/153.117.13.31","label":"ThreatFox","domainType":"other"},{"url":"https://twitter.com/NullBlue67","label":"ThreatFox","domainType":"other"},{"url":"https://infosec.exchange/@monitorsg/117117856549686474","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/8437f141b392c50cb27717fef260b9bc0509178eb7919afe96b637b30cdca5d8/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/3dd9f794833b29db94173ee707a300162e388cf75357e494e328954b5d61c650/","label":"ThreatFox","domainType":"primary"},{"url":"https://infosec.exchange/@monitorsg/117118086922735381","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/ce97b609df1b5fe98cea4d8763bbd569d98ca7494a59ab0590cc9176e1907eb2/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/093db91d8a9c42faf74d6531eacab95e1175952a8defd0a86113ab92403e4f22/","label":"ThreatFox","domainType":"primary"},{"url":"https://clickfix.carsonww.com/domains/valeroks.click","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/0ecbba5d1aa1cfb32e96df6d6d7854929353733668ad1134256ec0451dc1a1da/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/2ecf04b3f001039184d841dd067d6e47bf192047ffe6b92c72a9d57bda6c6afe/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/1d65b76219f184a4fc87d597b0ae50e2ef6f98a79558448b0f0868f761c5479f/","label":"ThreatFox","domainType":"primary"},{"url":"https://clickfix.carsonww.com/domains/zillow-app.sbs","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/s3hsyuj2k.sbs","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/a2229d944a164ef74389757ff84f6ec5572db1be83d53399638c4efa6503a436/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/7219dc43efbd5d57c3b8af838ef26b2426483259c1c7b36a6e4e1d3c574496e0/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/cc900a5a94804cc09fa2009055e3ef4aca1e3b18b32358e8d9884da4d374712b/","label":"ThreatFox","domainType":"primary"},{"url":"https://clickfix.carsonww.com/domains/moat55.io","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/winrupees.com.pk","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/lankataxicabs.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/zs777game.net","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/86d57ebab870af93c1501db0a6c3404636174d0d5b5bffa493f956d77631c321/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/58711b6e9e099eebfb66358560d52878e75ed91d901fb95906d059a36500cdf3/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/2a45e6c914ff7da1d39558fc1ffb65d2a9e4422d37352957b17f1cabfdf7130c/","label":"ThreatFox","domainType":"primary"},{"url":"https://clickfix.carsonww.com/domains/bytesolving.info","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/3pattipkr.com.pk","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/777szgame.pk","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/dk999app.com.pk","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/galonz.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/clubpkgame.vip","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/www.detoxiones.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/gbazzar.in","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/caltexpoint.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/bit2solutions.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/8jjbetgame.net","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/imworthdefending.org","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/pakaviator.net.pk","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/pakaviatoor.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/pak365game.pk","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/www.makttravels.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/k666game.pk","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/leannepearson.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/laverie-saint-marc.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/laprensadecojedes.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/kitkateventz.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/www.jahmadartstudio.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/techfixlogic.info","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/unifm1027.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/s92bet.net","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/spinwinpkgame.net","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/rr3game.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/royalpkr.pk","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/purekhaddo.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/pkcasino.org","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/winbdd.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/thetechinstruct.info","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/www.waouhmonde.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/vizanstudios.com","label":"ThreatFox","domainType":"other"},{"url":"https://urlscan.io/result/01a01540-1603-7265-8f1a-6a1bacb9caa3","label":"ThreatFox","domainType":"other"},{"url":"https://urlscan.io/result/01a01540-0f06-741a-bffe-2ee85e355ad7","label":"ThreatFox","domainType":"other"},{"url":"https://urlscan.io/result/01a01540-129d-75eb-aef5-738f5db07371","label":"ThreatFox","domainType":"other"},{"url":"https://urlscan.io/result/01a01540-0d9d-77c1-b166-e653130406e3","label":"ThreatFox","domainType":"other"},{"url":"https://urlscan.io/result/01a01540-0a5f-779f-9c61-c0722357003b","label":"ThreatFox","domainType":"other"},{"url":"https://urlscan.io/result/01a0153c-39d1-76fe-bb7a-9cad63fb8d64","label":"ThreatFox","domainType":"other"},{"url":"https://urlscan.io/result/01a0153b-dd26-70c9-810f-0a92da97847e","label":"ThreatFox","domainType":"other"},{"url":"https://urlscan.io/result/01a0153b-d9b1-735e-af74-6f9364a5f512","label":"ThreatFox","domainType":"other"},{"url":"https://urlscan.io/result/01a0153b-d761-76ae-94c6-1321e33fa9cc","label":"ThreatFox","domainType":"other"},{"url":"https://urlscan.io/result/01a0153b-1ef3-77a8-a6f7-a5699de3113d","label":"ThreatFox","domainType":"other"},{"url":"https://urlscan.io/result/01a01538-eca2-731f-b144-aa3495f014cb","label":"ThreatFox","domainType":"other"},{"url":"https://urlscan.io/result/01a01538-e5e2-71b4-b36f-40282c0d5876","label":"ThreatFox","domainType":"other"},{"url":"https://infosec.exchange/@monitorsg/117116679039975377","label":"ThreatFox","domainType":"other"},{"url":"https://infosec.exchange/@monitorsg/117116685559499326","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/c36f519a225ba04a6d463bd7f09428f695f0281fd5d8da0f6117a022b6b145aa/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/89e906327d8e85067e16f3eb077a4a891fd01773460363b235918035314703ea/","label":"ThreatFox","domainType":"primary"},{"url":"https://honeylabs.net/lookup/111.92.157.210","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/94.26.106.206#80","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/213.139.77.194#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/37.187.222.170#80","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/216.128.179.190#7443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/217.77.6.50#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/162.35.165.76#1337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/46.19.143.117#1337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/15.204.248.160#1337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/45.227.254.77#5000","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/5.188.87.210#5000","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/98.142.252.140#5000","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/91.238.181.7#5000","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/103.117.123.125#4433","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/64.90.10.227#8080","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/129.226.174.180#80","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/96.44.160.44#80","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/120.48.63.129#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/103.117.123.125#80","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/110.40.147.249#7777","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/23.106.131.15#8443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/122.114.12.82#12340","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/122.114.166.126#12340","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/89.23.110.250#4321","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/130.49.149.13#8010","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/186.244.227.52#9443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/186.244.227.27#9443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/104.244.89.232#4321","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/212.47.241.124#55555","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/159.203.165.107#4321","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/216.118.235.68#4321","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/186.244.227.104#9443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/52.128.231.154#4321","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/149.202.227.107#4321","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/216.126.236.168#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/34.145.5.205#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/64.227.176.189#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/141.125.111.183#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/141.98.154.146#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/172.233.168.65#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/20.223.13.151#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/173.212.213.138#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/220.158.194.222#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/172.232.176.54#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/164.52.199.72#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/62.244.225.145#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/203.185.67.223#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/77.237.239.166#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/35.200.224.221#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/35.194.54.154#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/136.66.108.120#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/45.79.246.83#8089","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/3.39.168.106#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/180.104.118.242#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/47.82.213.176#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/35.79.67.124#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/74.225.205.31#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/156.225.27.190#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/3.13.145.57#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/20.14.208.6#8443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/151.253.161.154#8443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/50.75.178.90#8080","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/18.223.6.45#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/84.68.26.77#8443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/91.231.11.17#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/92.27.20.99#8081","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/147.124.221.15#9443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/40.121.46.121#8444","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/171.33.196.226#8443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/94.72.98.60#8443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/82.64.37.175#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/135.236.152.188#8080","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/71.184.151.34#8443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/146.20.137.210#8443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/202.29.172.25#8080","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/51.52.39.37#8080","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/24.106.83.199#8443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/203.158.140.81#8443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/3.147.90.9#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/130.94.94.118#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/173.230.130.248#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/68.178.205.17#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/207.180.58.107#4443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/108.143.227.46#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/74.0.32.96#4443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/65.49.231.115#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/159.89.232.174#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/64.227.87.165#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/185.223.207.38#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/5.9.89.201#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/192.129.226.132#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/45.32.60.15#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/89.106.78.234#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/199.245.176.16#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/64.188.28.250#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/156.224.28.224#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/162.14.101.126#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/79.133.42.25#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/121.78.127.232#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/37.27.180.218#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/199.188.100.215#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/143.198.125.30#4443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/207.57.135.209#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/77.90.19.202#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/37.60.246.25#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/212.60.151.85#8443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/172.105.103.223#8443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/38.147.164.81#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/129.146.218.27#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/66.179.136.167#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/129.226.195.254#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/103.121.95.90#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/173.212.223.178#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/35.240.178.188#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/104.244.89.43#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/43.139.87.203#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/195.242.119.57#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/34.175.95.87#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/150.40.117.140#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/130.94.34.246#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/207.180.205.54#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/66.154.103.109#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/103.185.249.13#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/162.19.175.48#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/146.56.214.130#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/91.208.162.174#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/116.202.158.114#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/78.17.93.74#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/185.141.60.111#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/213.145.86.42#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/137.74.73.61#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/66.63.162.235#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/158.247.221.23#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/45.79.203.94#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/103.70.77.226#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/43.131.50.177#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/45.76.48.124#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/37.114.41.131#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/150.158.122.8#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/149.62.46.25#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/92.119.164.140#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/137.116.136.69#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/204.194.54.61#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/45.74.31.54#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/161.97.168.140#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/88.218.77.102#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/101.42.96.140#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/204.152.220.114#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/173.212.223.214#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/157.245.14.84#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/137.184.54.93#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/15.204.248.160#8443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/103.121.92.150#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/51.38.146.21#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/153.75.233.171#31337","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/178.33.157.230#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/85.215.56.158#8080","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/194.226.142.191#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/146.103.123.143#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/101.43.65.12#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/178.128.9.240#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/113.30.189.38#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/37.60.242.138#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/159.198.79.76#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/193.126.118.126#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/83.229.123.190#8080","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/31.70.83.235#8080","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/64.176.226.47#5555","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/51.77.47.134#7777","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/45.136.14.160#8080","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/194.68.44.212#2053","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/140.82.6.30#30001","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/172.105.40.31#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/204.168.238.206#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/138.36.238.226#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/161.97.184.153#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/185.202.238.199#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/95.0.200.36#8443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/79.76.52.42#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/20.71.123.165#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/136.119.232.128#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/157.230.7.157#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/151.145.54.26#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/157.230.109.184#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/35.195.56.119#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/51.38.142.130#7777","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/152.136.211.93#9999","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/43.218.88.179#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/118.25.137.16#8443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/64.227.136.20#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/107.174.39.59#8080","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/169.58.168.231#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/202.74.214.34#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/168.144.115.205#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/91.134.242.255#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/134.199.218.113#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/5.161.193.120#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/170.187.201.7#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/92.5.2.56#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/45.142.203.37#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/87.106.81.173#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/185.242.235.244#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/172.233.151.92#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/77.90.33.167#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/209.126.83.138#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/167.71.255.108#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/147.224.248.37#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/52.186.171.177#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/193.123.231.237#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/4.155.132.91#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/111.229.188.75#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/140.82.6.30#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/217.154.124.66#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/185.242.233.142#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/115.190.132.197#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/161.35.119.150#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/20.124.80.216#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/104.236.76.166#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/195.90.216.5#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/158.180.46.177#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/211.24.92.216#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/91.98.112.78#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/107.21.100.205#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/159.203.57.121#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/194.163.144.171#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/209.160.251.122#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/2.207.238.100#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/195.133.74.137#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/89.116.24.9#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/2.27.45.193#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/147.182.255.108#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/51.138.224.23#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/84.88.36.28#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/205.235.2.2#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/104.244.95.43#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/66.179.211.39#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/118.163.7.218#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/168.144.0.210#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/103.69.128.98#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/141.144.201.168#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/64.23.176.200#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/109.206.246.27#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/115.190.189.185#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/146.190.128.134#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/20.33.33.75#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/23.254.224.208#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/82.67.111.175#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/141.227.149.206#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/67.207.90.244#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/149.28.248.110#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/23.20.128.134#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/104.236.9.157#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/91.99.213.210#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/199.68.217.119#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/65.7.123.204#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/83.228.217.239#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/87.106.213.148#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/82.156.64.247#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/129.213.164.210#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/87.106.229.16#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/74.208.54.197#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/94.100.26.221#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/8.220.240.233#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/79.76.32.207#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/173.249.53.208#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/212.227.54.66#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/193.181.210.170#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/103.173.66.52#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/188.166.251.223#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/79.143.89.122#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/91.92.42.203#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/84.247.161.75#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/106.12.26.24#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/134.209.75.116#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/160.153.178.199#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/185.95.14.77#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/103.155.107.70#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/136.109.25.184#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/198.13.32.232#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/157.180.28.222#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/185.240.242.166#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/47.237.71.87#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/81.169.224.207#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/15.235.59.186#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/164.90.159.31#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/121.137.95.101#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/111.231.98.72#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/159.203.162.54#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/51.142.139.32#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/212.224.107.83#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/47.176.153.62#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/199.247.20.75#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/161.35.102.148#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/178.105.228.199#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/37.60.225.162#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/88.99.165.179#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/175.41.148.114#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/195.26.240.215#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/162.35.187.190#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/152.42.144.85#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/40.84.43.13#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/54.249.139.244#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/129.226.221.147#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/74.222.12.20#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/110.42.6.177#8443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/62.234.37.129#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/112.199.110.130#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/147.182.238.163#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/91.98.155.109#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/64.176.19.24#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/51.105.193.225#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/173.212.213.160#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/140.143.182.14#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/182.93.80.19#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/146.190.122.225#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/178.128.225.209#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/161.97.98.207#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/190.20.116.63#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/43.136.134.87#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/203.145.168.114#7887","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/91.107.198.222#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/138.197.40.76#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/89.167.116.198#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/140.82.6.30#30002","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/82.165.107.125#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/104.168.95.59#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/108.61.167.138#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/217.61.240.139#9205","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/206.189.187.187#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/149.210.237.27#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/64.23.221.249#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/57.129.100.65#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/67.207.80.64#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/86.54.29.105#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/103.236.60.111#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/85.111.86.99#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/137.184.205.40#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/84.247.165.18#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/103.179.44.58#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/114.132.49.100#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/81.95.108.92#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/81.68.238.141#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/129.121.84.227#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/101.34.243.103#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/35.214.74.71#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/77.38.125.37#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/147.182.183.223#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/178.156.174.122#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/204.168.253.216#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/67.207.93.220#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/167.114.114.51#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/145.132.81.61#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/23.254.233.159#8443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/88.99.165.179#8443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/216.238.121.111#8443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/51.89.191.93#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/61.28.131.37#8443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/210.16.65.37#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/134.209.9.147#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/1.14.193.53#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/35.77.200.163#80","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/38.179.64.13#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/211.24.89.101#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/4.188.67.185#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/217.160.244.124#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/209.97.157.78#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/207.246.95.182#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/192.210.135.124#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/95.0.200.36#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/34.128.95.189#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/107.172.90.224#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/51.79.146.29#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/138.199.144.32#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/51.83.76.215#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/185.198.74.29#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/164.132.40.255#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/103.27.133.120#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/183.237.211.34#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/154.9.232.209#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/120.48.51.184#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/36.212.223.87#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/195.228.150.125#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/51.15.238.70#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/200.58.109.89#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/185.84.47.181#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/51.15.139.207#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/201.161.34.130#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/77.95.252.240#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/145.241.98.7#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/159.89.44.68#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/162.43.55.101#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/43.166.246.26#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/51.81.254.201#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/60.251.233.186#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/162.19.224.70#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/146.59.83.148#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/4.152.69.149#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/37.187.226.148#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/62.235.177.215#8443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/162.243.39.41#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/65.49.232.115#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/143.198.25.46#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/169.58.3.208#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/172.188.59.225#8443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/152.32.189.145#9999","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/93.177.77.142#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/4.150.69.97#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/212.132.126.146#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/13.140.159.174#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/35.208.127.233#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/18.163.48.70#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/195.114.216.54#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/152.42.200.251#3333","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/94.23.121.241#7433","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/88.119.174.86#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/129.28.122.92#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/193.112.191.222#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/192.144.171.134#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/182.92.117.223#55000","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/198.199.72.177#7771","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/39.106.80.126#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/167.160.189.206#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/108.165.147.244#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/24.144.93.255#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/175.178.99.75#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/178.16.52.177#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/46.235.168.57#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/107.172.103.254#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/213.111.157.231#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/139.59.255.98#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/114.67.98.107#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/80.32.135.143#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/203.12.31.100#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/147.182.194.198#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/43.242.97.95#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/43.252.213.228#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/82.157.183.28#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/47.251.21.59#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/47.86.9.253#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/38.55.145.158#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/175.24.134.99#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/68.64.182.169#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/49.51.230.17#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/42.193.22.177#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/213.199.55.80#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/141.255.162.234#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/117.72.125.206#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/1.14.104.208#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/118.24.187.152#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/206.238.42.153#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/14.29.160.181#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/158.94.208.177#443","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/152.32.132.177#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/169.58.121.189#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/172.232.97.189#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/158.94.208.177#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/31.179.166.59#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/110.4.40.65#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/43.139.87.203#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/91.92.42.118#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/47.82.234.12#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/43.155.169.245#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/88.147.120.235#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/169.239.128.43#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/101.33.225.32#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/47.96.254.114#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/106.75.249.202#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/192.210.226.113#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/119.45.160.160#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/117.50.184.221#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/183.60.226.2#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/47.251.165.63#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/157.230.253.244#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/124.220.34.180#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/178.157.59.195#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/84.252.8.28#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/14.225.212.124#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/83.68.95.150#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/124.222.145.172#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/156.239.252.191#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/169.58.82.229#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/47.251.177.187#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/47.88.78.167#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/62.91.88.154#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/111.229.248.198#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/114.67.204.86#50050","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/9.205.158.119#80","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/98.80.179.181#80","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/47.82.234.12#8848","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/169.58.82.229#5556","label":"ThreatFox","domainType":"other"},{"url":"https://www.shodan.io/host/169.58.82.229#8055","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/7a42d5d51e97d4701f6b309508902faa5aea833bda338172d5c95f6fbb7f9a92/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/77ffb26f8837c388039a3ed7267003a46a7f1ca6c3c1ba9ceb46fce5702ebdae/","label":"ThreatFox","domainType":"primary"},{"url":"https://clickfix.carsonww.com/domains/chillifarmsukabumi.com","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/1692679c9f4e665f2570c0f7c9479288ae146755047b119388b07e74a20923fe/","label":"ThreatFox","domainType":"primary"},{"url":"https://honeylabs.net/lookup/202.9.122.47","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/36.255.33.118","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/891292d66392d8da0e92cf38abcb108a69e33fb1714f7920448301b1aa5094d5/","label":"ThreatFox","domainType":"primary"},{"url":"https://clickfix.carsonww.com/domains/sdsentura.com","label":"ThreatFox","domainType":"other"},{"url":"https://infosec.exchange/@monitorsg/117111648765961305","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/103.225.191.191","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/101.53.228.61","label":"ThreatFox","domainType":"other"},{"url":"https://infosec.exchange/@monitorsg/117112666763880038","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/111.92.157.255","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/175.107.3.113","label":"ThreatFox","domainType":"other"},{"url":"https://greedybear.honeynet.org","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/018937753ffa1fdc88796297948d82cff81b0b0beb1dae0335417b178eb581f2/","label":"ThreatFox","domainType":"primary"},{"url":"https://clickfix.carsonww.com/domains/bolerkas.shop","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/bolerkas.sbs","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/games.ccsam.ca","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/guiapergamino.com","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/797bcd9813c2c4f11e3abde7b4806e0d81531eaeb68dfa98d3482b7c9174a61d/","label":"ThreatFox","domainType":"primary"},{"url":"https://clickfix.carsonww.com/domains/klaragolez.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/exosia.ir","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/campfire-hospitality.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/www.bodycarer.xyz","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/formulaconsultoria.com.br","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/marjanalkhair.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/laboralmente.es","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/www.fabienne-mercier.fr","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/jzlightshow.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/harapouya.ir","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/realworldgrappling.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/koontyme.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/pptrans.sk","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/mpdumont.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/bventuretech.com.my","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/www.brefconcept.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/www.artemretouching.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/cyeller.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/ervindaneshazma.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/elitegorka.ru","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/archevive.fr","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/hbbuilding.vn","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/estudiogurugu.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/www.theatrecharbon.fr","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/www.sandomenicoets.it","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/www.statusplan.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/zetaclinic.it","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/ruthene-coachin.fr","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/leadvisiontw.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/ultraanalogic.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/journal-lb.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/savanamining.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/www.locksmithmn247.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/www.maketechnology.sk","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/oraville.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/lejardindunous.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/ejaz-sa.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/globalswissalliance.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/fccakebread.com","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/e2b6dbb5b5c44863df8e9e79a6c0d0c4d8fe7bfca346335fbfcd4dc6ca5f9010/","label":"ThreatFox","domainType":"primary"},{"url":"https://clickfix.carsonww.com/domains/apejese.org.br","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/smildner.de","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/www.smartbusiness.com.ec","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/windsorparknordic.ca","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/jbconstructionnyc.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/www.depannage-serrurier-91.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/ecomimperium.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/leitebrasil.com.br","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/www.havenpresents.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/purnama-4d.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/natuurlijkheidi.nl","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/modernfuji-ksa.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/chumak.io","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/leadsforest.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/bodychekwellness.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/helpgrandparents.org","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/172.168.179.87","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/139.135.45.135","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/shereegardnercogan.com","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/41a0fee35a8894c4ea476ea17f212ea0b08ec55cfe2e8caab209dd6015fcb3dc/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/fd7c3d18e60405f94ab0ae1aeccd609b803da3850e9950bc5104a646756db943/","label":"ThreatFox","domainType":"primary"},{"url":"https://clickfix.carsonww.com/domains/www.phonglong.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/simple88.net","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/glaube.at","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/www.singaporecasinogames.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/www.carolinajane.net","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/zonreizen.nl","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/planetwearz.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/www.newyorkcasinohotels.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/ope.com.br","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/asquareengineering.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/www.shaikhsalman.net","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/www.moqolobeaute.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/www.sudanfacts.org","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/pixs.jp","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/adlerbach.de","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/www.optimeg.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/www.talcgrindingmill.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/gbs-guinee.com","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/124.29.247.93","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/153.117.37.83","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/110.38.210.180","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/b41017f98f93938550a6655981a500ca5a5a97ea9503e3de89948f8d3cab057b/","label":"ThreatFox","domainType":"primary"},{"url":"https://honeylabs.net/lookup/105.224.117.178","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/125.42.11.109","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/69e6463c87739f2d4d0b345ba5f8954070926b13a43176a50ca4a8d7b64e3676/","label":"ThreatFox","domainType":"primary"},{"url":"https://clickfix.carsonww.com/domains/amanahkita.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/svtelindia.in","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/d5a72f54e4cea54ef1bd5ec023e4c62420c8f6a18098495babd4616b65b11718/","label":"ThreatFox","domainType":"primary"},{"url":"https://clickfix.carsonww.com/domains/pateriyaconsulting.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/loepaord.xyz","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/hermanoscalatayud.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/ikbenymp.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/thewadi.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/www.stateofwellness.org","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/multyshades.com","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/af12a273133b646805713254ad2012c5708be375c9dd1a3b11b3c2dd5811bc8c/","label":"ThreatFox","domainType":"primary"},{"url":"https://clickfix.carsonww.com/domains/avtomoyka.kiev.ua","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/kodech.fr","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/alwhda.se","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/www.devloerenboerderij.nl","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/absoluteav.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/mathabane.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/www.collomb.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/bellablumaternity.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/moleroos.pro","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/sparkwords.com","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/malware.dovgertz.com","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/85cd6c3229f9ab547cc54f2cbdcf6ef2937987c0181e5ffa3c4205105df8e8fe/","label":"ThreatFox","domainType":"primary"},{"url":"https://clickfix.carsonww.com/domains/www.kentertiyatrosu.org","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/www.mkperinat.com","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/ff8235089a02e71d422a0c227f177f14052b58d1558324a6001ded65418bb498/","label":"ThreatFox","domainType":"primary"},{"url":"https://clickfix.carsonww.com/domains/samid.com.br","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/470a41a0a6c204ac849fd7d224d81983fec2f27e91376a5025a6002508801639/","label":"ThreatFox","domainType":"primary"},{"url":"https://honeylabs.net/lookup/153.117.15.132","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/101.53.225.41","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/59.96.138.214","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/103.194.92.132","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/27.215.177.136","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/202.47.57.122","label":"ThreatFox","domainType":"other"},{"url":"https://urlquery.net/report/6f2942db-f30a-4faa-8fea-728840beebed","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/139.135.40.141","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/153.117.8.152","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/103.68.31.233","label":"ThreatFox","domainType":"other"},{"url":"https://x.com/skocherhan/status/2088682699129024911","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/61.173.162.42","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/103.26.86.217","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/1db6b60a7989a6c1dbba63d5a78463f5a4d4fbff75af27c281e1a93a11bfe4ad/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/c9698c118c2ba58fb2c7944354687333bd4f0d58ce5b6710920cdfa682bc9944/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/89a76ee1536416b632ddbfa183e001a875aea23fd30757fc21c3e4605431d942/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/250f9079f4018c6c1fed92b09b91e75222790a5f59379c4b7cb3185a9014f246/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/b4e869d592baf4370f850cbe71c7ae653ac1078646ef6633a4e769f6752b4d2e/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/cb1e15a47e40e7e1886531b829f4061c60b73ba4937e9161b4fc1fef846dfddb/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/997acaae90f21aebb154b75c2b2c787fa49e8d3d0cdf5c5893d6f7ddbb3d67b6/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/4b00c7ebad267025b84e7b4d1c996eaefec34a065913d73ee0070b119217d1be/","label":"ThreatFox","domainType":"primary"},{"url":"https://clickfix.carsonww.com/domains/cuuwa.ca","label":"ThreatFox","domainType":"other"},{"url":"https://theravenfile.com/2026/08/14/majinahanashi-ransomware-another-japanese-locker/","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/153.117.13.202","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/39.34.166.87","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/218.0.112.226","label":"ThreatFox","domainType":"other"},{"url":"https://infosec.exchange/@monitorsg/117095511868487413","label":"ThreatFox","domainType":"other"},{"url":"https://infosec.exchange/@monitorsg/117095683249617990","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/223.123.71.152","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/111.127.232.94","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/223.123.42.233","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/14.1.107.87","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/105.186.143.37","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/223.123.44.116","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/e65d6b1b86a1cca7c2290f1930306c47dded097c547878d1bad9fbf94a58ecc8/","label":"ThreatFox","domainType":"primary"},{"url":"https://honeylabs.net/lookup/144.48.132.151","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/153.117.6.98","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/14.205.104.200","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/172.168.171.137","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/144.48.134.114","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/lagerraum-mieten-luzern.ch","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/32c92e3a2f50c0d2e64bfaf78c6221de95cc23d4ca22045c70c8e237c60cf29f/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/cfabae2edf939f81d3fea8a50ba20555639cebd70afb58e0b2c18f820b75a9d0/","label":"ThreatFox","domainType":"primary"},{"url":"https://clickfix.carsonww.com/domains/flexsportpools.com","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/32c046428fa2df75cd8b454cfa6831930261f8e6f7c15e1adda189d15ba96d11/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/769c5186f40c16fa4e4871bf488301c01e89e3e94f1244f979e1b12b7f244ded/","label":"ThreatFox","domainType":"primary"},{"url":"https://clickfix.carsonww.com/domains/blaze-x.com","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/460001cd92917d1c8d4e538d0ec367abf02e6533e357083a8382a1e41f7be5ce/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/57478a0f3dcf4df1c96dbb3cd9aa3b255814bd3a4185bf90ba768eb28b471797/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/4f8b3ce56a567f4d1f5a3e4ef0fedcdfad707bfc1b4234397da600f8e2e32316/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/514fa7786356f49ad0e1164fec6fcfb3c2759db9c069beac2f89baa804f7d5fe/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/ad1f1c29707bba2a41e9d964abb63ff0dc764ea98c3e2a1e38a39dd2c7bcfd6b/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/1d118a9482bb8f30bb53c18c8441d5aa8b21ee823206c630238edf0f99ec568e/","label":"ThreatFox","domainType":"primary"},{"url":"https://clickfix.carsonww.com/domains/vuaketdinh.com","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/9fca5fad86800ea321191a1744a455d0d376d85970e9ae5781506292276f1a4a/","label":"ThreatFox","domainType":"primary"},{"url":"https://clickfix.carsonww.com/domains/wvtransportes.com.br","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/tkst.ac.th","label":"ThreatFox","domainType":"other"},{"url":"https://clickfix.carsonww.com/domains/www.thefootix.net","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/f3d0793c72028ec204e86a6156ed537433bd6d4dd1a020f90d7caa89b2d38e83/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/498a5fedae9ec61339e1003a47f67834fb51a10866129b7228dcc16fa863e936/","label":"ThreatFox","domainType":"primary"},{"url":"https://clickfix.carsonww.com/domains/befaes.mom","label":"ThreatFox","domainType":"other"},{"url":"https://bazaar.abuse.ch/sample/23437ab4e1de0de7907be7b9ba43454d85be19e4ff5476ae9154e6fe1cab922b/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/d93f8957f5467e4ba5bf1f6ea0fa38c4e9d22f1b8eb94baf74212b1405adaa3c/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/61366dc491bce133ceaeb4f1e93250b85431f99e9b5411ebea36c3f25a9b7467/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/e61dd367859cf5e495a86ecaa7fa084ae84c1e38a049a68e03813e657651b192/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/5334ab4eafeb63eaeab2d69bdfedf38cb92ed5d88dfe96564171cdfa22e3da17/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/9d435f7547926c1259d52301f8d95a28b0e39c0275a47d3b0e42cc81ef72e252/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/1a2f081585e05540a72ceb36178f9549ff5bc3c6505fddb6565b887aa55f54a3/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/97846a49e8314d0d097da1590e04decb5e1570fdaf27157c91e211038dd5eeeb/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/71aa9766db343fa5de8e83e8d8eef912df3f7396116cd7ceef34631dd46ea2ad/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/92f8f069c032422eb6048ce1a648bd140dab9d3cfca5c855e2b56e1ac6f1cc7b/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/63963fc9dede449e5e40520f6c40e34888ef2cc0fa459772437ec6b69f44267e/","label":"ThreatFox","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/191dccb04b3a98cf557a8bd994c6b8df433782653a3fa445bfa86ad5e6a5928a/","label":"ThreatFox","domainType":"primary"},{"url":"https://urlquery.net/queue/8565a541-dff7-49ef-9d5b-6778be8ab6ae","label":"ThreatFox","domainType":"other"},{"url":"https://urlquery.net/report/b17f966b-a7e8-4ab2-b17b-df77d504294a","label":"ThreatFox","domainType":"other"},{"url":"https://urlquery.net/queue/e2cf8499-4168-451f-b4a6-6a9e52b0a0f7","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/202.63.202.222","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/175.107.221.53","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/72.255.32.20","label":"ThreatFox","domainType":"other"},{"url":"https://lazarus.day/iocs/107.172.249.140/","label":"ThreatFox","domainType":"other"},{"url":"https://otx.alienvault.com/pulse/6a7e3df9ee68883c34577fe1","label":"ThreatFox","domainType":"primary"},{"url":"https://www.virustotal.com/gui/file/3c602fcb3fc8cecffc99454fa64e9ff28182d13b280055e4dce30d31210cb2f2","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/105.184.49.165","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/36.70.68.244","label":"ThreatFox","domainType":"other"},{"url":"https://honeylabs.net/lookup/115.50.94.75","label":"ThreatFox","domainType":"other"}],"feedLabel":null},{"id":"otx-6a8322da43ee19a9f60899af","source":"otx","category":"threat-intel","severity":"critical","title":"C2Looper: A New Backdoor Likely Tied To Ransomware With GitHub C2","description":"In July 2026, a new Rust-based malware family called C2Looper was identified, likely used by ransomware-related threat actors. The malware is assessed with low to medium confidence to be delivered through multi-stage ClickFix infection chains. C2Looper provides backdoor capabilities including remote…","indicators":{"cves":[],"ips":["45.158.196.184","45.158.196.23"],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":"20675a659c338f7267fd09bacb431f4491f061d3acf42d07aca2dec3d25fa549"}},"tags":["github c2","backdoor","clickfix","oyster","initial access broker","lactrodectus","rust-based","dll sideloading","c2looper","ransomware","botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T15:03:54.257Z","fetchedAt":"2026-08-21T03:00:01.555Z","references":[{"url":"https://otx.alienvault.com/pulse/6a8322da43ee19a9f60899af","label":"OTX Pulse","domainType":"primary"}],"feedLabel":null},{"id":"otx-6a8325c63ec6c1f8d93275f6","source":"otx","category":"threat-intel","severity":"critical","title":"Projextor: Abusing Electron in Trojanized Productivity Applications","description":"Projextor is a malware campaign that leverages Electron-based productivity applications to deliver malicious payloads. The threat disguises itself as legitimate document converters, meal planners, and PDF management tools with working user interfaces. Distribution occurs through impersonating websit…","indicators":{"cves":[],"ips":[],"domains":["pdfgrip.com","doceditor.in","doceditorinc.com","flipformatpdf.com","meal-formula.com","conv.doceditorinc.com"],"urls":["https://flipformatpdf.com/","https://kitchen-canvas.com/","https://pdfgrip.com/","https://conv.doceditorinc.com/latest/part","https://doceditor.in","https://doceditorinc.com","https://doceditorinc.com/","https://meal-formula.com/"],"hashes":{"md5":"b648ec0880e9f5421fdb380e620b6173","sha1":"f7a060bc408acfb14ce59e40710b630291c76540","sha256":"e7bc36c7345b3894bc1da3d18ff3dbf0a20713d17b93a585ac0da65776d29027"}},"tags":["javascript execution","trojanized software","impersonation websites","desktop capture","projextor","productivity applications","tamperedchef","electron framework"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T15:16:22.093Z","fetchedAt":"2026-08-21T03:00:01.555Z","references":[{"url":"https://otx.alienvault.com/pulse/6a8325c63ec6c1f8d93275f6","label":"OTX Pulse","domainType":"primary"}],"feedLabel":null},{"id":"news-critical-elementor-pro-bug-exposes-wordpress-sites-to-rce-attacks","source":"general-news","category":"news","severity":"critical","title":"Critical Elementor Pro bug exposes WordPress sites to RCE attacks","description":"A critical vulnerability in the Elementor Pro WordPress plugin could allow attackers to upload executable files for remote code execution on the server. [...]","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:39:48.000Z","fetchedAt":"2026-08-21T03:00:02.308Z","references":[{"url":"https://www.bleepingcomputer.com/news/security/critical-elementor-pro-bug-exposes-wordpress-sites-to-rce-attacks/","label":"BleepingComputer","domainType":"media"}],"feedLabel":null},{"id":"news-critical-zimbra-rce-flaw-now-actively-exploited-in-attacks","source":"general-news","category":"news","severity":"critical","title":"Critical Zimbra RCE flaw now actively exploited in attacks","description":"CERT Polska, the Polish Computer Emergency Response Team (CERT), warned that attackers have begun exploiting a critical vulnerability in Zimbra Collaboration Suite (ZCS). [...]","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T09:46:54.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.bleepingcomputer.com/news/security/critical-zimbra-rce-flaw-now-actively-exploited-in-attacks/","label":"BleepingComputer","domainType":"media"}],"feedLabel":null},{"id":"news-rogue-ransomware-affiliate-poses-as-recovery-firm-to-steal-payments","source":"general-news","category":"news","severity":"critical","title":"Rogue ransomware affiliate poses as recovery firm to steal payments","description":"A suspected ransomware affiliate is posing as a ransomware recovery service called \"Ransom Busters,\" contacting the victims before the attacks become public and claiming to be able to provide decryption keys and delete stolen data for a fee. [...]","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:59:58.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.bleepingcomputer.com/news/security/rogue-ransomware-affiliate-ransom-busters-poses-as-recovery-firm/","label":"BleepingComputer","domainType":"media"}],"feedLabel":null},{"id":"news-threatsday-gogs-10-0-rce-n8n-workflow-to-rce-10m-reward-glm-5-3-ai-exploit-and-m","source":"general-news","category":"news","severity":"critical","title":"ThreatsDay: Gogs 10.0 RCE, n8n Workflow-to-RCE, $10M Reward, GLM-5.3 AI Exploit and More","description":"A lot of this week’s trouble starts with something trusted doing exactly what it was allowed to do.\n\nSigned drivers get turned against defenses. Legitimate apps help malware blend in. A weak header check opens a path to code execution. Elsewhere, exposed systems, old bugs, odd hiding tricks, and AI-…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:23:48.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/threatsday-gogs-100-rce-n8n-workflow-to.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-isolated-vm-flaw-lets-sandboxed-javascript-escape-to-host-for-potential-rce","source":"general-news","category":"news","severity":"critical","title":"Isolated-vm Flaw Lets Sandboxed JavaScript Escape to Host for Potential RCE","description":"Cybersecurity researchers have disclosed a critical security flaw in isolated-vm, a popular open-source sandbox with more than 2,900 stars and 190 forks on GitHub, that could allow attackers to escape the confines of the isolated environment.\n\nThe vulnerability (\"GHSA-864f-rcv7-6rh4\"), which has yet…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T13:48:24.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/isolated-vm-flaw-lets-sandboxed.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-attackers-exploit-zimbra-snmp-flaw-for-unauthenticated-remote-code-execution","source":"general-news","category":"news","severity":"critical","title":"Attackers Exploit Zimbra SNMP Flaw for Unauthenticated Remote Code Execution","description":"A now-patched security flaw impacting Zimbra Collaboration (ZCS) has come under active exploitation in the wild, according to the Polish Computer Emergency Response Team (CERT Polska).\n\nThe vulnerability in question is CVE-2026-73570 (CVSS score: 8.9), which refers to a case of command injection tha…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T13:24:28.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/attackers-exploit-zimbra-snmp-flaw-for.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-elementor-pro-flaw-could-let-unauthenticated-attackers-upload-php-and-execute-co","source":"general-news","category":"news","severity":"critical","title":"Elementor Pro Flaw Could Let Unauthenticated Attackers Upload PHP and Execute Code","description":"Cybersecurity researchers have disclosed details of a critical flaw in the Elementor Pro WordPress plugin that, if successfully exploited, could lead to remote code execution.\n\nThe vulnerability, tracked as CVE-2026-32475, carries a CVSS score of 9.0 out of 10.0. It has been described as a case of u…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T06:04:34.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/elementor-pro-flaw-could-let.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-clop-linked-windchill-web-shell-decrypts-credentials-and-maps-engineering-data","source":"general-news","category":"news","severity":"critical","title":"Clop-Linked Windchill Web Shell Decrypts Credentials and Maps Engineering Data","description":"A JavaServer Pages (JSP) web shell deployed following the exploitation of a critical security flaw in PTC Windchill and FlexPLM servers is specifically designed for the enterprise Product Lifecycle Management (PLM) software, according to new findings from ReliaQuest.\n\nThe cybersecurity company chara…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T05:39:25.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/clop-linked-windchill-web-shell.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-ransom-busters-claims-it-hacked-ransomware-servers-asks-victims-for-up-to-60-000","source":"general-news","category":"news","severity":"critical","title":"Ransom Busters Claims It Hacked Ransomware Servers, Asks Victims for Up to $60,000","description":"A ransomware affiliate calling itself Ransom Busters has been spotted proactively sending emails to victim organizations and claims to delete stolen data from ransomware groups' servers in exchange for a fee ranging from $20,000 to $60,000.\n\n\"In these messages, the third-party offers to help the vic…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:58:16.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/ransom-busters-claims-it-hacked.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-cisa-flags-actively-exploited-ray-flaw-that-can-trigger-browser-based-rce","source":"general-news","category":"news","severity":"critical","title":"CISA Flags Actively Exploited Ray Flaw That Can Trigger Browser-Based RCE","description":"The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added a critical flaw impacting Ray to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation.\n\nRay is an open-source, Python-native distributed computing framework designed to scale artific…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T06:34:20.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/cisa-flags-actively-exploited-ray-flaw.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-forminator-wordpress-flaw-can-enable-unauthenticated-rce-via-malicious-php-uploa","source":"general-news","category":"news","severity":"critical","title":"Forminator WordPress Flaw Can Enable Unauthenticated RCE via Malicious PHP Uploads","description":"A critical security flaw has been disclosed in Forminator Forms, a WordPress plugin with more than 600,000 active installations, that could be exploited to achieve arbitrary code execution on susceptible sites.\n\nThe vulnerability, tracked as CVE-2026-15748, is rated 9.8 out of 10.0 on the CVSS scori…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T18:22:09.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/forminator-wordpress-flaw-can-enable.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-weekly-recap-vmware-exploits-windows-0-day-mcp-attacks-browser-hijacks-and-more","source":"general-news","category":"news","severity":"critical","title":"⚡ Weekly Recap: VMware Exploits, Windows 0-Day, MCP Attacks, Browser Hijacks and More","description":"The expensive attacks are not always the clever ones.\n\nThis week had plenty of proof. Exposed services got hit, old bugs found fresh use, browser sessions became attack paths, and supply-chain problems kept spreading farther than the original compromise. A lot of it came down to access that was alre…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["zeroday","supply-chain"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T13:23:51.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/weekly-recap-vmware-exploits-windows-0.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-unisoc-volte-video-call-exploit-chain-can-give-attackers-full-android-kernel-acc","source":"general-news","category":"news","severity":"critical","title":"Unisoc VoLTE Video Call Exploit Chain Can Give Attackers Full Android Kernel Access","description":"Security researchers at SSD Secure Disclosure have published a two-stage exploit chain that achieves full Android kernel access on devices running Unisoc modem firmware through a VoLTE video call, with no fix from the chipset maker.\n\nThe advisory, published August 17, 2026, is the second stage of a…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T10:52:34.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/unisoc-volte-video-call-exploit-chain.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-suspected-china-nexus-actor-exploits-vmware-vcenter-flaw-deploys-babuk-derived-r","source":"general-news","category":"news","severity":"critical","title":"Suspected China-Nexus Actor Exploits VMware vCenter Flaw, Deploys Babuk-Derived Ransomware","description":"Cybersecurity researchers have attributed the exploitation of a newly patched security flaw in Broadcom VMware vCenter to a suspected China-nexus advanced persistent threat (APT).\n\nThe attacks involve the exploitation of CVE-2026-59310 (CVSS score: 9.8), a severe directory-traversal vulnerability in…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware","apt"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T07:36:19.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/suspected-china-nexus-actor-exploits.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-mustang-panda-adds-signed-windows-rootkit-to-coolclient-backdoor-for-stealth","source":"general-news","category":"news","severity":"critical","title":"Mustang Panda Adds Signed Windows Rootkit to CoolClient Backdoor for Stealth","description":"The threat actor known as HoneyMyte (aka Mustang Panda) has been observed deploying an updated version of the CoolClient backdoor with a signed Windows kernel-mode rootkit that can hide and protect malicious processes, files, registry objects, and command-and-control (C2) network information.\n\nRussi…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["apt","botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T13:08:56.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/mustang-panda-adds-signed-windows.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-ransom-busters-ransomware-actor-poses-as-incident-recovery-service","source":"general-news","category":"news","severity":"critical","title":"'Ransom Busters': Ransomware Actor Poses as Incident-Recovery Service","description":"A ransomware affiliate appears to be sidling up to victims with offers of aid, masking its true intention of diverting ransom payments.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:00:00.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.darkreading.com/cyberattacks-data-breaches/ransom-busters-ransomware-actor-incident-recovery-service","label":"Dark Reading","domainType":"media"}],"feedLabel":null},{"id":"news-cisco-patches-critical-crosswork-secure-workload-vulnerabilities","source":"general-news","category":"news","severity":"critical","title":"Cisco Patches Critical Crosswork, Secure Workload Vulnerabilities","description":"The flaws could lead to remote code execution, authentication bypasses, and path traversal attacks.\nThe post Cisco Patches Critical Crosswork, Secure Workload Vulnerabilities appeared first on SecurityWeek.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T11:46:04.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.securityweek.com/cisco-patches-critical-crosswork-secure-workload-vulnerabilities/","label":"SecurityWeek","domainType":"media"}],"feedLabel":null},{"id":"news-over-500-critical-infrastructure-organizations-hit-by-medusa-ransomware","source":"general-news","category":"news","severity":"critical","title":"Over 500 Critical Infrastructure Organizations Hit by Medusa Ransomware","description":"The FBI warned that the RaaS operation has significantly enhanced its tactics, techniques and procedures, making it harder for defenders to counter","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T10:50:00.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.infosecurity-magazine.com/news/critical-infrastructure-medusa/","label":"InfoSecurity Magazine","domainType":"media"}],"feedLabel":null},{"id":"news-three-quarters-of-ransomware-attacks-target-mid-market-firms","source":"general-news","category":"news","severity":"critical","title":"Three-quarters of Ransomware Attacks Target Mid-Market Firms ","description":"Black Kite finds mid-market is the sweet spot for ransomware as manufacturers are most likely to be hit","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T10:00:00.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.infosecurity-magazine.com/news/threequarters-ransomware-attacks/","label":"InfoSecurity Magazine","domainType":"media"}],"feedLabel":null},{"id":"news-researchers-link-jewelbug-chinese-apt-to-hack-for-hire-operations","source":"general-news","category":"news","severity":"critical","title":"Researchers Link 'Jewelbug' Chinese APT to Hack-for-Hire Operations","description":"Threat intelligence researchers from Broadcom revealed that a known Chinese APT group may be linked to a lucrative crypto fraud operation","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["apt"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T07:30:00.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.infosecurity-magazine.com/news/researchers-link-chinese-apt-hack/","label":"InfoSecurity Magazine","domainType":"media"}],"feedLabel":null},{"id":"news-the-long-tail-of-clop-s-ptc-hack-is-just-beginning-to-emerge","source":"general-news","category":"news","severity":"critical","title":"The long tail of Clop’s PTC hack is just beginning to emerge","description":"The data theft extortion group likely compromised a critical vulnerability affecting PTC’s product lifecycle management software in June, a month before it sent threatening emails to victims.\nThe post The long tail of Clop’s PTC hack is just beginning to emerge appeared first on CyberScoop.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:30:52.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://cyberscoop.com/clop-zero-day-attacks-ptc-windchill-flexplm/","label":"CyberScoop","domainType":"media"}],"feedLabel":null},{"id":"news-medusa-ransomware-tallies-hundreds-of-new-victims-says-updated-advisory-on-group","source":"general-news","category":"news","severity":"critical","title":"Medusa ransomware tallies hundreds of new victims, says updated advisory on group’s tactics","description":"The updated warning from the FBI, CISA and HHS draws on a year’s worth of investigations to detail how the group gains initial access and what it does afterward.\nThe post Medusa ransomware tallies hundreds of new victims, says updated advisory on group’s tactics appeared first on CyberScoop.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T17:18:58.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://cyberscoop.com/medusa-ransomware-tactics-cisa-advisory/","label":"CyberScoop","domainType":"media"}],"feedLabel":null},{"id":"cisa-kev-CVE-2026-33824","source":"cisa-kev","category":"vulnerability","severity":"high","title":"CVE-2026-33824 — Microsoft Internet Key Exchange (IKE) Service Extensions Double Free Vulnerability","description":"Microsoft Internet Key Exchange (IKE) Service Extensions contains a double free vulnerability that could enable remote code execution.","indicators":{"cves":["CVE-2026-33824"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T00:00:00.000Z","fetchedAt":"2026-08-21T03:00:00.192Z","references":[{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-33824","label":"NVD","domainType":"primary"}],"feedLabel":null},{"id":"cisa-kev-CVE-2026-59310","source":"cisa-kev","category":"vulnerability","severity":"high","title":"CVE-2026-59310 — Broadcom VMware vCenter Path Traversal Vulnerability","description":"Broadcom VMware vCenter contains a path traversal vulnerability which could allow a threat actor with network access to vCenter to execute arbitrary code.","indicators":{"cves":["CVE-2026-59310"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T00:00:00.000Z","fetchedAt":"2026-08-21T03:00:00.192Z","references":[{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-59310","label":"NVD","domainType":"primary"}],"feedLabel":null},{"id":"cisa-kev-CVE-2026-55040","source":"cisa-kev","category":"vulnerability","severity":"high","title":"CVE-2026-55040 — Microsoft SharePoint Weak Authentication Vulnerability","description":"Microsoft SharePoint contains a weak authentication vulnerability which allows an unauthorized attacker to bypass a security feature over a network.","indicators":{"cves":["CVE-2026-55040"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T00:00:00.000Z","fetchedAt":"2026-08-21T03:00:00.192Z","references":[{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-55040","label":"NVD","domainType":"primary"}],"feedLabel":null},{"id":"cisa-kev-CVE-2026-65400","source":"cisa-kev","category":"vulnerability","severity":"high","title":"CVE-2026-65400 — Apple macOS Improper Authentication Vulnerability","description":"Apple macOS contains an improper authentication vulnerability that could allow an attacker on the network to authenticate to Screen Sharing without valid credentials.","indicators":{"cves":["CVE-2026-65400"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T00:00:00.000Z","fetchedAt":"2026-08-21T03:00:00.192Z","references":[{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-65400","label":"NVD","domainType":"primary"}],"feedLabel":null},{"id":"cisa-kev-CVE-2025-62593","source":"cisa-kev","category":"vulnerability","severity":"high","title":"CVE-2025-62593 — Ray-Project Ray Code Injection Vulnerability","description":"Ray-Project Ray contains a code injection vulnerability that could allow remote code execution. Developers using Ray as a development tool may be exposed to this vulnerability exploitable through Firefox and Safari.","indicators":{"cves":["CVE-2025-62593"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T00:00:00.000Z","fetchedAt":"2026-08-21T03:00:00.192Z","references":[{"url":"https://nvd.nist.gov/vuln/detail/CVE-2025-62593","label":"NVD","domainType":"primary"}],"feedLabel":null},{"id":"cisa-adv-johnson-controls-simplex-incident-manager","source":"cisa-advisories, vendor-blogs","category":"advisory","severity":"high","title":"Johnson Controls Simplex Incident Manager","description":"View CSAF\nSummary\nSuccessful exploitation of this vulnerability could allow a local attacker with low privileges to extract user credentials (passwords and authentication tokens) from system memory, potentially leading to unauthorized access to the application and connected systems.\nThe following ve…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["phishing","ics"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:00:00.000Z","fetchedAt":"2026-08-21T03:00:00.147Z","references":[{"url":"https://www.cisa.gov/news-events/ics-advisories/icsa-26-232-01","label":"CISA Advisory","domainType":"primary"}],"feedLabel":null},{"id":"cisa-adv-defending-against-an-active-threat-to-siemens-s7-series-plcs","source":"cisa-advisories","category":"advisory","severity":"high","title":"Defending Against an Active Threat to Siemens S7 Series PLCs","description":"Executive summary\nNote: This advisory relates to an active threat to Siemens S7 Series programmable logic controllers (PLCs). However, ongoing PLC targeting activity is broader than Siemens PLCs. All PLC owners and operators should apply relevant mitigations to reduce the risk to their devices and s…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ics","supply-chain"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T12:00:00.000Z","fetchedAt":"2026-08-21T03:00:00.147Z","references":[{"url":"https://www.cisa.gov/news-events/cybersecurity-advisories/aa26-231a","label":"CISA Advisory","domainType":"primary"}],"feedLabel":null},{"id":"cisa-adv-cisa-malcolm","source":"cisa-advisories, vendor-blogs","category":"advisory","severity":"high","title":"CISA Malcolm","description":"View CSAF\nSummary\nSuccessful exploitation of these vulnerabilities could allow an attacker to cause a denial-of-service condition or execute arbitrary code.\nThe following versions of CISA Malcolm are affected:\nMalcolm <26.06.1 (CVE-2026-55676)\nMalcolm <26.07.0 (CVE-2026-63133, CVE-2026-63134, CVE-20…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["phishing","ics"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:00:00.000Z","fetchedAt":"2026-08-21T03:00:00.147Z","references":[{"url":"https://www.cisa.gov/news-events/ics-advisories/icsa-26-230-01","label":"CISA Advisory","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-19757","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19757 — A vulnerability was found in Dromara lamp-cloud up to 5.10.0. This vulnerability affects unknown cod…","description":"A vulnerability was found in Dromara lamp-cloud up to 5.10.0. This vulnerability affects unknown code of the file FileAnyoneController.java of the component File-Upload Controller. Performing a manipulation of the argument bucket/bizType results in path traversal. The attack can be initiated remotel…","indicators":{"cves":["CVE-2026-19757"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T01:18:53.793Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/dromara/lamp-cloud/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/dromara/lamp-cloud/issues/412","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19757","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/868961","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389602","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389602/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19758","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19758 — A vulnerability was determined in dromara lamp-cloud up to 5.10.0. This issue affects some unknown p…","description":"A vulnerability was determined in dromara lamp-cloud up to 5.10.0. This issue affects some unknown processing of the file FileChunkController.java of the component chunk-check endpoint. Executing a manipulation of the argument Name can lead to path traversal. The attack can be launched remotely. The…","indicators":{"cves":["CVE-2026-19758"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T01:18:56.680Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/dromara/lamp-cloud/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/dromara/lamp-cloud/issues/413","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19758","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/868962","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389603","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389603/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19762","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19762 — A vulnerability was found in DTStack Taier 1.4.0. Affected by this vulnerability is the function Pat…","description":"A vulnerability was found in DTStack Taier 1.4.0. Affected by this vulnerability is the function Paths.ge of the file FileChunkController.java of the component Chunk-Check Endpoint. The manipulation of the argument Name results in path traversal. The attack may be launched remotely. The exploit has…","indicators":{"cves":["CVE-2026-19762"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T01:18:57.080Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/DTStack/Taier/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/DTStack/Taier/issues/1203","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19762","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/868966","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389665","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389665/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19764","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19764 — A vulnerability was identified in Raisecom Communication Command and Dispatch Management Platform up…","description":"A vulnerability was identified in Raisecom Communication Command and Dispatch Management Platform up to 7.6.5. This affects an unknown part of the file /app/users/getpwd.php. Such manipulation of the argument sip leads to sql injection. The attack can be executed remotely. The exploit is publicly av…","indicators":{"cves":["CVE-2026-19764"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T01:18:57.440Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://my.feishu.cn/docx/S80ddLulfolH8WxDbUJcdrGAnbg?from=from_copylink","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/cve/CVE-2026-19764","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/868986","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389667","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389667/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19771","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19771 — A vulnerability was identified in Baicells EG3661M BaiCE_BQ6_2.0.5.3_NA. This impacts an unknown fun…","description":"A vulnerability was identified in Baicells EG3661M BaiCE_BQ6_2.0.5.3_NA. This impacts an unknown function of the file /cgi-bin/luci of the component LuCI Web Interface. Such manipulation of the argument MaxHops/Timeout/Size leads to os command injection. The attack may be launched remotely. The expl…","indicators":{"cves":["CVE-2026-19771"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T02:16:24.903Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/actuator/cve/blob/main/Baicells/EG3661M.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19771","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/869362","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389685","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389685/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18109","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-18109 — The W3 Total Cache plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Comment Aut…","description":"The W3 Total Cache plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Comment Author Name in all versions up to, and including, 2.10.3 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts i…","indicators":{"cves":["CVE-2026-18109"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T03:16:19.363Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/w3-total-cache/tags/2.10.2/UserExperience_LazyLoad_Mutator.php#L162","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/w3-total-cache/tags/2.10.2/UserExperience_LazyLoad_Mutator.php#L403","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/w3-total-cache/tags/2.10.2/UserExperience_LazyLoad_Mutator.php#L85","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/w3-total-cache/tags/2.10.2/UserExperience_LazyLoad_Plugin.php#L116","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset/3635675/w3-total-cache/trunk/UserExperience_LazyLoad_Mutator.php","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?old_path=%2Fw3-total-cache/tags/2.10.3&new_path=%2Fw3-total-cache/tags/2.10.4","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&new=3635675%40w3-total-cache%2Ftags%2F2.10.4&old=3625062%40w3-total-cache%2Ftags%2F2.10.3","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/16ac73ae-6a0a-4c9b-8830-e0745061e587?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19788","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19788 — A vulnerability was found in Tenda AC1206 15.03.06.23_multi_TD01. This affects the function set_devi…","description":"A vulnerability was found in Tenda AC1206 15.03.06.23_multi_TD01. This affects the function set_device_name of the file /goform/SetOnlineDevName of the component httpd web management interface. The manipulation of the argument devName results in stack-based buffer overflow. The attack may be launche…","indicators":{"cves":["CVE-2026-19788"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T04:16:36.177Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/lipenghai/iot_bug/blob/main/Tenda/AC12/1.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19788","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/868913","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389755","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389755/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.tenda.com.cn/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19789","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19789 — A vulnerability was determined in Tenda AC1206 15.03.06.23_multi_TD01. This vulnerability affects th…","description":"A vulnerability was determined in Tenda AC1206 15.03.06.23_multi_TD01. This vulnerability affects the function set_wl_guest_iplist of the file /goform/WifiGuestSet of the component httpd web management interface. This manipulation of the argument shareSpeed causes stack-based buffer overflow. Remote…","indicators":{"cves":["CVE-2026-19789"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T04:16:40.620Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/lipenghai/iot_bug/blob/main/Tenda/AC12/2.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19789","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/868921","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389756","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389756/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.tenda.com.cn/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19790","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19790 — A vulnerability was identified in Tenda G0 up to 20260625. This issue affects the function formSetPo…","description":"A vulnerability was identified in Tenda G0 up to 20260625. This issue affects the function formSetPortMirror of the file /goform/module of the component httpd Web Management Interface. Such manipulation of the argument portMirrorMirroredPorts leads to stack-based buffer overflow. The attack can be e…","indicators":{"cves":["CVE-2026-19790"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T04:16:40.780Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/lipenghai/iot_bug/blob/main/Tenda/G0/1.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19790","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/868924","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389757","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389757/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.tenda.com.cn/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19791","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19791 — A weakness has been identified in Tenda G0 up to 20260625. The affected element is the function addS…","description":"A weakness has been identified in Tenda G0 up to 20260625. The affected element is the function addStaticRoute of the file /goform/module of the component httpd web management interface. Executing a manipulation of the argument staticRouteNet can lead to stack-based buffer overflow. The attack may b…","indicators":{"cves":["CVE-2026-19791"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T05:16:58.857Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/lipenghai/iot_bug/blob/main/Tenda/G0/2.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19791","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/868927","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389759","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389759/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.tenda.com.cn/","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/868927","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19792","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19792 — A security flaw has been discovered in Tenda G0 up to 20260625. Impacted is the function setPortMapp…","description":"A security flaw has been discovered in Tenda G0 up to 20260625. Impacted is the function setPortMapping of the file /goform/module of the component httpd web management interface. Performing a manipulation of the argument portMappingServer/porMappingtInternal/portMappingExternal results in buffer ov…","indicators":{"cves":["CVE-2026-19792"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T05:16:59.030Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/lipenghai/iot_bug/blob/main/Tenda/G0/3.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19792","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/868929","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389758","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389758/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.tenda.com.cn/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15205","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-15205 — The Paymob for WooCommerce WordPress plugin before 4.1.9 does not properly sanitise a client-supplie…","description":"The Paymob for WooCommerce WordPress plugin before 4.1.9 does not properly sanitise a client-supplied identifier before using it in a SQL query within its public, unauthenticated payment callback, and performs this query before verifying the payment provider's HMAC signature. This allows unauthentic…","indicators":{"cves":["CVE-2026-15205"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T06:16:59.727Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://wpscan.com/vulnerability/cbde48bb-5aa4-4f69-8101-095132239923/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18039","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-18039 — The Essential Addons for Elementor WordPress plugin before 6.7.2 does not prevent user-supplied regi…","description":"The Essential Addons for Elementor  WordPress plugin before 6.7.2 does not prevent user-supplied registration fields from overwriting reserved account attributes, allowing unauthenticated attackers to register an account with an arbitrary role, including administrator, on sites where a custom profil…","indicators":{"cves":["CVE-2026-18039"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T06:17:09.077Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://wpscan.com/vulnerability/2982ee81-3a85-435b-8347-a7848e99f373/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19811","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19811 — A security flaw has been discovered in TOTOLINK A800R 4.1.2cu.5137_B20200730. The impacted element i…","description":"A security flaw has been discovered in TOTOLINK A800R 4.1.2cu.5137_B20200730. The impacted element is the function setIpQosRules of the file /cgi-bin/cstecgi.cgi of the component firewall.so. The manipulation of the argument Comment results in stack-based buffer overflow. The attack can be executed…","indicators":{"cves":["CVE-2026-19811"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T07:16:52.627Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/panda666-888/vuls/blob/main/totolink/a800r/setIpQosRules.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19811","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/869425","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389947","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389947/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.totolink.net/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19794","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19794 — The WP-Stats plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to…","description":"The WP-Stats plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including, 2.56 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that will execute whenev…","indicators":{"cves":["CVE-2026-19794"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T08:17:38.130Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/wp-stats/vulnerability/wordpress-wp-stats-plugin-2-56-cross-site-scripting-xss-vulnerability","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/37471ecc-ee8f-4246-a126-b7b7013b5ceb?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19812","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19812 — A weakness has been identified in TOTOLINK A800R 4.1.2cu.5137_B20200730. This affects the function U…","description":"A weakness has been identified in TOTOLINK A800R 4.1.2cu.5137_B20200730. This affects the function UploadCustomModule of the file /cgi-bin/cstecgi.cgi of the component product.so. This manipulation of the argument File causes stack-based buffer overflow. The attack is possible to be carried out remo…","indicators":{"cves":["CVE-2026-19812"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T08:17:38.263Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/panda666-888/vuls/blob/main/totolink/a800r/UploadCustomModule.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19812","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/869428","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389948","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389948/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.totolink.net/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19813","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19813 — A security vulnerability has been detected in TOTOLINK A800R 4.1.2cu.5137_B20200730. This impacts th…","description":"A security vulnerability has been detected in TOTOLINK A800R 4.1.2cu.5137_B20200730. This impacts the function setMacFilterRules of the file /cgi-bin/cstecgi.cgi of the component firewall.so. Such manipulation of the argument Comment leads to stack-based buffer overflow. The attack may be performed…","indicators":{"cves":["CVE-2026-19813"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T08:17:38.427Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/panda666-888/vuls/blob/main/totolink/a800r/setMacFilterRules.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19813","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/869430","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389949","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389949/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.totolink.net/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19814","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19814 — A vulnerability was detected in TOTOLINK A800R 4.1.2cu.5137_B20200730. Affected is the function setM…","description":"A vulnerability was detected in TOTOLINK A800R 4.1.2cu.5137_B20200730. Affected is the function setMacQos of the file /cgi-bin/cstecgi.cgi of the component firewall.so. Performing a manipulation of the argument macAddress results in stack-based buffer overflow. It is possible to initiate the attack…","indicators":{"cves":["CVE-2026-19814"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T09:16:47.883Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/panda666-888/vuls/blob/main/totolink/a800r/setMacQos.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19814","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/869431","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389950","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389950/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.totolink.net/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19815","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19815 — A flaw has been found in TOTOLINK A800R 4.1.2cu.5137_B20200730. Affected by this vulnerability is th…","description":"A flaw has been found in TOTOLINK A800R 4.1.2cu.5137_B20200730. Affected by this vulnerability is the function setParentalRules of the file /cgi-bin/cstecgi.cgi of the component firewall.so. Executing a manipulation of the argument urlKeyword can lead to stack-based buffer overflow. It is possible t…","indicators":{"cves":["CVE-2026-19815"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T09:16:48.880Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/panda666-888/vuls/blob/main/totolink/a800r/setParentalRules.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19815","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/869442","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389951","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389951/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.totolink.net/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19821","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19821 — A vulnerability was determined in Tenda AC12 15.03.06.23_multi_TD01. This vulnerability affects the…","description":"A vulnerability was determined in Tenda AC12 15.03.06.23_multi_TD01. This vulnerability affects the function formSetRebootTimer of the file /goform/SetSysAutoRebbotCfg of the component httpd web management interface. This manipulation of the argument rebootTime causes buffer overflow. The attack may…","indicators":{"cves":["CVE-2026-19821"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T11:16:57.573Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/lipenghai/iot_bug/blob/main/Tenda/AC12/4.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19821","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/868922","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389954","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389954/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.tenda.com.cn/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19822","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19822 — A vulnerability was identified in Tenda W20E 15.11.0.6(1068_1546_841)_CN_TDC. This issue affects the…","description":"A vulnerability was identified in Tenda W20E 15.11.0.6(1068_1546_841)_CN_TDC. This issue affects the function lstAdd of the file /goform/editQos of the component QoS Edit. Such manipulation of the argument qosListConnecttedNum leads to stack-based buffer overflow. The attack may be launched remotely…","indicators":{"cves":["CVE-2026-19822"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T12:16:43.577Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/paueger/mycve/blob/main/Tenda_W20E/3.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19822","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/869006","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389955","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389955/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.tenda.com.cn/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72810","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72810 — SiYuan versions before v3.7.4 contain a publish-boundary bypass vulnerability in WebSocket broadcast…","description":"SiYuan versions before v3.7.4 contain a publish-boundary bypass vulnerability in WebSocket broadcast sessions that allows anonymous readers to receive unfiltered edits. Attackers can establish a WebSocket connection to the publish surface and passively receive real-time content events including pass…","indicators":{"cves":["CVE-2026-72810"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T12:16:43.760Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-mw8r-mw84-88v2","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/siyuan-before-publish-boundary-bypass-via-websocket","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-mw8r-mw84-88v2","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-72819","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72819 — Grav CMS before 2.0.13 contains a remote code execution vulnerability in the Flex Objects plugin set…","description":"Grav CMS before 2.0.13 contains a remote code execution vulnerability in the Flex Objects plugin settings validation that allows authenticated users to execute arbitrary code by uploading a ZIP file containing PHP code. Attackers can bypass routine name validation by using array notation instead of…","indicators":{"cves":["CVE-2026-72819"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T12:16:44.873Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-r94f-hx44-8jqf","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/grav-cms-before-remote-code-execution-via-zip-upload","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-r94f-hx44-8jqf","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-72825","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72825 — The getgrav/grav-plugin-api plugin before 1.0.13 contains an API-key scope cap bypass in the POST /r…","description":"The getgrav/grav-plugin-api plugin before 1.0.13 contains an API-key scope cap bypass in the POST /reports/twig-content/allowlist endpoint (ReportsController). The endpoint enforces requirePermission('api.config.write') followed by a bare isSuperAdmin() check instead of requireSuper(). Because isSup…","indicators":{"cves":["CVE-2026-72825"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T12:16:45.650Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-v5ph-7v92-wqm6","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/grav-before-api-key-scope-cap-bypass-via-reportscontroller","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-v5ph-7v92-wqm6","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-72827","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72827 — Grav CMS before 2.0.13 contains a server-side template injection vulnerability in email-action param…","description":"Grav CMS before 2.0.13 contains a server-side template injection vulnerability in email-action parameters that allows low-privileged page editors to execute arbitrary operating-system commands. Attackers can inject Twig payloads using the unsandboxed find filter in email subject, body, to, or from f…","indicators":{"cves":["CVE-2026-72827"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T12:16:45.907Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-xx48-97m4-h7qm","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/grav-cms-before-remote-code-execution-via-twig","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-xx48-97m4-h7qm","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-72828","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72828 — Grav Plugin API (getgrav/grav-plugin-api) before 1.0.13 fails to enforce API-key scope caps in Invit…","description":"Grav Plugin API (getgrav/grav-plugin-api) before 1.0.13 fails to enforce API-key scope caps in InvitationsController. The strip-super and accept-groups decisions are gated on a bare isSuperAdmin() check rather than a scope-aware permission check, so a least-privilege API key (scoped to api.users.wri…","indicators":{"cves":["CVE-2026-72828"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T12:16:46.030Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-wvpj-fg8h-843q","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/grav-before-api-key-scope-bypass-via-invitationscontroller","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72831","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72831 — The Flex Objects plugin (through 1.4.6, tested with Grav 2.0.11) contains an incorrect authorization…","description":"The Flex Objects plugin (through 1.4.6, tested with Grav 2.0.11) contains an incorrect authorization vulnerability in its Flex Objects API. FlexApiController::update() checks only the general Flex directory permission and does not apply the additional target/field/super-admin checks enforced by the…","indicators":{"cves":["CVE-2026-72831"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T12:16:46.400Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/getgrav/grav/commit/0b384f5b0e73b1ad9dd29c70185407895ea3b09f","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav/commit/8071c10bc3a4743a4b8cf003dfb1644d6680c2ea","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav/commit/a0bf26f7e5d7a98894b7cd2b8c5afe419b264e53","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav/commit/ad9709f865b09b68798fb1ac375b484a8cc1d892","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-pc8m-jxvh-vmrc","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/grav-through-authentication-bypass-via-flex-objects","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-pc8m-jxvh-vmrc","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-72833","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72833 — The Grav API plugin (getgrav/grav-plugin-api) versions >= 1.0.6 and <= 1.0.11 contain a privilege es…","description":"The Grav API plugin (getgrav/grav-plugin-api) versions >= 1.0.6 and <= 1.0.11 contain a privilege escalation vulnerability. A scoped API key minted on a super-admin account bypasses its declared scope cap on four isSuperAdmin()-gated write endpoints (in GroupsController, AccountsConfigController, Pr…","indicators":{"cves":["CVE-2026-72833"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T12:16:46.670Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-jqgq-v53x-x99g","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/grav-through-privilege-escalation-via-scoped-api-keys","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72836","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72836 — FileBrowser before 2.63.19 does not account for case-insensitive filesystems when checking home dire…","description":"FileBrowser before 2.63.19 does not account for case-insensitive filesystems when checking home directory ownership during self-registration. When Signup and CreateUserDir are enabled and FileBrowser's root is on a case-insensitive filesystem (confirmed on Windows/NTFS), two self-registered username…","indicators":{"cves":["CVE-2026-72836"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T12:16:47.060Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/filebrowser/filebrowser/commit/fe7efb2e6afe66774cd86a5b0a03033bd514d0c0","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/filebrowser/filebrowser/security/advisories/GHSA-576v-w77m-gr84","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/filebrowser-before-case-sensitivity-authentication-bypass","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/filebrowser/filebrowser/security/advisories/GHSA-576v-w77m-gr84","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-72837","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72837 — File Browser versions before 2.63.20 fail to honor the createUserDir isolation in proxy and hook aut…","description":"File Browser versions before 2.63.20 fail to honor the createUserDir isolation in proxy and hook authentication auto-provisioning paths. Attackers with valid upstream-authenticated credentials can read, modify, delete, and share files belonging to other users by exploiting the server root scope assi…","indicators":{"cves":["CVE-2026-72837"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T12:16:47.187Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/filebrowser/filebrowser/security/advisories/GHSA-j7jh-37pf-mf8h","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/file-browser-before-privilege-escalation-via-proxy-authentication","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72859","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72859 — Budibase versions 3.39.4 before 3.40.0 contain an authorization regression in the S3 attachment uplo…","description":"Budibase versions 3.39.4 before 3.40.0 contain an authorization regression in the S3 attachment upload endpoint that allows BASIC users to obtain S3 PutObject presigned URLs by sending POST requests to the attachments endpoint. The route was changed from a BUILDER permission check to a TABLE/WRITE c…","indicators":{"cves":["CVE-2026-72859"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T12:16:47.440Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/Budibase/budibase/security/advisories/GHSA-xcx6-4f2g-hhgx","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/budibase-before-authorization-regression-via-s3-presigned-url","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/Budibase/budibase/security/advisories/GHSA-xcx6-4f2g-hhgx","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-19823","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19823 — A security flaw has been discovered in Tenda W20E 15.11.0.6(1068_1546_841)_CN_TDC. Impacted is the f…","description":"A security flaw has been discovered in Tenda W20E 15.11.0.6(1068_1546_841)_CN_TDC. Impacted is the function formQOSRuleDel of the file /goform/delQos of the component QoS Rule Deletion. Performing a manipulation of the argument qosIndex results in stack-based buffer overflow. Remote exploitation of…","indicators":{"cves":["CVE-2026-19823"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T13:17:37.763Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/paueger/mycve/blob/main/Tenda_W20E/4.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19823","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/869021","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389956","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389956/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.tenda.com.cn/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19824","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19824 — A weakness has been identified in Tenda W20E 15.11.0.6(1068_1546_841)_CN_TDC. The affected element i…","description":"A weakness has been identified in Tenda W20E 15.11.0.6(1068_1546_841)_CN_TDC. The affected element is the function ipMacBindListStore of the file /goform/addIpMacBind. Executing a manipulation of the argument IPMacBindRule can lead to stack-based buffer overflow. The attack can be executed remotely.…","indicators":{"cves":["CVE-2026-19824"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T13:17:37.960Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/paueger/mycve/blob/main/Tenda_W20E/5.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19824","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/869024","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389957","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389957/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.tenda.com.cn/","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/869024","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19825","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19825 — A security vulnerability has been detected in SourceCodester Simple Client Management System 1.0. Th…","description":"A security vulnerability has been detected in SourceCodester Simple Client Management System 1.0. The impacted element is an unknown function of the file /classes/Master.php?f=save_service. The manipulation of the argument ID leads to sql injection. The attack is possible to be carried out remotely.…","indicators":{"cves":["CVE-2026-19825"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T13:17:38.150Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/lyf3273/CVE/issues/3","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19825","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/869618","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389958","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389958/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.sourcecodester.com/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19826","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19826 — A vulnerability was detected in alldatacenter alldata up to 0.6.8. This affects the function Hessian…","description":"A vulnerability was detected in alldatacenter alldata up to 0.6.8. This affects the function Hessian2Input.readObject of the file /serialize/impl/HessianSerializer.java of the component xxl-rpc Listener. The manipulation results in deserialization. The attack may be performed from remote. The exploi…","indicators":{"cves":["CVE-2026-19826"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T13:17:38.333Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/alldatacenter/alldata/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/alldatacenter/alldata/issues/832","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19826","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/870236","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389959","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389959/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://github.com/alldatacenter/alldata/issues/832","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-73673","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73673 — Netis NC63 router firmware V3.0.0.3327 contains an unauthenticated firmware update vulnerability tha…","description":"Netis NC63 router firmware V3.0.0.3327 contains an unauthenticated firmware update vulnerability that allows unauthenticated attackers to submit unsigned firmware images by exploiting a missing authentication enforcement flaw in the Boa web server and netis.cgi CGI dispatcher. Attackers can send a m…","indicators":{"cves":["CVE-2026-73673"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T13:19:09.573Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/ozcanpng/CVE-2026-73673","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://ozcanpng.dev/blog/cve-2026-73673-netis-nc63-unauthenticated-firmware-update/","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://www.netis-systems.com/products/NC63.html","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://www.netis-systems.com/support/downinfo.html?id=35","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://www.vulncheck.com/advisories/netis-nc63-unauthenticated-firmware-update-with-missing-cryptographic-firmware-authentication","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19768","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19768 — Improper control of generation of code ('Code Injection') in the settings feature in Devolutions Pow…","description":"Improper control of generation of code ('Code Injection') in the settings feature in Devolutions PowerShell Universal 2026.2.3 and earlier allows an authenticated user with settings management permission to execute arbitrary PowerShell code via a crafted setting value that is not properly escaped wh…","indicators":{"cves":["CVE-2026-19768"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T14:16:50.473Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://devolutions.net/security/advisories/DEVO-2026-0028/","label":"security@devolutions.net","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73633","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73633 — Uncontrolled resource consumption vulnerability in the JSON plugin of Apache Struts. When an applica…","description":"Uncontrolled resource consumption vulnerability in the JSON plugin of Apache Struts. When an application is configured to populate actions from a JSON request body, the plugin reads that body into memory without bounding how much it will accept, so a single request can exhaust the heap and deny serv…","indicators":{"cves":["CVE-2026-73633"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T14:16:51.997Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://cwiki.apache.org/confluence/display/WW/S2-072","label":"security@apache.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-69101","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-69101 — Datavane TIS v5.0.0 contains an XML external entity (XXE) injection vulnerability that allows authen…","description":"Datavane TIS v5.0.0 contains an XML external entity (XXE) injection vulnerability that allows authenticated attackers to perform server-side request forgery and out-of-band file exfiltration by supplying a crafted taskScript payload to the doEditWorkflow endpoint, which processes XML through an unha…","indicators":{"cves":["CVE-2026-69101"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T15:17:10.053Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/datavane/tis","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/datavane/tis/commit/2a84a1b84218a303e3e0a4823023363d5a7abfa1","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/datavane/tis/issues/496","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/datavane-tis-xxe-injection-via-doeditworkflow-endpoint","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/datavane/tis/issues/496","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-16772","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-16772 — In Akaunting versions <= 3.1.21, low‑privileged authenticated users can modify their own account to…","description":"In Akaunting versions <= 3.1.21, low‑privileged authenticated users can modify their own account to assign themselves the admin role ID, granting full administrator privileges. This vulnerability is caused by a flaw in the `UpdateUser` job, which processes user-supplied role assignments via an uncon…","indicators":{"cves":["CVE-2026-16772"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T16:16:50.290Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://vokecyber.com/research/cve-2026-16772-akaunting-privilege-escalation","label":"cret@cert.org","domainType":"other"},{"url":"https://vokecyber.com/research/cve-2026-16772-akaunting-privilege-escalation","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-53970","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-53970 — ZeroBrew version 0.3.1 and prior contains a missing integrity verification vulnerability in the Ruby…","description":"ZeroBrew version 0.3.1 and prior contains a missing integrity verification vulnerability in the Ruby compatibility shim that allows network attackers to execute arbitrary code by substituting malicious content at formula resource or URL-based patch URLs without checksum validation. Attackers can int…","indicators":{"cves":["CVE-2026-53970"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T16:16:57.073Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/lucasgelfond/zerobrew","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/lucasgelfond/zerobrew/commit/89a60b73c7edd6b662e2a085be3d981b6ebeb1aa","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/zerobrew-version-and-prior-missing-checksum-verification-rce-via-shim-rb","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-63700","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-63700 — Dell Wyse Management Suite (WMS), versions prior to 2605.0.2, contain an Incorrect Default Permissio…","description":"Dell Wyse Management Suite (WMS), versions prior to 2605.0.2, contain an Incorrect Default Permission vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Privilege Escalation.","indicators":{"cves":["CVE-2026-63700"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T16:16:58.553Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://www.dell.com/support/kbdoc/en-us/000493271/dsa-2026-329-security-update-for-dell-wyse-management-suite-wms-for-multiple-vulnerabilities","label":"security_alert@emc.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66270","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-66270 — Dell Wyse Management Suite (WMS), versions prior to 2605.0.2, contain an Unrestricted Upload of File…","description":"Dell Wyse Management Suite (WMS), versions prior to 2605.0.2, contain an Unrestricted Upload of File with Dangerous Type vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Remote Code Execution.","indicators":{"cves":["CVE-2026-66270","CVE-2026-66271"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T16:16:58.913Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://www.dell.com/support/kbdoc/en-us/000493271/dsa-2026-329-security-update-for-dell-wyse-management-suite-wms-for-multiple-vulnerabilities","label":"security_alert@emc.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19628","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19628 — A command injection vulnerability exists in Tenable Security Center. An authenticated administrator…","description":"A command injection vulnerability exists in Tenable Security Center. An authenticated administrator could modify application configuration values to achieve arbitrary command execution on the underlying operating system when specific backend operations are triggered.","indicators":{"cves":["CVE-2026-19628"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T17:17:31.110Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://www.tenable.com/security/tns-2026-22","label":"vulnreport@tenable.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19844","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19844 — A vulnerability was found in TOTOLINK A800R 4.1.2cu.5137_B20200730. The impacted element is the func…","description":"A vulnerability was found in TOTOLINK A800R 4.1.2cu.5137_B20200730. The impacted element is the function setRadvdCfg of the file /cgi-bin/cstecgi.cgi of the component ipv6.so. Performing a manipulation of the argument radvdinterfacename results in stack-based buffer overflow. It is possible to initi…","indicators":{"cves":["CVE-2026-19844"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T17:17:35.560Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/panda666-888/vuls/blob/main/totolink/a800r/setRadvdCfg.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19844","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/869443","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389980","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389980/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.totolink.net/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19845","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19845 — A vulnerability was determined in TOTOLINK A800R 4.1.2cu.5137_B20200730. This affects the function s…","description":"A vulnerability was determined in TOTOLINK A800R 4.1.2cu.5137_B20200730. This affects the function setStaticDhcpConfig of the file /cgi-bin/cstecgi.cgi of the component lan.so. Executing a manipulation of the argument Comment can lead to stack-based buffer overflow. It is possible to launch the atta…","indicators":{"cves":["CVE-2026-19845"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T17:17:35.753Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/panda666-888/vuls/blob/main/totolink/a800r/setStaticDhcpConfig.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19845","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/869454","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389981","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389981/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.totolink.net/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-46380","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-46380 — compliance-trestle is a tooling platform for managing compliance as code. Prior to versions 3.12.2 a…","description":"compliance-trestle is a tooling platform for managing compliance as code. Prior to versions 3.12.2 and 4.0.3, the HTTPSFetcher._do_fetch() method passes a user-supplied URL directly to requests.get() without validation. This allows an attacker to perform Server-Side Request Forgery, targeting intern…","indicators":{"cves":["CVE-2026-46380","CVE-2026-46345"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T17:18:14.710Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/oscal-compass/compliance-trestle/commit/53de5e75332888ea54f5da41d4c7859bb1d608e1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/oscal-compass/compliance-trestle/commit/5c65c5926fe7ca908b9c1d281f904e7d97ba8310","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/oscal-compass/compliance-trestle/security/advisories/GHSA-w76h-q7c6-jpjp","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/pypa/advisory-database/tree/main/vulns/compliance-trestle/PYSEC-2026-2427.yaml","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/oscal-compass/compliance-trestle/commit/247fcce289f60103f3d8e28d8ec51a6986b94fb6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/oscal-compass/compliance-trestle/commit/7d107b3ac53caca7bde97a6278b23cd739d94525","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/oscal-compass/compliance-trestle/security/advisories/GHSA-4q5v-7g7x-j79w","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/pypa/advisory-database/tree/main/vulns/compliance-trestle/PYSEC-2026-2423.yaml","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-46439","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-46439 — compliance-trestle is a tooling platform for managing compliance as code. Versions prior to 3.12.2 a…","description":"compliance-trestle is a tooling platform for managing compliance as code. Versions prior to 3.12.2 and 4.0.3 have a Server-Side Template Injection (SSTI) vulnerability exists in the `trestle author jinja` command. The command recursively evaluates rendered templates, allowing an attacker to achieve…","indicators":{"cves":["CVE-2026-46439"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T17:18:14.853Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/oscal-compass/compliance-trestle/commit/247fcce289f60103f3d8e28d8ec51a6986b94fb6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/oscal-compass/compliance-trestle/commit/7d107b3ac53caca7bde97a6278b23cd739d94525","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/oscal-compass/compliance-trestle/security/advisories/GHSA-gg2g-p7xc-qqmm","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/pypa/advisory-database/tree/main/vulns/compliance-trestle/PYSEC-2026-2425.yaml","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/oscal-compass/compliance-trestle/security/advisories/GHSA-gg2g-p7xc-qqmm","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-46603","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-46603 — VP8L decoding in golang.org/x/image/vp8l can allocate an excessive amount of memory when processing…","description":"VP8L decoding in golang.org/x/image/vp8l can allocate an excessive amount of memory when processing a crafted VP8L image containing many unused Huffman tree groups. This allows a remote attacker to cause a denial of service via memory exhaustion.","indicators":{"cves":["CVE-2026-46603"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T17:18:15.307Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://go.dev/cl/793460","label":"security@golang.org","domainType":"other"},{"url":"https://go.dev/issue/80069","label":"security@golang.org","domainType":"other"},{"url":"https://pkg.go.dev/vuln/GO-2026-6222","label":"security@golang.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-12364","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-12364 — The user-space system-call verifier z_vrfy_z_log_msg_static_create() in subsys/logging/log_msg.c was…","description":"The user-space system-call verifier z_vrfy_z_log_msg_static_create() in subsys/logging/log_msg.c was a pure pass-through: it forwarded the caller-supplied source, desc, package, and data arguments directly to the kernel-mode implementation z_impl_z_log_msg_static_create() without performing any of t…","indicators":{"cves":["CVE-2026-12364"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T18:17:21.820Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/zephyrproject-rtos/zephyr/commit/77aa26d8b940f39778154f02563caf15d02efdac","label":"vulnerabilities@zephyrproject.org","domainType":"primary"},{"url":"https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-h7rf-g9mg-g23f","label":"vulnerabilities@zephyrproject.org","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-12366","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-12366 — Zephyr's dynamic kernel-object disposal path unref_check() in kernel/userspace/userspace.c frees an…","description":"Zephyr's dynamic kernel-object disposal path unref_check() in kernel/userspace/userspace.c frees an object's storage (k_free(dyn->data)) once its reference count reaches zero, after running a per-object-type cleanup. The cleanup switch handled only K_OBJ_MSGQ and K_OBJ_STACK; there was no K_OBJ_TIME…","indicators":{"cves":["CVE-2026-12366"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T18:17:22.043Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/zephyrproject-rtos/zephyr/commit/1e68351a2572f9ae480be71da4aca9aa90db3fb2","label":"vulnerabilities@zephyrproject.org","domainType":"primary"},{"url":"https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-x96g-542c-gccq","label":"vulnerabilities@zephyrproject.org","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-19629","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19629 — A privilege escalation vulnerability exists in Tenable Security Center that allows a user with \"Secu…","description":"A privilege escalation vulnerability exists in Tenable Security Center that allows a user with \"Security Manager\" role and \"manage user\" permission on a single group to modify users belonging to other groups. This bypasses the intended access control restrictions and enables unauthorized cross-group…","indicators":{"cves":["CVE-2026-19629"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T18:17:22.557Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://www.tenable.com/security/tns-2026-22","label":"vulnreport@tenable.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19635","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19635 — A local privilege escalation vulnerability exists in Security Center. An attacker with write access…","description":"A local privilege escalation vulnerability exists in Security Center. An attacker with write access to a specific configuration file could achieve arbitrary code execution with elevated privileges, without requiring further user or victim interaction.","indicators":{"cves":["CVE-2026-19635"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T18:17:22.817Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://www.tenable.com/security/tns-2026-22","label":"vulnreport@tenable.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19679","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19679 — An input validation vulnerability exists in Security Center's file upload handling, where insufficie…","description":"An input validation vulnerability exists in Security Center's file upload handling, where insufficient sanitization of uploaded filenames could contribute to a downstream command injection issue.","indicators":{"cves":["CVE-2026-19679"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T18:17:23.230Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://www.tenable.com/security/tns-2026-22","label":"vulnreport@tenable.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19680","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19680 — A SQL injection vulnerability exists in Security Center that could allow an attacker to access unaut…","description":"A SQL injection vulnerability exists in Security Center that could allow an attacker to access unauthorized data from the application's database.","indicators":{"cves":["CVE-2026-19680"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T18:17:23.357Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://www.tenable.com/security/tns-2026-22","label":"vulnreport@tenable.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19846","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19846 — A vulnerability was identified in TOTOLINK A800R 4.1.2cu.5137_B20200730. This impacts the function s…","description":"A vulnerability was identified in TOTOLINK A800R 4.1.2cu.5137_B20200730. This impacts the function setUrlFilterRules of the file /cgi-bin/cstecgi.cgi of the component firewall.so. The manipulation of the argument url leads to stack-based buffer overflow. The attack can be initiated remotely. The exp…","indicators":{"cves":["CVE-2026-19846"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T18:17:23.883Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/panda666-888/vuls/blob/main/totolink/a800r/setUrlFilterRules.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19846","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/869456","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389982","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389982/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.totolink.net/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19847","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19847 — A security flaw has been discovered in TOTOLINK A800R 4.1.2cu.5137_B20200730. Affected is the functi…","description":"A security flaw has been discovered in TOTOLINK A800R 4.1.2cu.5137_B20200730. Affected is the function setWiFiWpsConfig of the file /cgi-bin/cstecgi.cgi of the component wps.so. The manipulation of the argument pin results in stack-based buffer overflow. The attack can be launched remotely. The expl…","indicators":{"cves":["CVE-2026-19847"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T18:17:24.037Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/panda666-888/vuls/blob/main/totolink/a800r/setWiFiWpsConfig.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19847","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/869457","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389983","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389983/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.totolink.net/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72970","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72970 — Heap-based buffer overflow in Microsoft Edge (Chromium-based) allows an unauthorized attacker to exe…","description":"Heap-based buffer overflow in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.","indicators":{"cves":["CVE-2026-72970"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T18:19:09.003Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-72970","label":"secure@microsoft.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2025-7639","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2025-7639 — The vulnerability, if exploited, could allow an authenticated miscreant with \"DNA Authority - Operat…","description":"The vulnerability, if exploited, could allow an authenticated miscreant \nwith \"DNA Authority - Operator\" privilege to tamper with serialized \ndata, potentially resulting in code execution during deserialization \nunder the privilege of Enterprise SCADA security group \"DNA Apps\".","indicators":{"cves":["CVE-2025-7639"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ics"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T19:17:13.380Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2026/icsa-26-225-01.json","label":"ics-cert@hq.dhs.gov","domainType":"primary"},{"url":"https://www.aveva.com/content/dam/aveva/documents/support/cyber-security-updates/SecurityBulletin_AVEVA-2026-005.pdf","label":"ics-cert@hq.dhs.gov","domainType":"other"},{"url":"https://www.cisa.gov/news-events/ics-advisories/icsa-26-225-01","label":"ics-cert@hq.dhs.gov","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-45699","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-45699 — Netatalk is a Free and Open Source file server suite for Unix-like operating systems. In versions 3.…","description":"Netatalk is a Free and Open Source file server suite for Unix-like operating systems. In versions 3.1.19 through 4.4.2, a  stack-based buffer overflow exists in the copydir() function of Netatalk's afpd daemon due to an integer underflow in the calculation of the remaining buffer size used for path…","indicators":{"cves":["CVE-2026-45699","CVE-2026-45698"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T19:17:18.267Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/Netatalk/netatalk/releases/tag/netatalk-4-4-3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Netatalk/netatalk/security/advisories/GHSA-fphv-pf29-p77m","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Netatalk/netatalk/security/advisories/GHSA-5443-v9xg-mqgv","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-73679","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73679 — ImpressCMS contains an authenticated remote code execution vulnerability in the custom tag module th…","description":"ImpressCMS contains an authenticated remote code execution vulnerability in the custom tag module that allows authenticated administrators to execute arbitrary PHP code by storing a malicious payload in a custom tag with PHP type enabled. The application decodes HTML-encoded content via undoHtmlSpec…","indicators":{"cves":["CVE-2026-73679"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T19:18:01.610Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://github.com/DevVaibhav07/VULN-POC/blob/main/ImpressCMSRCCE.md","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/ImpressCMS/impresscms","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/impresscms-authenticated-rce-via-php-custom-tag-eval","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16708","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-16708 — IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to obtain sensitive information…","description":"IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to obtain sensitive information due to external control of system configuration.","indicators":{"cves":["CVE-2026-16708"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T20:16:49.457Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283359","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16879","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-16879 — IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to bypass securit…","description":"IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to bypass security restrictions due to improper authorization using user-supplied input.","indicators":{"cves":["CVE-2026-16879","CVE-2026-17079","CVE-2026-17227"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T20:16:49.700Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283359","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16905","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-16905 — IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to obtain sensiti…","description":"IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to obtain sensitive information due to improper authentication.","indicators":{"cves":["CVE-2026-16905","CVE-2026-16915","CVE-2026-17173","CVE-2026-17175","CVE-2026-18554"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T20:16:49.817Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283359","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-17081","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-17081 — IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to write arbitrary files due to…","description":"IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to write arbitrary files due to improper limitation of a pathname to a restricted directory.","indicators":{"cves":["CVE-2026-17081"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T20:16:50.180Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283359","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-17177","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-17177 — IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to cause a denial of service du…","description":"IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to cause a denial of service due to uncontrolled recursion.","indicators":{"cves":["CVE-2026-17177"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T20:16:50.550Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283359","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-17179","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-17179 — IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to cause a denial…","description":"IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to cause a denial of service due to command injection.","indicators":{"cves":["CVE-2026-17179"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T20:16:50.663Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283359","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73680","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73680 — Cockpit CMS 2.14.0 and prior contains a command injection vulnerability in the FFmpeg integration th…","description":"Cockpit CMS 2.14.0 and prior contains a command injection vulnerability in the FFmpeg integration that allows authenticated users with only the assets/upload permission to execute arbitrary commands by uploading a video file with a shell metacharacter-laden filename. The unsanitized filename is inte…","indicators":{"cves":["CVE-2026-73680"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T20:16:58.080Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://github.com/Cockpit-HQ/Cockpit","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/Cockpit-HQ/Cockpit/commit/28813596f57685f63d3a48f655e8e9bd2b535cab","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://link.mateocallec.com/MFC-2026-002","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://www.vulncheck.com/advisories/cockpit-cms-authenticated-command-injection-via-ffmpeg-filename","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-50523","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-50523 — Improper neutralization of special elements used in a command ('command injection') in Microsoft Pow…","description":"Improper neutralization of special elements used in a command ('command injection') in Microsoft PowerShell allows an authorized attacker to execute code locally.","indicators":{"cves":["CVE-2026-50523"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T21:17:18.920Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-50523","label":"secure@microsoft.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-69414","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-69414 — Microsoft is aware of an elevation of privilege in the Microsoft Malware Protection Engine in Micros…","description":"Microsoft is aware of an elevation of privilege in the Microsoft Malware Protection Engine in Microsoft Defender publicly referred to as &quot;ShieldBreak &quot;.\nWe are working to provide a high quality security update that addresses this vulnerability. We will provide information in this CVE when…","indicators":{"cves":["CVE-2026-69414"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T22:17:06.810Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69414","label":"secure@microsoft.com","domainType":"primary"},{"url":"https://github.com/MSNightmare/ShieldBreak","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-73683","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73683 — Laravel Socialite's Facebook provider contains an authentication bypass vulnerability that allows un…","description":"Laravel Socialite's Facebook provider contains an authentication bypass vulnerability that allows unauthenticated attackers to replay captured OIDC id_tokens by exploiting the missing nonce claim validation in the getUserByOIDCToken() function within FacebookProvider.php. Attackers who obtain a vali…","indicators":{"cves":["CVE-2026-73683"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T22:17:11.550Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://github.com/laravel/socialite","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/laravel/socialite/commit/caf714f55d51ab0d914b40033d8b0f489d6219cc","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/laravel/socialite/pull/789","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/laravel-socialite-facebook-provider-authentication-bypass-via-nonce-replay","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-14433","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-14433 — The Online Booking & Scheduling Calendar for WordPress by vcita plugin for WordPress is vulnerable t…","description":"The Online Booking & Scheduling Calendar for WordPress by vcita plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'business_id' parameter in all versions up to, and including, 4.6.0 due to insufficient input sanitization and output escaping. This makes it possible for unauthe…","indicators":{"cves":["CVE-2026-14433"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T03:16:47.130Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/meeting-scheduler-by-vcita/tags/4.6.0/vcita-api-functions.php#L17","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/meeting-scheduler-by-vcita/tags/4.6.0/vcita-api-functions.php#L83","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/meeting-scheduler-by-vcita/tags/4.6.0/vcita-scheduler.php#L379","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/meeting-scheduler-by-vcita/tags/4.6.0/vcita-widgets-functions.php#L22","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/3fbfb185-d901-4789-9a13-137f72234ed4?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15001","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-15001 — The bLoyal: Loyalty & Promotions by bLoyal plugin for WordPress is vulnerable to Privilege Escalatio…","description":"The bLoyal: Loyalty & Promotions by bLoyal plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 3.1.611.78. This is due to the AJAX actions `save_bloyal_configuration_data` and `save_bloyal_accesskeyverification_data` being registered without any capabilit…","indicators":{"cves":["CVE-2026-15001"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T03:16:47.393Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/bloyal/tags/3.1.611.78/app/controller/class-bloyalcontroller.php#L2429","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/bloyal/tags/3.1.611.78/app/controller/class-bloyalcontroller.php#L2470","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/bloyal/tags/3.1.611.78/app/controller/class-bloyalcontroller.php#L2512","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/bloyal/tags/3.1.611.78/app/controller/class-bloyalcontroller.php#L421","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/bloyal/tags/3.1.611.78/app/controller/class-bloyalcontroller.php#L494","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/bloyal/tags/3.1.611.78/app/controller/class-bloyalcontroller.php#L806","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/bloyal/tags/3.1.611.78/bloyal.php#L1196","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/bloyal/tags/3.1.611.78/bloyal.php#L1553","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/bloyal/tags/3.1.611.78/bloyal.php#L1596","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/ba4b58ad-97b3-482a-bf24-1fa85d6ef93d?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15162","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-15162 — The Object Sync for Salesforce plugin is vulnerable to unauthenticated SQL Injection via the wordpre…","description":"The Object Sync for Salesforce plugin is vulnerable to unauthenticated SQL Injection via the wordpress_object_type parameter of its /wp-json/object-sync-for-salesforce/push/ REST route. The route's permission callback (can_process()) checks only the HTTP method for the push class — no capability or…","indicators":{"cves":["CVE-2026-15162"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T03:16:47.523Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/object-sync-for-salesforce/trunk/classes/class-object-sync-sf-rest.php#L224","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/object-sync-for-salesforce/trunk/classes/class-object-sync-sf-salesforce-push.php#L210","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/object-sync-for-salesforce/trunk/classes/class-object-sync-sf-wordpress.php#L328","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/object-sync-for-salesforce/trunk/classes/class-object-sync-sf-wordpress.php#L578","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/78f964a7-bed3-435e-94c5-750883a0c836?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15312","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-15312 — The Propovoice: All-in-One Client Management System plugin for WordPress is vulnerable to Privilege…","description":"The Propovoice: All-in-One Client Management System plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 1.7.8. This is due to the `create()` function's REST endpoint failing to validate the user-supplied `role` parameter against an allowlist of permitted…","indicators":{"cves":["CVE-2026-15312"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T03:16:47.817Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/propovoice/trunk/includes/Api/Type/Team.php#L169","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/propovoice/trunk/includes/Api/Type/Team.php#L219","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/propovoice/trunk/includes/Api/Type/Team.php#L38","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/propovoice/trunk/includes/Api/Type/Team.php#L423","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/6a39e4d4-890d-46f9-8bb9-0fc858e6f1e2?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15965","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-15965 — The MaxUpload – Big File Uploads – Increase Maximum File Upload Size plugin for WordPress is vulnera…","description":"The MaxUpload – Big File Uploads – Increase Maximum File Upload Size plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 1.4.0 via the handle_upload function. This is due to a filename-validation mismatch in the handle_upload function where extension and…","indicators":{"cves":["CVE-2026-15965"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T03:16:48.077Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/maxupload-upload-larger-files-easily/tags/1.4.0/includes/uploader.php#L121","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/maxupload-upload-larger-files-easily/tags/1.4.0/includes/uploader.php#L174","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/maxupload-upload-larger-files-easily/tags/1.4.0/includes/uploader.php#L19","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/maxupload-upload-larger-files-easily/tags/1.4.0/includes/uploader.php#L201","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/maxupload-upload-larger-files-easily/tags/1.4.0/maxupload-wp.php#L88","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/70d90c0c-e3c6-4db9-b16d-1442e7e1dc3b?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-13360","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-13360 — The Cookie Banner for GDPR / CCPA – WPLP Cookie Consent plugin for WordPress is vulnerable to Stored…","description":"The Cookie Banner for GDPR / CCPA – WPLP Cookie Consent plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'regionArray' parameter in all versions up to, and including, 4.3.5 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated…","indicators":{"cves":["CVE-2026-13360"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T04:18:01.957Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/gdpr-cookie-consent/tags/4.2.7/admin/class-gdpr-cookie-consent-admin.php#L4961","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/gdpr-cookie-consent/tags/4.2.7/includes/class-gdpr-cookie-consent.php#L245","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/gdpr-cookie-consent/tags/4.2.7/public/class-gdpr-cookie-consent-public.php#L209","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/gdpr-cookie-consent/tags/4.3.5/admin/class-gdpr-cookie-consent-admin.php#L4961","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/gdpr-cookie-consent/tags/4.3.5/includes/class-gdpr-cookie-consent.php#L245","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/gdpr-cookie-consent/tags/4.3.5/public/class-gdpr-cookie-consent-public.php#L209","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset/3641387/gdpr-cookie-consent/tags/4.4.0/admin/class-gdpr-cookie-consent-admin.php","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/bba8007f-7254-4201-8f94-7bf921a33a27?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16094","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-16094 — The Invisible Anti-Spam & CAPTCHA — reCAPTCHA Alternative for All Forms plugin for WordPress is vuln…","description":"The Invisible Anti-Spam & CAPTCHA — reCAPTCHA Alternative for All Forms plugin for WordPress is vulnerable to generic SQL Injection via the 'key' parameter in all versions up to, and including, 5.1 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the…","indicators":{"cves":["CVE-2026-16094","CVE-2026-16145","CVE-2026-16146"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T04:18:09.987Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/gdpr-compliant-recaptcha-for-all-forms/tags/5.0/includes/class-message-page.php#L428","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/gdpr-compliant-recaptcha-for-all-forms/tags/5.0/includes/class-message-page.php#L451","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/gdpr-compliant-recaptcha-for-all-forms/tags/5.0/includes/class-message-page.php#L503","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/gdpr-compliant-recaptcha-for-all-forms/tags/5.0/includes/class-message-page.php#L767","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/gdpr-compliant-recaptcha-for-all-forms/tags/5.0/includes/class-message-page.php#L769","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/gdpr-compliant-recaptcha-for-all-forms/tags/5.0/includes/class-option.php#L290","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/gdpr-compliant-recaptcha-for-all-forms/tags/5.0/includes/class-option.php#L292","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset/3633500/gdpr-compliant-recaptcha-for-all-forms","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/2d97ca8e-e735-4312-bfb2-5c434cb5b190?source=cve","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/gdpr-compliant-recaptcha-for-all-forms/tags/5.0/includes/class-message-page.php#L621","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/gdpr-compliant-recaptcha-for-all-forms/tags/5.0/includes/class-stamp.php#L136","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/gdpr-compliant-recaptcha-for-all-forms/tags/5.0/includes/class-stamp.php#L771","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/ff1d2bd8-cc46-4763-8ba7-832b982ff56a?source=cve","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/gdpr-compliant-recaptcha-for-all-forms/tags/5.0/includes/class-message-page.php#L519","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/9a68e2ab-fe2f-43f8-bb1b-b46a483bd06f?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16611","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-16611 — The Product Feed PRO for WooCommerce by AdTribes WordPress plugin before 13.5.7 does not perform an…","description":"The Product Feed PRO for WooCommerce by AdTribes  WordPress plugin before 13.5.7 does not perform an authorization check on one of its REST read routes, allowing unauthenticated users to disclose a store's feed configuration (rules, filters and field mapping) and to enumerate the full product catego…","indicators":{"cves":["CVE-2026-16611"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:17:08.380Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://wpscan.com/vulnerability/87fe63af-5a43-4812-88ce-568b1cc1598f/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-68458","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-68458 — In the Linux kernel, the following vulnerability has been resolved: binder: cache secctx size before…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbinder: cache secctx size before release zeroes it\n\nbinder_transaction() bounds the scatter-gather buffer area with\nsg_buf_end_offset and subtracts the aligned LSM context size because\nthe secctx is written at the tail of that area…","indicators":{"cves":["CVE-2026-68458"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:18:15.350Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://git.kernel.org/stable/c/1228926e1e4d605cc74d9e675558982a6f2cf446","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4257f45ee1fddd0558e77b62af8bb63fd87b2162","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b34826e55aad3520ec813f1f367c11b24b29dc9f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-68461","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-68461 — In the Linux kernel, the following vulnerability has been resolved: device property: initialize the…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndevice property: initialize the remaining fields of fwnode_handle in fwnode_init()\n\nIf a firmware node is allocated on the stack (for instance: temporary\nsoftware node whose life-time we control) or on the heap - but using a\nnon-ze…","indicators":{"cves":["CVE-2026-68461"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:18:34.113Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://git.kernel.org/stable/c/0198d579948322cda5178b9672d448375a32f947","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/173b61c9276c7b3a5fbcc63ae7aafc897fee1e18","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7eba000621fff223dd7bab484d48918c7c77a307","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9c86a1f930bb2ddb85f867b4736716e82a4a4683","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c81e2af41de6a159837c7129a4fc444ac6e48046","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c8542b68ba6ef4f61072098893a3f5b71c569b6c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f0b4e1cc8ad76baf49d898727eb52e91a4ef0544","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-68462","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-68462 — In the Linux kernel, the following vulnerability has been resolved: bpf: Reject negative const offse…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbpf: Reject negative const offsets for buffer pointers\n\nThe verifier rejects variable offsets for PTR_TO_TP_BUFFER and PTR_TO_BUF\naccesses, but it currently accepts a constant negative offset produced by\npointer arithmetic.\n\nCommit…","indicators":{"cves":["CVE-2026-68462"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:18:39.803Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://git.kernel.org/stable/c/314bd592085c0720ef519f6edbc5f41440ff78d4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fd4cfa8c8f9a17cdec0539334d28754bc1d8a5d9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-68466","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-68466 — In the Linux kernel, the following vulnerability has been resolved: mtd: rawnand: lpc32xx_slc: fail…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmtd: rawnand: lpc32xx_slc: fail DMA transfer on completion timeout\n\nlpc32xx_xmit_dma() waits for the DMA completion callback but ignores\nwait_for_completion_timeout(). A timed out DMA transfer is therefore\nunmapped and reported as…","indicators":{"cves":["CVE-2026-68466"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:19:34.530Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://git.kernel.org/stable/c/17a8ce84964f243c8f89dc7353ac7e8d3137bc74","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/307e4f4c1d4e1575b3495ecc6e41aa2adc40f491","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/623c4d8e740debb4af28981e3d4e209f9d0260a4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8f5c3ee53a5dc1a0f7cfd780485f2c8b5d17f91d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bd4a622786f92e1f183f7557ab89dd32891cef60","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c367af37ce7238c96c6071337149099467160746","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cb2031f8b226efbd13735c07b075e5f14ec11f6d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cf7258f57d18026b8f77c0e80ff1805e9caf7250","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-68467","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-68467 — In the Linux kernel, the following vulnerability has been resolved: mtd: mchp23k256: use SPI match d…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmtd: mchp23k256: use SPI match data for chip caps\n\nThe driver stores chip capacity information in both the OF match table\nand the SPI id table. Probe currently uses of_device_get_match_data(),\nso a non-OF SPI modalias match falls b…","indicators":{"cves":["CVE-2026-68467"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:19:46.527Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://git.kernel.org/stable/c/04ebd3766861f219325852c9598e0f0281cb3636","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/09e044192a42f716215fbd1a100ee87fa57426aa","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2e179b028da9fd628a09286a2c9df4fa076b2cc9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7c0a3a73dccc9a3fc701f6be762449f18d0ca0fc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a0c38083623c8b210a5b87fd34bebd05aa935ae8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d322e40f4edf92bf0ca329e5aa4ae1c0316feb38","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dbe2254d1da99c986f9a3392471fc5eaa3229647","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-68470","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-68470 — In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: validate extensi…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: mac80211: validate extension-frame layout before RX\n\nExtension frames only have the extension header at the regular 802.11\nheader offset. The generic RX path can still reach helpers and interface\ndispatch code that read regul…","indicators":{"cves":["CVE-2026-68470"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:19:57.767Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://git.kernel.org/stable/c/57d503ce32eccfa7650065ca4c560f7e29a2e676","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/625fc704b19cb48d7d269ad54ffffb4d3bf9c7ed","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-68471","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-68471 — In the Linux kernel, the following vulnerability has been resolved: wifi: ieee80211: validate MLE co…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: ieee80211: validate MLE common info length\n\nieee80211_mle_common_size() uses the first common-info octet as the\ncommon information length for all known MLE types. However,\nieee80211_mle_size_ok() only validates that octet for…","indicators":{"cves":["CVE-2026-68471"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:20:05.433Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://git.kernel.org/stable/c/293baeae9b2434a3e432629d7720b5603db2d77e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2b1589fd9a076727a73bfb39e96622a76415ad32","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/90576bd6921a91eb038bffbb4b9467c2dc26aa1d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-68472","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-68472 — In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: validate EHT MLE…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: cfg80211: validate EHT MLE before MLD ID read\n\ncfg80211_gen_new_ie() copies ML probe response elements from\nthe parent frame when the parent EHT multi-link element has an\nMLD ID matching the nontransmitted BSSID index.\n\nThe c…","indicators":{"cves":["CVE-2026-68472"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:20:05.570Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://git.kernel.org/stable/c/3b0505e43da8fb5b2a7994c3c3604e5a74692154","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/584657c5fc58d7a840623a2fa06331c9661dd0f1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/74e27cd1d98b546fdb276008a83708d062339661","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-68473","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-68473 — In the Linux kernel, the following vulnerability has been resolved: powerpc/uaccess: correct check f…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\npowerpc/uaccess: correct check for CONFIG_PPC_E500 in mask_user_address()\n\nmask_user_address() incorrectly checks for CONFIG_E500 instead of\nCONFIG_PPC_E500, causing mask_user_address_isel() to not be used on\nE500 hardware. Fix the…","indicators":{"cves":["CVE-2026-68473"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:20:29.240Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://git.kernel.org/stable/c/d5c234774a82f27b594f70c15fc45ce3648e4295","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d610d3ab18197d87618da11ec5fe8b3cebf32208","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-68474","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-68474 — In the Linux kernel, the following vulnerability has been resolved: powerpc/spufs: fix out-of-bounds…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\npowerpc/spufs: fix out-of-bounds access in spufs_mem_mmap_access()\n\nspufs_mem_mmap_access() computes the local store offset as\naddress - vma->vm_start, but bounds-checks it against vma->vm_end\ninstead of the local store size. On 64…","indicators":{"cves":["CVE-2026-68474"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:20:34.937Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://git.kernel.org/stable/c/3c1e92f75e11a11492b8cb901fceeb9f16ae6415","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/47b87f469a35b5ffc81c16eee6b13a9b6c8d55c6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4efa313b15925bdd864784865d6585174979294b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/913feef74354c653f10ecd4631df7618a95c49c2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9d3569bfdceda69d5ffd5148901e57b69954d9ef","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/aa7aa8ba40c089762d821e3987aaae19e1f5705c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d479a7711f8ff127946467b910d947bd971b94ed","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d97a8f3668949a8a9d1f6202f8c53446f2d89aa7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-68479","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-68479 — In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btrtl: validate firmw…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nBluetooth: btrtl: validate firmware patch bounds\n\nrtlbt_parse_firmware() copies patch_length - 4 bytes before appending the\nfirmware version. A malformed firmware patch shorter than the version field\ncan make this subtraction under…","indicators":{"cves":["CVE-2026-68479"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:20:51.380Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://git.kernel.org/stable/c/39e01b4addfbbe177567d6ed1dfb81f9cccb19e6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/609c5b04a28dc1b0f3af6a7bc93055135b2d2059","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6744ab60dfac55d1df5733960aad5be300984301","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/68c5a2a19987c035eb129e627e579adafb04f637","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/83534891c058ed71e251135072640911670869aa","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a4cb830e0b55ac76c849fd7840afb251f4c028fa","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bda3c598ade6ea03884074b91e31608326684921","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f1ca750c0510bdbb504bf084d2f196ef2af92ea6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72003","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72003 — In the Linux kernel, the following vulnerability has been resolved: wifi: brcmfmac: cyw: fix heap ov…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: brcmfmac: cyw: fix heap overflow on a short auth frame\n\nbrcmf_notify_auth_frame_rx() takes the frame length from the firmware\nevent and copies the frame body with the management header offset\nsubtracted:\n\n\tu32 mgmt_frame_len…","indicators":{"cves":["CVE-2026-72003"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:20:53.557Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://git.kernel.org/stable/c/185bb156c427d0f865d344a6d0eaa02c6d05cc57","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/240c8d2c717b3f8153e7e877b22a82518d78dbdc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/55b26abb1fa1ec406b3ad11b43c49c7624257565","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72005","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72005 — In the Linux kernel, the following vulnerability has been resolved: wifi: rt2x00: avoid full teardow…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: rt2x00: avoid full teardown before work setup in probe\n\nrt2x00lib_probe_dev() uses the full rt2x00lib_remove_dev() teardown for\nall probe failures. However, drv_data allocation and workqueue allocation\ncan fail before intf_wo…","indicators":{"cves":["CVE-2026-72005"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:20:59.113Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://git.kernel.org/stable/c/3c0427d719bddb33caf18ff4ffb77cb47de7eb00","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/536fb3d739d75a03cb318c0c6fe799425cfea501","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/56994852d704535ea354a4627ca667b1b4fa0deb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/59afe6148927395cf86f9429900e029a48b1d42b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/66bd9b1a72de7c2f5141b02d796048aafaed8a49","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/816559409e340acaa5c9d868291dab30d8c80263","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8b58d1f1356df6a7d2de3f55bb665b18b04ffda0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/eb7474d0253bb2de4793e1d3ce833e8564bbe732","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72009","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72009 — In the Linux kernel, the following vulnerability has been resolved: pmdomain: imx93-blk-ctrl: Extrac…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\npmdomain: imx93-blk-ctrl: Extract PHY as shared domain for DSI/CSI\n\nThe MIPI DSI and CSI domains share control bits for clock and reset, which\ncan lead to incorrect behavior if one domain disables the shared resource\nwhile the othe…","indicators":{"cves":["CVE-2026-72009"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:20:59.570Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://git.kernel.org/stable/c/4ba6d7166750d0b810c6cfc0b1df7585f513b48c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4fd5b33faf092ef2d09f730a7d9e49f9e976ac67","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/99611233f8cda833169fa6487d5dacdf189e5cb0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72012","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72012 — In the Linux kernel, the following vulnerability has been resolved: tracing/osnoise: Call synchroniz…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ntracing/osnoise: Call synchronize_rcu() when unregistering\n\nThis ensures that any RCU readers traversing the instance list\nhave finished, before releasing the reference on the tracer that\nthe instance points to.","indicators":{"cves":["CVE-2026-72012"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:20:59.907Z","fetchedAt":"2026-08-21T03:01:29.055Z","references":[{"url":"https://git.kernel.org/stable/c/38366140dc8ee3568c7f0191d517e117963bd580","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3c693635bb7b3a9b6645831a84fed2af46cdf249","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dd0160a0842337f12e7694d68b184050afc6d3a4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fad36954b29592ce463254179c3043697678481f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fe58f457ad8d0a2bef4e053cfecca4b5cd266b1a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72018","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72018 — In the Linux kernel, the following vulnerability has been resolved: dibs: loopback: validate offset…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndibs: loopback: validate offset and size in move_data()\n\nThe loopback move_data() performs a memcpy into the registered DMB\nwithout checking whether offset + size exceeds the DMB length.  Unlike\nreal ISM hardware, which enforces me…","indicators":{"cves":["CVE-2026-72018"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:00.670Z","fetchedAt":"2026-08-21T03:01:29.055Z","references":[{"url":"https://git.kernel.org/stable/c/78237e3c0720fcc6eb9b87e90fd70f63eeca886f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/94fe0ab01b480b52bd8f977edbd845ef375d69fd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b2f426a9a22886071966432ede8fceafffe12b8c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ee188a6b264b71315a67f1b9470faad308b730d2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72019","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72019 — In the Linux kernel, the following vulnerability has been resolved: macsec: don't read an unset MAC…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmacsec: don't read an unset MAC header in macsec_encrypt()\n\nmacsec_encrypt() reads the Ethernet header via eth_hdr(skb)\n(skb->head + skb->mac_header) to memmove() the 12 source/destination MAC\nbytes forward and make room for the Se…","indicators":{"cves":["CVE-2026-72019"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:00.790Z","fetchedAt":"2026-08-21T03:01:29.055Z","references":[{"url":"https://git.kernel.org/stable/c/2cf10d042562283ff4ae97c02d0993d4f1b5ea29","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3adea1b1c04b57e08a5c12a1f42483760581ce61","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b6cec6187b8632423cd99a94fd5e5ba165fa2a33","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c39087ad0b97fc11a3b058dfc8db9fd370762cb9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dc9ffa1905e72f026d080880a2e4cfc42aa91000","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e17a42199824973cd8212e95b21ffadf4114a21b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f21fa533a3ed15ada74106aac4b9ddd078fc6b7a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f5089008f90c0a7c5520dff3934e0af00adf322d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72021","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72021 — In the Linux kernel, the following vulnerability has been resolved: ipvs: use parsed transport offse…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nipvs: use parsed transport offset in SCTP state lookup\n\nset_sctp_state() reads the SCTP chunk header again in order to drive the\nIPVS SCTP state table. For IPv6 it computes the offset with\nsizeof(struct ipv6hdr), while the surround…","indicators":{"cves":["CVE-2026-72021"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:01.053Z","fetchedAt":"2026-08-21T03:01:29.055Z","references":[{"url":"https://git.kernel.org/stable/c/247d055504dcc852e539b9f7f30d19f9741474bf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/290e9e8389b556efc603522e28bd1543846aa336","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2f75c0faa3361b28e36cc0512b3299e163e25789","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9cb5ac594ca76d3a71803b23b74c835b0721e628","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9f94573ab962a9e81954b755da016fa3cd2f5039","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a4a2d2e483d79cc2ad3a170674cf159644acf22b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d2b8b1557ec07ea1bb5dddbceaf4dfe63d388e27","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e5d0bb8871668f20de8f3c94b5ae3f372346bc6e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72024","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72024 — In the Linux kernel, the following vulnerability has been resolved: mac802154: remove interfaces wit…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmac802154: remove interfaces with RCU list deletion\n\nQueue wake, stop, and disable paths walk local->interfaces under RCU.\nThe bulk hardware teardown path removes entries with list_del(), so an\nasynchronous transmit completion can…","indicators":{"cves":["CVE-2026-72024"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:01.440Z","fetchedAt":"2026-08-21T03:01:29.055Z","references":[{"url":"https://git.kernel.org/stable/c/2039f27b1a0c997137a5de7f8a3cee0e80fbf952","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4bf231f459b542414629b64f63d5cad6701bd07c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/539dfcf69105d8d3d4d677b71de6e5ede2e6dfa0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/72ac5af9ad09662bd0ea91cb8845d490c8ef9c01","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/77caf2d6eba7cb94a7ecd7b369a5974fd7d7c054","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b91e5248dd7af09b500879a46d22a36b60db3a57","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c7c031b75218b3ba3014a0f6b9849888994528d6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d8b5b66388a51febe4b8505b0ecd9da15b4ba639","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72027","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72027 — In the Linux kernel, the following vulnerability has been resolved: mm/compaction: handle free_pages…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmm/compaction: handle free_pages_prepare() properly in compaction_free()\n\nfree_pages_prepare() can fail but compaction_free() does not handle the\nfailure case.  Failed pages should not be added back to cc->freepages for\nfuture use,…","indicators":{"cves":["CVE-2026-72027"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:01.843Z","fetchedAt":"2026-08-21T03:01:29.055Z","references":[{"url":"https://git.kernel.org/stable/c/018d7ad26cb8bdfe9842f2ca68a42b0bfdcc82fe","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/23afc3786acf359c135093893fb43a436768c832","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7da7d599b8a83271c464adfd5ef160202b470570","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/de8577db09039d4950239b01446ab5ead9028ab4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72029","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72029 — In the Linux kernel, the following vulnerability has been resolved: net: wwan: iosm: bound device of…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: wwan: iosm: bound device offsets in the MUX downlink decoder\n\nmux_dl_adb_decode() walks a chain of aggregated datagram tables using\noffsets and lengths taken from the modem. first_table_index,\nnext_table_index, table_length, d…","indicators":{"cves":["CVE-2026-72029"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:02.083Z","fetchedAt":"2026-08-21T03:01:29.055Z","references":[{"url":"https://git.kernel.org/stable/c/07f5eb6d268a37bd9e131079489655cd599182e0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/155851e501d6c649cbcfcca6472dc26269b04b6b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2b822df8e498aa6ca828e16afd8ffec27f7e4c88","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/526b8ef54668780c8f69e0211c342763d5dcbad1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/55cfea8e8d9117ad086d1e1a0ff87f306f8e3ad0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/77f0023f22f6a2616ae128e9c93961b24ae52611","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72034","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72034 — In the Linux kernel, the following vulnerability has been resolved: fhandle: reject detached mounts…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nfhandle: reject detached mounts in capable_wrt_mount()\n\nThe recent fhandle RCU fix moved the mount namespace capability check\ninto capable_wrt_mount(), so a non-NULL mnt_namespace survives the\nns_capable() dereference. The helper s…","indicators":{"cves":["CVE-2026-72034"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:12.383Z","fetchedAt":"2026-08-21T03:01:29.055Z","references":[{"url":"https://git.kernel.org/stable/c/15104234c267ebe04b9f9a73e5c2179cc265ff60","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6c52226072a3c61337b1eec1799bb987748884fa","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6c732471740bc2ac9b0946134f9f551dc75f4369","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6ee183d89261bf1d1cf9f06d80a40dab8f36ee55","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72035","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72035 — In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_taprio: Replace d…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet/sched: sch_taprio: Replace direct dequeue call with peek and qdisc_dequeue_peeked\n\nWhen taprio's software path peeks a non-work-conserving child qdisc, the\nchild stashes the peeked skb in its gso_skb; taprio_dequeue_from_txq()…","indicators":{"cves":["CVE-2026-72035"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:12.497Z","fetchedAt":"2026-08-21T03:01:29.055Z","references":[{"url":"https://git.kernel.org/stable/c/18d580cb00c55805633bae45e90cf22ed6b8e424","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2dcebbd1ad2e180fe7b98bf346ced69a872e11e6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6ee5a7665a9080bcb05d703bf981a579436fd05e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e056e1dfcddca877dd46d704e8ec9860cfc9ec44","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e2b7ee61989f2d39df6c2cc06f9db1aea69bdb09","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72036","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72036 — In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_multiq: Replace d…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet/sched: sch_multiq: Replace direct dequeue call with peek and qdisc_dequeue_peeked\n\nmultiq_dequeue() takes a packet from a band's child with a direct\n->dequeue() call after multiq_peek() peeked it. When the child is\nnon-work-con…","indicators":{"cves":["CVE-2026-72036"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:12.613Z","fetchedAt":"2026-08-21T03:01:29.055Z","references":[{"url":"https://git.kernel.org/stable/c/1b9cc255e8089606b92b2adf504e334573682821","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3e5fd9d14f2d228e7260251f2e4a1d41ba8f705a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/54f6b0c843e228d499eb4b6bbb89df68cad9ad5d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5889064919a1e5c0a9469c54895000414fc46944","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7a5a1582710981ef6637de9f074a60a5b1d63222","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/86a61e46a1919e8abf4d227c204773dabb24068a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/eb1a9637f0bd84b5db8803af65dfb1f44785406f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fffeb2ab5eeb823d4c2330571a098f63237c9049","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72042","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72042 — In the Linux kernel, the following vulnerability has been resolved: ipmi: Fix user refcount underflo…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nipmi: Fix user refcount underflow in event delivery\n\nipmi_alloc_recv_msg(user) takes the temporary user reference owned by the\nreceive message, and ipmi_free_recv_msg() drops it again. If event delivery\nfails after allocating recei…","indicators":{"cves":["CVE-2026-72042"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:13.370Z","fetchedAt":"2026-08-21T03:01:29.055Z","references":[{"url":"https://git.kernel.org/stable/c/6aa9e61c46465d231e9beddf56af7effd71be682","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7be349d4fcc5e065295b83418a22d27a68afbdb6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ddbb6e3dc9bb4743de686aa1598c31e745cee76b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72043","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72043 — In the Linux kernel, the following vulnerability has been resolved: LoongArch: Fix missing dirty pag…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nLoongArch: Fix missing dirty page tracking in {pte,pmd}_wrprotect()\n\nWhen hardware page table walker (PTW) is enabled on LoongArch, the CPU\nmay set _PAGE_DIRTY directly in the page table entry during a write TLB\nmiss, without going…","indicators":{"cves":["CVE-2026-72043"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:13.480Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/018e9828eb523c638fa3d9bdf0fd4956b74555b2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/39bb21a4bff0d70058bf752d7b5aa2e2ccc864a9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/76f88650763a35cbf1384c65d66d096fa31cc58d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a65f49b6f7ece756394f8f0e85570020e7fd0e35","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e483da960892c41fa7f0cf0d2fc2410d65a483d6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e8a916579e427af32f2de8213dfa23c5df6e6664","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72045","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72045 — In the Linux kernel, the following vulnerability has been resolved: octeontx2-af: cn10k: restrict VF…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nocteontx2-af: cn10k: restrict VF LMTLINE sharing to its own PF\n\nrvu_mbox_handler_lmtst_tbl_setup() uses req->base_pcifunc as a direct\nindex into the LMT map table to read another function's LMTLINE\nphysical base address and copy it…","indicators":{"cves":["CVE-2026-72045"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:13.700Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/54535692bec9ef464adc714108eb19e49e38b5a2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/59da37fee81a8d76079313348ca13c5bc90dd6ae","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8cdcf3d2caacdee7ddd363705fb4d93b0c1a0915","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c73b8795b45f4ad5a95120d2e9b435ea4616e08e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e9c5b03208507dd6d58b0c23a2c60b5c2f4c1b11","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72049","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72049 — In the Linux kernel, the following vulnerability has been resolved: ieee802154: admin-gate legacy LL…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nieee802154: admin-gate legacy LLSEC dump operations\n\nIn net/ieee802154/netlink.c, the legacy IEEE802154_NL family ops table\nbuilds the LLSEC dump entries (LLSEC_LIST_KEY, LLSEC_LIST_DEV,\nLLSEC_LIST_DEVKEY, LLSEC_LIST_SECLEVEL) with…","indicators":{"cves":["CVE-2026-72049"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:14.190Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/09fd25cd8cd80a6b3edef04e53a7324d06ac2180","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1905ebabe638c946aced00c4bb664da26cac56d5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3465035ba18b1ed50f8d201897d14135d20532b0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5abe94a205539d27945cda3ba43fdcfe295cf2c8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6383248058956f2a52d720b1e9f8921099cdae04","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9c1e0b6d49471a712511d23fc9d06901561135e8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dffe745760f38fac0b8288e0dc4759b23d9888ff","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e84708ef7521f3bffc85a449954042018abbd60e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72051","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72051 — In the Linux kernel, the following vulnerability has been resolved: net: ip6_tunnel: require CAP_NET…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: ip6_tunnel: require CAP_NET_ADMIN in the device netns for changelink\n\nip6_tnl_changelink() operates on at most two netns, dev_net(dev) and the\ntunnel link netns t->net. They differ once the device is created in or\nmoved to a n…","indicators":{"cves":["CVE-2026-72051"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:14.423Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/234cd54fc500f69db43e37de38603da617fbbeea","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2496fa0b7d180b3ad356b514e7ff93bb14e6140a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2636d061bc237a2446a146e42dcc6563acfa7432","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7f68f7928484f463a5bc0d50e6fdd8d16f55a5aa","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d4bcc202a3530c856e1cb183384bc9cc8fddab22","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72052","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72052 — In the Linux kernel, the following vulnerability has been resolved: net: ip6_gre: require CAP_NET_AD…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: ip6_gre: require CAP_NET_ADMIN in the device netns for changelink\n\nip6gre_changelink() and ip6erspan_changelink() operate on at most two\nnetns, dev_net(dev) and the tunnel link netns t->net. They differ once\nthe device is crea…","indicators":{"cves":["CVE-2026-72052"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:14.523Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/03d8843b143ebbbfaf48511922abc6e886575a61","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/0caa9f348f8b5356900de77b0bb89a697c4aff20","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/129f8939e5af683cec3a1a5edcb40a64636ad81e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1d4d8ee002083ca4ead5353662bf8362428af57f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/220162c9fedbe992da70d70f50a10da4f45f914c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c38c8b0db3c65b597e7ece317b6cb59de3d15e69","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e3724dedf57761c6de52f4d604ec74f66fd61611","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f00a50876d2818bd6dc86fa98b3ef360884c53c8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72053","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72053 — In the Linux kernel, the following vulnerability has been resolved: net: ipip: require CAP_NET_ADMIN…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: ipip: require CAP_NET_ADMIN in the device netns for changelink\n\nipip_changelink() operates on at most two netns, dev_net(dev) and the\ntunnel link netns t->net. They differ once the device is created in or\nmoved to a netns othe…","indicators":{"cves":["CVE-2026-72053"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:14.650Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/26544021d5c49cc6ae8a968ccb5033e6363854a4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/68cadc3698c7de88966d306d12ec9c6217da228a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8211a26324667980a463c069469a818e71207e02","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/91571643e554ae89a91942380d5f5361fb7060a2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/983cc4aa7e6f633b34c3ee743771252d7afa9a90","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d49edcc65e0a37cc9b386a94415c5d6670ca8b71","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72054","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72054 — In the Linux kernel, the following vulnerability has been resolved: net: ip_vti: require CAP_NET_ADM…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: ip_vti: require CAP_NET_ADMIN in the device netns for changelink\n\nvti_changelink() operates on at most two netns, dev_net(dev) and the\ntunnel link netns t->net. They differ once the device is created in or\nmoved to a netns oth…","indicators":{"cves":["CVE-2026-72054"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:14.760Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/1caf737e625143c6f23c32d2b747b1a3e42e5699","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/32edf8aa297745226854eda2d96c0fac66c1bb15","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/33fd93961557ec8e3e9958995b28684c5f949394","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6d8bc0dc99472d62c57c2a3d436e6ab408592bda","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/88b33ee458a6ca5fbef6c53b9dba772da69dab68","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9571af2eec8023af9a1671b7f2cd4ab400011724","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/95cceadbfd52d7239bd730afdda0655287d77425","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/973ead9e565423642e4533e1547b5d2c0476fb03","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72055","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72055 — In the Linux kernel, the following vulnerability has been resolved: net: ip6_vti: require CAP_NET_AD…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: ip6_vti: require CAP_NET_ADMIN in the device netns for changelink\n\nvti6_changelink() operates on at most two netns, dev_net(dev) and the\ntunnel link netns t->net. They differ once the device is created in or\nmoved to a netns o…","indicators":{"cves":["CVE-2026-72055"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:14.890Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/0b2f9c908f930ec4be17d389723f9a202d6a883c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b2b61c540571b3cc2f461e2a579ba2cc8c2a52cf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c64b9ae7eb97e81d54b792910a3aeafd92566c79","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e2ac3b242c37dff323a964962e43854f4b1a2b79","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ef897249dc957089e6f7f11ceea699e093ad51bd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f5254e7766b4ac02b66b2ccef896cd278503cb11","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f6e8b52a2cb3bbd72ddc2d44e474b907b9dcf5ba","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f97e93ebf2f9b8ef3b87f7a9371255e84d151587","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72057","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72057 — In the Linux kernel, the following vulnerability has been resolved: net/sched: act_ct: preserve tc_s…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet/sched: act_ct: preserve tc_skb_cb across defragmentation\n\ntcf_ct_handle_fragments() calls nf_ct_handle_fragments() without saving\nand restoring skb->cb. The defrag helper clears IPCB/IP6CB, which aliases\nthe tc_skb_cb/qdisc_skb…","indicators":{"cves":["CVE-2026-72057"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:15.153Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/2400c4b05d58834b994500a9eec90a37db44187c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5c3ae5f6c7c6de73ea9b6a75154fe4ed343e1bac","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9092e15defbe6c7bc241c306093ca9d358a578e7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b3d835407846134b0d54637c0281b39bebef831d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f7f45ceb855d9ba1cba594fb3f383255f7013fad","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72061","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72061 — In the Linux kernel, the following vulnerability has been resolved: net: sit: require CAP_NET_ADMIN…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: sit: require CAP_NET_ADMIN in the device netns for changelink\n\nipip6_changelink() operates on at most two netns, dev_net(dev) and the\ntunnel link netns t->net. They differ once the device is created in or\nmoved to a netns othe…","indicators":{"cves":["CVE-2026-72061"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:15.637Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/27ccb68e7cccead5d8c611665a45d23032d468b3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3118e97dae533fb45964b87bbed1801afcff7c65","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/388ccffbd2e7e5e4271f291085a7451865705305","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7d139dec96691cde96cb40ed293e2d13d994fb4f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/99ae3248b33df94201915d9c32e7470cdf08cfcd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c0ea1aedb37bb979e864ed7787975434bbd9db73","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c5a0ae895432596b2f464172da8218e2d84e2932","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cb41b308e9d867725d965b291dd085028e36a480","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72066","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72066 — In the Linux kernel, the following vulnerability has been resolved: cpu: hotplug: Bound hotplug stat…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncpu: hotplug: Bound hotplug states sysfs output\n\nstates_show() adds CPU hotplug state names into a single sysfs buffer\nusing sprintf(). With enough registered states, this can write past the\nend of the PAGE_SIZE buffer.\n\nUse sysfs_…","indicators":{"cves":["CVE-2026-72066"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:16.203Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/2408be459c70ef4250da1a9e50f5478e6b250d61","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/27481cf4365a6ff5c9be3590143e7ed434000266","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/61a73a123ac7a7fbc57382531f8cb7092d569aba","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/631d53102da9f469c96b882b770336bec095b833","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6cb15b81ff545840048fb0e1a6e827d560dbf367","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/86f436567f2516a0083b210bedc933544826a2c3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/998f66e9ce320f3433f60b948e3698b744754a46","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/de4d3d8ae17dc8b4cf8c59436c4b7e2dc2491635","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72067","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72067 — In the Linux kernel, the following vulnerability has been resolved: cpu: hotplug: Preserve per insta…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncpu: hotplug: Preserve per instance callback errors\n\ncpuhp_invoke_callback() unwinds earlier callbacks for the same\nhotplug state when one instance fails. The rollback path currently\nreuses ret, so a successful rollback can hide th…","indicators":{"cves":["CVE-2026-72067"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:16.327Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/673db10729fb121ea1b16fe57791a0cb9eac1eb5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/77d4fa8a3ea1c3e8b996ac35e59aee9e77389905","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7a68257b90d8a9b6d605abc99469ded45ecba63b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/95232281512b15338549171ed9a2acf21f946ffb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9f7dc355f62c011e4afe8286cf71130d4bfb9d80","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ef39758637cc5b603fb05b625c45a98aa306e338","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f77117530fc3f5932ffb107182a6dd34006be9b6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fe9c8d641f6991614d1229a3ffd3e33b879bba9c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72071","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72071 — In the Linux kernel, the following vulnerability has been resolved: tracing/user_events: Fix use-aft…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ntracing/user_events: Fix use-after-free in user_event_mm_dup()\n\nuser_event_mm_dup() walks the parent mm's enabler list locklessly under\nrcu_read_lock() during fork() (from copy_process()); it does not take\nevent_mutex:\n\n\trcu_read_l…","indicators":{"cves":["CVE-2026-72071"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:16.820Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/05b24f68f78ff3a1ef7f015f7327b35886b741f6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/25acb6711da6fa0382744fa92bd6d42a22c1ae68","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/50fd6dd755c6e48a38af2fa4621167eea56829c2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/95400e7039cdfeb0b53652d521d766f1698cae95","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b33ac2d39953efb12f598c0dae242c5f644ea669","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72072","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72072 — In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: macsec: fix use-after…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet/mlx5e: macsec: fix use-after-free of metadata_dst on RX SC delete\n\nWhen an offloaded MACsec RX SC is deleted, macsec_del_rxsc_ctx() freed\nthe per-SC metadata_dst with metadata_dst_free(), which kfree()s the\nobject unconditional…","indicators":{"cves":["CVE-2026-72072"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:16.943Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/088873af13590ebde10de2ade847f57a05ec61c6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/218cc15a4c907659ad4b0e68c535c61594311205","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4a5073b7b30243658f58b2d2d35a823da7fd34d9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b1a4d0c568bbb52c7c04f4fce3c097dae89ed6cb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/de74d8fd10291763d97b218f09adcc7513c975e4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ed3cc4218070d6b98bf5fb456dccae424fd38c4f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72080","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72080 — In the Linux kernel, the following vulnerability has been resolved: fs/resctrl: Fix use-after-free d…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nfs/resctrl: Fix use-after-free during unmount\n\nDuring unmount or failure teardown all mon_data structures that contain\nmonitoring event file private data are freed after which kernfs nodes are\nremoved. However, the RDT_DELETED flag…","indicators":{"cves":["CVE-2026-72080"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:18.027Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/52fce648607e0d6a76eeb443d78708c49df1c554","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7b7bb07efe41bb646a93c4624aa2bb35df190342","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7d330a1d663381579b9d5dafa642b1b3158a0ce2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72089","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72089 — In the Linux kernel, the following vulnerability has been resolved: accel/ivpu: Reject firmware log…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\naccel/ivpu: Reject firmware log with size smaller than header\n\nfw_log_from_bo() validates the tracing buffer header_size and that the\nlog fits within the BO, but never checks that log->size is at least\nlog->header_size. fw_log_prin…","indicators":{"cves":["CVE-2026-72089"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:22.980Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/257321a1c036da417f5d9c47b95c7e58f62bf263","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5592a207e158b738d9c1d27f208dbbea13ae7606","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6920e62be4c969a68ce4ebc59da68c6cbc9512e5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dc9a1cda2e46d0254730a6f93cfe48532895f33c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ddb44baed257560f192b145ed36cf8c0a412de47","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72090","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72090 — In the Linux kernel, the following vulnerability has been resolved: accel/amdxdna: Use caller client…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\naccel/amdxdna: Use caller client for debug BO sync\n\namdxdna_drm_sync_bo_ioctl() looks up args->handle in the ioctl caller's\ndrm_file. For SYNC_DIRECT_FROM_DEVICE, it then calls\namdxdna_hwctx_sync_debug_bo(), but passes abo->client.…","indicators":{"cves":["CVE-2026-72090"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:23.077Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/216e43d93dd49ec253052741aa476e51a8c54cd8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7caf2a2351d4053075670ff3e26a6815da0a9e1e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72093","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72093 — In the Linux kernel, the following vulnerability has been resolved: accel/amdxdna: Fix use-after-fre…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\naccel/amdxdna: Fix use-after-free in amdxdna_gem_dmabuf_mmap()\n\nWhen vm_insert_pages() fails, the error path calls vma->vm_ops->close(vma)\nwhich internally calls drm_gem_vm_close() → drm_gem_object_put(),\nreleasing the GEM object r…","indicators":{"cves":["CVE-2026-72093"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:23.370Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/4e370b5289624f46a356dcc94f9f87025eaa6036","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5da885c39baa70f570a8be35a78e85a351f33918","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/63bbf9ac5dde2ba85e7b39d0a0b7d540e6252ba4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72095","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72095 — In the Linux kernel, the following vulnerability has been resolved: dma-fence: Make dma_fence_dedup_…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndma-fence: Make dma_fence_dedup_array() robust against 0-count input\n\ndma_fence_dedup_array() returns 1 when called with num_fences == 0:\nthe for-loop body never executes, j stays at 0, and the final\n`return ++j` yields 1. This con…","indicators":{"cves":["CVE-2026-72095"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:23.573Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/77a9298741f8f9e8b963c977f5582ab21c6d3427","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7aa8f3dba53422465dbe1be8dbb7240304462bb2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e2d9a2ea178a5da0b4a6693e8ebca5c7fc4d7051","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72099","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72099 — In the Linux kernel, the following vulnerability has been resolved: dm-integrity: don't increment ha…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndm-integrity: don't increment hash_offset twice\n\nhash_offset is already incremented in the loop \"for (i = 0; i < to_copy;\ni++, ts--)\". Do not increment it again.","indicators":{"cves":["CVE-2026-72099"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:24.000Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/4f4e43337e9ef322595201cfc24def50fd624219","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5dfd8042635278613da3b88553e25ade2103cd58","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/829476c06496aab018f14127c055adb164d1a750","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cf9feed8c131e303ecf2afebe6f791be018818ad","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/edf025f083854f80032b73a1aad69a3c90db236f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72100","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72100 — In the Linux kernel, the following vulnerability has been resolved: dm-integrity: fix a bug if the b…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndm-integrity: fix a bug if the bio is out of limits\n\nIf dm_integrity_check_limits fails, the code would exit with\nDM_MAPIO_KILL. However, the range would be already locked at this point,\nand it wouldn't be unlocked, resulting in a…","indicators":{"cves":["CVE-2026-72100"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:24.123Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/3d1afaa074622859678b1a1e7c1b9c0af74c89b0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5a266764fadaff8b5c1fe37a186ebf9b09cb953e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/aa5113e7155f4ea81d2c0303ab5cb272d4b32627","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f7989286175f32db8605e767a1a2efc62e894dc8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72102","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72102 — In the Linux kernel, the following vulnerability has been resolved: dm_early_create: fix freeing use…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndm_early_create: fix freeing used table on dm_resume failure\n\nIf dm_resume fails, the kernel attempts to free table with\ndm_table_destroy, but the table was already instantiated with\ndm_swap_table. This commit skips the call to dm_…","indicators":{"cves":["CVE-2026-72102"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:24.340Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/259ce9e3fc3a3f8c4e393a2072b8f34302eb4d5a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/366665416f20527ff7cad548a32d1ddf23195740","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3ba377a47a093cc19647ca7f102acd33a211d472","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5f6500d44a912d4aed664600966706d76b81d9af","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/72c3283a2abd60ecef295e02270f22ef1dfccd25","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7d8ed7cb844df21e4d93af11250fb3a5cb861147","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/92e3c93d60be1f2425738cd66dbadac7d6bc0cd1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d6066145347e14db84c35b445e309f095d0d8125","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72103","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72103 — In the Linux kernel, the following vulnerability has been resolved: dm: avoid leaking the caller's t…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndm: avoid leaking the caller's thread keyring via the table device file\n\nThe refactoring in commit a28d893eb327 (\"md: port block device access to file\")\naccidentally causes the caller's thread keyring to be kept alive long\nbeyond t…","indicators":{"cves":["CVE-2026-72103"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:24.460Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/8ced1d242c34e342defcccdb00663354f212aae6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/981ccd97f7153d310dfa92a534525bbaf46752c2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d3eb8451d529ea452740d1a2bc395a1d20c48133","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f00105be6a593920e9bc7949a069d4a116888851","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72105","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72105 — In the Linux kernel, the following vulnerability has been resolved: dm-log: fix a bitset_size overfl…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndm-log: fix a bitset_size overflow on 32bit machines\n\nCommit c20e36b7631d (\"dm log: fix out-of-bounds write due to\nregion_count overflow\") made sure that region_count could fit in an\nunsigned int. But the bitmap memory isn't alloca…","indicators":{"cves":["CVE-2026-72105"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:24.673Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/1c3412b584e1fb6c665ff33ba7259253bc0082cb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4b0de5a3ac1fd42acb0dc1f80ac5747e3287d723","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/567602fa72d57169365cbc589e0b8c3be900636d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/79feb87ab2396d49b9b65e4bb815d33cc71cba47","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9743132a41f4d9d0e54c5f2adcb821b04796bab1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cdc4ddf9db2cb79f4ab86b1a509b7ac21b0b6cf5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d05e0edfecf5260e6dddd28b2f0cce02bfc6ed7a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e0b0163a65758ec3a2361ae1cea407898c27f21e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72107","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72107 — In the Linux kernel, the following vulnerability has been resolved: dm era: fix out-of-bounds memory…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndm era: fix out-of-bounds memory access for non-zero start sector\n\ndm-era tracks writes in target-relative blocks, but era_map() calculates\nthe writeset block before applying the target offset.  Tables with a\nnon-zero start sector…","indicators":{"cves":["CVE-2026-72107"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:24.920Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/1fcb5e29dd7a5b85adb9d8b539911741d878e829","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7e1822f83c5a1ee7b4a19e98edde8770a10b4c71","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9946a7176bd8c25ddd6e5f1799c54e572ee6bf0f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a868196f03c2b19418ae3d2b69e195d668a271e5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bafe3e720cdac38cd7ea4eb7852a8f2dbe1bbfe6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/db5f9b4601f0012038e5a2628aedec2f47933380","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e3ffa8e492e5cdee62d916ee3e9244ccce2b73c5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fe94a0b14010a3c267ff9a2508afb4f27ff1c5bf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72108","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72108 — In the Linux kernel, the following vulnerability has been resolved: dm thin metadata: fix metadata s…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndm thin metadata: fix metadata snapshot consistency on commit failure\n\n__reserve_metadata_snap() and __release_metadata_snap() modify the\nsuperblock's held_root directly in the block_manager's buffer. If the\nsubsequent metadata com…","indicators":{"cves":["CVE-2026-72108"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:25.047Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/3dc9ae1029320d77472c44965e572f176949cd63","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4af993468193cf4cd32ba5748786e7801945f7d2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5bcd4d3058ebaf46ad2e163829d87dd4870c7a45","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5efb1a7734ed4035fa4fdc3716bdb84621f27cf6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7f76245960a332f39b08cc556e675d1765dc5bbb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9f1a0d27586ceab055e6b050e3731ce3c6b2c4f0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/abf2fae92cbe68945028987d498cc72f8f0e23a8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b5f9a31c51cbb374a1713c3494f8660ab070f035","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72109","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72109 — In the Linux kernel, the following vulnerability has been resolved: net: sparx5: unregister blocking…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: sparx5: unregister blocking notifier on init failure\n\nsparx5_register_notifier_blocks() registers the switchdev blocking\nnotifier before allocating the ordered workqueue. If the workqueue\nallocation fails, the error path unreg…","indicators":{"cves":["CVE-2026-72109"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:25.203Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/17f113e7b622dc850992ade540181717de6a8561","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/483be61b4a9a6df3b7cb277e8f189e082dee4cb8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8a3c44a003176282ee4306b7c96e5a536c6f0707","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cf419c869e0d03aad4b6f4ecf0a813851930dfe7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d6084c47389fd6978a5d66b0d58206a548c792a9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e5afc6d3fabdf1f605d63c4b34a3df6c359e81f3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fbc65b17508ed5464b7106e7fa5f15251ca1b603","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72110","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72110 — In the Linux kernel, the following vulnerability has been resolved: bpf,fork: wipe ->bpf_storage bef…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbpf,fork: wipe ->bpf_storage before bailouts that access it\n\nCurrently, copy_process() can bail out to free_task() before p->bpf_storage\nhas been initialized, with this call graph (shown here for the\n!CONFIG_MEMCG case):\n\ncopy_proc…","indicators":{"cves":["CVE-2026-72110"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:25.320Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/43f0005f81b8ce3be962d653cde8db9022f1e9b0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9b51a6155d14389876916726430da30eabb1d4ed","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9cff220ddb65b022cc668bb652200742476e744c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c3fd6f28c7ce1142a3b23dbb840eaa4777de1d74","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c4f626ddf2350652ad2f79daf1f10847f3f6eabd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72111","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72111 — In the Linux kernel, the following vulnerability has been resolved: bpf: Reset register bounds befor…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbpf: Reset register bounds before narrowing retval range in check_mem_access()\n\nWhen the BPF verifier processes a context load of an LSM hook return\nvalue, it calls __mark_reg_s32_range() to narrow the register to the\nhook's valid…","indicators":{"cves":["CVE-2026-72111"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:25.447Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/0993dc5fc619c0b25ab1310cb11d65e78351c0fe","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5a55f9aecc08990940e70f0c7048a80850c5a16a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5e0b273e0a62cc04ec338c7b502797c66c2ed42a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bde92f65042ec14389782dd223f706bf6b59ce5d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72112","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72112 — In the Linux kernel, the following vulnerability has been resolved: io_uring/bpf-ops: reject re-regi…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nio_uring/bpf-ops: reject re-registration of an already-bound ops\n\nio_install_bpf() only rejects a second registration on the ctx side\n(ctx->bpf_ops) and sets the per-map back-pointer ops->priv\nunconditionally. The struct_ops link p…","indicators":{"cves":["CVE-2026-72112"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:25.563Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/0639ea767fe04c288a8d6cb826100fe3d95d4936","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3afc64c61ce906a04f073ca350b46de10e8302f9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72113","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72113 — In the Linux kernel, the following vulnerability has been resolved: can: bcm: add missing device ref…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncan: bcm: add missing device refcount for CAN filter removal\n\nsashiko-bot remarked a problem with a concurrent device unregistration\nin isotp.c which also is present in the bcm.c code. A former fix for raw.c\ncommit c275a176e4b6 (\"c…","indicators":{"cves":["CVE-2026-72113"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:25.680Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/04d23061bbf18d5d81022eb21e9d32e99d24468d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/633bda66fbf309f5de5e1ad6defe8e6b1d77a20f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/84aa4807816e405c1bf87114fc63e06d244281ef","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b024c21c9066f6957b7d4a8f2037e4b000c5e041","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bd5232663524e94cc5aad861dca11e3db8e2ab6f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d59948293ea34b6337ce2b5febab8510de70048c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dcaee869913c7210cd47ed0a8f27349d7bdcdb7b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ee8b36d0faca08f35b889b6e9aa850695e5b8ba9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72114","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72114 — In the Linux kernel, the following vulnerability has been resolved: can: bcm: validate frame length…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncan: bcm: validate frame length in bcm_rx_setup() for RTR replies\n\nbcm_tx_setup() validates cf->len against the CAN/CAN FD DLC limits\nbefore installing frames for TX_SETUP, but bcm_rx_setup() never did\nthe same for the RTR-reply fr…","indicators":{"cves":["CVE-2026-72114"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:25.803Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/1b475c0c72f44622a320a4386ce9e76f85e69bc7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/204f2b232717bc470ddb9e1da1d27dd9c6ef0caa","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/59bfddea64159594feb62ef11b7d7a33c8ee3783","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/62ec41f364648be79d54d94d0d240ee326948afd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7d966cdee006911d3957e1a4e72cb93c39cd8c1e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cc1f9569f1c1adf74fa69d6f716a31b58a2fc6ce","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/deb6a697cce3f021e731df543597f37a5e54caab","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e061624c0a86c3c26a2bf017e432fbc93ad68f3a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72115","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72115 — In the Linux kernel, the following vulnerability has been resolved: can: bcm: track a single source…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncan: bcm: track a single source interface for ANYDEV timeout/throttle ops\n\nAn ANYDEV rx op (ifindex == 0) with an active RX timeout and/or\nthrottle timer has no defined semantics when matching frames arrive\nfrom several interfaces:…","indicators":{"cves":["CVE-2026-72115"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:25.900Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/03dfe347c398fa41a7e30e8dc538f12568c183e6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/18b45251e74e35668f0dd0c470549384ae191ecf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2f5976f54a04e9f18b25283036ac3136be453b17","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3ff8c24b421070a2db99a5cdb86edc9ff339418e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/57cf104da4cf450ae9c16801a3164604b801d2cc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b6317022b685a430a3ae420456716e3c0c02ef4b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/eca8b44d51fc6ab61022258ec968e55e3073b79e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f147f48837cb1426521f5b3c3b3134c71128a25d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72116","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72116 — In the Linux kernel, the following vulnerability has been resolved: can: bcm: fix stale rx/tx ops af…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncan: bcm: fix stale rx/tx ops after device removal\n\nRX: an RX_SETUP update(!) for an existing op skipped can_rx_register()\nunconditionally, even when a concurrent NETDEV_UNREGISTER had already\ntorn down its registration (op->rx_reg…","indicators":{"cves":["CVE-2026-72116"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:26.020Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/3b762c0d950383ab7a002686c9136b9aa55d2d70","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/60d8a7942f4ed2d975207aaeba1adb576707e53d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6be3e1fedf03eab36a2c09d755d1171287b2014b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9517d8fb0b191398d35b9b7f8c719c1cc7761cb1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b31d0933509c5a35c0be5736a2ce8df0d1bf112c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ca829677ffa2de5d79e06366e19ac1e4f5cc78dd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d30a36066ed3abefb72ae18901f71841ba18b350","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f749e4564952d60e96930c09f2be99955d07c22e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72119","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72119 — In the Linux kernel, the following vulnerability has been resolved: can: bcm: extend bcm_tx_lock usa…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncan: bcm: extend bcm_tx_lock usage for data and timer updates\n\nStage new CAN frame content for an existing tx op into a kmalloc()'d\nbuffer and validate it there, mirroring the approach already used in\nbcm_rx_setup(). Only copy the…","indicators":{"cves":["CVE-2026-72119"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:26.363Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/12ce799f7ab1e05bd8fbf79e46f403bfe5597ebc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/337f966c00662d81ad82cf5a4bbb150b2e32c0d4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/37917e432e50b7de2b64230974380132a30f7270","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/52f06e7603780de100233713ddaf971d422e10ef","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/63422347b4c782f429748b2a09cd3cf3b77e6abd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/972fd66bb08fdef1090abe43196ca8da07216d13","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a538b072ee074c9b41b9d9c15a6861a963e30755","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bd46f55dec608daa44b45dcf3328517630ad8e40","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72120","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72120 — In the Linux kernel, the following vulnerability has been resolved: can: bcm: add missing rcu list a…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncan: bcm: add missing rcu list annotations and operations\n\nsashiko-bot remarked the missing use of list_add_rcu() in\nbcm_[rx|tx]_setup() to have a proper initialized bcm_op structure\nwhen bcm_proc_show() traverses the bcm_op's unde…","indicators":{"cves":["CVE-2026-72120"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:26.507Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/30f7bb922cb7e7f072a56c7cb7a5efccd2ceca1d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4e22e8b505f877573bbdfdbcb680babad9b2f7a1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7b2c3eabc4dafc062a25e10711154f2107526a78","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8357255e56dc1aaa437e3c53ee9385de984e0d57","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8e1c7257c81577130f5ce90f69b2a2c3ce63f957","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b06a4a397ac826603f39875cb7c7819a41365196","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/eb1c26eab4d1f0b4450439b4b88c3e73faf1da98","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f53bdab85e64eb57d6899a30d1307fd5a3639cc7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72121","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72121 — In the Linux kernel, the following vulnerability has been resolved: can: bcm: add locking when updat…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncan: bcm: add locking when updating filter and timer values\n\nKCSAN detected a simultaneous access to timer values that can be\noverwritten in bcm_rx_setup() when updating timer and filter content\nwhile bcm_rx_handler(), bcm_rx_timeo…","indicators":{"cves":["CVE-2026-72121"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:26.650Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/19b1994069dd29478ba767de1f98f14a088198dc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/749179c2e25b95d22499ed29096b3e02d6dfd2b4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/834cbca3b12e46887f7a9b35f1981a888360ea4c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/96994180bd7b248b0cc698afe926e23fc1bda59b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a7c369e7da8203e2b5be12bbcac7b9ab2ed5b658","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a7eb6db1cd3f7b556a301dc1265945ad112089f7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/caa8704a7f3cb7806331596195385437126ecb3a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fc9f5ee1b073bd233d9c604e338af4ebb42cbc33","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72122","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72122 — In the Linux kernel, the following vulnerability has been resolved: can: bcm: fix lockless bound/ifi…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncan: bcm: fix lockless bound/ifindex race and silent RX_SETUP failure\n\nbcm_sendmsg() reads bo->ifindex and checks bo->bound before taking\nlock_sock(), while bcm_notify(), bcm_connect() and bcm_release() all\nmutate both fields under…","indicators":{"cves":["CVE-2026-72122"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:29.437Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/0f6f9f95294b4cbb26ba02209e893e3bd91237c3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/35f0ac19efb1a3f6c5e12c00e475a9ec2d9c3a6d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6bcc5cd247c2934373bc2a1cdf8bf12321169543","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9e60c586faeaed80d55ab8ce2a4b8e56133bc395","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b70f1a15533afeeec5d07f20bec3f3867ab1c7b6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b9c6ac6fb4e01b34575816066e5d3890a57b3c86","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d9b091d9d22fee81ec53fb55d2032951993ceadb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ffa80a2af27c97453861a5128e537214a31cd18a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72123","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72123 — In the Linux kernel, the following vulnerability has been resolved: can: bcm: defer rx_op deallocati…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncan: bcm: defer rx_op deallocation to workqueue to fix thrtimer UAF\n\nCommit f1b4e32aca08 (\"can: bcm: use call_rcu() instead of costly\nsynchronize_rcu()\") replaced synchronize_rcu() in bcm_delete_rx_op()\nwith call_rcu() and introduc…","indicators":{"cves":["CVE-2026-72123"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:29.577Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/036a8c320ca11bc912e8027adcfad14b326f067e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3cf4fd5316f449811d8baf1bc6978ef5a7b743a9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4177762f70646ac48a2af382e45a795cbd295198","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/68973f9db76144825e4f35dfdc80fb8279eb2d57","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6fd08e8d826c3aa4cc7021f5f9cdbb7fa7441d3f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cd830e0bc25ee2d38cbfbdbb3cd77c5f53b2b6d5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ce2d4b121fb7545e1ed588e860c8e5fd5ad45224","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/de5fce46637de05bef56ec08528127676eb6fc9b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72124","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72124 — In the Linux kernel, the following vulnerability has been resolved: can: isotp: serialize TX state t…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncan: isotp: serialize TX state transitions under so->rx_lock\n\nThe TX state machine (so->tx.state) is driven from three contexts:\nsendmsg() claiming and progressing a transfer, the RX path consuming\nFlow Control/echo frames, and two…","indicators":{"cves":["CVE-2026-72124"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:29.720Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/0b05eca9589f609e2491b528dccf683168a4cda8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/377a8f500704da42ed86a4541ed930e9dcfdb2ea","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/37beb16e08cae94cc05840c7274225e3b0b38ae7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4f1fdf1a1c317bcac0c6b6c8e12642c9983de1ca","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6da8119e8dd542194103139812d1a4b7dcd1aedd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a7d90e7b5e75d7406c889fe36e9a61ee364a00cb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bbedeb67a9a684f2fb78c55bd3662c400526715e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cf070fe33bfbd1a4c21236078fadb35dd223a157","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72125","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72125 — In the Linux kernel, the following vulnerability has been resolved: can: isotp: fix use-after-free r…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncan: isotp: fix use-after-free race with concurrent NETDEV_UNREGISTER\n\nisotp_release() looked up the bound network device via dev_get_by_index()\nusing the stored ifindex. During device unregistration the device is\nunlisted from the…","indicators":{"cves":["CVE-2026-72125"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:29.840Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/0b811c4bbe3ec9ad611e90a540fe8b51b3bb8a96","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/20bab8b88baac140ca3701116e1d486c7f51e311","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/33b9cd9245e2a4b800f99ed1cc53d64960614152","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/43884dc7963beef2328f507f4fe680bdc173eb80","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7bef39ba76eb7307ed22a50329e0f5776dbeda58","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8e018f4335590460ebcf0c2b493ed38ba1a35204","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e442b62ba5a7756c17e05a77b32cdd085a2b6138","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f311bbb29bb06aaab69ba45a6e4b11323d20b8f9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72126","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72126 — In the Linux kernel, the following vulnerability has been resolved: can: isotp: use unconditional sy…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncan: isotp: use unconditional synchronize_rcu() in isotp_release()\n\nisotp_notify() unregisters the (RCU) CAN filters via can_rx_unregister()\nand clears so->bound without waiting for a grace period. isotp_release()\nuses so->bound to…","indicators":{"cves":["CVE-2026-72126"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:29.963Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/15413a082df69175c2f96aeab4c26fe1ff7cff03","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/59672aa4bcd8d32172c1ff6a179583981d6acabc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6280eda96e0707264849fa7d036fed873c1f8a6d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/945d9894502cd9124f5d676181c542ed2000f7c0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9b1a02e0d980ac6b0e36a90378f847062f81d7e4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b8278ff605187ef3fa0f2705e93251cce4c4f8ee","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b88a511308779c225005d7994b8744561bdbafbc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cb6abc584a1bfab107ac003d64948a4aef1730aa","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72127","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72127 — In the Linux kernel, the following vulnerability has been resolved: netdev-genl: report NAPI thread…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetdev-genl: report NAPI thread PID in the caller's pid namespace\n\nnetdev_nl_napi_fill_one() reports the NAPI kthread PID in NETDEV_A_NAPI_PID\nusing task_pid_nr(), which returns the PID in the initial pid namespace.\n\nNETDEV_CMD_NAP…","indicators":{"cves":["CVE-2026-72127"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:30.113Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/1f24c0d01db214c9e661915e9972404c96ca73c0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5e4c8e08ce95730c87d6ada0bdbe1131a3c06393","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fb18095389fe81f140d39585a2624aca9d42227e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fd750b694f1f9e1ecb8ca19314e4e21edbb15f42","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72133","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72133 — In the Linux kernel, the following vulnerability has been resolved: spi: uniphier: Fix completion in…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nspi: uniphier: Fix completion initialization order before devm_request_irq()\n\nThe driver calls devm_request_irq() before initializing the completion\nused by the interrupt handler. Because the interrupt may occur immediately\nafter d…","indicators":{"cves":["CVE-2026-72133"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:30.760Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/077a7bc1c32d3da9670c5e282ea3e5ac8a94be59","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/49f6705d80b5e6175d8435d9c72b66bd516a8e89","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/82a5746c4c9e94f6f816ec7edea6ddc24417c6a5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8b5798ce0007874c14611b8ee4ce6c749855260e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b9fcf0db433d79648ace74bc2b8b88f91e306304","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d44b828eb551bd59ba9f22457825cc3db3a39fc1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f3ad1c87d8201e54b66bd6072442f0b5d5a308ee","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f4bb0a91f7badd6d15ac8d783a1169d9e1e95c17","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72134","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72134 — In the Linux kernel, the following vulnerability has been resolved: spi: imx: reconfigure for PIO wh…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nspi: imx: reconfigure for PIO when DMA cannot be started\n\nWhen spi_imx_can_dma() selects DMA, the ECSPI is configured for DMA:\nspi_imx_setupxfer() sets CTRL.SMC and clears dynamic_burst, and\nspi_imx_dma_transfer() programs the dyna…","indicators":{"cves":["CVE-2026-72134"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:30.880Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/245404c26563aafb36aafb01298f148db1851be3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/40dee2d3e9994aed9efe7bed40eb0e4d38d5a25c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72135","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72135 — In the Linux kernel, the following vulnerability has been resolved: tpm: Make the TPM character devi…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ntpm: Make the TPM character devices non-seekable\n\nThe TPM character devices expose a sequential command/response\ninterface, but their open handlers leave FMODE_PREAD and FMODE_PWRITE\nenabled.\n\nAfter a command leaves a response pend…","indicators":{"cves":["CVE-2026-72135"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:30.973Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/21a13f932972bc9836f58c44fcd47c62abdecd95","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/232dcf908eb7eb9d8046a9597975caf44270966e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/947b773caaa548672184df025271b29bdc80b0f1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9c513dabd4540f811585a2087f23069767a284da","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ada4b9a5087ea7f30dd8e4c6411a4fb6547eb1ed","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dda695fab5e21f923d29e8cb01df256468ddfbd1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ed0ffc2c016629e40ba041ed0424a772d8b02e2c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f20d61c22bcaf172d6790b6500e3838e532e71c8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72136","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72136 — In the Linux kernel, the following vulnerability has been resolved: xfrm: xfrm_interface: require CA…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nxfrm: xfrm_interface: require CAP_NET_ADMIN in the device netns for changelink\n\nxfrmi_changelink() operates on at most two netns, dev_net(dev) and the\ninterface link netns xi->net. They differ once the device is created in\nor moved…","indicators":{"cves":["CVE-2026-72136"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:31.103Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/04c1aa57d08471b1953bf27c84ac9b3d78d71831","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/095515d89b19b6cc19dfcdc846f97403ed1ebce3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/37b61946d278c7deb0d40ba8f2b6fc0478d61dab","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3ba2b2ef7d6a63b190f15cfc2b4ba0fba59928ea","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/80ec68bba11f7f387c0e4099c2d7b2c84943eb99","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8ca2a19a987a7d1cb4c916ed9723a1c6993b4276","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bdfd1c21d90e628a58a9de79e024cdfcbedfa15c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e9c90756f10da334fb31552e52c61f1dba69f491","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72141","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72141 — In the Linux kernel, the following vulnerability has been resolved: i2c: imx: fix locked bus on SMBu…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ni2c: imx: fix locked bus on SMBus block-read of 0 (IRQ)\n\nSMBus 3.1 6.5.7 allows a Block Read byte count of 0, but the\ninterrupt-driven block-read state machine rejects it as -EPROTO. Worse,\nit returns without a NACK+STOP: the next…","indicators":{"cves":["CVE-2026-72141","CVE-2026-72142"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:31.717Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/07fd9385f0d87dff4b34f355f68adf701080cb24","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/56ddfc18ea8f7d77747658892873eb632b2ed530","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5d3240f42a667e29262aff76fdebfcdac4980626","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/016ef0f6ca4bc9bf0330ac41bd2ea349759643e3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/60ed00d46616a9232e42ea7a3e3c0273d7cf7543","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6d2c973926d0612360693bc559be2ffde836151b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c882e8cc68fb993700dc21fd6e754001e6297934","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cb2fc37857693b55909fb77dc2c87cfbc1cdc476","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72143","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72143 — In the Linux kernel, the following vulnerability has been resolved: platform/x86: ISST: Restore SST-…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nplatform/x86: ISST: Restore SST-PP control to all domains\n\nThe SST-PP control offset is only restored to power domain 0 after\nresume. During suspend, control values are read and stored for all\npower domains.\n\nUse pd_info->sst_base…","indicators":{"cves":["CVE-2026-72143"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:31.953Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/2565a28cdcdcb035e151d285efcba26bccb3726e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2a42f651cce91e9cbe65fe933622c522cbb1868b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cea03d67db3a880893360bdbb1b0b8d9b33b1799","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72144","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72144 — In the Linux kernel, the following vulnerability has been resolved: platform/x86: dell-laptop: fix m…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nplatform/x86: dell-laptop: fix missing cleanups in init error path\n\ndell_init() initializes several resources after dell_setup_rfkill(),\nincluding the optional touchpad LED, keyboard backlight LED, battery\nhook, debugfs directory a…","indicators":{"cves":["CVE-2026-72144"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:32.067Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/1e41ca4a7fba2e680d6950e9511245255fffa46c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6bd76d5421a72d2526c9be8f01f55bee960f899f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6e9cab2247e5b243ae2d907ce7c948a8a9c8d61a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b351e082711d12f075a36a6cd67709693689315f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e4908b3bed755f73870416b971e162a8d0ef0aef","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72146","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72146 — In the Linux kernel, the following vulnerability has been resolved: dmaengine: sh: rz-dmac: Move int…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndmaengine: sh: rz-dmac: Move interrupt request after everything is set up\n\nOnce the interrupt is requested, the interrupt handler may run immediately.\nSince the IRQ handler can access channel->ch_base, which is initialized\nonly aft…","indicators":{"cves":["CVE-2026-72146"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:32.267Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/07ae600bd353b22f31a8f1007269744fafc7f123","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/0e0c5b3cf374ebf3c589741751e1fbc67f53ec2f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2a4d9e2234c3f817bb0ddbc8680d09ce9be84f93","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5b12de6229d662864ee22c11d4876652b40120f0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/731712403ddb39d1a76a11abf339a0615bc85de7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d24d53323e817d79a4bd111bd10b34dbc96e64a8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ec9f66c91bffdb69d309bae6dfb387562db7ebc8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72148","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72148 — In the Linux kernel, the following vulnerability has been resolved: dmaengine: dw-edma: Add spinlock…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndmaengine: dw-edma: Add spinlock to protect DONE_INT_MASK and ABORT_INT_MASK\n\nThe DONE_INT_MASK and ABORT_INT_MASK registers are shared by all DMA\nchannels, and modifying them requires a read-modify-write sequence.\nBecause this ope…","indicators":{"cves":["CVE-2026-72148"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:32.483Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/1553ca96e9df158d8f37137cf4bf5fb0dc981d94","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/21a9834f56d6249aaa6ca7c2d8c182d66c48c3e1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2247cc25a91fb1b5b86586ed55fdd5b725a7477c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3ee0f478bb29b4ee892b178179a9a76ddd194149","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8ffba0171c6bbce5f093c6dba5a02c0805b31203","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ddbc4a8a4fe296f1fa2e59f7d176fc7c773df640","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72149","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72149 — In the Linux kernel, the following vulnerability has been resolved: dmaengine: tegra: Fix burst size…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndmaengine: tegra: Fix burst size calculation\n\nCurrently, the Tegra GPC DMA hardware requires the transfer length to\nbe a multiple of the max burst size configured for the channel. When a\nclient requests a transfer where the length…","indicators":{"cves":["CVE-2026-72149"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:32.610Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/4651df83b6c796daead3447e8fd874322918ee4f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6e37e9e230c7e848bd8e8cd4db15bb18bcf11ad1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/735951baa311c66353405dcac39375dd66441db0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7926c1e4be86379945fb5f168888ac4d2aaf6c91","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8f0f5de1091119679d87f60dfb1acbff4b2a0ed3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a3b76b54e06d73166af4d1a284a0e0711889060c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72151","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72151 — In the Linux kernel, the following vulnerability has been resolved: tpm: tpm2-sessions: wait for asy…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ntpm: tpm2-sessions: wait for async KPP completion in tpm_buf_append_salt\n\ntpm_buf_append_salt() in drivers/char/tpm/tpm2-sessions.c calls\ncrypto_kpp_generate_public_key() and crypto_kpp_compute_shared_secret()\nwithout installing a…","indicators":{"cves":["CVE-2026-72151"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:32.823Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/111e520efbe82b324bc42b1999b723c0619eea6d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/493333f167926c7adab8e7563e21ad71d8af84fa","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/73851a7c43dfa52d2ed9415889b33daf85da0ed9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/934d1cd40e2893bf7a041b54f6afd1c008d7a21c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72154","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72154 — In the Linux kernel, the following vulnerability has been resolved: openrisc: Fix jump_label smp syn…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nopenrisc: Fix jump_label smp syncing\n\nThe original commit 8c30b0018f9d (\"openrisc: Add jump label support\")\ncopies from arm64 and does not properly consider how icache invalidation\non remote cores works in OpenRISC.  On OpenRISC re…","indicators":{"cves":["CVE-2026-72154"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:33.153Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/3fac46068fe4cea22ed373432b9173a915e8e60d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/57740658042daf591c57d6e700d9a304d5972552","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/aca063c9024522e4e5b9a9d1927433f6a01785a3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72157","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72157 — In the Linux kernel, the following vulnerability has been resolved: net: thunderbolt: Fix frags[] ov…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: thunderbolt: Fix frags[] overflow by bounding frame_count\n\ntbnet_poll() assembles a multi-frame ThunderboltIP packet into one skb. The\nfirst frame goes into the skb linear area and every further frame is added as\na page fragme…","indicators":{"cves":["CVE-2026-72157"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:33.497Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/2b3b4e5ff5a58ad32817824b0310e63908b12052","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/55d9895f89970501fe126d1026b586b04a224c27","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e27beb4536cbf1d59e2d8c2840e87d972aba906f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e5824d5b841d99a2bcdd4e2c256643293bbc22c1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fe6b606fbf0c3beb94ccf17fcf31d8c2138264e3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72160","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72160 — In the Linux kernel, the following vulnerability has been resolved: ocfs2: reject dinodes with non-c…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nocfs2: reject dinodes with non-canonical i_mode type\n\nPatch series \"ocfs2: harden inode validators against forged metadata\", v2.\n\nThis series adds three structural checks to OCFS2 dinode validation so\nmalformed on-disk fields are r…","indicators":{"cves":["CVE-2026-72160"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:33.850Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/157d31ef45038d89cd19620105e082d43c8e41e0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2e3aac33988ef4e4170141db8e995693ea38357c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4db3b6a2a8ecf2a89d26a4090ace4072c6fad050","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5366a017099c6a3c443be908a05f26fd72af12a1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/82afe13558354390d8a592a5334d5f4fd72c0e5c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a5b555bcabbb0aff8745ad181768eaf9d964c1ee","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b858f2d57cfc9d57ce61b86051d603dc0ebccd40","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fb024ea29f6cb1f01745e5f2e31646f3acb9aa6f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72162","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72162 — In the Linux kernel, the following vulnerability has been resolved: ocfs2: fix UBSAN array-index-out…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nocfs2: fix UBSAN array-index-out-of-bounds in ocfs2_sum_rightmost_rec\n\n[BUG]\nOn-disk corruption setting l_next_free_rec to 0 in an inode's embedded\nextent list triggers a UBSAN panic on the next write to that file.\n\n[CAUSE]\nocfs2_s…","indicators":{"cves":["CVE-2026-72162"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:34.117Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/452a8467be8143747292218212671deeb186d2ae","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/671889c553ea55e2da6a4f3b15f4c0fa40f2f0d1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/858aa4965ffa8c0d4bb5dd835ac4f1c9a1dcab85","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72164","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72164 — In the Linux kernel, the following vulnerability has been resolved: ocfs2: avoid moving extents to o…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nocfs2: avoid moving extents to occupied clusters\n\nFor non-auto OCFS2_IOC_MOVE_EXT operations, userspace supplies a physical\nme_goal.  ocfs2_move_extent() initializes new_phys_cpos from that goal and\nexpects ocfs2_probe_alloc_group(…","indicators":{"cves":["CVE-2026-72164"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:34.357Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/0d0c5c17b18bdbc592ac26ab4d1de7e3dbf9be1e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/19f7b04924b20b81dabbeed19d5542792ba5b6d6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/22920541c35a9f23f219038ba5874c843a7c4419","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3112afebf2a76e522fbaabcbb0c47aafbdc35932","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/35486b291b8fbde6c4d0b1c79e565c6260d3329d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4d1953d3aeb4a7f6623083e1839068ee1c157db2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d5d5a21fb33cd9b963aea99da81e4dacd452cd95","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e281d892ce5870a50fdc718cb3bfc3dd5b62c728","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72165","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72165 — In the Linux kernel, the following vulnerability has been resolved: mtd: rawnand: fix condition in '…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmtd: rawnand: fix condition in 'nand_select_target()'\n\n'cs' here must be in range [0:nanddev_ntargets[.","indicators":{"cves":["CVE-2026-72165"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:34.490Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/3da4eb15c7b421c2d97c402bb7bd607c44822995","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/483a8a8581ee1274ec70e2561492096d4a7305e6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4bbfcf9c7e46cae58257150bf834853559382e28","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8507c2cc9e4fa402401819f44d1e8a5ef4d11d8b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8f575fc17360827ca1d1940a84f3c7ee40407a10","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c2a131fb6882c98aada739479cc96df8748d0c24","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e6df4fea1dc86c058e1918136c9b9d8e80c4be1b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fbc7c8a1167b2eb56b2fd8598c29a3d5e9f8676e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72170","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72170 — In the Linux kernel, the following vulnerability has been resolved: 9p: skip nlink update in cachele…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\n9p: skip nlink update in cacheless mode to fix WARN_ON\n\nv9fs_dec_count() unconditionally calls drop_nlink() on regular files,\neven when the inode's nlink is already zero. In cacheless mode the\nclient refetches inode metadata from t…","indicators":{"cves":["CVE-2026-72170"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:35.100Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/574aa0b4799470ac814479f1138d19efe6262255","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8d610017c992de705b304d3d727a6e3a86af6149","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8faccac11e1369adddf5d80f4a45af93f13b2e1a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a5a682b016ef5b5384e28f6d652d47a8f8e73d37","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/de79c3f3643841b8659a71958df7cf2a66bfd409","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72171","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72171 — In the Linux kernel, the following vulnerability has been resolved: mtd: slram: remove failed entrie…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmtd: slram: remove failed entries from the device list\n\nregister_device() links a new slram_mtdlist entry before allocating all\nof the state needed by the entry. If a later allocation, memremap(), or\nmtd_device_register() fails, th…","indicators":{"cves":["CVE-2026-72171"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:35.220Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/200b8bc5b6065b02f3775cf131f14b8e1156a00a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2fd0cbbb34447ccddab67a2a638a07c6d94cae7a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/36f1648644d769c496a8e47e53603e863e358d73","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9ee674ab10f755bbedbcbb8e76745d2bb8de88d1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bdcdfc2464659789032edfad15ff5f7a166f5d7b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d8dcbbfa0d695a5244059aa34a2e81f3e8df1082","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e97415b8254d9cc131b7bb1c80fcf38123269b9a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f40acf577bb0fb0829f285ecfeb27d817840601c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72172","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72172 — In the Linux kernel, the following vulnerability has been resolved: mm/mm_init: fix uninitialized st…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmm/mm_init: fix uninitialized struct pages for ZONE_DEVICE\n\nIf DAX memory is hotplugged into an unoccupied subsection of an early\nsection, section_activate() reuses the unoptimized boot memmap.  However,\ncompound_nr_pages() still a…","indicators":{"cves":["CVE-2026-72172"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:35.353Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/11f2826e9ee6f24aaa774e3dcd75abbe4b3091b6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/511a60e71aec308b24722cffc1912bf6befb87bf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b91e27bce37cab9f35de0059278ebe457ca9878b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cd681403a87085562499d60325b7b45d3be11217","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/da5234df0941665f3a3f5b80f3dab94046537be0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72175","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72175 — In the Linux kernel, the following vulnerability has been resolved: fs/proc/task_mmu: fix make_uffd_…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nfs/proc/task_mmu: fix make_uffd_wp_huge_pte() prot-update race\n\nPatch series \"userfaultfd/pagemap: pre-existing fixes\".\n\nThese are pre-existing bug fixes that were carried at the front of the\nuserfaultfd RWP working-set-tracking se…","indicators":{"cves":["CVE-2026-72175"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:35.677Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/04718f7c9290f95385f0dd328758753dc1c36dec","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/50a25249a6355db74c2c1b6be541b4caab9f3655","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6b7f774b8882445d9174681747d37c42548686a4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8e39ed92d7c5c6bfc08dc45153916f49a4e98bab","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72181","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72181 — In the Linux kernel, the following vulnerability has been resolved: mips: sched: Fix CPUMASK_OFFSTAC…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmips: sched: Fix CPUMASK_OFFSTACK memory corruption\n\nThis patch addresses a critical memory management flaw. When\nCONFIG_CPUMASK_OFFSTACK is enabled, cpumask_var_t is a pointer.\nConsequently, sizeof(new_mask) evaluates to the point…","indicators":{"cves":["CVE-2026-72181"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:36.393Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/15ba8053fe4162c933855f1676fb321cdb6251c7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1caee6e084a96ada94658f261ced377d85af3f03","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2f7730c03a9deea3ba7a1c980070d363b4ea2046","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3446ffb5d03c36f9ce88ede7ca5be319a2968d96","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/87a56c1e8e36d06ebe8640432f911538ded7827d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/98e37db4a34d3af3fb2f4648295c25b5e40b20e3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a1dd41d00c57efb1fbc6f361c5f48c9d00cca51c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d20ee42f8226607b5693b2bc2f115ca2d270221a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72183","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72183 — In the Linux kernel, the following vulnerability has been resolved: landlock: Fix LANDLOCK_SCOPE_SIG…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nlandlock: Fix LANDLOCK_SCOPE_SIGNAL bypass on the SIGIO path\n\nLANDLOCK_SCOPE_SIGNAL must prevent a sandboxed process from signaling\nprocesses outside its Landlock domain.  It can be bypassed through the\nasynchronous SIGIO delivery…","indicators":{"cves":["CVE-2026-72183"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:36.640Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/04916f7dc6d37cd478b06c86398c34a6963ac8c9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1f18aac2637220b5847d073447498e81ddca10b2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4b80320ca7ed03d6e683f95b6066565dc97b9f92","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7a92e9fd1d496a610b40e0c4253fd54e7496f5ab","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72195","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72195 — In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: bound attr_off in Upda…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nfs/ntfs3: bound attr_off in UpdateResidentValue against data_off\n\nIn do_action()'s UpdateResidentValue case (fslog.c:3307),\nlrh->attr_off and lrh->redo_len come from the on-disk LRH.\nWhen they satisfy aoff + dlen < attr->res.data_o…","indicators":{"cves":["CVE-2026-72195"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:38.077Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/50b5e83384e7fed3d11d18b79ff350e9d6d89861","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/53c12f178f584dc5f836ffe2782138a6e9348ed9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/546518468e6c9ea469669eef78f8cc380ad6e2ca","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/97758fd9756b5f09e9ddc6a5f6a569041acc8421","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a89c66674283a0293c0f266dc57087a6114371a3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ab8761676d638c5be170aaf91b7ffdd451236616","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d1570c48f49a693974d000251030370ee2e83539","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72196","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72196 — In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: bound copy_lcns dp->pa…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nfs/ntfs3: bound copy_lcns dp->page_lcns[] index in analysis pass\n\nIn log_replay()'s analysis pass, after find_dp() returns a\nvalid DIR_PAGE_ENTRY for the (target_attr, target_vcn) tuple,\nthe copy_lcns block walks lrh->lcns_follow f…","indicators":{"cves":["CVE-2026-72196"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:38.200Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/0f13e823bf86bd1800168ea0bb5bca8b8500a81c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/49c86dae0c0ccb8d98ddcdc46987259389c816dd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5e7b598660cfa8e5af172cf4c65cffc126333307","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9b3d8cc9d54fcded4de51b2b1026ae7182512077","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9b7c28d8c61bdb041936222a09a708531a1c2921","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d240cd98f5f7b65c90f6b2b6abe3232ccdc405ab","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72197","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72197 — In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: bound DeleteIndexEntry…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nfs/ntfs3: bound DeleteIndexEntryAllocation memmove length\n\nIn do_action()'s DeleteIndexEntryAllocation case, e->size comes\nfrom an on-disk INDEX_BUFFER entry.  When e->size makes\ne + e->size point past hdr + hdr->used,\nPtrOffset(e1…","indicators":{"cves":["CVE-2026-72197"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:38.323Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/09fddd52c1b0cef2c086d61be8f3d5dc92e36565","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4c8aac931c1cd70347961ba5157aa916448c6a25","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/554700c65d398276cb00a8ef95f1d5e00b9eff93","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b509b9613f20dc5b653d54bf78fab00d79cc43c8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c38ed2ab62fab75fd6d0fdc2bee540fbebc7b959","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f383aae59ec3994c14804f4191c59038b206be81","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fc4626bb3656362de8b0ecd56605d47a19ec3518","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72198","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72198 — In the Linux kernel, the following vulnerability has been resolved: ntfs: reject non-resident record…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nntfs: reject non-resident records for resident-only attributes\n\nThe shared lookup-time attribute validator rejects non-resident\n$FILE_NAME and $VOLUME_NAME records because their formats require\nresident values and callers handle re…","indicators":{"cves":["CVE-2026-72198"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:38.440Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/097cdfd0a55df5af82c9753833f39a8bfadbcfcb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7ffa8f3d30236e0ab897c30bdb01224ff1fe1c89","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b54c9beb90e570bae17a9c18442aeeaf17165ccb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72202","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72202 — In the Linux kernel, the following vulnerability has been resolved: ntfs: avoid heap allocation for…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nntfs: avoid heap allocation for free-cluster readahead state\n\nget_nr_free_clusters() allocates a temporary file_ra_state before it\npublishes the precomputed free cluster count, sets NVolFreeClusterKnown(),\nand wakes vol->free_waitq…","indicators":{"cves":["CVE-2026-72202"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:38.860Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/40ee64e633e5e413f2255bb48c063977d8c86f34","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c05132077df57a384919f61d7f8a8e76d748a6d4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72203","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72203 — In the Linux kernel, the following vulnerability has been resolved: ntfs: skip extent mft records in…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nntfs: skip extent mft records in writeback to prevent deadlock\n\nThis patch fixes the ABBA deadlock between extent_lock and extent\nmrec_lock triggered by xfstests generic/113, that occurs since the commit\n6994acf33bae (\"ntfs: use ba…","indicators":{"cves":["CVE-2026-72203"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:38.970Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/76bc14c7097ff678b2b5dbfd4fa33b46897d87ce","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7ffa8f3d30236e0ab897c30bdb01224ff1fe1c89","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f831ab09d521898bf1dd99bf5adfd630ea1428e3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72204","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72204 — In the Linux kernel, the following vulnerability has been resolved: ntfs: centalize $INDEX_ROOT head…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nntfs: centalize $INDEX_ROOT header validation\n\nAdd a dedicated helper to perform stricter validation of $INDEX_ROOT and\nuse it for both directory inodes and named index inodes. This keeps the\nroot size and header geometry checks co…","indicators":{"cves":["CVE-2026-72204"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:39.090Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/8b97b302f553a480fb76d2afd53cd6c0635a9dcd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b06730c6af58d3569883f8dd7c36a90aba5ecc0a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72213","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72213 — In the Linux kernel, the following vulnerability has been resolved: mm/hugetlb: fix hugetlb cgroup r…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmm/hugetlb: fix hugetlb cgroup rsvd charge/uncharge mismatch\n\nIn alloc_hugetlb_folio(), a single h_cg pointer is used for both the rsvd\nand non-rsvd hugetlb cgroup charges.  When map_chg is set,\nhugetlb_cgroup_charge_cgroup_rsvd()…","indicators":{"cves":["CVE-2026-72213"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:40.013Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/15807d0ddde37407af72859426b654f3d1972b00","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1697d253f51cf5e3825a3423ff49e128a3502ab2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5c32ae4a91fb5f4941328e0c1720a7fa4189c3bd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b785f2bd9496facedc0a031be09cddcd1d3c84d3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72225","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72225 — In the Linux kernel, the following vulnerability has been resolved: jbd2: fix integer underflow in j…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\njbd2: fix integer underflow in jbd2_journal_initialize_fast_commit()\n\njbd2_journal_initialize_fast_commit() validates journal capacity by\nchecking (journal->j_last - num_fc_blks < JBD2_MIN_JOURNAL_BLOCKS).\nBoth j_last and num_fc_bl…","indicators":{"cves":["CVE-2026-72225"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:41.487Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/289a2ca0c9b7eae74f93fc213b0b971669b8683d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4450dcaadf7d4aae8b6e4223b5d6ee4eb77097a9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4b48dcb88bb9117e3d3f051175a9a8b7cff7f8b6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/78955fdce8ff654e6d33a2fa90882a1e7eb26330","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a58fc10adf503969fec2007b5afe8987258046c4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e144ad0250f77e23e28949587b8b57e40dc3b512","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fb9b49618ed7296ebfad62a3835da8945f727001","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72227","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72227 — In the Linux kernel, the following vulnerability has been resolved: batman-adv: mcast: avoid OOB rea…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbatman-adv: mcast: avoid OOB read of num_dests header\n\nBefore the access to struct batadv_tvlv_mcast_tracker's num_dests, it is\nattempted to check whether enough space is actually in the network header.\nBut instead of using offseto…","indicators":{"cves":["CVE-2026-72227"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:49.510Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/38eaed28e250895d56f4b7989bd65479a511c5c3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7d1a877670bc2e901241073f022ca8d1b2f85f1c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/80f62893d135f415e7a374dd47b468ec298f7aed","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d2b657c9653fcebca828a2ead13f444e0da68817","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72231","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72231 — In the Linux kernel, the following vulnerability has been resolved: batman-adv: tt: avoid request st…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbatman-adv: tt: avoid request storms during pending request\n\nbatadv_send_tt_request() allocates a tt_req_node when none exists for the\ndestination originator node. This should prevent that a multiple TT\nrequests are send at the sam…","indicators":{"cves":["CVE-2026-72231"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:50.000Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/067e413eec2e63c2996909ef55214b3a0eda0be7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/21c44a6895f41df811d1c91d10eea194dda2b345","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/27c7d40008231ae4140d35501b60087a9de2d2c3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5e46c76d9a5062212c4c5f642a5549fd9c057f8a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6055695ea40c64a47e00742c12c99b1a33b4daed","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6a65ac8a81e903bb4b555c1d13532f5cb0167a4a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/716f434eb35869e130424331584a91fbb729b9bd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/aba1cf21954e64c36afb966b754adad2b0b8aa48","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72232","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72232 — In the Linux kernel, the following vulnerability has been resolved: batman-adv: ensure minimal ether…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbatman-adv: ensure minimal ethernet header on TX\n\nAs documented in commit 8bd67ebb50c0 (\"net: bridge: xmit: make sure we have\nat least eth header len bytes\"), it is possible by for a local user with\neBPF TC hook access to attach a…","indicators":{"cves":["CVE-2026-72232"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:50.137Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/38cd10b0aeec755d89f78722a2b83f4088ff0cb0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/49df66b7993c80b80c7eb9a84ba5b3410c8296a0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/58799078afebd5115e052bf69ad6697f9759dd6f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6b4f521e01257387906f8b969ad3450d8208d4e2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/811fea37620f2097955d95ce81cfdba03fd30f1b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9e16b6751a8206de0b865d99bb02771e6751d12d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dbeb4145d9778f922f459935da9a027750765a69","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e6640923afee619d9fa82b07394dc9498e202304","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72233","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72233 — In the Linux kernel, the following vulnerability has been resolved: batman-adv: bla: reacquire gw ad…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbatman-adv: bla: reacquire gw address after skb realloc\n\nThe pskb_may_pull() called by batadv_bla_is_backbone_gw() could reallocate\nthe buffer behind the skb. Variables which were pointing to the old buffer\nneed to be reassigned to…","indicators":{"cves":["CVE-2026-72233"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:50.253Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/41819c5467b6eb8ab4567f0ac98702ce9b6abbb1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4a6673c55752a7aa41e28f51660eb981504ca088","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a9ab19fbca86b32e9a9ae9e1a63e70a7eab3400f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ab2bac47a02637df1128a151e81d3ec14767f4bb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cdf3b5af2bc4431e58629e8ad2086b1e9185c761","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dc16bbf53cede1baf564bf0c8a861114b64e18b3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e5e18886aadd3870e2d84e32a9678317fab1dd9e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f4fb97ecf677cd9c3aa4f3bfc6fbf5b0e4bdbbbf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72235","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72235 — In the Linux kernel, the following vulnerability has been resolved: batman-adv: retrieve ethhdr afte…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbatman-adv: retrieve ethhdr after potential skb realloc on RX\n\npskb_may_pull() in batadv_interface_rx() could reallocate the buffer behind\nthe skb. Variables which were pointing to the old buffer need to be\nreassigned to avoid an u…","indicators":{"cves":["CVE-2026-72235"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:50.510Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/035e1fed892d3d06002a73ff73668f618a514644","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2cefa5141cab8ec1e4b24cf585958b13f2e3049d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6abf73589bed3f27ee240c08108feb72bed0b9c6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6e189f14d1ea28db212b9d70a02131a7ce518012","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/85a71a81854e0e191ad0e533eabb4eff54866feb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a1820344b180cb55af748f102bc536b5c93164db","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b031fc97e1993d29d6c3a0e86a99140528cf31e8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f19259395b44af67f3c274e34237c295b526b859","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72242","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72242 — In the Linux kernel, the following vulnerability has been resolved: selinux: avoid sk_socket derefer…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nselinux: avoid sk_socket dereference in selinux_sctp_bind_connect()\n\nselinux_sctp_bind_connect() dereferences sk->sk_socket to pass a\nstruct socket * to selinux_socket_bind() and\nselinux_socket_connect_helper().  However, when the…","indicators":{"cves":["CVE-2026-72242"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:51.317Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/37d642b37ccdc31e1947c2ebc8dc38f03d4a0ceb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/56acfeb10019e200ab6787d01f8d7cbe0f01526f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5d4d93f9bfbc997ffbb03cd6107e8f6979dbb9b4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cc8bd47b35eca82393cbad08b1cc86f02e034439","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d61a80b17254be7230bc5544f8e62ddf21ab38e2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72243","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72243 — In the Linux kernel, the following vulnerability has been resolved: selinux: check connect-related p…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nselinux: check connect-related permissions on TCP Fast Open\n\nSimilar to Landlock, SELinux was not updated when TCP Fast Open\nsupport was introduced to ensure connect-related permissions are\nchecked when using TCP Fast Open. Update…","indicators":{"cves":["CVE-2026-72243"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:51.443Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/11406d0d7e11b4e525bb2ace2c70107031d058da","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/44c74d27d1b9aaa99fa8a83640c1223575262b80","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/646ebbc5f2ff9147d084e1213143f091026a611c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d028bc080a0dcd6a7f8e1ae1bd32dda696505ba3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e507633bf76bccf1a6af27771fb0d6e2862b7eac","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fc633a598206d4f23af782db7c0b5f3a82751d2c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72244","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72244 — In the Linux kernel, the following vulnerability has been resolved: gpu/buddy: bail out of try_harde…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ngpu/buddy: bail out of try_harder when alignment cannot be honoured\n\nThe try_harder contiguous fallback could return a range whose start\noffset did not match the caller's min_block_size. When a candidate's\nstart is misaligned, real…","indicators":{"cves":["CVE-2026-72244"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:51.557Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/419d7d9306491f3e0e417cf794844c73cabee090","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4289531106ee175a6eb45db7d4f2734d1dae9887","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/56bc6384314fb9ae98975fb2af8b143097ede3dc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7185c5262435b93e5eeffa647008992256b9c51a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72247","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72247 — In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conncount: fix zon…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: nf_conncount: fix zone comparison in tuple dedup\n\nThe \"already exists\" dedup logic in __nf_conncount_add() decides\nwhether a connection has already been counted and can be skipped instead\nof incrementing the connlimit co…","indicators":{"cves":["CVE-2026-72247"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:51.887Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/35a56e2a46b90e6bd4ca816b80e9cb8d20dfc3ce","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3cd9a5792cbea81139c24320986dd0db69e9b5d0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4f30a89c0ed2418719a1144881c2635b940b543d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6ff07ac5405bea4d4ead3559fc123f987576424a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/78b5d6dbc860776161f9e9206b06ff8a01f531ab","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7bdc3c0985ecf17b957811fedcc684acdf698acc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/82fc35e0da9a91db9a034f8311f18f77a599ae3f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f62c41b4910e65da396ec9a8c40c1fe7fe82e449","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72250","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72250 — In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conntrack_reasm: g…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: nf_conntrack_reasm: guard mac_header adjustment after IPv6 defrag\n\nnf_ct_frag6_reasm() slides the packet head forward to drop the IPv6\nfragment header and then unconditionally advances skb->mac_header:\n\n\tskb->mac_header…","indicators":{"cves":["CVE-2026-72250"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:52.267Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/00bdce2fda7e430d24cfbc96764a1b96deb31f82","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2a95ec21824a8ad81ad660b12231456fc0ac9830","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3b08fed5b7e0d5e3a25d73ef3ba09cd33ade16c9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/53ef70a315420ed31581d38343684b3bf9a3c76d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6e8cd710ca35c576f5f2e5a396047c9ac61f75e5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a58230f3a7c4f6c3261786bc1efb72c42e68cd25","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bbcdef2061b170af45702ce6b359c02c12acfc94","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cd0d7bbc027b4d3329712cdcdeb4e5567ffd0d58","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72252","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72252 — In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_set_pipapo: don't…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: nft_set_pipapo: don't leak bad clone into future transaction\n\nOn memory allocation failure the cloned nft_pipapo_match can enter a bad\nstate:\n - some fields can have their lookup tables resized while others did\n   not\n -…","indicators":{"cves":["CVE-2026-72252"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:52.600Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/02b6b0e892aea582590671796fd6eff5b93ea93f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/047e813324eac2ac60cddfb58bcdbd0144eadb09","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/47e65eff50691f0a5b79d325e28d83ec1da43bcf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/610e3b73efaec3dd81a95dcda2421ad7d9795bd0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e74f9680e1b64872a51cc7b5bda1edaaa08aa51f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72253","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72253 — In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conntrack_sip: val…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: nf_conntrack_sip: validate skb_dst() before accessing it\n\ntc ingress and openvswitch do not guarantee routing information to be\navailable. These subsystems use the conntrack helper infrastructure, and\nthe SIP helper reli…","indicators":{"cves":["CVE-2026-72253"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:52.760Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/09755dc62b026076b1d47f83489eb0547c8135e0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b843a96252f672332837ea2ecb7c8db0acf68e20","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c199ed687c00841daf60e9d131976958583a8c09","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e5e24a365a5e024efef63cc49abb345fbd4852c5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e64a48c50a1ff565a98c6a98d82b5b942868e76e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72254","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72254 — In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_fib: reject fib e…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: nft_fib: reject fib expression on the netdev egress hook\n\nA fib expression in a netdev egress base chain dereferences nft_in(pkt),\nNULL on the transmit path, causing a NULL pointer dereference at eval.\nnft_fib_validate()…","indicators":{"cves":["CVE-2026-72254"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:52.910Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/4fee43759b489559a491f7c95f9bfa7a1d0c7a10","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/568931f26af4727a51e8521f72efbc78d3b82410","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d01c913febead04a01a5f3a6374d1f45504dc523","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d07955dd34ecae17d35d8c7d0a273a3fba653a8c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f68305267ebda7e839b5e8f77e8d77535a3d5a0f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72255","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72255 — In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_queue: pin bridge…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: nf_queue: pin bridge device while NFQUEUE holds fake dst\n\nThe br_netfilter fake rtable is embedded in struct net_bridge and is\nattached to bridged packets with skb_dst_set_noref(). If such a packet is\nqueued to NFQUEUE,…","indicators":{"cves":["CVE-2026-72255"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:53.127Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/01ace27af47801dd7f6b839e782b62863af979cc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/0ca505346c5e2905ab7b5313af801fcf38f594a8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3f03a2d225c668283110ad5f9ff159ba4591e2c7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/430521af7fe8a9c08f5a2554224a35f11f51d99e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/47b3af24de5fbed4bf2952de0f5294ef1a338a26","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c9c9b37f8c5505224e8d206184df3bb668ee00cf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72261","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72261 — In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: ipc3-control: Validat…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nASoC: SOF: ipc3-control: Validate size in snd_sof_update_control\n\nIn snd_sof_update_control(), firmware-provided cdata->num_elems is\nchecked against local_cdata->data->size but never against the actual\nallocation size. If local_cda…","indicators":{"cves":["CVE-2026-72261"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:54.257Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/1dc25a3e06364f48c4ef06016852f8b82425151a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2a591bf6fd41fd14bdae689aafac4a9ee702c23c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/390aa4c9339bb0ec0bc8d554e830faf93ca9d49e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d3abaedf6a58469610136d2dace1a85cddf7afcf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ecf67f1302f2080b4d241b973364aacda70ad740","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ee781058cd4d71e4449f41cbe6a3b8c59daa2c51","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72262","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72262 — In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: ipc3-control: Fix hea…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nASoC: SOF: ipc3-control: Fix heap overflow in bytes_ext put/get\n\nThe ipc_control_data buffer is allocated as kzalloc(max_size), where\nmax_size covers the entire struct sof_ipc_ctrl_data including its\nflexible array payload. However…","indicators":{"cves":["CVE-2026-72262"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:54.443Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/121577383b5cf221e86581e0f2bcca4c66f17469","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1adde1941bba7b0d7104b86ed819d48d81cb0ad9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/eaa67e139c9217099e2a7b717aeeb46c65de3494","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f4933e1d11b97b6a0951648b7c3e53850e1b33a9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fd46668d538993218eea19c6925c868ac0f2630c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72280","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72280 — In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: nv: Drop bogus WARN…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nKVM: arm64: nv: Drop bogus WARN for write to ZCR_EL2\n\nIt is entirely possible for a guest to write to the ZCR_EL2 sysreg alias\nwhile in a nested context, as it is expected if FEAT_NV2 is advertised\nto the L1 hypervisor.\n\nGet rid of…","indicators":{"cves":["CVE-2026-72280"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:58.270Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/5000bcae71c869cba6674c326fec2d8ad659ae3a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6561597dba97e3e8479a9919bda172cf43eb902c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7deadbc5dab5b8e2316364603bc6281129c8461c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9f1667098c6ae7ec81a9a56859cfdacb822aa0d0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72282","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72282 — In the Linux kernel, the following vulnerability has been resolved: KVM: Move kvm_io_bus_get_dev() l…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nKVM: Move kvm_io_bus_get_dev() locking responsibilities to callers\n\nkvm_io_bus_get_dev() returns a device that is only matched by the\naddress, and nothing else. This can cause a lifetime issue if\nthe matched device is not the expec…","indicators":{"cves":["CVE-2026-72282"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:58.680Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/0cbae0e296d27ce4c4cce83e34d40c2bfd8133aa","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1b4a3c2f0509e7b0e65667f3c36676a849ee2755","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3a07249981629ace483ebbef81ef6b34c2d2afec","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7099e7148f81c605bbc319b16ce0131540341560","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/90d35d2b8e47afd68fe2a4dd0eeb60bc71641775","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cfe107b02a3c3f049e0dc15b6a36625f048eda2a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e01071ea006c9b952125ed8b0cc90ac7bd356cce","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f398b7d92cd999191249830b9171c9bd787a9a91","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72283","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72283 — In the Linux kernel, the following vulnerability has been resolved: KVM: x86: Nullify irqfd->produce…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nKVM: x86: Nullify irqfd->producer if updating IRTE for bypass fails\n\nNullify irqfd->producer if updating the IRTE for bypass fails, as leaving a\ndangling pointer will result in a use-after-free if the irqfd is reachable\nthrough KVM…","indicators":{"cves":["CVE-2026-72283"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:59.037Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/d1379888cc4230bac647ec24ab83306afbd03e88","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d5560b6569cd05ba72c6b33427fbabc6ec46b8cf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ed446e8aa894883c08892cfee69782fdf8f6c3ca","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72284","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72284 — In the Linux kernel, the following vulnerability has been resolved: KVM: x86: Ignore pending PV EOI…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nKVM: x86: Ignore pending PV EOI if the vCPU has since disabled PV EOIs\n\nIgnore KVM's internal \"service pending PV EOI\" request if the vCPU has\ndisabled PV EOIs since the request was made.  Asserting that PV EOIs are\nenabled can fai…","indicators":{"cves":["CVE-2026-72284"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:59.240Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/038b9ce6fafda1babd1e33d52cbc6039747a6d87","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/32bdca80aa81c2cb906f50a88b220ce1ecdc5e6e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8e9f7a95279bf608cf4c331ed89612e28c04564f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9285e4070df2c40585c3d7ec9571faa7a2b97e17","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/97542f15dc4cf6cd3fdc035e482dca54246ddf48","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ebd7845ca0471d251a1cb48d84eb165aff5b7123","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72285","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72285 — In the Linux kernel, the following vulnerability has been resolved: KVM: TDX: Reject concurrent chan…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nKVM: TDX: Reject concurrent change to CPUID entry count\n\nReject KVM_TDX_INIT_VM if userspace changes cpuid.nent between the\ninitial read and the subsequent copy of the initialization data.\n\ntdx_td_init() first reads user_data->cpui…","indicators":{"cves":["CVE-2026-72285"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:59.700Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/cfbebb55e5127dc162e73fa8956000055a78606c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d6b5aba65e99531c97b146622a406c75653819d5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72286","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72286 — In the Linux kernel, the following vulnerability has been resolved: KVM: SEV: Do not allow intra-hos…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nKVM: SEV: Do not allow intra-host migration/mirroring of SNP VMs\n\nThe intra-host migration/mirroring feature is not fully implemented for\nSEV-SNP VMs. The proper migration requires additional SNP-specific\nstate such as guest_req_mu…","indicators":{"cves":["CVE-2026-72286"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:59.920Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/6ee4140788234a6fabf59e6a50e38cdb936008cd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b70404b89daad5f9f33f7ac640b1065cba639935","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ba06690b28be950bd46d938d9b919c4024292627","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d2f9df3b615ca0cd45899c090366945528186052","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72287","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72287 — In the Linux kernel, the following vulnerability has been resolved: KVM: nVMX: Move vTPR vs. TPR Thr…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nKVM: nVMX: Move vTPR vs. TPR Threshold consistency check into \"normal\" checks\n\nMove the off-by-default consistency check for vmcs12.tpr_threshold vs.\nthe virtual APIC vTPR into the \"normal\" controls checks, as waiting until\nKVM has…","indicators":{"cves":["CVE-2026-72287"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:00.180Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/7d066368f72e6192af7e21c5817626f6da666991","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ebdac7554abb347ca4197be241116842161acd9b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72294","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72294 — In the Linux kernel, the following vulnerability has been resolved: LoongArch: KVM: Check irq validi…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nLoongArch: KVM: Check irq validity in kvm_vcpu_ioctl_interrupt()\n\nFunction kvm_vcpu_ioctl_interrupt() can be called from userspace, here\nadd irq validility cheking in kvm_vcpu_ioctl_interrupt().","indicators":{"cves":["CVE-2026-72294"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:01.783Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/09b318ab77b7a4fc9987fd98d1525fc55ddc2617","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/15469ba0284c7cc01c38493391e9e73b918833c4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d4574547e04a47ad498149576f65b84475ea6f4c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/efe27b19a15c384cad7c80de399f3107ab070e6d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72295","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72295 — In the Linux kernel, the following vulnerability has been resolved: LoongArch: KVM: Validate irqchip…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nLoongArch: KVM: Validate irqchip index in irqfd routing\n\nSashiko reported that the irqchip index is not validated for LoongArch.\nAdd validation and reject out-of-range irqchip indexes to avoid indexing\npast the routing table's chip…","indicators":{"cves":["CVE-2026-72295"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:02.037Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/199b570d7fca1aa70e596f10a6276997becffb6d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3474037904c20ff915e3ebab0ab5c1e41bbe549e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8b3e188d19e4ffe916780aeb7ddad9d6457b8bcc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72297","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72297 — In the Linux kernel, the following vulnerability has been resolved: net: atm: reject out-of-range tr…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: atm: reject out-of-range traffic classes in QoS validation\n\nReject ATM traffic classes above ATM_ANYCLASS in check_tp().\nSO_ATMQOS stores the supplied QoS after check_qos() succeeds, so\naccepting larger values leaves invalid t…","indicators":{"cves":["CVE-2026-72297"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:02.293Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/15444b57fdc6fc3f3e22a87f791ae5be81e6ecf5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1a6dda72455b399ce9c1a12695471dc4d5c61add","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2b3e241729e87afed13ac0f666472d5d6ca42e87","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/367acd288bc6255e247cb1a1efbf5c6567cab423","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/513f820b3f0cf4462e17d84c39ed3948d061a6ea","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/806b7b6edc8446e8b94b706807a7090a14d47b5c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cdf19f380e46192e7084be559638aab1f6ed86a2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e62adb157c2eaad9ad4867ec6cd9af5b9a51b1c7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72298","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72298 — In the Linux kernel, the following vulnerability has been resolved: net: qrtr: fix 32-bit integer ov…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: qrtr: fix 32-bit integer overflow in qrtr_endpoint_post()\n\nqrtr_endpoint_post() validates an incoming packet with\n\n\tif (!size || len != ALIGN(size, 4) + hdrlen)\n\t\tgoto err;\n\nwhere size comes from the wire. On 32-bit, size_t is…","indicators":{"cves":["CVE-2026-72298"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:02.437Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/20054869770c7df060c5ecee3e8bbf9029c47191","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/22100a8f73d4ae4f17697dae93d4e2e1d283a6ec","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/242408b5b763c01288adf3113cbce84378a76e1a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3665e644ea081c4624a1637023b0de3b29f4ae04","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/689b7267f8632b4661879dc323e26ebb60978afb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7f72c285f6d3bf63968a0344beee8ab1b370198b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b609f7f46916c6b05585ca82455077198a23770f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d0597074e99731fdad5593e4f6d056a3866f2cab","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72301","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72301 — In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: ipc3-control: Fix TOC…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nASoC: SOF: ipc3-control: Fix TOCTOU in bytes_put and bytes_get\n\nIn sof_ipc3_bytes_put(), the size used for the memcpy is derived from\nthe old data->size already in the buffer, not the incoming new data's\nsize field. If the new data…","indicators":{"cves":["CVE-2026-72301"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:02.807Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/0c4fbdaca225b97122b61b68c5353caa33a253c3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/0dce240145f47545d2e4b18c6d58033b83e1fd0e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1f97760417b5faa60e9642fd0ed61eb17d0b1b39","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8bd715a9d882fe1993bb2aec5eff89fffa946592","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/92f90917413bdd6078fefff6f6c83a07bf870b04","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ed4f758f34be4c32e02933ac4fa044589d9c1c16","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72302","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72302 — In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: ipc3-control: Use ove…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nASoC: SOF: ipc3-control: Use overflow checks in control_update size calc\n\nIn sof_ipc3_control_update(), the expected_size calculation uses\nfirmware-provided cdata->num_elems in arithmetic that could overflow\non 32-bit platforms, wr…","indicators":{"cves":["CVE-2026-72302"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:02.917Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/312c7d2ebe696da3f885eee77d52297664e57c53","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6856b3c23b0995eefad5a6142b4365ef70e1fe4a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/711d912b18763af62a63aa8f2419a774eb63bba4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8791977d7289f6e9d2b014f60a5455f053a7bc04","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/89a2309a9eec80d4c19e3aed62c4f923594d1911","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ffd79e77f2fbacd7a5d40ad1d4c7f3f089a8f2f3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72303","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72303 — In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: ipc4-control: Validat…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nASoC: SOF: ipc4-control: Validate notification payload size\n\nValidate MODULE_NOTIFICATION payload length before reading\nbytes/channel data in control update handling.","indicators":{"cves":["CVE-2026-72303"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:03.023Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/5bdfeccb7fbf6e000fc783cd8412732e67c1ad0c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c29f5b4498894aebb2f87b1a29bb320e2f9348f9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72304","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72304 — In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: ipc4-control: Fix TOC…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nASoC: SOF: ipc4-control: Fix TOCTOU in sof_ipc4_bytes_put\n\nIn sof_ipc4_bytes_put(), the copy size is derived from the old\ndata->size in the buffer rather than the incoming new data's size\nfield from ucontrol. If the new data has a…","indicators":{"cves":["CVE-2026-72304"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:03.120Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/038406abde0d0883419ec89425ea941ec8bbef95","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/266f936db83aee6ca6473bbb06259bda52bf4fc3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3ad673e7139cf214afd24321a829aad6575f4163","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4cf6a7ebbf8787393b158b2cc341723e5bebc4a8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fb4293173db2d474d8fbc0e5ecf4943e6df2b40e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72310","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72310 — In the Linux kernel, the following vulnerability has been resolved: smb: client: fix overflow in pas…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nsmb: client: fix overflow in passthrough ioctl bounds check\n\nsmb2_ioctl_query_info() validates the PASSTHRU_FSCTL response payload\nbefore copying it to userspace.\n\nThe payload offset and length both come from 32-bit fields. The bou…","indicators":{"cves":["CVE-2026-72310"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:03.777Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/160045fc943f6c46b227644261252c8a22b8a87a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1627e7d5c9b09721a141d07cedb178882f1ded67","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/175357ee0c596cb82054650dfa32fda51ad35aaa","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1a638c55f2db6cb2296e5e3138015dd8fd9d4aa9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/63feb687e89a3a52a31e6e01764117cc500f1974","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a4f27ad055392fa164f5649e89a3637b033c5fcc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b30771b69eafae750afb7385fbcc3d77ed3f3670","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dbd126539c098dba3159ce7d34b10b2daddcbd0f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72312","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72312 — In the Linux kernel, the following vulnerability has been resolved: octeontx2-af: fix VF bringup aff…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nocteontx2-af: fix VF bringup affecting PF promiscuous state\n\nMbox handling of nix_set_rx_mode for a VF with promiscuous and\nall_multi flags set to false causes deletion of the PF's promiscuous\nand allmulti MCAM rules. This occurs b…","indicators":{"cves":["CVE-2026-72312"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:04.013Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/212c59e5e416859579272288fd325148fc316109","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3cf83432e0561aef6d7ec2664909d12d0ff0ffc1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3de77d2f34c2bc2acaedabc2c5e0a561b85c283a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/53e17d9ed779ad25870abb9c31bc294c71a2278c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/daa2451640a3e0727fd598f5c2ccb8bb4d5a8b9c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fabb881df322da25442f98d23f5fa371e3c78ec4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72314","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72314 — In the Linux kernel, the following vulnerability has been resolved: regulator: core: regulator_lock_…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nregulator: core: regulator_lock_two() should test for EDEADLK not EDEADLOCK\n\nCompare against -EDEADLK, which is what ww_mutex_lock() actually\nreturns and what every other deadlock check in this file already uses.\n\nFunction regulato…","indicators":{"cves":["CVE-2026-72314"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:04.223Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/0c305eac40470a224671858a215963b070f9b2a9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/153d1b8b5bc30847eb70ad535f62f289aa9217e6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/29a7953e9adea6c7f9e64947745b79158e7cea7f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/346e2d666a29ae7233c56b356a0487eb1d42589b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8e39aa63798ea0a797fd9341419f12ef91df3238","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d38f8bd771c4999b797d7074b348cf201414bd34","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dc804f390fddd9c389edf0976356942e16878d8f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e2063307ea3b6da74585129ba7b588e8243e2ef0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72315","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72315 — In the Linux kernel, the following vulnerability has been resolved: smb: client: fix busy dentry war…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nsmb: client: fix busy dentry warning on unmount after DIO\n\nCommit c68337442f03 (\"cifs: Fix busy dentry used after unmounting\") fixed\nthe issue in cifs where deferred close of a file led to a dentry reference\ncount not being release…","indicators":{"cves":["CVE-2026-72315"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:04.367Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/75f5c412fa867efa0bf9b646bffe0d912109e84a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f0eac9c3c3711f24efc2aaf12b8ec3e54a38c214","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72328","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72328 — In the Linux kernel, the following vulnerability has been resolved: accel/amdxdna: Fix potential amd…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\naccel/amdxdna: Fix potential amdxdna_umap lifetime race\n\namdxdna_umap_release() calls the blocking mmu_interval_notifier_remove()\nbefore removing the object from abo->mem.umap_list. If\naie2_populate_range() runs concurrently, it ma…","indicators":{"cves":["CVE-2026-72328"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:05.873Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/14f172eff9c19f8043a9858845f33cd034f3a41e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/267809e2c56fbea486f7250c8a4acddcc3c54dc5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/91e8109ecffb925b6202d2737384df285b195bfb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72330","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72330 — In the Linux kernel, the following vulnerability has been resolved: net/tls: Consume empty data reco…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet/tls: Consume empty data records in tls_sw_read_sock()\n\nA peer may send a zero-length TLS application_data record; TLS 1.3\nexplicitly permits these as a traffic-analysis countermeasure (RFC\n8446, Section 5.1). After decryption s…","indicators":{"cves":["CVE-2026-72330"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:06.080Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/0867b0f2513ebc1c475af9898c97f4772a68d964","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3be28e2c9cd0230cb51fd4967df095273afd3848","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c6b440cf766a557b08d25f1b571b3d57d039686e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e8a4c9fc437b16aef38f86ce3275677e36924259","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ebc295ce343600c2d60c1e1e0c5d192080217457","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72331","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72331 — In the Linux kernel, the following vulnerability has been resolved: accel/amdxdna: Fix VMA access ra…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\naccel/amdxdna: Fix VMA access race\n\naie2_populate_range() and amdxdna_umap_release() access a saved VMA\npointer that may have already been freed, leading to a potential\nuse-after-free.\n\nRemove the VMA accesses from these functions…","indicators":{"cves":["CVE-2026-72331"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:06.200Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/1ba02717e821cf14ece642273958647e79698d3d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bea20225c67fed9be3e98619c77af6ee3f43fe07","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72334","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72334 — In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ISO: fix malformed IS…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nBluetooth: ISO: fix malformed ISO_END/CONT handling\n\nCore specification (Part C vol 4 sec 5.4.5) does not exclude empty\nISO_CONT, ISO_END packets.  We currently reject them if they are last.\n\nIf controller sends malformed sequence…","indicators":{"cves":["CVE-2026-72334"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:06.580Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/990e65eb9387c4ddfa7f68782b6644c2c35d489f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e054c1a6ae7310d2815778fddb87da616e11c255","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72335","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72335 — In the Linux kernel, the following vulnerability has been resolved: Bluetooth: MGMT: Fix adv monitor…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nBluetooth: MGMT: Fix adv monitor add failure cleanup\n\nhci_add_adv_monitor() publishes a new adv_monitor in\nhdev->adv_monitors_idr before the powered MSFT setup step. The MSFT\noffload add path can then fail either locally before the…","indicators":{"cves":["CVE-2026-72335"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:06.677Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/384a4b2fef9ffe5e270ee5558975c0504881c5fb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5aabbd01ac315a72bcdfd42985ede712c4744689","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b1a719b3c4359ef731646fb7c7844e53dddbda72","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dbd935a9e056545721bc4e9ce518c775d787b21e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dfc8373893b1876bb367700eac9d776316dabd96","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fb256d07395ebbc950f42e439d3896ec3a25c845","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72338","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72338 — In the Linux kernel, the following vulnerability has been resolved: net/sched: act_pedit: fix TOCTOU…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet/sched: act_pedit: fix TOCTOU heap OOB write in tc offload\n\nThere is a TOCTOU race condition in flower lockless approach between sizing\na flow_rule buffer and filling it.\nzdi-disclosures@trendmicro.com reports:\nThe cls_flower cl…","indicators":{"cves":["CVE-2026-72338"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:07.043Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/0d8532a5e972a5351cf4ee4a435e0d65cbba8f23","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/27488e1a7f19757e6146edca9458ed4ffc545557","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6f9b23eb92a894ae1118893996943990ee0b860e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8b519cbcabe836a441369fbec1a8a6518a709251","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8e49cd891bda447c68122d672510a604a8bb6b24","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72340","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72340 — In the Linux kernel, the following vulnerability has been resolved: net: microchip: vcap: fix races…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: microchip: vcap: fix races on the shared Super VCAP block\n\nThe VCAP instances on a chip are not independent, yet they are locked\nindependently. On sparx5 and lan969x the IS0 and IS2 instances are\nbacked by the same Super VCAP…","indicators":{"cves":["CVE-2026-72340"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:07.280Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/1e71a40d101547380590db582213c1f1dce1f041","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/49806bef9572a2e012610517bc14ed0a4db0d1fc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/786456d0a244bbd405dfc60e4de51f8b348b9cb1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/952928564cc5fdb06f92d7e25c6cd2e1d816362b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d7a8d500d7e42837bd8dce40cb52c97c6e8706a9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72342","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72342 — In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: Fix HV VHCA stats age…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet/mlx5e: Fix HV VHCA stats agent registration race\n\nmlx5e_hv_vhca_stats_create() registers the stats agent through\nmlx5_hv_vhca_agent_create(). The helper publishes the agent in\nhv_vhca->agents[type] under agents_lock and immedia…","indicators":{"cves":["CVE-2026-72342"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:07.520Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/24c77044cdfcf5b8b2e9f3b620d8b9aa392d9add","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/60fddda7207d81fea71463abd403f0b10f74f2e1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/89b25b5f46f488ea3b29b3444864c76944c9075b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b0fd6d3bb06182f19f3b59a53f57b5098b99048a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e8fc3304cb67fb1d7d11ff9ef9abd5fb64e7e1d5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f5677797b094c3ec5fb350eb8ea7710b88a3d018","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72343","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72343 — In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: Fix HV VHCA stats zer…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet/mlx5e: Fix HV VHCA stats zero-sized buffer allocation\n\nmlx5e_hv_vhca_stats_create() is called from mlx5e_nic_enable(),\nbefore mlx5e_open(). At that point priv->stats_nch is still zero,\nbecause it is only ever incremented in mlx…","indicators":{"cves":["CVE-2026-72343"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:07.650Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/22c1d5ecccf92c849bdca1556179aafc95794baf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/25f6b929c7e379cbea7cb8caa67b49b2d1efae17","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3b3a552cf88e10bb7bda88b29cf1fd8267043d50","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/420aabb32da4381d8d7cdcaa6a77fad9eaceb0a4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5b927dcec5f1087942bf123a82e64a3f66475f01","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/abc4c56427f144c96b2827a4db3b90eb5b7349a2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72344","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72344 — In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: TC, skip peer flow cl…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet/mlx5e: TC, skip peer flow cleanup when LAG seq is unavailable\n\nmlx5_lag_get_dev_seq() will return error when the peer isn't in the LAG\nor when no device is marked as master. Result bad memory access and kernel\ncrash[1].\n\nHence,…","indicators":{"cves":["CVE-2026-72344"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:07.773Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/5a95aa0198af75047d98fb72950642c89dab770f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7bed4af0ced82948d660205efecd551ef8bc3912","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72345","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72345 — In the Linux kernel, the following vulnerability has been resolved: net/mlx5: LAG, Fix off-by-one in…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet/mlx5: LAG, Fix off-by-one in single-FDB error rollback\n\nOn failure at index i, the reverse cleanup loop in\nmlx5_lag_create_single_fdb() starts from i, so the failed index\nitself is rolled back. That can operate on uninitialized…","indicators":{"cves":["CVE-2026-72345"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:07.870Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/0f0e4ae6975c773f7854fc48932a267f6c79088f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/40cc06bf71476932e5d139fa326dcd0372766e16","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72347","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72347 — In the Linux kernel, the following vulnerability has been resolved: netfilter: xt_connmark: reject i…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: xt_connmark: reject invalid shift parameters\n\nRevision 2 of the CONNMARK target accepts user-controlled shift\nparameters and applies them to 32-bit mark values in\nconnmark_tg_shift().\n\nA shift_bits value of 32 or more tr…","indicators":{"cves":["CVE-2026-72347"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:08.070Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/1b47026fb4b35bac850ad6e8a4ad7fc018e09ebc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/230173cc6105bdfb2696d37e6e56687b003fbe63","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4eef84b09a3836919360c4232b0f16651a155eec","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8ace320ac4416f5e5fbcd065309fb2dfcce787b0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9657bb11a6376ab0a79f05d433713d6944111e9d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c3fa852d117b3fda72265e4230e3967db4a74fcf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d8ce63d928b457fba7ed1e302492dfd32293671c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72350","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72350 — In the Linux kernel, the following vulnerability has been resolved: netfilter: xt_u32: reject invali…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: xt_u32: reject invalid shift counts\n\nu32_match_it() executes rule-supplied shift operands on a 32-bit\nvalue. A malformed u32 rule can provide a shift count of 32 or more,\ntriggering an undefined shift out-of-bounds durin…","indicators":{"cves":["CVE-2026-72350"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:08.407Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/00d034fe8230dfc5832fe011ff2d81c1a2cc7a29","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/0a8b7a6d763775709c601f584e709ae48bcc000a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/64cdf7d30ac18e43df6c48004435febb965809a8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/728f479dc0447ae7eaef87926ff49142e415a811","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a597a722fb71a534138c20359b655726622b5f17","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b33b44250d57ab0e5a1e2571b5285fb0d0a7f382","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ca7c92d9701249e6daf132087756a88cbf2bb2a3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cce42014415cecd98aa49b3950e7b02ee7c81268","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72352","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72352 — In the Linux kernel, the following vulnerability has been resolved: HID: bpf: Fix hid_bpf_get_data()…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nHID: bpf: Fix hid_bpf_get_data() range check\n\nhid_bpf_get_data() returns a pointer into the HID-BPF context data when\nthe caller-provided offset and size fit inside ctx->allocated_size.\n\nThe current check adds rdwr_buf_size and off…","indicators":{"cves":["CVE-2026-72352"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:08.633Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/2d044049421dd48212b28646a850749d4a2d57fa","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/61a959b82f1aecd6d2d35c208013dd077cac9d10","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ca373549140dfb386aa2de38364b58441b1f4885","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f81bc5a709dcbaf2a3bbef4ca7167f93900cc39f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72353","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72353 — In the Linux kernel, the following vulnerability has been resolved: ntfs: avoid stale runlist elemen…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nntfs: avoid stale runlist element dereference in fallocate\n\nntfs_attr_fallocate() allocates holes and delayed allocations inside\ninitialized size by looking up the current runlist element under\nni->runlist.lock. The returned struct…","indicators":{"cves":["CVE-2026-72353","CVE-2026-72354"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:08.730Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/3dd3e43f17cda174009a51fe668046ed7afef46a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/88496c4ac5a6ade75619f4b1015706a8b924d50a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/81fe702ff1760da32bcd3ef4494b2a33dbeced72","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9a2e36963a3fc52401586657d34e3f1c5a01ea56","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72356","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72356 — In the Linux kernel, the following vulnerability has been resolved: cifs: Fix missing credit release…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncifs: Fix missing credit release on failure in cifs_issue_read()\n\nFix missing release of credits in the failure path in cifs_issue_read()\nlest retrying the subreq just overwrites the credits value.","indicators":{"cves":["CVE-2026-72356"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:09.053Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/3a303f985c6bec8787c2ad4a16b39c14c5bcd765","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/86652704a7fd41a5a8459027e08640bbd1952826","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b9ee1f0347bf56d019ca28ddff090234bb45b05c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c16b8c4cfb4fe2244cc33e469a93c1ab8684146b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72357","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72357 — In the Linux kernel, the following vulnerability has been resolved: uprobes/x86: Use proper mm_struc…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nuprobes/x86: Use proper mm_struct in __in_uprobe_trampoline\n\nIn the unregister path we use __in_uprobe_trampoline check with\ncurrent->mm for the VMA lookup, which is wrong, because we are\nin the tracer context, not the traced proce…","indicators":{"cves":["CVE-2026-72357"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:09.147Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/169328645663bae30e9abad4012d52441e085a71","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1acddd3e22dd6912dd5d54f80462405a1f1e6bae","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c9170c83b0e0fc2065a4c2bca5bf1f90c5880156","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72358","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72358 — In the Linux kernel, the following vulnerability has been resolved: drm/xe/pt: prevent invalid curso…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/xe/pt: prevent invalid cursor access for purged BOs\n\nDuring a page table walk for binding, xe_pt_stage_bind() explicitly\nskips initializing the xe_res_cursor for purged BOs, treating them\nsimilarly to NULL VMAs by only setting…","indicators":{"cves":["CVE-2026-72358"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:09.243Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/2b6b3f98d0e93856bee38699b783c71cb0e9d67f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8a0fb57675be578c4db19deb4298ed08a70f0f1a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72360","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72360 — In the Linux kernel, the following vulnerability has been resolved: drm/xe/pf: Don't attempt to proc…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/xe/pf: Don't attempt to process FAST_REQ or EVENT relays\n\nCurrently defined VF/PF relay actions use regular REQUEST messages\nonly and the PF shouldn't attempt to handle FAST_REQUEST nor EVENT\nmessages as this would result in br…","indicators":{"cves":["CVE-2026-72360"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:09.430Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/499be4b5d64209e9f18c9442f9fbeef7155ae900","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a4208d8032abd7f591581994f31e23b80b8fe659","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/adc7dda728ca3e340a413e3bbc10cf159e1866a4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ed8b0d731892c68b41ecbd27c952af284816dec1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72364","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72364 — In the Linux kernel, the following vulnerability has been resolved: netfs: Fix writeback error handl…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfs: Fix writeback error handling\n\nFix the error handling in writeback_iter() loop.  If an error occurs,\nwriteback_iter() needs to be called again with *error set to the error so\nthat it can clean up iteration state.  Further, th…","indicators":{"cves":["CVE-2026-72364"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:09.823Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/1bb33d959aabcde07d724b5eb9992462e91fa79a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/89df9c158a25d0a7c6ca079a9bd9ca7009d75c7b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ac5f95ac5d6d0f4c567b8b642825705a2bf0d79e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fb39ffd3cc5422887fd118668ff45ebfdbc83302","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72367","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72367 — In the Linux kernel, the following vulnerability has been resolved: iomap: guard io_size EOF trim ag…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\niomap: guard io_size EOF trim against concurrent truncate underflow\n\niomap: fix zero padding data issue in concurrent append writes\nchanged ioend accounting so that io_size tracks only valid data\nwithin EOF.  This trims io_size whe…","indicators":{"cves":["CVE-2026-72367"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:10.117Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/1f38f65bf965fce9aa159d45c5347538f56c5973","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/55ec50d046c03b3724741957f7b007856e36dbe7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7f7780abb4c0fdc9a2603aea8e985ff14ee900e0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72368","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72368 — In the Linux kernel, the following vulnerability has been resolved: cachefiles: Fix double unlock in…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncachefiles: Fix double unlock in nomem_d_alloc error path\n\nWhen start_creating() fails and returns -ENOMEM, it has already\nreleased the parent directory lock in __start_dirop():\n\n    static struct dentry *__start_dirop(...)\n    {…","indicators":{"cves":["CVE-2026-72368"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:10.227Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/26757dac15175f2a42e3537f1ba86e62456d48f1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8c256fba2b46020004201c500b2a1fbc707a33ef","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72369","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72369 — In the Linux kernel, the following vulnerability has been resolved: minix: avoid overflow in bitmap…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nminix: avoid overflow in bitmap block count calculation\n\nminix_check_superblock() uses minix_blocks_needed() to verify that the\non-disk imap and zmap block counts are large enough for the advertised\ninode and zone counts.\n\nThe help…","indicators":{"cves":["CVE-2026-72369"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:10.340Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/8a29e60e2176b02e04f8737c8b32b696230eb0c5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/959c95340a9e19cd333b4c18935fdeecbb2f319d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a11ebaab50d27d6c4c78506f84ff36452e0b901d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/abe3536a4bedcc43de80b6d4d7e3d57e9ba382a5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fb3e566cafc38fe3ba35e6843a2d529a3748870c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72371","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72371 — In the Linux kernel, the following vulnerability has been resolved: afs: Fix the volume AFS_VOLUME_R…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nafs: Fix the volume AFS_VOLUME_RM_TREE is set on\n\nFix afs_insert_volume_into_cell() to set AFS_VOLUME_RM_TREE on the volume\nreplaced, not the new volume, as it's now removed from the cell's volume\ntree.  This will cause the old vol…","indicators":{"cves":["CVE-2026-72371"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:10.570Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/158c5a0b1dfc0e6a419efe18404047a4d2dff59e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1607075220cf57161d9116512994c159eacefc0d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/56b4e4b26f84411d880f968a539207b0a8889c8c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6fa9a8a73e16aa22fce6e41cc00d59c767f0a540","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c421bc6b957e56e45e12dbaeaf70a60db20d6465","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d0c8ad418b47891a03426c5e02ebb0537f8d68f8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d154c20837f379343f192d4b8d9dd4ef145562e6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72372","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72372 — In the Linux kernel, the following vulnerability has been resolved: afs: Fix lack of locking around…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nafs: Fix lack of locking around modifications of net->cells_dyn_ino\n\nFix the lack of locking around modifications of net->cells_dyn_ino by\ntaking net->cells_lock exclusively.  This also requires to cell to be\nremoved from net->cell…","indicators":{"cves":["CVE-2026-72372"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:10.680Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/2ffb70a8a01988046bb207b7d0af9358a8337378","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4d8a2fe8847859f4fa4e9a2fa1221c9c1158e66b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/55e841836c6f4646490f7b0347192b7a92d431ba","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e94f92fd56c553a8bf9421c3289e1b85c7c08857","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72373","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72373 — In the Linux kernel, the following vulnerability has been resolved: afs: Fix missing NULL pointer ch…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nafs: Fix missing NULL pointer check in afs_break_some_callbacks()\n\nFix afs_break_some_callbacks() to check to see if afs_lookup_volume_rcu()\nreturned NULL (e.g. the specified volume is unknown).","indicators":{"cves":["CVE-2026-72373"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:10.777Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/5492799ec5d27be3bd454dcaf046bc7054f637ae","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/794a01110390c1b76f59ece773fb0fbfd89c6f5c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a99a617701186dc68c7b330d35fc2253f48e2ab2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e3e59ff22a0de01ed0cf3a3e25558811abc3b70a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72374","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72374 — In the Linux kernel, the following vulnerability has been resolved: afs: Fix callback service messag…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nafs: Fix callback service message parsers to pass through -EAGAIN\n\nThe AFS filesystem client uses an rxrpc server to listen for callback\nnotifications.  Each callback call type handler has a delivery function\nthat parses the incomi…","indicators":{"cves":["CVE-2026-72374"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:10.873Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/09c67a7ded481482155b836c8c7f078a3075f8de","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/0acbc09d2aca0432af45cec114f20d55ceafaec4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/0f36469d7ce98b362934113c550d08bb0c784231","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/239cd337c9d047e7097f5b2ebbb41ddfb8180bc6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/26b737b3769e92493fe94c34620399d93ca231ae","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5a39b145a8fb49f316e7ec1f29ba51d68095c7e4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/772850871a2e772e26f9d93f1e9ddd413b3eeaa4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f14dd036fad3d359f26f1282199cec06b3a9362b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72375","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72375 — In the Linux kernel, the following vulnerability has been resolved: afs: Fix reinitialisation of the…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nafs: Fix reinitialisation of the inode, in particular ->lock_work\n\nIt seems that initalising afs_vnode::lock_work a single time in the slab's\ninit function isn't sufficient for work_structs.  This results in the\nDEBUG_OBJECTS debug…","indicators":{"cves":["CVE-2026-72375"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:10.987Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/5597fbd1e7c161914f20315a726e54025b0fdadb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/63d3f283858fae097fb09ddd4ce46bb0bc1f9d01","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ebfd13c0367adb43d7c0a72f5cd7e004e60c6b28","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72378","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72378 — In the Linux kernel, the following vulnerability has been resolved: afs: Fix error code in afs_extra…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nafs: Fix error code in afs_extract_vl_addrs()\n\nThe error codes on these paths are only set on the first iteration\nthrough the loop.  Set the correct error code on every iteration.","indicators":{"cves":["CVE-2026-72378"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:11.277Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/4897cb71d4ab1f7e1a214adb1e4b80176702368d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4e0b047848a855f2c933a6439f76a01743ba5620","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7ce6737a975ea3e0dc2e5946628d233779ca0caf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8530206911fd66ad739ca5ce95f1d069f3d42204","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9ad9016e3333c3c1f9284a253ff0658369e07aac","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bdcd80ff12939d172043fac5eb822b92366a1bab","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cb33dd2968588c78fad78dec19f61cabe5785494","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f70fbf2b974b63a7042705c2b0464cb8c97e9f34","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72380","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72380 — In the Linux kernel, the following vulnerability has been resolved: xen/pvcalls: bound backend respo…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nxen/pvcalls: bound backend response req_id before indexing rsp[]\n\npvcalls_front_event_handler() takes req_id directly from the\nbackend-supplied ring response and uses it to index the fixed-size\nbedata->rsp[] array for a memcpy() an…","indicators":{"cves":["CVE-2026-72380"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:11.493Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/d1297a9e2fd6ce08678b370d41bc980ca798f809","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d33846c8dcc06b83b7acdeac1e8bfbb5c0c26cb2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72382","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72382 — In the Linux kernel, the following vulnerability has been resolved: ksmbd: reject undersized DACLs b…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nksmbd: reject undersized DACLs before parsing ACEs\n\nparse_dacl() limits the attacker-controlled ACE count by comparing it\nwith the number of minimal ACEs that fit in the DACL size. The DACL size\nfield is 16 bits, but the expression…","indicators":{"cves":["CVE-2026-72382"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:11.707Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/15a9e9b8f7f5d7f380ae54c6f5bcbc0bdcb0f3cd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/16fb65ec15fe7c90f50a2115854bfd9a032d4023","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/282847c0cf22f2e961155ac8e42f6eeab7e16049","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/60908f7ebcd9b6cde74ad5711fab0f49c7970949","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d020e7f27bf65eecd3805404702f716b2b6d9e73","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72383","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72383 — In the Linux kernel, the following vulnerability has been resolved: sctp: fix addr_wq_timer race in…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nsctp: fix addr_wq_timer race in sctp_free_addr_wq()\n\nsctp_free_addr_wq() previously removed addr_wq_timer using timer_delete()\nwhile holding addr_wq_lock. However, timer_delete() does not guarantee that\na currently running timer ha…","indicators":{"cves":["CVE-2026-72383"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:11.813Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/976c19de0f22a857ba0112f39635f8fd7a257568","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a8323fb2ab6cd6978f359daeed6688e0cadf32ba","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c3e5cac47519d77ad36b9c03a1df1536aaa0c4a1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72389","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72389 — In the Linux kernel, the following vulnerability has been resolved: bridge: stp: Fix a potential use…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbridge: stp: Fix a potential use-after-free when deleting a bridge\n\nThe three STP timers are not supposed to be armed while the bridge is\nadministratively down. They are synchronously deactivated when the\nbridge is put administrati…","indicators":{"cves":["CVE-2026-72389"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:12.397Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/297a747f59bff6573196d7236178144d66524e68","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2a00517db8de4be7df3d483b215c5544fb30a191","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/39283907a25e5caf0f2bd2947f6e56644b01e2b7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/40cbfa3a28e0919469d1b086629bb3ce38a83593","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4c40eec06eeac37c58e47a6058eb32901218d5d4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b4b3458ef88df4798632619f018791d4344bcd92","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c86579b0a2d201792bcb59316629f4ba4758cfc8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72390","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72390 — In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_teql: Introduce s…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet/sched: sch_teql: Introduce slaves_lock to avoid race condition and UAF\n\nThe teql master->slaves singly linked list is not protected against\nmultiple writes. It can be mod'ed concurently from teql_master_xmit(),\nteql_dequeue(),…","indicators":{"cves":["CVE-2026-72390"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:12.510Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/03c67781254c574ae7fa75e881239a78473bdf42","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/11402e6e18e96df615cbcc58157818dd604b23ff","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/735567bde7401f82b064f9f107b52ee1bf84ed8c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9b7d05cbaa60108642402100efa6aa288dd33023","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b26aa9d993537a4c3167d8ceead3b7c69c3a0aac","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e5b811fe793166aecc59b085c1b7c31262ef2316","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72395","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72395 — In the Linux kernel, the following vulnerability has been resolved: hwmon: (pmbus) Fix passing event…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nhwmon: (pmbus) Fix passing events to regulator core\n\nSashiko reports:\n\nCommit 754bd2b4a084 (\"hwmon: (pmbus/core) Protect regulator operations with\nmutex\") introduced a worker to batch regulator events over time using\natomic_or(). T…","indicators":{"cves":["CVE-2026-72395"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:13.043Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/2106bf4056858fcce3624e0c51f6fee4d41d3f2f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/489291b6b56978cc50d34e8e13f9636ea296ba8a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/48fe43666950efefb7ac5fbdc012c1b3604096bf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9ef7dacd44216bf5ea05c8aef49eba4d145f4047","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b0ff6b6ae9c5183ef701ece7016698bde5a5bfba","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72397","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72397 — In the Linux kernel, the following vulnerability has been resolved: hwmon: (pmbus/core) honor vrm_ve…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nhwmon: (pmbus/core) honor vrm_version in pmbus_data2reg_vid()\n\npmbus_data2reg_vid() hardcoded the VR11 encoding regardless of the\nvrm_version configured by the driver, while pmbus_reg2data_vid()\nalready switched on it. Any driver t…","indicators":{"cves":["CVE-2026-72397"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:13.270Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/5bd0d47640395f8a8c34446b62d1781b88869dfa","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/828cd614e2af053ca5e1d6da767bbd8a1b5cabfb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72400","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72400 — In the Linux kernel, the following vulnerability has been resolved: seg6: validate SRH length before…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nseg6: validate SRH length before reading fixed fields\n\nseg6_validate_srh() reads fixed SRH fields such as srh->type and\nsrh->hdrlen before checking that the supplied length covers the fixed\nstruct ipv6_sr_hdr fields.\n\nThe BPF SEG6…","indicators":{"cves":["CVE-2026-72400"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:13.567Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/071f1a38d7ddbadee29c09b9e3ee0ff3a61e6a0e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/0fc7069d39239978130c37ebceaec85c8948d3f1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/715eb12e453df752f1b4baaf972c3acff0ab9402","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7247d05c987c3eec4bb7c2306dbd77ecdf3b7c73","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/804bb969f194c93497ba632b98343794c6367fdc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8dba7a94a269b88e500aafc25ad567ef6a423698","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a75d99f46bf21b45965ce39c5cfb3b8bb5ffb1aa","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c9961336aa5ff83092f23e33ee86666a9dbd1b2a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72404","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72404 — In the Linux kernel, the following vulnerability has been resolved: tipc: fix UAF in cleanup_bearer(…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ntipc: fix UAF in cleanup_bearer() due to premature dst_cache_destroy()\n\nTIPC UDP media bearer teardown calls dst_cache_destroy() on its\nreplicast caches before calling synchronize_net() to wait for\nconcurrent RCU readers (transmitt…","indicators":{"cves":["CVE-2026-72404"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:13.970Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/1c8393eefa3cadf4ca0b61119ad1321aa32d3c8c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7116764ca53ff529335d7ab7c364a69f094b23a5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72405","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72405 — In the Linux kernel, the following vulnerability has been resolved: net: udp_tunnel: prevent double…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: udp_tunnel: prevent double queueing in udp_tunnel_nic_device_sync\n\nYue Sun reported a use-after-free and debugobjects warning in\nudp_tunnel_nic_device_sync_work() during concurrent device operations.\n\nThe workqueue core clears…","indicators":{"cves":["CVE-2026-72405"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:14.077Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/54292b167466cdf42176b7b6f01da66c184deb12","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9075efb9b2c1d9d7a8285c937b64aa93ca0c41b7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cee6688e5731c0591643521716d1a1a5c1a98bf8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ecf69d4b43370c587e48d4d70289dbdb7e039d4d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72406","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72406 — In the Linux kernel, the following vulnerability has been resolved: net: sungem: fix probe error cle…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: sungem: fix probe error cleanup\n\ngem_init_one() calls gem_remove_one() when register_netdev() fails.\ngem_remove_one() unregisters and frees resources owned by the net_device,\nincluding the DMA block, MMIO mapping, PCI regions,…","indicators":{"cves":["CVE-2026-72406"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:14.177Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/331c99029a1cee1111f82f63d15b3cdebefbd341","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/36dea2f639249460d13f6ca66b2a9064187cd34d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a63eaf7605d1579cf3f551792e478cfaf5ac37d1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b15a3cc68e2450aa0edd94a74a7bdd45fcc17dd9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bc49e8746584564dba47d963d1916cc876fc6f6b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f1d04fefb0c2a2de32d9cee22cdc2088be3758d1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f3bd60b26814b7c3c57c629abb0857dfc76d214a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fb73cdc50b6755e5c3a80a195b2708a39ada0230","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72409","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72409 — In the Linux kernel, the following vulnerability has been resolved: net: mvneta: re-enable percpu in…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: mvneta: re-enable percpu interrupt on resume\n\nOn Marvell MPIC platforms (Armada 370/XP/38x), mvneta uses a percpu\nIRQ disable/enable scheme for NAPI: the ISR (mvneta_percpu_isr) calls\ndisable_percpu_irq() to mask the MPIC per-…","indicators":{"cves":["CVE-2026-72409"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:14.493Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/1cc312dc8bc78fa24c80d5bc193dbf5b57a99cc6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5bdb33ff6e58bdc43632e98b30723eb65352d671","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/82c13027ed283b856017adee970dbfdffce5c6b8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8c7a489aa71d2693752b2e794a68bf672d16c829","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b84dd48f9da1eb132bdc06a944423cd5a1641ef1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/be626ac1faadd49c2cead9f9cd06ba8752d81563","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bf88cd3b649bc3e638f1e8a77649581852747a68","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fd398d6480987e4c84fff0aaab6b9d6642a93343","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72410","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72410 — In the Linux kernel, the following vulnerability has been resolved: octeontx2-af: Validate NIX maxim…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nocteontx2-af: Validate NIX maximum LFs correctly\n\nNIX maximum number of LFs can be set via devlink command\nbut that can be done before assigning any LFs to a PF/VF.\nThe condition used to check whether any LFs are assigned is\nincorr…","indicators":{"cves":["CVE-2026-72410"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:14.623Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/0933fe0130eb71af0c3ab481b40f543b458a8c54","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1576d12a39860418d6a68b402fda71a48f04a57c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b1f6381acf9d55fab208e8b4c252a5a671820bd9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e0ac054416bf4e913fe96cefefe94e3331bbe6fa","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72411","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72411 — In the Linux kernel, the following vulnerability has been resolved: net: dsa: mxl862xx: fix use-afte…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: dsa: mxl862xx: fix use-after-free of DSA ports in crc_err_work\n\nUpon an MDIO CRC error mxl862xx_crc_err_work_fn() walks the DSA ports\nand closes the CPU port conduits:\n\n\tdsa_switch_for_each_cpu_port(dp, priv->ds)\n\t\tdev_close(d…","indicators":{"cves":["CVE-2026-72411"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:14.720Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/bcb3b8314611ed9cb4ff4bff484ef9b154fd1b83","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cf52622fbc274eb4ca9a2066b258da2ae3dc7406","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72415","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72415 — In the Linux kernel, the following vulnerability has been resolved: ASoC: SDCA: Validate written enu…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nASoC: SDCA: Validate written enum value in ge_put_enum_double()\n\nge_put_enum_double() passes the user-supplied enumeration index\nitem[0] to snd_soc_enum_item_to_val() without checking it against the\nnumber of items in the enum:\n\n\tr…","indicators":{"cves":["CVE-2026-72415"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:15.127Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/1ce42a11bed134903e352010a01fa53073a6b395","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/33387bf9bb6116a0429f823f8dab3accf8f8e09c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72416","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72416 — In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_compat: ebtables…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: nft_compat: ebtables emulation must reject non-bridge targets\n\nxtables targets return netfilter verdicts: NF_ACCEPT, NF_DROP, and so\non.  ebtables targets return incompatible verdicts: EBT_ACCEPT,\nEBT_DROP, ...   We cann…","indicators":{"cves":["CVE-2026-72416"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:15.223Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/33e1875d6b5b552a2e5652b40074c604199354ee","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9dbba7e694ec045f21ede2f892fb42b81b4e1692","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b3f7a84540a0d014ec42343ff5909657c1bd1994","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c129b0185e707dce405968e21afccd5728b2ce63","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/efc17b9240d821c424bc5191a5c6e9384a06293e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72418","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72418 — In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conncount: prevent…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: nf_conncount: prevent connlimit drops for early confirmed ct\n\nCommit 69894e5b4c5e (\"netfilter: nft_connlimit: update the count if add\nwas skipped\") introduced a regression where packets for valid\nconnections are dropped…","indicators":{"cves":["CVE-2026-72418"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:15.420Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/000ac6830b56499d6b65fd91486ce6689eb02be4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/329f2626ee5cb8fafdf6b58b624311529c57cb45","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3793d24de224943e0a6016bbeffb6f5c4cea2e3d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/abef7f817217fcb62c11821d6b895063eadb2828","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/be52572c6d55f677ba76869d3c63805c0d4891a3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c8b6f36f766991e3ebebec6596daee4b04dcbc49","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cbe2d14a7c5b1fc71821fbfee5c4963917411e92","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ebfe8249ba79e4ff0f1e3aad8787b992ef27f026","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72419","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72419 — In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_nat: avoid invalid…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: nf_nat: avoid invalid nat_net pointer use on failed nf_nat_init()\n\nWe ran into below KASAN splat, which is mostly uninteresting, beside\nfor having nf_nat_register_fn() in the call chain as a cause for the\noffending acces…","indicators":{"cves":["CVE-2026-72419"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:15.573Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/069cfe3de2a5e16069485893cd04665ab769c1d8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/359d8ff97362a4662356104540e4814bff9dad7c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/87f7a720de2545fdac29c85acb7163676feacdaf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a73e7ac3f3b69e9581ec7bfd889ff3e9b8c773f7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e794f633021defcfa98e17d73b955cd07590831f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/eb14aba91163c33d8c99f9d7c06690e08b56a250","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72420","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72420 — In the Linux kernel, the following vulnerability has been resolved: md/raid5: avoid R5_Overlap races…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmd/raid5: avoid R5_Overlap races while breaking stripe batches\n\nKCSAN report a race in break_stripe_batch_list() vs. raid5_make_request()\non sh->dev[i].flags (plain word write vs. atomic bit op)..\n\nand .. one possible scenario is:…","indicators":{"cves":["CVE-2026-72420"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:15.743Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/4d919c9b770996365806b6c8d701912d52baa306","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/55b77337bdd088c77461588e5ec094421b89911b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8031b0d02bd221a5f9add4357e291fc2a527b83a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d684b72dfbd320623ccaab0779aa841190488e7c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72423","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72423 — In the Linux kernel, the following vulnerability has been resolved: bpf: Guard conntrack opts error…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbpf: Guard conntrack opts error writes\n\nThe conntrack lookup and allocation kfuncs take an opts pointer\ntogether with an opts__sz argument. The verifier checks only the memory\nrange described by opts__sz, but the wrappers unconditi…","indicators":{"cves":["CVE-2026-72423"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:16.117Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/6f6183a39533d727deaa5061cadae6dd9e6744d0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dd74c80203842a21b2ebb9f70d1260d9aa20fa05","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72425","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72425 — In the Linux kernel, the following vulnerability has been resolved: ice: fix FDIR CTRL VSI resource…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nice: fix FDIR CTRL VSI resource leak in ice_reset_all_vfs()\n\nResetting all VFs causes resource leak on VFs with FDIR filters\nenabled as CTRL VSIs are only invalidated and not freed. Fix by using\nice_vf_ctrl_vsi_release() instead of…","indicators":{"cves":["CVE-2026-72425"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:16.317Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/335c2dd21ad9d520102906f96edb99fd5e89ac32","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/87a042e45bf4870dc75ea05b4fc0286abecb2a4d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b1fc5bafbc5f84df457b6f987ac993e0802f8d93","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b409a9dc37db8bd798122fc5bcdcfaccaf80db1e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dd6d8e4412f805937f61f00bbfdfe831978be235","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ebbe8868cf473f698e0fbaf436d2618b2bcda806","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72426","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72426 — In the Linux kernel, the following vulnerability has been resolved: bpf: Preserve pointer spill meta…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbpf: Preserve pointer spill metadata during half-slot cleanup\n\n__clean_func_state() cleans dead stack slots in 4-byte halves. When the\nhigh half of a STACK_SPILL slot is dead and the low half remains live,\ncleanup converts the live…","indicators":{"cves":["CVE-2026-72426"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:16.427Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/0f9278b22cda6fd2525049930157b79b4036b4ef","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3a354149bceacadbcf7d7b4766f5ef26a85892ab","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72427","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72427 — In the Linux kernel, the following vulnerability has been resolved: bpf: Fix effective prog array in…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbpf: Fix effective prog array index with BPF_F_PREORDER\n\nreplace_effective_prog() and purge_effective_progs() located the slot in\nthe effective array by walking the program hlist and counting entries\nlinearly. That count does not m…","indicators":{"cves":["CVE-2026-72427"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:16.520Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/41b4320b84fdafe1ab586b06453d30d50415db59","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/525e408c27ae714e538b8c608c3a974df3ab6c92","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9697db03e010391c55ae75192cbdf30c5a72c114","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b584f107ab90222bd825dcb4c5977326ff684109","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f08aaee3152d0dfc578b3f2586932d82062701dd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72434","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72434 — In the Linux kernel, the following vulnerability has been resolved: netfilter: ipset: make sure gc i…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: ipset: make sure gc is properly stopped\n\nSashiko noticed that when destroying a set,\ncancel_delayed_work_sync() was called while gc\ncalls queue_delayed_work() unconditionally which\ncan lead not to properly shutting down…","indicators":{"cves":["CVE-2026-72434"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:17.247Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/12088da6add5b003657c8506c5b0fcef835083b8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4a597a87e2e2f608edb6be2c510dc826b4fdfb53","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c78bd5195a5998094a5866df702fbeafda60dafb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c940d1b96248c3081b664ede5418078bdc7c8c07","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72435","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72435 — In the Linux kernel, the following vulnerability has been resolved: netfilter: ipset: fix order of k…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: ipset: fix order of kfree_rcu() and rcu_assign_pointer()\n\nSashiko pointed out that kfree_rcu() was called before\nrcu_assign_pointer() in handling the comment extension.\nFix the order so that rcu_assign_pointer() called f…","indicators":{"cves":["CVE-2026-72435"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:17.343Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/3ca9982a8882470aa0ac4e8bb9a552b181d1efcd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/50b70f56f3baaff46599f59b2d93fa2540120776","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6e98407cb94e035bba98956adc9096a76d8b2a9f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8087bb360a936a6314d22b567e4b861656943eb6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/93a775fd67f3ef34949a9523bfa69403ee74efdd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c9787d7c24ffd83019f379455e1b97fb4f0f75eb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d01b4b471f0fc5c396af62845e972ccf99cee29a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fcb565966534909377a16be5f7b065db2e25c8b5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72438","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72438 — In the Linux kernel, the following vulnerability has been resolved: md/raid10: fix writes_pending an…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmd/raid10: fix writes_pending and barrier reference leaks on discard failures\n\nraid10_make_request() acquires a writes_pending reference with\nmd_write_start() before calling raid10_handle_discard(). Several failure\npaths in raid10_…","indicators":{"cves":["CVE-2026-72438"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:17.660Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/393d687131d8aa8c7e4de2cb494438e145d20fc2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d1324b41dabd26787559efaeb430643c627c1eb0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72440","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72440 — In the Linux kernel, the following vulnerability has been resolved: md/raid1: fix writes_pending and…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmd/raid1: fix writes_pending and barrier reference leaks on write failures\n\nraid1_make_request() acquires a writes_pending reference with\nmd_write_start() before calling raid1_write_request(). Several failure\npaths in raid1_write_r…","indicators":{"cves":["CVE-2026-72440"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:17.843Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/8e065a1602511282fc0da2dc89445e0eb71a681c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bffbbfcbd9393e315a7a4286dcd70e875265db9a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72444","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72444 — In the Linux kernel, the following vulnerability has been resolved: flow_dissector: check device typ…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nflow_dissector: check device type before reading ETH_ADDRS\n\n__skb_flow_dissect() unconditionally reads 12 bytes from eth_hdr(skb)\nwhen FLOW_DISSECTOR_KEY_ETH_ADDRS is requested. This assumes the skb\nhas a valid Ethernet header at m…","indicators":{"cves":["CVE-2026-72444"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:18.280Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/0fe6455b8e1a22414f39c07bc90a1df12b52ec74","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/594c90b197141944f25991b8314de5c26ee27a7e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/825de39f0c35a112148799b3cbe45af3766c018a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9a65860959db594dfc1820c7fdc09285fb7556bf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bf6e8af2c8be77489bedeae9f8a9654cb710e500","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c6d3bcb0f934d4297ac5fa1c8656ae40694fb601","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72446","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72446 — In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: qcom: reject st…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nALSA: usb-audio: qcom: reject stream disable with no active interface\n\nhandle_uaudio_stream_req() resolves an interface index with\ninfo_idx_from_ifnum(), which returns -EINVAL when no interface matches.\nThe enable branch and the re…","indicators":{"cves":["CVE-2026-72446"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:18.500Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/25a867aa5e67a84333fa6e5c21292c5bcff86b90","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a22356d1f731553e99aa2707dbd38c659bdd28d8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bdb640be82e645e2828731648f485224d0c2587b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72449","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72449 — In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: fix list_del corrupt…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amdkfd: fix list_del corruption in kfd_criu_resume_svm\n\nThe cleanup tail of kfd_criu_resume_svm() walks\nsvms->criu_svm_metadata_list and kfree()s each struct criu_svm_metadata\nwithout removing it from the list. The list head is…","indicators":{"cves":["CVE-2026-72449"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:18.837Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/506e635aed05dbdeef11e3c59f6e42980cda5b6d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/838b57b3e7ce8cce0fda56d0861add3d464dd6c8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8fa5655da368d0306c03e9dc9cda8ae2a7840926","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/96ac562a9ea3020981f536384711190841c81aa8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c8a8d350a273c005a48c64c4519d21b2a51c5ceb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e33a3bd5cb8d0cf1557dee014115f812c9686130","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72450","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72450 — In the Linux kernel, the following vulnerability has been resolved: xfrm: validate selector family a…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nxfrm: validate selector family and prefixlen during match\n\nsyzbot reported a shift-out-of-bounds in xfrm_selector_match()\ndue to AF_UNSPEC selector with large prefixlen (e.g. 128) matched\nagainst IPv4 flow (when XFRM_STATE_AF_UNSPE…","indicators":{"cves":["CVE-2026-72450"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:18.950Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/40f0b1047918539f0b0f795ac65e35336b4c2c78","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5a03a2ee17e8259dde631ed84fd8322db06cb2ae","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6d99379c58f7f1c6ab2cc7aba01a4f52d71adcfe","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/78783fefdc8f36879b1a17efa0d3195ea5f2dc5f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/87a5bbccc7ff4edb3f42fea387124237d2ba91ee","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a3968ad4195d72c8fddcc6c0ef39da95ac98711a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bd7f202cf77556cff59f68dc30e4cdf40cb6e33b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/efa9e3b9f3dea2e1ea4c7edf4edc863faef85986","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72452","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72452 — In the Linux kernel, the following vulnerability has been resolved: drm/i915: clear CRTC color blob…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/i915: clear CRTC color blob pointers after dropping refs\n\nintel_crtc_put_color_blobs() drops the CRTC color blob references, but\nleaves the corresponding pointers unchanged.\n\nThis can matter in intel_crtc_prepare_cleared_state(…","indicators":{"cves":["CVE-2026-72452"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:19.183Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/164afa1a3af8e8c91b4a6d5fd7b79a44ec70abf0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2024940522ef451098c940ab0b82d647de5e5d9b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/31f077088e0faae6be8377741f356dea1b94ba46","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ac554ad943610031a25795d6ef71316f6164c136","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72454","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72454 — In the Linux kernel, the following vulnerability has been resolved: i3c: mipi-i3c-hci: Fix race in i…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ni3c: mipi-i3c-hci: Fix race in i3c_hci_addr_to_dev()\n\ni3c_hci_addr_to_dev() walks bus->devs.i3c, which is protected by\nbus.lock (rwsem).  However, it is invoked from the MIPI I3C HCI IRQ\nhandler, which cannot take bus.lock.  This a…","indicators":{"cves":["CVE-2026-72454"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:19.387Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/650716f23eac488c6696babdc7805f6a6b7427ad","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8f851cab401c28287d536b1347d76f6e219c0db6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72455","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72455 — In the Linux kernel, the following vulnerability has been resolved: apparmor: fix uninitialised poin…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\napparmor: fix uninitialised pointer passed to audit_log_untrustedstring()\n\nCommit 4a134723f9f1 (\"apparmor: move check for aa_null file to cover all cases\")\nintrdouced a small bug, where path_name() may pass a potentially uninitiali…","indicators":{"cves":["CVE-2026-72455"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:19.480Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/2791dd42d41e38805572b12116f721c97c4fcc0c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a5c79d44ef19203bd7cf6f3de8ff088112ebff95","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bcd1b34c21748531a3febaf7440632b89d8deab7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72459","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72459 — In the Linux kernel, the following vulnerability has been resolved: apparmor: aa_label_alloc use aa_…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\napparmor: aa_label_alloc use aa_label_free on alloc failure\n\naa_label_alloc() allocates a secid before allocating or taking the label\nproxy. If the later proxy step fails, the error path only freed the label\nmemory, leaking any res…","indicators":{"cves":["CVE-2026-72459"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:19.877Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/654fe7505dc6889724d4094fa64f89991afabfc3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6d91479174240f39e9edea250d95fa08c678a207","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7cb69e109610bba500e1ecb870f7988a4717208a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ae02e603c0b39b29f3ce6fe3efe01b286af1a2a4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b14fbacad77d64594228983ec20d61a224f3f491","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b5a9da5d36162d34db0f36abb15420e295176793","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bf310b044e85d4de670c94295c5d8e4c5bc5e7bc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cc2192899d502e3321e60cf1e91421e7309d089c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72460","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72460 — In the Linux kernel, the following vulnerability has been resolved: apparmor: check label build befo…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\napparmor: check label build before no_new_privs test\n\naa_change_profile() builds a replacement label with\nfn_label_build_in_scope() before the no_new_privs subset check. The build\nhelper can fail and return NULL or an ERR_PTR, but…","indicators":{"cves":["CVE-2026-72460"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:19.993Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/31cb109db5e6322ed22304fd5c0dedbaa438d6d3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a29f06db44b4c94597ded58f639eed3e21781ac3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a58cafd38b46fb1a2220e2fbbcfe291ea75fa147","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b7c45c05a396a017c49ac7949de240a0dfc0ac4e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cfc224866530a6842b6c2d2d30ef6a9b0e64bb9c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d82160132345688a09cbaa648cfdd16bb32e8ea2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d84bb195d208adbf77f012ca2a96e11163f6def1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ec926b2a351eeeb31e6c9aee02e0c32f94b5588f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72461","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72461 — In the Linux kernel, the following vulnerability has been resolved: apparmor: fix refcount leak when…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\napparmor: fix refcount leak when updating the sk_ctx\n\nCurrently update_sk_ctx() transfers the plabel reference, unfortunately\nit is also unconditionally put in the caller. Ideally we would make\nthe caller conditionally put the refe…","indicators":{"cves":["CVE-2026-72461"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:20.113Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/045dbe89ac31709abd73390d0805d52fece7ef39","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6d25e7b47616cb2db43351210929c8f19dc305a3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b8642f1478982a97ca2eb59f70f631a9de42ae11","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72462","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72462 — In the Linux kernel, the following vulnerability has been resolved: apparmor: fix race in unix socke…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\napparmor: fix race in unix socket mediation when peer_path is used\n\nThe holding a reference to the peer_sk is not enough to ensure access\nto the peer sk path. Accessing the path outside of the state lock\nallows for a race with unix…","indicators":{"cves":["CVE-2026-72462"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:20.210Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/b1aea2c1960771a276d7e68c7424168eccd0c3da","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d680472db98823d90fc91362910901e468269318","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d8ea44f6090c087fe255d9512fb808574b4d88e8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72464","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72464 — In the Linux kernel, the following vulnerability has been resolved: xprtrdma: Repost Receive buffers…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nxprtrdma: Repost Receive buffers for malformed replies\n\nrpcrdma_wc_receive() decrements the transport's Receive count for\nevery completion before it dispatches a successful Receive to\nrpcrdma_reply_handler(). The handler must post…","indicators":{"cves":["CVE-2026-72464"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:20.400Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/007b4da2f38dcc16a13265416f4ca9f179bab610","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/19fae02b272ee4bcdfb5db57f402d28f1697167a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4322fd9645ee769ad29ce5caea74a1cd9b17269d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/abc011ddaf1617e3e82d8a1e87daa7ddbfb9bac5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d7c531ab477ae94fd03771d707fd29c787408039","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ef6fb8a5c521f1a07f85202d13e8f2898f247362","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72465","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72465 — In the Linux kernel, the following vulnerability has been resolved: xprtrdma: Sanitize the reply cre…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nxprtrdma: Sanitize the reply credit grant after parsing\n\nThe out_norqst exit in rpcrdma_reply_handler() branches away before\nthe credit clamp, so a reply that matches no pending request reaches\nout_post carrying the raw credit valu…","indicators":{"cves":["CVE-2026-72465"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:20.527Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/33db78b1b24fc6a464ae08aa4d2538c5f883eb5e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/41634242140173eabbf54f899f9c70b5c685e786","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/469b22376ee73369711ecf2761bd122ef4195963","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7cf332b3d82d73ffceedca6b4a120be074172021","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8be1bb378def94a5cb8f7527a191e476407118ec","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c3a628aab2dc8f5fd7bff86ceaeae64de590e60a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72469","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72469 — In the Linux kernel, the following vulnerability has been resolved: xprtrdma: Fix ep kref imbalance…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nxprtrdma: Fix ep kref imbalance on ADDR_CHANGE\n\nrpcrdma_cm_event_handler() falls through to the disconnected: label\non RDMA_CM_EVENT_ADDR_CHANGE and calls rpcrdma_ep_put() with no\nmatching get when the event arrives before RDMA_CM_…","indicators":{"cves":["CVE-2026-72469"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:20.997Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/af9b65b29af341932625c4283dc7a23cdb62688a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cfd1bab66b042da7a778786685125656c695931b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d0479c2b12974aa188b10d221a5770126b118b6d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ffc07790539736a5d029f6a3c966b46c529f93a8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72470","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72470 — In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: resize log->one_page_b…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nfs/ntfs3: resize log->one_page_buf when adopting on-disk page size\n\nlog_replay() allocates log->one_page_buf using the page size that was\nchosen from the host PAGE_SIZE:\n\n\tlog->one_page_buf = kmalloc(log->page_size, GFP_NOFS);\n\nLat…","indicators":{"cves":["CVE-2026-72470"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:21.103Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/2097a2537d9d1c29c0e20ed0dbf717a0ccd8f374","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4f129fc6f756f8541e5bff45b1804cc11b1ec712","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5a35454179fe1041d9cd286f5d320ce0d448c12a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c99444f6dfca893f6d310aae4a53c620f98f7b4f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f1422df595d69b997d23a8f11e12c528ccef7fad","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72471","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72471 — In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: prevent potential lcn…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nfs/ntfs3: prevent potential lcn remains uninitialized\n\nThe target VCN being sought was not found within runs[0], causing\nrun_lookup() to return false. This causes run_lookup_entry() to return\nfalse, which in turn results in a len v…","indicators":{"cves":["CVE-2026-72471"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:21.213Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/57ac2831c8e0f168090d38e3de758c6a59db44db","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7ae7e98b71438c494532492cbf58fc0d7f7988bb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72476","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72476 — In the Linux kernel, the following vulnerability has been resolved: dmaengine: Fix possible use afte…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndmaengine: Fix possible use after free\n\nIn dma_release_channel(), check chan->device->privatecnt after call\ndma_chan_put(). However, dma_chan_put() call dma_device_put() which could\nrelease the last reference of the device if the D…","indicators":{"cves":["CVE-2026-72476"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:21.757Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/0bc191050c3253da8ef4bfaf157c44efed6e22cd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/329ec20a86091d2a6e5b4fe507545e7d678a22a2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3b0240483dc977dbec4f3bc7a5383d4691ecb625","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/444f96066937f3fdf0e79b53289cff223c7d638b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5876f38b67a309c00628942cb25679749b53b397","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/92f853f0645aebf1d05d333e97ab7c342ace1892","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9bdc8dce4068dadbdf7cf5ad6d4983e2afffedce","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ab438a9efb9042c79d2f8db28a326d55feb8591f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72478","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72478 — In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: add bounds check to ru…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nfs/ntfs3: add bounds check to run_get_highest_vcn()\n\nrun_get_highest_vcn() parses a packed NTFS mapping-pairs buffer without\nany length bound, relying solely on a 0x00 terminator to stop.  A\ncrafted $LogFile UpdateMappingPairs reco…","indicators":{"cves":["CVE-2026-72478"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:21.960Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/41081202eb823f5b27ff164b12010b24428100ad","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8afc24a884aff6a6f08028bd779ee65c40054455","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a31893206588374d7d16fad387189d8165c7efd3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bb11485a87fbb2254b62cfed630b699d50e57da8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c23083b472a720c3f60b147db05b25b751c7c1bf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c69b9003332917b652175d5fa9d84158c5ed8617","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72480","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72480 — In the Linux kernel, the following vulnerability has been resolved: iio: adc: xilinx-ams: fix out-of…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\niio: adc: xilinx-ams: fix out-of-bounds channel lookup in event handling\n\nams_event_to_channel() may return a pointer past the end of\ndev->channels when no matching scan_index is found. This can lead\nto invalid memory access in ams…","indicators":{"cves":["CVE-2026-72480"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:22.210Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/116d1f8805ae2daadbac89d24da4c0da50b9edae","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1d24f14e049fdd769146dda026496ed23b397ed9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3c374d33f1338dbb5676919c5194caa9c5aa1631","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/947eb6f0a274f8b15a0248051a65b069effd5057","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/94d158985b6ea011bdc26186f42d662a156da6cb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9ac3675bf875792dced45efbf47116719a7c097b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72482","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72482 — In the Linux kernel, the following vulnerability has been resolved: gpib: fix double decrement of de…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ngpib: fix double decrement of descriptor_busy in command_ioctl()\n\ncommit d1857f8296dc (\"gpib: fix use-after-free in IO ioctl handlers\")\nintroduced a descriptor_busy reference counter to pin struct\ngpib_descriptor across IO ioctl op…","indicators":{"cves":["CVE-2026-72482"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:22.430Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/8b5f1d295dda8677e4545ce340053fcfa8b634c7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c4faab452b3c1ada003d49c477609dd80523b9bf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fdee9f207a48ce204ec6cfceaa1459d2473600a5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72483","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72483 — In the Linux kernel, the following vulnerability has been resolved: usb: host: max3421: Fix shift-ou…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nusb: host: max3421: Fix shift-out-of-bounds in max3421_hub_control()\n\nThe `max3421_hub_control()` function handles USB hub class requests\nto the virtual root hub. In the `default` branches of both the\n`ClearPortFeature` and `SetPor…","indicators":{"cves":["CVE-2026-72483"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:22.527Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/00dd025324b56d39d37e57a08f473dab3a660f30","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/02d03c61e8a7b016956acb48e8a2512d16d87517","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/08b1d4cab0230697bc74c63fc4e40170a7559c54","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3be5f24e8270ba53b3c814d13689bb8644c86237","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4da073d57176d8e1c2bca34febfbc81d2560c1a5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cff06b03b530ae1fe8a13e93a7848f2130e00fb4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d512bdefd241b98f4d7bcb5bab5614a86411fad4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e5fa9d8f40746ec3447335c9642c03410f5fd3af","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72485","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72485 — In the Linux kernel, the following vulnerability has been resolved: coresight: platform: defer conne…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncoresight: platform: defer connection counter increment until alloc succeeds\n\ncoresight_add_out_conn() increments nr_outconns before calling\ndevm_krealloc_array() and again before devm_kmalloc(). If either\nallocation fails, the cou…","indicators":{"cves":["CVE-2026-72485"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:22.767Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/1563ae33dc4f5ebac96b93af2ef72e72aaaa31ae","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8ca9adc805884d3bb5038082462577f86c2c4a10","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72487","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72487 — In the Linux kernel, the following vulnerability has been resolved: PCI: Check ROM header and data s…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nPCI: Check ROM header and data structure addr before accessing\n\nWe meet a crash when running stress-ng on x86_64 machine:\n\n  BUG: unable to handle page fault for address: ffa0000007f40000\n  RIP: 0010:pci_get_rom_size+0x52/0x220\n  C…","indicators":{"cves":["CVE-2026-72487"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:22.973Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/1d495446ec7ace5b61da366ffb161ee8319dd9a2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4997873e3abbad47a9e1e4abd05f045f77a74f22","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/538796b807fcfb81b2ce40cc97a614fd8588feb5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/721ad5b72448b5065ed309017ab563205f162404","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/724042f8f98d2594b9d164549fd4292c6bd58120","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cd5b242d5848369b9e957340a7e30adee7b6763d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72488","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72488 — In the Linux kernel, the following vulnerability has been resolved: soundwire: fix bug in sdw_add_el…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nsoundwire: fix bug in sdw_add_element_group_count found by syzkaller\n\nThe original implementation caused an out-of-bounds memory access\nin the sdw_add_element_group_count for-loop when i == num.\n\nfor (i = 0; i <= num; i++) {\n    if…","indicators":{"cves":["CVE-2026-72488"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:23.087Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/a454f61747c97e2eadaa7a35ffc1f4b1645c6a53","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e483a406a23a92d5202e8d324f206e127eef48ff","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f772ff5a0e6758fd412803c09e03ba3bca5f5878","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72489","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72489 — In the Linux kernel, the following vulnerability has been resolved: staging: nvec: fix use-after-fre…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nstaging: nvec: fix use-after-free in nvec_rx_completed()\n\nIn nvec_rx_completed(), when an incomplete RX transfer is detected,\nnvec_msg_free() is called to return the message back to the pool by\nclearing its 'used' atomic flag. Imme…","indicators":{"cves":["CVE-2026-72489"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:23.190Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/08626fcfe12308ca3f8b22c538ba7dee0b2dce7a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/26813881181deb3a32fbb59eadb2599cbe8423f6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5de04caa46b635e180cecbd164e333eca535db94","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6b2ea886ebdae44a2394029844a4e78f58e1587d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9f7fe4165a1f1014bdadc8e744c0fd3c2d8c0b89","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a37625c7b688fcf68a54263528eccbabfd7fa17a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bb3d592c7d6c4ec8ac6640c690ca13298e7e8e90","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f19a5bc059051143c489dd6f79a0f9c3bfd13aea","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72492","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72492 — In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free in sam…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nksmbd: fix use-after-free in same_client_has_lease()\n\nsame_client_has_lease() returns an opinfo pointer from ci->m_op_list\nafter dropping ci->m_lock without taking a reference.\n\nsmb_grant_oplock() then dereferences that pointer in…","indicators":{"cves":["CVE-2026-72492"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:23.533Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/09634cd055d9bd8dd167995ea52bcd8028dd5dac","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/0ff82a9cf9312678d8bc4edeef0b6e82659ac12a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/35d3d6ff2bc1e7aaecb15d5377ebbd6227acae0d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/65b655f65c3ca1ab5d598d3832bb0ff531725858","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/79c7c59bb519db6f5a2a151965e825ec725614cc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7c3264d273d524aa6adcce23c01087271f13586f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/aaa3bb2bbf2ccbfea9e4e0b9dabf3afc60b50cd0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72497","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72497 — In the Linux kernel, the following vulnerability has been resolved: RDMA/bnxt_re: Add a max slot che…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nRDMA/bnxt_re: Add a max slot check for SQ\n\nThe variable WQE mode must be validated against\nthe maximum slots supported by HW. The max supported\nvalue is 64K. Adding a max and min check and fail if user\nsupplied value is more than t…","indicators":{"cves":["CVE-2026-72497"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:24.037Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/a59d815cbe667929b693b5fa6716a074e6a31c5b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dc95931b7e1326dacae547874bf38c092e5960d8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72499","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72499 — In the Linux kernel, the following vulnerability has been resolved: RDMA/bnxt_re: Free CQ toggle pag…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nRDMA/bnxt_re: Free CQ toggle page after firmware teardown\n\nFree the toggle page only after firmware teardown completes so that\nan NQ interrupt arriving during bnxt_qplib_destroy_cq() won't write\nthe toggle value to an already-freed…","indicators":{"cves":["CVE-2026-72499"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:24.220Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/b193854675ecad43b4d69c304c1b6a90b206cc99","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bb45e06f9914ca64ac95341a80a0c20bb8dd46a9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72500","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72500 — In the Linux kernel, the following vulnerability has been resolved: RDMA/bnxt_re: Free SRQ toggle pa…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nRDMA/bnxt_re: Free SRQ toggle page after firmware teardown\n\nFree the toggle page only after firmware teardown completes so that\nan NQ interrupt arriving during bnxt_qplib_destroy_srq() won't write\nthe toggle values to an already-fr…","indicators":{"cves":["CVE-2026-72500"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:24.320Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/0adcd67f3d6f84835be682da0153f57f5c2f8036","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/104a7ff382a58a83cae018925e3574c784e8274c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/131e2918b9b0529687e67e2e58047304027f095a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72502","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72502 — In the Linux kernel, the following vulnerability has been resolved: tcp: ipv6: clamp default adverti…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ntcp: ipv6: clamp default adverting MSS to avoid GSO_BY_FRAGS (0xFFFF)\n\nWhen MTU is large, ip6_default_advmss() can return IPV6_MAXPLEN (65535).\nThis is interpreted by TCP as mss_clamp, allowing the MSS to reach 65535.\n\nHowever, 0xF…","indicators":{"cves":["CVE-2026-72502"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:24.510Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/21f69ac1879bb970588d5e7c12a96e6542f7c1a7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2bf43d0e2e6a27d52a7d624e2d6b9116972e8a22","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/560b33b434e922ef97f9ff23aa2e909ef7aacd5c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/572fff10819dfc359298d1f774839e76a4d96f93","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8e6214a530c03e341dc1b0a846c8f2b716b3551a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a210791f33345aa87187f7d7a9f3b9b7f4a28e6d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c0db3dc2ac323b6c4b76adede3b355a9daa6dea8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d774cdbda6634a78d0f2baf201ee5a8c57f3bc0e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74256","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74256 — In the Linux kernel, the following vulnerability has been resolved: bpf, sockmap: fix integer overfl…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbpf, sockmap: fix integer overflow in bpf_msg_pop_data() bounds check\n\nstart and len are u32, so\n\n\tu64 last = start + len;\n\nevaluates start + len in 32-bit and wraps before storing it in last.\nThe bounds check\n\n\tif (start >= offset…","indicators":{"cves":["CVE-2026-74256"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:24.743Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/17eb9832a10db2f7a80cb429ca2bc5038445a943","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9ef44ed6fb0c1db01cfcc3de432a33e719713eb5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a48802fb2cd2d1e23651989f8ff4d15e9d5dad54","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ba5cc05dae8fce237d191c7ea96b1107a791e548","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c05a0ec1cdced622a1a0c7d85679fe02f31033ec","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d693c5ed67dabe1ccbf8dcea93075bdc9ffd4ca0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e09f7bd7273928b4089e6b71f8e992f2b356ca1b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fe09dd288722f1c749b7506c0b3e7841a7d85027","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74257","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74257 — In the Linux kernel, the following vulnerability has been resolved: sockmap: Fix use-after-free in u…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nsockmap: Fix use-after-free in udp_bpf_recvmsg()\n\nsyzbot reported use-after-free of struct sk_msg in sk_msg_recvmsg(). [0]\n\nsk_msg_recvmsg() peeks sk_msg from psock->ingress_msg under a lock,\nbut its processing is lockless.\n\nThus,…","indicators":{"cves":["CVE-2026-74257"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:24.870Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/39d44ed6904bfa9a1c6d0538672dd50c7b85520e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/81567d2b3f4dc4fc32f8b61433738bce2cafd4a1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c010995b29c8939c6aa69e3cb26f8dbee163d156","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74258","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74258 — In the Linux kernel, the following vulnerability has been resolved: bpf: Guard __get_user acesss wit…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbpf: Guard __get_user acesss with access_ok for uprobe_multi data\n\nAs reported by sashiko [1] we need to use access_ok to check the user\nspace data bounds before we use __get-user to get it.\n\n[1] https://lore.kernel.org/bpf/2026061…","indicators":{"cves":["CVE-2026-74258"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:24.993Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/4d87a251d45b4a95eb4c0abcfab809c9f231258a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c6d51ad36490013ee9df94a372d3bf794bd304d1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74259","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74259 — In the Linux kernel, the following vulnerability has been resolved: cifs: remove all cifs files befo…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncifs: remove all cifs files before kill super\n\nCifs files may be put into fileinfo_put_wq during umounting cifs.\nAfter umount done, cifsFileInfo_put_final is called, which cause\nfollowing BUG:\n\nBUG: kernel NULL pointer dereference,…","indicators":{"cves":["CVE-2026-74259"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:25.090Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/21303c4a2b7275e626c6b67de0f45f2d5b9bb3e7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3baedc9b2f53e6a6ac57b16fdff0f9b954d9ca71","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4465ebe67d89345954bb3622b25dd13e06f9d367","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/55fb9581986141659002264fdc75cef307811eb8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6d9a4aaaa8b2612b5ef9d581e2f286a458b71ee1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7839f1817a0cb6c4ed5cfe25d04845c43380a129","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74260","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74260 — In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_dup_netdev: add nf…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: nf_dup_netdev: add nf_dev_xmit_recursion*() helpers and use them\n\nUpdate nft_dup and nft_fwd to use the nf_dev_xmit_recursion() helpers.\nThis patch also disables BH when transmitting the skb to address a\npossible migrati…","indicators":{"cves":["CVE-2026-74260"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:25.210Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/2354e975932dabb06fad239f07a3b68fd1809737","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/edf234f71fb327792196f813048ab8f5bd3bb712","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74262","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74262 — In the Linux kernel, the following vulnerability has been resolved: kcm: use WRITE_ONCE() when chang…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nkcm: use WRITE_ONCE() when changing lower socket callbacks\n\nkcm_attach() replaces a live lower TCP socket's sk_data_ready and\nsk_write_space callbacks with KCM handlers, and kcm_unattach() restores\nthem later. Those callback-pointe…","indicators":{"cves":["CVE-2026-74262"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:25.450Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/0cb3e2f40679032c1aa2186280a86e5ead0161ee","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/11faefd11ce2448bac7279ab302dd1954a6547fe","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/47186409c092cd7dd70350999186c700233e854d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9684fff87124b201e11dea01ded9173025359a0f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b4ccd6eef671d7c44a30123cd29f3acf3de8468e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b8c90823cdfb5f3d22f261aeb3e9066612853c36","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f01fb6138f8eb606b56ce9158e2d8b72352c53f4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fa26e4606aed0f7fe793c325506adeda1d847a43","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74264","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74264 — In the Linux kernel, the following vulnerability has been resolved: net: watchdog: fix refcount trac…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: watchdog: fix refcount tracking races\n\nBlamed commit converted the untracked dev_hold()/dev_put() calls\nin the watchdog code to use the tracked dev_hold_track()/dev_put_track()\n(which were later renamed/interfaced to netdev_ho…","indicators":{"cves":["CVE-2026-74264"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:25.670Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/446fe8ce699ce0a4d702f7b0fcdb50de340b9260","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7ce2b00ff058ec4cafc9b447e1f0a6d6f49275d9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8eed5519e496b7a07f441a0f579cb228a33189f7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74266","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74266 — In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_dualpi2: Do not c…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet/sched: sch_dualpi2: Do not call qdisc_tree_reduce_backlog during peek before restoring qlen\n\nWhenever dualpi2 drops packets during peek, it calls\nqdisc_tree_reduce_backlog. An issue arises because it calls\nqdisc_tree_reduce_bac…","indicators":{"cves":["CVE-2026-74266"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:25.920Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/15cd0c93bf4f892d66bc7a93667e2357b5673365","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/466f29477cae2bd1982a066d518a9b20c5a37924","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bd851b10daee7199a658458b8ce250e95a334500","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74270","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74270 — In the Linux kernel, the following vulnerability has been resolved: handshake: Require admin permiss…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nhandshake: Require admin permission for DONE command\n\nACCEPT and DONE are the two downcalls of the handshake genl\nfamily, both intended for use by the trusted handshake agent\n(tlshd). ACCEPT already requires GENL_ADMIN_PERM; DONE h…","indicators":{"cves":["CVE-2026-74270"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:26.390Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/25fb53e43ec006ac69b9e825a7e8a11d63a6083e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4dafc411948469277b276724c3b2b4408c02c04c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/67cec2f1eb9e58719d622e92e2278ceda72dbd85","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/81246a65303d9635266b1334490142caaf86a11f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b6557f912509abe8e70223373dd7a44d1d4a0d6c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74275","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74275 — In the Linux kernel, the following vulnerability has been resolved: cxl/region: Fix out-of-bounds ac…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncxl/region: Fix out-of-bounds access in cxl_cancel_auto_attach()\n\nIn cxl_cancel_auto_attach(), it assumes cxled->pos is a valid index for\naccessing p->targets[]. However, cxled->pos can be set to negative errno\nin cxl_region_sort_t…","indicators":{"cves":["CVE-2026-74275"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:26.897Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/44b2397eb67b7f728640989a22d062e41f94ab64","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cbda6a2c2bec2a5fb30a2ce85baeab15b5fc7db3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74277","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74277 — In the Linux kernel, the following vulnerability has been resolved: iommu/dma-iommu: Fix wrong scatt…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\niommu/dma-iommu: Fix wrong scatterlist length assignment in P2PDMA path\n\nIn iommu_dma_map_sg(), when handling PCI P2PDMA cases, the DMA length\nof the current scatterlist segment `s` is incorrectly assigned from the\nhead entry `sg->…","indicators":{"cves":["CVE-2026-74277"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:27.120Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/8646f00ce021e49f4f05bc1d4060a0c27b25d0e1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/db50fb87015b955a5a0c155293b2dd40d63a3b9e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74281","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74281 — In the Linux kernel, the following vulnerability has been resolved: tipc: reject inverted service ra…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ntipc: reject inverted service ranges from peer bindings\n\ntipc_update_nametbl() inserts a binding advertised by a peer node using\nthe lower and upper service-range bounds taken directly from the wire,\nwithout checking that lower <=…","indicators":{"cves":["CVE-2026-74281"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:27.547Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/2afb648f7b99216c687db1f89739c995e1144153","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/581ef56e5c34d475056ce086dc2ba0e872ba6857","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7e401233f9bb74a626e70698d0d62f3a94ac0676","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/973bf0ed896b9898668dbadb82ed849d7d573010","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cd1955f81bd8ebeef51b324989ac871ad1947fb6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f1715d92ee3095d9215b493a8603a81f646fcf61","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f683200b83a0085d4e11abea8c1fdd9fdfb95b0b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74282","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74282 — In the Linux kernel, the following vulnerability has been resolved: tipc: prevent snt_unacked underf…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ntipc: prevent snt_unacked underflow on CONN_ACK\n\ntipc_sk_conn_proto_rcv() subtracts the peer-supplied connection ack count\nfrom the unsigned 16-bit send counter snt_unacked without checking that it\ndoes not exceed the number of mes…","indicators":{"cves":["CVE-2026-74282"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:27.660Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/1e2c956745777e6ffdee7f30da5935741c03ee1e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3388145d258cf2c4c98278e3987296007d30672e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3cfa3d8e0dc167850edeb5bf5a07757db83fd54e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/47ed873e4ceda34098bd46d8e96b4bb13cad3a04","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/67e55b054bf8025658dc0e255057f2a6236416bd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/96f91b8ae1a489b3eca137e7acf42cf985fb8939","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ab3e10b44ba5411779aac7afd2477917dd77750f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b44bebdd32c9ff66ee2aebfc317ced44bedd9335","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74283","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74283 — In the Linux kernel, the following vulnerability has been resolved: tipc: require net admin for TIPC…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ntipc: require net admin for TIPCv2 netlink mutators\n\nTIPCv2 registers mutating generic-netlink operations without admin\npermission flags. Generic netlink only checks CAP_NET_ADMIN when an\noperation sets GENL_ADMIN_PERM or GENL_UNS_…","indicators":{"cves":["CVE-2026-74283"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:27.780Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/52864c6c13dcc292481eabfeb3c31a86c3ec06f2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/56f0a2e0a1d004e025cd031c3a801ab73959269f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/86b0c540e2ea397cde021eecd24145f7c16a3d4e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9b937de4b3ded62a24da6e8d9d623cdb2748fa74","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b06fb5f78a9af0929aaa47c92d0b7bca0617fb25","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c9668a4adb2264625daeeabc7466b783badd4614","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cebaefe1aceb650d5c99a4c0e1a4dde09e211818","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e87dcc1a644d087de0bb6c94c6dd28c29b89597f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74285","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74285 — In the Linux kernel, the following vulnerability has been resolved: net: Stop leased rxq before unin…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: Stop leased rxq before uninstalling its memory provider\n\nnetif_rxq_cleanup_unlease() tears down the memory provider that was\ninstalled on a physical RX queue through a netkit queue lease. It\ncurrently revokes the provider's DM…","indicators":{"cves":["CVE-2026-74285"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:28.037Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/03f4c6ed3cffbfce0b85a3a0193d08a46692a9f8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/37314c9dbe95b4d924c7b61aaf563cec4f4e4133","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74288","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74288 — In the Linux kernel, the following vulnerability has been resolved: net: fib_rules: Don't dump dying…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: fib_rules: Don't dump dying fib_rule in fib_rules_dump().\n\nrocker_router_fib_event() calls fib_rule_get() during RCU dump.\n\nIf the fib_rule is dying, refcount_inc() will complain about it.\n\nLet's call refcount_inc_not_zero() i…","indicators":{"cves":["CVE-2026-74288"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:28.343Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/0f929b59f4cd0e05bb1ecefe12b77e85911d4be2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1fbc6c6efe78f4454a51afa0587efb6826f60f00","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2821e85c058f81c9948a2fb1a634f7b47457d51c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2dfdc210d240bd48bb2ea746430b02b5571b6db9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3af0bc1bd9039e2e50abf3e2d7fee411f38bce4e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4b7ae30c81c2ee10a644749a3704a5c797ccc308","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a7ef30753353ba6a95d693b1863a0214222a199a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bb4a5b3c91af3c8d705bb2e9f6f8069a70db26fc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74289","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74289 — In the Linux kernel, the following vulnerability has been resolved: ipv4: fib: Don't dump dying fib_…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nipv4: fib: Don't dump dying fib_info in fib_leaf_notify().\n\nsyzbot reported use-after-free in nsim_fib4_prepare_event(). [0]\n\nThe problem is that the following functions call fib_info_hold() /\nrefcount_inc() while dumping fib_info…","indicators":{"cves":["CVE-2026-74289"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:28.457Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/06b693d2eb6651a63ad85bad8673de3b7d4edd6d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/676482da8d938ea72c26da0fc86af2d2ec238ab2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74292","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74292 — In the Linux kernel, the following vulnerability has been resolved: ASoC: tegra: tegra210_ahub: Vali…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nASoC: tegra: tegra210_ahub: Validate written enum value\n\ntegra_ahub_put_value_enum() reads e->values[item[0]] before\nchecking whether item[0] is within the enum item range. The existing\ncheck therefore happens too late to prevent a…","indicators":{"cves":["CVE-2026-74292"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:28.760Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/1d8aabb413b5638670dfd1162169edc0ba276a2e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/226d93b65f4f99b35fb7a03bdb24acb577364ebc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2ec7d16fe21c68b0879873a2abf9aac854c96134","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4bcb23635d5059ee71f3fb89719ea14aada6fd59","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4e45e4c2015519a39c40eb575c03b77807fb5080","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/964f8f9015fb117402d8d2186593397cd93388e9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e098c9c6477dfa3cb363282100108484ceba5cc5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f67d63628fe158b3a6e6b33a2b8c83ff118699d1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74293","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74293 — In the Linux kernel, the following vulnerability has been resolved: ASoC: fsl: fsl_audmix: Validate…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nASoC: fsl: fsl_audmix: Validate written enum values\n\nfsl_audmix_put_mix_clk_src() and fsl_audmix_put_out_src()\nconvert the user-provided enum item with snd_soc_enum_item_to_val()\nbefore checking whether the item is within the enum'…","indicators":{"cves":["CVE-2026-74293"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:28.877Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/0b10c6203e62d9e7337cc401568b201f9bac79ec","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/0f1510e84d7bfc3eb9538efa65c6ea0aadf1078c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3cd17e4e2871114d5579fa7bc8da66faf7fc1930","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5b7a23c1ed04e794ef3b31e452ef5c93e1e34b4a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7513831b90a38d55fa089e3e1b49691e467afee6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8fb4364eb494b926d009bfaf3c98f07c3aa5d9f3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b36d6d48faa6b1bb723b8f4e527c531a1a68520e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b4774a7da12b14fc37219ab4368d1907f9b5aca4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74294","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74294 — In the Linux kernel, the following vulnerability has been resolved: ASoC: meson: aiu: Validate writt…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nASoC: meson: aiu: Validate written enum values\n\nThe AIU HDMI and internal codec mux put callbacks use the written enum\nvalue with snd_soc_enum_item_to_val() before checking whether the value is\nvalid for the enumeration.\n\nReject ou…","indicators":{"cves":["CVE-2026-74294"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:28.990Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/0965892cc486ca554d72eeb62d85ccf8d0137a5a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d65adf85477247be04ac86886f8edfaa047b5d4a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74295","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74295 — In the Linux kernel, the following vulnerability has been resolved: ASoC: codecs: hdac_hdmi: Validat…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nASoC: codecs: hdac_hdmi: Validate written enum value\n\nhdac_hdmi_set_pin_port_mux() uses the written enum value to index the\ntexts array before calling snd_soc_dapm_put_enum_double(), which validates\nthat the value is within the enu…","indicators":{"cves":["CVE-2026-74295"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:29.097Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/0b08baeccdcf52fad328ad645f5b4fbee04eea34","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/216336418c007c4b44c650acf2fd3d2de5bb81e8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7f02e9064b6f84e7f93c72f134306271eb4f7de4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8cbf24714d6b3f553fc959632c9781176a73a9a7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9131e4b023e0db5764680034bdc94aeae0b0f33d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bc464a6a9e352daa17b1636c090cf3185710b9a0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d8961b5c7889b6ecc00f1409d36826df1665df27","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74296","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74296 — In the Linux kernel, the following vulnerability has been resolved: RDMA/mlx5: Release the HW‑provid…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nRDMA/mlx5: Release the HW‑provided UAR index rather than the SW one\n\nFree the UAR index returned by the hardware.","indicators":{"cves":["CVE-2026-74296"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:29.203Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/449ae7927152e46acbe5f19f97eafdae6d3a96b1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6f83de384ca582fa87b4c2b0d03bd1ed3bf9a2ee","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/80f1f49f53a42733e60c90e0ec545e647969214d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/aabfc845838ef453f1d22d7665596f9cc48be7dd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d3ff718c0c7153e2641e6a09507bace14fc5c402","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ef369446f62903ea079e8a7954b5bf8bb8300fe3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74297","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74297 — In the Linux kernel, the following vulnerability has been resolved: RDMA/mlx5: Fix undefined shift o…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nRDMA/mlx5: Fix undefined shift of user RQ WQE size\n\nset_rq_size() computes the RQ WQE size as \"1 << rq_wqe_shift\" based on\nthe user-provided rq_wqe_shift, which is only checked to be greater than\n32, so shifts of 32 are still accep…","indicators":{"cves":["CVE-2026-74297"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:29.307Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/42f3d2c8c18b92ea33e506a38b64f1a8986c2823","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4b87a2497276a72fd63028e7419abf0fb7ed837b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6fc874fdfb366bfb11c62e6af9a831c8be59ddda","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9fff54929cc00849d738faa99f06c32399aeb026","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b732db02a2b04cde393638df19de6251ce62a74e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b746f949c2ac2b041102836095d6d4a2ef21fa75","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c1dbf52d24a8cb1aa56780ba51b72e7d495f258c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d881d60223aac8fdc12b227d89c76e131e92a9cd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74300","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74300 — In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci: validate codec c…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nBluetooth: hci: validate codec capability element length\n\nRead Local Codec Capabilities returns a sequence of capability elements.\nEach element starts with a one-byte length followed by that many payload\nbytes.\n\nhci_read_codec_capa…","indicators":{"cves":["CVE-2026-74300"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:29.610Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/290b36f9d1eb9b2f72b40d826f26b4a182ab15f7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4bc16db0f11918e07edf9fdcda4a30cf4c9df45c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c38fbcdc407925c7088f7e5f11c1fff73d2d35a2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ec4d352747a62c1082f16c11a74b37d6eb85a5a3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f2ad01f55e07f9531efcea736087e6b8658a3440","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fc97fc8cf7f53fd3619db63e09050d20a3a0c4b1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74302","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74302 — In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_core: Fix UAF in…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nBluetooth: hci_core: Fix UAF in hci_unregister_dev()\n\nhci_unregister_dev() does not disable cmd_timer and ncmd_timer\nbefore the hci_dev structure is freed. If a timeout fires\nduring device teardown, the callback dereferences freed…","indicators":{"cves":["CVE-2026-74302"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:29.813Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/48c7ad6afcc58c2cda11fed39791708103b6a644","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5edcc018fa6e80b2c478454a4a8229c23d67c181","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/672d52d9412252e61b8de8d773ccdf5a277cf540","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a0fd1086a57b982f8c24ae4ab165c2af39fe1735","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74305","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74305 — In the Linux kernel, the following vulnerability has been resolved: bpf: Tighten cgroup storage cook…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbpf: Tighten cgroup storage cookie checks for prog arrays\n\nThe fix in commit abad3d0bad72 (\"bpf: Fix oob access in cgroup local\nstorage\") is still incomplete. The prog-array compatibility check\ntreats a program with no cgroup stora…","indicators":{"cves":["CVE-2026-74305"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:30.190Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/10627ddc0167aab5c1c390a10ef461e9937aba08","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1c762d28698483ce7c372091f34d86e4d4828652","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/46fbafe3d2d569d828e8d24a7dbe1659f63685cf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/87177497cca90bf4fcfb759eb898560eb5b46a10","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9ca06849c4239aa2d580c54651f8588c51cb398b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cb22dc79528eb26a46d346c3118dbd6b14c70609","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/eb73056ce2a6f101ddd3bdba89af6b24ebffff85","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74306","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74306 — In the Linux kernel, the following vulnerability has been resolved: vfio/qat: fix f_pos race in qat_…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nvfio/qat: fix f_pos race in qat_vf_resume_write()\n\nqat_vf_resume_write() checks filp->f_pos before taking migf->lock, but\ncopies into the migration-state buffer after taking the lock and\nre-reading the shared file position.\n\nTwo co…","indicators":{"cves":["CVE-2026-74306"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:30.357Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/4ec5e932e636896e97e4c6a8205b0ac76d52421a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6465af0004dc1b067129a26ef44f19cdf13bbce6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b6fd7a40a66485c8aa8156d8fcf50b95cb8ba281","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d416dcefdbac90d96b22485fd93f28229ad9984b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74311","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74311 — In the Linux kernel, the following vulnerability has been resolved: virtio: rtc: tear down old virtq…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nvirtio: rtc: tear down old virtqueues before restore\n\nvirtio_device_restore() resets the device and restores the negotiated\nfeatures before calling ->restore(). viortc_freeze() intentionally\nleaves the existing virtqueues in place…","indicators":{"cves":["CVE-2026-74311"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:31.173Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/548d2208455f14e6121404c6e30e997bfe0cd264","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/79366023aa891ca31376021a7bccff6384ca1ff1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/aebebd1e9d70b650fc9e877082e0134edcf511da","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74312","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74312 — In the Linux kernel, the following vulnerability has been resolved: vhost/vdpa: validate virtqueue i…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nvhost/vdpa: validate virtqueue index in mmap and fault paths\n\nvhost_vdpa_mmap() and vhost_vdpa_fault() use vma->vm_pgoff as a\nvirtqueue index for get_vq_notification(), but they do not validate\nthat the index is smaller than v->nvq…","indicators":{"cves":["CVE-2026-74312"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:31.310Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/0f310bac6db9bd3bb1655707d692d9d2a86eeb17","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1f5f94c6c6b2e4eaa5b45815509e21d0c6cfa81e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2b3f79b90b231a682315fe2191bb71925650e183","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/32ac9097aa2463fcfc12f61cc4a9ebc3579cba7d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4bf5a51963ff816f7443702dc536b9327cf5e550","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/55a644031e610ea93fbde2702c7b8f267476552f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/929e4f044621c8cc30b612fb74e1410bef09e41b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bbba4f92515238d76018e9b75e41b16d83df52c8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74313","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74313 — In the Linux kernel, the following vulnerability has been resolved: vduse: hold vduse_lock across ID…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nvduse: hold vduse_lock across IDR lookup in open path\n\nvduse_dev_open() looks up struct vduse_dev through the IDR and then\nacquires dev->lock only after vduse_lock has been dropped.\n\nThis leaves a window where a concurrent VDUSE_DE…","indicators":{"cves":["CVE-2026-74313"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:31.460Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/35483c5306e09b3190ff937089d404a78012695c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5c1560be8aa6849356455af67518d35c551cbd95","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/79e12c891940b0c4c75881b7fd82a8cbb8ac97be","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/93ed4692f2299a40346025979f40e4a9b7b33af7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a2d0a57538fd0b3b3ab75d64bb64f4cd2fab13a2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d94e2947203aead590fd63f667d316d4475d65af","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e440e077748939839d9f76e24383b76b785f80ce","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74314","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74314 — In the Linux kernel, the following vulnerability has been resolved: bpf: Cancel special fields on ma…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbpf: Cancel special fields on map value recycle\n\nMap update and delete paths currently call bpf_obj_free_fields() when a\nvalue is being replaced or recycled. That makes field destruction depend\non the context of the update/delete o…","indicators":{"cves":["CVE-2026-74314"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:31.617Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/9ea734e2cc0143d7429ab7dc0b20c85e5836183c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a3a81d247651218e47153f2d2afd7aee236726fd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74316","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74316 — In the Linux kernel, the following vulnerability has been resolved: NFSD: Handle layout stid in nfsd…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nNFSD: Handle layout stid in nfsd4_drop_revoked_stid()\n\nnfsd4_drop_revoked_stid() has no SC_TYPE_LAYOUT case, so when a\nclient sends FREE_STATEID for an admin-revoked layout stid, the\ndefault branch releases cl_lock and returns with…","indicators":{"cves":["CVE-2026-74316"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:31.890Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/7ed62f7040ee182cf7dea5798f9e114235b31dae","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8024028ef91616cf91cc669f2446a0406bc0ba19","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/86b9898920a6d02b4149f4fef9efd77b8aa3b9ca","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/da6f86ff4f2dd490bea52419a49e19680efd5847","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74317","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74317 — In the Linux kernel, the following vulnerability has been resolved: ixgbe: do not configure xps for…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nixgbe: do not configure xps for XDP queues\n\nnetif_set_xps_queue() should not be called for an XDP Tx queue, since such\nqueues are not netdev-exposed. On systems with number of CPUs >=64, on E610\nadapter, netdev is configured with m…","indicators":{"cves":["CVE-2026-74317"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:32.033Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/7bd4355272de34c2e90e34b72c5613736d03c32b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a2a224f5e344ccb1ec3693a0735822db9214e2ca","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74321","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74321 — In the Linux kernel, the following vulnerability has been resolved: btrfs: fix invalid pointer deref…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbtrfs: fix invalid pointer dereference in __btrfs_run_delayed_refs()\n\nIn the beginning of the loop, we try to obtain a locked delayed ref head,\nif 'locked_ref' is currently NULL, by calling btrfs_select_ref_head(),\nwhich can return…","indicators":{"cves":["CVE-2026-74321"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:32.600Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/015dc4a1e0c2cba551d4620eba13d26d5081dc34","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3b15d02be05e74321adb1e0ae0cb4ccfba7c6cb1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/486f8298b6188ff11ef1f4be7f1d5d2e4d1b1fae","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/65770111a2d47c2b15e20b2ba92bb12198f289d4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9faa6b69ad73f03c7bde53e07d75a28822dc9a1a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a71143590ce9764dbcb47617647592ff8b4d48bc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ba9fa2ff5981589bb49094d3358c339b37c47f53","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c372ca227e16bace86f1df1fa4ae6849e2fcfa28","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74322","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74322 — In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: Fix possible…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: mt76: mt7996: Fix possible NULL pointer dereference in mt7996_mac_write_txwi_80211()\n\nFor injected frames (e.g. via radiotap), mac80211 can pass\ninfo->control.vif = NULL, as explicitly noted in struct ieee80211_tx_info.\nCheck…","indicators":{"cves":["CVE-2026-74322","CVE-2026-74323"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:32.757Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/61370e6674b5253de5686813ceeceebc35a7d3e5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/63e6151b9791b31877a88ff62806e7c407683955","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dfb27e5dd9e4d34fbb74fa834c644dcef0be2be9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/06e65d6cf80490bc0457d339595d1ed5a89e8899","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/831074096d0450308357271fc0ffd3f600a2487e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fa0e9aa92a7bc97fc42014c5efaaf1278fa92723","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74325","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74325 — In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: use kfree_rcu for of…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: mt76: use kfree_rcu for offchannel link in mt76_put_vif_phy_link\n\nmt76_put_vif_phy_link() frees the offchannel mlink with plain kfree()\nafter rcu_assign_pointer(NULL). However, rcu_assign_pointer only prevents\nfuture RCU read…","indicators":{"cves":["CVE-2026-74325"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:33.130Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/50e700ac0edce72dee5c3a9755865d9423696ac7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7fae097aa9a56c30febf539d72ef3773165d3aa3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c7a83899203ed36696a2d35ddd03c0f522874a63","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74328","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74328 — In the Linux kernel, the following vulnerability has been resolved: iommufd: Destroy the pages conte…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\niommufd: Destroy the pages content after detaching from dmabuf\n\nSashiko points out this has gotten out of order, the mutex could still be\nin use through the dmabuf invalidation callbacks. Don't destroy any of the\npages content unti…","indicators":{"cves":["CVE-2026-74328"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:33.520Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/0507fcedbdcc87281ef8639c045fc9980363bbb6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f2d70dbd3dcefa8e3c380beff9c31f5f033a4221","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74330","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74330 — In the Linux kernel, the following vulnerability has been resolved: configfs: fix lockless traversal…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nconfigfs: fix lockless traversals of ->s_children\n\nHaving the parent directory locked protects entries from removal\nby another thread, but it does *not* protect cursors from being\nmoved around by lseek() - or freed, for that matter…","indicators":{"cves":["CVE-2026-74330"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:33.773Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/459860529c109c5ce08b81c0776ca1200eaaeb4a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/637ef4961470e04455102b34ac484a34d8eca0a4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/77fd6f50f633a52c2db061e7d71d8cb486b0265e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/91f289728ec706b7ff1ca0ee845dd73ff2253488","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9b9e8bb81c41fd27e7b57a1c936fde140548535f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9e57e2863872e82e7c7237bc32299f67ebebc543","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b166ab78dc3f48e83d2c80bdfde4159b31fdc5fb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e6d93108e0a27d7e6f95c7e45017d14ba2900d32","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74332","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74332 — In the Linux kernel, the following vulnerability has been resolved: ASoC: amd: acp-sdw-sof: Bound DA…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nASoC: amd: acp-sdw-sof: Bound DAI link iteration\n\ncreate_sdw_dailinks() walks sof_dais until it finds an entry with\ninitialised cleared, but sof_dais is allocated with exactly num_ends\nentries. If all entries are initialised, the l…","indicators":{"cves":["CVE-2026-74332"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:34.043Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/0a5ff4000dd7a390139dd7823fef1de4963e490a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4d992e63f52d58f52b724606c60ae7b37a1c582f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/86a64c049873fe4d4a6a378e27a333ab5631c4b2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9e82497138abea7d5c6e65015663d907fbcbf6b4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74333","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74333 — In the Linux kernel, the following vulnerability has been resolved: ASoC: amd: acp-sdw-legacy: Bound…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nASoC: amd: acp-sdw-legacy: Bound DAI link iteration\n\ncreate_sdw_dailinks() walks soc_dais until it finds an entry with\ninitialised cleared, but soc_dais is allocated with exactly num_ends\nentries. If all entries are initialised, th…","indicators":{"cves":["CVE-2026-74333"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:34.167Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/0230471eef5902207516851dcd47c559571dded2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1279bdab5fa1f28c168e54215db506e87c6fac1e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d49ecdf327cc91062d2f80996a163cf65fda1e60","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74334","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74334 — In the Linux kernel, the following vulnerability has been resolved: RDMA/nldev: Fix locking when acc…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nRDMA/nldev: Fix locking when accessing mr->pd\n\nSashiko points out that, due to rereg_mr, the PD is actually variable and\nall the touches in nldev are racy.\n\nUse mr->device instead of mr->pd->device.\n\nGetting the PD restrack ID is m…","indicators":{"cves":["CVE-2026-74334"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:34.280Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/1a132ee4e655288d9a0937ea5109a0d038431ae9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/50d5c02ab8e62325548bd3a6e6b758a9dcd6e7c3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74338","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74338 — In the Linux kernel, the following vulnerability has been resolved: bpf: Reject sleepable BPF_LSM_CG…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbpf: Reject sleepable BPF_LSM_CGROUP programs at load time\n\nThe cgroup shim runs under rcu_read_lock_dont_migrate(), so we should\nnot attach any sleepable BPF programs there. Add support to the verifier\nto explicitly reject attempt…","indicators":{"cves":["CVE-2026-74338"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:34.740Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/5b038319be442c620f774e6fc9e9283deeca1c75","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/be9eaf2bb5db4ad3de61ef739fd268fd7f135737","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74340","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74340 — In the Linux kernel, the following vulnerability has been resolved: wifi: wcn36xx: fix OOB read from…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: wcn36xx: fix OOB read from firmware count in PRINT_REG_INFO indication\n\nThe firmware-controlled rsp->count field is used as the loop bound for\nindexing into the flexible rsp->regs[] array without validation against\nthe messag…","indicators":{"cves":["CVE-2026-74340"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:34.987Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/0907c06dccae9e3c8d5a68eb9014beec73a36e79","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/22b0b8572a64362531dd0ed499b75e16282aeb2b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/23d210877968657bd07e1a517e0b516db20a1d80","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3cf92b44c4fb88a5e8de8733a4494c0956606bca","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/64228dfc4247aca178c01e5a37af7d8dcc7a6089","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/df2187acfca6c6cca372c5d35f42394d9c270b09","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f03782f7f41f2afee5076a1ef08ced5649218771","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f987efff29a5fe45320ea5991c9d5cb98b676953","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74341","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74341 — In the Linux kernel, the following vulnerability has been resolved: wifi: wcn36xx: fix heap overflow…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: wcn36xx: fix heap overflow from oversized firmware HAL response\n\nThe firmware response dispatcher copies all synchronous HAL responses\ninto the 4096-byte hal_buf without validating the response length. A\nresponse exceeding WC…","indicators":{"cves":["CVE-2026-74341"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:35.127Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/15545ee71301e82d26d9a31b407ed0019eb62a60","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/18813b90032bfaafb225906a4d2b51be4dfc02c3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1b5d8a248c3afa640bcc99fa95abcd1e36f3ee18","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/88a240d86d3d64521f9194abe185ac71cc74d0bd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cfc67aee0c83e7f5d43a1dad3e25c789e9cc1d92","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dae9cadf0925f1cbfb71306d60490890df3870a6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74343","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74343 — In the Linux kernel, the following vulnerability has been resolved: kernfs: fix xattr race condition…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nkernfs: fix xattr race condition with multiple superblocks\n\nMultiple superblocks with different namespaces can share the same\nkernfs_node when kernfs_test_super() finds a matching root but\ndifferent namespace. This means multiple i…","indicators":{"cves":["CVE-2026-74343"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:35.370Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/6a07814ff643b5c8e1353d8c6229f52fde205cde","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bf53db51359939755084d08156684ed649489592","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74344","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74344 — In the Linux kernel, the following vulnerability has been resolved: bpf: Clear rb node linkage when…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbpf: Clear rb node linkage when freeing bpf_rb_root\n\nbpf_rb_root_free() detaches the root by copying the current rb_root_cached\nand then replacing the live root with RB_ROOT_CACHED. It then walks the\ncopied root and drops each obje…","indicators":{"cves":["CVE-2026-74344"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:35.487Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/2eb39de4962f842d653e96818ae372665cd481fd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4a7910ee060d8ce55612f5b3cc267f3a265a3cec","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/574612793bed416f6c05fe7c9b50e9eb0441997e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74347","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74347 — In the Linux kernel, the following vulnerability has been resolved: netfilter: cttimeout: detach dat…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: cttimeout: detach dataplane timeout policy and repurpose refcount\n\nAdd a refcount for struct nf_ct_timeout which is used by ct extension to\nset the custom ct timeout policy, this tells us that the ct timeout is\nbeing use…","indicators":{"cves":["CVE-2026-74347"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:35.860Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/7d6a9cdb8d3a51d9cfe546a09a518ab3d2671549","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9aeb0dcfeb460d33d61d434148b51103ab1d2013","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74349","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74349 — In the Linux kernel, the following vulnerability has been resolved: ocfs2: reject FITRIM ranges shor…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nocfs2: reject FITRIM ranges shorter than a cluster\n\nocfs2_trim_mainbm() trims the global bitmap in cluster units, but its\ntoo-short range validation only checks sb->s_blocksize.\n\nOn filesystems with a cluster size larger than the b…","indicators":{"cves":["CVE-2026-74349"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:36.130Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/06c0a0431b9856506fcd9b2c1b0c6136567d756d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2c13e02592b918be7725ab5965e01ef4e46c4b57","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/346314bb0cc2fc52b50b73d6ecc62e0217455c2e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3fa7139b5f42731a61f78c42433adae13f9adc21","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/441abb77222f155e8d931dbabb465466db01cfd7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ca1afd88f5eaaff9168e1466e5401385edf59543","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d903d59c0315f59bdf0214b4f13d71c9feb2c45c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e652d0f5108e447b22da4249bcd23dd1b63c73dd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74354","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74354 — In the Linux kernel, the following vulnerability has been resolved: bpf: Take mmap_lock in zap_pages…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbpf: Take mmap_lock in zap_pages()\n\nzap_vma_range() requires the owning mm's mmap_lock to be held.\n\nTaking mmap_read_lock under arena->lock would AB-BA against\narena_vm_close() and arena_map_mmap(), both of which run with\nmmap_writ…","indicators":{"cves":["CVE-2026-74354"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:36.773Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/36b1d997866f6083d33934983aa2ce0a184ed642","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/80b89d0226a05e8b67969de99c31b51fcd54f76a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74355","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74355 — In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Fix RB-tree corrupti…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\niommu/vt-d: Fix RB-tree corruption in probe error path\n\nThe info->node RB-tree member is zero-initialized via kzalloc. If\na device does not support ATS, the device_rbtree_insert() call is\nskipped. If a subsequent probe step fails,…","indicators":{"cves":["CVE-2026-74355"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:36.887Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/43bd9e6d5513cb1edbafdeef146a1edc3aaced56","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d16923a45d4d08367650fdc3451c89299ab6ac5a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f5102e0fc3c6dc8685549891a96e4589fdb3e211","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74356","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74356 — In the Linux kernel, the following vulnerability has been resolved: vhost: fix vhost_get_avail_idx f…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nvhost: fix vhost_get_avail_idx for a non empty ring\n\nvhost_get_avail_idx is supposed to report whether it has updated\nvq->avail_idx. Instead, it returns whether all entries have been\nconsumed, which is usually the same. But not alw…","indicators":{"cves":["CVE-2026-74356"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:37.007Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/09861858a68342f851f71c669ac0f69865c32151","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7f229d27bf27c7e589eca690d8612763a7a4801f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a9326b652bc7acd748d7a1143573845c7924d847","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e115471008111f894c6528d9ab2ce7d0ce306f35","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74357","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74357 — In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix KASAN slab-out-o…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amdgpu: fix KASAN slab-out-of-bounds in amdgpu_coredump ring dump\n\nThe ring content dump in amdgpu_coredump() uses two separate loops over\nadev->rings[]: the first counts rings with unsignalled fences to size\nthe allocation, an…","indicators":{"cves":["CVE-2026-74357"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:37.170Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/08ac3a7879d300302a1927ce2038629539a37f8b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/efb1dadaeb897b22b9e118d398d0f41e70e9ccca","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74359","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74359 — In the Linux kernel, the following vulnerability has been resolved: configfs_lookup(): don't leave -…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nconfigfs_lookup(): don't leave ->s_dentry dangling on failure\n\nNormally ->s_dentry is cleared when dentry it's pointing to becomes\nnegative (on eviction, realistically).  However, that only happens\nif dentry gets to be positive in…","indicators":{"cves":["CVE-2026-74359"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:37.430Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/10da12d352b7b2bb330a8609fdda9a58bf0e9856","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3e83b2203aa59bd279e4f677ec793d49dc9d019e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/57088b06109f3222963c639d8d743f42c2899b13","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9c747dcee164ead300de90550ad9e4122f0d1bbb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b6e9c82522ddaa3ac0706b295ff4a71975d4f883","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c3b073a209a9baa691b744318ac929fecdd8847c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/eee07d769da5ac4e4f7bd0bc17828646a318d499","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74363","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74363 — In the Linux kernel, the following vulnerability has been resolved: bpf: fix UAF by restoring RCU-de…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbpf: fix UAF by restoring RCU-delayed inode freeing in bpffs\n\ncommit 4f375ade6aa9 (\"bpf: Avoid RCU context warning when unpinning\nhtab with internal structs\") moved inode cleanup from ->free_inode()\ninto ->destroy_inode() to avoid…","indicators":{"cves":["CVE-2026-74363"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:37.900Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/0497ff765746d9b2d17445c8f7cc737b36c0152a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/53649846e0437d1d9b7cb993cfe54c367addf7ae","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5fecb71c10c28aef276ba49c718dc961745fdcf0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/61f19729728243c82476dee31315143ed3275e7f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b93c55b4932dd7e32dca8cf34a3443cc87a02906","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c70d0f9114c3cc156f6029a400c4eb7e6f7c82b2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ea1c243c39e32b7fc1c2edfe32081ff7e30a877c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74364","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74364 — In the Linux kernel, the following vulnerability has been resolved: bpf: Reject exclusive maps as in…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbpf: Reject exclusive maps as inner maps in map-in-map\n\nAn exclusive map (created with excl_prog_hash) is bound to a single\nprogram by hash: check_map_prog_compatibility() refuses to load any\nprogram whose digest does not match map…","indicators":{"cves":["CVE-2026-74364"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:38.037Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/3a0f73d27a8d379a8852a378b3c3208143e3b3b2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7c58ace08f180f8e249e714d1623388362f9d807","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9a3c3c49c333760c8944dadacbe114c1884546ef","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74365","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74365 — In the Linux kernel, the following vulnerability has been resolved: nvdimm/btt: Handle preemption in…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnvdimm/btt: Handle preemption in BTT lane acquisition\n\nBTT lanes serialize access to per-lane metadata and workspace state\nduring BTT I/O. The btt-check unit test reports data mismatches during\nBTT writes due to a race in lane acqu…","indicators":{"cves":["CVE-2026-74365"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:38.143Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/417918783bcfe0be135019df16a267b3af442efd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4eafa810b042d985ec6bbf5b514414e73cee6f6f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5c53406098b599c420b031e6ec5ba8a2f3794c50","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/73e35c1bdfa160b41fdbe204e02325f0687de506","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8d4b989d9c9afe5f185aa5853b666fc4617afe9e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fd7a97b2514cfc4b4cc067a27dd39bde2a8b1735","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74367","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74367 — In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix inconsistent a…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: ath12k: fix inconsistent arvif state in vdev_create error paths\n\nath12k_mac_vdev_create() has three error path issues that leave arvif\nin an inconsistent state:\n\n1. When ath12k_wmi_vdev_create() fails, the function returns di…","indicators":{"cves":["CVE-2026-74367"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:38.407Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/c972636efc63f0f43d725b59805dd1ae5bc4b31e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e0140e094b196d92f2a4ce167ee73cbfab000290","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74371","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74371 — In the Linux kernel, the following vulnerability has been resolved: bpf: fix BPF_PROG_QUERY OOB writ…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbpf: fix BPF_PROG_QUERY OOB write and cgroup backward compat\n\nBPF_PROG_QUERY writes back the 'query.revision' field unconditionally to\nuserspace. If userspace passes a smaller 'bpf_attr' structure (e.g. 40\nbytes, which was the layo…","indicators":{"cves":["CVE-2026-74371"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:38.857Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/21c4b99b27f3f85b89256e81b3e997dec0a460d0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a7131340d0f95df9a541257dccab5d85e6bcdd2b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d3d630e8a7f3421bc2d204b87bdff35b4432a8e3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74374","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74374 — In the Linux kernel, the following vulnerability has been resolved: md/raid1,raid10: fix error-path…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmd/raid1,raid10: fix error-path detection with md_cloned_bio()\n\nDetect the error path using md_cloned_bio() instead of relying\non r1_bio in raid1 or r10_bio->read_slot in raid10, which may be\nNULL or -1 after splitting and resubmit…","indicators":{"cves":["CVE-2026-74374"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:39.173Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/20fb582c92fd64e5c8bd83c6176264b2794603b7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/811545e0926d02a6a0b1a1258bb5544777c164d4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74377","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74377 — In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Copy WQE to local buff…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nRDMA/rxe: Copy WQE to local buffer in non-SRQ receive path\n\nFor non-SRQ QPs, the responder reads WQE fields directly from the\nshared queue buffer mapped into userspace. This allows a malicious\nuser to modify fields like num_sge or…","indicators":{"cves":["CVE-2026-74377"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:39.487Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/2e60378fb3c8b51c94103bb40014c4fe38fa5033","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5420eebf3b3c162bfaf965f30e61cd1d689e5732","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9fa785137303f7109c23dea779b8dedc67c9b531","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a211b7904aed365e4e4f08a48ec6e6dd1ea7b16b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d6ab440240a04b8737ee4c7bb21af9182e451733","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fc72fd61cc8b2e2e3e92ae4c0e9cc30c9a7ecb78","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74378","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74378 — In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix TOCTOU heap overfl…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nRDMA/rxe: Fix TOCTOU heap overflow in get_srq_wqe\n\nget_srq_wqe() reads wqe->dma.num_sge from the shared receive queue\nbuffer, which is mapped into userspace. It validates num_sge against\nmax_sge, but then re-reads the same field to…","indicators":{"cves":["CVE-2026-74378"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:39.597Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/02558c86b6b761063e9399e6b939984500327ef1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/22b8fbded65b8c441b634a185f8da67657df6c50","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3cfa2a3adc51b7c57729961a03446962ff10e3d2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3e07ea9579dc9553d2285c26c2823931358aa3b8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b9800d7953d119bcc068c74587d48e4ba0313629","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cd19a6345e3727adafafa5954b58b13c92e13b80","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74380","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74380 — In the Linux kernel, the following vulnerability has been resolved: gpu: host1x: Fix iommu_map_sgtab…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ngpu: host1x: Fix iommu_map_sgtable() return value check\n\nCommit \"iommu: return full error code from iommu_map_sg[_atomic]()\"\nchanged iommu_map_sgtable() to return an ssize_t and negative values\nin error cases, rather than a size_t…","indicators":{"cves":["CVE-2026-74380"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:39.820Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/18f74762013a4b6aa6f905c4459e0f506f9c5c7b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2a68928c445138961e2c451983b473aeb3f5b999","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3ac173e46ef6fda9c9df8d47cdff4df962df9728","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5f3985c2a500df3126cb12a2e0ccf26a40bc495d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/79240eee5a40014d9edfabe19f06b35ffa84e5f8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e024c7993d839503d6c1f0044b8fc537c30300e9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74383","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74383 — In the Linux kernel, the following vulnerability has been resolved: nvme-pci: fix out-of-bounds acce…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnvme-pci: fix out-of-bounds access in nvme_setup_descriptor_pools\n\nnvme_setup_descriptor_pools() indexes dev->descriptor_pools[] using the\nnuma_node forwarded from hctx->numa_node by its single caller,\nnvme_init_hctx_common().  On…","indicators":{"cves":["CVE-2026-74383"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:40.170Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/3e8aed5edaeeb237f97255d711aac6b5843fc059","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a192b8cfa447e1b3701a13434a31c392b2e7ed29","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fa9b6accd1ad7af6914b409c6b003c417724c299","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74385","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74385 — In the Linux kernel, the following vulnerability has been resolved: nvmet-tcp: check return value of…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnvmet-tcp: check return value of nvmet_tcp_set_queue_sock\n\nThe return value of nvmet_tcp_set_queue_sock() is currently ignored in\nnvmet_tcp_tls_handshake_done(). If it fails (e.g., due to the socket\nnot being in TCP_ESTABLISHED sta…","indicators":{"cves":["CVE-2026-74385"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:40.420Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/22aa70f9a0544643ec37d442b6fcb1833d804462","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7ef789703e2b91775dcb36b2efa46325be31a2a0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cba2ee57fd302727aea7d41e9d9cd0969f5df0fb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74387","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74387 — In the Linux kernel, the following vulnerability has been resolved: ALSA: seq: midi: Serialize outpu…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nALSA: seq: midi: Serialize output teardown with event_input\n\nevent_process_midi() borrows msynth->output_rfile.output and then\npasses the substream to dump_midi() and snd_rawmidi_kernel_write()\nwithout synchronizing with the output…","indicators":{"cves":["CVE-2026-74387"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:40.610Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/11165fe2c5ea0516debe486d91df67abbe36905e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/718f6a56b40875f19e6915799044a02df9abfd52","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/936641af564c3d92721704b781e36aaf223efdd2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d6fd2afb137f52bf00c5210cc44d08ed54dcffb4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ef7607ab1c8adc6258fb1b27d08e26aecdc18a58","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f5d470b808bc01f70978e22e595c6f7768313406","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74388","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74388 — In the Linux kernel, the following vulnerability has been resolved: ALSA: seq: oss: Fix UAF at handl…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nALSA: seq: oss: Fix UAF at handling events with embedded SysEx data\n\nThe OSS sequencer processes the input MIDI bytes into a sequencer\nevent to be dispatched later (in snd_seq_oss_midi_putc() called from\nsnd_seq_oss_process_event()…","indicators":{"cves":["CVE-2026-74388"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:40.733Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/6dc781778b595be94c31395b2cb167f65145d91f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7aad70cabd8f34cf11a9593fcd3f2ac3f5496943","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7c349b4f2a603202fb8c363bd2774a22ac2fddf3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74390","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74390 — In the Linux kernel, the following vulnerability has been resolved: RDMA/irdma: Fix out-of-bounds wr…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nRDMA/irdma: Fix out-of-bounds write in irdma_copy_user_pgaddrs\n\nThe irdma_copy_user_pgaddrs function loops through all of the umem DMA\nblocks to populate the PBLEs and will stop when either the last DMA\nblock is reached or palloc->…","indicators":{"cves":["CVE-2026-74390"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:40.947Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/192a3be0e3759daa24af2841208b074ca6dbaabc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/424d51d33c7541a86934067c2c0538124687fc90","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4780f58672ee6328accd54a95f9c00683477e499","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5ebb3ed757be3e04cf803026004aa0beaeb13e9b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/79a20a8e201a779224b4bf115250a7713bde72c0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9f8f0d2099e3de1194e37dc933ae0c4206b09aaf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/abd27a977b419d584efa659488c22d2306987b29","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74396","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74396 — In the Linux kernel, the following vulnerability has been resolved: RDMA/mlx5: Fix UMR XLT cleanup o…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nRDMA/mlx5: Fix UMR XLT cleanup on ODP populate failure\n\nmlx5r_umr_update_xlt() allocates and DMA maps an XLT buffer with\nmlx5r_umr_create_xlt(). The buffer is released by the common cleanup path\nthrough mlx5r_umr_unmap_free_xlt().…","indicators":{"cves":["CVE-2026-74396"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:41.600Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/1eae35b37923cb71b0cb5136d00671440d488b9f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9619909d4869afe720904c6888a289b9ac3055b8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ffa85a2c197935ace6f1634ad9eb0a44bc615670","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74397","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74397 — In the Linux kernel, the following vulnerability has been resolved: IB/mlx5: Fix transport-domain ro…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nIB/mlx5: Fix transport-domain rollback and initialize lb mutex earlier\n\nmlx5_ib_alloc_transport_domain() allocates a transport domain and then\nmay fail in mlx5_ib_enable_lb(). In that case, the allocated TD is leaked.\n\nFix this by…","indicators":{"cves":["CVE-2026-74397"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:41.690Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/2c3b2667dad69d56774b79db763acb3a1bee0fc0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/37fc3cc0f924fd8d0f0cf87b92672dec75a32e57","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/65e344925fa30abf50c8de8c150b397715fa2066","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e79389115b9d27287ff6230a9750675106ed7668","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f88e12c95fc19f719e06ca1e9eb20fdad68ef61a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74403","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74403 — In the Linux kernel, the following vulnerability has been resolved: crypto: ccp - Check for page all…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncrypto: ccp - Check for page allocation failure correctly in TIO\n\nSashiko notes:\n\n> if __snp_alloc_firmware_pages() returns NULL under memory pressure, is it\n> safe to pass it directly to page_address()?\n>\n> On architectures withou…","indicators":{"cves":["CVE-2026-74403"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:42.340Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/17e1aae19a06d9f6da4b46d54fa2aeab77ec0c69","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a8d5370eef00eca132a292b1901c9914c817e385","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74404","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74404 — In the Linux kernel, the following vulnerability has been resolved: crypto: ccp - Fix snp_filter_res…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncrypto: ccp - Fix snp_filter_reserved_mem_regions() off-by-one\n\nSashiko notes:\n\n> regarding the bounds check in snp_filter_reserved_mem_regions()\n> called via walk_iomem_res_desc(): does the check\n> if ((range_list->num_elements *…","indicators":{"cves":["CVE-2026-74404"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:42.433Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/1b864b6cb213bbd7b406e9b2e98c962077f300df","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/830c1f3e71989448652973375ef5e39b6ede47a3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/af7341616b742ad2c374a90998bd650a035f694d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c5c79d92da0f9a09f48be5e2aabed2d6d1a96294","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74405","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74405 — In the Linux kernel, the following vulnerability has been resolved: OPP: Fix race between OPP additi…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nOPP: Fix race between OPP addition and lookup\n\nA race exists between dev_pm_opp_add_dynamic() and\ndev_pm_opp_find_freq_exact():\n\n  CPU0 (add)                          CPU1 (lookup)\n  -------------------------------     ------------…","indicators":{"cves":["CVE-2026-74405"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:42.530Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/46696b0b2123475d7f95909435c09808fc5ffd23","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bb75bd7d9ae7672034f73ce67a57e6ac89bb39e5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f5e1cc9a284bff2510981643a5bca4bc4c21b81a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74407","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74407 — In the Linux kernel, the following vulnerability has been resolved: wifi: ath11k: cancel SSR work it…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: ath11k: cancel SSR work items during PCI shutdown\n\nA reboot can crash the kernel if it overlaps with WLAN firmware crash\nrecovery (SSR). The crash is a NULL pointer dereference in the MHI teardown\npath while freeing DMA-backe…","indicators":{"cves":["CVE-2026-74407"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:42.737Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/53dd29e8aeb2a1b5f079178551836b85fc6b53df","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8c79aac429b583301f387374ff37c59be671df87","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74408","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74408 — In the Linux kernel, the following vulnerability has been resolved: wifi: ath9k: fix OOB access from…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: ath9k: fix OOB access from firmware tx status queue ID\n\nath_tx_edma_tasklet() accesses sc->tx.txq[ts.qid] where ts.qid is a\n4-bit hardware field (0-15), but the txq array only has\nATH9K_NUM_TX_QUEUES (10) entries. A qid >= 10…","indicators":{"cves":["CVE-2026-74408"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:42.837Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/336d4c8cd9b1646060ee690c881d465dfc09c6c0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/46ca1451f61b598f45cb5259e066d305444d95fc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5435fd3edcb11c7cc4002847c83e9a50b49284dc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/734db72d55ca578a344dfa33e30145032c074b25","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7ce2f118a2389e8f0a64068c6fe7cc7d40639be0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a9e055ac62cb3fcea262d4b687ec73eed82b3379","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f5931d06b45ed402572bfe5832fff15864ef5481","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fb11083db9d7d6fb8f98bbba1cbfcf3fb7b4bf54","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74409","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74409 — In the Linux kernel, the following vulnerability has been resolved: wifi: rtw89: add bounds check on…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: rtw89: add bounds check on firmware mac_id in link lookup\n\nThe mac_id field in RX descriptors is 8 bits wide (0-255), but\nassoc_link_on_macid[] has only RTW89_MAX_MAC_ID_NUM (128) entries.\nWhile the driver currently assigns m…","indicators":{"cves":["CVE-2026-74409"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:42.950Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/6d88244bb129755acca696f9227200f4a2d106a6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/920101305e7601a33b9e01019f4ca526af2526ae","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ad445de67359f24088d4305c05fbd7e34c4e35e3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74410","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74410 — In the Linux kernel, the following vulnerability has been resolved: wifi: rtw88: fix OOB read from f…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: rtw88: fix OOB read from firmware RX descriptor exceeding DMA buffer\n\nIn rtw_pci_rx_napi(), new_len is computed as the sum of pkt_len (14-bit\ndescriptor field, max 16383) and pkt_offset (drv_info_sz + shift, both\nfirmware-con…","indicators":{"cves":["CVE-2026-74410"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:43.043Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/01155ded5d4dad61840a9a3c33ab56778ef1f100","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/08193e733e5d4790e6c937af86d78793b02709be","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1554fa522f16ec7c5c342ad33fe734eeb6eb2452","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/26c183a86ea4dd1f2ff90c6f783649e7f5722a10","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/45abc14ab3f15da7d689f1a8809c1a01240a94d9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6a3c384393d3f0b41669ed5a2e88744aad9d87c8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6e76e9ed273dfb4b3333a5ebbb94958cc5752ab6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/913bd7d3d3d842b5c1d2b908a0201efa8fc79793","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74411","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74411 — In the Linux kernel, the following vulnerability has been resolved: wifi: rtw89: Correct data type f…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: rtw89: Correct data type for scan index to avoid infinite loop\n\nA kernel soft lockup was observed during Wi-Fi scanning on the 6GHz band.\nThe CPU becomes stuck in rtw89_hw_scan_add_chan_ax for over 20 seconds,\nleading to a sy…","indicators":{"cves":["CVE-2026-74411"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:43.197Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/05d46e30303275f21f13c951166d39c85df976d4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/08fdcb529df6df3562dd2b0035f88dd5be8b3c68","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/140fa699cfd0e18ab2f1497acd951fb3548610f5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7a1ab5fdcae896e20ca6d68fa0fbd2816cb7471f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/966fbed4b4463fbcb49c5becf3f86eae776861bd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74412","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74412 — In the Linux kernel, the following vulnerability has been resolved: wifi: rtw88: fix wrong pci_get_d…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: rtw88: fix wrong pci_get_drvdata type in AER handlers\n\nrtw88 stores an ieee80211_hw pointer via pci_set_drvdata() at probe\ntime, but io_error_detected() and io_resume() retrieve it as a\nnet_device pointer.  This causes netif_…","indicators":{"cves":["CVE-2026-74412"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:43.317Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/1ef3d1338d94ec41f58fbfb6ba7742a27ea61d89","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/706183dbef4a79d120d4e928f693bea50df496f8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d7920797f721f944861f3c48ffb2b73f84b631fe","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74413","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74413 — In the Linux kernel, the following vulnerability has been resolved: wifi: rtw89: fix wrong pci_get_d…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: rtw89: fix wrong pci_get_drvdata type in AER handlers\n\nrtw89 stores an ieee80211_hw pointer via pci_set_drvdata() at probe\ntime, but io_error_detected() and io_resume() retrieve it as a\nnet_device pointer.  This causes netif_…","indicators":{"cves":["CVE-2026-74413"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:43.410Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/7068c379cf9aa8afe4dce4d9d82390187aa9c4d0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/aefc30e4a829c1683f6ae999df7f9310c27eae6c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c1907b9a4fa9cb33d11a9af138374dd2e93f7a93","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74417","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74417 — In the Linux kernel, the following vulnerability has been resolved: drm/radeon: fix integer overflow…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/radeon: fix integer overflow in radeon_align_pitch()\n\nradeon_align_pitch() has the same kind of overflow issue as the old\namdgpu helper: both the alignment round-up add and the final\n'aligned * cpp' calculation can overflow sig…","indicators":{"cves":["CVE-2026-74417"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:43.807Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/415bb9893e249e46aa5159f7363a11512cf06fa9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b7b44937c548c2c987fcdd129f8896741004bed6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ce3b24eb3ee8f82de851535f516bf21f83e82259","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d9dfa176899d488e48bb7342d2c43ddd36e66318","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dfc7b5b5599472277e71e5bd2712740651c7c5be","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74419","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74419 — In the Linux kernel, the following vulnerability has been resolved: accel/amdxdna: Adjust size for c…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\naccel/amdxdna: Adjust size for copy_to_user()\n\nThe amount of data returned to user space should be limited by the buffer\nsize provided by the application. If the buffer is smaller than the data\nsize, return only the portion that fi…","indicators":{"cves":["CVE-2026-74419"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:43.997Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/097e57195ef813735c8b714d6503bf3ad0742515","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6e87001fe19f251e2ae14373bc76554358a13df2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74425","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74425 — In the Linux kernel, the following vulnerability has been resolved: afs: handle CB.InitCallBackState…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nafs: handle CB.InitCallBackState3 requests without a server record\n\nThe cache manager callback path now attaches the server record to an\nincoming call through the rxrpc peer's app data.  That association is\nnot guaranteed to exist…","indicators":{"cves":["CVE-2026-74425"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:44.590Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/0bd5f2786a878148190b4c7c259d01313d5f2357","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/42e3917cdbdc3d35e191c525687a6d5427f237fd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cc848a080f7a6848dfeef441722419fdcbfe9b8d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f3cf725cd284b7912d5522babb44721bf38c8887","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74429","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74429 — In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix the reception of a re…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nrxrpc: Fix the reception of a reply packet before data transmission\n\nFix rxrpc_receiving_reply() to handle the reception of an apparent reply\nDATA packet before rxrpc has had a chance to send any request DATA packets\non a client ca…","indicators":{"cves":["CVE-2026-74429"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:45.027Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/a58e33405acd2584e730c1da72635f822ada6b49","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e220ae559e5a0fc33e41ec6a348ea50387cb8b0f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f9be514984471ff0003738b2e1efed12bc3433ff","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74430","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74430 — In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix ACKALL packet handlin…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nrxrpc: Fix ACKALL packet handling\n\nrxrpc_input_ackall() accepts ACKALL packets without checking whether the\ncall is in a state that can legitimately have outstanding transmit buffers.\nA forged ACKALL can therefore reach a new servi…","indicators":{"cves":["CVE-2026-74430"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:45.120Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/523cb585672ae681b2d3b0d620aec5313774e2e2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8db6a2c95e36938076b37466ce36774526a5c8c3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9b6ce594808580b2a19e6e1aa459ef56c0153ac1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74431","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74431 — In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix potential infinite lo…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nrxrpc: Fix potential infinite loop in rxrpc_recvmsg()\n\nFix the wait in rxrpc_recvmsg() also take check the oob queue.","indicators":{"cves":["CVE-2026-74431"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:45.227Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/0fc5b37faec26241d3cbee732e29ac35ad3184f8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/67a0332f442ef07713cd2d9c13d59db0f1c23648","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/da371b003a4a44f44741275d5e8dc74181cbb017","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74435","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74435 — In the Linux kernel, the following vulnerability has been resolved: rxrpc: rxrpc_verify_data ensure…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nrxrpc: rxrpc_verify_data ensure rx_dec_buffer alloc\n\nrxrpc_recvmsg_data() calls rxrpc_verify_data() whenever the\nrxrpc_call.rx_dec_buffer is unallocated and assumes that upon\nsuccessful return that rx_dec_buffer must be allocated.…","indicators":{"cves":["CVE-2026-74435"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:45.607Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/16c8ae9735c5bd7e54dd7478d6348e0fc860842d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6563b4eb38c35d75892445bcf8aacdc29914821c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8bbede0afced346b24e4fbde0c68cf12980ba948","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a962bc8508592c4d51092edac68579bd8b18fe44","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d3b642cf95d48234590cc91450d8705a9bf6b540","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74438","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74438 — In the Linux kernel, the following vulnerability has been resolved: crypto: sun4i-ss - Remove insecu…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncrypto: sun4i-ss - Remove insecure and unused rng_alg\n\nRemove sun4i_ss_rng, as it is insecure and unused:\n\n- It has multiple vulnerabilities.  sun4i_ss_prng_seed() is missing\n  locking and has a buffer overflow.  sun4i_ss_prng_gene…","indicators":{"cves":["CVE-2026-74438"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:45.903Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/2eafecaba1b46bb9774eaf3556619fd5b6a17c1c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/306ded31bfa00a69d25823a60d7c797170bfb4f8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9c8086d9511189c34dfa3f9e3a03f2bee12f56a5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b2c41fa9dd8fc740c489e060b199165771f268d1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c401492e01c7bfd38cf14c94d85c7efafe7d1a25","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e4b7b9819811c4c51064c3d3d3c02f0be7491707","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ee2458f8188732aa53a5d42f56e87bfad288b44e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-14279","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-14279 — The Wholesale Market plugin for WordPress is vulnerable to privilege escalation in versions up to, a…","description":"The Wholesale Market plugin for WordPress is vulnerable to privilege escalation in versions up to, and including, 2.2.2 via the ced_wholesale_request_send AJAX action. The ced_wholesale_request_send_callback() handler only verifies a nonce (which is exposed to any authenticated user through wp_local…","indicators":{"cves":["CVE-2026-14279"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T07:16:19.120Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/wholesale-market/tags/2.2.2/addons/wholesale-request/include/class-wholesale-user-register-addon.php#L141","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wholesale-market/tags/2.2.2/addons/wholesale-request/include/class-wholesale-user-register-addon.php#L153","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wholesale-market/tags/2.2.2/addons/wholesale-request/include/class-wholesale-user-register-addon.php#L276","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wholesale-market/tags/2.2.2/addons/wholesale-request/include/class-wholesale-user-register-addon.php#L30","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/abd59d7a-e7f6-440d-9c2a-00266c0dcbff?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15142","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-15142 — The Real Estate Manager Pro plugin for WordPress is vulnerable to Privilege Escalation in all versio…","description":"The Real Estate Manager Pro plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 12.8.6. This is due to improper capability handling in the allow_attachment_actions() function, which can treat a target user ID as a media attachment ID during user capabilit…","indicators":{"cves":["CVE-2026-15142"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T09:16:28.557Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://wp-rem.com/changelog/","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/71e9ff91-4137-4c66-959b-f4ffb8d3ba32?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18438","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-18438 — The Templately – Elementor & Gutenberg Template Library: 6500+ Free & Pro Ready Templates And Cloud!…","description":"The Templately – Elementor & Gutenberg Template Library: 6500+ Free & Pro Ready Templates And Cloud! plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 3.7.1 via the fetch_remote_file function. This is due to a filename validation/destination mismatch i…","indicators":{"cves":["CVE-2026-18438"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T10:16:29.413Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/templately/tags/3.6.5/includes/API/API.php#L128","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/templately/tags/3.6.5/includes/API/Import.php#L78","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/templately/tags/3.6.5/includes/API/MyClouds.php#L103","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/templately/tags/3.6.5/includes/Core/Importer/WPImport.php#L1200","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/templately/tags/3.6.5/includes/Core/Importer/WPImport.php#L1391","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/templately/tags/3.6.5/includes/Core/Importer/WPImport.php#L1423","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/templately/tags/3.6.5/includes/Core/Platform/Gutenberg.php#L177","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/templately/tags/3.7.1/includes/API/API.php#L128","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/templately/tags/3.7.1/includes/API/Import.php#L78","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/templately/tags/3.7.1/includes/API/MyClouds.php#L103","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/templately/tags/3.7.1/includes/Core/Importer/WPImport.php#L1200","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/templately/tags/3.7.1/includes/Core/Importer/WPImport.php#L1391","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/templately/tags/3.7.1/includes/Core/Importer/WPImport.php#L1423","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/templately/tags/3.7.1/includes/Core/Platform/Gutenberg.php#L177","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset/3636643/templately/trunk/includes/Core/Importer/WPImport.php","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?old_path=%2Ftemplately/tags/3.7.1&new_path=%2Ftemplately/tags/3.7.2","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&new=3636643%40templately%2Ftags%2F3.7.2&old=3624408%40templately%2Ftags%2F3.7.1","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/4e68b2f2-12e4-4ff2-919d-26d6b21acd03?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73634","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73634 — Uncontrolled resource consumption vulnerability in Apache Struts. An application that exposes an end…","description":"Uncontrolled resource consumption vulnerability in Apache Struts. An application that exposes an endpoint collecting Content Security Policy violation reports reads the submitted report into memory without bounding how much it will accept, so a single request can exhaust the heap and deny service to…","indicators":{"cves":["CVE-2026-73634"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T11:16:27.427Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://cwiki.apache.org/confluence/display/WW/S2-073","label":"security@apache.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73635","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73635 — Allocation of resources without limits or throttling vulnerability in Apache Struts. When no fixed l…","description":"Allocation of resources without limits or throttling vulnerability in Apache Struts. When no fixed locale is configured, the locale used for localized-text lookups is taken from the incoming request, allowing an unauthenticated remote client to cause the framework's internal localized-text caches to…","indicators":{"cves":["CVE-2026-73635"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T11:16:27.540Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://cwiki.apache.org/confluence/display/WW/S2-074","label":"security@apache.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74440","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74440 — In the Linux kernel, the following vulnerability has been resolved: drm/xe: Wait on external BO kern…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/xe: Wait on external BO kernel fences in exec IOCTL\n\nBefore arming a user job, xe_exec_ioctl() only added the VM's\ndma-resv KERNEL slot as a dependency. That slot covers rebinds and\nthe kernel operations of the VM's private BOs…","indicators":{"cves":["CVE-2026-74440"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:48.540Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/1738db550334adca0e7fcf0ef684198fb7462779","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/21976fe5258494ac38b63d103be81bf1180ae4ae","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5d363d00bc9799b90a0dc89eb1c5dcb909c042ee","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/af80e2bfde9312c76b60cf9274248dce0410b30d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74443","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74443 — In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: bound DMA command bo…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/vmwgfx: bound DMA command body size against suffix pointer\n\nvmw_cmd_dma() locates the DMA suffix at\n\n\t(unsigned long) &cmd->body + header->size - sizeof(*suffix)\n\nwithout checking that header->size is large enough to contain bo…","indicators":{"cves":["CVE-2026-74443"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:48.863Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/036e16ada95389bdc30f41068af04c1d0872fad0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7e40e6120fb232a10b543ffd994e5c6d8f3a2cc6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9759da60e38d7b9db44dc92713e4e0391883d221","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a4a37080a5ac777b59306cfcdf854cc05d7604d4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d5d7ada4e1296b00d89fe82b2ca850cc7809d6f7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/eb20f418933bea53375843b27b4022c1810be63b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f4f1db96bfd68b81053693ba53405b6f510ac16c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fcd1e56e7816b31a1050ccc67df722b20f6bb15d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74444","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74444 — In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: validate DRAW_PRIMIT…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/vmwgfx: validate DRAW_PRIMITIVES header size before division\n\nvmw_cmd_draw() computes\n\n\tmaxnum = (header->size - sizeof(cmd->body)) / sizeof(*decl);\n\nwhere header->size is u32 and is taken straight from the user-supplied\ncomman…","indicators":{"cves":["CVE-2026-74444"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:48.963Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/112c6ff29a56f3a22db4d5af869697aa07035ad6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2666cddf0dd218aa9bd1f99db688d1b532eac21a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/85891d174707d8bddcec7a888fb4e1d17def34f3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b89ca4bba820f79dde52af15ee139fe6e8bbc314","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bef30317fcb4c838a37bceb2fc76256eb6b975c1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c77cf8edae2bd3a1599115301cc7c98d0c78e731","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dc0be7662b7b0ce28cb5eea864737793ed7b9e70","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fc0c02f510e41650df3479f96e257acf87d8a20a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74446","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74446 — In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: hold event_mutex whi…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amdkfd: hold event_mutex while checkpointing CRIU events\n\nkfd_criu_checkpoint_events() counts the entries in p->event_idr via\nkfd_get_num_events(), allocates an array sized to that count, and then\nwalks the same IDR to fill it.…","indicators":{"cves":["CVE-2026-74446"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:49.180Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/2040b7e39027cb83bb8c7b84a4c95c2f6053c32f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6a52f48157fa7fb81e0c146937fd6c8b0c1cfdbd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8f7196f25b14f4290738639a50459b56a5ff2784","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9a7f765985f64fd4a7a58f7bc9cd80a1f4230628","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bed80be08c0bee47fa242a4256ac873477c815f8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ff8bc5a68a9a70bdc38d61a72c7a49c56063f9d2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74447","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74447 — In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: fix uint32_t overflo…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amdkfd: fix uint32_t overflow in EOP ring buffer size alignment\n\neop_ring_buffer_size in struct queue_properties is a u32. In\nkfd_queue_acquire_buffers() the expected EOP buffer size is computed as\nALIGN(eop_ring_buffer_size, P…","indicators":{"cves":["CVE-2026-74447"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:49.287Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/273548eb997c6be85230c1236b18784b09f6203c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6dc0b4b39ed4f11ef70f76ecea8537e35f45342b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7c54bd225d83bc1bcb44430ed4b4d3a5c36b1961","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/83463a96ea3c7d8ae636a4d6a0ba63c9ce410724","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74449","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74449 — In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix divide-by-z…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amd/display: Fix divide-by-zero in calculate_mcache_setting on zero viewport\n\nIf a plane reaches calculate_mcache_setting with a zero-area viewport,\ncalculate_mcache_setting exits early with num_mcaches == 0 and\nmvmpg_width/hei…","indicators":{"cves":["CVE-2026-74449"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:49.500Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/1f93537881fd22712732a60ad12572a3fd40c0ec","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f327e389c07cfc3a2f6ff54f6214e1a52d457edc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74450","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74450 — In the Linux kernel, the following vulnerability has been resolved: drm/amd/pm: fix pptable use-afte…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amd/pm: fix pptable use-after-free\n\namdgpu_dpm_get_pp_table() returns a pointer to a driver-owned power table\nafter dropping adev->pm.mutex. The sysfs path then copies from that pointer.\nA concurrent pp_table write can replace…","indicators":{"cves":["CVE-2026-74450"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:49.593Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/b628f2c6feb3a115ea72d3120a2bd94afc5163df","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bb493058c35c8676e48269ab6732688ea733d23c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74451","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74451 — In the Linux kernel, the following vulnerability has been resolved: drm/panthor: validate firmware i…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/panthor: validate firmware interface structure sizes\n\niface_fw_to_cpu_addr() only checks that the firmware-provided MCU virtual\naddress points inside the shared section. The returned pointer is later\nused as a full firmware int…","indicators":{"cves":["CVE-2026-74451"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:49.697Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/21c77486f5a60bb9c0433c21de62a5f25d5091f1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b921b8613790a3f9e78ab64017fa7149ef0b750c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c835f2b0b7167584832b516c9b0a26e9180d1d0b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ca41d9f3a21586bf29df53eec05152ecf2b2f94f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74452","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74452 — In the Linux kernel, the following vulnerability has been resolved: drm/panthor: reject firmware sec…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/panthor: reject firmware sections with oversized data\n\nIn panthor_fw_load_section_entry(), the data size to copy is calculated\nwithout validating it against the allocated section_size:\n\n    section->data.size = hdr.data.end - h…","indicators":{"cves":["CVE-2026-74452"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:49.790Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/0e57165ca025a67d8dfd17efd2765fdd4925fdab","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2a761b9be5863e1d26a584f0c2d1e114a684ed9a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7f4674d986c15c74327cb6ac6e2e2afecf061e04","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a3caaa06809248b996254be5b47e10804a3494e2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74453","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74453 — In the Linux kernel, the following vulnerability has been resolved: drm/vc4: Zero the tile state dat…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/vc4: Zero the tile state data array before each BIN job\n\nThe binner BO is a single 16MB buffer split into 512KB slots that are\nhanded out to jobs at submission time and recycled as jobs complete,\nwithout ever being cleared. Eac…","indicators":{"cves":["CVE-2026-74453"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:49.893Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/0e858422df2334165293ea742da9fbb2e51f2739","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/48a570c964d8e37d353381e4195106277e17f5cb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/57667eb7548faaac396c6e39f3b4444dab5b097c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a75c8f365e209aa9bb927b0942a7840152d44892","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c5d8e8e1a8e3b4e464683c5a8a869c16a6382fea","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c8dea7e7c6098e383e44f21a64d0431da5480e3f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d3677372e0275e139f0efd2872c5a524b5d12868","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f5802be65535f8818af7191159cf8c11f48ab2a2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74454","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74454 — In the Linux kernel, the following vulnerability has been resolved: drm/vc4: Supply the overflow slo…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/vc4: Supply the overflow slot size in BPOS, not the whole bin BO size\n\nvc4_overflow_mem_work() points BPOA at a 512KB slot inside the 16MB\nbinner BO, but writes the size of the whole BO to BPOS. On every binner\nout-of-memory ev…","indicators":{"cves":["CVE-2026-74454"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:50.003Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/0badb30871004d34df87be33e853536f0b69885f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1e33ca7f44be64beed2735bb76b86eb65ba8c05b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2f2291a119e9a8b696ae8bb36e86b75d272ceaea","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6395789e4739aa5177bbec0fa0f07ccc38d249b0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6cd5acf6f87c073622bd61e38fe99c47365cda9c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bb5656ae063f2711f56438cf2f1f5b613aea5f12","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74456","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74456 — In the Linux kernel, the following vulnerability has been resolved: can: peak_usb: peak_usb_start():…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncan: peak_usb: peak_usb_start(): fix double free of transfer buffer on URB submit error\n\nIn peak_usb_start(), each RX URB transfer buffer is allocated with kmalloc()\nand the URB is flagged URB_FREE_BUFFER so that the final usb_free…","indicators":{"cves":["CVE-2026-74456"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:50.227Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/4bb3325075138dd5346b71589a959878b564dc0b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/525640b93d3e5f82f4ebea4730f4e0cf799522ba","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5f2fa5840c34d3a558c57855781be75e03bef752","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/914c3b8fa175acf8476ad31cf04e308638e3578e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/92d0de80ca2223b9c7da78020155b6cb27824cc0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9b3d5a6d952c38bbcf07f903cbeadefdb56b9bc9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b9088d581fff971a7eb1628f8dcc30df6cfef4dc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dfb17bf04a764462000f11258a7c06aa92d1f261","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74461","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74461 — In the Linux kernel, the following vulnerability has been resolved: i2c: imx: Cancel hrtimer before…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ni2c: imx: Cancel hrtimer before clearing slave pointer\n\nIn i2c_imx_unreg_slave(), the slave pointer is set to NULL after\ndisabling interrupts.  However, a pending interrupt might already\nhave started the hrtimer (i2c_imx_slave_time…","indicators":{"cves":["CVE-2026-74461"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:50.763Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/470fe15fb3bb2eba6629be301ca7e991ee3cfb7e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6ac7702b6cc2b94aaed9ef2d95bfbefcdc90061f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/753060f2b77ff2f386addbd3ecadb95b9f90cddd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a8a1f9ac3d763e721586f15479ef9140b216ddf3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/affd62f5719a78135b7441aa49c8cab3c3b5e838","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dab4762ee7f3fd0a01980d5407ba48d0261d3bff","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e3da77bdb4015051656bb472c295656bbea03b6f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74465","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74465 — In the Linux kernel, the following vulnerability has been resolved: net: openvswitch: fix potential…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: openvswitch: fix potential UAF on meter attach failure\n\nWhile attaching a newly created meter attach_meter() function makes\nthe new meter visible to other CPUs but can still fail afterwards.\nOn failure, it detaches the meter b…","indicators":{"cves":["CVE-2026-74465"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["zeroday"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:51.190Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/0310d1fa7f9debd0d89629e9f14c7975a47eaa9a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/431a295d93f76fbdb6a7cfce92a9e3dfee1e5d61","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/496f3013c6ff759249abcfb2da2361c1a3e2e66d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4d03e5fa3fbb1df15258a1eb3d6963f0d65659b3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/90623c9499627803ef3f04fa25a3199402d4fb95","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a58a2b0ce354df531ebc71fc870058c2feb59f6b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b0de3b58dac3b02b528f72ee0397728aed11f993","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ddc0ef4217cc697c6ba1a295cc1ea42423ec68ac","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74467","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74467 — In the Linux kernel, the following vulnerability has been resolved: s390/qeth: Check CAP_NET_ADMIN f…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ns390/qeth: Check CAP_NET_ADMIN for private ioctls\n\nGate the SIOCDEVPRIVATE ioctl commands SIOC_QETH_ADP_SET_SNMP_CONTROL,\nSIOC_QETH_GET_CARD_TYPE and SIOC_QETH_QUERY_OAT with CAP_NET_ADMIN\ncapable check to ensure unprivileged users…","indicators":{"cves":["CVE-2026-74467"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:51.403Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/3ea5210db058347481c93849786982f874f7be2d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4e48168825818bf4a13c743582227d15f1d30d04","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8fb69547924bbb3d7c900a0d7d137a7234db3f5f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/93a0a846ec59a88e0c402878a15357a5ce430eb4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b40c74262f7e1e601221cebccdbdb2b392ff9976","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bd63c7879eaa87f1958f7ee027813356fcd9ff11","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d211028bac1bd0fff0026bfa2a8328e5b78cd0e6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74469","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74469 — In the Linux kernel, the following vulnerability has been resolved: sctp: prevent peer transport cou…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nsctp: prevent peer transport count overflow\n\nsctp_assoc_add_peer() increments the association's 16-bit transport_count\nfor every new unique peer. Adding the 65,536th transport wraps the count to\nzero.\n\nSCTP sock_diag uses transport…","indicators":{"cves":["CVE-2026-74469"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:51.623Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/09e722030e8148ba4ed1e42c6b2ea57bda9f9895","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4ba5bf7ed50f235ea4581de8e7a0002f4ed287b0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/546221b86ceeba0d8fec92d46a0604bb7b62be07","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6201cd1d70f1670c5b31ac506e7ab2fa7b8e7f75","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/80f48523a0fe42db2e7375dff4e38a25c117090a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b453e00da1211e997b82743d28af7714c59c05c8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bd0e9289e2642f6a5c54faad304ce0f41e926d22","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dfea32dd76f390e3155177b0038cc47b01386198","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74470","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74470 — In the Linux kernel, the following vulnerability has been resolved: scsi: scsi_debug: Fix REPORT ZON…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nscsi: scsi_debug: Fix REPORT ZONES alloc_len underflow OOB write\n\nresp_report_zones() sizes the reply buffer from the CDB allocation\nlength. The v3 fix rounds alloc_len up with ALIGN() before deriving the\ndescriptor count:\n\n\trep_ma…","indicators":{"cves":["CVE-2026-74470"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:51.727Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/2047ed09bf13453b7d6f9431b112ec07984dd69b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/495058429ca55ab7fcc21977b63b92907ad68066","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/49e5b25a0b74dbac595f122e5608fdce2918cc4e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5d3e1d006bbb543259f9e31824caadbfff6a5465","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/93dde0bf2f39a0f9f57fd610aa3201ce5b753433","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d6e6da6bc3b53231fac77ffab428da8173ee729c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74471","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74471 — In the Linux kernel, the following vulnerability has been resolved: tracing: Check return value of _…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ntracing: Check return value of __register_event() in trace_module_add_events()\n\ntrace_module_add_events() ignores the return value of __register_event()\nand unconditionally calls __add_event_to_tracers() for each event.\n\nIf __regis…","indicators":{"cves":["CVE-2026-74471"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:51.847Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/000765dcdc3edf128990762790543adc4b868f6c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/22f954f7a8afe975e85517aff41b35defe05144b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3bf965a2827c44f03294107703e7ba53fbd0a69a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/54b7a358f6399c1242d2fb7f4f96085af34baa5e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9d6d79744f01eacaf3d5522f4fcd59939581abfd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ac8719969e6c3c54e939834df812bc41f25453cf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cbb5ed3be9cae70e1c12b1991009b4e12bf4a4ca","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d61ee2a27dfd5eb43ddc18af40168f5b9eb1cea5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74479","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74479 — In the Linux kernel, the following vulnerability has been resolved: net: pktgen: fix proc entry use-…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: pktgen: fix proc entry use-after-free\n\npktgen_change_name() replaces pkt_dev->entry while holding t->if_lock.\npktgen_remove_device() removes the same entry before\n_rem_dev_from_if_list() takes that lock.\n\nThis allows the follo…","indicators":{"cves":["CVE-2026-74479"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:52.713Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/4ef801b838d85c0ea5852c50667f7344ce3b6cd0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/817ff6efdb7f484ea547218e11e17d8e43daa3b4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b006a5404470bd3eb2aa0425fc447183032047ef","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74481","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74481 — In the Linux kernel, the following vulnerability has been resolved: mm/page_reporting: use system_fr…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmm/page_reporting: use system_freezable_wq to fix UAF during suspend\n\nDuring PM freeze (e.g.  S3 suspend or S4 hibernation), device drivers like\nvirtio_balloon reset their underlying virtio devices and delete their\nvirtqueues via v…","indicators":{"cves":["CVE-2026-74481"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:52.930Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/0b45f6927a14914ff685fe0e6f9d11232a1e03df","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/450f35f4d5a682a0796757e52295df58ddb63bc9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/992f270fd808338fbae1f498a5e325e7e2e20368","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a4c60046052777ca1dcc83fe3ece2a5136b301f1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b11907c905fa08eda925395f0724b7a409870f65","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b2c094e98f8bb823b3ae475f7169fe2091c40c6d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f978048326570047e8216e81a67f9c71ef2bb1b1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/faf439b5fa7b231120eac4f7a617e0bfd4f6f5c7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74482","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74482 — In the Linux kernel, the following vulnerability has been resolved: mm/huge_memory: unlock i_mmap_rw…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmm/huge_memory: unlock i_mmap_rwsem before releasing after-split folios\n\n__folio_split() keeps dereferencing the mapping after the split:\nshmem_uncharge(mapping->host) and remap_page() while the folios are still\nfrozen/locked, and…","indicators":{"cves":["CVE-2026-74482"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:53.053Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/10065fb891651d9541e7a5a2db84c1e656ece4f9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6f5c272d71845a669e4c8ee5c72b376e29a0e6e5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bc2f5eabaaf60ec18da70b619a8fba1bfb7dea3a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/be106f7855f03d3128ed0ce70ba74b484a90b473","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d640efe94d86d3be893d4c19220362546a637e90","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e3dd774dbfd0b5bc2dbd0995221751b1234f8205","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e923bd21058ea02fd0dcd3549d151d143fd036e5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f87c08060818ebb19bafed37c38244538da25097","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74485","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74485 — In the Linux kernel, the following vulnerability has been resolved: binfmt_misc: reject a flag chara…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbinfmt_misc: reject a flag character as the field delimiter\n\nThe registration string starts with a user chosen delimiter that\nseparates the individual fields. So that the field parsers terminate\neven on a truncated string create_en…","indicators":{"cves":["CVE-2026-74485"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:53.380Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/1819f82dee766c58295ecaacdac02cdf6837d7a4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1853e95c9bfe69ef1dd862b3f551e68f4a1b76cc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/840bb9c49c3e75fb32b593d67ab32f6b77122262","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8e85d50ba1117fd446bf9a250bd8a97d48384bdc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/96bd5d4fea2970b9b08265293ca7a10b9b27c0fd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9970e094e5d60f0d66914bf9a97d1ef19107ebf5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9a2d87db3898b5993b64fd258d0334e0eba9ee0d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b29e3c1f375c1296362d219ff38bceddf2d2a88a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74488","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74488 — In the Linux kernel, the following vulnerability has been resolved: wifi: mwifiex: use the subframe…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: mwifiex: use the subframe length when parsing A-MSDU TDLS frames\n\nmwifiex_11n_dispatch_amsdu_pkt() splits an A-MSDU with\nieee80211_amsdu_to_8023s() and walks the resulting subframes. For each\nsubframe it passes the subframe d…","indicators":{"cves":["CVE-2026-74488"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:53.690Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/25e5a3fe4f15e30f74eca42cbf3bcc3a3fbeda79","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3b02275833a0d3e6583627995d614fa99bdf364f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5a21ab03829cb6d2682c127f22e2b9cd63b4393f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/707664027bb9307f7268eda403af7c4ccd9b8644","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/99a948382af8a225e2d5e54a7052158cd6281cc6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a1f0f7dc7eb15754e6931b433edb7beb754c996a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c9dcfe6b8b71369e1d732e2ff622c3696a2f032c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ece2ebb34247d573142617dfc534a9dc11ba59be","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74489","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74489 — In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: fix tid_tx use-a…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: mac80211: fix tid_tx use-after-free on BA session stop\n\nieee80211_stop_tx_ba_cb() hands tid_tx to kfree_rcu() through\nieee80211_remove_tid_tx(), and then reads tid_tx->ndp after dropping\nsta->lock:\n\n\tieee80211_remove_tid_tx(s…","indicators":{"cves":["CVE-2026-74489"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:53.813Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/09fc36eec7841cdf732f4db39855e0c73bd075cc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2f067f5a450ea07efd249142a11d940a068fe29c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74490","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74490 — In the Linux kernel, the following vulnerability has been resolved: tipc: avoid use-after-free in po…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ntipc: avoid use-after-free in poll trace queue dumps\n\nTIPC socket tracepoints dump queue state through tipc_sk_dump(). Most\nqueue-dump callsites already serialize that walk under the socket lock or\nsk->sk_lock.slock, but tipc_poll(…","indicators":{"cves":["CVE-2026-74490"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:53.917Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/3cd57c6b210d50fd1f7ac1720442ba5be5dc94f8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5e82beba4bc1f91d0e64c9c43f2b2fa9cd1c2a7d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/78706367fe1b98aee0a6de27c62b7f1e3035f38d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ac2f787980fdf4364cd5651a4c8128e59b8de3aa","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ae7fc824970888b4fdaa076819c9a6f2fcede275","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b4f1719dfea023220e0e6bd892b087d76b2a6a49","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bed792737b5f1ba773054dbe984502958bdfe6ce","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d7940bb6a8e7ab28f972c2875cb05783216312dc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74492","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74492 — In the Linux kernel, the following vulnerability has been resolved: netfilter: ipset: do not update…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: ipset: do not update comments from kernel-side hash adds\n\nmtype_resize() copies comment pointers with memcpy(), not the comment\nobjects themselves. During the window after an entry has been copied but\nbefore the table sw…","indicators":{"cves":["CVE-2026-74492"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:54.120Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/16bfa7be2d76ca1e0aacfa363482e1bf8ab5042a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4ae701848e4ba9e9713375fb7d82218cbd309da2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/661ff9c0cfbe07f8eed920dde9f7781491738207","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6f13f4d52d06986c18f12e8bffaab944dd27ceab","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/77dbb248a5cc7a5270cd37bbb0b635bf059a872a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c710e9bf38e4e71a8db85d26a0f70c0674664207","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f30415929be8aeb002d557c8d3f7ab2d2188003a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f9d6cabff1fca010562dcdb0d22b296bdca3ba5a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74496","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74496 — In the Linux kernel, the following vulnerability has been resolved: fou: Fix use-after-free in fou_c…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nfou: Fix use-after-free in fou_create()\n\nfou_create() publishes struct fou through sk_user_data before adding the\nnew FOU port to the per-netns list.  If fou_add_to_port_list() fails,\nthe error path frees fou while it is still reac…","indicators":{"cves":["CVE-2026-74496"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:54.557Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/a28d8903bfe76089ea4bbdbff9976965f9ef8107","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b14361aca6350ff7907b0e9903c7b94dc7d5d4a0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74497","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74497 — In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Clamp frame siz…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nALSA: usb-audio: Clamp frame size in implicit-feedback mode\n\nsnd_usb_handle_sync_urb() scales received sync packet sizes by the sender's\nstride and stores the result directly in out_packet->packet_size[i]. If a\nconnected USB device…","indicators":{"cves":["CVE-2026-74497"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:54.657Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/09cf3dbbb4256a43feb91d2f51f274510a9ada47","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2d39fea6d3c19a2f5811d123114d92e3d0115fd1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2db4535d6af79276a64449201c5be5feffb31c64","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/53f0aa37eb945f3c983f61d12fc35eb33debb8a9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/56ac3e7c90f6b45969c3fd07a98fad760ffd6901","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8d7a30c50c2e58a6839634ed0acde14466d1dc61","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/be97fea7451d758881b95af78e900dd0d58a382a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cfa8d3e0e8b812c4db4d5241f62b6bdbab2bd7be","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74503","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74503 — In the Linux kernel, the following vulnerability has been resolved: ALSA: timer: Clear SNDRV_TIMER_I…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nALSA: timer: Clear SNDRV_TIMER_IFLG_DEAD once the close completes\n\nsnd_timer_close_locked() marks an instance with SNDRV_TIMER_IFLG_DEAD\nand returns early when the flag is already set, but the flag is never\ncleared again.  A comple…","indicators":{"cves":["CVE-2026-74503"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:55.310Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/0c561fab50991df10b1e4daca25886c34a2a9c07","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a26a2e52736f9e39843ca66a2e1ce6bf1adbcd1e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bb016091010ec401a06e6bdace0cd944ee03d371","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c2744d5f3aea474513fd2298daecb94a952ce441","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74506","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74506 — In the Linux kernel, the following vulnerability has been resolved: afs: Fix UAF when sending a mess…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nafs: Fix UAF when sending a message\n\nIn afs_make_call(), there's a race with async call reception and\ndestruction.  If a call is dispatched that doesn't have call->write_iter\nset (used to specify the data content for FS.StoreData),…","indicators":{"cves":["CVE-2026-74506"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:55.630Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/4af1ec68d54b3871155914d584fb10669c41a861","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c0d3b81f703b2a9e37fe1347610a50cdf0078c27","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/daaa726b14fc3026a6b328614d312b698f62f391","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74507","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74507 — In the Linux kernel, the following vulnerability has been resolved: Bluetooth: HIDP: validate number…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nBluetooth: HIDP: validate numbered report payloads\n\nWhen hidp_get_raw_report() waits for a numbered report,\nhidp_process_data() compares the expected report number with skb->data[0].\nA connected HIDP peer can reply with only a DATA…","indicators":{"cves":["CVE-2026-74507"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:55.733Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/011bf4350d941f1995b2bd4b815ee206cacf2b8e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/27cc0e603355c585f1e5da8398faa4d36d498188","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/34f53d27b81a16a02828c8fdfa4e02badc326f17","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/689d8bb7fee96b7196b572b015b6055c6616ce0c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7e7162427659b70ea17cd41b1f79e2e64c246690","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9c841f59e10b5d75c398a3fc6b2da448d2a2276b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b7ad105d46acd828e424454815e4cd31069e047a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c73beb320f5705e508bf7d385b8cc5ef8d9c8b69","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74508","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74508 — In the Linux kernel, the following vulnerability has been resolved: Bluetooth: HIDP: reject frames w…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nBluetooth: HIDP: reject frames without a transaction header\n\nhidp_recv_ctrl_frame() and hidp_recv_intr_frame() read skb->data[0]\nbefore checking that the L2CAP SDU contains a transaction header. A\nconnected HIDP peer can send an em…","indicators":{"cves":["CVE-2026-74508"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:55.843Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/238c333bc4b3f245c626632e8bfa3c9dab97f51b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2ebf63aa557a69990b4e9ea22be224d58aabce96","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/46ca5ab39737d7c6f9ca77ecf714cdcfa6caaeec","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/47778d2c2087b5d192398f6fddf692d16a5431cf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/567a2a0a633f2ea5fdccaf3517c09f22c9d860c7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/854194494a6f726a60b90b76059148bf08df023d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/97b61241ab45bfa5b0526cb0f3978942493bc811","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74509","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74509 — In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_sync: Fix adverti…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nBluetooth: hci_sync: Fix advertising data UAFs\n\nhci_find_adv_instance() returns an adv_info pointer that is valid only\nwhile hdev->lock is held.  The advertising command-sync paths perform\ninstance lookups without that lock and, in…","indicators":{"cves":["CVE-2026-74509"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:55.950Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/95cdcd8c82a501931fd3ae9b3811b0b6da167e94","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b16ebdbebd2d37f4cdc590bc3e9db71fe90350a3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cdc36db204ffd97b947d64374cf23a210dc74777","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/eb1d8318764de7216e6dbba29a24d69f7ce51348","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74510","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74510 — In the Linux kernel, the following vulnerability has been resolved: Bluetooth: mgmt: fix UAF in pair…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nBluetooth: mgmt: fix UAF in pair command cancellation\n\nThe pairing completion and authentication failure callbacks look up the\npending MGMT_OP_PAIR_DEVICE command by walking hdev->mgmt_pending. The\nlookup returned a command that wa…","indicators":{"cves":["CVE-2026-74510"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:56.063Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/51be7280980fddc90ebe874a69c2fe8ab02bb46a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7c2a152a897cd1c184b2051484d4f74d803e7f4a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/86ed4dd6548ccf277bc691bc912ca06e76b9d80c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c569def320aa8b1fde89227e2ea96606790fd86d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d0a7b48ad0921bd88effaee10bf970ab1d5d0ddd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74512","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74512 — In the Linux kernel, the following vulnerability has been resolved: audit: fix potential use-after-f…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\naudit: fix potential use-after-free in audit_del_rule()\n\n`audit_del_rule()` destroys `e->rule.exe` via `audit_remove_mark_rule()`\nbefore unlinking the rule from RCU-visible filter lists and waiting for a\ngrace period. Concurrent re…","indicators":{"cves":["CVE-2026-74512"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:56.300Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/246df90b5f1a8a6e6abbd2f058b029558720adec","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3f82927b399d7a276c0c12b6ff4424b747a0c9a7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/45bf3df5b32e5a49953e7ceabc55f7dd85380e46","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5b8f46864f06d6dbacb7dcea52bc084dfd122638","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/78bde7e9bd36eaae1b8e8cfcd47f12a34f301dbf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8ae135a8962be9d4e8a131eb18eb06cdf02a47ce","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/93616c567469510b7bba55b2674e0c4523fd7e64","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cae0dfed5d307b240bff71c3cf206652d1b6f215","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74513","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74513 — In the Linux kernel, the following vulnerability has been resolved: dibs: fix use-after-free of dmb_…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndibs: fix use-after-free of dmb_node in loopback attach/detach/unregister\n\ndibs_lo_attach_dmb(), dibs_lo_detach_dmb() and dibs_lo_unregister_dmb()\nlook up the dmb_node under dmb_ht_lock, drop the lock and only then\noperate on the n…","indicators":{"cves":["CVE-2026-74513"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:56.410Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/48c073f88c93707089a4214f21cb4c3de5aea6e4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a10ea943356b9d70c5616a0a06f6fa97cfdaccb1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c0837aeace96152d14b17fdd19d70102b6631a7d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74515","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74515 — In the Linux kernel, the following vulnerability has been resolved: KVM: s390: pci: Reject adapter i…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nKVM: s390: pci: Reject adapter interrupt forwarding if already enabled\n\nThe MPCIFC instruction doesn't allow registering adapter interrupts without\nfirst unregistering. So reject any request to enable interrupt forwarding\nif its al…","indicators":{"cves":["CVE-2026-74515"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:56.630Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/591952b63a9f976da7d49f719f36ec826ee2a575","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/642d2d1067f7c4d753ae0e3ba5bc98b43cfe3c70","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6837f0ae85fd54cf64c8a0c7c530bba2fae0a207","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6be1ff49ba81f96a6fa55915e6d920be43ac57cc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/78d9648e7e960546d5b72504a0b0358cd8bb1e9d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8fa01be5a6149404adb82c0979a78f6347edd3ef","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74516","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74516 — In the Linux kernel, the following vulnerability has been resolved: KVM: SVM: Update x2APIC MSR inte…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nKVM: SVM: Update x2APIC MSR intercepts if AVIC is inhibited while L2 is active\n\nAlways update x2APIC MSR intercepts for L1 when AVIC is deactivated, even\nif L2 is active and KVM is using a separate MSR bitmap to run L2.  If AVIC\nis…","indicators":{"cves":["CVE-2026-74516"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:56.737Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/4ca05385b3ddbd463be17c6d69ec76fca657081d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6664a5aea45318f4ec156a729949b474dd6e3159","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7668c58dcf465559dc7a0d2e95e9cb79cf47454b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7d3aae206663c4e006b25a1c7a20a4029e67da76","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/89f9e8398e79c49886766fc24a84c37726231104","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f12373625b4dc9bcc89c41872648878c73bb9272","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74518","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74518 — In the Linux kernel, the following vulnerability has been resolved: mm/hugetlb: fix list corruption…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmm/hugetlb: fix list corruption in allocate_file_region_entries()\n\nallocate_file_region_entries() tops up resv->region_cache with freshly\nallocated file_region descriptors.  The allocation uses GFP_KERNEL, so\nresv->lock is dropped…","indicators":{"cves":["CVE-2026-74518"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:56.967Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/01b8569233e47693d6ff7efa96d9854c55f936fc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/126a70bf1a08ddc9d79c471ebdaa2b08cfbab8df","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/587a0accc2b4fccc5cf7baf0fe34e50efde51f9c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/62e1c2741a4d923d9854efd5927a6212aad7a187","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9c5fdffc5e1ce84403c58289ee72697051803bf7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ac1bb7fd45088d0db57a22ce7729f258ebd63cf5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dd9623f58ec702a07b2d67179d6fcea79c52231a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f3e54f6a5e1681f83d13e8716bc92ef5ecf121d3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74519","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74519 — In the Linux kernel, the following vulnerability has been resolved: pinctrl: devicetree: don't free…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\npinctrl: devicetree: don't free uninitialized dev_name on error path\n\ndt_remember_or_free_map() duplicates dev_name for each map entry. If\nkstrdup_const() fails, dt_free_map() frees dev_name in all num_maps\nentries, including entri…","indicators":{"cves":["CVE-2026-74519"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:57.083Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/015b5bcbcb622b32317642be91a7f79aa5413649","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1586423da2739a80871ef6240016fcb9c7339bfb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/321fe3584a8298386938130d138191aa35040b75","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/929f6396baade89999ec8a1281232c101cbc727d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9d00a5ac7cd3d32ae61140f4b8a62f136de84e7d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ad0ad3c228b6f76fde10f32047e0ec5fbc109dc8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dec5f0a8080502908dec5e35597c7ae07d533a3b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e3cfb22bad363bebcfd55d909e12d499cb8c5490","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74520","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74520 — In the Linux kernel, the following vulnerability has been resolved: iommu/iommufd: Fix IOPF group ow…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\niommu/iommufd: Fix IOPF group ownership UAF\n\niopf_group_alloc() links each last-page IOPF group into the generic IOPF\npending list before invoking the domain fault handler.\niommufd_fault_iopf_handler() also queued an accepted group…","indicators":{"cves":["CVE-2026-74520"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:57.210Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/4e74a369236424114b94cf6a9f5ff9e848b430b4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6da8f37419dd4c456f26fc203f04e000186f4b3d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/738e6f32e61d80b554e37015ecb7bc620b88001c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74522","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74522 — In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free in __c…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nksmbd: fix use-after-free in __close_file_table_ids()\n\nA ksmbd_file can remain alive after logical close while another session\nholds a temporary reference obtained through ksmbd_lookup_fd_inode().\nksmbd_close_fd() currently marks t…","indicators":{"cves":["CVE-2026-74522"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:57.433Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/0c3918c2cee62ec6c9de8d5c73ebfe6f833961ac","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/19bfd90d5aaf63217735d81964585c5306158e5f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/67aaec2a1fdce3e1dde46c45b5d1ef8cf22f65cd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9be4a66f019ea90bd9deca70511f4f9ffebf5c6f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cffbdc86393b0235383a20c8c59bc32f16036459","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e7188199eff46a636f3436356f0aae039be6dd66","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74523","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74523 — In the Linux kernel, the following vulnerability has been resolved: qede: sync udp_tunnel ports outs…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nqede: sync udp_tunnel ports outside qede_lock in the recovery path\n\nA TX timeout on a qede NIC that has VXLAN/GENEVE tunnel ports\nconfigured wedges the rtnetlink control plane of the whole machine:\n\n  NETDEV WATCHDOG: ens6f1 (qede)…","indicators":{"cves":["CVE-2026-74523"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:57.543Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/19e505ee8bb9e0f0355eda9e9f614fb25fed0070","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/451c9075d6c53f2438d110addbeeeea6fac18567","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4626df3f63c9185efba5750fe76ac01ab3351bae","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6f1ef8170d3d8ad9319aa01347945dcdf5cc4f27","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8e1bdf57de91247e57816482966265ada573cc74","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c4c1e5d6bc2b900b2328d6fff93dc8146b858d69","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e382a4efeeae6555b95d9ff336cf3094ee7d336b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e51becb8f3377a377171ed5bf0082b96e22e6292","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74527","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74527 — In the Linux kernel, the following vulnerability has been resolved: octeontx2-af: Block VFs from clo…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nocteontx2-af: Block VFs from clobbering special CGX PKIND state\n\nPF and VF NIX LFs that share a CGX LMAC reuse the same hardware PKIND\nprogramming. When HiGig2 or EDSA parsing is enabled, a VF NIX LF alloc must\nnot reset the LMAC R…","indicators":{"cves":["CVE-2026-74527"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:57.983Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/3bd438a58e910db5dc369aa25dfed1fc95f1b596","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d3c6b0f48f126a36955b3fb4154a59d0b3621d97","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74528","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74528 — In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_sync: hold conn i…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nBluetooth: hci_sync: hold conn in hci_past_sync() callback\n\nAvoids giving freed pointers to hci_conn_valid(), which kmalloc may have\nreused.\n\nHold refcount to avoid that.","indicators":{"cves":["CVE-2026-74528","CVE-2026-74529","CVE-2026-74530"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:58.083Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/abf9753edf3f88282c44a605f3945d8d4f8dd86c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e6792adef614b389141b142e30ee549e4a47dd7d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/44fc74069d8988f2825246f9401218e29de2c0ab","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c53c70ec289ee12f20c4f1b2fbfd151762c01f67","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2d91e6244b69d752503b2d44020d8b0e323dbd38","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/56e78b670356caab0b607e8aad4cf819a1909d07","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74531","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74531 — In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_conn: hold conn r…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nBluetooth: hci_conn: hold conn reference in abort_conn_sync()\n\nThere is theoretical UAF if the conn is freed while the hci_sync task is\nrunning.\n\nHold refcount to avoid that.","indicators":{"cves":["CVE-2026-74531"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:58.397Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/5761d003daa987ac81463f570713ce9c9dd204e5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/64d1645f26aa49b5a86ba2fccd0bb6749ea725a6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/963fb4b8e7d1ab07b4ae45bf15d41e667c88caca","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e8f9fef362bab431d95371d3406bc720350290c3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fa812cfa81aa3d4a7b6ce8277979af57b3f79712","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74533","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74533 — In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ISO: fix race of kfre…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nBluetooth: ISO: fix race of kfree vs kref_get_unless_zero\n\nhci_conn::iso_data is accessed and modified without lock or RCU.\nThis leads to a race\n\n    [Task hdev->workqueue]                 \t[Task 2]\n    iso_recv…","indicators":{"cves":["CVE-2026-74533"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:58.603Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/876a3e94c70d0859d1dad1c986112d4f0d99eba8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/af24e338bf5dafb80f42baa9a0b9e9b57b1c5d9c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74534","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74534 — In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ISO: fix refcounting…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nBluetooth: ISO: fix refcounting of iso_conn\n\niso_conn_del() and iso_chan_del() have a race that results to double-put\nof iso_conn:\n\n    [Task hdev->workqueue]         [Task 2]\n    iso_conn_del                   iso_chan_del\n      i…","indicators":{"cves":["CVE-2026-74534"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:58.700Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/3b921533e8aa95b77aadcf31737595578e735f3c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8208b4939afb0a1977fffe902c3ca42fe0f3baaa","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fdfde532ab1caa165fcd8985001157ac8b4db365","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74535","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74535 — In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ISO: avoid deadlocks…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nBluetooth: ISO: avoid deadlocks in iso_sock_timeout\n\niso_sock_timeout() takes lock_sock, so sync disabling the timer while\nholding that lock may deadlock.\n\niso_sock_timeout() may also run concurrently with iso_conn_del(), which\nlea…","indicators":{"cves":["CVE-2026-74535"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:58.837Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/16d89a63e08280abeef7218970a3bbd7ca62b021","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/200fa1629c57a3ca2b03d3ca63fd3a9bfd910c43","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3c3d5f85db80145636bb991a6005e2760012b985","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/82e982f54f962f72646868ddbb2c3bd9ea178568","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74537","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74537 — In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ISO: hold sk properly…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nBluetooth: ISO: hold sk properly in iso_conn_ready\n\nsk deref in iso_conn_ready must be done either under conn->lock, or\nholding a refcount, to avoid concurrent close. conn->sk is currently\naccessed without either:\n\n    [Task 1]…","indicators":{"cves":["CVE-2026-74537"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:59.040Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/0d255e63fcf3f13a570d7ac11678fa1164ac015c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1308d72903d792d10b82bc4ef08b8a4452308b04","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4e9b5e8669b3602a4e01b6d1e9539b72e42c84d5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74538","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74538 — In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ISO: lock sk in iso_c…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nBluetooth: ISO: lock sk in iso_connect_ind\n\nAccessing iso_pi(sk)->conn requires lock_sock, which is not taken in the\n\"ev3\" part of iso_connect_ind.  It may also be NULL if socket has\ntransitioned away from the LISTEN/CONNECT states…","indicators":{"cves":["CVE-2026-74538"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:59.137Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/4311fd6f429065a8ba208660360a895627a00cf3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9bee7e476534f27e830658dad962d85da9edf6bf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e8e9cff6d80eeec28dec4cf7cc18662986945391","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74539","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74539 — In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ISO: lock sk in iso_s…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nBluetooth: ISO: lock sk in iso_sock_getname\n\nAccessing iso_pi(sk)->conn requires lock_sock, which is not held here.\n\nFix by adding the lock/release.","indicators":{"cves":["CVE-2026-74539"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:59.233Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/202670e6602e068558c1fca2df40719ee91a2906","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/72d5bb1d77d7c3330146dc0cfd43f704c64b9594","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/89cf154d7c18e6e94a3da83051f3cf2bac317ae2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74540","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74540 — In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: fix UAF in l2c…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nBluetooth: L2CAP: fix UAF in l2cap_le_connect_rsp\n\nl2cap_le_connect_rsp() obtains a channel via\n__l2cap_get_chan_by_ident() but neither holds a reference nor uses\nl2cap_chan_hold_unless_zero() before locking and operating on it.\nA…","indicators":{"cves":["CVE-2026-74540"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:59.337Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/09f447accc2570751e7d17f0dc0788b40d3edade","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/15d6c2367217a6a20b1abae9f38ded716bf620f1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1818180fe12d6cec7a437bc59cde8efdf6b10250","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/522b730c62c53a1981604fd73524697fd347830d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/58e3c5289ad230a7e24ae4b0c7b43f5ee6e32136","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8325eafb38c3dee5af329266393763693d17381b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c4740e7f23ff9a8210198d8b4703259e21b9f69d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fd4c1e301bdec60a40728ea37de531cbccda501a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74541","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74541 — In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ISO: clear iso_data a…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nBluetooth: ISO: clear iso_data always when detaching conn from hcon\n\nWhen setting conn->hcon = NULL, also conn->hcon->iso_data = NULL is\nnecessary, otherwise later iso_conn_free() will UAF.\n\nFix clearing of iso_data in iso_sock_dis…","indicators":{"cves":["CVE-2026-74541"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:59.443Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/63c0f396a18b767eb28e895eb95bbdce6c172c59","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/69a4a7b162b3db6ac337e3094cdee38f24d42ff7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7b51a9c25e9698b64df9f2218f10eecf7dc7e2d0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cc1d39946d62bc568551dfb81149724de1e91338","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d57e506f6a1e3929611340fae87c1e4823f4d85c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74544","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74544 — In the Linux kernel, the following vulnerability has been resolved: net/sched: cls_u32: validate off…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet/sched: cls_u32: validate offshift to prevent shift-out-of-bounds\n\nu32_change() copies the user-provided tc_u32_sel.offshift (unsigned char,\n0-255) into the kernel knode object without bounds validation. When a\npacket later hits…","indicators":{"cves":["CVE-2026-74544"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:59.753Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/313cb9ffc4101a885d791facf4b5ea3d5e06144d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/aef96eead2860cbfa371e4471d4f04412213b958","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74548","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74548 — In the Linux kernel, the following vulnerability has been resolved: forcedeth: fix UAF of txrx_stats…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nforcedeth: fix UAF of txrx_stats in nv_remove\n\nnv_remove() frees the per-CPU txrx_stats before unregister_netdev().\nUntil unregister completes, ndo_get_stats64, the NAPI/xmit data path,\nand nv_close()/drain may still access txrx_st…","indicators":{"cves":["CVE-2026-74548"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:18:00.170Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/201e05aa531eba0dfe2ee05b4e178f6ffa12c8b1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/22666ba1420164753d7b0f5a841986b25ace5435","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7c22b4ee0bd003cecfc14ca28981cb213e201f70","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ae20a8a4de06a289d40b0a0633d8d573f1fcb049","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c9d24a205fd508b9999fcab6aca4c590490a12cf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cdf864d5d3c813ae1876f2bacc1cf3ac3c66dfc9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cf2dcde2284562ff87830ca0b7fa2b06e95aef1e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d51ce7a63b76eda02cabfed1b0cc277b2f5c9bcc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74549","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74549 — In the Linux kernel, the following vulnerability has been resolved: hwmon: (nct6775-core) Prevent ac…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nhwmon: (nct6775-core) Prevent access to unsupported weight registers\n\nSashiko reports:\n\nDuring initialization of the nct6116 chip, the driver sets data->pwm_num\nto 5. However, it assigns several NCT6106 register arrays (such as\nNCT…","indicators":{"cves":["CVE-2026-74549"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:18:00.270Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/0d11b2a10269ace29832f584d207ff3768f79dc5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1b722740ac5c2b2070f9ba922f4e0f227faf0246","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/25b528816f5d83be5236dc182692369e8c9402b0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4a77f1d72c6db04cbbfab0250292ac71fdea5f0a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4ad2972ef0e1bd1018ad7a72661a4636ed7daecc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/513d847f7a95bbdbeaaf55fb942c38992587734f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/689082a4cb166a7ae9729f7b12339e69fdad6c52","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d0b704e569ac3b8416d8e02270cdc9bf830ed395","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74550","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74550 — In the Linux kernel, the following vulnerability has been resolved: net: do not send ICMP/NDISC Redi…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: do not send ICMP/NDISC Redirects when peer allocation fails\n\nWhen inet_getpeer_v4() or inet_getpeer_v6() fails to allocate a peer entry\nunder memory pressure or tree size caps, redirect handlers previously fell\nback to sending…","indicators":{"cves":["CVE-2026-74550"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:18:00.390Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/21666f7af49a90ef44d474916b8ef4402dfd74f5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5ec5f00fc606a6df8434948c4552b3cb1176595d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/828f6670d110ff2bf44c743037b38badc315704c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c0adf8b4247bcc5a145a25c1929006eb392580bb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dbc3791e3b2472e1ccc08947e0f83b443470ff4f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f5ecaa7ea7686fa7ecdb6affc9d3a9a42e4524b1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74551","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74551 — In the Linux kernel, the following vulnerability has been resolved: hwmon: (nzxt-smart2) DMA-align o…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nhwmon: (nzxt-smart2) DMA-align output buffer\n\nSashiko reports:\n\nWhen send_output_report() calls hid_hw_output_report(), the underlying USB\nHID core calls usb_interrupt_msg() which maps this buffer directly for DMA.\n\nWhen the DMA ma…","indicators":{"cves":["CVE-2026-74551"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:18:00.500Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/080bbf42faf77e6489ab30d5114c5f8f6ccbb1b8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2332d35aaf206c17acf848522817252732596676","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/51a76bc1b8e717ee3fc0d84f15ac51490ca5f76f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6a2dbce5da2d2163a5b684acf68a0e54582ff0fa","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/70ad543ce81f368411b6c721265a3b2d7ab4fda4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/81a6593b1c8dfb2694cd0ce39be01212d2b8436c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74554","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74554 — In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix out-of-bounds…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: ath12k: fix out-of-bounds clear_bit in ath12k_mac_dp_peer_cleanup()\n\nath12k_mac_dp_peer_cleanup() clears the ML peer ID slot on the\nfree_ml_peer_id_map bitmap by indexing it with dp_peer->peer_id. That is\nwrong: dp_peer->peer…","indicators":{"cves":["CVE-2026-74554"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:18:00.830Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/234b5cb81e6fcc1e3b31b13deff66130be55f36e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/47abd2ca281531deee38a3b3770d885e270e9fc9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74557","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74557 — In the Linux kernel, the following vulnerability has been resolved: scsi: libiscsi: Fix stale-data l…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nscsi: libiscsi: Fix stale-data leak into the SCSI sense buffer\n\niscsi_scsi_cmd_rsp() copies the sense data of a SCSI Response from the\ntarget-supplied data segment.  The segment carries a 2-byte sense length\nfollowed by the sense b…","indicators":{"cves":["CVE-2026-74557"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:18:01.160Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/1f07a897d43c63e6c9458bf77450defef39b5833","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3ef209ca0b4b68c75e9a814d90cc916026b5a6ac","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/60499924faf4ef97e84228c20515218ef121facf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7567f06abdefb1caf2d836107c4d08c5185c650e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/812f1ae95b22419422972748f173b0916ee4d621","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/98b87885de4b7f605533a2860685f5689fce8e82","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/baa04572673125e4d5bc309b4077d1cb46cc78d1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fef6167e8149896cd81bea333fd51b1c91239149","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74560","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74560 — In the Linux kernel, the following vulnerability has been resolved: xsk: fix buffer leak in xsk_drop…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nxsk: fix buffer leak in xsk_drop_skb() for AF_XDP multi-buffer Tx\n\nThis patch is inspired by the check[1] from sashiko. It says when\noverflow happens, the address of cq to be published is invalid.\nActually the severer thing is the…","indicators":{"cves":["CVE-2026-74560"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:18:01.483Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/05e283466b86e0b25a5209a3eafe87aa9886064a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a0528ab6af62bf57153caaf8ea28e5fcb0e18fd4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a3c8382ebce4780c6b3ace2c09bc342313ac0186","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74561","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74561 — In the Linux kernel, the following vulnerability has been resolved: nexthop: avoid unlocked f6i_list…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnexthop: avoid unlocked f6i_list walk in nh_rt_cache_flush\n\nnh_rt_cache_flush() walks nh->f6i_list during an RTNL-serialized nexthop\nreplace without holding nh->lock, racing the unlocked IPv6 route\nadd/delete that mutate the list u…","indicators":{"cves":["CVE-2026-74561"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:18:01.590Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/44f53e4331a30fabc38a411fae7524341b618db3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4787a6d2629b4e8c0b6bacab1f75c1660eca44d9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74562","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74562 — In the Linux kernel, the following vulnerability has been resolved: nexthop: take nh->lock for f6i_l…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnexthop: take nh->lock for f6i_list walks in replace check and notify\n\nfib6_check_nh_list() and __nexthop_replace_notify() walk nh->f6i_list\nduring an RTNL-serialized nexthop replace without holding nh->lock. IPv6\nRTM_NEWROUTE/RTM_…","indicators":{"cves":["CVE-2026-74562"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:18:01.690Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/072cd1f21819dedd2252e704d255de3b0cfc61a7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bb2b072c619c1f741a6234257050f72005dc63ef","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74563","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74563 — In the Linux kernel, the following vulnerability has been resolved: rds: tcp: hold the RCU lock acro…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nrds: tcp: hold the RCU lock across ipv6_chk_addr() in rds_tcp_laddr_check()\n\nrds_tcp_laddr_check() looks up a scoped IPv6 interface with\ndev_get_by_index_rcu(), drops the RCU read-side lock, and only then\npasses the bare struct net…","indicators":{"cves":["CVE-2026-74563"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:18:01.790Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/76dd48886eeeb5fcf2b837d2f4c3d17eebeac9ef","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/78f75d632f74b8de0f081a128588f7c37d0d1164","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8398bc477d3cb3e2b018a5aaac2bec0f69acda30","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b1d480fce05f857dc438080cd8c9244b84a83494","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ba95bce5dfe6e2ef602a87e0557225f2934ccb5c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c4933624a6f416ecfcc31ab58d585da1207a0597","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f0d1fb05d70c8a561cd8d0473bcacafa2fc137ff","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f8a8977af2134a1d91e5f9773cb7d9d53278c830","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74564","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74564 — In the Linux kernel, the following vulnerability has been resolved: netfilter: xt_hashlimit: validat…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: xt_hashlimit: validate hashtable supports XT_HASHLIMIT_RATE_MATCH\n\nThe XT_HASHLIMIT_RATE_MATCH flag mode changes the semantics of the\ndsthash_ent structure which represents an entry in the hashtable.  There\nis a union ar…","indicators":{"cves":["CVE-2026-74564"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:18:01.903Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/06a76334243ccd875a981aa8bb46c0f931ef1e3b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/24683fea1f06bd3bd2707b99460e859bc6464c22","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/305b63e1402267459fdabb183af4527f6799eebf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/32ec8d4aba2cf22e12bdc28df8c4bd833c195fc0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/402befce5854c195058cf4bab7c78ca286068a26","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d186f77d18bdfb252d401ff992ca3001a6a65a0f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dee686b5e7f21180538ff719867702f411c8eb5c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f76ab783e7d8d33e33dd7dfa697297f70d57b0e8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74565","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74565 — In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: make nft_o…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: nf_tables: make nft_object rhltable per table\n\nThe nft_object rhltable is global, this allows for accessing objects\nthat are being dismangled from lookup path by other existing netns.\nGiven the nft_obj_destroy() releases…","indicators":{"cves":["CVE-2026-74565"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:18:02.013Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/1948e4f85b855618b5b9a27265f98d816f4cb7cb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/63ba12b664a2cd3220ed43e22c717715f4cc2ae8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7d4789b58761d9d48d9b5f5e7e0a510c3bbfb3af","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f4f699790590bd0896c48a71e9232a65198f92f0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74567","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74567 — In the Linux kernel, the following vulnerability has been resolved: keys: fix out-of-bounds read in…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nkeys: fix out-of-bounds read in keyring_get_key_chunk()\n\nFor description-level chunks keyring_get_key_chunk() advances the read\npointer by level * sizeof(long) past the inline prefix but only\nbounds-checks the prefix, so a long eno…","indicators":{"cves":["CVE-2026-74567"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:18:02.227Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/3a744838453fb9309ce5a5526d3252e211d60152","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4c0c26f751e50d3027eacc4d7d0fabc31f1d7e6b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/63918731f9ae25b5deb022f118e941e6dddfcef4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/79916f40d4ab1b4ae694d8c024fd179454bfe46e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8dba33c1e779d0fb9a2acb31e354cf0fc0229111","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d1933e03e8c74a018550c31a393b79c4d95bff40","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e5b01998cef8d7f613200230ccaadebe5de9135c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e9417d21a22ad2ec398e78fcf084b717ce92cf2f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74572","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74572 — In the Linux kernel, the following vulnerability has been resolved: btrfs: zoned: fix deadlock betwe…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbtrfs: zoned: fix deadlock between metadata writeback and transaction commit\n\nWhen writing out metadata extent buffers in a zoned filesystem,\nbtree_writepages() holds fs_info->zoned_meta_io_lock across the whole\nwriteback loop, inc…","indicators":{"cves":["CVE-2026-74572"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:18:02.837Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/18577e77c2c8adaadf1f7c6e9bcd1c0b14e5dcdd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1ebe51c29fa9755d5b2fea28727c051117907cf8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/75859a7cd77cd2ddaddbcb963e3fcd34738953af","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c3320873e0c04ce7b746fc8fe948f07bbbbdec33","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/deddd28fd83c264ee2ff5cd6b34449a9f1be6112","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74574","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74574 — In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: fix fdev setup…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndmaengine: idxd: fix fdev setup failure cleanup in idxd_cdev_open()\n\nThe failed_dev_add and failed_dev_name paths drop the file-device\nreference while wq->wq_lock is still held. If put_device(fdev) drops the\nlast reference, idxd_fi…","indicators":{"cves":["CVE-2026-74574"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:18:03.063Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/0679c0c189d2548f00e1bac95be28e2df5c6c7f7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6e26a41c4c1a706edaaa7c7dffc6b3b945707a55","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/778ccbded2c8749c5be7f0dfa04fc9977a36fb7e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8d5d28285728be47c82fdf1c48be4268293c90e7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ee1d7274102285d78a53161fc705a8d8cd40b066","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74575","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74575 — In the Linux kernel, the following vulnerability has been resolved: thunderbolt: Prevent XDomain del…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nthunderbolt: Prevent XDomain delayed work use-after-free on disconnect\n\ntb_xdp_handle_request() runs on system_wq and queues\nxd->state_work via queue_delayed_work() in three request handlers:\nPROPERTIES_CHANGED_REQUEST, UUID_REQUES…","indicators":{"cves":["CVE-2026-74575"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:18:03.173Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/2aa2cde2cc79a79d8ea4a15be9f4a67fc528ae91","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2c5d2d3c3f70cde2565d7b279b544893a2035842","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/33c0ee18cf8665c974b00f4e0ba769fbc07efe10","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/54a62153c765cd24239cde1f2633f2a2fd005368","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/91b40862a02000f490b63f1d315be3ee31e83871","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74576","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74576 — In the Linux kernel, the following vulnerability has been resolved: mm/slab: prevent unbounded recur…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmm/slab: prevent unbounded recursion in free path with new kmalloc type\n\nCommit 280ea9c3154b (\"mm/slab: avoid allocating slabobj_ext array from\nits own slab\") avoided recursive allocation of obj_exts from kmalloc\ncaches of the same…","indicators":{"cves":["CVE-2026-74576"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:18:03.290Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/3e71bfbdd3fd81ee9fefd867fdb2be62bade4140","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d01e88d421a6d07f35235600a43fbd0e551cf292","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d9e6a7623938968e3752b67e37eaff097e559a54","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ebefca49e4c69df24ba9307bfe0806230301d5c6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18500","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-18500 — @fastify/jwt is a JSON Web Token plugin for Fastify. In versions before 10.2.2, a per-request verifi…","description":"@fastify/jwt is a JSON Web Token plugin for Fastify. In versions before 10.2.2, a per-request verification key passed to request.jwtVerify({ key }) is silently overridden by the plugin's globally configured secret, because the option merge applies the global key last. Applications that use different…","indicators":{"cves":["CVE-2026-18500"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T14:17:07.473Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://cna.openjsf.org/security-advisories.html","label":"ce714d77-add3-4f53-aff5-83d477b104bb","domainType":"other"},{"url":"https://github.com/fastify/fastify-jwt/security/advisories/GHSA-j4cx-787j-xjqg","label":"ce714d77-add3-4f53-aff5-83d477b104bb","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-18549","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-18549 — @fastify/multipart is a multipart form-data parser for Fastify. In versions from 5.3.0 up to but not…","description":"@fastify/multipart is a multipart form-data parser for Fastify. In versions from 5.3.0 up to but not including 10.1.1, when the busboy fileSize limit truncates a file part, the plugin clears its internal current-file reference while the underlying stream is still open. If the client then aborts the…","indicators":{"cves":["CVE-2026-18549"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T14:17:07.590Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://cna.openjsf.org/security-advisories.html","label":"ce714d77-add3-4f53-aff5-83d477b104bb","domainType":"other"},{"url":"https://github.com/fastify/fastify-multipart/security/advisories/GHSA-vmph-573x-85f6","label":"ce714d77-add3-4f53-aff5-83d477b104bb","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-19474","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19474 — @fastify/multipart is a multipart form-data parser for Fastify. In versions from 3.0.0 up to but not…","description":"@fastify/multipart is a multipart form-data parser for Fastify. In versions from 3.0.0 up to but not including 10.1.1, request.saveRequestFiles() can leave completed temporary files on disk when a client disconnects while the parser is advancing between multipart parts. The iterator rejection that o…","indicators":{"cves":["CVE-2026-19474"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T14:17:07.710Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://cna.openjsf.org/security-advisories.html","label":"ce714d77-add3-4f53-aff5-83d477b104bb","domainType":"other"},{"url":"https://github.com/fastify/fastify-multipart/security/advisories/GHSA-62qx-hpj5-j6hc","label":"ce714d77-add3-4f53-aff5-83d477b104bb","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-19899","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19899 — A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0. The affected…","description":"A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0. The affected element is an unknown function of the file /edit_teacher.php. Executing a manipulation of the argument ID can lead to sql injection. The attack may be performed from remote. The exploit has been publ…","indicators":{"cves":["CVE-2026-19899"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T17:16:23.977Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://github.com/endingstory/e/issues/1","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19899","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/870682","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390089","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390089/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.sourcecodester.com/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19900","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19900 — A vulnerability was identified in LB-LINK X-PRO 1.0.22-20231206. The impacted element is an unknown…","description":"A vulnerability was identified in LB-LINK X-PRO 1.0.22-20231206. The impacted element is an unknown function of the file /etc/shadow. The manipulation leads to hard-coded credentials. It is possible to initiate the attack remotely. A high degree of complexity is needed for the attack. The exploitabi…","indicators":{"cves":["CVE-2026-19900"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T17:16:24.730Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://github.com/DavCloudz/cve/blob/main/B-Link/B-Link%20AC1200%20X-PRO(AC6)%20Hardcoded%20Credentials%20Vulnerability.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19900","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/870712","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390090","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390090/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19901","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19901 — A security flaw has been discovered in LB-LINK X-PRO 1.0.22-20231206. This affects an unknown functi…","description":"A security flaw has been discovered in LB-LINK X-PRO 1.0.22-20231206. This affects an unknown function of the file /etc/config/easycwmp. The manipulation results in hard-coded credentials. It is possible to launch the attack remotely. Attacks of this nature are highly complex. The exploitability is…","indicators":{"cves":["CVE-2026-19901"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T18:16:24.830Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://github.com/DavCloudz/cve/blob/main/B-Link/Hardcoded%20TR-069%20(easycwmp)%20Remote%20Management%20Credentials.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19901","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/870763","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390091","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390091/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19905","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19905 — A weakness has been identified in Jinher OA 1.0. Impacted is an unknown function of the file /C6/JHS…","description":"A weakness has been identified in Jinher OA 1.0. Impacted is an unknown function of the file /C6/JHSoft.Web.HrmAttendance/attendance_out_approve.aspx. This manipulation of the argument httpOID causes sql injection. It is possible to initiate the attack remotely. The exploit has been made available t…","indicators":{"cves":["CVE-2026-19905"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T19:16:32.300Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://github.com/pangdudu24/cve/issues/1","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19905","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/870787","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390110","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390110/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73045","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73045 — SiYuan before 3.7.4 contains an improper restriction of excessive authentication attempts vulnerabil…","description":"SiYuan before 3.7.4 contains an improper restriction of excessive authentication attempts vulnerability in the authFilePublishAccess endpoint that allows unauthenticated attackers to brute-force per-notebook publish passwords. Attackers can submit unbounded password guesses without rate limiting or…","indicators":{"cves":["CVE-2026-73045"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T22:16:54.463Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-v362-968x-gp2v","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/siyuan-before-brute-force-via-authfilepublishaccess","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-v362-968x-gp2v","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-73054","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73054 — SiYuan versions before v3.7.4 contain an authentication bypass vulnerability in the WebSocket endpoi…","description":"SiYuan versions before v3.7.4 contain an authentication bypass vulnerability in the WebSocket endpoint caused by differential parsing of query parameters between authentication exemption and session quarantine checks. Unauthenticated attackers can craft a malicious WebSocket URI with duplicated quer…","indicators":{"cves":["CVE-2026-73054"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T22:16:55.290Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-c8w8-3pqp-wr83","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/siyuan-before-authentication-bypass-via-websocket","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-c8w8-3pqp-wr83","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-19919","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19919 — A vulnerability was found in code-projects Online Shopping System 1.0. This impacts an unknown funct…","description":"A vulnerability was found in code-projects Online Shopping System 1.0. This impacts an unknown function of the file /login.php of the component Login. The manipulation of the argument email results in sql injection. The attack may be performed from remote. The exploit has been made public and could…","indicators":{"cves":["CVE-2026-19919"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T00:16:50.360Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://code-projects.org/","label":"cna@vuldb.com","domainType":"other"},{"url":"https://github.com/zzzxc643/CVE1/blob/main/online-shopping-system/vul1.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19919","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/871811","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390169","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390169/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/871811","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19926","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19926 — A vulnerability has been found in Evergreen up to 3.14.11/3.15.11/3.16.5/3.17-beta1. The affected el…","description":"A vulnerability has been found in Evergreen up to 3.14.11/3.15.11/3.16.5/3.17-beta1. The affected element is an unknown function of the file /osrf-gateway-v1 of the component open-ils.fielder OpenSRF Service. Such manipulation leads to sql injection. The attack can be executed remotely. The exploit…","indicators":{"cves":["CVE-2026-19926"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T02:16:48.790Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://bugs.launchpad.net/evergreen/+bug/2147196","label":"cna@vuldb.com","domainType":"other"},{"url":"https://bugs.launchpad.net/evergreen/+bug/2147196/+attachment/5958185/+files/2.png","label":"cna@vuldb.com","domainType":"other"},{"url":"https://evergreen-ils.org/Evergreen-security-release-3-14-12-3-15-12-3-16-6-3-17-beta2","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/cve/CVE-2026-19926","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/871976","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390177","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390177/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-14498","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-14498 — The Query Wrangler plugin for WordPress is vulnerable to Remote Code Execution in all versions up to…","description":"The Query Wrangler plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 1.5.57 via the 'options' parameter parameter. This is due to missing capability check and nonce verification on the wp_ajax_qw_form_ajax handler, combined with unsanitized attacker-co…","indicators":{"cves":["CVE-2026-14498"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T05:16:46.360Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/query-wrangler/trunk/admin/ajax.php#L11","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/query-wrangler/trunk/admin/templates/preview-json.php#L8","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/query-wrangler/trunk/includes/fields/callback_field.php#L47","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/query-wrangler/trunk/query-wrangler.php#L147","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3640744%40query-wrangler&new=3640744%40query-wrangler","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/2f9faa56-c550-465f-b0b0-8bf58f5e8d7a?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15002","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-15002 — The Platnosci Online Blue Media (Autopay) plugin for WordPress is vulnerable to Stored Cross-Site Sc…","description":"The Platnosci Online Blue Media (Autopay) plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 5.0.0 via the 'bm_woocommerce_css_editor_content' POST parameter. This is due to the Css_Editor::handle_save() method being wired to the WordPress 'init' hook…","indicators":{"cves":["CVE-2026-15002"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T05:16:46.620Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/platnosci-online-blue-media/tags/5.0.0/src/Domain/Service/Custom_Styles/Css_Editor.php#L96","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/platnosci-online-blue-media/tags/5.0.0/src/Domain/Service/Custom_Styles/Css_Editor.php#L98","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/platnosci-online-blue-media/tags/5.0.0/src/Domain/Service/Custom_Styles/Css_Frontend.php#L17","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/platnosci-online-blue-media/tags/5.0.0/src/Domain/Service/Settings/Settings_Manager.php#L94","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3636306%40platnosci-online-blue-media&new=3636306%40platnosci-online-blue-media","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/f49ccf0f-99ec-410f-8bf0-2f15d8fd578f?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16099","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-16099 — The Podlove Podcast Publisher plugin for WordPress is vulnerable to arbitrary file deletion due to i…","description":"The Podlove Podcast Publisher plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the create_link_item function in all versions up to, and including, 4.5.3. This makes it possible for authenticated attackers, with contributor-level access and abo…","indicators":{"cves":["CVE-2026-16099"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T05:16:47.780Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/podlove-podcasting-plugin-for-wordpress/tags/4.5.3/lib/image_cache/generation_guard.php#L19","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/podlove-podcasting-plugin-for-wordpress/tags/4.5.3/lib/image_cache/generation_guard.php#L57","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/podlove-podcasting-plugin-for-wordpress/tags/4.5.3/lib/model/base.php#L552","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/podlove-podcasting-plugin-for-wordpress/tags/4.5.3/lib/modules/shownotes/rest_api.php#L538","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/podlove-podcasting-plugin-for-wordpress/tags/4.5.3/lib/modules/shownotes/rest_api.php#L585","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/podlove-podcasting-plugin-for-wordpress/tags/4.5.3/lib/modules/shownotes/rest_api.php#L630","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3648110%40podlove-podcasting-plugin-for-wordpress&new=3648110%40podlove-podcasting-plugin-for-wordpress","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/3aa6fd71-337f-4998-a15d-650aa4f6142c?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-17123","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-17123 — The Royal Elementor Addons plugin for WordPress is vulnerable to Server-Side Request Forgery in vers…","description":"The Royal Elementor Addons plugin for WordPress is vulnerable to Server-Side Request Forgery in versions up to, and including, 1.7.1064 via the Form Builder widget's 'webhook_url' setting. The widget's render() method persists the attacker-controlled URL into the wpr_webhook_url_{widget_id} option o…","indicators":{"cves":["CVE-2026-17123"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T05:16:48.033Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/royal-elementor-addons/tags/1.7.1061/classes/modules/forms/wpr-send-webhook.php#L20","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/royal-elementor-addons/tags/1.7.1061/classes/modules/forms/wpr-send-webhook.php#L56","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/royal-elementor-addons/tags/1.7.1061/modules/form-builder/widgets/wpr-form-builder.php#L3788","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/royal-elementor-addons/tags/1.7.1064/classes/modules/forms/wpr-send-webhook.php#L20","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/royal-elementor-addons/tags/1.7.1064/classes/modules/forms/wpr-send-webhook.php#L56","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/royal-elementor-addons/tags/1.7.1064/modules/form-builder/widgets/wpr-form-builder.php#L3788","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/8810200b-e026-4258-86aa-5c1a200fcf9b?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-17533","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-17533 — The All-in-One WP Migration and Backup WordPress plugin before 7.108 does not restrict its migration…","description":"The All-in-One WP Migration and Backup WordPress plugin before 7.108 does not restrict its migration import functionality to network administrators on multisite installations, allowing an administrator of a single subsite to execute arbitrary PHP code across the entire network.","indicators":{"cves":["CVE-2026-17533"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T06:16:51.340Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://wpscan.com/vulnerability/13b57cdc-d954-4db6-94c2-53ad04ab0d34/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-17581","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-17581 — The WCPOS – Point of Sale (POS) plugin for WooCommerce plugin for WordPress is vulnerable to Code In…","description":"The WCPOS – Point of Sale (POS) plugin for WooCommerce plugin for WordPress is vulnerable to Code Injection via the 'thermal' Template Engine in all versions up to, and including, 1.9.14 due to the Receipt_Renderer_Factory dispatching templates with the 'thermal' engine to the Legacy_Php_Renderer in…","indicators":{"cves":["CVE-2026-17581"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T06:16:51.440Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/woocommerce-pos/tags/1.9.10/includes/Admin/Templates/Single_Template.php#L456","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/woocommerce-pos/tags/1.9.10/includes/Services/Receipt_Renderer_Factory.php#L25","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/woocommerce-pos/tags/1.9.10/includes/Templates.php#L238","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/woocommerce-pos/tags/1.9.10/includes/Templates/Receipt.php#L251","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/woocommerce-pos/tags/1.9.10/includes/Templates/Renderers/Legacy_Php_Renderer.php#L42","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/woocommerce-pos/tags/1.9.11/includes/Admin/Templates/Single_Template.php#L456","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/woocommerce-pos/tags/1.9.11/includes/Services/Receipt_Renderer_Factory.php#L25","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/woocommerce-pos/tags/1.9.11/includes/Templates.php#L238","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/woocommerce-pos/tags/1.9.11/includes/Templates/Receipt.php#L251","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/woocommerce-pos/tags/1.9.11/includes/Templates/Renderers/Legacy_Php_Renderer.php#L42","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3634267%40woocommerce-pos&new=3634267%40woocommerce-pos","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/cf3efda0-8609-4a75-a00b-735b49ef260b?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18653","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-18653 — The WP Directory Kit WordPress plugin before 1.5.7 does not sanitise and escape a parameter before u…","description":"The WP Directory Kit WordPress plugin before 1.5.7 does not sanitise and escape a parameter before using it in a SQL statement, allowing administrators to perform SQL injection attacks. On a multisite installation this lets an administrator of a single site read data belonging to the entire network,…","indicators":{"cves":["CVE-2026-18653"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T06:16:51.927Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://wpscan.com/vulnerability/e064c261-bc7b-4605-8da7-c7036fc396fc/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19717","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19717 — The CatFolders Document Gallery & PDF Library WordPress plugin before 2.0.7 does not have authorisat…","description":"The CatFolders Document Gallery & PDF Library WordPress plugin before 2.0.7 does not have authorisation checks in some of its REST API endpoints, allowing unauthenticated users to retrieve the title, type, size and URL of the media attachments assigned to any of its folders, including folders which…","indicators":{"cves":["CVE-2026-19717"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T06:16:52.390Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://wpscan.com/vulnerability/79a4bae6-96e2-44b4-a56b-42198f8b3d32/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19728","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19728 — The Extra Product Options Builder for WooCommerce WordPress plugin before 1.2.176 does not verify th…","description":"The Extra Product Options Builder for WooCommerce WordPress plugin before 1.2.176 does not verify that the requester is entitled to a customer-uploaded file before serving it, allowing unauthenticated users who obtain a file's stored name to retrieve it.\n\nThe Extra Product Options Builder for WooCom…","indicators":{"cves":["CVE-2026-19728"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T06:16:52.673Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://wpscan.com/vulnerability/fd10aaab-d358-4d2f-aafa-dbfba09b7fff/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-10734","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-10734 — The Infility Global plugin for WordPress is vulnerable to Stored Cross-Site Scripting via /cf7_recor…","description":"The Infility Global plugin for WordPress is vulnerable to Stored Cross-Site Scripting via /cf7_record Log Endpoint in all versions up to, and including, 2.15.21 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web sc…","indicators":{"cves":["CVE-2026-10734"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T07:16:30.043Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/infility-global/trunk/include/InfilityGlobalErrorRecord.php#L25","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/infility-global/trunk/include/InfilityGlobalErrorRecord.php#L320","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/infility-global/trunk/include/InfilityGlobalErrorRecord.php#L410","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/infility-global/trunk/include/InfilityGlobalErrorRecord.php#L414","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/0de639a9-37a6-4a72-8afb-ff43de81a83c?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-13424","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-13424 — The Online Scheduling and Appointment Booking System – Bookly plugin for WordPress is vulnerable to…","description":"The Online Scheduling and Appointment Booking System – Bookly plugin for WordPress is vulnerable to Stored Cross-Site Scripting via bookly_speed_up_update_addons AJAX action in all versions up to, and including, 27.7 due to insufficient input sanitization and output escaping. This makes it possible…","indicators":{"cves":["CVE-2026-13424"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T07:16:30.300Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/bookly-responsive-appointment-booking-tool/tags/27.5/backend/modules/diagnostics/Ajax.php#L344","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/bookly-responsive-appointment-booking-tool/tags/27.5/backend/modules/diagnostics/resources/js/diagnostics.js#L542","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/bookly-responsive-appointment-booking-tool/tags/27.5/lib/PluginsUpdater.php#L13","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/bookly-responsive-appointment-booking-tool/tags/27.5/lib/PluginsUpdater.php#L97","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/bookly-responsive-appointment-booking-tool/tags/27.7/backend/modules/diagnostics/Ajax.php#L344","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/bookly-responsive-appointment-booking-tool/tags/27.7/backend/modules/diagnostics/resources/js/diagnostics.js#L542","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/bookly-responsive-appointment-booking-tool/tags/27.7/lib/PluginsUpdater.php#L13","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/bookly-responsive-appointment-booking-tool/tags/27.7/lib/PluginsUpdater.php#L97","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3637918%40bookly-responsive-appointment-booking-tool&new=3637918%40bookly-responsive-appointment-booking-tool","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/cfb53e44-7f9d-490f-b938-f428c20219d7?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-17087","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-17087 — The WP Travel Engine – Tour Booking Plugin – Tour Operator Software plugin for WordPress is vulnerab…","description":"The WP Travel Engine – Tour Booking Plugin – Tour Operator Software plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 6.8.4. This is due to the plugin not properly verifying that a user is authorized to perform an action. This makes it possible for unau…","indicators":{"cves":["CVE-2026-17087"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T07:16:30.423Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/wp-travel-engine/tags/6.7.12/includes/classes/Abstracts/AjaxController.php#L52","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wp-travel-engine/tags/6.7.12/includes/classes/Builders/FormFields/BillingFormFields.php#L87","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wp-travel-engine/tags/6.7.12/includes/classes/Core/Controllers/Ajax/AddToCart.php#L232","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wp-travel-engine/tags/6.7.12/includes/classes/Core/Controllers/Ajax/AddToCart.php#L31","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wp-travel-engine/tags/6.7.12/includes/classes/Legacy/Cart.php#L373","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wp-travel-engine/tags/6.8.3/includes/classes/Abstracts/AjaxController.php#L52","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wp-travel-engine/tags/6.8.3/includes/classes/Builders/FormFields/BillingFormFields.php#L87","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wp-travel-engine/tags/6.8.3/includes/classes/Core/Controllers/Ajax/AddToCart.php#L232","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wp-travel-engine/tags/6.8.3/includes/classes/Core/Controllers/Ajax/AddToCart.php#L31","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wp-travel-engine/tags/6.8.3/includes/classes/Legacy/Cart.php#L373","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3632552%40wp-travel-engine&new=3632552%40wp-travel-engine","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/9dc4a6f9-b663-4573-9a6d-0c96ee25308d?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-2497","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-2497 — The Gallery by BestWebSoft plugin for WordPress is vulnerable to SQL Injection via the '_gallery_ord…","description":"The Gallery by BestWebSoft plugin for WordPress is vulnerable to SQL Injection via the '_gallery_order_{post_id}' parameter array keys in all versions up to, and including, 4.7.9. This is due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing S…","indicators":{"cves":["CVE-2026-2497"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T07:16:31.030Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/gallery-plugin/tags/4.7.6/gallery-plugin.php#L1052","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/gallery-plugin/tags/4.7.6/includes/class-gllr-media-table.php#L58","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/gallery-plugin/trunk/gallery-plugin.php#L1052","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/gallery-plugin/trunk/includes/class-gllr-media-table.php#L58","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3609291%40gallery-plugin&new=3609291%40gallery-plugin","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/884b97b7-d023-4752-81b1-086ab022f85e?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74578","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74578 — In the Linux kernel, the following vulnerability has been resolved: crypto: algif_skcipher - force s…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncrypto: algif_skcipher - force synchronous processing on trees without ctx->state\n\nThe AIO/async path in skcipher_recvmsg() passes the socket-wide ctx->iv\ndirectly into the skcipher request. After io_submit() the socket lock is\ndro…","indicators":{"cves":["CVE-2026-74578"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T09:16:21.653Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://git.kernel.org/stable/c/60eafc7b08c6689ea3ad39eff8d97aefc8a087c7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/73dd3bf704ca6c20639de70c08e9a10bee904a95","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7b91e51d0eb7cbb07f7f086f9176bd93dbbc85dd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b05defc41b27c7d0c05c45f67bf5b91c28f93669","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bf09b0be8e851f050e98da702d247c14d81b591a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d7860b682da55433b5da0591b0e4c1982ecd2689","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f1a87ca0843d74482402a206ea2dfb315ee9acbd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fcc77d33a34cf271702e8daafb6c593e4626776d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73057","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73057 — stoatchat before 0.15.0 fails to validate SVG viewBox dimensions in the proxy endpoint, allowing att…","description":"stoatchat before 0.15.0 fails to validate SVG viewBox dimensions in the proxy endpoint, allowing attackers to cause denial of service by memory exhaustion. Attackers can host malicious SVGs with extremely large width and height values and trigger concurrent requests to exhaust available memory acros…","indicators":{"cves":["CVE-2026-73057"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T14:16:55.230Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/stoatchat/stoatchat/security/advisories/GHSA-x87r-h3mq-7mgr","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/stoatchat-before-uncapped-svg-rendering-denial-of-service","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/stoatchat/stoatchat/security/advisories/GHSA-x87r-h3mq-7mgr","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-73060","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73060 — Scriban versions from 3.0.0 through 7.2.5 contain a denial of service vulnerability in the ScriptRan…","description":"Scriban versions from 3.0.0 through 7.2.5 contain a denial of service vulnerability in the ScriptRange.Multiply operator that bypasses LoopLimit when the left operand is a lazy sequence. Attackers can supply templates with array multiplication on lazy sequences to execute billions of uncharged itera…","indicators":{"cves":["CVE-2026-73060"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T14:16:55.640Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/scriban/scriban/commit/205ca6a7c2349d3d388bd5f1f7729ee198c0d5e5","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/scriban/scriban/commit/c3f03bfc912e14b306a01a03e611f606b05f9c33","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/scriban/scriban/security/advisories/GHSA-89cf-6hmv-8rxm","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/scriban-through-denial-of-service-via-scriptrange-multiply","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/scriban/scriban/security/advisories/GHSA-89cf-6hmv-8rxm","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-73062","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73062 — Scriban versions 3.0.0 through 7.2.0 contain a denial of service vulnerability in the array multipli…","description":"Scriban versions 3.0.0 through 7.2.0 contain a denial of service vulnerability in the array multiplication operator that allocates memory without enforcing LoopLimit or overflow-safe arithmetic checks. Attackers can supply a large integer multiplier in a template to force multi-gigabyte memory alloc…","indicators":{"cves":["CVE-2026-73062"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T14:16:55.903Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/scriban/scriban/security/advisories/GHSA-q6rr-fm2g-g5x8","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/scriban-through-denial-of-service-via-array-multiplication","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/scriban/scriban/security/advisories/GHSA-q6rr-fm2g-g5x8","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-74783","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74783 — Scriban versions 6.6.0 through 7.2.0 contain a non-enforcing ExpressionDepthLimit guard that fails t…","description":"Scriban versions 6.6.0 through 7.2.0 contain a non-enforcing ExpressionDepthLimit guard that fails to stop recursive descent parsing of deeply nested expressions. Attackers can supply templates with deeply nested parentheses, array initializers, object initializers, or unary operators to trigger an…","indicators":{"cves":["CVE-2026-74783"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T14:16:56.133Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/scriban/scriban/security/advisories/GHSA-6q7j-xr26-3h2c","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/scriban-through-parser-recursion-denial-of-service","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/scriban/scriban/security/advisories/GHSA-6q7j-xr26-3h2c","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-74787","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74787 — Scriban before 7.0.0 contains an uncontrolled recursion vulnerability in the object.to_json builtin…","description":"Scriban before 7.0.0 contains an uncontrolled recursion vulnerability in the object.to_json builtin function that lacks depth limits and circular reference detection. Attackers can craft templates with self-referencing objects to trigger unbounded recursion, causing a StackOverflowException that fat…","indicators":{"cves":["CVE-2026-74787"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T14:16:56.653Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/scriban/scriban/security/advisories/GHSA-xcx6-vp38-8hr5","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/scriban-before-uncontrolled-recursion-via-object-to-json","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/scriban/scriban/security/advisories/GHSA-xcx6-vp38-8hr5","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-74788","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74788 — Scriban before 7.0.0 (affected versions <= 6.6.0) contains an uncontrolled memory allocation vulnera…","description":"Scriban before 7.0.0 (affected versions <= 6.6.0) contains an uncontrolled memory allocation vulnerability in the string.pad_left and string.pad_right template functions, which perform no validation on the width parameter before delegating to .NET's String.PadLeft/PadRight. When an application expos…","indicators":{"cves":["CVE-2026-74788"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T14:16:56.787Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/scriban/scriban/security/advisories/GHSA-v66j-x4hw-fv9g","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/scriban-before-denial-of-service-via-string-pad-left-pad-right","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/scriban/scriban/security/advisories/GHSA-v66j-x4hw-fv9g","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-74789","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74789 — Scriban before 7.0.0 (affected <= 6.6.0) applies its LoopLimit constraint only to script loop statem…","description":"Scriban before 7.0.0 (affected <= 6.6.0) applies its LoopLimit constraint only to script loop statements and not to expensive iteration performed inside built-in operators and functions. As a result, a single expression such as {{ 1..1000000 | array.size }} — or a memory-amplification expression suc…","indicators":{"cves":["CVE-2026-74789"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T14:16:56.917Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/scriban/scriban/security/advisories/GHSA-c875-h985-hvrc","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/scriban-before-looplimit-bypass-via-built-in-operations","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74791","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74791 — Scriban before 7.0.0 fails to clear the CachedTemplates dictionary when TemplateContext.Reset() is c…","description":"Scriban before 7.0.0 fails to clear the CachedTemplates dictionary when TemplateContext.Reset() is called, allowing cached templates to persist across reused contexts. Attackers can exploit request-dependent ITemplateLoader implementations to access previously authorized template content from earlie…","indicators":{"cves":["CVE-2026-74791"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T14:16:57.183Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/scriban/scriban/security/advisories/GHSA-x6m9-38vm-2xhf","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/scriban-before-authorization-bypass-via-stale-include-cache","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/scriban/scriban/security/advisories/GHSA-x6m9-38vm-2xhf","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-74792","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74792 — Scriban before 7.0.0 (affected versions <= 6.6.0) contains a stack overflow vulnerability in nested…","description":"Scriban before 7.0.0 (affected versions <= 6.6.0) contains a stack overflow vulnerability in nested array initializer parsing. Deeply nested array initializers recurse through a path (ParseArrayInitializer → ParseExpression → ParseArrayInitializer) that is not covered by the ExpressionDepthLimit cou…","indicators":{"cves":["CVE-2026-74792"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T14:16:57.317Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/scriban/scriban/security/advisories/GHSA-p6q4-fgr8-vx4p","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/scriban-before-stack-overflow-via-nested-array-initializers","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/scriban/scriban/security/advisories/GHSA-p6q4-fgr8-vx4p","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-74794","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74794 — Scriban before 6.6.0 contains an infinite recursion vulnerability in object rendering when the Objec…","description":"Scriban before 6.6.0 contains an infinite recursion vulnerability in object rendering when the ObjectRecursionLimit property defaults to unlimited. Attackers can supply circular reference objects to the template context, exhausting stack space and triggering an uncatchable StackOverflowException tha…","indicators":{"cves":["CVE-2026-74794"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T14:16:57.450Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/scriban/scriban/security/advisories/GHSA-grr9-747v-xvcp","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/scriban-before-denial-of-service-via-infinite-recursion","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/scriban/scriban/security/advisories/GHSA-grr9-747v-xvcp","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-74795","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74795 — Scriban before 6.6.0 contains an uncontrolled recursion vulnerability in its recursive-descent parse…","description":"Scriban before 6.6.0 contains an uncontrolled recursion vulnerability in its recursive-descent parser. The parser does not enforce a default expression depth limit (the ExpressionDepthLimit property in ParserOptions defaults to null/disabled), so an attacker who controls template input can supply a…","indicators":{"cves":["CVE-2026-74795"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T14:16:57.590Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/scriban/scriban/security/advisories/GHSA-wgh7-7m3c-fx25","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/scriban-before-denial-of-service-via-uncontrolled-recursion","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19960","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19960 — A security vulnerability has been detected in Edimax EW-7478APC 1.04. This impacts the function form…","description":"A security vulnerability has been detected in Edimax EW-7478APC 1.04. This impacts the function formWlbasic of the file /goform/formWlbasic. Such manipulation of the argument rootAPmac leads to command injection. The attack can be executed remotely. The exploit has been disclosed publicly and may be…","indicators":{"cves":["CVE-2026-19960"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T23:16:24.870Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://lavender-bicycle-a5a.notion.site/EDIMAX-EW-7478APC-formWlbasic-34b53a41781f8097b9efd3042e977e09?source=copy_link","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/cve/CVE-2026-19960","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/872874","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391137","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391137/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19962","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19962 — A flaw has been found in Edimax EW-7478APC 1.04. Affected by this vulnerability is the function setW…","description":"A flaw has been found in Edimax EW-7478APC 1.04. Affected by this vulnerability is the function setWAN of the file /goform/setWAN. Executing a manipulation of the argument pppUserName/pptpUserName/L2TPUserName can lead to command injection. The attack may be performed from remote. The exploit has be…","indicators":{"cves":["CVE-2026-19962"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T00:16:26.490Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://lavender-bicycle-a5a.notion.site/EDIMAX-EW-7478APC-setWAN-34b53a41781f808aaf2bc972cc6d38d3?source=copy_link","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/cve/CVE-2026-19962","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/872876","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391139","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391139/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19963","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19963 — A vulnerability has been found in Edimax EW-7478APC 1.04. Affected by this issue is the function sta…","description":"A vulnerability has been found in Edimax EW-7478APC 1.04. Affected by this issue is the function stainfo of the file /goform/stainfo. The manipulation of the argument interface leads to command injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public an…","indicators":{"cves":["CVE-2026-19963"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T00:16:27.137Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://lavender-bicycle-a5a.notion.site/EDIMAX-EW-7478APC-stainfo-34b53a41781f80ed8e15c109f7a50844?source=copy_link","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/cve/CVE-2026-19963","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/872877","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391140","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391140/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19979","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19979 — A vulnerability was identified in GL.iNet A1300, AX1800, AXT1800, BE1400, BE3600, BE6500, BE9300, BE…","description":"A vulnerability was identified in GL.iNet A1300, AX1800, AXT1800, BE1400, BE3600, BE6500, BE9300, BE10000, E5800, MT2500, MT3000, MT3600BE, MT5000, MT6000, X2000, X3000 and XE3000 up to 4.8.x. Affected by this vulnerability is the function COPY/MOVE of the component WebDAV Service. Such manipulation…","indicators":{"cves":["CVE-2026-19979"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T04:16:55.693Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/gl-inet/CVE-issues/blob/main/4.0.0/WebDAV%20Public-Share%20Destination%20Authorization%20Bypass.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19979","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/873915","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391161","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391161/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19980","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19980 — A security flaw has been discovered in GL.iNet A1300, AX1800, AXT1800, BE1400, BE3600, BE6500, BE930…","description":"A security flaw has been discovered in GL.iNet A1300, AX1800, AXT1800, BE1400, BE3600, BE6500, BE9300, BE10000, E5800, MT2500, MT3000, MT3600BE, MT5000, MT6000, X2000, X3000 and XE3000 up to 4.8.x. Affected by this issue is the function ui.update_langs of the component Language Update. Performing a…","indicators":{"cves":["CVE-2026-19980"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T04:16:56.250Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/gl-inet/CVE-issues/blob/main/4.0.0/Language%20Auto-Update%20Cron%20RCE.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19980","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/873916","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391162","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391162/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19981","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19981 — A weakness has been identified in GL.iNet A1300, AX1800, AXT1800, BE1400, BE3600, BE6500, BE9300, BE…","description":"A weakness has been identified in GL.iNet A1300, AX1800, AXT1800, BE1400, BE3600, BE6500, BE9300, BE10000, E5800, MT2500, MT3000, MT3600BE, MT5000, MT6000, X2000, X3000 and XE3000 up to 4.8.x. This affects an unknown part of the component Wi-Fi Timer Power-Schedule Feature. Executing a manipulation…","indicators":{"cves":["CVE-2026-19981"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T04:16:56.600Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/gl-inet/CVE-issues/blob/main/4.0.0/Wi-Fi%20Timer%20Power-Schedule%20Cron%20RCE.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19981","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/873917","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391163","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391163/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19982","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19982 — A security vulnerability has been detected in GL.iNet BE9300 and MT6000 4.8.x. This vulnerability af…","description":"A security vulnerability has been detected in GL.iNet BE9300 and MT6000 4.8.x. This vulnerability affects unknown code of the component Firewall-management RPC. The manipulation of the argument dest_port/dest_ip leads to os command injection. The attack may be initiated remotely. Upgrading to versio…","indicators":{"cves":["CVE-2026-19982"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T05:17:09.767Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/gl-inet/CVE-issues/blob/main/4.0.0/Firewall%20Cleanup%20RCE.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19982","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/873918","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391164","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391164/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19983","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19983 — A vulnerability was detected in GL.iNet A1300, AX1800, AXT1800, MT2500, MT3000, MT6000, X3000 and XE…","description":"A vulnerability was detected in GL.iNet A1300, AX1800, AXT1800, MT2500, MT3000, MT6000, X3000 and XE3000 4.8.x. This issue affects some unknown processing of the file /usr/bin/gl_nas_sys of the component NAS Command Service. The manipulation results in os command injection. The attack may be launche…","indicators":{"cves":["CVE-2026-19983"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T05:17:09.947Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/gl-inet/CVE-issues/blob/main/4.0.0/NAS%20Host-header%20bypass%20to%20unauthenticated%20root%20RCE.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19983","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/873919","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391165","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391165/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74845","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74845 — Official Document Management System developed by 2100 Technology has an Arbitrary File Upload vulner…","description":"Official Document Management System developed by 2100 Technology has an Arbitrary File Upload vulnerability, allowing authenticated remote attackers to upload and execute web shell backdoors, thereby enabling arbitrary code execution on the server.","indicators":{"cves":["CVE-2026-74845"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T10:16:42.403Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://www.chtsecurity.com/news/d494c700-1051-488e-aa08-809e06317c5d","label":"twcert@cert.org.tw","domainType":"other"},{"url":"https://www.twcert.org.tw/en/cp-139-11109-82377-2.html","label":"twcert@cert.org.tw","domainType":"other"},{"url":"https://www.twcert.org.tw/tw/cp-132-11108-7b14c-1.html","label":"twcert@cert.org.tw","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74798","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74798 — SiYuan kernel before v3.7.4 contains a path traversal vulnerability in the database_clean MCP tool.…","description":"SiYuan kernel before v3.7.4 contains a path traversal vulnerability in the database_clean MCP tool. The tool performs only an empty-string check on the id parameter before passing it to RemoveUnusedAttributeView (kernel/model/attribute_view.go), which builds a filesystem path via filepath.Join witho…","indicators":{"cves":["CVE-2026-74798"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T11:16:39.873Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-43jx-gxq4-jpjc","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/siyuan-kernel-path-traversal-via-database-clean-mcp-tool","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-43jx-gxq4-jpjc","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-74801","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74801 — SiYuan before 3.7.4 fails to properly escape workspace directory paths when constructing command-lin…","description":"SiYuan before 3.7.4 fails to properly escape workspace directory paths when constructing command-line arguments for the elevated elevator.exe helper process. Attackers can create a malicious workspace directory with command metacharacters in its path and trigger the Microsoft Defender exclusion flow…","indicators":{"cves":["CVE-2026-74801"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T11:16:40.323Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-vmp7-pm7g-ghcc","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/siyuan-before-local-privilege-escalation-via-elevator-exe","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-vmp7-pm7g-ghcc","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-74802","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74802 — SiYuan versions before 3.7.4 contain a cross-site WebSocket hijacking vulnerability in the admin-onl…","description":"SiYuan versions before 3.7.4 contain a cross-site WebSocket hijacking vulnerability in the admin-only /ws/network/proxy endpoint that explicitly disables origin validation by setting CheckOrigin to unconditionally return true. Attackers can craft malicious webpages that establish WebSocket connectio…","indicators":{"cves":["CVE-2026-74802"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T11:16:40.453Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-3cc2-h3v6-rqpq","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/siyuan-cross-site-websocket-hijacking-via-network-proxy","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-3cc2-h3v6-rqpq","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-74868","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74868 — SiYuan versions before 3.7.4 contain an unthrottled brute-force vulnerability in the Publish Service…","description":"SiYuan versions before 3.7.4 contain an unthrottled brute-force vulnerability in the Publish Service Basic Auth implementation (PublishServiceTransport.RoundTrip() in kernel/server/proxy/publish.go). The Publish Service runs on a separate, unauthenticated-by-default listener (default TCP port 6808)…","indicators":{"cves":["CVE-2026-74868"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T11:16:41.030Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-phg7-xcr4-q5wg","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/siyuan-before-brute-force-authentication-via-publish-service","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-phg7-xcr4-q5wg","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-74869","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74869 — stoatchat before 0.15.0 contains a missing authorization vulnerability in the Subscribe message hand…","description":"stoatchat before 0.15.0 contains a missing authorization vulnerability in the Subscribe message handler that allows authenticated attackers to enumerate members and monitor profile updates of private servers without membership. Attackers can subscribe to any server's member-update topic by sending a…","indicators":{"cves":["CVE-2026-74869"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T11:16:41.163Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/stoatchat/stoatchat/security/advisories/GHSA-jj3j-9qr7-jgfc","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/stoatchat-before-missing-authorization-via-subscribe","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74874","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74874 — openssl_encrypt versions before 1.4.0 use Python's non-cryptographic random module for steganographi…","description":"openssl_encrypt versions before 1.4.0 use Python's non-cryptographic random module for steganographic pixel selection in the generate_pseudorandom_sequence function. Attackers who know the password can recover the Mersenne Twister state from approximately 624 outputs and predict pixel locations cont…","indicators":{"cves":["CVE-2026-74874"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T11:16:41.813Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/jahlives/openssl_encrypt/security/advisories/GHSA-vfgx-5q85-58q3","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/openssl-encrypt-before-weak-prng-steganography-pixel-selection","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74877","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74877 — openssl_encrypt versions before 1.4.0 contain a missing ownership verification vulnerability in the…","description":"openssl_encrypt versions before 1.4.0 contain a missing ownership verification vulnerability in the revoke_key method that allows authenticated clients to revoke any other client's key. Attackers can revoke arbitrary keys by providing a valid ML-DSA signature, bypassing the intended ownership restri…","indicators":{"cves":["CVE-2026-74877"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T11:16:42.203Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/jahlives/openssl_encrypt/security/advisories/GHSA-hvc7-763r-4f3h","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/openssl-encrypt-before-missing-ownership-verification-via-revoke-key","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74879","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74879 — openssl_encrypt versions before 1.4.0 contain an information disclosure vulnerability in the /ready…","description":"openssl_encrypt versions before 1.4.0 contain an information disclosure vulnerability in the /ready endpoint that returns full database exception strings to unauthenticated callers. Attackers can trigger database errors to extract sensitive information including hostnames, IP addresses, connection p…","indicators":{"cves":["CVE-2026-74879"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T11:16:42.460Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/jahlives/openssl_encrypt/security/advisories/GHSA-2vhw-q7vh-7xv2","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/openssl-encrypt-before-information-disclosure-via-ready-endpoint","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74882","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74882 — openssl_encrypt versions before 1.4.0 contain an insecure default configuration that trusts the enti…","description":"openssl_encrypt versions before 1.4.0 contain an insecure default configuration that trusts the entire RFC 1918 private address space in IntegrityProxyConfig trusted_proxies. Attackers on private networks can forge client certificate headers to bypass mTLS authentication when ProxyAuth validation is…","indicators":{"cves":["CVE-2026-74882"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T11:16:42.863Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/jahlives/openssl_encrypt/security/advisories/GHSA-2592-7m3g-7fq6","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/openssl-encrypt-before-insecure-default-configuration","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74883","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74883 — openssl_encrypt versions before 1.4.0 contain a sandbox bypass vulnerability where the plugin sandbo…","description":"openssl_encrypt versions before 1.4.0 contain a sandbox bypass vulnerability where the plugin sandbox fails to restrict alternative file access methods like pathlib.Path and io.open. Attackers can import pathlib or io modules to read and write arbitrary files, completely bypassing the restricted_ope…","indicators":{"cves":["CVE-2026-74883"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T11:16:42.993Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/jahlives/openssl_encrypt/security/advisories/GHSA-mcjj-qw7m-j3cp","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/openssl-encrypt-before-sandbox-bypass-via-pathlib-and-io","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/jahlives/openssl_encrypt/security/advisories/GHSA-mcjj-qw7m-j3cp","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-74884","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74884 — openssl_encrypt versions before 1.4.0 contain a path traversal vulnerability in the _is_safe_path me…","description":"openssl_encrypt versions before 1.4.0 contain a path traversal vulnerability in the _is_safe_path method where the plugin_id parameter is not sanitized before constructing the plugin config directory path. Attackers can declare a malicious plugin_id containing path traversal sequences like '../' to…","indicators":{"cves":["CVE-2026-74884"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T11:16:43.130Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/jahlives/openssl_encrypt/security/advisories/GHSA-8jpj-w975-rwv5","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/openssl-encrypt-before-path-traversal-via-plugin-id","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74888","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74888 — openssl_encrypt versions before 1.4.0 use a non-standard PBKDF2 key derivation construction with ite…","description":"openssl_encrypt versions before 1.4.0 use a non-standard PBKDF2 key derivation construction with iterations=1 per call in an outer loop, creating a KDF whose security properties have not been formally analyzed. Attackers can exploit this weakened key derivation to more efficiently crack passwords pr…","indicators":{"cves":["CVE-2026-74888"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T11:16:43.653Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/jahlives/openssl_encrypt/security/advisories/GHSA-743f-89fg-x288","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/openssl-encrypt-before-non-standard-pbkdf2-key-derivation","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74892","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74892 — openssl_encrypt versions before 1.4.0 contain a hardcoded default secret key in the standalone telem…","description":"openssl_encrypt versions before 1.4.0 contain a hardcoded default secret key in the standalone telemetry server configuration that is used for API key hashing. Attackers who know this default value can predict or forge API key hashes to compromise telemetry API authentication.","indicators":{"cves":["CVE-2026-74892"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T11:16:44.263Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/jahlives/openssl_encrypt/security/advisories/GHSA-p926-6hjp-w9jw","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/openssl-encrypt-before-hardcoded-secret-key","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74893","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74893 — openssl_encrypt versions before 1.4.0 contain hardcoded default JWT signing secrets in config.py tha…","description":"openssl_encrypt versions before 1.4.0 contain hardcoded default JWT signing secrets in config.py that pass validation checks. Attackers with access to source code can forge valid JWT tokens for any client_id to gain authenticated access to keyserver and telemetry APIs.","indicators":{"cves":["CVE-2026-74893"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T11:16:44.397Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/jahlives/openssl_encrypt/security/advisories/GHSA-qc6h-gfjh-7qqg","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/openssl-encrypt-before-jwt-token-forgery-via-hardcoded-secrets","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16467","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-16467 — Missing Authorization vulnerability in Dolusoft Software Technologies Fortilogger allows Accessing F…","description":"Missing Authorization vulnerability in Dolusoft Software Technologies Fortilogger allows Accessing Functionality Not Properly Constrained by ACLs.\n\nThis issue affects Fortilogger: before 6.1.5.9.","indicators":{"cves":["CVE-2026-16467"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T13:16:50.963Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-26-0848","label":"iletisim@usom.gov.tr","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74997","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74997 — In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, the cmd_learn driver of the markasjunk pl…","description":"In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, the cmd_learn driver of the markasjunk plugin is subject to remote code execution via crafted placeholder replacement values. This issue only affects Roundcube instances using the markasjunk plugin with its cmd_learn driver.","indicators":{"cves":["CVE-2026-74997"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T13:16:54.100Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/roundcube/roundcubemail/commit/14044f843cfacbe78b042f659e379d6b4497aa7c","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/roundcube/roundcubemail/commit/495d211638f222336b20f4744545c53712426c2a","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/roundcube/roundcubemail/commit/b8f90e28a46d42e79a69568cba897f8f4223d9cd","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/roundcube/roundcubemail/releases/tag/1.6.18","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/roundcube/roundcubemail/releases/tag/1.7.3","label":"cve@mitre.org","domainType":"primary"},{"url":"https://roundcube.net/news/2026/08/09/security-updates-1.6.18-and-1.7.3","label":"cve@mitre.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74998","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74998 — In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, responses from the CSS (Cascading Style S…","description":"In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, responses from the CSS (Cascading Style Sheets) proxy were not validated, which may result in information disclosure or XSS (cross-site scripting) via MIME sniffing.","indicators":{"cves":["CVE-2026-74998"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T13:16:54.270Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/roundcube/roundcubemail/commit/62d33c8a0dc3fd0dd03984220dc9709e8e0de43b","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/roundcube/roundcubemail/commit/a2334990c02f7cb77b1a8d6fa97fcd9e1b5cd1fb","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/roundcube/roundcubemail/releases/tag/1.6.18","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/roundcube/roundcubemail/releases/tag/1.7.3","label":"cve@mitre.org","domainType":"primary"},{"url":"https://roundcube.net/news/2026/08/09/security-updates-1.6.18-and-1.7.3","label":"cve@mitre.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75002","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75002 — In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, mail search and LITERAL+ byte-count desyn…","description":"In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, mail search and LITERAL+ byte-count desynchronization could lead to information disclosure or privilege escalation via IMAP command injection.","indicators":{"cves":["CVE-2026-75002"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T13:16:54.747Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/roundcube/roundcubemail/commit/404d43f1b0125319c3cf8c9e3df39074c0cb80ad","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/roundcube/roundcubemail/commit/73233abe581b3b31cefd00041c7086c40e1793ea","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/roundcube/roundcubemail/releases/tag/1.6.18","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/roundcube/roundcubemail/releases/tag/1.7.3","label":"cve@mitre.org","domainType":"primary"},{"url":"https://roundcube.net/news/2026/08/09/security-updates-1.6.18-and-1.7.3","label":"cve@mitre.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15218","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-15218 — A flaw was found in the maas-api and maas-controller ServiceAccounts within Red Hat OpenShift AI. Th…","description":"A flaw was found in the maas-api and maas-controller ServiceAccounts within Red Hat OpenShift AI. These ServiceAccounts are granted cluster-wide permissions that exceed their operational requirements. An attacker who compromises the identity of these ServiceAccounts, either through a remote code exe…","indicators":{"cves":["CVE-2026-15218"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T14:20:19.357Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-15218","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2498426","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16137","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-16137 — In Progress ShareFile Storage Zones Controller v5.12.5 and below, a party with valid zone credential…","description":"In Progress ShareFile Storage Zones Controller v5.12.5 and below, a party with valid zone credentials can perform path traversal using resumable upload initiation endpoint, allowing the party to write arbitrary content to any location writable by the application's service account. This may result in…","indicators":{"cves":["CVE-2026-16137"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T14:20:19.670Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://support.sharefile.com/s/article/ShareFile-Storage-Zone-Controller-SZC-Service-Disruption-Guidance-Login-Issues-and-Access-Information","label":"security@progress.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16138","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-16138 — In Progress ShareFile Storage Zones Controller v5.12.5 and below versions, unsafe deserialization of…","description":"In Progress ShareFile Storage Zones Controller v5.12.5 and below versions, unsafe deserialization of untrusted file metadata can allow a user with write access to a Network share to execute arbitrary code on the Storage Zones Controller host.","indicators":{"cves":["CVE-2026-16138"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T14:20:19.797Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://support.sharefile.com/s/article/ShareFile-Storage-Zone-Controller-SZC-Service-Disruption-Guidance-Login-Issues-and-Access-Information","label":"security@progress.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16139","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-16139 — In Progress ShareFile Storage Zones Controller versions <= 5.12.5 and <= 6.0.2, an authenticated zon…","description":"In Progress ShareFile Storage Zones Controller versions <= 5.12.5 and <= 6.0.2, an authenticated zone administrator can exploit improper validation in the download preparation flow, enabling attacker-controlled files to be written outside the intended preparation directory. This can lead to remote c…","indicators":{"cves":["CVE-2026-16139"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T14:20:19.913Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://support.sharefile.com/s/article/ShareFile-Storage-Zone-Controller-SZC-Service-Disruption-Guidance-Login-Issues-and-Access-Information","label":"security@progress.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16471","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-16471 — Missing Authorization vulnerability in Dolusoft Software Technologies Sonlogger allows Accessing Fun…","description":"Missing Authorization vulnerability in Dolusoft Software Technologies Sonlogger allows Accessing Functionality Not Properly Constrained by ACLs.\n\nThis issue affects Sonlogger: from v6.6.6 before 6.7.4.8.","indicators":{"cves":["CVE-2026-16471"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T14:20:20.147Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-26-0849","label":"iletisim@usom.gov.tr","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19693","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19693 — extract-zip through 2.0.1 containment-checks only the parent directory of each archive entry and nev…","description":"extract-zip through 2.0.1 containment-checks only the parent directory of each archive entry and never the entry's own final path component, so an archive containing two entries with identical names - a symlink whose target is outside the destination, followed by a regular file - writes through the…","indicators":{"cves":["CVE-2026-19693"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T14:20:20.737Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/max-mapper/extract-zip","label":"22e2d327-25fe-45d7-9f0c-dcd23b7108df","domainType":"primary"},{"url":"https://www.npmjs.com/package/extract-zip","label":"22e2d327-25fe-45d7-9f0c-dcd23b7108df","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-56089","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-56089 — Dell ObjectScale, versions prior to 4.3.0.1, contain(s) a Path Traversal vulnerability. A low privil…","description":"Dell ObjectScale, versions prior to 4.3.0.1, contain(s) a Path Traversal vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Information disclosure.","indicators":{"cves":["CVE-2026-56089","CVE-2026-59909"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T14:20:20.920Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://www.dell.com/support/kbdoc/en-us/000500724/dsa-2026-328-security-update-for-dell-objectscale-multiple-proprietary-code-vulnerabilities","label":"security_alert@emc.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-56090","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-56090 — Dell ObjectScale, versions prior to 4.3.0.1, contain(s) an Uncontrolled Search Path Element vulnerab…","description":"Dell ObjectScale, versions prior to 4.3.0.1, contain(s) an Uncontrolled Search Path Element vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of privileges.","indicators":{"cves":["CVE-2026-56090"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T14:20:21.077Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://www.dell.com/support/kbdoc/en-us/000500724/dsa-2026-328-security-update-for-dell-objectscale-multiple-proprietary-code-vulnerabilities","label":"security_alert@emc.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-56685","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-56685 — Dell ObjectScale, versions prior to 4.3.0.1, contain(s) an Improper Neutralization of Special Elemen…","description":"Dell ObjectScale, versions prior to 4.3.0.1, contain(s) an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Command execution.","indicators":{"cves":["CVE-2026-56685","CVE-2026-56686","CVE-2026-59910"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T14:20:21.193Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://www.dell.com/support/kbdoc/en-us/000500724/dsa-2026-328-security-update-for-dell-objectscale-multiple-proprietary-code-vulnerabilities","label":"security_alert@emc.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-71567","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-71567 — In openshift-metal3/fakefish there is a repeated pattern in some of the scripts where shell variable…","description":"In openshift-metal3/fakefish there is a repeated pattern in some of the scripts where shell variables\n are injected without quoting them either into command lines or into \nmanifests. This mostly applies to the Image URL and BMC credentials \n(which are not verified by FakeFish).","indicators":{"cves":["CVE-2026-71567"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T15:16:57.730Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/openshift-metal3/fakefish/security/advisories/GHSA-xfhv-fp7q-v2cc","label":"74b3a70d-cca6-4d34-9789-e83b222ae3be","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-73646","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73646 — PostCSS takes a CSS file and provides an API to analyze and modify its rules by transforming the rul…","description":"PostCSS takes a CSS file and provides an API to analyze and modify its rules by transforming the rules into an Abstract Syntax Tree. Prior to 8.5.18, lib/previous-map.js loadMap() passes attacker-controlled sourceMappingURL values to join(dirname(opts.from), annotation), and loadFile() permits trave…","indicators":{"cves":["CVE-2026-73646"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T16:17:47.257Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/postcss/postcss/commit/95663d3eb7ba26f4854dd19d3b4f4425760cf56c","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/postcss/postcss/releases/tag/8.5.18","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/postcss/postcss/security/advisories/GHSA-r28c-9q8g-f849","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/postcss/postcss/security/advisories/GHSA-r28c-9q8g-f849","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75044","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75044 — In JetBrains YouTrack before 2025.3.156085, 2026.1.13914, 2026.2.18095 missing authorisation allowed…","description":"In JetBrains YouTrack before 2025.3.156085, \n2026.1.13914, \n2026.2.18095 missing authorisation allowed an authenticated user to delete arbitrary entities via the mailbox endpoint","indicators":{"cves":["CVE-2026-75044"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T16:17:51.410Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://www.jetbrains.com/privacy-security/issues-fixed/","label":"cve@jetbrains.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75048","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75048 — In JetBrains YouTrack before 2026.2.18068 stored XSS via the fenced code-block language label was po…","description":"In JetBrains YouTrack before 2026.2.18068 stored XSS via the fenced code-block language label was possible","indicators":{"cves":["CVE-2026-75048"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T16:17:51.870Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://www.jetbrains.com/privacy-security/issues-fixed/","label":"cve@jetbrains.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75050","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75050 — In JetBrains YouTrack before 2026.1.13901, 2026.2.17950 doS attack was possible via crafted type par…","description":"In JetBrains YouTrack before 2026.1.13901, \n2026.2.17950 doS attack was possible via crafted type parameters","indicators":{"cves":["CVE-2026-75050"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T16:17:52.097Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://www.jetbrains.com/privacy-security/issues-fixed/","label":"cve@jetbrains.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75051","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75051 — In JetBrains YouTrack before 2026.2.17917 unauthorised project transfer between organisations was po…","description":"In JetBrains YouTrack before 2026.2.17917 unauthorised project transfer between organisations was possible","indicators":{"cves":["CVE-2026-75051"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T16:17:52.213Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://www.jetbrains.com/privacy-security/issues-fixed/","label":"cve@jetbrains.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75056","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75056 — In JetBrains IntelliJ IDEA before 2026.2.1 rCE via Markdown export tool was possible","description":"In JetBrains IntelliJ IDEA before 2026.2.1 rCE via Markdown export tool was possible","indicators":{"cves":["CVE-2026-75056"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T16:17:52.770Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://www.jetbrains.com/privacy-security/issues-fixed/","label":"cve@jetbrains.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75060","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75060 — In JetBrains PyCharm before 2026.2.1 code execution was possible via unauthenticated Jupyter MCP too…","description":"In JetBrains PyCharm before 2026.2.1 code execution was possible via unauthenticated Jupyter MCP tools","indicators":{"cves":["CVE-2026-75060"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T16:17:53.227Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://www.jetbrains.com/privacy-security/issues-fixed/","label":"cve@jetbrains.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-9771","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-9771 — The flash_copy() system call is verified by z_vrfy_flash_copy() in drivers/flash/flash_util.c. On bu…","description":"The flash_copy() system call is verified by z_vrfy_flash_copy() in drivers/flash/flash_util.c. On builds with CONFIG_USERSPACE enabled, this handler is the kernel-side trust boundary for a user-mode caller. Prior to the fix it validated only the output buffer (K_SYSCALL_MEMORY_WRITE) and passed the…","indicators":{"cves":["CVE-2026-9771"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T17:16:57.720Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/zephyrproject-rtos/zephyr/commit/1b1ecdc438092cdd469319a0d51cba6cf82e06f4","label":"vulnerabilities@zephyrproject.org","domainType":"primary"},{"url":"https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-68cj-3hg4-5vpm","label":"vulnerabilities@zephyrproject.org","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-33437","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-33437 — Stirling-PDF is a locally hosted web application that facilitates various operations on PDF files. P…","description":"Stirling-PDF is a locally hosted web application that facilitates various operations on PDF files. Prior to 2.0.0, the Get Info workflow in app/core/src/main/resources/templates/security/get-info-on-pdf.html inserts untrusted PDF Title and Author metadata into the summary-text element with innerHTML…","indicators":{"cves":["CVE-2026-33437","CVE-2026-57485"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T18:16:35.650Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/Stirling-Tools/Stirling-PDF/releases/tag/v2.0.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Stirling-Tools/Stirling-PDF/security/advisories/GHSA-qc47-qgh9-xj63","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Stirling-Tools/Stirling-PDF/commit/de9625942bbc329fdefcfde161476a633a3b3213","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Stirling-Tools/Stirling-PDF/pull/6047","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Stirling-Tools/Stirling-PDF/releases/tag/v2.9.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Stirling-Tools/Stirling-PDF/security/advisories/GHSA-3xxh-mm3g-c9w5","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-59893","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-59893 — sqlparse is a non-validating SQL parser module for Python. Prior to 0.6.0, SQL_REGEX in sqlparse/key…","description":"sqlparse is a non-validating SQL parser module for Python. Prior to 0.6.0, SQL_REGEX in sqlparse/keywords.py and the per-position loop in sqlparse/lexer.py repeatedly scan unmatched dollar-quoted literal and multiline-comment delimiters, causing quadratic CPU consumption through sqlparse.parse(), sq…","indicators":{"cves":["CVE-2026-59893"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T18:17:35.730Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/andialbrecht/sqlparse/commit/d1d80602741f77ec78e5a04ce4719244cf32352e","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/andialbrecht/sqlparse/security/advisories/GHSA-prg7-hcfm-mfcr","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/andialbrecht/sqlparse/security/advisories/GHSA-prg7-hcfm-mfcr","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-59902","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-59902 — Netty is an asynchronous, event-driven network application framework. Prior to 4.1.137.Final and 4.2…","description":"Netty is an asynchronous, event-driven network application framework. Prior to 4.1.137.Final and 4.2.17.Final, io.netty.handler.codec.sctp.SctpMessageCompletionHandler limits incomplete messages and fragment counts but not maxBufferedBytes, allowing unauthenticated peers to exhaust memory with large…","indicators":{"cves":["CVE-2026-59902","CVE-2026-59903","CVE-2026-75596"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T18:17:36.087Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/netty/netty/commit/1b5abc6443b63726c72cdd285af2feb7ddbb8ff7","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/netty/netty/pull/17213","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/netty/netty/pull/17217","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/netty/netty/releases/tag/netty-4.1.137.Final","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/netty/netty/releases/tag/netty-4.2.17.Final","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/netty/netty/security/advisories/GHSA-2qj4-mmr9-4v2f","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/netty/netty/security/advisories/GHSA-8c42-7qj2-3j46","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/netty/netty/commit/9e0519239108a69b7e9bbc5e9182ee139a0d7961","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/netty/netty/security/advisories/GHSA-fccg-mwvh-qqg4","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-62982","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-62982 — Glances is an open-source system cross-platform monitoring tool. From 4.5.2 until 4.5.6, _sanitize_m…","description":"Glances is an open-source system cross-platform monitoring tool. From 4.5.2 until 4.5.6, _sanitize_mustache_dict() in glances/actions.py skips nested list and dictionary strings such as process cmdline values, allowing pipe characters to survive chevron.render() and be executed by secure_popen() thr…","indicators":{"cves":["CVE-2026-62982"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T18:17:56.740Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/nicolargo/glances/commit/ea4cf2f54f0d961e24aa0b24fff9584bab39db93","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/nicolargo/glances/releases/tag/v4.5.6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/nicolargo/glances/security/advisories/GHSA-73wf-9vmv-5pv9","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/nicolargo/glances/security/advisories/GHSA-73wf-9vmv-5pv9","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-71979","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-71979 — INDI (Instrument Neutral Distributed Interface) indiserver through 2.2.4.2, fixed in commit 96bbd7f,…","description":"INDI (Instrument Neutral Distributed Interface) indiserver through 2.2.4.2, fixed in commit 96bbd7f, contains a stack buffer overflow vulnerability that allows unauthenticated remote attackers to crash the daemon by sending malformed XML with mismatched tags whose names exceed 1024 bytes. Attackers…","indicators":{"cves":["CVE-2026-71979"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T18:18:12.370Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/indilib/indi/commit/96bbd7f564bbb128a129019e44eadd40dd49cff9","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/indilib/indi/issues/2472","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/indi-indiserver-stack-buffer-overflow-via-xml-tag-parsing","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/indilib/indi/issues/2472","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-71980","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-71980 — Belledonne Communications bcg729 through 1.1.2 contains an out-of-bounds read vulnerability in the d…","description":"Belledonne Communications bcg729 through 1.1.2 contains an out-of-bounds read vulnerability in the decodeSIDframe() function in src/cng.c that allows unauthenticated network-adjacent attackers to trigger a heap read beyond buffer boundaries by sending a zero-length comfort-noise RTP payload. A zero-…","indicators":{"cves":["CVE-2026-71980"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T18:18:12.510Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/BelledonneCommunications/bcg729/issues/23","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.linphone.org/","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://www.vulncheck.com/advisories/belledonne-communications-bcg729-out-of-bounds-read-via-decodesidframe","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/BelledonneCommunications/bcg729/issues/23","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-73522","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73522 — COVESA Open1722 through 0.9.2 contains a stack buffer overflow vulnerability that allows unauthentic…","description":"COVESA Open1722 through 0.9.2 contains a stack buffer overflow vulnerability that allows unauthenticated remote attackers to write past the end of a fixed 15-slot stack array by sending a crafted UDP datagram containing more than 15 ACF-CAN messages. The avtp_to_can() function increments its write i…","indicators":{"cves":["CVE-2026-73522"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T18:18:14.030Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/COVESA/Open1722/issues/154","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/covesa-open1722-stack-buffer-overflow-via-avtp-to-can-in-acf-can-listener","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73523","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73523 — COVESA Open1722 through 0.9.2 contains an integer truncation vulnerability in acf-can-listener.c tha…","description":"COVESA Open1722 through 0.9.2 contains an integer truncation vulnerability in acf-can-listener.c that allows unauthenticated remote attackers to cause the CAN listener to transmit process stack memory onto the CAN bus by sending a rejected UDP datagram with a matching AVTP stream ID. The num_can_msg…","indicators":{"cves":["CVE-2026-73523"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T18:18:14.170Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/COVESA/Open1722/issues/154","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/covesa-open1722-stack-memory-disclosure-via-acf-can-listener-c-integer-truncation","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-50773","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-50773 — An issue in CGM Germany - CompuGroup Medical CGM ISIS MED 2510.1.0.20 allows a remote attacker to ex…","description":"An issue in CGM Germany - CompuGroup Medical CGM ISIS MED 2510.1.0.20 allows a remote attacker to execute arbtirary code via a crafted .dll file.","indicators":{"cves":["CVE-2026-50773"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T19:16:31.663Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/Henkel-CyberVM/CVEs/tree/main/CVE-2026-50773","label":"cve@mitre.org","domainType":"primary"},{"url":"https://www.cgm.com/deu_de","label":"cve@mitre.org","domainType":"other"},{"url":"https://github.com/Henkel-CyberVM/CVEs/tree/main/CVE-2026-50773","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-50776","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-50776 — Directory Traversal vulnerability in Pronis Loisirs Billetterie CSE - < 04/2026 allows a remote atta…","description":"Directory Traversal vulnerability in Pronis Loisirs Billetterie CSE - < 04/2026 allows a remote attacker to obtain sensitive information and execute arbitrary code.","indicators":{"cves":["CVE-2026-50776"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T19:16:31.980Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/Henkel-CyberVM/CVEs/tree/main/CVE-2026-50776","label":"cve@mitre.org","domainType":"primary"},{"url":"https://www.pronisloisirs.com/","label":"cve@mitre.org","domainType":"other"},{"url":"https://github.com/Henkel-CyberVM/CVEs/tree/main/CVE-2026-50776","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-74238","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74238 — TIER IV Nebula through 1.2.0 contains an out-of-bounds read vulnerability in the Vlp32Decoder::unpac…","description":"TIER IV Nebula through 1.2.0 contains an out-of-bounds read vulnerability in the Vlp32Decoder::unpack() function that allows unauthenticated remote attackers to cause the decoder to read past the end of a received UDP buffer into adjacent heap memory by sending a short UDP datagram. Attackers can se…","indicators":{"cves":["CVE-2026-74238"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T19:16:42.713Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/tier4/nebula/issues/488","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/tier-iv-nebula-heap-out-of-bounds-read-via-vlp32-udp-decoder","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-54758","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-54758 — Notepad++ is a free and open-source source code editor. Prior to 8.9.7, the expandNppEnvironmentStrs…","description":"Notepad++ is a free and open-source source code editor. Prior to 8.9.7, the expandNppEnvironmentStrs function in PowerEditor/src/WinControls/StaticDialog/RunDlg/RunDlg.cpp copies a Notepad++ variable name between $( and ) into the fixed-size wchar_t str[MAX_PATH] stack buffer without bounding the m…","indicators":{"cves":["CVE-2026-54758"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T20:16:44.323Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/notepad-plus-plus/notepad-plus-plus/commit/0a9527e9f7140a2323e25d14e362b46ee0efc3db","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/notepad-plus-plus/notepad-plus-plus/releases/tag/v8.9.7","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/notepad-plus-plus/notepad-plus-plus/security/advisories/GHSA-gv94-327x-2gc5","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-57233","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-57233 — Notepad++ is a free and open-source source code editor. Prior to 8.9.7, the WinGup decompress functi…","description":"Notepad++ is a free and open-source source code editor. Prior to 8.9.7, the WinGup decompress function joins untrusted ZIP entry names to unzipDestTo without canonical containment validation, allowing an entry such as ../mimeTools/mimeTools.dll to overwrite a DLL in a sibling plugin directory and ex…","indicators":{"cves":["CVE-2026-57233"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T20:16:44.453Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/notepad-plus-plus/notepad-plus-plus/releases/tag/v8.9.7","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/notepad-plus-plus/notepad-plus-plus/security/advisories/GHSA-hjxw-84rf-wg5r","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/notepad-plus-plus/wingup/commit/7670296a5c7fdec624e0a45dbde51059a7d735a8","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/notepad-plus-plus/wingup/pull/106","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/notepad-plus-plus/notepad-plus-plus/security/advisories/GHSA-hjxw-84rf-wg5r","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-68005","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-68005 — An issue in ACME mini_httpd 1.30 and prior allows a remote attacker to cause a denial of service via…","description":"An issue in ACME mini_httpd 1.30 and prior allows a remote attacker to cause a denial of service via the HTTP request header parser in the handle_request() function","indicators":{"cves":["CVE-2026-68005"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T20:16:45.347Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://acme.com/software/mini_httpd/","label":"cve@mitre.org","domainType":"other"},{"url":"https://github.com/qop-qop-qop/qop-s-blog.github.io/blob/main/CVE-2026-68005/CVE-2026-68005.md","label":"cve@mitre.org","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-70495","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70495 — A flaw was found in search-v2-operator. This component's `search-serviceaccount` has overly broad pe…","description":"A flaw was found in search-v2-operator. This component's `search-serviceaccount` has overly broad permissions, allowing it to impersonate users and groups across the entire cluster. If an attacker gains access to any of the pods running under this service account, they could exploit this to achieve…","indicators":{"cves":["CVE-2026-70495"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T20:16:45.653Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-70495","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2511031","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74234","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74234 — Legora before 2026-08-14 contains a cross-site scripting vulnerability that allows attackers to achi…","description":"Legora before 2026-08-14 contains a cross-site scripting vulnerability that allows attackers to achieve arbitrary JavaScript execution in a victim's browser by embedding a Mermaid block prefixed with a gray-matter JavaScript front-matter directive, causing the front-matter parser to invoke eval() be…","indicators":{"cves":["CVE-2026-74234"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T20:16:46.813Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://legora.com/","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://www.vulncheck.com/advisories/legora-2026-08-14-xss-via-mermaid-gray-matter-javascript-engine","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75014","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75014 — A flaw has been found in SourceCodester Pet Grooming Management Software 1.0. This vulnerability aff…","description":"A flaw has been found in SourceCodester Pet Grooming Management Software 1.0. This vulnerability affects unknown code of the file /admin/get_barcode_data.php. This manipulation of the argument barcode causes sql injection. The attack may be initiated remotely. The exploit has been published and may…","indicators":{"cves":["CVE-2026-75014"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T20:16:47.647Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/niaoniaollll/cve/issues/1","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-75014","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/876426","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391274","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391274/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.sourcecodester.com/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19589","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19589 — Packer up to 1.15.4 is vulnerable to an issue in the third-party plugin installer that may allow uni…","description":"Packer up to 1.15.4 is vulnerable to an issue in the third-party plugin installer that may allow unintended file system modification and could lead to code execution. A user who installs a plugin from a malicious or compromised source may be affected. This vulnerability (CVE-2026-19589) is fixed in…","indicators":{"cves":["CVE-2026-19589"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:43.593Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://discuss.hashicorp.com/t/hcsec-2026-29-packer-vulnerable-to-arbitrary-file-write-via-crafted-plugin-archive-during-installation/77654","label":"security@hashicorp.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-34398","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-34398 — FreeCAD is a free and open-source multiplatform 3D parametric modeler. From 0.19 until 1.1.1, src/Mo…","description":"FreeCAD is a free and open-source multiplatform 3D parametric modeler. From 0.19 until 1.1.1, src/Mod/BIM/bimcommands/BimProjectManager.py in the BIM Project Manager Load Template flow passes attacker-controlled FCStd Meta property values for wpposition, wpu, wpv, and wpaxis directly to eval(), allo…","indicators":{"cves":["CVE-2026-34398"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:44.130Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/FreeCAD/FreeCAD/commit/871ee19b76224910332bbfbd39eebbede967998b","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeCAD/FreeCAD/commit/9ed351cc4700db0a94c46f020c34c58bbf1bdaba","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeCAD/FreeCAD/pull/28610","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeCAD/FreeCAD/releases/tag/1.1.1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeCAD/FreeCAD/security/advisories/GHSA-8rfj-7956-6gwf","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeCAD/FreeCAD/security/advisories/GHSA-8rfj-7956-6gwf","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-34399","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-34399 — FreeCAD is a free and open-source multiplatform 3D parametric modeler. From 0.19 until 1.1.1, FreeCA…","description":"FreeCAD is a free and open-source multiplatform 3D parametric modeler. From 0.19 until 1.1.1, FreeCAD's BIM Workbench contains an eval() call on untrusted data from SVG template files. When a user creates a TechDraw page from a malicious SVG template, arbitrary Python code executes. The vulnerable c…","indicators":{"cves":["CVE-2026-34399"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:44.277Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/FreeCAD/FreeCAD/releases/tag/1.1.1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeCAD/FreeCAD/security/advisories/GHSA-chv4-vm6r-wjqj","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-34789","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-34789 — FreeCAD is a free and open-source multiplatform 3D parametric modeler. Prior to 1.1.2, src/App/Prope…","description":"FreeCAD is a free and open-source multiplatform 3D parametric modeler. Prior to 1.1.2, src/App/PropertyPythonObject.cpp in PropertyPythonObject::Restore() passes the attacker-controlled module attribute from serialized PropertyPythonObject XML directly to PyImport_ImportModule() while restoring a cr…","indicators":{"cves":["CVE-2026-34789"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:44.403Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/FreeCAD/FreeCAD/commit/81b73925ce22610542367301d8eff4259eb9596e","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeCAD/FreeCAD/commit/983037f3003dc31f48db36705b86fb3fbe026295","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeCAD/FreeCAD/commit/e2dc6c8172673642c6856b8b3a5a6accefb18279","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeCAD/FreeCAD/releases/tag/1.1.2","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeCAD/FreeCAD/security/advisories/GHSA-493w-pp4h-h77v","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeCAD/FreeCAD/security/advisories/GHSA-493w-pp4h-h77v","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-54356","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-54356 — Budibase is an open-source low-code platform. Prior to 3.41.3, POST /api/attachments/:datasourceId/u…","description":"Budibase is an open-source low-code platform. Prior to 3.41.3, POST /api/attachments/:datasourceId/url in packages/server/src/api/routes/static.ts and packages/server/src/api/controllers/static/index.ts allows an authenticated published-app user with the BASIC role to supply attacker-controlled buck…","indicators":{"cves":["CVE-2026-54356"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:46.063Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/Budibase/budibase/releases/tag/3.41.3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Budibase/budibase/security/advisories/GHSA-6x9p-4r67-5gjx","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Budibase/budibase/security/advisories/GHSA-6x9p-4r67-5gjx","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-63409","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-63409 — Deskflow is a keyboard and mouse sharing app. From 1.17.0 until continuous build 1.26.0.296, a malic…","description":"Deskflow is a keyboard and mouse sharing app. From 1.17.0 until continuous build 1.26.0.296, a malicious Deskflow server can send an odd-length DSOP vector to ServerProxy::setOptions() in src/lib/client/ServerProxy.cpp, causing the missing value after the final option key to be read beyond the vecto…","indicators":{"cves":["CVE-2026-63409"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:46.200Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/deskflow/deskflow/commit/8266fbbe6af93fa370018886c7f1f35d2cee8b3f","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/deskflow/deskflow/security/advisories/GHSA-gmvh-3c73-m5gg","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/deskflow/deskflow/security/advisories/GHSA-gmvh-3c73-m5gg","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-64657","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-64657 — Budibase is an open-source low-code platform. Prior to 3.39.19, the PostgreSQL datasource connector…","description":"Budibase is an open-source low-code platform. Prior to 3.39.19, the PostgreSQL datasource connector in packages/server/src/integrations/postgres.ts interpolates the user-controlled schema configuration field into a SET search_path statement without escaping embedded double quotes, allowing an authen…","indicators":{"cves":["CVE-2026-64657"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:46.340Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/Budibase/budibase/commit/67572a82c3850964f388bfd969779dc025a80224","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Budibase/budibase/security/advisories/GHSA-qqf5-x7mj-v43p","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Budibase/budibase/security/advisories/GHSA-qqf5-x7mj-v43p","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-65822","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-65822 — ERPNext is a free and open source Enterprise Resource Planning tool. Prior to 15.116.0 and 16.23.0,…","description":"ERPNext is a free and open source Enterprise Resource Planning tool. Prior to 15.116.0 and 16.23.0, erpnext/selling/report/inactive_customers/inactive_customers.py accepts an unvalidated doctype filter and interpolates it into raw SQL in get_sales_details and get_last_sales_amt, allowing an authenti…","indicators":{"cves":["CVE-2026-65822"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:46.610Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/frappe/erpnext/commit/29dd6e6681d20bbacb69517d2d2c875aa929eb9e","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frappe/erpnext/commit/f43af6624610e874e61ad3faf8701e5e6be6271a","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frappe/erpnext/pull/55721","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frappe/erpnext/releases/tag/v15.116.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frappe/erpnext/releases/tag/v16.23.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frappe/erpnext/security/advisories/GHSA-x35x-4mvx-h959","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-65832","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-65832 — Deskflow is a keyboard and mouse sharing app. Prior to continuous build 1.26.0.299, a remote unauthe…","description":"Deskflow is a keyboard and mouse sharing app. Prior to continuous build 1.26.0.299, a remote unauthenticated Deskflow server can send kMsgDSetOptions (DSOP) values to ServerProxy::setOptions() in src/lib/client/ServerProxy.cpp so that the value following a modifier option poisons m_modifierTranslati…","indicators":{"cves":["CVE-2026-65832"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:46.750Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/deskflow/deskflow/commit/205a3c803e5298d56683660736ec1a41b671b56e","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/deskflow/deskflow/commit/8266fbbe6af93fa370018886c7f1f35d2cee8b3f","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/deskflow/deskflow/security/advisories/GHSA-8rcq-7w87-h64j","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/deskflow/deskflow/security/advisories/GHSA-8rcq-7w87-h64j","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-71518","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-71518 — Typemill before 2.26.0 contains an authorization bypass vulnerability in the media file download rou…","description":"Typemill before 2.26.0 contains an authorization bypass vulnerability in the media file download route that allows unauthenticated attackers to access restricted files by submitting path-equivalent URL variants. Attackers can substitute normalized path forms such as dot-slash prefixes, double slashe…","indicators":{"cves":["CVE-2026-71518"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:48.277Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/typemill/typemill/commit/8c621063b4697a94342cb0a4b3905adda60e3d25","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/typemill/typemill/releases/tag/v2.26.0","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/typemill-authorization-bypass-via-media-file-download-route","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73410","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73410 — Budibase is an open-source low-code platform. Prior to 3.40.0, packages/backend-core/src/utils/outbo…","description":"Budibase is an open-source low-code platform. Prior to 3.40.0, packages/backend-core/src/utils/outboundFetch.ts pinned a validated address through a Node agent, but the REST integration used getDispatcher from packages/backend-core/src/utils/fetch.ts, causing undici to ignore that agent and resolve…","indicators":{"cves":["CVE-2026-73410"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:48.823Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/Budibase/budibase/commit/5758bdb242802ca20c4ed0dc579e4330ee898ef3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Budibase/budibase/security/advisories/GHSA-v42f-v8xc-j435","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75103","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75103 — Crawlab fails to verify user ownership or administrative role on the password-change endpoint, allow…","description":"Crawlab fails to verify user ownership or administrative role on the password-change endpoint, allowing any authenticated user to reset any account's password. Attackers can enumerate user accounts through the user listing endpoint and change administrator credentials to achieve full account takeove…","indicators":{"cves":["CVE-2026-75103"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:49.200Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/crawlab-team/crawlab","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/crawlab-team/crawlab/blob/main/core/controllers/user_v2.go","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/crawlab-team/crawlab/issues/1623","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/crawlab-missing-authorization-on-password-change-endpoint-allows-account-takeover","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/crawlab-team/crawlab/issues/1623","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75105","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75105 — phpIPAM through 1.8.1 fails to verify that a requested IP address belongs to the subnet a temporary…","description":"phpIPAM through 1.8.1 fails to verify that a requested IP address belongs to the subnet a temporary share token was issued for. In app/temp_share/index.php and app/temp_share/address.php, when the share type is 'subnets', the subnetId parameter is used directly as a database primary key to fetch an…","indicators":{"cves":["CVE-2026-75105"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:49.473Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/phpipam/phpipam","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/phpipam/phpipam/commit/2980be03652c0eb1db9fe2bcefaa210c854b9aea","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/phpipam/phpipam/issues/4623","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/phpipam/phpipam/releases/tag/v1.8.2","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/phpipam-temporary-subnet-share-information-disclosure-via-address-parameter","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75109","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75109 — Determined fails to authorize requests on the generic task kill, pause, and unpause endpoints in the…","description":"Determined fails to authorize requests on the generic task kill, pause, and unpause endpoints in the API handlers. Authenticated attackers can disrupt other users' workloads by terminating, pausing, or unpausing tasks they do not own.","indicators":{"cves":["CVE-2026-75109"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:49.897Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/determined-ai/determined","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/determined-ai/determined/blob/main/master/internal/api_generic_tasks.go","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/determined-ai/determined/issues/10270","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/determined-missing-authorization-check-on-generic-task-endpoints","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/determined-ai/determined/issues/10270","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75111","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75111 — Evidently UI fails to properly validate the filename parameter in the dataset materialization endpoi…","description":"Evidently UI fails to properly validate the filename parameter in the dataset materialization endpoint, allowing unauthenticated attackers to read arbitrary files outside the workspace directory. Attackers can supply traversal sequences or absolute paths in the filename field to access system files,…","indicators":{"cves":["CVE-2026-75111"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:50.193Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/evidentlyai/evidently","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/evidentlyai/evidently/blob/main/src/evidently/ui/service/datasets/data_source.py","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/evidentlyai/evidently/issues/1887","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/evidently-ui-path-traversal-via-dataset-materialization-filename","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75479","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75479 — JimuReport contains an authentication bypass vulnerability in the report folder template listing end…","description":"JimuReport contains an authentication bypass vulnerability in the report folder template listing endpoint that allows unauthenticated attackers to enumerate all reports and retrieve share tokens. Attackers can use disclosed share tokens to access protected report endpoints and retrieve full report d…","indicators":{"cves":["CVE-2026-75479"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:50.333Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/jeecgboot/jimureport","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/jeecgboot/jimureport/issues/4695","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/jimureport-unauthenticated-report-listing-and-share-token-disclosure","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/jeecgboot/jimureport/issues/4695","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75481","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75481 — SkyPilot fails to validate that authenticated users are entitled to grant administrator roles when u…","description":"SkyPilot fails to validate that authenticated users are entitled to grant administrator roles when updating service account permissions. Attackers can create a service account, escalate it to administrator role, and authenticate with its bearer token to gain administrative control over all users and…","indicators":{"cves":["CVE-2026-75481"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:50.647Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/skypilot-org/skypilot","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/skypilot-org/skypilot/blob/master/sky/users/server.py","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/skypilot-org/skypilot/commit/8a3e00259cd374e662cd876c037164bcb070f78e","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/skypilot-org/skypilot/issues/9846","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/skypilot-authentication-bypass-via-service-account-role-escalation","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/skypilot-org/skypilot/issues/9846","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75482","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75482 — SWE-agent's trajectory inspector (sweagent inspector), confirmed in v1.1.0, is an HTTP server that j…","description":"SWE-agent's trajectory inspector (sweagent inspector), confirmed in v1.1.0, is an HTTP server that joins request paths to the trajectory directory in its /trajectory/ handler without rejecting parent-directory ('..') references, bypassing the built-in path sanitization. The server binds all interfac…","indicators":{"cves":["CVE-2026-75482"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:50.833Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/SWE-agent/SWE-agent","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/SWE-agent/SWE-agent/blob/main/sweagent/inspector/server.py","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/SWE-agent/SWE-agent/issues/1472","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/swe-agent-trajectory-inspector-path-traversal-file-disclosure","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/SWE-agent/SWE-agent/issues/1472","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-43794","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-43794 — A memory corruption issue was addressed with improved memory handling. This issue is fixed in Safari…","description":"A memory corruption issue was addressed with improved memory handling. This issue is fixed in Safari 26.6.1, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2. Processing maliciously crafted web content may lead to memory corruption.","indicators":{"cves":["CVE-2026-43794"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T22:17:11.457Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://support.apple.com/en-us/148281","label":"product-security@apple.com","domainType":"other"},{"url":"https://support.apple.com/en-us/148282","label":"product-security@apple.com","domainType":"other"},{"url":"https://support.apple.com/en-us/148286","label":"product-security@apple.com","domainType":"other"},{"url":"https://support.apple.com/en-us/148287","label":"product-security@apple.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-45790","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-45790 — Dokploy is a free, self-hostable Platform as a Service (PaaS). Prior to 0.29.6, Dokploy's organizati…","description":"Dokploy is a free, self-hostable Platform as a Service (PaaS). Prior to 0.29.6, Dokploy's organization.inviteMember tRPC procedure in apps/dokploy/server/api/routers/organization.ts allows a user with member:create permission to invite an account with the owner role, while packages/server/src/servic…","indicators":{"cves":["CVE-2026-45790"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T22:17:14.170Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/Dokploy/dokploy/commit/a07106d649991ea09892220873ea3243766c3e08","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Dokploy/dokploy/pull/4475","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Dokploy/dokploy/releases/tag/v0.29.6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Dokploy/dokploy/security/advisories/GHSA-fm9p-wmpw-gxjh","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Dokploy/dokploy/security/advisories/GHSA-fm9p-wmpw-gxjh","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-56677","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-56677 — 9Router is an AI router & token saver. In 0.5.4 and earlier, the POST /api/auth/oidc/test endpoint i…","description":"9Router is an AI router & token saver. In 0.5.4 and earlier, the POST /api/auth/oidc/test endpoint in src/app/api/auth/oidc/test/route.js passes the user-controlled issuerUrl parameter to fetchOidcDiscovery() in src/lib/auth/oidc.js without restricting private or loopback destinations, allowing unau…","indicators":{"cves":["CVE-2026-56677"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T22:17:14.970Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/decolua/9router/security/advisories/GHSA-8g4w-4ffg-8vgx","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/decolua/9router/security/advisories/GHSA-8g4w-4ffg-8vgx","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-65343","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-65343 — A use after free issue was addressed with improved memory management. This issue is fixed in iOS 26.…","description":"A use after free issue was addressed with improved memory management. This issue is fixed in iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2. A remote attacker may be able to cause unexpected system termination.","indicators":{"cves":["CVE-2026-65343"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T22:17:25.200Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://support.apple.com/en-us/148281","label":"product-security@apple.com","domainType":"other"},{"url":"https://support.apple.com/en-us/148282","label":"product-security@apple.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-65346","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-65346 — An integer overflow was addressed with improved input validation. This issue is fixed in iOS 26.6.1…","description":"An integer overflow was addressed with improved input validation. This issue is fixed in iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2. Processing an image may lead to arbitrary code execution.","indicators":{"cves":["CVE-2026-65346"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T22:17:25.293Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://support.apple.com/en-us/148281","label":"product-security@apple.com","domainType":"other"},{"url":"https://support.apple.com/en-us/148282","label":"product-security@apple.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-67918","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-67918 — Directory Traversal vulnerability in hermes-studio v.0.6.26 allows a remote attacker to obtain sensi…","description":"Directory Traversal vulnerability in hermes-studio v.0.6.26 allows a remote attacker to obtain sensitive information via the validatePath function in api/hermes/download endpoint","indicators":{"cves":["CVE-2026-67918"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T22:17:25.910Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/luoxuanxi/cve/tree/main/cve-hermes-studio-afr","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/luoxuanxi/cve/tree/main/cve-hermes-studio-afr","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-9816","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-9816 — Mattermost versions 11.7.x <= 11.7.6, 10.11.x <= 10.11.21, 11.8.x <= 11.8.3 fail to validate BoardMe…","description":"Mattermost versions 11.7.x <= 11.7.6, 10.11.x <= 10.11.21, 11.8.x <= 11.8.3 fail to validate BoardMember.Scheme* fields server-side on insert and archive-import paths which allows a board editor or non-guest team member to grant board admin to arbitrary users via POST /api/v2/boards/{boardID}/member…","indicators":{"cves":["CVE-2026-9816"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T22:17:27.217Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://mattermost.com/security-updates","label":"responsibledisclosure@mattermost.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-67961","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-67961 — An issue in O2OA v.10.0.2 allows a local attacker to execute arbitrary code via the the sandbox mech…","description":"An issue in O2OA v.10.0.2 allows a local attacker to execute arbitrary code via the the sandbox mechanism of the Invoke script execution.","indicators":{"cves":["CVE-2026-67961"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T23:16:52.360Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/user-attachments/files/30290070/O2OA.Invoke.Sandbox.Bypass.Vulnerability.Analysis.docx","label":"cve@mitre.org","domainType":"primary"},{"url":"https://reference1.example.com/x_program_center/jaxrs/invoke/","label":"cve@mitre.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75079","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75079 — A weakness has been identified in SourceCodester Class and Exam Timetabling System 1.0. This vulnera…","description":"A weakness has been identified in SourceCodester Class and Exam Timetabling System 1.0. This vulnerability affects unknown code of the file /edit_subject2.php. Executing a manipulation of the argument ID can lead to sql injection. The attack can be executed remotely. The exploit has been made availa…","indicators":{"cves":["CVE-2026-75079"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T00:16:53.380Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/i-QvQ-i/first-OvO/issues/6","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-75079","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/876545","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391307","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391307/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.sourcecodester.com/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75080","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75080 — A security vulnerability has been detected in SourceCodester Class and Exam Timetabling System 1.0.…","description":"A security vulnerability has been detected in SourceCodester Class and Exam Timetabling System 1.0. This issue affects some unknown processing of the file /edit_subject1.php. The manipulation of the argument ID leads to sql injection. The attack is possible to be carried out remotely. The exploit ha…","indicators":{"cves":["CVE-2026-75080"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T00:16:53.543Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/i-QvQ-i/first-OvO/issues/7","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-75080","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/876546","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391308","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391308/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.sourcecodester.com/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75089","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75089 — A weakness has been identified in PHPGurukul Complaint Management System 1.0. Affected by this issue…","description":"A weakness has been identified in PHPGurukul Complaint Management System 1.0. Affected by this issue is some unknown functionality of the file user/check_availability.php. This manipulation of the argument email causes sql injection. Remote exploitation of the attack is possible. The exploit has bee…","indicators":{"cves":["CVE-2026-75089"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T01:16:43.233Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/niaoniaollll/cve/issues/3","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://phpgurukul.com/","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/cve/CVE-2026-75089","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/876776","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391316","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391316/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-11801","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-11801 — The WPAdverts – Classifieds Plugin plugin for WordPress is vulnerable to authorization bypass in all…","description":"The WPAdverts – Classifieds Plugin plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 2.3.2. This is due to the plugin not properly verifying that a user is authorized to perform an action. This makes it possible for unauthenticated attackers to retrieve…","indicators":{"cves":["CVE-2026-11801"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T03:16:38.650Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/wpadverts/tags/2.3.2/includes/class-rest-blocks.php#L13","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wpadverts/tags/2.3.2/includes/class-rest-blocks.php#L50","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wpadverts/tags/2.3.3/includes/class-rest-blocks.php#L49","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&new=3635095%40wpadverts%2Ftrunk&old=3557928%40wpadverts%2Ftrunk","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/37bb8d68-dd87-437a-80e5-e99e93dc55b6?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75091","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75091 — The Quill Forms | Conversational Multi Step Forms, Surveys & quizzes plugin for WordPress is vulnera…","description":"The Quill Forms | Conversational Multi Step Forms, Surveys & quizzes plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including, 5.7.1 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to injec…","indicators":{"cves":["CVE-2026-75091"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T06:16:44.227Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/quillforms/vulnerability/wordpress-quill-forms-plugin-5-7-1-cross-site-scripting-xss-vulnerability","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/7ae927b1-401f-4227-9d50-4adde8e95f24?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15371","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-15371 — Velociraptor's web GUI allows specifying a custom type for columns in tables. The URL type takes the…","description":"Velociraptor's web GUI allows specifying a custom type for columns in tables. The URL type takes the cell value and forms a URL which can be clicked in the GUI.The code does not limit the schemes allowed in this URL , allowing an attacker to specify a JavaScript scheme exposing the user to XSS.","indicators":{"cves":["CVE-2026-15371"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T07:16:48.927Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"http://docs.velociraptor.app/announcements/advisories/cve-2026-15371/","label":"cve@rapid7.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15585","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-15585 — Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in AKIN…","description":"Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in AKIN Software Computer Import Export Industry and Trade Ltd. AKINSOFT Wolvox9 ERP / KontrolPanel.exe allows Path Traversal.\n\nThis issue affects AKINSOFT Wolvox9 ERP / KontrolPanel.exe: from s26.02.17 befo…","indicators":{"cves":["CVE-2026-15585"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:17:23.110Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-26-0851","label":"iletisim@usom.gov.tr","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74902","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74902 — SiYuan before v3.7.4 contains a cross-site scripting vulnerability in the file upload validation flo…","description":"SiYuan before v3.7.4 contains a cross-site scripting vulnerability in the file upload validation flow that fails to escape filenames before inserting them into HTML via insertAdjacentHTML. Attackers can craft a malicious filename containing script payloads that execute with full OS command access wh…","indicators":{"cves":["CVE-2026-74902"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:19:30.370Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-jf56-jrhq-j2qp","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/siyuan-before-xss-to-rce-via-malicious-filename-upload","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74904","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74904 — SiYuan before v3.7.4 is missing authorization checks in 17 block metadata/content endpoints in kerne…","description":"SiYuan before v3.7.4 is missing authorization checks in 17 block metadata/content endpoints in kernel/api/block.go (including getRefText, checkBlockExist, and getBlockBreadcrumb). These handlers are gated only by basic authentication (model.CheckAuth) and lack publish-access filtering, allowing anon…","indicators":{"cves":["CVE-2026-74904"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:19:30.643Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-4vpg-gwqq-w44c","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/siyuan-before-missing-authorization-via-block-api","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-4vpg-gwqq-w44c","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-74905","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74905 — SiYuan before v3.7.4 contains a server-side request forgery (SSRF) vulnerability in the isPrivateIP…","description":"SiYuan before v3.7.4 contains a server-side request forgery (SSRF) vulnerability in the isPrivateIP function in kernel/util/net.go, used by SSRFSafeDialer to enforce SSRF protection in SafeMode. The function only checks for loopback, link-local unicast, private, and unspecified addresses and does no…","indicators":{"cves":["CVE-2026-74905"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:19:30.780Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-qq8m-8p8v-x4xg","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/siyuan-before-ssrf-via-ipv6-transition-address-bypass","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-qq8m-8p8v-x4xg","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-74906","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74906 — SiYuan before v3.7.4 contains an incorrect authorization vulnerability in eight publish-mode reader-…","description":"SiYuan before v3.7.4 contains an incorrect authorization vulnerability in eight publish-mode reader-facing endpoints that filter results using the visibility list instead of the disabled list. Anonymous visitors can discover and read content from documents explicitly marked as forbidden from publish…","indicators":{"cves":["CVE-2026-74906"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:19:30.913Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-48p5-pffc-5r9p","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/siyuan-before-incorrect-authorization-via-publish-access","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-48p5-pffc-5r9p","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75827","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75827 — Grav before 2.0.15 contains an arbitrary file write vulnerability in the Blueprint dynamic-data bare…","description":"Grav before 2.0.15 contains an arbitrary file write vulnerability in the Blueprint dynamic-data bare-function validation that uses an incomplete denylist instead of a positive allowlist. Attackers with page-edit or blueprint-config access can invoke the error_log function through a data directive to…","indicators":{"cves":["CVE-2026-75827"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:19:32.553Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-f8wv-xp27-6gq7","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/grav-before-arbitrary-file-write-via-error-log","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-f8wv-xp27-6gq7","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75828","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75828 — Grav before 2.0.15 contains a stored cross-site scripting vulnerability in the detectXss() function…","description":"Grav before 2.0.15 contains a stored cross-site scripting vulnerability in the detectXss() function where unpaired quotes in unquoted attribute values bypass event-handler detection. Authenticated editors can inject event handlers like onerror= that pass validation and execute in visitor browsers wh…","indicators":{"cves":["CVE-2026-75828"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:19:32.690Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-vfmf-q6x9-cw96","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/grav-before-stored-xss-via-detectxss-quote-bypass","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-vfmf-q6x9-cw96","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75829","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75829 — grav-plugin-api versions before 1.0.15 fail to validate Twig content in the translate() endpoint, al…","description":"grav-plugin-api versions before 1.0.15 fail to validate Twig content in the translate() endpoint, allowing attackers with api.pages.write permission to persist pages with process.twig enabled. Attackers can submit crafted header and content parameters to execute server-side template injection payloa…","indicators":{"cves":["CVE-2026-75829"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:19:32.827Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-w94c-jmg4-w4c9","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/grav-plugin-api-before-twig-ssti-via-translate-endpoint","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75830","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75830 — grav-plugin-api (getgrav/grav-plugin-api) versions >= 1.0.0-beta.10 and <= 1.0.14 contain a path tra…","description":"grav-plugin-api (getgrav/grav-plugin-api) versions >= 1.0.0-beta.10 and <= 1.0.14 contain a path traversal vulnerability in the PagesController::batchCopy() method. An incomplete fix for GHSA-qjq4-jp55-4mx2 left the user-controlled 'suffix' parameter (via POST /api/v1/pages/batch) unvalidated. An au…","indicators":{"cves":["CVE-2026-75830"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:19:32.960Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-g6j3-8jv9-ch5f","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/grav-plugin-api-before-path-traversal-via-batchcopy","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-g6j3-8jv9-ch5f","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75831","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75831 — Grav before 2.0.15 contains a stored cross-site scripting vulnerability in the audio and video media…","description":"Grav before 2.0.15 contains a stored cross-site scripting vulnerability in the audio and video media rendering through the sourceParsedownElement method. The media URL fragment is concatenated unescaped into rawHtml source elements, allowing attackers to inject arbitrary HTML and JavaScript that exe…","indicators":{"cves":["CVE-2026-75831"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:19:33.100Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/getgrav/grav/commit/aba291a59cab29ddce491175791888d8d0b65e20","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-6qw9-4vv5-jr97","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/grav-before-stored-xss-via-audio-video-source-url","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-6qw9-4vv5-jr97","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75836","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75836 — The Grav API plugin (getgrav/grav-plugin-api, bundled with Grav's admin-next/API stack) before 1.0.1…","description":"The Grav API plugin (getgrav/grav-plugin-api, bundled with Grav's admin-next/API stack) before 1.0.14 fails to enforce the authorize requirement in MenubarController::executeAction(). While the GET /menubar/items listing endpoint correctly filters menubar items via userPassesAuthorize(), the POST /a…","indicators":{"cves":["CVE-2026-75836"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:19:33.780Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-8mjx-xjfv-9c88","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/grav-api-plugin-before-missing-authorization-2","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-8mjx-xjfv-9c88","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75840","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75840 — ArcadeDB before 26.8.1 contains an arbitrary file read vulnerability in the GraalVM JavaScript sandb…","description":"ArcadeDB before 26.8.1 contains an arbitrary file read vulnerability in the GraalVM JavaScript sandbox allowlist enforcement, which uses unescaped regular expressions to validate package names. Attackers with trigger creation privileges can use Java.type() to access java.util.zip.ZipFile or java.uti…","indicators":{"cves":["CVE-2026-75840"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:19:34.320Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/ArcadeData/arcadedb/security/advisories/GHSA-wx28-2265-f788","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/arcadedb-before-arbitrary-file-read-via-unescaped-regex","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/ArcadeData/arcadedb/security/advisories/GHSA-wx28-2265-f788","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75842","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75842 — ArcadeDB versions before 26.8.1 contain an arbitrary file read vulnerability in the OpenCypher LOAD…","description":"ArcadeDB versions before 26.8.1 contain an arbitrary file read vulnerability in the OpenCypher LOAD CSV FROM clause that allows authenticated users to read local files. Attackers with read query privileges can use the file:// protocol in LOAD CSV statements to access arbitrary files with server proc…","indicators":{"cves":["CVE-2026-75842"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:19:34.597Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/ArcadeData/arcadedb/security/advisories/GHSA-hfp5-6gcp-8c75","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/arcadedb-before-arbitrary-file-read-via-load-csv","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/ArcadeData/arcadedb/security/advisories/GHSA-hfp5-6gcp-8c75","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75844","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75844 — ArcadeDB versions before 26.8.1 contain a server-side request forgery vulnerability in the IMPORT DA…","description":"ArcadeDB versions before 26.8.1 contain a server-side request forgery vulnerability in the IMPORT DATABASE command where the security validator resolves and checks hostnames but the subsequent connection re-resolves the raw URL and follows redirects. Authenticated attackers can bypass the validator…","indicators":{"cves":["CVE-2026-75844"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:19:34.890Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/ArcadeData/arcadedb/security/advisories/GHSA-4w2m-77c8-83mw","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/arcadedb-before-ssrf-via-import-database-validator-bypass","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75846","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75846 — ArcadeDB before 26.8.1 (affected versions <= 26.7.3) contains a missing authorization vulnerability…","description":"ArcadeDB before 26.8.1 (affected versions <= 26.7.3) contains a missing authorization vulnerability in the DELETE FUNCTION SQL statement. DeleteFunctionStatement.executeSimple unregisters and persists deletion of a server-side function without any checkPermissionsOnDatabase (UPDATE_SCHEMA) check. An…","indicators":{"cves":["CVE-2026-75846"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:19:35.173Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/ArcadeData/arcadedb/security/advisories/GHSA-vv82-qvpf-rjwv","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/arcadedb-before-unauthorized-function-deletion-via-delete-function","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75853","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75853 — ArcadeDB's Gremlin wire-protocol plugin (com.arcadedb:arcadedb-gremlin) in versions <= 26.7.3 enforc…","description":"ArcadeDB's Gremlin wire-protocol plugin (com.arcadedb:arcadedb-gremlin) in versions <= 26.7.3 enforces authentication (SASL PLAIN) but performs no authorization: it never checks database access permissions (canAccessToDatabase) and never binds the authenticated principal into the engine. As a result…","indicators":{"cves":["CVE-2026-75853"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:19:35.727Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://github.com/ArcadeData/arcadedb/security/advisories/GHSA-c287-v325-j5jx","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/arcadedb-gremlin-wire-protocol-authorization-bypass-cross-database","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/ArcadeData/arcadedb/security/advisories/GHSA-c287-v325-j5jx","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75855","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75855 — ArcadeDB versions before 26.8.1 fail to sanitize database names in the POST /api/v1/server endpoint'…","description":"ArcadeDB versions before 26.8.1 fail to sanitize database names in the POST /api/v1/server endpoint's create database and drop database commands, allowing authenticated root users to write and delete arbitrary files outside the configured database directory. Attackers can supply database names conta…","indicators":{"cves":["CVE-2026-75855"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:19:35.997Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://github.com/ArcadeData/arcadedb/security/advisories/GHSA-qwgr-2c45-63xx","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/arcadedb-before-path-traversal-via-create-drop-database","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/ArcadeData/arcadedb/security/advisories/GHSA-qwgr-2c45-63xx","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-74935","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74935 — Privilege escalation in the DOM: Networking component. This vulnerability was fixed in Firefox 154,…","description":"Privilege escalation in the DOM: Networking component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74935"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:29.737Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2051013","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-75/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-76/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-79/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74937","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74937 — Use-after-free in the JavaScript: GC component. This vulnerability was fixed in Firefox 154, Firefox…","description":"Use-after-free in the JavaScript: GC component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74937"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:29.950Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2053337","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74939","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74939 — Privilege escalation in the DOM: Navigation component. This vulnerability was fixed in Firefox 154,…","description":"Privilege escalation in the DOM: Navigation component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74939"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:30.233Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2054416","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-75/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-76/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-79/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74941","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74941 — Privilege escalation in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox…","description":"Privilege escalation in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74941"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:30.513Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2055056","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-76/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-79/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74942","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74942 — Privilege escalation in the Remote Settings Client component. This vulnerability was fixed in Firefo…","description":"Privilege escalation in the Remote Settings Client component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74942"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:30.673Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2056571","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-75/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-76/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-79/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74946","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74946 — Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component. Th…","description":"Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74946"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:31.277Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2059997","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-75/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-76/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-79/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74947","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74947 — Privilege escalation due to invalid pointer in the Graphics component. This vulnerability was fixed…","description":"Privilege escalation due to invalid pointer in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74947"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:31.410Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2060010","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74949","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74949 — Privilege escalation due to use-after-free in the Graphics: Canvas2D component. This vulnerability w…","description":"Privilege escalation due to use-after-free in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74949"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:31.683Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2060245","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-76/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-79/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74950","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74950 — Privilege escalation in the Downloads API component. This vulnerability was fixed in Firefox 154, Fi…","description":"Privilege escalation in the Downloads API component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74950"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:31.817Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=1880253","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74952","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74952 — Privilege escalation in the Application Update component. This vulnerability was fixed in Firefox 15…","description":"Privilege escalation in the Application Update component. This vulnerability was fixed in Firefox 154 and Thunderbird 154.","indicators":{"cves":["CVE-2026-74952"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:32.100Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2021757","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74953","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74953 — Privilege escalation in the Networking: Cookies component. This vulnerability was fixed in Firefox 1…","description":"Privilege escalation in the Networking: Cookies component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74953"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:32.230Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2022382","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-76/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-79/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74954","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74954 — Information disclosure due to side-channel in the Storage: Cache API component. This vulnerability w…","description":"Information disclosure due to side-channel in the Storage: Cache API component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74954"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:32.360Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2025732","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74955","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74955 — Privilege escalation in the Request Handling component. This vulnerability was fixed in Firefox 154,…","description":"Privilege escalation in the Request Handling component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74955"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:32.493Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2029265","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74958","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74958 — Information disclosure in the WebRTC component. This vulnerability was fixed in Firefox 154, Firefox…","description":"Information disclosure in the WebRTC component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74958"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:32.910Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2045368","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74962","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74962 — Site isolation issue in the Networking: Cookies component. This vulnerability was fixed in Firefox 1…","description":"Site isolation issue in the Networking: Cookies component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74962"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:33.430Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2050425","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-76/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-79/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74965","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74965 — Privilege escalation in the Shell Integration component. This vulnerability was fixed in Firefox 154…","description":"Privilege escalation in the Shell Integration component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74965"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:33.813Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2053455","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-76/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-79/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74966","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74966 — Information disclosure in the Form Autofill component. This vulnerability was fixed in Firefox 154,…","description":"Information disclosure in the Form Autofill component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74966"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:33.943Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2054776","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74969","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74969 — Use-after-free in the Layout: Text and Fonts component. This vulnerability was fixed in Firefox 154,…","description":"Use-after-free in the Layout: Text and Fonts component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74969"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:34.317Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2056065","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-75/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-76/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-79/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74978","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74978 — Clickjacking issue in the Widget component. This vulnerability was fixed in Firefox 154, Firefox ESR…","description":"Clickjacking issue in the Widget component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74978"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:36.390Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2036097","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74981","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74981 — Site isolation issue in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firef…","description":"Site isolation issue in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74981"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:37.040Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2050480","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74982","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74982 — Denial-of-service in the Widget component. This vulnerability was fixed in Firefox 154, Firefox ESR…","description":"Denial-of-service in the Widget component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74982"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:37.253Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2051788","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74983","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74983 — Mitigation bypass in the Data Loss Prevention component. This vulnerability was fixed in Firefox 154…","description":"Mitigation bypass in the Data Loss Prevention component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74983"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:39.077Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2051897","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-76/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-79/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75778","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75778 — A vulnerability was identified in code-projects Task Management System 1.0. This affects the functio…","description":"A vulnerability was identified in code-projects Task Management System 1.0. This affects the function Operation::select_with_multiple_condition of the file /index.php of the component Login Form. Such manipulation of the argument email leads to sql injection. It is possible to launch the attack remo…","indicators":{"cves":["CVE-2026-75778"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:43.097Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://code-projects.org/","label":"cna@vuldb.com","domainType":"other"},{"url":"https://github.com/niaoniaollll/cve/issues/5","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-75778","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/877771","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391521","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391521/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-24301","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-24301 — Improper neutralization of special elements used in a command ('command injection') in Microsoft Cop…","description":"Improper neutralization of special elements used in a command ('command injection') in Microsoft Copilot allows an unauthorized attacker to disclose information over a network.","indicators":{"cves":["CVE-2026-24301"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T14:17:01.897Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-24301","label":"secure@microsoft.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-28191","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-28191 — Subscriber Privilege Escalation in The Grid <= 2.7.9.1 versions.","description":"Subscriber Privilege Escalation in The Grid <= 2.7.9.1 versions.","indicators":{"cves":["CVE-2026-28191"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T14:17:02.057Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/the-grid/vulnerability/wordpress-the-grid-plugin-2-7-9-1-privilege-escalation-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-28567","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-28567 — Unauthenticated Broken Access Control in WP Sort Order <= 1.3.5 versions.","description":"Unauthenticated Broken Access Control in WP Sort Order <= 1.3.5 versions.","indicators":{"cves":["CVE-2026-28567"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T14:17:02.327Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/wp-sort-order/vulnerability/wordpress-wp-sort-order-plugin-1-3-5-broken-access-control-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-28568","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-28568 — Unauthenticated Cross Site Scripting (XSS) in Quill Forms <= 5.7.1 versions.","description":"Unauthenticated Cross Site Scripting (XSS) in Quill Forms <= 5.7.1 versions.","indicators":{"cves":["CVE-2026-28568"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T14:17:02.457Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/quillforms/vulnerability/wordpress-quill-forms-plugin-5-7-1-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-28569","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-28569 — Unauthenticated Cross Site Scripting (XSS) in SSL Zen <= 4.7.43 versions.","description":"Unauthenticated Cross Site Scripting (XSS) in SSL Zen <= 4.7.43 versions.","indicators":{"cves":["CVE-2026-28569"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T14:17:02.587Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/ssl-zen/vulnerability/wordpress-ssl-zen-plugin-4-7-43-reflected-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-28570","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-28570 — Unauthenticated Local File Inclusion in Vavo Core <= 2.3.0 versions.","description":"Unauthenticated Local File Inclusion in Vavo Core <= 2.3.0 versions.","indicators":{"cves":["CVE-2026-28570"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T14:17:02.717Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/vavo-core/vulnerability/wordpress-vavo-core-plugin-2-3-0-local-file-inclusion-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-28571","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-28571 — Unauthenticated Broken Access Control in FormyChat <= 2.15.7 versions.","description":"Unauthenticated Broken Access Control in FormyChat <= 2.15.7 versions.","indicators":{"cves":["CVE-2026-28571"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T14:17:02.850Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/social-contact-form/vulnerability/wordpress-formychat-plugin-2-15-7-broken-access-control-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-32333","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-32333 — Unauthenticated Cross Site Scripting (XSS) in Mayosis Core <= 5.4.7 versions.","description":"Unauthenticated Cross Site Scripting (XSS) in Mayosis Core <= 5.4.7 versions.","indicators":{"cves":["CVE-2026-32333"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T14:17:03.133Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/mayosis-core/vulnerability/wordpress-mayosis-core-plugin-5-4-7-reflected-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-32464","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-32464 — Unauthenticated Local File Inclusion in Theme Test Drive <= 2.9.1 versions.","description":"Unauthenticated Local File Inclusion in Theme Test Drive <= 2.9.1 versions.","indicators":{"cves":["CVE-2026-32464"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T14:17:03.530Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/theme-test-drive/vulnerability/wordpress-theme-test-drive-plugin-2-9-1-local-file-inclusion-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-32465","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-32465 — Customer PHP Object Injection in Essential Real Estate <= 5.3.3 versions.","description":"Customer PHP Object Injection in Essential Real Estate <= 5.3.3 versions.","indicators":{"cves":["CVE-2026-32465"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T14:17:03.650Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/essential-real-estate/vulnerability/wordpress-essential-real-estate-plugin-5-3-3-php-object-injection-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-32466","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-32466 — Subscriber SQL Injection in Gravity Forms Bookings premium <= 2.1 versions.","description":"Subscriber SQL Injection in Gravity Forms Bookings premium <= 2.1 versions.","indicators":{"cves":["CVE-2026-32466"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T14:17:03.787Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/gf-bookings-premium/vulnerability/wordpress-gravity-forms-bookings-premium-plugin-2-1-sql-injection-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-32468","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-32468 — Unauthenticated Sensitive Data Exposure in Duitku Payment Gateway <= 2.11.14 versions.","description":"Unauthenticated Sensitive Data Exposure in Duitku Payment Gateway <= 2.11.14 versions.","indicators":{"cves":["CVE-2026-32468"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T14:17:05.857Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/duitku-social-payment-gateway/vulnerability/wordpress-duitku-payment-gateway-plugin-2-11-14-sensitive-data-exposure-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-50575","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-50575 — BetterDesk is a remote desktop management solution. BetterDesk versions through 2.3.0 improperly inv…","description":"BetterDesk is a remote desktop management solution. BetterDesk versions through 2.3.0 improperly invalidate deleted device identities, allowing an unauthenticated client to replay or spoof a device ID and bypass registration controls. Version 3.0.0-alpha contains a patch. No known workarounds are av…","indicators":{"cves":["CVE-2026-50575"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T14:17:10.117Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://github.com/UNITRONIX/BetterDesk/commit/f3b4df28240694b174158335e4c0c51c8dfbe4ab","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/UNITRONIX/BetterDesk/security/advisories/GHSA-3v82-3gf8-fxx8","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/UNITRONIX/BetterDesk/security/advisories/GHSA-3v82-3gf8-fxx8","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-18534","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-18534 — ArcSearch for iOS versions prior to 1.48.0 could keep the address bar hidden after a page-initiated…","description":"ArcSearch for iOS versions prior to 1.48.0 could keep the address bar hidden after a page-initiated scroll, allowing attacker-controlled content to imitate browser interface elements and increasing spoofing risk.","indicators":{"cves":["CVE-2026-18534"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:49.667Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://arc.net/security/bulletins#cve-2026-18534-address-bar-spoofing-risk-in-affected-ios-versions-of-arc-search","label":"59469e6c-7ea7-446f-8e43-06aa32c115e8","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-32472","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-32472 — Unauthenticated Broken Access Control in Online Contact Widget <= 1.3.0 versions.","description":"Unauthenticated Broken Access Control in Online Contact Widget <= 1.3.0 versions.","indicators":{"cves":["CVE-2026-32472"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:52.817Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/online-contact-widget/vulnerability/wordpress-online-contact-widget-plugin-1-3-0-broken-access-control-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-32473","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-32473 — Unauthenticated Server Side Request Forgery (SSRF) in PDF Smart Viewer for Elementor <= 1.0.4 versio…","description":"Unauthenticated Server Side Request Forgery (SSRF) in PDF Smart Viewer for Elementor <= 1.0.4 versions.","indicators":{"cves":["CVE-2026-32473"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:52.953Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/pdf-smart-viewer-for-elementor/vulnerability/wordpress-pdf-smart-viewer-for-elementor-plugin-1-0-4-server-side-request-forgery-ssrf-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-32481","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-32481 — Unauthenticated Broken Authentication in Ezoic <= 2.22.11 versions.","description":"Unauthenticated Broken Authentication in Ezoic <= 2.22.11 versions.","indicators":{"cves":["CVE-2026-32481"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:53.210Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/ezoic-integration/vulnerability/wordpress-ezoic-plugin-2-22-11-broken-authentication-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-32547","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-32547 — Unauthenticated Cross Site Scripting (XSS) in BP Better Messages <= 2.15.22 versions.","description":"Unauthenticated Cross Site Scripting (XSS) in BP Better Messages <= 2.15.22 versions.","indicators":{"cves":["CVE-2026-32547"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:53.347Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/bp-better-messages/vulnerability/wordpress-bp-better-messages-plugin-2-15-22-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-32549","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-32549 — Unauthenticated Broken Access Control in ThumbPress < 6.5 versions.","description":"Unauthenticated Broken Access Control in ThumbPress < 6.5 versions.","indicators":{"cves":["CVE-2026-32549"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:53.487Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/image-sizes/vulnerability/wordpress-thumbpress-plugin-6-5-broken-access-control-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-32553","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-32553 — Unauthenticated Server Side Request Forgery (SSRF) in OttoKit <= 1.1.35 versions.","description":"Unauthenticated Server Side Request Forgery (SSRF) in OttoKit <= 1.1.35 versions.","indicators":{"cves":["CVE-2026-32553"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:53.623Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/suretriggers/vulnerability/wordpress-ottokit-plugin-1-1-35-server-side-request-forgery-ssrf-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-45733","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-45733 — Trilium Notes is a cross-platform, hierarchical note taking application focused on building large pe…","description":"Trilium Notes is a cross-platform, hierarchical note taking application focused on building large personal knowledge bases. Prior to 0.103.0, the #iconClass label value is returned raw by getNoteIcon() and inserted without HTML attribute encoding into class attributes in apps/client/src/widgets/quic…","indicators":{"cves":["CVE-2026-45733"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:54.270Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://github.com/TriliumNext/Trilium/commit/c06939448bcc2879fc3c4d328ff7dc63ed6b5009","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/TriliumNext/Trilium/releases/tag/v0.103.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/TriliumNext/Trilium/security/advisories/GHSA-h45q-4qc4-8hhg","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/TriliumNext/Trilium/security/advisories/GHSA-h45q-4qc4-8hhg","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-48798","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-48798 — SSH.NET is a Secure Shell (SSH) library for .NET. In 2025.1.0 and earlier, ScpClient.Download(string…","description":"SSH.NET is a Secure Shell (SSH) library for .NET. In 2025.1.0 and earlier, ScpClient.Download(string directoryName, DirectoryInfo directoryInfo) trusts file and directory names returned by a remote SCP server and combines them with the requested local directory without containment validation, allowi…","indicators":{"cves":["CVE-2026-48798"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:54.427Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://github.com/sshnet/SSH.NET/commit/600be0de543765995a189b5d7cd4efac5007f3ce","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/sshnet/SSH.NET/releases/tag/2026.0.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/sshnet/SSH.NET/security/advisories/GHSA-q939-rpr3-3284","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-50138","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-50138 — goshs is a SimpleHTTPServer written in Go. Prior to version 2.1.0, when `goshs` is launched with Web…","description":"goshs is a SimpleHTTPServer written in Go. Prior to version 2.1.0, when `goshs` is launched with WebDAV enabled (`-w`), the mode-restriction flags `--read-only`, `--upload-only`, and `--no-delete` are enforced only on the primary HTTP port. The WebDAV port is wired straight to `golang.org/x/net/webd…","indicators":{"cves":["CVE-2026-50138"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:54.580Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://github.com/goshs-labs/goshs/security/advisories/GHSA-3whc-qvhv-xqjp","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/goshs-labs/goshs/security/advisories/GHSA-3whc-qvhv-xqjp","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-50187","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-50187 — Oh My Zsh is a community-driven framework for managing Zsh configuration. Prior to 2026-05-28, the d…","description":"Oh My Zsh is a community-driven framework for managing Zsh configuration. Prior to 2026-05-28, the dotenv plugin in plugins/dotenv/dotenv.plugin.zsh passes ZSH_DOTENV_FILE to source after a directory change into a folder containing a .env file, allowing syntactically valid shell commands in the file…","indicators":{"cves":["CVE-2026-50187"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:54.870Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://github.com/ohmyzsh/ohmyzsh/commit/d170d18746bb06db7b2fc97b67e281597a3fc152","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ohmyzsh/ohmyzsh/pull/13778","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ohmyzsh/ohmyzsh/security/advisories/GHSA-3rgh-p3mg-rjqg","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-56684","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-56684 — Valkey is a distributed key-value database. Prior to 7.2.14, 8.0.10, 8.1.9, 9.0.5, and 9.1.1, Valkey…","description":"Valkey is a distributed key-value database. Prior to 7.2.14, 8.0.10, 8.1.9, 9.0.5, and 9.1.1, Valkey's tlsProcessPendingData function iterates pending_list while an authenticated client can trigger CLIENT KILL, causing connTLSClose to delete the iterator's cached next node and producing a use-after-…","indicators":{"cves":["CVE-2026-56684","CVE-2026-63639"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:55.463Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://github.com/valkey-io/valkey/commit/7cd5bcb7575d750ec2de618db80da58680a10fe3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/valkey-io/valkey/pull/4234","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/valkey-io/valkey/releases/tag/7.2.14","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/valkey-io/valkey/releases/tag/8.0.10","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/valkey-io/valkey/releases/tag/8.1.9","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/valkey-io/valkey/releases/tag/9.0.5","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/valkey-io/valkey/releases/tag/9.1.1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/valkey-io/valkey/security/advisories/GHSA-53mc-f3m3-99vh","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/valkey-io/valkey/commit/06bc7768fe609f2054e69ccedefe7628f5675da9","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/valkey-io/valkey/commit/509cb3c74e8cbc9c0498ebe8b6c93dcd605e7271","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/valkey-io/valkey/commit/98465eaffe3f95524a5046318bfbc4bdb9798291","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/valkey-io/valkey/commit/e95911d4d65be8789fa3705f44d7ed1e65378445","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/valkey-io/valkey/commit/f8d2027e8d4df790ac04974bf606408c8ea62778","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/valkey-io/valkey/pull/4073","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/valkey-io/valkey/security/advisories/GHSA-mvcj-73cw-22m4","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-59825","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-59825 — Mastodon is a free, open-source social network server based on ActivityPub. Prior to 4.4.19 and from…","description":"Mastodon is a free, open-source social network server based on ActivityPub. Prior to 4.4.19 and from 4.5.0 until 4.5.12, Mastodon's app/models/concerns/user/ldap_authenticable.rb mutates OpenSSL::SSL::SSLContext::DEFAULT_PARAMS when LDAP authentication uses LDAP_TLS_NO_VERIFY=true, disabling SSL and…","indicators":{"cves":["CVE-2026-59825"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:55.623Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://github.com/mastodon/mastodon/commit/2ccb6ef277e725d1932295690cf8ab9d3dc03149","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mastodon/mastodon/commit/5748d0b16ea09001e0933f76c7afe814e09652ef","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mastodon/mastodon/commit/761c61b42590a2fd91442fc15a0a7583e48bbea4","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mastodon/mastodon/pull/39571","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mastodon/mastodon/releases/tag/v4.4.19","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mastodon/mastodon/releases/tag/v4.5.12","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mastodon/mastodon/security/advisories/GHSA-3rhr-8phh-jm86","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-61407","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-61407 — Dell Watchdog Timer Driver versions prior to 2.0.0.1 contain an Exposed IOCTL with Insufficient Acce…","description":"Dell Watchdog Timer Driver versions prior to 2.0.0.1 contain an Exposed IOCTL with Insufficient Access Control vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Privilege Escalation.","indicators":{"cves":["CVE-2026-61407"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:56.310Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://www.dell.com/support/kbdoc/en-us/000501078/dsa-2026-248-security-update-for-dell-watchdog-timer-driver-for-an-exposed-ioctl-with-insufficient-access-control-vulnerability","label":"security_alert@emc.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66046","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-66046 — Expat through 2.8.3 contains a denial of service vulnerability caused by quadratic algorithmic compl…","description":"Expat through 2.8.3 contains a denial of service vulnerability caused by quadratic algorithmic complexity in the storeAtts() function in xmlparse.c, where processing N specified attributes with non-normalized values triggers an O(N^2) linear scan of elementType->defaultAtts to determine CDATA status…","indicators":{"cves":["CVE-2026-66046"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:57.000Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://github.com/libexpat/libexpat/pull/1321","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/expat-denial-of-service-via-storeatts-quadratic-complexity","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66620","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-66620 — Editor PHP Object Injection in OptionTree <= 2.7.3 versions.","description":"Editor PHP Object Injection in OptionTree <= 2.7.3 versions.","indicators":{"cves":["CVE-2026-66620"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:57.153Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/option-tree/vulnerability/wordpress-optiontree-plugin-2-7-3-php-object-injection-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66621","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-66621 — Unauthenticated Cross Site Scripting (XSS) in Ultimate Dashboard <= 3.11.2 versions.","description":"Unauthenticated Cross Site Scripting (XSS) in Ultimate Dashboard <= 3.11.2 versions.","indicators":{"cves":["CVE-2026-66621"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:57.290Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/ultimate-dashboard/vulnerability/wordpress-ultimate-dashboard-plugin-3-11-2-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66622","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-66622 — Unauthenticated SQL Injection in Depicter Slider <= 4.8.0 versions.","description":"Unauthenticated SQL Injection in Depicter Slider <= 4.8.0 versions.","indicators":{"cves":["CVE-2026-66622"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:57.430Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/depicter/vulnerability/wordpress-depicter-slider-plugin-4-8-0-sql-injection-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66629","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-66629 — Unauthenticated Cross Site Scripting (XSS) in Kirki <= 6.2.3 versions.","description":"Unauthenticated Cross Site Scripting (XSS) in Kirki <= 6.2.3 versions.","indicators":{"cves":["CVE-2026-66629"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:57.700Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/kirki/vulnerability/wordpress-kirki-plugin-6-2-3-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66633","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-66633 — Unauthenticated Cross Site Scripting (XSS) in Fluent Forms Pro Add On Pack < 6.2.12 versions.","description":"Unauthenticated Cross Site Scripting (XSS) in Fluent Forms Pro Add On Pack < 6.2.12 versions.","indicators":{"cves":["CVE-2026-66633"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:57.823Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/fluentformpro/vulnerability/wordpress-fluent-forms-pro-add-on-pack-plugin-6-2-12-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66635","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-66635 — Unauthenticated Cross Site Request Forgery (CSRF) in Slider by 10Web <= 1.2.62 versions.","description":"Unauthenticated Cross Site Request Forgery (CSRF) in Slider by 10Web <= 1.2.62 versions.","indicators":{"cves":["CVE-2026-66635"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:58.087Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/slider-wd/vulnerability/wordpress-slider-by-10web-plugin-1-2-62-csrf-to-arbitrary-file-deletion-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66667","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-66667 — Unauthenticated Cross Site Scripting (XSS) in Templately <= 3.7.1 versions.","description":"Unauthenticated Cross Site Scripting (XSS) in Templately <= 3.7.1 versions.","indicators":{"cves":["CVE-2026-66667"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:59.693Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/templately/vulnerability/wordpress-templately-plugin-3-7-1-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66793","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-66793 — A flaw was found in the governance-policy-addon-controller component of Red Hat Advanced Cluster Man…","description":"A flaw was found in the governance-policy-addon-controller component of Red Hat Advanced Cluster Management for Kubernetes. A user with permissions to annotate the namespaced ManagedClusterAddOn resource can override the governance-policy container image. This allows an attacker to run a controlled…","indicators":{"cves":["CVE-2026-66793"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:00.140Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-66793","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2507538","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-68567","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-68567 — Unauthenticated Cross Site Scripting (XSS) in Convert Pro <= 1.0.1 versions.","description":"Unauthenticated Cross Site Scripting (XSS) in Convert Pro <= 1.0.1 versions.","indicators":{"cves":["CVE-2026-68567"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:00.527Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/convertpro/vulnerability/wordpress-convert-pro-plugin-1-0-1-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-69189","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-69189 — Hoppscotch is an open source API development ecosystem. Prior to 2026.6.0, the team, teamMembers.use…","description":"Hoppscotch is an open source API development ecosystem. Prior to 2026.6.0, the team, teamMembers.user, RESTHistory, GQLHistory, currentRESTSession, currentGQLSession, environments, globalEnvironments, and settings GraphQL paths expose another workspace member's private User data, while toggleHistory…","indicators":{"cves":["CVE-2026-69189"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:00.930Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://github.com/hoppscotch/hoppscotch/commit/9cc980bc4feb1f8e139b23b9de0beed0db72d4b7","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/hoppscotch/hoppscotch/pull/6409","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/hoppscotch/hoppscotch/releases/tag/2026.6.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/hoppscotch/hoppscotch/security/advisories/GHSA-p25p-g9jp-7q46","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/hoppscotch/hoppscotch/security/advisories/GHSA-p25p-g9jp-7q46","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-73181","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73181 — Unauthenticated Arbitrary File Download in Extra Product Options & Add-Ons for WooCommerce < 7.6 ver…","description":"Unauthenticated Arbitrary File Download in Extra Product Options & Add-Ons for WooCommerce < 7.6 versions.","indicators":{"cves":["CVE-2026-73181"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:01.790Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/woocommerce-tm-extra-product-options/vulnerability/wordpress-extra-product-options-add-ons-for-woocommerce-plugin-7-6-arbitrary-file-download-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73190","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73190 — Unauthenticated Cross Site Scripting (XSS) in WPDM – Premium Packages <= 7.0.5 versions.","description":"Unauthenticated Cross Site Scripting (XSS) in WPDM – Premium Packages <= 7.0.5 versions.","indicators":{"cves":["CVE-2026-73190"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:02.203Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/wpdm-premium-packages/vulnerability/wordpress-wpdm-premium-packages-plugin-7-0-5-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73338","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73338 — Unauthenticated Cross Site Scripting (XSS) in Autopay <= 5.0.0 versions.","description":"Unauthenticated Cross Site Scripting (XSS) in Autopay <= 5.0.0 versions.","indicators":{"cves":["CVE-2026-73338"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:02.340Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/platnosci-online-blue-media/vulnerability/wordpress-autopay-plugin-5-0-0-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73342","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73342 — Unauthenticated Cross Site Scripting (XSS) in WP Multilang <= 2.4.31 versions.","description":"Unauthenticated Cross Site Scripting (XSS) in WP Multilang <= 2.4.31 versions.","indicators":{"cves":["CVE-2026-73342"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:02.790Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/wp-multilang/vulnerability/wordpress-wp-multilang-plugin-2-4-31-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73345","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73345 — Customer SQL Injection in License Manager for WooCommerce <= 3.0.18 versions.","description":"Customer SQL Injection in License Manager for WooCommerce <= 3.0.18 versions.","indicators":{"cves":["CVE-2026-73345"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:03.097Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/license-manager-for-woocommerce/vulnerability/wordpress-license-manager-for-woocommerce-plugin-3-0-18-sql-injection-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73350","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73350 — Unauthenticated Broken Authentication in SupportCandy <= 3.5.1 versions.","description":"Unauthenticated Broken Authentication in SupportCandy <= 3.5.1 versions.","indicators":{"cves":["CVE-2026-73350"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:03.377Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/supportcandy/vulnerability/wordpress-supportcandy-plugin-3-5-1-broken-authentication-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73351","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73351 — Unauthenticated Cross Site Scripting (XSS) in WordPress Social Login and Register <= 7.8.1 versions.","description":"Unauthenticated Cross Site Scripting (XSS) in WordPress Social Login and Register <= 7.8.1 versions.","indicators":{"cves":["CVE-2026-73351"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:03.503Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/miniorange-login-openid/vulnerability/wordpress-wordpress-social-login-and-register-plugin-7-8-1-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73356","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73356 — Unauthenticated Arbitrary Content Deletion in Breeze <= 2.5.12 versions.","description":"Unauthenticated Arbitrary Content Deletion in Breeze <= 2.5.12 versions.","indicators":{"cves":["CVE-2026-73356"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:03.940Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/breeze/vulnerability/wordpress-breeze-plugin-2-5-12-arbitrary-content-deletion-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73358","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73358 — Unauthenticated Cross Site Scripting (XSS) in Affiliates Manager <= 2.9.53 versions.","description":"Unauthenticated Cross Site Scripting (XSS) in Affiliates Manager <= 2.9.53 versions.","indicators":{"cves":["CVE-2026-73358"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:04.083Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/affiliates-manager/vulnerability/wordpress-affiliates-manager-plugin-2-9-53-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73360","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73360 — Unauthenticated Cross Site Scripting (XSS) in Chaty Pro <= 3.5.8 versions.","description":"Unauthenticated Cross Site Scripting (XSS) in Chaty Pro <= 3.5.8 versions.","indicators":{"cves":["CVE-2026-73360"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:04.360Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/chaty-pro/vulnerability/wordpress-chaty-pro-plugin-3-5-8-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73361","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73361 — Unauthenticated Cross Site Scripting (XSS) in Recipe Card Blocks for Gutenberg & Elementor <= 3.4.18…","description":"Unauthenticated Cross Site Scripting (XSS) in Recipe Card Blocks for Gutenberg & Elementor <= 3.4.18 versions.","indicators":{"cves":["CVE-2026-73361"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:04.503Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/recipe-card-blocks-by-wpzoom/vulnerability/wordpress-recipe-card-blocks-for-gutenberg-elementor-plugin-3-4-18-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73362","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73362 — Unauthenticated Cross Site Scripting (XSS) in URL Shortify <= 2.5.0 versions.","description":"Unauthenticated Cross Site Scripting (XSS) in URL Shortify <= 2.5.0 versions.","indicators":{"cves":["CVE-2026-73362"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:04.670Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/url-shortify/vulnerability/wordpress-url-shortify-plugin-2-5-0-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73367","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73367 — Unauthenticated Remote File Inclusion in Easy Google Maps < 1.14.2 versions.","description":"Unauthenticated Remote File Inclusion in Easy Google Maps < 1.14.2 versions.","indicators":{"cves":["CVE-2026-73367"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:05.123Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/google-maps-easy/vulnerability/wordpress-easy-google-maps-plugin-1-14-2-remote-file-inclusion-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73375","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73375 — Unauthenticated Cross Site Scripting (XSS) in Ultimate Maps by Supsystic < 1.5.0 versions.","description":"Unauthenticated Cross Site Scripting (XSS) in Ultimate Maps by Supsystic < 1.5.0 versions.","indicators":{"cves":["CVE-2026-73375"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:05.270Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/ultimate-maps-by-supsystic/vulnerability/wordpress-ultimate-maps-by-supsystic-plugin-1-5-0-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73377","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73377 — Unauthenticated Broken Access Control in Ultimate Maps by Supsystic < 1.5.0 versions.","description":"Unauthenticated Broken Access Control in Ultimate Maps by Supsystic < 1.5.0 versions.","indicators":{"cves":["CVE-2026-73377"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:05.550Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/ultimate-maps-by-supsystic/vulnerability/wordpress-ultimate-maps-by-supsystic-plugin-1-5-0-broken-access-control-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73378","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73378 — Unauthenticated Cross Site Scripting (XSS) in Contact Form by Supsystic < 1.10.0 versions.","description":"Unauthenticated Cross Site Scripting (XSS) in Contact Form by Supsystic < 1.10.0 versions.","indicators":{"cves":["CVE-2026-73378"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:05.713Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/contact-form-by-supsystic/vulnerability/wordpress-contact-form-by-supsystic-plugin-1-10-0-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73382","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73382 — Unauthenticated Cross Site Scripting (XSS) in Site Reviews <= 8.2.0 versions.","description":"Unauthenticated Cross Site Scripting (XSS) in Site Reviews <= 8.2.0 versions.","indicators":{"cves":["CVE-2026-73382"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:06.280Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/site-reviews/vulnerability/wordpress-site-reviews-plugin-8-2-0-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73393","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73393 — Unauthenticated Cross Site Scripting (XSS) in Subscribe2 <= 10.46 versions.","description":"Unauthenticated Cross Site Scripting (XSS) in Subscribe2 <= 10.46 versions.","indicators":{"cves":["CVE-2026-73393"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:06.687Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/subscribe2/vulnerability/wordpress-subscribe2-plugin-10-46-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73396","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73396 — Subscriber Broken Authentication in MWB HubSpot for WooCommerce <= 1.6.7 versions.","description":"Subscriber Broken Authentication in MWB HubSpot for WooCommerce <= 1.6.7 versions.","indicators":{"cves":["CVE-2026-73396"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:06.963Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/makewebbetter-hubspot-for-woocommerce/vulnerability/wordpress-mwb-hubspot-for-woocommerce-plugin-1-6-7-broken-authentication-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73400","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73400 — Unauthenticated Local File Inclusion in Restaurant Menu by MotoPress <= 2.4.11 versions.","description":"Unauthenticated Local File Inclusion in Restaurant Menu by MotoPress <= 2.4.11 versions.","indicators":{"cves":["CVE-2026-73400"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:07.530Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/mp-restaurant-menu/vulnerability/wordpress-restaurant-menu-by-motopress-plugin-2-4-11-local-file-inclusion-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73994","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73994 — Unauthenticated Broken Access Control in Charitable <= 1.8.11.3 versions.","description":"Unauthenticated Broken Access Control in Charitable <= 1.8.11.3 versions.","indicators":{"cves":["CVE-2026-73994"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:08.320Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/charitable/vulnerability/wordpress-charitable-plugin-1-8-11-3-broken-access-control-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73997","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73997 — Unauthenticated Denial of Service Attack in Starter Templates by Kadence WP <= 2.3.3 versions.","description":"Unauthenticated Denial of Service Attack in Starter Templates by Kadence WP <= 2.3.3 versions.","indicators":{"cves":["CVE-2026-73997"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:08.747Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/kadence-starter-templates/vulnerability/wordpress-starter-templates-by-kadence-wp-plugin-2-3-3-denial-of-service-attack-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74012","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74012 — Deserialization of Untrusted Data vulnerability in TaxoPress allows Object Injection. This issue aff…","description":"Deserialization of Untrusted Data vulnerability in TaxoPress allows Object Injection.\n\nThis issue affects TaxoPress: from n/a through 3.51.0.","indicators":{"cves":["CVE-2026-74012"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:09.700Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/simple-tags/vulnerability/wordpress-taxopress-plugin-3-51-0-php-object-injection-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75898","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75898 — RAGFlow before 0.26.3 contains a server-side request forgery vulnerability in the agent workflow \"In…","description":"RAGFlow before 0.26.3 contains a server-side request forgery vulnerability in the agent workflow \"Invoke\" component (agent/component/invoke.py). The component builds an outbound request URL from canvas configuration and runtime template variables and passes it to requests.get, requests.post, or requ…","indicators":{"cves":["CVE-2026-75898"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:15.367Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://github.com/infiniflow/ragflow/blob/v0.26.2/agent/component/invoke.py#L168-L172","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/infiniflow/ragflow/commit/c4fe68eaa0bf1d6442d2cd6ac2e35bc9ccbed34f","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/infiniflow/ragflow/commit/e16d1a0150e1ca069beb538ae3dcd03f59edc5fa","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/infiniflow/ragflow/issues/15425","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/infiniflow/ragflow/issues/18280","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/infiniflow/ragflow/releases/tag/v0.26.3","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/ragflow-server-side-request-forgery-via-agent-invoke-component","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19500","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19500 — The Entries component in Brainstorm Force SureForms version, less than 2.12.3, does not enforce adeq…","description":"The Entries component in Brainstorm Force SureForms version, less than 2.12.3, does not enforce adequate limits on user-controlled form fields or submitted content during processing and rendering, which allows a remote attacker to exhaust server resources, prevent administrators from accessing the E…","indicators":{"cves":["CVE-2026-19500"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:17:02.647Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://github.com/typedefabcd1234ntd/CVE-2026-19500-poc","label":"cret@cert.org","domainType":"primary"},{"url":"https://sureforms.com/","label":"cret@cert.org","domainType":"other"},{"url":"https://github.com/typedefabcd1234ntd/CVE-2026-19500-poc","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-45115","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-45115 — MyBB is free and open source forum software. Prior to 1.8.40, the Buddy/Ignore component does not sa…","description":"MyBB is free and open source forum software. Prior to 1.8.40, the Buddy/Ignore component does not sanitize usernames correctly, allowing attackers to perform JavaScript code injection through a specially crafted username. The User CP Buddy/Ignore list and the Select Buddies list in Private Messages…","indicators":{"cves":["CVE-2026-45115"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:17:06.180Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://github.com/mybb/mybb/releases/tag/mybb_1840","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mybb/mybb/security/advisories/GHSA-p766-qqxv-rfc2","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://mybb.com/versions/1.8.40","label":"security-advisories@github.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-45116","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-45116 — MyBB is free and open source forum software. Prior to 1.8.40, the user datahandler does not properly…","description":"MyBB is free and open source forum software. Prior to 1.8.40, the user datahandler does not properly validate checkbox and multiselect profile field types, resulting in stored JavaScript code injection. UserDataHandler::verify_profile_fields() only performs the specialized validation when is_array($…","indicators":{"cves":["CVE-2026-45116"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:17:06.347Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://github.com/mybb/mybb/commit/c32f0c22baab704a68b8d58fcdd2f26fadbbe19b","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mybb/mybb/releases/tag/mybb_1840","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mybb/mybb/security/advisories/GHSA-4p6g-p3qh-559v","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://mybb.com/versions/1.8.40","label":"security-advisories@github.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-49221","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-49221 — Vvveb is a powerful and easy to use CMS with page builder to build websites, blogs or ecommerce stor…","description":"Vvveb is a powerful and easy to use CMS with page builder to build websites, blogs or ecommerce stores. Prior to 1.0.8.4, Vvveb backend digital asset operations allow a low-privileged Vendor to access digital assets linked to another Vendor's products. The admin/controller/product/digital-asset.php…","indicators":{"cves":["CVE-2026-49221","CVE-2026-49226","CVE-2026-49227","CVE-2026-49222","CVE-2026-49223","CVE-2026-49224","CVE-2026-49225","CVE-2026-49228"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:17:13.357Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/givanz/Vvveb/commit/0463ae60cda5085238b380bf53780ccf4be5dd50","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/givanz/Vvveb/releases/tag/1.0.8.4","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/givanz/Vvveb/security/advisories/GHSA-chpc-xj4m-9g3j","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/givanz/Vvveb/commit/0ce6ba6baf5901aaffa993857ee71c43481a5353","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/givanz/Vvveb/security/advisories/GHSA-xxx7-8f3v-g9p6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/givanz/Vvveb/commit/70ec3c69f56d56938d96f9bd2c71daf2a7cd787f","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/givanz/Vvveb/security/advisories/GHSA-26pw-fgm8-2hcf","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/givanz/Vvveb/commit/1f2b117c1460818c9306a78f22c12f0b713886df","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/givanz/Vvveb/security/advisories/GHSA-cjhq-xqq3-6xv8","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/givanz/Vvveb/commit/3d5c15dcf4b50e4580161f05cb9e643d834d044a","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/givanz/Vvveb/security/advisories/GHSA-cj37-c5m2-3jmc","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/givanz/Vvveb/commit/cbedd3754bccf8b7584f02ab301291f12e888b7e","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/givanz/Vvveb/security/advisories/GHSA-88w5-4x93-48rf","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/givanz/Vvveb/commit/e7413a29dcf1ccd04bbc44ebe26f20979223de14","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/givanz/Vvveb/security/advisories/GHSA-gmrp-ccwf-xggq","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/givanz/Vvveb/commit/6db5257ce9fec0d570da63a06f54b98e857603cc","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/givanz/Vvveb/security/advisories/GHSA-j5jv-wvpg-gfh9","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-55839","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-55839 — Kestra is an open-source, event-driven orchestration platform. Prior to 1.3.24, Kestra's custom Mark…","description":"Kestra is an open-source, event-driven orchestration platform. Prior to 1.3.24, Kestra's custom Markdown parser in ui/src/utils/markdown_plugins/link.ts allows a user with permission to create or update a Flow description to inject JavaScript event-handler attributes through the custom [[link]] synt…","indicators":{"cves":["CVE-2026-55839"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:17:53.710Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/kestra-io/kestra/commit/6c8e6d099ed172cbb6b003b7fb30b7bb1f8f710e","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/kestra-io/kestra/pull/16835","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/kestra-io/kestra/releases/tag/v1.3.24","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/kestra-io/kestra/security/advisories/GHSA-34pm-923j-7wf8","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-71365","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-71365 — A server-side request forgery (SSRF) vulnerability was found in AWX's webhook status callback mechan…","description":"A server-side request forgery (SSRF) vulnerability was found in AWX's webhook status callback mechanism. When processing GitHub pull request webhooks, AWX extracts the status callback URL (pull_request.statuses_url) from the incoming webhook payload without validating the target host against the exp…","indicators":{"cves":["CVE-2026-71365"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:18:16.157Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-71365","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2511901","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75856","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75856 — CodeWhale before 0.8.64 contains a server-side request forgery bypass vulnerability in DNS pinning l…","description":"CodeWhale before 0.8.64 contains a server-side request forgery bypass vulnerability in DNS pinning logic that fails to prevent time-of-check-time-of-use attacks. Attackers can manipulate DNS responses to fail initial resolution checks and succeed on secondary requests, allowing requests to internal…","indicators":{"cves":["CVE-2026-75856"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:18:21.133Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/Hmbown/CodeWhale/commit/26de44a8bd5051f8f944ea60b2c37ae1d2b7d25e","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/Hmbown/CodeWhale/security/advisories/GHSA-6v2g-fpxh-pmmh","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/codewhale-before-ssrf-bypass-via-dns-pinning-toctou","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/Hmbown/CodeWhale/security/advisories/GHSA-6v2g-fpxh-pmmh","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75857","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75857 — CodeWhale versions >= 0.8.41 and < 0.8.64 contain a vulnerability in the exec_shell_interact (alias…","description":"CodeWhale versions >= 0.8.41 and < 0.8.64 contain a vulnerability in the exec_shell_interact (alias exec_interact) tool, whose approval_requirement returns ApprovalRequirement::Auto. This overrides the default Required approval for code-executing tools, so LLM-controlled stdin is written into an alr…","indicators":{"cves":["CVE-2026-75857"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:18:21.520Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/Hmbown/CodeWhale/commit/57f3c89471e27ac4032d9791f6885e5d4408c381","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/Hmbown/CodeWhale/security/advisories/GHSA-g29h-pfmp-qp9r","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/codewhale-before-privilege-escalation-via-exec-shell-interact","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/Hmbown/CodeWhale/security/advisories/GHSA-g29h-pfmp-qp9r","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75858","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75858 — CodeWhale (packages codewhale / codewhale-tui) versions >= 0.8.41 and < 0.8.64 contain a remote code…","description":"CodeWhale (packages codewhale / codewhale-tui) versions >= 0.8.41 and < 0.8.64 contain a remote code execution vulnerability in the rlm_eval tool. The tool's approval_requirement() returns ApprovalRequirement::Auto, which the engine treats as 'never prompt,' causing arbitrary model-supplied Python c…","indicators":{"cves":["CVE-2026-75858"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:18:21.653Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/Hmbown/CodeWhale/commit/57f3c89471e27ac4032d9791f6885e5d4408c381","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/Hmbown/CodeWhale/security/advisories/GHSA-wrj3-vj8c-784f","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/codewhale-rlm-eval-before-remote-code-execution","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/Hmbown/CodeWhale/security/advisories/GHSA-wrj3-vj8c-784f","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75859","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75859 — CodeWhale versions before 0.8.64 fail to validate file paths in the project config instructions fiel…","description":"CodeWhale versions before 0.8.64 fail to validate file paths in the project config instructions field, allowing attackers to read arbitrary files on the victim's system. A malicious .codewhale/config.toml file in a cloned repository can specify paths outside the workspace that are read and injected…","indicators":{"cves":["CVE-2026-75859"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:18:21.787Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/Hmbown/CodeWhale/commit/43563356b98c6b993085554da82e77370160a31c","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/Hmbown/CodeWhale/security/advisories/GHSA-62f5-cp2p-vq95","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/codewhale-before-arbitrary-file-read-via-instructions","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75911","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75911 — CodeWhale versions before 0.8.64 fail to properly validate the allow_shell configuration parameter f…","description":"CodeWhale versions before 0.8.64 fail to properly validate the allow_shell configuration parameter from project config files, allowing attackers to enable arbitrary shell command execution by committing a malicious .codewhale/config.toml file to a repository. When a user clones and opens the reposit…","indicators":{"cves":["CVE-2026-75911"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:18:23.057Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/Hmbown/CodeWhale/commit/43563356b98c6b993085554da82e77370160a31c","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/Hmbown/CodeWhale/security/advisories/GHSA-gx45-xrj5-g6c4","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/codewhale-before-remote-code-execution-via-allow-shell","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/Hmbown/CodeWhale/security/advisories/GHSA-gx45-xrj5-g6c4","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75912","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75912 — CodeWhale versions before 0.8.64 contain an argument injection vulnerability in the git_blame tool t…","description":"CodeWhale versions before 0.8.64 contain an argument injection vulnerability in the git_blame tool that allows attackers to read arbitrary files by injecting git options into the unvalidated rev parameter. Attackers can supply rev values like --contents=/path/to/file to exfiltrate sensitive files su…","indicators":{"cves":["CVE-2026-75912"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:18:23.220Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/Hmbown/CodeWhale/commit/9a34b5034d29f05d1f28fa61b04719ca6a741020","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/Hmbown/CodeWhale/security/advisories/GHSA-c6mw-8xh8-gpq6","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/codewhale-before-argument-injection-via-git-blame","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/Hmbown/CodeWhale/security/advisories/GHSA-c6mw-8xh8-gpq6","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75914","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75914 — CodeWhale versions before 0.8.64 contain a path traversal vulnerability in the image_analyze tool th…","description":"CodeWhale versions before 0.8.64 contain a path traversal vulnerability in the image_analyze tool that fails to canonicalize symlinks before reading files. Attackers can create workspace symlinks pointing to external files with image extensions to leak file bytes to the vision endpoint without user…","indicators":{"cves":["CVE-2026-75914"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:18:23.840Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/Hmbown/CodeWhale/commit/26de44a8bd5051f8f944ea60b2c37ae1d2b7d25e","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/Hmbown/CodeWhale/security/advisories/GHSA-w7wx-5q49-r59w","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/codewhale-before-path-traversal-via-image-analyze-symlink","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75915","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75915 — CodeWhale versions before 0.8.64 contain an environment variable exposure vulnerability in the js_ex…","description":"CodeWhale versions before 0.8.64 contain an environment variable exposure vulnerability in the js_execution tool that fails to scrub parent process environment variables before spawning Node.js. Attackers can craft malicious JavaScript code executed by the tool to read process.env and leak API keys,…","indicators":{"cves":["CVE-2026-75915"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:18:23.970Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/Hmbown/CodeWhale/commit/26de44a8bd5051f8f944ea60b2c37ae1d2b7d25e","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/Hmbown/CodeWhale/security/advisories/GHSA-h539-c7r8-3xq4","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/codewhale-before-environment-variable-leak-via-js-execution","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/Hmbown/CodeWhale/security/advisories/GHSA-h539-c7r8-3xq4","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75926","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75926 — Hugo 0.161.0 placed the Node asset pipelines behind the Node.js permission model so that code runnin…","description":"Hugo 0.161.0 placed the Node asset pipelines behind the Node.js permission model so that code running through PostCSS, Babel, or TailwindCSS could not reach the file system outside the project directory. Hugo 0.162.0 added tailwindcss to the AllowChildProcess default in config/security/securityConfi…","indicators":{"cves":["CVE-2026-75926"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:18:24.443Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/gohugoio/hugo","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/gohugoio/hugo/blob/v0.164.0/common/hexec/exec.go#L292-L295","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/gohugoio/hugo/blob/v0.164.0/config/security/securityConfig.go#L72-L79","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/gohugoio/hugo/commit/8a55df7af2e6da31297245cc54fa2e3b521d93e8","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/gohugoio/hugo/issues/15178","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/hugo-to-x-node-permission-model-bypass-via-default-tailwindcss-child-process-grant","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-61574","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-61574 — authentik is an open-source identity provider. Prior to 2026.2.6 and 2026.5.5, the Remote Access Con…","description":"authentik is an open-source identity provider. Prior to 2026.2.6 and 2026.5.5, the Remote Access Control endpoint list returns every configured endpoint to any authenticated user regardless of which applications the user may access, and the response includes connection settings that can contain stor…","indicators":{"cves":["CVE-2026-61574"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T17:16:59.813Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/goauthentik/authentik/releases/tag/version/2026.2.6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/goauthentik/authentik/releases/tag/version/2026.5.5","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/goauthentik/authentik/security/advisories/GHSA-rv9x-92g6-9cpf","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-66782","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-66782 — A flaw was found in the Submariner operator. This vulnerability allows for the exposure of a long-li…","description":"A flaw was found in the Submariner operator. This vulnerability allows for the exposure of a long-lived broker service account (SA) bearer token within the Submariner Custom Resource (CR) specification. An attacker with access to the cluster's etcd database or through `kubectl get` commands could ob…","indicators":{"cves":["CVE-2026-66782"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T17:17:00.710Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-66782","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2507527","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66783","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-66783 — A flaw was found in the `submariner-operator` component of Red Hat Advanced Cluster Management for K…","description":"A flaw was found in the `submariner-operator` component of Red Hat Advanced Cluster Management for Kubernetes. This vulnerability allows a cluster administrator, or any user with permissions to modify the Submariner Custom Resource (CR), to specify an unvalidated image path. This lack of validation…","indicators":{"cves":["CVE-2026-66783"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T17:17:00.840Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-66783","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2507528","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70415","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70415 — Dell PowerStore SDNAS contains a Buffer Copy without Checking Size of Input vulnerability in the NFS…","description":"Dell PowerStore SDNAS contains a Buffer Copy without Checking Size of Input vulnerability in the NFS/RPC. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Command execution and Denial of service.","indicators":{"cves":["CVE-2026-70415"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T17:17:01.973Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://www.dell.com/support/kbdoc/en-us/000497829/dsa-2026-330-dell-powerstore-t-security-update-for-multiple-vulnerabilities","label":"security_alert@emc.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75897","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75897 — Improper input validation in the capabilities route handler in OpenSearch Dashboards - the size of t…","description":"Improper input validation in the capabilities route handler in OpenSearch Dashboards - the size of the request payload is not bounded - might allow remote attackers to cause a denial of service via a crafted HTTP request.","indicators":{"cves":["CVE-2026-75897"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T17:17:03.310Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://aws.amazon.com/security/security-bulletins/2026-082-aws/","label":"ff89ba41-3aa1-4d27-914a-91399e9639e5","domainType":"other"},{"url":"https://opensearch.org/downloads/","label":"ff89ba41-3aa1-4d27-914a-91399e9639e5","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75924","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75924 — A flaw was found in managed-serviceaccount. A compromised addon-manager pod, due to its ClusterRole…","description":"A flaw was found in managed-serviceaccount. A compromised addon-manager pod, due to its ClusterRole granting excessive permissions, can read any secret across all namespaces. Additionally, it can approve arbitrary Certificate Signing Requests (CSRs), which could lead to information disclosure and pr…","indicators":{"cves":["CVE-2026-75924"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T17:17:03.457Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-75924","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2515720","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-32657","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-32657 — Dell AppSync Version 4.6.0.0, Dell Metro Node Version 8.0.0, Dell UCC Edge Version 3.0.1, Dell VxRai…","description":"Dell AppSync Version 4.6.0.0, Dell Metro Node Version 8.0.0, Dell UCC Edge Version 3.0.1, Dell VxRail Version 8.0.322, Dell PowerMax Version 10.3.0, Dell Unity Version 5.4, Dell PowerFlex Manager Version 4.5.4, Dell PowerFlex Intelligent Catalog Versions 46.377.00 and 46.382.00 and Dell PowerFlex Ra…","indicators":{"cves":["CVE-2026-32657"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T18:17:28.573Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://www.dell.com/support/kbdoc/en-us/000497857/dsa-2026-220-security-update-for-dell-product-vulnerability","label":"security_alert@emc.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-44472","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-44472 — Saleor is an e-commerce platform. From 2.10.0rc1 until 3.21.67, 3.22.63, and 3.23.22, the account ac…","description":"Saleor is an e-commerce platform. From 2.10.0rc1 until 3.21.67, 3.22.63, and 3.23.22, the account activation flow treats email verification as sufficient proof of account ownership and automatically associates anonymous commerce data with the newly activated account. An attacker can use accountRegis…","indicators":{"cves":["CVE-2026-44472"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T18:17:33.573Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/saleor/saleor/commit/299cdfb1a5737108b78b5c2c0d29b94f3b7331a2","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/saleor/saleor/commit/42516727823cb74cb6b875070956debecf9ffdb8","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/saleor/saleor/commit/5110542c164991384fa3c4f01983e8c76823ce0f","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/saleor/saleor/commit/dc63e422afc9f6ce115d75f045886b01b4f13e2b","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/saleor/saleor/releases/tag/3.21.67","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/saleor/saleor/releases/tag/3.22.63","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/saleor/saleor/releases/tag/3.23.22","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/saleor/saleor/security/advisories/GHSA-6whj-8p3f-2xqp","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-48508","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-48508 — Lemur manages TLS certificate creation. Prior to 1.9.1, StrictRolePermission and AuthorityCreatorPer…","description":"Lemur manages TLS certificate creation. Prior to 1.9.1, StrictRolePermission and AuthorityCreatorPermission in lemur/auth/permissions.py call flask_principal.Permission.__init__() with zero Need objects when ADMIN_ONLY_AUTHORITY_CREATION and LEMUR_STRICT_ROLE_ENFORCEMENT are unset because both flags…","indicators":{"cves":["CVE-2026-48508"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T18:17:41.073Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/Netflix/lemur/commit/e6a41e2c1b2028840d19039b06895524a19ad36f","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Netflix/lemur/releases/tag/v1.9.1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Netflix/lemur/security/advisories/GHSA-qcqw-jwxc-2hqg","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-50143","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-50143 — The Apify MCP server enables AI agents to extract data from websites using ready-made scrapers, craw…","description":"The Apify MCP server enables AI agents to extract data from websites using ready-made scrapers, crawlers, and automation tools available on the Apify Store. Prior to 0.10.11, getActorMCPServerURL in src/mcp/actors.ts concatenates the trusted Actor standby URL with the attacker-controlled webServerMc…","indicators":{"cves":["CVE-2026-50143"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T18:17:53.227Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/apify/apify-mcp-server/commit/ef686d77da3d3c86c30b2ae24218d756aa38e09c","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/apify/apify-mcp-server/pull/927","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/apify/apify-mcp-server/releases/tag/v0.10.11","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/apify/apify-mcp-server/security/advisories/GHSA-6gr2-qh89-hxwm","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/apify/apify-mcp-server/security/advisories/GHSA-6gr2-qh89-hxwm","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-54552","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-54552 — sh provides Python process launching. Prior to 2.2.4, the _uid option in sh.py performs an incomplet…","description":"sh provides Python process launching. Prior to 2.2.4, the _uid option in sh.py performs an incomplete privilege drop on Linux and Unix-like systems. When sh runs from an elevated process and launches a command with _uid set to an unprivileged user, the child changes its UID but can retain the parent…","indicators":{"cves":["CVE-2026-54552"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T18:18:23.147Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/amoffat/sh/commit/3d855daba91f87a089b490c0d1cf1df3faace2f1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/amoffat/sh/pull/776","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/amoffat/sh/releases/tag/2.2.4","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/amoffat/sh/security/advisories/GHSA-q38v-wp89-2w55","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-67262","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-67262 — Dell PowerStore contains a Missing Authorization vulnerability. An attacker with access to a mapped…","description":"Dell PowerStore contains a Missing Authorization vulnerability. An attacker with access to a mapped host could exploit this vulnerability to read from or write to LUNs that the host is not authorized to access, bypassing per-initiator LUN access controls and leading to protection mechanism bypass.","indicators":{"cves":["CVE-2026-67262"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T18:19:24.927Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://www.dell.com/support/kbdoc/en-us/000497829/dsa-2026-330-dell-powerstore-t-security-update-for-multiple-vulnerabilities","label":"security_alert@emc.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-67920","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-67920 — An issue in Halo 2.25.4 allows a remote attacker to execute arbitrary code via the run.halo.app.migr…","description":"An issue in Halo 2.25.4 allows a remote attacker to execute arbitrary code via the run.halo.app.migration.impl.MigrationServiceImpl.restoreWorkdir(), and org.springframework.util.FileSystemUtils.copyRecursively() components","indicators":{"cves":["CVE-2026-67920"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T18:19:25.360Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://gist.github.com/unpredictable21/f05d4b57867a2e83a5f991ff542215b2","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/halo-dev/halo","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/halo-dev/halo/pull/4206","label":"cve@mitre.org","domainType":"primary"},{"url":"https://gist.github.com/unpredictable21/f05d4b57867a2e83a5f991ff542215b2","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-71551","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-71551 — Super Productivity is an advanced todo list app with integrated timeboxing and time tracking capabil…","description":"Super Productivity is an advanced todo list app with integrated timeboxing and time tracking capabilities. Prior to 18.13.0, the EXEC IPC handler in electron/ipc-handlers/exec.ts accepts a command string from the renderer through the IPC.EXEC channel and executes it with child_process.exec(). The el…","indicators":{"cves":["CVE-2026-71551"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T18:19:32.483Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/super-productivity/super-productivity/commit/97e97042cde2e33524c9ad50dd46312c56be0072","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/super-productivity/super-productivity/pull/8669","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/super-productivity/super-productivity/security/advisories/GHSA-256q-p9ff-jv8q","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/super-productivity/super-productivity/security/advisories/GHSA-256q-p9ff-jv8q","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-74038","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74038 — Wazuh 4.0.0 before 4.14.6 contains a path traversal vulnerability that allows unauthenticated remote…","description":"Wazuh 4.0.0 before 4.14.6 contains a path traversal vulnerability that allows unauthenticated remote attackers to cause denial of service by enrolling an agent with a dot-sequence name such as \"..\" through the enrollment port. Attackers exploit insufficient validation in OS_IsValidName() and unsafe…","indicators":{"cves":["CVE-2026-74038"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T18:19:33.610Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/wazuh/wazuh/pull/35833","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/security/advisories/GHSA-573w-mqw4-jvmr","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/wazuh-path-traversal-dos-via-agent-enrollment","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/wazuh/wazuh/security/advisories/GHSA-573w-mqw4-jvmr","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2025-9210","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2025-9210 — Missing signature validation in JSON Web Tokens in Otalio Ship Property Management System versions b…","description":"Missing signature validation in JSON Web Tokens in Otalio Ship Property Management System versions before 2.22.0 allows authenticated attackers to escalate privileges via tampering with JWTs","indicators":{"cves":["CVE-2025-9210"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T19:16:43.650Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/mandiant/Vulnerability-Disclosures/blob/master/2026/MNDT-2026-0023.md","label":"mandiant-cve@google.com","domainType":"primary"},{"url":"https://www.otalio.com/solutions/","label":"mandiant-cve@google.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-24183","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-24183 — NVIDIA Cumulus Linux contains a vulnerability in the user management component, where an unprivilege…","description":"NVIDIA Cumulus Linux contains a vulnerability in the user management component, where an unprivileged user could use improper privilege management on the system. A successful exploit of this vulnerability might lead to escalation of privileges.","indicators":{"cves":["CVE-2026-24183"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T19:16:45.520Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/NVIDIA/product-security/tree/main/2026/5817","label":"psirt@nvidia.com","domainType":"primary"},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-24183","label":"psirt@nvidia.com","domainType":"primary"},{"url":"https://www.cve.org/CVERecord?id=CVE-2026-24183","label":"psirt@nvidia.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-24184","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-24184 — NVIDIA Cumulus Linux contains a vulnerability in the Link Layer Discovery Protocol (LLDP) daemon com…","description":"NVIDIA Cumulus Linux contains a vulnerability in the Link Layer Discovery Protocol (LLDP) daemon component, where an unauthenticated attacker on an adjacent network could cause buffer overflow by sending crafted LLDP frames. A successful exploit of this vulnerability might lead to code execution.","indicators":{"cves":["CVE-2026-24184"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T19:16:45.980Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/NVIDIA/product-security/tree/main/2026/5817","label":"psirt@nvidia.com","domainType":"primary"},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-24184","label":"psirt@nvidia.com","domainType":"primary"},{"url":"https://www.cve.org/CVERecord?id=CVE-2026-24184","label":"psirt@nvidia.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-24185","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-24185 — NVIDIA NVOS for network switches contains a vulnerability in the secure shell (SSH) server configura…","description":"NVIDIA NVOS for network switches contains a vulnerability in the secure shell (SSH) server configuration component while PKA-only mode is enabled, where an administrator could inadvertently enable an alternative authentication path. If best practices for replacing the default password as recommended…","indicators":{"cves":["CVE-2026-24185"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T19:16:46.410Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/NVIDIA/product-security/tree/main/2026/5817","label":"psirt@nvidia.com","domainType":"primary"},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-24185","label":"psirt@nvidia.com","domainType":"primary"},{"url":"https://www.cve.org/CVERecord?id=CVE-2026-24185","label":"psirt@nvidia.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-47606","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-47606 — NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker could cause an a…","description":"NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker could cause an absolute path traversal. A successful exploit might lead to code execution and information disclosure.","indicators":{"cves":["CVE-2026-47606","CVE-2026-47628","CVE-2026-47630"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T19:16:50.840Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/NVIDIA/product-security/tree/main/2026/5865","label":"psirt@nvidia.com","domainType":"primary"},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-47606","label":"psirt@nvidia.com","domainType":"primary"},{"url":"https://www.cve.org/CVERecord?id=CVE-2026-47606","label":"psirt@nvidia.com","domainType":"other"},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-47628","label":"psirt@nvidia.com","domainType":"primary"},{"url":"https://www.cve.org/CVERecord?id=CVE-2026-47628","label":"psirt@nvidia.com","domainType":"other"},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-47630","label":"psirt@nvidia.com","domainType":"primary"},{"url":"https://www.cve.org/CVERecord?id=CVE-2026-47630","label":"psirt@nvidia.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-47629","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-47629 — NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker could cause impr…","description":"NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker could cause improper input validation. A successful exploit might lead to denial of service.","indicators":{"cves":["CVE-2026-47629"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T19:16:52.217Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/NVIDIA/product-security/tree/main/2026/5865","label":"psirt@nvidia.com","domainType":"primary"},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-47629","label":"psirt@nvidia.com","domainType":"primary"},{"url":"https://www.cve.org/CVERecord?id=CVE-2026-47629","label":"psirt@nvidia.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-47719","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-47719 — FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. Prior to 1.3.2, the DEVICE…","description":"FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. Prior to 1.3.2, the DEVICE_WEBAPI_REQUEST and DEVICE_PROPERTY Socket.IO handlers in server/runtime/index.js omit isSocketWriteAuthorized and accept attacker-controlled property.address or endpoint connection data. A remote una…","indicators":{"cves":["CVE-2026-47719"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ics"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:17:15.103Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/frangoteam/FUXA/commit/7b2088eaae2be318d962dcba34bfc7a7f26837bd","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frangoteam/FUXA/pull/2344","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frangoteam/FUXA/releases/tag/v1.3.2","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frangoteam/FUXA/security/advisories/GHSA-w86f-rf9w-h3x6","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-52480","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-52480 — An issue in SJRC F11 SJ-GPS-PRO firmware build 2019-09-17 allows a remote attacker to obtain sensiti…","description":"An issue in SJRC F11 SJ-GPS-PRO firmware build 2019-09-17 allows a remote attacker to obtain sensitive information via the inetd service","indicators":{"cves":["CVE-2026-52480","CVE-2026-52481"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:17:16.267Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/AshtonKopelevich/SJ-GPS-PRO-F11-Vulnerability","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/AshtonKopelevich/SJ-GPS-PRO-F11-Vulnerability/blob/main/advisories/CVE-2026-52480.md","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-52829","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-52829 — ZEBRA is a Zcash node written entirely in Rust. Prior to 4.5.0, an unauthenticated IPv4 peer can det…","description":"ZEBRA is a Zcash node written entirely in Rust. Prior to 4.5.0, an unauthenticated IPv4 peer can deterministically terminate a synced Zebra node using the default Linux dual-stack listener configuration. The handshake path canonicalized an IPv4-mapped IPv6 PeerSocketAddr such as ::ffff:127.0.0.1 to…","indicators":{"cves":["CVE-2026-52829"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:17:18.330Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/ZcashFoundation/zebra/commit/1440b43ca7df59aca948090d45117557b217a6cd","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ZcashFoundation/zebra/releases/tag/v4.5.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ZcashFoundation/zebra/security/advisories/GHSA-63wg-wjjj-7cp8","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-59915","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-59915 — Dell Alienware Command Center (AWCC), versions prior to 6.14.20.0, contain a Least Privilege Violati…","description":"Dell Alienware Command Center (AWCC), versions prior to 6.14.20.0, contain a Least Privilege Violation vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of Privileges.","indicators":{"cves":["CVE-2026-59915"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:17:19.880Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://www.dell.com/support/kbdoc/en-us/000501384/dsa-2026-334-security-update-for-dell-alienware-command-center-6-x-for-multiple-vulnerabilities","label":"security_alert@emc.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-65984","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-65984 — FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. In 1.3.2 and earlier, POST…","description":"FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. In 1.3.2 and earlier, POST /api/refresh in server/api/auth/index.js falls back from current user data to decoded.groups, including when the user is deleted or groups is zero, and POST /api/heartbeat in server/api/index.js re-s…","indicators":{"cves":["CVE-2026-65984"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ics"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:17:20.557Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/frangoteam/FUXA/commit/4fa47d0a2a856ed34f427f472fb4450f86e7749b","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frangoteam/FUXA/pull/2379","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frangoteam/FUXA/releases/tag/v1.3.3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frangoteam/FUXA/security/advisories/GHSA-rg7m-xwqc-mjw6","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-65985","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-65985 — FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. In 1.3.2 and earlier, the…","description":"FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. In 1.3.2 and earlier, the device-webapi-request Socket.IO handler in server/runtime/index.js permits an authenticated non-admin runtime user to control property.address, causing the FUXA server to issue an outbound HTTP or HTT…","indicators":{"cves":["CVE-2026-65985","CVE-2026-67440","CVE-2026-67443"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ics"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:17:20.740Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/frangoteam/FUXA/commit/4fa47d0a2a856ed34f427f472fb4450f86e7749b","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frangoteam/FUXA/pull/2379","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frangoteam/FUXA/releases/tag/v1.3.3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frangoteam/FUXA/security/advisories/GHSA-wrg6-49wh-46pw","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frangoteam/FUXA/security/advisories/GHSA-rh5p-m38p-2w75","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frangoteam/FUXA/commit/e0b553cddb55613b890341270eb17eb586f8cab5","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frangoteam/FUXA/pull/2393","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frangoteam/FUXA/security/advisories/GHSA-5h5x-9h7x-23f4","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-70666","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70666 — Lemur manages TLS certificate creation. Prior to 1.9.3, an authority-role member could update acme_u…","description":"Lemur manages TLS certificate creation. Prior to 1.9.3, an authority-role member could update acme_url through PUT /api/1/authorities/ without revalidation and direct setup_acme_client_no_retry to an attacker-controlled ACME server. ACME directory and order responses contain newNonce, newOrder, auth…","indicators":{"cves":["CVE-2026-70666"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:17:23.237Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/Netflix/lemur/commit/6dcb19b6d6004e97796d6a0344b130b2ba57f050","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Netflix/lemur/releases/tag/v1.9.3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Netflix/lemur/security/advisories/GHSA-xpmj-wjcp-6pww","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-71303","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-71303 — Lemur manages TLS certificate creation. Prior to 1.9.3, _validate_acme_url enforced ACME_DIRECTORY_H…","description":"Lemur manages TLS certificate creation. Prior to 1.9.3, _validate_acme_url enforced ACME_DIRECTORY_HOST_ALLOWLIST when an authority was created, but PUT /api/1/authorities/ passed options to lemur/authorities/service.py without applying the same check. A user holding an authority role could replace…","indicators":{"cves":["CVE-2026-71303"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:17:23.403Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/Netflix/lemur/commit/edca0390f930344d65ff4ca37a669c2320e3dfad","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Netflix/lemur/releases/tag/v1.9.3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Netflix/lemur/security/advisories/GHSA-v5rc-cpwc-cfpr","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Netflix/lemur/security/advisories/GHSA-v5rc-cpwc-cfpr","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-71307","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-71307 — Lemur manages TLS certificate creation. Prior to 1.9.3, GET /api/1/destinations and GET /api/1/desti…","description":"Lemur manages TLS certificate creation. Prior to 1.9.3, GET /api/1/destinations and GET /api/1/destinations/ relied only on authentication while sibling write handlers required admin_permission. DestinationOutputSchema returned raw options and copied them into pluginOptions without redacting sensiti…","indicators":{"cves":["CVE-2026-71307"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:17:23.577Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/Netflix/lemur/commit/751c970ec42a53d00ecc9c6a96e0e51b6737ae53","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Netflix/lemur/releases/tag/v1.9.3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Netflix/lemur/security/advisories/GHSA-6c8m-q6g9-vrw3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Netflix/lemur/security/advisories/GHSA-6c8m-q6g9-vrw3","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-71308","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-71308 — Lemur manages TLS certificate creation. From 0.5.0 until 1.9.3, certificate create, upload, and edit…","description":"Lemur manages TLS certificate creation. From 0.5.0 until 1.9.3, certificate create, upload, and edit requests accepted replaces[] or replacements identifiers that AssociatedCertificateSchema resolved with fetch_objects without a CertificatePermission check. Assigning those objects to Certificate.rep…","indicators":{"cves":["CVE-2026-71308"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:17:23.740Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/Netflix/lemur/commit/286874535160952143b0afe2d356642669f9d4c6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Netflix/lemur/releases/tag/v1.9.3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Netflix/lemur/security/advisories/GHSA-cfh6-pv5c-38jv","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Netflix/lemur/security/advisories/GHSA-cfh6-pv5c-38jv","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-71417","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-71417 — Lemur manages TLS certificate creation. Prior to 1.9.3, POST /api/1/certificates/upload allowed a no…","description":"Lemur manages TLS certificate creation. Prior to 1.9.3, POST /api/1/certificates/upload allowed a non-read-only user to create a duplicate row using another certificate body, authority_id, serial, or external_id without requiring permission on the underlying authority. PUT /api/1/certificates//revok…","indicators":{"cves":["CVE-2026-71417"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:17:24.237Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/Netflix/lemur/commit/851389ae737a6d6bf16c1f9ca64a2ce56c1cc5c6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Netflix/lemur/releases/tag/v1.9.3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Netflix/lemur/security/advisories/GHSA-pxmc-2ffp-8j67","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Netflix/lemur/security/advisories/GHSA-pxmc-2ffp-8j67","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-71675","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-71675 — An issue in Open5GS v.2.7.0 allows a remote attacker to cause a denial of service via the ngap_send_…","description":"An issue in Open5GS v.2.7.0 allows a remote attacker to cause a denial of service via the ngap_send_to_nas() function in src/amf/ngap-path.c","indicators":{"cves":["CVE-2026-71675"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:17:24.790Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://gist.github.com/centauruszzz/fa7e78c6657132dae95318bc4600194b","label":"cve@mitre.org","domainType":"primary"},{"url":"https://gist.github.com/centauruszzz/fa7e78c6657132dae95318bc4600194b","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-71676","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-71676 — Buffer Overflow vulnerability in Open5GS v.2.7.0 allows a remote attacker to cause a denial of servi…","description":"Buffer Overflow vulnerability in Open5GS v.2.7.0 allows a remote attacker to cause a denial of service via the NAS 5GS decoder chain, triggered when the message type byte of a NAS PDU is mutated","indicators":{"cves":["CVE-2026-71676"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:17:24.917Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://gist.github.com/centauruszzz/0d267967fc5d072f31c866603f7aaf7c","label":"cve@mitre.org","domainType":"primary"},{"url":"https://gist.github.com/centauruszzz/0d267967fc5d072f31c866603f7aaf7c","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75935","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75935 — Uncontrolled memory allocation in the binary Ion stream cursor in Amazon ion-java before 1.12.0 migh…","description":"Uncontrolled memory allocation in the binary Ion stream cursor in Amazon ion-java before 1.12.0 might allow remote actors to cause a denial of service via a crafted Ion binary document containing a declared-length field that causes excessive heap preallocation.\n\n\n\nTo remediate this issue, users shou…","indicators":{"cves":["CVE-2026-75935"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:17:34.130Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://aws.amazon.com/security/security-bulletins/2026-083-aws/","label":"ff89ba41-3aa1-4d27-914a-91399e9639e5","domainType":"other"},{"url":"https://github.com/amazon-ion/ion-java/releases/tag/v1.12.0","label":"ff89ba41-3aa1-4d27-914a-91399e9639e5","domainType":"primary"},{"url":"https://github.com/amazon-ion/ion-java/security/advisories/GHSA-822f-6gg9-whr5","label":"ff89ba41-3aa1-4d27-914a-91399e9639e5","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75936","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75936 — Improper handling of highly compressed data in the GZIP auto-decompression handler in Amazon ion-jav…","description":"Improper handling of highly compressed data in the GZIP auto-decompression handler in Amazon ion-java before 1.12.0 might allow remote actors to cause a denial of service via a crafted compressed Ion document that expands to an arbitrarily large size upon decompression.\n\n\n\nTo remediate this issue, u…","indicators":{"cves":["CVE-2026-75936"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:17:34.317Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://aws.amazon.com/security/security-bulletins/2026-083-aws/","label":"ff89ba41-3aa1-4d27-914a-91399e9639e5","domainType":"other"},{"url":"https://github.com/amazon-ion/ion-java/releases/tag/v1.12.0","label":"ff89ba41-3aa1-4d27-914a-91399e9639e5","domainType":"primary"},{"url":"https://github.com/amazon-ion/ion-java/security/advisories/GHSA-wj53-jv76-65mc","label":"ff89ba41-3aa1-4d27-914a-91399e9639e5","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-15571","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-15571 — A flaw was found in the legacy client-initiated account-linking endpoint of Keycloak, a widely used…","description":"A flaw was found in the legacy client-initiated account-linking endpoint of Keycloak, a widely used open-source identity and access management solution. The mechanism used to protect the account-linking process from unauthorized requests relies on a hash that can be predicted by a malicious OIDC cli…","indicators":{"cves":["CVE-2026-15571"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:33.910Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://access.redhat.com/errata/RHSA-2026:56523","label":"secalert@redhat.com","domainType":"other"},{"url":"https://access.redhat.com/errata/RHSA-2026:56524","label":"secalert@redhat.com","domainType":"other"},{"url":"https://access.redhat.com/security/cve/CVE-2026-15571","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2499591","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-52793","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-52793 — Froxlor is open source server administration software. Prior to 2.3.7, the API authentication path i…","description":"Froxlor is open source server administration software. Prior to 2.3.7, the API authentication path in lib/Froxlor/Api/FroxlorRPC.php and FroxlorRPC::validateAuth accepts an API key and secret for an administrator or customer account without checking type_2fa, validating a TOTP code, or invoking Frox…","indicators":{"cves":["CVE-2026-52793"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:34.650Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/froxlor/froxlor/commit/7fc21dc6f8d22673e4ddc765b710c9d3f85cb001","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/froxlor/froxlor/releases/tag/2.3.7","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/froxlor/froxlor/security/advisories/GHSA-f9rx-7wf7-jr36","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/froxlor/froxlor/security/advisories/GHSA-f9rx-7wf7-jr36","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-53759","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-53759 — linuxfabrik-lib provides Python modules for database access, caching, shell execution, and API integ…","description":"linuxfabrik-lib provides Python modules for database access, caching, shell execution, and API integrations. Prior to version 4.2.0, db_sqlite.py created SQLite databases at predictable paths in the shared /tmp directory and followed attacker-created symbolic links at those paths. An attacker who co…","indicators":{"cves":["CVE-2026-53759","CVE-2026-55426","CVE-2026-73974"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:35.880Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/Linuxfabrik/lib/blob/main/CHANGELOG.md#v420---2026-06-02","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Linuxfabrik/lib/commit/1e3ca61d45e37ef118aa0c107b420ef74458697e","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Linuxfabrik/lib/releases/tag/v4.2.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Linuxfabrik/monitoring-plugins/security/advisories/GHSA-r35r-fpx2-jgr4","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Linuxfabrik/lib/blob/main/CHANGELOG.md","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Linuxfabrik/lib/releases/tag/v5.0.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Linuxfabrik/monitoring-plugins/blob/main/CHANGELOG.md","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Linuxfabrik/monitoring-plugins/commit/23bb570f41fc8d9caf30b30074bba0e3db1b357a","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Linuxfabrik/monitoring-plugins/releases/tag/v6.0.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Linuxfabrik/monitoring-plugins/security/advisories/GHSA-798h-hpph-m24j","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Linuxfabrik/lib/commit/d665042c55fae83a295ebc0023e8b77f6c473a28","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Linuxfabrik/lib/releases/tag/v6.1.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Linuxfabrik/monitoring-plugins/commit/f6680a9e4b39569f318feefdb2f51e5d18c7dad5","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Linuxfabrik/monitoring-plugins/releases/tag/v7.0.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Linuxfabrik/monitoring-plugins/security/advisories/GHSA-rh9c-rqvg-f7pr","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-54347","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-54347 — Froxlor is open source server administration software. Prior to 2.3.8, DNS TXT record content accept…","description":"Froxlor is open source server administration software. Prior to 2.3.8, DNS TXT record content accepted by lib/Froxlor/Api/Commands/DomainZones.php can contain HTML special characters, lib/Froxlor/UI/Callbacks/Text.php returns the content from Text::wordwrap without HTML escaping, and templates/Froxl…","indicators":{"cves":["CVE-2026-54347"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:36.027Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/froxlor/froxlor/commit/a1d8f425b11ef7597949018814afa056a842cba0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/froxlor/froxlor/releases/tag/2.3.8","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/froxlor/froxlor/security/advisories/GHSA-43gm-9rr3-cx7g","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-54348","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-54348 — Froxlor is open source server administration software. Prior to 2.3.8, the Admins.add and Admins.upd…","description":"Froxlor is open source server administration software. Prior to 2.3.8, the Admins.add and Admins.update endpoints in lib/Froxlor/Api/Commands/Admins.php accept an attacker-controlled ipaddress array and store it as JSON in panel_admins.ip without enforcing numeric element types. When the poisoned ac…","indicators":{"cves":["CVE-2026-54348"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:36.170Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/froxlor/froxlor/commit/a1eaca5a1601c8a30e00814a4fc73ad0c185f89e","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/froxlor/froxlor/releases/tag/2.3.8","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/froxlor/froxlor/security/advisories/GHSA-w27m-rmmf-g5w4","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/froxlor/froxlor/security/advisories/GHSA-w27m-rmmf-g5w4","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-60392","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-60392 — Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middleware (component: Ou…","description":"Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middleware (component: Outside In PDF Export SDK).   The supported version that is affected is 8.5.8. Easily exploitable vulnerability allows unauthenticated attacker with logon to the infrastructure where Oracle Outside In T…","indicators":{"cves":["CVE-2026-60392","CVE-2026-60412","CVE-2026-60413","CVE-2026-60414"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:37.510Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60592","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-60592 — Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: NDB Operator). Suppo…","description":"Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: NDB Operator).  Supported versions that are affected are 8.0.0-8.0.47, 8.4.0-8.4.10 and  9.7.0-9.7.1. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to comprom…","indicators":{"cves":["CVE-2026-60592"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:38.603Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60693","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-60693 — Vulnerability in the Oracle General Ledger product of Oracle E-Business Suite (component: Internal O…","description":"Vulnerability in the Oracle General Ledger product of Oracle E-Business Suite (component: Internal Operations).  Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle General Ledger…","indicators":{"cves":["CVE-2026-60693","CVE-2026-60748","CVE-2026-60769","CVE-2026-70686","CVE-2026-70764","CVE-2026-70796","CVE-2026-70803"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:39.197Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60707","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-60707 — Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middleware (component: Securit…","description":"Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middleware (component: Security).  Supported versions that are affected are 12.2.1.4.0 and  14.1.2.1.0. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle Identity Ma…","indicators":{"cves":["CVE-2026-60707"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:39.770Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60726","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-60726 — Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Authentic…","description":"Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Authentication Engine).  Supported versions that are affected are 12.2.1.4.0 and  14.1.2.1.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle A…","indicators":{"cves":["CVE-2026-60726"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:40.500Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60742","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-60742 — Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: PIA…","description":"Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: PIA Core Technology).  Supported versions that are affected are 8.61-8.63. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterpri…","indicators":{"cves":["CVE-2026-60742"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:41.440Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60753","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-60753 — Vulnerability in the Siebel CRM Deployment product of Oracle Siebel CRM (component: Installation). S…","description":"Vulnerability in the Siebel CRM Deployment product of Oracle Siebel CRM (component: Installation).  Supported versions that are affected are 17.0-26.6. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Siebel CRM Deployment executes to compromise…","indicators":{"cves":["CVE-2026-60753"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:41.927Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60757","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-60757 — Vulnerability in the Siebel CRM End User product of Oracle Siebel CRM (component: Search). Supported…","description":"Vulnerability in the Siebel CRM End User product of Oracle Siebel CRM (component: Search).  Supported versions that are affected are 17.0-26.6. Easily exploitable vulnerability allows unauthenticated attacker with access to the physical communication segment attached to the hardware where the Siebel…","indicators":{"cves":["CVE-2026-60757"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:42.163Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60758","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-60758 — Vulnerability in the Siebel Artificial Intelligence product of Oracle Siebel CRM (component: AI). Su…","description":"Vulnerability in the Siebel Artificial Intelligence product of Oracle Siebel CRM (component: AI).  Supported versions that are affected are 25.12-26.6. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Siebel Artificial Intelligence.  While th…","indicators":{"cves":["CVE-2026-60758"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:42.273Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60759","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-60759 — Vulnerability in the Oracle Internet Procurement Connector product of Oracle E-Business Suite (compo…","description":"Vulnerability in the Oracle Internet Procurement Connector product of Oracle E-Business Suite (component: Internal Operations).  Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Orac…","indicators":{"cves":["CVE-2026-60759","CVE-2026-70815"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:42.390Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60766","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-60766 — Vulnerability in the Siebel CRM Integration product of Oracle Siebel CRM (component: REST). Supporte…","description":"Vulnerability in the Siebel CRM Integration product of Oracle Siebel CRM (component: REST).  Supported versions that are affected are 17.0-26.6. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTPS to compromise Siebel CRM Integration.  Successful attacks…","indicators":{"cves":["CVE-2026-60766","CVE-2026-60796","CVE-2026-60797","CVE-2026-60820","CVE-2026-70859","CVE-2026-70910"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:42.640Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60791","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-60791 — Vulnerability in the Siebel CRM Deployment product of Oracle Siebel CRM (component: Application Inte…","description":"Vulnerability in the Siebel CRM Deployment product of Oracle Siebel CRM (component: Application Interface).  Supported versions that are affected are 17.0-26.6. Easily exploitable vulnerability allows unauthenticated attacker with access to the physical communication segment attached to the hardware…","indicators":{"cves":["CVE-2026-60791"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:43.350Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60792","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-60792 — Vulnerability in the Siebel CRM Deployment product of Oracle Siebel CRM (component: Server Infrastru…","description":"Vulnerability in the Siebel CRM Deployment product of Oracle Siebel CRM (component: Server Infrastructure).  Supported versions that are affected are 17.0-26.6. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Siebel CRM Deployment.  Succe…","indicators":{"cves":["CVE-2026-60792","CVE-2026-70949"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:43.467Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60798","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-60798 — Vulnerability in the Siebel CRM Deployment product of Oracle Siebel CRM (component: Migration). Supp…","description":"Vulnerability in the Siebel CRM Deployment product of Oracle Siebel CRM (component: Migration).  Supported versions that are affected are 17.0-26.6. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Siebel CRM Deployment.  While the vulnerabil…","indicators":{"cves":["CVE-2026-60798","CVE-2026-70856"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:43.810Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60808","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-60808 — Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel CRM (component: Email Marketin…","description":"Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel CRM (component: Email Marketing).  Supported versions that are affected are 17.0-26.6. Difficult to exploit vulnerability allows low privileged attacker with logon to the infrastructure where Siebel Apps - Marketing executes to co…","indicators":{"cves":["CVE-2026-60808"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:44.050Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60822","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-60822 — Vulnerability in the Oracle Enterprise Manager for Systems Infrastructure product of Oracle Enterpri…","description":"Vulnerability in the Oracle Enterprise Manager for Systems Infrastructure product of Oracle Enterprise Manager (component: Agent).  Supported versions that are affected are 13.5 and  24.1. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle E…","indicators":{"cves":["CVE-2026-60822","CVE-2026-70737"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:44.397Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60831","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-60831 — Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Inte…","description":"Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Integration Broker).  Supported versions that are affected are 8.61-8.63. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterpris…","indicators":{"cves":["CVE-2026-60831"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:44.630Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60841","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-60841 — Vulnerability in the Oracle Unified Directory product of Oracle Fusion Middleware (component: OUD Co…","description":"Vulnerability in the Oracle Unified Directory product of Oracle Fusion Middleware (component: OUD Core).  Supported versions that are affected are 12.2.1.4.0 and  14.1.2.1.0. Difficult to exploit vulnerability allows low privileged attacker with network access via LDAP to compromise Oracle Unified D…","indicators":{"cves":["CVE-2026-60841","CVE-2026-60849","CVE-2026-60850","CVE-2026-60889","CVE-2026-60895","CVE-2026-60914","CVE-2026-60969"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:44.750Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60856","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-60856 — Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Inst…","description":"Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Install and Packaging).  Supported versions that are affected are 8.61-8.63. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterp…","indicators":{"cves":["CVE-2026-60856"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:45.260Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60873","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-60873 — Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Data…","description":"Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Data Mover).  Supported versions that are affected are 8.61-8.63. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where PeopleSoft Enterprise PeopleTool…","indicators":{"cves":["CVE-2026-60873"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:46.070Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60879","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-60879 — Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Conf…","description":"Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Configuration Manager).  Supported versions that are affected are 8.61-8.63. Easily exploitable vulnerability allows low privileged attacker with network access via SQL to compromise PeopleSoft Enterprise…","indicators":{"cves":["CVE-2026-60879"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:46.190Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60883","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-60883 — Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Peop…","description":"Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: PeopleCode).  Supported versions that are affected are 8.61-8.63. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise PeopleSoft Enterprise PeopleTo…","indicators":{"cves":["CVE-2026-60883"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:46.303Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60902","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-60902 — Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Tuxe…","description":"Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Tuxedo).  Supported versions that are affected are 8.61-8.63. Difficult to exploit vulnerability allows low privileged attacker with logon to the infrastructure where PeopleSoft Enterprise PeopleTools exe…","indicators":{"cves":["CVE-2026-60902"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:46.760Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60956","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-60956 — Vulnerability in the JD Edwards EnterpriseOne US Payroll product of Oracle JD Edwards (component: Pa…","description":"Vulnerability in the JD Edwards EnterpriseOne US Payroll product of Oracle JD Edwards (component: Payroll).   The supported version that is affected is 9.2. Difficult to exploit vulnerability allows low privileged attacker with network access via JDENET to compromise JD Edwards EnterpriseOne US Payr…","indicators":{"cves":["CVE-2026-60956"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:49.037Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60967","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-60967 — Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: nVis…","description":"Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: nVision).  Supported versions that are affected are 8.61-8.63. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise PeopleTools…","indicators":{"cves":["CVE-2026-60967"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:49.387Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60975","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-60975 — Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Secu…","description":"Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Security).  Supported versions that are affected are 8.61 and  8.62. Difficult to exploit vulnerability allows low privileged attacker with logon to the infrastructure where PeopleSoft Enterprise PeopleTo…","indicators":{"cves":["CVE-2026-60975"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:49.840Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60976","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-60976 — Vulnerability in the Oracle Scripting product of Oracle E-Business Suite (component: Internal Operat…","description":"Vulnerability in the Oracle Scripting product of Oracle E-Business Suite (component: Internal Operations).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Scripting.  Successfu…","indicators":{"cves":["CVE-2026-60976","CVE-2026-70808","CVE-2026-70809","CVE-2026-70810"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:49.957Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-61002","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-61002 — Vulnerability in the Oracle SOA Suite product of Oracle Fusion Middleware (component: B2B Engine). S…","description":"Vulnerability in the Oracle SOA Suite product of Oracle Fusion Middleware (component: B2B Engine).  Supported versions that are affected are 12.2.1.4.0 and  14.1.2.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle SOA Suite.  Succe…","indicators":{"cves":["CVE-2026-61002"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:51.640Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-61231","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-61231 — Vulnerability in the Oracle Virtual Directory product of Oracle Fusion Middleware (component: Virtua…","description":"Vulnerability in the Oracle Virtual Directory product of Oracle Fusion Middleware (component: Virtual Directory Server).  Supported versions that are affected are 12.2.1.4.0 and  14.1.2.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via LDAP to compromise Or…","indicators":{"cves":["CVE-2026-61231"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:56.353Z","fetchedAt":"2026-08-21T03:01:29.075Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-61265","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-61265 — Vulnerability in the JD Edwards EnterpriseOne Orchestrator product of Oracle JD Edwards (component:…","description":"Vulnerability in the JD Edwards EnterpriseOne Orchestrator product of Oracle JD Edwards (component: E1 IOT Orchestrator Security).  Supported versions that are affected are 9.2.0.0-9.2.26.4. Difficult to exploit vulnerability allows unauthenticated attacker with network access via TLS to compromise…","indicators":{"cves":["CVE-2026-61265","CVE-2026-61270"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:56.980Z","fetchedAt":"2026-08-21T03:01:29.075Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-61268","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-61268 — Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Busines…","description":"Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Business Logic Infra SEC).  Supported versions that are affected are 9.2.0.0-9.2.26.4. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise JD Edwards En…","indicators":{"cves":["CVE-2026-61268"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:57.090Z","fetchedAt":"2026-08-21T03:01:29.075Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-61273","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-61273 — Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Install…","description":"Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Installation Security).  Supported versions that are affected are 9.2.0.0-9.2.26.4. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise JD Edwards Enter…","indicators":{"cves":["CVE-2026-61273"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:57.453Z","fetchedAt":"2026-08-21T03:01:29.075Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-61284","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-61284 — Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracle Enterprise Manager (c…","description":"Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracle Enterprise Manager (component: Application Config Console).  Supported versions that are affected are 13.5 and  24.1. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to comprom…","indicators":{"cves":["CVE-2026-61284","CVE-2026-61286","CVE-2026-61298","CVE-2026-61300","CVE-2026-70684"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:57.810Z","fetchedAt":"2026-08-21T03:01:29.075Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-61296","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-61296 — Vulnerability in the Oracle Enterprise Asset Management product of Oracle E-Business Suite (componen…","description":"Vulnerability in the Oracle Enterprise Asset Management product of Oracle E-Business Suite (component: Linear Asset Management).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle…","indicators":{"cves":["CVE-2026-61296"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:58.640Z","fetchedAt":"2026-08-21T03:01:29.075Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-61302","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-61302 — Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (co…","description":"Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Pod Admin).  Supported versions that are affected are 8.2.0.0.0 and  26.01.0.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise O…","indicators":{"cves":["CVE-2026-61302","CVE-2026-71055","CVE-2026-71056","CVE-2026-71061","CVE-2026-71094","CVE-2026-71095","CVE-2026-71096","CVE-2026-71097","CVE-2026-71098","CVE-2026-71099","CVE-2026-71107","CVE-2026-71122"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:59.000Z","fetchedAt":"2026-08-21T03:01:29.075Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-61305","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-61305 — Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: BI Platform Securit…","description":"Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: BI Platform Security).  Supported versions that are affected are 8.2.0.0.0, 12.2.1.4.0 and  26.01.0.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle…","indicators":{"cves":["CVE-2026-61305","CVE-2026-71057"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:59.123Z","fetchedAt":"2026-08-21T03:01:29.075Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-61306","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-61306 — Vulnerability in the Oracle Complex Maintenance, Repair and Overhaul product of Oracle E-Business Su…","description":"Vulnerability in the Oracle Complex Maintenance, Repair and Overhaul product of Oracle E-Business Suite (component: Production).  Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows low privileged attacker with network access via HTTP to compromise Orac…","indicators":{"cves":["CVE-2026-61306"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:59.250Z","fetchedAt":"2026-08-21T03:01:29.075Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-61307","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-61307 — Vulnerability in the PeopleSoft Enterprise CC Common Application Objects product of Oracle PeopleSof…","description":"Vulnerability in the PeopleSoft Enterprise CC Common Application Objects product of Oracle PeopleSoft (component: Common Application Objects).   The supported version that is affected is 9.2. Difficult to exploit vulnerability allows unauthenticated attacker with network access via Oracle Net to com…","indicators":{"cves":["CVE-2026-61307"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:59.370Z","fetchedAt":"2026-08-21T03:01:29.075Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-61319","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-61319 — Vulnerability in the Oracle U.S. Federal Financials product of Oracle E-Business Suite (component: I…","description":"Vulnerability in the Oracle U.S. Federal Financials product of Oracle E-Business Suite (component: Internal Operations).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle U.S. Fe…","indicators":{"cves":["CVE-2026-61319"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:59.960Z","fetchedAt":"2026-08-21T03:01:29.075Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-61331","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-61331 — Vulnerability in the Oracle Financials Common Modules product of Oracle E-Business Suite (component:…","description":"Vulnerability in the Oracle Financials Common Modules product of Oracle E-Business Suite (component: Common Components).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Financi…","indicators":{"cves":["CVE-2026-61331"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:00.440Z","fetchedAt":"2026-08-21T03:01:29.075Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-61340","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-61340 — Vulnerability in the Oracle MES for Process Manufacturing product of Oracle E-Business Suite (compon…","description":"Vulnerability in the Oracle MES for Process Manufacturing product of Oracle E-Business Suite (component: Internal Operations).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle…","indicators":{"cves":["CVE-2026-61340","CVE-2026-70827"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:00.790Z","fetchedAt":"2026-08-21T03:01:29.075Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-62448","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-62448 — Vulnerability in the Oracle Email Center product of Oracle E-Business Suite (component: Message Comp…","description":"Vulnerability in the Oracle Email Center product of Oracle E-Business Suite (component: Message Component).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Email Center.  Succ…","indicators":{"cves":["CVE-2026-62448"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:01.490Z","fetchedAt":"2026-08-21T03:01:29.075Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-62449","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-62449 — Vulnerability in the Oracle Work in Process product of Oracle E-Business Suite (component: Internal…","description":"Vulnerability in the Oracle Work in Process product of Oracle E-Business Suite (component: Internal Operations).  Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Work in Process e…","indicators":{"cves":["CVE-2026-62449","CVE-2026-62458","CVE-2026-62462"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:01.607Z","fetchedAt":"2026-08-21T03:01:29.075Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-62450","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-62450 — Vulnerability in the Oracle Flow Manufacturing product of Oracle E-Business Suite (component: Intern…","description":"Vulnerability in the Oracle Flow Manufacturing product of Oracle E-Business Suite (component: Internal Operations).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Flow Manufac…","indicators":{"cves":["CVE-2026-62450","CVE-2026-70801"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:01.720Z","fetchedAt":"2026-08-21T03:01:29.075Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-62491","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-62491 — Vulnerability in the Oracle Purchasing product of Oracle E-Business Suite (component: Internal Opera…","description":"Vulnerability in the Oracle Purchasing product of Oracle E-Business Suite (component: Internal Operations).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Purchasing.  Success…","indicators":{"cves":["CVE-2026-62491","CVE-2026-70797","CVE-2026-70798","CVE-2026-70811"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:03.757Z","fetchedAt":"2026-08-21T03:01:29.075Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-62540","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-62540 — Vulnerability in the Oracle Cost Management product of Oracle E-Business Suite (component: Cost Plan…","description":"Vulnerability in the Oracle Cost Management product of Oracle E-Business Suite (component: Cost Planning).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle Cost Management.  Su…","indicators":{"cves":["CVE-2026-62540"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:06.603Z","fetchedAt":"2026-08-21T03:01:29.075Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-62599","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-62599 — Vulnerability in the Oracle Trading Community product of Oracle E-Business Suite (component: Third P…","description":"Vulnerability in the Oracle Trading Community product of Oracle E-Business Suite (component: Third Party Data Integration).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Tra…","indicators":{"cves":["CVE-2026-62599"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:12.197Z","fetchedAt":"2026-08-21T03:01:29.076Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-62600","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-62600 — Vulnerability in the Oracle Sales product of Oracle E-Business Suite (component: Internal Operations…","description":"Vulnerability in the Oracle Sales product of Oracle E-Business Suite (component: Internal Operations).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Sales.  Successful attack…","indicators":{"cves":["CVE-2026-62600","CVE-2026-62601","CVE-2026-70706"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:12.313Z","fetchedAt":"2026-08-21T03:01:29.076Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-62605","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-62605 — Vulnerability in the Oracle Partner Management product of Oracle E-Business Suite (component: Intern…","description":"Vulnerability in the Oracle Partner Management product of Oracle E-Business Suite (component: Internal Operations).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Partner Man…","indicators":{"cves":["CVE-2026-62605"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:12.917Z","fetchedAt":"2026-08-21T03:01:29.076Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-62607","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-62607 — Vulnerability in the Oracle Customer Care product of Oracle E-Business Suite (component: Internal Op…","description":"Vulnerability in the Oracle Customer Care product of Oracle E-Business Suite (component: Internal Operations).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle Customer Care.…","indicators":{"cves":["CVE-2026-62607","CVE-2026-70778"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:13.180Z","fetchedAt":"2026-08-21T03:01:29.076Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70680","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70680 — Vulnerability in the Oracle Applications DBA product of Oracle E-Business Suite (component: Internal…","description":"Vulnerability in the Oracle Applications DBA product of Oracle E-Business Suite (component: Internal Operations).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Applications D…","indicators":{"cves":["CVE-2026-70680"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:19.833Z","fetchedAt":"2026-08-21T03:01:29.076Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70681","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70681 — Vulnerability in the Oracle Applications DBA product of Oracle E-Business Suite (component: JRI and…","description":"Vulnerability in the Oracle Applications DBA product of Oracle E-Business Suite (component: JRI and other Java utils).  Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Applic…","indicators":{"cves":["CVE-2026-70681"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:19.953Z","fetchedAt":"2026-08-21T03:01:29.076Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70687","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70687 — Vulnerability in the Oracle Marketing product of Oracle E-Business Suite (component: Audience). Supp…","description":"Vulnerability in the Oracle Marketing product of Oracle E-Business Suite (component: Audience).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Marketing.  While the vulnerabil…","indicators":{"cves":["CVE-2026-70687"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:20.657Z","fetchedAt":"2026-08-21T03:01:29.076Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70688","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70688 — Vulnerability in Oracle Essbase (component: Calculator). The supported version that is affected is 2…","description":"Vulnerability in Oracle Essbase (component: Calculator).   The supported version that is affected is 21.8.1.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Essbase.  Successful attacks of this vulnerability can result in takeover…","indicators":{"cves":["CVE-2026-70688"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:20.763Z","fetchedAt":"2026-08-21T03:01:29.076Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70690","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70690 — Vulnerability in the Oracle HRMS (US) product of Oracle E-Business Suite (component: US Payroll - Ge…","description":"Vulnerability in the Oracle HRMS (US) product of Oracle E-Business Suite (component: US Payroll - General).  Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle HRMS (US).  While…","indicators":{"cves":["CVE-2026-70690"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:20.990Z","fetchedAt":"2026-08-21T03:01:29.076Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70691","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70691 — Vulnerability in the Oracle Agile Engineering Data Management product of Oracle Supply Chain (compon…","description":"Vulnerability in the Oracle Agile Engineering Data Management product of Oracle Supply Chain (component: Engineering Communication Interface).   The supported version that is affected is 6.2.1. Difficult to exploit vulnerability allows unauthenticated attacker with access to the physical communicati…","indicators":{"cves":["CVE-2026-70691","CVE-2026-70693","CVE-2026-70697","CVE-2026-70698","CVE-2026-70703","CVE-2026-70709","CVE-2026-70712","CVE-2026-71052","CVE-2026-71053"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["supply-chain"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:21.110Z","fetchedAt":"2026-08-21T03:01:29.076Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70692","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70692 — Vulnerability in the Oracle Marketing Encyclopedia System product of Oracle E-Business Suite (compon…","description":"Vulnerability in the Oracle Marketing Encyclopedia System product of Oracle E-Business Suite (component: Internal Operations).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle M…","indicators":{"cves":["CVE-2026-70692"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:21.227Z","fetchedAt":"2026-08-21T03:01:29.076Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70700","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70700 — Vulnerability in the Oracle Payables product of Oracle E-Business Suite (component: Internal Operati…","description":"Vulnerability in the Oracle Payables product of Oracle E-Business Suite (component: Internal Operations).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Payables.  Successful…","indicators":{"cves":["CVE-2026-70700","CVE-2026-70701"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:22.130Z","fetchedAt":"2026-08-21T03:01:29.076Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70704","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70704 — Vulnerability in the Oracle Trading Community product of Oracle E-Business Suite (component: Party S…","description":"Vulnerability in the Oracle Trading Community product of Oracle E-Business Suite (component: Party Search UI).  Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Trading Commun…","indicators":{"cves":["CVE-2026-70704"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:22.573Z","fetchedAt":"2026-08-21T03:01:29.076Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70707","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70707 — Vulnerability in the Oracle Sales for Handhelds product of Oracle E-Business Suite (component: Inter…","description":"Vulnerability in the Oracle Sales for Handhelds product of Oracle E-Business Suite (component: Internal Operations).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Sales for H…","indicators":{"cves":["CVE-2026-70707"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:22.910Z","fetchedAt":"2026-08-21T03:01:29.076Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70708","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70708 — Vulnerability in the Oracle Sales Foundation product of Oracle E-Business Suite (component: Security…","description":"Vulnerability in the Oracle Sales Foundation product of Oracle E-Business Suite (component: Security API).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Sales Foundation.  Su…","indicators":{"cves":["CVE-2026-70708","CVE-2026-70710"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:23.023Z","fetchedAt":"2026-08-21T03:01:29.077Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70713","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70713 — Vulnerability in the Oracle iSetup product of Oracle E-Business Suite (component: General Ledger Upd…","description":"Vulnerability in the Oracle iSetup product of Oracle E-Business Suite (component: General Ledger Update Transform, Reports).  Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle i…","indicators":{"cves":["CVE-2026-70713"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:23.610Z","fetchedAt":"2026-08-21T03:01:29.077Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70715","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70715 — Vulnerability in Oracle Autonomous Health Framework (component: Trace File Analyzer). Supported vers…","description":"Vulnerability in Oracle Autonomous Health Framework (component: Trace File Analyzer).  Supported versions that are affected are 26-26.1.0, 26.2.0, 26.3.1, 26.5.0 and  26.5.2. Easily exploitable vulnerability allows unauthenticated attacker with access to the physical communication segment attached t…","indicators":{"cves":["CVE-2026-70715","CVE-2026-70728","CVE-2026-70731","CVE-2026-70734"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:23.840Z","fetchedAt":"2026-08-21T03:01:29.077Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70717","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70717 — Vulnerability in Oracle Autonomous Health Framework (component: Cluster Health Analyzer). Supported…","description":"Vulnerability in Oracle Autonomous Health Framework (component: Cluster Health Analyzer).  Supported versions that are affected are 26-26.1.0, 26.2.0, 26.3.1, 26.5.0 and  26.5.2. Difficult to exploit vulnerability allows low privileged attacker with access to the physical communication segment attac…","indicators":{"cves":["CVE-2026-70717"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:24.083Z","fetchedAt":"2026-08-21T03:01:29.077Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70718","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70718 — Vulnerability in the Oracle Bills of Material product of Oracle E-Business Suite (component: Interna…","description":"Vulnerability in the Oracle Bills of Material product of Oracle E-Business Suite (component: Internal Operations).  Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Bills of Ma…","indicators":{"cves":["CVE-2026-70718"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:24.207Z","fetchedAt":"2026-08-21T03:01:29.077Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70722","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70722 — Vulnerability in the Oracle Advanced Inbound Telephony product of Oracle E-Business Suite (component…","description":"Vulnerability in the Oracle Advanced Inbound Telephony product of Oracle E-Business Suite (component: Internal Operations).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTPS to compromise Oracle Ad…","indicators":{"cves":["CVE-2026-70722","CVE-2026-70725"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:24.670Z","fetchedAt":"2026-08-21T03:01:29.077Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70724","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70724 — Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported…","description":"Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General).  Supported versions that are affected are 8.0.0-8.0.48, 8.4.0-8.4.11 and  9.7.0-9.7.2. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise MySQL Cluster…","indicators":{"cves":["CVE-2026-70724"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:24.900Z","fetchedAt":"2026-08-21T03:01:29.077Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70729","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70729 — Vulnerability in the Oracle Teleservice product of Oracle E-Business Suite (component: Service Reque…","description":"Vulnerability in the Oracle Teleservice product of Oracle E-Business Suite (component: Service Request Form).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Teleservice.  Succ…","indicators":{"cves":["CVE-2026-70729"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:25.490Z","fetchedAt":"2026-08-21T03:01:29.077Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70747","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70747 — Vulnerability in the Oracle Customers Online product of Oracle E-Business Suite (component: Customer…","description":"Vulnerability in the Oracle Customers Online product of Oracle E-Business Suite (component: Customer Tab).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Customers Online.  Su…","indicators":{"cves":["CVE-2026-70747"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:27.560Z","fetchedAt":"2026-08-21T03:01:29.077Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70760","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70760 — Vulnerability in the Oracle Order Management product of Oracle E-Business Suite (component: Product…","description":"Vulnerability in the Oracle Order Management product of Oracle E-Business Suite (component: Product Diagnostic Tools).  Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Order M…","indicators":{"cves":["CVE-2026-70760","CVE-2026-70930","CVE-2026-70932"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:28.593Z","fetchedAt":"2026-08-21T03:01:29.077Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70761","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70761 — Vulnerability in the Oracle Risk Management product of Oracle E-Business Suite (component: Internal…","description":"Vulnerability in the Oracle Risk Management product of Oracle E-Business Suite (component: Internal Operations).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Risk Management…","indicators":{"cves":["CVE-2026-70761","CVE-2026-70762"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:28.710Z","fetchedAt":"2026-08-21T03:01:29.077Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70763","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70763 — Vulnerability in the Oracle Operations Intelligence product of Oracle E-Business Suite (component: D…","description":"Vulnerability in the Oracle Operations Intelligence product of Oracle E-Business Suite (component: Daily Business Intelligence).  Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows low privileged attacker with network access via HTTP to compromise Orac…","indicators":{"cves":["CVE-2026-70763"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:28.943Z","fetchedAt":"2026-08-21T03:01:29.077Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70770","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70770 — Vulnerability in the Oracle Warehouse Management product of Oracle E-Business Suite (component: Inte…","description":"Vulnerability in the Oracle Warehouse Management product of Oracle E-Business Suite (component: Internal Operations).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Warehouse…","indicators":{"cves":["CVE-2026-70770","CVE-2026-70771","CVE-2026-70772","CVE-2026-70774"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:29.777Z","fetchedAt":"2026-08-21T03:01:29.077Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70773","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70773 — Vulnerability in the Oracle HCM Common Architecture product of Oracle E-Business Suite (component: K…","description":"Vulnerability in the Oracle HCM Common Architecture product of Oracle E-Business Suite (component: Knowledge Integration).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle HCM…","indicators":{"cves":["CVE-2026-70773"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:30.173Z","fetchedAt":"2026-08-21T03:01:29.077Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70777","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70777 — Vulnerability in the Oracle iSupplier Portal product of Oracle E-Business Suite (component: Internal…","description":"Vulnerability in the Oracle iSupplier Portal product of Oracle E-Business Suite (component: Internal Operations).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle iSupplier Por…","indicators":{"cves":["CVE-2026-70777","CVE-2026-70779"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:30.767Z","fetchedAt":"2026-08-21T03:01:29.077Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70781","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70781 — Vulnerability in the Oracle Proposals product of Oracle E-Business Suite (component: Internal Operat…","description":"Vulnerability in the Oracle Proposals product of Oracle E-Business Suite (component: Internal Operations).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle Proposals.  Successf…","indicators":{"cves":["CVE-2026-70781"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:31.370Z","fetchedAt":"2026-08-21T03:01:29.077Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70782","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70782 — Vulnerability in the Oracle Labor Distribution product of Oracle E-Business Suite (component: Intern…","description":"Vulnerability in the Oracle Labor Distribution product of Oracle E-Business Suite (component: Internal Operations).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Labor Distri…","indicators":{"cves":["CVE-2026-70782"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:31.513Z","fetchedAt":"2026-08-21T03:01:29.077Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70783","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70783 — Vulnerability in the Oracle Service Contracts product of Oracle E-Business Suite (component: Interna…","description":"Vulnerability in the Oracle Service Contracts product of Oracle E-Business Suite (component: Internal Operations).  Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Service Co…","indicators":{"cves":["CVE-2026-70783"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:31.660Z","fetchedAt":"2026-08-21T03:01:29.077Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70786","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70786 — Vulnerability in the Oracle Service Fulfillment Manager product of Oracle E-Business Suite (componen…","description":"Vulnerability in the Oracle Service Fulfillment Manager product of Oracle E-Business Suite (component: Fulfillment Engine).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Serv…","indicators":{"cves":["CVE-2026-70786"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:32.100Z","fetchedAt":"2026-08-21T03:01:29.077Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70790","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70790 — Vulnerability in the Oracle Telecommunications Billing Integrator product of Oracle E-Business Suite…","description":"Vulnerability in the Oracle Telecommunications Billing Integrator product of Oracle E-Business Suite (component: Internal Operations).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise…","indicators":{"cves":["CVE-2026-70790"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:32.673Z","fetchedAt":"2026-08-21T03:01:29.077Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70791","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70791 — Vulnerability in the Oracle Transportation Execution product of Oracle E-Business Suite (component:…","description":"Vulnerability in the Oracle Transportation Execution product of Oracle E-Business Suite (component: Internal Operations).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Transp…","indicators":{"cves":["CVE-2026-70791"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:32.820Z","fetchedAt":"2026-08-21T03:01:29.077Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70792","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70792 — Vulnerability in the Oracle Yard Management product of Oracle E-Business Suite (component: Internal…","description":"Vulnerability in the Oracle Yard Management product of Oracle E-Business Suite (component: Internal Operations).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Yard Management…","indicators":{"cves":["CVE-2026-70792"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:32.960Z","fetchedAt":"2026-08-21T03:01:29.077Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70795","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70795 — Vulnerability in the Oracle Applications Platform Engineering product of Oracle E-Business Suite (co…","description":"Vulnerability in the Oracle Applications Platform Engineering product of Oracle E-Business Suite (component: Valid Session).  Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows unauthenticated attacker with network access via Oracle Net to compromise O…","indicators":{"cves":["CVE-2026-70795"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:33.387Z","fetchedAt":"2026-08-21T03:01:29.077Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70799","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70799 — Vulnerability in the Oracle SDP Number Portability product of Oracle E-Business Suite (component: In…","description":"Vulnerability in the Oracle SDP Number Portability product of Oracle E-Business Suite (component: Internal Operations).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle SDP Num…","indicators":{"cves":["CVE-2026-70799","CVE-2026-70800"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:33.960Z","fetchedAt":"2026-08-21T03:01:29.077Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70802","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70802 — Vulnerability in the Oracle Public Sector Human Resources product of Oracle E-Business Suite (compon…","description":"Vulnerability in the Oracle Public Sector Human Resources product of Oracle E-Business Suite (component: Regression Testing).  Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle…","indicators":{"cves":["CVE-2026-70802","CVE-2026-70804"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:34.383Z","fetchedAt":"2026-08-21T03:01:29.077Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70805","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70805 — Vulnerability in the Oracle Project Planning and Control product of Oracle E-Business Suite (compone…","description":"Vulnerability in the Oracle Project Planning and Control product of Oracle E-Business Suite (component: Change Management).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Proj…","indicators":{"cves":["CVE-2026-70805"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:34.813Z","fetchedAt":"2026-08-21T03:01:29.077Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70806","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70806 — Vulnerability in the Oracle E-Business Tax product of Oracle E-Business Suite (component: Internal O…","description":"Vulnerability in the Oracle E-Business Tax product of Oracle E-Business Suite (component: Internal Operations).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle E-Business Tax execu…","indicators":{"cves":["CVE-2026-70806"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:34.960Z","fetchedAt":"2026-08-21T03:01:29.077Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70807","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70807 — Vulnerability in the Oracle Call Center Technology product of Oracle E-Business Suite (component: In…","description":"Vulnerability in the Oracle Call Center Technology product of Oracle E-Business Suite (component: Internal Operations).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Call Cen…","indicators":{"cves":["CVE-2026-70807","CVE-2026-70812","CVE-2026-70813","CVE-2026-70814","CVE-2026-70820"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:35.107Z","fetchedAt":"2026-08-21T03:01:29.077Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70816","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70816 — Vulnerability in the Oracle Financials for EMEA product of Oracle E-Business Suite (component: Inter…","description":"Vulnerability in the Oracle Financials for EMEA product of Oracle E-Business Suite (component: Internal Operations).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Financials…","indicators":{"cves":["CVE-2026-70816","CVE-2026-70839"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:36.347Z","fetchedAt":"2026-08-21T03:01:29.077Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70829","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70829 — Vulnerability in the Oracle Process Manufacturing Systems product of Oracle E-Business Suite (compon…","description":"Vulnerability in the Oracle Process Manufacturing Systems product of Oracle E-Business Suite (component: Internal Operations).  Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle…","indicators":{"cves":["CVE-2026-70829","CVE-2026-70830"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:38.100Z","fetchedAt":"2026-08-21T03:01:29.077Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70833","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70833 — Vulnerability in the Oracle Landed Cost Management product of Oracle E-Business Suite (component: In…","description":"Vulnerability in the Oracle Landed Cost Management product of Oracle E-Business Suite (component: Internal Operations).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Landed C…","indicators":{"cves":["CVE-2026-70833"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:38.660Z","fetchedAt":"2026-08-21T03:01:29.077Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70835","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70835 — Vulnerability in the Oracle iRecruitment product of Oracle E-Business Suite (component: Internal Ope…","description":"Vulnerability in the Oracle iRecruitment product of Oracle E-Business Suite (component: Internal Operations).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle iRecruitment.  Suc…","indicators":{"cves":["CVE-2026-70835"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:38.920Z","fetchedAt":"2026-08-21T03:01:29.077Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70837","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70837 — Vulnerability in the Oracle Financials for Asia/Pacific product of Oracle E-Business Suite (componen…","description":"Vulnerability in the Oracle Financials for Asia/Pacific product of Oracle E-Business Suite (component: Internal Operations).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Fin…","indicators":{"cves":["CVE-2026-70837"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:39.197Z","fetchedAt":"2026-08-21T03:01:29.077Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70844","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70844 — Vulnerability in the Oracle Loans product of Oracle E-Business Suite (component: Internal Operations…","description":"Vulnerability in the Oracle Loans product of Oracle E-Business Suite (component: Internal Operations).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Loans.  Successful attack…","indicators":{"cves":["CVE-2026-70844","CVE-2026-70845"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:40.153Z","fetchedAt":"2026-08-21T03:01:29.078Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70857","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70857 — Vulnerability in the Siebel CRM End User product of Oracle Siebel CRM (component: Open UI). Supporte…","description":"Vulnerability in the Siebel CRM End User product of Oracle Siebel CRM (component: Open UI).  Supported versions that are affected are 17.0-26.6. Difficult to exploit vulnerability allows low privileged attacker with network access via HTTPS to compromise Siebel CRM End User.  Successful attacks requ…","indicators":{"cves":["CVE-2026-70857"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:41.867Z","fetchedAt":"2026-08-21T03:01:29.078Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70861","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70861 — Vulnerability in the PeopleSoft Enterprise FIN Common Objects Brazil product of Oracle PeopleSoft (c…","description":"Vulnerability in the PeopleSoft Enterprise FIN Common Objects Brazil product of Oracle PeopleSoft (component: Common Objects).   The supported version that is affected is 9.1. Easily exploitable vulnerability allows high privileged attacker with network access via T3, IIOP to compromise PeopleSoft E…","indicators":{"cves":["CVE-2026-70861"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:42.243Z","fetchedAt":"2026-08-21T03:01:29.078Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70906","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70906 — Vulnerability in Oracle Java SE (component: 2D). Supported versions that are affected are Oracle Jav…","description":"Vulnerability in Oracle Java SE (component: 2D).  Supported versions that are affected are Oracle Java SE: 25.0.4 and  26.0.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE.  Successful attacks of this vulnera…","indicators":{"cves":["CVE-2026-70906"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:48.393Z","fetchedAt":"2026-08-21T03:01:29.078Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70918","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70918 — Vulnerability in the Oracle Product Hub product of Oracle E-Business Suite (component: Outbound Data…","description":"Vulnerability in the Oracle Product Hub product of Oracle E-Business Suite (component: Outbound Data).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Product Hub.  Successful…","indicators":{"cves":["CVE-2026-70918"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:49.583Z","fetchedAt":"2026-08-21T03:01:29.078Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70922","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70922 — Vulnerability in the Oracle Financial Services Enterprise Case Management product of Oracle Financia…","description":"Vulnerability in the Oracle Financial Services Enterprise Case Management product of Oracle Financial Services Applications (component: Web UI).  Supported versions that are affected are 8.0.8.2 and  8.1.2.11. Easily exploitable vulnerability allows low privileged attacker with network access via HT…","indicators":{"cves":["CVE-2026-70922"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:50.043Z","fetchedAt":"2026-08-21T03:01:29.078Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70941","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70941 — Vulnerability in the Oracle Payroll product of Oracle E-Business Suite (component: Internal Operatio…","description":"Vulnerability in the Oracle Payroll product of Oracle E-Business Suite (component: Internal Operations).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Payroll executes to comprom…","indicators":{"cves":["CVE-2026-70941","CVE-2026-70945"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:52.227Z","fetchedAt":"2026-08-21T03:01:29.078Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70947","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70947 — Vulnerability in the Oracle Purchasing product of Oracle E-Business Suite (component: Other issue).…","description":"Vulnerability in the Oracle Purchasing product of Oracle E-Business Suite (component: Other issue).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Purchasing.  Successful att…","indicators":{"cves":["CVE-2026-70947","CVE-2026-70948"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:52.930Z","fetchedAt":"2026-08-21T03:01:29.078Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70951","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70951 — Vulnerability in the Siebel CRM End User product of Oracle Siebel CRM (component: Document Managemen…","description":"Vulnerability in the Siebel CRM End User product of Oracle Siebel CRM (component: Document Management).  Supported versions that are affected are 17.0-26.6. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Siebel CRM End User.  Successful att…","indicators":{"cves":["CVE-2026-70951"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:53.383Z","fetchedAt":"2026-08-21T03:01:29.078Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-71039","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-71039 — Vulnerability in the Oracle Agile PLM product of Oracle Supply Chain (component: Application Server)…","description":"Vulnerability in the Oracle Agile PLM product of Oracle Supply Chain (component: Application Server).   The supported version that is affected is 9.3.6. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Agile PLM.  Successful attacks of…","indicators":{"cves":["CVE-2026-71039"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["supply-chain"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:18:03.650Z","fetchedAt":"2026-08-21T03:01:29.079Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-71041","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-71041 — Vulnerability in the Oracle Agile PLM product of Oracle Supply Chain (component: Gantt Chart). The s…","description":"Vulnerability in the Oracle Agile PLM product of Oracle Supply Chain (component: Gantt Chart).   The supported version that is affected is 9.3.6. Difficult to exploit vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Agile PLM executes to compromise Oracle Ag…","indicators":{"cves":["CVE-2026-71041"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["supply-chain"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:18:03.877Z","fetchedAt":"2026-08-21T03:01:29.079Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-71042","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-71042 — Vulnerability in the Oracle Agile PLM product of Oracle Supply Chain (component: PGC / Excel Plugin)…","description":"Vulnerability in the Oracle Agile PLM product of Oracle Supply Chain (component: PGC / Excel Plugin).   The supported version that is affected is 9.3.6. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Agile PLM.  Successful attacks of…","indicators":{"cves":["CVE-2026-71042"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["supply-chain"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:18:03.990Z","fetchedAt":"2026-08-21T03:01:29.079Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-71044","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-71044 — Vulnerability in the Oracle Agile PLM product of Oracle Supply Chain (component: Export). The suppor…","description":"Vulnerability in the Oracle Agile PLM product of Oracle Supply Chain (component: Export).   The supported version that is affected is 9.3.6. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Agile PLM.  Successful attacks of this vulner…","indicators":{"cves":["CVE-2026-71044"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["supply-chain"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:18:04.257Z","fetchedAt":"2026-08-21T03:01:29.079Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-71048","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-71048 — Vulnerability in the Oracle Product Lifecycle Analytics product of Oracle Supply Chain (component: I…","description":"Vulnerability in the Oracle Product Lifecycle Analytics product of Oracle Supply Chain (component: Installation Issues).   The supported version that is affected is 3.6.1. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Product Lifecy…","indicators":{"cves":["CVE-2026-71048","CVE-2026-71049","CVE-2026-71050","CVE-2026-71051"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["supply-chain"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:18:04.600Z","fetchedAt":"2026-08-21T03:01:29.079Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-71062","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-71062 — Vulnerability in the RDBMS component of Oracle Database Server. Supported versions that are affected…","description":"Vulnerability in the RDBMS component of Oracle Database Server.  Supported versions that are affected are 23.4.0-23.26.3. Difficult to exploit vulnerability allows low privileged attacker having Authenticated User privilege with network access via Oracle Net to compromise RDBMS.  While the vulnerabi…","indicators":{"cves":["CVE-2026-71062","CVE-2026-71100"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:18:06.080Z","fetchedAt":"2026-08-21T03:01:29.079Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-71066","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-71066 — Vulnerability in the Oracle Agile PLM MCAD Connector product of Oracle Supply Chain (component: CAX…","description":"Vulnerability in the Oracle Agile PLM MCAD Connector product of Oracle Supply Chain (component: CAX Client).   The supported version that is affected is 3.6. Difficult to exploit vulnerability allows unauthenticated attacker with logon to the infrastructure where Oracle Agile PLM MCAD Connector exec…","indicators":{"cves":["CVE-2026-71066","CVE-2026-71067","CVE-2026-71068","CVE-2026-71069","CVE-2026-71070","CVE-2026-71071","CVE-2026-71072","CVE-2026-71075","CVE-2026-71076","CVE-2026-71077","CVE-2026-71078","CVE-2026-71080","CVE-2026-71081","CVE-2026-71082","CVE-2026-71083","CVE-2026-71087","CVE-2026-71088","CVE-2026-71089"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["supply-chain"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:18:06.543Z","fetchedAt":"2026-08-21T03:01:29.079Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-71092","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-71092 — Vulnerability in the PeopleSoft Enterprise FIN Lease Administration product of Oracle PeopleSoft (co…","description":"Vulnerability in the PeopleSoft Enterprise FIN Lease Administration product of Oracle PeopleSoft (component: Lease Administration).   The supported version that is affected is 9.2. Difficult to exploit vulnerability allows low privileged attacker with logon to the infrastructure where PeopleSoft Ent…","indicators":{"cves":["CVE-2026-71092"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:18:09.450Z","fetchedAt":"2026-08-21T03:01:29.080Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-71101","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-71101 — Vulnerability in the Oracle HRMS (US) product of Oracle E-Business Suite (component: US Payroll Tax…","description":"Vulnerability in the Oracle HRMS (US) product of Oracle E-Business Suite (component: US Payroll Tax Issues).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle HRMS (US) executes to c…","indicators":{"cves":["CVE-2026-71101"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:18:10.380Z","fetchedAt":"2026-08-21T03:01:29.080Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-71104","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-71104 — Vulnerability in the Oracle HRMS (Netherlands) product of Oracle E-Business Suite (component: Nether…","description":"Vulnerability in the Oracle HRMS (Netherlands) product of Oracle E-Business Suite (component: Netherlands Payroll).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle HRMS (Nethe…","indicators":{"cves":["CVE-2026-71104"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:18:10.720Z","fetchedAt":"2026-08-21T03:01:29.080Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-71106","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-71106 — Vulnerability in the Oracle Hospitality OPERA 5 Property Services product of Oracle Hospitality Appl…","description":"Vulnerability in the Oracle Hospitality OPERA 5 Property Services product of Oracle Hospitality Applications (component: Opera Servlet).  Supported versions that are affected are 5.6.28.0-5.6.28.1. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compr…","indicators":{"cves":["CVE-2026-71106"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:18:10.943Z","fetchedAt":"2026-08-21T03:01:29.080Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-71111","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-71111 — Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middleware (component: Install…","description":"Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middleware (component: Installer).  Supported versions that are affected are 12.2.1.4.0 and  14.1.2.1.0. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Identity Manage…","indicators":{"cves":["CVE-2026-71111"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:18:11.627Z","fetchedAt":"2026-08-21T03:01:29.080Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-71112","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-71112 — Vulnerability in the PeopleSoft Enterprise FIN Common Objects product of Oracle PeopleSoft (componen…","description":"Vulnerability in the PeopleSoft Enterprise FIN Common Objects product of Oracle PeopleSoft (component: Security).   The supported version that is affected is 9.2. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise FIN C…","indicators":{"cves":["CVE-2026-71112"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:18:11.753Z","fetchedAt":"2026-08-21T03:01:29.080Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-71113","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-71113 — Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The su…","description":"Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core).   The supported version that is affected is 7.2.14. Easily exploitable vulnerability allows unauthenticated attacker with network access via RDP to compromise Oracle VM VirtualBox.  Successful attacks of th…","indicators":{"cves":["CVE-2026-71113","CVE-2026-71114","CVE-2026-71115","CVE-2026-71116","CVE-2026-71125","CVE-2026-71126","CVE-2026-71127","CVE-2026-71128","CVE-2026-71129","CVE-2026-71130","CVE-2026-71131","CVE-2026-71132","CVE-2026-71134","CVE-2026-71135","CVE-2026-71136","CVE-2026-71137","CVE-2026-71138","CVE-2026-71139","CVE-2026-71140","CVE-2026-71141","CVE-2026-71151"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:18:11.870Z","fetchedAt":"2026-08-21T03:01:29.080Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-71142","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-71142 — Vulnerability in the Oracle Communications Unified Inventory Management product of Oracle Communicat…","description":"Vulnerability in the Oracle Communications Unified Inventory Management product of Oracle Communications (component: Security Component).  Supported versions that are affected are 7.5.0-7.5.1, 7.6.0-7.8.0 and  8.0.1. Easily exploitable vulnerability allows unauthenticated attacker with network acces…","indicators":{"cves":["CVE-2026-71142","CVE-2026-71143"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:18:15.140Z","fetchedAt":"2026-08-21T03:01:29.080Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76034","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76034 — Buffer overflow in WebGL in Google Chrome prior to 151.0.7922.169 allowed a remote attacker to execu…","description":"Buffer overflow in WebGL in Google Chrome prior to 151.0.7922.169 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)","indicators":{"cves":["CVE-2026-76034"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:18:27.390Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_0826575033.html","label":"chrome-cve-admin@google.com","domainType":"other"},{"url":"https://issues.chromium.org/issues/534923522","label":"chrome-cve-admin@google.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76037","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76037 — Link following in CredentialProvider in Google Chrome on on Windows prior to 151.0.7922.169 allowed…","description":"Link following in CredentialProvider in Google Chrome on on Windows prior to 151.0.7922.169 allowed a local attacker to potentially execute arbitrary code outside the sandbox via a local program. (Chromium security severity: High)","indicators":{"cves":["CVE-2026-76037"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:18:27.727Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_0826575033.html","label":"chrome-cve-admin@google.com","domainType":"other"},{"url":"https://issues.chromium.org/issues/517612295","label":"chrome-cve-admin@google.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76038","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76038 — Type confusion in V8 in Google Chrome prior to 151.0.7922.169 allowed a remote attacker to execute a…","description":"Type confusion in V8 in Google Chrome prior to 151.0.7922.169 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)","indicators":{"cves":["CVE-2026-76038","CVE-2026-76047"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:18:27.833Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_0826575033.html","label":"chrome-cve-admin@google.com","domainType":"other"},{"url":"https://issues.chromium.org/issues/541926503","label":"chrome-cve-admin@google.com","domainType":"other"},{"url":"https://issues.chromium.org/issues/541251902","label":"chrome-cve-admin@google.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76040","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76040 — Use after free in Browser in Google Chrome on on Mac prior to 151.0.7922.169 allowed a remote attack…","description":"Use after free in Browser in Google Chrome on on Mac prior to 151.0.7922.169 allowed a remote attacker leveraging social engineering to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)","indicators":{"cves":["CVE-2026-76040"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["phishing"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:18:28.060Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_0826575033.html","label":"chrome-cve-admin@google.com","domainType":"other"},{"url":"https://issues.chromium.org/issues/534862220","label":"chrome-cve-admin@google.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76043","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76043 — Incorrect calculation in V8 in Google Chrome prior to 151.0.7922.169 allowed a remote attacker to ex…","description":"Incorrect calculation in V8 in Google Chrome prior to 151.0.7922.169 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)","indicators":{"cves":["CVE-2026-76043"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:18:28.407Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_0826575033.html","label":"chrome-cve-admin@google.com","domainType":"other"},{"url":"https://issues.chromium.org/issues/539350801","label":"chrome-cve-admin@google.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76044","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76044 — Race condition in USB in Google Chrome prior to 151.0.7922.169 allowed a remote attacker who had com…","description":"Race condition in USB in Google Chrome prior to 151.0.7922.169 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)","indicators":{"cves":["CVE-2026-76044"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:18:28.530Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_0826575033.html","label":"chrome-cve-admin@google.com","domainType":"other"},{"url":"https://issues.chromium.org/issues/522732244","label":"chrome-cve-admin@google.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76045","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76045 — Use after free in WebGL in Google Chrome prior to 151.0.7922.169 allowed a remote attacker to execut…","description":"Use after free in WebGL in Google Chrome prior to 151.0.7922.169 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)","indicators":{"cves":["CVE-2026-76045"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:18:28.643Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_0826575033.html","label":"chrome-cve-admin@google.com","domainType":"other"},{"url":"https://issues.chromium.org/issues/543082390","label":"chrome-cve-admin@google.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76046","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76046 — Buffer overflow in ANGLE in Google Chrome on on Android prior to 151.0.7922.169 allowed a remote att…","description":"Buffer overflow in ANGLE in Google Chrome on on Android prior to 151.0.7922.169 allowed a remote attacker who had compromised the renderer process to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)","indicators":{"cves":["CVE-2026-76046"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:18:28.750Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_0826575033.html","label":"chrome-cve-admin@google.com","domainType":"other"},{"url":"https://issues.chromium.org/issues/536581050","label":"chrome-cve-admin@google.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15315","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-15315 — Tapo C200 v5 contains an improper authentication vulnerability within the login authentication verif…","description":"Tapo C200 v5\ncontains an improper authentication vulnerability within the login\nauthentication verification module. An attacker on the local network can\nexploit weaknesses in challenge parameter validation to bypass normal\nauthentication controls and obtain administrative session tokens. \n\n\n\n\n\n\n\n\n\nS…","indicators":{"cves":["CVE-2026-15315"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T22:16:49.207Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://www.tp-link.com/en/support/download/tapo-c200/v5/","label":"f23511db-6c3e-4e32-a477-6aa17d310630","domainType":"other"},{"url":"https://www.tp-link.com/us/support/download/tapo-c200/v5/","label":"f23511db-6c3e-4e32-a477-6aa17d310630","domainType":"other"},{"url":"https://www.tp-link.com/us/support/faq/5248/","label":"f23511db-6c3e-4e32-a477-6aa17d310630","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15316","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-15316 — An improper input validation vulnerability in the configuration service for processing encrypted cre…","description":"An improper input\nvalidation vulnerability in the configuration service for processing encrypted\ncredential data has been identified in Tapo C200 v5.  An attacker can send oversized crypted\nciphertext values that may trigger exception handling failures, due to insufficient\nvalidation, causing the af…","indicators":{"cves":["CVE-2026-15316"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T22:16:49.367Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://www.tp-link.com/en/support/download/tapo-c200/v5/","label":"f23511db-6c3e-4e32-a477-6aa17d310630","domainType":"other"},{"url":"https://www.tp-link.com/us/support/download/tapo-c200/v5/","label":"f23511db-6c3e-4e32-a477-6aa17d310630","domainType":"other"},{"url":"https://www.tp-link.com/us/support/faq/5248/","label":"f23511db-6c3e-4e32-a477-6aa17d310630","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-50142","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-50142 — libheif is a HEIF and AVIF file format decoder and encoder. From 1.19.0 until 1.23.0, a crafted HEIF…","description":"libheif is a HEIF and AVIF file format decoder and encoder. From 1.19.0 until 1.23.0, a crafted HEIF sequence accepted by heif_context_read_from_memory() with the msf1 sequence brand can cause unbounded heap allocation. In libheif/sequences/seq_boxes.cc, Box_stsz::parse() applies max_sequence_frames…","indicators":{"cves":["CVE-2026-50142"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T22:16:52.633Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://github.com/strukturag/libheif/commit/a6caa38f7a70d66dc9caec2a7bfe20935b32c622","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/strukturag/libheif/releases/tag/v1.23.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/strukturag/libheif/security/advisories/GHSA-jvmp-j3cw-84mh","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-50186","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-50186 — 4gaBoards is a boards system for realtime project management. Prior to 3.3.8, 4gaBoards allows an au…","description":"4gaBoards is a boards system for realtime project management. Prior to 3.3.8, 4gaBoards allows an authenticated project manager to supply traversal sequences in the filename parameter of GET /exports/:id/:filename. In server/api/controllers/boards/download.js, the decoded inputs.filename value is pa…","indicators":{"cves":["CVE-2026-50186"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T22:16:52.783Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://github.com/RARgames/4gaBoards/commit/654151d7cc7739e43fd32d368e47bc4090cc65f5","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/RARgames/4gaBoards/releases/tag/v3.3.8","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/RARgames/4gaBoards/security/advisories/GHSA-rv7w-hhqv-65cf","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-50191","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-50191 — 4gaBoards is a boards system for realtime project management. Prior to 3.3.8, 4gaBoards is vulnerabl…","description":"4gaBoards is a boards system for realtime project management. Prior to 3.3.8, 4gaBoards is vulnerable to pre-account takeover when registrationEnabled, localRegistrationEnabled, and ssoRegistrationEnabled are enabled and Google, GitHub, Microsoft, or OIDC SSO is configured. The POST /api/register en…","indicators":{"cves":["CVE-2026-50191"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T22:16:52.930Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://github.com/RARgames/4gaBoards/commit/484c92d583cfbc6815f96364071bb531ec594bf8","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/RARgames/4gaBoards/releases/tag/v3.3.8","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/RARgames/4gaBoards/security/advisories/GHSA-f3p6-chc6-pc77","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-52854","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-52854 — Maps is a MediaWiki extension that enables visualization of geographic data through dynamic embedded…","description":"Maps is a MediaWiki extension that enables visualization of geographic data through dynamic embedded maps. Prior to version 12.1.3, the display_map parser function in the Leaflet service accepts attacker-controlled HTML in the overlays parameter, and resources/leaflet/jquery.leaflet.js uses the over…","indicators":{"cves":["CVE-2026-52854"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T22:16:53.470Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://github.com/ProfessionalWiki/Maps/blob/12.1.3/RELEASE-NOTES.md","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ProfessionalWiki/Maps/commit/737a993fc2f40499e9bb22198fd1d56c25613806","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ProfessionalWiki/Maps/pull/899","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ProfessionalWiki/Maps/releases/tag/12.1.3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ProfessionalWiki/Maps/security/advisories/GHSA-4h7g-5542-v3fc","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ProfessionalWiki/Maps/security/advisories/GHSA-4h7g-5542-v3fc","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-52872","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-52872 — Streambert is a cross-platform Electron Desktop App to stream and download video content. Prior to 2…","description":"Streambert is a cross-platform Electron Desktop App to stream and download video content. Prior to 2.5.0, the downloadSubtitleFile utility in src/ipc/downloads.js, reached through the run-download IPC channel, accepts a renderer-supplied subtitle url using the file: URI scheme and passes its decoded…","indicators":{"cves":["CVE-2026-52872","CVE-2026-52875"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T22:16:53.650Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://github.com/truelockmc/streambert/security/advisories/GHSA-v74h-2468-rxhh","label":"security-advisories@github.com","domainType":"primary"},{"url":"http://github.com/truelockmc/streambert/commit/43566ed031183b046675761c9813c5379b619269","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/truelockmc/streambert/pull/149","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/truelockmc/streambert/security/advisories/GHSA-c64m-cx97-6rc9","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-52876","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-52876 — Streambert is a cross-platform Electron Desktop App to stream and download video content. Prior to v…","description":"Streambert is a cross-platform Electron Desktop App to stream and download video content. Prior to version 2.6.0, the open-path-at-time IPC handler in src/ipc/player.js accepts a renderer-controlled filePath without validating its type or location. If the mpv or VLC launch attempts are skipped or fa…","indicators":{"cves":["CVE-2026-52876","CVE-2026-52877"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T22:16:54.173Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://github.com/truelockmc/streambert/commit/43566ed031183b046675761c9813c5379b619269","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/truelockmc/streambert/pull/149","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/truelockmc/streambert/releases/tag/2.6.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/truelockmc/streambert/security/advisories/GHSA-85vf-2qwc-qpm4","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/truelockmc/streambert/commit/8fd7eb1d358d1d69e57e51ddfa71b066b44ff616","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/truelockmc/streambert/security/advisories/GHSA-j2vw-gg3g-wwqr","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-53958","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-53958 — 4gaBoards is a boards system for realtime project management. Prior to 3.3.9, 4gaBoards allows an au…","description":"4gaBoards is a boards system for realtime project management. Prior to 3.3.9, 4gaBoards allows an authenticated user to modify ssoGoogleId, ssoGoogleEmail, ssoGithubId, ssoGithubUsername, ssoGithubEmail, ssoMicrosoftId, ssoMicrosoftEmail, ssoOidcId, and ssoOidcEmail through PATCH /api/users/:id. The…","indicators":{"cves":["CVE-2026-53958"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T22:16:54.717Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://github.com/RARgames/4gaBoards/commit/7a79f4c5d338614058515752abd67e49ee2818bb","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/RARgames/4gaBoards/releases/tag/v3.3.9","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/RARgames/4gaBoards/security/advisories/GHSA-j2fw-r2gj-hfr3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/RARgames/4gaBoards/security/advisories/GHSA-j2fw-r2gj-hfr3","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-66602","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-66602 — Cross-Site Request Forgery (CSRF) vulnerability in DevItems HashBar – WordPress Notification Bar all…","description":"Cross-Site Request Forgery (CSRF) vulnerability in DevItems HashBar – WordPress Notification Bar allows Cross Site Request Forgery.\n\nThis issue affects HashBar – WordPress Notification Bar: from n/a through 2.0.0.","indicators":{"cves":["CVE-2026-66602"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T22:17:25.173Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/hashbar-wp-notification-bar/vulnerability/wordpress-hashbar-wordpress-notification-bar-plugin-2-0-0-cross-site-request-forgery-csrf-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75984","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75984 — A vulnerability was detected in TRENDnet TEW-823DRU 1.1.02b01. Impacted is an unknown function of th…","description":"A vulnerability was detected in TRENDnet TEW-823DRU 1.1.02b01. Impacted is an unknown function of the file /cgi-bin/admin.cgi. The manipulation of the argument Hostname results in command injection. The attack can be launched remotely. The exploit is now public and may be used.","indicators":{"cves":["CVE-2026-75984"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T01:16:57.640Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://github.com/meishigana/CVE/blob/main/team15_20260702/11_823dru-rc-cmdi/poc/poc-rc-injection.py","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/meishigana/CVE/tree/main/team15_20260702/11_823dru-rc-cmdi","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-75984","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/877798","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391903","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391903/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75985","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75985 — A flaw has been found in TRENDnet Router 1.1.02b01. The affected element is an unknown function of t…","description":"A flaw has been found in TRENDnet Router 1.1.02b01. The affected element is an unknown function of the file /cgi-bin/ping.cgi. This manipulation of the argument wan_type causes command injection. The attack may be initiated remotely. The exploit has been published and may be used.","indicators":{"cves":["CVE-2026-75985"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T02:16:12.830Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://github.com/meishigana/CVE/blob/main/team15_20260702/12_823dru-ssi-cmdi/poc/poc-ssi-injection.py","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/meishigana/CVE/tree/main/team15_20260702/12_823dru-ssi-cmdi","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-75985","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/877809","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391904","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391904/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75986","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75986 — A vulnerability has been found in code-projects Online Job Portal System 1.0. The impacted element i…","description":"A vulnerability has been found in code-projects Online Job Portal System 1.0. The impacted element is an unknown function of the file /ForPass.php of the component Password Recovery. Such manipulation of the argument txtUserName leads to sql injection. The attack may be launched remotely. The exploi…","indicators":{"cves":["CVE-2026-75986"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T02:16:12.993Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://code-projects.org/","label":"cna@vuldb.com","domainType":"other"},{"url":"https://github.com/niaoniaollll/cve/issues/7","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-75986","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/877848","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391905","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391905/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75987","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75987 — A vulnerability was found in SPLWare esProc up to 20260507. This affects the function ObjectInputStr…","description":"A vulnerability was found in SPLWare esProc up to 20260507. This affects the function ObjectInputStream.readUnshared of the file src/main/java/com/scudata/parallel/SocketData.java. Performing a manipulation results in deserialization. Remote exploitation of the attack is possible.","indicators":{"cves":["CVE-2026-75987"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T02:16:13.173Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://github.com/SPLWare/esProc/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/SPLWare/esProc/issues/67","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-75987","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/877849","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391906","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391906/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76048","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76048 — A flaw has been found in SourceCodester Simple Online Food Ordering System 1.0. The impacted element…","description":"A flaw has been found in SourceCodester Simple Online Food Ordering System 1.0. The impacted element is an unknown function of the file /admin/ajax.php?action=login. Executing a manipulation of the argument Username can lead to sql injection. The attack may be performed from remote. The exploit has…","indicators":{"cves":["CVE-2026-76048"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T03:16:53.430Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://github.com/Kristin5634487/cve/issues/5","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-76048","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/878218","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391949","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391949/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.sourcecodester.com/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76049","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76049 — A vulnerability has been found in SourceCodester Simple Online Food Ordering System 1.0. This affect…","description":"A vulnerability has been found in SourceCodester Simple Online Food Ordering System 1.0. This affects an unknown function of the file /admin/ajax.php?action=save_menu. The manipulation of the argument ID leads to sql injection. It is possible to initiate the attack remotely. The exploit has been dis…","indicators":{"cves":["CVE-2026-76049"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T04:17:38.277Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://github.com/Kristin5634487/cve/issues/6","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-76049","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/878227","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391950","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391950/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.sourcecodester.com/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76050","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76050 — A vulnerability was found in SourceCodester Simple Online Food Ordering System 1.0. This impacts an…","description":"A vulnerability was found in SourceCodester Simple Online Food Ordering System 1.0. This impacts an unknown function of the file /admin/ajax.php?action=delete_menu. The manipulation of the argument ID results in sql injection. It is possible to launch the attack remotely. The exploit has been made p…","indicators":{"cves":["CVE-2026-76050"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T04:17:42.060Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://github.com/jackkoz0512/cve/issues/1","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-76050","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/878241","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391951","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391951/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.sourcecodester.com/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19942","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19942 — The Atarim – AI Agency for WordPress: Edit Pages, Fix Code, Update Plugins, SEO & Client Feedback pl…","description":"The Atarim – AI Agency for WordPress: Edit Pages, Fix Code, Update Plugins, SEO & Client Feedback plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the AVCF_Abilities_Media::register (replace-media-file execute_callback) function in all version…","indicators":{"cves":["CVE-2026-19942"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T05:17:02.217Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/atarim-visual-collaboration/tags/5.1.1/doit/abilities/class-avcf-abilities-media.php#L1212","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/atarim-visual-collaboration/tags/5.1.1/doit/abilities/class-avcf-abilities-metadata.php#L1279","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/atarim-visual-collaboration/tags/5.1.1/doit/class-avcf-mcp.php#L329","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/atarim-visual-collaboration/tags/5.1.1/vendor/wordpress/mcp-adapter/includes/Abilities/ExecuteAbilityAbility.php#L91","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/atarim-visual-collaboration/tags/5.1.1/vendor/wordpress/mcp-adapter/includes/Servers/DefaultServerFactory.php#L73","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/atarim-visual-collaboration/tags/5.1.1/vendor/wordpress/mcp-adapter/includes/Transport/HttpTransport.php#L99","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3653026%40atarim-visual-collaboration&new=3653026%40atarim-visual-collaboration","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/c66a75a3-d420-4f2e-9f61-fe7dc2cb759e?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-49415","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-49415 — During execve(2) of a SUID binary, the new virtual address space is installed before the process cre…","description":"During execve(2) of a SUID binary, the new virtual address space is installed before the process credentials are updated.  During this window, a process running as the same user can access the target process's memory via procfs or linprocfs, because the kernel's debugging permission check still saw…","indicators":{"cves":["CVE-2026-49415"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T05:17:03.830Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://security.freebsd.org/advisories/FreeBSD-SA-26:39.execve.asc","label":"secteam@freebsd.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-49418","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-49418 — When msync(MS_INVALIDATE) is called on a mapping of an unmanaged device object, the physical pages i…","description":"When msync(MS_INVALIDATE) is called on a mapping of an unmanaged device object, the physical pages in the mapping range are marked invalid but remain in the pager's page list.  A subsequent page fault will cause the fault handler to re-insert the page into the object's list.  This corrupts the list,…","indicators":{"cves":["CVE-2026-49418"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T05:17:03.943Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://security.freebsd.org/advisories/FreeBSD-SA-26:37.vm.asc","label":"secteam@freebsd.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-49419","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-49419 — When the JAIL_AT_DESC flag is specified, kern_jail_set() and kern_jail_get() released the reference…","description":"When the JAIL_AT_DESC flag is specified, kern_jail_set() and kern_jail_get() released the reference to the caller's current prison before looking up the jail descriptor.  If the descriptor lookup failed, error-handling paths released the same reference a second time.\n\nAn unprivileged local user can…","indicators":{"cves":["CVE-2026-49419"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T05:17:04.053Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://security.freebsd.org/advisories/FreeBSD-SA-26:38.jail.asc","label":"secteam@freebsd.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-11565","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-11565 — The Advanced File Manager WordPress plugin before 5.4.13 does not perform capability checks in sever…","description":"The Advanced File Manager  WordPress plugin before 5.4.13 does not perform capability checks in several of its file management AJAX actions, allowing users with any role to which an administrator has granted file-manager access (as low as Subscriber) to read arbitrary files on the server — including…","indicators":{"cves":["CVE-2026-11565"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:27.777Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://wpscan.com/vulnerability/5e03858d-db0b-4b65-99cc-eb01ad4195e9/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-12983","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-12983 — The Dinatur WordPress plugin through 1.18 does not sanitize and escape user input before using it in…","description":"The Dinatur WordPress plugin through 1.18 does not sanitize and escape user input before using it in a SQL query, allowing unauthenticated users to perform SQL injection attacks. The same handler also performs a database table truncation without any authorization check, allowing any unauthenticated…","indicators":{"cves":["CVE-2026-12983"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:31.307Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://wpscan.com/vulnerability/1369f95a-4ad3-4b0e-a87f-da88d200685e/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-13169","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-13169 — The Eventin WordPress plugin before 4.1.21 does not properly verify ownership of events before allow…","description":"The Eventin  WordPress plugin before 4.1.21 does not properly verify ownership of events before allowing them to be modified, deleted, or reassigned to a different author, allowing users with contributor-level access and above to alter, delete, or take over events created by other users including ad…","indicators":{"cves":["CVE-2026-13169"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:31.677Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://wpscan.com/vulnerability/cf2b1152-7190-467b-a860-1f7bd806575d/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-13174","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-13174 — The Eventin WordPress plugin before 4.1.21 does not verify ownership or capability before deleting u…","description":"The Eventin  WordPress plugin before 4.1.21 does not verify ownership or capability before deleting user accounts, allowing users with contributor-level access and above to permanently delete other users' accounts.","indicators":{"cves":["CVE-2026-13174"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:32.200Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://wpscan.com/vulnerability/849478d1-640f-49e0-8fa5-918e41654923/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-14334","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-14334 — The Booking calendar, Appointment Booking System WordPress plugin through 3.2.36 does not properly s…","description":"The Booking calendar, Appointment Booking System WordPress plugin through 3.2.36 does not properly sanitize uploaded SVG files, allowing unauthenticated attackers to upload a file that bypasses the Booking calendar, Appointment Booking System WordPress plugin through 3.2.36's script-stripping and ex…","indicators":{"cves":["CVE-2026-14334"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:33.263Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://wpscan.com/vulnerability/9ddd1628-0b06-461b-8a5f-ba977f83fa7f/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-14861","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-14861 — The User Verification by PickPlugins WordPress plugin through 2.0.47 does not verify that a request…","description":"The User Verification by PickPlugins WordPress plugin through 2.0.47 does not verify that a request to resend a verification email is authorized to act on the supplied user, nor bind the protecting token to that user, allowing unauthenticated attackers to reset arbitrary users' email-verification st…","indicators":{"cves":["CVE-2026-14861"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:34.067Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://wpscan.com/vulnerability/4dff3634-4b4f-48e2-a8c9-dda7e2b682fd/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16570","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-16570 — The NextScripts: Social Networks Auto-Poster WordPress plugin before 4.4.8 does not escape some of t…","description":"The NextScripts: Social Networks Auto-Poster WordPress plugin before 4.4.8 does not escape some of the query-string parameters it reflects back on one of its admin pages, allowing attackers to perform Reflected Cross-Site Scripting attacks against logged-in users such as administrators who are trick…","indicators":{"cves":["CVE-2026-16570"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:34.940Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://wpscan.com/vulnerability/25c42ca3-ff25-4b43-a712-2876398d82ab/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16616","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-16616 — The Simple File List WordPress plugin through 6.3.11 does not validate the source path of a file-mov…","description":"The Simple File List WordPress plugin through 6.3.11 does not validate the source path of a file-move operation reachable by unauthenticated users, allowing them to read arbitrary files on the server and to relocate critical files out of the web root, leading to sensitive information disclosure and…","indicators":{"cves":["CVE-2026-16616"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:35.210Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://wpscan.com/vulnerability/9631c97e-42e5-43b0-8998-e106f474ffba/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16617","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-16617 — The Simple File List WordPress plugin through 6.3.11 does not properly sanitise and escape a file's…","description":"The Simple File List WordPress plugin through 6.3.11 does not properly sanitise and escape a file's description before outputting it on the public file list, allowing unauthenticated users (when front-end file management is enabled) to perform Stored Cross-Site Scripting attacks that execute in the…","indicators":{"cves":["CVE-2026-16617"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:35.500Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://wpscan.com/vulnerability/fc51a940-8e67-45d0-b47d-b16da288ebb3/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16950","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-16950 — The Product Shortlist WordPress plugin through 1.0.4 does not properly sanitise and escape a paramet…","description":"The Product Shortlist WordPress plugin through 1.0.4 does not properly sanitise and escape a parameter before using it in a SQL statement, allowing unauthenticated attackers to perform SQL injection attacks.","indicators":{"cves":["CVE-2026-16950"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:35.730Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://wpscan.com/vulnerability/c1a2635a-9919-460f-b662-e5e3f80d2361/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-17565","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-17565 — The Animation Addons for Elementor WordPress plugin before 2.7.2 does not validate a user-supplied v…","description":"The Animation Addons for Elementor  WordPress plugin before 2.7.2 does not validate a user-supplied value before using it to build the host of a server-side HTTP request, allowing unauthenticated users to make the site issue requests to internal hosts and read the responses back.","indicators":{"cves":["CVE-2026-17565"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:36.230Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://wpscan.com/vulnerability/e88e0b71-145c-4edd-9b62-783215b64c67/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19055","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19055 — The ProSolution WP Client WordPress plugin before 2.0.11 does not sanitise and escape several parame…","description":"The ProSolution WP Client WordPress plugin before 2.0.11 does not sanitise and escape several parameters before reflecting them into HTML attributes on its public pages, leading to reflected Cross-Site Scripting that can be triggered against any visitor, including a logged-in administrator.","indicators":{"cves":["CVE-2026-19055"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:39.117Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://wpscan.com/vulnerability/a1243ff3-3f0e-4068-a716-722e7cf4856b/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19056","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19056 — The ProSolution WP Client WordPress plugin before 2.0.11 does not sanitise and escape a parameter be…","description":"The ProSolution WP Client WordPress plugin before 2.0.11 does not sanitise and escape a parameter before reflecting it into an HTML attribute on one of its administrative pages, leading to reflected Cross-Site Scripting that runs in the session of an administrator induced to submit a crafted request…","indicators":{"cves":["CVE-2026-19056"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:39.363Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://wpscan.com/vulnerability/83ad2038-3755-40a5-a8af-e6fac94341d1/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19842","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19842 — The SAML Single Sign On WordPress plugin before 5.4.7 does not verify the signature of a SAML respon…","description":"The SAML Single Sign On  WordPress plugin before 5.4.7 does not verify the signature of a SAML response before storing the certificate it carries, and offers an administrator a one-click control that promotes that stored certificate to the site's trusted signing certificate, allowing unauthenticated…","indicators":{"cves":["CVE-2026-19842"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:40.613Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://wpscan.com/vulnerability/7b79d86e-d3f8-4d4f-929b-fd00540cc00f/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-49420","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-49420 — The RTSP handler in libalias rewrote outgoing packets into a fixed-length stack buffer without check…","description":"The RTSP handler in libalias rewrote outgoing packets into a fixed-length stack buffer without checking whether the rewritten data fit in the buffer, or whether the result fit back in the original packet.\n\nA host sending crafted RTSP traffic from inside a NAT gateway using libalias can overflow a st…","indicators":{"cves":["CVE-2026-49420"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:40.790Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://security.freebsd.org/advisories/FreeBSD-SA-26:41.libalias.asc","label":"secteam@freebsd.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-49422","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-49422 — The RACK setsockopt(2) handler drops the connection lock in order to copy option data from userspace…","description":"The RACK setsockopt(2) handler drops the connection lock in order to copy option data from userspace, then reacquires the lock.  After reacquiring, it verifies that the TCP stack had not been switched away, but did not reload its pointer to the stack's per-connection control block.  If userspace swi…","indicators":{"cves":["CVE-2026-49422"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:41.447Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://security.freebsd.org/advisories/FreeBSD-SA-26:43.tcp.asc","label":"secteam@freebsd.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-49427","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-49427 — Pages belonging to largepage shared memory objects were not explicitly wired. When sendfile(2) trans…","description":"Pages belonging to largepage shared memory objects were not explicitly wired.  When sendfile(2) transmitted such an object with the SF_NOCACHE flag, it freed the underlying pages after transmission even though existing mappings still referred to them.\n\nAn unprivileged local user can abuse the bug to…","indicators":{"cves":["CVE-2026-49427"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:41.977Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://security.freebsd.org/advisories/FreeBSD-SA-26:44.posixshm.asc","label":"secteam@freebsd.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-49428","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-49428 — Certain system calls, such open(2) with the O_TRUNC flag set, and fspacectl(2), could incorrectly fr…","description":"Certain system calls, such open(2) with the O_TRUNC flag set, and fspacectl(2), could incorrectly free memory in largepage objects.  These operations are not permitted on largepage objects, but the implementation did not verify this.\n\nAn unprivileged local user can abuse the bug to access freed kern…","indicators":{"cves":["CVE-2026-49428"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:42.263Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://security.freebsd.org/advisories/FreeBSD-SA-26:44.posixshm.asc","label":"secteam@freebsd.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-49429","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-49429 — The ZFS_IOC_USERSPACE_MANY ioctl, used by zfs-userspace(8), truncated a 64-bit output buffer size to…","description":"The ZFS_IOC_USERSPACE_MANY ioctl, used by zfs-userspace(8), truncated a 64-bit output buffer size to a 32-bit integer for the kernel allocation, but used the original 64-bit size as the buffer limit when writing records.\n\nA local user with the \"userused\" delegated ZFS permission can trigger a kernel…","indicators":{"cves":["CVE-2026-49429"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:42.513Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://security.freebsd.org/advisories/FreeBSD-SA-26:40.zfs.asc","label":"secteam@freebsd.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15780","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-15780 — The WP Statistics – Simple, privacy-friendly Google Analytics alternative plugin for WordPress is vu…","description":"The WP Statistics – Simple, privacy-friendly Google Analytics alternative plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'utm_campaign' parameter in all versions up to, and including, 14.16.8 due to insufficient input sanitization and output escaping. This makes it possibl…","indicators":{"cves":["CVE-2026-15780"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T07:16:27.773Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/wp-statistics/wp-statistics/commit/6ab74427778b89c9e88471e9dd7407d9055a9b34","label":"security@wordfence.com","domainType":"primary"},{"url":"https://plugins.trac.wordpress.org/browser/wp-statistics/tags/14.16.7/assets/dev/javascript/helper.js#L267","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wp-statistics/tags/14.16.7/includes/api/v2/class-wp-statistics-api-hit.php#L78","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wp-statistics/tags/14.16.7/includes/class-wp-statistics-helper.php#L1462","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wp-statistics/tags/14.16.7/includes/class-wp-statistics-hits.php#L102","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wp-statistics/tags/14.16.7/views/components/tables/referred-visitors.php#L79","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wp-statistics/tags/14.16.7/views/components/tables/visitors.php#L94","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wp-statistics/tags/14.16.8/assets/dev/javascript/helper.js#L267","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wp-statistics/tags/14.16.8/includes/api/v2/class-wp-statistics-api-hit.php#L78","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wp-statistics/tags/14.16.8/includes/class-wp-statistics-helper.php#L1462","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wp-statistics/tags/14.16.8/includes/class-wp-statistics-hits.php#L102","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wp-statistics/tags/14.16.8/views/components/tables/referred-visitors.php#L79","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wp-statistics/tags/14.16.8/views/components/tables/visitors.php#L94","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/b5baecfe-ce0b-4cec-8462-bfd7eadd41e9?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75981","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75981 — The TranslatePress – Translate Multilingual sites with AI Translation plugin for WordPress is vulner…","description":"The TranslatePress – Translate Multilingual sites with AI Translation plugin for WordPress is vulnerable to unauthenticated Stored Cross-Site Scripting in versions up to and including 3.2.5. The special gettext markers '#!trpst#' and '#!trpen#' are unconditionally rewritten to '<' and '>' by transla…","indicators":{"cves":["CVE-2026-75981"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T07:16:59.907Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/translatepress-multilingual/tags/3.2.5/includes/class-translation-render.php#L538","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/translatepress-multilingual/tags/3.2.5/includes/class-translation-render.php#L539","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/fec48853-afa5-4310-be2e-e86c01ece227?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-58083","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-58083 — While the kernel was copying knotes during fork, a knote with a timer-based filter could fire and be…","description":"While the kernel was copying knotes during fork, a knote with a timer-based filter could fire and be enqueued on the kqueue's active list before the copy was complete.  The copy routine did not account for this and could enqueue the new knote a second time, corrupting the active list.  In addition,…","indicators":{"cves":["CVE-2026-58083"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T08:17:12.470Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://security.freebsd.org/advisories/FreeBSD-SA-26:50.kqueue.asc","label":"secteam@freebsd.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-58087","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-58087 — The GETALL and SETALL commands in semctl(2) recorded the number of semaphores in the target set, dro…","description":"The GETALL and SETALL commands in semctl(2) recorded the number of semaphores in the target set, dropped the lock protecting the set, allocated a buffer sized for that count, and reacquired the lock.  A sequence-number check was used to verify that the set had not been replaced in the interim, but t…","indicators":{"cves":["CVE-2026-58087"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T08:17:12.877Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://security.freebsd.org/advisories/FreeBSD-SA-26:54.sysvsem.asc","label":"secteam@freebsd.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-58088","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-58088 — The ELF core dump code counted the number of dumpable VM map entries, allocated a buffer for the cor…","description":"The ELF core dump code counted the number of dumpable VM map entries, allocated a buffer for the corresponding program headers, then iterated over the map a second time to populate them.  A process sharing the address space via rfork(2) can mutate the map between the two passes, causing the second p…","indicators":{"cves":["CVE-2026-58088"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T08:17:12.983Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://security.freebsd.org/advisories/FreeBSD-SA-26:55.elf.asc","label":"secteam@freebsd.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-32552","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-32552 — Subscriber SQL Injection in YITH WooCommerce Membership Premium <= 2.33.0 versions.","description":"Subscriber SQL Injection in YITH WooCommerce Membership Premium <= 2.33.0 versions.","indicators":{"cves":["CVE-2026-32552"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T13:17:45.137Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/yith-woocommerce-membership-premium/vulnerability/wordpress-yith-woocommerce-membership-premium-plugin-2-33-0-sql-injection-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-61986","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-61986 — Unauthenticated Cross Site Scripting (XSS) in Contest Gallery <= 30.0.5 versions.","description":"Unauthenticated Cross Site Scripting (XSS) in Contest Gallery <= 30.0.5 versions.","indicators":{"cves":["CVE-2026-61986"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T13:17:49.090Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/contest-gallery/vulnerability/wordpress-contest-gallery-plugin-30-0-5-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66596","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-66596 — Unauthenticated Cross Site Scripting (XSS) in Newsletter <= 9.3.3 versions.","description":"Unauthenticated Cross Site Scripting (XSS) in Newsletter <= 9.3.3 versions.","indicators":{"cves":["CVE-2026-66596"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T13:17:50.430Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/newsletter/vulnerability/wordpress-newsletter-plugin-9-3-3-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66668","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-66668 — Subscriber SQL Injection in Community by PeepSo <= 9.0.5.2 versions.","description":"Subscriber SQL Injection in Community by PeepSo <= 9.0.5.2 versions.","indicators":{"cves":["CVE-2026-66668"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T13:17:50.687Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/peepso-core/vulnerability/wordpress-community-by-peepso-plugin-9-0-5-2-sql-injection-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73182","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73182 — Unauthenticated Cross Site Scripting (XSS) in BBQ Pro <= 3.9 versions.","description":"Unauthenticated Cross Site Scripting (XSS) in BBQ Pro <= 3.9 versions.","indicators":{"cves":["CVE-2026-73182"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T13:18:06.607Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/bbq-pro/vulnerability/wordpress-bbq-pro-plugin-3-9-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73184","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73184 — Unauthenticated Cross Site Scripting (XSS) in Global Gallery <= 11.1.2 versions.","description":"Unauthenticated Cross Site Scripting (XSS) in Global Gallery <= 11.1.2 versions.","indicators":{"cves":["CVE-2026-73184"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T13:18:06.863Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/global-gallery/vulnerability/wordpress-global-gallery-plugin-11-1-2-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73354","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73354 — Unauthenticated Cross Site Scripting (XSS) in SimplyRETS Real Estate IDX <= 3.2.8 versions.","description":"Unauthenticated Cross Site Scripting (XSS) in SimplyRETS Real Estate IDX <= 3.2.8 versions.","indicators":{"cves":["CVE-2026-73354"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T13:18:07.250Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/simply-rets/vulnerability/wordpress-simplyrets-real-estate-idx-plugin-3-2-8-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73384","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73384 — Unauthenticated Sensitive Data Exposure in Pay with Contact Form 7 <= 1.0.4 versions.","description":"Unauthenticated Sensitive Data Exposure in Pay with Contact Form 7 <= 1.0.4 versions.","indicators":{"cves":["CVE-2026-73384"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T13:18:07.650Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/pay-with-contact-form-7/vulnerability/wordpress-pay-with-contact-form-7-plugin-1-0-4-sensitive-data-exposure-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73385","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73385 — Unauthenticated Broken Access Control in Outranking Plugin Options <= 1.1.3 versions.","description":"Unauthenticated Broken Access Control in Outranking Plugin Options <= 1.1.3 versions.","indicators":{"cves":["CVE-2026-73385"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T13:18:07.777Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/outranking/vulnerability/wordpress-outranking-plugin-options-plugin-1-1-3-broken-access-control-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73386","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73386 — Unauthenticated Sensitive Data Exposure in Track Geolocation Of Users Using Contact Form 7 <= 3.0.2…","description":"Unauthenticated Sensitive Data Exposure in Track Geolocation Of Users Using Contact Form 7 <= 3.0.2 versions.","indicators":{"cves":["CVE-2026-73386"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T13:18:07.910Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/track-geolocation-of-users-using-contact-form-7/vulnerability/wordpress-track-geolocation-of-users-using-contact-form-7-plugin-3-0-2-sensitive-data-exposure-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73387","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73387 — Unauthenticated Local File Inclusion in Resido <= 1.5 versions.","description":"Unauthenticated Local File Inclusion in Resido <= 1.5 versions.","indicators":{"cves":["CVE-2026-73387"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T13:18:08.033Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://patchstack.com/database/wordpress/theme/resido/vulnerability/wordpress-resido-theme-1-5-local-file-inclusion-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73394","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73394 — Unauthenticated Broken Access Control in Stitch Express <= 1.9.0 versions.","description":"Unauthenticated Broken Access Control in Stitch Express <= 1.9.0 versions.","indicators":{"cves":["CVE-2026-73394"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T13:18:08.670Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/stitch-express/vulnerability/wordpress-stitch-express-plugin-1-9-0-broken-access-control-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76235","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76235 — A memory leak flaw was found in cockpit-ws. The login page handler leaks a heap allocation on every…","description":"A memory leak flaw was found in cockpit-ws. The login page handler leaks a heap allocation on every unauthenticated request that carries a CockpitLang cookie, allowing a remote unauthenticated attacker to exhaust memory on the host and cause a denial of service.","indicators":{"cves":["CVE-2026-76235"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T13:18:11.637Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-76235","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2519497","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-43961","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-43961 — A flaw was found in Vim's netrw plugin. A crafted filename containing quote characters and expressio…","description":"A flaw was found in Vim's netrw plugin. A crafted filename containing quote characters and expression fragments can break out of the quoted context during mark/unmark operations, allowing arbitrary Vimscript execution. This can be leveraged to run shell commands with the privileges of the user runni…","indicators":{"cves":["CVE-2026-43961"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:31.793Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-43961","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2460434","label":"secalert@redhat.com","domainType":"other"},{"url":"https://github.com/vim/vim/security/advisories/GHSA-66hr-7p6x-x5j3","label":"secalert@redhat.com","domainType":"primary"},{"url":"http://www.openwall.com/lists/oss-security/2026/05/14/7","label":"af854a3a-2127-422b-91ae-364da2661108","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-54794","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-54794 — Dell OpenManage Enterprise, versions prior to 4.7.0, contains a Server-Side Request Forgery (SSRF) v…","description":"Dell OpenManage Enterprise, versions prior to 4.7.0, contains a Server-Side Request Forgery (SSRF) vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Information exposure.","indicators":{"cves":["CVE-2026-54794"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:34.040Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://www.dell.com/support/kbdoc/en-us/000500910/dsa-2026-359-security-update-for-dell-openmanage-enterprise-vulnerabilities","label":"security_alert@emc.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-54795","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-54795 — Dell OpenManage Enterprise, versions prior to 4.7.0, contains an Improper Neutralization of Special…","description":"Dell OpenManage Enterprise, versions prior to 4.7.0, contains an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Command execution.","indicators":{"cves":["CVE-2026-54795","CVE-2026-54796","CVE-2026-56088","CVE-2026-70422","CVE-2026-71176"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:34.200Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://www.dell.com/support/kbdoc/en-us/000500910/dsa-2026-359-security-update-for-dell-openmanage-enterprise-vulnerabilities","label":"security_alert@emc.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70421","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-70421 — Dell OpenManage Enterprise, versions prior to 4.7.0, contains an Improper Privilege Management vulne…","description":"Dell OpenManage Enterprise, versions prior to 4.7.0, contains an Improper Privilege Management vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Elevation of privileges.","indicators":{"cves":["CVE-2026-70421"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:38.743Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://www.dell.com/support/kbdoc/en-us/000500910/dsa-2026-359-security-update-for-dell-openmanage-enterprise-vulnerabilities","label":"security_alert@emc.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75916","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75916 — SiYuan through 3.7.3 contains a cross-site scripting vulnerability in the '((' block-reference autoc…","description":"SiYuan through 3.7.3 contains a cross-site scripting vulnerability in the '((' block-reference autocomplete hint popup. In genHintItemHTML() (app/src/protyle/hint/extend.ts), a candidate block's name, alias, and memo fields are concatenated into the popup's HTML without escaping. An attacker who can…","indicators":{"cves":["CVE-2026-75916"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:41.687Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-5prr-vgxq-69g9","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/siyuan-xss-to-rce-via-unescaped-block-metadata-in-hint-popup","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75917","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75917 — SiYuan before v3.7.4 contains a cross-site scripting vulnerability in the file-tree picker's hover-t…","description":"SiYuan before v3.7.4 contains a cross-site scripting vulnerability in the file-tree picker's hover-tooltip generation (app/src/util/pathName.ts, getLeaf()/movePathTo()) used by the 'move/link to' path-selection dialogs, where document metadata fields (bookmark, alias, memo, and an alternate name fie…","indicators":{"cves":["CVE-2026-75917"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:41.840Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-jjq3-3942-x99r","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/siyuan-before-xss-to-rce-via-pathname-ts","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-jjq3-3942-x99r","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75918","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75918 — phpMyFAQ before 4.1.7 stores password reset tokens in a publicly accessible tracking file when user…","description":"phpMyFAQ before 4.1.7 stores password reset tokens in a publicly accessible tracking file when user tracking is enabled. Unauthenticated attackers can read the tracking file at content/core/data/trackingDDMMYYYY to extract reset tokens and replay them against the password reset API to take over user…","indicators":{"cves":["CVE-2026-75918"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:42.053Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/thorsten/phpMyFAQ/security/advisories/GHSA-j5w2-cwwj-xj7x","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/phpmyfaq-before-authentication-bypass-via-tracking-file","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76205","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76205 — phpMyFAQ before 4.1.7 contains a SQL injection vulnerability in the glossary create and update endpo…","description":"phpMyFAQ before 4.1.7 contains a SQL injection vulnerability in the glossary create and update endpoints caused by truncating an escaped string before embedding it in a SQL literal. Authenticated users with glossary add or edit permissions can craft a payload with a dangling backslash to escape the…","indicators":{"cves":["CVE-2026-76205"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:45.777Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/thorsten/phpMyFAQ/security/advisories/GHSA-79h3-6hxj-g98h","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/phpmyfaq-before-sql-injection-via-glossary","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76207","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76207 — phpMyFAQ before 4.1.7 contains a two-factor authentication bypass vulnerability where remember-me to…","description":"phpMyFAQ before 4.1.7 contains a two-factor authentication bypass vulnerability where remember-me tokens are issued before 2FA verification completes. Attackers with valid credentials can obtain a remember-me cookie, skip the 2FA challenge, and replay the cookie to gain full authenticated access wit…","indicators":{"cves":["CVE-2026-76207"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:46.073Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/thorsten/phpMyFAQ/security/advisories/GHSA-hvj7-4fmg-53cr","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/phpmyfaq-before-2fa-bypass-via-remember-me-cookie","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76208","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76208 — phpMyFAQ versions 3.1.0 through 4.1.6 contain an authentication bypass vulnerability in AuthLdap::cr…","description":"phpMyFAQ versions 3.1.0 through 4.1.6 contain an authentication bypass vulnerability in AuthLdap::create(). When LDAP authentication is enabled, after a successful LDAP bind the code calls User::setStatus('active') unconditionally, which overwrites the account_status column of a pre-existing local a…","indicators":{"cves":["CVE-2026-76208"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:46.220Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/thorsten/phpMyFAQ/security/advisories/GHSA-8pr3-q3cw-q234","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/phpmyfaq-through-authentication-bypass-via-ldap","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/thorsten/phpMyFAQ/security/advisories/GHSA-8pr3-q3cw-q234","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-76213","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76213 — phpMyFAQ before 4.1.7 contains a brute-force vulnerability in the two-factor authentication step whe…","description":"phpMyFAQ before 4.1.7 contains a brute-force vulnerability in the two-factor authentication step where the failure counter is session-scoped and reset on each successful password re-authentication. Attackers with a valid password can bypass the five-attempt limit by obtaining a fresh session cookie…","indicators":{"cves":["CVE-2026-76213"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:47.330Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/thorsten/phpMyFAQ/security/advisories/GHSA-f98m-hcjv-7rp9","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/phpmyfaq-before-2fa-brute-force-via-session-scoped-throttle","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/thorsten/phpMyFAQ/security/advisories/GHSA-f98m-hcjv-7rp9","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-76214","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76214 — phpMyFAQ before 4.1.7 (affected versions <= 4.1.5) fails to persist the WebAuthn login challenge gen…","description":"phpMyFAQ before 4.1.7 (affected versions <= 4.1.5) fails to persist the WebAuthn login challenge generated by prepareForLogin, because neither WebAuthn controller saves the mutated key objects back to the database. At login the anti-replay comparison is skipped by its own null guard, allowing an att…","indicators":{"cves":["CVE-2026-76214"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:47.473Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/thorsten/phpMyFAQ/security/advisories/GHSA-f534-wv9g-wx2w","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/phpmyfaq-before-webauthn-replay-attack-via-challenge","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76216","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76216 — Vikunja through 2.4.0 contains a principal-type confusion vulnerability where LinkSharing principals…","description":"Vikunja through 2.4.0 contains a principal-type confusion vulnerability where LinkSharing principals with id N are treated as user principals with users.id == N at three permission checks lacking type guards. Attackers with a link-share JWT can remove victims from teams, enumerate and delete victim…","indicators":{"cves":["CVE-2026-76216"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:47.743Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/go-vikunja/vikunja/security/advisories/GHSA-32r8-5843-4qw2","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/vikunja-through-principal-type-confusion-via-linksharing","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76218","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76218 — GitPython before 3.1.58 contains a remote code execution vulnerability in Repo.init that forwards un…","description":"GitPython before 3.1.58 contains a remote code execution vulnerability in Repo.init that forwards unsafe git options without validation. Attackers can supply a template parameter pointing to a directory with malicious git hooks that execute arbitrary code when git operations are performed on the ini…","indicators":{"cves":["CVE-2026-76218"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:48.040Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/gitpython-developers/GitPython/security/advisories/GHSA-9rj7-rf2p-w77r","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/gitpython-before-remote-code-execution-via-repo-init","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76219","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76219 — GitPython versions before 3.1.58 contain an arbitrary file overwrite vulnerability in IndexFile.from…","description":"GitPython versions before 3.1.58 contain an arbitrary file overwrite vulnerability in IndexFile.from_tree, IndexFile.reset, and IndexFile.merge_tree methods that append caller-influenced treeish strings to git read-tree without option validation or argument separation. Attackers can inject the --ind…","indicators":{"cves":["CVE-2026-76219"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:48.187Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/gitpython-developers/GitPython/security/advisories/GHSA-4gmw-gg2m-w46p","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/gitpython-before-arbitrary-file-overwrite-via-read-tree","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76220","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76220 — GitPython before 3.1.58 contains a command execution vulnerability in the check_unsafe_options guard…","description":"GitPython before 3.1.58 contains a command execution vulnerability in the check_unsafe_options guard that can be bypassed by combining a single-character kwarg with split_single_char_options=False. Attackers can supply a crafted kwargs dictionary to guarded methods like clone_from to emit a joined t…","indicators":{"cves":["CVE-2026-76220"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:48.323Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/gitpython-developers/GitPython/security/advisories/GHSA-wvpp-8hx9-p66j","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/gitpython-before-command-execution-via-split-single-char-options","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76221","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76221 — GitPython before 3.1.58 contains a config-name injection vulnerability in the option-name validator…","description":"GitPython before 3.1.58 contains a config-name injection vulnerability in the option-name validator that allows attackers to forge arbitrary git-config directives by injecting equals signs, hash symbols, and whitespace into option names. Attackers can inject malicious option names like 'sshCommand =…","indicators":{"cves":["CVE-2026-76221"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:48.463Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/gitpython-developers/GitPython/security/advisories/GHSA-jm78-9fvv-mhgr","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/gitpython-before-config-injection-via-option-name","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76222","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76222 — GitPython before 3.1.58 fails to validate submodule names from .gitmodules files, allowing attackers…","description":"GitPython before 3.1.58 fails to validate submodule names from .gitmodules files, allowing attackers to create Git repositories at arbitrary filesystem paths outside the intended clone directory. Attackers can craft malicious repositories with traversal sequences in submodule names that GitPython pr…","indicators":{"cves":["CVE-2026-76222"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:48.603Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/gitpython-developers/GitPython/security/advisories/GHSA-hmq2-w58f-27jc","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/gitpython-before-path-traversal-via-gitmodules-submodule-name","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76223","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76223 — ArcadeDB (com.arcadedb) versions 26.7.3 and earlier fail to enforce the UPDATE_SCHEMA permission che…","description":"ArcadeDB (com.arcadedb) versions 26.7.3 and earlier fail to enforce the UPDATE_SCHEMA permission check when a DEFINE FUNCTION statement targets an already-existing function library. A user with only database access can add or overwrite SQL or Cypher functions in an existing library and persist the c…","indicators":{"cves":["CVE-2026-76223"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:48.740Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/ArcadeData/arcadedb/security/advisories/GHSA-rv64-62hr-wv2p","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/arcadedb-before-permission-bypass-via-define-function","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76224","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76224 — ArcadeDB before 26.8.1 (arcadedb-gremlin, affected <= 26.7.3) contains a remote code execution vulne…","description":"ArcadeDB before 26.8.1 (arcadedb-gremlin, affected <= 26.7.3) contains a remote code execution vulnerability in its Gremlin query engine. Although the engine defaults to the documented-secure java (gremlin-lang) engine, ArcadeGremlin.executeStatement() silently falls back to the insecure Groovy engi…","indicators":{"cves":["CVE-2026-76224"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:48.880Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/ArcadeData/arcadedb/security/advisories/GHSA-wcm5-4wjm-9wj3","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/arcadedb-before-remote-code-execution-via-groovy-fallback","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76225","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76225 — ArcadeDB before 26.8.1 contains a server-side request forgery vulnerability in the OpenCypher LOAD C…","description":"ArcadeDB before 26.8.1 contains a server-side request forgery vulnerability in the OpenCypher LOAD CSV implementation that fails to validate HTTP/HTTPS URLs. Authenticated attackers can craft LOAD CSV queries pointing to internal network addresses or cloud metadata endpoints to make the ArcadeDB ser…","indicators":{"cves":["CVE-2026-76225"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:49.020Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/ArcadeData/arcadedb/security/advisories/GHSA-mmww-w3w3-6r86","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/arcadedb-before-server-side-request-forgery-via-load-csv","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76234","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76234 — libcrux-ecdh and libcrux-ed25519 before 0.0.6, and libcrux-psq before 0.0.7, contain cryptographic i…","description":"libcrux-ecdh and libcrux-ed25519 before 0.0.6, and libcrux-psq before 0.0.7, contain cryptographic implementation bugs. libcrux-ecdh did not properly check length and clamping during X25519 secret validation (and had a broken clamping check for imported X25519 secret keys); libcrux-ed25519 performed…","indicators":{"cves":["CVE-2026-76234"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:52.797Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/celabshq/libcrux/security/advisories/GHSA-435g-fcv3-8j26","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/libcrux-before-cryptographic-implementation-bug-fixes","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-14970","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-14970 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 NIM server process is crashing during client registrat…","description":"IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 NIM server process is crashing during client registration due to buffer overflow.","indicators":{"cves":["CVE-2026-14970"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:16:55.427Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283858","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15061","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-15061 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 's nimesis registration service could allow a remote a…","description":"IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 's nimesis registration service could allow a remote attacker to overwrite files due to path traversal.","indicators":{"cves":["CVE-2026-15061"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:16:55.610Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283858","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15078","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-15078 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 NIM could allow a remote attacker to gain unauthorized…","description":"IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 NIM could allow a remote attacker to gain unauthorized access to AIX systems due to improper validation of TLS certificates.","indicators":{"cves":["CVE-2026-15078"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:16:56.127Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283858","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16686","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-16686 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to access NFS-exported f…","description":"IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to access NFS-exported filesystems due to improper authentication.","indicators":{"cves":["CVE-2026-16686"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:16:56.727Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283858","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16703","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-16703 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to gain elevated privileg…","description":"IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to gain elevated privileges due to improper privilege management.","indicators":{"cves":["CVE-2026-16703","CVE-2026-16923","CVE-2026-16934","CVE-2026-16935","CVE-2026-16937","CVE-2026-16946","CVE-2026-16989","CVE-2026-16991","CVE-2026-18842"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:16:57.050Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283858","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-23501","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-23501 — Dell RecoverPoint for VMs, versions 6.0.3 and 6.0.3.1, contains an Improper Neutralization of Specia…","description":"Dell RecoverPoint for VMs, versions 6.0.3 and 6.0.3.1, contains an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Command execution.","indicators":{"cves":["CVE-2026-23501"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:16:59.270Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://www.dell.com/support/kbdoc/en-us/000501664/dsa-2026-096-security-update-for-dell-recoverpoint-for-virtual-machines-multiple-vulnerabilities","label":"security_alert@emc.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-44829","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-44829 — Gotenberg is a Docker-powered stateless API for PDF files. In 8.32.0 and earlier, filename handling…","description":"Gotenberg is a Docker-powered stateless API for PDF files. In 8.32.0 and earlier, filename handling in pkg/modules/api/context.go uses filepath.Base on Linux, which does not treat backslashes as path separators, so a multipart filename containing Windows-style parent directory components survives sa…","indicators":{"cves":["CVE-2026-44829"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:17:02.630Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/gotenberg/gotenberg/commit/93d0103585372433e18b351bb16edf4c383932d3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/gotenberg/gotenberg/issues/662","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/gotenberg/gotenberg/releases/tag/v8.33.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/gotenberg/gotenberg/security/advisories/GHSA-hwc4-gmrw-5222","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-45741","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-45741 — Gotenberg is a Docker-powered stateless API for PDF files. In 8.32.0 and earlier, the IsPublicIP fun…","description":"Gotenberg is a Docker-powered stateless API for PDF files. In 8.32.0 and earlier, the IsPublicIP function in pkg/gotenberg/outbound.go does not reject the 2002::/16 6to4 prefix, the 64:ff9b::/96 and 64:ff9b:1::/48 NAT64 prefixes, the fec0::/10 deprecated site-local prefix, Teredo, and other transiti…","indicators":{"cves":["CVE-2026-45741"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:17:05.023Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/gotenberg/gotenberg/commit/f9a01c9fb308372170ab7fc97b17a118ee8a125c","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/gotenberg/gotenberg/releases/tag/v8.33.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/gotenberg/gotenberg/security/advisories/GHSA-86m8-88fq-xfxp","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/gotenberg/gotenberg/security/advisories/GHSA-86m8-88fq-xfxp","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-45742","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-45742 — Gotenberg is a Docker-powered stateless API for PDF files. From 8.10.0 until 8.33.0, the newContext…","description":"Gotenberg is a Docker-powered stateless API for PDF files. From 8.10.0 until 8.33.0, the newContext function in pkg/modules/api/context.go starts one errgroup.Go goroutine for each multipart downloadFrom entry and allows those goroutines to concurrently write to the shared ctx.files, ctx.diskToOrigi…","indicators":{"cves":["CVE-2026-45742"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:17:05.170Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/gotenberg/gotenberg/commit/6671b5e5d30289087ca80130fc76f130cfa4dd7b","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/gotenberg/gotenberg/releases/tag/v8.33.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/gotenberg/gotenberg/security/advisories/GHSA-vp73-vjw8-8f32","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/gotenberg/gotenberg/security/advisories/GHSA-vp73-vjw8-8f32","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-48711","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-48711 — SSHFS is a network filesystem client for connecting to SSH servers. From version 1.4 until 3.7.6, SS…","description":"SSHFS is a network filesystem client for connecting to SSH servers. From version 1.4 until 3.7.6, SSHFS accepts a bracketed mount source such as [-oProxyCommand=CMD]:/path and find_base_path() removes the brackets, leaving a host value that begins with - and is passed directly to ssh as a command-li…","indicators":{"cves":["CVE-2026-48711"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:17:05.580Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/libfuse/sshfs/commit/29bb565ea6405e2dd5a0ea65fe64da117e76055e","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libfuse/sshfs/pull/362","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libfuse/sshfs/releases/tag/sshfs-3.7.6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libfuse/sshfs/security/advisories/GHSA-mm85-q63v-4476","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-49253","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-49253 — electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. Prior to 3…","description":"electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. Prior to 3.11.11, electerm uses remote-supplied filenames directly with path.join() while receiving Zmodem and Trzsz transfers. In src/app/server/zmodem.js, prepareReceiveFile() joins the filename to the user-s…","indicators":{"cves":["CVE-2026-49253","CVE-2026-49255"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:17:06.747Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/electerm/electerm/commit/fde153d677a170c5816368f6586647f3af4ef284","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/electerm/electerm/releases/tag/v3.11.11","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/electerm/electerm/security/advisories/GHSA-38j7-23hf-9mhc","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/electerm/electerm/commit/aa778818843b9c083bd711cd04644d102fcb5a42","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/electerm/electerm/security/advisories/GHSA-v5ff-xmfp-p245","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-49283","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-49283 — The SimpleSAMLphp SAML2 library is a PHP library for SAML2 related functionality. Prior to versions…","description":"The SimpleSAMLphp SAML2 library is a PHP library for SAML2 related functionality. Prior to versions 4.19.3, 4.20.2, 5.0.6, and 6.2.1, the HTTPArtifact::receive() flow can treat an unsigned embedded SAML Response as cryptographically valid for the wrong identity provider. SOAPClient::addSSLValidator(…","indicators":{"cves":["CVE-2026-49283"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:17:07.027Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/simplesamlphp/saml2/commit/4a71b20d8d845579fd0a54d6449c265b40db459d","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/simplesamlphp/saml2/commit/a2c1ac588c70d7b7998546cf32675fb113f22a5f","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/simplesamlphp/saml2/commit/d5c213132ef671c0018a11252322034dbddd735a","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/simplesamlphp/saml2/commit/e2df7992609964951b2a3e7d6566b7427b2a968f","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/simplesamlphp/saml2/security/advisories/GHSA-6929-8p9f-26jx","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-49289","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-49289 — The SimpleSAMLphp SAML2 library is a PHP library for SAML2 related functionality. In 4.19.2 and 4.20…","description":"The SimpleSAMLphp SAML2 library is a PHP library for SAML2 related functionality. In 4.19.2 and 4.20.2, the library permits attacker-controlled XPath transforms while processing XML signatures in specially crafted SAML messages. XPath evaluation can consume uncontrolled processing resources, allowin…","indicators":{"cves":["CVE-2026-49289"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:17:07.180Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/simplesamlphp/saml2/commit/0043033891fdba9618386ab583e1d8afdf8aea6e","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/simplesamlphp/saml2/commit/6695eb923da491f716009c2a26b34a463ac05c6b","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/simplesamlphp/saml2/security/advisories/GHSA-5cjr-mxj5-wmrx","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-49816","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-49816 — Dell Command Update (DCU), versions prior to 5.7.1, contain a Deserialization of Untrusted Data vuln…","description":"Dell Command Update (DCU), versions prior to 5.7.1, contain a Deserialization of Untrusted Data vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of Privileges.","indicators":{"cves":["CVE-2026-49816","CVE-2026-49817"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:17:07.337Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://www.dell.com/support/kbdoc/en-us/000501378/dsa-2026-309-security-update-for-dell-command-update-for-multiple-vulnerabilities","label":"security_alert@emc.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-52834","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-52834 — jxl-oxide is a pure Rust implementation of a JPEG XL decoder. Prior to jxl-grid 0.6.2, decoding a cr…","description":"jxl-oxide is a pure Rust implementation of a JPEG XL decoder. Prior to jxl-grid 0.6.2, decoding a crafted JPEG XL image on a 32-bit platform can overflow length calculations in AlignedGrid::with_alloc_tracker and related grid and subgrid arithmetic. A 65536 x 65536 frame can pass the frame-area limi…","indicators":{"cves":["CVE-2026-52834"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:17:09.810Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/tirr-c/jxl-oxide/commit/3986dadd3926a95656a642e74a0702d52f5c92e2","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/tirr-c/jxl-oxide/releases/tag/0.12.6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/tirr-c/jxl-oxide/security/advisories/GHSA-5pmv-rx8r-wmv5","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://rustsec.org/advisories/RUSTSEC-2026-0151.html","label":"security-advisories@github.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-53477","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-53477 — Dell Command Update (DCU), versions prior to 5.7.1, contain a Time-of-check Time-of-use (TOCTOU) Rac…","description":"Dell Command Update (DCU), versions prior to 5.7.1, contain a Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of Privileges.","indicators":{"cves":["CVE-2026-53477"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:17:10.417Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://www.dell.com/support/kbdoc/en-us/000501378/dsa-2026-309-security-update-for-dell-command-update-for-multiple-vulnerabilities","label":"security_alert@emc.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-56797","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-56797 — Dell Command Update (DCU), versions prior to 5.7.1, a Time-of-check Time-of-use (TOCTOU) Race Condit…","description":"Dell Command Update (DCU), versions prior to 5.7.1, a Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of Privileges.","indicators":{"cves":["CVE-2026-56797"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:17:11.923Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://www.dell.com/support/kbdoc/en-us/000501378/dsa-2026-309-security-update-for-dell-command-update-for-multiple-vulnerabilities","label":"security_alert@emc.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-58562","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-58562 — Dell Command Update (DCU), versions prior to 5.7.1, contain a Missing Authorization vulnerability. A…","description":"Dell Command Update (DCU), versions prior to 5.7.1, contain a Missing Authorization vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Unauthorized access.","indicators":{"cves":["CVE-2026-58562","CVE-2026-58565"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:17:12.603Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://www.dell.com/support/kbdoc/en-us/000501378/dsa-2026-309-security-update-for-dell-command-update-for-multiple-vulnerabilities","label":"security_alert@emc.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-58564","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-58564 — Dell Command Update (DCU), versions prior to 5.7.1, contain an Incorrect Default Permissions vulnera…","description":"Dell Command Update (DCU), versions prior to 5.7.1, contain an Incorrect Default Permissions vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Filesystem access for attacker.","indicators":{"cves":["CVE-2026-58564"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:17:12.980Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://www.dell.com/support/kbdoc/en-us/000501378/dsa-2026-309-security-update-for-dell-command-update-for-multiple-vulnerabilities","label":"security_alert@emc.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-71961","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-71961 — Cudy WR3000 2.0 running firmware before 2.5.24 contains an OS command injection vulnerability that a…","description":"Cudy WR3000 2.0 running firmware before 2.5.24 contains an OS command injection vulnerability that allows authenticated attackers to execute arbitrary OS commands with root privileges by sending unsanitized input through the mesh MQTT command interface. The sync_command binary forwards unsanitized i…","indicators":{"cves":["CVE-2026-71961"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:18:02.083Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://www.cudy.com/en-us/pages/download-center/wr3000-2-0","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://www.vulncheck.com/advisories/cudy-wr3000-os-command-injection-via-mesh-mqtt-command-handler","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16819","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-16819 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to cause a denial of serv…","description":"IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to cause a denial of service and compromise data integrity due to a time-of-check time-of-use race condition.","indicators":{"cves":["CVE-2026-16819","CVE-2026-19653","CVE-2026-16855","CVE-2026-16897","CVE-2026-16952","CVE-2026-16980","CVE-2026-17009","CVE-2026-17195","CVE-2026-18822"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T16:17:06.297Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283858","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-61607","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-61607 — Grav API Plugin is a RESTful API for Grav CMS that provides full headless access to your site's cont…","description":"Grav API Plugin is a RESTful API for Grav CMS that provides full headless access to your site's content. Prior to 1.0.2, the Grav API plugin POST /api/v1/media pipeline in HandlesMediaUploads::processUploadedFile() validates an SVG filename extension but does not invoke Security::sanitizeSVG(). An a…","indicators":{"cves":["CVE-2026-61607","CVE-2026-62666","CVE-2026-62667","CVE-2026-62668","CVE-2026-63407","CVE-2026-63408","CVE-2026-64852"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T16:18:16.723Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/getgrav/grav-plugin-api/commit/d25eedb84a387f2c71b12a374f2a4b3d74339a7e","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav-plugin-api/releases/tag/1.0.2","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-7vhm-8x52-2r5p","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav-plugin-api/commit/dfcc947f0d6758772caac290c68fe8d4c4a4874e","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav-plugin-api/releases/tag/1.0.6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-8gg4-rvvv-cq96","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-x7hm-jc32-v39j","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-58q8-f7v4-w2vf","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav-plugin-api/commit/56ae2ca3bf36c8299a4b3d376c6a20e8c0ed5ba9","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav-plugin-api/releases/tag/1.0.0-rc.16","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-93px-98wh-6fj2","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-4hpj-wmpw-ghwq","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav-plugin-api/commit/ed16f0aaa9b398c6f179fb8f51e0fa53e4ed8a30","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav-plugin-api/releases/tag/1.0.8","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-7v74-m76q-8wf3","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-62669","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-62669 — Grav Login Plugin adds login, basic ACL, and session wide messages to Grav. Prior to 3.8.11, the Gra…","description":"Grav Login Plugin adds login, basic ACL, and session wide messages to Grav. Prior to 3.8.11, the Grav Login plugin login.regenerate2FASecret task checks only that the pending-session user exists rather than requiring $user->authorized. After submitting a victim's correct password, an attacker can in…","indicators":{"cves":["CVE-2026-62669","CVE-2026-62671"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T16:18:19.460Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/getgrav/grav-plugin-login/commit/5d1b722298cb947d8f434025d121b99152a2c630","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav-plugin-login/releases/tag/3.8.11","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-7mgc-c7pq-3rr3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-4px8-7p53-282r","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-20320","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-20320 — A vulnerability in the Open Client Interface (OCI) XML Parser of Cisco BroadWorks could allow an una…","description":"A vulnerability in the Open Client Interface (OCI) XML Parser of Cisco BroadWorks could allow an unauthenticated, remote attacker to read sensitive configuration information on an affected system.\r\n\r This vulnerability exists because XML entries are improperly parsed due to external entity resolutio…","indicators":{"cves":["CVE-2026-20320"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T17:18:40.433Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-bworks-xxe-uwUd7CEt","label":"psirt@cisco.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75141","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75141 — FFmpeg before commit acf5d7c contains a heap buffer overflow in the hvcC box writer. When writing an…","description":"FFmpeg before commit acf5d7c contains a heap buffer overflow in the hvcC box writer. When writing an HEVC configuration record with more NAL units of a single type than the count field can represent, the NAL unit count overflows, causing a heap buffer overflow. A crafted HEVC input file triggers the…","indicators":{"cves":["CVE-2026-75141"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T17:21:12.287Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://code.ffmpeg.org/FFmpeg/FFmpeg/commit/acf5d7cdc1f9ae8752c23e1ea8d7f355ed780781","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://code.ffmpeg.org/FFmpeg/FFmpeg/pulls/24088","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://www.vulncheck.com/advisories/ffmpeg-heap-buffer-overflow-in-hvcc-box-writer-via-hevc-muxing","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75142","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75142 — FFmpeg before commit 9d786e4 contains a stack buffer overflow in the MPEG-PS muxer (libavformat/mpeg…","description":"FFmpeg before commit 9d786e4 contains a stack buffer overflow in the MPEG-PS muxer (libavformat/mpegenc.c). When muxing input with more streams than the muxer's fixed-size stack buffer accommodates, the buffer is overflowed. A crafted input with an excessive number of streams triggers the overflow d…","indicators":{"cves":["CVE-2026-75142"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T17:21:12.437Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://code.ffmpeg.org/FFmpeg/FFmpeg/commit/9d786e4b5e9b8482651928574de33772aeee7be1","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://code.ffmpeg.org/FFmpeg/FFmpeg/pulls/24087","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://www.vulncheck.com/advisories/ffmpeg-stack-buffer-overflow-in-mpeg-ps-muxer-via-mpegenc-c","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75144","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75144 — FFmpeg before commit 1cdeb3c contains a heap buffer overflow vulnerability in the VC-2/Dirac RTP pac…","description":"FFmpeg before commit 1cdeb3c contains a heap buffer overflow vulnerability in the VC-2/Dirac RTP packetizer (libavformat/rtpenc_vc2hq.c) that allows attackers to trigger memory corruption by supplying a crafted Dirac data unit. The packetizer copies an input-derived data unit or fragment size into a…","indicators":{"cves":["CVE-2026-75144"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T17:21:12.720Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://code.ffmpeg.org/FFmpeg/FFmpeg/commit/1cdeb3c4e7f1f8566d846b9b451e01c376398818","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://code.ffmpeg.org/FFmpeg/FFmpeg/pulls/24091","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://www.vulncheck.com/advisories/ffmpeg-heap-buffer-overflow-in-vc-2-dirac-rtp-packetizer","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75146","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75146 — FFmpeg before commit 65b0dab contains an out-of-bounds read in the DASH demuxer (libavformat/dashdec…","description":"FFmpeg before commit 65b0dab contains an out-of-bounds read in the DASH demuxer (libavformat/dashdec.c). When a live DASH manifest is refreshed with a startNumber that is lower than the previous value, the current sequence number is driven negative. The fragment retrieval function checked only the u…","indicators":{"cves":["CVE-2026-75146"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T17:21:13.057Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://code.ffmpeg.org/FFmpeg/FFmpeg/commit/65b0dab903e5975e036b30ecc58f5935d4f151e0","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://code.ffmpeg.org/FFmpeg/FFmpeg/pulls/24093","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://www.vulncheck.com/advisories/ffmpeg-out-of-bounds-read-in-dash-demuxer-via-dashdec-c","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75147","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75147 — FFmpeg before commit 983dae9 contains an out-of-bounds read in the AV1 RTP packetizer (libavformat/r…","description":"FFmpeg before commit 983dae9 contains an out-of-bounds read in the AV1 RTP packetizer (libavformat/rtpenc_av1.c). The keyframe detection loop that searches for a sequence header OBU advanced its pointer and remaining-size counter by the encoded header length plus the OBU payload size without first b…","indicators":{"cves":["CVE-2026-75147"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T17:21:13.290Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://code.ffmpeg.org/FFmpeg/FFmpeg/commit/983dae9c19f46c87d597598c0fd2f2fcee0ad2f8","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://code.ffmpeg.org/FFmpeg/FFmpeg/pulls/24096","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://www.vulncheck.com/advisories/ffmpeg-out-of-bounds-read-in-av1-rtp-packetizer-via-rtpenc-av1-c","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-17183","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-17183 — An authenticated user with permission to create or edit alert rules can bypass datasource query auth…","description":"An authenticated user with permission to create or edit alert rules can bypass datasource query authorization by marking an alert rule query as a server-side expression while referencing a real datasource UID (incorrect authorization). This can expose data accessible through Grafana's configured dat…","indicators":{"cves":["CVE-2026-17183"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T18:16:35.940Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://grafana.com/security/security-advisories/cve-2026-17183","label":"security@grafana.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19234","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19234 — Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, and FW1060.00 through FW1060.80 is af…","description":"Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, and FW1060.00 through FW1060.80 is affected by a vulnerability in the host firmware boot process image validation path. An attacker with service access to the service processor can supply a maliciously crafted code update image, allowing…","indicators":{"cves":["CVE-2026-19234","CVE-2026-19321"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T18:16:36.200Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283221","label":"psirt@us.ibm.com","domainType":"other"},{"url":"https://www.ibm.com/support/pages/node/7283222","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19875","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19875 — IBM Langflow OSS 1.0.0 through 1.10.0 could allow a remote attacker to overwrite administrator email…","description":"IBM Langflow OSS 1.0.0 through 1.10.0 could allow a remote attacker to overwrite administrator email information and abuse the server as an outbound relay due to missing authentication for the registration endpoint.","indicators":{"cves":["CVE-2026-19875"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T18:16:36.557Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283810","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-61518","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-61518 — ISPConfig contains an authenticated SQL injection vulnerability in the Remote API. The primary_id pa…","description":"ISPConfig contains an authenticated SQL injection vulnerability in the Remote API. The primary_id parameter passed to delete and update API methods is concatenated directly into SQL WHERE clauses without integer casting or parameterized query binding. The built-in SQL injection scanner does not bloc…","indicators":{"cves":["CVE-2026-61518"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T18:16:51.977Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://github.com/geo-chen/oss/blob/main/ispconfig3.md","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/ispconfig-authenticated-sql-injection-via-remote-api-primary-id-parameter","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-62680","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-62680 — Orval generates type-safe JavaScript clients in TypeScript from OpenAPI v3 and Swagger v2 specificat…","description":"Orval generates type-safe JavaScript clients in TypeScript from OpenAPI v3 and Swagger v2 specifications. Prior to 8.22.0, Orval resolves remote and local external $ref values without an allowlist or confinement to the input directory. Processing an attacker-controlled OpenAPI description can cause…","indicators":{"cves":["CVE-2026-62680","CVE-2026-62681","CVE-2026-62682","CVE-2026-71864","CVE-2026-71865","CVE-2026-71866","CVE-2026-71867","CVE-2026-71868","CVE-2026-71869","CVE-2026-71871","CVE-2026-72716","CVE-2026-72717"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T18:16:54.230Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://github.com/orval-labs/orval/commit/23786c056f4eba38c02bf2968677988dbbe4de10","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/orval-labs/orval/pull/3723","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/orval-labs/orval/releases/tag/v8.22.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/orval-labs/orval/security/advisories/GHSA-cxq5-97v7-87j8","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/orval-labs/orval/commit/8ef1bfdf3f9bcaf9dabfbe2e42887f1c0e159ab6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/orval-labs/orval/pull/3692","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/orval-labs/orval/releases/tag/v8.21.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/orval-labs/orval/security/advisories/GHSA-fg9p-mrxr-hvq7","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/orval-labs/orval/security/advisories/GHSA-88f2-fpv8-89q2","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/orval-labs/orval/security/advisories/GHSA-6437-gxhq-pqv8","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/orval-labs/orval/security/advisories/GHSA-653q-5476-x79g","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/orval-labs/orval/security/advisories/GHSA-6mr6-jvcr-2f25","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/orval-labs/orval/security/advisories/GHSA-2w86-xfrc-g85r","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/orval-labs/orval/security/advisories/GHSA-3575-w9fc-c2j6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/orval-labs/orval/security/advisories/GHSA-2h9g-j24r-h63g","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/orval-labs/orval/security/advisories/GHSA-8j6p-r8jg-mxqh","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/orval-labs/orval/security/advisories/GHSA-p4cg-3328-rvfg","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/orval-labs/orval/security/advisories/GHSA-w727-8j6c-2rj4","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75149","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75149 — marimo before 0.23.15 contains a code injection vulnerability in the notebook configuration handler…","description":"marimo before 0.23.15 contains a code injection vulnerability in the notebook configuration handler that allows attackers to execute arbitrary commands by supplying a crafted MCP server entry with an attacker-controlled command value embedded in a notebook. When the notebook is opened in edit mode,…","indicators":{"cves":["CVE-2026-75149"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T18:17:26.080Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://github.com/marimo-team/marimo/commit/1a21bd71e258438d2511136b5edacc94c08855f4","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/marimo-team/marimo/pull/10281","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/marimo-team/marimo/releases/tag/0.23.15","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/marimo-code-injection-via-mcp-server-configuration","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16930","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-16930 — IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, and FW1060.00 through FW1060.80 i…","description":"IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, and FW1060.00 through FW1060.80 is affected by a vulnerability in the interface between the BMC/FSP and the host system. An attacker with service account or root access to the BMC/FSP can execute arbitrary code on the host system, gi…","indicators":{"cves":["CVE-2026-16930","CVE-2026-17063"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T19:17:10.823Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283217","label":"psirt@us.ibm.com","domainType":"other"},{"url":"https://www.ibm.com/support/pages/node/7283219","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-17093","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-17093 — IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, FW95…","description":"IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, FW950.00 through FW950.H2, OP940.00 through OP940.a1 (Power9), and OP940.00 - OP940.81 (Power HMC) is affected by a vulnerability in host firmware configuration parsing. An attacker with service-level acc…","indicators":{"cves":["CVE-2026-17093","CVE-2026-17429","CVE-2026-16933"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T19:17:11.100Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283239","label":"psirt@us.ibm.com","domainType":"other"},{"url":"https://www.ibm.com/support/pages/node/7283218","label":"psirt@us.ibm.com","domainType":"other"},{"url":"https://www.ibm.com/support/pages/node/7283216","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-17100","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-17100 — Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, FW950.00…","description":"Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, FW950.00 through FW950.H2, OP940.00 through OP940.a1, and OP940.00 - OP940.81 is affected by a vulnerability in the service processor mailbox interface. An attacker with authenticated service-level access to…","indicators":{"cves":["CVE-2026-17100"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T19:17:11.270Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283236","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-17494","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-17494 — IBM Power Systems Firmware FW1120.00, and FW1110.00 through FW1110.30 is affected by a vulnerability…","description":"IBM Power Systems Firmware FW1120.00, and FW1110.00 through FW1110.30 is affected by a vulnerability in the interface between the BMC and the host system. An attacker with service access to the BMC can send a specially crafted command, allowing arbitrary code to be executed on the host system, givin…","indicators":{"cves":["CVE-2026-17494"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T19:17:11.703Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283220","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16661","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-16661 — IBM PowerVM Hypervisor FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW95…","description":"IBM PowerVM Hypervisor FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulnerability in the service processor mailbox interface. An attacker with authenticated service-level access to the FSP can exploit this vulnerability, allowing…","indicators":{"cves":["CVE-2026-16661","CVE-2026-16707","CVE-2026-17028","CVE-2026-17091","CVE-2026-17097","CVE-2026-17414","CVE-2026-18821"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:01.937Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283237","label":"psirt@us.ibm.com","domainType":"other"},{"url":"https://www.ibm.com/support/pages/node/7283235","label":"psirt@us.ibm.com","domainType":"other"},{"url":"https://www.ibm.com/support/pages/node/7283233","label":"psirt@us.ibm.com","domainType":"other"},{"url":"https://www.ibm.com/support/pages/node/7283229","label":"psirt@us.ibm.com","domainType":"other"},{"url":"https://www.ibm.com/support/pages/node/7283231","label":"psirt@us.ibm.com","domainType":"other"},{"url":"https://www.ibm.com/support/pages/node/7283234","label":"psirt@us.ibm.com","domainType":"other"},{"url":"https://www.ibm.com/support/pages/node/7283232","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16825","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-16825 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote authenticated attacker to obtain…","description":"IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote authenticated attacker to obtain sensitive information and cause a denial of service due to an out-of-bounds write.","indicators":{"cves":["CVE-2026-16825","CVE-2026-18716"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:03.120Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283858","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16838","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-16838 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to overwrite critical fil…","description":"IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to overwrite critical files and obtain sensitive information due to a time-of-check to time-of-use (TOCTOU) race condition.","indicators":{"cves":["CVE-2026-16838"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:04.873Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283858","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16857","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-16857 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to manipulate network tr…","description":"IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to manipulate network traffic and DNS configuration due to improper authentication.","indicators":{"cves":["CVE-2026-16857"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:07.337Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283858","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16873","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-16873 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to achieve local privileg…","description":"IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to achieve local privilege escalation due to an out-of-bounds write.","indicators":{"cves":["CVE-2026-16873"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:08.460Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283858","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16874","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-16874 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to obtain root privileges…","description":"IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to obtain root privileges due to improper enforcement of RBAC authentication roles.","indicators":{"cves":["CVE-2026-16874"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:08.620Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283858","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16875","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-16875 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to execute arbitrary comm…","description":"IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to execute arbitrary commands due to shell metacharacter injection.","indicators":{"cves":["CVE-2026-16875","CVE-2026-16932","CVE-2026-16997"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:08.777Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283858","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-17042","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-17042 — IBM Power Systems Firmware FW950.00 through FW950.H2, OP940.00 through OP940.a1 (Power9), and OP940.…","description":"IBM Power Systems Firmware FW950.00 through FW950.H2, OP940.00 through OP940.a1 (Power9), and OP940.00 - OP940.81 (Power HMC) is affected by a vulnerability in host firmware NVRAM parsing. An attacker with root access to a guest partition on an OpenPOWER system can write a specially crafted NVRAM im…","indicators":{"cves":["CVE-2026-17042"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:12.127Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283240","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18871","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-18871 — IBM PowerVM Hypervisor FW1120.00, FW1110.00 through FW1110.30, and FW1060.00 through FW1060.80 is af…","description":"IBM PowerVM Hypervisor FW1120.00, FW1110.00 through FW1110.30, and FW1060.00 through FW1060.80 is affected by a vulnerability in host firmware configuration parsing. An attacker with authenticated service-level access to the service processor can write specially crafted configuration data, causing t…","indicators":{"cves":["CVE-2026-18871"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:13.763Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283238","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-62317","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-62317 — Logto is the modern, open-source auth infrastructure for SaaS and AI apps. Prior to 1.41.0, Logto's…","description":"Logto is the modern, open-source auth infrastructure for SaaS and AI apps. Prior to 1.41.0, Logto's email subaddressing blocklist in packages/core/src/libraries/sign-in-experience/email-blocklist-policy.ts used the attacker-controlled domain from email input to construct subaddressingRegex when bloc…","indicators":{"cves":["CVE-2026-62317"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:19.890Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://github.com/logto-io/logto/commit/021381237511bc0d42f81d65df8b036b01f40547","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/logto-io/logto/pull/9106","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/logto-io/logto/releases/tag/v1.41.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/logto-io/logto/security/advisories/GHSA-qp7j-c3q2-g739","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-68558","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-68558 — Wekan is open source kanban built with Meteor. From 8.36 until 9.74, the outgoing webhook Integratio…","description":"Wekan is open source kanban built with Meteor. From 8.36 until 9.74, the outgoing webhook Integration URL validator in models/integrations.js checked only the literal URL.hostname against regular expressions, so DNS names such as 169-254-169-254.nip.io passed that first-line check. The delivery path…","indicators":{"cves":["CVE-2026-68558"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:20.910Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://github.com/wekan/wekan/commit/ef845fe4a0adb82af436313310939cd48c0b1347","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wekan/wekan/releases/tag/v9.74","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wekan/wekan/security/advisories/GHSA-66m2-4wfr-c45p","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wekan/wekan/security/advisories/GHSA-66m2-4wfr-c45p","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-68561","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-68561 — Wekan is open source kanban built with Meteor. Prior to 9.89, the second Boards.allow({ update }) ru…","description":"Wekan is open source kanban built with Meteor. Prior to 9.89, the second Boards.allow({ update }) rule in server/permissions/boards.js called canUpdateBoardSort in server/lib/utils.js, which authorized any board member whenever fieldNames included sort. Because Meteor combines allow rules with OR se…","indicators":{"cves":["CVE-2026-68561"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:21.400Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://github.com/wekan/wekan/commit/dc135f6e7d59f9f56065cd5df83b1f123ea120bb","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wekan/wekan/releases/tag/v9.89","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wekan/wekan/security/advisories/GHSA-xm8x-c8wg-jhmf","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-68899","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-68899 — Wekan is open source kanban built with Meteor. Prior to 9.90, isFileValid() in models/fileValidation…","description":"Wekan is open source kanban built with Meteor. Prior to 9.90, isFileValid() in models/fileValidation.js used the Unix file command for content-based MIME detection, but detectMimeFromFile() silently returned undefined when that binary was unavailable and the validation fell back to the attacker-cont…","indicators":{"cves":["CVE-2026-68899"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:21.567Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://github.com/wekan/wekan/commit/f6ba472f6738bcd3763f133d3d9970f216df2263","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wekan/wekan/releases/tag/v9.90","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wekan/wekan/security/advisories/GHSA-jhph-whx8-wq6p","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-68900","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-68900 — Wekan is open source kanban built with Meteor. From 8.72 until 10.23, addBoardHTMLToZip() in client/…","description":"Wekan is open source kanban built with Meteor. From 8.72 until 10.23, addBoardHTMLToZip() in client/lib/exportHTML.js read a card title and body through textContent, which decoded entity-encoded markup, and then interpolated titleText and allText into content.innerHTML in the exported index.html. A…","indicators":{"cves":["CVE-2026-68900"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:21.727Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://github.com/wekan/wekan/commit/2d32e34621d340b00be4f66a6a2106ab4575cc70","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wekan/wekan/releases/tag/v10.23","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wekan/wekan/security/advisories/GHSA-8r5p-4q9j-f5jx","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wekan/wekan/security/advisories/GHSA-8r5p-4q9j-f5jx","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-76574","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76574 — A flaw has been found in code-projects Hospital Information System 1.0. The impacted element is the…","description":"A flaw has been found in code-projects Hospital Information System 1.0. The impacted element is the function User::login of the file includes/users/UsersController.php of the component User Login Handler. This manipulation of the argument email causes sql injection. The attack is possible to be carr…","indicators":{"cves":["CVE-2026-76574"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:23.830Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://code-projects.org/","label":"cna@vuldb.com","domainType":"other"},{"url":"https://github.com/niaoniaollll/cve/issues/6","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-76574","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/877784","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393038","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393038/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-12522","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-12522 — The HL7800 cellular modem driver's +CGCONTRDP: response handler on_cmd_atcmdinfo_ipaddr() in drivers…","description":"The HL7800 cellular modem driver's +CGCONTRDP: response handler on_cmd_atcmdinfo_ipaddr() in drivers/modem/vendor_standalone/hl7800.c parses the PDP-context dynamic parameters (local address, subnet mask, gateway, and DNS servers) that the cellular network assigns to the device. The response is line…","indicators":{"cves":["CVE-2026-12522"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T21:16:53.507Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://github.com/zephyrproject-rtos/zephyr/commit/a1cbced64181bc0bdf95e1fd7118f2bb70cf679b","label":"vulnerabilities@zephyrproject.org","domainType":"primary"},{"url":"https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-hchc-6489-w66v","label":"vulnerabilities@zephyrproject.org","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-12633","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-12633 — The IPv6 neighbor-discovery code in subsys/net/ip/ipv6_nbr.c processes the 6LoWPAN Context Option (6…","description":"The IPv6 neighbor-discovery code in subsys/net/ip/ipv6_nbr.c processes the 6LoWPAN Context Option (6CO, RFC 6775) carried inside ICMPv6 Router Advertisements. In handle_ra_6co() the 8-bit context_len field is taken directly from the packet and was never bounded to the RFC maximum of 128. The functio…","indicators":{"cves":["CVE-2026-12633"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T21:16:53.633Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://github.com/zephyrproject-rtos/zephyr/commit/15e838c739be637bf23fd56a5c26f2b32079551b","label":"vulnerabilities@zephyrproject.org","domainType":"primary"},{"url":"https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-h5m5-hm6j-cgpf","label":"vulnerabilities@zephyrproject.org","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-18544","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-18544 — IBM Portieris 0.5.0 through 0.14.2 could allow a remote authenticated attacker to bypass image polic…","description":"IBM Portieris 0.5.0 through 0.14.2 could allow a remote authenticated attacker to bypass image policy enforcement due to improper authorization of pod owner references.","indicators":{"cves":["CVE-2026-18544"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T21:16:54.400Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://www.ibm.com/support/pages/node/7284125","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-54491","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-54491 — Koel is a free, open-source music streaming solution. Prior to 9.7.1, outbound podcast and radio fet…","description":"Koel is a free, open-source music streaming solution. Prior to 9.7.1, outbound podcast and radio fetch paths perform a point-in-time App\\Helpers\\Network::isPublicHost() or isSafeUrl() check without pinning the validated address, and most paths lack redirect-hop validation and do not revalidate every…","indicators":{"cves":["CVE-2026-54491"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T21:16:57.453Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://github.com/koel/koel/commit/5f6ce2cefd08f437a269236b677ad971517ccbb6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/koel/koel/commit/c264a3d52513a83b21e1cc3a20e895caea97fc4a","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/koel/koel/pull/2546","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/koel/koel/pull/2549","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/koel/koel/releases/tag/v9.7.1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/koel/koel/security/advisories/GHSA-6qvr-wjmv-v8mm","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/koel/koel/security/advisories/GHSA-6qvr-wjmv-v8mm","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-54492","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-54492 — Koel is a free, open-source music streaming solution. Prior to 9.7.0, the Subsonic-compatible create…","description":"Koel is a free, open-source music streaming solution. Prior to 9.7.0, the Subsonic-compatible createPodcastChannel.view route accepts an authenticated user's private URL because app/Http/Requests/Subsonic/CreatePodcastChannelRequest.php does not apply the SafeUrl validation used by the regular podca…","indicators":{"cves":["CVE-2026-54492","CVE-2026-54493"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T21:16:57.600Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://github.com/koel/koel/commit/1331f335342b405e60ffabdd60f1f398508f996f","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/koel/koel/pull/2545","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/koel/koel/releases/tag/v9.7.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/koel/koel/security/advisories/GHSA-w79m-f3jx-779v","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/koel/koel/security/advisories/GHSA-6p96-cfg5-4vhp","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-62727","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-62727 — Concurrent execution using shared resource with improper synchronization ('race condition') in Windo…","description":"Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service allows an authorized attacker to elevate privileges locally.","indicators":{"cves":["CVE-2026-62727"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T21:17:08.730Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-62727","label":"secure@microsoft.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-68553","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-68553 — Coturn is a free open source implementation of TURN and STUN Server. Prior to 4.13.0, an authenticat…","description":"Coturn is a free open source implementation of TURN and STUN Server. Prior to 4.13.0, an authenticated TURN user can place printf-style format specifiers in the STUN USERNAME or REALM attribute, which passes is_secure_string() validation and is embedded into Redis keys at nine call sites in src/apps…","indicators":{"cves":["CVE-2026-68553"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T21:17:28.163Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://github.com/coturn/coturn/commit/8fa38032bb4751e11e072d65a8eca3c06c950979","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/coturn/coturn/releases/tag/4.13.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/coturn/coturn/security/advisories/GHSA-4g7c-p5wg-j4hp","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/coturn/coturn/security/advisories/GHSA-4g7c-p5wg-j4hp","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-69222","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-69222 — LiquidJS is a Shopify / GitHub Pages compatible template engine in pure JavaScript. Prior to 10.27.2…","description":"LiquidJS is a Shopify / GitHub Pages compatible template engine in pure JavaScript. Prior to 10.27.2, the join filter in src/filters/array.ts computes complexity from array.length and separator length instead of the total string length produced by array.join(sep). The concat filter can cheaply doubl…","indicators":{"cves":["CVE-2026-69222"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T21:17:31.627Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://github.com/harttle/liquidjs/commit/7ab49f999ac045ec1e87f3a7a9fd68dd9e8602b3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/harttle/liquidjs/pull/925","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/harttle/liquidjs/releases/tag/v10.27.2","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/harttle/liquidjs/security/advisories/GHSA-4r6h-5v86-94p3","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75569","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75569 — A flaw was found in mce-operator-bundle. The build process fetches and executes scripts from a remot…","description":"A flaw was found in mce-operator-bundle. The build process fetches and executes scripts from a remote repository without performing integrity checks, such as commit pinning or signature verification. This allows a malicious actor with write access to the remote repository to inject and execute arbit…","indicators":{"cves":["CVE-2026-75569"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T21:17:37.287Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-75569","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2519849","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75616","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75616 — An OS command injection vulnerability exists in the web management interface of Archer C20 v6 firmwa…","description":"An OS command injection vulnerability exists in the web management interface of Archer C20 v6 firmware when processing certain WAN-related configuration operations. An authenticated administrator may exploit insufficient input validation to execute arbitrary system commands, potentially resulting in…","indicators":{"cves":["CVE-2026-75616"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T21:17:37.917Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://www.tp-link.com/en/support/download/archer-c20/v6/#Firmware","label":"f23511db-6c3e-4e32-a477-6aa17d310630","domainType":"other"},{"url":"https://www.tp-link.com/en/support/faq/5252/","label":"f23511db-6c3e-4e32-a477-6aa17d310630","domainType":"other"},{"url":"https://www.tp-link.com/us/support/download/archer-c20/v6.46/#Firmware","label":"f23511db-6c3e-4e32-a477-6aa17d310630","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76139","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76139 — A flaw was found in acm-operator-bundle. The build process for this component downloads and runs a s…","description":"A flaw was found in acm-operator-bundle. The build process for this component downloads and runs a script from a remote source without verifying its authenticity or integrity. This script gains access to sensitive credentials, such as GitHub access tokens and registry passwords, used in the build en…","indicators":{"cves":["CVE-2026-76139"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T21:17:38.070Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-76139","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2519852","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76582","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76582 — A vulnerability was determined in TRENDnet TEW-821DAP 2.2.01b05. Affected is the function popen/syst…","description":"A vulnerability was determined in TRENDnet TEW-821DAP 2.2.01b05. Affected is the function popen/system of the file /cgi-bin/ping.cgi of the component ssi. Executing a manipulation of the argument ipaddr can lead to command injection. It is possible to launch the attack remotely. The exploit has been…","indicators":{"cves":["CVE-2026-76582"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T21:17:38.443Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://github.com/meishigana/CVE/tree/main/team15_20260702/06_821dap-ssi-remote-cmdi","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-76582","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/877791","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393041","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393041/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76583","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76583 — A vulnerability was identified in TRENDnet TV-IP751WIC 11.03.03. Affected by this vulnerability is a…","description":"A vulnerability was identified in TRENDnet TV-IP751WIC 11.03.03. Affected by this vulnerability is an unknown functionality of the file /cgi-bin/admin/set_time.cgi of the component alphapd. The manipulation leads to command injection. The attack can be initiated remotely. The exploit is publicly ava…","indicators":{"cves":["CVE-2026-76583"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T21:17:38.643Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://github.com/meishigana/CVE/blob/main/team15_20260702/07_751wic-apd-time-cmdi/poc/poc-time-injection.py","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/meishigana/CVE/tree/main/team15_20260702/07_751wic-apd-time-cmdi","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-76583","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/877792","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393042","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393042/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2025-36254","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2025-36254 — IBM System Storage DS8A00 10.1.3.0 through 10.11.35.0 and IBM DS8900F 89.40.83.0 through 89.44.25.0…","description":"IBM System Storage DS8A00 10.1.3.0 through 10.11.35.0 and IBM DS8900F 89.40.83.0 through 89.44.25.0 could allow an attacker to bypass security authentication due to improperly encoding of DSCLI command output to obtain sensitive information or cause a denial of service.","indicators":{"cves":["CVE-2025-36254","CVE-2025-36255","CVE-2025-36398"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:16:36.303Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://www.ibm.com/support/pages/node/7284322","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76251","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76251 — In Splunk Enterprise versions below 10.4.2, 10.2.6, and 10.0.9, a user who does not hold the \"admin\"…","description":"In Splunk Enterprise versions below 10.4.2, 10.2.6, and 10.0.9, a user who does not hold the \"admin\" or \"power\" Splunk roles could cause the Splunk App for Splunk Observability Cloud to forward requests to Splunk Observability Cloud, including the Splunk Observability Cloud access token stored for t…","indicators":{"cves":["CVE-2026-76251"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:12.850Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0801","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76253","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76253 — In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, a user that holds a role wit…","description":"In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, a user that holds a role with the schedule_search capability could run arbitrary Search Processing Language (SPL) commands with the highest level of system privilege and read every credential stored in the credential store, whic…","indicators":{"cves":["CVE-2026-76253","CVE-2026-76260","CVE-2026-76318","CVE-2026-76350"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:13.130Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0801","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76254","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76254 — In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, 9.4.14, and 9.3.14, an unauthenticated u…","description":"In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, 9.4.14, and 9.3.14, an unauthenticated user could cause another user to dispatch arbitrary Search Processing Language (SPL) pipelines from Dataset Explorer with the same privileges as that user, which can allow for access to all relevant da…","indicators":{"cves":["CVE-2026-76254"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["phishing"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:13.270Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0801","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76256","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76256 — In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, and Splunk Secure Gateway ve…","description":"In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, and Splunk Secure Gateway versions below 3.10.9, 3.9.23, and 3.8.70, a user who does not hold the \"admin\" or \"power\" Splunk roles could read sensitive Security Assertion Markup Language setup and instance settings information th…","indicators":{"cves":["CVE-2026-76256","CVE-2026-76257","CVE-2026-76258","CVE-2026-76261","CVE-2026-76327","CVE-2026-76347","CVE-2026-76351"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:13.543Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0801","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76259","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76259 — In Splunk Enterprise for Windows versions below 10.4.2, 10.2.6, 10.0.9, 9.4.13, and 9.3.14, a local…","description":"In Splunk Enterprise for Windows versions below 10.4.2, 10.2.6, 10.0.9, 9.4.13, and 9.3.14, a local user with access to the Windows host could bind to the management port before Splunk Enterprise starts, intercept authentication tokens from child processes, and use those tokens to compromise all rel…","indicators":{"cves":["CVE-2026-76259"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:13.927Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0801","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76262","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76262 — In Splunk Enterprise 10.4 versions below 10.4.2, an unauthenticated user could read Prometheus servi…","description":"In Splunk Enterprise 10.4 versions below 10.4.2, an unauthenticated user could read Prometheus service metrics from the Edge Processor SPL2 Preview sidecar, including service details that expose relevant runtime and build metadata for the sidecar. The vulnerability does not affect Splunk Enterprise…","indicators":{"cves":["CVE-2026-76262"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:14.323Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0801","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76263","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76263 — In Splunk Enterprise versions below 10.4.2 and 10.2.6, a user who does not hold the \"admin\" or \"powe…","description":"In Splunk Enterprise versions below 10.4.2 and 10.2.6, a user who does not hold the \"admin\" or \"power\" Splunk roles could delete Splunk Processing Language version 2 (SPL2) modules belonging to other users through the data management orchestrator interface. The vulnerability does not affect Splunk E…","indicators":{"cves":["CVE-2026-76263","CVE-2026-76336"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:14.447Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0801","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76309","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76309 — In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, a low-privileged user that d…","description":"In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, a low-privileged user that does not hold the \"admin\" or \"power\" Splunk roles could inject Structured Query Language (SQL) through the Representational State Transfer (REST) API, causing Splunk Enterprise to evaluate attacker-con…","indicators":{"cves":["CVE-2026-76309","CVE-2026-76319"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:14.580Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0801","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76313","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76313 — In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, a user who does not hold the…","description":"In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, a user who does not hold the \"admin\" or \"power\" Splunk roles could perform Remote Code Execution (RCE) by uploading a malicious knowledge bundle and causing it to be used by distributed search, which can allow for access to all…","indicators":{"cves":["CVE-2026-76313","CVE-2026-76314","CVE-2026-76315","CVE-2026-76317","CVE-2026-76323","CVE-2026-76326","CVE-2026-76331","CVE-2026-76339","CVE-2026-76343","CVE-2026-76344","CVE-2026-76352","CVE-2026-76353","CVE-2026-76354"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:15.117Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0801","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76316","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76316 — In Splunk Enterprise versions below 10.4.1, 10.2.5, 10.0.9, and 9.4.14, an unauthenticated user who…","description":"In Splunk Enterprise versions below 10.4.1, 10.2.5, 10.0.9, and 9.4.14, an unauthenticated user who can reach the Splunk management port could store a Search Processing Language (SPL) pipeline that runs when an administrator opens the Add Data forwarder workflow. The SPL pipeline could access all re…","indicators":{"cves":["CVE-2026-76316"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:15.500Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0801","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76320","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76320 — In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, an unauthenticated user coul…","description":"In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, an unauthenticated user could cause an authenticated user to run arbitrary Search Processing Language (SPL) searches on their behalf through the Event Type Builder. This could expose all relevant data and stored credentials. The…","indicators":{"cves":["CVE-2026-76320","CVE-2026-76321","CVE-2026-76329","CVE-2026-76330","CVE-2026-76332","CVE-2026-76337"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["phishing"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:16.007Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0801","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76324","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76324 — In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, a user who holds the \"power\"…","description":"In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, a user who holds the \"power\" Splunk role could create a malicious Splunk Web tour and cause arbitrary JavaScript to run in the browser of another user when that user opens a crafted tour link. The JavaScript runs in the browser…","indicators":{"cves":["CVE-2026-76324","CVE-2026-76325","CVE-2026-76333","CVE-2026-76334","CVE-2026-76341","CVE-2026-76342","CVE-2026-76346"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:16.527Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0801","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76335","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76335 — In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, an authenticated user who do…","description":"In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, an authenticated user who does not hold a role with the edit_manager_xml capability could write a malicious Splunk Web Manager Extensible Markup Language (XML) configuration. When the same user opens the affected Splunk Web Mana…","indicators":{"cves":["CVE-2026-76335"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:17.973Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0801","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76355","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76355 — In Splunk Enterprise 10.4 versions below 10.4.2, an unauthenticated user could retrieve the informat…","description":"In Splunk Enterprise 10.4 versions below 10.4.2, an unauthenticated user could retrieve the information contained in Edge Processor pipeline configurations through a Representational State Transfer (REST) API endpoint when Edge Processor is turned on. The vulnerability does not affect versions prior…","indicators":{"cves":["CVE-2026-76355"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:20.593Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0801","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76356","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76356 — In Splunk SOAR versions below 8.6.0, an unauthenticated user could spoof the source IP address in a…","description":"In Splunk SOAR versions below 8.6.0, an unauthenticated user could spoof the source IP address in a crafted request to an Automation Broker notification endpoint and execute arbitrary code on the Splunk SOAR host. The vulnerability is possible because the Splunk SOAR Automation Broker trusts a clien…","indicators":{"cves":["CVE-2026-76356"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:20.727Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0804","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76357","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76357 — In Splunk SOAR versions below 8.6.0, an authenticated user with no role assigned could submit a craf…","description":"In Splunk SOAR versions below 8.6.0, an authenticated user with no role assigned could submit a crafted file path to the Representational State Transfer (REST) API and execute arbitrary code. The vulnerability is possible because the REST API does not require an assigned role for the request and doe…","indicators":{"cves":["CVE-2026-76357"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:20.873Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0804","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76362","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76362 — In Splunk SOAR versions below 8.6.0, an unauthenticated user who can observe or alter network traffi…","description":"In Splunk SOAR versions below 8.6.0, an unauthenticated user who can observe or alter network traffic between Splunk SOAR and a configured CyberArk Representational State Transfer (REST) server could access or modify all relevant data exchanged through that credential manager. The vulnerability is p…","indicators":{"cves":["CVE-2026-76362"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:21.533Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0804","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76387","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76387 — In Splunk Enterprise Security versions below 8.6.1, a user who holds a Splunk Enterprise Security ro…","description":"In Splunk Enterprise Security versions below 8.6.1, a user who holds a Splunk Enterprise Security role that contains the mc_investigation_read capability could inject Search Processing Language (SPL) through Analyst Queue search filters, allowing for access to all relevant data and system integrity…","indicators":{"cves":["CVE-2026-76387"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:24.953Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0807","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76388","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76388 — In Splunk Enterprise Security versions below 8.6.1, a user who holds the ess_analyst Splunk Enterpri…","description":"In Splunk Enterprise Security versions below 8.6.1, a user who holds the ess_analyst Splunk Enterprise Security role could change User and Entity Behavior Analytics (UEBA) search macros that scheduled searches run with administrator permissions, allowing for access to all relevant data and system in…","indicators":{"cves":["CVE-2026-76388"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:25.090Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0807","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76389","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76389 — In Cisco Talos Intelligence for Enterprise Security Cloud versions below 1.0.3, a user that holds a…","description":"In Cisco Talos Intelligence for Enterprise Security Cloud versions below 1.0.3, a user that holds a role with the get_talos_enrichment capability could send a crafted request to the Talos intelligence enrichment Representational State Transfer (REST) API endpoint and cause the instance to make an ou…","indicators":{"cves":["CVE-2026-76389"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:25.220Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0808","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76391","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76391 — In Splunk AI Toolkit versions below 6.0.0, a user who does not hold the \"admin\" or \"power\" Splunk ro…","description":"In Splunk AI Toolkit versions below 6.0.0, a user who does not hold the \"admin\" or \"power\" Splunk roles could run searches with system-level privileges, access all relevant data, affect system integrity, and read or delete search jobs belonging to other users through Agent Run History. The improper…","indicators":{"cves":["CVE-2026-76391","CVE-2026-76392"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:25.487Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0808","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76394","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76394 — In Splunk AI Toolkit versions below 6.0.0, a low-privileged user who does not hold the \"admin\" or \"p…","description":"In Splunk AI Toolkit versions below 6.0.0, a low-privileged user who does not hold the \"admin\" or \"power\" Splunk roles could start, stop, and configure containers, and read or modify connection and configuration data through the Representational State Transfer (REST) API. The missing authorization i…","indicators":{"cves":["CVE-2026-76394"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:25.870Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0808","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76395","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76395 — In Splunk AI Toolkit versions below 6.0.0, a user who holds the \"power\" Splunk role could execute ar…","description":"In Splunk AI Toolkit versions below 6.0.0, a user who holds the \"power\" Splunk role could execute arbitrary code on the Splunk server by loading a model file containing crafted sparse matrix data. The deserialization of untrusted data is possible because a model codec in Splunk AI Toolkit deserializ…","indicators":{"cves":["CVE-2026-76395"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:26.023Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0808","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76396","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76396 — In Splunk AI Toolkit versions below 6.0.0, a user that holds a role with the schedule_search capabil…","description":"In Splunk AI Toolkit versions below 6.0.0, a user that holds a role with the schedule_search capability could cause a scheduled search to load and deserialize a model file through the apply search command. The improper access control is possible because Splunk AI Toolkit does not mark the apply sear…","indicators":{"cves":["CVE-2026-76396"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:26.150Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0808","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76397","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76397 — In Splunk AI Toolkit versions below 6.0.0, a user who holds the \"power\" Splunk role could access and…","description":"In Splunk AI Toolkit versions below 6.0.0, a user who holds the \"power\" Splunk role could access and delete all relevant data in experiment history, including data associated with other users. The vulnerability is possible because Splunk AI Toolkit does not preserve the trusted experiment scope when…","indicators":{"cves":["CVE-2026-76397"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:26.270Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0808","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76399","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76399 — In Splunk AI Toolkit versions below 6.0.1, a user who holds the \"power\" Splunk role could modify app…","description":"In Splunk AI Toolkit versions below 6.0.1, a user who holds the \"power\" Splunk role could modify app-provided scheduled searches to run arbitrary Search Processing Language (SPL) using the permissions of the search owner, which could allow access to all relevant data and affect system integrity. The…","indicators":{"cves":["CVE-2026-76399"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:26.523Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0808","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76400","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76400 — In Splunk Connect for Kafka versions below 2.2.7, an unauthenticated user who can reach the Kafka Co…","description":"In Splunk Connect for Kafka versions below 2.2.7, an unauthenticated user who can reach the Kafka Connect Representational State Transfer (REST) API and influence responses from a Hypertext Transfer Protocol (HTTP) Event Collector endpoint in Splunk Enterprise could cause the connector to retry fail…","indicators":{"cves":["CVE-2026-76400","CVE-2026-76401","CVE-2026-76402"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:26.647Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0808","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76403","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76403 — In Splunk Connect for Kafka versions below 2.2.7, an unauthenticated user positioned in the network…","description":"In Splunk Connect for Kafka versions below 2.2.7, an unauthenticated user positioned in the network path could read or alter all relevant data sent from the connector when Kerberos authentication is used with Hypertext Transfer Protocol (HTTP) Event Collector in Splunk Enterprise. The vulnerability…","indicators":{"cves":["CVE-2026-76403"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:27.043Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0808","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76591","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76591 — A security flaw has been discovered in TRENDnet TEW-755AP up to 20260702. This affects the function…","description":"A security flaw has been discovered in TRENDnet TEW-755AP up to 20260702. This affects the function log_email_server of the file /cgi-bin/email.cgi of the component ssi. Performing a manipulation results in command injection. The attack is possible to be carried out remotely. The exploit has been re…","indicators":{"cves":["CVE-2026-76591"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:27.787Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://github.com/meishigana/CVE/blob/main/team15_20260702/14_755ap-ssi-cmdi/poc/poc-ssi-injection.py","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/meishigana/CVE/tree/main/team15_20260702/14_755ap-ssi-cmdi","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-76591","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/877853","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393088","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393088/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76832","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76832 — Agno's PythonTools in libs/agno/agno/tools/python.py contains a path traversal vulnerability that al…","description":"Agno's PythonTools in libs/agno/agno/tools/python.py contains a path traversal vulnerability that allows attackers to read, write, or execute arbitrary files by supplying parent-directory traversal sequences in the file_name argument passed to read_file, save_to_file, or run_python_file tool actions…","indicators":{"cves":["CVE-2026-76832"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:27.960Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://github.com/agno-agi/agno","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/agno-agi/agno/commit/710d7e7f846f93b7a3eadfd3e77075428c39e803","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/agno-pythontools-path-traversal-via-joinpath-file-name-argument","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76760","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76760 — A vulnerability was found in chenhg5 cc-connect up to 1.4.1. Affected by this vulnerability is the f…","description":"A vulnerability was found in chenhg5 cc-connect up to 1.4.1. Affected by this vulnerability is the function Authenticate of the file core/webhook.go. The manipulation of the argument exec results in code injection. The attack may be performed from remote. The exploit has been made public and could b…","indicators":{"cves":["CVE-2026-76760"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T23:16:17.953Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://github.com/chenhg5/cc-connect/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/chenhg5/cc-connect/issues/1488","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-76760","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/878916","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393229","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393229/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/878916","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76761","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76761 — A vulnerability was identified in chenhg5 cc-connect up to 1.4.1. This affects the function shellExe…","description":"A vulnerability was identified in chenhg5 cc-connect up to 1.4.1. This affects the function shellExecCommand of the file core/engine.go of the component Management API. Such manipulation of the argument exec leads to os command injection. It is possible to launch the attack remotely. The exploit is…","indicators":{"cves":["CVE-2026-76761"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T23:16:18.540Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://github.com/chenhg5/cc-connect/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/chenhg5/cc-connect/issues/1489","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-76761","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/878948","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393231","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393231/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76879","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76879 — C12.22 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service","description":"C12.22 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service","indicators":{"cves":["CVE-2026-76879","CVE-2026-76886"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T23:16:18.700Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://gitlab.com/wireshark/wireshark/-/work_items/21480","label":"cve@gitlab.com","domainType":"other"},{"url":"https://www.wireshark.org/security/wnpa-sec-2026-89.html","label":"cve@gitlab.com","domainType":"other"},{"url":"https://gitlab.com/wireshark/wireshark/-/work_items/21439","label":"cve@gitlab.com","domainType":"other"},{"url":"https://www.wireshark.org/security/wnpa-sec-2026-75.html","label":"cve@gitlab.com","domainType":"other"},{"url":"https://gitlab.com/wireshark/wireshark/-/work_items/21446","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76880","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76880 — RRC protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service","description":"RRC protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service","indicators":{"cves":["CVE-2026-76880"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T23:16:18.830Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://gitlab.com/wireshark/wireshark/-/work_items/21478","label":"cve@gitlab.com","domainType":"other"},{"url":"https://www.wireshark.org/security/wnpa-sec-2026-88.html","label":"cve@gitlab.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76928","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76928 — X.509IF protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service","description":"X.509IF protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service","indicators":{"cves":["CVE-2026-76928"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T23:16:21.570Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://gitlab.com/wireshark/wireshark/-/work_items/21469","label":"cve@gitlab.com","domainType":"other"},{"url":"https://www.wireshark.org/security/wnpa-sec-2026-87.html","label":"cve@gitlab.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76762","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76762 — A vulnerability was detected in code-projects Assessment Management 1.0. The affected element is an…","description":"A vulnerability was detected in code-projects Assessment Management 1.0. The affected element is an unknown function of the file /welcome.php. The manipulation of the argument userid results in sql injection. The attack may be launched remotely. The exploit is now public and may be used.","indicators":{"cves":["CVE-2026-76762"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T00:16:52.817Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://code-projects.org/","label":"cna@vuldb.com","domainType":"other"},{"url":"https://github.com/niaoniaollll/cve/issues/8","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-76762","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/878975","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393235","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393235/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76764","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76764 — A flaw has been found in code-projects Employee Management System 1.0. The impacted element is an un…","description":"A flaw has been found in code-projects Employee Management System 1.0. The impacted element is an unknown function of the file /process/aprocess.php of the component Admin Login Endpoint. This manipulation of the argument mailuid causes sql injection. Remote exploitation of the attack is possible. T…","indicators":{"cves":["CVE-2026-76764"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T00:16:52.983Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://code-projects.org/","label":"cna@vuldb.com","domainType":"other"},{"url":"https://github.com/niaoniaollll/cve/issues/10","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-76764","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/879173","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393236","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393236/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76783","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76783 — A security vulnerability has been detected in DeDeCMS 53_1_UTF8. This vulnerability affects unknown…","description":"A security vulnerability has been detected in DeDeCMS 53_1_UTF8. This vulnerability affects unknown code of the file /plus/advancedsearch.php. Such manipulation of the argument sql leads to sql injection. The attack can be launched remotely. The exploit has been disclosed publicly and may be used.","indicators":{"cves":["CVE-2026-76783"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T01:16:53.923Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://uvxbywu62qm.feishu.cn/wiki/X1T5w8jPUinAsVkM0bhcZf4XnHe?from=from_copylink","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/cve/CVE-2026-76783","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/879225","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393243","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393243/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76795","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76795 — A vulnerability has been found in AeternaLabsHQ PullMD 3.2.0. This impacts an unknown function of th…","description":"A vulnerability has been found in AeternaLabsHQ PullMD 3.2.0. This impacts an unknown function of the file /api of the component REST API Endpoint. The manipulation of the argument url leads to server-side request forgery. The attack can be initiated remotely. The exploit has been disclosed to the p…","indicators":{"cves":["CVE-2026-76795"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T01:16:54.277Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://github.com/AeternaLabsHQ/pullmd/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/AeternaLabsHQ/pullmd/commit/96448894cc93ccecb0bdcbf263a9d25390a8455e","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/AeternaLabsHQ/pullmd/issues/41","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/AeternaLabsHQ/pullmd/pull/42","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/AeternaLabsHQ/pullmd/releases/tag/v3.3.0","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-76795","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/879954","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393282","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393282/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19582","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19582 — In binutils 2.46.1 and prior versions, a victim who opens a crafted PE file using binutils could exe…","description":"In binutils 2.46.1 and prior versions, a victim who opens a crafted PE file using binutils could execute arbitrary code unknowningly via a stack buffer overflow out of bounds write.","indicators":{"cves":["CVE-2026-19582"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T05:16:27.987Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-19582","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2513754","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15049","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-15049 — The Depicter — Popup & Slider Builder WordPress plugin before 4.8.0 does not validate the type of a…","description":"The Depicter — Popup & Slider Builder WordPress plugin before 4.8.0 does not validate the type of a file uploaded through its import feature and does not remove a malformed upload, allowing users with editor-level access to write an arbitrary file (including executable PHP) into a web-accessible dir…","indicators":{"cves":["CVE-2026-15049"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T06:16:49.710Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://wpscan.com/vulnerability/c32e6a11-98f2-48e8-be64-f0c1966ddc18/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75963","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75963 — The Events Made Easy plugin for WordPress is vulnerable to Local File Inclusion in all versions up t…","description":"The Events Made Easy plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 3.2.5 via the eme_single_event_page_template function. This makes it possible for authenticated attackers, with contributor-level access and above, to include and execute arbitrary .…","indicators":{"cves":["CVE-2026-75963"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T06:17:32.360Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/events-made-easy/tags/3.2.5/includes/eme-events.php#L1721","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/events-made-easy/tags/3.2.5/includes/eme-fs.php#L670","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/events-made-easy/tags/3.2.5/includes/eme-fs.php#L842","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3654766%40events-made-easy&new=3654766%40events-made-easy","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/24890c27-6db1-4ca9-8ebd-601fbce93d88?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-14946","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-14946 — A high privileged remote attacker can upload a .php file and then request it directly from /uploads/…","description":"A high privileged remote attacker can upload a .php file and then request it directly from /uploads/<filename>.php to achieve arbitrary code execution due to improper file type validation which could result in full system compromise.","indicators":{"cves":["CVE-2026-14946"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T09:16:45.813Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://www.certvde.com/en/advisories/VDE-2026-078/","label":"info@cert.vde.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-14947","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-14947 — A high-privileged remote attacker can upload malicious ZIP archive containing directory traversal se…","description":"A high-privileged remote attacker can upload malicious ZIP archive containing directory traversal sequences such as ../ can escape the intended extraction directory and write files to arbitrary locations on the server, potentially achieve arbitrary code execution due to improper validation of archiv…","indicators":{"cves":["CVE-2026-14947"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T09:16:46.977Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://www.certvde.com/en/advisories/VDE-2026-078/","label":"info@cert.vde.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-14948","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-14948 — A low privileged remote attacker can hijack an active administrative session without needing to know…","description":"A low privileged remote attacker can hijack an active administrative session without needing to know the administrator password by extracting live plaintext session identifiers for authenticated users from downloadable error log archives.","indicators":{"cves":["CVE-2026-14948"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T09:16:47.137Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://www.certvde.com/en/advisories/VDE-2026-078/","label":"info@cert.vde.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-14951","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-14951 — An low privileged remote attacker can cause authenticated users to perform unintended actions in the…","description":"An low privileged remote attacker can cause authenticated users to perform unintended actions in the FDS Web interface using malicious web pages.","indicators":{"cves":["CVE-2026-14951"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T09:16:47.597Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://www.certvde.com/en/advisories/VDE-2026-078/","label":"info@cert.vde.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-14952","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-14952 — An unauthenticated remote attacker can retrieve sensible files from the FDS Web server, such as the…","description":"An unauthenticated remote attacker can retrieve sensible files from the FDS Web server, such as the backup archive at /FdsBackup.zip and additional files under /downloads/*, directly over HTTP without a valid session. These files disclose detailed railway signaling and track layout information that…","indicators":{"cves":["CVE-2026-14952"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["transport"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T09:16:47.740Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://www.certvde.com/en/advisories/VDE-2026-078/","label":"info@cert.vde.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18917","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-18917 — A flaw was found in libvirt. An unprivileged local user could exploit an integer overflow vulnerabil…","description":"A flaw was found in libvirt. An unprivileged local user could exploit an integer overflow vulnerability in the NodeGetFreePages RPC handler. This flaw allows crafted values to bypass a size check, leading to an undersized memory buffer. Subsequently, real NUMA node data can overwrite this buffer. Th…","indicators":{"cves":["CVE-2026-18917"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T10:16:40.507Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-18917","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2520161","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73197","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73197 — A flaw was found in FreeIPA. A remote, unauthenticated attacker can exploit this vulnerability by se…","description":"A flaw was found in FreeIPA. A remote, unauthenticated attacker can exploit this vulnerability by sending oversized form POST requests to the `/ipa/migration/migration.py` endpoint. This can force the migration handler to read attacker-controlled request bodies fully into memory, leading to increase…","indicators":{"cves":["CVE-2026-73197"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T11:16:21.553Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-73197","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2474697","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73198","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73198 — A flaw was found in FreeIPA. A remote, unauthenticated attacker can exploit a vulnerability in the `…","description":"A flaw was found in FreeIPA. A remote, unauthenticated attacker can exploit a vulnerability in the `/ipa/i18n_messages` endpoint by sending an arbitrarily large request body. This can cause the service to consume excessive memory, leading to memory exhaustion, degraded responsiveness, and a denial o…","indicators":{"cves":["CVE-2026-73198"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T11:16:21.687Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-73198","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2472960","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2025-15637","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2025-15637 — Unauthenticated Local File Inclusion in Shuffle <= 1.8 versions.","description":"Unauthenticated Local File Inclusion in Shuffle <= 1.8 versions.","indicators":{"cves":["CVE-2025-15637"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:30.777Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/theme/shuffle/vulnerability/wordpress-shuffle-theme-1-8-local-file-inclusion-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-28150","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-28150 — Unauthenticated Local File Inclusion in Golo Framework < 1.7.5 versions.","description":"Unauthenticated Local File Inclusion in Golo Framework < 1.7.5 versions.","indicators":{"cves":["CVE-2026-28150"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:32.283Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/golo-framework/vulnerability/wordpress-golo-framework-plugin-1-7-5-local-file-inclusion-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66581","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-66581 — Unauthenticated Cross Site Scripting (XSS) in JetEngine <= 3.8.14.1 versions.","description":"Unauthenticated Cross Site Scripting (XSS) in JetEngine <= 3.8.14.1 versions.","indicators":{"cves":["CVE-2026-66581"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:32.420Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/jet-engine/vulnerability/wordpress-jetengine-plugin-3-8-14-1-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66582","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-66582 — Unauthenticated Cross Site Scripting (XSS) in TranslatePress <= 3.3.2 versions.","description":"Unauthenticated Cross Site Scripting (XSS) in TranslatePress <= 3.3.2 versions.","indicators":{"cves":["CVE-2026-66582"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:32.547Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/translatepress-multilingual/vulnerability/wordpress-translatepress-plugin-3-3-2-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66590","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-66590 — Unauthenticated Cross Site Scripting (XSS) in Tagembed <= 7.4 versions.","description":"Unauthenticated Cross Site Scripting (XSS) in Tagembed <= 7.4 versions.","indicators":{"cves":["CVE-2026-66590"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:32.930Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/tagembed-widget/vulnerability/wordpress-tagembed-plugin-7-4-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66594","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-66594 — Subscriber SQL Injection in WordPress Persistent Login <= 3.1.0 versions.","description":"Subscriber SQL Injection in WordPress Persistent Login <= 3.1.0 versions.","indicators":{"cves":["CVE-2026-66594"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:33.307Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/wp-persistent-login/vulnerability/wordpress-wordpress-persistent-login-plugin-3-1-0-sql-injection-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66597","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-66597 — Unauthenticated Cross Site Scripting (XSS) in wpDataTables <= 6.5.1.4 versions.","description":"Unauthenticated Cross Site Scripting (XSS) in wpDataTables <= 6.5.1.4 versions.","indicators":{"cves":["CVE-2026-66597"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:33.557Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/wpdatatables/vulnerability/wordpress-wpdatatables-plugin-6-5-1-4-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66598","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-66598 — Unauthenticated Cross Site Scripting (XSS) in B2BKing Premium <= 5.6.07 versions.","description":"Unauthenticated Cross Site Scripting (XSS) in B2BKing Premium <= 5.6.07 versions.","indicators":{"cves":["CVE-2026-66598"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:33.683Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/b2bking/vulnerability/wordpress-b2bking-premium-plugin-5-6-07-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66604","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-66604 — Unauthenticated Cross Site Scripting (XSS) in GeoDirectory <= 2.8.173 versions.","description":"Unauthenticated Cross Site Scripting (XSS) in GeoDirectory <= 2.8.173 versions.","indicators":{"cves":["CVE-2026-66604"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:34.063Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/geodirectory/vulnerability/wordpress-geodirectory-plugin-2-8-173-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66605","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-66605 — Unauthenticated Cross Site Scripting (XSS) in Swatchly – WooCommerce Variation Swatches for Products…","description":"Unauthenticated Cross Site Scripting (XSS) in Swatchly – WooCommerce Variation Swatches for Products <= 1.4.13 versions.","indicators":{"cves":["CVE-2026-66605"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:34.187Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/swatchly/vulnerability/wordpress-swatchly-woocommerce-variation-swatches-for-products-plugin-1-4-13-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66606","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-66606 — Unauthenticated Cross Site Scripting (XSS) in SmartSMTP <= 1.2.0 versions.","description":"Unauthenticated Cross Site Scripting (XSS) in SmartSMTP <= 1.2.0 versions.","indicators":{"cves":["CVE-2026-66606"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:34.317Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/smart-smtp/vulnerability/wordpress-smartsmtp-plugin-1-2-0-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66607","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-66607 — Unauthenticated Cross Site Scripting (XSS) in Advance Product Search <= 1.4.8 versions.","description":"Unauthenticated Cross Site Scripting (XSS) in Advance Product Search <= 1.4.8 versions.","indicators":{"cves":["CVE-2026-66607"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:34.437Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/th-advance-product-search/vulnerability/wordpress-advance-product-search-plugin-1-4-8-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66611","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-66611 — Unauthenticated Cross Site Scripting (XSS) in Paymob for WooCommerce <= 4.1.10 versions.","description":"Unauthenticated Cross Site Scripting (XSS) in Paymob for WooCommerce <= 4.1.10 versions.","indicators":{"cves":["CVE-2026-66611"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:34.690Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/paymob-for-woocommerce/vulnerability/wordpress-paymob-for-woocommerce-plugin-4-1-10-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66612","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-66612 — Unauthenticated Cross Site Scripting (XSS) in Aora <= 1.3.19 versions.","description":"Unauthenticated Cross Site Scripting (XSS) in Aora <= 1.3.19 versions.","indicators":{"cves":["CVE-2026-66612"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:34.813Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/theme/aora/vulnerability/wordpress-aora-theme-1-3-19-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66614","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-66614 — Unauthenticated Cross Site Scripting (XSS) in SEO Plugin by Squirrly SEO <= 14.2.2 versions.","description":"Unauthenticated Cross Site Scripting (XSS) in SEO Plugin by Squirrly SEO <= 14.2.2 versions.","indicators":{"cves":["CVE-2026-66614"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:34.937Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/squirrly-seo/vulnerability/wordpress-seo-plugin-by-squirrly-seo-plugin-14-2-2-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66615","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-66615 — Unauthenticated Cross Site Scripting (XSS) in Podlove Podcast Publisher <= 4.5.4 versions.","description":"Unauthenticated Cross Site Scripting (XSS) in Podlove Podcast Publisher <= 4.5.4 versions.","indicators":{"cves":["CVE-2026-66615"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:35.073Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/podlove-podcasting-plugin-for-wordpress/vulnerability/wordpress-podlove-podcast-publisher-plugin-4-5-4-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66616","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-66616 — Unauthenticated Cross Site Scripting (XSS) in Form Maker by 10Web <= 1.15.46 versions.","description":"Unauthenticated Cross Site Scripting (XSS) in Form Maker by 10Web <= 1.15.46 versions.","indicators":{"cves":["CVE-2026-66616"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:35.197Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/form-maker/vulnerability/wordpress-form-maker-by-10web-plugin-1-15-46-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66673","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-66673 — Unauthenticated Cross Site Scripting (XSS) in Flatastic <= 2.0 versions.","description":"Unauthenticated Cross Site Scripting (XSS) in Flatastic <= 2.0 versions.","indicators":{"cves":["CVE-2026-66673"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:35.697Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/theme/flatastic/vulnerability/wordpress-flatastic-theme-2-0-reflected-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66677","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-66677 — Subscriber Broken Authentication in Leyka <= 3.32.3 versions.","description":"Subscriber Broken Authentication in Leyka <= 3.32.3 versions.","indicators":{"cves":["CVE-2026-66677"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:35.817Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/leyka/vulnerability/wordpress-leyka-plugin-3-32-3-broken-authentication-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-68564","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-68564 — Unauthenticated Cross Site Scripting (XSS) in NotificationX Pro <= 3.1.4 versions.","description":"Unauthenticated Cross Site Scripting (XSS) in NotificationX Pro <= 3.1.4 versions.","indicators":{"cves":["CVE-2026-68564"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:36.190Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/notificationx-pro/vulnerability/wordpress-notificationx-pro-plugin-3-1-4-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73998","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73998 — Subscriber SQL Injection in WP w3all phpBB <= 3.0.5 versions.","description":"Subscriber SQL Injection in WP w3all phpBB <= 3.0.5 versions.","indicators":{"cves":["CVE-2026-73998"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:36.813Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/wp-w3all-phpbb-integration/vulnerability/wordpress-wp-w3all-phpbb-plugin-3-0-5-sql-injection-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74013","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74013 — Subscriber SQL Injection in eShipper Commerce <= 2.16.13 versions.","description":"Subscriber SQL Injection in eShipper Commerce <= 2.16.13 versions.","indicators":{"cves":["CVE-2026-74013"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:37.067Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/eshipper-commerce/vulnerability/wordpress-eshipper-commerce-plugin-2-16-13-sql-injection-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74019","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74019 — Unauthenticated Broken Access Control in EPROLO Dropshipping <= 2.4.2 versions.","description":"Unauthenticated Broken Access Control in EPROLO Dropshipping <= 2.4.2 versions.","indicators":{"cves":["CVE-2026-74019"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:37.567Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/eprolo-dropshipping/vulnerability/wordpress-eprolo-dropshipping-plugin-2-4-2-broken-access-control-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74020","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74020 — Unauthenticated Broken Access Control in Koji <= 2.2.1 versions.","description":"Unauthenticated Broken Access Control in Koji <= 2.2.1 versions.","indicators":{"cves":["CVE-2026-74020"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:37.690Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/theme/koji/vulnerability/wordpress-koji-theme-2-2-1-broken-access-control-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74021","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-74021 — Unauthenticated Broken Access Control in Chaplin <= 2.6.8 versions.","description":"Unauthenticated Broken Access Control in Chaplin <= 2.6.8 versions.","indicators":{"cves":["CVE-2026-74021"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:37.817Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/theme/chaplin/vulnerability/wordpress-chaplin-theme-2-6-8-broken-access-control-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76987","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76987 — A security flaw has been discovered in liftoff-sr CIPster 1802525be27d33e19a9a83c163e331a1d13b1892.…","description":"A security flaw has been discovered in liftoff-sr CIPster 1802525be27d33e19a9a83c163e331a1d13b1892. The impacted element is the function CipAttribute::GetAttrData/CipAttribute::SetAttrData of the file ciptypes.h of the component Generic Attribute Logic. Performing a manipulation results in memory co…","indicators":{"cves":["CVE-2026-76987"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T13:19:06.450Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://github.com/liftoff-sr/CIPster/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/liftoff-sr/CIPster/commit/e745d9d4a8ca3a13689066983a1269fe1e567674","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/liftoff-sr/CIPster/issues/47","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-76987","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/880100","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393610","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393610/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76633","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76633 — WeGIA before 3.9.2 contains an authorization bypass vulnerability in the password change flow that a…","description":"WeGIA before 3.9.2 contains an authorization bypass vulnerability in the password change flow that allows any authenticated user to change their account password without providing existing credentials by exploiting the unconditional exclusion of the alterarSenha method from permission checks in cont…","indicators":{"cves":["CVE-2026-76633"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:17:59.680Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://github.com/LabRedesCefetRJ/WeGIA/releases#release-3.9.2","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/LabRedesCefetRJ/WeGIA/security/advisories/GHSA-gfcx-7973-hjmp","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/wegia-authorization-bypass-password-change-via-alterarsenha","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76635","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76635 — baserCMS before 5.3.0 contains a SQL injection vulnerability in BcDatabaseService.php that allows au…","description":"baserCMS before 5.3.0 contains a SQL injection vulnerability in BcDatabaseService.php that allows authenticated administrators to inject attacker-controlled table names and configuration values directly into SQL statements across sequence update, CSV export, and table management operations. Attacker…","indicators":{"cves":["CVE-2026-76635"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:17:59.973Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://github.com/baserproject/basercms/releases/tag/5.3.0","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/baserproject/basercms/security/advisories/GHSA-cg65-f2m7-9fqj","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/basercms-sql-injection-and-code-injection-via-bcdatabaseservice-php","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76833","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76833 — @cgauge/yaml npm package contains an arbitrary code execution vulnerability that allows attackers to…","description":"@cgauge/yaml npm package contains an arbitrary code execution vulnerability that allows attackers to execute arbitrary JavaScript by embedding a custom !js YAML tag whose construct callback unconditionally calls eval() on attacker-supplied string values during document parsing. Any application parsi…","indicators":{"cves":["CVE-2026-76833"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:18:00.137Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://gist.github.com/arjunjaincs/35da3a80b4b16f324f194acec18489ba","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/cgauge/packages","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/cgauge-yaml-npm-package-arbitrary-code-execution-via-eval-yaml-tag","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://gist.github.com/arjunjaincs/35da3a80b4b16f324f194acec18489ba","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-76990","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76990 — A vulnerability has been found in code-projects Simple Inventory System 1.0. Affected by this issue…","description":"A vulnerability has been found in code-projects Simple Inventory System 1.0. Affected by this issue is some unknown functionality of the file /delete.php. Such manipulation of the argument ID leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public an…","indicators":{"cves":["CVE-2026-76990"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:18:00.313Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://code-projects.org/","label":"cna@vuldb.com","domainType":"other"},{"url":"https://raw.githubusercontent.com/anubhavv106/Security-Advisories/refs/heads/main/Simple-Inventory-System-delete.php-SQLi.md","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/cve/CVE-2026-76990","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/880114","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393615","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393615/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16925","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-16925 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to achieve privilege esca…","description":"IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to achieve privilege escalation due to improper authorization.","indicators":{"cves":["CVE-2026-16925"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T15:17:28.800Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283858","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16927","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-16927 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to gain root privileges d…","description":"IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to gain root privileges due to a time-of-check to time-of-use (TOCTOU) race condition.","indicators":{"cves":["CVE-2026-16927"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T15:17:29.130Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283858","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-49825","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-49825 — lxml is a library for processing XML and HTML in the Python language. Prior to 6.1.1, link attribute…","description":"lxml is a library for processing XML and HTML in the Python language. Prior to 6.1.1, link attributes in ``lxml.html.defs.link_attrs`` were missing ``xlink:href``, which can be used for URL bypass attacks in embedded SVG/MathML/etc. content. This vulnerability was fixed in lxml 6.1.1 and lxml_html_c…","indicators":{"cves":["CVE-2026-49825"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T15:17:30.707Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/fedora-python/lxml_html_clean/commit/322357ac61c6cf80fcbaba53b4e92e31f3ded9f2","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/fedora-python/lxml_html_clean/releases/tag/0.4.5","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/fedora-python/lxml_html_clean/security/advisories/GHSA-4jhm-jv67-739f","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/lxml/lxml/commit/5927a6d5e851845140975d99b65461e255caaab0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/lxml/lxml/releases/tag/lxml-6.1.1","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-61897","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-61897 — An Ubuntu-specific patch to AccountsService before 23.13.9-8ubuntu7 only partially drops privileges…","description":"An Ubuntu-specific patch to AccountsService before 23.13.9-8ubuntu7 only partially drops privileges before launching language helper scripts. It changes the effective UID/GID to the target user but leaves the real UID as 0 (root). A shell spawned by a helper script inherits ruid=0 and may reset its…","indicators":{"cves":["CVE-2026-61897"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T15:17:38.740Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://bugs.launchpad.net/ubuntu/+source/accountsservice/+bug/2157985","label":"security@ubuntu.com","domainType":"other"},{"url":"https://ubuntu.com/security/CVE-2026-61897","label":"security@ubuntu.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-61898","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-61898 — The Ubuntu-specific language helper scripts (save-to-pam-env, update-langlist) shipped with accounts…","description":"The Ubuntu-specific language helper scripts (save-to-pam-env, update-langlist) shipped with accountsservice before 23.13.9-8ubuntu7 treat the user-controlled LANGUAGE entry in ~/.pam_environment as trusted input. The value is interpolated unescaped into a GNU sed replacement expression, allowing an…","indicators":{"cves":["CVE-2026-61898"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T15:17:38.913Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://bugs.launchpad.net/ubuntu/+source/accountsservice/+bug/2157985","label":"security@ubuntu.com","domainType":"other"},{"url":"https://ubuntu.com/security/CVE-2026-61898","label":"security@ubuntu.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-63490","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-63490 — Handlebars.java provides logic-less and semantic Mustache templates with Java. Prior to 4.5.3, com.g…","description":"Handlebars.java provides logic-less and semantic Mustache templates with Java. Prior to 4.5.3, com.github.jknack.handlebars.springmvc.SpringTemplateLoader resolves attacker-influenced Spring MVC view names through Spring ResourceLoader without the path-containment validation used by other URL-based…","indicators":{"cves":["CVE-2026-63490"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T15:18:04.577Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/jknack/handlebars.java/commit/61f43423a337b87db5fec1fe59f0725aaaa38df5","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/jknack/handlebars.java/releases/tag/v4.5.3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/jknack/handlebars.java/security/advisories/GHSA-g29j-rwfv-h99w","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-76996","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76996 — A security flaw has been discovered in SourceCodester Simple Online Food Ordering System 1.0. Impact…","description":"A security flaw has been discovered in SourceCodester Simple Online Food Ordering System 1.0. Impacted is an unknown function of the file /fos/admin/view_order.php. The manipulation of the argument ID results in sql injection. The attack may be performed from remote. The exploit has been released to…","indicators":{"cves":["CVE-2026-76996"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T15:18:40.783Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/hubdk01/cve/issues/2","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-76996","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/880388","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393619","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393619/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.sourcecodester.com/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19611","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19611 — A flaw was found in WildFly Elytron. Password hashing and verification normalize input with Unicode…","description":"A flaw was found in WildFly Elytron. Password hashing and verification normalize input with Unicode NFKC, which can collapse fullwidth characters to ASCII equivalents. A remote attacker can more easily guess affected passwords by using an ASCII-only dictionary against accounts whose passwords were i…","indicators":{"cves":["CVE-2026-19611"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T16:17:18.293Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-19611","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2514568","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75140","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-75140 — jsoup through 1.23.2, fixed in commit 862ba2f, contains an uncontrolled resource consumption vulnera…","description":"jsoup through 1.23.2, fixed in commit 862ba2f, contains an uncontrolled resource consumption vulnerability in XmlTreeBuilder that allows remote attackers to exhaust JVM heap memory by supplying a deeply nested XML document with uniquely-namespaced elements. The builder copies the entire inherited na…","indicators":{"cves":["CVE-2026-75140"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T16:18:02.030Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/jhy/jsoup/commit/862ba2f1d48ee95609183dbcfc848c9fd7afc76a","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/jhy/jsoup/pull/2556","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/jsoup-uncontrolled-resource-consumption-in-xmltreebuilder","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76998","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76998 — A security vulnerability has been detected in SourceCodester Simple Online Food Ordering System 1.0.…","description":"A security vulnerability has been detected in SourceCodester Simple Online Food Ordering System 1.0. The impacted element is an unknown function of the file /admin/ajax.php?action=delete_category. Such manipulation of the argument ID leads to sql injection. It is possible to launch the attack remote…","indicators":{"cves":["CVE-2026-76998"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T16:18:31.243Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/normabowie11-max/cve/issues/1","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-76998","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/880465","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393621","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393621/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.sourcecodester.com/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77004","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-77004 — A flaw has been found in Comfast CF-N1-S 2.6.0.1. This impacts the function sprintf of the file /cgi…","description":"A flaw has been found in Comfast CF-N1-S 2.6.0.1. This impacts the function sprintf of the file /cgi-bin/mbox-config?method=SET&section=ptest_sn. Executing a manipulation of the argument sn can lead to command injection. The attack can be launched remotely. The exploit has been published and may be…","indicators":{"cves":["CVE-2026-77004"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T16:18:31.580Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/lxiansheng488-bit/-/blob/main/%E5%8E%82%E5%95%86comefast%20%20CF-N1-S%20V2.pdf","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-77004","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/880584","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393623","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393623/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-54449","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-54449 — LangBot is a global IM bot platform designed for LLMs. In version 4.10.7 and earlier, any authentica…","description":"LangBot is a global IM bot platform designed for LLMs. In version 4.10.7 and earlier, any authenticated user can add or change an STDIO MCP server configuration without an adequate authorization boundary. In src/langbot/pkg/provider/tools/loaders/mcp.py, StdioServerParameters accepts the configured…","indicators":{"cves":["CVE-2026-54449"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:18:17.910Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/langbot-app/LangBot/security/advisories/GHSA-3pvh-63gf-j9mw","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://www.ox.security/blog/mcp-supply-chain-advisory-rce-vulnerabilities-across-the-ai-ecosystem","label":"security-advisories@github.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-54616","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-54616 — NanaZip is the 7-Zip derivative intended for the modern Windows experience. From version 1.0.88.0 un…","description":"NanaZip is the 7-Zip derivative intended for the modern Windows experience. From version 1.0.88.0 until stable version 6.0.1698.0 and preview version 6.5.1742.0, the Lz4Decode function in NanaZip.Core/SevenZip/CPP/7zip/Archive/SquashfsHandler.cpp rejects only a zero return from LZ4_decompress_safe e…","indicators":{"cves":["CVE-2026-54616"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:18:18.090Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/M2Team/NanaZip/commit/733e8570d2ba96c3e52aab44f5fd886775d5952f","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/M2Team/NanaZip/commit/ce0322a1932e16a53e4a13e48bc61804c7826956","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/M2Team/NanaZip/releases/tag/6.0.1698.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/M2Team/NanaZip/releases/tag/6.5.1742.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/M2Team/NanaZip/security/advisories/GHSA-95x5-qvvm-hmfp","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/M2Team/NanaZip/security/advisories/GHSA-95x5-qvvm-hmfp","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-61704","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-61704 — Link Preview JS extracts web links information. Prior to 4.0.4, the resolveDNSHost mitigation in ind…","description":"Link Preview JS extracts web links information. Prior to 4.0.4, the resolveDNSHost mitigation in index.ts validates one resolved IP address but fetches the original hostname, allowing an attacker-controlled DNS server to return a public address during validation and a loopback or internal address du…","indicators":{"cves":["CVE-2026-61704"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:18:51.940Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/OP-Engineering/link-preview-js/commit/6ee25043dd60b097eb70b4ce049aac94b28239e3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/OP-Engineering/link-preview-js/commit/f3a3dd84adbb9d32d06a933f44ff3eaa837f9a12","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/OP-Engineering/link-preview-js/pull/181","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/OP-Engineering/link-preview-js/releases/tag/4.0.4","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/OP-Engineering/link-preview-js/security/advisories/GHSA-cpjf-6666-r8fx","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-65842","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-65842 — Plate is a rich-text editor with AI and shadcn/ui. Prior to 53.3.2, @platejs/docx-io fetches remote…","description":"Plate is a rich-text editor with AI and shadcn/ui. Prior to 53.3.2, @platejs/docx-io fetches remote image URLs while converting attacker-controlled HTML through htmlToDocxBlob in a server-side or privileged environment. The converter can make requests to internal network resources and include the fe…","indicators":{"cves":["CVE-2026-65842"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:19:23.433Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/udecode/plate/commit/21aa59926f4bbd421027354823cca09c6700ed73","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/udecode/plate/pull/5053","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/udecode/plate/releases/tag/v53.3.2","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/udecode/plate/security/advisories/GHSA-4q39-2jhr-7qx8","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-69183","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-69183 — Monkeytype is a minimalistic and customizable typing test. In 26.26.0 and earlier, the backend rate-…","description":"Monkeytype is a minimalistic and customizable typing test. In 26.26.0 and earlier, the backend rate-limit key generator in backend/src/middlewares/rate-limit.ts uses client-controlled cf-connecting-ip and x-forwarded-for headers before the trust-proxy-derived req.ip value. An unauthenticated attacke…","indicators":{"cves":["CVE-2026-69183"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:19:34.387Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/monkeytypegame/monkeytype/security/advisories/GHSA-c878-p3jh-mmjf","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/monkeytypegame/monkeytype/security/advisories/GHSA-c878-p3jh-mmjf","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-77019","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-77019 — A vulnerability was determined in CodeAstro Apartment Visitor Management System 1.0. Affected is an…","description":"A vulnerability was determined in CodeAstro Apartment Visitor Management System 1.0. Affected is an unknown function of the file /apartment-visitor/forgotpw.php. Executing a manipulation of the argument secode can lead to sql injection. The attack may be launched remotely. The exploit has been publi…","indicators":{"cves":["CVE-2026-77019"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:19:49.063Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://codeastro.com/","label":"cna@vuldb.com","domainType":"other"},{"url":"https://github.com/Witiers/CVEs/issues/1","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-77019","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/880593","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393635","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393635/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77020","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-77020 — A vulnerability was identified in CodeAstro Apartment Visitor Management System 1.0. Affected by thi…","description":"A vulnerability was identified in CodeAstro Apartment Visitor Management System 1.0. Affected by this vulnerability is an unknown functionality of the file password-recovery.php. The manipulation of the argument email leads to sql injection. Remote exploitation of the attack is possible. The exploit…","indicators":{"cves":["CVE-2026-77020"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:19:49.237Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://codeastro.com/","label":"cna@vuldb.com","domainType":"other"},{"url":"https://github.com/Witiers/CVEs/issues/2","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-77020","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/880596","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393636","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393636/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77176","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-77176 — A flaw was found in Kata Containers. In configurations utilizing genpolicy for Confidential Containe…","description":"A flaw was found in Kata Containers. In configurations utilizing genpolicy for Confidential Containers guest protection, a malicious host operator can exploit insufficient validation of CreateContainer mount and storage rules. This allows them to mount arbitrary container-rootfs paths over sensitive…","indicators":{"cves":["CVE-2026-77176"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:19:49.773Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-77176","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2517502","label":"secalert@redhat.com","domainType":"other"},{"url":"https://github.com/kata-containers/kata-containers/security/advisories/GHSA-fmg6-v47x-52wr","label":"secalert@redhat.com","domainType":"primary"},{"url":"http://www.openwall.com/lists/oss-security/2026/08/20/19","label":"af854a3a-2127-422b-91ae-364da2661108","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-54623","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-54623 — django CMS is an easy-to-use and developer-friendly enterprise content management system powered by…","description":"django CMS is an easy-to-use and developer-friendly enterprise content management system powered by Django. Prior to 5.0.8, the move_plugin endpoint in cms/admin/placeholderadmin.py accepts an attacker-controlled plugin_parent value without rejecting a plugin’s own identifier or a descendant identif…","indicators":{"cves":["CVE-2026-54623","CVE-2026-54622","CVE-2026-54624","CVE-2026-61663","CVE-2026-63003","CVE-2026-75526"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T18:16:28.013Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/django-cms/django-cms/commit/7642a98ab3170793c0b27b4125dd1f3d318b8a1c","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/django-cms/django-cms/pull/8645","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/django-cms/django-cms/releases/tag/5.0.8","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/django-cms/django-cms/security/advisories/GHSA-8jj7-4v57-frf5","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/django-cms/django-cms/security/advisories/GHSA-4xfr-4p46-gc6p","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/django-cms/django-cms/security/advisories/GHSA-vgxm-h9gx-h9w7","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/django-cms/django-cms/commit/9c82abfeb25471583e23906ea1ebef9202527b04","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/django-cms/django-cms/pull/8703","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/django-cms/django-cms/releases/tag/5.0.9","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/django-cms/django-cms/security/advisories/GHSA-8qj2-c6q4-f399","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/django-cms/django-cms/commit/3e1ccf7573eb1a74ebbbfaaa812c1f5cadf14e6c","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/django-cms/django-cms/pull/8713","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/django-cms/django-cms/security/advisories/GHSA-6x92-6vx4-5fwr","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/django-cms/django-cms/commit/b56a568844ff3702495945f73a31d0868285bf88","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/django-cms/django-cms/pull/8711","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/django-cms/django-cms/security/advisories/GHSA-hvq6-2r72-p2x7","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-63387","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-63387 — Libevent is an event notification library. Prior to 2.1.13 and 2.2.2-alpha, libevent has an off-by-o…","description":"Libevent is an event notification library. Prior to 2.1.13 and 2.2.2-alpha, libevent has an off-by-one stack buffer overflow in evdns.c when dnsname_to_labels formats a name-bearing DNS record at the end of the 64 KB stack buffer allocated by evdns_server_request_format_response. The final-label che…","indicators":{"cves":["CVE-2026-63387"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T18:16:36.723Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://github.com/libevent/libevent/releases/tag/release-2.1.13-stable","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libevent/libevent/releases/tag/release-2.2.2-alpha","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libevent/libevent/security/advisories/GHSA-58rx-7448-jw47","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-63388","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-63388 — Libevent is an event notification library. Prior to 2.1.13 and 2.2.2-alpha, libevent has a heap out-…","description":"Libevent is an event notification library. Prior to 2.1.13 and 2.2.2-alpha, libevent has a heap out-of-bounds write in bufferevent_sock.c when bufferevent_socket_set_conn_address_ copies a kernel-supplied AF_UNIX peer address into bufferevent_private.conn_address. Release builds compiled with NDEBUG…","indicators":{"cves":["CVE-2026-63388"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T18:16:36.893Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://github.com/libevent/libevent/commit/52057cb33d0c20c0a0453fbabe6c0c96854931b9","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libevent/libevent/commit/ef38f926e9cd1f082416c6fff13587bc1f431d72","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libevent/libevent/releases/tag/release-2.1.13-stable","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libevent/libevent/releases/tag/release-2.2.2-alpha","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libevent/libevent/security/advisories/GHSA-cvq5-vrvr-j338","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-63495","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-63495 — Libevent is an event notification library. From 2.2.0-alpha-dev until 2.2.2-alpha, the libevent WebS…","description":"Libevent is an event notification library. From 2.2.0-alpha-dev until 2.2.2-alpha, the libevent WebSocket server in ws.c accumulates fragmented frames in evws->incomplete_frames without enforcing a total message-size limit. An unauthenticated remote client can repeatedly send fragmented WebSocket fr…","indicators":{"cves":["CVE-2026-63495"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T18:16:37.040Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://github.com/libevent/libevent/commit/291c4d1cd75695e898030ebd5c4ddf26c094077b","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libevent/libevent/releases/tag/release-2.2.2-alpha","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libevent/libevent/security/advisories/GHSA-qx89-wf2v-vgmx","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libevent/libevent/security/advisories/GHSA-qx89-wf2v-vgmx","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-76641","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-76641 — Expat through 2.8.3 contains an out-of-bounds read vulnerability that allows attackers to trigger me…","description":"Expat through 2.8.3 contains an out-of-bounds read vulnerability that allows attackers to trigger memory corruption by processing XML with external entity parsers created via XML_ExternalEntityParserCreate. A struct size mismatch between ELEMENT_TYPE members causes storeAtts to read the attIndex mem…","indicators":{"cves":["CVE-2026-76641"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T18:16:51.887Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://github.com/libexpat/libexpat/commit/98599f6dcc2b460410881fe420f5f55d6bec63bf","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/libexpat/libexpat/pull/1331","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/expat-out-of-bounds-read-via-dtdcopy","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77031","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-77031 — A vulnerability has been found in Tenda CH22 1.0.0.1. The affected element is the function formcreat…","description":"A vulnerability has been found in Tenda CH22 1.0.0.1. The affected element is the function formcreateFileName of the file /goform/formcreateFileName. The manipulation of the argument fileNameMit leads to command injection. The attack can be initiated remotely. The exploit has been disclosed to the p…","indicators":{"cves":["CVE-2026-77031"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T18:16:53.140Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://candle-throne-f75.notion.site/Tenda-CH22-formcreateFileName-392df0aa118580c38c4ad15fb15cd30d","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/cve/CVE-2026-77031","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/880667","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393642","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393642/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.tenda.com.cn/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-53583","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-53583 — libgit2 is a portable C implementation of the Git core methods provided as a linkable library with a…","description":"libgit2 is a portable C implementation of the Git core methods provided as a linkable library with a solid API, allowing to build Git functionality into your application. Prior to 1.8.6 and 1.9.5, verify_server_cert in src/libgit2/streams/openssl.c uses an inverted !!memcmp result in the GEN_IPADD b…","indicators":{"cves":["CVE-2026-53583","CVE-2026-53584","CVE-2026-53585","CVE-2026-53586","CVE-2026-53587"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T19:16:54.500Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://github.com/libgit2/libgit2/commit/647dcb432980b84ede4cb5a008bbd1ccb4ead03d","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libgit2/libgit2/commit/c2aa35409ee0e6515df64da49750f13a0a42c47f","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libgit2/libgit2/commit/ef086bc3e4eedf62be38a910381aae24d49871ff","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libgit2/libgit2/releases/tag/v1.8.6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libgit2/libgit2/releases/tag/v1.9.5","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libgit2/libgit2/security/advisories/GHSA-h7gc-w2gg-p9xp","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libgit2/libgit2/commit/419637d3587396f5d139d6d88480eab3cd81e7a1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libgit2/libgit2/commit/467c2d95ed663df722f83a5960edf568514b128c","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libgit2/libgit2/commit/ec7371da9f359cd8293e9108e7a0b1c1b61b67c4","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libgit2/libgit2/security/advisories/GHSA-cw77-j82w-mchm","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libgit2/libgit2/commit/0cdfdd5fa8f8514c82413025e1e0808866cf7c30","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libgit2/libgit2/commit/c1896f06df22cc0ca5658df3a8f6cd7ede4cd6ae","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libgit2/libgit2/commit/dec22ac01ad9620c96b7b9ac3ef636ea46d43bed","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libgit2/libgit2/security/advisories/GHSA-27m5-gxxh-x79j","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libgit2/libgit2/commit/07de6a7e438f95ac9a6efd3222a82117e871ed27","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libgit2/libgit2/commit/af2b29ad0a74d5bac9751376879ddaf848136d3b","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libgit2/libgit2/commit/c1507abc44647b3acd832a33a5b1c8c9f5ba8821","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libgit2/libgit2/security/advisories/GHSA-2889-x8f6-mc4x","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libgit2/libgit2/commit/2c0ce8c0132ac38ab0db28239462a671e2e5440e","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libgit2/libgit2/commit/affda60c10fcef16723451c0d7dc71b71dc20ad3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libgit2/libgit2/commit/d7a9fb87f504434e9f45228678953c4fa56e7640","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libgit2/libgit2/security/advisories/GHSA-pm24-4jhq-3xvm","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-66787","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-66787 — A flaw was found in the lighthouse component of Red Hat Advanced Cluster Management for Kubernetes.…","description":"A flaw was found in the lighthouse component of Red Hat Advanced Cluster Management for Kubernetes. This vulnerability stems from insufficient validation of advertised IP addresses within EndpointSlice objects. A compromised spoke cluster can exploit this by creating EndpointSlices with attacker-con…","indicators":{"cves":["CVE-2026-66787"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T19:16:58.637Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-66787","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2507532","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72852","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72852 — hank-ai/darknet sizes a convolutional layer's weight and output heap buffers by multiplying configur…","description":"hank-ai/darknet sizes a convolutional layer's weight and output heap buffers by multiplying configuration fields taken from a .cfg file in unchecked 32-bit int arithmetic. In src-lib/convolutional_layer.cpp, l.nweights is computed as (c / groups) * n * size * size and l.outputs as l.out_h * l.out_w…","indicators":{"cves":["CVE-2026-72852"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T19:17:00.830Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://github.com/hank-ai/darknet","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/hank-ai/darknet/blob/v6.0/src-lib/convolutional_layer.cpp#L1457","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/hank-ai/darknet/blob/v6.0/src-lib/convolutional_layer.cpp#L764","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/hank-ai/darknet/blob/v6.0/src-lib/convolutional_layer.cpp#L811","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/hank-ai/darknet/issues/148","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/darknet-integer-overflow-in-convolutional-layer-buffer-sizing-leads-to-heap-buffer-overflow","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18420","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-18420 — Improper input validation in the Time Series Visual Builder (TSVB) plugin in OpenSearch Dashboards a…","description":"Improper input validation in the Time Series Visual Builder (TSVB) plugin in OpenSearch Dashboards allows an authenticated remote user to execute arbitrary code on the server via a crafted JSON payload to the metrics visualization API endpoint. This issue is a form of prototype pollution that enable…","indicators":{"cves":["CVE-2026-18420"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T21:17:06.137Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://aws.amazon.com/security/security-bulletins/2026-085-aws/","label":"ff89ba41-3aa1-4d27-914a-91399e9639e5","domainType":"other"},{"url":"https://github.com/opensearch-project/OpenSearch-Dashboards/releases/tag/3.8.0","label":"ff89ba41-3aa1-4d27-914a-91399e9639e5","domainType":"primary"},{"url":"https://github.com/opensearch-project/OpenSearch-Dashboards/security/advisories/GHSA-xmqx-xq2p-8jq2","label":"ff89ba41-3aa1-4d27-914a-91399e9639e5","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-53804","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-53804 — OTRS Community Edition contains an authenticated OS command injection vulnerability in the PGP encry…","description":"OTRS Community Edition contains an authenticated OS command injection vulnerability in the PGP encryption module that allows administrators to execute arbitrary operating-system commands by supplying crafted values for the PGP binary path and command options. Administrator-supplied configuration val…","indicators":{"cves":["CVE-2026-53804"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T21:17:06.813Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://h00die-gr3y.github.io/research/cve-2026-53804/","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://www.vulncheck.com/advisories/otrs-community-edition-os-command-injection-via-pgp-configuration","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73040","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73040 — Dockge validates a stack name only on the write path. In backend/stack.ts the allow-list check in va…","description":"Dockge validates a stack name only on the write path. In backend/stack.ts the allow-list check in validate(), which requires the name to match ^[a-z0-9_-]+$, is reached from save() alone, while the path getter returns path.join(this.server.stacksDir, this.name) and Stack.getStack builds path.join(se…","indicators":{"cves":["CVE-2026-73040"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T21:17:09.110Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://github.com/louislam/dockge","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/louislam/dockge/blob/1.5.0/backend/agent-socket-handlers/docker-socket-handler.ts#L43-L78","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/louislam/dockge/blob/1.5.0/backend/stack.ts#L155-L157","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/louislam/dockge/blob/1.5.0/backend/stack.ts#L218-L232","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/louislam/dockge/blob/1.5.0/backend/stack.ts#L377-L379","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/louislam/dockge/issues/994","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/dockge-path-traversal-via-unvalidated-stack-name-allows-arbitrary-compose-and-env-disclosure-and-arbitrary-directory-deletion","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73137","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-73137 — A flaw was found in the multicloud-operators-subscription component of Red Hat Advanced Cluster Mana…","description":"A flaw was found in the multicloud-operators-subscription component of Red Hat Advanced Cluster Management (RHACM). A tenant with HelmRelease create permissions can exploit this vulnerability by manipulating the `secretRef.Namespace` field. This allows the `GetSecret()` function in the HelmRelease c…","indicators":{"cves":["CVE-2026-73137"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T21:17:09.270Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-73137","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2514223","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77584","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-77584 — Tor before 0.4.9.10 did not reject a CONFLUX_LINK cell that arrives on a circuit which already has a…","description":"Tor before 0.4.9.10 did not reject a CONFLUX_LINK cell that arrives on a circuit which already has attached streams. A malicious client could send a RELAY_COMMAND_BEGIN before the CONFLUX_LINK on the same circuit, attaching an exit stream that would later end up orphan leaving a dangling circuit bac…","indicators":{"cves":["CVE-2026-77584"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T21:17:10.810Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://gitlab.torproject.org/tpo/core/tor/-/raw/tor-0.4.9.10/ChangeLog","label":"cve@mitre.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77638","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-77638 — Tor before 0.4.9.11 is prone to a race condition where in just the right circumstances a rendezvous…","description":"Tor before 0.4.9.11 is prone to a race condition where in just the right circumstances a rendezvous point could man-in-the-middle (impersonate) the onion service that the client was trying to reach.","indicators":{"cves":["CVE-2026-77638"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T21:17:11.097Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://gitlab.torproject.org/tpo/core/tor/-/raw/tor-0.4.9.11/ChangeLog","label":"cve@mitre.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-17003","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-17003 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to compromise the confid…","description":"IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to compromise the confidentiality and integrity of the system due to an out-of-bounds write.","indicators":{"cves":["CVE-2026-17003"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:10.983Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283858","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-17171","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-17171 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to overwrite arbitrary fi…","description":"IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to overwrite arbitrary files due to improper resolution of symbolic links.","indicators":{"cves":["CVE-2026-17171"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:15.247Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283858","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19442","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19442 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 has a pointer validation flaw exists in the AIX Virtua…","description":"IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 has a pointer validation flaw exists in the AIX Virtual SCSI (vSCSI) initiator driver. Successful exploitation may result in denial of service, privilege escalation, or full compromise of the client LPAR kernel.","indicators":{"cves":["CVE-2026-19442"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:18.110Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283858","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19446","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19446 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 allows a remote unauthenticated attacker can send a cr…","description":"IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 allows a remote unauthenticated attacker can send a crafted UDP packet to a reachable RPC service, resulting in complete system unavailability and requiring an LPAR restart.","indicators":{"cves":["CVE-2026-19446"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:18.273Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283858","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19449","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-19449 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 has a vulnerability in cmdnim that may allow an unpriv…","description":"IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 has a vulnerability in cmdnim that may allow an unprivileged local user to executes the payload as root.","indicators":{"cves":["CVE-2026-19449"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:18.613Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283858","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-46355","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-46355 — BigBlueButton is an open-source virtual classroom. Prior to 3.0.23, BigBlueButton exposed /bigbluebu…","description":"BigBlueButton is an open-source virtual classroom. Prior to 3.0.23, BigBlueButton exposed /bigbluebutton/api/handleJoinExistingUser through bigbluebutton-web/grails-app/controllers/org/bigbluebutton/web/controllers/ApiController.groovy. A requester able to supply an existingUserID for an active part…","indicators":{"cves":["CVE-2026-46355"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:19.193Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://github.com/bigbluebutton/bigbluebutton/commit/972b04e474e195cbd708b5b3f0485fe528a1a85b","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/bigbluebutton/bigbluebutton/releases/tag/v3.0.23","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/bigbluebutton/bigbluebutton/security/advisories/GHSA-38fw-2gq7-ccgr","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-46682","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-46682 — BigBlueButton is an open-source virtual classroom. Prior to 3.0.23, BigBlueButton allowed authentica…","description":"BigBlueButton is an open-source virtual classroom. Prior to 3.0.23, BigBlueButton allowed authenticated moderators to inject SQL through the meetingId and userId values used by refreshBreakoutRoomsVisibleForUsers in akka-bbb-apps/src/main/scala/org/bigbluebutton/core/db/BreakoutRoomUserDAO.scala. Th…","indicators":{"cves":["CVE-2026-46682"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:19.347Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://github.com/bigbluebutton/bigbluebutton/commit/3365e340e0c102de0f8ea007c05053b562b6fa2b","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/bigbluebutton/bigbluebutton/releases/tag/v3.0.23","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/bigbluebutton/bigbluebutton/security/advisories/GHSA-gfv2-46v4-jvw5","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-49217","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-49217 — Mailu is a mail server as a set of Docker images. Prior to version 2024.06.52, a missing authorizati…","description":"Mailu is a mail server as a set of Docker images. Prior to version 2024.06.52, a missing authorization check in the Mailu admin REST API allows any unauthenticated attacker to remove any potential IP restriction or update the comment field from any existing user token provided the REST API is enable…","indicators":{"cves":["CVE-2026-49217"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:19.803Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://github.com/Mailu/Mailu/security/advisories/GHSA-2w8v-6xr5-g9gh","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-49436","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-49436 — LinkAce is a self-hosted archive to collect website links. Prior to version 2.5.7, the Bulk Link API…","description":"LinkAce is a self-hosted archive to collect website links. Prior to version 2.5.7, the Bulk Link API endpoint (`POST /api/v2/bulk/links`) accepts URLs without any format validation, allowing an authenticated user to store a `javascript:` URI. The stored URI is later rendered verbatim as an `href` in…","indicators":{"cves":["CVE-2026-49436"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:20.240Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://github.com/Kovah/LinkAce/commit/642ac520347205a8277668bcae269bdc21223eae","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Kovah/LinkAce/security/advisories/GHSA-6r73-pchm-4m39","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-55013","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-55013 — Uncontrolled search path element in Windows Remote Help Defense allows an authorized attacker to per…","description":"Uncontrolled search path element in Windows Remote Help Defense allows an authorized attacker to perform spoofing locally.","indicators":{"cves":["CVE-2026-55013"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:21.933Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-55013","label":"secure@microsoft.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-55765","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-55765 — CloudNativePG is a platform designed to manage PostgreSQL databases within Kubernetes environments.…","description":"CloudNativePG is a platform designed to manage PostgreSQL databases within Kubernetes environments. Prior to 1.28.4 and 1.29.2, CloudNativePG embedded cleartext role passwords in `ALTER ROLE` and `CREATE ROLE` statements generated by SetUserPassword in pkg/management/postgres/utils/roles.go and appe…","indicators":{"cves":["CVE-2026-55765","CVE-2026-55769"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:22.487Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://github.com/cloudnative-pg/cloudnative-pg/commit/2f0342747e1f160425b9d51753c0069b0d6117d5","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cloudnative-pg/cloudnative-pg/commit/3cd5af5d388c26758acf13c19ea806b4bcebb3fe","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cloudnative-pg/cloudnative-pg/commit/9a13573dbe3d78721b7ea92141e6d2324a2c0ef0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cloudnative-pg/cloudnative-pg/pull/10724","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cloudnative-pg/cloudnative-pg/releases/tag/v1.28.4","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cloudnative-pg/cloudnative-pg/releases/tag/v1.29.2","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cloudnative-pg/cloudnative-pg/releases/tag/v1.30.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cloudnative-pg/cloudnative-pg/security/advisories/GHSA-w3gf-xc94-wvmj","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cloudnative-pg/cloudnative-pg/commit/02b5c6289b7609dc87fcb1ae9c113160e3d43308","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cloudnative-pg/cloudnative-pg/commit/db38f4d80315c8f1b21bf511ef0f28871820c14d","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cloudnative-pg/cloudnative-pg/commit/e0e2d53adbd907a61f583b1431904b5969f3fd22","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cloudnative-pg/cloudnative-pg/pull/10774","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cloudnative-pg/cloudnative-pg/security/advisories/GHSA-x8c2-3p4r-v9r6","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-66800","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-66800 — Server-side request forgery (ssrf) in Azure Data Factory allows an unauthorized attacker to disclose…","description":"Server-side request forgery (ssrf) in Azure Data Factory allows an unauthorized attacker to disclose information over a network.","indicators":{"cves":["CVE-2026-66800"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:56.043Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-66800","label":"secure@microsoft.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-69419","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-69419 — Integer overflow or wraparound in Azure Data Manager for Energy allows an authorized attacker to exe…","description":"Integer overflow or wraparound in Azure Data Manager for Energy allows an authorized attacker to execute code over a network.","indicators":{"cves":["CVE-2026-69419"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:59.980Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69419","label":"secure@microsoft.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-69519","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-69519 — Observable response discrepancy in Azure Stack HCI allows an unauthorized attacker to disclose infor…","description":"Observable response discrepancy in Azure Stack HCI allows an unauthorized attacker to disclose information over a network.","indicators":{"cves":["CVE-2026-69519"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:18:00.123Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69519","label":"secure@microsoft.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-69543","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-69543 — Server-side request forgery (ssrf) in Azure Virtual Machines allows an authorized attacker to elevat…","description":"Server-side request forgery (ssrf) in Azure Virtual Machines allows an authorized attacker to elevate privileges over a network.","indicators":{"cves":["CVE-2026-69543"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:18:00.270Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69543","label":"secure@microsoft.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-69558","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-69558 — Authorization bypass through user-controlled key in Microsoft Partner Center allows an unauthorized…","description":"Authorization bypass through user-controlled key in Microsoft Partner Center allows an unauthorized attacker to disclose information over a network.","indicators":{"cves":["CVE-2026-69558"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:18:00.610Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69558","label":"secure@microsoft.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-69855","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-69855 — Server-side request forgery (ssrf) in Microsoft Copilot in Azure allows an authorized attacker to di…","description":"Server-side request forgery (ssrf) in Microsoft Copilot in Azure allows an authorized attacker to disclose information over a network.","indicators":{"cves":["CVE-2026-69855"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:18:01.003Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69855","label":"secure@microsoft.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-72818","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72818 — The URLS regular expression in nltk/tokenize/casual.py, compiled into TweetTokenizer.WORD_RE and app…","description":"The URLS regular expression in nltk/tokenize/casual.py, compiled into TweetTokenizer.WORD_RE and applied by TweetTokenizer.tokenize, contains a naked-domain branch whose domain-label prefix [a-z0-9]+(?:[.\\-][a-z0-9]+)* is unbounded. Input consisting of many alternating label separators can be partit…","indicators":{"cves":["CVE-2026-72818"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:18:05.087Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://github.com/nltk/nltk","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/nltk/nltk/blob/3.9.4/nltk/tokenize/casual.py","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/nltk/nltk/issues/3704","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/nltk/nltk/releases/tag/v3.10.1","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/nltk-tweettokenizer-url-pattern-backtracks-catastrophically-on-naked-domain-like-input","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72848","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72848 — SitemapLoader.parse_sitemap in langchain_community/document_loaders/sitemap.py applies the documente…","description":"SitemapLoader.parse_sitemap in langchain_community/document_loaders/sitemap.py applies the documented restrict_to_same_domain control only to leaf url entries. The loop over url elements filters cross-domain locations, but the loop over nested sitemap elements passes the child loc straight to self.s…","indicators":{"cves":["CVE-2026-72848"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:18:05.553Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://github.com/langchain-ai/langchain-community","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/langchain-ai/langchain-community/blob/main/libs/community/langchain_community/document_loaders/sitemap.py","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/langchain-ai/langchain/issues/38814","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/langchain-community-sitemaploader-does-not-apply-restrict-to-same-domain-to-nested-sitemap-index-entries-allowing-server-side-request-forgery","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72860","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-72860 — The POST /api/provider-nodes/validate route in 9router takes a caller-supplied baseUrl and issues se…","description":"The POST /api/provider-nodes/validate route in 9router takes a caller-supplied baseUrl and issues server-side HTTP requests to it, guarding the destination with assertPublicUrl from src/shared/utils/ssrfGuard.js. That guard compares hostname strings only: it resolves no DNS, does not revalidate afte…","indicators":{"cves":["CVE-2026-72860"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:18:05.787Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://github.com/decolua/9router","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/decolua/9router/blob/master/src/app/api/provider-nodes/validate/route.js","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/decolua/9router/blob/master/src/shared/utils/ssrfGuard.js","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/decolua/9router/issues/3293","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/decolua/9router/pull/3370","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/9router-server-side-request-forgery-via-api-provider-nodes-validate-because-the-ipv4-mapped-ipv6-denylist-check-is-unreachable","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77642","source":"nvd","category":"vulnerability","severity":"high","title":"CVE-2026-77642 — tor before 0.4.9.9 was prone to an out-of-bounds write when parsing a consensus or detached signatur…","description":"tor before 0.4.9.9 was prone to an out-of-bounds write when parsing a consensus or  detached signature with unexpected signature digest type. Impact  is minor for most Tor roles, but potentially major for directory   authorities. This is TROVE-2026-019.","indicators":{"cves":["CVE-2026-77642"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:18:06.070Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://gitlab.torproject.org/tpo/core/tor/-/raw/tor-0.4.9.9/ChangeLog","label":"cve@mitre.org","domainType":"other"}],"feedLabel":null},{"id":"vendor-uat-10147-deploys-spectre-a-cross-platform-implant-with-linux-rootkit-and-byovd-","source":"vendor-blogs","category":"advisory","severity":"high","title":"UAT-10147 deploys SPECTRE: A cross-platform implant with Linux rootkit and BYOVD capabilities","description":"The newly identified SPECTRE implant represents an evolution in commodity intrusion tooling, integrating cross-platform C2 operations, process injection, credential theft, anti-analysis protections, and kernel-level endpoint detection and response (EDR) bypass functionality.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T10:00:50.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://blog.talosintelligence.com/uat-10147-deploys-spectre-a-cross-platform-implant-with-linux-rootkit-and-byovd-capabilities/","label":"Cisco Talos","domainType":"other"}],"feedLabel":null},{"id":"vendor-cisa-nsa-fbi-warn-of-siemens-s7-plc-exploitation-using-ai-generated-scripts-to-d","source":"vendor-blogs","category":"advisory","severity":"high","title":"CISA, NSA, FBI warn of Siemens S7 PLC exploitation using AI-generated scripts to disrupt critical industrial processes","description":"U.S. agencies published on Wednesday a joint Cybersecurity Advisory warning of threat activity targeting Siemens S7 Series programmable...\nThe post CISA, NSA, FBI warn of Siemens S7 PLC exploitation using AI-generated scripts to disrupt critical industrial processes appeared first on Industrial Cybe…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ics"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T15:14:25.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://industrialcyber.co/industrial-cyber-attacks/cisa-nsa-fbi-warn-of-siemens-s7-plc-exploitation-using-ai-generated-scripts-to-disrupt-critical-industrial-processes/","label":"Industrial Cyber","domainType":"other"}],"feedLabel":null},{"id":"vendor-nssts-strategy-targets-cybersecurity-ot-ics-resilience-and-technology-supply-cha","source":"vendor-blogs","category":"advisory","severity":"high","title":"NSSTS strategy targets cybersecurity, OT/ICS resilience and technology supply chains; outlines four pillars","description":"The White House has released a National Security Science and Technology Strategy that calls for a more focused,...\nThe post NSSTS strategy targets cybersecurity, OT/ICS resilience and technology supply chains; outlines four pillars appeared first on Industrial Cyber.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ics","supply-chain"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T10:09:59.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://industrialcyber.co/critical-infrastructure/nssts-strategy-targets-cybersecurity-ot-ics-resilience-and-technology-supply-chains-outlines-four-pillars/","label":"Industrial Cyber","domainType":"other"}],"feedLabel":null},{"id":"malbaz-b93f2842c5ede1d48659eebbba629082787a8ccd17edd2571f5ada14c1252341","source":"malware-bazaar","category":"malware","severity":"high","title":"b93f2842c5ede1d48659eebbba629082787a8ccd17edd2571f5ada14c1252341.elf","description":"File type: elf | Reporter: Tuxxin","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":"1c4345de3e48f3e396b07942ddc52c6a","sha1":"0dc38524f8ddf9b50eb5672e622863dd3212dcf9","sha256":"b93f2842c5ede1d48659eebbba629082787a8ccd17edd2571f5ada14c1252341"}},"tags":["elf","exe","whack.sh"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-21T02:51:06Z","fetchedAt":"2026-08-21T03:00:01.057Z","references":[{"url":"https://bazaar.abuse.ch/sample/b93f2842c5ede1d48659eebbba629082787a8ccd17edd2571f5ada14c1252341/","label":"MalwareBazaar","domainType":"primary"}],"feedLabel":null},{"id":"malbaz-611fa15a339dabc3efdfdde36db072b7cddb2b70f37dd092abf0496f3fad74c7","source":"malware-bazaar","category":"malware","severity":"high","title":"611fa15a339dabc3efdfdde36db072b7cddb2b70f37dd092abf0496f3fad74c7.exe","description":"File type: exe | Reporter: Tuxxin","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":"2a4721f8805f3e2b7e8b17d67e474bf8","sha1":"aea0f9f7c15593d1e504c588428fc8681a232953","sha256":"611fa15a339dabc3efdfdde36db072b7cddb2b70f37dd092abf0496f3fad74c7"}},"tags":["ConnectWise","exe","whack.sh"],"malwareFamily":"ConnectWise","confidence":null,"publishedAt":"2026-08-21T02:40:54Z","fetchedAt":"2026-08-21T03:00:01.057Z","references":[{"url":"https://bazaar.abuse.ch/sample/611fa15a339dabc3efdfdde36db072b7cddb2b70f37dd092abf0496f3fad74c7/","label":"MalwareBazaar","domainType":"primary"}],"feedLabel":null},{"id":"malbaz-3fb78a20a4cd693982fa7adbecb074cc50be6a86ff05434dbfafc1096ad5b5ea","source":"malware-bazaar","category":"malware","severity":"high","title":"wr.php","description":"File type: sh | Reporter: abuse_ch","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":"9d90aadfd3b645334807fec9e766e031","sha1":"c8e4a97e12bb8e6eedaa746cb32a71982254641b","sha256":"3fb78a20a4cd693982fa7adbecb074cc50be6a86ff05434dbfafc1096ad5b5ea"}},"tags":["sh"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-21T02:38:35Z","fetchedAt":"2026-08-21T03:00:01.057Z","references":[{"url":"https://bazaar.abuse.ch/sample/3fb78a20a4cd693982fa7adbecb074cc50be6a86ff05434dbfafc1096ad5b5ea/","label":"MalwareBazaar","domainType":"primary"}],"feedLabel":null},{"id":"malbaz-b59075c2da6a7f8e093a6ddc8f48d77244c8fc7330e66f767d99bdbe9fcb8006","source":"malware-bazaar","category":"malware","severity":"high","title":"ok","description":"File type: sh | Reporter: abuse_ch","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":"d48beea3c242577eeb2f9041afbeac72","sha1":"93803fb4c0e1231d2ba5992a01275816e24599f2","sha256":"b59075c2da6a7f8e093a6ddc8f48d77244c8fc7330e66f767d99bdbe9fcb8006"}},"tags":["sh"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-21T02:37:18Z","fetchedAt":"2026-08-21T03:00:01.057Z","references":[{"url":"https://bazaar.abuse.ch/sample/b59075c2da6a7f8e093a6ddc8f48d77244c8fc7330e66f767d99bdbe9fcb8006/","label":"MalwareBazaar","domainType":"primary"}],"feedLabel":null},{"id":"malbaz-12dd079eab15afe12736e803cdb8134e4bcb70bd8ee3a0969aa56695b4a54c08","source":"malware-bazaar","category":"malware","severity":"high","title":"flutter.mipsel","description":"File type: elf | Reporter: abuse_ch","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":"c9e08297a9f9d908ba1eca3e474db414","sha1":"6a48bfffdc701d9b1e4452ed06732c4fd8cf41a9","sha256":"12dd079eab15afe12736e803cdb8134e4bcb70bd8ee3a0969aa56695b4a54c08"}},"tags":["elf","Mirai","upx-dec","upx","botnet"],"malwareFamily":"Mirai","confidence":null,"publishedAt":"2026-08-21T02:36:16Z","fetchedAt":"2026-08-21T03:00:01.057Z","references":[{"url":"https://bazaar.abuse.ch/sample/12dd079eab15afe12736e803cdb8134e4bcb70bd8ee3a0969aa56695b4a54c08/","label":"MalwareBazaar","domainType":"primary"},{"url":"https://bazaar.abuse.ch/sample/6dfddd85b419d20ae75a50f4ad4835fb2da7d4522c168351e778ecc48e448b8e/","label":"MalwareBazaar","domainType":"primary"}],"feedLabel":null},{"id":"malbaz-377339da9394e4590baa1a2aa8e433cf676718bb83a50a37fb9399eb6c8f62c7","source":"malware-bazaar","category":"malware","severity":"high","title":"377339da9394e4590baa1a2aa8e433cf676718bb83a50a37fb9399eb6c8f62c7.exe","description":"File type: exe | Reporter: Tuxxin","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":"eb3815f639e96df5dfff4eac36552750","sha1":"ab1f689d79c8ebb9068de42785fe08c248b840d9","sha256":"377339da9394e4590baa1a2aa8e433cf676718bb83a50a37fb9399eb6c8f62c7"}},"tags":["exe","signed","whack.sh"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-21T02:30:59Z","fetchedAt":"2026-08-21T03:00:01.057Z","references":[{"url":"https://bazaar.abuse.ch/sample/377339da9394e4590baa1a2aa8e433cf676718bb83a50a37fb9399eb6c8f62c7/","label":"MalwareBazaar","domainType":"primary"}],"feedLabel":null},{"id":"malbaz-f4b330adc3e1cb5d4ba6f1c506d0e4d6821b83d9b033f6e0f21cfdb94c35d2c2","source":"malware-bazaar","category":"malware","severity":"high","title":"f4b330adc3e1cb5d4ba6f1c506d0e4d6821b83d9b033f6e0f21cfdb94c35d2c2.bin","description":"File type: exe | Reporter: anonymous","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":"61118b7b4e83504d6a7d294b220d3cd1","sha1":"e2f31afcd12f239c600a99b053c5032583af4201","sha256":"f4b330adc3e1cb5d4ba6f1c506d0e4d6821b83d9b033f6e0f21cfdb94c35d2c2"}},"tags":["exe","signed","Vidar","botnet","infostealer"],"malwareFamily":"Vidar","confidence":null,"publishedAt":"2026-08-21T02:30:44Z","fetchedAt":"2026-08-21T03:00:01.057Z","references":[{"url":"https://bazaar.abuse.ch/sample/f4b330adc3e1cb5d4ba6f1c506d0e4d6821b83d9b033f6e0f21cfdb94c35d2c2/","label":"MalwareBazaar","domainType":"primary"}],"feedLabel":null},{"id":"malbaz-a38e5b31a04720674a8183bbc9901cda1523f0f555b993359cfaa57fdbfcfad9","source":"malware-bazaar","category":"malware","severity":"high","title":"wr.php","description":"File type: sh | Reporter: abuse_ch","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":"fdf04b0361e5fcb9e86e5d66c3d1b079","sha1":"b10d57aae529d194d961010ae72fedadf3f5136a","sha256":"a38e5b31a04720674a8183bbc9901cda1523f0f555b993359cfaa57fdbfcfad9"}},"tags":["sh"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-21T02:25:21Z","fetchedAt":"2026-08-21T03:00:01.057Z","references":[{"url":"https://bazaar.abuse.ch/sample/a38e5b31a04720674a8183bbc9901cda1523f0f555b993359cfaa57fdbfcfad9/","label":"MalwareBazaar","domainType":"primary"}],"feedLabel":null},{"id":"malbaz-d59aa853fe50e2c441d088e790f1f6aa1e472389beb7668e86dc81dc256c4a59","source":"malware-bazaar","category":"malware","severity":"high","title":"k.php","description":"File type: sh | Reporter: abuse_ch","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":"1c44f812710050f6702e1634806c7535","sha1":"b982660cef3cab0dfc07bf5dba658d19fa1bf813","sha256":"d59aa853fe50e2c441d088e790f1f6aa1e472389beb7668e86dc81dc256c4a59"}},"tags":["sh"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-21T02:20:42Z","fetchedAt":"2026-08-21T03:00:01.057Z","references":[{"url":"https://bazaar.abuse.ch/sample/d59aa853fe50e2c441d088e790f1f6aa1e472389beb7668e86dc81dc256c4a59/","label":"MalwareBazaar","domainType":"primary"}],"feedLabel":null},{"id":"otx-6a873495a873c0ec3c6d9880","source":"otx","category":"threat-intel","severity":"high","title":"Inside Kimsuky's Abuse of Legitimate Remote Control Tools Across Northeast Asia","description":"Kimsuky conducted spear phishing campaigns against South Korean and Japanese targets during the first half of 2026, distributing LNK malware through OneDrive share links. The malicious files established scheduled tasks that periodically fetched PowerShell scripts from command-and-control servers to…","indicators":{"cves":[],"ips":[],"domains":[],"urls":["http://103.249.117.183/receive.php","http://103.77.242.187/receive.php","http://160.187.147.119/any/app.vmd","http://160.187.147.119/any/attach.vmd","http://160.187.147.119/any/bimage.vmd","http://160.187.147.119/any/mnfst.vmd","http://160.187.147.119/any/sch.vmd","http://160.187.147.119/any/vpost.vmd"],"hashes":{"md5":"f6f7a94c11ea0ee01cbbe674cfac7851","sha1":"df6abbfd20e731689f3c7d2a55f45ac83fbbc40b","sha256":"b9ad79eaf7a4133f95f24c3b9d976c72f34264dc5c99030f0e57992cb5621f78"}},"tags":["spear phishing","chrome remote desktop","powershell","gmail exfiltration","onedrive","northeast asia","keylogger","lnk malware","anydesk","chrome extension","apt","phishing","botnet","infostealer"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:08:37.705Z","fetchedAt":"2026-08-21T03:00:01.555Z","references":[{"url":"https://otx.alienvault.com/pulse/6a873495a873c0ec3c6d9880","label":"OTX Pulse","domainType":"primary"}],"feedLabel":null},{"id":"otx-6a8734bac622f3c7b2d9a633","source":"otx","category":"threat-intel","severity":"high","title":"Distinct Clusters Target Individuals of Interest to Russia","description":"Three distinct suspected Russian cyber espionage threat clusters—UNC6293, UNC7005, and UNC5976—are abusing legitimate authentication flows to target individuals in academia, aerospace, defense, governments, and think tanks across Europe and the United States. These groups conduct sophisticated phish…","indicators":{"cves":[],"ips":[],"domains":["mioisiskwowiwjowuwjwolab.club","miov2iaiaoubqosiqoiajwowiwjso.online","chamber-ua.org","fewfwfwfwfwf.info","globsec.net","wa-connect.net","m365-owa.com","ms365-device.com","ms365-live.com","owa-ms365.com","my-invite.org","wa-connect.eu","wa-meeting.com","statistic-ms.live","finishoperations.com","finishoperations.org","foc-share.com","foc-share.org","foreignrelations.us","internal-share.com","share-foc.com","shopinvite.org","verify-drive.com","wa-device.com","wa-invite.com","drive.google.verify-drive.com","mail.kiis.co.uk"],"urls":[],"hashes":{"md5":"5484009071ea96c7b43e8fa052b8d88a","sha1":"1b97e0df9600335b0cd8db2eb4577d3dbf6e76db","sha256":"ca3be5885afb3eb3bb19341e2653212200c568f3f900e0b2f04de9ba209aed25"}},"tags":["russian cyber espionage","oauth phishing","vidar","device code phishing","headrush","app password phishing","unc6293","atomic","cherrypie","unc7005","enginelight","hospitality captive portal","unc5976","whatsapp device linking","authentication abuse","phishing","infostealer"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:09:14.994Z","fetchedAt":"2026-08-21T03:00:01.555Z","references":[{"url":"https://otx.alienvault.com/pulse/6a8734bac622f3c7b2d9a633","label":"OTX Pulse","domainType":"primary"}],"feedLabel":null},{"id":"otx-6a85ce6194c0be6ceb256c93","source":"otx","category":"threat-intel","severity":"high","title":"Balonx Sistema: The Face Behind the PhaaS Affecting Mexican Banking","description":"A sophisticated Phishing-as-a-Service platform called Balonx Sistema, operated from Mexico, targets over 20 financial institutions through tiered subscriptions. The platform employs real-time WebSocket session hijacking to defeat multi-factor authentication, distributing a Spyroid-based Android RAT…","indicators":{"cves":[],"ips":["196.251.84.11"],"domains":["soporte-aclaracion.xyz","balonx.online","callbalonx.info","panelbalonxfs.xyz","phishing-domain.xyz"],"urls":["http://panelbalonxfs.xyz/admin/api/api/gql","http://panelbalonxfs.xyz/admin/api/api/rest","http://panelbalonxfs.xyz/admin/api/api/token"],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["websocket hijacking","cryptocurrency payments","spyroid","phaas","callflow","ai vishing","mexican banking fraud","android rat","phishing"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:40:17.687Z","fetchedAt":"2026-08-21T03:00:01.555Z","references":[{"url":"https://otx.alienvault.com/pulse/6a85ce6194c0be6ceb256c93","label":"OTX Pulse","domainType":"primary"}],"feedLabel":null},{"id":"otx-6a86a70eb8b57f155e62d4f7","source":"otx","category":"threat-intel","severity":"high","title":"SilkParasite: Tracking a China-Nexus APT Across Central Asia","description":"SilkParasite is a cyberespionage operation assessed with medium confidence as China-nexus that targeted government bodies across Central Asia. Seven remote access tool families were deployed, five of which were previously undocumented: DriveSilkRAT, CookiETagRAT, NomadRAT, GoginRAT, and NodeEdgeRAT.…","indicators":{"cves":[],"ips":["193.29.56.216"],"domains":["uzrailway.devon-uz.com","evo.hoster-kg.com"],"urls":["https://uzrailway.devon-uz.com"],"hashes":{"md5":"ff33a3be2d497d934b88c8d9e0135d6b","sha1":"e84c8a7a49bca65c193ea60a3ecb26eb97bd3cfe","sha256":"ff22419b8ec3994542f23c78dc21a7c5abcb634008d99b7fa1fff1bb23102a00"}},"tags":["dll sideloading","cookietagrat","china-nexus apt","shadowpad","deed rat","spicerat","nodeedgerat","cyberespionage","google drive c2","goginrat","nomadrat","government targeting","central asia","drivesilkrat","bloodalchemy","silkparasite","apt","phishing","botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T07:04:46.883Z","fetchedAt":"2026-08-21T03:00:01.555Z","references":[{"url":"https://otx.alienvault.com/pulse/6a86a70eb8b57f155e62d4f7","label":"OTX Pulse","domainType":"primary"}],"feedLabel":null},{"id":"otx-6a84bafb3c129cc2f9de2762","source":"otx","category":"threat-intel","severity":"high","title":"MacSync Stealer: C2 Infrastructure Rotation","description":"On 5 May 2026, a Jamf Protect deployment blocked a download attempt from jacksonvillemma[.]com, four days after the operator's previous MacSync C2 was publicly disclosed. The new C2's TLS certificate was issued within 24 hours of that disclosure. Analysis revealed a Stage 2 zsh loader containing a s…","indicators":{"cves":[],"ips":[],"domains":["tintingsd.com","houstongaragedoorinstallers.com","pressureulcerlawyer.com","mansfieldpediatrics.com","helxiagent.com","lumenagnet.com","blzaeagent.com","nailscanai.com","glowmedaesthetics.com","wechatstablecoin.com","numericagent.com","jacksonvillemma.com","lalandscapelighting.com","harveylewisinsuranceagency.com"],"urls":["http://jacksonvillemma.com/curl/7980485fb1e0b1b1d6307a92b5750c7055bc53b662005cbaa662ac634984363d","http://jacksonvillemma.com/dynamic?txd=7980485fb1e0b1b1d6307a92b5750c7055bc53b662005cbaa662ac634984363d","http://jacksonvillemma.com/gate?buildtxd=7980485fb1e0b1b1d6307a92b5750c7055bc53b662005cbaa662ac634984363d"],"hashes":{"md5":"277acd8e241c1341852ebcd401203ecc","sha1":"7d28507870e94b809f25883dc9dae838549ddfac","sha256":"7980485fb1e0b1b1d6307a92b5750c7055bc53b662005cbaa662ac634984363d"}},"tags":["macsync stealer","c2 infrastructure","macos","mac.c","clickfix","credential theft","cryptocurrency wallet","macsync","malware-as-a-service","infostealer","botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:05:15.820Z","fetchedAt":"2026-08-21T03:00:01.555Z","references":[{"url":"https://otx.alienvault.com/pulse/6a84bafb3c129cc2f9de2762","label":"OTX Pulse","domainType":"primary"}],"feedLabel":null},{"id":"otx-6a84c51cdd3d70b59b0d8f38","source":"otx","category":"threat-intel","severity":"high","title":"CopyCop Targets AI Investment in Armenia","description":"The Russian influence network CopyCop conducted a coordinated disinformation campaign targeting the US-Armenian joint Firebird AI data center in Hrazdan between June and July 2026. Through three escalating operations, CopyCop fabricated narratives about earthquake risks, power grid instability, and…","indicators":{"cves":[],"ips":[],"domains":["gizmodo.cc","haaretz24.com","politico-24.com","tech-crunch.org"],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ai infrastructure","media impersonation","geopolitical realignment","disinformation","copycop","armenia","storm-1516","influence operations"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:48:28.700Z","fetchedAt":"2026-08-21T03:00:01.555Z","references":[{"url":"https://otx.alienvault.com/pulse/6a84c51cdd3d70b59b0d8f38","label":"OTX Pulse","domainType":"primary"}],"feedLabel":null},{"id":"otx-6a84c514863d37cbadb72833","source":"otx","category":"threat-intel","severity":"high","title":"Mirage2FA Hijacks Companies’ Microsoft 365 Sessions, with Over 4K Victims in the US","description":"Mirage2FA is an active phishing-as-a-service toolkit built to steal Microsoft 365 credentials and authenticated sessions through Adversary-in-the-Middle attacks. Analysis shows 63.7% of identified victims are in the US, with Technology, Manufacturing, and Education among the most targeted industries…","indicators":{"cves":[],"ips":["192.52.166.55","209.205.197.130","181.214.165.173","83.147.53.130","209.205.192.6","139.28.36.38","98.144.204.109"],"domains":["galatasaraydanhaberler.com","sopbtech.store","office.pcvgtech.store","ver.verpox.shop","cementslabconstruction.com","adp.pslcertlive.site","ans.rsxbenefits.com","ari.vslbertlive.info","ars.greebys.com","asvbtech.store","avsbtech.store","bezdelz.store","bns.baseasix.com","bsf.allmetreod.com","bverster.store","cer.septey.shop","cer.verpox.shop","cureaveritax.store","cvs.pcvgtech.online","dezbelz.store","dverster.store","everster.store","fureaveritax.store","fverster.store","gacorslot7d.com","gectech.store","gverster.store","hpn.bandhiem.com","hverster.store","hynutech.store","implentedgucedirectory.com","intrugementslayerdocuservice.com","iverster.store","jscvbtech.store","jureaveritax.store","jverster.store","mettsoll.com","oectech.store","office.avcbtech.store","pancincorp.com","pavetech.store","pectech.store","pezbelz.store","pureaveritax.store","pvf.schwiessdoors.com","pvs.schwiessdoors.com","pxvbtech.store","pynutech.store","rfm.m3-bulders.com","rmf.diversesgs.com","rmf.m3-bulders.com","svn.dpsindustrialsgroup.com","svr.schwiessdoors.com","vezbelz.store","vns.pigotnet.com","vns.tvgsv.com","vns1.pigotnet.com","vrf.atskinsonel.com","vrf.gavernova.com","vrf.iar0nline.com","wectech.store","wes.cadsta.online","zectech.store","user.cheacker.store","hvr.volatilesour.store","ver.bandhiem.com","cheacker.store","volatilesour.store"],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["microsoft 365","websocket","adversary-in-the-middle","credential theft","html smuggling","phishing-as-a-service","session hijacking","2fa bypass","phishing"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:48:20.565Z","fetchedAt":"2026-08-21T03:00:01.555Z","references":[{"url":"https://otx.alienvault.com/pulse/6a84c514863d37cbadb72833","label":"OTX Pulse","domainType":"primary"}],"feedLabel":null},{"id":"otx-6a85530dde3c55da4658c63b","source":"otx","category":"threat-intel","severity":"high","title":"Clop Returns with Custom Implant in Mass-Extortion Campaign","description":"The Clop threat group has returned to mass exploitation tactics by leveraging CVE-2026-12569 in PTC Windchill, deploying a sophisticated custom web shell designed specifically for data theft and extortion. This purpose-built implant provides immediate full data-theft capability without requiring add…","indicators":{"cves":["CVE-2021-27101","CVE-2023-34362","CVE-2026-12569"],"ips":["78.128.113.10","216.152.151.204","185.227.83.236"],"domains":[],"urls":[],"hashes":{"md5":"71a7b6b8fa5e21765aeb60d897009aa3","sha1":"2989c71984b9a464c741e5d93171ca9c153baf5d","sha256":"321e1fb01eb3462b48ff6ccdef132acc1182e3f7456548439f0d4ead12fd98bf"}},"tags":["web shell","lemurloot","dewmode","cve-2023-34362","cve-2026-12569","ptc windchill","data exfiltration","manufacturing","credential theft","mass exploitation","extortion","cve-2021-27101","ransomware","phishing"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:54:05.236Z","fetchedAt":"2026-08-21T03:00:01.555Z","references":[{"url":"https://otx.alienvault.com/pulse/6a85530dde3c55da4658c63b","label":"OTX Pulse","domainType":"primary"}],"feedLabel":null},{"id":"otx-6a8478fdbb5ebd2c1549a543","source":"otx","category":"threat-intel","severity":"high","title":"Fraudulent Employment Operations","description":"Multiple clusters of North Korean IT workers, designated as PurpleDelta, have been identified applying to over 1,100 companies between late 2024 and early 2025, primarily targeting software, technology, staffing, consulting, and healthcare sectors. The operators maintained at least 22 fabricated per…","indicators":{"cves":[],"ips":["104.253.147.147","104.253.51.76","104.253.72.75","104.253.134.123","218.24.120.118","104.253.1.79","104.253.103.238","104.253.111.106","104.253.112.86","104.253.121.146","104.253.17.141","104.253.19.244","104.253.199.214","104.253.251.19","104.253.34.67","104.253.47.239","104.253.56.226","104.253.90.150"],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["insider threat","identity fraud","north korean it workers","remote work deception","fraudulent employment","purpledelta","chatgpt abuse","ai-generated personas"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:23:41.146Z","fetchedAt":"2026-08-21T03:00:01.555Z","references":[{"url":"https://otx.alienvault.com/pulse/6a8478fdbb5ebd2c1549a543","label":"OTX Pulse","domainType":"primary"}],"feedLabel":null},{"id":"otx-6a8474eb4f130dfa41887e40","source":"otx","category":"threat-intel","severity":"high","title":"Octagon: A New Android Bot Targeting Crypto Wallets and Banking Apps","description":"In June 2026, a previously undocumented Android fraud bot called Octagon was identified, sold as malware-as-a-service by Russian-speaking actor AndroidKitKat for $1,400 monthly. The malware employs accessibility overlays, hidden VNC, SMS interception, unlock-pattern capture, and balance reading capa…","indicators":{"cves":[],"ips":["45.192.12.34","209.99.184.50","209.99.187.28","104.251.180.179","45.150.34.77"],"domains":[],"urls":["http://www.murlauncher.com/fenrir-launcher","https://sandbox-adventure.com/lifted-dreams/game","https://www.murlauncher.com/fenrir-launcher"],"hashes":{"md5":"d472e984c6e8f3d4d7352125ebcc7c3c","sha1":"54bccb0626f91a85d70803f4ecadd5cbd303f5e9","sha256":"b7e9072e5bda17e0c68db010106584815442b8a9e0ce05db8e3724d8c8967f4f"}},"tags":["maas","octagon","android","accessibility abuse","cryptocurrency","vnc","overlay attack","banking trojan","botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:06:19.182Z","fetchedAt":"2026-08-21T03:00:01.555Z","references":[{"url":"https://otx.alienvault.com/pulse/6a8474eb4f130dfa41887e40","label":"OTX Pulse","domainType":"primary"}],"feedLabel":null},{"id":"otx-6a7ef2da146fb06724520eb4","source":"otx","category":"threat-intel","severity":"high","title":"CoolClient backdoor goes deeper: Windows kernel rootkit added","description":"HoneyMyte APT group (also known as Mustang Panda) has significantly upgraded its CoolClient backdoor with kernel-level rootkit capabilities. The latest variant deploys a signed kernel-mode driver (msagent.sys) as a Windows service, enabling advanced stealth features including process hiding, file an…","indicators":{"cves":[],"ips":[],"domains":["video.dursamjbataar.org","sundanish.freeddns.org","employers.theworkpc.com","freeread.casacam.net","us.lenovoappstore.com","torinarlabs.webredirect.org","news.dursamjbataar.org","black-popular.com","whatismybestthing.com"],"urls":[],"hashes":{"md5":"eb79558b037669792652a816e2c669de","sha1":"b813c4d9be3ba88159f1f83ce805f8b730b38dde","sha256":"ee72ae4cc869affddab11647e95bab9c5691c9fc76dcb4b31650ff504da29156"}},"tags":["plugx","toneshell","coolclient","mustang panda","honeymyte","apt","botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T10:50:02.210Z","fetchedAt":"2026-08-21T03:00:01.555Z","references":[{"url":"https://otx.alienvault.com/pulse/6a7ef2da146fb06724520eb4","label":"OTX Pulse","domainType":"primary"}],"feedLabel":null},{"id":"news-rust-supply-chain-attack-puts-build-time-malware-in-crates-with-245-million-down","source":"general-news","category":"news","severity":"high","title":"Rust Supply Chain Attack Puts Build-Time Malware in Crates with 245 Million Downloads","description":"The Rust Project has deleted malicious versions of three widely used Rust crates from crates.io after a compromised maintainer account published releases that added a typosquatted dependency whose build script downloaded and executed a remote payload during compilation.\n\nThe affected releases are ar…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["supply-chain"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T20:22:35.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/rust-supply-chain-attack-puts-build.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-attackers-exploit-mlflow-ssrf-flaw-to-steal-cloud-credentials-and-secrets","source":"general-news","category":"news","severity":"high","title":"Attackers Exploit MLflow SSRF Flaw to Steal Cloud Credentials and Secrets","description":"Two critical vulnerabilities impacting MLflow, an open-source artificial intelligence (AI) platform, and FUXA, an open-source, web-based SCADA / HMI software built for operational technology (OT) and industrial automation, are witnessing malicious scanning and exploitation efforts.\n\nAccording to ind…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ics"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T17:44:05.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/attackers-exploit-mlflow-ssrf-flaw-to.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-twinloot-abuses-sharepoint-and-teams-to-steal-credentials-and-move-across-networ","source":"general-news","category":"news","severity":"high","title":"TWINLOOT Abuses SharePoint and Teams to Steal Credentials and Move Across Networks","description":"Cybersecurity researchers have disclosed details of a previously undocumented Python implant framework dubbed TWINLOOT.\n\n\"TWINLOOT is a modular, PyArmor-hardened Python implant designed to operate its entire command-and-control infrastructure inside trusted Microsoft services,\" Ontinue said in a tec…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:38:20.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/twinloot-abuses-sharepoint-and-teams-to.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-16-typosquatted-rubygems-packages-steal-browser-credentials-and-crypto-wallets","source":"general-news","category":"news","severity":"high","title":"16 Typosquatted RubyGems Packages Steal Browser Credentials and Crypto Wallets","description":"Cybersecurity researchers have flagged a new typosquatting campaign targeting RubyGems users with a Windows-based information stealer.\n\nOpenSourceMalware, which discovered the activity on August 15, 2026, is tracking the threat under the moniker StubMaker. The complete list of packages published as…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["supply-chain"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T11:20:00.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/16-typosquatted-rubygems-packages-steal.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-cavern-c2-uses-dns-and-google-apps-script-to-blend-into-legitimate-traffic","source":"general-news","category":"news","severity":"high","title":"Cavern C2 Uses DNS and Google Apps Script to Blend Into Legitimate Traffic","description":"Cybersecurity researchers have traced the continued evolution of the Cavern (aka Cav3rn) command-and-control (C2) framework used by Iranian nation-state hackers in attacks targeting entities in Israel.\n\nRussian cybersecurity company Kaspersky said its ongoing monitoring of the threat activity cluste…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T17:41:06.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/cavern-c2-uses-dns-and-google-apps.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-evooo1bot-linux-botnet-exploits-known-flaws-to-turn-edge-devices-into-socks5-pro","source":"general-news","category":"news","severity":"high","title":"Evooo1Bot Linux Botnet Exploits Known Flaws to Turn Edge Devices Into SOCKS5 Proxies","description":"Cybersecurity researchers have flagged a previously undocumented Linux botnet family dubbed Evooo1Bot that derives its core functionality from the Mirai botnet source code and is equipped to turn internet-facing devices into SOCKS proxies.\n\n\"While the malware reuses the DDoS engine from the publicly…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T09:29:55.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/evooo1bot-linux-botnet-exploits-known.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-linux-botnet-evooo1bot-expands-mirai-capabilities-well-beyond-ddos","source":"general-news","category":"news","severity":"high","title":"Linux Botnet Evooo1Bot Expands Mirai Capabilities Well Beyond DDoS","description":"The botnet adds exploitation modules, credential theft, and reverse SOCKS relays to turn compromised devices into persistent attacker infrastructure.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T15:44:34.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.darkreading.com/cyber-risk/linux-botnet-evooo1bot-mirai-capabilities-beyond-ddos","label":"Dark Reading","domainType":"media"}],"feedLabel":null},{"id":"news-jfrog-artifactory-flaws-enable-software-supply-chain-attacks","source":"general-news","category":"news","severity":"high","title":"JFrog Artifactory Flaws Enable Software Supply Chain Attacks","description":"Two Artifactory flaws allowed attackers to poison package metadata across software repositories","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["supply-chain"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:30:00.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.infosecurity-magazine.com/news/jfrog-flaws-software-supply-chain/","label":"InfoSecurity Magazine","domainType":"media"}],"feedLabel":null},{"id":"news-ics-operators-warned-of-ai-driven-attacks-on-siemens-plcs","source":"general-news","category":"news","severity":"high","title":"ICS Operators Warned of AI-Driven Attacks on Siemens PLCs","description":"A US government advisory warned that attackers are deploying AI-generated exploitation scripts against exposed Siemens S7 Series PLCs","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ics"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T11:00:00.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.infosecurity-magazine.com/news/ics-ai-attacks-siemens/","label":"InfoSecurity Magazine","domainType":"media"}],"feedLabel":null},{"id":"news-us-agencies-warn-of-ai-powered-attacks-on-siemens-industrial-controllers","source":"general-news","category":"news","severity":"high","title":"US agencies warn of AI-powered attacks on Siemens industrial controllers","description":"Threat actors are using AI to write exploit scripts targeting internet-exposed Siemens S7 Series programmable logic controllers (PLCs) used across water, energy, manufacturing, and other critical infrastructure sectors, according to US federal agencies. PLCs are the small industrial computers that o…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ics"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T09:07:34.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.helpnetsecurity.com/2026/08/20/usa-ai-attacks-siemens-s7-plcs-critical-infrastructure/","label":"Help Net Security","domainType":"media"}],"feedLabel":null},{"id":"nvd-CVE-2026-19761","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19761 — A vulnerability has been found in DTStack Taier 1.4.0. Affected is the function MultipartFile.getOri…","description":"A vulnerability has been found in DTStack Taier 1.4.0. Affected is the function MultipartFile.getOriginalFilename of the file UploadController.java of the component Upload Controller. The manipulation of the argument File leads to path traversal. The attack may be initiated remotely. Upgrading to ve…","indicators":{"cves":["CVE-2026-19761"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T01:18:56.870Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/DTStack/Taier/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/DTStack/Taier/commit/572773c4315e23e51e30115151cb091749a8d03e","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/DTStack/Taier/issues/1202","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/DTStack/Taier/releases/tag/v1.5.0","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19761","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/868965","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389664","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389664/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://github.com/DTStack/Taier/issues/1202","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"},{"url":"https://vuldb.com/submit/868965","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19765","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19765 — A security flaw has been discovered in eyaushev swagger-testcase-mcp 5babb27c951fb404bc2b25ec8059361…","description":"A security flaw has been discovered in eyaushev swagger-testcase-mcp 5babb27c951fb404bc2b25ec80593616e49054e5. This vulnerability affects the function loadSource of the file src/utils/swagger-parser.ts of the component fetch_swagger. Performing a manipulation results in server-side request forgery.…","indicators":{"cves":["CVE-2026-19765"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T01:18:57.637Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/eyaushev/swagger-testcase-mcp/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/eyaushev/swagger-testcase-mcp/issues/1","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19765","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/868988","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389668","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389668/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19767","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19767 — A weakness has been identified in itsourcecode Hospital Management System 1.0. This issue affects so…","description":"A weakness has been identified in itsourcecode Hospital Management System 1.0. This issue affects some unknown processing of the file viewdoctortimings.php. Executing a manipulation of the argument delid can lead to sql injection. The attack may be performed from remote. The exploit has been made av…","indicators":{"cves":["CVE-2026-19767"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T02:16:23.757Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/funw1n/CVE/issues/1","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://itsourcecode.com/","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/cve/CVE-2026-19767","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/869005","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389669","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389669/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19770","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19770 — A vulnerability was identified in feedmob fm-mcp-servers 0.0.3. Affected by this vulnerability is th…","description":"A vulnerability was identified in feedmob fm-mcp-servers 0.0.3. Affected by this vulnerability is the function downloadReport of the file src/smadex-reporting/src/index.ts of the component Download Endpoint. The manipulation of the argument downloadUrl leads to server-side request forgery. The attac…","indicators":{"cves":["CVE-2026-19770"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T02:16:24.747Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/feed-mob/fm-mcp-servers/issues/198","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19770","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/869022","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389676","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389676/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19784","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19784 — A flaw has been found in francoisjacquet RosarioSIS up to 12.8. This affects the function DBUpdate o…","description":"A flaw has been found in francoisjacquet RosarioSIS up to 12.8. This affects the function DBUpdate of the file Discipline/Referrals.php. This manipulation causes authorization bypass. The attack may be initiated remotely. The exploit has been published and may be used. Upgrading to version 12.9 is a…","indicators":{"cves":["CVE-2026-19784"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T03:16:20.373Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/francoisjacquet/RosarioSIS/commit/04dd1a368ddf80ad7082baefa3c656e4e1825c76","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/francoisjacquet/RosarioSIS/issues/301","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/francoisjacquet/RosarioSIS/issues/301","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/francoisjacquet/rosariosis/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/francoisjacquet/rosariosis/issues/301","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/francoisjacquet/rosariosis/issues/301","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/francoisjacquet/rosariosis/releases/tag/v12.9","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19784","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/869367","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389744","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389744/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19785","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19785 — A vulnerability has been found in francoisjacquet RosarioSIS up to 12.7.4. This vulnerability affect…","description":"A vulnerability has been found in francoisjacquet RosarioSIS up to 12.7.4. This vulnerability affects unknown code of the file modules/Students/includes/Medical.inc.php of the component Student Medical Module. Such manipulation of the argument table leads to sql injection. The attack may be launched…","indicators":{"cves":["CVE-2026-19785"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T03:16:20.547Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/francoisjacquet/rosariosis/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/francoisjacquet/rosariosis/commit/6234a0ee0124c0667c824693ac77164f18946ddf","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/francoisjacquet/rosariosis/issues/302","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/francoisjacquet/rosariosis/releases/tag/v12.8","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19785","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/869377","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389745","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389745/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19786","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19786 — A vulnerability was found in francoisjacquet RosarioSIS up to 12.8. This issue affects some unknown…","description":"A vulnerability was found in francoisjacquet RosarioSIS up to 12.8. This issue affects some unknown processing of the file Modules.php. Performing a manipulation results in cross-site request forgery. Remote exploitation of the attack is possible. Upgrading to version 12.9 is capable of addressing t…","indicators":{"cves":["CVE-2026-19786"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T03:16:20.717Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/francoisjacquet/RosarioSIS/commit/801a71272c82cf4bf695fdc5ed42a9b7511d124d","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/francoisjacquet/rosariosis/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/francoisjacquet/rosariosis/issues/302","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/francoisjacquet/rosariosis/releases/tag/v12.9","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19786","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/869378","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389746","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389746/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://github.com/francoisjacquet/rosariosis/issues/302","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-19787","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19787 — A vulnerability was determined in SourceCodester Air Cargo Management System 1.0. Impacted is an unk…","description":"A vulnerability was determined in SourceCodester Air Cargo Management System 1.0. Impacted is an unknown function of the file /classes/Master.php?f=save_cargo_type. Executing a manipulation of the argument ID can lead to sql injection. The attack can be executed remotely. The exploit has been public…","indicators":{"cves":["CVE-2026-19787"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T03:16:20.880Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/XijieBa/CVE/issues/2","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19787","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/869411","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/869455","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389747","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389747/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.sourcecodester.com/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2025-10308","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2025-10308 — The Astro Booking Engine plugin for WordPress is vulnerable to Cross-Site Request Forgery in all ver…","description":"The Astro Booking Engine plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.4.0. This is due to missing nonce validation on the options deletion functionality. This makes it possible for unauthenticated attackers to delete all plugin settings via…","indicators":{"cves":["CVE-2025-10308"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T05:16:56.113Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/astro-booking-engine/tags/1.3.0/includes/tabs/tab-support.php#L6","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset/3638105/astro-booking-engine","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/4b0b13b4-b604-4514-845e-05a3b8858c66?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-12743","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-12743 — The affiliate-toolkit – Multi-Network Affiliate & Amazon Product Display plugin for WordPress is vul…","description":"The affiliate-toolkit – Multi-Network Affiliate & Amazon Product Display plugin for WordPress is vulnerable to time-based SQL Injection via the 'orderby' parameter in all versions up to, and including, 3.8.8 due to insufficient escaping on the user supplied parameter and lack of sufficient preparati…","indicators":{"cves":["CVE-2026-12743"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T06:16:40.573Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/affiliate-toolkit-starter/tags/3.8.8/includes/models/atkp_template.php#L147","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/affiliate-toolkit-starter/tags/3.8.8/includes/pages/atkp_template_table.php#L279","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3634918%40affiliate-toolkit-starter&new=3634918%40affiliate-toolkit-starter","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/dfd969b8-b88e-4d75-9d69-5f290b111fc7?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-14290","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-14290 — The Embed Google Photos album WordPress plugin through 2.2.1 does not escape a shortcode attribute v…","description":"The Embed Google Photos album WordPress plugin through 2.2.1 does not escape a shortcode attribute value before outputting it inside an HTML attribute, allowing users with the Contributor role or above to inject arbitrary JavaScript that executes in the browser of any user, including administrators,…","indicators":{"cves":["CVE-2026-14290"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T06:16:59.627Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://wpscan.com/vulnerability/e8fae1ed-59a0-4e64-b82d-26328f460cad/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16739","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-16739 — The Epeken All Kurir for Woocommerce WordPress plugin through 2.1.2 does not verify that a payment-c…","description":"The Epeken All Kurir for Woocommerce WordPress plugin through 2.1.2 does not verify that a payment-confirmation request originates from the owner of the targeted order, nor that any payment actually occurred, allowing unauthenticated attackers to mark arbitrary orders as confirmed and, in a non-defa…","indicators":{"cves":["CVE-2026-16739"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T06:17:03.153Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://wpscan.com/vulnerability/b66b86f9-e49e-4654-84a1-0f2e5c859289/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16810","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-16810 — The Bit Form – Contact Form, Payment Forms, Multi Step Forms, Calculator & Custom Form Builder plugi…","description":"The Bit Form – Contact Form, Payment Forms, Multi Step Forms, Calculator & Custom Form Builder plugin for WordPress is vulnerable to generic SQL Injection via the 'data[queryCondition]' parameter in all versions up to, and including, 3.2.0 due to insufficient escaping on the user supplied parameter…","indicators":{"cves":["CVE-2026-16810"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T06:17:03.253Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/bit-form/tags/3.2.0/includes/Admin/AdminAjax.php#L754","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/bit-form/tags/3.2.0/includes/Admin/Form/AdminFormHandler.php#L2042","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/bit-form/tags/3.2.0/includes/Core/Database/Model.php#L424","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/bit-form/tags/3.2.0/includes/GlobalHelper.php#L53","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/402f32fa-466b-4d9e-948f-3b7dc4507105?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19617","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19617 — A flaw was found in libdm. A local attacker could craft a malicious Logical Volume Manager (LVM) met…","description":"A flaw was found in libdm. A local attacker could craft a malicious Logical Volume Manager (LVM) metadata configuration with deeply nested structures. This could lead to uncontrolled recursion in the libdm configuration file parser, exhausting the stack and causing any LVM command reading the metada…","indicators":{"cves":["CVE-2026-19617"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T06:17:14.410Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-19617","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2514626","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2025-71405","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2025-71405 — chi versions before v5.2.2 contain an open redirect vulnerability in the RedirectSlashes middleware…","description":"chi versions before v5.2.2 contain an open redirect vulnerability in the RedirectSlashes middleware function that uses the Host header to construct redirect URLs. Attackers can manipulate the Host header to redirect users to arbitrary hosts, enabling phishing attacks and credential theft.","indicators":{"cves":["CVE-2025-71405"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["phishing"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T12:16:43.297Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/go-chi/chi/security/advisories/GHSA-vrw8-fxc6-2r93","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/go-chi-chi-before-open-redirect-via-redirectslashes","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/go-chi/chi/security/advisories/GHSA-vrw8-fxc6-2r93","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-72812","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-72812 — SiYuan versions before v3.7.4 contain a missing authorization vulnerability in the /api/ref/refreshB…","description":"SiYuan versions before v3.7.4 contain a missing authorization vulnerability in the /api/ref/refreshBacklink endpoint that allows anonymous readers to trigger persistent server-side writes. Attackers can invoke the endpoint with an attacker-controlled block ID to flush transaction queues, scan all re…","indicators":{"cves":["CVE-2026-72812"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T12:16:44.063Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-wgwx-479j-23vq","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/siyuan-before-missing-authorization-via-refreshbacklink","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72816","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-72816 — go-chi/chi through 5.2.1 contains an IP spoofing vulnerability in the RealIP middleware (middleware/…","description":"go-chi/chi through 5.2.1 contains an IP spoofing vulnerability in the RealIP middleware (middleware/realip.go). The realIP() function reads client-controlled headers (True-Client-IP, X-Real-IP, and X-Forwarded-For) and overwrites r.RemoteAddr without verifying that the request originated from a trus…","indicators":{"cves":["CVE-2026-72816"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T12:16:44.620Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/go-chi/chi/security/advisories/GHSA-rjr7-jggh-pgcp","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/go-chi-chi-before-ip-spoofing-via-realip-middleware","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/go-chi/chi/security/advisories/GHSA-rjr7-jggh-pgcp","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-72817","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-72817 — go-chi/chi versions 0.9.0 before 5.3.0 contains an IP spoofing vulnerability in the RealIP middlewar…","description":"go-chi/chi versions 0.9.0 before 5.3.0 contains an IP spoofing vulnerability in the RealIP middleware, which resolves the request source IP (Request.RemoteAddr) using the first IP in the X-Forwarded-For header without validating trusted proxies. A malicious client can prepend a forged IP as the firs…","indicators":{"cves":["CVE-2026-72817"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T12:16:44.747Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/go-chi/chi/security/advisories/GHSA-9g5q-2w5x-hmxf","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/go-chi-chi-before-ip-spoofing-via-x-forwarded-for","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72820","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-72820 — Grav versions before 2.0.13 fail to properly validate backup profile root paths, allowing attackers…","description":"Grav versions before 2.0.13 fail to properly validate backup profile root paths, allowing attackers to archive directories outside GRAV_ROOT when not in the hard-coded deny-list. Attackers with profile editor access can configure backup profiles with traversal paths to expose sensitive files from lo…","indicators":{"cves":["CVE-2026-72820"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T12:16:45.003Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/getgrav/grav/commit/ad9709f865b09b68798fb1ac375b484a8cc1d892","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-fch7-cpv4-w7hg","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/grav-path-traversal-via-backup-profile-configuration","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-fch7-cpv4-w7hg","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-72821","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-72821 — Grav Form plugin versions before 9.1.15 contain a stored cross-site scripting vulnerability in radio…","description":"Grav Form plugin versions before 9.1.15 contain a stored cross-site scripting vulnerability in radio and toggle field option labels rendered with the Twig |raw filter. Attackers with form authoring permissions can inject HTML and script payloads in option labels that execute in the browsers of visit…","indicators":{"cves":["CVE-2026-72821"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T12:16:45.140Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-5xv4-g337-2pg7","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/grav-form-plugin-before-stored-xss-via-radio-toggle","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-5xv4-g337-2pg7","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-72832","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-72832 — Grav versions from 1.5.2 through 2.0.12 contain a stored cross-site scripting vulnerability in the S…","description":"Grav versions from 1.5.2 through 2.0.12 contain a stored cross-site scripting vulnerability in the Security::detectXss() function (system/src/Grav/Common/Security.php). The event-handler scan is anchored at `<` and uses `[^>]*?`, which cannot cross the first literal `>`; when a `>` appears inside a…","indicators":{"cves":["CVE-2026-72832"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T12:16:46.540Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/getgrav/grav/commit/ad9709f865b09b68798fb1ac375b484a8cc1d892","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-269c-h76q-8cxw","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/grav-before-stored-xss-via-quoted-attribute-bypass","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-269c-h76q-8cxw","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-72834","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-72834 — filebrowser before 2.63.19 contains a permission bypass in the /api/resources endpoint. The checksum…","description":"filebrowser before 2.63.19 contains a permission bypass in the /api/resources endpoint. The checksum (?checksum=) branch of resourceGetHandler reads the entire file to compute a digest and returns it without performing a Perm.Download check (unlike the sibling raw, preview, and subtitle paths). As a…","indicators":{"cves":["CVE-2026-72834"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T12:16:46.807Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/filebrowser/filebrowser/commit/b7dc392838f11d188f0bc0f2a1a99fad3f7dca03","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/filebrowser/filebrowser/security/advisories/GHSA-7whw-q6gh-xr59","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/filebrowser-before-permission-bypass-via-checksum","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72835","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-72835 — filebrowser versions before v2.63.21 fail to canonicalize paths before evaluating access rules, allo…","description":"filebrowser versions before v2.63.21 fail to canonicalize paths before evaluating access rules, allowing authenticated users to bypass administrator-defined deny rules using case-variant or backslash-separated paths. Attackers can request files with alternate path representations that match no rule…","indicators":{"cves":["CVE-2026-72835"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T12:16:46.930Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/filebrowser/filebrowser/security/advisories/GHSA-fgm5-pw99-w2p7","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/filebrowser-before-access-rule-bypass-via-path-canonicalization","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/filebrowser/filebrowser/security/advisories/GHSA-fgm5-pw99-w2p7","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-72838","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-72838 — FileBrowser versions before 2.63.19 fail to enforce the declared Upload-Length in the TUS resumable-…","description":"FileBrowser versions before 2.63.19 fail to enforce the declared Upload-Length in the TUS resumable-upload PATCH endpoint, allowing authenticated users to write arbitrary data to disk. Attackers can send oversized request bodies that exceed the declared upload length to exhaust available disk space…","indicators":{"cves":["CVE-2026-72838"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T12:16:47.313Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/filebrowser/filebrowser/commit/4daddec6f200b03a721197d8c0b4b652c994894e","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/filebrowser/filebrowser/security/advisories/GHSA-ffv3-7h97-993q","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/filebrowser-before-disk-exhaustion-via-tus-upload","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73048","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-73048 — SiYuan versions before v3.7.4 contain an information disclosure vulnerability in the getRefIDsByFile…","description":"SiYuan versions before v3.7.4 contain an information disclosure vulnerability in the getRefIDsByFileAnnotationID endpoint that returns block identifiers citing PDF annotations without publish-access filtering. Attackers can extract block identifiers from restricted documents by supplying annotation…","indicators":{"cves":["CVE-2026-73048"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T12:16:47.567Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-f3q6-vc7q-m6h7","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/siyuan-before-information-disclosure-via-getrefidsbyfileannotationid","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-f3q6-vc7q-m6h7","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-73049","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-73049 — SiYuan versions before v3.7.4 contain an information disclosure vulnerability in the getAttributeVie…","description":"SiYuan versions before v3.7.4 contain an information disclosure vulnerability in the getAttributeViewBacklinks endpoint that consults the forbidden access list instead of the visibility list when filtering backlinks. Anonymous readers can supply a publicly visible database row identifier to discover…","indicators":{"cves":["CVE-2026-73049"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T12:16:47.697Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-p4qw-vx5p-g984","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/siyuan-before-information-disclosure-via-getattributeviewbacklinks","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-p4qw-vx5p-g984","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-73630","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-73630 — SiYuan before v3.7.4 contains an information disclosure vulnerability in the /api/filetree/authFileP…","description":"SiYuan before v3.7.4 contains an information disclosure vulnerability in the /api/filetree/authFilePublishAccess endpoint, which is registered with CheckAuth only and is reachable anonymously. The endpoint never sets a failure code, so its outcome is signalled entirely by the response message and by…","indicators":{"cves":["CVE-2026-73630"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T12:16:47.940Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-4pjg-x8qj-33j5","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/siyuan-before-information-disclosure-via-authfilepublishaccess","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19827","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19827 — A flaw has been found in alldatacenter alldata up to 0.6.8. This impacts the function FileInputStrea…","description":"A flaw has been found in alldatacenter alldata up to 0.6.8. This impacts the function FileInputStream of the file /admin/controller/JobLogController.java of the component logDetailCat Endpoint. This manipulation of the argument executorAddress causes path traversal. It is possible to initiate the at…","indicators":{"cves":["CVE-2026-19827"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T14:16:50.723Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/alldatacenter/alldata/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/alldatacenter/alldata/issues/834","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19827","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/870238","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389960","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389960/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19828","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19828 — A vulnerability was identified in 648540858 wvp-GB28181-pro 2.7.4-20260107. This affects an unknown…","description":"A vulnerability was identified in 648540858 wvp-GB28181-pro 2.7.4-20260107. This affects an unknown part of the file PlayController.java of the component Snapshot Endpoint. The manipulation of the argument deviceId/channelId leads to path traversal. The attack may be initiated remotely. The exploit…","indicators":{"cves":["CVE-2026-19828"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T14:16:50.880Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/648540858/wvp-GB28181-pro/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/648540858/wvp-GB28181-pro/issues/2175","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19828","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/870240","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389964","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389964/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19829","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19829 — A security flaw has been discovered in 648540858 wvp-GB28181-pro 2.7.4-20260107. This vulnerability…","description":"A security flaw has been discovered in 648540858 wvp-GB28181-pro 2.7.4-20260107. This vulnerability affects unknown code of the file LogController.java of the component Log File Download Endpoint. The manipulation of the argument fileName results in path traversal. The attack may be launched remotel…","indicators":{"cves":["CVE-2026-19829"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T14:16:51.153Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/648540858/wvp-GB28181-pro/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/648540858/wvp-GB28181-pro/issues/2176","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19829","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/870241","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389965","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389965/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19830","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19830 — A vulnerability was found in TRENDnet TEW-816DRM GURNC4.OT182B-C-TN-R1B028-US.EN. This impacts an un…","description":"A vulnerability was found in TRENDnet TEW-816DRM GURNC4.OT182B-C-TN-R1B028-US.EN. This impacts an unknown function of the file /etc/bftpd.conf of the component bftpd. The manipulation of the argument USERLIMIT_GLOBAL results in allocation of resources. It is possible to launch the attack remotely. T…","indicators":{"cves":["CVE-2026-19830"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T14:16:51.317Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://app.notion.com/p/TEW-816DRM-GURNC4-OT182B-C-TN-R1B028-US-EN-2018-05-16-38b1f5ba989080759a1ee701542f1935?source=copy_link","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/cve/CVE-2026-19830","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/870259","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389971","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389971/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://app.notion.com/p/TEW-816DRM-GURNC4-OT182B-C-TN-R1B028-US-EN-2018-05-16-38b1f5ba989080759a1ee701542f1935?source=copy_link","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-1621","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-1621 — Authentication bypass by primary weakness vulnerability in Universal Software Inc. E-Municipality al…","description":"Authentication bypass by primary weakness vulnerability in Universal Software Inc. E-Municipality allows Exploitation of Trusted Identifiers.\n\nThis issue affects E-Municipality: from 20251127 before 20260204.","indicators":{"cves":["CVE-2026-1621"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T14:16:51.610Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-26-0846","label":"iletisim@usom.gov.tr","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-53472","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-53472 — A flaw was found in migration-planner. Insufficient validation of the `AgentStatusUpdate.CredentialU…","description":"A flaw was found in migration-planner. Insufficient validation of the `AgentStatusUpdate.CredentialUrl` field allows an authenticated attacker to store a malicious `javascript:` URL. When a victim views this URL in the Hybrid Cloud Console, it can lead to Cross-Site Scripting (XSS), enabling script…","indicators":{"cves":["CVE-2026-53472"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T14:16:51.753Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-53472","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2487073","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19879","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19879 — A flaw was found in Undertow, an HTTP server, within its HTTP response header writing path. The `wri…","description":"A flaw was found in Undertow, an HTTP server, within its HTTP response header writing path. The `writeString()` method performs a silent narrowing cast from 16-bit Unicode characters to 8-bit bytes when writing HTTP response header values. A remote attacker can exploit this by supplying specific Uni…","indicators":{"cves":["CVE-2026-19879"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T15:17:09.310Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-19879","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2516038","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-58224","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-58224 — A flaw was found in Samba's CTDB, the clustered database service used by Samba. Insufficient integri…","description":"A flaw was found in Samba's CTDB, the clustered database service used by Samba. Insufficient integrity validation of received CTDB protocol packets allows malformed packets containing invalid field lengths, improperly terminated strings, or inconsistent packet sizes to be processed without adequate…","indicators":{"cves":["CVE-2026-58224"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T15:17:09.870Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-58224","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2502720","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.samba.org/show_bug.cgi?id=16085","label":"secalert@redhat.com","domainType":"other"},{"url":"https://www.samba.org/samba/security/CVE-2026-58224-advisory.html","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-13002","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-13002 — A flow has been identified into dnssec.c library, causing an infinite loop to dnsmasq service. An at…","description":"A flow has been identified into dnssec.c library, causing an infinite loop to dnsmasq service. An attacker who controls any DNSSEC-signed zone can hang the dnsmasq process with a single crafted response, killing all DNS resolution for its clients.","indicators":{"cves":["CVE-2026-13002"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T16:16:49.267Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-13002","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2486360","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19834","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19834 — A vulnerability was determined in Webkul Bagisto up to 2.4.4. Affected is an unknown function of the…","description":"A vulnerability was determined in Webkul Bagisto up to 2.4.4. Affected is an unknown function of the file /admin/customers/login-as-customer/ of the component Admin Customer Impersonation Feature. This manipulation of the argument ID causes authorization bypass. The attack can be initiated remotely.…","indicators":{"cves":["CVE-2026-19834"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T16:16:54.437Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/Mitchell45/PHP_Web_POCs/blob/main/Bagisto/01_english_vulnerability_report.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19834","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/870342","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389972","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389972/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19836","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19836 — A security flaw has been discovered in Webkul Bagisto up to 2.4.4. Affected by this issue is some un…","description":"A security flaw has been discovered in Webkul Bagisto up to 2.4.4. Affected by this issue is some unknown functionality of the file /admin/customers/view of the component Backend Customer Detail Feature. Performing a manipulation of the argument ID results in authorization bypass. The attack may be…","indicators":{"cves":["CVE-2026-19836"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T16:16:54.743Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/Mitchell45/PHP_Web_POCs/blob/main/Bagisto/02_english_vulnerability_report.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19836","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/870344","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389974","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389974/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-63701","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-63701 — Dell Wyse Management Suite (WMS), versions prior to 2605.0.2, contain an Improper Deserialization of…","description":"Dell Wyse Management Suite (WMS), versions prior to 2605.0.2, contain an Improper Deserialization of Untrusted Data vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Privilege Escalation.","indicators":{"cves":["CVE-2026-63701"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T16:16:58.683Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://www.dell.com/support/kbdoc/en-us/000493271/dsa-2026-329-security-update-for-dell-wyse-management-suite-wms-for-multiple-vulnerabilities","label":"security_alert@emc.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-63702","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-63702 — Dell Wyse Management Suite (WMS), versions prior to 2605.0.2, contain a Use of Hard-coded Credential…","description":"Dell Wyse Management Suite (WMS), versions prior to 2605.0.2, contain a Use of Hard-coded Credentials vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Unauthorized access.","indicators":{"cves":["CVE-2026-63702"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T16:16:58.800Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://www.dell.com/support/kbdoc/en-us/000493271/dsa-2026-329-security-update-for-dell-wyse-management-suite-wms-for-multiple-vulnerabilities","label":"security_alert@emc.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66272","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-66272 — Dell Wyse Management Suite (WMS), versions prior to 2605.0.2, contain a Missing Authentication for C…","description":"Dell Wyse Management Suite (WMS), versions prior to 2605.0.2, contain a Missing Authentication for Critical Function vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Information disclosure.","indicators":{"cves":["CVE-2026-66272"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T16:16:59.143Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://www.dell.com/support/kbdoc/en-us/000493271/dsa-2026-329-security-update-for-dell-wyse-management-suite-wms-for-multiple-vulnerabilities","label":"security_alert@emc.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19838","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19838 — A security vulnerability has been detected in Webkul Bagisto up to 2.4.4. This vulnerability affects…","description":"A security vulnerability has been detected in Webkul Bagisto up to 2.4.4. This vulnerability affects unknown code of the file /admin/reporting/sales/ of the component Backend Reporting Endpoint. The manipulation leads to authorization bypass. Remote exploitation of the attack is possible. The exploi…","indicators":{"cves":["CVE-2026-19838"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T17:17:34.267Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/Mitchell45/PHP_Web_POCs/blob/main/Bagisto/19_30_english_vulnerability_report.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19838","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/870353","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389976","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389976/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19839","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19839 — A vulnerability was detected in SourceCodester Simple Doctors Appointment System 1.0. This issue aff…","description":"A vulnerability was detected in SourceCodester Simple Doctors Appointment System 1.0. This issue affects the function save_doctor of the file /save_file.php. The manipulation results in unrestricted upload. The attack can be executed remotely. The exploit is now public and may be used.","indicators":{"cves":["CVE-2026-19839"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T17:17:34.803Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/HZFW2026/cve/issues/3","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19839","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/870577","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389977","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389977/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.sourcecodester.com/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-49826","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-49826 — Concourse is a container-based automation system written in Go. Prior to version 8.2.3, an attacker…","description":"Concourse is a container-based automation system written in Go. Prior to version 8.2.3, an attacker is able to craft and send a user a URL that will redirect the user from the Concourse web server to any other site. This could be used in a phishing attack to steal user's credentials. This has been f…","indicators":{"cves":["CVE-2026-49826"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["phishing"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T17:18:27.007Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/concourse/concourse/commit/ac60be5f0435b6592f5a4fcc089050d72ad2452c","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/concourse/concourse/releases/tag/v8.2.3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/concourse/concourse/security/advisories/GHSA-8w27-c4vc-88q9","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-73845","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-73845 — CKAN MCP Server is a tool for querying CKAN open data portals. Prior to 0.4.112, the ckan_get_mqa_qu…","description":"CKAN MCP Server is a tool for querying CKAN open data portals. Prior to 0.4.112, the ckan_get_mqa_quality and ckan_get_mqa_quality_details tools in src/tools/quality.ts use isValidMqaServer to validate the server_url parameter with a prefix-only regular expression for dati.gov.it, allowing suffix-ho…","indicators":{"cves":["CVE-2026-73845"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T17:20:36.820Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/ondata/ckan-mcp-server/commit/8e1522f9bbfa1f3b21550f17887f60f133e24151","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ondata/ckan-mcp-server/releases/tag/v0.4.112","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ondata/ckan-mcp-server/security/advisories/GHSA-83x6-42hr-jc76","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-73846","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-73846 — CKAN MCP Server is a tool for querying CKAN open data portals. Prior to 0.4.112, canonicalizeParams…","description":"CKAN MCP Server is a tool for querying CKAN open data portals. Prior to 0.4.112, canonicalizeParams in src/utils/cache.ts serializes request parameters with unescaped ampersand, equals-sign, and vertical-bar delimiters, allowing different logical parameter sets used by buildCacheKey to collide and a…","indicators":{"cves":["CVE-2026-73846"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T17:20:36.953Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/ondata/ckan-mcp-server/commit/8e1522f9bbfa1f3b21550f17887f60f133e24151","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ondata/ckan-mcp-server/releases/tag/v0.4.112","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ondata/ckan-mcp-server/security/advisories/GHSA-78x9-fhhx-v2g6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ondata/ckan-mcp-server/security/advisories/GHSA-78x9-fhhx-v2g6","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-12363","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-12363 — The LoRaWAN Fragmented Data Block Transport service (subsys/lorawan/services/frag_transport.c) does…","description":"The LoRaWAN Fragmented Data Block Transport service (subsys/lorawan/services/frag_transport.c) does not validate the fragment counter in a received DATA_FRAGMENT command before forwarding it to the configured decoder. In frag_transport_package_callback() the value frag_counter = hdr->frag_index_n &…","indicators":{"cves":["CVE-2026-12363"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T18:17:21.697Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/zephyrproject-rtos/zephyr/commit/452c704a28369236e555543c61a1894cd1a4afbb","label":"vulnerabilities@zephyrproject.org","domainType":"primary"},{"url":"https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-fvm7-7whg-8gj6","label":"vulnerabilities@zephyrproject.org","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-12365","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-12365 — A use-after-free exists in the Zephyr second-generation work queue (kernel/work.c) in the handling o…","description":"A use-after-free exists in the Zephyr second-generation work queue (kernel/work.c) in the handling of delayable work timeouts. When a delayable work item's timeout has been dequeued and its handler work_timeout() is in flight (blocked acquiring the work-queue spinlock), a concurrent cancellation doe…","indicators":{"cves":["CVE-2026-12365"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T18:17:21.933Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/zephyrproject-rtos/zephyr/commit/59cf34bf212eeb5c7ea88b97e15842b1e7c1a6b7","label":"vulnerabilities@zephyrproject.org","domainType":"primary"},{"url":"https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-rhmh-r93p-6g99","label":"vulnerabilities@zephyrproject.org","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-19631","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19631 — A SQL injection vulnerability exists in Security Center that could allow an authenticated administra…","description":"A SQL injection vulnerability exists in Security Center that could allow an authenticated administrator to execute arbitrary SQL queries, potentially resulting in unauthorized access to sensitive data, including credentials.","indicators":{"cves":["CVE-2026-19631"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T18:17:22.683Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://www.tenable.com/security/tns-2026-22","label":"vulnreport@tenable.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19636","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19636 — An issue was identified in which CSRF tokens were generated using a predictable method, potentially…","description":"An issue was identified in which CSRF tokens were generated using a predictable method, potentially reducing their effectiveness as a security control. This has been addressed by improving the randomness and entropy of token generation.","indicators":{"cves":["CVE-2026-19636"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T18:17:22.953Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://www.tenable.com/security/tns-2026-22","label":"vulnreport@tenable.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19639","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19639 — An improper access control vulnerability exists where an authenticated non-administrative applicatio…","description":"An improper access control vulnerability exists where an authenticated non-administrative application user could potentially view settings outside of their assigned scope.","indicators":{"cves":["CVE-2026-19639"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T18:17:23.100Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://www.tenable.com/security/tns-2026-22","label":"vulnreport@tenable.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-49282","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-49282 — Capstone is a disassembly framework. Prior to version 6.0.0-Alpha9, Capstone's public `cs_insn_name(…","description":"Capstone is a disassembly framework. Prior to version 6.0.0-Alpha9, Capstone's public `cs_insn_name()` API forwards caller-supplied instruction IDs directly to the selected architecture backend. Most backends validate the ID before indexing instruction-name tables, but the M68K and RISCV backends ha…","indicators":{"cves":["CVE-2026-49282"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T18:17:30.830Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/capstone-engine/capstone/blob/251c5bb4bc9bb92973e738ae3c5f4ef86f103356/ChangeLog#L102","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/capstone-engine/capstone/security/advisories/GHSA-jrw4-wj52-2vw8","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/capstone-engine/capstone/security/advisories/GHSA-jrw4-wj52-2vw8","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-73847","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-73847 — Emlog is an open source website building system. In 2.6.26 and earlier, missing CSRF protection on t…","description":"Emlog is an open source website building system. In 2.6.26 and earlier, missing CSRF protection on the AI Assistant execute_tool action in admin/ai.php lets a remote unauthenticated attacker submit a forged cross-site request from an attacker-controlled page to a recently logged-in administrator. Th…","indicators":{"cves":["CVE-2026-73847"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T18:19:09.843Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/emlog/emlog/security/advisories/GHSA-v6wr-4x55-7qp5","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/emlog/emlog/security/advisories/GHSA-v6wr-4x55-7qp5","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-50029","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-50029 — js-toml is a TOML parser for JavaScript, Prior to version 1.1.2, the interpreter checks whether a ke…","description":"js-toml is a TOML parser for JavaScript, Prior to version 1.1.2, the interpreter checks whether a key already exists in a parser-built container with `if (object[key])` instead of `if (key in object)`. When the prior value is a falsy primitive — `false`, `0`, `0n`, `0.0`, `-0`, or `\"\"` — the duplica…","indicators":{"cves":["CVE-2026-50029"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T19:17:18.980Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://github.com/sunnyadn/js-toml/commit/e0504fa5d3dcde2d1d588c9001c24b7b700beeeb","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/sunnyadn/js-toml/releases/tag/v1.1.2","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/sunnyadn/js-toml/security/advisories/GHSA-m34p-749j-x6m6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/sunnyadn/js-toml/security/advisories/GHSA-m34p-749j-x6m6","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-17209","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-17209 — IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to execute arbitr…","description":"IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to execute arbitrary scripts due to cross-site scripting.","indicators":{"cves":["CVE-2026-17209"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T20:16:51.250Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283359","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18178","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-18178 — IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to delete arbitra…","description":"IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to delete arbitrary files due to path traversal.","indicators":{"cves":["CVE-2026-18178"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T20:16:51.487Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283359","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74248","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74248 — OpenStack Octavia through 18.0.0 mishandles quality of service (QoS) policy authorization. By associ…","description":"OpenStack Octavia through 18.0.0 mishandles quality of service (QoS) policy authorization. By associating another project's QoS policy with an amphora, an authenticated user may prevent deletion of that policy. All Octavia deployments are affected.","indicators":{"cves":["CVE-2026-74248"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T21:17:58.173Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://bugs.launchpad.net/octavia/+bug/2161500","label":"cve@mitre.org","domainType":"other"},{"url":"https://www.openwall.com/lists/oss-security/2026/08/13/12","label":"cve@mitre.org","domainType":"other"},{"url":"http://www.openwall.com/lists/oss-security/2026/08/17/2","label":"af854a3a-2127-422b-91ae-364da2661108","domainType":"other"},{"url":"https://bugs.launchpad.net/octavia/+bug/2161500","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74240","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74240 — A flaw was found in Red Hat Quay's JWT (JSON Web Token) validation for federated robot accounts and…","description":"A flaw was found in Red Hat Quay's JWT (JSON Web Token) validation for federated robot accounts and single sign-on (SSO) authentication. Multiple issues related to audience verification and the enforcement of `azp` and `sub` claims were identified. These flaws could allow an attacker with a validly-…","indicators":{"cves":["CVE-2026-74240"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T23:16:33.960Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-74240","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2516139","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74241","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74241 — A flaw was found in Red Hat Quay's external Lightweight Directory Access Protocol (LDAP) authenticat…","description":"A flaw was found in Red Hat Quay's external Lightweight Directory Access Protocol (LDAP) authentication handling. When an LDAP referral is returned during authentication, the system does not properly escape the username input. This allows an attacker to inject LDAP filter metacharacters, enabling us…","indicators":{"cves":["CVE-2026-74241"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T23:16:34.093Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-74241","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2516141","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74242","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74242 — A flaw was found in Red Hat Quay. An administrator of any repository, by knowing or guessing a targe…","description":"A flaw was found in Red Hat Quay. An administrator of any repository, by knowing or guessing a target notification's Universally Unique Identifier (UUID), can read the notification configuration, including sensitive details like webhook URLs, Slack tokens, and email addresses. This vulnerability als…","indicators":{"cves":["CVE-2026-74242"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T23:16:34.227Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-74242","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2516140","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74243","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74243 — A flaw was found in Red Hat Quay. When the SECURITY_SCANNER_V4_PSK (pre-shared key) is not set, a re…","description":"A flaw was found in Red Hat Quay. When the SECURITY_SCANNER_V4_PSK (pre-shared key) is not set, a remote unauthenticated attacker can send POST requests to the security scanner notification endpoint. This allows the attacker to flood the notification queue and inject path traversal characters into C…","indicators":{"cves":["CVE-2026-74243"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T23:16:34.360Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-74243","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2516142","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74244","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74244 — A flaw was found in Red Hat Quay's Stripe billing webhook handler. This vulnerability allows an unau…","description":"A flaw was found in Red Hat Quay's Stripe billing webhook handler. This vulnerability allows an unauthenticated attacker to forge billing events by sending crafted JSON requests to the `/webhooks/stripe` endpoint without validating the Stripe-Signature header. Successful exploitation can lead to the…","indicators":{"cves":["CVE-2026-74244"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T23:16:34.490Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-74244","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2516143","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74245","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74245 — A flaw was found in Red Hat Quay's exported logs feature. An unauthenticated attacker with a valid f…","description":"A flaw was found in Red Hat Quay's exported logs feature. An unauthenticated attacker with a valid file ID could download exported action logs without proper authorization. While file IDs are complex, they can be intercepted from plaintext email or webhook callbacks. This vulnerability leads to info…","indicators":{"cves":["CVE-2026-74245"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T23:16:34.600Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-74245","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2516145","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74247","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74247 — A flaw was found in Red Hat Quay. A user with FEATURE_BUILD_SUPPORT enabled and repository write acc…","description":"A flaw was found in Red Hat Quay. A user with FEATURE_BUILD_SUPPORT enabled and repository write access can exploit a Server-Side Request Forgery (SSRF) vulnerability within the build API. This allows the user to provide a malicious URL, causing the Quay builder to make requests to internal network…","indicators":{"cves":["CVE-2026-74247"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T23:16:34.730Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-74247","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2516144","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74250","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74250 — In OpenStack Ironic before 38.0.1, the autodetect deploy interface may fail to run cleaning immediat…","description":"In OpenStack Ironic before 38.0.1, the autodetect deploy interface may fail to run cleaning immediately after enrollment with, or changing to, the autodetect deploy interface.","indicators":{"cves":["CVE-2026-74250"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T23:16:34.853Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://bugs.launchpad.net/ossa/+bug/2163017","label":"cve@mitre.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-12128","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-12128 — The Pinpoint Booking System – Version 2 plugin for WordPress is vulnerable to Price Manipulation via…","description":"The Pinpoint Booking System – Version 2 plugin for WordPress is vulnerable to Price Manipulation via the `cart_data` parameter in all versions up to, and including, 2.9.9.6.8. This is due to the `dopbsp_woocommerce_add_to_cart` AJAX action being registered via `wp_ajax_nopriv_*` with no authenticati…","indicators":{"cves":["CVE-2026-12128"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T03:16:46.970Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/booking-system/tags/2.9.9.6.7/addons/woocommerce/dopbsp-woocommerce.php#L141","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/booking-system/tags/2.9.9.6.7/addons/woocommerce/includes/class-woocommerce-cart.php#L125","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/booking-system/tags/2.9.9.6.7/addons/woocommerce/includes/class-woocommerce-cart.php#L293","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/booking-system/tags/2.9.9.6.7/addons/woocommerce/includes/class-woocommerce-cart.php#L90","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/booking-system/tags/2.9.9.6.8/addons/woocommerce/dopbsp-woocommerce.php#L141","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/booking-system/tags/2.9.9.6.8/addons/woocommerce/includes/class-woocommerce-cart.php#L125","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/booking-system/tags/2.9.9.6.8/addons/woocommerce/includes/class-woocommerce-cart.php#L293","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/booking-system/tags/2.9.9.6.8/addons/woocommerce/includes/class-woocommerce-cart.php#L90","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/e6faf2b7-52e2-4656-9171-4ee17352ed1e?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16080","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-16080 — The Image Uploader for Welcart plugin for WordPress is vulnerable to generic SQL Injection via the '…","description":"The Image Uploader for Welcart plugin for WordPress is vulnerable to generic SQL Injection via the 'post_title' parameter in all versions up to, and including, 1.4.6 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes i…","indicators":{"cves":["CVE-2026-16080"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T03:16:48.207Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/image-uploader-for-welcart/tags/1.4.6/image-uploader-for-welcart.php#L26","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/image-uploader-for-welcart/tags/1.4.6/image-uploader-for-welcart.php#L291","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/image-uploader-for-welcart/tags/1.4.6/image-uploader-for-welcart.php#L299","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/462da6ba-c558-4ce8-b26c-df69d086d592?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-8840","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-8840 — The Booking calendar, Appointment Booking System plugin for WordPress is vulnerable to authorization…","description":"The Booking calendar, Appointment Booking System plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 3.2.36. This is due to the plugin not properly verifying that a user is authorized to perform an action. This makes it possible for unauthenticated attack…","indicators":{"cves":["CVE-2026-8840"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T03:16:48.357Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/booking-calendar/tags/3.2.35/admin/controllers/Payment.php#L16","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/booking-calendar/tags/3.2.35/admin/controllers/Payment.php#L26","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/booking-calendar/tags/3.2.35/booking_calendar.php#L131","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/booking-calendar/tags/3.2.35/booking_calendar.php#L578","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/booking-calendar/tags/3.2.36/admin/controllers/Payment.php#L16","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/booking-calendar/tags/3.2.36/admin/controllers/Payment.php#L26","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/booking-calendar/tags/3.2.36/booking_calendar.php#L131","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/booking-calendar/tags/3.2.36/booking_calendar.php#L578","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/88409bb0-5cb0-4f63-b8f0-d72f54fa17b0?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15453","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-15453 — The KiviCare – Clinic & Patient Management System (EHR) plugin for WordPress is vulnerable to generi…","description":"The KiviCare – Clinic & Patient Management System (EHR) plugin for WordPress is vulnerable to generic SQL Injection via the 'searchTerm' parameter in all versions up to, and including, 4.5.1 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existin…","indicators":{"cves":["CVE-2026-15453"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T04:18:07.300Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/kivicare-clinic-management-system/tags/4.5.0/app/controllers/api/SettingsController/ListingData.php#L442","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/kivicare-clinic-management-system/tags/4.5.0/app/controllers/api/SettingsController/ListingData.php#L456","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/kivicare-clinic-management-system/tags/4.5.0/app/controllers/api/SettingsController/ListingData.php#L69","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3637394%40kivicare-clinic-management-system&new=3637394%40kivicare-clinic-management-system","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/4495e352-758b-4331-a617-033ff348c07d?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15948","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-15948 — The Hydra Booking — Appointment Scheduling & Booking Calendar plugin for WordPress is vulnerable to…","description":"The Hydra Booking — Appointment Scheduling & Booking Calendar plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'first_name' parameter in all versions up to, and including, 1.2.2 due to insufficient input sanitization and output escaping. This makes it possible for authentica…","indicators":{"cves":["CVE-2026-15948"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T04:18:08.773Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/hydra-booking/trunk/admin/Controller/HostsController.php#L495","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/hydra-booking/trunk/admin/Controller/HostsController.php#L77","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/hydra-booking/trunk/app/Content/Archive/archive-page-tfhb-host.php#L30","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3632543%40hydra-booking&new=3632543%40hydra-booking","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/8331fe3f-e943-4f4c-887f-761f3e18eb79?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15993","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-15993 — The Form Maker by 10Web – Mobile-Friendly Drag & Drop Contact Form Builder plugin for WordPress is v…","description":"The Form Maker by 10Web – Mobile-Friendly Drag & Drop Contact Form Builder plugin for WordPress is vulnerable to blind SQL Injection via '{username}' Placeholder in Dynamic-Choice Field WHERE Clause in all versions up to, and including, 1.15.44 due to insufficient escaping on the user supplied param…","indicators":{"cves":["CVE-2026-15993"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T04:18:09.727Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/form-maker/tags/1.15.43/framework/WDW_FM_Library.php#L6147","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/form-maker/tags/1.15.43/framework/WDW_FM_Library.php#L6657","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/form-maker/tags/1.15.43/frontend/controllers/form_maker.php#L252","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/form-maker/tags/1.15.43/frontend/views/form_maker.php#L2849","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/form-maker/tags/1.15.44/framework/WDW_FM_Library.php#L6147","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/form-maker/tags/1.15.44/framework/WDW_FM_Library.php#L6657","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/form-maker/tags/1.15.44/frontend/controllers/form_maker.php#L252","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/form-maker/tags/1.15.44/frontend/views/form_maker.php#L2849","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3632835%40form-maker&new=3632835%40form-maker","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/1665bf5a-3bf0-4907-a7df-a2fe26f11869?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16586","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-16586 — The Contest Gallery – Upload & Vote Photos, Media, Sell with PayPal & Stripe plugin for WordPress is…","description":"The Contest Gallery – Upload & Vote Photos, Media, Sell with PayPal & Stripe plugin for WordPress is vulnerable to Second-Order SQL Injection via MultipleFiles Second-Order Payload via 'cg_multiple_files_for_post' -> 'cgRealId' in all versions up to, and including, 30.0.7 due to insufficient escapin…","indicators":{"cves":["CVE-2026-16586"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T04:18:10.607Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/contest-gallery/tags/30.0.6/ajax/ajax-functions-backend.php#L135","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/contest-gallery/tags/30.0.6/ajax/ajax-functions-backend.php#L286","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/contest-gallery/tags/30.0.6/ajax/ajax-functions-backend.php#L310","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/contest-gallery/tags/30.0.6/v10/v10-admin/gallery/change-gallery/0_change-gallery.php#L475","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/contest-gallery/tags/30.0.6/v10/v10-admin/gallery/change-gallery/0_change-gallery.php#L683","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/contest-gallery/tags/30.0.7/ajax/ajax-functions-backend.php#L135","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/contest-gallery/tags/30.0.7/ajax/ajax-functions-backend.php#L286","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/contest-gallery/tags/30.0.7/ajax/ajax-functions-backend.php#L310","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/contest-gallery/tags/30.0.7/v10/v10-admin/gallery/change-gallery/0_change-gallery.php#L475","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/contest-gallery/tags/30.0.7/v10/v10-admin/gallery/change-gallery/0_change-gallery.php#L683","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3631928%40contest-gallery&new=3631928%40contest-gallery","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/294e1822-b92c-48a4-bfc6-5a89cfbe0bc7?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-17090","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-17090 — The Beaver Builder Page Builder – Drag and Drop Website Builder plugin for WordPress is vulnerable t…","description":"The Beaver Builder Page Builder – Drag and Drop Website Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Button Module 'button' (Button Code) Setting in all versions up to, and including, 2.10.2.2 due to insufficient input sanitization and output escaping. This makes it…","indicators":{"cves":["CVE-2026-17090"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T04:18:15.940Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/beaver-builder-lite-version/tags/2.10.1.5/classes/class-fl-builder-model.php#L4659","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/beaver-builder-lite-version/tags/2.10.1.5/modules/button/button.php#L341","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/beaver-builder-lite-version/tags/2.10.1.5/modules/button/includes/frontend.js.php#L8","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/beaver-builder-lite-version/tags/2.10.2.2/classes/class-fl-builder-model.php#L4659","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/beaver-builder-lite-version/tags/2.10.2.2/modules/button/button.php#L341","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/beaver-builder-lite-version/tags/2.10.2.2/modules/button/includes/frontend.js.php#L8","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/beaver-builder-lite-version/trunk/modules/button/includes/frontend.js.php#L8","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3645274%40beaver-builder-lite-version&new=3645274%40beaver-builder-lite-version","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/0abbdf2c-b1f8-4431-b892-1d7972749af6?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18387","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-18387 — The Groundhogg — CRM, Newsletters, and Marketing Automation plugin for WordPress is vulnerable to ge…","description":"The Groundhogg — CRM, Newsletters, and Marketing Automation plugin for WordPress is vulnerable to generic SQL Injection via the 'tag_query' parameter in all versions up to, and including, 4.5.14 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the exi…","indicators":{"cves":["CVE-2026-18387"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T04:18:17.773Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/groundhogg/tags/4.5.14/api/v4/contacts-api.php#L230","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/groundhogg/tags/4.5.14/includes/contact-query.php#L2599","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/groundhogg/tags/4.5.14/includes/legacy-contact-query.php#L548","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/groundhogg/tags/4.5.14/includes/tag-query.php#L393","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/groundhogg/tags/4.5.14/includes/tag-query.php#L415","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/groundhogg/tags/4.5.6/api/v4/contacts-api.php#L230","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/groundhogg/tags/4.5.6/includes/contact-query.php#L2599","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/groundhogg/tags/4.5.6/includes/legacy-contact-query.php#L548","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/groundhogg/tags/4.5.6/includes/tag-query.php#L393","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/groundhogg/tags/4.5.6/includes/tag-query.php#L415","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3643654%40groundhogg&new=3643654%40groundhogg","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/04881aac-9d3b-48c0-b095-e91797df46e3?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-14229","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-14229 — The ECS WordPress plugin before 4.3.8 does not check the post status or any capability when renderin…","description":"The ECS  WordPress plugin before 4.3.8 does not check the post status or any capability when rendering an Elementor document requested through one of its AJAX actions, allowing unauthenticated users to retrieve the rendered content of unpublished (private, draft, pending) documents by supplying thei…","indicators":{"cves":["CVE-2026-14229"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:16:49.917Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://wpscan.com/vulnerability/52b44fc8-90af-45e4-a745-37e6369d8b6b/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-14230","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-14230 — The ECS WordPress plugin before 4.3.8 does not perform capability or object-ownership checks on its…","description":"The ECS  WordPress plugin before 4.3.8 does not perform capability or object-ownership checks on its Dynamic Repeater AJAX handlers (gated only by a capability-agnostic nonce that any edit_posts user obtains from the Elementor editor), so a Contributor can write a data-source binding into any post —…","indicators":{"cves":["CVE-2026-14230"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:16:55.960Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://wpscan.com/vulnerability/fded2f21-d104-4dcb-8fd1-29db9866cabc/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16541","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-16541 — The Simply Schedule Appointments WordPress plugin before 1.6.12.17 does not restrict the user record…","description":"The Simply Schedule Appointments WordPress plugin before 1.6.12.17 does not restrict the user records returned by some of its REST endpoints to those the requester is entitled to see, allowing users with a low-privileged staff role to disclose the names and email addresses of arbitrary registered us…","indicators":{"cves":["CVE-2026-16541"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:17:08.280Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://wpscan.com/vulnerability/8172f778-5dc5-49e8-9967-81215ac187d7/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18216","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-18216 — The Backup Migration WordPress plugin before 2.1.7 does not properly restrict a post-restore automat…","description":"The Backup Migration WordPress plugin before 2.1.7 does not properly restrict a post-restore automatic login mechanism, allowing a user who administers one site of a multisite network to obtain a long-lived authenticated session as an administrator of another site in the same network, without creden…","indicators":{"cves":["CVE-2026-18216"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:17:08.487Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://wpscan.com/vulnerability/f12530c5-4069-42c2-9f1c-b00fc62aa387/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18807","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-18807 — The ECS WordPress plugin before 4.3.8 does not have capability or ownership checks on its dynamic re…","description":"The ECS  WordPress plugin before 4.3.8 does not have capability or ownership checks on its dynamic repeater actions, relying only on a nonce available to any user who can open the page builder, allowing users with a contributor-level account or above to read, alter and delete the binding configurati…","indicators":{"cves":["CVE-2026-18807"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:17:17.050Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://wpscan.com/vulnerability/bf500bf2-1684-4ca1-a8ad-bcff9cbc127c/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73631","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-73631 — Exposure of data element to wrong session vulnerability in the JSON plugin of Apache Struts. Per-req…","description":"Exposure of data element to wrong session vulnerability in the JSON plugin of Apache Struts. Per-request parsing state could be shared across concurrent requests, allowing data associated with one request to become observable in another, and configured parsing limits not to be enforced as intended.…","indicators":{"cves":["CVE-2026-73631"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T11:16:27.227Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://cwiki.apache.org/confluence/display/WW/S2-070","label":"security@apache.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73632","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-73632 — Exposure of data element to wrong session vulnerability in the JSON plugin of Apache Struts. Per-res…","description":"Exposure of data element to wrong session vulnerability in the JSON plugin of Apache Struts. Per-response serialization state could be shared across concurrent requests, allowing response content associated with one request to become observable in another. Only the SMD / JSON-RPC handling of the JSO…","indicators":{"cves":["CVE-2026-73632"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T11:16:27.330Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://cwiki.apache.org/confluence/display/WW/S2-071","label":"security@apache.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-12248","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-12248 — The WPML Multilingual CMS plugin for WordPress is vulnerable to SQL Injection via the 'sorting' para…","description":"The WPML Multilingual CMS plugin for WordPress is vulnerable to SQL Injection via the 'sorting' parameter in all versions up to, and including, 4.9.5 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for a…","indicators":{"cves":["CVE-2026-12248"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T12:16:31.713Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/sitepress-multilingual-cms/tags/4.9.2/classes/API/REST/class-wpml-tm-rest-jobs.php#L144","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/sitepress-multilingual-cms/tags/4.9.2/classes/jobs/query/OrderQueryHelper.php#L34","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/sitepress-multilingual-cms/trunk/classes/API/REST/class-wpml-tm-rest-jobs.php#L144","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/sitepress-multilingual-cms/trunk/classes/jobs/query/OrderQueryHelper.php#L34","label":"security@wordfence.com","domainType":"other"},{"url":"https://wpml.org/category/changelog/","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/781b00cd-3af9-432a-876b-bff482106ab0?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19894","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19894 — A security flaw has been discovered in itsourcecode Hospital Management System 1.0. Affected is an u…","description":"A security flaw has been discovered in itsourcecode Hospital Management System 1.0. Affected is an unknown function of the file /viewmedicine.php. Performing a manipulation of the argument delid results in sql injection. The attack can be initiated remotely. The exploit has been released to the publ…","indicators":{"cves":["CVE-2026-19894"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:48.153Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://github.com/ltranquility/submit_vuln/issues/18","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://itsourcecode.com/","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/cve/CVE-2026-19894","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/870604","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390082","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390082/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18165","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-18165 — @fastify/oauth2 is an OAuth 2.0 plugin for Fastify. In versions from 7.2.0 up to but not including 8…","description":"@fastify/oauth2 is an OAuth 2.0 plugin for Fastify. In versions from 7.2.0 up to but not including 8.3.0, the plugin validates the OAuth state, and with PKCE the code verifier, by comparing the callback query parameter against an unprefixed, predictable cookie, with no server-side binding to the bro…","indicators":{"cves":["CVE-2026-18165"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T14:17:07.290Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://cna.openjsf.org/security-advisories.html","label":"ce714d77-add3-4f53-aff5-83d477b104bb","domainType":"other"},{"url":"https://github.com/fastify/fastify-oauth2/security/advisories/GHSA-p8h8-rj28-m8q9","label":"ce714d77-add3-4f53-aff5-83d477b104bb","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-19903","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19903 — A vulnerability has been found in SourceCodester Online Clothing Store 1.0. This affects an unknown…","description":"A vulnerability has been found in SourceCodester Online Clothing Store 1.0. This affects an unknown part of the file /db/shopping.sql of the component SQL Database Backup. The manipulation leads to files or directories accessible. Remote exploitation of the attack is possible. The exploit has been d…","indicators":{"cves":["CVE-2026-19903"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T18:16:25.000Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://medium.com/@hemantrajbhati5555/sensitive-information-disclosure-via-publicly-accessible-sql-backup-leading-to-administrative-50bac3a307aa","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/cve/CVE-2026-19903","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/870782","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390096","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390096/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.sourcecodester.com/","label":"cna@vuldb.com","domainType":"other"},{"url":"https://medium.com/@hemantrajbhati5555/sensitive-information-disclosure-via-publicly-accessible-sql-backup-leading-to-administrative-50bac3a307aa","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73047","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-73047 — siyuan versions <= 3.7.3 (fixed in v3.7.4) contain a server-side template injection vulnerability in…","description":"siyuan versions <= 3.7.3 (fixed in v3.7.4) contain a server-side template injection vulnerability in the attribute-view Template calculation feature (introduced in v3.7.0-beta.1). The feature's template engine uses Sprig's unmodified function map, which still exposes the env, expandenv, and getHostB…","indicators":{"cves":["CVE-2026-73047"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T22:16:54.737Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-v97v-gxxg-rhmq","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/siyuan-before-server-side-template-injection-via-attribute-view","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73055","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-73055 — Shescape before 2.1.15 (and 3.0.0 before 3.0.2) fails to properly escape tilde (~) characters in ass…","description":"Shescape before 2.1.15 (and 3.0.0 before 3.0.2) fails to properly escape tilde (~) characters in assignment contexts on Unix systems where the shell is explicitly configured to \"sh\" or true and /bin/sh points to BusyBox. Using the escape and escapeAll APIs with untrusted input in an assignment prefi…","indicators":{"cves":["CVE-2026-73055"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T22:16:55.427Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://github.com/ericcornelissen/shescape/commit/7cba30594c16a21524706efe2f6c6c9d8923f411","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/ericcornelissen/shescape/commit/d86bf2ae22961c73458bddf70dd06adf9dadb36c","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/ericcornelissen/shescape/security/advisories/GHSA-j44h-fqhh-fh28","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/shescape-before-home-directory-disclosure-via-busybox","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19917","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19917 — A flaw has been found in code-projects Online Food Order System 1.0. The impacted element is an unkn…","description":"A flaw has been found in code-projects Online Food Order System 1.0. The impacted element is an unknown function of the file delete_food_items1.php. Executing a manipulation of the argument checkbox can lead to sql injection. The attack can be executed remotely. The exploit has been published and ma…","indicators":{"cves":["CVE-2026-19917"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T23:16:20.913Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://code-projects.org/","label":"cna@vuldb.com","domainType":"other"},{"url":"https://github.com/zzzxc643/CVE1/blob/main/project1/vul7.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19917","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/870865","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390167","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390167/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19918","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19918 — A vulnerability has been found in SpaceX Starlink Router Gen 3 2025.11.14.mr64708.3. This affects th…","description":"A vulnerability has been found in SpaceX Starlink Router Gen 3 2025.11.14.mr64708.3. This affects the function get_status of the component gRPC Management Interface. The manipulation leads to improper access controls. The attack can only be initiated within the local network. The exploit has been di…","indicators":{"cves":["CVE-2026-19918"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T00:16:50.180Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://vuldb.com/cve/CVE-2026-19918","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/870897","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390168","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390168/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.ararasat.com/blog/starlink-lan-grpc-control/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19920","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19920 — A vulnerability was determined in code-projects Online Shopping System 1.0. Affected is an unknown f…","description":"A vulnerability was determined in code-projects Online Shopping System 1.0. Affected is an unknown function of the file /action.php. This manipulation of the argument proId causes sql injection. It is possible to initiate the attack remotely. The exploit has been publicly disclosed and may be utiliz…","indicators":{"cves":["CVE-2026-19920"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T00:16:50.530Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://code-projects.org/","label":"cna@vuldb.com","domainType":"other"},{"url":"https://github.com/zzzxc643/CVE1/blob/main/online-shopping-system/vul2.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19920","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/871812","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390170","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390170/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19921","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19921 — A vulnerability was identified in code-projects Online Shopping System 1.0. Affected by this vulnera…","description":"A vulnerability was identified in code-projects Online Shopping System 1.0. Affected by this vulnerability is an unknown functionality of the file /homeaction.php. Such manipulation of the argument cat_id leads to sql injection. It is possible to launch the attack remotely. The exploit is publicly a…","indicators":{"cves":["CVE-2026-19921"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T00:16:50.687Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://code-projects.org/","label":"cna@vuldb.com","domainType":"other"},{"url":"https://github.com/zzzxc643/CVE1/blob/main/online-shopping-system/vul3.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19921","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/871813","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390171","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390171/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19923","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19923 — A weakness has been identified in code-projects Online Shopping System 1.0. This affects an unknown…","description":"A weakness has been identified in code-projects Online Shopping System 1.0. This affects an unknown part of the file /checkout_process.php. Executing a manipulation of the argument total_count can lead to sql injection. The attack can be launched remotely. The exploit has been made available to the…","indicators":{"cves":["CVE-2026-19923"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T01:17:08.080Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://code-projects.org/","label":"cna@vuldb.com","domainType":"other"},{"url":"https://github.com/zzzxc643/CVE1/blob/main/online-shopping-system/vul5.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19923","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/871815","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390173","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390173/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19925","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19925 — A vulnerability was detected in SourceCodester Stock Management System 1.0. This issue affects some…","description":"A vulnerability was detected in SourceCodester Stock Management System 1.0. This issue affects some unknown processing of the file /classes/Master.php?f=delete_supplier. The manipulation of the argument ID results in sql injection. The attack may be launched remotely. The exploit is now public and m…","indicators":{"cves":["CVE-2026-19925"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T02:16:48.633Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://github.com/miku01leon/CVE/issues/5","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19925","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/871969","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390175","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390175/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.sourcecodester.com/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19927","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19927 — A vulnerability was found in OpenBoxes up to 0.9.7. The impacted element is the function Upload of t…","description":"A vulnerability was found in OpenBoxes up to 0.9.7. The impacted element is the function Upload of the file grails-app/controllers/org/pih/warehouse/product/ProductController.groovy of the component Product Upload Endpoint. Performing a manipulation of the argument params.url results in server-side…","indicators":{"cves":["CVE-2026-19927"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T03:16:49.333Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://gist.github.com/nedlir/4eefb532d29cbb9a7091266fc1cbd55c","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/OpenBoxes/OpenBoxes/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/OpenBoxes/OpenBoxes/pull/5944","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/OpenBoxes/OpenBoxes/security/advisories/GHSA-828r-3vx8-65wx","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/openboxes/openboxes/commit/a599007325efe780a21b3537ecce3ca25635c926","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/openboxes/openboxes/releases/tag/v0.9.8","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19927","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/871980","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390178","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390178/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19928","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19928 — A vulnerability was determined in OpenBoxes up to 0.9.7. This affects the function needManager of th…","description":"A vulnerability was determined in OpenBoxes up to 0.9.7. This affects the function needManager of the file grails-app/controllers/org/pih/warehouse/RoleInterceptor.groovy of the component Role Interceptor. Executing a manipulation can lead to improper privilege management. The attack may be performe…","indicators":{"cves":["CVE-2026-19928"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T03:16:50.143Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://gist.github.com/nedlir/2bc3a6e5bd4d67b863223e1bfc2e4390","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/OpenBoxes/OpenBoxes/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/OpenBoxes/OpenBoxes/pull/5948","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/OpenBoxes/OpenBoxes/security/advisories/GHSA-9rrw-fx2p-p2q7","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/openboxes/openboxes/commit/788cace0af816aa972a713a4631c57f16f895e6b","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/openboxes/openboxes/releases/tag/v0.9.8","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19928","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/871981","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390179","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390179/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19929","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19929 — A vulnerability was identified in OpenBoxes up to 0.9.6. This impacts the function buildZebraTemplat…","description":"A vulnerability was identified in OpenBoxes up to 0.9.6. This impacts the function buildZebraTemplate of the file grails-app/controllers/org/pih/warehouse/core/DocumentController.groovy of the component Template Processing. The manipulation leads to improper neutralization of special elements used i…","indicators":{"cves":["CVE-2026-19929"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T03:16:50.300Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://gist.github.com/nedlir/220a30213b5a5c6bc26d1000012c6a4d","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/OpenBoxes/OpenBoxes/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/OpenBoxes/OpenBoxes/pull/5943","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/OpenBoxes/OpenBoxes/security/advisories/GHSA-8wxj-vghp-jpcq","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/openboxes/openboxes/commit/deeac6a4a7aba86ce99c4bda37142e41d209293e","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/openboxes/openboxes/releases/tag/v0.9.8","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19929","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/872054","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390180","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390180/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19930","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19930 — A security flaw has been discovered in Dolibarr up to 23.0.3. Affected is an unknown function of the…","description":"A security flaw has been discovered in Dolibarr up to 23.0.3. Affected is an unknown function of the file htdocs/user/card.php of the component User Cloning. The manipulation of the argument ID results in ldap injection. It is possible to launch the attack remotely. The exploit has been released to…","indicators":{"cves":["CVE-2026-19930"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T04:16:26.747Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://drive.google.com/file/d/1tI3kUdqocvdQwQtqOi5zCFmTMm6eA3sF/view","label":"cna@vuldb.com","domainType":"other"},{"url":"https://github.com/Dolibarr/dolibarr/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/Dolibarr/dolibarr/commit/798e65356ede03c2812ab1a728f23fae34de5592","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/Dolibarr/dolibarr/issues/39000","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19930","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/872355","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390181","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390181/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-2487","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-2487 — The Admin Custom Login plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin s…","description":"The Admin Custom Login plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including, 3.6.4 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with administrator-level permissions…","indicators":{"cves":["CVE-2026-2487"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T04:16:27.943Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/admin-custom-login/tags/3.6.3/includes/login-form-setting/login-form-background.php#L759","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/admin-custom-login/tags/3.6.3/login-form-screen.php#L162","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/admin-custom-login/trunk/includes/login-form-setting/login-form-background.php#L759","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/admin-custom-login/trunk/login-form-screen.php#L162","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3510948%40admin-custom-login&new=3510948%40admin-custom-login","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/0e81b6c1-5af5-4ad4-92db-9dba76399857?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2025-10005","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2025-10005 — The PPWP – Password Protect WordPress | #1 Most-Reviewed Password Plugin plugin for WordPress is vul…","description":"The PPWP – Password Protect WordPress | #1 Most-Reviewed Password Plugin plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 1.9.20 via the ppw_free_set_password AJAX action due to missing validation on a user controlled key. This makes it pos…","indicators":{"cves":["CVE-2025-10005"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T05:16:44.747Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3637624%40password-protect-page&new=3637624%40password-protect-page","label":"security@wordfence.com","domainType":"other"},{"url":"https://research.cleantalk.org/CVE-2025-10005","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/b1850e16-6fac-4d72-9346-ea6280fe84d0?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-11780","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-11780 — The Quiz and Survey Master (QSM) – Easy Quiz and Survey Maker plugin for WordPress is vulnerable to…","description":"The Quiz and Survey Master (QSM) – Easy Quiz and Survey Maker plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'question_title' parameter in all versions up to, and including, 11.2.1 due to insufficient input sanitization and output escaping. This makes it possible for authe…","indicators":{"cves":["CVE-2026-11780","CVE-2026-15963"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T05:16:45.643Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/quiz-master-next/tags/11.0.0/php/admin/options-page-questions-tab.php#L1557","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/quiz-master-next/tags/11.0.0/php/admin/options-page-questions-tab.php#L1580","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/quiz-master-next/tags/11.0.0/php/rest-api.php#L301","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/quiz-master-next/tags/11.0.0/php/rest-api.php#L741","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/quiz-master-next/tags/11.1.4/php/admin/options-page-questions-tab.php#L1557","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/quiz-master-next/tags/11.1.4/php/admin/options-page-questions-tab.php#L1580","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/quiz-master-next/tags/11.1.4/php/rest-api.php#L301","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/quiz-master-next/tags/11.1.4/php/rest-api.php#L741","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3609172%40quiz-master-next&new=3609172%40quiz-master-next","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3612474%40quiz-master-next&new=3612474%40quiz-master-next","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/66334c29-c9d6-48b0-8d6b-bae588da0331?source=cve","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/quiz-master-next/tags/11.2.1/php/classes/class-qsm-fields.php#L77","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/quiz-master-next/tags/11.2.1/php/classes/class-qsm-install.php#L271","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/quiz-master-next/tags/11.2.1/renderer/frontend/class-qsm-render-pagination.php#L390","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/quiz-master-next/tags/11.2.1/renderer/frontend/class-qsm-render-pagination.php#L392","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/b1de31ae-4095-4863-9971-9de45c36f5a0?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-12477","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-12477 — The Gravity Booster – Styles & Layouts for Gravity Forms plugin for WordPress is vulnerable to Store…","description":"The Gravity Booster – Styles & Layouts for Gravity Forms plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including, 5.26 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, wit…","indicators":{"cves":["CVE-2026-12477"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T05:16:45.810Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/styles-and-layouts-for-gravity-forms/tags/5.26/display/class-styles.php#L147","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/styles-and-layouts-for-gravity-forms/tags/5.26/display/class-styles.php#L148","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/styles-and-layouts-for-gravity-forms/tags/5.26/display/class-styles.php#L76","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/styles-and-layouts-for-gravity-forms/tags/5.26/includes/admin/fetch/stla-admin-fetch-content-area.php#L290","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3637650%40styles-and-layouts-for-gravity-forms&new=3637650%40styles-and-layouts-for-gravity-forms","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/413e5515-6cc9-4fa9-908e-2dc68778f5cb?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-12905","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-12905 — The Bookly plugin for WordPress is vulnerable to Insecure Direct Object Reference in versions up to,…","description":"The Bookly plugin for WordPress is vulnerable to Insecure Direct Object Reference in versions up to, and including, 27.7 via the appointment() method of the Mobile Staff Cabinet API (resource=appointment, action=bookly_mobile_staff_cabinet) in frontend/modules/mobile_staff_cabinet/api/handlers/Handl…","indicators":{"cves":["CVE-2026-12905"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T05:16:45.947Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/bookly-responsive-appointment-booking-tool/tags/24.9/frontend/modules/mobile_staff_cabinet/Ajax.php#L17","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/bookly-responsive-appointment-booking-tool/tags/24.9/frontend/modules/mobile_staff_cabinet/api/handlers/Handler.php#L82","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/bookly-responsive-appointment-booking-tool/tags/24.9/frontend/modules/mobile_staff_cabinet/api/handlers/Handler1_0.php#L70","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/bookly-responsive-appointment-booking-tool/tags/27.7/frontend/modules/mobile_staff_cabinet/Ajax.php#L17","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/bookly-responsive-appointment-booking-tool/tags/27.7/frontend/modules/mobile_staff_cabinet/api/handlers/Handler.php#L82","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/bookly-responsive-appointment-booking-tool/tags/27.7/frontend/modules/mobile_staff_cabinet/api/handlers/Handler1_0.php#L70","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3637918%40bookly-responsive-appointment-booking-tool&new=3637918%40bookly-responsive-appointment-booking-tool","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/1600466e-ad45-4dc7-916b-6c97301d2b03?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-13167","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-13167 — The Everest Forms – Contact Form, Payment Form, Quiz, Survey & Custom Form Builder with AI plugin fo…","description":"The Everest Forms – Contact Form, Payment Form, Quiz, Survey & Custom Form Builder with AI plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 3.5.2. This is due to the plugin not properly verifying that a user is authorized to perform an action. This mak…","indicators":{"cves":["CVE-2026-13167"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T05:16:46.077Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/everest-forms/tags/3.4.5/includes/RestApi/controllers/version1/class-evf-modules.php#L315","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/everest-forms/tags/3.4.5/includes/RestApi/controllers/version1/class-evf-modules.php#L730","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/everest-forms/tags/3.4.5/includes/class-evf-ajax.php#L121","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/everest-forms/tags/3.4.5/includes/class-evf-ajax.php#L1408","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/everest-forms/tags/3.4.5/includes/class-evf-ajax.php#L709","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/everest-forms/tags/3.5.1/includes/RestApi/controllers/version1/class-evf-modules.php#L315","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/everest-forms/tags/3.5.1/includes/RestApi/controllers/version1/class-evf-modules.php#L730","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/everest-forms/tags/3.5.1/includes/class-evf-ajax.php#L121","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/everest-forms/tags/3.5.1/includes/class-evf-ajax.php#L1408","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/everest-forms/tags/3.5.1/includes/class-evf-ajax.php#L709","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3634069%40everest-forms&new=3634069%40everest-forms","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/6d1ba996-e26c-45cc-ab95-338663f481d9?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-13358","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-13358 — The Appointment Booking Calendar — Simply Schedule Appointments Booking Plugin plugin for WordPress…","description":"The Appointment Booking Calendar — Simply Schedule Appointments Booking Plugin plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 1.6.12.10 via the ssa_past_appointments due to missing validation on a user controlled key. This makes it possib…","indicators":{"cves":["CVE-2026-13358"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T05:16:46.213Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/simply-schedule-appointments/tags/1.6.11.0/includes/class-appointment-model.php#L1936","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/simply-schedule-appointments/tags/1.6.11.0/includes/class-db-model.php#L325","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/simply-schedule-appointments/tags/1.6.11.0/includes/class-divi.php#L237","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/simply-schedule-appointments/tags/1.6.11.0/includes/class-divi.php#L254","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/simply-schedule-appointments/tags/1.6.11.0/includes/class-shortcodes.php#L781","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/simply-schedule-appointments/tags/1.6.12.4/includes/class-appointment-model.php#L1936","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/simply-schedule-appointments/tags/1.6.12.4/includes/class-db-model.php#L325","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/simply-schedule-appointments/tags/1.6.12.4/includes/class-divi.php#L237","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/simply-schedule-appointments/tags/1.6.12.4/includes/class-divi.php#L254","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/simply-schedule-appointments/tags/1.6.12.4/includes/class-shortcodes.php#L781","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3617759%40simply-schedule-appointments&new=3617759%40simply-schedule-appointments","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/5dbe5094-d255-46b1-9e8e-9c48cd74e8a2?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15009","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-15009 — The Advanced File Manager – Ultimate File Manager for WordPress And Document Library Solution plugin…","description":"The Advanced File Manager – Ultimate File Manager for WordPress And Document Library Solution plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'soundFile' parameter in all versions up to, and including, 5.4.12 due to insufficient input sanitization and output escaping. This…","indicators":{"cves":["CVE-2026-15009"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T05:16:46.753Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/file-manager-advanced/tags/5.4.11/application/library/js/elFinder.js#L4596","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/file-manager-advanced/tags/5.4.11/application/library/js/elFinder.js#L4839","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/file-manager-advanced/tags/5.4.11/application/library/js/elFinder.js#L4856","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/file-manager-advanced/tags/5.4.12/application/library/js/elFinder.js#L4596","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/file-manager-advanced/tags/5.4.12/application/library/js/elFinder.js#L4839","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/file-manager-advanced/tags/5.4.12/application/library/js/elFinder.js#L4856","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3645011%40file-manager-advanced&new=3645011%40file-manager-advanced","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/9d164f5e-c313-4e45-a17b-61460b10204e?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15066","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-15066 — The Loco Translate plugin for WordPress is vulnerable to Stored Cross-Site Scripting via PO File Ext…","description":"The Loco Translate plugin for WordPress is vulnerable to Stored Cross-Site Scripting via PO File Extracted Comments in all versions up to, and including, 2.8.7 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with translator-level access…","indicators":{"cves":["CVE-2026-15066"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T05:16:46.880Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/loco-translate/tags/2.8.4/pub/js/min/admin.js#L1404","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/loco-translate/tags/2.8.4/pub/js/min/admin.js#L3533","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/loco-translate/tags/2.8.4/src/ajax/SaveController.php#L52","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/loco-translate/tags/2.8.5/pub/js/min/admin.js#L1404","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/loco-translate/tags/2.8.5/pub/js/min/admin.js#L3533","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/loco-translate/tags/2.8.5/src/ajax/SaveController.php#L52","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3631056%40loco-translate&new=3631056%40loco-translate","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/9571a2f3-d148-4e9b-8837-b8d212418613?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15441","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-15441 — The WC Product Table Lite plugin for WordPress is vulnerable to CSS Injection in versions up to, and…","description":"The WC Product Table Lite plugin for WordPress is vulnerable to CSS Injection in versions up to, and including, 5.6.0 via the 'laptop_scroll_offset' shortcode attribute exposed through the unauthenticated wcpt_ajax() AJAX handler. The handler is registered for wp_ajax_nopriv_wcpt_ajax, JSON-decodes…","indicators":{"cves":["CVE-2026-15441"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["phishing"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T05:16:47.010Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/wc-product-table-lite/tags/5.1.0/main.php#L2677","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wc-product-table-lite/tags/5.1.0/main.php#L2686","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wc-product-table-lite/tags/5.1.0/style-functions.php#L995","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wc-product-table-lite/tags/5.4.0/main.php#L2677","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wc-product-table-lite/tags/5.4.0/main.php#L2686","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wc-product-table-lite/tags/5.4.0/style-functions.php#L995","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3638932%40wc-product-table-lite&new=3638932%40wc-product-table-lite","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/6c0a8be1-8853-4863-90e5-af3831f800e9?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15602","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-15602 — The NEX-Forms – Ultimate Forms Plugin for WordPress plugin for WordPress is vulnerable to generic SQ…","description":"The NEX-Forms – Ultimate Forms Plugin for WordPress plugin for WordPress is vulnerable to generic SQL Injection via the 'additional_params' parameter in all versions up to, and including, 9.2.4 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the exis…","indicators":{"cves":["CVE-2026-15602"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T05:16:47.140Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/nex-forms-express-wp-form-builder/tags/9.2.3/includes/classes/class.dashboard.php#L5481","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/nex-forms-express-wp-form-builder/tags/9.2.3/main.php#L3756","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/nex-forms-express-wp-form-builder/tags/9.2.3/main.php#L3764","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3644732%40nex-forms-express-wp-form-builder&new=3644732%40nex-forms-express-wp-form-builder","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/1dd094b8-440a-47ae-8edc-c23f1909d607?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15726","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-15726 — The Serious Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'theme' Sho…","description":"The Serious Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'theme' Shortcode Attribute in all versions up to, and including, 1.4.0 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level acce…","indicators":{"cves":["CVE-2026-15726"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T05:16:47.270Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/cryout-serious-slider/tags/1.4.0/inc/shortcodes.php#L102","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/cryout-serious-slider/tags/1.4.0/inc/shortcodes.php#L111","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/cryout-serious-slider/tags/1.4.0/inc/shortcodes.php#L244","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/cryout-serious-slider/tags/1.4.0/inc/shortcodes.php#L55","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3640247%40cryout-serious-slider&new=3640247%40cryout-serious-slider","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/c8f45054-e6a4-403b-94eb-2dd2a4840c22?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16079","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-16079 — The Fullscreen Galleria plugin for WordPress is vulnerable to generic SQL Injection via 'href' Attri…","description":"The Fullscreen Galleria plugin for WordPress is vulnerable to generic SQL Injection via 'href' Attribute in Post Content in all versions up to, and including, 1.6.12 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes i…","indicators":{"cves":["CVE-2026-16079"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T05:16:47.537Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/fullscreen-galleria/tags/1.6.12/galleria-fs.php#L1074","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/fullscreen-galleria/tags/1.6.12/galleria-fs.php#L1078","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/fullscreen-galleria/tags/1.6.12/galleria-fs.php#L146","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/fullscreen-galleria/tags/1.6.12/galleria-fs.php#L68","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/fullscreen-galleria/tags/1.6.12/galleria-fs.php#L74","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3635063%40fullscreen-galleria&new=3635063%40fullscreen-galleria","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3635066%40fullscreen-galleria&new=3635066%40fullscreen-galleria","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/48d6cd72-6a38-403b-9a8f-960e99d8801f?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16779","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-16779 — The Kubio AI Page Builder plugin for WordPress is vulnerable to authorization bypass in all versions…","description":"The Kubio AI Page Builder plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 2.8.5. This is due to the plugin not properly verifying that a user is authorized to perform an action. This makes it possible for authenticated attackers, with contributor-leve…","indicators":{"cves":["CVE-2026-16779"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T05:16:47.910Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/kubio/tags/2.8.5/lib/editor-assets.php#L411","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/kubio/tags/2.8.5/lib/kubio-block-library.php#L197","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/kubio/tags/2.8.5/lib/src/Core/KubioFrontPageRevertNotice.php#L151","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/kubio/tags/2.8.5/lib/src/Core/KubioFrontPageRevertNotice.php#L25","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3633801%40kubio&new=3633801%40kubio","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/febca991-90a0-46b8-9609-2c8a71b5eb5f?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18385","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-18385 — The The Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restri…","description":"The The Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content – ProfilePress plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 4.16.19. This is due to the software allowing users to execute an ac…","indicators":{"cves":["CVE-2026-18385"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T05:16:48.170Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/wp-user-avatar/tags/4.16.15/src/Classes/RegistrationAuth.php#L170","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wp-user-avatar/tags/4.16.15/src/ShortcodeParser/Builder/FrontendProfileBuilder.php#L286","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wp-user-avatar/tags/4.16.15/src/ShortcodeParser/MemberDirectoryTag.php#L98","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wp-user-avatar/tags/4.16.15/src/Themes/DragDrop/MemberDirectoryListing.php#L90","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wp-user-avatar/tags/4.16.19/src/Classes/RegistrationAuth.php#L170","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wp-user-avatar/tags/4.16.19/src/ShortcodeParser/Builder/FrontendProfileBuilder.php#L286","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wp-user-avatar/tags/4.16.19/src/ShortcodeParser/MemberDirectoryTag.php#L98","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wp-user-avatar/tags/4.16.19/src/Themes/DragDrop/MemberDirectoryListing.php#L90","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3635466%40wp-user-avatar&new=3635466%40wp-user-avatar","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/345f3354-d2cb-4b92-a25d-9551a5992919?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19932","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19932 — A security flaw has been discovered in DefaultFuction Notice-System-Managent 2.0. This issue affects…","description":"A security flaw has been discovered in DefaultFuction Notice-System-Managent 2.0. This issue affects the function GroovyShell.evaluate of the file /execute of the component NoticeController. The manipulation results in code injection. The attack can be launched remotely. The exploit has been release…","indicators":{"cves":["CVE-2026-19932"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T05:16:48.443Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://github.com/DefaultFuction/Notice-System-Managent/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/DefaultFuction/Notice-System-Managent/issues/1","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19932","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/872648","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390703","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390703/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19933","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19933 — A weakness has been identified in DefaultFuction Customer-Relationship-Management-In-C-Project 2.0.…","description":"A weakness has been identified in DefaultFuction Customer-Relationship-Management-In-C-Project 2.0. Impacted is the function gets of the component Customer Search Module. This manipulation causes stack-based buffer overflow. The attack may be initiated remotely. The exploit has been made available t…","indicators":{"cves":["CVE-2026-19933"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T05:16:48.623Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://github.com/DefaultFuction/Customer-Relationship-Management-In-C-Project/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/DefaultFuction/Customer-Relationship-Management-In-C-Project/issues/1","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19933","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/872649","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390704","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390704/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-10035","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-10035 — The Turnkey bbPress by WeaverTheme plugin for WordPress is vulnerable to PHP Object Injection in all…","description":"The Turnkey bbPress by WeaverTheme plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.7.1 via deserialization of untrusted input in the wvrbbp_set_to_serialized_values() function (reached through the wvrbbp_save_restore() settings-restore handler). The…","indicators":{"cves":["CVE-2026-10035"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T06:16:49.210Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/weaver-for-bbpress/tags/1.7.1/includes/wvrbbp-admin-lib.php#L112","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/weaver-for-bbpress/tags/1.7.1/includes/wvrbbp-admin-lib.php#L132","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/weaver-for-bbpress/tags/1.7.1/includes/wvrbbp-admin-top.php#L142","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3633471%40weaver-for-bbpress&new=3633471%40weaver-for-bbpress","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/7e7411ab-174e-4bc2-9f96-dbce925a21eb?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-13712","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-13712 — The Divi WordPress theme before 5.9.0 does not properly escape some of its Social Media Follow modul…","description":"The Divi WordPress theme before 5.9.0 does not properly escape some of its Social Media Follow module settings before outputting them in link attributes, allowing users with a role as low as contributor to store JavaScript which will run when a higher privileged user, such as an administrator, views…","indicators":{"cves":["CVE-2026-13712"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T06:16:50.227Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://wpscan.com/vulnerability/d3a37071-5fb1-4aa2-8f89-eb13c46f6126/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15056","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-15056 — The StoreEngine — Complete eCommerce Solution with Memberships, Licensing, Affiliates & More plugin…","description":"The StoreEngine — Complete eCommerce Solution with Memberships, Licensing, Affiliates & More plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 2.1.1 via the parse_file_path function. This makes it possible for authenticated attackers, with vendor-level a…","indicators":{"cves":["CVE-2026-15056"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T06:16:50.340Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/storeengine/tags/1.10.0/addons/multi-vendor/api/vendors.php#L281","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/storeengine/tags/1.10.0/addons/multi-vendor/api/vendors.php#L37","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/storeengine/tags/1.10.0/addons/multi-vendor/role.php#L37","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/storeengine/tags/1.10.0/addons/multi-vendor/shortcode.php#L112","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/storeengine/tags/1.10.0/includes/classes/download-handler.php#L192","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/storeengine/tags/1.10.0/includes/classes/download-handler.php#L513","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/storeengine/tags/1.10.0/includes/classes/download-handler.php#L557","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/storeengine/tags/2.0.0/addons/multi-vendor/api/vendors.php#L281","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/storeengine/tags/2.0.0/addons/multi-vendor/api/vendors.php#L37","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/storeengine/tags/2.0.0/addons/multi-vendor/role.php#L37","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/storeengine/tags/2.0.0/addons/multi-vendor/shortcode.php#L112","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/storeengine/tags/2.0.0/includes/classes/download-handler.php#L192","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/storeengine/tags/2.0.0/includes/classes/download-handler.php#L513","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/storeengine/tags/2.0.0/includes/classes/download-handler.php#L557","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3628877%40storeengine&new=3628877%40storeengine","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/9a866dfd-2374-4a66-9dee-b8bda47d1cc7?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15345","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-15345 — The ShortPixel Adaptive Images – WebP, AVIF, CDN, Image Optimization plugin for WordPress is vulnera…","description":"The ShortPixel Adaptive Images – WebP, AVIF, CDN, Image Optimization plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 3.11.5. This is due to the plugin not properly verifying that a user is authorized to perform an action. This makes it possible for au…","indicators":{"cves":["CVE-2026-15345"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T06:16:50.493Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/shortpixel-adaptive-images/tags/3.11.5/includes/actions/notice.actions.class.php#L16","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/shortpixel-adaptive-images/tags/3.11.5/includes/actions/notice.actions.class.php#L566","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/shortpixel-adaptive-images/tags/3.11.5/includes/actions/notice.actions.class.php#L614","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/shortpixel-adaptive-images/tags/3.11.5/includes/actions/notice.actions.class.php#L87","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/shortpixel-adaptive-images/tags/3.11.5/includes/controllers/notice.class.php#L747","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3625451%40shortpixel-adaptive-images&new=3625451%40shortpixel-adaptive-images","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/c3efae8f-ca89-4d8c-a177-6793994b3ea0?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15351","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-15351 — The WC Vendors – WooCommerce Multivendor, WooCommerce Marketplace, Product Vendors plugin for WordPr…","description":"The WC Vendors – WooCommerce Multivendor, WooCommerce Marketplace, Product Vendors plugin for WordPress is vulnerable to generic SQL Injection via the 'status' parameter in all versions up to, and including, 2.7.0 due to insufficient escaping on the user supplied parameter and lack of sufficient pre…","indicators":{"cves":["CVE-2026-15351"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T06:16:50.620Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/wc-vendors/tags/2.7.0/classes/includes/api/admin/class-wcv-admin-api.php#L247","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wc-vendors/tags/2.7.0/classes/includes/api/admin/class-wcv-admin-api.php#L329","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wc-vendors/tags/2.7.0/classes/includes/api/admin/class-wcv-admin-api.php#L367","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wc-vendors/tags/2.7.0/classes/includes/api/admin/class-wcv-admin-api.php#L56","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3633716%40wc-vendors&new=3633716%40wc-vendors","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/df790bbc-7427-4f7e-9aa2-e137c9fceffd?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15384","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-15384 — The Manual Image Crop WordPress plugin before 1.15 does not perform any capability check or nonce ve…","description":"The Manual Image Crop WordPress plugin before 1.15 does not perform any capability check or nonce verification on the authenticated AJAX action that crops attachment images; its only guard passes for any logged-in user. A subscriber-level user can therefore supply an arbitrary attachment ID and over…","indicators":{"cves":["CVE-2026-15384"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T06:16:50.740Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://wpscan.com/vulnerability/706d0b6a-d136-4317-a767-33bcab3b041c/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15604","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-15604 — The Toocheke Companion plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions…","description":"The Toocheke Companion plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 2.10 via the 'series_bg_color' post meta field. This is due to insufficient input sanitization in the toocheke_series_bg_color_save() function (which stores the raw $_POST value…","indicators":{"cves":["CVE-2026-15604"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T06:16:50.840Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/toocheke-companion/tags/2.11/inc/class-toocheke-companion-admin-columns.php#L296","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/toocheke-companion/tags/2.3/inc/class-toocheke-companion-admin-columns.php#L296","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/toocheke-companion/tags/2.3/inc/class-toocheke-companion-metaboxes.php#L959","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/toocheke-companion/tags/2.3/inc/class-toocheke-companion-metaboxes.php#L960","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/1bf78bc1-55d7-4230-913f-d7c521225367?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15790","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-15790 — The Youtube Showcase plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions u…","description":"The Youtube Showcase plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 4.0.4 via the 'emd_mb_meta' shortcode. This is due to insufficient input sanitization and output escaping on attachment titles referenced by the shortcode's image field: EMD_MB_He…","indicators":{"cves":["CVE-2026-15790"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T06:16:50.967Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/youtube-showcase/tags/4.0.4/assets/ext/emd-meta-box/inc/helpers.php#L274","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/youtube-showcase/tags/4.0.4/assets/ext/emd-meta-box/inc/helpers.php#L72","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/3be5e544-1ea5-46f6-a15b-99b0e3718c91?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16758","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-16758 — The Snippet Shortcodes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Shortco…","description":"The Snippet Shortcodes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Shortcode Attributes in all versions up to, and including, 5.2.0 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level access…","indicators":{"cves":["CVE-2026-16758"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T06:16:51.090Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/shortcode-variables/tags/5.1.7/includes/functions.php#L81","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/shortcode-variables/tags/5.1.7/includes/shortcode.user.php#L14","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/shortcode-variables/tags/5.1.7/includes/shortcode.user.php#L74","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3647346%40shortcode-variables&new=3647346%40shortcode-variables","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/6dd14860-2cf5-45ec-a1d6-69e43ecdb3be?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16775","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-16775 — The Smash Balloon Social Post Feed – Simple Social Feeds for WordPress plugin for WordPress is vulne…","description":"The Smash Balloon Social Post Feed – Simple Social Feeds for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'id' Shortcode Attribute in all versions up to, and including, 4.9.0 due to insufficient input sanitization and output escaping. This makes it possible for aut…","indicators":{"cves":["CVE-2026-16775"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T06:16:51.217Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/custom-facebook-feed/tags/4.9.0/inc/CFF_FB_Settings.php#L59","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/custom-facebook-feed/tags/4.9.0/inc/CFF_Shortcode.php#L1149","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/custom-facebook-feed/tags/4.9.0/inc/CFF_Shortcode.php#L312","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset/3640517/custom-facebook-feed/trunk/inc/CFF_Shortcode.php?old=3465306&old_path=custom-facebook-feed%2Ftrunk%2Finc%2FCFF_Shortcode.php","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/ae039144-2c02-4a00-9fff-f4e90a6a8236?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-17582","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-17582 — The Slider Hero plugin for WordPress is vulnerable to second-order SQL Injection in versions up to,…","description":"The Slider Hero plugin for WordPress is vulnerable to second-order SQL Injection in versions up to, and including, 9.1.7 via the qcld_sliderhero_duplicate() function. Slide data (description, title, btn, btn2, image_link, custom, etc.) is stored safely via $wpdb->update() with %s placeholders in the…","indicators":{"cves":["CVE-2026-17582"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T06:16:51.563Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/slider-hero/tags/9.1.6/qcld-slider-main.php#L1206","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/slider-hero/tags/9.1.6/qcld-slider-main.php#L392","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/slider-hero/tags/9.1.7/qcld-slider-main.php#L1206","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/slider-hero/tags/9.1.7/qcld-slider-main.php#L392","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3635315%40slider-hero&new=3635315%40slider-hero","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/c2b36621-3322-4631-b693-629c5084708b?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18402","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-18402 — The SureDash – Community, Courses & Member Dashboard plugin for WordPress is vulnerable to Stored Cr…","description":"The SureDash – Community, Courses & Member Dashboard plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'draweropenverposition' Block/Shortcode Attribute in all versions up to, and including, 1.10.3 due to insufficient input sanitization and output escaping. This makes it possible…","indicators":{"cves":["CVE-2026-18402"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T06:16:51.807Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/suredash/tags/1.10.3/core/blocks/interactivity/build/Notification/view.php#L26","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/suredash/tags/1.10.3/core/shortcodes/notification.php#L182","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/suredash/tags/1.10.3/core/shortcodes/notification.php#L189","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3632516%40suredash&new=3632516%40suredash","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/3d99bc37-4697-400a-bbd4-858543f17d1f?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19613","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19613 — The ECS WordPress plugin before 4.3.10 does not perform ownership or post-status checks when one of…","description":"The ECS  WordPress plugin before 4.3.10 does not perform ownership or post-status checks when one of its dynamic repeater data sources reads custom field values from a user-supplied post identifier, allowing users with a contributor-level account or above to read custom field values and post metadat…","indicators":{"cves":["CVE-2026-19613"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T06:16:52.023Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://wpscan.com/vulnerability/0d4ccc34-632a-4058-9220-b3cce7a942dd/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19711","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19711 — The Premium Packages WordPress plugin before 7.0.7 does not validate a withdrawal request against th…","description":"The Premium Packages  WordPress plugin before 7.0.7 does not validate a withdrawal request against the requesting user's actual earned balance, allowing any authenticated user, including a subscriber with no sales at all, to submit a payout request for an arbitrary amount, which an administrator may…","indicators":{"cves":["CVE-2026-19711"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T06:16:52.120Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://wpscan.com/vulnerability/ba209669-49bb-40f0-976d-7b77fa0a3c85/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19712","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19712 — The Masteriyo LMS WordPress plugin before 2.3.3 does not sanitise and escape a quiz field before out…","description":"The Masteriyo LMS  WordPress plugin before 2.3.3 does not sanitise and escape a quiz field before outputting it back in a page, and grants its instructor role the ability to store unfiltered HTML, allowing such users to perform Stored Cross-Site Scripting attacks against any visitor of the affected…","indicators":{"cves":["CVE-2026-19712"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T06:16:52.207Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://wpscan.com/vulnerability/08c31101-ee38-46e9-b451-abb1ed70079c/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19726","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19726 — The Visualizer WordPress plugin before 4.0.7 does not properly authorise access to the configuration…","description":"The Visualizer  WordPress plugin before 4.0.7 does not properly authorise access to the configuration of its charts, allowing users with the Contributor role and above to read the full configuration of any chart on the site, including charts the Visualizer  WordPress plugin before 4.0.7's own interf…","indicators":{"cves":["CVE-2026-19726"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T06:16:52.580Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://wpscan.com/vulnerability/61a1577e-077f-4a00-96b4-860eda48e03b/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19934","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19934 — A vulnerability has been found in itsourcecode Hospital Management System 1.0. This impacts an unkno…","description":"A vulnerability has been found in itsourcecode Hospital Management System 1.0. This impacts an unknown function of the file /vieworder.php. The manipulation of the argument delid leads to sql injection. The attack is possible to be carried out remotely. The exploit has been disclosed to the public a…","indicators":{"cves":["CVE-2026-19934"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T06:16:52.773Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://github.com/ltranquility/submit_vuln/issues/19","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://itsourcecode.com/","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/cve/CVE-2026-19934","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/872695","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390708","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390708/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-2283","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-2283 — The User Login History plugin for WordPress is vulnerable to SQL Injection via the 'blog_id' paramet…","description":"The User Login History plugin for WordPress is vulnerable to SQL Injection via the 'blog_id' parameter in all versions up to, and including, 2.1.7. This is due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible…","indicators":{"cves":["CVE-2026-2283"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T06:16:53.003Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/user-login-history/tags/2.1.7/inc/admin/class-network-admin-login-list-table.php#L116","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/user-login-history/tags/2.1.7/inc/admin/class-network-admin-login-list-table.php#L70","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/user-login-history/trunk/inc/admin/class-network-admin-login-list-table.php#L116","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/user-login-history/trunk/inc/admin/class-network-admin-login-list-table.php#L70","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3484407%40user-login-history&new=3484407%40user-login-history","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/4552786b-3362-45bf-9012-cd52f69f0462?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-9767","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-9767 — The The School Management – Education & Learning ERP plugin for WordPress is vulnerable to generic S…","description":"The The School Management – Education & Learning ERP plugin for WordPress is vulnerable to generic SQL Injection via 'order[0][dir]' Parameter in all versions up to, and including, 5.4 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL…","indicators":{"cves":["CVE-2026-9767"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T06:16:55.133Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/school-management-system/tags/5.3/admin/inc/school/staff/class/WLSM_Staff_Class.php#L160","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/school-management-system/tags/5.3/admin/inc/school/staff/class/WLSM_Staff_Class.php#L49","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/school-management-system/tags/5.3/admin/inc/school/staff/class/WLSM_Staff_Class.php#L51","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/school-management-system/tags/5.3/admin/inc/school/staff/class/WLSM_Staff_Class.php#L558","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/school-management-system/tags/5.3/admin/inc/school/staff/class/WLSM_Staff_Class.php#L82","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/school-management-system/tags/5.4/admin/inc/school/staff/class/WLSM_Staff_Class.php#L160","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/school-management-system/tags/5.4/admin/inc/school/staff/class/WLSM_Staff_Class.php#L49","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/school-management-system/tags/5.4/admin/inc/school/staff/class/WLSM_Staff_Class.php#L51","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/school-management-system/tags/5.4/admin/inc/school/staff/class/WLSM_Staff_Class.php#L558","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/school-management-system/tags/5.4/admin/inc/school/staff/class/WLSM_Staff_Class.php#L82","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3570107%40school-management-system&new=3570107%40school-management-system","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/c3f0ff27-49d7-4aa0-aa00-2853eadecddb?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-12998","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-12998 — The Forminator Forms – Contact Form, Payment Form & Custom Form Builder plugin for WordPress is vuln…","description":"The Forminator Forms – Contact Form, Payment Form & Custom Form Builder plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 1.55.0.2 via the 'draft' parameter due to missing validation on a user controlled key. This makes it possible for unaut…","indicators":{"cves":["CVE-2026-12998"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T07:16:30.173Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/forminator/tags/1.52.2/library/model/class-form-entry-model.php#L160","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/forminator/tags/1.52.2/library/model/class-form-entry-model.php#L212","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/forminator/tags/1.52.2/library/render/class-render-form.php#L2000","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/forminator/tags/1.52.2/library/render/class-render-form.php#L2011","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/forminator/tags/1.55.0/library/model/class-form-entry-model.php#L160","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/forminator/tags/1.55.0/library/model/class-form-entry-model.php#L212","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/forminator/tags/1.55.0/library/render/class-render-form.php#L2000","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/forminator/tags/1.55.0/library/render/class-render-form.php#L2011","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3593819%40forminator&new=3593819%40forminator","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/36aa7193-0e31-4084-97d0-8c22ebff3f05?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-17604","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-17604 — The Kirki – Freeform Page Builder, Website Builder & Customizer plugin for WordPress is vulnerable t…","description":"The Kirki – Freeform Page Builder, Website Builder & Customizer plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 6.1.1 via the 'data' parameter parameter. This makes it possible for authenticated attackers, with editor-level access and above, to read th…","indicators":{"cves":["CVE-2026-17604","CVE-2026-18347"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T07:16:30.547Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/kirki/tags/6.0.12/includes/Ajax.php#L349","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/kirki/tags/6.0.12/includes/Ajax/ExportImport.php#L182","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/kirki/tags/6.0.12/includes/Ajax/ExportImport.php#L186","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/kirki/tags/6.0.12/includes/Ajax/ExportImport.php#L26","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/kirki/tags/6.0.12/includes/Ajax/ExportImport.php#L52","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/kirki/tags/6.1.1/includes/Ajax.php#L349","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/kirki/tags/6.1.1/includes/Ajax/ExportImport.php#L182","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/kirki/tags/6.1.1/includes/Ajax/ExportImport.php#L186","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/kirki/tags/6.1.1/includes/Ajax/ExportImport.php#L26","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/kirki/tags/6.1.1/includes/Ajax/ExportImport.php#L52","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3629933%40kirki&new=3629933%40kirki","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/d8ecb2c6-c2d0-44b0-b9c2-4fcbc0f97632?source=cve","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/kirki/tags/6.0.9/includes/API/Frontend/Controllers/CollectionController.php#L97","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/kirki/tags/6.0.9/includes/API/Frontend/Controllers/FrontendRESTController.php#L42","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/kirki/tags/6.0.9/includes/API/Frontend/Controllers/FrontendRESTController.php#L82","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/kirki/tags/6.0.9/includes/Ajax/Users.php#L227","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/kirki/tags/6.0.9/includes/HelperFunctions.php#L1098","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/kirki/tags/6.1.1/includes/API/Frontend/Controllers/CollectionController.php#L97","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/kirki/tags/6.1.1/includes/API/Frontend/Controllers/FrontendRESTController.php#L42","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/kirki/tags/6.1.1/includes/API/Frontend/Controllers/FrontendRESTController.php#L82","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/kirki/tags/6.1.1/includes/Ajax/Users.php#L227","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/kirki/tags/6.1.1/includes/HelperFunctions.php#L1098","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/fa1e0bcd-f881-4b01-b802-7cb18a22a07f?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-17608","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-17608 — The WP Compress – Instant Performance & Speed Optimization plugin for WordPress is vulnerable to Cro…","description":"The WP Compress – Instant Performance & Speed Optimization plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 7.10.09. This is due to missing or incorrect nonce validation on the (top-level template code) function. This makes it possible for unauth…","indicators":{"cves":["CVE-2026-17608"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T07:16:30.663Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/wp-compress-image-optimizer/tags/7.10.03/classes/menu.class.php#L239","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wp-compress-image-optimizer/tags/7.10.03/classes/menu.class.php#L335","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wp-compress-image-optimizer/tags/7.10.03/templates/admin/advanced_settings_v4.php#L2378","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wp-compress-image-optimizer/tags/7.10.03/templates/admin/debug_tool.php#L550","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/wp-compress-image-optimizer/tags/7.10.03/templates/admin/debug_tool.php#L551","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3641964%40wp-compress-image-optimizer&new=3641964%40wp-compress-image-optimizer","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/67013cc9-c20f-4137-9a4d-e7d700899131?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-2357","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-2357 — The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plug…","description":"The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'bt_bb_shortcode' shortcode in all versions up to, and including, 5.6.8 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenti…","indicators":{"cves":["CVE-2026-2357"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T07:16:30.910Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3479329%40bold-page-builder&new=3479329%40bold-page-builder","label":"security@wordfence.com","domainType":"other"},{"url":"https://wordpress.org/plugins/bold-page-builder/","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/63cab921-60fa-42c5-ad0d-69de8cc91332?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72888","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-72888 — Net::OAuth versions before 0.32 for Perl allow memory exhaustion via unbounded caching of failed mod…","description":"Net::OAuth versions before 0.32 for Perl allow memory exhaustion via unbounded caching of failed module loads in smart_require.\n\nsmart_require stores results in a process-global hash with no bound and no eviction, and keeps an entry for every class name it is asked about, including names that failed…","indicators":{"cves":["CVE-2026-72888"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T14:16:54.970Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/vurtdev/Net-OAuth/commit/ee713fc96263c70b3b9a5280612618b474576f8f.patch","label":"9b29abf9-4ab0-4765-b253-1875cd9b441e","domainType":"primary"},{"url":"https://github.com/vurtdev/Net-OAuth/security/advisories/GHSA-m2cv-cq5x-47ph","label":"9b29abf9-4ab0-4765-b253-1875cd9b441e","domainType":"primary"},{"url":"https://metacpan.org/release/RRWO/Net-OAuth-0.32/changes","label":"9b29abf9-4ab0-4765-b253-1875cd9b441e","domainType":"other"},{"url":"http://www.openwall.com/lists/oss-security/2026/08/16/4","label":"af854a3a-2127-422b-91ae-364da2661108","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73058","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-73058 — stoatchat versions before 0.15.0 fail to block the IPv6 unspecified address (::) in the SSRF blockli…","description":"stoatchat versions before 0.15.0 fail to block the IPv6 unspecified address (::) in the SSRF blocklist, allowing unauthenticated attackers to bypass protections via the /proxy and /embed endpoints. Attackers can craft requests using IPv6 literal syntax to access services on the loopback interface an…","indicators":{"cves":["CVE-2026-73058"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T14:16:55.370Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/stoatchat/stoatchat/security/advisories/GHSA-4rmr-77qv-hq47","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/stoatchat-before-ssrf-via-ipv6-unspecified-address-bypass","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/stoatchat/stoatchat/security/advisories/GHSA-4rmr-77qv-hq47","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-73059","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-73059 — stoatchat before 0.15.0 contains a permission bypass vulnerability in the message_fetch route that c…","description":"stoatchat before 0.15.0 contains a permission bypass vulnerability in the message_fetch route that checks only ViewChannel permission instead of requiring ReadMessageHistory. Attackers with ViewChannel access but ReadMessageHistory denied can retrieve individual message content by ID, bypassing the…","indicators":{"cves":["CVE-2026-73059"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T14:16:55.507Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/stoatchat/stoatchat/security/advisories/GHSA-8qp4-h9xf-2vqr","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/stoatchat-before-permission-bypass-via-message-fetch","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74785","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74785 — Scriban before 7.0.0 contains three distinct denial-of-service vulnerabilities in expression evaluat…","description":"Scriban before 7.0.0 contains three distinct denial-of-service vulnerabilities in expression evaluation that bypass existing safety controls through unbounded string multiplication, uncontrolled BigInteger shift operations, and LoopLimit bypass via range enumeration in builtin functions. Attackers w…","indicators":{"cves":["CVE-2026-74785"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T14:16:56.390Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/scriban/scriban/security/advisories/GHSA-xw6w-9jjh-p9cr","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/scriban-before-denial-of-service-via-unbounded-resource-consumption","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/scriban/scriban/security/advisories/GHSA-xw6w-9jjh-p9cr","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-74786","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74786 — Scriban before 7.0.0 (affected versions <= 6.6.0) contains a denial-of-service vulnerability in whic…","description":"Scriban before 7.0.0 (affected versions <= 6.6.0) contains a denial-of-service vulnerability in which the LimitToString safety limit (default 1MB) can be bypassed because ObjectToString resets the per-call length counter (_currentToStringLength) on every top-level call and StringBuilderOutput enforc…","indicators":{"cves":["CVE-2026-74786"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T14:16:56.523Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/scriban/scriban/security/advisories/GHSA-m2p3-hwv5-xpqw","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/scriban-before-denial-of-service-via-unbounded-template-output","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/scriban/scriban/security/advisories/GHSA-m2p3-hwv5-xpqw","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-74796","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74796 — OpenTofu before 1.11.7 fails to validate existing symlinks in the provider cache directory during in…","description":"OpenTofu before 1.11.7 fails to validate existing symlinks in the provider cache directory during initialization. Attackers can place a malicious symlink in a trusted working directory to cause tofu init to write provider package contents to arbitrary filesystem locations outside the working tree.","indicators":{"cves":["CVE-2026-74796"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T14:16:57.727Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/opentofu/opentofu/security/advisories/GHSA-wcmj-x466-56mm","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/opentofu-before-symlink-following-path-traversal","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19956","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19956 — A vulnerability has been found in gomarble-ai facebook-ads-mcp-server 0.1.0. The impacted element is…","description":"A vulnerability has been found in gomarble-ai facebook-ads-mcp-server 0.1.0. The impacted element is the function fetch_pagination_url of the file server.py. Such manipulation leads to server-side request forgery. The attack can be launched remotely. The name of the patch is 4e53875aa22e8991c2fa4a76…","indicators":{"cves":["CVE-2026-19956"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T21:16:37.913Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/gomarble-ai/facebook-ads-mcp-server/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/gomarble-ai/facebook-ads-mcp-server/commit/4e53875aa22e8991c2fa4a7660d86e1caba66659","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/gomarble-ai/facebook-ads-mcp-server/issues/29","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/gomarble-ai/facebook-ads-mcp-server/pull/32","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19956","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/872772","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391113","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391113/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/872772","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19957","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19957 — A vulnerability was identified in graphlit graphlit-mcp-server 1.0.1. This affects the function fetc…","description":"A vulnerability was identified in graphlit graphlit-mcp-server 1.0.1. This affects the function fetch of the file src/tools.ts of the component ssrf-test Endpoint. Such manipulation of the argument url leads to server-side request forgery. The attack may be launched remotely. The exploit is publicly…","indicators":{"cves":["CVE-2026-19957"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T22:16:28.970Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/graphlit/graphlit-mcp-server/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/graphlit/graphlit-mcp-server/issues/12","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19957","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/872778","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391125","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391125/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19958","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19958 — A security flaw has been discovered in iatsiuk pptr-mcp up to 0.2.7. The impacted element is the fun…","description":"A security flaw has been discovered in iatsiuk pptr-mcp up to 0.2.7. The impacted element is the function executeCode of the file src/vm-executor.ts of the component execute Tool. The manipulation results in code injection. The attack may be launched remotely. The exploit has been released to the pu…","indicators":{"cves":["CVE-2026-19958"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T23:16:24.530Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"http://github.com/iatsiuk/pptr-mcp/issues/1","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19958","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/872830","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391135","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391135/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19964","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19964 — A vulnerability was found in Jij-Inc Jij-MCP-Server 0.1.0. This affects the function PythonREPL.run…","description":"A vulnerability was found in Jij-Inc Jij-MCP-Server 0.1.0. This affects the function PythonREPL.run of the file jij_mcp/python_repr.py of the component jm_check. The manipulation of the argument code results in code injection. It is possible to launch the attack remotely. The exploit has been made p…","indicators":{"cves":["CVE-2026-19964"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T00:16:27.290Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"http://github.com/Jij-Inc/Jij-MCP-Server/issues/4","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19964","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/872906","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391141","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391141/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19966","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19966 — A vulnerability was identified in CodeCanyon TimeCamp Integration for CRM up to 2.8. This issue affe…","description":"A vulnerability was identified in CodeCanyon TimeCamp Integration for CRM up to 2.8. This issue affects some unknown processing of the file /clients/save_contact of the component Contact Information Update. Such manipulation of the argument contact_id leads to authorization bypass. The attack can be…","indicators":{"cves":["CVE-2026-19966"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T01:16:44.200Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/4m3rr0r/PoCVulDb/issues/19","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19966","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/873105","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391143","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391143/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19967","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19967 — A security flaw has been discovered in Open Asset Import Library Assimp 17c12da. Impacted is the fun…","description":"A security flaw has been discovered in Open Asset Import Library Assimp 17c12da. Impacted is the function Assimp::Compression::decompressBlock of the file code/Common/Compression.cpp of the component File Parser. Performing a manipulation results in heap-based buffer overflow. The attack may be init…","indicators":{"cves":["CVE-2026-19967"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T01:16:44.370Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/assimp/assimp/issues/6624","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/user-attachments/files/27237535/poc.zip","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19967","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/873127","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391144","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391144/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19968","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19968 — A weakness has been identified in Open Asset Import Library Assimp 17c12da. The affected element is…","description":"A weakness has been identified in Open Asset Import Library Assimp 17c12da. The affected element is the function Assimp::MDLImporter::ReadFaces_3DGS_MDL7 in the library code/AssetLib/LWO/LWOLoader.h of the component 3DGS MDL7 Model Parser. Executing a manipulation can lead to heap-based buffer overf…","indicators":{"cves":["CVE-2026-19968"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T01:16:44.560Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/assimp/assimp/commit/ee77bb09a42a49843ac85ef64c14d2328b251df1","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/assimp/assimp/issues/6630","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/assimp/assimp/pull/6717","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/user-attachments/files/27425090/poc.zip","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19968","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/873129","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391145","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391145/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19969","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19969 — A security vulnerability has been detected in Open Asset Import Library Assimp 17c12da. The impacted…","description":"A security vulnerability has been detected in Open Asset Import Library Assimp 17c12da. The impacted element is the function Assimp::MDLImporter::GenerateOutputMeshes_3DGS_MDL7 of the file code/AssetLib/MDL/MDLLoader.cpp of the component 3DGS MDL7 Model Output Mesh Generator. The manipulation leads…","indicators":{"cves":["CVE-2026-19969"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T01:16:44.727Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/assimp/assimp/issues/6631","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/user-attachments/files/27425495/poc.zip","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19969","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/873130","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391146","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391146/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19970","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19970 — A vulnerability was detected in Open Asset Import Library Assimp 17c12da. This affects the function…","description":"A vulnerability was detected in Open Asset Import Library Assimp 17c12da. This affects the function Assimp::MDLImporter::AddBonesToNodeGraph_3DGS_MDL7 of the file code/AssetLib/MDL/MDLLoader.cpp of the component Node Parser. The manipulation of the argument bones_num results in heap-based buffer ove…","indicators":{"cves":["CVE-2026-19970"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T02:16:41.033Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/assimp/assimp/issues/6632","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/user-attachments/files/27428677/poc.zip","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19970","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/873131","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391147","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391147/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://github.com/assimp/assimp/issues/6632","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-19971","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19971 — A flaw has been found in LB-Link WR1210M 1.0.3. This impacts the function main of the file /www/cgi-…","description":"A flaw has been found in LB-Link WR1210M 1.0.3. This impacts the function main of the file /www/cgi-bin/backup.cgi of the component Backup Endpoint. This manipulation causes missing authentication. The attack is only possible within the local network. The vendor was contacted early about this disclo…","indicators":{"cves":["CVE-2026-19971"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T02:16:41.203Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://vuldb.com/cve/CVE-2026-19971","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/873139","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391148","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391148/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19972","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19972 — A vulnerability has been found in itsourcecode Hospital Management System 1.0. Affected is an unknow…","description":"A vulnerability has been found in itsourcecode Hospital Management System 1.0. Affected is an unknown function of the file /viewpatient.php. Such manipulation of the argument delid leads to sql injection. The attack may be performed from remote. The exploit has been disclosed to the public and may b…","indicators":{"cves":["CVE-2026-19972"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T02:16:41.383Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/Fomovet/cve/issues/6","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://itsourcecode.com/","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/cve/CVE-2026-19972","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/873160","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391149","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391149/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19973","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19973 — A vulnerability was found in itsourcecode Hospital Management System 1.0. Affected by this vulnerabi…","description":"A vulnerability was found in itsourcecode Hospital Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /viewpaymentreport.php. Performing a manipulation of the argument delid results in sql injection. It is possible to initiate the attack remotely. The explo…","indicators":{"cves":["CVE-2026-19973"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T03:16:49.750Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/Fomovet/cve/issues/7","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://itsourcecode.com/","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/cve/CVE-2026-19973","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/873161","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391150","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391150/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19974","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19974 — A security flaw has been discovered in treefrogframework treefrog-framework up to 2.11.2. This vulne…","description":"A security flaw has been discovered in treefrogframework treefrog-framework up to 2.11.2. This vulnerability affects the function std::strncmp of the file src/tsessioncookiestore.cpp of the component Session Cookie Handler. The manipulation results in improper authentication. The attack can be launc…","indicators":{"cves":["CVE-2026-19974"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T03:16:49.960Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/theopaid/Authentication-Bypass-via-HMAC-Session-Cookie-Forgery-treefrog-framework-","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/treefrogframework/treefrog-framework/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/treefrogframework/treefrog-framework/issues/436","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19974","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/873625","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391153","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391153/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19976","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19976 — A security vulnerability has been detected in COMFAST CF-N1-S 2.6.0.1. Impacted is the function sub_…","description":"A security vulnerability has been detected in COMFAST CF-N1-S 2.6.0.1. Impacted is the function sub_44A968 of the file /cgi-bin/mbox-config?method=SET&section=ptest_macaddress. Such manipulation of the argument macaddress leads to command injection. The attack may be launched remotely. The exploit h…","indicators":{"cves":["CVE-2026-19976"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T03:16:50.333Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/1ChaoRen1/IOT/blob/main/CF-N1-S-V2.6.0.1%20.pdf","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19976","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/873821","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391155","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391155/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19978","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19978 — A flaw has been found in jiantao88 android-mcp-server up to cfb872b2446794193b58edd63f4dbf6af48a6292…","description":"A flaw has been found in jiantao88 android-mcp-server up to cfb872b2446794193b58edd63f4dbf6af48a6292. The impacted element is the function child_process.exec of the file build/index.js of the component Command Execution. Executing a manipulation of the argument deviceId/packageName/permission/extras…","indicators":{"cves":["CVE-2026-19978"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T04:16:54.783Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/jiantao88/android-mcp-server/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/jiantao88/android-mcp-server/commit/14e2bf27c88ba137e35cbb0c2a75f72b595bb98a","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/jiantao88/android-mcp-server/issues/1","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19978","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/873898","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391157","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391157/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19984","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19984 — A flaw has been found in jkawamoto mcp-florence2 up to 0.3.13. Affected by this issue is the functio…","description":"A flaw has been found in jkawamoto mcp-florence2 up to 0.3.13. Affected by this issue is the function get_images of the file src/mcp_florence2/__init__.py. This manipulation of the argument src causes server-side request forgery. The attack may be initiated remotely. The exploit has been published a…","indicators":{"cves":["CVE-2026-19984"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T05:17:10.127Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/jkawamoto/mcp-florence2/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/jkawamoto/mcp-florence2/issues/59","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19984","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/873920","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391184","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391184/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19986","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19986 — A weakness has been identified in Adblock for Youtube Extension up to 7.2.1 on Chrome. The impacted…","description":"A weakness has been identified in Adblock for Youtube Extension up to 7.2.1 on Chrome. The impacted element is the function updateDynamicRules of the file contentscript.js of the component Event Listener. This manipulation of the argument yt-anti-adblock-detected causes improper authorization. It is…","indicators":{"cves":["CVE-2026-19986"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T05:17:10.293Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/xryj920/chrome_extensions/blob/main/AdBlock%20Ltd.%20Adblock%20for%20Youtube%207.2.1%20allows%20persistent%20disabling%20of%20ad%20blocking%20through%20an%20unauthenticated%20DOM%20event","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19986","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/873935","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391190","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391190/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/873935","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-13700","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-13700 — The WooMS WordPress plugin through 9.14 does not validate a user-supplied URL before using it in a s…","description":"The WooMS WordPress plugin through 9.14 does not validate a user-supplied URL before using it in a server-side request and attaches stored third-party integration credentials to every such request, allowing unauthenticated attackers to perform Server-Side Request Forgery and to disclose the configur…","indicators":{"cves":["CVE-2026-13700"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T06:17:31.120Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://wpscan.com/vulnerability/dd9e51a2-43fb-46de-8e59-2d9611fcc4ff/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-14832","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-14832 — The ShopSmart Loyalty for WooCommerce WordPress plugin through 1.0.0 does not perform any authorizat…","description":"The ShopSmart Loyalty for WooCommerce WordPress plugin through 1.0.0 does not perform any authorization or ownership check on a phone-number lookup exposed to unauthenticated users, allowing anyone who knows a customer's phone number to retrieve that customer's loyalty profile, including name, email…","indicators":{"cves":["CVE-2026-14832"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T06:17:31.657Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://wpscan.com/vulnerability/3b651e19-37f5-468e-8d0b-a82bbe04eaf2/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19987","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19987 — A security vulnerability has been detected in SourceCodester Best Employee Management System 1.0. Th…","description":"A security vulnerability has been detected in SourceCodester Best Employee Management System 1.0. This affects an unknown function of the file /assets/uploadImage/Profile/. Such manipulation leads to exposure of information through directory listing. It is possible to launch the attack remotely.","indicators":{"cves":["CVE-2026-19987"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T06:17:39.333Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://vuldb.com/cve/CVE-2026-19987","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/873936","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391191","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391191/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.sourcecodester.com/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19988","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19988 — A vulnerability was detected in Alaev SEO Tools Extension up to 1.0.10 on Chrome. This impacts the f…","description":"A vulnerability was detected in Alaev SEO Tools Extension up to 1.0.10 on Chrome. This impacts the function addDiv of the file src/popup.html of the component Popup UI. Performing a manipulation results in basic cross site scripting. The attack can be initiated remotely. The exploit is now public an…","indicators":{"cves":["CVE-2026-19988"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T06:17:39.583Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/xryj920/chrome_extensions/blob/main/Alaev%20%26%20Co%20Alaev%20SEO%20Tools%201.0.10%20allows%20extension%20popup%20UI%20injection%20through%20unsanitized%20page%20SEO%20fields","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19988","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/873939","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391192","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391192/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19993","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19993 — A vulnerability has been found in Webkul Bagisto up to 2.4.4. Affected by this vulnerability is an u…","description":"A vulnerability has been found in Webkul Bagisto up to 2.4.4. Affected by this vulnerability is an unknown functionality of the file /customer/account/rma/update-status of the component RMA State Validation. The manipulation leads to enforcement of behavioral workflow. The attack may be initiated re…","indicators":{"cves":["CVE-2026-19993"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T06:17:39.957Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/Mitchell45/PHP_Web_POCs/blob/main/Bagisto/37_38_english_vulnerability_report.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19993","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/870354","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391194","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391194/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19994","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19994 — A vulnerability was found in Webkul Bagisto up to 2.4.4. Affected by this issue is some unknown func…","description":"A vulnerability was found in Webkul Bagisto up to 2.4.4. Affected by this issue is some unknown functionality of the file /admin/configuration/cache-management/execute of the component Configuration Management. The manipulation of the argument action results in authorization bypass. The attack may b…","indicators":{"cves":["CVE-2026-19994"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T07:17:15.150Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/Mitchell45/PHP_Web_POCs/blob/main/Bagisto/31_33_english_vulnerability_report.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19994","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/870355","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391195","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391195/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19996","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19996 — A vulnerability was identified in Webkul Bagisto up to 2.4.4. This vulnerability affects unknown cod…","description":"A vulnerability was identified in Webkul Bagisto up to 2.4.4. This vulnerability affects unknown code of the file /admin/customers of the component Backend Customer Behavior Data Endpoint. Such manipulation of the argument ID leads to improper privilege management. The attack can be executed remotel…","indicators":{"cves":["CVE-2026-19996"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T07:17:15.483Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/Mitchell45/PHP_Web_POCs/blob/main/Bagisto/03_06_english_vulnerability_report.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19996","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/870357","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391197","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391197/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19997","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19997 — A security flaw has been discovered in Webkul Bagisto up to 2.4.4. This issue affects some unknown p…","description":"A security flaw has been discovered in Webkul Bagisto up to 2.4.4. This issue affects some unknown processing of the file /admin/sales/rma/requests of the component Backend Sales RMA Endpoint. Performing a manipulation results in authorization bypass. The attack is possible to be carried out remotel…","indicators":{"cves":["CVE-2026-19997"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T07:17:15.643Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/Mitchell45/PHP_Web_POCs/blob/main/Bagisto/11_18_english_vulnerability_report.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19997","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/870358","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391198","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391198/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19998","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19998 — A weakness has been identified in code-projects Online Shopping System 1.0. Impacted is an unknown f…","description":"A weakness has been identified in code-projects Online Shopping System 1.0. Impacted is an unknown function of the file offersmail.php. Executing a manipulation of the argument email can lead to cross site scripting. The attack may be performed from remote. The exploit has been made available to the…","indicators":{"cves":["CVE-2026-19998"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T08:16:59.580Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://code-projects.org/","label":"cna@vuldb.com","domainType":"other"},{"url":"https://github.com/zzzxc643/CVE1/blob/main/online-shopping-system/vul6.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19998","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/871816","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391199","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391199/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19999","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19999 — A security vulnerability has been detected in Open Asset Import Library Assimp Assimp 17c12da. The a…","description":"A security vulnerability has been detected in Open Asset Import Library Assimp Assimp 17c12da. The affected element is the function Assimp::MDLImporter::ParseBoneTrafoKeys_3DGS_MDL7 of the file code/AssetLib/MDL/MDLLoader.cpp of the component 3DGS MDL7 Bone Transformation Key Parser. The manipulatio…","indicators":{"cves":["CVE-2026-19999"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T08:16:59.733Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/assimp/assimp/commit/50d767984e78d51b53e2020fdf0967fd624bc377","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/assimp/assimp/issues/6633","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/assimp/assimp/pull/6759","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/user-attachments/files/27429337/poc.zip","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19999","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/873132","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391200","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391200/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://github.com/assimp/assimp/issues/6633","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-20000","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-20000 — A vulnerability was detected in itsourcecode Hospital Management System 1.0. The impacted element is…","description":"A vulnerability was detected in itsourcecode Hospital Management System 1.0. The impacted element is an unknown function of the file /viewprescriptionrecord.php. The manipulation of the argument delid results in sql injection. It is possible to launch the attack remotely. The exploit is now public a…","indicators":{"cves":["CVE-2026-20000"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T08:16:59.890Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/Kristin5634487/cve/issues/3","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://itsourcecode.com/","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/cve/CVE-2026-20000","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/874234","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391201","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391201/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-49301","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-49301 — Permission control vulnerability in the Gallery module. Impact: Successful exploitation of this vuln…","description":"Permission control vulnerability in the Gallery module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.","indicators":{"cves":["CVE-2026-49301"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T09:17:29.970Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://consumer.huawei.com/en/support/bulletin/2026/8/","label":"psirt@huawei.com","domainType":"other"},{"url":"https://consumer.huawei.com/en/support/bulletinvision/2026/8/","label":"psirt@huawei.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-49302","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-49302 — Permission control vulnerability in the notification service module. Impact: Successful exploitation…","description":"Permission control vulnerability in the notification service module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.","indicators":{"cves":["CVE-2026-49302"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T09:17:30.130Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://consumer.huawei.com/en/support/bulletin/2026/8/","label":"psirt@huawei.com","domainType":"other"},{"url":"https://consumer.huawei.com/en/support/bulletinlaptops/2026/8/","label":"psirt@huawei.com","domainType":"other"},{"url":"https://consumer.huawei.com/en/support/bulletinvision/2026/8/","label":"psirt@huawei.com","domainType":"other"},{"url":"https://consumer.huawei.com/en/support/bulletinwearables/2026/8/","label":"psirt@huawei.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-49303","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-49303 — Permission control vulnerability in the notification module. Impact: Successful exploitation of this…","description":"Permission control vulnerability in the notification module. Impact: Successful exploitation of this vulnerability may affect availability.","indicators":{"cves":["CVE-2026-49303"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T09:17:30.270Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://consumer.huawei.com/en/support/bulletin/2026/8/","label":"psirt@huawei.com","domainType":"other"},{"url":"https://consumer.huawei.com/en/support/bulletinvision/2026/8/","label":"psirt@huawei.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-49304","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-49304 — Permission control vulnerability in the device key management module. Impact: Successful exploitatio…","description":"Permission control vulnerability in the device key management module. Impact: Successful exploitation of this vulnerability may affect availability.","indicators":{"cves":["CVE-2026-49304"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T09:17:30.433Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://consumer.huawei.com/en/support/bulletin/2026/8/","label":"psirt@huawei.com","domainType":"other"},{"url":"https://consumer.huawei.com/en/support/bulletinlaptops/2026/8/","label":"psirt@huawei.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-49305","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-49305 — Permission control vulnerability in the Wi-Fi enhancement module. Impact: Successful exploitation of…","description":"Permission control vulnerability in the Wi-Fi enhancement module. Impact: Successful exploitation of this vulnerability may affect availability.","indicators":{"cves":["CVE-2026-49305"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T09:17:30.580Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://consumer.huawei.com/en/support/bulletin/2026/8/","label":"psirt@huawei.com","domainType":"other"},{"url":"https://consumer.huawei.com/en/support/bulletinvision/2026/8/","label":"psirt@huawei.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-49307","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-49307 — Permission control vulnerability in the multi-mode input module. Impact: Successful exploitation of…","description":"Permission control vulnerability in the multi-mode input module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.","indicators":{"cves":["CVE-2026-49307"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T09:17:30.867Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://consumer.huawei.com/en/support/bulletin/2026/8/","label":"psirt@huawei.com","domainType":"other"},{"url":"https://consumer.huawei.com/en/support/bulletinlaptops/2026/8/","label":"psirt@huawei.com","domainType":"other"},{"url":"https://consumer.huawei.com/en/support/bulletinvision/2026/8/","label":"psirt@huawei.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-49308","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-49308 — Permission control vulnerability in the clipboard module. Impact: Successful exploitation of this vu…","description":"Permission control vulnerability in the clipboard module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.","indicators":{"cves":["CVE-2026-49308"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T09:17:31.010Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://consumer.huawei.com/en/support/bulletin/2026/8/","label":"psirt@huawei.com","domainType":"other"},{"url":"https://consumer.huawei.com/en/support/bulletinlaptops/2026/8/","label":"psirt@huawei.com","domainType":"other"},{"url":"https://consumer.huawei.com/en/support/bulletinvision/2026/8/","label":"psirt@huawei.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-58560","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-58560 — Null pointer dereference issue in the image codec module. Impact: Successful exploitation of this vu…","description":"Null pointer dereference issue in the image codec module. Impact: Successful exploitation of this vulnerability may affect availability.","indicators":{"cves":["CVE-2026-58560","CVE-2026-58561"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T09:17:31.140Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://consumer.huawei.com/en/support/bulletin/2026/8/","label":"psirt@huawei.com","domainType":"other"},{"url":"https://consumer.huawei.com/en/support/bulletinlaptops/2026/8/","label":"psirt@huawei.com","domainType":"other"},{"url":"https://consumer.huawei.com/en/support/bulletinvision/2026/8/","label":"psirt@huawei.com","domainType":"other"},{"url":"https://consumer.huawei.com/en/support/bulletinwearables/2026/8/","label":"psirt@huawei.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74842","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74842 — A vulnerability was found in Kira-Pgr PromptShopMCP up to 5bc0cd17358e19a5415d11a531088170d7b81452.…","description":"A vulnerability was found in Kira-Pgr PromptShopMCP up to 5bc0cd17358e19a5415d11a531088170d7b81452. Affected is the function download_image of the file server.py of the component Image-Toolkit-MCP-Server. Performing a manipulation of the argument image_url results in server-side request forgery. The…","indicators":{"cves":["CVE-2026-74842"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T11:16:40.597Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/Kira-Pgr/PromptShopMCP/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/Kira-Pgr/PromptShopMCP/issues/4","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-74842","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/875276","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391204","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391204/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74867","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74867 — SiYuan versions before 3.7.4 contain a cross-site request forgery vulnerability in the session-cooki…","description":"SiYuan versions before 3.7.4 contain a cross-site request forgery vulnerability in the session-cookie authentication branch of CheckAuth() that lacks Origin/Referer validation and sets no explicit SameSite attribute on session cookies. Attackers can craft malicious web pages that perform unauthorize…","indicators":{"cves":["CVE-2026-74867"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T11:16:40.897Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-hhm2-g993-p656","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/siyuan-before-cross-site-request-forgery-via-checkauth","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74871","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74871 — openssl_encrypt versions before 1.4.6 contain a key derivation flaw in sequential XOR composition mo…","description":"openssl_encrypt versions before 1.4.6 contain a key derivation flaw in sequential XOR composition mode where the last stage cancels out during key generation. When configured with a single KDF and no prior hashing stage, attackers can bypass memory-hard key derivation and perform offline password cr…","indicators":{"cves":["CVE-2026-74871"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T11:16:41.427Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/jahlives/openssl_encrypt/security/advisories/GHSA-vxf9-vwp6-2w43","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/openssl-encrypt-before-kdf-bypass-via-sequential-xor","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74873","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74873 — openssl_encrypt versions before 1.4.0 expose passwords passed via the --password CLI argument in pro…","description":"openssl_encrypt versions before 1.4.0 expose passwords passed via the --password CLI argument in process listings accessible to all system users. Attackers can read process arguments through ps aux or /proc/[pid]/cmdline to retrieve plaintext passwords and keystore passwords.","indicators":{"cves":["CVE-2026-74873"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T11:16:41.690Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/jahlives/openssl_encrypt/security/advisories/GHSA-h3m5-p59h-x88p","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/openssl-encrypt-before-password-exposure-via-cli-argument","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74881","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74881 — openssl_encrypt versions before 1.4.0 configure CORS with allow_origins set to wildcard and allow_cr…","description":"openssl_encrypt versions before 1.4.0 configure CORS with allow_origins set to wildcard and allow_credentials enabled to true. Attackers can create malicious websites that make authenticated cross-origin requests to the API on behalf of any user who visits them.","indicators":{"cves":["CVE-2026-74881"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T11:16:42.723Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/jahlives/openssl_encrypt/security/advisories/GHSA-c65f-x25w-62jv","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/openssl-encrypt-before-cors-misconfiguration-via-wildcard-origins","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74890","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74890 — openssl_encrypt versions before 1.4.0 contain an authentication bypass vulnerability in CamelliaCiph…","description":"openssl_encrypt versions before 1.4.0 contain an authentication bypass vulnerability in CamelliaCipher that disables HMAC tag generation and verification when the PYTEST_CURRENT_TEST environment variable is set. Attackers with code execution can set this environment variable to produce unauthenticat…","indicators":{"cves":["CVE-2026-74890"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T11:16:43.960Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/jahlives/openssl_encrypt/security/advisories/GHSA-rvc2-5jxq-gpcj","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/openssl-encrypt-before-hmac-authentication-bypass-via-environment-variable","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74999","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74999 — In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, the \"Add to address book\" action was subj…","description":"In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, the \"Add to address book\" action was subject to stored XSS.","indicators":{"cves":["CVE-2026-74999"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T13:16:54.423Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/roundcube/roundcubemail/commit/2d2a9604a820ee279c9ffcfe856b9b93a93995a8","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/roundcube/roundcubemail/commit/32f20c6bfd12dff9cfb6880ae303e740f0804fe8","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/roundcube/roundcubemail/releases/tag/1.6.18","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/roundcube/roundcubemail/releases/tag/1.7.3","label":"cve@mitre.org","domainType":"primary"},{"url":"https://roundcube.net/news/2026/08/09/security-updates-1.6.18-and-1.7.3","label":"cve@mitre.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75000","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75000 — In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, improper HTML/CSS sanitization of the SVG…","description":"In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, improper HTML/CSS sanitization of the SVG animate \"by\" attribute may lead to remote image blocking bypass, which in turn may lead to information disclosure or privilege escalation.","indicators":{"cves":["CVE-2026-75000"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T13:16:54.580Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/roundcube/roundcubemail/releases/tag/1.6.18","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/roundcube/roundcubemail/releases/tag/1.7.3","label":"cve@mitre.org","domainType":"primary"},{"url":"https://roundcube.net/news/2026/08/09/security-updates-1.6.18-and-1.7.3","label":"cve@mitre.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75003","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75003 — In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, an unclosed url() in a FuncIRI attribute…","description":"In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, an unclosed url() in a FuncIRI attribute of an SVG image could evade the remote image blocking, which may lead to information disclosure or privilege escalation.","indicators":{"cves":["CVE-2026-75003"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T13:16:54.900Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/roundcube/roundcubemail/commit/1cebea03474305d9f75a9a33d30880d290b5591b","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/roundcube/roundcubemail/commit/440277c32e6d84f3d116153af1cc8454361a8a56","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/roundcube/roundcubemail/releases/tag/1.6.18","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/roundcube/roundcubemail/releases/tag/1.7.3","label":"cve@mitre.org","domainType":"primary"},{"url":"https://roundcube.net/news/2026/08/09/security-updates-1.6.18-and-1.7.3","label":"cve@mitre.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75004","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75004 — In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, improper rule name quoting could lead to…","description":"In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, improper rule name quoting could lead to managesieve_disabled_actions setting bypass via a crafted rule name in a Sieve script. This issue only affects Roundcube instances using the managesieve plugin.","indicators":{"cves":["CVE-2026-75004"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T13:16:55.070Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/roundcube/roundcubemail/releases/tag/1.6.18","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/roundcube/roundcubemail/releases/tag/1.7.3","label":"cve@mitre.org","domainType":"primary"},{"url":"https://roundcube.net/news/2026/08/09/security-updates-1.6.18-and-1.7.3","label":"cve@mitre.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75006","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75006 — In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, insufficient Cascading Style Sheets (CSS)…","description":"In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, insufficient Cascading Style Sheets (CSS) sanitization in HTML e-mail messages may lead to SSRF or Information Disclosure, e.g., if stylesheet links point to local network hosts. This issue exists because of insufficient fixes for CVE-2026-3…","indicators":{"cves":["CVE-2026-75006"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T13:16:55.240Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/roundcube/roundcubemail/commit/7e10ca0110b7c9aa1b7850b843bb6625e47bbe00","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/roundcube/roundcubemail/commit/8a92380b06b5df1481e034c4f40d6a6546c21223","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/roundcube/roundcubemail/commit/92f85c883594e5be757154f94548a9ba903455c9","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/roundcube/roundcubemail/commit/c111b72950cd2bf57d6b86cd129568d90403322d","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/roundcube/roundcubemail/releases/tag/1.6.18","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/roundcube/roundcubemail/releases/tag/1.7.3","label":"cve@mitre.org","domainType":"primary"},{"url":"https://roundcube.net/news/2026/08/09/security-updates-1.6.18-and-1.7.3","label":"cve@mitre.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75007","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75007 — In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, the LDAP search filter was subject to inj…","description":"In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, the LDAP search filter was subject to injection via unescaped %u/%fu/%d substitution, which may lead to information disclosure or privilege escalation.","indicators":{"cves":["CVE-2026-75007"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T13:16:55.410Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/roundcube/roundcubemail/commit/0893e192adf803c7a5a89fafc80278257e1bcf65","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/roundcube/roundcubemail/commit/e6cc1e121effeaec6d916feb4e019d2828924540","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/roundcube/roundcubemail/releases/tag/1.6.18","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/roundcube/roundcubemail/releases/tag/1.7.3","label":"cve@mitre.org","domainType":"primary"},{"url":"https://roundcube.net/news/2026/08/09/security-updates-1.6.18-and-1.7.3","label":"cve@mitre.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75010","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75010 — In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, the modoboa driver of the password plugin…","description":"In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, the modoboa driver of the password plugin could leak a Modoboa API authentication token to a user-controlled host via crafted session data. This issue only affects Roundcube instances using the password plugin with its modoboa driver.","indicators":{"cves":["CVE-2026-75010"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T13:16:55.563Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/roundcube/roundcubemail/commit/65b8ea9d8304b10f1d3bda5bcc82f9c682cf804c","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/roundcube/roundcubemail/commit/b0e26d617e7bbe3051135285993bc55f718fea2f","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/roundcube/roundcubemail/releases/tag/1.6.18","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/roundcube/roundcubemail/releases/tag/1.7.3","label":"cve@mitre.org","domainType":"primary"},{"url":"https://roundcube.net/news/2026/08/09/security-updates-1.6.18-and-1.7.3","label":"cve@mitre.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-59911","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-59911 — Dell ObjectScale, versions prior to 4.3.0.1, contain(s) an Insertion of Sensitive Information into L…","description":"Dell ObjectScale, versions prior to 4.3.0.1, contain(s) an Insertion of Sensitive Information into Log File vulnerability in the svc_tools. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Information disclosure.","indicators":{"cves":["CVE-2026-59911"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T14:20:21.770Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://www.dell.com/support/kbdoc/en-us/000500724/dsa-2026-328-security-update-for-dell-objectscale-multiple-proprietary-code-vulnerabilities","label":"security_alert@emc.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-10527","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-10527 — Mattermost versions 11.7.x <= 11.7.6, 10.11.x <= 10.11.21, 11.8.x <= 11.8.3 fails to reconcile Schem…","description":"Mattermost versions 11.7.x <= 11.7.6, 10.11.x <= 10.11.21, 11.8.x <= 11.8.3 fails to reconcile SchemeAdmin flags with a user's current role which allows a user demoted to System Guest to retain Board Admin privileges and perform admin-only operations via the Boards REST API or UI.. Mattermost Adviso…","indicators":{"cves":["CVE-2026-10527"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T15:16:53.087Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://mattermost.com/security-updates","label":"responsibledisclosure@mattermost.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15754","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-15754 — Mattermost versions 11.7.x <= 11.7.6, 11.8.x <= 11.8.3 The access control policy unassign endpoint f…","description":"Mattermost versions 11.7.x <= 11.7.6, 11.8.x <= 11.8.3 The access control policy unassign endpoint fails to re-validate that each target channel still belongs to the requesting admin's team, which allows an authenticated team administrator to remove ABAC (attribute-based access control) policy assig…","indicators":{"cves":["CVE-2026-15754"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T15:16:53.743Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://mattermost.com/security-updates","label":"responsibledisclosure@mattermost.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16044","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-16044 — Mattermost versions 11.7.x <= 11.7.6, 10.11.x <= 10.11.21 fail to prevent guest users from receiving…","description":"Mattermost versions 11.7.x <= 11.7.6, 10.11.x <= 10.11.21 fail to prevent guest users from receiving Board Admin privileges during board archive import which allows a board member to escalate a guest user to Board Admin via importing a crafted .boardarchive file. Mattermost Advisory ID: MMSA-2026-00…","indicators":{"cves":["CVE-2026-16044"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T15:16:53.857Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://mattermost.com/security-updates","label":"responsibledisclosure@mattermost.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16045","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-16045 — Mattermost versions 11.7.x <= 11.7.6, 10.11.x <= 10.11.21 Mattermost failed to restrict OAuth deauth…","description":"Mattermost versions 11.7.x <= 11.7.6, 10.11.x <= 10.11.21 Mattermost failed to restrict OAuth deauthorization and personal access token management endpoints to direct user sessions, which allowed an OAuth app with a delegated user token to revoke the user's authorizations or tokens for other integra…","indicators":{"cves":["CVE-2026-16045"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T15:16:53.967Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://mattermost.com/security-updates","label":"responsibledisclosure@mattermost.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16046","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-16046 — Mattermost versions 11.7.x <= 11.7.6, 10.11.x <= 10.11.21 fail to enforce run-state validation on wr…","description":"Mattermost versions 11.7.x <= 11.7.6, 10.11.x <= 10.11.21 fail to enforce run-state validation on write operations for finished playbook runs which allows a run participant to modify status, checklists, retrospective content, ownership, and participants on completed runs via REST and GraphQL API req…","indicators":{"cves":["CVE-2026-16046"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T15:16:54.083Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://mattermost.com/security-updates","label":"responsibledisclosure@mattermost.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16047","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-16047 — Mattermost versions 11.7.x <= 11.7.6, 10.11.x <= 10.11.21, 11.8.x <= 11.8.3 fail to validate that us…","description":"Mattermost versions 11.7.x <= 11.7.6, 10.11.x <= 10.11.21, 11.8.x <= 11.8.3 fail to validate that users have read access to a channel before linking a board to it, which allows an authenticated attacker to discover the membership of private channels on the same team via creating, patching, importing…","indicators":{"cves":["CVE-2026-16047"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T15:16:54.193Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://mattermost.com/security-updates","label":"responsibledisclosure@mattermost.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16048","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-16048 — Mattermost versions 11.8.x <= 11.8.2, 11.7.x <= 11.7.6, 10.11.x <= 10.11.21 fail to restrict channel…","description":"Mattermost versions 11.8.x <= 11.8.2, 11.7.x <= 11.7.6, 10.11.x <= 10.11.21 fail to restrict channel member role assignment to channel-scoped roles which allows a channel administrator to gain additional channel permissions via the channel member roles API.. Mattermost Advisory ID: MMSA-2026-00697","indicators":{"cves":["CVE-2026-16048"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T15:16:54.310Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://mattermost.com/security-updates","label":"responsibledisclosure@mattermost.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16049","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-16049 — Mattermost Plugins versions <=11.8 10.20.11 11.5.7.0 _The Mattermost GitLab plugin fails to verify c…","description":"Mattermost Plugins versions <=11.8 10.20.11 11.5.7.0 _The Mattermost GitLab plugin fails to verify channel permissions when processing API requests with a caller-supplied_ {{post_id}}_, and fails to validate the_ {{web_url}} _parameter against the configured GitLab instance, which allows an authenti…","indicators":{"cves":["CVE-2026-16049"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T15:16:54.420Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://mattermost.com/security-updates","label":"responsibledisclosure@mattermost.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-55704","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-55704 — Discourse is an open-source discussion platform. Prior o 2026.1.6, 2026.5.2, 2026.6.1, and 2026.7.0,…","description":"Discourse is an open-source discussion platform. Prior o 2026.1.6, 2026.5.2, 2026.6.1, and 2026.7.0, users who were allowed to view a group’s activity, but were not permitted to see shared drafts, could still receive shared-draft entries through the group posts and group mentions endpoints. This cou…","indicators":{"cves":["CVE-2026-55704"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T16:16:59.057Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/discourse/discourse/security/advisories/GHSA-fxw4-38v9-76v8","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-59829","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-59829 — Discourse is an open-source discussion platform. Prior to 2026.1.6, 2026.5.2, 2026.6.1, and 2026.7.1…","description":"Discourse is an open-source discussion platform. Prior to 2026.1.6, 2026.5.2, 2026.6.1, and 2026.7.1, on sites with category group moderation enabled, the review queue could include an excerpt (and permalink) of the private message attached to a flag, even when the reviewing category moderator was n…","indicators":{"cves":["CVE-2026-59829"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T16:17:01.687Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/discourse/discourse/commit/4df0e54f59361c78606b578ad12a2c39b4dd9f59","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/discourse/discourse/commit/58e45dc7c92d19d5294c73fbcd3833c73dc51754","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/discourse/discourse/commit/74c8522a197658c69b0adefa182f601ce85dcefa","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/discourse/discourse/commit/e56bd3ec58ae387946220821d1ce214eed02d1b9","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/discourse/discourse/pull/41527","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/discourse/discourse/security/advisories/GHSA-wmc6-pmxp-xw5w","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-68762","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-68762 — In JetBrains Ktor before 3.4.1 potential DoS attack via WebSocket decompression was possible","description":"In JetBrains Ktor before 3.4.1 potential DoS attack via WebSocket decompression was possible","indicators":{"cves":["CVE-2026-68762"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T16:17:30.237Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://www.jetbrains.com/privacy-security/issues-fixed/","label":"cve@jetbrains.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74858","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74858 — A vulnerability has been found in jae-jae fetcher-mcp up to 0.3.9. Impacted is the function fetch_ur…","description":"A vulnerability has been found in jae-jae fetcher-mcp up to 0.3.9. Impacted is the function fetch_url/fetch_urls of the file /latest/meta-data/iam/security-credentials/ of the component URL Validation. Such manipulation leads to server-side request forgery. It is possible to launch the attack remote…","indicators":{"cves":["CVE-2026-74858"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T16:17:49.307Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/jae-jae/fetcher-mcp/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/jae-jae/fetcher-mcp/issues/37","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-74858","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/876015","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391221","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391221/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75046","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75046 — In JetBrains YouTrack before 2026.2.18112 an authenticated user could enumerate accounts via the use…","description":"In JetBrains YouTrack before 2026.2.18112 an authenticated user could enumerate accounts via the users search endpoint","indicators":{"cves":["CVE-2026-75046"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T16:17:51.647Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://www.jetbrains.com/privacy-security/issues-fixed/","label":"cve@jetbrains.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75047","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75047 — In JetBrains YouTrack before 2026.2.18177 doS attack was possible via a decompression bomb in the im…","description":"In JetBrains YouTrack before 2026.2.18177 doS attack was possible via a decompression bomb in the import endpoint","indicators":{"cves":["CVE-2026-75047"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T16:17:51.757Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://www.jetbrains.com/privacy-security/issues-fixed/","label":"cve@jetbrains.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75049","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75049 — In JetBrains YouTrack before 2026.1.13903, 2026.2.17950 an authenticated user could read restricted…","description":"In JetBrains YouTrack before 2026.1.13903, \n2026.2.17950 an authenticated user could read restricted articles from other projects via the draft creation endpoint","indicators":{"cves":["CVE-2026-75049"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T16:17:51.987Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://www.jetbrains.com/privacy-security/issues-fixed/","label":"cve@jetbrains.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75053","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75053 — In JetBrains IntelliJ IDEA before 2026.2.1 sSRF was possible via the DevKit debug listener endpoint","description":"In JetBrains IntelliJ IDEA before 2026.2.1 sSRF was possible via the DevKit debug listener endpoint","indicators":{"cves":["CVE-2026-75053"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T16:17:52.430Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://www.jetbrains.com/privacy-security/issues-fixed/","label":"cve@jetbrains.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75054","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75054 — In JetBrains IntelliJ IDEA before 2026.2.1 sSRF was possible via the OpenAPI preview proxy in untrus…","description":"In JetBrains IntelliJ IDEA before 2026.2.1 sSRF was possible via the OpenAPI preview proxy in untrusted projects","indicators":{"cves":["CVE-2026-75054"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T16:17:52.543Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://www.jetbrains.com/privacy-security/issues-fixed/","label":"cve@jetbrains.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75055","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75055 — In JetBrains IntelliJ IDEA before 2026.2.1 hadoop ResourceManager could read local files via XXE","description":"In JetBrains IntelliJ IDEA before 2026.2.1 hadoop ResourceManager could read local files via XXE","indicators":{"cves":["CVE-2026-75055"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T16:17:52.657Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://www.jetbrains.com/privacy-security/issues-fixed/","label":"cve@jetbrains.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75057","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75057 — In JetBrains IntelliJ IDEA before 2026.1.5 git credentials were written in plaintext to the IDE log","description":"In JetBrains IntelliJ IDEA before 2026.1.5 git credentials were written in plaintext to the IDE log","indicators":{"cves":["CVE-2026-75057"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T16:17:52.880Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://www.jetbrains.com/privacy-security/issues-fixed/","label":"cve@jetbrains.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75058","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75058 — In JetBrains IntelliJ IDEA before 2026.2.1 xXE was possible in the Eclipse settings importers","description":"In JetBrains IntelliJ IDEA before 2026.2.1 xXE was possible in the Eclipse settings importers","indicators":{"cves":["CVE-2026-75058"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T16:17:52.977Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://www.jetbrains.com/privacy-security/issues-fixed/","label":"cve@jetbrains.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75059","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75059 — In JetBrains PyCharm before 2026.2.1 code execution via Quick Documentation was possible","description":"In JetBrains PyCharm before 2026.2.1 code execution via Quick Documentation was possible","indicators":{"cves":["CVE-2026-75059"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T16:17:53.110Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://www.jetbrains.com/privacy-security/issues-fixed/","label":"cve@jetbrains.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-12519","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-12519 — The WNC-M14A2A LTE-M modem driver mishandles unsolicited %NOTIFYEV: events in on_cmd_socknotifyev()…","description":"The WNC-M14A2A LTE-M modem driver mishandles unsolicited %NOTIFYEV: events in on_cmd_socknotifyev() (drivers/modem/vendor_standalone/wncm14a2a.c). The response line is linearized into a fixed 40-byte stack buffer via net_buf_linearize(), which caps the copy at 39 bytes and returns out_len <= 39. The…","indicators":{"cves":["CVE-2026-12519"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T17:16:38.867Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/zephyrproject-rtos/zephyr/commit/c516cb7c14f8b0537811764daa94bedc50c230f3","label":"vulnerabilities@zephyrproject.org","domainType":"primary"},{"url":"https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-8hrc-q8cp-6xhf","label":"vulnerabilities@zephyrproject.org","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-12629","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-12629 — The ARM PL011 UART driver in drivers/serial/uart_pl011.c fails to acknowledge receive error interrup…","description":"The ARM PL011 UART driver in drivers/serial/uart_pl011.c fails to acknowledge receive error interrupts. On the PL011, the framing, parity, break, and overrun error interrupts (PL011_IMSC_ERROR_MASK) are cleared only by writing the interrupt-clear register UARTICR; reading the data register clears th…","indicators":{"cves":["CVE-2026-12629"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T17:16:39.010Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/zephyrproject-rtos/zephyr/commit/1069b6822ac90da2b9e6dc8a5bbe3873e9f92818","label":"vulnerabilities@zephyrproject.org","domainType":"primary"},{"url":"https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-36rp-2hcp-f5hv","label":"vulnerabilities@zephyrproject.org","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-12630","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-12630 — Zephyr's 6LoWPAN IP Header Compression (IPHC) uncompression code contains an out-of-bounds read in g…","description":"Zephyr's 6LoWPAN IP Header Compression (IPHC) uncompression code contains an out-of-bounds read in get_ihpc_inlined_size() (subsys/net/ip/6lo.c). The destination inline size is looked up in da_inline_size_table, which has 13 entries, using an index built from the M, DAC and DAM bits of the received…","indicators":{"cves":["CVE-2026-12630"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T17:16:39.130Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/zephyrproject-rtos/zephyr/commit/1bbb7aefa69eaedc22281ce33aa7a2d5089d5a0e","label":"vulnerabilities@zephyrproject.org","domainType":"primary"},{"url":"https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-45c8-pmgj-6jrc","label":"vulnerabilities@zephyrproject.org","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-68517","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-68517 — Glances is an open-source system cross-platform monitoring tool. Prior to 4.5.6, the cors_origins gu…","description":"Glances is an open-source system cross-platform monitoring tool. Prior to 4.5.6, the cors_origins guard in glances/outputs/glances_restful_api.py uses exact list equality instead of wildcard membership, allowing a multi-origin list containing the wildcard to retain cors_credentials and expose authen…","indicators":{"cves":["CVE-2026-68517"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T17:16:40.173Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/nicolargo/glances/commit/890858944ab9d03730ec6b1ba42d4015e6d85db5","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/nicolargo/glances/releases/tag/v4.5.6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/nicolargo/glances/security/advisories/GHSA-fp27-88fp-2phg","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/nicolargo/glances/security/advisories/GHSA-fp27-88fp-2phg","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-48053","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-48053 — Kolibri is an offline-first education platform. Prior to version 0.19.4, several Kolibri API endpoin…","description":"Kolibri is an offline-first education platform. Prior to version 0.19.4, several Kolibri API endpoints accept an unvalidated `baseurl` parameter and fetch attacker-controlled URLs from the Kolibri server, reflecting the response body back to the caller. The original report identified two endpoints o…","indicators":{"cves":["CVE-2026-48053"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T18:16:39.660Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/learningequality/kolibri/releases/tag/v0.19.4","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/learningequality/kolibri/security/advisories/GHSA-4mj9-pf4r-cqrc","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/pypa/advisory-database/tree/main/vulns/kolibri/PYSEC-2026-2554.yaml","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/learningequality/kolibri/security/advisories/GHSA-4mj9-pf4r-cqrc","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-50771","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-50771 — Cross Site Scripting vulnerability in Squirro Cognitive Search < 3.14.2 allows a remote attacker to…","description":"Cross Site Scripting vulnerability in Squirro Cognitive Search < 3.14.2 allows a remote attacker to execute arbtirary code via the Email Notification, Create Evaluation Sets and HTML Editor functions.","indicators":{"cves":["CVE-2026-50771"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T18:17:09.100Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://docs.squirro.com/en/latest/products/cognitive-search.html","label":"cve@mitre.org","domainType":"other"},{"url":"https://github.com/Henkel-CyberVM/CVEs/tree/main/CVE-2026-50771","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/Henkel-CyberVM/CVEs/tree/main/CVE-2026-50771","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-68520","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-68520 — Glances is an open-source system cross-platform monitoring tool. Prior to 4.5.6, as_dict_secure() in…","description":"Glances is an open-source system cross-platform monitoring tool. Prior to 4.5.6, as_dict_secure() in glances/config.py checks only option names and exposes public_username and credentials embedded in public_api values through unauthenticated GET /api/4/config and GET /api/4/config/ip requests. This…","indicators":{"cves":["CVE-2026-68520"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T18:18:06.753Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/nicolargo/glances/commit/8d0f8276c2abd2e9d400bd6c84bdfba0dfcab065","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/nicolargo/glances/releases/tag/v4.5.6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/nicolargo/glances/security/advisories/GHSA-4h34-v6r8-mmjc","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/nicolargo/glances/security/advisories/GHSA-4h34-v6r8-mmjc","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-73424","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-73424 — Astro is a web framework for content-driven websites. From 10.0.3 until 11.0.3, the Astro Vercel ada…","description":"Astro is a web framework for content-driven websites. From 10.0.3 until 11.0.3, the Astro Vercel adapter in packages/integrations/vercel/src/serverless/entrypoint.ts accepts x_astro_path for the public /_isr function based only on the x-vercel-isr header, allowing unauthenticated GET requests to ren…","indicators":{"cves":["CVE-2026-73424"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T18:18:13.873Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/withastro/astro/commit/3a43cf0f3690a8e33cb30109bc5165611cf38fcd","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/withastro/astro/pull/17370","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/withastro/astro/releases/tag/@astrojs/vercel@11.0.3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/withastro/astro/security/advisories/GHSA-x27w-589x-frm2","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/withastro/astro/security/advisories/GHSA-x27w-589x-frm2","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75011","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75011 — A flaw has been found in kylecui NetForensicMCP 2.1.0. Impacted is the function execAsync of the fil…","description":"A flaw has been found in kylecui NetForensicMCP 2.1.0. Impacted is the function execAsync of the file index.js. Executing a manipulation of the argument interface/protocol can lead to command injection. The attack may be launched remotely. The exploit has been published and may be used. The project…","indicators":{"cves":["CVE-2026-75011"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T19:16:42.910Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/kylecui/NetForensicMCP/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/kylecui/NetForensicMCP/issues/1","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-75011","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/876016","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391265","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391265/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/876016","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-63667","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-63667 — ApostropheCMS is an open-source Node.js content management system. Prior to 3.6.2, the import-export…","description":"ApostropheCMS is an open-source Node.js content management system. Prior to 3.6.2, the import-export module in packages/import-export/lib/formats/gzip.js constructs an attachment source path from the attacker-controlled _id, name, and extension fields in aposAttachments.json without ensuring that th…","indicators":{"cves":["CVE-2026-63667"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T20:16:44.720Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/apostrophecms/apostrophe/commit/87cccf44a23d09420875ca8a3765eb3db843836a","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/apostrophecms/apostrophe/security/advisories/GHSA-79qf-vqgc-7xx3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/apostrophecms/apostrophe/security/advisories/GHSA-79qf-vqgc-7xx3","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-63669","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-63669 — ApostropheCMS is an open-source Node.js content management system. Prior to 4.32.0, the page module'…","description":"ApostropheCMS is an open-source Node.js content management system. Prior to 4.32.0, the page module's move() operation fails to enforce the destination parent's _create permission because its oldParent archive condition disables the check for ordinary moves, allowing an authenticated editor or contr…","indicators":{"cves":["CVE-2026-63669"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T20:16:44.870Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/apostrophecms/apostrophe/commit/d50c6ad61b9c1788958752358f1fca714cc8368c","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/apostrophecms/apostrophe/security/advisories/GHSA-wr5r-wqp2-x4fh","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-63670","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-63670 — ApostropheCMS is an open-source Node.js content management system. Prior to 2.17.6, sanitizeHtml() c…","description":"ApostropheCMS is an open-source Node.js content management system. Prior to 2.17.6, sanitizeHtml() can pass disallowed executable markup through packages/sanitize-html/index.js when textarea or xmp is included in allowedTags because a literal solidus after the raw-text end-tag name is treated as tex…","indicators":{"cves":["CVE-2026-63670"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T20:16:45.000Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/apostrophecms/apostrophe/commit/eae1fb2b72ec5d1c27d0977509c6482a0408f725","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/apostrophecms/apostrophe/pull/5501","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/apostrophecms/apostrophe/security/advisories/GHSA-jxwj-j7wr-gfrw","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/apostrophecms/apostrophe/security/advisories/GHSA-jxwj-j7wr-gfrw","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-71486","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-71486 — vLLM is an inference and serving engine for large language models. Prior to 0.26.0, the /v1/completi…","description":"vLLM is an inference and serving engine for large language models. Prior to 0.26.0, the /v1/completions/derender and /v1/chat/completions/derender endpoints accept caller-supplied GenerateResponse objects whose generate_responses, choices, token_ids, prompt_logprobs, logprobs.content, top_logprobs,…","indicators":{"cves":["CVE-2026-71486"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T20:16:45.927Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/vllm-project/vllm/commit/8e61b646e2d157f9b93451fa048f9c8530c8a67b","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/vllm-project/vllm/pull/47260","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/vllm-project/vllm/releases/tag/v0.26.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/vllm-project/vllm/security/advisories/GHSA-8737-qx52-hjff","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75012","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75012 — A security vulnerability has been detected in TOTOLINK EX1200L 9.3.5u.6146_B20201023. Affected by th…","description":"A security vulnerability has been detected in TOTOLINK EX1200L 9.3.5u.6146_B20201023. Affected by this issue is the function setPasswordCfg of the file /cgi-bin/cstecgi.cgi of the component Password Configuration Handler. The manipulation leads to null pointer dereference. The attack can be initiate…","indicators":{"cves":["CVE-2026-75012"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T20:16:47.317Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://gist.github.com/wyxstarry/afdc067090575c216a9d2622c3338e5c","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-75012","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/876022","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391272","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391272/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.totolink.net/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75013","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75013 — A vulnerability was detected in TOTOLINK EX1200L 9.3.5u.6146_B20201023. This affects the function se…","description":"A vulnerability was detected in TOTOLINK EX1200L 9.3.5u.6146_B20201023. This affects the function setWizardCfg of the file /cgi-bin/cstecgi.cgi. The manipulation results in null pointer dereference. The attack can be launched remotely. The exploit is now public and may be used.","indicators":{"cves":["CVE-2026-75013"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T20:16:47.483Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://gist.github.com/wyxstarry/21e6c2853891a3beb140a7c879069f9f","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-75013","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/876033","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391273","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391273/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.totolink.net/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-40506","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-40506 — OpenEMR before 8.2.0 contains a path traversal vulnerability in the standard_tables_manage.php inter…","description":"OpenEMR before 8.2.0 contains a path traversal vulnerability in the standard_tables_manage.php interface where the db GET parameter is passed without validation to temp_dir_cleanup(), which joins the value to the PHP temporary directory path and recursively deletes the resulting directory. Attackers…","indicators":{"cves":["CVE-2026-40506"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:44.930Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/openemr/openemr/commit/2d8a69f0f343c8e8c6ee1b42d224c24a7a4ba415","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/openemr/openemr/pull/11951","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/openemr/openemr/releases/tag/v8_2_0","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/openemr/openemr/security/advisories/GHSA-hj9x-33vw-5g3x","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/openemr-path-traversal-arbitrary-directory-deletion-via-standard-tables-manage-php","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/openemr/openemr/security/advisories/GHSA-hj9x-33vw-5g3x","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-44845","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-44845 — JumpServer is an open source bastion host and an operation and maintenance security audit system. Pr…","description":"JumpServer is an open source bastion host and an operation and maintenance security audit system. Prior to 4.10.17, an authenticated administrator with Applet Host management and deployment permissions can inject Jinja2 expressions into the IP/Host field or Core Service Address field, causing Ansibl…","indicators":{"cves":["CVE-2026-44845","CVE-2026-44846"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:45.083Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/jumpserver/jumpserver/commit/cc57ba0de5f6015746fae11cfc62402b11618e59","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/jumpserver/jumpserver/pull/16749","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/jumpserver/jumpserver/pull/16886","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/jumpserver/jumpserver/releases/tag/v4.10.17","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/jumpserver/jumpserver/security/advisories/GHSA-22h6-pcgh-9v7q","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/jumpserver/jumpserver/commit/1803be11a410eb99cd171d47053b697a119c4a50","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/jumpserver/jumpserver/pull/16662","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/jumpserver/jumpserver/security/advisories/GHSA-j836-99w5-523r","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-54336","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-54336 — JumpServer is an open source bastion host and an operation and maintenance security audit system. Fr…","description":"JumpServer is an open source bastion host and an operation and maintenance security audit system. From 4.8.0 until 4.10.17, an authenticated user with SFTP permission to an authorized asset can submit crafted traversal paths through the KoKo Web Terminal SFTP feature, causing AssetDir.GetRealPath()…","indicators":{"cves":["CVE-2026-54336"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:45.930Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/jumpserver/jumpserver/security/advisories/GHSA-x6rg-36j6-76vr","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/jumpserver/koko/commit/02fabebe27dacce89114fba122c667a946fd12ea","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/jumpserver/koko/releases/tag/v4.10.17","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/jumpserver/jumpserver/security/advisories/GHSA-x6rg-36j6-76vr","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-65976","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-65976 — Deskflow is a keyboard and mouse sharing app. From 1.17.0 until continuous build 1.26.0.300, a conne…","description":"Deskflow is a keyboard and mouse sharing app. From 1.17.0 until continuous build 1.26.0.300, a connected peer can send repeated DCLP DataChunk messages to ClipboardChunk::assemble() in src/lib/deskflow/ClipboardChunk.cpp, causing the server path in src/lib/server/ClientProxy1_6.cpp or client path in…","indicators":{"cves":["CVE-2026-65976"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:47.027Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/deskflow/deskflow/commit/8a535fd5dd48315eaaf6b93d5c7534d0592addef","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/deskflow/deskflow/commit/bcd3a658fc3b2ad735146fdc9efefa9462d195b7","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/deskflow/deskflow/security/advisories/GHSA-jf7g-qghg-p54x","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-67925","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-67925 — Cross Site Scripting vulnerability in JeecgBoot v.3.9.2 allows a remote attacker to execute arbitrar…","description":"Cross Site Scripting vulnerability in JeecgBoot v.3.9.2 allows a remote attacker to execute arbitrary code via the endpoint /airag/chat/upload","indicators":{"cves":["CVE-2026-67925"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:47.397Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/jeecgboot/JeecgBoot/issues/9773","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/jeecgboot/JeecgBoot/issues/9773","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-68765","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-68765 — hashcat master branch builds after v7.1.2 contain a heap buffer overflow vulnerability in the KeePas…","description":"hashcat master branch builds after v7.1.2 contain a heap buffer overflow vulnerability in the KeePass AESKDF/KDBX v4 module (module 34301) that allows attackers to corrupt adjacent heap memory by supplying an oversized ninth hash field token. The module accepts up to 600 hex characters for the ninth…","indicators":{"cves":["CVE-2026-68765"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:48.113Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/hashcat/hashcat","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/hashcat/hashcat/commit/6f374c4ff7d5dc951530fbbbcf6b45e3c169b100","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/hashcat/hashcat/pull/4755","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/hashcat-keepass-kdbx-v4-module-heap-buffer-overflow-via-token-field","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73560","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-73560 — vLLM is an inference and serving engine for large language models. Prior to 0.26.0, the MiMoV2OmniMu…","description":"vLLM is an inference and serving engine for large language models. Prior to 0.26.0, the MiMoV2OmniMultiModalProcessor in vllm/transformers_utils/processors/mimo_v2_omni.py passes attacker-controlled image and audio strings through _fetch_image, requests.get, and Image.open instead of MediaConnector,…","indicators":{"cves":["CVE-2026-73560"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:48.960Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/vllm-project/vllm/commit/54503ecec0f3ac31e5ecfc5f28652e4cc42307b5","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/vllm-project/vllm/pull/43117","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/vllm-project/vllm/releases/tag/v0.26.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/vllm-project/vllm/security/advisories/GHSA-4hhp-h66f-j5j7","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/vllm-project/vllm/security/advisories/GHSA-4hhp-h66f-j5j7","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75104","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75104 — Hugging Face Transformers fails to validate shard filenames in checkpoint index files, allowing atta…","description":"Hugging Face Transformers fails to validate shard filenames in checkpoint index files, allowing attackers to read arbitrary files outside the model directory. Attackers can supply malicious index files with parent-directory references or absolute paths that are joined without validation, enabling fi…","indicators":{"cves":["CVE-2026-75104"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:49.340Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/huggingface/transformers","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/huggingface/transformers/blob/main/src/transformers/utils/hub.py","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/huggingface/transformers/issues/47176","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/huggingface/transformers/issues/47177","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/hugging-face-transformers-path-traversal-via-checkpoint-index","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/huggingface/transformers/issues/47176","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75108","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75108 — Next Terminal fails to enforce per-asset authorization checks on the portal ping and wake-on-LAN end…","description":"Next Terminal fails to enforce per-asset authorization checks on the portal ping and wake-on-LAN endpoints, allowing any authenticated user to probe and wake assets they are not granted access to. Attackers can call these endpoints with arbitrary asset identifiers to retrieve asset information inclu…","indicators":{"cves":["CVE-2026-75108"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:49.757Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/next-terminal/next-terminal","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/next-terminal/next-terminal/issues/573","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/next-terminal-missing-per-asset-authorization-on-portal-endpoints","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/next-terminal/next-terminal/issues/573","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75480","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75480 — OpenViking debug vector scroll and count endpoints apply only account-level scoping without user-lev…","description":"OpenViking debug vector scroll and count endpoints apply only account-level scoping without user-level access controls, allowing authenticated users to read all co-tenant records. Attackers can query these endpoints to retrieve private memories, resources, skills, and secret material belonging to ot…","indicators":{"cves":["CVE-2026-75480"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:50.477Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/volcengine/OpenViking","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/volcengine/OpenViking/blob/main/openviking/storage/viking_vector_index_backend.py","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/volcengine/OpenViking/issues/3724","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/openviking-debug-vector-endpoints-multi-tenant-data-exposure","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-10080","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-10080 — Mattermost versions 11.7.x <= 11.7.6, 10.11.x <= 10.11.21, 11.8.x <= 11.8.3 fails to validate WebSoc…","description":"Mattermost versions 11.7.x <= 11.7.6, 10.11.x <= 10.11.21, 11.8.x <= 11.8.3 fails to validate WebSocket command field types which allows an authenticated user to crash the plugin process and deny service to all Boards users via a custom_focalboard_SUBSCRIBE_TEAM message with a non-string teamId.. Ma…","indicators":{"cves":["CVE-2026-10080"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T22:16:58.607Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://mattermost.com/security-updates","label":"responsibledisclosure@mattermost.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-28984","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-28984 — The issue was addressed with improved memory handling. This issue is fixed in iOS 18.7.10 and iPadOS…","description":"The issue was addressed with improved memory handling. This issue is fixed in iOS 18.7.10 and iPadOS 18.7.10. Processing maliciously crafted web content may lead to an unexpected Safari crash.","indicators":{"cves":["CVE-2026-28984"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T22:17:04.010Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://support.apple.com/en-us/148287","label":"product-security@apple.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-43667","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-43667 — A reachable assertion was addressed with improved input validation. This issue is fixed in iOS 18.7.…","description":"A reachable assertion was addressed with improved input validation. This issue is fixed in iOS 18.7.10 and iPadOS 18.7.10. An attacker in a privileged network position may be able to cause a denial-of-service.","indicators":{"cves":["CVE-2026-43667"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T22:17:06.420Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://support.apple.com/en-us/148287","label":"product-security@apple.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-43795","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-43795 — The issue was addressed with improved memory handling. This issue is fixed in Safari 26.6.1, iOS 18.…","description":"The issue was addressed with improved memory handling. This issue is fixed in Safari 26.6.1, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2. Processing maliciously crafted web content may lead to an unexpected Safari crash.","indicators":{"cves":["CVE-2026-43795","CVE-2026-65338","CVE-2026-65341"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T22:17:11.560Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://support.apple.com/en-us/148281","label":"product-security@apple.com","domainType":"other"},{"url":"https://support.apple.com/en-us/148282","label":"product-security@apple.com","domainType":"other"},{"url":"https://support.apple.com/en-us/148286","label":"product-security@apple.com","domainType":"other"},{"url":"https://support.apple.com/en-us/148287","label":"product-security@apple.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-45791","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-45791 — Dokploy is a free, self-hostable Platform as a Service (PaaS). Prior to 0.29.6, Dokploy's user.updat…","description":"Dokploy is a free, self-hostable Platform as a Service (PaaS). Prior to 0.29.6, Dokploy's user.update procedure in apps/dokploy/server/api/routers/user.ts updates account.password without deleting other rows from session, allowing a compromised better-auth.session_token session to remain valid for u…","indicators":{"cves":["CVE-2026-45791"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T22:17:14.333Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/Dokploy/dokploy/commit/a07106d649991ea09892220873ea3243766c3e08","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Dokploy/dokploy/pull/4475","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Dokploy/dokploy/security/advisories/GHSA-rr9m-w87g-46f3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Dokploy/dokploy/security/advisories/GHSA-rr9m-w87g-46f3","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-63178","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-63178 — Onyx is an open-source AI platform. Prior to 4.3.0, Onyx Enterprise Edition's PATCH /manage/admin/us…","description":"Onyx is an open-source AI platform. Prior to 4.3.0, Onyx Enterprise Edition's PATCH /manage/admin/user-group/{user_group_id} and POST /manage/admin/user-group/{user_group_id}/add-users endpoints in ee/onyx/server/user_group/api.py call update_user_group and add_users_to_user_group in ee/onyx/db/user…","indicators":{"cves":["CVE-2026-63178"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T22:17:16.130Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/onyx-dot-app/onyx/commit/46e19cc2750fed659488cb12a1f171016ba5a099","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/onyx-dot-app/onyx/commit/b9e1c6894be3c237283f4b5fd4eb0af935b40664","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/onyx-dot-app/onyx/pull/12525","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/onyx-dot-app/onyx/pull/12549","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/onyx-dot-app/onyx/releases/tag/v4.3.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/onyx-dot-app/onyx/security/advisories/GHSA-7f48-vgpj-h95m","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/onyx-dot-app/onyx/security/advisories/GHSA-7f48-vgpj-h95m","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-64715","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-64715 — A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari…","description":"A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.6.1, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2. Processing maliciously crafted web content may lead to an unexpected process crash.","indicators":{"cves":["CVE-2026-64715","CVE-2026-64787"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T22:17:17.343Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://support.apple.com/en-us/148281","label":"product-security@apple.com","domainType":"other"},{"url":"https://support.apple.com/en-us/148282","label":"product-security@apple.com","domainType":"other"},{"url":"https://support.apple.com/en-us/148286","label":"product-security@apple.com","domainType":"other"},{"url":"https://support.apple.com/en-us/148287","label":"product-security@apple.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-64760","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-64760 — An information leakage was addressed with additional validation. This issue is fixed in iOS 18.7.10…","description":"An information leakage was addressed with additional validation. This issue is fixed in iOS 18.7.10 and iPadOS 18.7.10. An app may be able to leak sensitive kernel state.","indicators":{"cves":["CVE-2026-64760"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T22:17:20.937Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://support.apple.com/en-us/148287","label":"product-security@apple.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-64778","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-64778 — The issue was addressed with improved checks. This issue is fixed in Safari 26.6.1, iOS 18.7.10 and…","description":"The issue was addressed with improved checks. This issue is fixed in Safari 26.6.1, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2. Visiting a maliciously crafted website may leak sensitive data.","indicators":{"cves":["CVE-2026-64778","CVE-2026-64780"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T22:17:22.777Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://support.apple.com/en-us/148281","label":"product-security@apple.com","domainType":"other"},{"url":"https://support.apple.com/en-us/148282","label":"product-security@apple.com","domainType":"other"},{"url":"https://support.apple.com/en-us/148286","label":"product-security@apple.com","domainType":"other"},{"url":"https://support.apple.com/en-us/148287","label":"product-security@apple.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-64781","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-64781 — The issue was addressed with improved input validation. This issue is fixed in Safari 26.6.1, iOS 18…","description":"The issue was addressed with improved input validation. This issue is fixed in Safari 26.6.1, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2. Processing maliciously crafted web content may lead to an unexpected Safari crash.","indicators":{"cves":["CVE-2026-64781"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T22:17:23.073Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://support.apple.com/en-us/148281","label":"product-security@apple.com","domainType":"other"},{"url":"https://support.apple.com/en-us/148282","label":"product-security@apple.com","domainType":"other"},{"url":"https://support.apple.com/en-us/148286","label":"product-security@apple.com","domainType":"other"},{"url":"https://support.apple.com/en-us/148287","label":"product-security@apple.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-64784","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-64784 — An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in Sa…","description":"An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in Safari 26.6.1, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2. Processing maliciously crafted web content may lead to an unexpected Safari crash.","indicators":{"cves":["CVE-2026-64784"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T22:17:23.273Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://support.apple.com/en-us/148281","label":"product-security@apple.com","domainType":"other"},{"url":"https://support.apple.com/en-us/148282","label":"product-security@apple.com","domainType":"other"},{"url":"https://support.apple.com/en-us/148286","label":"product-security@apple.com","domainType":"other"},{"url":"https://support.apple.com/en-us/148287","label":"product-security@apple.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-64788","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-64788 — The issue was addressed with improved memory handling. This issue is fixed in iOS 26.6.1 and iPadOS…","description":"The issue was addressed with improved memory handling. This issue is fixed in iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2. Processing maliciously crafted web content may lead to memory corruption.","indicators":{"cves":["CVE-2026-64788","CVE-2026-65330"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T22:17:23.480Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://support.apple.com/en-us/148281","label":"product-security@apple.com","domainType":"other"},{"url":"https://support.apple.com/en-us/148282","label":"product-security@apple.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-65329","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-65329 — An authentication issue was addressed with improved state management. This issue is fixed in iOS 26.…","description":"An authentication issue was addressed with improved state management. This issue is fixed in iOS 26.6.1 and iPadOS 26.6.1. An attacker in a privileged network position may be able to bypass IPSec authentication and intercept network traffic.","indicators":{"cves":["CVE-2026-65329"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T22:17:23.830Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://support.apple.com/en-us/148282","label":"product-security@apple.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-65331","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-65331 — This issue was addressed through improved state management. This issue is fixed in Safari 26.6.1, iO…","description":"This issue was addressed through improved state management. This issue is fixed in Safari 26.6.1, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2. Processing maliciously crafted web content may lead to an unexpected Safari crash.","indicators":{"cves":["CVE-2026-65331","CVE-2026-65332","CVE-2026-65333","CVE-2026-65335","CVE-2026-65336","CVE-2026-65337","CVE-2026-65340","CVE-2026-65351"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T22:17:24.040Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://support.apple.com/en-us/148281","label":"product-security@apple.com","domainType":"other"},{"url":"https://support.apple.com/en-us/148282","label":"product-security@apple.com","domainType":"other"},{"url":"https://support.apple.com/en-us/148286","label":"product-security@apple.com","domainType":"other"},{"url":"https://support.apple.com/en-us/148287","label":"product-security@apple.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-65334","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-65334 — A memory corruption issue was addressed with improved state management. This issue is fixed in Safar…","description":"A memory corruption issue was addressed with improved state management. This issue is fixed in Safari 26.6.1, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2. Processing maliciously crafted web content may lead to an unexpected Safari crash.","indicators":{"cves":["CVE-2026-65334"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T22:17:24.330Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://support.apple.com/en-us/148281","label":"product-security@apple.com","domainType":"other"},{"url":"https://support.apple.com/en-us/148282","label":"product-security@apple.com","domainType":"other"},{"url":"https://support.apple.com/en-us/148286","label":"product-security@apple.com","domainType":"other"},{"url":"https://support.apple.com/en-us/148287","label":"product-security@apple.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-65339","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-65339 — A logic issue was addressed with improved checks. This issue is fixed in iOS 26.6.1 and iPadOS 26.6.…","description":"A logic issue was addressed with improved checks. This issue is fixed in iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2. An app may be able to leak sensitive user information.","indicators":{"cves":["CVE-2026-65339"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T22:17:24.850Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://support.apple.com/en-us/148281","label":"product-security@apple.com","domainType":"other"},{"url":"https://support.apple.com/en-us/148282","label":"product-security@apple.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-65347","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-65347 — The issue was addressed with improved checks. This issue is fixed in iOS 26.6.1 and iPadOS 26.6.1, m…","description":"The issue was addressed with improved checks. This issue is fixed in iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2. Processing an image may lead to a denial-of-service.","indicators":{"cves":["CVE-2026-65347"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T22:17:25.390Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://support.apple.com/en-us/148281","label":"product-security@apple.com","domainType":"other"},{"url":"https://support.apple.com/en-us/148282","label":"product-security@apple.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-65349","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-65349 — An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 26.6.…","description":"An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2. An app may be able to cause unexpected system termination or read kernel memory.","indicators":{"cves":["CVE-2026-65349"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T22:17:25.483Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://support.apple.com/en-us/148281","label":"product-security@apple.com","domainType":"other"},{"url":"https://support.apple.com/en-us/148282","label":"product-security@apple.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75077","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75077 — A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. Affected by…","description":"A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. Affected by this issue is some unknown functionality of the file /BSCE2.php. Such manipulation of the argument course leads to cross site scripting. The attack may be launched remotely. The exploit is publicly av…","indicators":{"cves":["CVE-2026-75077"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T22:17:26.880Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/i-QvQ-i/first-OvO/issues/4","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-75077","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/876543","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391305","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391305/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.sourcecodester.com/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-9859","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-9859 — Mattermost versions 11.7.x <= 11.7.6, 10.11.x <= 10.11.21, 11.8.x <= 11.8.3 fail to enforce Permissi…","description":"Mattermost versions 11.7.x <= 11.7.6, 10.11.x <= 10.11.21, 11.8.x <= 11.8.3 fail to enforce PermissionManageBoardRoles on the channelId field of the batch endpoint, which allows an authenticated board editor to relink any board they can edit to an arbitrary channel via a crafted PATCH request. Matte…","indicators":{"cves":["CVE-2026-9859"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T22:17:27.343Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://mattermost.com/security-updates","label":"responsibledisclosure@mattermost.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75078","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75078 — A security flaw has been discovered in SourceCodester Class and Exam Timetabling System 1.0. This af…","description":"A security flaw has been discovered in SourceCodester Class and Exam Timetabling System 1.0. This affects an unknown part of the file /BSHRM1.php. Performing a manipulation of the argument course results in cross site scripting. Remote exploitation of the attack is possible. The exploit has been rel…","indicators":{"cves":["CVE-2026-75078"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T23:16:52.623Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/i-QvQ-i/first-OvO/issues/5","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-75078","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/876544","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391306","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391306/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.sourcecodester.com/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75081","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75081 — A vulnerability was detected in Webkul Bagisto up to 2.4.4. Impacted is an unknown function of the f…","description":"A vulnerability was detected in Webkul Bagisto up to 2.4.4. Impacted is an unknown function of the file /customer/account/rma/store. The manipulation of the argument rma_qty/resolution_type/rma_reason_id results in enforcement of behavioral workflow. The attack may be performed from remote. The expl…","indicators":{"cves":["CVE-2026-75081"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T00:16:53.710Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/Mitchell45/PHP_Web_POCs/blob/main/Bagisto/34_36_english_vulnerability_report.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-75081","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/870359","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391309","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391309/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75082","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75082 — A flaw has been found in Webkul Bagisto up to 2.4.4. The affected element is an unknown function of…","description":"A flaw has been found in Webkul Bagisto up to 2.4.4. The affected element is an unknown function of the file /customer/register of the component Customer-Registration Notification Email. This manipulation of the argument first_name/last_name causes basic cross site scripting. It is possible to initi…","indicators":{"cves":["CVE-2026-75082"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T00:16:53.867Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/Mitchell45/PHP_Web_POCs/blob/main/Bagisto/42_english_vulnerability_report.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-75082","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/870360","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391310","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391310/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75086","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75086 — A vulnerability has been found in itsourcecode Hospital Management System 1.0. The impacted element…","description":"A vulnerability has been found in itsourcecode Hospital Management System 1.0. The impacted element is an unknown function of the file /viewroom.php. Such manipulation of the argument delid leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the pu…","indicators":{"cves":["CVE-2026-75086"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T01:16:42.673Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/11snk/CVE/issues/3","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://itsourcecode.com/","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/cve/CVE-2026-75086","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/876772","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391311","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391311/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75087","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75087 — A vulnerability was found in itsourcecode Hospital Management System 1.0. This affects an unknown fu…","description":"A vulnerability was found in itsourcecode Hospital Management System 1.0. This affects an unknown function of the file /viewdepartment.php. Performing a manipulation of the argument delid results in sql injection. The attack can be initiated remotely. The exploit has been made public and could be us…","indicators":{"cves":["CVE-2026-75087"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T01:16:42.907Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/11snk/CVE/issues/4","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://itsourcecode.com/","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/cve/CVE-2026-75087","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/876773","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391312","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391312/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75088","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75088 — A vulnerability was determined in itsourcecode Hospital Management System 1.0. This impacts an unkno…","description":"A vulnerability was determined in itsourcecode Hospital Management System 1.0. This impacts an unknown function of the file /viewbilling.php. Executing a manipulation of the argument delid can lead to sql injection. The attack can be launched remotely. The exploit has been publicly disclosed and may…","indicators":{"cves":["CVE-2026-75088"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T01:16:43.067Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/CSDVi/cve/issues/1","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://itsourcecode.com/","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/cve/CVE-2026-75088","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/876802","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391313","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391313/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75090","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75090 — A vulnerability was detected in EricLBuehler Mistral.rs up to 0.8.22. Affected by this issue is the…","description":"A vulnerability was detected in EricLBuehler Mistral.rs up to 0.8.22. Affected by this issue is the function convert_gguf_to_hf_tokenizer of the file mistralrs-core/src/gguf/gguf_tokenizer.rs of the component GGUF Tokenizer. The manipulation of the argument eos_token_id/bos_token_id/unknown_token_id…","indicators":{"cves":["CVE-2026-75090"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T02:17:30.333Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/EricLBuehler/mistral.rs/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/EricLBuehler/mistral.rs/commit/cd5297e2ea5cb27c790bdcf2f3c2f1064a81d55e","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/EricLBuehler/mistral.rs/issues/2225","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/EricLBuehler/mistral.rs/pull/2282","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/EricLBuehler/mistral.rs/releases/tag/v0.8.23","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-75090","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/877270","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391327","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391327/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75093","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75093 — A security vulnerability has been detected in sonos tract up to 0.23.4. This impacts the function Te…","description":"A security vulnerability has been detected in sonos tract up to 0.23.4. This impacts the function Tensor::from_raw_dt_align of the file data/src/tensor.rs of the component ONNX Initializer Loader. Such manipulation leads to incorrect calculation of buffer size. The attack may be launched remotely. T…","indicators":{"cves":["CVE-2026-75093"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T02:17:30.540Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/sonos/tract/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/sonos/tract/commit/66b10bda8895f4bfaf8c205361f0125cdf51f99b","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/sonos/tract/issues/2390","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/sonos/tract/pull/2413","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-75093","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/877271","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391335","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391335/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75151","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75151 — A vulnerability has been found in SourceCodester Onlne Examination & Learning Management System 1.0.…","description":"A vulnerability has been found in SourceCodester Onlne Examination & Learning Management System 1.0. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross-site request forgery. The attack can be initiated remotely.","indicators":{"cves":["CVE-2026-75151"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T03:16:40.923Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://vuldb.com/cve/CVE-2026-75151","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/877726","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391392","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391392/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.sourcecodester.com/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19447","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19447 — Improper neutralization of input during web page generation ('cross-site scripting') vulnerability i…","description":"Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Fileorbis Informatics Services Trade Inc. FileOrbis allows Stored XSS.\n\nThis issue affects FileOrbis: before 16.5.","indicators":{"cves":["CVE-2026-19447","CVE-2026-66603","CVE-2026-27365","CVE-2026-66591"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T11:16:50.287Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-26-0850","label":"iletisim@usom.gov.tr","domainType":"other"},{"url":"https://patchstack.com/database/wordpress/plugin/simple-draft-list/vulnerability/wordpress-draft-list-plugin-2-6-4-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"},{"url":"https://patchstack.com/database/wordpress/plugin/organize-series/vulnerability/wordpress-publishpress-series-plugin-2-17-0-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"},{"url":"https://patchstack.com/database/wordpress/plugin/media-library-assistant/vulnerability/wordpress-media-library-assistant-plugin-3-39-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19608","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19608 — A flaw was found in the group policy provider of Keycloak authorization services, which is used to m…","description":"A flaw was found in the group policy provider of Keycloak authorization services, which is used to manage fine-grained access control to resources. The issue occurs when the system evaluates group-based policies using tokens that only contain group names rather than full paths. If two groups in diff…","indicators":{"cves":["CVE-2026-19608"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T11:16:50.403Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-19608","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2514530","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-5224","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-5224 — Cleartext storage of sensitive information vulnerability in Kriptok Crypto and Information Technolog…","description":"Cleartext storage of sensitive information vulnerability in Kriptok Crypto and Information Technologies Industry Trade Inc. Cryptosim allows Retrieve Embedded Sensitive Data.\n\nThis issue affects Cryptosim: before 3.1.0.229.","indicators":{"cves":["CVE-2026-5224"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:19:28.170Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-26-0852","label":"iletisim@usom.gov.tr","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74903","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74903 — SiYuan before v3.7.4 contains an insufficient access control vulnerability in the /api/lute/spinBloc…","description":"SiYuan before v3.7.4 contains an insufficient access control vulnerability in the /api/lute/spinBlockDOM endpoint, which is guarded only by CheckAuth middleware instead of CheckAdminRole like its sibling endpoint. Authenticated users with RoleEditor or RoleReader roles can invoke the endpoint to tra…","indicators":{"cves":["CVE-2026-74903"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:19:30.507Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-3j8q-5c8c-grwm","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/siyuan-before-insufficient-access-control-via-spinblockdom","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/siyuan-note/siyuan/security/advisories/GHSA-3j8q-5c8c-grwm","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-74907","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74907 — Grav before 2.0.15 contains a path traversal vulnerability in the static asset server within index.p…","description":"Grav before 2.0.15 contains a path traversal vulnerability in the static asset server within index.php that uses string prefix matching instead of directory-boundary validation. Unauthenticated attackers can access files in sibling directories by exploiting directory names that extend the base path…","indicators":{"cves":["CVE-2026-74907"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:19:31.047Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-4v9q-p283-qc2m","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/grav-before-path-traversal-via-plugin-asset-map-php","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74908","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74908 — Grav plugin-api before 1.0.15 contains a script injection vulnerability where the SVG sanitizer only…","description":"Grav plugin-api before 1.0.15 contains a script injection vulnerability where the SVG sanitizer only checks for the exact extension 'svg', allowing .svgz and .xhtml files to bypass sanitization and be stored unsanitized. Attackers with api.media.write permission can upload files containing executabl…","indicators":{"cves":["CVE-2026-74908"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:19:31.190Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-66xf-ggf4-6hmc","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/grav-plugin-api-before-script-injection-via-svg","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75107","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75107 — Grav Form Plugin before 9.1.19 fails to escape field-definition properties including prepend, append…","description":"Grav Form Plugin before 9.1.19 fails to escape field-definition properties including prepend, append, spacer text, section text, and select option labels in form templates. Attackers with form authoring privileges can inject arbitrary HTML and JavaScript that executes for all form visitors through u…","indicators":{"cves":["CVE-2026-75107"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:19:31.593Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-5jrr-wfgh-mhg9","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/grav-form-plugin-before-stored-xss-via-field-properties","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-5jrr-wfgh-mhg9","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75832","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75832 — The Grav API plugin (getgrav/grav-plugin-api, bundled with Grav 2.0) before version 1.0.14 (fixed in…","description":"The Grav API plugin (getgrav/grav-plugin-api, bundled with Grav 2.0) before version 1.0.14 (fixed in 1.0.15) contains a missing authorization vulnerability in BlueprintPathResolver::resolveUserScope(). The method gates the users/<name> scope on the account's raw super-admin ACL flag (access.api.supe…","indicators":{"cves":["CVE-2026-75832"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:19:33.230Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-435x-66r2-jwv2","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/grav-api-plugin-before-authorization-bypass","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75833","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75833 — The Grav API plugin (getgrav/grav-plugin-api, bundled with Grav 2.0's admin-next/API stack) before v…","description":"The Grav API plugin (getgrav/grav-plugin-api, bundled with Grav 2.0's admin-next/API stack) before version 1.0.14 contains an open redirect weakness in SsoController::sanitizeReturnTo(). The function rejects a literal '//' prefix but does not account for browsers normalizing backslashes to slashes i…","indicators":{"cves":["CVE-2026-75833"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["phishing"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:19:33.370Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-x72c-4jc4-8rh6","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/grav-api-plugin-open-redirect-via-backslash-bypass","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75834","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75834 — Grav before 2.0.14 contains a stored cross-site scripting vulnerability in the Security::detectXss()…","description":"Grav before 2.0.14 contains a stored cross-site scripting vulnerability in the Security::detectXss() function (system/src/Grav/Common/Security.php). All XSS detection patterns use the PCRE /u (UTF-8) modifier, so a single invalid UTF-8 byte anywhere in page content causes preg_match() to return fals…","indicators":{"cves":["CVE-2026-75834"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:19:33.513Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-q2j8-x8hf-63ch","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/grav-before-stored-xss-via-invalid-utf-8-byte","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75835","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75835 — Grav API plugin (getgrav/grav-plugin-api) before 1.0.14 contains a missing authorization vulnerabili…","description":"Grav API plugin (getgrav/grav-plugin-api) before 1.0.14 contains a missing authorization vulnerability in userPassesAuthorize() (AbstractApiController.php). The function fails to consult the calling request's API key scopes, relying instead on the account's raw super-admin flag and ACL grants. As a…","indicators":{"cves":["CVE-2026-75835"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:19:33.647Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-p57v-xhv3-mf2w","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/grav-api-plugin-before-missing-authorization","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-p57v-xhv3-mf2w","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75839","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75839 — ArcadeDB (com.arcadedb:arcadedb-server) versions <= 26.7.3 contain an insecure direct object referen…","description":"ArcadeDB (com.arcadedb:arcadedb-server) versions <= 26.7.3 contain an insecure direct object reference (IDOR) vulnerability in the Raft cluster-info endpoints (GetClusterHandler and PostBootstrapStateHandler), which authenticate but do not authorize access. On an ArcadeDB HA cluster (only reachable…","indicators":{"cves":["CVE-2026-75839"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:19:34.180Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/ArcadeData/arcadedb/security/advisories/GHSA-79wq-w74x-74ch","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/arcadedb-before-information-disclosure-via-cluster-endpoints","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75841","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75841 — ArcadeDB before 26.8.1 contains a denial of service vulnerability in the Cypher range() function tha…","description":"ArcadeDB before 26.8.1 contains a denial of service vulnerability in the Cypher range() function that allows authenticated users to exhaust server heap memory. Attackers can submit oversized range() expressions with large bounds to trigger OutOfMemoryError and cause temporary service degradation or…","indicators":{"cves":["CVE-2026-75841"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:19:34.463Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/ArcadeData/arcadedb/security/advisories/GHSA-xmjm-8q85-g778","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/arcadedb-before-denial-of-service-via-range","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/ArcadeData/arcadedb/security/advisories/GHSA-xmjm-8q85-g778","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75845","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75845 — ArcadeDB versions 26.4.2 through 26.7.3 contain an authorization bypass vulnerability in the set_ser…","description":"ArcadeDB versions 26.4.2 through 26.7.3 contain an authorization bypass vulnerability in the set_server_setting MCP server-level tool. SetServerSettingTool.execute() gates only on the global allowAdmin flag and never checks the caller's role, so in an MCP deployment with allowAdmin=true and a non-ro…","indicators":{"cves":["CVE-2026-75845"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:19:35.040Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/ArcadeData/arcadedb/security/advisories/GHSA-pff6-hp53-pj54","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/arcadedb-before-authorization-bypass-via-set-server-setting","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/ArcadeData/arcadedb/security/advisories/GHSA-pff6-hp53-pj54","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75850","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75850 — ArcadeDB before 26.8.1 fails to bind the authenticated principal (setCurrentUser) on its batch and t…","description":"ArcadeDB before 26.8.1 fails to bind the authenticated principal (setCurrentUser) on its batch and time-series HTTP handlers. Because no principal is bound on the worker thread, the engine's fine-grained per-type ACL layer (LocalBucket.checkPermissionsOnFile) does not execute for these handlers. In…","indicators":{"cves":["CVE-2026-75850"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:19:35.310Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://github.com/ArcadeData/arcadedb/security/advisories/GHSA-c23x-pqcj-7hfm","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/arcadedb-before-per-type-acl-bypass-via-batch-handlers","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16309","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-16309 — Authorization bypass through User-Controlled key vulnerability in Netiket Information Technologies E…","description":"Authorization bypass through User-Controlled key vulnerability in Netiket Information Technologies EdoWEB allows Accessing Functionality Not Properly Constrained by ACLs.\n\nThis issue affects EdoWEB: before 780-g7.","indicators":{"cves":["CVE-2026-16309"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:20.140Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-26-0853","label":"iletisim@usom.gov.tr","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74951","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74951 — Clickjacking issue in Firefox for Android. This vulnerability was fixed in Firefox 154.","description":"Clickjacking issue in Firefox for Android. This vulnerability was fixed in Firefox 154.","indicators":{"cves":["CVE-2026-74951"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:31.963Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=1978587","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74963","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74963 — Same-origin policy bypass in the Networking: Cookies component. This vulnerability was fixed in Fire…","description":"Same-origin policy bypass in the Networking: Cookies component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74963"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:33.560Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2050482","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-76/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-79/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74967","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74967 — Same-origin policy bypass in the Audio/Video: Playback component. This vulnerability was fixed in Fi…","description":"Same-origin policy bypass in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74967"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:34.070Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2055697","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-76/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-79/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74968","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74968 — Site isolation issue in the Graphics: WebRender component. This vulnerability was fixed in Firefox 1…","description":"Site isolation issue in the Graphics: WebRender component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74968"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:34.190Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2055738","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74970","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74970 — Site isolation issue in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox…","description":"Site isolation issue in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74970"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:34.440Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2056558","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74971","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74971 — Information disclosure in the DOM: UI Events & Focus Handling component. This vulnerability was fixe…","description":"Information disclosure in the DOM: UI Events & Focus Handling component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74971"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:34.563Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2057204","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-76/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-79/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74972","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74972 — Information disclosure in the DOM: Push Subscriptions component. This vulnerability was fixed in Fir…","description":"Information disclosure in the DOM: Push Subscriptions component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74972"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:34.727Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2059053","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-76/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-79/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74973","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74973 — Race condition, use-after-free in the Graphics component. This vulnerability was fixed in Firefox 15…","description":"Race condition, use-after-free in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74973"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:34.927Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2060357","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-75/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-76/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-79/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74974","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74974 — Same-origin policy bypass in the Graphics: ImageLib component. This vulnerability was fixed in Firef…","description":"Same-origin policy bypass in the Graphics: ImageLib component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74974"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:35.160Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2061794","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-75/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-76/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-79/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74975","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74975 — Spoofing issue in the Downloads component in Firefox for Android. This vulnerability was fixed in Fi…","description":"Spoofing issue in the Downloads component in Firefox for Android. This vulnerability was fixed in Firefox 154.","indicators":{"cves":["CVE-2026-74975"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:35.353Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=1842361","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74976","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74976 — JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox…","description":"JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74976"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:35.580Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=1952164","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-76/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-79/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74980","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74980 — Clickjacking issue in the Downloads component in Firefox for Android. This vulnerability was fixed i…","description":"Clickjacking issue in the Downloads component in Firefox for Android. This vulnerability was fixed in Firefox 154.","indicators":{"cves":["CVE-2026-74980"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:36.873Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2049034","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74984","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74984 — Race condition in the JavaScript Engine component. This vulnerability was fixed in Firefox 154, Fire…","description":"Race condition in the JavaScript Engine component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74984"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:39.263Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2053670","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-32467","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-32467 — Subscriber Server Side Request Forgery (SSRF) in [Aotuman] Grab WeChat Articles <= 2.0.1 versions.","description":"Subscriber Server Side Request Forgery (SSRF) in [Aotuman] Grab WeChat Articles <= 2.0.1 versions.","indicators":{"cves":["CVE-2026-32467"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T14:17:04.000Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/apoyl-grabweixin/vulnerability/wordpress-aotuman-grab-wechat-articles-plugin-2-0-1-server-side-request-forgery-ssrf-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-50139","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-50139 — goshs is a SimpleHTTPServer written in Go. Prior to version 2.1.0, `ShareHandler` reads the share to…","description":"goshs is a SimpleHTTPServer written in Go. Prior to version 2.1.0, `ShareHandler` reads the share token's `DownloadLimit` under `RLock`, releases the lock, serves the file, then re-acquires the lock to increment the counter. Concurrent requests all read the same `Downloaded`/`DownloadLimit` snapshot…","indicators":{"cves":["CVE-2026-50139"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:54.733Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://github.com/goshs-labs/goshs/security/advisories/GHSA-j48m-h7xq-2xpj","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/goshs-labs/goshs/security/advisories/GHSA-j48m-h7xq-2xpj","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-59949","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-59949 — yawkat LZ4 Java provides LZ4 compression for Java. Prior to 1.11.1, JNI-backed XXHash implementation…","description":"yawkat LZ4 Java provides LZ4 compression for Java. Prior to 1.11.1, JNI-backed XXHash implementations fail to validate the byte array object and the off and len arguments in XXHashFactory.nativeInstance().hash32().hash(), XXHashFactory.nativeInstance().hash64().hash(), XXHashFactory.nativeInstance()…","indicators":{"cves":["CVE-2026-59949"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:56.160Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://github.com/yawkat/lz4-java/commit/dbd86d04b8dd716e1c2bc626be54189997d910da","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/yawkat/lz4-java/releases/tag/v1.11.1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/yawkat/lz4-java/security/advisories/GHSA-xx22-p4ch-683r","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-66634","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-66634 — Subscriber Insecure Direct Object References (IDOR) in Modal Survey <= 2.0.2.2.3 versions.","description":"Subscriber Insecure Direct Object References (IDOR) in Modal Survey <= 2.0.2.2.3 versions.","indicators":{"cves":["CVE-2026-66634"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:57.950Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/modal-survey/vulnerability/wordpress-modal-survey-plugin-2-0-2-2-3-insecure-direct-object-references-idor-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66636","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-66636 — Contributor Cross Site Scripting (XSS) in Wise Chat <= 3.4 versions.","description":"Contributor Cross Site Scripting (XSS) in Wise Chat <= 3.4 versions.","indicators":{"cves":["CVE-2026-66636"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:58.217Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/wise-chat/vulnerability/wordpress-wise-chat-plugin-3-4-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66637","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-66637 — Contributor Cross Site Scripting (XSS) in Featured Video Plus <= 2.3.3 versions.","description":"Contributor Cross Site Scripting (XSS) in Featured Video Plus <= 2.3.3 versions.","indicators":{"cves":["CVE-2026-66637"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:58.357Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/featured-video-plus/vulnerability/wordpress-featured-video-plus-plugin-2-3-3-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66638","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-66638 — Contributor Cross Site Scripting (XSS) in Frontend Admin by DynamiApps <= 3.29.10 versions.","description":"Contributor Cross Site Scripting (XSS) in Frontend Admin by DynamiApps <= 3.29.10 versions.","indicators":{"cves":["CVE-2026-66638"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:58.500Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/acf-frontend-form-element/vulnerability/wordpress-frontend-admin-by-dynamiapps-plugin-3-29-10-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66639","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-66639 — Contributor Cross Site Scripting (XSS) in WPZOOM Forms – Contact Form Plugin for Gutenberg <= 2.0.4…","description":"Contributor Cross Site Scripting (XSS) in WPZOOM Forms – Contact Form Plugin for Gutenberg <= 2.0.4 versions.","indicators":{"cves":["CVE-2026-66639"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:58.623Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/wpzoom-forms/vulnerability/wordpress-wpzoom-forms-contact-form-plugin-for-gutenberg-plugin-2-0-4-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66640","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-66640 — Contributor Cross Site Scripting (XSS) in Login With Ajax <= 4.5.1 versions.","description":"Contributor Cross Site Scripting (XSS) in Login With Ajax <= 4.5.1 versions.","indicators":{"cves":["CVE-2026-66640"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:58.763Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/login-with-ajax/vulnerability/wordpress-login-with-ajax-plugin-4-5-1-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66641","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-66641 — Contributor Cross Site Scripting (XSS) in Video Conferencing with Zoom <= 4.6.8 versions.","description":"Contributor Cross Site Scripting (XSS) in Video Conferencing with Zoom <= 4.6.8 versions.","indicators":{"cves":["CVE-2026-66641"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:58.907Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/video-conferencing-with-zoom-api/vulnerability/wordpress-video-conferencing-with-zoom-plugin-4-6-8-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66643","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-66643 — Contributor Cross Site Scripting (XSS) in Wufoo Shortcode <= 1.55 versions.","description":"Contributor Cross Site Scripting (XSS) in Wufoo Shortcode <= 1.55 versions.","indicators":{"cves":["CVE-2026-66643"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:59.037Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/wufoo-shortcode/vulnerability/wordpress-wufoo-shortcode-plugin-1-55-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66644","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-66644 — Contributor Cross Site Scripting (XSS) in Typing Effect <= 1.3.7 versions.","description":"Contributor Cross Site Scripting (XSS) in Typing Effect <= 1.3.7 versions.","indicators":{"cves":["CVE-2026-66644"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:59.173Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/animated-typing-effect/vulnerability/wordpress-typing-effect-plugin-1-3-7-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66645","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-66645 — Contributor Cross Site Scripting (XSS) in Table Of Contents Block <= 1.5.0 versions.","description":"Contributor Cross Site Scripting (XSS) in Table Of Contents Block <= 1.5.0 versions.","indicators":{"cves":["CVE-2026-66645"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:59.300Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/table-of-contents-block/vulnerability/wordpress-table-of-contents-block-plugin-1-5-0-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66646","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-66646 — Contributor Cross Site Scripting (XSS) in WP Tab Widget <= 1.2.11 versions.","description":"Contributor Cross Site Scripting (XSS) in WP Tab Widget <= 1.2.11 versions.","indicators":{"cves":["CVE-2026-66646"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:59.430Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/wp-tab-widget/vulnerability/wordpress-wp-tab-widget-plugin-1-2-11-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66651","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-66651 — Unauthenticated Broken Access Control in MultiVendorX <= 5.0.14 versions.","description":"Unauthenticated Broken Access Control in MultiVendorX <= 5.0.14 versions.","indicators":{"cves":["CVE-2026-66651"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:59.560Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/dc-woocommerce-multi-vendor/vulnerability/wordpress-multivendorx-plugin-5-0-14-broken-access-control-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66679","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-66679 — Unauthenticated Broken Access Control in Appointment Hour Booking <= 1.5.91 versions.","description":"Unauthenticated Broken Access Control in Appointment Hour Booking <= 1.5.91 versions.","indicators":{"cves":["CVE-2026-66679"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:59.827Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/appointment-hour-booking/vulnerability/wordpress-appointment-hour-booking-plugin-1-5-91-broken-access-control-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-68565","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-68565 — Contributor Cross Site Scripting (XSS) in GeoDirectory <= 2.8.172 versions.","description":"Contributor Cross Site Scripting (XSS) in GeoDirectory <= 2.8.172 versions.","indicators":{"cves":["CVE-2026-68565"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:00.380Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/geodirectory/vulnerability/wordpress-geodirectory-plugin-2-8-172-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-68568","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-68568 — Subscriber Privilege Escalation in MasterStudy LMS <= 3.7.41 versions.","description":"Subscriber Privilege Escalation in MasterStudy LMS <= 3.7.41 versions.","indicators":{"cves":["CVE-2026-68568"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:00.653Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/masterstudy-lms-learning-management-system/vulnerability/wordpress-masterstudy-lms-plugin-3-7-41-privilege-escalation-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70657","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-70657 — Copyparty is a portable file server. Prior to 1.20.17, copyparty volumes with the dk or dks director…","description":"Copyparty is a portable file server. Prior to 1.20.17, copyparty volumes with the dk or dks directory-key flag combined with the fk or fka file-key flag can convert a valid file key into a directory key, granting read access to the containing folder. This vulnerability was only reachable if both typ…","indicators":{"cves":["CVE-2026-70657"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:01.077Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://github.com/9001/copyparty/commit/e40755331ba9449993ff482456e6bdd2c6deb950","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/9001/copyparty/releases/tag/v1.20.17","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/9001/copyparty/security/advisories/GHSA-x5pq-m9p8-f4vx","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-73189","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-73189 — Subscriber Insecure Direct Object References (IDOR) in WP Crowdfunding < 2.2.1 versions.","description":"Subscriber Insecure Direct Object References (IDOR) in WP Crowdfunding < 2.2.1 versions.","indicators":{"cves":["CVE-2026-73189"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:02.060Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/wp-crowdfunding/vulnerability/wordpress-wp-crowdfunding-plugin-2-2-1-insecure-direct-object-references-idor-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73348","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-73348 — Unauthenticated Broken Access Control in GiveWP < 4.16.6 versions.","description":"Unauthenticated Broken Access Control in GiveWP < 4.16.6 versions.","indicators":{"cves":["CVE-2026-73348"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:03.240Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/give/vulnerability/wordpress-givewp-plugin-4-16-6-broken-access-control-vulnerability-2?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73352","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-73352 — Unauthenticated Broken Access Control in GiveWP <= 4.16.5.1 versions.","description":"Unauthenticated Broken Access Control in GiveWP <= 4.16.5.1 versions.","indicators":{"cves":["CVE-2026-73352"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:03.653Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/give/vulnerability/wordpress-givewp-plugin-4-16-5-1-broken-access-control-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73359","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-73359 — Subscriber Cross Site Scripting (XSS) in WP Cookie Notice for GDPR, CCPA & ePrivacy Consent <= 4.3.9…","description":"Subscriber Cross Site Scripting (XSS) in WP Cookie Notice for GDPR, CCPA & ePrivacy Consent <= 4.3.9 versions.","indicators":{"cves":["CVE-2026-73359"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:04.217Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/gdpr-cookie-consent/vulnerability/wordpress-wp-cookie-notice-for-gdpr-ccpa-eprivacy-consent-plugin-4-3-9-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73379","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-73379 — Unauthenticated Bypass Vulnerability in Contact Form by Supsystic < 1.10.0 versions.","description":"Unauthenticated Bypass Vulnerability in Contact Form by Supsystic < 1.10.0 versions.","indicators":{"cves":["CVE-2026-73379"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:05.867Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/contact-form-by-supsystic/vulnerability/wordpress-contact-form-by-supsystic-plugin-1-10-0-bypass-vulnerability-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73383","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-73383 — Shop manager Arbitrary File Download in CTX Feed <= 6.6.47 versions.","description":"Shop manager Arbitrary File Download in CTX Feed <= 6.6.47 versions.","indicators":{"cves":["CVE-2026-73383"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:06.403Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/webappick-product-feed-for-woocommerce/vulnerability/wordpress-ctx-feed-plugin-6-6-46-arbitrary-file-download-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73395","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-73395 — Unauthenticated Insecure Direct Object References (IDOR) in Booking calendar, Appointment Booking Sy…","description":"Unauthenticated Insecure Direct Object References (IDOR) in Booking calendar, Appointment Booking System <= 3.2.36 versions.","indicators":{"cves":["CVE-2026-73395"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:06.823Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/booking-calendar/vulnerability/wordpress-booking-calendar-appointment-booking-system-plugin-3-2-36-insecure-direct-object-references-idor-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73398","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-73398 — Unauthenticated Broken Authentication in Piraeus Bank WooCommerce Payment Gateway 3.2.0 versions.","description":"Unauthenticated Broken Authentication in Piraeus Bank WooCommerce Payment Gateway 3.2.0 versions.","indicators":{"cves":["CVE-2026-73398"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:07.253Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/woo-payment-gateway-for-piraeus-bank/vulnerability/wordpress-piraeus-bank-woocommerce-payment-gateway-plugin-3-2-0-broken-authentication-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73399","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-73399 — Unauthenticated Broken Authentication in Flutterwave WooCommerce <= 3.3.0 versions.","description":"Unauthenticated Broken Authentication in Flutterwave WooCommerce <= 3.3.0 versions.","indicators":{"cves":["CVE-2026-73399"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:07.387Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/rave-woocommerce-payment-gateway/vulnerability/wordpress-flutterwave-woocommerce-plugin-3-3-0-broken-authentication-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73404","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-73404 — Subscriber Broken Access Control in MasterStudy LMS <= 3.7.41 versions.","description":"Subscriber Broken Access Control in MasterStudy LMS <= 3.7.41 versions.","indicators":{"cves":["CVE-2026-73404"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:07.673Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/masterstudy-lms-learning-management-system/vulnerability/wordpress-masterstudy-lms-plugin-3-7-41-broken-access-control-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73426","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-73426 — Trix is a what-you-see-is-what-you-get rich text editor for everyday writing. Prior to 2.1.17, Trix…","description":"Trix is a what-you-see-is-what-you-get rich text editor for everyday writing. Prior to 2.1.17, Trix is vulnerable to cross-site scripting when a data-trix-serialized-attributes attribute bypasses the DOMPurify sanitizer. An attacker can craft HTML containing a data-trix-serialized-attributes attribu…","indicators":{"cves":["CVE-2026-73426"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:08.043Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://github.com/basecamp/trix/commit/3229c29c771ded4d247ed79b2ccd2cd05c4e74b4","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/basecamp/trix/commit/53197ab5a142e6b0b76127cb790726b274eaf1bc","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/basecamp/trix/pull/1282","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/basecamp/trix/releases/tag/v2.1.17","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/basecamp/trix/security/advisories/GHSA-qmpg-8xg6-ph5q","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-73995","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-73995 — Subscriber Broken Authentication in User Registration <= 5.2.6 versions.","description":"Subscriber Broken Authentication in User Registration <= 5.2.6 versions.","indicators":{"cves":["CVE-2026-73995"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:08.470Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/user-registration/vulnerability/wordpress-user-registration-plugin-5-2-6-broken-authentication-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74003","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74003 — Contributor Broken Access Control in RomethemeForm For Elementor <= 1.2.6 versions.","description":"Contributor Broken Access Control in RomethemeForm For Elementor <= 1.2.6 versions.","indicators":{"cves":["CVE-2026-74003"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:08.883Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/romethemeform/vulnerability/wordpress-romethemeform-for-elementor-plugin-1-2-6-broken-access-control-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74004","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74004 — Subscriber Broken Access Control in Gravity Booster &#8211; Styles &amp; Layouts for Gravity Forms <…","description":"Subscriber Broken Access Control in Gravity Booster &#8211; Styles &amp; Layouts for Gravity Forms <= 6.0 versions.","indicators":{"cves":["CVE-2026-74004"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:09.027Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/styles-and-layouts-for-gravity-forms/vulnerability/wordpress-gravity-booster-8211-styles-amp-layouts-for-gravity-forms-plugin-6-0-broken-access-control-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74006","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74006 — Contributor Broken Access Control in WP Table Builder <= 2.2.0 versions.","description":"Contributor Broken Access Control in WP Table Builder <= 2.2.0 versions.","indicators":{"cves":["CVE-2026-74006"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:09.170Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/wp-table-builder/vulnerability/wordpress-wp-table-builder-plugin-2-2-0-broken-access-control-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74007","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74007 — Unauthenticated Sensitive Data Exposure in 3D FlipBook – PDF Flipbook Viewer, Flipbook Image Gallery…","description":"Unauthenticated Sensitive Data Exposure in 3D FlipBook – PDF Flipbook Viewer, Flipbook Image Gallery <= 1.16.20 versions.","indicators":{"cves":["CVE-2026-74007"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:09.300Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/interactive-3d-flipbook-powered-physics-engine/vulnerability/wordpress-3d-flipbook-pdf-flipbook-viewer-flipbook-image-gallery-plugin-1-16-20-sensitive-data-exposure-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74008","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74008 — Unauthenticated Sensitive Data Exposure in Shortcodes and extra features for Phlox theme <= 2.17.22…","description":"Unauthenticated Sensitive Data Exposure in Shortcodes and extra features for Phlox theme <= 2.17.22 versions.","indicators":{"cves":["CVE-2026-74008"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:09.437Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/auxin-elements/vulnerability/wordpress-shortcodes-and-extra-features-for-phlox-theme-plugin-2-17-22-sensitive-data-exposure-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74009","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74009 — Unauthenticated Insecure Direct Object References (IDOR) in Razorpay for WooCommerce <= 4.8.7 versio…","description":"Unauthenticated Insecure Direct Object References (IDOR) in Razorpay for WooCommerce <= 4.8.7 versions.","indicators":{"cves":["CVE-2026-74009"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:09.570Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/woo-razorpay/vulnerability/wordpress-razorpay-for-woocommerce-plugin-4-8-7-insecure-direct-object-references-idor-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75032","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75032 — A flaw was found in BlueZ. Insufficient validation of packet length fields in GetFolderItems respons…","description":"A flaw was found in BlueZ. Insufficient validation of packet length fields in GetFolderItems responses within the Audio/Video Remote Control Profile (AVRCP) implementation allows a malicious Bluetooth device within range to cause an out-of-bounds memory read. This vulnerability, affecting the parse_…","indicators":{"cves":["CVE-2026-75032"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:12.473Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-75032","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2517490","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-45119","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-45119 — MyBB is free and open source forum software. Prior to 1.8.40, the Admin CP UTF-8 Conversion module d…","description":"MyBB is free and open source forum software. Prior to 1.8.40, the Admin CP UTF-8 Conversion module does not validate certain requests correctly, allowing same-site attackers to alter table encoding and deny service with a specially crafted URL. The do=all control flow in admin/modules/tools/system_h…","indicators":{"cves":["CVE-2026-45119"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:17:06.773Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://github.com/mybb/mybb/commit/70d445d14c8350cc014be66f7874611abef70ab4","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mybb/mybb/releases/tag/mybb_1840","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mybb/mybb/security/advisories/GHSA-p48q-4vgf-q7x8","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://mybb.com/versions/1.8.40","label":"security-advisories@github.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-45120","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-45120 — MyBB is free and open source forum software. Prior to 1.8.40, the calendar module does not verify pr…","description":"MyBB is free and open source forum software. Prior to 1.8.40, the calendar module does not verify private event status consistently, allowing users with viewing and moderation permissions to access and moderate private events. The private-event check used by get_events() in inc/functions_calendar.ph…","indicators":{"cves":["CVE-2026-45120"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:17:06.937Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://github.com/mybb/mybb/commit/c077e6c29755187c4df78a1e674dd61bc55701b3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mybb/mybb/releases/tag/mybb_1840","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mybb/mybb/security/advisories/GHSA-c2hm-g9w6-pv6x","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://mybb.com/versions/1.8.40","label":"security-advisories@github.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-45121","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-45121 — MyBB is free and open source forum software. Prior to 1.8.40, the calendar module does not check per…","description":"MyBB is free and open source forum software. Prior to 1.8.40, the calendar module does not check permissions consistently when listing calendars, allowing authenticated users to access titles of calendars that are otherwise inaccessible. The affected calendar-selection paths in calendar.php perform…","indicators":{"cves":["CVE-2026-45121"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:17:07.093Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/mybb/mybb/commit/78e07fea34a6f6c326e668526bfb8e451c19e966","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mybb/mybb/releases/tag/mybb_1840","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mybb/mybb/security/advisories/GHSA-r25v-7pcm-q34p","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://mybb.com/versions/1.8.40","label":"security-advisories@github.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-45122","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-45122 — MyBB is free and open source forum software. Prior to 1.8.40, the calendar module does not validate…","description":"MyBB is free and open source forum software. Prior to 1.8.40, the calendar module does not validate moderation permissions for the destination calendar when moving events. A user with moderation permission for the source calendar can move an event to a calendar where the user has only viewing permis…","indicators":{"cves":["CVE-2026-45122"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:17:07.243Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/mybb/mybb/commit/86ed2058e7f9a2c14828e731f684e997f9bb220c","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mybb/mybb/releases/tag/mybb_1840","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mybb/mybb/security/advisories/GHSA-839m-gpw8-59j4","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://mybb.com/versions/1.8.40","label":"security-advisories@github.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-45123","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-45123 — MyBB is free and open source forum software. Prior to 1.8.40, the remote requests feature does not c…","description":"MyBB is free and open source forum software. Prior to 1.8.40, the remote requests feature does not correctly handle IPv6 addresses, resulting in a server-side request forgery vulnerability. The default disallowed remote hosts list does not include IPv6 addresses. Verification in fetch_remote_file()…","indicators":{"cves":["CVE-2026-45123"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:17:07.383Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/mybb/mybb/commit/9cdadbf66f4cef50019f13aaa8e3470ea6535cb7","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mybb/mybb/releases/tag/mybb_1840","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mybb/mybb/security/advisories/GHSA-56wr-64wx-5g7j","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://mybb.com/versions/1.8.40","label":"security-advisories@github.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-45124","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-45124 — MyBB is free and open source forum software. Prior to 1.8.40, the Mod CP Report Center does not chec…","description":"MyBB is free and open source forum software. Prior to 1.8.40, the Mod CP Report Center does not check permissions consistently, allowing moderators without report-management permission to mark reports as resolved. The modcp.php?action=do_reports Mark Selected as Read handler is reachable with canmod…","indicators":{"cves":["CVE-2026-45124"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:17:07.527Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/mybb/mybb/commit/5cda5f6d183bc2cac24f0533e8d3060a9a46cc42","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mybb/mybb/releases/tag/mybb_1840","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mybb/mybb/security/advisories/GHSA-gfxj-g7w6-6w4v","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://mybb.com/versions/1.8.40","label":"security-advisories@github.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-45125","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-45125 — MyBB is free and open source forum software. Prior to 1.8.40, the Email User controller does not san…","description":"MyBB is free and open source forum software. Prior to 1.8.40, the Email User controller does not sanitize sender names correctly, resulting in mail header injection. member.php?action=do_emailuser accepts the fromname HTTP parameter for guests or the stored username for authenticated users when the…","indicators":{"cves":["CVE-2026-45125"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:17:07.667Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/mybb/mybb/commit/5046c56b515d4593297a4f65b0c6ccb0b55baa01","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mybb/mybb/releases/tag/mybb_1840","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mybb/mybb/security/advisories/GHSA-f626-53q9-pqm9","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://mybb.com/versions/1.8.40","label":"security-advisories@github.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-45129","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-45129 — MyBB is free and open source forum software. Prior to 1.8.40, the Admin CP Recovery Codes module doe…","description":"MyBB is free and open source forum software. Prior to 1.8.40, the Admin CP Recovery Codes module does not validate requests correctly, allowing same-site attackers to rotate a victim administrator's recovery codes with a specially crafted URL. The Admin CP Home, Preferences, Recovery Codes action=re…","indicators":{"cves":["CVE-2026-45129"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:17:08.223Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/mybb/mybb/commit/d2d9e47b53d85101cf25cb47e882bc7ba76355a4","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mybb/mybb/releases/tag/mybb_1840","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mybb/mybb/security/advisories/GHSA-75vg-6wgp-mcc9","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://mybb.com/versions/1.8.40","label":"security-advisories@github.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-45734","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-45734 — MyBB is free and open source forum software. Prior to 1.8.40, the built-in CAPTCHA does not consiste…","description":"MyBB is free and open source forum software. Prior to 1.8.40, the built-in CAPTCHA does not consistently enforce single-use semantics, allowing remote attackers to bypass CAPTCHA controls through challenge replay. The successful validation paths in contact.php, member.php?action=do_resendactivation,…","indicators":{"cves":["CVE-2026-45734"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:17:08.980Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/mybb/mybb/commit/c2ed54f9259b9ce05728a9e657169033fe4adffc","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mybb/mybb/releases/tag/mybb_1840","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mybb/mybb/security/advisories/GHSA-jrrr-f3jw-mjmc","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://mybb.com/versions/1.8.40","label":"security-advisories@github.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-46482","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-46482 — ### Impact The registration component does not validate the text-based _Security Question_ CAPTCHA c…","description":"### Impact\nThe registration component does not validate the text-based _Security Question_ CAPTCHA correctly, allowing attackers to bypass the challenge via a specially crafted value.\n\n\n[CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N](https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:N/AC:L/PR:N/U…","indicators":{"cves":["CVE-2026-46482"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:17:09.350Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/mybb/mybb/commit/bd2a3447939d3084a5926dd66ece04649e0e0d60","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mybb/mybb/releases/tag/mybb_1840","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mybb/mybb/security/advisories/GHSA-v2h7-4jp7-j6hh","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://mybb.com/versions/1.8.40","label":"security-advisories@github.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-47245","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-47245 — MyBB is free and open source forum software. Prior to 1.8.40, the User CP Buddy/Ignore List componen…","description":"MyBB is free and open source forum software. Prior to 1.8.40, the User CP Buddy/Ignore List component does not validate reciprocal buddy-list updates correctly. The usercp.php?action=do_editlists delete handler removes the selected entry from the acting user's list and then updates mybb_users.buddyl…","indicators":{"cves":["CVE-2026-47245"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:17:09.507Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/mybb/mybb/commit/0557718f27503034fb1c2768729a2fb8239bba65","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mybb/mybb/releases/tag/mybb_1840","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mybb/mybb/security/advisories/GHSA-w8gm-j57p-jqpc","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://mybb.com/versions/1.8.40","label":"security-advisories@github.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-71477","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-71477 — mise manages dev tools like node, python, cmake, and terraform. Prior to 2026.7.1, release tar archi…","description":"mise manages dev tools like node, python, cmake, and terraform. Prior to 2026.7.1, release tar archives record mise/bin/mise with user and group ID 1001 and packaging/standalone/install.envsubst extracts and moves it without normalizing ownership, allowing a local user with those IDs to replace a ro…","indicators":{"cves":["CVE-2026-71477"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:18:16.290Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/jdx/mise/commit/b65dd674d75d9aa5c038b58a3a0cdb522cf258d5","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/jdx/mise/commit/f1c28906f17af74430ff96f4438733c4a842c88d","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/jdx/mise/pull/10808","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/jdx/mise/pull/10819","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/jdx/mise/releases/tag/v2026.7.1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/jdx/mise/security/advisories/GHSA-9mm4-fgvc-x7rp","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/jdx/mise/security/advisories/GHSA-9mm4-fgvc-x7rp","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-73834","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-73834 — A flaw was found in the must-gather component of Red Hat Advanced Cluster Management for Kubernetes.…","description":"A flaw was found in the must-gather component of Red Hat Advanced Cluster Management for Kubernetes. Certain ACM wrapper Custom Resources that embed Secret data are collected without redaction. When an administrator runs must-gather, credentials and tokens are captured in cleartext in the resulting…","indicators":{"cves":["CVE-2026-73834","CVE-2026-75485"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:18:17.493Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-73834","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2517904","label":"secalert@redhat.com","domainType":"other"},{"url":"https://access.redhat.com/security/cve/CVE-2026-75485","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2517905","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-30250","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-30250 — Cross-site scripting vulnerability in the user documentation field in Beta Systems Software AG ANOW!…","description":"Cross-site scripting vulnerability in the user documentation field in Beta Systems Software AG ANOW! Automate v.3.3.1.90 allows a remote attacker to execute arbitrary code","indicators":{"cves":["CVE-2026-30250"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T17:16:57.397Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/cert-rit/Vulnerability-Disclosures/tree/main/2026/20260127_ANOW-Automate-3.3.1.90_Stored-XSS","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/cert-rit/Vulnerability-Disclosures/tree/main/2026/20260127_ANOW-Automate-3.3.1.90_Stored-XSS","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-48744","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-48744 — Saleor is an e-commerce platform. From 3.14.67 until 3.21.67, 3.22.63, and 3.23.22, a broken authori…","description":"Saleor is an e-commerce platform. From 3.14.67 until 3.21.67, 3.22.63, and 3.23.22, a broken authorization check in saleor/permission/utils.py can incorrectly authorize unauthenticated GraphQL requests. The flaw permits anonymous callers to use the channelUpdate() mutation to change channel order se…","indicators":{"cves":["CVE-2026-48744"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T17:16:57.533Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/saleor/saleor/commit/11efb4e9ea76942cf142bc01de8846cbaf764465","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/saleor/saleor/commit/580b93b6e0faef7800e667f0c3bc507d3ef6f5f5","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/saleor/saleor/commit/9b1f59b3ed86c3fad3ce071639cf434c1ab94a85","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/saleor/saleor/commit/afd1ddd13b79e78db4e05f846b1f159078c50417","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/saleor/saleor/releases/tag/3.21.67","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/saleor/saleor/releases/tag/3.22.63","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/saleor/saleor/releases/tag/3.23.22","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/saleor/saleor/security/advisories/GHSA-xqqq-qhgq-gx53","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-50126","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-50126 — Adaguc-server is an open source geographical information system to visualize, combine, compare and s…","description":"Adaguc-server is an open source geographical information system to visualize, combine, compare and share real-time meteorological, climatological and remote sensing data via OGC standards. Versions prior to 7.2.2 crash with a memory-safety fault when it parses a GeoJSON document whose geometry conta…","indicators":{"cves":["CVE-2026-50126"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T17:16:58.410Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/KNMI/adaguc-server/commit/30dffde1a1776b994d60026f41ca620f7cad72e9","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/KNMI/adaguc-server/pull/710","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/KNMI/adaguc-server/releases/tag/7.2.2","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/KNMI/adaguc-server/security/advisories/GHSA-mwgv-59vv-rp2m","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/KNMI/adaguc-server/security/advisories/GHSA-mwgv-59vv-rp2m","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-52606","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-52606 — A reflected cross-site scripting (XSS) vulnerability in reportico-web <= 8.1.0 allows remote attacke…","description":"A reflected cross-site scripting (XSS) vulnerability in reportico-web <= 8.1.0 allows remote attackers to execute arbitrary JavaScript in the web browser of a user by including a malicious payload in the loadTemplate parameter in conjunction with the execute_mode=PREPARE parameter of run.php.","indicators":{"cves":["CVE-2026-52606","CVE-2026-52609"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T17:16:59.080Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/kilotel/vulnerability-research/tree/main/CVE-2026-52606","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/reportico-web/reportico","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/kilotel/vulnerability-research/tree/main/CVE-2026-52609","label":"cve@mitre.org","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-55106","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-55106 — authentik is an open-source identity provider. Prior to 2026.2.6 and 2026.5.5, a diagnostic action o…","description":"authentik is an open-source identity provider. Prior to 2026.2.6 and 2026.5.5, a diagnostic action on the LDAP Source API does not enforce the object-level read-authorization filter used by the rest of the API. Any party able to reach the API, including an unauthenticated client, can invoke the diag…","indicators":{"cves":["CVE-2026-55106"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T17:16:59.500Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/goauthentik/authentik/commit/e638de23217480854ec5e48ca6fceae479321f99","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/goauthentik/authentik/commit/fc336da4bd32bef52800c77d91aa0b82c5533041","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/goauthentik/authentik/pull/24055","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/goauthentik/authentik/pull/24060","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/goauthentik/authentik/releases/tag/version/2026.2.6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/goauthentik/authentik/releases/tag/version/2026.5.5","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/goauthentik/authentik/security/advisories/GHSA-h8ff-c3h7-2gf8","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-66781","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-66781 — A flaw was found in the Submariner operator. The Submariner Custom Resource (CR), used for configuri…","description":"A flaw was found in the Submariner operator. The Submariner Custom Resource (CR), used for configuring network connectivity, stores the IPsec pre-shared key (PSK) in an unencrypted format. This key, which is critical for securing communication between Kubernetes clusters, can be accessed by unauthor…","indicators":{"cves":["CVE-2026-66781"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T17:17:00.580Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-66781","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2507526","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-49452","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-49452 — WeasyPrint helps web developers to create PDF documents. Prior to 69.0, WeasyPrint embeds unescaped…","description":"WeasyPrint helps web developers to create PDF documents. Prior to 69.0, WeasyPrint embeds unescaped HTML presentational-hint attribute values into CSS in weasyprint/css/__init__.py when presentational_hints=True. The background attribute is inserted into a background-image:url() declaration and pars…","indicators":{"cves":["CVE-2026-49452"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T18:17:49.147Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/Kozea/WeasyPrint/commit/e158264e33fa399b29f415d30719c1d85a55df1d","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Kozea/WeasyPrint/pull/2773","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Kozea/WeasyPrint/releases/tag/v69.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Kozea/WeasyPrint/security/advisories/GHSA-jhhc-3hcp-qhm5","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Kozea/WeasyPrint/security/advisories/GHSA-jhhc-3hcp-qhm5","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-52607","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-52607 — A directory traversal vulnerability in reportico-web <= 8.1.0 allows remote attackers to expose or e…","description":"A directory traversal vulnerability in reportico-web <= 8.1.0 allows remote attackers to expose or execute arbitrary php files on the web server by specifying the filename in the target_format parameter in conjunction with the execute_mode=EXECUTE parameter of the run.php endpoint.","indicators":{"cves":["CVE-2026-52607"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T18:18:19.883Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/kilotel/vulnerability-research/tree/main/CVE-2026-52607","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/reportico-web/reportico","label":"cve@mitre.org","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-54570","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-54570 — AngleSharp is a .NET library for parsing angle bracket based hyper-texts. Prior to 1.5.0, MathAnnota…","description":"AngleSharp is a .NET library for parsing angle bracket based hyper-texts. Prior to 1.5.0, MathAnnotationXmlElement in AngleSharp/Mathml/Dom/Internal/MathAnnotationXmlElement.cs is not treated as an HTML integration point when its encoding attribute is text/html or application/xhtml+xml, causing Cons…","indicators":{"cves":["CVE-2026-54570"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T18:18:23.310Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/AngleSharp/AngleSharp/commit/8033a5c690af9c2c443f58e34875343fa4cc1d07","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/AngleSharp/AngleSharp/releases/tag/1.5.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/AngleSharp/AngleSharp/security/advisories/GHSA-pgww-w46g-26qg","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/AngleSharp/AngleSharp/security/advisories/GHSA-pgww-w46g-26qg","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-61696","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-61696 — Forem is open source software for building communities. In versions before commit 92eacd16a82cf9007b…","description":"Forem is open source software for building communities. In versions before commit 92eacd16a82cf9007ba8e16a2258b42e3b53ca9c, a malicious value submitted through feedback_message[message] is stored without sanitization and rendered in app/views/admin/feedback_messages/_feedback_message.html.erb throug…","indicators":{"cves":["CVE-2026-61696"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T18:18:52.497Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/forem/forem/commit/92eacd16a82cf9007ba8e16a2258b42e3b53ca9c","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/forem/forem/security/advisories/GHSA-4463-499m-94mx","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-63640","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-63640 — MagicMirror² is an open source modular smart mirror platform. Prior to 2.37.0, when hideConfigSecret…","description":"MagicMirror² is an open source modular smart mirror platform. Prior to 2.37.0, when hideConfigSecrets is enabled, the catch-all socket dispatcher in js/node_helper.js passes every inbound object payload through replaceSecretPlaceholder in js/server_functions.js before invoking socketNotificationRece…","indicators":{"cves":["CVE-2026-63640"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T18:19:11.800Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/MagicMirrorOrg/MagicMirror/commit/ca7b752025962441196e148f8c1bc04b90117979","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/MagicMirrorOrg/MagicMirror/pull/4184","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/MagicMirrorOrg/MagicMirror/releases/tag/v2.37.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/MagicMirrorOrg/MagicMirror/security/advisories/GHSA-q4gh-4ffp-5cg8","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/MagicMirrorOrg/MagicMirror/security/advisories/GHSA-q4gh-4ffp-5cg8","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-68922","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-68922 — MobSF is a mobile application security testing tool used. Prior to 4.5.1, find_icon_path_zip in mobs…","description":"MobSF is a mobile application security testing tool used. Prior to 4.5.1, find_icon_path_zip in mobsf/StaticAnalyzer/views/android/icon_analysis.py uses the Android manifest android:icon value to construct paths under the scan resource directory without rejecting traversal or verifying containment,…","indicators":{"cves":["CVE-2026-68922"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T18:19:27.907Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/MobSF/Mobile-Security-Framework-MobSF/commit/62563ca429a75b3e5d47a13b958e1d2e7d5e2bbf","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/MobSF/Mobile-Security-Framework-MobSF/pull/2627","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/MobSF/Mobile-Security-Framework-MobSF/releases/tag/v4.5.1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/MobSF/Mobile-Security-Framework-MobSF/security/advisories/GHSA-8j49-mmcx-4mp5","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/MobSF/Mobile-Security-Framework-MobSF/security/advisories/GHSA-8j49-mmcx-4mp5","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-68923","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-68923 — MobSF is a mobile application security testing tool used. Prior to 4.5.1, mobsf/MobSF/settings.py pl…","description":"MobSF is a mobile application security testing tool used. Prior to 4.5.1, mobsf/MobSF/settings.py places django.middleware.csrf.CsrfViewMiddleware only in the deprecated MIDDLEWARE_CLASSES setting and omits it from the active MIDDLEWARE tuple, allowing a remote attacker to make a logged-in victim su…","indicators":{"cves":["CVE-2026-68923"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T18:19:28.053Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/MobSF/Mobile-Security-Framework-MobSF/commit/62563ca429a75b3e5d47a13b958e1d2e7d5e2bbf","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/MobSF/Mobile-Security-Framework-MobSF/pull/2627","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/MobSF/Mobile-Security-Framework-MobSF/releases/tag/v4.5.1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/MobSF/Mobile-Security-Framework-MobSF/security/advisories/GHSA-3p54-567p-2wpr","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-68924","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-68924 — MobSF is a mobile application security testing tool used. Prior to 4.5.1, the unzip function in mobs…","description":"MobSF is a mobile application security testing tool used. Prior to 4.5.1, the unzip function in mobsf/StaticAnalyzer/views/common/shared_func.py logs that an archive member exceeding ZIP_MAX_UNCOMPRESSED_FILE_SIZE is being skipped but does not continue to the next member, so an authenticated user ca…","indicators":{"cves":["CVE-2026-68924"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T18:19:28.197Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/MobSF/Mobile-Security-Framework-MobSF/commit/62563ca429a75b3e5d47a13b958e1d2e7d5e2bbf","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/MobSF/Mobile-Security-Framework-MobSF/pull/2627","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/MobSF/Mobile-Security-Framework-MobSF/releases/tag/v4.5.1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/MobSF/Mobile-Security-Framework-MobSF/security/advisories/GHSA-x768-8642-mmq9","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/MobSF/Mobile-Security-Framework-MobSF/security/advisories/GHSA-x768-8642-mmq9","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-69160","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-69160 — OpenList a file list program that supports multiple storage. Prior to 4.2.4, the share creation and…","description":"OpenList a file list program that supports multiple storage. Prior to 4.2.4, the share creation and update checks in server/handles/sharing.go use strings.HasPrefix(requested_path, user.BasePath) without enforcing a directory separator boundary. An authenticated user with CanShare permission and a B…","indicators":{"cves":["CVE-2026-69160"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T18:19:28.493Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/OpenListTeam/OpenList/commit/59bd3431408578f420895457554700cc9a52375a","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/OpenListTeam/OpenList/releases/tag/v4.2.4","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/OpenListTeam/OpenList/security/advisories/GHSA-86cx-wwf4-phq4","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/OpenListTeam/OpenList/security/advisories/GHSA-86cx-wwf4-phq4","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-73502","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-73502 — kin-openapi is a Go project for handling OpenAPI files. From 0.2.0 until 0.144.0, openapi3filter.Val…","description":"kin-openapi is a Go project for handling OpenAPI files. From 0.2.0 until 0.144.0, openapi3filter.ValidateRequest can encounter a NULL-pointer-dereference denial of service when an operation declares a content parameter whose application/json media type has no schema. In openapi3filter/req_resp_decod…","indicators":{"cves":["CVE-2026-73502"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T18:19:33.460Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/getkin/kin-openapi/commit/68ac2affa325514d7d6e731204d6a1edf6bdff64","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/getkin/kin-openapi/releases/tag/v0.144.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/getkin/kin-openapi/security/advisories/GHSA-jpcw-4wr7-c3vq","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/getkin/kin-openapi/security/advisories/GHSA-jpcw-4wr7-c3vq","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-74039","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74039 — Wazuh 4.0.0 before 4.14.7 and 5.0.0-beta2 contain a denial of service vulnerability that allows auth…","description":"Wazuh 4.0.0 before 4.14.7 and 5.0.0-beta2 contain a denial of service vulnerability that allows authenticated attackers with allow_run_as enabled to exhaust CPU resources by submitting arbitrarily deeply nested JSON structures to the POST /security/user/authenticate/run_as endpoint. Attackers can re…","indicators":{"cves":["CVE-2026-74039"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T18:19:33.760Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/wazuh/wazuh/pull/37034","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/security/advisories/GHSA-5vh8-34r8-q74q","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/wazuh-api-dos-via-deeply-nested-json-auth-context","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/wazuh/wazuh/security/advisories/GHSA-5vh8-34r8-q74q","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-74044","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74044 — Wazuh 4.0.0 before 4.14.6 contains a path traversal vulnerability that allows authenticated cluster…","description":"Wazuh 4.0.0 before 4.14.6 contains a path traversal vulnerability that allows authenticated cluster peers to delete arbitrary directory contents by supplying a traversal-shaped node name in the cluster hello payload without validation. Attackers holding a valid cluster Fernet key can craft a malicio…","indicators":{"cves":["CVE-2026-74044"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T18:19:33.907Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/wazuh/wazuh/pull/36460","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/security/advisories/GHSA-f34r-fcjf-qx6j","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/wazuh-path-traversal-arbitrary-directory-deletion-via-cluster-hello","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74046","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74046 — Wazuh 4.4.0 before 4.14.7 contains a denial of service vulnerability in the fdecompress_files() func…","description":"Wazuh 4.4.0 before 4.14.7 contains a denial of service vulnerability in the fdecompress_files() function within cluster.py that allows authenticated cluster peers to exhaust memory by supplying a malicious synchronization archive without decompressed size limits. Attackers holding a valid cluster Fe…","indicators":{"cves":["CVE-2026-74046"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T18:19:34.053Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/wazuh/wazuh/pull/37119","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/security/advisories/GHSA-mr7j-w2m4-vw5j","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/wazuh-dos-via-fdecompress-files-zip-bomb","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/wazuh/wazuh/security/advisories/GHSA-mr7j-w2m4-vw5j","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2025-9211","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2025-9211 — Unescaped stored values in application security page in Otalio Ship Property Management System versi…","description":"Unescaped stored values in application security page in Otalio Ship Property Management System versions before 2.22.0 allows authenticated attackers to escalate privileges via persistent cross-site scripting","indicators":{"cves":["CVE-2025-9211"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T19:16:44.103Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/mandiant/Vulnerability-Disclosures/blob/master/2026/MNDT-2026-0024.md","label":"mandiant-cve@google.com","domainType":"primary"},{"url":"https://www.otalio.com/solutions/","label":"mandiant-cve@google.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-55162","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-55162 — Lemur manages TLS certificate creation. Prior to 1.9.2, lemur/certificates/verify.py accepted CRL Di…","description":"Lemur manages TLS certificate creation. Prior to 1.9.2, lemur/certificates/verify.py accepted CRL Distribution Point and OCSP responder URLs from uploaded certificate extensions and used them in crl_verify and ocsp_verify without adequate destination validation. An authenticated operator could submi…","indicators":{"cves":["CVE-2026-55162"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T19:16:58.217Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/Netflix/lemur/commit/733714a2b00b2f72c3d460e440770e46a3ea9d6a","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Netflix/lemur/releases/tag/v1.9.2","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Netflix/lemur/security/advisories/GHSA-54vg-pfh7-jq95","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Netflix/lemur/security/advisories/GHSA-54vg-pfh7-jq95","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-55163","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-55163 — Lemur manages TLS certificate creation. Prior to 1.9.2, PUT /api/1/roles/ in lemur/roles/views.py:29…","description":"Lemur manages TLS certificate creation. Prior to 1.9.2, PUT /api/1/roles/ in lemur/roles/views.py:298 authorized updates with RoleMemberPermission(role_id), which allowed either an administrator or any existing member of the target role. The handler passed data[\"users\"] and data[\"name\"] to service.u…","indicators":{"cves":["CVE-2026-55163"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T19:16:58.357Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/Netflix/lemur/commit/9523a3b9cb3170ec9f795162b8c60e1ad3c4f9ce","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Netflix/lemur/releases/tag/v1.9.2","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Netflix/lemur/security/advisories/GHSA-x3vf-mgxj-7785","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-55164","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-55164 — Lemur manages TLS certificate creation. Prior to 1.9.2, lemur.users.service.update assigned a replac…","description":"Lemur manages TLS certificate creation. Prior to 1.9.2, lemur.users.service.update assigned a replacement password directly to users.password, while lemur/users/models.py registered User.hash_password only for the before_insert event. Because no before_update listener ran, administrator-initiated pa…","indicators":{"cves":["CVE-2026-55164"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T19:16:58.493Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/Netflix/lemur/commit/221c6d7275ac667bb8898ab48d2b96926a89c1c4","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Netflix/lemur/releases/tag/v1.9.2","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Netflix/lemur/security/advisories/GHSA-q437-g7fv-2jvv","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Netflix/lemur/security/advisories/GHSA-q437-g7fv-2jvv","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-55165","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-55165 — Lemur manages TLS certificate creation. Prior to 1.9.2, the JWT verifier in lemur/auth/service.py:13…","description":"Lemur manages TLS certificate creation. Prior to 1.9.2, the JWT verifier in lemur/auth/service.py:130-137 used fetch_token_header to read header_data[\"alg\"] from an unverified token and passed that attacker-controlled value to decode_with_multiple_secrets. PyJWT 2.x rejects alg=none with the configu…","indicators":{"cves":["CVE-2026-55165"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T19:16:58.647Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/Netflix/lemur/commit/89898e665beed044cf7bd5927dfaa484e55bf242","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Netflix/lemur/releases/tag/v1.9.2","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Netflix/lemur/security/advisories/GHSA-r9gp-7f88-9r54","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Netflix/lemur/security/advisories/GHSA-r9gp-7f88-9r54","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-65959","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-65959 — Vitess is a database clustering system for horizontal scaling of MySQL. In 24.0.2 and earlier, the /…","description":"Vitess is a database clustering system for horizontal scaling of MySQL. In 24.0.2 and earlier, the /debug/vrlog endpoint registered by addHttpEndpoint() in go/vt/vttablet/tabletmanager/vreplication/vrlog.go invokes vrlogStatsHandler() without acl.CheckAccessHTTP(r, acl.DEBUGGING), unlike comparable…","indicators":{"cves":["CVE-2026-65959"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T19:17:00.223Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/vitessio/vitess/commit/4c58cd70edc6b03d61cb65842c342ac08341e64f","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/vitessio/vitess/commit/657662e78bde1c82df680e9cc43a686d619f8094","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/vitessio/vitess/commit/d929225a450027406687d27af8dca45620945ceb","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/vitessio/vitess/security/advisories/GHSA-mhc4-g3wh-cw7m","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/vitessio/vitess/security/advisories/GHSA-mhc4-g3wh-cw7m","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-70667","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-70667 — Lemur manages TLS certificate creation. Prior to 1.9.3, _validate_revocation_url in lemur/certificat…","description":"Lemur manages TLS certificate creation. Prior to 1.9.3, _validate_revocation_url in lemur/certificates/verify.py checked the original CRL or OCSP URL but the later request could reach a different destination. The CRL requests.get call followed HTTP redirects without validating each Location target,…","indicators":{"cves":["CVE-2026-70667"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T19:17:03.293Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/Netflix/lemur/commit/ed504a830f38a83825b1570302e9f38d6553938a","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Netflix/lemur/releases/tag/v1.9.3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Netflix/lemur/security/advisories/GHSA-f3qq-49m6-rw8f","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Netflix/lemur/security/advisories/GHSA-54vg-pfh7-jq95","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-12520","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-12520 — The Sierra Wireless HL7800 cellular modem driver (drivers/modem/vendor_standalone/hl7800.c, located…","description":"The Sierra Wireless HL7800 cellular modem driver (drivers/modem/vendor_standalone/hl7800.c, located at drivers/modem/hl7800.c in v4.4.0 and earlier) parses AT responses with roughly twenty handlers that call net_buf_linearize(value, sizeof(value), *buf, 0, len) into a 128-byte stack buffer and then…","indicators":{"cves":["CVE-2026-12520"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:17:11.660Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/zephyrproject-rtos/zephyr/commit/ea91f9375677aa4268e4044e096902dbe789f101","label":"vulnerabilities@zephyrproject.org","domainType":"primary"},{"url":"https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-9xc4-j5x8-v6jx","label":"vulnerabilities@zephyrproject.org","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-19670","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19670 — Malcolm's nginx Lua role-based access control (RBAC) layer decides whether an authenticated user may…","description":"Malcolm's nginx Lua role-based access control (RBAC) layer decides whether an authenticated user may reach a role-restricted path (e.g. /htadmin, /auth, /admin_login, /arkime/api/esadmin, NetBox, upload endpoints) by pattern-matching the raw, percent-encoded request URI. Nginx itself, however, selec…","indicators":{"cves":["CVE-2026-19670"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:17:13.473Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/cisagov/Malcolm/security/advisories/GHSA-f2v6-8cj4-mhr6","label":"ics-cert@hq.dhs.gov","domainType":"primary"},{"url":"https://www.cisa.gov/news-events/ics-advisories/icsa-26-230-01","label":"ics-cert@hq.dhs.gov","domainType":"primary"},{"url":"https://github.com/cisagov/Malcolm/security/advisories/GHSA-f2v6-8cj4-mhr6","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-19671","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19671 — Malcolm's upload-processing pipeline (scripts/safe-extract.py) enforces entry-count, nesting-depth,…","description":"Malcolm's upload-processing pipeline (scripts/safe-extract.py) enforces entry-count, nesting-depth, and total-uncompressed-byte limits when extracting container archives (zip/tar/rar/7z via libarchive), but those limits are not applied when the uploaded file is a single-stream compressed format (.gz…","indicators":{"cves":["CVE-2026-19671"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:17:13.660Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/cisagov/Malcolm/security/advisories/GHSA-f2v6-8cj4-mhr6","label":"ics-cert@hq.dhs.gov","domainType":"primary"},{"url":"https://www.cisa.gov/news-events/ics-advisories/icsa-26-230-01","label":"ics-cert@hq.dhs.gov","domainType":"primary"},{"url":"https://github.com/cisagov/Malcolm/security/advisories/GHSA-f2v6-8cj4-mhr6","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-47720","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-47720 — FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. Prior to 1.3.2, the TDengi…","description":"FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. Prior to 1.3.2, the TDengine DAQ storage connector's escapeTdString function in server/runtime/storage/tdengine/index.js doubles single quotes but does not escape backslashes. A remote unauthenticated attacker can submit a cra…","indicators":{"cves":["CVE-2026-47720"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ics"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:17:15.250Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/frangoteam/FUXA/commit/b78f6159d02a56ce5ff48207feb936afb3534fc8","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frangoteam/FUXA/pull/2343","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frangoteam/FUXA/releases/tag/v1.3.2","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frangoteam/FUXA/security/advisories/GHSA-h9fj-c2qr-76g2","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-47721","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-47721 — FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. Prior to 1.3.2, POST /api/…","description":"FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. Prior to 1.3.2, POST /api/scheduler and DELETE /api/scheduler in server/api/scheduler/index.js do not consistently enforce authJwt.haveAdminPermission for scheduler settings. An authenticated non-admin operator can create or a…","indicators":{"cves":["CVE-2026-47721"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ics"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:17:15.383Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/frangoteam/FUXA/commit/3c945a03f9942fd45a793ab7e3c2d1f1b15b93bf","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frangoteam/FUXA/pull/2345","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frangoteam/FUXA/releases/tag/v1.3.2","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frangoteam/FUXA/security/advisories/GHSA-8ghr-w65f-j3qr","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-49500","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-49500 — Dell Alienware Command Center (AWCC), versions prior to 6.14.20.0, contain an Improper Link Resoluti…","description":"Dell Alienware Command Center (AWCC), versions prior to 6.14.20.0, contain an Improper Link Resolution Before File Access ('Link Following') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Denial of Service and Elevation of Privileg…","indicators":{"cves":["CVE-2026-49500"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:17:15.890Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://www.dell.com/support/kbdoc/en-us/000501384/dsa-2026-334-security-update-for-dell-alienware-command-center-6-x-for-multiple-vulnerabilities","label":"security_alert@emc.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-52731","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-52731 — ZEBRA is a Zcash node written entirely in Rust. Prior to 4.5.0, an attacker authenticated to an enab…","description":"ZEBRA is a Zcash node written entirely in Rust. Prior to 4.5.0, an attacker authenticated to an enabled Zebra RPC endpoint can terminate zebrad by supplying a getblocktemplate LongPollId containing multi-byte UTF-8 characters. In zebra-rpc/src/methods/types/long_poll.rs, LongPollId::from_str origina…","indicators":{"cves":["CVE-2026-52731"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:17:16.510Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/ZcashFoundation/zebra/commit/1440b43ca7df59aca948090d45117557b217a6cd","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ZcashFoundation/zebra/releases/tag/v4.5.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ZcashFoundation/zebra/security/advisories/GHSA-qv2r-v3mx-f4pf","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-52732","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-52732 — ZEBRA is a Zcash node written entirely in Rust. Prior to 4.5.0, one unauthenticated P2P peer can mon…","description":"ZEBRA is a Zcash node written entirely in Rust. Prior to 4.5.0, one unauthenticated P2P peer can monopolize all 25 MAX_INBOUND_CONCURRENCY slots in Zebra's inbound mempool download and verification pipeline. In zebrad/src/components/mempool/downloads.rs, the bounded queue was shared globally without…","indicators":{"cves":["CVE-2026-52732"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:17:16.710Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/ZcashFoundation/zebra/commit/1440b43ca7df59aca948090d45117557b217a6cd","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ZcashFoundation/zebra/releases/tag/v4.5.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ZcashFoundation/zebra/security/advisories/GHSA-4fc2-h7jh-287c","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ZcashFoundation/zebra/security/advisories/GHSA-4fc2-h7jh-287c","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-52733","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-52733 — ZEBRA is a Zcash node written entirely in Rust. Prior to 4.5.0, a natural or attacker-influenced cha…","description":"ZEBRA is a Zcash node written entirely in Rust. Prior to 4.5.0, a natural or attacker-influenced chain fork can leave stale Sapling and Orchard note-commitment subtree roots in Zebra state. In zebra-state/src/service/non_finalized_state/chain.rs, Chain::pop_tip removed a reverted tip block but did n…","indicators":{"cves":["CVE-2026-52733"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:17:16.920Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/ZcashFoundation/zebra/commit/1440b43ca7df59aca948090d45117557b217a6cd","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ZcashFoundation/zebra/releases/tag/v4.5.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ZcashFoundation/zebra/security/advisories/GHSA-2gf8-q9rr-jq3h","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-52734","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-52734 — ZEBRA is a Zcash node written entirely in Rust. Prior to 4.5.0, an unauthenticated P2P peer can caus…","description":"ZEBRA is a Zcash node written entirely in Rust. Prior to 4.5.0, an unauthenticated P2P peer can cause the mempool download pipeline to retain transactions after verification reaches the outer RATE_LIMIT_DELAY timeout. In zebrad/src/components/mempool/downloads.rs, Downloads::poll_next removed cancel…","indicators":{"cves":["CVE-2026-52734"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:17:17.080Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/ZcashFoundation/zebra/commit/1440b43ca7df59aca948090d45117557b217a6cd","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ZcashFoundation/zebra/releases/tag/v4.5.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ZcashFoundation/zebra/security/advisories/GHSA-65jj-fmw8-468q","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-52737","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-52737 — ZEBRA is a Zcash node written entirely in Rust. Prior to 4.5.0, a malicious unauthenticated P2P peer…","description":"ZEBRA is a Zcash node written entirely in Rust. Prior to 4.5.0, a malicious unauthenticated P2P peer can answer Zebra's outbound getblocks or FindBlocks request with a small two-hash inventory and then serve a syntactically valid block whose coinbase height is far above the local chain tip. In zebra…","indicators":{"cves":["CVE-2026-52737"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:17:17.750Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/ZcashFoundation/zebra/commit/1440b43ca7df59aca948090d45117557b217a6cd","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ZcashFoundation/zebra/commit/bc64dfe45746a86d14546a0a5a766387dd5a2942","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ZcashFoundation/zebra/pull/10647","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ZcashFoundation/zebra/releases/tag/v4.5.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ZcashFoundation/zebra/security/advisories/GHSA-gvjc-3w7c-92jx","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-52739","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-52739 — ZEBRA is a Zcash node written entirely in Rust. Prior to 4.5.0, a malicious block producer can termi…","description":"ZEBRA is a Zcash node written entirely in Rust. Prior to 4.5.0, a malicious block producer can terminate zebrad by placing the same shielded transaction in a non-finalized parent block and its child. In zebra-state/src/service/non_finalized_state/chain.rs, Chain::push originally inserted the transac…","indicators":{"cves":["CVE-2026-52739"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:17:18.127Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/ZcashFoundation/zebra/commit/1440b43ca7df59aca948090d45117557b217a6cd","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ZcashFoundation/zebra/releases/tag/v4.5.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ZcashFoundation/zebra/security/advisories/GHSA-hhm7-qrv5-h4r6","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-71317","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-71317 — Lemur manages TLS certificate creation. Prior to 1.9.3, POST /api/1/authorities with type=subca did…","description":"Lemur manages TLS certificate creation. Prior to 1.9.3, POST /api/1/authorities with type=subca did not require AuthorityPermission on the parent authority when ADMIN_ONLY_AUTHORITY_CREATION was false. AssociatedAuthoritySchema resolved the caller-supplied parent and passed it through authority crea…","indicators":{"cves":["CVE-2026-71317"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:17:23.910Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/Netflix/lemur/commit/8669011203ca3dd89d9e39bab9ef6850eca723f9","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Netflix/lemur/releases/tag/v1.9.3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Netflix/lemur/security/advisories/GHSA-g7p5-89mh-248h","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Netflix/lemur/security/advisories/GHSA-g7p5-89mh-248h","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-71322","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-71322 — Lemur manages TLS certificate creation. Prior to 1.9.3, CertificateExport placed its CertificatePerm…","description":"Lemur manages TLS certificate creation. Prior to 1.9.3, CertificateExport placed its CertificatePermission ownership check inside the plugin.requires_key branch for POST /api/1/certificates//export. A plugin declaring requires_key false bypassed that check, and the handler still passed cert.private_…","indicators":{"cves":["CVE-2026-71322"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:17:24.073Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/Netflix/lemur/commit/5683bbea8b10cce07f9a8abf1e4a7d3b2031c585","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Netflix/lemur/releases/tag/v1.9.3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Netflix/lemur/security/advisories/GHSA-4h97-p9wq-chqj","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-73529","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-73529 — Plainpad through 1.1.1, fixed in commit d3823fc, contains a missing rate limiting vulnerability that…","description":"Plainpad through 1.1.1, fixed in commit d3823fc, contains a missing rate limiting vulnerability that allows unauthenticated attackers to send unbounded login requests to the POST /v1/sessions endpoint due to dead code in App\\Http\\Kernel.php that is never instantiated under the Laravel 11+ skeleton,…","indicators":{"cves":["CVE-2026-73529"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:17:28.577Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/alextselegidis/plainpad/commit/d3823fc595b5d8f842a6fd7dfe49b7852a10fdac","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/plainpad-missing-rate-limiting-via-post-v1-sessions","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75876","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75876 — A security vulnerability has been detected in xianrendzw EasyReport up to 2.0.17.0522_Beta. Affected…","description":"A security vulnerability has been detected in xianrendzw EasyReport up to 2.0.17.0522_Beta. Affected by this issue is some unknown functionality of the file ModuleController.java of the component Move Operations. Such manipulation of the argument sourcePath leads to sql injection. The attack may be…","indicators":{"cves":["CVE-2026-75876"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:17:33.093Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/xianrendzw/EasyReport/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/xianrendzw/EasyReport/issues/84","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-75876","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/877794","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391569","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391569/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76032","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76032 — Pydio Cells 5.0.0 through 5.0.2 returns share-link details to any authenticated user. The REST handl…","description":"Pydio Cells 5.0.0 through 5.0.2 returns share-link details to any authenticated user. The REST handler for GET /a/share/link/{Uuid} in idm/share/rest/handler.go reads the workspace UUID from the path, calls LinkById, and writes the result with no authorization step, whereas the sibling handler for G…","indicators":{"cves":["CVE-2026-76032"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:17:34.503Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/pydio/cells","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/pydio/cells/blob/v5.0.2/common/proto/service/converter.go#L35-L38","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/pydio/cells/blob/v5.0.2/frontend/web/public-handler.go#L167","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/pydio/cells/blob/v5.0.2/idm/share/rest/handler.go#L133-L158","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/pydio/cells/blob/v5.0.2/idm/share/rest/handler.go#L193-L203","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/pydio/cells/issues/981","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/pydio-cells-to-missing-authorization-on-the-share-link-rest-handler","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-12631","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-12631 — The Zephyr kernel validates the k_thread_join() and k_thread_abort() system calls (declared __syscal…","description":"The Zephyr kernel validates the k_thread_join() and k_thread_abort() system calls (declared __syscall in include/zephyr/kernel.h) through thread_obj_validate() in kernel/thread.c. Its default switch branch is the access-denied path, taken when k_object_validate() returns -EPERM (the calling user thr…","indicators":{"cves":["CVE-2026-12631"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:33.647Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/zephyrproject-rtos/zephyr/commit/bd1828652dfc217ba9f3a2221a7499cd8914ed9c","label":"vulnerabilities@zephyrproject.org","domainType":"primary"},{"url":"https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-crfw-75jw-hjm3","label":"vulnerabilities@zephyrproject.org","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-12632","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-12632 — Zephyr's Precision Time Protocol receive handler ptp_msg_post_recv() in subsys/net/lib/ptp/msg.c tak…","description":"Zephyr's Precision Time Protocol receive handler ptp_msg_post_recv() in subsys/net/lib/ptp/msg.c takes the 4-bit message type straight off the wire via ptp_msg_type() (msg->header.type_major_sdo_id & 0xF, range 0-15) and uses it to index the msg_size[] table. That table only defines entries up to PT…","indicators":{"cves":["CVE-2026-12632"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:33.783Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/zephyrproject-rtos/zephyr/commit/30dabd4c2f2e3641732c00111cd80b5c524c0136","label":"vulnerabilities@zephyrproject.org","domainType":"primary"},{"url":"https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-frjr-h396-7wh4","label":"vulnerabilities@zephyrproject.org","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-16732","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-16732 — fastify is a fast and low overhead web framework for Node.js. Impact: the fix for CVE-2026-3635 adde…","description":"fastify is a fast and low overhead web framework for Node.js. Impact: the fix for CVE-2026-3635 added a guard on the forwarded-header reads used to derive the request host, protocol, hostname, ip, and ips values, checking the connecting address. That guard closes the IP, CIDR, and custom-function fo…","indicators":{"cves":["CVE-2026-16732"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:34.063Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://cna.openjsf.org/security-advisories.html","label":"ce714d77-add3-4f53-aff5-83d477b104bb","domainType":"other"},{"url":"https://github.com/fastify/fastify/security/advisories/GHSA-3m5p-2c4r-xxw2","label":"ce714d77-add3-4f53-aff5-83d477b104bb","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-18504","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-18504 — fastify is a fast and low overhead web framework for Node.js. Versions of fastify before 5.12.1 are…","description":"fastify is a fast and low overhead web framework for Node.js. Versions of fastify before 5.12.1 are affected by a schema validation bypass when a request body schema targets a root primitive value. When the schema validates a top-level primitive such as an integer, Ajv can coerce a JSON string into…","indicators":{"cves":["CVE-2026-18504"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:34.220Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://cna.openjsf.org/security-advisories.html","label":"ce714d77-add3-4f53-aff5-83d477b104bb","domainType":"other"},{"url":"https://github.com/fastify/fastify/security/advisories/GHSA-w2qp-rph6-63g4","label":"ce714d77-add3-4f53-aff5-83d477b104bb","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-41921","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-41921 — Koha before 26.05.02, 25.11.07, and 25.05.13 contains a stored cross-site scripting vulnerability in…","description":"Koha before 26.05.02, 25.11.07, and 25.05.13 contains a stored cross-site scripting vulnerability in the purchase suggestion handler that allows authenticated staff users to inject malicious scripts by submitting unsanitized input through the suggestion save operation. Attackers can supply crafted H…","indicators":{"cves":["CVE-2026-41921"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:34.487Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://koha-community.org/koha-25-05-13-released/","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://koha-community.org/koha-25-11-07-released/","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://koha-community.org/koha-26-05-02-released/","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://www.vulncheck.com/advisories/koha-stored-xss-via-purchase-suggestion-handler","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-52817","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-52817 — Linuxfabrik Monitoring Plugins provides monitoring plugins for Icinga, Nagios, and related systems.…","description":"Linuxfabrik Monitoring Plugins provides monitoring plugins for Icinga, Nagios, and related systems. Prior to version 5.1.0, the shipped assets/sudoers/Debian.sudoers policy allowed the nagios or icinga account to execute /usr/bin/apt-get as root without restricting its arguments. An attacker who alr…","indicators":{"cves":["CVE-2026-52817","CVE-2026-73973"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["apt"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:34.820Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/Linuxfabrik/monitoring-plugins/blob/main/CHANGELOG.md#v510---2026-05-30","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Linuxfabrik/monitoring-plugins/commit/694b5daeebadc9a51428f3de1acff7b1f737642f","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Linuxfabrik/monitoring-plugins/releases/tag/v5.1.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Linuxfabrik/monitoring-plugins/security/advisories/GHSA-8w6w-23mq-h8rg","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Linuxfabrik/monitoring-plugins/blob/ae486fc629e1ca9373e1b6dd5e395603ee453bbc/CHANGELOG.md#v700---2026-08-14","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Linuxfabrik/monitoring-plugins/commit/a0ca1268d84e0caf10442b9c7477d699b52d1c92","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Linuxfabrik/monitoring-plugins/releases/tag/v7.0.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Linuxfabrik/monitoring-plugins/security/advisories/GHSA-f54c-p5vg-mr5c","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-54543","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-54543 — Froxlor is open source server administration software. Prior to 2.3.8, the DomainZones.add API comma…","description":"Froxlor is open source server administration software. Prior to 2.3.8, the DomainZones.add API command in lib/Froxlor/Api/Commands/DomainZones.php accepts user-controlled record and type values without rejecting line delimiters, tab characters, semicolons, or unsupported DNS record types before lib/…","indicators":{"cves":["CVE-2026-54543"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:36.313Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/froxlor/froxlor/commit/a4f09f09fa71337b6cdff364d0a641d631a0130a","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/froxlor/froxlor/releases/tag/2.3.8","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/froxlor/froxlor/security/advisories/GHSA-5rw4-4665-cvwf","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-55593","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-55593 — Froxlor is open source server administration software. Prior to 2.3.8, the standalone lib/ajax.php e…","description":"Froxlor is open source server administration software. Prior to 2.3.8, the standalone lib/ajax.php entry point bypasses the centralized request validation in lib/init.php, and Ajax::handle in lib/Froxlor/Ajax/Ajax.php checks only for a valid session before routing state-changing requests. The editap…","indicators":{"cves":["CVE-2026-55593"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:36.603Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/froxlor/froxlor/commit/5f540fe361e7e13e8c5a32805b793a25e9e26a0e","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/froxlor/froxlor/releases/tag/2.3.8","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/froxlor/froxlor/security/advisories/GHSA-xpr4-8vp6-c87j","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-60589","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-60589 — Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition produ…","description":"Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Security).  Supported versions that are affected are Oracle Java SE: 8u501, 11.0.32, 17.0.20, 21.0.12, 25.0.4, 26.0.2; Oracle GraalVM for JDK: 17.0.20 and  21.0.12; Or…","indicators":{"cves":["CVE-2026-60589","CVE-2026-61308","CVE-2026-70907"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:38.247Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60682","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-60682 — Vulnerability in the Oracle Hyperion Financial Reporting product of Oracle Hyperion (component: Repo…","description":"Vulnerability in the Oracle Hyperion Financial Reporting product of Oracle Hyperion (component: Repository).   The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Hyperion Financia…","indicators":{"cves":["CVE-2026-60682"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:39.083Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60830","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-60830 — Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Worklist). Suppo…","description":"Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Worklist).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Workflow.  Successful attacks of…","indicators":{"cves":["CVE-2026-60830"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:44.513Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-60884","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-60884 — Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Pane…","description":"Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Panel Processor).  Supported versions that are affected are 8.61-8.63. Difficult to exploit vulnerability allows low privileged attacker with network access via HTTP to compromise PeopleSoft Enterprise Pe…","indicators":{"cves":["CVE-2026-60884"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:46.417Z","fetchedAt":"2026-08-21T03:01:29.074Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-61139","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-61139 — Vulnerability in the Oracle Public Sector Financials (International) product of Oracle E-Business Su…","description":"Vulnerability in the Oracle Public Sector Financials (International) product of Oracle E-Business Suite (component: Authorization).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Ora…","indicators":{"cves":["CVE-2026-61139"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:54.417Z","fetchedAt":"2026-08-21T03:01:29.075Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-61198","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-61198 — Vulnerability in the Oracle Learning Management product of Oracle E-Business Suite (component: Inter…","description":"Vulnerability in the Oracle Learning Management product of Oracle E-Business Suite (component: Internal Operations).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Learning M…","indicators":{"cves":["CVE-2026-61198"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:54.770Z","fetchedAt":"2026-08-21T03:01:29.075Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-62475","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-62475 — Vulnerability in the Oracle Shipping Execution product of Oracle E-Business Suite (component: Intern…","description":"Vulnerability in the Oracle Shipping Execution product of Oracle E-Business Suite (component: Internal Operations).  Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle Shipping…","indicators":{"cves":["CVE-2026-62475"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:03.297Z","fetchedAt":"2026-08-21T03:01:29.075Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70720","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-70720 — Vulnerability in the Oracle Production Scheduling product of Oracle E-Business Suite (component: Int…","description":"Vulnerability in the Oracle Production Scheduling product of Oracle E-Business Suite (component: Internal Operations).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Productio…","indicators":{"cves":["CVE-2026-70720"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:24.437Z","fetchedAt":"2026-08-21T03:01:29.077Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70726","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-70726 — Vulnerability in the Oracle Cash Management product of Oracle E-Business Suite (component: Internal…","description":"Vulnerability in the Oracle Cash Management product of Oracle E-Business Suite (component: Internal Operations).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle Cash Management ex…","indicators":{"cves":["CVE-2026-70726"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:25.143Z","fetchedAt":"2026-08-21T03:01:29.077Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70732","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-70732 — Vulnerability in the Oracle Mobile Application Server product of Oracle E-Business Suite (component:…","description":"Vulnerability in the Oracle Mobile Application Server product of Oracle E-Business Suite (component: MWA Terminal Server).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Mobil…","indicators":{"cves":["CVE-2026-70732"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:25.853Z","fetchedAt":"2026-08-21T03:01:29.077Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70775","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-70775 — Vulnerability in the Oracle Installed Base product of Oracle E-Business Suite (component: User Inter…","description":"Vulnerability in the Oracle Installed Base product of Oracle E-Business Suite (component: User Interface).  Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Installed Base.  Succ…","indicators":{"cves":["CVE-2026-70775"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:30.457Z","fetchedAt":"2026-08-21T03:01:29.077Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-71073","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-71073 — Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Connector/ODBC). The suppo…","description":"Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Connector/ODBC).   The supported version that is affected is 26.7.0. Easily exploitable vulnerability allows unauthenticated attacker with logon to the infrastructure where MySQL Connectors executes to compromise MySQL Connect…","indicators":{"cves":["CVE-2026-71073","CVE-2026-71079","CVE-2026-71084"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:18:07.387Z","fetchedAt":"2026-08-21T03:01:29.079Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-71124","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-71124 — Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Authoriza…","description":"Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Authorization Engine).  Supported versions that are affected are 12.2.1.4.0 and  14.1.2.1.0. Easily exploitable vulnerability allows low privileged attacker with network access via TCP to compromise Oracle Acc…","indicators":{"cves":["CVE-2026-71124"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:18:13.177Z","fetchedAt":"2026-08-21T03:01:29.080Z","references":[{"url":"https://www.oracle.com/security-alerts/cspuaug2026.html","label":"secalert_us@oracle.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76033","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76033 — Inappropriate implementation in CORS in Google Chrome prior to 151.0.7922.169 allowed a remote attac…","description":"Inappropriate implementation in CORS in Google Chrome prior to 151.0.7922.169 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: High)","indicators":{"cves":["CVE-2026-76033"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:18:27.263Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_0826575033.html","label":"chrome-cve-admin@google.com","domainType":"other"},{"url":"https://issues.chromium.org/issues/516715010","label":"chrome-cve-admin@google.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76039","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76039 — Incorrect reference resolution in Core in Google Chrome on on Android prior to 151.0.7922.169 allowe…","description":"Incorrect reference resolution in Core in Google Chrome on on Android prior to 151.0.7922.169 allowed a remote attacker leveraging social engineering to obtain sensitive information via a crafted HTML page. (Chromium security severity: High)","indicators":{"cves":["CVE-2026-76039"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["phishing"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:18:27.947Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_0826575033.html","label":"chrome-cve-admin@google.com","domainType":"other"},{"url":"https://issues.chromium.org/issues/525167753","label":"chrome-cve-admin@google.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76041","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76041 — Information leak in Skia in Google Chrome prior to 151.0.7922.169 allowed a remote attacker to poten…","description":"Information leak in Skia in Google Chrome prior to 151.0.7922.169 allowed a remote attacker to potentially bypass web origin policy via a crafted HTML page. (Chromium security severity: High)","indicators":{"cves":["CVE-2026-76041"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:18:28.173Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_0826575033.html","label":"chrome-cve-admin@google.com","domainType":"other"},{"url":"https://issues.chromium.org/issues/540027341","label":"chrome-cve-admin@google.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-47699","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-47699 — Confidential Containers Guest Components provides guest tools and components for confidential contai…","description":"Confidential Containers Guest Components provides guest tools and components for confidential container workloads. From 0.16.0 until 0.20.0, a crafted OCI image layer can make image_rs::stream::unpack::unpack() create a hardlink outside its destination directory. In image-rs/src/stream/unpack.rs, tr…","indicators":{"cves":["CVE-2026-47699"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T22:16:52.127Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://github.com/confidential-containers/guest-components/commit/14fbb711af0b29bb9cad307969d57b0de9b85d7f","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/confidential-containers/guest-components/commit/7cc1bc458973310296e58aedbb15cb7963297bbe","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/confidential-containers/guest-components/pull/1440","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/confidential-containers/guest-components/pull/1457","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/confidential-containers/guest-components/releases/tag/v0.20.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/confidential-containers/guest-components/security/advisories/GHSA-84rc-2q4r-45pc","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-48796","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-48796 — CefSharp provides .NET bindings for the Chromium Embedded Framework for Windows Forms and Windows Pr…","description":"CefSharp provides .NET bindings for the Chromium Embedded Framework for Windows Forms and Windows Presentation Foundation applications. Prior to version 148.0.90, CefSharp/SchemeHandler/FolderSchemeHandlerFactory.cs used filePath.StartsWith(rootFolder, StringComparison.OrdinalIgnoreCase) to decide w…","indicators":{"cves":["CVE-2026-48796"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T22:16:52.280Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://github.com/cefsharp/CefSharp/commit/3475c7ef14119f67ec3720866bb3e4b1c6c68632","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cefsharp/CefSharp/releases/tag/v148.0.90","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cefsharp/CefSharp/security/advisories/GHSA-85jm-cwp2-mvpv","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-52873","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-52873 — Streambert is a cross-platform Electron Desktop App to stream and download video content. From versi…","description":"Streambert is a cross-platform Electron Desktop App to stream and download video content. From version 2.5.0 until version 2.6.0, the wyzie-open-redeem IPC handler in index.js creates the partition:wyzie-redeem Electron session and registers an onHeadersReceived hook that removes the Content-Securit…","indicators":{"cves":["CVE-2026-52873"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T22:16:53.830Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://github.com/truelockmc/streambert/commit/0bd6b6ca8c830f22f75de1aa2e0d8b9bdf6d34c7","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/truelockmc/streambert/pull/126","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/truelockmc/streambert/releases/tag/2.6.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/truelockmc/streambert/security/advisories/GHSA-2j2q-qvpf-wh43","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-53959","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-53959 — 4gaBoards is a boards system for realtime project management. Prior to 3.3.9, 4gaBoards allows any a…","description":"4gaBoards is a boards system for realtime project management. Prior to 3.3.9, 4gaBoards allows any authenticated user to enumerate account information for every user through GET /api/users and retrieve arbitrary accounts through GET /api/users/:id. The users/index and users/show actions rely only on…","indicators":{"cves":["CVE-2026-53959"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["phishing"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T22:16:54.907Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://github.com/RARgames/4gaBoards/commit/93099d913cbfdbb1799b4aca19d2d0c2d2a276fb","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/RARgames/4gaBoards/releases/tag/v3.3.9","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/RARgames/4gaBoards/security/advisories/GHSA-p77f-p47g-h72p","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-62289","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-62289 — libheif is a HEIF and AVIF file format decoder and encoder. In 1.23.0 and earlier, a crafted HEIF or…","description":"libheif is a HEIF and AVIF file format decoder and encoder. In 1.23.0 and earlier, a crafted HEIF or AVIF file containing a clean aperture box can reduce an image dimension to zero and crash or corrupt tiling results when heif_image_handle_get_image_tiling(handle, 1, &tiling) is called. ImageItem::g…","indicators":{"cves":["CVE-2026-62289"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T22:17:02.720Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://github.com/strukturag/libheif/commit/f01870c1d7323a3003796d58eba7fff502be994c","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/strukturag/libheif/releases/tag/v1.23.1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/strukturag/libheif/security/advisories/GHSA-jc8f-p23p-5hjg","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-62291","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-62291 — libheif is a HEIF and AVIF file format decoder and encoder. In 1.23.0 and earlier, a crafted image s…","description":"libheif is a HEIF and AVIF file format decoder and encoder. In 1.23.0 and earlier, a crafted image sequence with a 2x2 primary plane and a 256x256 auxiliary alpha plane can cause attacker-controlled heap corruption during a normal decode and re-encode workflow. Track_Visual::decode_next_image_sample…","indicators":{"cves":["CVE-2026-62291"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T22:17:02.877Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://github.com/strukturag/libheif/commit/ac5521ad50399885de96bb6a0733a5d2442740f9","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/strukturag/libheif/releases/tag/v1.23.1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/strukturag/libheif/security/advisories/GHSA-xpw3-9rhw-482x","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-62377","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-62377 — libheif is a HEIF and AVIF file format decoder and encoder. In 1.23.0 and earlier, a crafted HEIF se…","description":"libheif is a HEIF and AVIF file format decoder and encoder. In 1.23.0 and earlier, a crafted HEIF sequence accepted by heif_context_read_from_memory() can leave the context with no registered sequence tracks and crash when heif_context_get_track(ctx, 0) is called. HeifContext::get_track() in libheif…","indicators":{"cves":["CVE-2026-62377"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T22:17:03.167Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://github.com/strukturag/libheif/commit/e1a0bc1c1ae74f8075eaca30a1cdb2b9bee698d3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/strukturag/libheif/issues/1844","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/strukturag/libheif/releases/tag/v1.23.1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/strukturag/libheif/security/advisories/GHSA-9ww4-9v47-m7pj","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-66589","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-66589 — Missing Authorization vulnerability in Kings Plugins B2BKing allows Exploiting Incorrectly Configure…","description":"Missing Authorization vulnerability in Kings Plugins B2BKing allows Exploiting Incorrectly Configured Access Control Security Levels.\n\nThis issue affects B2BKing: from n/a through 5.2.30.","indicators":{"cves":["CVE-2026-66589"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T23:17:04.787Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/b2bking-wholesale-for-woocommerce/vulnerability/wordpress-b2bking-plugin-5-2-30-broken-access-control-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2025-11729","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2025-11729 — The PPWP: Password Protect Pages, Posts & Full or Partial Content plugin for WordPress is vulnerable…","description":"The PPWP: Password Protect Pages, Posts & Full or Partial Content plugin for WordPress is vulnerable to unauthorized access of data due to a improper capability check on the can_access function in all versions up to, and including, 1.9.15. This makes it possible for authenticated attackers, with Con…","indicators":{"cves":["CVE-2025-11729"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T00:16:24.943Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://plugins.trac.wordpress.org/changeset/3486400/","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/d1e041f0-3019-4d1f-b1a3-b40275c0966a?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75978","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75978 — A security vulnerability has been detected in xianrendzw EasyReport up to 2.0.17.0522_Beta. The affe…","description":"A security vulnerability has been detected in xianrendzw EasyReport up to 2.0.17.0522_Beta. The affected element is the function DataSourceController.add of the file DataSourceController.java of the component QueryerFactory. Such manipulation of the argument queryerClass leads to permission issues.…","indicators":{"cves":["CVE-2026-75978"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T00:16:28.810Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://github.com/xianrendzw/EasyReport/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/xianrendzw/EasyReport/issues/83","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-75978","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/877797","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391893","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391893/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75979","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75979 — A vulnerability was found in xianrendzw EasyReport up to 2.0.17.0522_Beta. Affected is the function…","description":"A vulnerability was found in xianrendzw EasyReport up to 2.0.17.0522_Beta. Affected is the function execSqlText/previewSqlText of the file DesignerController.java of the component SQL Preview Endpoint. The manipulation of the argument sqlText results in improper neutralization of special elements us…","indicators":{"cves":["CVE-2026-75979"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T01:16:57.460Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://github.com/xianrendzw/EasyReport/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/xianrendzw/EasyReport/issues/82","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-75979","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/877844","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391897","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391897/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15421","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-15421 — The Speed Optimizer – The All-In-One Performance-Boosting Plugin plugin for WordPress is vulnerable…","description":"The Speed Optimizer – The All-In-One Performance-Boosting Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Image Tag Attributes in all versions up to, and including, 7.8.0 due to insufficient input sanitization and output escaping. This makes it possible for authenticated…","indicators":{"cves":["CVE-2026-15421"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T02:16:12.677Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/sg-cachepress/tags/7.7.11/core/Lazy_Load/Abstract_Lazy_Load.php#L109","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/sg-cachepress/tags/7.7.11/core/Lazy_Load/Lazy_Load.php#L39","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/sg-cachepress/tags/7.7.11/core/Lazy_Load/Lazy_Load_Images.php#L31","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/sg-cachepress/tags/7.8.0/core/Lazy_Load/Abstract_Lazy_Load.php#L109","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/sg-cachepress/tags/7.8.0/core/Lazy_Load/Lazy_Load.php#L39","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/sg-cachepress/tags/7.8.0/core/Lazy_Load/Lazy_Load_Images.php#L31","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?old_path=%2Fsg-cachepress/tags/7.8.0&new_path=%2Fsg-cachepress/tags/7.8.1","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&new=3642965%40sg-cachepress%2Ftags%2F7.8.1&old=3581843%40sg-cachepress%2Ftags%2F7.8.0","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/2626ad96-4346-4564-b6bd-0c226bd8dfd4?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-13175","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-13175 — The Eventin WordPress plugin before 4.1.21 does not verify ownership before allowing schedule record…","description":"The Eventin  WordPress plugin before 4.1.21 does not verify ownership before allowing schedule records to be modified or deleted, allowing users with contributor-level access and above to alter or delete schedule entries created by other users.","indicators":{"cves":["CVE-2026-13175"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:32.480Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://wpscan.com/vulnerability/10762bf3-9663-40dc-9794-88ec7aa5b048/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-14196","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-14196 — The WCFM Marketplace WordPress plugin before 3.8.1 does not verify that a marketplace vendor owns a…","description":"The WCFM Marketplace  WordPress plugin before 3.8.1 does not verify that a marketplace vendor owns a review before allowing it to be unapproved or deleted, allowing any vendor to modify or permanently delete reviews belonging to other vendors' stores.","indicators":{"cves":["CVE-2026-14196"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:32.740Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://wpscan.com/vulnerability/877936f4-5664-4e17-b3cd-28f8f33f18ac/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-14287","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-14287 — The 10Web Booster WordPress plugin before 2.33.5 does not correctly validate an access token on an u…","description":"The 10Web Booster  WordPress plugin before 2.33.5 does not correctly validate an access token on an unauthenticated request handler and does not escape attacker-supplied stylesheet content before rendering it into the page head, allowing an unauthenticated attacker to store markup that executes as J…","indicators":{"cves":["CVE-2026-14287"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:33.010Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://wpscan.com/vulnerability/a0519e86-b77e-4354-a91d-ff729514d570/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15253","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-15253 — The Easy Media Replace WordPress plugin through 0.2.0 does not sanitise and escape an attachment tit…","description":"The Easy Media Replace WordPress plugin through 0.2.0 does not sanitise and escape an attachment title before outputting it in an HTML attribute in the media library list view, allowing users with the Author role and above to inject arbitrary web scripts that are executed in the browser of a higher…","indicators":{"cves":["CVE-2026-15253"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:34.360Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://wpscan.com/vulnerability/46eda528-3737-4c0d-bf72-df7fc6423907/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16058","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-16058 — The YayCurrency WordPress plugin before 3.3.5 does not perform any capability or ownership check on…","description":"The YayCurrency  WordPress plugin before 3.3.5 does not perform any capability or ownership check on several of its multi-vendor integration handlers that are reachable by unauthenticated users, allowing anyone to read the store's order totals and its vendors' earnings, balance ledgers, and withdraw…","indicators":{"cves":["CVE-2026-16058"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:34.670Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://wpscan.com/vulnerability/d32d7086-9a43-4d98-80d7-18a3f82797bb/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16979","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-16979 — The SmartCrawl SEO checker, analyzer & optimizer WordPress plugin before 3.16.3 does not perform cap…","description":"The SmartCrawl SEO checker, analyzer & optimizer WordPress plugin before 3.16.3 does not perform capability checks on two of its AJAX actions, allowing users with at least the Subscriber role to read the titles of private and draft posts by ID and to enumerate stored post-meta key names.","indicators":{"cves":["CVE-2026-16979"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:36.013Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://wpscan.com/vulnerability/c9eb27aa-c5f9-4f1c-b87c-337ebaf192dd/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18202","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-18202 — The JetEngine WordPress plugin before 3.8.14 adds SVG to the site-wide list of allowed upload types…","description":"The JetEngine WordPress plugin before 3.8.14 adds SVG to the site-wide list of allowed upload types without sanitising the file contents, allowing users with the upload files capability, such as Authors, to upload a file containing malicious JavaScript that executes in the browser of any user who op…","indicators":{"cves":["CVE-2026-18202"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:37.163Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://wpscan.com/vulnerability/911d3b5a-0f03-4423-b4b0-84e588c323d8/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18231","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-18231 — The WP Directory Kit WordPress plugin before 1.5.7 does not perform any authorization check on one o…","description":"The WP Directory Kit WordPress plugin before 1.5.7 does not perform any authorization check on one of its public AJAX actions and returns unfiltered database rows, allowing unauthenticated attackers to retrieve the usernames and email addresses of users holding the WP Directory Kit WordPress plugin…","indicators":{"cves":["CVE-2026-18231"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:37.450Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://wpscan.com/vulnerability/c4508c33-40ac-42c6-aa7e-cf9004d381bd/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18466","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-18466 — The WP Maps WordPress plugin before 4.9.8 does not perform a capability check, nor validate a nonce,…","description":"The WP Maps  WordPress plugin before 4.9.8 does not perform a capability check, nor validate a nonce, in one of its AJAX actions, allowing users with a Subscriber account to create an unlimited number of options in the database, each of which is loaded on every page request.","indicators":{"cves":["CVE-2026-18466"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:37.697Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://wpscan.com/vulnerability/2e12d9cf-520a-4602-aeee-7dbc26f79951/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18777","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-18777 — The TrueBooker WordPress plugin before 1.2.7 does not have proper authorisation checks in one of its…","description":"The TrueBooker  WordPress plugin before 1.2.7 does not have proper authorisation checks in one of its AJAX actions, allowing unauthenticated users to change the status of arbitrary appointments, as well as to trigger notification emails to the affected customers.","indicators":{"cves":["CVE-2026-18777","CVE-2026-18779"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:38.250Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://wpscan.com/vulnerability/05a09ba7-b781-4462-8c50-3a45f2757cb2/","label":"contact@wpscan.com","domainType":"other"},{"url":"https://wpscan.com/vulnerability/9d7f9a09-a144-4a0a-998c-e5bc5037fc1b/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19416","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19416 — The KiviCare WordPress plugin before 4.5.4 does not verify that the requesting user owns the appoint…","description":"The KiviCare  WordPress plugin before 4.5.4 does not verify that the requesting user owns the appointment being modified, allowing authenticated patient-level users to cancel and reschedule other patients' appointments.","indicators":{"cves":["CVE-2026-19416"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:39.810Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://wpscan.com/vulnerability/ef2aa44b-3624-4e6d-9b25-e33d4a1a21d2/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19417","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19417 — The KiviCare WordPress plugin before 4.5.4 does not verify that the requesting user is entitled to t…","description":"The KiviCare  WordPress plugin before 4.5.4 does not verify that the requesting user is entitled to the media file being served, allowing authenticated patient-level users to download any file in the media library, including other patients' uploaded medical reports.","indicators":{"cves":["CVE-2026-19417"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:40.043Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://wpscan.com/vulnerability/4270b160-cbb8-46b2-853c-927651ca16bf/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19709","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19709 — The Membership For WooCommerce WordPress plugin before 3.1.2 does not check that an API consumer sec…","description":"The Membership For WooCommerce WordPress plugin before 3.1.2 does not check that an API consumer secret has actually been generated before comparing it against the one supplied in a request, allowing unauthenticated attackers to reach its REST routes and disclose any user's membership plan details o…","indicators":{"cves":["CVE-2026-19709"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:40.273Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://wpscan.com/vulnerability/957888a4-bb11-42c6-930a-8c836170452b/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19782","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19782 — The WPS Bidouille WordPress plugin before 1.33.5 does not have proper authorisation checks in an AJA…","description":"The WPS Bidouille WordPress plugin before 1.33.5 does not have proper authorisation checks in an AJAX action, allowing any authenticated user, such as a subscriber, to retrieve the email addresses of all registered users.","indicators":{"cves":["CVE-2026-19782"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:40.443Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://wpscan.com/vulnerability/8dabc48e-15ee-482c-be77-6ad6fb312a7a/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-8810","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-8810 — On ARM platforms, a vulnerability in the architecture design of HDD Password could allow an attacker…","description":"On ARM platforms, a vulnerability in the architecture design of HDD Password could allow an attacker to retrieve HDD Password from UEFI variables.","indicators":{"cves":["CVE-2026-8810"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:43.293Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://www.insyde.com/security-pledge/sa-2026005/","label":"8338d8cb-57f7-4252-abc0-96fd13e98d21","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15446","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-15446 — The EWWW Image Optimizer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'data…","description":"The EWWW Image Optimizer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'data-script' Lazy Load Attribute in Post Content in all versions up to, and including, 8.7.3 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers,…","indicators":{"cves":["CVE-2026-15446"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T07:16:27.530Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/nosilver4u/ewww-image-optimizer/commit/4488aafaee9212db370a5ed2dcb9bad7912b897d","label":"security@wordfence.com","domainType":"primary"},{"url":"https://plugins.trac.wordpress.org/browser/ewww-image-optimizer/tags/8.6.0/classes/class-lazy-load.php#L1679","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/ewww-image-optimizer/tags/8.6.0/classes/class-lazy-load.php#L496","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/ewww-image-optimizer/tags/8.6.0/includes/ls.unveilhooks.js#L116","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/ewww-image-optimizer/tags/8.6.0/includes/ls.unveilhooks.js#L178","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/ewww-image-optimizer/tags/8.7.3/classes/class-lazy-load.php#L1679","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/ewww-image-optimizer/tags/8.7.3/classes/class-lazy-load.php#L496","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/ewww-image-optimizer/tags/8.7.3/includes/ls.unveilhooks.js#L116","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/ewww-image-optimizer/tags/8.7.3/includes/ls.unveilhooks.js#L178","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/e8af1fdb-7fec-4bbe-937b-ee2e76cf5c5b?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75900","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75900 — An out-of-bounds read vulnerability was found in swtpm's SWTPM_NVRAM_CheckHeader() function. The ent…","description":"An out-of-bounds read vulnerability was found in swtpm's SWTPM_NVRAM_CheckHeader() function. The entry guard checks the buffer length against sizeof(bh), where bh is a pointer, instead of sizeof(*bh), the actual struct size. This allows an undersized buffer to pass validation, causing a 2-byte heap…","indicators":{"cves":["CVE-2026-75900"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T08:17:14.073Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-75900","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2517910","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76166","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76166 — A flaw was found in mod_cluster's AdvertiseListenerImpl (org.jboss.modcluster core module). A single…","description":"A flaw was found in mod_cluster's AdvertiseListenerImpl (org.jboss.modcluster core module). A single crafted UDP multicast datagram with a valid HTTP status line and a \"Server:\" header but without the \"Date:\", \"Digest:\", and \"Sequence:\" headers triggers a NullPointerException in verifyDigest() that…","indicators":{"cves":["CVE-2026-76166"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T10:16:38.150Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-76166","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2510883","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73363","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-73363 — Unauthenticated Broken Access Control in Taxi Booking Manager for WooCommerce < 2.0.8 versions.","description":"Unauthenticated Broken Access Control in Taxi Booking Manager for WooCommerce < 2.0.8 versions.","indicators":{"cves":["CVE-2026-73363"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T13:18:07.390Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/ecab-taxi-booking-manager/vulnerability/wordpress-taxi-booking-manager-for-woocommerce-plugin-2-0-8-broken-access-control-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70423","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-70423 — Dell OpenManage Enterprise, versions prior to 4.7.0, contains an Improper Restriction of XML Externa…","description":"Dell OpenManage Enterprise, versions prior to 4.7.0, contains an Improper Restriction of XML External Entity Reference vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Information exposure.","indicators":{"cves":["CVE-2026-70423"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:39.037Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://www.dell.com/support/kbdoc/en-us/000500910/dsa-2026-359-security-update-for-dell-openmanage-enterprise-vulnerabilities","label":"security_alert@emc.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70424","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-70424 — Dell OpenManage Enterprise, versions prior to 4.7.0, contains an Improper Limitation of a Pathname t…","description":"Dell OpenManage Enterprise, versions prior to 4.7.0, contains an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Information exposure.","indicators":{"cves":["CVE-2026-70424"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:39.190Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://www.dell.com/support/kbdoc/en-us/000500910/dsa-2026-359-security-update-for-dell-openmanage-enterprise-vulnerabilities","label":"security_alert@emc.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75148","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75148 — cgltf through 1.15 contains an integer overflow vulnerability in the non-sparse accessor bounds chec…","description":"cgltf through 1.15 contains an integer overflow vulnerability in the non-sparse accessor bounds check within cgltf_validate() that allows remote attackers to cause memory disclosure and denial of service by supplying crafted accessor count values. Attackers can provide malformed .gltf or .glb input…","indicators":{"cves":["CVE-2026-75148"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:40.507Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/jkuhlmann/cgltf/issues/301","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/cgltf-integer-overflow-via-cgltf-validate-accessor-bounds-check","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75919","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75919 — phpMyFAQ before 4.1.7 contains an authentication bypass vulnerability in SetupController that allows…","description":"phpMyFAQ before 4.1.7 contains an authentication bypass vulnerability in SetupController that allows unauthenticated attackers to run database migrations and create configuration backups when maintenance mode is enabled. Attackers can call POST /api/setup/update-database and POST /api/setup/backup e…","indicators":{"cves":["CVE-2026-75919"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:42.260Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/thorsten/phpMyFAQ/security/advisories/GHSA-f96w-7fx2-79c8","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/phpmyfaq-before-authentication-bypass-via-setup-api","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/thorsten/phpMyFAQ/security/advisories/GHSA-f96w-7fx2-79c8","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75920","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75920 — phpMyFAQ before v4.1.6 writes content backup ZIP archives to the web-accessible document root at con…","description":"phpMyFAQ before v4.1.6 writes content backup ZIP archives to the web-accessible document root at content.zip, exposing sensitive files including database credentials. Unauthenticated attackers can race concurrent requests to download the temporary ZIP file before deletion, or exploit XSS in admin co…","indicators":{"cves":["CVE-2026-75920"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:42.527Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/thorsten/phpMyFAQ/security/advisories/GHSA-8hmh-mrx6-pqvf","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/phpmyfaq-before-information-disclosure-via-backup-zip","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76206","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76206 — phpMyFAQ versions before 4.1.7 fail to validate active status in the PDF export endpoint, allowing u…","description":"phpMyFAQ versions before 4.1.7 fail to validate active status in the PDF export endpoint, allowing unauthenticated attackers to retrieve draft FAQ metadata. Attackers can access the public PDF export route with sequential FAQ identifiers to obtain titles, solution IDs, author names, and last-update…","indicators":{"cves":["CVE-2026-76206"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:45.930Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/thorsten/phpMyFAQ/security/advisories/GHSA-f8pr-32pp-mp7h","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/phpmyfaq-before-information-disclosure-via-pdf-export","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76209","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76209 — phpMyFAQ versions before v4.1.6 fail to validate the security.enableRegistration setting in API endp…","description":"phpMyFAQ versions before v4.1.6 fail to validate the security.enableRegistration setting in API endpoints, allowing attackers to create user accounts when registration is disabled. Attackers can bypass the registration restriction by submitting requests to POST /api/register or POST /api/v3.1/regist…","indicators":{"cves":["CVE-2026-76209"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:46.370Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/thorsten/phpMyFAQ/security/advisories/GHSA-h7q4-qgc4-c9vm","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/phpmyfaq-before-registration-bypass-via-api","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76210","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76210 — phpMyFAQ before 4.1.7 does not adequately sanitize HTML in FAQ answers before generating PDFs via TC…","description":"phpMyFAQ before 4.1.7 does not adequately sanitize HTML in FAQ answers before generating PDFs via TCPDF. An attacker with permission to create or edit FAQ content can embed an <img> tag whose src references a local file under the web root's content/ directory (e.g., content/core/config/database.php)…","indicators":{"cves":["CVE-2026-76210"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:46.510Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/thorsten/phpMyFAQ/security/advisories/GHSA-c63q-xx7x-j8w2","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/phpmyfaq-before-local-file-disclosure-via-pdf-export","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76211","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76211 — phpMyFAQ before 4.1.7 fails to properly enforce CONFIGURATION_EDIT permission on admin API read endp…","description":"phpMyFAQ before 4.1.7 fails to properly enforce CONFIGURATION_EDIT permission on admin API read endpoints for LDAP, Elasticsearch, OpenSearch, and dashboard configuration, allowing any authenticated user to access sensitive administrative data. Attackers can retrieve LDAP server topology, bind accou…","indicators":{"cves":["CVE-2026-76211"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:46.653Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/thorsten/phpMyFAQ/security/advisories/GHSA-7gh7-qh7c-9r8m","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/phpmyfaq-before-information-disclosure-via-admin-api","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/thorsten/phpMyFAQ/security/advisories/GHSA-7gh7-qh7c-9r8m","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-76212","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76212 — phpMyFAQ before 4.1.7, when configured to use PostgreSQL via the native pgsql PHP extension, declare…","description":"phpMyFAQ before 4.1.7, when configured to use PostgreSQL via the native pgsql PHP extension, declares an incorrect LIKE ESCAPE character ('=') in the Search/Database/Pgsql.php backend while escapeLikeWildcards() escapes user input with the '|' prefix. As a result, wildcard escaping is a no-op and us…","indicators":{"cves":["CVE-2026-76212"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:46.807Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/thorsten/phpMyFAQ/security/advisories/GHSA-5hx6-c293-588h","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/phpmyfaq-before-like-wildcard-injection-via-postgresql","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76215","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76215 — phpMyFAQ before 4.1.7 fails to apply parent FAQ visibility checks before returning child resources i…","description":"phpMyFAQ before 4.1.7 fails to apply parent FAQ visibility checks before returning child resources including comments and attachments. Unauthenticated attackers can retrieve restricted comment text, commenter email addresses, and attachment filenames for FAQ records they cannot directly access by qu…","indicators":{"cves":["CVE-2026-76215"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:47.607Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/thorsten/phpMyFAQ/security/advisories/GHSA-jmv9-23mw-mxpq","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/phpmyfaq-before-missing-authorization-via-child-resources","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76217","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76217 — GitPython versions before 3.1.58 fail to validate options passed to git rm and git checkout commands…","description":"GitPython versions before 3.1.58 fail to validate options passed to git rm and git checkout commands in IndexFile.remove() and Head.checkout(). Attackers can supply --pathspec-from-file and --pathspec-file-nul parameters to read arbitrary files accessible to the process, with full file contents retu…","indicators":{"cves":["CVE-2026-76217"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:47.903Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/gitpython-developers/GitPython/security/advisories/GHSA-hh9p-6wh2-4mfc","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/gitpython-before-arbitrary-file-read-via-pathspec-from-file","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76226","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76226 — Renovate versions from 43.65.0 before 43.102.11 contain a remote code execution vulnerability in baz…","description":"Renovate versions from 43.65.0 before 43.102.11 contain a remote code execution vulnerability in bazel-module and bazelisk managers when using lockFileMaintenance. Attackers can execute arbitrary code by providing malicious dependencies that are referenced in bazel mod deps calls, such as within ctx…","indicators":{"cves":["CVE-2026-76226"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:49.157Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/renovatebot/renovate/security/advisories/GHSA-5vjq-5jmg-39xq","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/renovate-through-remote-code-execution-via-lockfilemaintenance","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76227","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76227 — Renovate versions from 42.68.1 before 42.96.3 (and from 42.68.1 before 43.4.4), including correspond…","description":"Renovate versions from 42.68.1 before 42.96.3 (and from 42.68.1 before 43.4.4), including corresponding Docker images (renovate/renovate, mend/renovate-ce, renovate-ee-server, renovate-ee-worker >=13.3.0 <13.6.0), fail to restrict environment variables to an allowlist when spawning child processes.…","indicators":{"cves":["CVE-2026-76227"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:49.307Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/renovatebot/renovate/security/advisories/GHSA-8wc6-vgrq-x6cf","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/renovate-before-environment-variable-exposure","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76228","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76228 — Renovate versions >=32.124.0 and before 42.68.5 (and Mend renovate-ce/renovate-ee before 13.3.0) con…","description":"Renovate versions >=32.124.0 and before 42.68.5 (and Mend renovate-ce/renovate-ee before 13.3.0) contain a command injection vulnerability in Gradle Wrapper artifact handling. When Renovate processes Gradle Wrapper updates, it invokes a wrapper update command via a shell (e.g. /bin/sh -c ... ./gradl…","indicators":{"cves":["CVE-2026-76228"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:49.520Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/renovatebot/renovate/security/advisories/GHSA-pfq2-hh62-7m96","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/renovate-before-remote-code-execution-via-gradle-wrapper","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/renovatebot/renovate/security/advisories/GHSA-pfq2-hh62-7m96","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-76229","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76229 — Renovate versions from 39.218.0 before 40.33.0 contain an arbitrary command injection vulnerability…","description":"Renovate versions from 39.218.0 before 40.33.0 contain an arbitrary command injection vulnerability in the kustomize manager where user-provided chart names are appended to helm pull commands without proper sanitization. Attackers with repository write access can craft malicious kustomization.yaml f…","indicators":{"cves":["CVE-2026-76229"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:50.133Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/renovatebot/renovate/commit/cc08c6e98f19e6258c5d3180c70c98e1be0b0d37","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/renovatebot/renovate/security/advisories/GHSA-xv56-3wq5-9997","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/renovate-before-arbitrary-command-injection-via-kustomize","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76230","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76230 — Renovate versions from 35.63.0 before 40.33.0 contain a command injection vulnerability in the npm m…","description":"Renovate versions from 35.63.0 before 40.33.0 contain a command injection vulnerability in the npm manager where user-provided packageName values are appended to npm install commands without proper sanitization. Attackers with repository write access can craft malicious Renovate configuration files…","indicators":{"cves":["CVE-2026-76230"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:50.277Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/renovatebot/renovate/commit/012c0ac2fe32832e60a62bde405c0a241efd314c","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/renovatebot/renovate/commit/a70a6a376d31148e80be5a5c885ac33ff5ddb30c","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/renovatebot/renovate/security/advisories/GHSA-fr4j-65pv-gjjj","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/renovate-before-command-injection-via-npm","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76231","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76231 — Renovate versions from 32.135.0 before 40.33.0 contain a command injection vulnerability in the herm…","description":"Renovate versions from 32.135.0 before 40.33.0 contain a command injection vulnerability in the hermit manager where user-provided dependency names are appended to install and uninstall commands without proper sanitization. Attackers with repository write access can provide maliciously named hermit…","indicators":{"cves":["CVE-2026-76231"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:50.453Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/renovatebot/renovate/commit/41e8b99f86a6e2a56f80f7aa1a08a59d76f2358c","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/renovatebot/renovate/commit/a70a6a376d31148e80be5a5c885ac33ff5ddb30c","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/renovatebot/renovate/commit/b696abb3c2741508fbb4029f39153140a3722e1e","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/renovatebot/renovate/commit/eaec10d7c8afadbdd783ac47bd2adbfab444d6df","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/renovatebot/renovate/security/advisories/GHSA-36j9-mx87-2cff","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/renovate-before-command-injection-via-hermit","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/renovatebot/renovate/security/advisories/GHSA-36j9-mx87-2cff","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-76232","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76232 — Renovate versions from 31.51.0 before 40.33.0 contain a command injection vulnerability in the helmv…","description":"Renovate versions from 31.51.0 before 40.33.0 contain a command injection vulnerability in the helmv3 manager where the repository parameter is appended to helm registry login commands without proper sanitization. Attackers with repository write access can craft malicious Chart.yaml files to execute…","indicators":{"cves":["CVE-2026-76232"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:50.700Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/renovatebot/renovate/commit/a70a6a376d31148e80be5a5c885ac33ff5ddb30c","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/renovatebot/renovate/commit/f372a68144a4d78c9f7f418168e4efe03336a432","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/renovatebot/renovate/security/advisories/GHSA-3f44-xw83-3pmg","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/renovate-before-command-injection-via-helmv3-2","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76233","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76233 — Renovate versions from 39.53.0 before 40.33.0 contain a command injection vulnerability in the gleam…","description":"Renovate versions from 39.53.0 before 40.33.0 contain a command injection vulnerability in the gleam manager where the depName parameter is appended to gleam deps update commands without proper sanitization. Attackers with repository write access can craft malicious gleam.toml files to execute arbit…","indicators":{"cves":["CVE-2026-76233"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:50.957Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/renovatebot/renovate/commit/d29698e0131231652970f02765312769975e4d38","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/renovatebot/renovate/security/advisories/GHSA-xjr7-3c3g-m763","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/renovate-before-command-injection-via-gleam-manager","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/renovatebot/renovate/security/advisories/GHSA-xjr7-3c3g-m763","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-76239","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76239 — Stigmem before 0.9.0a11 fails to validate the delivery_address parameter when creating webhook subsc…","description":"Stigmem before 0.9.0a11 fails to validate the delivery_address parameter when creating webhook subscriptions, allowing authenticated users to specify internal loopback and private network destinations. Attackers can trigger matching fact-change events to cause the Stigmem server to issue server-side…","indicators":{"cves":["CVE-2026-76239"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:56.157Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/eidetic-labs/stigmem/security/advisories/GHSA-5p3m-vhh6-9236","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/stigmem-before-0a11-ssrf-via-unvalidated-webhook-delivery-address","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/eidetic-labs/stigmem/security/advisories/GHSA-5p3m-vhh6-9236","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-15961","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-15961 — IBM PowerVM Hypervisor FW1120.00, FW1110.00 through FW1110.30, and FW1060.00 through FW1060.80 IBM P…","description":"IBM PowerVM Hypervisor FW1120.00, FW1110.00 through FW1110.30, and FW1060.00 through FW1060.80 IBM PowerVM could allow a local attacker to obtain sensitive information or cause a denial of service due to improper control of format strings.","indicators":{"cves":["CVE-2026-15961"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:16:56.413Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283228","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-32802","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-32802 — Dell PowerPath, version 7.2 through to 8.0 SP1, contains an Improper Privilege Management vulnerabil…","description":"Dell PowerPath, version 7.2 through to 8.0 SP1, contains an Improper Privilege Management vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of privileges.","indicators":{"cves":["CVE-2026-32802"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:17:01.270Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://www.dell.com/support/kbdoc/en-us/000501417/dsa-2026-167-security-update-for-dell-powerpath-for-windows-vulnerabilities","label":"security_alert@emc.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-40507","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-40507 — OpenEMR before 8.3.0 contains a reflected cross-site scripting vulnerability in the patient portal t…","description":"OpenEMR before 8.3.0 contains a reflected cross-site scripting vulnerability in the patient portal template import handler. The templateHtml GET parameter is reflected into the page response without sanitization. An attacker can craft a URL that executes arbitrary JavaScript in the browser of any au…","indicators":{"cves":["CVE-2026-40507"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:17:01.530Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/openemr/openemr/commit/ba316dd1d8de1291102da3f20f64240729ff899e","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/openemr/openemr/releases/tag/v8_3_0","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/openemr/openemr/security/advisories/GHSA-rmmr-8498-463g","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/openemr-reflected-xss-via-templatehtml-parameter-in-patient-portal","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-40508","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-40508 — OpenEMR before 8.3.0 contains a stored cross-site scripting vulnerability in the patient portal temp…","description":"OpenEMR before 8.3.0 contains a stored cross-site scripting vulnerability in the patient portal template import handler that allows authenticated attackers with Forms Administration permissions to upload template files containing arbitrary HTML or JavaScript. Attackers can inject malicious scripts t…","indicators":{"cves":["CVE-2026-40508"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:17:01.707Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/openemr/openemr/commit/ba316dd1d8de1291102da3f20f64240729ff899e","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/openemr/openemr/releases/tag/v8_3_0","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/openemr/openemr/security/advisories/GHSA-5293-8q47-cf44","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/openemr-stored-xss-via-patient-portal-template-import-handler","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/openemr/openemr/security/advisories/GHSA-5293-8q47-cf44","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-40509","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-40509 — OpenEMR before 8.3.0 contains a cross-site request forgery vulnerability in the DICOM viewer. The we…","description":"OpenEMR before 8.3.0 contains a cross-site request forgery vulnerability in the DICOM viewer. The web_path GET parameter in the DICOM viewer page is embedded unsanitized as a URL without validation against expected path formats. An attacker can craft a URL that causes an authenticated user with Pati…","indicators":{"cves":["CVE-2026-40509"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:17:01.867Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/openemr/openemr/commit/f760adc7bddaf9d118e1a0d40590e686783ed21b","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/openemr/openemr/releases/tag/v8_3_0","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/openemr/openemr/security/advisories/GHSA-wffp-pj5h-xqwp","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/openemr-csrf-via-dicom-viewer-web-path-parameter","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-50149","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-50149 — Contour is a Kubernetes ingress controller using Envoy proxy. In versions 1.23.0 through 1.33.4, whe…","description":"Contour is a Kubernetes ingress controller using Envoy proxy. In versions 1.23.0 through 1.33.4, when an `HTTPProxy` is configured with incompatible combination of both `.spec.virtualhost.tls.enableFallbackCertificate: true` and `.spec.virtualhost.jwtProviders`, Contour does not reject the configura…","indicators":{"cves":["CVE-2026-50149"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:17:08.710Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/projectcontour/contour/security/advisories/GHSA-g3xr-5w5j-w4q4","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-54793","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-54793 — Dell OpenManage Enterprise, versions prior to 4.7.0, contains an Improper Neutralization of Input Du…","description":"Dell OpenManage Enterprise, versions prior to 4.7.0, contains an Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Information exposure.","indicators":{"cves":["CVE-2026-54793"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:17:10.757Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://www.dell.com/support/kbdoc/en-us/000500910/dsa-2026-359-security-update-for-dell-openmanage-enterprise-vulnerabilities","label":"security_alert@emc.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-56796","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-56796 — Dell Command Update (DCU), versions prior to 5.7.1, contain an Improper Link Resolution Before File…","description":"Dell Command Update (DCU), versions prior to 5.7.1, contain an Improper Link Resolution Before File Access ('Link Following') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of Privileges.","indicators":{"cves":["CVE-2026-56796"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:17:11.800Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://www.dell.com/support/kbdoc/en-us/000501378/dsa-2026-309-security-update-for-dell-command-update-for-multiple-vulnerabilities","label":"security_alert@emc.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-67266","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-67266 — Dell Command Update (DCU), versions prior to 5.7.1, contain an Incorrect Authorization vulnerability…","description":"Dell Command Update (DCU), versions prior to 5.7.1, contain an Incorrect Authorization vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of privileges.","indicators":{"cves":["CVE-2026-67266"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:17:51.640Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://www.dell.com/support/kbdoc/en-us/000501378/dsa-2026-309-security-update-for-dell-command-update-for-multiple-vulnerabilities","label":"security_alert@emc.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-67267","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-67267 — Dell Command Update (DCU), versions prior to 5.7.1, contain an Exposure of Sensitive System Informat…","description":"Dell Command Update (DCU), versions prior to 5.7.1, contain an Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Information disclosure.","indicators":{"cves":["CVE-2026-67267"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:17:51.767Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://www.dell.com/support/kbdoc/en-us/000501378/dsa-2026-309-security-update-for-dell-command-update-for-multiple-vulnerabilities","label":"security_alert@emc.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-67268","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-67268 — Dell Command Update (DCU), versions prior to 5.7.1, contain an Improper Restriction of XML External…","description":"Dell Command Update (DCU), versions prior to 5.7.1, contain an Improper Restriction of XML External Entity Reference vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of privileges and Server-side request forgery.","indicators":{"cves":["CVE-2026-67268"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:17:51.893Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://www.dell.com/support/kbdoc/en-us/000501378/dsa-2026-309-security-update-for-dell-command-update-for-multiple-vulnerabilities","label":"security_alert@emc.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76614","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76614 — OpenEMR before 8.3.0 contains a path traversal vulnerability in the EDI archive restore function. Th…","description":"OpenEMR before 8.3.0 contains a path traversal vulnerability in the EDI archive restore function. The archrestore_sel POST parameter is passed to the archive restore handler without sanitization for path traversal sequences. The handler checks whether the supplied path exists on the filesystem, and…","indicators":{"cves":["CVE-2026-76614"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:18:11.353Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/openemr/openemr/commit/7973cab3fe3f2fd2374ed71c02605e3c93491c36","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/openemr/openemr/releases/tag/v8_3_0","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/openemr/openemr/security/advisories/GHSA-gfwc-jg5p-jcp4","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/openemr-path-traversal-information-disclosure-via-edi-archive-restore","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-44253","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-44253 — Wazuh is a free and open source platform used for threat prevention, detection, and response. From 3…","description":"Wazuh is a free and open source platform used for threat prevention, detection, and response. From 3.9.0 until 4.14.5 and 5.0.0-beta2, the Wazuh cluster protocol in framework/wazuh/core/cluster/common.py allows an authenticated cluster node to exhaust memory on the master. The receive_str() method a…","indicators":{"cves":["CVE-2026-44253"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T16:17:10.833Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/wazuh/wazuh/commit/d29c5c89a0e16477545ca27f4e06229021e3183c","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/pull/35173","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/releases/tag/v4.14.5","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/security/advisories/GHSA-h5r8-gvhv-cmp2","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-44254","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-44254 — Wazuh is a free and open source platform used for threat prevention, detection, and response. From 1…","description":"Wazuh is a free and open source platform used for threat prevention, detection, and response. From 1.0.0 until 4.14.6 and 5.0.0-beta2, HandleSecureMessage() in src/remoted/secure.c passes a pointer inside its stack buffer to ReadSecMSG(), and src/os_crypto/shared/msgs.c decompresses up to OS_MAXSTR…","indicators":{"cves":["CVE-2026-44254"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T16:17:10.967Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/wazuh/wazuh/commit/96772487fbdecd43cc83e284ee7aeb45e3cfcd96","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/pull/35773","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/releases/tag/v4.14.6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/releases/tag/v5.0.0-beta2","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wazuh/wazuh/security/advisories/GHSA-9wm4-fp6c-hqgq","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-53654","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-53654 — Grav is a file-based Web platform. Prior to 3.8.5, the Login plugin twofa_cancel task accepts a clie…","description":"Grav is a file-based Web platform. Prior to 3.8.5, the Login plugin twofa_cancel task accepts a client-controlled _redirect field without a nonce and allows an unauthenticated request to set an external http, https, or protocol-relative Location target. Controller::execute() applies the field when t…","indicators":{"cves":["CVE-2026-53654"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["phishing"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T16:17:46.150Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/getgrav/grav-plugin-login/commit/1535e51d2a9cbc3f1bb1e262e791c142a06ce959","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav-plugin-login/releases/tag/3.8.5","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-wwcc-xxhc-44j6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-wwcc-xxhc-44j6","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-61690","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-61690 — Grav is a file-based Web platform. Prior to 2.0.1, Grav ZipArchiver::extract() in system/src/Grav/Co…","description":"Grav is a file-based Web platform. Prior to 2.0.1, Grav ZipArchiver::extract() in system/src/Grav/Common/Filesystem/ZipArchiver.php passes archives to ZipArchive::extractTo() without enforcing the system.gpm.archive uncompressed-size, file-count, or nesting-depth limits. Code using Archiver::create(…","indicators":{"cves":["CVE-2026-61690"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T16:18:16.867Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/getgrav/grav/commit/1c1003cfcab5344203d6fde1aaa1f9a4ee3413ff","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav/releases/tag/2.0.1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-928x-9mpw-8h56","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-61842","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-61842 — Grav is a file-based Web platform. Prior to 2.0.2, the Grav Twig content sandbox permits grav.offset…","description":"Grav is a file-based Web platform. Prior to 2.0.2, the Grav Twig content sandbox permits grav.offsetGet('config') to return the raw configuration object and permits json_encode, print_r, yaml_encode, and string filters to serialize that object without passing through GravSecurityPolicy::checkMethodA…","indicators":{"cves":["CVE-2026-61842"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T16:18:17.003Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/getgrav/grav/commit/7efe70574e4cf01a251318478c13673029e93eb6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav/releases/tag/2.0.2","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-mc5q-6hpj-rp7j","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-62670","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-62670 — Grav Flex Objects Plugin allows you to build custom collections of objects. Prior to 1.4.3, the Grav…","description":"Grav Flex Objects Plugin allows you to build custom collections of objects. Prior to 1.4.3, the Grav Flex Objects Admin Next API requireFlexPermission() method in classes/Api/FlexApiController.php returns without denying access when a directory blueprint omits config.admin.permissions. An authentica…","indicators":{"cves":["CVE-2026-62670"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T16:18:19.600Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-23vq-365v-qcmh","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/trilbymedia/grav-plugin-flex-objects/commit/198d1a0eb7b94777a026ed0001d9a369d94c3002","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/trilbymedia/grav-plugin-flex-objects/releases/tag/1.4.3","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-20177","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-20177 — A vulnerability in the handling of management plane packets by Cisco Industrial Ethernet (IE) 1000 S…","description":"A vulnerability in the handling of management plane packets by Cisco Industrial Ethernet (IE) 1000 Series Switches could allow an unauthenticated, remote attacker to&nbsp;cause the device manager, SSH, or API to become inaccessible.This vulnerability is due to insufficient protection against managem…","indicators":{"cves":["CVE-2026-20177"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T17:18:39.093Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ie1k-uxq86Lnx","label":"psirt@cisco.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-20232","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-20232 — A vulnerability in the web-based management interface of Cisco Industrial Ethernet (IE) 1000 Series…","description":"A vulnerability in the web-based management interface of Cisco Industrial Ethernet (IE) 1000 Series Switches could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the interface.\r\n\r\nThis vulnerability is due to insufficient validation of…","indicators":{"cves":["CVE-2026-20232"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T17:18:39.390Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ie1k-NgXUFF52","label":"psirt@cisco.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-20302","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-20302 — A vulnerability in the USB driver of Cisco RoomOS could allow an unauthenticated, local attacker wit…","description":"A vulnerability in the USB driver of Cisco RoomOS could allow an unauthenticated, local attacker with physical access to the USB port on an affected device to execute arbitrary code with&nbsp;root privileges.\r\n\r\nThis vulnerability is due to insufficient boundary checks for specific data that is prov…","indicators":{"cves":["CVE-2026-20302"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T17:18:39.527Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-roomos-bof-vTMANZgu","label":"psirt@cisco.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-20314","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-20314 — A vulnerability in Cisco Packaged Contact Center Enterprise (Packaged CCE) and Cisco Unified Contact…","description":"A vulnerability in Cisco Packaged Contact Center Enterprise (Packaged CCE) and Cisco Unified Contact Center Enterprise (Unified CCE) could allow an authenticated, remote attacker to conduct server-side request forgery (SSRF) attacks through an affected device.\r\n\r\nThis vulnerability is due to imprope…","indicators":{"cves":["CVE-2026-20314"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T17:18:39.677Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ucce-pcce-ssrf-TghHxD","label":"psirt@cisco.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-20327","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-20327 — A vulnerability in the web-based management interface of Cisco Unified Intelligence Center could all…","description":"A vulnerability in the web-based management interface of Cisco Unified Intelligence Center could allow an authenticated, local attacker to perform a blind SQL injection attack against an affected device.\r\n\r\nThis vulnerability is due to insufficient validation of user-supplied input. An attacker coul…","indicators":{"cves":["CVE-2026-20327"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T17:18:40.563Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cuic-sql-inject-2qbfWSm5","label":"psirt@cisco.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75145","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75145 — FFmpeg before commit b4c199c contains an incorrect integer narrowing conversion in the AV1 RTP packe…","description":"FFmpeg before commit b4c199c contains an incorrect integer narrowing conversion in the AV1 RTP packetizer (libavformat/rtpenc_av1.c). The OBU size is cast to long before comparison against the remaining frame size. On targets where long is 32 bits, including 64-bit Windows, sufficiently large OBU si…","indicators":{"cves":["CVE-2026-75145"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T17:21:12.863Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://code.ffmpeg.org/FFmpeg/FFmpeg/commit/b4c199c5906ff53368926c2a5839881f41957e7f","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://code.ffmpeg.org/FFmpeg/FFmpeg/pulls/24090","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://www.vulncheck.com/advisories/ffmpeg-integer-narrowing-conversion-oob-memory-access-in-av1-rtp-packetizer","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18874","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-18874 — A flaw was found in volsync-addon-controller. This vulnerability allows an attacker to inject malici…","description":"A flaw was found in volsync-addon-controller. This vulnerability allows an attacker to inject malicious YAML (Yet Another Markup Language) code into the OpenShift Lifecycle Manager (OLM) Subscription resource. This is due to improper escaping of annotation values when they are rendered into YAML. Su…","indicators":{"cves":["CVE-2026-18874"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T18:16:36.080Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-18874","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2511115","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-55564","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-55564 — FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.27.0, the glyph_cache_ge…","description":"FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.27.0, the glyph_cache_get function in libfreerdp/cache/glyph.c checks whether index is greater than cache->number instead of greater than or equal to it. A malicious RDP server can use GLYPH_FRAGMENT_USE replay in update_pro…","indicators":{"cves":["CVE-2026-55564"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T18:16:45.003Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/FreeRDP/FreeRDP/commit/c29324750e3cbcba8761f147b7a5235cc686930f","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeRDP/FreeRDP/pull/12885","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeRDP/FreeRDP/releases/tag/3.27.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-6xmj-pr98-cx4c","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-63117","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-63117 — FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.28.0, an authenticated R…","description":"FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.28.0, an authenticated RDP client can advertise DVI ADPCM with nBlockAlign equal to 8 and nChannels equal to 2 to make the `bs` calculation in rdpsnd_server_select_format in channels/rdpsnd/server/rdpsnd_main.c equal zero. T…","indicators":{"cves":["CVE-2026-63117"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T18:17:08.430Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://github.com/FreeRDP/FreeRDP/commit/b78fc0b138fe8f08a8b102e193ffb32986f4449a","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeRDP/FreeRDP/pull/12980","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeRDP/FreeRDP/releases/tag/3.28.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-v64m-xxfw-hrv6","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-69159","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-69159 — FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.29.0, planar_decompress_…","description":"FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.29.0, planar_decompress_plane_rle and planar_decompress_plane_rle_only in libfreerdp/codec/planar.c verify that a control byte exists but do not verify that the source buffer contains the zero to fifteen raw bytes declared b…","indicators":{"cves":["CVE-2026-69159"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T18:17:19.813Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://github.com/FreeRDP/FreeRDP/commit/75a1ec61d444179ea64a4ec0835214cb9c4f7c18","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeRDP/FreeRDP/pull/13016","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeRDP/FreeRDP/releases/tag/3.29.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-qrxx-7g3c-j6w3","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-18681","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-18681 — IBM Server Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.0…","description":"IBM Server Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulnerability in the FSP firmware update process. An attacker with authenticated administrator-level access to the FSP can, under specific conditions, execute arbit…","indicators":{"cves":["CVE-2026-18681"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T19:17:12.110Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283899","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-49870","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-49870 — Snipe-IT is an IT asset/license management system. Prior to 8.6.1, POST /two-factor has no rate limi…","description":"Snipe-IT is an IT asset/license management system. Prior to 8.6.1, POST /two-factor has no rate limiting, lockout, or attempt counter, allowing an attacker with valid credentials to submit unlimited TOTP guesses against the three accepted codes created by config/google2fa.php window=1. A successful…","indicators":{"cves":["CVE-2026-49870"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T19:17:17.770Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://github.com/grokability/snipe-it/commit/46d5234fd73d5fb928af43eb67d3bf7643d53115","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/grokability/snipe-it/pull/19072","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/grokability/snipe-it/releases/tag/v8.6.1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/grokability/snipe-it/security/advisories/GHSA-mr8g-2mj4-pcq2","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-49976","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-49976 — Snipe-IT is an IT asset/license management system. Prior to 8.6.1, a user with the import permission…","description":"Snipe-IT is an IT asset/license management system. Prior to 8.6.1, a user with the import permission can use CSV update mode to overwrite the email address of a non-admin user and then request a password reset to take over that account. app/Importer/UserImporter.php applies the canEditAuthFields gat…","indicators":{"cves":["CVE-2026-49976"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T19:17:17.923Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://github.com/grokability/snipe-it/commit/dd4117bd5be59766c22767717ec403dfdece1e19","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/grokability/snipe-it/pull/19072","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/grokability/snipe-it/releases/tag/v8.6.1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/grokability/snipe-it/security/advisories/GHSA-p68w-rgmg-3c2v","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-50550","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-50550 — Snipe-IT is an IT asset/license management system. Prior to 8.5.0, a user who can edit other users c…","description":"Snipe-IT is an IT asset/license management system. Prior to 8.5.0, a user who can edit other users can reset a superadmin's two-factor authentication through app/Http/Controllers/Api/UsersController.php postTwoFactorReset(). The endpoint authorizes update access but does not enforce canEditAuthField…","indicators":{"cves":["CVE-2026-50550"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T19:17:18.380Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://github.com/grokability/snipe-it/commit/046ef82c6501be14df597f0bf5d0de2566c7d6bc","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/grokability/snipe-it/releases/tag/v8.5.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/grokability/snipe-it/security/advisories/GHSA-6x4j-8954-5hxm","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-55482","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-55482 — Snipe-IT is an IT asset/license management system. Prior to 8.4.1, a non-superadmin can use app/Http…","description":"Snipe-IT is an IT asset/license management system. Prior to 8.4.1, a non-superadmin can use app/Http/Controllers/Assets/BulkAssetsController.php update() to submit company_id directly without Company::getIdForCurrentUser(), allowing assets to be moved across company boundaries and breaking multi-ten…","indicators":{"cves":["CVE-2026-55482"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T19:17:19.967Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://github.com/grokability/snipe-it/commit/d58fda626e8febfeff4cabbc20ba03edfc411e18","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/grokability/snipe-it/releases/tag/v8.4.1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/grokability/snipe-it/security/advisories/GHSA-33g4-646g-qwmm","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-55519","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-55519 — Snipe-IT is an IT asset/license management system. Prior to 8.4.1, an authenticated user with generi…","description":"Snipe-IT is an IT asset/license management system. Prior to 8.4.1, an authenticated user with generic asset edit permission can delete files attached to assets outside the user's ownership or company assignment. The destroy() methods in app/Http/Controllers/Api/UploadedFilesController.php and app/Ht…","indicators":{"cves":["CVE-2026-55519"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T19:17:20.263Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://github.com/grokability/snipe-it/commit/8bc7d50e35d93eee5a0d48b4923e497937cf93fd","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/grokability/snipe-it/releases/tag/v8.4.1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/grokability/snipe-it/security/advisories/GHSA-x667-r589-43m7","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-55703","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-55703 — Snipe-IT is an IT asset/license management system. Prior to 8.6.3, any activated account can request…","description":"Snipe-IT is an IT asset/license management system. Prior to 8.6.3, any activated account can request /maintenances/{id} and read maintenance records for assets in the same company without asset or maintenance permission. app/Http/Controllers/MaintenancesController.php show() renders the record witho…","indicators":{"cves":["CVE-2026-55703"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T19:17:20.813Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://github.com/grokability/snipe-it/commit/69c50aa2aee25f837626556b4f4f3d05ec7ace96","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/grokability/snipe-it/releases/tag/v8.6.3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/grokability/snipe-it/security/advisories/GHSA-r9r3-g9fp-3q4q","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-16724","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-16724 — IBM Virtualization Management Interface FW1110.00 through FW1110.30, FW1120.00 through FW1120.00, an…","description":"IBM Virtualization Management Interface FW1110.00 through FW1110.30, FW1120.00 through FW1120.00, and FW1060.00 through FW1060.80 is affected by a vulnerability in the Virtualization Management Interface (VMI). An attacker with authenticated administrator-level access can cause the VMI to crash. The…","indicators":{"cves":["CVE-2026-16724"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:02.350Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283189","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16833","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-16833 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to disclose kernel memor…","description":"IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to disclose kernel memory due to an out-of-bounds read.","indicators":{"cves":["CVE-2026-16833"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:04.083Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283858","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16883","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-16883 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to obtain sensitive infor…","description":"IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to obtain sensitive information due to an out-of-bounds read.","indicators":{"cves":["CVE-2026-16883","CVE-2026-16890","CVE-2026-16891","CVE-2026-17007"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:09.250Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283858","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-55086","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-55086 — Etherpad is a real-time collaborative editor. Prior to 3.1.0, src/node/handler/ImportHandler.ts and…","description":"Etherpad is a real-time collaborative editor. Prior to 3.1.0, src/node/handler/ImportHandler.ts and src/node/handler/ExportHandler.ts derive temporary filenames from Math.random() and place them in os.tmpdir(). On a host with a shared world-writable temporary directory, a local unprivileged attacker…","indicators":{"cves":["CVE-2026-55086"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["transport"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:17.520Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://github.com/ether/etherpad/commit/8c6104c5d5daf41f0d454acc04d42dffa0e0d996","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ether/etherpad/pull/7784","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ether/etherpad/releases/tag/v3.1.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ether/etherpad/security/advisories/GHSA-2jwf-f4xq-f24h","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-55087","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-55087 — Etherpad is a real-time collaborative editor. From 2.1.0 until 3.1.0, Etherpad uses the attacker-con…","description":"Etherpad is a real-time collaborative editor. From 2.1.0 until 3.1.0, Etherpad uses the attacker-controlled x-proxy-path request header in src/node/hooks/express/admin.ts when substituting paths into HTML, JavaScript, and CSS under /admin without sanitization, Vary: x-proxy-path, or Cache-Control: p…","indicators":{"cves":["CVE-2026-55087"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:17.720Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://github.com/ether/etherpad/commit/8c6104c5d5daf41f0d454acc04d42dffa0e0d996","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ether/etherpad/pull/7784","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ether/etherpad/security/advisories/GHSA-fjgc-3mj7-8rg8","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ether/etherpad/tree/3.1.0","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-55088","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-55088 — Etherpad is a real-time collaborative editor. From 2.6.0 until 3.1.0, Etherpad's src/node/hooks/expr…","description":"Etherpad is a real-time collaborative editor. From 2.6.0 until 3.1.0, Etherpad's src/node/hooks/express/tokenTransfer.ts uses POST /tokenTransfer to store an author token for transfer between browsers and exposes it through GET /tokenTransfer/{uuid}. Although the record includes createdAt, the trans…","indicators":{"cves":["CVE-2026-55088"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:17.883Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://github.com/ether/etherpad/commit/8c6104c5d5daf41f0d454acc04d42dffa0e0d996","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ether/etherpad/pull/7784","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ether/etherpad/security/advisories/GHSA-vqfp-p66c-xrp9","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ether/etherpad/tree/3.1.0","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-63187","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-63187 — Logto is the modern, open-source auth infrastructure for SaaS and AI apps. From 1.40.1 until 1.41.0,…","description":"Logto is the modern, open-source auth infrastructure for SaaS and AI apps. From 1.40.1 until 1.41.0, Logto's .github/workflows/commitlint.yml directly interpolated github.event.pull_request.title into the Commitlint on PR title step's inline echo command before piping the title to npx commitlint. A…","indicators":{"cves":["CVE-2026-63187"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:20.063Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://github.com/logto-io/logto/commit/4a1cab21c14d26d288ffffc509cc2a8cae247b92","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/logto-io/logto/pull/9112","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/logto-io/logto/releases/tag/v1.41.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/logto-io/logto/security/advisories/GHSA-869c-8mm3-w5cj","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-67189","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-67189 — pfSense Plus before 26.07 and pfSense CE through 2.8.1 contain a stored cross-site scripting vulnera…","description":"pfSense Plus before 26.07 and pfSense CE through 2.8.1 contain a stored cross-site scripting vulnerability in the Traffic Graphs top-talkers feature, where PTR records returned by reverse DNS lookups are incorporated without sanitization into AJAX responses and rendered as HTML through a DOM sink in…","indicators":{"cves":["CVE-2026-67189"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:20.740Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://docs.netgate.com/downloads/pfSense-SA-26_21.webgui.asc","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://docs.netgate.com/pfsense/en/latest/releases/2-9-0.html","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://docs.netgate.com/pfsense/en/latest/releases/26-07.html","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://www.vulncheck.com/advisories/pfsense-plus-ce-stored-xss-via-traffic-graphs-ptr-record","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-68559","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-68559 — Wekan is open source kanban built with Meteor. From 9.57 until 9.74, the /api/boards/:boardId/export…","description":"Wekan is open source kanban built with Meteor. From 9.57 until 9.74, the /api/boards/:boardId/exportExcel route in models/exportExcel.js called the asynchronous exporterExcel.canExport(user) authorization guard from models/server/ExporterExcel.js without awaiting it. The returned Promise was always…","indicators":{"cves":["CVE-2026-68559"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:21.080Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://github.com/wekan/wekan/commit/7bbd1a3fad5d868fd01d79b5908913e215698e8e","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wekan/wekan/releases/tag/v9.74","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wekan/wekan/security/advisories/GHSA-mwq8-ccpm-r533","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wekan/wekan/security/advisories/GHSA-mwq8-ccpm-r533","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-68901","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-68901 — Wekan is open source kanban built with Meteor. Prior to 10.38, the /api/boards/:boardId/export, /api…","description":"Wekan is open source kanban built with Meteor. Prior to 10.38, the /api/boards/:boardId/export, /api/boards/:boardId/attachments/:attachmentId/export, /api/boards/:boardId/export/csv, and /api/boards/:boardId/exportExcel handlers in models/export.js and models/exportExcel.js looked up a user from th…","indicators":{"cves":["CVE-2026-68901"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:21.900Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://github.com/wekan/wekan/commit/40de1799aed7c31494579659850578691171d895","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wekan/wekan/releases/tag/v10.38","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wekan/wekan/security/advisories/GHSA-3gcg-g6rf-w2rx","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wekan/wekan/security/advisories/GHSA-3gcg-g6rf-w2rx","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-76572","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76572 — A vulnerability was detected in pkp pkp-lib up to 3.3.0-22/3.4.0-10/3.5.0-4. The affected element is…","description":"A vulnerability was detected in pkp pkp-lib up to 3.3.0-22/3.4.0-10/3.5.0-4. The affected element is the function _transformPHP of the file classes/xslt/XSLTransformer.php. The manipulation results in xml external entity reference. The attack can be executed remotely. Upgrading to version 3.3.0-23,…","indicators":{"cves":["CVE-2026-76572"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:23.627Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://github.com/pkp/pkp-lib/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/pkp/pkp-lib/commit/78c699370ea43ae2784e1c4ace7c947d207f2b47","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/pkp/pkp-lib/issues/12977","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/pkp/pkp-lib/releases/tag/3_5_0-5","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-76572","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/878359","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393037","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393037/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-12634","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-12634 — The NVS backend of the Zephyr settings subsystem (subsys/settings/src/settings_nvs.c) reads stored s…","description":"The NVS backend of the Zephyr settings subsystem (subsys/settings/src/settings_nvs.c) reads stored setting-name entries into fixed 74-byte stack buffers and NUL-terminates them with buf[rc] = '\\0', where rc is the return value of nvs_read(). Per its contract, nvs_read() returns the full stored entry…","indicators":{"cves":["CVE-2026-12634"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T21:16:53.757Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://github.com/zephyrproject-rtos/zephyr/commit/e79a0db70fc9ad33982f9786b428b115a78eaadd","label":"vulnerabilities@zephyrproject.org","domainType":"primary"},{"url":"https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-q7c8-m2qg-385c","label":"vulnerabilities@zephyrproject.org","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-14514","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-14514 — IBM Reliable Scalable Cluster Technology (RSCT) 3.0 could allow a remote attacker to cause a denial…","description":"IBM Reliable Scalable Cluster Technology (RSCT) 3.0 could allow a remote attacker to cause a denial of service by sending a specially crafted request due improper input validation.","indicators":{"cves":["CVE-2026-14514"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T21:16:53.883Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283963","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-14978","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-14978 — HashiCorp go-slug 0.4.0 through 0.18.2 could allow a local attacker to bypass .terraformignore exclu…","description":"HashiCorp go-slug 0.4.0 through 0.18.2 could allow a local attacker to bypass .terraformignore exclusions and cause sensitive files to be included in Terraform slug uploads due to improper handling of Unicode normalization during path matching.","indicators":{"cves":["CVE-2026-14978"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T21:16:54.007Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://www.ibm.com/support/pages/node/7284170","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-17015","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-17015 — IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to cause a denial of servic…","description":"IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to cause a denial of service and obtain sensitive information due to an out-of-bounds read.","indicators":{"cves":["CVE-2026-17015"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T21:16:54.143Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://www.ibm.com/support/pages/node/7284068","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18849","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-18849 — IBM OpenBMC FW1060.00 through FW1060.80 is affected by a vulnerability in the BMC firmware update pr…","description":"IBM OpenBMC FW1060.00 through FW1060.80 is affected by a vulnerability in the BMC firmware update process. An attacker with authenticated administrator-level access to the BMC can, under specific conditions, execute arbitrary code, resulting in a confidentiality, integrity, and availability impact.","indicators":{"cves":["CVE-2026-18849"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T21:16:54.663Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283590","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-4936","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-4936 — IBM PowerVM Hypervisor Platform KeyStore (PKS) and virtual TPM FW1110.00 through FW1110.20, FW1060.0…","description":"IBM PowerVM Hypervisor Platform KeyStore (PKS) and virtual TPM FW1110.00 through FW1110.20, FW1060.00 through FW1060.71, and FW950.00 through FW950.H2 use persistent storage key seeds that result in an AES key with reduced strength. An attacker with access to the service processor or HMC could explo…","indicators":{"cves":["CVE-2026-4936"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T21:16:55.353Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283890","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-4937","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-4937 — IBM PowerVM Hypervisor FW1110.00 through FW1110.20, FW1060.00 through FW1060.71, and FW950.00 throug…","description":"IBM PowerVM Hypervisor FW1110.00 through FW1110.20, FW1060.00 through FW1060.71, and FW950.00 through FW950.H2 could allow a local attacker with administrative privileges to decrypt encrypted data due to certain hypervisor calls utilizing less entropy than requested.","indicators":{"cves":["CVE-2026-4937"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T21:16:55.570Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283900","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-54738","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-54738 — Lemmy is a link aggregator and forum for the fediverse. Prior to 0.19.19 and 1.0.0-beta.1, actix-web…","description":"Lemmy is a link aggregator and forum for the fediverse. Prior to 0.19.19 and 1.0.0-beta.1, actix-web ConnectionInfo::realip_remote_addr reads the first value of X-Forwarded-For as the client address used by raw_ip_key in crates/utils/src/rate_limit/mod.rs. Lemmy's bundled docker/nginx.conf uses $pro…","indicators":{"cves":["CVE-2026-54738"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T21:16:58.073Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://github.com/LemmyNet/lemmy/commit/41513c89ceecee719bff05acfe613e3b1e85f23c","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/LemmyNet/lemmy/commit/8b5b2aa78417b53ff3622c01f5bed2f1590f3b82","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/LemmyNet/lemmy/pull/6574","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/LemmyNet/lemmy/pull/6575","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/LemmyNet/lemmy/releases/tag/0.19.19","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/LemmyNet/lemmy/releases/tag/1.0.0-beta.1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/LemmyNet/lemmy/security/advisories/GHSA-2hrg-7x4g-9vpg","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://join-lemmy.org/news/2026-06-09_-_Lemmy_Release_v0.19.19","label":"security-advisories@github.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-54739","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-54739 — Lemmy is a link aggregator and forum for the fediverse. Prior to 0.19.19 and 1.0.0-beta.1, Lemmy's l…","description":"Lemmy is a link aggregator and forum for the fediverse. Prior to 0.19.19 and 1.0.0-beta.1, Lemmy's login endpoint in crates/api/api/src/local_user/login.rs returns different errors depending on whether the username_or_email value exists. LocalUserView::find_by_email_or_name propagates a NotFound res…","indicators":{"cves":["CVE-2026-54739"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["phishing"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T21:16:58.227Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://github.com/LemmyNet/lemmy/commit/4d235a1b668b7dda6b73dbbc9ca289bb40acfa83","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/LemmyNet/lemmy/commit/59e968a5ac36d36d08a59028e2dbb92641536964","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/LemmyNet/lemmy/pull/6531","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/LemmyNet/lemmy/pull/6535","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/LemmyNet/lemmy/releases/tag/0.19.19","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/LemmyNet/lemmy/releases/tag/1.0.0-beta.1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/LemmyNet/lemmy/security/advisories/GHSA-xgg7-8hvq-8m65","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://join-lemmy.org/news/2026-06-09_-_Lemmy_Release_v0.19.19","label":"security-advisories@github.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-54740","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-54740 — Lemmy is a link aggregator and forum for the fediverse. Prior to 0.19.19 and 1.0.0-alpha.18, a lower…","description":"Lemmy is a link aggregator and forum for the fediverse. Prior to 0.19.19 and 1.0.0-alpha.18, a lower-ranked remote moderator can remove a higher-ranked moderator by sending a signed ActivityPub Remove activity to the target instance. The local API uses LocalUser::is_higher_mod_or_admin_check to enfo…","indicators":{"cves":["CVE-2026-54740"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T21:16:58.363Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://github.com/LemmyNet/lemmy/commit/d127e714a66f34f6b9c8ea15f20097ac907cdf28","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/LemmyNet/lemmy/commit/ede1d348344ca2027fd1bc6a0cab25575c0c3a4c","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/LemmyNet/lemmy/pull/6475","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/LemmyNet/lemmy/pull/6478","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/LemmyNet/lemmy/releases/tag/0.19.19","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/LemmyNet/lemmy/releases/tag/1.0.0-alpha.18","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/LemmyNet/lemmy/security/advisories/GHSA-xmpx-2j2f-c7g7","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://join-lemmy.org/news/2026-06-09_-_Lemmy_Release_v0.19.19","label":"security-advisories@github.com","domainType":"other"},{"url":"https://github.com/LemmyNet/lemmy/security/advisories/GHSA-xmpx-2j2f-c7g7","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-68552","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-68552 — Coturn is a free open source implementation of TURN and STUN Server. Prior to 4.15.0, an unauthentic…","description":"Coturn is a free open source implementation of TURN and STUN Server. Prior to 4.15.0, an unauthenticated remote client can send a STUN message over TCP or TLS with a body-length field from 65520 through 65532, causing the uint16_t len variable in stun_get_message_len_str() in src/client/ns_turn_msg.…","indicators":{"cves":["CVE-2026-68552"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T21:17:28.017Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://github.com/coturn/coturn/commit/ed32e1fb6c843f9cf9a28d91c541dfbf40874f25","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/coturn/coturn/pull/1964","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/coturn/coturn/releases/tag/4.15.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/coturn/coturn/security/advisories/GHSA-m562-mf7x-q7rr","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-68555","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-68555 — Coturn is a free open source implementation of TURN and STUN Server. In 4.15.0, an authenticated TUR…","description":"Coturn is a free open source implementation of TURN and STUN Server. In 4.15.0, an authenticated TURN user can repeatedly resume one allocation from fresh UDP 5-tuples without completing a handoff when the server enables --mobility. mobile_begin_transition() in src/server/ns_turn_server.c disarms ea…","indicators":{"cves":["CVE-2026-68555"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T21:17:28.453Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://github.com/coturn/coturn/commit/a97f1924bb435bec49d6d91ae01fa2487c2e1bf7","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/coturn/coturn/releases/tag/4.16.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/coturn/coturn/security/advisories/GHSA-hpq3-g7x4-h7xx","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-76576","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76576 — A vulnerability was found in yangzongzhuan RuoYi-Vue up to 3.9.2. This impacts the function fileDown…","description":"A vulnerability was found in yangzongzhuan RuoYi-Vue up to 3.9.2. This impacts the function fileDownload/resourceDownload of the file ruoyi-admin/src/main/java/com/ruoyi/web/controller/common/CommonController.java of the component Common Download Endpoint. Performing a manipulation of the argument f…","indicators":{"cves":["CVE-2026-76576"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T21:17:38.227Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://github.com/yangzongzhuan/RuoYi-Vue/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/yangzongzhuan/RuoYi-Vue/issues/151","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-76576","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/877790","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393040","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393040/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76827","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76827 — A flaw was found in search-indexer. This vulnerability allows a registered and authenticated managed…","description":"A flaw was found in search-indexer. This vulnerability allows a registered and authenticated managed cluster to tamper with or delete another cluster's indexed search data. This is possible because the delta-sync write paths in search-indexer do not properly restrict UPDATE/DELETE operations to data…","indicators":{"cves":["CVE-2026-76827"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T21:17:39.227Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-76827","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2519896","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-59992","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-59992 — Tina is a headless content management system. Prior to next-tinacms-s3 23.0.4, next-tinacms-dos 23.0…","description":"Tina is a headless content management system. Prior to next-tinacms-s3 23.0.4, next-tinacms-dos 23.0.4, next-tinacms-azure 14.0.4, and next-tinacms-cloudinary 26.0.4, the first-party production media adapters pass attacker-controlled object keys to storage SDK upload and delete operations without en…","indicators":{"cves":["CVE-2026-59992"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:16:40.600Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://github.com/tinacms/tinacms/commit/d44558e9b4502d4f4fc2c970d22985339fe2b6ce","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/tinacms/tinacms/pull/7088","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/tinacms/tinacms/releases/tag/next-tinacms-s3@23.0.4","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/tinacms/tinacms/security/advisories/GHSA-8mq9-5fw2-5rm4","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-63123","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-63123 — Tina is a headless content management system. Prior to 2.5.2, the TinaCMS CLI package's Vite dev ser…","description":"Tina is a headless content management system. Prior to 2.5.2, the TinaCMS CLI package's Vite dev server packages/@tinacms/cli/src/next/vite/cors.ts origin callback returns false for a disallowed origin but does not reject the request, and packages/@tinacms/cli/src/next/vite/plugins.ts still routes P…","indicators":{"cves":["CVE-2026-63123"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:16:58.710Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://github.com/tinacms/tinacms/commit/211997cdb53cbd43638bdee999faa65375cfc260","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/tinacms/tinacms/pull/7111","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/tinacms/tinacms/releases/tag/@tinacms/cli@2.5.2","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/tinacms/tinacms/security/advisories/GHSA-rgr9-r7mj-mf6x","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-69550","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-69550 — Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to disclose information…","description":"Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network.","indicators":{"cves":["CVE-2026-69550"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:09.530Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69550","label":"secure@microsoft.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-76252","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76252 — In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.13, an unauthenticated user who…","description":"In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.13, an unauthenticated user who tricks another user into visiting a malicious web page could run unauthorized JavaScript in that user's browser. This could allow for unauthorized access to all relevant data available to that user an…","indicators":{"cves":["CVE-2026-76252"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["phishing"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:12.990Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0801","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76255","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76255 — In Splunk Enterprise versions below 10.4.1, 10.2.6, 10.0.8, and 9.4.13, a user who does not hold the…","description":"In Splunk Enterprise versions below 10.4.1, 10.2.6, 10.0.8, and 9.4.13, a user who does not hold the \"admin\" or \"power\" Splunk roles could trick another user into running arbitrary Search Processing Language (SPL) commands through the Data Model Editor using the permissions of the affected user. The…","indicators":{"cves":["CVE-2026-76255"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["phishing"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:13.407Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0801","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76322","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76322 — In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, a user who holds the \"user\"…","description":"In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, a user who holds the \"user\" Splunk role could craft a Dashboard Studio dashboard that runs attacker-controlled Search Processing Language (SPL) for another authenticated user. The attacker-controlled SPL could access all relevan…","indicators":{"cves":["CVE-2026-76322"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["phishing"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:16.267Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0801","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76328","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76328 — In Splunk Enterprise versions below 10.4.1, 10.2.6, 10.0.9, and 9.4.14, a user who holds the \"power\"…","description":"In Splunk Enterprise versions below 10.4.1, 10.2.6, 10.0.9, and 9.4.14, a user who holds the \"power\" Splunk role could store attacker-controlled Search Processing Language (SPL) in a dashboard. When another authenticated user exports the dashboard as a Portable Document Format (PDF) file, Splunk Ent…","indicators":{"cves":["CVE-2026-76328"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["phishing"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:17.033Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0801","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76340","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76340 — In Splunk Enterprise 10.4 versions below 10.4.2, an unauthenticated user could cause Splunk Enterpri…","description":"In Splunk Enterprise 10.4 versions below 10.4.2, an unauthenticated user could cause Splunk Enterprise to reload token-signing keys through the Representational State Transfer (REST) API. The vulnerability does not affect Splunk Enterprise versions below 10.4. The vulnerability is possible because t…","indicators":{"cves":["CVE-2026-76340"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:18.623Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0801","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76345","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76345 — In Splunk Enterprise versions below 10.4.2, a user with a high-privilege Splunk role that can manage…","description":"In Splunk Enterprise versions below 10.4.2, a user with a high-privilege Splunk role that can manage search head clustering could use the search head cluster member bundle Representational State Transfer (REST) API to write files to locations that the user account running Splunk Enterprise can write…","indicators":{"cves":["CVE-2026-76345"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:19.297Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0801","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76349","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76349 — In Splunk Enterprise versions below 10.2.6, 10.0.9, and 9.4.14, an unauthenticated user could trick…","description":"In Splunk Enterprise versions below 10.2.6, 10.0.9, and 9.4.14, an unauthenticated user could trick an authenticated user into running arbitrary Search Processing Language (SPL) commands using the permissions of the authenticated user through a crafted Splunk Web link. The SPL commands could access…","indicators":{"cves":["CVE-2026-76349"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["phishing"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:19.807Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0801","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76358","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76358 — In Splunk SOAR versions below 8.6.0, a user with app-install privileges could use path traversal dur…","description":"In Splunk SOAR versions below 8.6.0, a user with app-install privileges could use path traversal during app installation to write files outside the intended temporary directory. The vulnerability is a path traversal in the archive extraction routine, which does not validate that extracted file paths…","indicators":{"cves":["CVE-2026-76358"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:21.000Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0804","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76359","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76359 — In Splunk SOAR versions below 8.6.0, a user who holds the Administrator role could use path traversa…","description":"In Splunk SOAR versions below 8.6.0, a user who holds the Administrator role could use path traversal in the Universal Forwarder installer's archive extraction to write files outside the intended installation directory. The vulnerability is possible because the Universal Forwarder credentials-packag…","indicators":{"cves":["CVE-2026-76359"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:21.130Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0804","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76360","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76360 — In Splunk SOAR versions below 8.6.0, an authenticated user with no role assigned could use the /rest…","description":"In Splunk SOAR versions below 8.6.0, an authenticated user with no role assigned could use the /rest/health endpoint to gather system and cluster telemetry that should be restricted to administrative or support users. The vulnerability is a missing authorization check, where the endpoint does not ve…","indicators":{"cves":["CVE-2026-76360"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:21.267Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0804","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76363","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76363 — In Splunk SOAR versions below 8.6.0, a user who holds the \"Automation Engineer\" role could run arbit…","description":"In Splunk SOAR versions below 8.6.0, a user who holds the \"Automation Engineer\" role could run arbitrary Structured Query Language (SQL) statements against the Splunk SOAR database and create, read, update, or delete all data in the database. The vulnerability is possible because Splunk SOAR playboo…","indicators":{"cves":["CVE-2026-76363"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:21.653Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0804","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76364","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76364 — In Splunk SOAR versions below 8.6.0, a user who holds the \"Automation Engineer\" Splunk SOAR role cou…","description":"In Splunk SOAR versions below 8.6.0, a user who holds the \"Automation Engineer\" Splunk SOAR role could run arbitrary Structured Query Language (SQL) statements against the Splunk SOAR database through custom function results, allowing for reading all relevant data stored in the Splunk SOAR database…","indicators":{"cves":["CVE-2026-76364","CVE-2026-76365"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:21.777Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0804","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76366","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76366 — In Splunk SOAR versions below 8.6.0, a user with a valid Splunk SOAR account could use Representatio…","description":"In Splunk SOAR versions below 8.6.0, a user with a valid Splunk SOAR account could use Representational State Transfer (REST) API filtering on playbook runs to recover session tokens that compromise all data available to the affected user. The information disclosure is possible because Splunk SOAR d…","indicators":{"cves":["CVE-2026-76366"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:22.023Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0804","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76367","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76367 — In Splunk SOAR versions below 8.6.0, a user who holds the \"Incident Commander\" Splunk SOAR role coul…","description":"In Splunk SOAR versions below 8.6.0, a user who holds the \"Incident Commander\" Splunk SOAR role could store JavaScript in a note and run it in the browser of another user when that user opens the note. The stored Cross-Site Scripting (XSS) vulnerability is possible because Splunk SOAR can treat exis…","indicators":{"cves":["CVE-2026-76367"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["phishing"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:22.153Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0804","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76370","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76370 — In Splunk SOAR versions below 8.6.0, an authenticated user with restricted tenant access could use t…","description":"In Splunk SOAR versions below 8.6.0, an authenticated user with restricted tenant access could use the Representational State Transfer (REST) API to view the names and identifiers of tenants that fall outside the role scope for that user. The vulnerability is possible because Splunk SOAR does not en…","indicators":{"cves":["CVE-2026-76370"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:22.733Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0804","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76372","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76372 — In Nmap Scanner versions below 3.0.15, a user who holds a role that can edit, create, or run playboo…","description":"In Nmap Scanner versions below 3.0.15, a user who holds a role that can edit, create, or run playbooks in Splunk SOAR could run the scan network action in a Safe Mode playbook while that action is listed as read-only, which could allow for command execution or other changes on a target system throug…","indicators":{"cves":["CVE-2026-76372"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:23.050Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0806","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76373","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76373 — In versions below 2.3.8 of the AD LDAP app for Splunk SOAR, a user who holds a role with permission…","description":"In versions below 2.3.8 of the AD LDAP app for Splunk SOAR, a user who holds a role with permission to run actions could inject crafted input into an Active Directory query to enumerate Active Directory objects, including accounts, groups, and organizational units, read sensitive attributes from arb…","indicators":{"cves":["CVE-2026-76373","CVE-2026-76374","CVE-2026-76375"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:23.187Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0806","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76376","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76376 — In versions below 2.1.9 of the AWS IAM app for Splunk SOAR, a user who holds a role with permission…","description":"In versions below 2.1.9 of the AWS IAM app for Splunk SOAR, a user who holds a role with permission to run actions could expose sensitive AWS credentials by invoking an action that accepts the credentials parameter, because the parameter is not masked and is shown in cleartext in the user interface.…","indicators":{"cves":["CVE-2026-76376"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:23.577Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0806","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76377","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76377 — In versions below 2.5.3 of the Azure AD Graph app for Splunk SOAR, a user who holds a role with perm…","description":"In versions below 2.5.3 of the Azure AD Graph app for Splunk SOAR, a user who holds a role with permission to run actions could expose a sensitive password by invoking the reset password action, because the action's temp_password parameter is not masked and is shown in cleartext in the user interfac…","indicators":{"cves":["CVE-2026-76377"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:23.697Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0806","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76378","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76378 — In versions below 2.4.5 of the Cisco Secure Malware Analytics app for Splunk SOAR, a user who holds…","description":"In versions below 2.4.5 of the Cisco Secure Malware Analytics app for Splunk SOAR, a user who holds a role with permission to run actions could expose a sensitive sample password by invoking the detonate file action, because the action's sample_password parameter is not masked and is shown in cleart…","indicators":{"cves":["CVE-2026-76378"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:23.823Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0806","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76379","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76379 — In versions below 2.2.1 of the Cisco Webex app for Splunk SOAR, a user who holds a role with permiss…","description":"In versions below 2.2.1 of the Cisco Webex app for Splunk SOAR, a user who holds a role with permission to run actions could expose a sensitive meeting password by invoking the schedule meeting action, because the action's password parameter is not masked and is shown in cleartext in the user interf…","indicators":{"cves":["CVE-2026-76379"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:23.950Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0806","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76380","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76380 — In versions below 5.1.3 of the CrowdStrike OAuth API app for Splunk SOAR, a user who holds a role wi…","description":"In versions below 5.1.3 of the CrowdStrike OAuth API app for Splunk SOAR, a user who holds a role with permission to run actions could expose a sensitive document password by invoking either the detonate file or detonate url action, because the action's document_password parameter is not masked and…","indicators":{"cves":["CVE-2026-76380"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:24.077Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0806","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76381","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76381 — In versions below 1.5.2 of the MS Graph for Active Directory app for Splunk SOAR, a user who holds a…","description":"In versions below 1.5.2 of the MS Graph for Active Directory app for Splunk SOAR, a user who holds a role with permission to run actions could expose a sensitive password by invoking the reset password action, because the action's temp_password parameter is not masked and is shown in cleartext in th…","indicators":{"cves":["CVE-2026-76381"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:24.203Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0806","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76382","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76382 — In versions below 3.8.5 of the Phantom app for Splunk SOAR, a user who holds a role with permission…","description":"In versions below 3.8.5 of the Phantom app for Splunk SOAR, a user who holds a role with permission to run actions could expose a sensitive archive password by invoking the deflate item action, because the action's password parameter is not masked and is shown in cleartext in the user interface. The…","indicators":{"cves":["CVE-2026-76382"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:24.340Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0806","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76383","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76383 — In versions below 1.0.5 of the RSA SecurID Authentication Manager app for Splunk SOAR, a user who ho…","description":"In versions below 1.0.5 of the RSA SecurID Authentication Manager app for Splunk SOAR, a user who holds a role with permission to run actions could expose a sensitive token serial by invoking either the enable token or revoke token action, because the action's token_serial parameter is not masked an…","indicators":{"cves":["CVE-2026-76383"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:24.467Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0806","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76384","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76384 — In versions below 2.2.1 of the Splunk Attack Analyzer Connector for Splunk SOAR, a user who holds a…","description":"In versions below 2.2.1 of the Splunk Attack Analyzer Connector for Splunk SOAR, a user who holds a role with permission to run actions could expose a sensitive archive password by invoking either the detonate file or detonate url action, because the action's archive_password parameter is not masked…","indicators":{"cves":["CVE-2026-76384"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:24.587Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0806","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76385","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76385 — In versions below 2.1.4 of the Venafi app for Splunk SOAR, a user who holds a role with permission t…","description":"In versions below 2.1.4 of the Venafi app for Splunk SOAR, a user who holds a role with permission to run actions could expose keystore and private-key passwords by invoking the get certificate action, because the action's keystore_password and password parameters are not masked and are shown in cle…","indicators":{"cves":["CVE-2026-76385"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:24.710Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0806","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76386","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76386 — In versions below 3.2.2 of the Zoom app for Splunk SOAR, a user who holds a role with permission to…","description":"In versions below 3.2.2 of the Zoom app for Splunk SOAR, a user who holds a role with permission to run actions could expose meeting and personal meeting ID passwords by invoking one of the create meeting, update meeting, or update user settings actions, because the affected password and pmi_passwor…","indicators":{"cves":["CVE-2026-76386"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:24.833Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0806","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76390","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76390 — In Cisco Talos Intelligence for Enterprise Security Cloud versions below 1.0.3, an unauthenticated u…","description":"In Cisco Talos Intelligence for Enterprise Security Cloud versions below 1.0.3, an unauthenticated user could access the add-on OpenAPI specification through Splunk Web static file paths. The exposed specification could allow for reconnaissance of the add-on Representational State Transfer (REST) AP…","indicators":{"cves":["CVE-2026-76390"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:25.357Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0808","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76393","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76393 — In Splunk AI Toolkit versions below 6.0.0, a user who can upload models could overwrite a model bein…","description":"In Splunk AI Toolkit versions below 6.0.0, a user who can upload models could overwrite a model being uploaded by another user by sending a concurrent upload request for the same model name, causing the resulting model lookup entry to reference attacker-controlled content. The race condition is poss…","indicators":{"cves":["CVE-2026-76393"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:25.737Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0808","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76398","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76398 — In Splunk AI Toolkit versions below 6.0.1, a user who does not hold the \"admin\" or \"power\" Splunk ro…","description":"In Splunk AI Toolkit versions below 6.0.1, a user who does not hold the \"admin\" or \"power\" Splunk roles could delete the experiment history of another user without permission through the Representational State Transfer (REST) API. The vulnerability is possible because Splunk AI Toolkit deletes exper…","indicators":{"cves":["CVE-2026-76398"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:26.400Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0808","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76405","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76405 — In Splunk On-Call (VictorOps) app versions below 1.0.43 on Splunkbase, a user who does not hold the…","description":"In Splunk On-Call (VictorOps) app versions below 1.0.43 on Splunkbase, a user who does not hold the \"admin\" or \"power\" Splunk roles could read a partially masked Application Programming Interface (API) key from the App Key Value Store (KV Store). The exposure is possible because the Splunk On-Call (…","indicators":{"cves":["CVE-2026-76405"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:27.297Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0808","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76881","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76881 — CMS protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service","description":"CMS protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service","indicators":{"cves":["CVE-2026-76881","CVE-2026-76921"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T23:16:18.947Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://gitlab.com/wireshark/wireshark/-/work_items/21446","label":"cve@gitlab.com","domainType":"other"},{"url":"https://www.wireshark.org/security/wnpa-sec-2026-76.html","label":"cve@gitlab.com","domainType":"other"},{"url":"https://gitlab.com/wireshark/wireshark/-/work_items/21457","label":"cve@gitlab.com","domainType":"other"},{"url":"https://gitlab.com/wireshark/wireshark/-/work_items/21458","label":"cve@gitlab.com","domainType":"other"},{"url":"https://www.wireshark.org/security/wnpa-sec-2026-83.html","label":"cve@gitlab.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76882","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76882 — Bluetooth Attribute Protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of…","description":"Bluetooth Attribute Protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service","indicators":{"cves":["CVE-2026-76882"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T23:16:19.070Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://gitlab.com/wireshark/wireshark/-/work_items/21424","label":"cve@gitlab.com","domainType":"other"},{"url":"https://www.wireshark.org/security/wnpa-sec-2026-73.html","label":"cve@gitlab.com","domainType":"other"},{"url":"https://gitlab.com/wireshark/wireshark/-/work_items/21424","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76883","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76883 — Catapult DCT2000 file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service","description":"Catapult DCT2000 file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service","indicators":{"cves":["CVE-2026-76883"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T23:16:19.190Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://gitlab.com/wireshark/wireshark/-/work_items/21427","label":"cve@gitlab.com","domainType":"other"},{"url":"https://www.wireshark.org/security/wnpa-sec-2026-74.html","label":"cve@gitlab.com","domainType":"other"},{"url":"https://gitlab.com/wireshark/wireshark/-/work_items/21427","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76889","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76889 — UMTS FP protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service","description":"UMTS FP protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service","indicators":{"cves":["CVE-2026-76889"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T23:16:19.953Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://gitlab.com/wireshark/wireshark/-/work_items/21413","label":"cve@gitlab.com","domainType":"other"},{"url":"https://www.wireshark.org/security/wnpa-sec-2026-66.html","label":"cve@gitlab.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76917","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76917 — Bluetooth AVRCP Profile protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial…","description":"Bluetooth AVRCP Profile protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service","indicators":{"cves":["CVE-2026-76917"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T23:16:20.360Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://gitlab.com/wireshark/wireshark/-/work_items/21488","label":"cve@gitlab.com","domainType":"other"},{"url":"https://www.wireshark.org/security/wnpa-sec-2026-91.html","label":"cve@gitlab.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76918","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76918 — SSH protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service","description":"SSH protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service","indicators":{"cves":["CVE-2026-76918"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T23:16:20.487Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://gitlab.com/wireshark/wireshark/-/work_items/21465","label":"cve@gitlab.com","domainType":"other"},{"url":"https://www.wireshark.org/security/wnpa-sec-2026-85.html","label":"cve@gitlab.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76919","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76919 — ESS protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service","description":"ESS protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service","indicators":{"cves":["CVE-2026-76919"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T23:16:20.600Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://gitlab.com/wireshark/wireshark/-/work_items/21467","label":"cve@gitlab.com","domainType":"other"},{"url":"https://www.wireshark.org/security/wnpa-sec-2026-86.html","label":"cve@gitlab.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76920","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76920 — 3gpp phone log file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service","description":"3gpp phone log file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service","indicators":{"cves":["CVE-2026-76920"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T23:16:20.727Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://gitlab.com/wireshark/wireshark/-/work_items/21454","label":"cve@gitlab.com","domainType":"other"},{"url":"https://www.wireshark.org/security/wnpa-sec-2026-81.html","label":"cve@gitlab.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76922","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76922 — Bluetooth BR/EDR FHS protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of…","description":"Bluetooth BR/EDR FHS protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service","indicators":{"cves":["CVE-2026-76922"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T23:16:20.960Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://gitlab.com/wireshark/wireshark/-/work_items/21452","label":"cve@gitlab.com","domainType":"other"},{"url":"https://www.wireshark.org/security/wnpa-sec-2026-80.html","label":"cve@gitlab.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76923","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76923 — Bluetooth HFP Profile protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial o…","description":"Bluetooth HFP Profile protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service","indicators":{"cves":["CVE-2026-76923"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T23:16:21.083Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://gitlab.com/wireshark/wireshark/-/work_items/21451","label":"cve@gitlab.com","domainType":"other"},{"url":"https://www.wireshark.org/security/wnpa-sec-2026-79.html","label":"cve@gitlab.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76924","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76924 — Kerberos protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service","description":"Kerberos protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service","indicators":{"cves":["CVE-2026-76924"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T23:16:21.200Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://gitlab.com/wireshark/wireshark/-/work_items/21449","label":"cve@gitlab.com","domainType":"other"},{"url":"https://www.wireshark.org/security/wnpa-sec-2026-78.html","label":"cve@gitlab.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76927","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76927 — H.245 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service","description":"H.245 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service","indicators":{"cves":["CVE-2026-76927"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T23:16:21.447Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://gitlab.com/wireshark/wireshark/-/work_items/21447","label":"cve@gitlab.com","domainType":"other"},{"url":"https://www.wireshark.org/security/wnpa-sec-2026-77.html","label":"cve@gitlab.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76929","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76929 — Pcapng file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service","description":"Pcapng file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service","indicators":{"cves":["CVE-2026-76929"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T23:16:21.693Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://gitlab.com/wireshark/wireshark/-/work_items/21460","label":"cve@gitlab.com","domainType":"other"},{"url":"https://www.wireshark.org/security/wnpa-sec-2026-84.html","label":"cve@gitlab.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76785","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76785 — A security flaw has been discovered in amirsanni Mini-Inventory-and-Sales-Management-System 0.1. Aff…","description":"A security flaw has been discovered in amirsanni Mini-Inventory-and-Sales-Management-System 0.1. Affected is the function Transaction::getAll of the file application/models/Transaction.php. Performing a manipulation of the argument orderBy/orderFormat results in sql injection. It is possible to init…","indicators":{"cves":["CVE-2026-76785"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T01:16:54.100Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://github.com/amirsanni/Mini-Inventory-and-Sales-Management-System/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/amirsanni/Mini-Inventory-and-Sales-Management-System/issues/101","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-76785","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/879829","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393250","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393250/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76799","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76799 — A weakness has been identified in code-projects Login Registration System 1.0. This affects an unkno…","description":"A weakness has been identified in code-projects Login Registration System 1.0. This affects an unknown function of the file /loginsystem/database/login_registration_system.sql of the component SQL Database Backup Handler. This manipulation causes files or directories accessible. The attack may be in…","indicators":{"cves":["CVE-2026-76799"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T02:16:21.753Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://code-projects.org/","label":"cna@vuldb.com","domainType":"other"},{"url":"https://raw.githubusercontent.com/anubhavv106/Security-Advisories/refs/heads/main/Login-Registration-System-login_registration_system.sql-Sensitive-Database-Disclosure.md","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/cve/CVE-2026-76799","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/880056","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393314","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393314/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76800","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76800 — A flaw has been found in DeDeCMS 3. Affected by this vulnerability is an unknown functionality of th…","description":"A flaw has been found in DeDeCMS 3. Affected by this vulnerability is an unknown functionality of the file /include/dialog/select_media_post.php. Executing a manipulation of the argument uploadfile can lead to unrestricted upload. The attack can be executed remotely. The exploit has been published a…","indicators":{"cves":["CVE-2026-76800"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T03:16:23.887Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://uvxbywu62qm.feishu.cn/wiki/TKqDwJGYaiBVXpk3EtFcdjRDnsg?from=from_copylink","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/cve/CVE-2026-76800","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/880081","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393317","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393317/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76956","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76956 — In libexpat 2.8.2 and 2.8.3 before 2.8.4, misinterpretation of getentropy's return code leads to ins…","description":"In libexpat 2.8.2 and 2.8.3 before 2.8.4, misinterpretation of getentropy's return code leads to insufficient entropy, which results in being vulnerable to hash flooding attacks, causing a denial of service via crafted XML content.","indicators":{"cves":["CVE-2026-76956"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T05:16:29.610Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://github.com/libexpat/libexpat/pull/1326","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/libexpat/libexpat/pull/1329","label":"cve@mitre.org","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-76957","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76957 — libexpat before 2.8.4 lacks handler call depth tracking with custom encoding callbacks. Thus, a use-…","description":"libexpat before 2.8.4 lacks handler call depth tracking with custom encoding callbacks. Thus, a use-after-free can occur. NOTE: this is similar to CVE-2026-50219, CVE-2026-56131 and CVE-2026-56412.","indicators":{"cves":["CVE-2026-76957"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T05:16:29.747Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://github.com/libexpat/libexpat/pull/1322","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/libexpat/libexpat/pull/1329","label":"cve@mitre.org","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-13405","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-13405 — The Royal Addons for Elementor WordPress plugin before 1.7.1066 does not correctly sanitise custom w…","description":"The Royal Addons for Elementor  WordPress plugin before 1.7.1066 does not correctly sanitise custom widget markup before writing it to a file that is later executed, allowing users with the manage_options capability (and, on WordPress Multisite, non-super subsite administrators who do not otherwise…","indicators":{"cves":["CVE-2026-13405"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T06:16:41.710Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://wpscan.com/vulnerability/247be7fc-a49f-429e-875d-8649510c42b5/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-17153","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-17153 — The AI Agent by SiteGround plugin for WordPress is vulnerable to authorization bypass in all version…","description":"The AI Agent by SiteGround plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 1.2.7. This is due to the plugin not properly verifying that a user is authorized to perform an action. This makes it possible for unauthenticated attackers to upload images to…","indicators":{"cves":["CVE-2026-17153"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T06:16:58.230Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://plugins.trac.wordpress.org/browser/sg-ai-studio/tags/1.2.6/core/Helper/Helper.php#L1077","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/sg-ai-studio/tags/1.2.6/core/Helper/Helper.php#L604","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/sg-ai-studio/tags/1.2.6/core/Rest/Gutenberg.php#L118","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/sg-ai-studio/tags/1.2.6/core/Rest/Rest.php#L325","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/browser/sg-ai-studio/tags/1.2.6/core/Rest/Rest.php#L474","label":"security@wordfence.com","domainType":"other"},{"url":"https://plugins.trac.wordpress.org/changeset?reponame=&old=3654622%40sg-ai-studio&new=3654622%40sg-ai-studio","label":"security@wordfence.com","domainType":"other"},{"url":"https://www.wordfence.com/threat-intel/vulnerabilities/id/6280f40e-2998-43d4-a78f-b393e4f36df5?source=cve","label":"security@wordfence.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19615","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19615 — The Admin and Site Enhancements (ASE) WordPress plugin before 9.0.1 does not sanitise uploaded SVG f…","description":"The Admin and Site Enhancements (ASE) WordPress plugin before 9.0.1 does not sanitise uploaded SVG files on every route it accepts them through, allowing users with a role the site owner granted upload access to store a file containing JavaScript which then executes in the browser of anyone who open…","indicators":{"cves":["CVE-2026-19615"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T06:17:07.777Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://wpscan.com/vulnerability/3a318175-8d25-4dba-a6ad-7a09d0a7fa5a/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19697","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19697 — The GutenKit WordPress plugin before 2.5.0 does not sanitise uploaded SVG files on all of the upload…","description":"The GutenKit  WordPress plugin before 2.5.0 does not sanitise uploaded SVG files on all of the upload paths it enables, allowing users with the file upload capability, such as Author, to upload a malicious SVG and perform Stored Cross-Site Scripting attacks against any user opening it, including adm…","indicators":{"cves":["CVE-2026-19697"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T06:17:07.927Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://wpscan.com/vulnerability/d144679c-10ef-4a69-b0e9-fd9e18a2aafc/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74992","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-74992 — The Kirki WordPress plugin before 6.2.3 does not properly validate the files contained in archives u…","description":"The Kirki  WordPress plugin before 6.2.3 does not properly validate the files contained in archives uploaded by users with the Editor role, and does not remove all unwanted files after extracting them, allowing such users to upload arbitrary files to a web accessible directory, leading to Stored XSS…","indicators":{"cves":["CVE-2026-74992"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["rce"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T06:17:19.360Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://wpscan.com/vulnerability/ba981818-f4a0-444a-bf6a-e4caacc9d1aa/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-14949","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-14949 — A low privileged remote attacker with a valid session can submit a request to the user creation func…","description":"A low privileged remote attacker with a valid session can submit a request to the user creation functionality exposed through /api/user/add.php to create new accounts with arbitrary role values, including the highest privilege level used by the application.","indicators":{"cves":["CVE-2026-14949"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T09:16:47.307Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://www.certvde.com/en/advisories/VDE-2026-078/","label":"info@cert.vde.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-14953","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-14953 — A low-privileged remote attacker can enumerate all configured users and identify which accounts hold…","description":"A low-privileged remote attacker can enumerate all configured users and identify which accounts hold elevated privileges using the endpoint /api/user/fetch-all.php.","indicators":{"cves":["CVE-2026-14953"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T09:16:47.883Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://www.certvde.com/en/advisories/VDE-2026-078/","label":"info@cert.vde.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77014","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-77014 — A flaw was found in libsoup's SoupServer HTTP Range header processing. The sort_ranges() comparator…","description":"A flaw was found in libsoup's SoupServer HTTP Range header processing. The sort_ranges() comparator in soup-message-headers.c truncates a 64-bit subtraction result to 32-bit int, flipping the sign for range offsets differing by more than INT_MAX. This causes silent omission of requested byte ranges…","indicators":{"cves":["CVE-2026-77014"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T09:16:48.167Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-77014","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2520143","label":"secalert@redhat.com","domainType":"other"},{"url":"https://gitlab.gnome.org/GNOME/libsoup/-/merge_requests/550","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73196","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-73196 — A flaw was found in FreeIPA. A low-privilege authenticated user can exploit this vulnerability by su…","description":"A flaw was found in FreeIPA. A low-privilege authenticated user can exploit this vulnerability by submitting an oversized One-Time Password (OTP) key value. This oversized key is then decoded and re-encoded without proper size limits, consuming excessive CPU and memory resources. This can lead to a…","indicators":{"cves":["CVE-2026-73196"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T11:16:21.417Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-73196","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2474712","label":"secalert@redhat.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73199","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-73199 — A flaw was found in the `ipa-enrollment` SLAPI plugin. A remote authenticated client can exploit a n…","description":"A flaw was found in the `ipa-enrollment` SLAPI plugin. A remote authenticated client can exploit a null pointer dereference vulnerability by sending a malformed Lightweight Directory Access Protocol (LDAP) extended operation. By omitting the request value for the `JOIN_OID` in the `ipa-enrollment` e…","indicators":{"cves":["CVE-2026-73199"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T11:16:21.813Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-73199","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2471741","label":"secalert@redhat.com","domainType":"other"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2471741","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77066","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-77066 — The scanFeedsResolver in packages/api/src/resolvers/subscriptions/index.ts passes the caller-supplie…","description":"The scanFeedsResolver in packages/api/src/resolvers/subscriptions/index.ts passes the caller-supplied url straight to axios.get(url, rssParserConfig()) with no address validation. The same file guards the subscribe path with validateUrl(), which rejects private and reserved ranges through the privat…","indicators":{"cves":["CVE-2026-77066"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T11:16:22.100Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://github.com/omnivore-app/omnivore","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/omnivore-app/omnivore/blob/0d66408746788e07cec43928581b2567308ab575/packages/api/src/resolvers/subscriptions/index.ts#L445","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/omnivore-app/omnivore/commit/c4d7d8562e6b9aabb1d8e4dabca268e314baa43a","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/omnivore-app/omnivore/issues/4647","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/omnivore-server-side-request-forgery-via-the-scanfeeds-graphql-query","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77067","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-77067 — The setWebhookResolver in packages/api/src/resolvers/webhooks/index.ts stores the caller-supplied ur…","description":"The setWebhookResolver in packages/api/src/resolvers/webhooks/index.ts stores the caller-supplied url without any address validation, and the file imports no validation helper. When a subscribed event fires, callWebhook in packages/api/src/jobs/call_webhook.ts issues axios.request with that url, the…","indicators":{"cves":["CVE-2026-77067"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T11:16:22.240Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://github.com/omnivore-app/omnivore","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/omnivore-app/omnivore/blob/0d66408746788e07cec43928581b2567308ab575/packages/api/src/jobs/call_webhook.ts#L36","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/omnivore-app/omnivore/blob/0d66408746788e07cec43928581b2567308ab575/packages/api/src/resolvers/webhooks/index.ts#L108","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/omnivore-app/omnivore/commit/c4d7d8562e6b9aabb1d8e4dabca268e314baa43a","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/omnivore-app/omnivore/issues/4647","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/omnivore-stored-server-side-request-forgery-via-the-setwebhook-mutation","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/omnivore-app/omnivore/issues/4647","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2025-53999","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2025-53999 — Unauthenticated Broken Access Control in Altair <= 5.2.2 versions.","description":"Unauthenticated Broken Access Control in Altair <= 5.2.2 versions.","indicators":{"cves":["CVE-2025-53999"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:32.027Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/theme/altair/vulnerability/wordpress-altair-theme-5-2-2-broken-access-control-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2025-62307","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2025-62307 — HCL IntelliOps Event Management (IEM) is affected by insufficient logging. Insufficient logging weak…","description":"HCL IntelliOps Event Management (IEM) is affected by insufficient logging. Insufficient logging weakens accountability, obscures attack detection, and enables privilege probing.","indicators":{"cves":["CVE-2025-62307"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:32.150Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0132456","label":"psirt@hcl.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66586","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-66586 — Author Local File Inclusion in WP Cafe Pro < 3.0.15 versions.","description":"Author Local File Inclusion in WP Cafe Pro < 3.0.15 versions.","indicators":{"cves":["CVE-2026-66586"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:32.800Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/wpcafe-pro/vulnerability/wordpress-wp-cafe-pro-plugin-3-0-15-local-file-inclusion-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66595","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-66595 — Unauthenticated Broken Access Control in WP Data Access <= 5.5.80 versions.","description":"Unauthenticated Broken Access Control in WP Data Access <= 5.5.80 versions.","indicators":{"cves":["CVE-2026-66595"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:33.433Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/wp-data-access/vulnerability/wordpress-wp-data-access-plugin-5-5-80-broken-access-control-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66601","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-66601 — Subscriber Cross Site Scripting (XSS) in Media LIbrary Assistant <= 3.39 versions.","description":"Subscriber Cross Site Scripting (XSS) in Media LIbrary Assistant <= 3.39 versions.","indicators":{"cves":["CVE-2026-66601"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:33.933Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/media-library-assistant/vulnerability/wordpress-media-library-assistant-plugin-3-39-cross-site-scripting-xss-vulnerability-2?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66647","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-66647 — Subscriber Broken Access Control in Homlisti <= 3.1.2 versions.","description":"Subscriber Broken Access Control in Homlisti <= 3.1.2 versions.","indicators":{"cves":["CVE-2026-66647"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:35.323Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/theme/homlisti/vulnerability/wordpress-homlisti-theme-3-1-2-broken-access-control-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73402","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-73402 — Subscriber Cross Site Scripting (XSS) in WP BASE Booking <= 6.3.2 versions.","description":"Subscriber Cross Site Scripting (XSS) in WP BASE Booking <= 6.3.2 versions.","indicators":{"cves":["CVE-2026-73402"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:36.437Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/wp-base-booking-of-appointments-services-and-events/vulnerability/wordpress-wp-base-booking-plugin-6-3-2-cross-site-scripting-xss-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2025-62299","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2025-62299 — HCL IntelliOps Event Management (IEM) is affected by a least privileges violation which could allow…","description":"HCL IntelliOps Event Management (IEM) is affected by a least privileges violation which could allow an attacker to access the resource with the elevated privilege that could not be accessed with the attacker's original privileges.","indicators":{"cves":["CVE-2025-62299"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T13:16:48.503Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0132456","label":"psirt@hcl.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2025-62300","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2025-62300 — HCL IntelliOps Event Management (IEM) is affected by a race condition. A \"timing window\" can occur w…","description":"HCL IntelliOps Event Management (IEM) is affected by a race condition. A \"timing window\" can occur where an attacker can modify the resource causing unpredictable behavior.","indicators":{"cves":["CVE-2025-62300"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T13:16:49.717Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0132456","label":"psirt@hcl.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2025-62306","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2025-62306 — HCL IntelliOps Event Management (IEM) is affected by information omission. The lack of information b…","description":"HCL IntelliOps Event Management (IEM) is affected by information omission. The lack of information breaks auditability and observability of a workflow. if an attacker were to gain access to the application, the insufficient logging could hinder incident response.","indicators":{"cves":["CVE-2025-62306"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T13:16:49.837Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0132456","label":"psirt@hcl.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-21784","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-21784 — HCL IntelliOps Event Management (IEM) is affected by missing or insecure Cross-Origin Security heade…","description":"HCL IntelliOps Event Management (IEM) is affected by missing or insecure Cross-Origin Security headers. This issue makes the application's environment and resources susceptible to unauthorized external interaction and potential exploitation.","indicators":{"cves":["CVE-2026-21784"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T13:17:05.103Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0132456","label":"psirt@hcl.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-28163","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-28163 — Missing Authorization vulnerability in myCred New User Approve allows Exploiting Incorrectly Configu…","description":"Missing Authorization vulnerability in myCred New User Approve allows Exploiting Incorrectly Configured Access Control Security Levels.\n\nThis issue affects New User Approve: from n/a through 3.2.8.","indicators":{"cves":["CVE-2026-28163"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T13:17:27.100Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://patchstack.com/database/wordpress/plugin/new-user-approve/vulnerability/wordpress-new-user-approve-plugin-3-2-8-broken-access-control-vulnerability?_s_id=cve","label":"audit@patchstack.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76988","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76988 — A weakness has been identified in liftoff-sr CIPster 1802525be27d33e19a9a83c163e331a1d13b1892. This…","description":"A weakness has been identified in liftoff-sr CIPster 1802525be27d33e19a9a83c163e331a1d13b1892. This affects the function CipConnMgrClass::forward_open of the file cipconnectionmanager.cc of the component ForwardOpen Handler. Executing a manipulation of the argument product_code_ can lead to out-of-b…","indicators":{"cves":["CVE-2026-76988"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T13:19:06.690Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://github.com/liftoff-sr/CIPster/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/liftoff-sr/CIPster/commit/ea870a274bf68dfaa3f511f20e2fff6778fb7b74","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/liftoff-sr/CIPster/issues/45","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-76988","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/880102","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393611","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393611/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76989","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76989 — A security vulnerability has been detected in liftoff-sr CIPster 1802525be27d33e19a9a83c163e331a1d13…","description":"A security vulnerability has been detected in liftoff-sr CIPster 1802525be27d33e19a9a83c163e331a1d13b1892. This impacts an unknown function of the file source/src/enet_encap/encap.cc of the component TCP Encapsulation Receive Path. The manipulation leads to out-of-bounds read. The attack can be init…","indicators":{"cves":["CVE-2026-76989"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T13:19:06.880Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://github.com/liftoff-sr/CIPster/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/liftoff-sr/CIPster/commit/e8e9dba09bf56962807d3504b783ccdb6287f3e4","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/liftoff-sr/CIPster/issues/46","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-76989","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/880112","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393612","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393612/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76634","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76634 — WeGIA before 3.9.2 contains an insecure direct object reference vulnerability in the employee profil…","description":"WeGIA before 3.9.2 contains an insecure direct object reference vulnerability in the employee profile page that allows authenticated attackers to access arbitrary employee records by injecting an id_pessoa parameter through a request extraction function that overwrites the session-derived identifier…","indicators":{"cves":["CVE-2026-76634"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:17:59.837Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://github.com/LabRedesCefetRJ/WeGIA/releases#release-3.9.2","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/LabRedesCefetRJ/WeGIA/security/advisories/GHSA-jqh5-66qr-85qv","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/wegia-insecure-direct-object-reference-via-profile-funcionario-php","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/LabRedesCefetRJ/WeGIA/security/advisories/GHSA-jqh5-66qr-85qv","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-44725","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-44725 — EMQX is a scalable and reliable MQTT broker for AI, IoT, IIoT, and connected vehicles. Prior to vers…","description":"EMQX is a scalable and reliable MQTT broker for AI, IoT, IIoT, and connected vehicles. Prior to versions 5.8.11, 5.9.3, 5.10.4, 6.0.3, 6.1.2, and 6.2.1, the plugin-install REST API and dashboard upload accepted stale grants created with emqx ctl plugins allow because there was no five-minute grant l…","indicators":{"cves":["CVE-2026-44725"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["transport"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T15:17:30.003Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/emqx/emqx/commit/2f926359fa847dd9928a8e94d3e342f5621806f4","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/emqx/emqx/commit/efa1ca1bef1517f1f87e1d562f8db8750b6d6ce3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/emqx/emqx/pull/17200","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/emqx/emqx/pull/17201","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/emqx/emqx/releases/tag/6.0.3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/emqx/emqx/releases/tag/6.1.2","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/emqx/emqx/releases/tag/6.2.1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/emqx/emqx/releases/tag/e5.10.4","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/emqx/emqx/releases/tag/e5.8.11","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/emqx/emqx/security/advisories/GHSA-cp9x-5qwc-fj6r","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-55558","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-55558 — aiosmtplib is an asynchronous SMTP client for use with asyncio. Prior to 5.1.2, SMTPProtocol.start_t…","description":"aiosmtplib is an asynchronous SMTP client for use with asyncio. Prior to 5.1.2, SMTPProtocol.start_tls in src/aiosmtplib/protocol.py consumes the server's 220 response and starts the TLS handshake without clearing SMTPProtocol._buffer. An active network attacker can place attacker-chosen SMTP respon…","indicators":{"cves":["CVE-2026-55558"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T15:17:31.980Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/cole/aiosmtplib/commit/9fab7ba1361dbf7622ede1315a24be805cff09c9","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cole/aiosmtplib/releases/tag/v5.1.2","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cole/aiosmtplib/security/advisories/GHSA-vxj7-4xrp-5vr4","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-76991","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76991 — A vulnerability was found in itsourcecode Hospital Management System 1.0. This affects an unknown pa…","description":"A vulnerability was found in itsourcecode Hospital Management System 1.0. This affects an unknown part of the file /viewappointmentapproved.php. Performing a manipulation of the argument delid results in sql injection. Remote exploitation of the attack is possible. The exploit has been made public a…","indicators":{"cves":["CVE-2026-76991"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T15:18:39.760Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/ltranquility/vuln_submit/issues/23","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://itsourcecode.com/","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/cve/CVE-2026-76991","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/880115","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393616","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393616/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76993","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76993 — A vulnerability was determined in GreyDGL PentestGPT up to 1.0.0. This vulnerability affects unknown…","description":"A vulnerability was determined in GreyDGL PentestGPT up to 1.0.0. This vulnerability affects unknown code of the component Web-Page Crawling. Executing a manipulation of the argument Traceback can lead to injection. The attack can be executed remotely. A high complexity level is associated with this…","indicators":{"cves":["CVE-2026-76993"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T15:18:40.013Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/GreyDGL/PentestGPT/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/GreyDGL/PentestGPT/issues/484","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/ez-lbz/pentestgpt-vul-report","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-76993","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/880116","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393617","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393617/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76995","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76995 — A vulnerability was identified in SourceCodester Simple Online Food Ordering System 1.0. This issue…","description":"A vulnerability was identified in SourceCodester Simple Online Food Ordering System 1.0. This issue affects some unknown processing of the file /admin/ajax.php?action=save_menu. The manipulation of the argument img leads to unrestricted upload. The attack is possible to be carried out remotely. The…","indicators":{"cves":["CVE-2026-76995"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T15:18:40.387Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/hubdk01/cve/issues/1","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-76995","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/880371","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393618","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393618/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.sourcecodester.com/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-63015","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-63015 — Uncontrolled Resource Consumption vulnerability in Apache InLong. Non-template responsible persons c…","description":"Uncontrolled Resource Consumption vulnerability in Apache InLong. Non-template responsible persons can view template information.\n\nThis issue affects Apache InLong: from 2.0.0 before 2.4.0.\n\n\n\nUsers are advised to upgrade to Apache InLong's  2.4.0 or cherry-pick [1] to solve it.\n\n[1] \n\n https://gith…","indicators":{"cves":["CVE-2026-63015"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T16:17:28.557Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://lists.apache.org/thread/b7bvsg59bo619rywwpd7tj66rkzz62k4","label":"security@apache.org","domainType":"other"},{"url":"http://www.openwall.com/lists/oss-security/2026/08/20/9","label":"af854a3a-2127-422b-91ae-364da2661108","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-63016","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-63016 — Uncontrolled Resource Consumption vulnerability in Apache InLong. Users could affect operational con…","description":"Uncontrolled Resource Consumption vulnerability in Apache InLong. Users could affect operational configuration or allow upload of non-official packages.\n\nThis issue affects Apache InLong: from 2.0.0 before 2.4.0.\n\n\n\nUsers are advised to upgrade to Apache InLong's  2.4.0 or cherry-pick [1] to solve i…","indicators":{"cves":["CVE-2026-63016"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T16:17:29.097Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://lists.apache.org/thread/jmsn2slhqmmw7kt24zqcnw6tyjnrcykp","label":"security@apache.org","domainType":"other"},{"url":"http://www.openwall.com/lists/oss-security/2026/08/20/10","label":"af854a3a-2127-422b-91ae-364da2661108","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76997","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76997 — A weakness has been identified in SourceCodester Simple Online Food Ordering System 1.0. The affecte…","description":"A weakness has been identified in SourceCodester Simple Online Food Ordering System 1.0. The affected element is an unknown function of the file /admin/ajax.php?action=save_category. This manipulation of the argument ID causes sql injection. It is possible to initiate the attack remotely. The exploi…","indicators":{"cves":["CVE-2026-76997"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T16:18:31.070Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/hubdk01/cve/issues/3","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-76997","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/880392","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393620","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393620/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.sourcecodester.com/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76999","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76999 — A vulnerability was detected in SourceCodester CET Automated Grading System with AI Predictive Analy…","description":"A vulnerability was detected in SourceCodester CET Automated Grading System with AI Predictive Analytics 1.0. This affects the function add_grade of the file /index.php. Performing a manipulation of the argument student_id results in improper authorization. The attack can be initiated remotely.","indicators":{"cves":["CVE-2026-76999"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T16:18:31.410Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://vuldb.com/cve/CVE-2026-76999","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/880522","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393622","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393622/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.sourcecodester.com/","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/880522","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-54770","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-54770 — WebOb provides objects for HTTP requests and responses. Prior to 1.8.11, Response._make_location_abs…","description":"WebOb provides objects for HTTP requests and responses. Prior to 1.8.11, Response._make_location_absolute() in src/webob/response.py checks a Location value for a URI scheme or leading double slash before urllib.parse.urljoin() strips leading C0 control characters and spaces. An attacker-controlled…","indicators":{"cves":["CVE-2026-54770"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["phishing"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:18:18.277Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/Pylons/webob/commit/ff89560643fb252751b4db8806a283b5377f1f07","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Pylons/webob/security/advisories/GHSA-6hx8-3wjj-gr8g","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Pylons/webob/tree/1.8.11","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-55586","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-55586 — SumatraPDF is a multi-format reader for Windows. In 3.6.1 and earlier, a crafted CHM file can supply…","description":"SumatraPDF is a multi-format reader for Windows. In 3.6.1 and earlier, a crafted CHM file can supply malformed LZX Huffman code lengths to make_decode_table in ext/CHMLib/lzx.c. In the long-code branch, the function writes new internal nodes through next_symbol before validating that the canonical H…","indicators":{"cves":["CVE-2026-55586"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:18:27.723Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/sumatrapdfreader/sumatrapdf/commit/13b3d4204dd12d93d426f2157b157b149edc29bf","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/sumatrapdfreader/sumatrapdf/security/advisories/GHSA-m423-rp8p-whj8","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-61625","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-61625 — VictoriaMetrics is a scalable solution for monitoring and managing time series data. Prior to 1.122.…","description":"VictoriaMetrics is a scalable solution for monitoring and managing time series data. Prior to 1.122.25, 1.136.12, and 1.146.0, vmrestore does not validate backup part path components before using lib/backup/actions/restore.go and lib/backup/fslocal/fslocal.go to write restored data below storageData…","indicators":{"cves":["CVE-2026-61625"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:18:51.783Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/VictoriaMetrics/VictoriaMetrics/commit/710c920d6083327042a309e449fae4383617d817","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/VictoriaMetrics/VictoriaMetrics/releases/tag/v1.122.25","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/VictoriaMetrics/VictoriaMetrics/releases/tag/v1.136.12","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/VictoriaMetrics/VictoriaMetrics/releases/tag/v1.146.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/VictoriaMetrics/VictoriaMetrics/security/advisories/GHSA-8q3c-rjr9-xxrp","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-77025","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-77025 — A weakness has been identified in itsourcecode Hospital Management System 1.0. This affects an unkno…","description":"A weakness has been identified in itsourcecode Hospital Management System 1.0. This affects an unknown part of the file /viewappointmentpending.php. This manipulation of the argument delid causes sql injection. The attack is possible to be carried out remotely. The exploit has been made available to…","indicators":{"cves":["CVE-2026-77025"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:19:49.583Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/ltranquility/vuln_submit/issues/24","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://itsourcecode.com/","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/cve/CVE-2026-77025","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/880600","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393638","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393638/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-54625","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-54625 — django CMS is a content management system powered by Django. Prior to 5.0.8 and in 5.1.0a1, the djan…","description":"django CMS is a content management system powered by Django. Prior to 5.0.8 and in 5.1.0a1, the django CMS page cache in cms/cache/page.py ignores request headers declared by plugins through get_vary_cache_on(). The _page_cache_key function includes the cache prefix, site, language, path, and timezo…","indicators":{"cves":["CVE-2026-54625"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T18:16:28.170Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/django-cms/django-cms/commit/8758714b865ffa79c6bcd0e5c503958ea48885aa","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/django-cms/django-cms/commit/d5dc1efa18d157445491c4b12c2dd1efd56f439f","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/django-cms/django-cms/pull/8646","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/django-cms/django-cms/pull/8647","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/django-cms/django-cms/releases/tag/5.0.8","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/django-cms/django-cms/releases/tag/5.1.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/django-cms/django-cms/security/advisories/GHSA-fwjf-m4qw-9f2x","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-72844","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-72844 — The Lean 4 kernel does not verify that the structure named in a projection expression matches the ty…","description":"The Lean 4 kernel does not verify that the structure named in a projection expression matches the type of the value being projected, and environment::add_inductive in src/kernel/inductive.cpp did not type check the nested inductive applications that are replaced by auxiliary types, so their parametr…","indicators":{"cves":["CVE-2026-72844"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T18:16:45.290Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://github.com/endrazine/lean-cve-poc","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/leanprover/lean4","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/leanprover/lean4/commit/a39eab69e1eee9ad38f4efe507907b1026a77808","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/leanprover/lean4/issues/14576","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/leanprover/lean4/pull/14577","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/xrchz/CollatzLean","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.openwall.com/lists/oss-security/2026/08/02/1","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://www.vulncheck.com/advisories/lean-4-kernel-type-checking-bypass-via-mismatched-structure-projections","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72847","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-72847 — broot renders each file and directory name in its interactive tree view exactly as read from the fil…","description":"broot renders each file and directory name in its interactive tree view exactly as read from the filesystem. Names are converted with a plain to_string_lossy() call in src/tree_build/builder.rs and in TreeLine::unprune in src/tree/tree_line.rs, and no control-character filtering exists anywhere in t…","indicators":{"cves":["CVE-2026-72847"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T18:16:45.540Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://github.com/Canop/broot","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/Canop/broot/blob/v1.58.0/src/tree/tree_line.rs","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/Canop/broot/blob/v1.58.0/src/tree_build/builder.rs","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/Canop/broot/commit/0717a94b3c0efa19c7bbcfe0fb49a2374752a168","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/Canop/broot/commit/4ba40f7d47af78457c7656f15eba71d63d97fce5","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/Canop/broot/issues/1188","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/broot-terminal-escape-sequence-injection-via-unsanitized-file-and-directory-names-in-the-tree-view","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73254","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-73254 — Mongoose is an embedded web server and network library. Prior to 7.22, an attacker who can create a…","description":"Mongoose is an embedded web server and network library. Prior to 7.22, an attacker who can create a file with an HTML payload in its name can trigger stored cross-site scripting when a user browses a directory served with MG_ENABLE_DIRLIST. The printdirentry() path called by listdir() in src/http.c…","indicators":{"cves":["CVE-2026-73254"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T18:16:46.113Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://github.com/cesanta/mongoose/commit/a9df523f76f43a38bd53b4232b9cfd4c16869e71","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cesanta/mongoose/pull/3611","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cesanta/mongoose/releases/tag/7.22","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cesanta/mongoose/security/advisories/GHSA-5g6j-m3pv-4f7g","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-73255","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-73255 — Mongoose is an embedded web server and network library. Prior to 7.22, an attacker who can control a…","description":"Mongoose is an embedded web server and network library. Prior to 7.22, an attacker who can control an SSI-enabled file can place directory traversal sequences in an #include file or #include virtual directive. The mg_ssi() function in src/ssi.c concatenates the directive argument into a filesystem p…","indicators":{"cves":["CVE-2026-73255"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T18:16:46.313Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://github.com/cesanta/mongoose/commit/a9df523f76f43a38bd53b4232b9cfd4c16869e71","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cesanta/mongoose/pull/3611","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cesanta/mongoose/releases/tag/7.22","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cesanta/mongoose/security/advisories/GHSA-h7m9-764r-7x4x","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-73258","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-73258 — Mongoose is an embedded web server and network library. Prior to 7.22, a remote attacker can place a…","description":"Mongoose is an embedded web server and network library. Prior to 7.22, a remote attacker can place a lone carriage return or line feed in multipart input processed by mg_http_next_multipart() in src/http.c. The loops comparing s[b] and s[b + 1], and s[h2] and s[h2 + 1], use an incorrect AND conditio…","indicators":{"cves":["CVE-2026-73258"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T18:16:47.323Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://github.com/cesanta/mongoose/commit/a9df523f76f43a38bd53b4232b9cfd4c16869e71","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cesanta/mongoose/pull/3611","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cesanta/mongoose/releases/tag/7.22","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cesanta/mongoose/security/advisories/GHSA-cc55-8v3r-59p8","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cesanta/mongoose/security/advisories/GHSA-cc55-8v3r-59p8","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-73259","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-73259 — Mongoose is an embedded web server and network library. Prior to 7.22, a remote attacker can send a…","description":"Mongoose is an embedded web server and network library. Prior to 7.22, a remote attacker can send a crafted percent-encoded request path to a deployment using MG_ENABLE_DIRLIST and persuade a user to visit it. The mg_http_serve_dir() and listdir() path in src/http.c places the decoded request URI in…","indicators":{"cves":["CVE-2026-73259"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T18:16:47.730Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://github.com/cesanta/mongoose/commit/a9df523f76f43a38bd53b4232b9cfd4c16869e71","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cesanta/mongoose/pull/3611","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cesanta/mongoose/releases/tag/7.22","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cesanta/mongoose/security/advisories/GHSA-9cwm-487w-h25w","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cesanta/mongoose/security/advisories/GHSA-9cwm-487w-h25w","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-77036","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-77036 — A vulnerability was found in elunez eladmin up to 2.7. The impacted element is the function EmailCon…","description":"A vulnerability was found in elunez eladmin up to 2.7. The impacted element is the function EmailController/AliPayController/GeneratorController/GenConfigController. The manipulation results in improper authorization. The attack can be launched remotely. The exploit has been made public and could be…","indicators":{"cves":["CVE-2026-77036"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T18:16:53.320Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://github.com/elunez/eladmin/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/elunez/eladmin/issues/903","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-77036","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/880860","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393643","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393643/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-43678","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-43678 — An unauthenticated remote peer can crash any NIOWebSocket-based server (including Vapor and Hummingb…","description":"An unauthenticated remote peer can crash any NIOWebSocket-based server (including Vapor and Hummingbird) with a single 11-byte frame sent after a completed WebSocket handshake, dropping all active connections until the process restarts. This vulnerability is addressed in swift-nio version 2.101.0.","indicators":{"cves":["CVE-2026-43678"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T19:16:52.353Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://github.com/apple/swift-nio/security/advisories/GHSA-qcc5-f287-vgmq","label":"product-security@apple.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-64777","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-64777 — A malicious builder peer may be able to request an in-context file by name from the host and receive…","description":"A malicious builder peer may be able to request an in-context file by name from the host and receive the contents of whatever the name resolves to, even when it resolves outside the build context. This vulnerability is addressed in container version 1.2.0.","indicators":{"cves":["CVE-2026-64777"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T19:16:57.733Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://github.com/apple/container/security/advisories/GHSA-2v2q-4q35-h585","label":"product-security@apple.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-72854","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-72854 — msgpack_unpacker_expand_buffer in src/unpack.c, reached through the public msgpack_unpacker_reserve_…","description":"msgpack_unpacker_expand_buffer in src/unpack.c, reached through the public msgpack_unpacker_reserve_buffer API, computes its new buffer size using an unchecked size_t addition of the requested size and the amount already used. The doubling loop guards its own multiplication against overflow, but the…","indicators":{"cves":["CVE-2026-72854"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T19:17:01.040Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://github.com/msgpack/msgpack-c","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/msgpack/msgpack-c/blob/c-7.0.1/example/lib_buffer_unpack.c","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/msgpack/msgpack-c/blob/c-7.0.1/include/msgpack/unpack.h#L219-L223","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/msgpack/msgpack-c/blob/c-7.0.1/src/unpack.c#L429-L502","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/msgpack/msgpack-c/issues/1181","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/msgpack-c-integer-overflow-in-msgpack-unpacker-expand-buffer-causes-a-false-success-undersized-reservation","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/msgpack/msgpack-c/issues/1181","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75514","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75514 — BunkerWeb is an open-source, next-generation Web Application Firewall. Prior to 1.6.13, the blacklis…","description":"BunkerWeb is an open-source, next-generation Web Application Firewall. Prior to 1.6.13, the blacklist, greylist, and antibot modules in src/common/core/blacklist/blacklist.lua, src/common/core/greylist/greylist.lua, and src/common/core/antibot/antibot.lua trust PTR suffix matches in IGNORE_RDNS, GRE…","indicators":{"cves":["CVE-2026-75514"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T19:17:03.637Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://github.com/bunkerity/bunkerweb/commit/1a97e5b3f977130a1b84507a9e1f703c8eec12eb","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/bunkerity/bunkerweb/pull/3710","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/bunkerity/bunkerweb/releases/tag/v1.6.13","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/bunkerity/bunkerweb/security/advisories/GHSA-q54j-5484-pvjm","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/bunkerity/bunkerweb/security/advisories/GHSA-q54j-5484-pvjm","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-72861","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-72861 — The github-issue-bot templates in appwrite/templates verify the GitHub webhook signature with an inv…","description":"The github-issue-bot templates in appwrite/templates verify the GitHub webhook signature with an inverted condition. verifyWebhook in node/github-issue-bot/src/github.js and in node-typescript/github-issue-bot/src/github.ts returns \"typeof signature !== 'string' || (await verify(...))\", so when the…","indicators":{"cves":["CVE-2026-72861"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T20:17:46.190Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://github.com/appwrite/templates","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/appwrite/templates/blob/1.1.2/node-typescript/github-issue-bot/src/github.ts","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/appwrite/templates/blob/1.1.2/node/github-issue-bot/src/github.js","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/appwrite/templates/blob/1.1.2/node/github-issue-bot/src/main.js","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/appwrite/templates/issues/350","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/appwrite-templates-github-issue-bot-skips-webhook-signature-verification-when-the-x-hub-signature-256-header-is-absent","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75910","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-75910 — Incorrect privilege assignment in the ClickHouse connector deployment template in Amazon Athena Fede…","description":"Incorrect privilege assignment in the ClickHouse connector deployment template in Amazon Athena Federated Query prior to v2026.17.1 could allow an authenticated remote user to read arbitrary AWS Secrets Manager secrets in the deploying account by pointing the connector's connection string at an unre…","indicators":{"cves":["CVE-2026-75910"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T20:17:46.937Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://aws.amazon.com/security/security-bulletins/2026-084-aws/","label":"ff89ba41-3aa1-4d27-914a-91399e9639e5","domainType":"other"},{"url":"https://github.com/awslabs/aws-athena-query-federation/releases/tag/v2026.17.1","label":"ff89ba41-3aa1-4d27-914a-91399e9639e5","domainType":"primary"},{"url":"https://github.com/awslabs/aws-athena-query-federation/security/advisories/GHSA-vmjg-c6wv-wjm9","label":"ff89ba41-3aa1-4d27-914a-91399e9639e5","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-67445","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-67445 — Mailpit is an email testing tool and API for developers. Prior to 1.30.4, Mailpit reads SMTP command…","description":"Mailpit is an email testing tool and API for developers. Prior to 1.30.4, Mailpit reads SMTP commands through internal/smtpd/smtpd.go session.readLine() using bufio.Reader.ReadString before session.parseLine() parses the verb or the RFC 5321 512-octet command-line limit is enforced. An unauthenticat…","indicators":{"cves":["CVE-2026-67445"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T21:17:07.110Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://github.com/axllent/mailpit/commit/993bed95b3c74d95231af93bd0e0d4c3d5b4db4d","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/axllent/mailpit/releases/tag/v1.30.4","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/axllent/mailpit/security/advisories/GHSA-w878-pj84-3j5v","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-67446","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-67446 — Mailpit is an email testing tool and API for developers. Prior to 1.30.4, Mailpit decodes attacker-s…","description":"Mailpit is an email testing tool and API for developers. Prior to 1.30.4, Mailpit decodes attacker-supplied image attachments into a full raster before checking decoded dimensions, pixel count, or memory use in the GET /api/v1/message/{id}/part/{partID}/thumb endpoint. The Thumbnail handler in serve…","indicators":{"cves":["CVE-2026-67446"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T21:17:07.260Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://github.com/axllent/mailpit/commit/6bcb6337838b542d53c348e38c7977f569b6db35","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/axllent/mailpit/releases/tag/v1.30.4","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/axllent/mailpit/security/advisories/GHSA-75mr-qw9x-3r39","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-68921","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-68921 — DiceBear is an avatar library for designers and developers. Prior to 9.4.3, @dicebear/core interpola…","description":"DiceBear is an avatar library for designers and developers. Prior to 9.4.3, @dicebear/core interpolates the rotate option into an SVG transform attribute without XML escaping in addRotate in packages/@dicebear/core/src/utils/svg.ts, while @dicebear/initials similarly emits fontSize and fontWeight wi…","indicators":{"cves":["CVE-2026-68921"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T21:17:07.540Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://github.com/dicebear/dicebear/commit/922946d738c4e77ab6c412e27ede75941fec4b59","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/dicebear/dicebear/releases/tag/v9.4.3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/dicebear/dicebear/security/advisories/GHSA-gcr2-9v8m-gq45","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-76018","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76018 — Privilege elevation in Import in Google Chrome prior to 151.0.7922.173 allowed a remote attacker lev…","description":"Privilege elevation in Import in Google Chrome prior to 151.0.7922.173 allowed a remote attacker leveraging social engineering to potentially execute arbitrary code outside the sandbox via a crafted file. (Chromium security severity: High)","indicators":{"cves":["CVE-2026-76018"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["phishing"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T21:17:09.920Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_0404570826.html","label":"chrome-cve-admin@google.com","domainType":"other"},{"url":"https://issues.chromium.org/issues/513757918","label":"chrome-cve-admin@google.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76019","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-76019 — Incorrect authorization in Workers in Google Chrome prior to 151.0.7922.173 allowed a remote attacke…","description":"Incorrect authorization in Workers in Google Chrome prior to 151.0.7922.173 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to bypass web origin policy via a crafted HTML page. (Chromium security severity: High)","indicators":{"cves":["CVE-2026-76019"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["phishing"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T21:17:10.040Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_0404570826.html","label":"chrome-cve-admin@google.com","domainType":"other"},{"url":"https://issues.chromium.org/issues/539032888","label":"chrome-cve-admin@google.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77506","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-77506 — Znuny before LTS 6.5.22 allows AgentTicketEmailResend template XSS.","description":"Znuny before LTS 6.5.22 allows AgentTicketEmailResend template XSS.","indicators":{"cves":["CVE-2026-77506"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T21:17:10.673Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://www.znuny.org/en/advisories/zsa-2026-12","label":"cve@mitre.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77587","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-77587 — Tor before 0.4.9.11 is prone to a use-after-free (and potential double free) of a conflux object whe…","description":"Tor before 0.4.9.11 is prone to a use-after-free (and potential double free) of a conflux object when a recovery leg revives a conflux set whose last linked leg has already been closed. A malicious exit node could use this to crash a client. This is TROVE-2026-026.","indicators":{"cves":["CVE-2026-77587"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T21:17:10.957Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://gitlab.torproject.org/tpo/core/tor/-/raw/tor-0.4.9.11/ChangeLog","label":"cve@mitre.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77639","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-77639 — Tor before 0.4.9.9 was prone to a compression bomb bypass where an attacker could concatenate many g…","description":"Tor before 0.4.9.9 was prone to a compression bomb bypass where an attacker could concatenate many gzip or zlib sub-streams, each just under the per-stream detection threshold, to avoid the compression bomb check entirely. This is TROVE-2026-022.","indicators":{"cves":["CVE-2026-77639"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T21:17:11.233Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://gitlab.torproject.org/tpo/core/tor/-/raw/tor-0.4.9.9/ChangeLog","label":"cve@mitre.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77641","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-77641 — tor before 0.4.9.9 was prone to a NULL write after free when sending a CONFLUX_SWITCH cell fails. Th…","description":"tor before 0.4.9.9 was prone to a NULL write after free when sending a CONFLUX_SWITCH cell fails. The return value of relay_send_command_from_edge() was   ignored, so a send failure (which calls circuit_mark_for_close()  and removes the leg via cfx_del_leg()) would go undetected, causing the caller…","indicators":{"cves":["CVE-2026-77641"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T21:17:11.517Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://gitlab.torproject.org/tpo/core/tor/-/raw/tor-0.4.9.9/ChangeLog","label":"cve@mitre.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16951","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-16951 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local authenticated attacker to execute…","description":"IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local authenticated attacker to execute arbitrary code due to a heap-based buffer overflow.","indicators":{"cves":["CVE-2026-16951"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:08.977Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283858","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16964","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-16964 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to intercept messages an…","description":"IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to intercept messages and forge replies due to the exposure of sensitive information.","indicators":{"cves":["CVE-2026-16964"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:09.470Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283858","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16973","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-16973 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to disclose sensitive ker…","description":"IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to disclose sensitive kernel memory due to an out-of-bounds read.","indicators":{"cves":["CVE-2026-16973"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:09.810Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283858","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-17424","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-17424 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to bypass security restr…","description":"IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to bypass security restrictions due to improper limitation of a pathname to a restricted directory.","indicators":{"cves":["CVE-2026-17424"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:15.940Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283858","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19448","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19448 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 A stack memory corruption vulnerability exists in the…","description":"IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 A stack memory corruption vulnerability exists in the AIX IPsec ESP decapsulation handler. Successful exploitation may corrupt kernel stack state and cause a system crash, resulting in denial of service.","indicators":{"cves":["CVE-2026-19448"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:18.440Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283858","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19783","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-19783 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to cause kernel memory co…","description":"IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to cause kernel memory corruption due to insufficient validation. A crafted filesystem image can trigger an out-of-bounds kernel-stack write during directory reads, causing a system crash or potentially enabling privilege esc…","indicators":{"cves":["CVE-2026-19783"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:18.773Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283858","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-49244","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-49244 — SFTPGo is an open source, event-driven file transfer solution. From 2.2.0 until 2.7.3, the public we…","description":"SFTPGo is an open source, event-driven file transfer solution. From 2.2.0 until 2.7.3, the public web-client partial ZIP download endpoint for a browsable share validates client-supplied files entries with a raw byte-prefix comparison rather than a directory-boundary-aware check. An unauthenticated…","indicators":{"cves":["CVE-2026-49244"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:19.947Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://github.com/drakkan/sftpgo/commit/52a56584c417e325aea35ab23849422a90ba512f","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/drakkan/sftpgo/releases/tag/v2.7.3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/drakkan/sftpgo/security/advisories/GHSA-h64p-8h4r-6gfh","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-54389","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-54389 — Ghidra before 12.1.3 contains an uncontrolled resource consumption vulnerability in the PDB parser t…","description":"Ghidra before 12.1.3 contains an uncontrolled resource consumption vulnerability in the PDB parser that allows attackers to terminate the Ghidra process by supplying a crafted PDB file with an oversized parameters section. The AbstractPdb deserialization routine reads all remaining parameters into a…","indicators":{"cves":["CVE-2026-54389"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:21.117Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://github.com/NationalSecurityAgency/ghidra/releases/tag/Ghidra_12.1.3_build","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/NationalSecurityAgency/ghidra/security/advisories/GHSA-f75p-8cqj-9v3g","label":"disclosure@vulncheck.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-54509","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-54509 — TREK is a collaborative travel planner. From 3.0.0 until 3.1.0, the GET /api/journeys/:id/share-link…","description":"TREK is a collaborative travel planner. From 3.0.0 until 3.1.0, the GET /api/journeys/:id/share-link route in server/src/routes/journey.ts returns the result of getJourneyShareLink() from server/src/services/journeyShareService.ts without checking whether the authenticated requester can access the j…","indicators":{"cves":["CVE-2026-54509"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:21.553Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://github.com/liketrek/TREK/commit/ad893eb1cc75b6d56f402d73a6d41bd48ba7ae11","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/liketrek/TREK/pull/1185","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/liketrek/TREK/releases/tag/v3.1.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/liketrek/TREK/security/advisories/GHSA-mx6m-qxv8-w624","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-55015","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-55015 — Uncontrolled search path element in Windows Remote Help allows an authorized attacker to deny servic…","description":"Uncontrolled search path element in Windows Remote Help allows an authorized attacker to deny service locally.","indicators":{"cves":["CVE-2026-55015"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:22.080Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-55015","label":"secure@microsoft.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-55489","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-55489 — BigBlueButton is an open-source virtual classroom. Prior to 3.0.29, BigBlueButton presenters could s…","description":"BigBlueButton is an open-source virtual classroom. Prior to 3.0.29, BigBlueButton presenters could submit a presentationId through /api/graphql that identified a presentation belonging to another meeting. akka-bbb-apps/src/main/scala/org/bigbluebutton/core/apps/presentationpod/RemovePresentationPubM…","indicators":{"cves":["CVE-2026-55489"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:22.200Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://github.com/bigbluebutton/bigbluebutton/commit/c9e93f9af07b9661e286d101b83cbccb891c551f","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/bigbluebutton/bigbluebutton/releases/tag/v3.0.29","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/bigbluebutton/bigbluebutton/security/advisories/GHSA-jxpq-r3h3-p75g","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-55491","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-55491 — BigBlueButton is an open-source virtual classroom. Prior to 3.0.29, BigBlueButton failed to escape m…","description":"BigBlueButton is an open-source virtual classroom. Prior to 3.0.29, BigBlueButton failed to escape meetingName in record-and-playback/screenshare/playback/index.html.erb when generating the screenshare playback format. A low-privileged user could store a crafted meeting name that embedded script con…","indicators":{"cves":["CVE-2026-55491"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:22.347Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://github.com/bigbluebutton/bigbluebutton/commit/a53f2b92022388bfa4109d3136d1f3a932404b1b","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/bigbluebutton/bigbluebutton/releases/tag/v3.0.29","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/bigbluebutton/bigbluebutton/security/advisories/GHSA-57p5-c888-74f9","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-62945","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-62945 — TREK is a collaborative travel planner. Prior to 3.1.3, TREK file upload, update, and link actions a…","description":"TREK is a collaborative travel planner. Prior to 3.1.3, TREK file upload, update, and link actions accept attacker-controlled reservation_id, place_id, and assignment_id values without using findForeignLinkTarget() to verify that the referenced object belongs to the file's trip. An authenticated use…","indicators":{"cves":["CVE-2026-62945"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:46.740Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://github.com/liketrek/TREK/commit/03cdb4d27689922460ba87085d04b426d4d40d26","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/liketrek/TREK/pull/1324","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/liketrek/TREK/releases/tag/v3.1.3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/liketrek/TREK/security/advisories/GHSA-r4cp-666p-8f69","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-67447","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-67447 — Mailpit is an email testing tool and API for developers. From 1.30.0 until 1.30.5, Mailpit's interna…","description":"Mailpit is an email testing tool and API for developers. From 1.30.0 until 1.30.5, Mailpit's internal/smtpd/smtpd.go readData() function calls bufio.Reader.ReadBytes before applying the len(data)+len(line) size check to the completed SMTP DATA line against Server.MaxSize. An unauthenticated SMTP cli…","indicators":{"cves":["CVE-2026-67447"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:56.720Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://github.com/axllent/mailpit/commit/8720c6bd8281fc00d458081908f1dbef8e59a98c","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/axllent/mailpit/releases/tag/v1.30.5","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/axllent/mailpit/security/advisories/GHSA-r553-m4fv-5v97","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-67448","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-67448 — Mailpit is an email testing tool and API for developers. From 1.29.0 until 1.30.6, Mailpit's server/…","description":"Mailpit is an email testing tool and API for developers. From 1.29.0 until 1.30.6, Mailpit's server/server.go origin middleware checks the raw RequestURI for the /api/ prefix while Go's ServeMux routes using the percent-decoded URL path, and server/websockets/client.go configures websocket.Upgrader.…","indicators":{"cves":["CVE-2026-67448"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:56.870Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://github.com/axllent/mailpit/commit/fbe5e006c3f1682b819df58b4a932d7a84920be9","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/axllent/mailpit/releases/tag/v1.30.6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/axllent/mailpit/security/advisories/GHSA-8r62-w5wh-fc5m","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-70105","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-70105 — Improper input validation in Microsoft Office Word allows an unauthorized attacker to disclose infor…","description":"Improper input validation in Microsoft Office Word allows an unauthorized attacker to disclose information over a network.","indicators":{"cves":["CVE-2026-70105"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:18:01.723Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-70105","label":"secure@microsoft.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-72846","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-72846 — Lightdash stores the webhook URL supplied with a scheduled delivery and later posts to it from sendW…","description":"Lightdash stores the webhook URL supplied with a scheduled delivery and later posts to it from sendWebhook in packages/backend/src/clients/GoogleChat/GoogleChatClient.ts and in packages/backend/src/clients/MicrosoftTeams/MicrosoftTeamsClient.ts. In affected versions both call fetch on the stored URL…","indicators":{"cves":["CVE-2026-72846"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:18:05.400Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://github.com/lightdash/lightdash","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/lightdash/lightdash/blob/1.146.3/packages/backend/src/clients/GoogleChat/GoogleChatClient.ts","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/lightdash/lightdash/blob/1.146.3/packages/backend/src/clients/MicrosoftTeams/MicrosoftTeamsClient.ts","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/lightdash/lightdash/issues/24389","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/lightdash/lightdash/releases/tag/1.146.4","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/lightdash-scheduled-delivery-webhook-urls-are-not-validated-allowing-server-side-request-forgery","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77643","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-77643 — A cross-site scripting vulnerability in queryparser/termgenerator_internal.cc in Xapian xapian-core…","description":"A cross-site scripting vulnerability in \nqueryparser/termgenerator_internal.cc in Xapian xapian-core before 2.1.0 and before 1.4.32 exists due to incomplete HTML escaping by Xapian::MSet::snippet(). NOTE: this issue exists because of a missed corner case of CVE-2018-0499.","indicators":{"cves":["CVE-2026-77643"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:18:06.207Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://bugs.debian.org/1144490","label":"cve@mitre.org","domainType":"other"},{"url":"https://lists.xapian.org/pipermail/xapian-devel/2026-August/003429.html","label":"cve@mitre.org","domainType":"other"},{"url":"https://trac.xapian.org/wiki/SecurityFixes/2018-07-02#a2026-08-13update","label":"cve@mitre.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77391","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-77391 — A security flaw has been discovered in SourceCodester Dynamic Input Field Generator Using HTML, CSS,…","description":"A security flaw has been discovered in SourceCodester Dynamic Input Field Generator Using HTML, CSS, and PHP 1.0. This affects an unknown function. The manipulation results in cross-site request forgery. The attack can be launched remotely. The exploit has been released to the public and may be used…","indicators":{"cves":["CVE-2026-77391"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-21T02:16:27.883Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://gist.github.com/rionyxraiza/428d4481fe471704829ca06de7be9d8c","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-77391","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/881030","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393853","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393853/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.sourcecodester.com/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77392","source":"nvd","category":"vulnerability","severity":"medium","title":"CVE-2026-77392 — A weakness has been identified in SourceCodester Dynamic Input Field Generator Using HTML, CSS, and…","description":"A weakness has been identified in SourceCodester Dynamic Input Field Generator Using HTML, CSS, and PHP 1.0. This impacts the function saveUser of the file /public/submit.php. This manipulation of the argument Researcher causes sql injection. The attack may be initiated remotely. The exploit has bee…","indicators":{"cves":["CVE-2026-77392"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-21T02:16:28.063Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://gist.github.com/rionyxraiza/6b22a5e02da6b8581495761ff7393760","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-77392","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/881045","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393854","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393854/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.sourcecodester.com/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"threatfox-1883109","source":"threatfox","category":"threat-intel","severity":"medium","title":"payload: undefined","description":"https://honeylabs.net/lookup/91.92.47.97","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["elf","IoT","ClearFake","ClickFix","etherhiding","majinahanashi","Ransomware","ErrTraffic","DPRK","kimsuky","MoonPeak","Stella","golang","zimbra","zimbra-exfil","ZMBX","ransomware","apt","botnet"],"malwareFamily":"Mirai","confidence":100,"publishedAt":"2026-08-20T13:15:00Z","fetchedAt":"2026-08-21T03:00:01.482Z","references":[{"url":"https://honeylabs.net/lookup/91.92.47.97","label":"ThreatFox","domainType":"other"},{"url":"https://app.any.run/tasks/0ca35420-52dc-4fd4-b3e2-055e1e43dee0","label":"ThreatFox","domainType":"other"},{"url":"https://www.virustotal.com/gui/file/33215eef229fa578661e017862dbca09c9d9d0a2d19ff56e0622604c804c7ebe/","label":"ThreatFox","domainType":"other"},{"url":"https://threatcluster.io/cluster/honeymyte-deploys-upgraded-coolclient-backdoor-in-cyber-espi-23ee7d40","label":"ThreatFox","domainType":"other"},{"url":"https://github.com/TheRavenFile/Daily-Hunt/blob/main/Majinahanashi%20Ransomware","label":"ThreatFox","domainType":"primary"},{"url":"https://theravenfile.com/2026/08/14/majinahanashi-ransomware-another-japanese-locker/","label":"ThreatFox","domainType":"other"},{"url":"https://otx.alienvault.com/pulse/6a7e3df9ee68883c34577fe1","label":"ThreatFox","domainType":"primary"}],"feedLabel":null},{"id":"otx-6a8734846b4cc1afd4bde567","source":"otx","category":"threat-intel","severity":"medium","title":"BRIDGEHEAD: An npm typosquatting campaign that crosses from WSL into Windows to plant a crypto-wallet stealer","description":"In August 2026, an operator published forty typosquatted npm packages mimicking popular libraries like chalk, axios, commander, lodash, react, and typescript. Each package contained an install script that profiles the host and, when detecting Windows or WSL environments, downloads a 22MB Rust-based…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":"6888d4c54ef2b5bf23889f9637c2efe77e1d2af4724d315b73d646cf5547dc73"}},"tags":["rust","github-hosted-payload","browser-credentials","wsl","telegram","npm","cryptocurrency-stealer","typosquatting","in-memory-execution","supply-chain","botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:08:20.505Z","fetchedAt":"2026-08-21T03:00:01.555Z","references":[{"url":"https://otx.alienvault.com/pulse/6a8734846b4cc1afd4bde567","label":"OTX Pulse","domainType":"primary"}],"feedLabel":null},{"id":"otx-6a8734bb1e57bed1c101e5e9","source":"otx","category":"threat-intel","severity":"medium","title":"How Peer2Profit and Astroproxy Turn Your Bandwidth Into Someone Else's Product","description":"Investigation into residential proxy networks reveals that bandwidth-sharing applications like PEER2PROFIT recruit users to share internet connections for payment, then monetize this bandwidth through commercial proxy service ASTROPROXY at up to 27 times the original cost. Over 72 hours, researchers…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":"c85c7436fdb71cf52db6ef134b336d66c7dbd3738a7866f8b9992434d1208a4b"}},"tags":["backconnect infrastructure","bandwidth-sharing","internal network exposure","privateloader","sdk analysis","proxy enumeration","peer2profit","residential proxies","astroproxy"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:09:15.451Z","fetchedAt":"2026-08-21T03:00:01.555Z","references":[{"url":"https://otx.alienvault.com/pulse/6a8734bb1e57bed1c101e5e9","label":"OTX Pulse","domainType":"primary"}],"feedLabel":null},{"id":"otx-6a873496e3b94c2a2c962d39","source":"otx","category":"threat-intel","severity":"medium","title":"N4D Mesh Controller: New infrastructure, a UPX-packed agent labeled \"go-titan,\" and how to hunt for it","description":"N4D Mesh Controller is an active Linux malware campaign exploiting exposed Model Context Protocol (MCP) servers and various internet-facing services for credential theft, lateral movement, and command and control. First documented in June 2026, recent analysis reveals evolved tactics including a new…","indicators":{"cves":["CVE-2023-48022","CVE-2026-26220","CVE-2026-27944","CVE-2026-33032","CVE-2026-39987"],"ips":[],"domains":["cdnorigin.net"],"urls":["http://209.99.186.235:8443/api/agent/full?arch=amd64"],"hashes":{"md5":"b8e66803519f9376f243cef0ef017867","sha1":"6e282e673293e5599e97c19cfa6e2d04ac3bd418","sha256":"e09ac5e8c23a768a2370cff29aca64be0d6e210e1176ee526bb7e47f537509ae"}},"tags":["n4d mesh controller","cve-2023-48022","cve-2026-26220","linux malware","go-titan","cve-2026-27944","ray dashboard","cve-2026-33032","n4d","cve-2026-39987","mcp exploitation","lateral movement","ai infrastructure targeting","cloudflare tunnels","credential theft","lightllm","botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:08:38.281Z","fetchedAt":"2026-08-21T03:00:01.555Z","references":[{"url":"https://otx.alienvault.com/pulse/6a873496e3b94c2a2c962d39","label":"OTX Pulse","domainType":"primary"}],"feedLabel":null},{"id":"otx-6a86e8ec13b0f932cade0ec4","source":"otx","category":"threat-intel","severity":"medium","title":"Blend between Banking Malware & Spyware","description":"A newly identified Android malware family named Manic combines banking malware and mobile spyware capabilities, targeting Ukrainian banks, government services, messaging applications, Russian and European financial institutions, and global fintech and cryptocurrency services. Active since February 2…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":"2b24e1e154eb93e501909e151f176bdf","sha1":"a41ba021df50fd89cf8a129013a622de7177b3f0","sha256":"feea425cde1223fe7afdd7a1ea631678ec6282f6cc20c3d3c0fb97cdbcf65b9b"}},"tags":["wi-fi mesh relay","ukraine targeted","android","spyware","device takeover","manic","banking trojan","cryptocurrency theft","botnet","infostealer"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T11:45:48.054Z","fetchedAt":"2026-08-21T03:00:01.555Z","references":[{"url":"https://otx.alienvault.com/pulse/6a86e8ec13b0f932cade0ec4","label":"OTX Pulse","domainType":"primary"}],"feedLabel":null},{"id":"otx-6a86e8ec6857330461471124","source":"otx","category":"threat-intel","severity":"medium","title":"Back-to-School Cyber Risks Surge as Education Remains the World's Most Attacked Sector","description":"Educational institutions continue to be the most targeted sector globally, experiencing an average of 4,696 weekly cyberattacks per organization between January and July 2026, representing an 8% increase year-over-year and more than double the cross-industry average. The back-to-school period sees i…","indicators":{"cves":[],"ips":[],"domains":["checkmyschool.org","education-gov.com","studentdiscount.online","studentloansyyyy.com","students-portal.com"],"urls":[],"hashes":{"md5":"6d0bd9615d730b0b828f7f91c346085f","sha1":null,"sha256":null}},"tags":["student targeting","education sector","phishing campaigns","back-to-school","credential theft","domain registration","apac attacks","phishing"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T11:45:48.444Z","fetchedAt":"2026-08-21T03:00:01.555Z","references":[{"url":"https://otx.alienvault.com/pulse/6a86e8ec6857330461471124","label":"OTX Pulse","domainType":"primary"}],"feedLabel":null},{"id":"otx-6a86146ca27454b03a4cbe2d","source":"otx","category":"threat-intel","severity":"medium","title":"Grandoreiro goes north: From Brazil to Mexico with a new DLL sideloading campaign","description":"Grandoreiro, a notorious banking trojan active since 2016 across Latin America, continues operations despite major law enforcement disruption in 2024. Recent campaigns leverage DLL sideloading techniques, abusing the legitimate Duplicate Files Finder application to execute malicious code. The loader…","indicators":{"cves":[],"ips":[],"domains":["voyage.mydissent.net","beeges.health-carereform.com","b744156103040828396040.nhlfan.net","streamlinepdf-8m2x.workisboring.com","445675885304004.pointto.us","smartpdfhub-7q2m.read-books.org"],"urls":[],"hashes":{"md5":"f1aed8cf2adafa86927fc58d5f24073e","sha1":"f73391ddbdb0413e0e215e940b02f12e9d4a5667","sha256":"fad1e9d507c7021a62998a547ab53b3ee438846f7ae753285fdb3917dd2dcdfa"}},"tags":["sandbox evasion","grandoreiro","mexico","dll sideloading","anti-analysis","delphi","banking trojan","latin america","botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:39:08.314Z","fetchedAt":"2026-08-21T03:00:01.555Z","references":[{"url":"https://otx.alienvault.com/pulse/6a86146ca27454b03a4cbe2d","label":"OTX Pulse","domainType":"primary"}],"feedLabel":null},{"id":"otx-6a860ec89c057ba0e04331ae","source":"otx","category":"threat-intel","severity":"medium","title":"Backdoor delivered through software updates","description":"A sophisticated backdoor disguised as a legitimate Malwarebytes installer was distributed to over 100,000 machines through compromised automatic updates of one torrent client (Download Studio) and three adblockers (NetShield Kit, My AdBlock, and Net AdBlock). The backdoor creates a fake Malwarebytes…","indicators":{"cves":[],"ips":[],"domains":["adblockfree.com","netshieldkit.com","bitminer.tech","adblockpro.net","download.studio","myadblock.com","netadblock.com"],"urls":[],"hashes":{"md5":"cefd8928fd7411b4c9cef7ec35cc827c","sha1":null,"sha256":null}},"tags":["download studio","cryptocurrency mining","software update abuse","xmrig","supply chain attack","backdoor","adblocker","torrent client","qt framework","fakembam","botnet","supply-chain"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:15:03.864Z","fetchedAt":"2026-08-21T03:00:01.555Z","references":[{"url":"https://otx.alienvault.com/pulse/6a860ec89c057ba0e04331ae","label":"OTX Pulse","domainType":"primary"}],"feedLabel":null},{"id":"otx-6a85d24a1bf7db5b97a4e9f8","source":"otx","category":"threat-intel","severity":"medium","title":"Post-DEF CON Phishing Uses Malicious Google Doc to Deliver Malware","description":"Following Black Hat and DEF CON conferences, a threat actor targeted attendees through X direct messages, posing as CoinDesk's VP and Head of Marketing to establish trust under the pretext of conference planning. The campaign employed a malicious Google Apps Script embedded in a Google Doc that pres…","indicators":{"cves":[],"ips":[],"domains":["docsend.online","1foqo.lat","gapidriver.com","2fksf.lat","3pqow.lat","apple-googleapi.com","eu03hub.com","eu07connect.com","msedgewebview1.pro","msedgewebview2.pro","apple.eu03hub.com","docsend.web12api.com","microsoft.eu02hub.com","signow.web12api.com"],"urls":["http://192.253.248.181/api/v1/getscpt/","http://docsend.online/download/drivers","http://docsend.web12api.com/api/launcher/start","http://eu03hub.com/get_file?file=2Ec6QYynajHw","http://eu03hub.com/get_file?file=T3YxekrHsgfaDdXY","http://eu03hub.com/get_file?file=qV06ev1a1pOY","http://signow.web12api.com/api/launcher/start","https://1foqo.lat/core4","https://1foqo.lat/core4'","https://2fksf.lat/res10.php","https://2fksf.lat/res11.php","https://3pqow.lat/res12.php","https://apple-googleapi.com/i","https://docsend.online/download/drivers","https://docsend.web12api.com/api/launcher/start","https://eu03hub.com/get_file?file=X","https://eu07connect.com/api/commands/","https://gapidriver.com/installer/GapiUpdate.application"],"hashes":{"md5":"f4769ba9e8065727ef26cca72e894f83","sha1":"f0771f3e97254474ddc518cc99380bd5e267fb10","sha256":"e276bf8744f29c54c0a975d98e31e0229cf020bdbb9b8032731aa395b6421c33"}},"tags":["black hat","conference phishing","cryptocurrency theft","def con","atomic macos stealer","netsupport rat","clickfix","netsupport manager","google apps script","amos","phishing","infostealer"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:56:58.490Z","fetchedAt":"2026-08-21T03:00:01.555Z","references":[{"url":"https://otx.alienvault.com/pulse/6a85d24a1bf7db5b97a4e9f8","label":"OTX Pulse","domainType":"primary"}],"feedLabel":null},{"id":"otx-6a85ce6de0b7994ff427898e","source":"otx","category":"threat-intel","severity":"medium","title":"Scammers are using fake crypto AML checkers to drain your wallet","description":"Cybercriminals are deploying fraudulent cryptocurrency wallet-checking websites that impersonate legitimate anti-money laundering (AML) services to steal digital assets. These fake sites, often mimicking AMLBot or using names like 'AML Check,' replicate the appearance and branding of authentic walle…","indicators":{"cves":[],"ips":[],"domains":["bitget-aml.com","search-aml.net","amlbot-clear.com","audittrust.shop"],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["fake aml checker","social engineering","crypto scam","wallet draining","fraudulent website","phishing","cryptocurrency","token theft","ghostdesk","ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:40:29.922Z","fetchedAt":"2026-08-21T03:00:01.555Z","references":[{"url":"https://otx.alienvault.com/pulse/6a85ce6de0b7994ff427898e","label":"OTX Pulse","domainType":"primary"}],"feedLabel":null},{"id":"otx-6a865251c21fa835e97512b4","source":"otx","category":"threat-intel","severity":"medium","title":"77 Firefox Extensions Linked to Crypto Wallet and Credential Theft","description":"Socket identified a coordinated campaign involving 77 Firefox extensions designed to steal cryptocurrency wallet secrets and credentials. The operation, tracked as 'Offside Wallet Theft Factory', includes 40 confirmed malicious extensions that exfiltrate recovery phrases, private keys, and credentia…","indicators":{"cves":[],"ips":["77.91.100.175"],"domains":["browser-app.com","browsify.net","gemachriverdale.org","e-wl.com","webbrol.com","devplugs.co","tabtools.org","tools.com","webtools.com","protools.com","cleankits.co","webtools.net","extlab.org","addonslab.com","linktools.co","browsify.co","extlab.co","webtools.org","addonslab.net","addonslab.org","devplugs.com","proaddons.net","browsertools.com","smartext.co","extrakits.com","plugify.co","foxplugin.co","webtools.co","browsertool.com","live-scores.com","smartext.net","extrakits.co","tabtools.com","devblogs.com","webtoolbrowser.com","quickext.co","neattools.org","fasttools.co","netplugs.net","tabtools.net","webkits.co","linktools.org","foxplugin.net","neattools.co","quickext.org","protools.net","alt.e-wl.com","consol.e-wl.com","firebase.e-wl.com","id.gemachriverdale.org","mapid.e-wl.com","ommid.e-wl.com","pch.e-wl.com","rest.e-wl.com","temple.e-wl.com","typec.e-wl.com","v1.basketball.api-sports.io","v1.hockey.api-sports.io","v2.nba.api-sports.io","vala.e-wl.com"],"urls":["http://id.gemachriverdale.org:9000/hook/ptvve","http://id.gemachriverdale.org:9000/hook/rra","http://id.gemachriverdale.org:9000/hook/pastre","http://alt.e-wl.com:9000/hook/alt","http://consol.e-wl.com:9000/hook/cosomid","http://firebase.e-wl.com:9000/hook/see","http://mapid.e-wl.com:9000/hook/mapid","http://ommid.e-wl.com:9000/hook/ommid","http://pch.e-wl.com:9000/hook/pch","http://rest.e-wl.com:9000/hook/rest","http://temple.e-wl.com:9000/hook/temple","http://typec.e-wl.com:9000/hook/typo","http://vala.e-wl.com:9000/hook/value","http://77.91.100.175/html/app.php","http://77.91.100.175/html/continue.php","https://v3.football.api-sports.io/fixtures?live=all"],"hashes":{"md5":null,"sha1":null,"sha256":"b65143df86edd60625fcbc0fcb396ef02baae6e731c1993e70873563e5a1524c"}},"tags":["browser extension campaign","credential stealing","supabase abuse","cloudflare workers","firefox extensions","phishing","web3 impersonation","cryptocurrency wallet theft","botnet","infostealer"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T01:03:13.299Z","fetchedAt":"2026-08-21T03:00:01.555Z","references":[{"url":"https://otx.alienvault.com/pulse/6a865251c21fa835e97512b4","label":"OTX Pulse","domainType":"primary"}],"feedLabel":null},{"id":"otx-6a86abf21e440a7b0b2784c0","source":"otx","category":"threat-intel","severity":"medium","title":"41 deceptive download sites show a real link, then send you somewhere else","description":"A network of 41 fraudulent websites has been identified impersonating popular games and Windows software to redirect users toward Download Studio installer. These sites advertise legitimate products including Counter-Strike, Half-Life, Fallout, Roblox, VLC, 7-Zip, and VMware using authentic product…","indicators":{"cves":[],"ips":[],"domains":["getavast.ru","apis.downloadstud.io","r.byteengineering.net","getdownloadstudio.net","4kvideodownloader.ru","acronisportal.ru","cristalixmine.ru","crystaldisk24.ru","csgodownload.ru","cupheadplay.ru","fallout24.ru","farcryplay.ru","faststoneportal.ru","formatf.ru","foxitpdf.ru","get7zip.ru","getaf.ru","getaimp.ru","getbandicam.ru","getbluestacks.ru","getmovavi.ru","getrecuva.ru","getultraiso.ru","getvmware.ru","getvuescan.ru","gogetter24.ru","gta6-play.ru","halflife-play.ru","memuemulator.ru","paintdotnet.ru","pdfxchange.ru","poppyplaytimeplay.ru","pubgplay.ru","rdrplay.ru","regorganize.ru","roblox-play.ru","rust-play.ru","tcommander.ru","tf2play.ru","thewitcherplay.ru","uninstalltooll.ru","vlcmp.ru","windowsmp.ru","yandereplay.ru"],"urls":[],"hashes":{"md5":"c0ecbd201cc92afd09b901758de2e529","sha1":"4f856902c6dee18ddbe1807ebce2cabe459f5117","sha256":"9a3f6e69c12cb814c45862219ecb17e9ab7744877c9da1c49f3ea046437f8fca"}},"tags":["affiliate fraud","deceptive downloads","fake software sites","bait-and-switch","grand media","download studio","javascript redirection","fakembam","ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T07:25:38.456Z","fetchedAt":"2026-08-21T03:00:01.555Z","references":[{"url":"https://otx.alienvault.com/pulse/6a86abf21e440a7b0b2784c0","label":"OTX Pulse","domainType":"primary"}],"feedLabel":null},{"id":"otx-6a85ae7731d98c565dddf19f","source":"otx","category":"threat-intel","severity":"medium","title":"https://malbearlabs.com/shadow-hvnc-and-shadow-loader-the-kit-that-protects-its-license-better-than-its-customers-dd99520b6af3","description":"","indicators":{"cves":[],"ips":["212.162.150.121"],"domains":[],"urls":[],"hashes":{"md5":"5ccd6c0dba9ad2ab6cc8752381a6e71d","sha1":"8e20eccbf7d7662a7309ac6985fbbb748c0af1f2","sha256":"f65bdff0bf9c807c96c9a768f63311b61f2bea981f9ce6f08306cac7d7b0f5e8"}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T13:24:07.600Z","fetchedAt":"2026-08-21T03:00:01.555Z","references":[{"url":"https://otx.alienvault.com/pulse/6a85ae7731d98c565dddf19f","label":"OTX Pulse","domainType":"primary"}],"feedLabel":null},{"id":"otx-6a8592950ee0e8d05fc1bec9","source":"otx","category":"threat-intel","severity":"medium","title":"From ClickFix to MaaS: Exposing a Modular Windows RAT and Its Admin Panel","description":"A new ClickFix campaign targets Windows users with a NodeJS-based infostealer delivered via malicious MSI installers. This highly adaptable remote access Trojan minimizes forensic footprints through dynamic capability loading, with core stealing modules and communication protocols delivered in-memor…","indicators":{"cves":[],"ips":[],"domains":["yuhvgbzsa66biqeatbmdvfo5b5jjefcmz5t2vjuvco5qtdkshfpabyid.onion"],"urls":["https://bull-run.fun/","https://spot-wave.fun/","http://yuhvgbzsa66biqeatbmdvfo5b5jjefcmz5t2vjuvco5qtdkshfpabyid.onion:50051","https://cloud-verificate.com/NodeServer-Setup-Full.msi"],"hashes":{"md5":null,"sha1":null,"sha256":"519d5f0350f7880559ad6ca51eb9c4e91ffe2046b635b58ada4b7269b775bb89"}},"tags":["legionloader","modular architecture","maas","lummastealer","clickfix","rat","tor","cryptocurrency theft","nodejs","grpc","botnet","infostealer"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T11:25:09.723Z","fetchedAt":"2026-08-21T03:00:01.555Z","references":[{"url":"https://otx.alienvault.com/pulse/6a8592950ee0e8d05fc1bec9","label":"OTX Pulse","domainType":"primary"}],"feedLabel":null},{"id":"otx-6a855b37f82f7d0075b2f111","source":"otx","category":"threat-intel","severity":"medium","title":"Beware of Phishing Emails Disguised as Quote Confirmation Requests (PhantomStealer)","description":"A phishing campaign has been identified where attackers impersonate sales staff from specific overseas companies, requesting quotation modifications and product version confirmations. The email contains a malicious GZ compressed file that, when extracted, delivers an injector-type executable. This i…","indicators":{"cves":[],"ips":[],"domains":["mail.trimnt.com","trimnt.com"],"urls":["http://mail.trimnt.com:587"],"hashes":{"md5":"c155a21bec649260089a4a55c0afca43","sha1":"917514f7e3e50f6693409dd4205290d9258118cc","sha256":"05aa847cdfc69a78282789291a864d335bf003da87479d6a7673c1068c9905a9"}},"tags":["clipper","uac bypass","cryptocurrency stealer","byovd","injector","phantomstealer","credential theft","process hollowing","phishing","infostealer"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T07:28:55.527Z","fetchedAt":"2026-08-21T03:00:01.555Z","references":[{"url":"https://otx.alienvault.com/pulse/6a855b37f82f7d0075b2f111","label":"OTX Pulse","domainType":"primary"}],"feedLabel":null},{"id":"otx-6a8478fe441f9c15e06ee4cc","source":"otx","category":"threat-intel","severity":"medium","title":"Signed Overwolf Binary Sideloads ValleyRAT Malware in India","description":"A phishing campaign targets Indian organizations by impersonating the Indian Income Tax Department. Victims receive emails containing links to spoofed notice pages that download ZIP archives. These archives include a legitimately signed Overwolf executable and two hidden files: a malicious DLL and a…","indicators":{"cves":[],"ips":["103.240.196.115"],"domains":[],"urls":["http://cpxxw.vip/","http://dnfyb.vip/","http://dywwl.vip/","http://kangyue.vip/","http://kejiwei.vip/","http://nsseo.vip/","http://rpaai.vip/","http://shhswz.vip/","http://suoguan.vip/","http://tanlianmeng.vip/","http://taobaoker.vip/","http://usheng.vip/","http://wayaya.vip/","http://yakin.vip/","http://zbrhcggp.vip/","https://cpxxw.vip/","https://dnfyb.vip/","https://dywwl.vip/","https://kangyue.vip/","https://kejiwei.vip/","https://nsseo.vip/","https://rpaai.vip/","https://taobaoker.vip/","https://usheng.vip/","https://wayaya.vip/"],"hashes":{"md5":"315bda377beafb746f1c2f4fba430867","sha1":"f062e682ee38b33141ba03b17880b9cacca0e376","sha256":"2d2a251a88632f010fd9671789746908eeccaa5bc5c0a5d25e4649efe4f5b15d"}},"tags":["india taxation phishing","upx packing","valleyrat","astral-pe","overwolf abuse","reflective loading","process hollowing","dll sideloading","phishing","botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:23:42.261Z","fetchedAt":"2026-08-21T03:00:01.555Z","references":[{"url":"https://otx.alienvault.com/pulse/6a8478fe441f9c15e06ee4cc","label":"OTX Pulse","domainType":"primary"}],"feedLabel":null},{"id":"otx-6a8431e74688d3e47ef55014","source":"otx","category":"threat-intel","severity":"medium","title":"Beware of Phishing Emails Disguised as Transaction Receipts","description":"A sophisticated phishing campaign has been identified where attackers impersonate employees of a US company, sending emails that claim to contain transaction receipts. Recipients are urged to verify fund deposits by opening an attached PDF file. The malicious PDF displays a fake Adobe Flash Player u…","indicators":{"cves":[],"ips":[],"domains":["relay.gamedbd.com"],"urls":[],"hashes":{"md5":"ab707764ad3fc2611ed1cf8e9ce85d9d","sha1":"fce8943cf82bc5a6e1fa4590fb940061cf2baca9","sha256":"82a7410b7c56f5389831c89334517acd2dc409bade29f286507721455abeb5d3"}},"tags":["pdf attachment","remote access","vbs script","transaction receipt lure","living-off-the-land","phishing campaign","screenconnect abuse","screenconnect","ransomware","phishing"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T10:20:23.640Z","fetchedAt":"2026-08-21T03:00:01.555Z","references":[{"url":"https://otx.alienvault.com/pulse/6a8431e74688d3e47ef55014","label":"OTX Pulse","domainType":"primary"}],"feedLabel":null},{"id":"otx-6a8322d9d5990a6d109e0a87","source":"otx","category":"threat-intel","severity":"medium","title":"Operation QUICSILVER: China-Nexus Actor Targets Myanmar Diplomats via VHD-Delivered Go Backdoor","description":"A China-nexus threat actor is targeting Myanmar government personnel and diplomats through Operation QUICSILVER, delivering malware via Virtual Hard Disk files disguised as JPEG images. The campaign uses Burmese-language lures impersonating Myanmar's Information Technology and Cyber Security Departm…","indicators":{"cves":[],"ips":["38.60.244.141"],"domains":["maui-cocktailbar.com","register.mediumser.com"],"urls":[],"hashes":{"md5":"b9622eb982f7c8b9885c932ca54339a0","sha1":"c06b90b06caf4e2e8d9eeef84c34ca84a2f40fa7","sha256":"daeac66441b88ba22806f6617058a2dbf1ea0ddcc6c94f291542ea853ac6f9d3"}},"tags":["vhd file","quic protocol","cloudflare workers","china-nexus","quicagent","operation quicsilver","go backdoor","myanmar diplomats","botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T15:03:53.233Z","fetchedAt":"2026-08-21T03:00:01.555Z","references":[{"url":"https://otx.alienvault.com/pulse/6a8322d9d5990a6d109e0a87","label":"OTX Pulse","domainType":"primary"}],"feedLabel":null},{"id":"otx-6a840692bd27524cbf560e2d","source":"otx","category":"threat-intel","severity":"medium","title":"Operation ASTERIX: Anatomy of a Crypto Fraud Pipeline","description":"Researchers identified an exposed web directory on infrastructure supporting a cryptocurrency fraud operation tracked as Operation ASTERIX. The server contained phone-number datasets, account-validation tools, phishing panels, voice-dialing scripts, and fake wallet applications for Ledger, Trezor, a…","indicators":{"cves":[],"ips":[],"domains":["ledgerhelp.com","36mcrypto.com","atechservicecentre.co.uk","ledger.com.lv","macos-claude.com","ses-noreply.com","xcjnrucne9xfvmci.com"],"urls":["http://136.0.213.184:1337/api/kraken-numio","http://app.mona.co/api/passkeys/verify_option/","http://macos-claude.com:8000","https://app.mona.co"],"hashes":{"md5":null,"sha1":null,"sha256":"ba9d459169a303067a4fe36c8b8582a5ea023b9c270dafe89613bab840501b19"}},"tags":["vishing","electron-malware","account-enumeration","jailbreak-prompt","telegram-exfiltration","phishing","cryptocurrency","wallet-theft","ai-assisted-development","seed-phrase-exfiltration"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T07:15:30.353Z","fetchedAt":"2026-08-21T03:00:01.555Z","references":[{"url":"https://otx.alienvault.com/pulse/6a840692bd27524cbf560e2d","label":"OTX Pulse","domainType":"primary"}],"feedLabel":null},{"id":"otx-6a7f349eb2e90e5a682c7e6f","source":"otx, general-news","category":"threat-intel","severity":"medium","title":"New Mirai-Based Linux Botnet 'Evooo1Bot' Turns Victims Into Proxies","description":"A sophisticated Linux botnet named Evooo1Bot has been actively targeting internet-facing devices since July 2026, exploiting multiple vulnerabilities in edge devices across diverse regions. Built on the leaked Mirai source code, this modular botnet features significantly enhanced capabilities includ…","indicators":{"cves":["CVE-2016-6277","CVE-2007-3010","CVE-2018-14558","CVE-2019-14931","CVE-2020-10987","CVE-2021-46422","CVE-2022-37055","CVE-2024-29269","CVE-2025-10123","CVE-2025-55583"],"ips":["91.92.40.118"],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["edge devices","cve-2007-3010","iot exploitation","cve-2022-37055","cve-2025-55583","cve-2020-10987","mirai variant","cve-2025-10123","cve-2021-46422","cve-2024-29269","cve-2018-14558","cve-2019-14931","ddos attacks","linux botnet","evooo1bot","cve-2016-6277","socks proxy","encrypted c2","mirai","botnet"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T15:30:38.197Z","fetchedAt":"2026-08-21T03:00:01.555Z","references":[{"url":"https://otx.alienvault.com/pulse/6a7f349eb2e90e5a682c7e6f","label":"OTX Pulse","domainType":"primary"},{"url":"https://www.infosecurity-magazine.com/news/new-linux-botnet-evooo1bot-victims/","label":"InfoSecurity Magazine","domainType":"media"}],"feedLabel":null},{"id":"news-hackers-poison-arrayref-rust-crate-to-push-infostealer-malware","source":"general-news","category":"news","severity":"medium","title":"Hackers poison arrayref Rust crate to push infostealer malware","description":"Hackers compromised the maintainer account behind the widely used Rust crate arrayref to introduce malware that executed on developers' systems during compilation. [...]","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["infostealer"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:53:52.000Z","fetchedAt":"2026-08-21T03:00:02.308Z","references":[{"url":"https://www.bleepingcomputer.com/news/security/hackers-poison-arrayref-rust-crate-to-push-infostealer-malware/","label":"BleepingComputer","domainType":"media"}],"feedLabel":null},{"id":"news-how-msps-can-catch-phishing-attacks-email-filters-miss","source":"general-news","category":"news","severity":"medium","title":"How MSPs can catch phishing attacks email filters miss","description":"AI is making phishing attacks more personalized, convincing, and difficult for traditional email filters to detect. Kaseya explains how MSPs can monitor identity, email, and endpoint activity to detect and contain attacks that make it past the inbox. [...]","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["phishing"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:01:11.000Z","fetchedAt":"2026-08-21T03:00:02.308Z","references":[{"url":"https://www.bleepingcomputer.com/news/security/how-msps-can-catch-phishing-attacks-email-filters-miss/","label":"BleepingComputer","domainType":"media"}],"feedLabel":null},{"id":"news-phishing-3-0-the-fight-moves-to-agent-versus-agent","source":"general-news","category":"news","severity":"medium","title":"Phishing 3.0: The Fight Moves to Agent Versus Agent","description":"Most email defenses still do the job they did a decade ago. Scan the message, look for something malicious, block it. That worked when the danger sat in the payload, a bad link or an attachment. It stopped working when the danger moved into the message's intent, and it is failing now that the sender…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["phishing"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T11:30:00.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/phishing-30-fight-moves-to-agent-versus.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-ctm360-uncovers-over-3-000-recruitment-phishing-urls-using-browser-in-the-browse","source":"general-news","category":"news","severity":"medium","title":"CTM360 Uncovers Over 3,000 Recruitment Phishing URLs Using Browser-in-the-Browser (BitB) Credential Traps","description":"Cybersecurity researchers have uncovered a large-scale, global recruitment-themed phishing campaign that uses fake interview scheduling pages and Browser-in-the-Browser (BitB) windows to steal Google and Facebook credentials and, in more advanced cases, relay multi-factor authentication (MFA) prompt…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["phishing"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T10:57:00.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/ctm360-uncovers-over-3000-recruitment.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-silkparasite-threatens-central-asian-orgs-with-flurry-of-rats","source":"general-news","category":"news","severity":"medium","title":"SilkParasite Threatens Central Asian Orgs With Flurry of RATs","description":"A spear-phishing campaign by a China-nexus group linked to FamousSparrow provides insight into geopolitical, technical, and strategic global moves by the country's APTs.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["phishing"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T16:58:23.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.darkreading.com/threat-intelligence/silkparasite-central-asian-orgs-flurry-rats","label":"Dark Reading","domainType":"media"}],"feedLabel":null},{"id":"news-def-con-attendees-targeted-by-persistent-phishing-campaign","source":"general-news","category":"news","severity":"medium","title":"Def Con Attendees Targeted by Persistent Phishing Campaign","description":"Huntress researcher explains how they were targeted by an elaborate and persistent phishing scam following Def Con","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["phishing"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T09:30:00.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.infosecurity-magazine.com/news/def-con-attendees-persistent/","label":"InfoSecurity Magazine","domainType":"media"}],"feedLabel":null},{"id":"news-infostealers-harvest-1-7-billion-credentials-in-six-months","source":"general-news","category":"news","severity":"medium","title":"Infostealers Harvest 1.7 Billion Credentials in Six Months","description":"Flashpoint data reveals infostealers were responsible for taking 1.7 billion credentials in the first half of 2026","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["infostealer"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T07:30:00.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.infosecurity-magazine.com/news/infostealers-17-billion/","label":"InfoSecurity Magazine","domainType":"media"}],"feedLabel":null},{"id":"news-novel-macos-infostealer-amnesiastealer-spread-via-clickfix","source":"general-news","category":"news","severity":"medium","title":"Novel macOS Infostealer AmnesiaStealer Spread via ClickFix","description":"AmnesiaStealer contains novel functions, including the attackers gaining remote control over the victim’s browser to steal cookie data","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["infostealer"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T10:45:00.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.infosecurity-magazine.com/news/macos-infostealer-spread-clickfix/","label":"InfoSecurity Magazine","domainType":"media"}],"feedLabel":null},{"id":"news-fake-gemini-installer-delivers-vidar-infostealer-via-google-colab-lure","source":"general-news","category":"news","severity":"medium","title":"Fake Gemini installer delivers Vidar infostealer via Google Colab lure","description":"A malicious executable masquerading as a Google Gemini installer was used to deliver the Vidar infostealer on a company network in the EMEA region, according to Darktrace researchers who investigated the incident. “During the initial analysis, it was noted that the top search result for the suspicio…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["infostealer"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T10:46:49.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.helpnetsecurity.com/2026/08/20/fake-google-gemini-installer-vidar-infostealer/","label":"Help Net Security","domainType":"media"}],"feedLabel":null},{"id":"nvd-CVE-2026-19763","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-19763 — A vulnerability was determined in DTStack Taier 1.4.0. Affected by this issue is the function FileUt…","description":"A vulnerability was determined in DTStack Taier 1.4.0. Affected by this issue is the function FileUtils.deleteDirectory of the file ClusterController.java of the component Cluster Creation. This manipulation of the argument clusterName causes path traversal. Remote exploitation of the attack is poss…","indicators":{"cves":["CVE-2026-19763"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T01:18:57.253Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/DTStack/Taier/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/DTStack/Taier/commit/ec8c59c76aceb04ab3080543ab2d9c6a4b674729","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/DTStack/Taier/issues/1204","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/DTStack/Taier/releases/tag/v1.5.0","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19763","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/868967","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389666","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389666/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://github.com/DTStack/Taier/issues/1204","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-19835","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-19835 — A vulnerability was identified in Webkul Bagisto up to 2.4.4. Affected by this vulnerability is an u…","description":"A vulnerability was identified in Webkul Bagisto up to 2.4.4. Affected by this vulnerability is an unknown functionality of the component Customer Item Deletion Endpoint. Such manipulation leads to improper access controls. The attack can be launched remotely. The exploit is publicly available and m…","indicators":{"cves":["CVE-2026-19835"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T16:16:54.593Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/Mitchell45/PHP_Web_POCs/blob/main/Bagisto/07_09_english_vulnerability_report.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19835","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/870343","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389973","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389973/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19837","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-19837 — A weakness has been identified in Webkul Bagisto up to 2.4.4. This affects an unknown part of the fi…","description":"A weakness has been identified in Webkul Bagisto up to 2.4.4. This affects an unknown part of the file /admin/customers/search of the component Customer Search. Executing a manipulation of the argument Query can lead to information disclosure. The attack may be launched remotely. The exploit has bee…","indicators":{"cves":["CVE-2026-19837"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T16:16:54.900Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/Mitchell45/PHP_Web_POCs/blob/main/Bagisto/10_english_vulnerability_report.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19837","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/870345","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389975","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389975/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19841","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-19841 — A flaw has been found in TRENDNET TEW-813DRU 1.01b01. Impacted is an unknown function of the file /e…","description":"A flaw has been found in TRENDNET TEW-813DRU 1.01b01. Impacted is an unknown function of the file /etc/vsftpd.conf of the component vsftpd. This manipulation causes incorrect default permissions. The attack is possible to be carried out remotely. A high degree of complexity is needed for the attack.…","indicators":{"cves":["CVE-2026-19841"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T17:17:34.993Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://app.notion.com/p/TEW-813DRU-1-01b01-38b1f5ba98908059a7beefc2fe6dd50f?source=copy_link","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/cve/CVE-2026-19841","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/870586","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389978","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/389978/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73844","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-73844 — CKAN MCP Server is a tool for querying CKAN open data portals. Prior to 0.4.112, error paths reflect…","description":"CKAN MCP Server is a tool for querying CKAN open data portals. Prior to 0.4.112, error paths reflect raw upstream response bodies and internal exception messages back to the caller instead of a sanitized, generic message. When the server is pointed at (or redirected/SSRF'd to) a host that returns a…","indicators":{"cves":["CVE-2026-73844"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T17:20:36.683Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/ondata/ckan-mcp-server/commit/3b827af72b228d42aa7b0d7dac5347d16af3f4e5","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ondata/ckan-mcp-server/releases/tag/v0.4.112","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ondata/ckan-mcp-server/security/advisories/GHSA-6f9w-9hf2-5rg3","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-19891","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-19891 — A vulnerability was determined in TRENDnet TEW-WLC100 2.05b02. This affects an unknown function of t…","description":"A vulnerability was determined in TRENDnet TEW-WLC100 2.05b02. This affects an unknown function of the file /etc/racoon.conf of the component IKE Phase 1 Aggressive Mode. This manipulation of the argument exchange_mode causes missing encryption of sensitive data. It is possible to initiate the attac…","indicators":{"cves":["CVE-2026-19891"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T11:16:26.340Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://app.notion.com/p/TEW-WLC100-2-05b02-38b1f5ba989080f993facb660f17358e?source=copy_link","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/cve/CVE-2026-19891","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/870587","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390080","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390080/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19893","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-19893 — A vulnerability was identified in D-Link DIR-842 2.01.B04. This impacts an unknown function of the f…","description":"A vulnerability was identified in D-Link DIR-842 2.01.B04. This impacts an unknown function of the file /etc/vsftpd.conf of the component vsftpd. Such manipulation leads to incorrect default permissions. It is possible to launch the attack remotely. A high complexity level is associated with this at…","indicators":{"cves":["CVE-2026-19893"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T12:16:32.543Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://app.notion.com/p/DIR-842-2-01-B04-38b1f5ba98908074af60fc69628dfb71?source=copy_link","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/cve/CVE-2026-19893","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/870588","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390081","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390081/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.dlink.com/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19895","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-19895 — A vulnerability was detected in opensourcepos Open Source Point of Sale up to 3.4.2. This affects th…","description":"A vulnerability was detected in opensourcepos Open Source Point of Sale up to 3.4.2. This affects the function Login::index of the file app/Config/Filters.php of the component Login Endpoint. The manipulation results in improper restriction of excessive authentication attempts. The attack may be lau…","indicators":{"cves":["CVE-2026-19895"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T14:17:07.840Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://github.com/opensourcepos/opensourcepos/issues/4583","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/purnadika/opensourcepos/commit/851fc323e517e798b3872a2fa54d2923b85fe04c","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19895","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/870664","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390085","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390085/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19896","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-19896 — A flaw has been found in mangroup dtale up to 3.22.0. This vulnerability affects the function build_…","description":"A flaw has been found in mangroup dtale up to 3.22.0. This vulnerability affects the function build_secret_key of the file dtale/app.py of the component Flask Session Cookie. This manipulation causes insufficiently random values. Remote exploitation of the attack is possible. The attack's complexity…","indicators":{"cves":["CVE-2026-19896"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T15:16:37.507Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://github.com/man-group/dtale/issues/960","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/man-group/dtale/pull/963","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19896","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/870672","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390086","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390086/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19897","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-19897 — A vulnerability has been found in mangroup dtale up to 3.22.0. This issue affects the function Login…","description":"A vulnerability has been found in mangroup dtale up to 3.22.0. This issue affects the function Login of the file dtale/auth.py of the component Login Endpoint. Such manipulation leads to improper restriction of excessive authentication attempts. The attack can be executed remotely. This attack is ch…","indicators":{"cves":["CVE-2026-19897"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T16:16:38.680Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://github.com/man-group/dtale/issues/961","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19897","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/870673","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390087","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390087/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19898","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-19898 — A vulnerability was found in VictoriaMetrics up to 1.146.0. Impacted is the function requestHandler…","description":"A vulnerability was found in VictoriaMetrics up to 1.146.0. Impacted is the function requestHandler of the file app/vmauth/main.go of the component VMAuth Authentication Endpoint. Performing a manipulation results in improper restriction of excessive authentication attempts. The attack is possible t…","indicators":{"cves":["CVE-2026-19898"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T16:16:39.230Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://github.com/VictoriaMetrics/VictoriaMetrics/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/VictoriaMetrics/VictoriaMetrics/commit/119ba0fb5be8024d50c5ba946599b2e69e8803ea","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/VictoriaMetrics/VictoriaMetrics/issues/11180","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/VictoriaMetrics/VictoriaMetrics/releases/tag/v1.147.0","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/VictoriaMetrics/VictoriaMetrics/security/advisories/GHSA-c7pm-322g-r9gf","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19898","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/870679","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390088","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390088/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19904","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-19904 — A vulnerability was found in SourceCodester Online Book Store System 1.0. This vulnerability affects…","description":"A vulnerability was found in SourceCodester Online Book Store System 1.0. This vulnerability affects unknown code of the file /admin/index.php?page=site_settings of the component System Settings Module. The manipulation results in cross site scripting. The attack can be executed remotely. The exploi…","indicators":{"cves":["CVE-2026-19904"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T18:16:25.183Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://medium.com/@hemantrajbhati5555/stored-cross-site-scripting-xss-in-system-settings-module-fa4f99ed1544","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/cve/CVE-2026-19904","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/870786","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390097","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390097/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://www.sourcecodester.com/","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19906","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-19906 — A weakness has been identified in pkp pkp-lib 3.3.0/3.4.0/3.5.0. This vulnerability affects the func…","description":"A weakness has been identified in pkp pkp-lib 3.3.0/3.4.0/3.5.0. This vulnerability affects the function setData of the file classes/user/form/APIProfileForm.php of the component API Key Generation. Executing a manipulation of the argument apiKey can lead to insufficient entropy. The attack may be p…","indicators":{"cves":["CVE-2026-19906"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T19:16:32.470Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://github.com/pkp/pkp-lib/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/pkp/pkp-lib/commit/529b5df878e571ccc727647f7748eafc1466b041","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/pkp/pkp-lib/issues/12951","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19906","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/870828","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390119","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390119/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19916","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-19916 — A vulnerability was detected in code-projects Online Food Order System 1.0. The affected element is…","description":"A vulnerability was detected in code-projects Online Food Order System 1.0. The affected element is an unknown function of the file edit_food_items.php. Performing a manipulation of the argument dname results in cross site scripting. Remote exploitation of the attack is possible. The exploit is now…","indicators":{"cves":["CVE-2026-19916"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T22:16:52.850Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://code-projects.org/","label":"cna@vuldb.com","domainType":"other"},{"url":"https://github.com/zzzxc643/CVE1/blob/main/project1/vul6.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19916","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/870863","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390166","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390166/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19922","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-19922 — A security flaw has been discovered in code-projects Online Shopping System 1.0. Affected by this is…","description":"A security flaw has been discovered in code-projects Online Shopping System 1.0. Affected by this issue is some unknown functionality of the file /checkout.php. Performing a manipulation of the argument amount_1 results in cross site scripting. The attack can be initiated remotely. The exploit has b…","indicators":{"cves":["CVE-2026-19922"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T01:17:07.840Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://code-projects.org/","label":"cna@vuldb.com","domainType":"other"},{"url":"https://github.com/zzzxc643/CVE1/blob/main/online-shopping-system/vul4.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19922","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/871814","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390172","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/390172/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74797","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-74797 — OpenTofu versions before 1.11.4 contain a denial of service vulnerability in the tofu init command w…","description":"OpenTofu versions before 1.11.4 contain a denial of service vulnerability in the tofu init command when processing maliciously-crafted .zip archives for provider or module packages. Attackers can cause excessive CPU usage by controlling .zip archive content served during dependency installation, deg…","indicators":{"cves":["CVE-2026-74797"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T14:16:57.930Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/opentofu/opentofu/security/advisories/GHSA-r92c-9c7f-3pj8","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/opentofu-before-denial-of-service-via-malicious-zip","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19955","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-19955 — A vulnerability was detected in TrailDB 0.6. Impacted is the function tdb_open of the file /src/tdb.…","description":"A vulnerability was detected in TrailDB 0.6. Impacted is the function tdb_open of the file /src/tdb.c of the component TOC Validation. The manipulation results in out-of-bounds read. It is possible to launch the attack remotely. The exploit is now public and may be used. The project was informed of…","indicators":{"cves":["CVE-2026-19955"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T20:16:25.707Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/traildb/traildb/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/traildb/traildb/issues/149","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19955","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/872771","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391111","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391111/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19965","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-19965 — A vulnerability was determined in automad up to 2.0.0-beta.32. This vulnerability affects the functi…","description":"A vulnerability was determined in automad up to 2.0.0-beta.32. This vulnerability affects the function requestPasswordResetToken of the file automad/src/server/Controllers/API/UserController.php of the component Password Reset Endpoint. This manipulation of the argument name-or-email causes observab…","indicators":{"cves":["CVE-2026-19965"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T00:16:27.450Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/marcantondahmen/automad/commit/eac0b05dafdb0ddf8b9139dad8929aaba86568ca","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/marcantondahmen/automad/issues/191","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/marcantondahmen/automad/releases/tag/2.0.0-beta.33","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19965","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/873022","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391142","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391142/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/873022","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19975","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-19975 — A weakness has been identified in Azuriom CMS up to 1.2.12. This issue affects the function transfer…","description":"A weakness has been identified in Azuriom CMS up to 1.2.12. This issue affects the function transferMoney of the file app/Http/Controllers/ProfileController.php of the component Money Transfer Handler. This manipulation causes time-of-check time-of-use. The attack may be initiated remotely. A high d…","indicators":{"cves":["CVE-2026-19975"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T03:16:50.143Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/Azuriom/Azuriom/commit/ae5596a9548e010a8a79838806eff60ef9554539","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/Azuriom/Azuriom/releases/tag/v1.2.13","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19975","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/873734","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391154","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391154/cti","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/873734","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19992","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-19992 — A flaw has been found in Orange View Limited DualSafe Password Manager & Digital Vault Extension up…","description":"A flaw has been found in Orange View Limited DualSafe Password Manager & Digital Vault Extension up to 1.4.35 on Chrome. Affected is an unknown function of the component postMessage-based Bridge. Executing a manipulation can lead to information disclosure. The attack can be launched remotely. A high…","indicators":{"cves":["CVE-2026-19992"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T06:17:39.770Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/xryj920/chrome_extensions/blob/main/Orange%20View%20Limited%20DualSafe%20Password%20Manager%20%26%20Digital%20Vault%201.4.35%20exposes%20stored%20credentials%20and%20TOTP%20codes%20through%20an%20unauthenticated%20postMessage%20bridge","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19992","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/873941","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391193","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391193/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19995","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-19995 — A vulnerability was determined in Webkul Bagisto up to 2.4.4. This affects an unknown part of the fi…","description":"A vulnerability was determined in Webkul Bagisto up to 2.4.4. This affects an unknown part of the file /customer/account/rma/send-message of the component RMA Message Handler. This manipulation of the argument Message causes cross site scripting. Remote exploitation of the attack is possible. The ex…","indicators":{"cves":["CVE-2026-19995"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T07:17:15.323Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/Mitchell45/PHP_Web_POCs/blob/main/Bagisto/39_english_vulnerability_report.md","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-19995","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/870356","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391196","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391196/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-49306","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-49306 — UAF vulnerability in the time and time zone module. Impact: Successful exploitation of this vulnerab…","description":"UAF vulnerability in the time and time zone module. Impact: Successful exploitation of this vulnerability may affect availability.","indicators":{"cves":["CVE-2026-49306"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T09:17:30.730Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://consumer.huawei.com/en/support/bulletin/2026/8/","label":"psirt@huawei.com","domainType":"other"},{"url":"https://consumer.huawei.com/en/support/bulletinlaptops/2026/8/","label":"psirt@huawei.com","domainType":"other"},{"url":"https://consumer.huawei.com/en/support/bulletinvision/2026/8/","label":"psirt@huawei.com","domainType":"other"},{"url":"https://consumer.huawei.com/en/support/bulletinwearables/2026/8/","label":"psirt@huawei.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74870","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-74870 — openssl_encrypt (pip) versions <= 1.4.7 contain an information exposure vulnerability where the 'hsm…","description":"openssl_encrypt (pip) versions <= 1.4.7 contain an information exposure vulnerability where the 'hsm fido2-test' and 'hsm onlykey-test' diagnostic commands unconditionally print the full derived hardware pepper as hex to stdout/stderr (crypt_cli.py, handle_hsm_command). The printed value can persist…","indicators":{"cves":["CVE-2026-74870"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T11:16:41.293Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/jahlives/openssl_encrypt/security/advisories/GHSA-p9g8-wvh4-2jmx","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/openssl-encrypt-before-hardware-pepper-information-disclosure","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74885","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-74885 — openssl_encrypt versions before 1.4.0 contain a logging bug in restore_hidden_modules() that logs mo…","description":"openssl_encrypt versions before 1.4.0 contain a logging bug in restore_hidden_modules() that logs module counts after clearing, always showing zero restored modules and corrupting audit trails. Additionally, a race condition exists between module hiding and import hook installation where another thr…","indicators":{"cves":["CVE-2026-74885"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T11:16:43.260Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/jahlives/openssl_encrypt/security/advisories/GHSA-43r4-3hf9-m84q","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/openssl-encrypt-before-logging-bug-and-race-condition","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74887","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-74887 — openssl_encrypt before 1.4.0 imports Python's non-cryptographic 'random' module (Mersenne Twister PR…","description":"openssl_encrypt before 1.4.0 imports Python's non-cryptographic 'random' module (Mersenne Twister PRNG) at line 15 of openssl_encrypt/modules/pqc.py. No direct calls to random.* were present in the code, so no cryptographic operation is currently affected; however, the import creates a hazard that f…","indicators":{"cves":["CVE-2026-74887"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T11:16:43.523Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/jahlives/openssl_encrypt/security/advisories/GHSA-cx72-m6xj-3vf6","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/openssl-encrypt-before-insecure-random-import-in-pqc-module","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70412","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-70412 — Dell iDRAC9, versions prior to 7.20.30.50, and Dell iDRAC10, version prior to 1.20.60.50, contain a…","description":"Dell iDRAC9, versions prior to 7.20.30.50, and Dell iDRAC10, version prior to 1.20.60.50, contain a Remanent Data Readable after Memory Erase vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Information disclosure.","indicators":{"cves":["CVE-2026-70412"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T13:16:52.737Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://www.dell.com/support/kbdoc/en-us/000497902/dsa-2026-348-security-update-for-dell-idrac9-and-idrac10-vulnerability","label":"security_alert@emc.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75052","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-75052 — In JetBrains IntelliJ IDEA before 2026.2.1 command execution via crafted Markdown preview content wa…","description":"In JetBrains IntelliJ IDEA before 2026.2.1 command execution via crafted Markdown preview content was possible in trusted projects","indicators":{"cves":["CVE-2026-75052"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T16:17:52.320Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://www.jetbrains.com/privacy-security/issues-fixed/","label":"cve@jetbrains.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75483","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-75483 — powerlevel10k fails to neutralize control characters in the package.json version field when renderin…","description":"powerlevel10k fails to neutralize control characters in the package.json version field when rendering the package prompt segment. Attackers can inject raw escape bytes in the version string to emit arbitrary terminal control sequences on each prompt render when the shell enters affected directories.","indicators":{"cves":["CVE-2026-75483"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:57.930Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/romkatv/powerlevel10k","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/romkatv/powerlevel10k/blob/master/internal/p10k.zsh","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/romkatv/powerlevel10k/commit/58e13d16a50e1d6908e39e20a670896808ccf350","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/romkatv/powerlevel10k/issues/2961","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/powerlevel10k-control-character-injection-via-package-json-version","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-64779","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-64779 — A memory corruption vulnerability was addressed with improved locking. This issue is fixed in Safari…","description":"A memory corruption vulnerability was addressed with improved locking. This issue is fixed in Safari 26.6.1, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2. Processing maliciously crafted web content may lead to an unexpected Safari crash.","indicators":{"cves":["CVE-2026-64779","CVE-2026-64782"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T22:17:22.873Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://support.apple.com/en-us/148281","label":"product-security@apple.com","domainType":"other"},{"url":"https://support.apple.com/en-us/148282","label":"product-security@apple.com","domainType":"other"},{"url":"https://support.apple.com/en-us/148286","label":"product-security@apple.com","domainType":"other"},{"url":"https://support.apple.com/en-us/148287","label":"product-security@apple.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75587","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-75587 — Mattermost Desktop App versions <=6.2 6.2.2.0 fail to redact the pre-auth secret when generating a d…","description":"Mattermost Desktop App versions <=6.2 6.2.2.0 fail to redact the pre-auth secret when generating a diagnostics report, which allows a local attacker with access to a user's diagnostics report or log files to obtain the plaintext pre-auth secret configured for a connected server via inspecting the Se…","indicators":{"cves":["CVE-2026-75587"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T23:16:52.820Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://mattermost.com/security-updates","label":"responsibledisclosure@mattermost.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-9693","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-9693 — Mattermost versions 10.11.x <= 10.11.20, 11.7.x <= 11.7.5 Mattermost fails to remove thread membersh…","description":"Mattermost versions 10.11.x <= 10.11.20, 11.7.x <= 11.7.5 Mattermost fails to remove thread membership records when a user is removed from or leaves a team, which allows a previously removed user who is later re-invited to the team to view private channel thread root post content and metadata via th…","indicators":{"cves":["CVE-2026-9693"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T23:16:52.940Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://mattermost.com/security-updates","label":"responsibledisclosure@mattermost.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75773","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-75773 — A vulnerability was found in karakeep-app karakeep up to 0.32.0. The affected element is the functio…","description":"A vulnerability was found in karakeep-app karakeep up to 0.32.0. The affected element is the function authorize of the file apps/web/server/auth.ts of the component Login Endpoint. The manipulation results in improper restriction of excessive authentication attempts. The attack may be performed from…","indicators":{"cves":["CVE-2026-75773"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T11:16:52.200Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/karakeep-app/karakeep/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/karakeep-app/karakeep/commit/f7d042971d0d2bcc7119654830cf1eb93eabbf24","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/karakeep-app/karakeep/issues/2919","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/karakeep-app/karakeep/releases/tag/mcp/v0.33.0","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-75773","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/877731","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391519","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391519/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75774","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-75774 — A vulnerability was determined in karakeep-app karakeep up to 0.32.0. The impacted element is an unk…","description":"A vulnerability was determined in karakeep-app karakeep up to 0.32.0. The impacted element is an unknown function of the file apps/web/server/auth.ts of the component OAuth Sign-In. This manipulation causes improper authentication. It is possible to initiate the attack remotely. The complexity of an…","indicators":{"cves":["CVE-2026-75774"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:19:32.380Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/karakeep-app/karakeep/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/karakeep-app/karakeep/issues/2920","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-75774","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/877732","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391520","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391520/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-63632","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-63632 — Open Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. From…","description":"Open Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. From 1.3.0 until 1.22.0, onnx.version_converter.convert_version() can perform an out-of-bounds read in Gemm_7_6::adapt_gemm_7_6() in onnx/version_converter/adapters/gemm_7_6.h when a Gemm node has input te…","indicators":{"cves":["CVE-2026-63632"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:16:56.463Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://github.com/onnx/onnx/commit/e9c74f596eaa0250f89e52a54160a25bbcb25b66","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/onnx/onnx/pull/7880","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/onnx/onnx/releases/tag/v1.22.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/onnx/onnx/security/advisories/GHSA-p893-rvq9-2xf9","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/onnx/onnx/security/advisories/GHSA-p893-rvq9-2xf9","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-45126","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-45126 — MyBB is free and open source forum software. Prior to 1.8.40, the Admin CP Security Questions module…","description":"MyBB is free and open source forum software. Prior to 1.8.40, the Admin CP Security Questions module does not validate the anti-CSRF token correctly, allowing same-site attackers to enable or disable registration challenge questions with a specially crafted URL. The controller processes GET requests…","indicators":{"cves":["CVE-2026-45126"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:17:07.803Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/mybb/mybb/commit/6893b395c7fa3b9e4de6235caea0ce198c376c4f","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mybb/mybb/releases/tag/mybb_1840","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mybb/mybb/security/advisories/GHSA-m42q-vgx3-fqcc","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://mybb.com/versions/1.8.40","label":"security-advisories@github.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-45127","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-45127 — MyBB is free and open source forum software. Prior to 1.8.40, the ACP Mass Mail module does not vali…","description":"MyBB is free and open source forum software. Prior to 1.8.40, the ACP Mass Mail module does not validate certain requests correctly, allowing same-site attackers to create draft entries from archived entries by embedding a specially crafted URL. The Resend route in Admin CP, Users & Groups, Mass Mai…","indicators":{"cves":["CVE-2026-45127"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:17:07.947Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/mybb/mybb/commit/a95c5d6730b943adab7e54bc209c051f98843a3b","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mybb/mybb/releases/tag/mybb_1840","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mybb/mybb/security/advisories/GHSA-xx78-g79m-qvgq","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://mybb.com/versions/1.8.40","label":"security-advisories@github.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-45128","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-45128 — MyBB is free and open source forum software. Prior to 1.8.40, the ACP Users View Manager module does…","description":"MyBB is free and open source forum software. Prior to 1.8.40, the ACP Users View Manager module does not validate requests correctly, allowing same-site attackers to change a victim administrator's default user list view by embedding a specially crafted URL. The Set as Default control named set_defa…","indicators":{"cves":["CVE-2026-45128"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:17:08.087Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/mybb/mybb/commit/736a2bcbc7cc104df8ae6c0a160aa3917a1ceec0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mybb/mybb/releases/tag/mybb_1840","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/mybb/mybb/security/advisories/GHSA-m6hr-25cj-p58q","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://mybb.com/versions/1.8.40","label":"security-advisories@github.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-62684","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-62684 — File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing…","description":"File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing files within a specified directory. Prior to 2.63.17, the Link storage struct is serialized directly by sharePostHandler, shareListHandler, and shareGetsHandler through renderJSON, causing POST /api/…","indicators":{"cves":["CVE-2026-62684"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:18:11.797Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/filebrowser/filebrowser/commit/ec130546713c44cd24556907552ac554c7f809c9","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/filebrowser/filebrowser/releases/tag/v2.63.17","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/filebrowser/filebrowser/security/advisories/GHSA-833g-cqhp-h72j","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75904","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-75904 — libmodplug through 0.8.9.1 contains an out-of-bounds read in pat_smplooped in src/load_pat.cpp. The…","description":"libmodplug through 0.8.9.1 contains an out-of-bounds read in pat_smplooped in src/load_pat.cpp. The function validates only the upper bound of its sample index against MAXSMP and then subtracts one before indexing the 191-byte static array pat_loops, so an index of zero reads pat_loops[-1], one byte…","indicators":{"cves":["CVE-2026-75904"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:18:22.540Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/Konstanty/libmodplug","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/Konstanty/libmodplug/blob/d1b97ed0020bc620a059d3675d1854b40bd2608d/src/load_mid.cpp#L829","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/Konstanty/libmodplug/blob/d1b97ed0020bc620a059d3675d1854b40bd2608d/src/load_pat.cpp#L213-L217","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/Konstanty/libmodplug/issues/103","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/libmodplug-out-of-bounds-read-in-pat-smplooped-via-crafted-midi-file","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/Konstanty/libmodplug/issues/103","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-68927","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-68927 — MobSF is a mobile application security testing tool used. Prior to 4.5.1, get_browsable_activities i…","description":"MobSF is a mobile application security testing tool used. Prior to 4.5.1, get_browsable_activities in mobsf/StaticAnalyzer/views/android/manifest_analysis.py validates only an Android manifest android:host value with valid_host before appending a separately supplied android:port to the URL fetched b…","indicators":{"cves":["CVE-2026-68927"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T18:19:28.350Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/MobSF/Mobile-Security-Framework-MobSF/commit/62563ca429a75b3e5d47a13b958e1d2e7d5e2bbf","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/MobSF/Mobile-Security-Framework-MobSF/pull/2627","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/MobSF/Mobile-Security-Framework-MobSF/releases/tag/v4.5.1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/MobSF/Mobile-Security-Framework-MobSF/security/advisories/GHSA-95px-34x5-p37h","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/MobSF/Mobile-Security-Framework-MobSF/security/advisories/GHSA-95px-34x5-p37h","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-67442","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-67442 — FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. Prior to 1.3.3, DELETE /ap…","description":"FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. Prior to 1.3.3, DELETE /api/roles removes role definitions through server/runtime/users/usrstorage.js but does not remove the deleted role identifier from each user's info.roles array or the runtime usersMap cache. If a permis…","indicators":{"cves":["CVE-2026-67442"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ics"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:17:18.273Z","fetchedAt":"2026-08-21T03:01:29.076Z","references":[{"url":"https://github.com/frangoteam/FUXA/commit/7ce84dc29a691b30016d65db17012bb8b282dcf0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frangoteam/FUXA/pull/2394","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frangoteam/FUXA/releases/tag/v1.3.3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frangoteam/FUXA/security/advisories/GHSA-cqww-jqx5-p32v","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-76042","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-76042 — Use of uninitialized resource in GPU in Google Chrome prior to 151.0.7922.169 allowed a remote attac…","description":"Use of uninitialized resource in GPU in Google Chrome prior to 151.0.7922.169 allowed a remote attacker who had compromised the renderer process to read memory outside the sandbox via a crafted HTML page. (Chromium security severity: High)","indicators":{"cves":["CVE-2026-76042"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:18:28.283Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_0826575033.html","label":"chrome-cve-admin@google.com","domainType":"other"},{"url":"https://issues.chromium.org/issues/536460270","label":"chrome-cve-admin@google.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76014","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-76014 — A vulnerability has been found in BusyBox up to 1.30.1. This vulnerability affects unknown code of t…","description":"A vulnerability has been found in BusyBox up to 1.30.1. This vulnerability affects unknown code of the file networking/wget.c of the component FEATURE_WGET_TIMEOUT Handler. Such manipulation of the argument -T leads to null pointer dereference. Local access is required to approach this attack. The e…","indicators":{"cves":["CVE-2026-76014"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T03:16:53.247Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://gist.github.com/wyxstarry/5c199ec824928c5ae5816aaecbc6df03","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/mirror/busybox/commit/83a40bf7a93c8ac093d33ab452222dd5b9eb57ff","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/mirror/busybox/issues/124","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-76014","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/878212","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391923","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/391923/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-13173","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-13173 — The Eventin WordPress plugin before 4.1.21 does not verify the current user's permission to edit oth…","description":"The Eventin  WordPress plugin before 4.1.21 does not verify the current user's permission to edit other users before assigning roles and updating user metadata during speaker creation, allowing users with contributor-level access and above to modify other users' roles and metadata.","indicators":{"cves":["CVE-2026-13173"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:31.960Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://wpscan.com/vulnerability/f1bb2ee8-85b2-415e-ab41-97b9958e5e70/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-14825","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-14825 — The Quiz and Survey Master (QSM) WordPress plugin before 11.2.4 does not perform a per-object owners…","description":"The Quiz and Survey Master (QSM)  WordPress plugin before 11.2.4 does not perform a per-object ownership check before saving a quiz's front-end text settings, allowing users with contributor-level access and above to modify the text settings of quizzes created by other users.","indicators":{"cves":["CVE-2026-14825","CVE-2026-14826"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:33.610Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://wpscan.com/vulnerability/fb66cb33-e16f-47ee-88d6-5cf141e92a4b/","label":"contact@wpscan.com","domainType":"other"},{"url":"https://wpscan.com/vulnerability/bb9cac20-4df5-4834-89f0-746a5eab20ea/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19406","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-19406 — The Easy Appointments WordPress plugin before 4.0.1 does not restrict one of its appointment-listing…","description":"The Easy Appointments WordPress plugin before 4.0.1 does not restrict one of its appointment-listing REST endpoints to the records belonging to the requesting user, allowing users with contributor-level access to read all bookings on the site, including customer names, schedules, and statuses.","indicators":{"cves":["CVE-2026-19406"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:39.580Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://wpscan.com/vulnerability/53cfb207-8f26-438c-a928-bc9271f312f0/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75583","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-75583 — keeper.sh's calendar module version prior to 2.18.14 contains a server-side request forgery (SSRF) g…","description":"keeper.sh's calendar module version prior to 2.18.14 contains a server-side request forgery (SSRF) guard bypass vulnerability that allows authenticated attackers to reach private network addresses by exploiting a DNS rebinding attack against the two-phase URL validation and connection flow. The SSRF…","indicators":{"cves":["CVE-2026-75583"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T17:21:13.430Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/ridafkih/keeper.sh","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/ridafkih/keeper.sh/commit/aea1cf537b850509e802b388f38cf1482cb6291b","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://github.com/ridafkih/keeper.sh/security/advisories/GHSA-mxxg-qffg-j3p6","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/keeper-sh-calendar-version-prior-to-ssrf-guard-bypass-via-dns-rebinding","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-11617","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-11617 — Tanium addressed a compression bomb vulnerability in Findings.","description":"Tanium addressed a compression bomb vulnerability in Findings.","indicators":{"cves":["CVE-2026-11617"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T21:16:53.373Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://security.tanium.com/TAN-2026-020","label":"3938794e-25f5-4123-a1ba-5cbd7f104512","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18102","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-18102 — IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to overwrite adjacent memor…","description":"IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to overwrite adjacent memory due to an integer underflow during bounds checking.","indicators":{"cves":["CVE-2026-18102"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T21:16:54.270Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://www.ibm.com/support/pages/node/7283297","label":"psirt@us.ibm.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75476","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-75476 — Tanium addressed a compression bomb vulnerability in Threat Response.","description":"Tanium addressed a compression bomb vulnerability in Threat Response.","indicators":{"cves":["CVE-2026-75476"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T21:17:37.143Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://security.tanium.com/TAN-2026-021","label":"3938794e-25f5-4123-a1ba-5cbd7f104512","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76348","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-76348 — In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, a user who holds a Splunk ro…","description":"In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, a user who holds a Splunk role that contains the high-privilege list_search_head_clustering capability could send a read request to Search Head Cluster member control endpoints and change cluster state, which could allow for a d…","indicators":{"cves":["CVE-2026-76348"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:19.680Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0801","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76361","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-76361 — In Splunk SOAR versions below 8.6.0, a user with the \"Administrator\" role could use the /rest/suppor…","description":"In Splunk SOAR versions below 8.6.0, a user with the \"Administrator\" role could use the /rest/support/connectivity/.../check_connectivity endpoint to make Splunk SOAR initiate outbound network connections to arbitrary destinations and determine whether internal hosts and ports are reachable. The Ser…","indicators":{"cves":["CVE-2026-76361"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:21.397Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0804","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76368","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-76368 — In Splunk SOAR versions below 8.6.0, a user who holds a role that contains the playbooks:view permis…","description":"In Splunk SOAR versions below 8.6.0, a user who holds a role that contains the playbooks:view permission could view metadata about a playbook repository that they are not authorized to view. The vulnerability is possible because Playbook History does not check repository permissions before returning…","indicators":{"cves":["CVE-2026-76368"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:22.457Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0804","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76369","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-76369 — In Splunk SOAR versions below 8.6.0, a user who holds the OnPrem Broker role could write files outsi…","description":"In Splunk SOAR versions below 8.6.0, a user who holds the OnPrem Broker role could write files outside the intended Automation Broker log directory. The vulnerability is possible because Automation Broker log uploads accept crafted filename input before writing log files. For more information see Ma…","indicators":{"cves":["CVE-2026-76369"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:22.607Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0804","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76371","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-76371 — In FireAMP versions below 2.1.15, a user who holds a role that can edit, create, or run playbooks in…","description":"In FireAMP versions below 2.1.15, a user who holds a role that can edit, create, or run playbooks in Splunk SOAR could run the add listitem action in a Safe Mode playbook while that action is listed as read-only, which could allow for unauthorized changes to file lists. The vulnerability is possible…","indicators":{"cves":["CVE-2026-76371"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["ransomware"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:22.887Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0806","label":"psirt@cisco.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76884","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-76884 — ERF file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service","description":"ERF file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service","indicators":{"cves":["CVE-2026-76884"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T23:16:19.313Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://gitlab.com/wireshark/wireshark/-/work_items/21415","label":"cve@gitlab.com","domainType":"other"},{"url":"https://www.wireshark.org/security/wnpa-sec-2026-72.html","label":"cve@gitlab.com","domainType":"other"},{"url":"https://gitlab.com/wireshark/wireshark/-/work_items/21415","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76885","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-76885 — Tektronix K12xx file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service","description":"Tektronix K12xx file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service","indicators":{"cves":["CVE-2026-76885"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T23:16:19.430Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://gitlab.com/wireshark/wireshark/-/work_items/21414","label":"cve@gitlab.com","domainType":"other"},{"url":"https://www.wireshark.org/security/wnpa-sec-2026-71.html","label":"cve@gitlab.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76887","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-76887 — Crash in the Wireshark dissection engine in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of serv…","description":"Crash in the Wireshark dissection engine in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service","indicators":{"cves":["CVE-2026-76887"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T23:16:19.677Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://gitlab.com/wireshark/wireshark/-/work_items/21423","label":"cve@gitlab.com","domainType":"other"},{"url":"https://www.wireshark.org/security/wnpa-sec-2026-69.html","label":"cve@gitlab.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76888","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-76888 — RDP protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service","description":"RDP protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service","indicators":{"cves":["CVE-2026-76888"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T23:16:19.810Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://gitlab.com/wireshark/wireshark/-/work_items/21396","label":"cve@gitlab.com","domainType":"other"},{"url":"https://www.wireshark.org/security/wnpa-sec-2026-67.html","label":"cve@gitlab.com","domainType":"other"},{"url":"https://gitlab.com/wireshark/wireshark/-/work_items/21396","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76890","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-76890 — Crash in sharkd in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service","description":"Crash in sharkd in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service","indicators":{"cves":["CVE-2026-76890","CVE-2026-76891"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T23:16:20.107Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://gitlab.com/wireshark/wireshark/-/work_items/21399","label":"cve@gitlab.com","domainType":"other"},{"url":"https://www.wireshark.org/security/wnpa-sec-2026-65.html","label":"cve@gitlab.com","domainType":"other"},{"url":"https://gitlab.com/wireshark/wireshark/-/work_items/21395","label":"cve@gitlab.com","domainType":"other"},{"url":"https://www.wireshark.org/security/wnpa-sec-2026-64.html","label":"cve@gitlab.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76926","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-76926 — BUSMASTER file parser abnormal exit in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service","description":"BUSMASTER file parser abnormal exit in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service","indicators":{"cves":["CVE-2026-76926"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T23:16:21.320Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://gitlab.com/wireshark/wireshark/-/work_items/21435","label":"cve@gitlab.com","domainType":"other"},{"url":"https://www.wireshark.org/security/wnpa-sec-2026-70.html","label":"cve@gitlab.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19699","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-19699 — The GutenKit WordPress plugin before 2.5.0 does not have a sufficient capability check on some of it…","description":"The GutenKit  WordPress plugin before 2.5.0 does not have a sufficient capability check on some of its REST API endpoints, allowing users with the Contributor role and above to retrieve mailing-list audience metadata from the site's connected marketing account.","indicators":{"cves":["CVE-2026-19699"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T06:17:13.167Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://wpscan.com/vulnerability/301f10fd-ac72-4d80-8ca3-402a4a55ba3d/","label":"contact@wpscan.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73542","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-73542 — Multiple SEIKO EPSON printers and scanners contain revoked root certificates. A man-in-the-middle at…","description":"Multiple SEIKO EPSON printers and scanners contain revoked root certificates. A man-in-the-middle attack may allow an attacker to obtain communication data transmitted by the product. As for the details of the affected products and versions, refer to the vendor's information.","indicators":{"cves":["CVE-2026-73542"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T06:17:13.287Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://jvn.jp/en/vu/JVNVU91609598/","label":"vultures@jpcert.or.jp","domainType":"other"},{"url":"https://www.epson.jp/news/info/a-security202608.htm","label":"vultures@jpcert.or.jp","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-64846","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-64846 — Nix is a package manager for Linux and other Unix systems. Prior to 2.35.0, a malicious derivation e…","description":"Nix is a package manager for Linux and other Unix systems. Prior to 2.35.0, a malicious derivation executed with the recursive-nix experimental feature can exploit a time-of-check/time-of-use race involving final symlink handling in the LocalStore restore path. The race can cause writeFile to follow…","indicators":{"cves":["CVE-2026-64846"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:19:16.813Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/NixOS/nix/commit/26679828f74ee6e82a4100904e6361f993ff5390","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/NixOS/nix/pull/15401","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/NixOS/nix/security/advisories/GHSA-6h4g-g5j9-fm5f","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-49996","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-49996 — SecureDrop Client is a desktop app for journalists to securely communicate with sources and handle s…","description":"SecureDrop Client is a desktop app for journalists to securely communicate with sources and handle submissions on the SecureDrop Workstation. Prior to version 1.3.1, a malicious SecureDrop Server could bypass securedrop-proxy's origin limitation by responding with cross-origin redirects. SecureDrop…","indicators":{"cves":["CVE-2026-49996"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T19:16:53.757Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://github.com/freedomofpress/securedrop-client/commit/3c9769b12fb115768d43617635fd2e00737ef2f7","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/freedomofpress/securedrop-client/security/advisories/GHSA-6qxc-pcfg-v6qv","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-77151","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-77151 — A security flaw has been discovered in lin-snow Ech0 up to 5.4.1. Affected by this issue is the func…","description":"A security flaw has been discovered in lin-snow Ech0 up to 5.4.1. Affected by this issue is the function MD5Encrypt of the file internal/util/crypto/crypto.go. Performing a manipulation results in risky cryptographic algorithm. Remote exploitation of the attack is possible. The complexity of an atta…","indicators":{"cves":["CVE-2026-77151"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T20:17:47.253Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://github.com/lin-snow/Ech0/","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/lin-snow/Ech0/commit/9ce19a3b0d0765086a655f45d3a706ec1810404f","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/lin-snow/Ech0/issues/314","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/lin-snow/Ech0/pull/315","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://github.com/lin-snow/Ech0/releases/tag/ech0-5.4.2","label":"cna@vuldb.com","domainType":"primary"},{"url":"https://vuldb.com/cve/CVE-2026-77151","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/submit/881015","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393736","label":"cna@vuldb.com","domainType":"other"},{"url":"https://vuldb.com/vuln/393736/cti","label":"cna@vuldb.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77640","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-77640 — tor before 0.4.9.9 was prone to an infinite loop when decompressing a truncated zlib/gzip stream wit…","description":"tor before 0.4.9.9 was prone to an infinite loop when decompressing a truncated zlib/gzip  stream with done=1. A truncated stream never reaches Z_STREAM_END,  causing zlib to return Z_BUF_ERROR with no input remaining, which  buf_add_compress() mistook for a full output buffer and retried forever. F…","indicators":{"cves":["CVE-2026-77640"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T21:17:11.373Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://gitlab.torproject.org/tpo/core/tor/-/raw/tor-0.4.9.9/ChangeLog","label":"cve@mitre.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-49245","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-49245 — SFTPGo is an open source, event-driven file transfer solution. From 2.2.0 until 2.7.3, the inline qu…","description":"SFTPGo is an open source, event-driven file transfer solution. From 2.2.0 until 2.7.3, the inline query parameter on browsable-share file downloads and authenticated user-file downloads suppresses Content-Disposition: attachment, allowing an attacker-controlled HTML file stored in a share or home di…","indicators":{"cves":["CVE-2026-49245"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":["phishing"],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:20.107Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://github.com/drakkan/sftpgo/commit/b5409a478138fca5f1d369ae5d47f753156cbd15","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/drakkan/sftpgo/releases/tag/v2.7.3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/drakkan/sftpgo/security/advisories/GHSA-3vcg-pv95-pq54","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-77648","source":"nvd","category":"vulnerability","severity":"low","title":"CVE-2026-77648 — In OpenStack Glance through 32.0.0, the /v2/tasks API accepts type=import tasks that bypass import_f…","description":"In OpenStack Glance through 32.0.0, the /v2/tasks API accepts type=import tasks that\nbypass import_filtering_opts, allowing an admin to fetch internal\nURLs from the Glance service network (aka SSRF), as long as https:// or http:// is used. This API has been available only to admins since Xena, and i…","indicators":{"cves":["CVE-2026-77648"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T23:16:28.797Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://wiki.openstack.org/wiki/OSSN/OSSN-0105","label":"cve@mitre.org","domainType":"other"},{"url":"https://www.openwall.com/lists/oss-security/2026/08/11/7","label":"cve@mitre.org","domainType":"other"}],"feedLabel":null},{"id":"cisa-adv-cisa-adds-two-known-exploited-vulnerabilities-to-catalog","source":"cisa-advisories","category":"advisory","severity":"unknown","title":"CISA Adds Two Known Exploited Vulnerabilities to Catalog  ","description":"CISA has added two new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation.  \nCVE-2026-72529 TrueConf Server Missing Authentication for Critical Function Vulnerability  \nCVE-2026-72530 TrueConf Server Code Injection Vulnerability\nThese types…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:00:00.000Z","fetchedAt":"2026-08-21T03:00:00.147Z","references":[{"url":"https://www.cisa.gov/news-events/alerts/2026/08/20/cisa-adds-two-known-exploited-vulnerabilities-catalog","label":"CISA Advisory","domainType":"primary"}],"feedLabel":null},{"id":"cisa-adv-cisa-adds-one-known-exploited-vulnerability-to-catalog","source":"cisa-advisories","category":"advisory","severity":"unknown","title":"CISA Adds One Known Exploited Vulnerability to Catalog   ","description":"CISA has added one new vulnerability to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation.  \nCVE-2026-64849 MLflow Server-Side Request Forgery Vulnerability\nThis type of vulnerability is a frequent attack vector for malicious cyber actors and poses significa…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T12:00:00.000Z","fetchedAt":"2026-08-21T03:00:00.147Z","references":[{"url":"https://www.cisa.gov/news-events/alerts/2026/08/19/cisa-adds-one-known-exploited-vulnerability-catalog","label":"CISA Advisory","domainType":"primary"},{"url":"https://www.cisa.gov/news-events/alerts/2026/08/17/cisa-adds-one-known-exploited-vulnerability-catalog","label":"CISA Advisory","domainType":"primary"}],"feedLabel":null},{"id":"cisa-adv-cisa-adds-four-known-exploited-vulnerabilities-to-catalog","source":"cisa-advisories","category":"advisory","severity":"unknown","title":"CISA Adds Four Known Exploited Vulnerabilities to Catalog   ","description":"CISA has added four new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation.  \nCVE-2026-33824 Microsoft Internet Key Exchange (IKE) Service Extensions Double Free Vulnerability\nCVE-2026-55040 Microsoft SharePoint Weak Authentication Vulnerab…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:00:00.000Z","fetchedAt":"2026-08-21T03:00:00.147Z","references":[{"url":"https://www.cisa.gov/news-events/alerts/2026/08/18/cisa-adds-four-known-exploited-vulnerabilities-catalog","label":"CISA Advisory","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-72813","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72813 — actix-files before 0.6.10 contains a denial of service vulnerability triggered by an empty Range hea…","description":"actix-files before 0.6.10 contains a denial of service vulnerability triggered by an empty Range header in GET requests for static files. When panic is set to abort, remote attackers can crash the process on-demand by sending a GET request with an empty Range header.","indicators":{"cves":["CVE-2026-72813"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T12:16:44.260Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/actix/actix-web/security/advisories/GHSA-gcqf-3g44-vc9p","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/actix-files-before-denial-of-service-via-empty-range-header","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/actix/actix-web/security/advisories/GHSA-gcqf-3g44-vc9p","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-72814","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72814 — The actix-files crate (actix_files) before version 0.6.10 contains an information exposure vulnerabi…","description":"The actix-files crate (actix_files) before version 0.6.10 contains an information exposure vulnerability. When a non-existing folder is passed as the serve_from argument to Files::new(), the mount path defaults to an empty path; the service then joins the request path with this empty path and canoni…","indicators":{"cves":["CVE-2026-72814"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T12:16:44.387Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/actix/actix-web/security/advisories/GHSA-8v2v-wjwg-vx6r","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/actix-web-before-information-disclosure-via-files","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/actix/actix-web/security/advisories/GHSA-8v2v-wjwg-vx6r","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-72815","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72815 — go-chi chi versions >= 5.2.1 and before 5.3.0 contain an IP spoofing vulnerability in the RealIP mid…","description":"go-chi chi versions >= 5.2.1 and before 5.3.0 contain an IP spoofing vulnerability in the RealIP middleware, which blindly trusts the first (leftmost) value of the X-Forwarded-For HTTP header. A remote attacker can bypass IP-based access control lists and rate-limiting mechanisms, and forge log entr…","indicators":{"cves":["CVE-2026-72815"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T12:16:44.507Z","fetchedAt":"2026-08-21T03:01:29.052Z","references":[{"url":"https://github.com/go-chi/chi/security/advisories/GHSA-3fxj-6jh8-hvhx","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/go-chi-chi-ip-spoofing-via-x-forwarded-for-header","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/go-chi/chi/security/advisories/GHSA-3fxj-6jh8-hvhx","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-73051","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-73051 — actix-http versions before 3.12.1 contain an HTTP request smuggling vulnerability in the HTTP/1.1 pa…","description":"actix-http versions before 3.12.1 contain an HTTP request smuggling vulnerability in the HTTP/1.1 parser that accepts requests with both Content-Length and Transfer-Encoding: chunked headers. Unauthenticated remote attackers can exploit this through a front-end intermediary to desynchronize backend…","indicators":{"cves":["CVE-2026-73051"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T12:16:47.820Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/actix/actix-web/security/advisories/GHSA-xhj4-vrgc-hr34","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/actix-http-before-http-request-smuggling-via-cl-te","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19870","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-19870 — Authorization Bypass Through User-Controlled Key in the payroll module in Roskus Prospero Flow CRM b…","description":"Authorization Bypass Through User-Controlled Key in the payroll module in Roskus Prospero Flow CRM before 5.15.10 allows authenticated users holding the read payroll permission to view the salary and banking details of employees of any other company in the instance, and users holding the create payr…","indicators":{"cves":["CVE-2026-19870"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T13:17:38.523Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/Roskus/prospero-flow-crm/commit/59644f910b7d1aec7d1ac962b0354b3ec209977e","label":"4daa8cea-433a-44bd-9456-53b127fc289a","domainType":"primary"},{"url":"https://secur0.com/en/cna/cve-list/cve-2026-19870-idor-in-prospero-flow-crm-allows-cross-tenant-payroll-disclosure-and-creation","label":"4daa8cea-433a-44bd-9456-53b127fc289a","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19871","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-19871 — Use of Hard-coded Credentials in the human resources component in Roskus Prospero Flow CRM before 5.…","description":"Use of Hard-coded Credentials in the human resources component in Roskus Prospero Flow CRM before 5.15.9 allows unauthenticated remote attackers to authenticate as any employee onboarded through the standard flow, knowing only their email address, because the employee save controller falls back to t…","indicators":{"cves":["CVE-2026-19871"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T14:16:51.493Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/Roskus/prospero-flow-crm/commit/5cc01ed958db4ad0a026a8daa1c6a8bb98a43e66","label":"4daa8cea-433a-44bd-9456-53b127fc289a","domainType":"primary"},{"url":"https://secur0.com/en/cna/cve-list/cve-2026-19871-hardcoded-credentials-in-prospero-flow-crm-employee-onboarding","label":"4daa8cea-433a-44bd-9456-53b127fc289a","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19880","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-19880 — Path-traversal vulnerability in QOS.CH Sarl Logback-classic on Java (logback-classic module) allows…","description":"Path-traversal vulnerability in QOS.CH Sarl Logback-classic on Java (logback-classic module) allows path-traversal vulnerability. More specifically, an \nMDC-based discriminator value flows unsanitized into a nested \nFileAppender path, letting an attacker who influences that MDC value \n(e.g. via an H…","indicators":{"cves":["CVE-2026-19880"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T15:17:09.507Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://logback.qos.ch/news.html#1.6.3","label":"vulnerability@ncsc.ch","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-13196","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-13196 — Nozomi Networks Labs identified a CWE-787: Out-of-bounds Write vulnerability in the process-image ma…","description":"Nozomi Networks Labs identified a CWE-787: Out-of-bounds Write vulnerability in the process-image management functionality of KUNBUS piControl in version 2.6.2 that allows a local authenticated attacker with device configuration access to write attacker-controlled data outside the bounds of the proc…","indicators":{"cves":["CVE-2026-13196"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T16:16:49.397Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://www.nozominetworks.com/labs/vulnerability-advisories-cve-2026-13196","label":"prodsec@nozominetworks.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-13197","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-13197 — Nozomi Networks Labs identified a CWE-362: Concurrent Execution using Shared Resource with Improper…","description":"Nozomi Networks Labs identified a CWE-362: Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') vulnerability in the configuration and process-image management functionality of KUNBUS piControl in version 2.6.2 that allows a local authenticated attacker to trig…","indicators":{"cves":["CVE-2026-13197","CVE-2026-13198"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T16:16:49.523Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://www.nozominetworks.com/labs/vulnerability-advisories-cve-2026-13197","label":"prodsec@nozominetworks.com","domainType":"other"},{"url":"https://www.nozominetworks.com/labs/vulnerability-advisories-cve-2026-13198","label":"prodsec@nozominetworks.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19884","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-19884 — In Eclipse Theia versions up to and including 1.69.0, opening a folder starts source control integra…","description":"In Eclipse Theia versions up to and including 1.69.0, opening a folder starts source control integration without requiring the user to trust the folder first. This affects applications built on Theia that include the git integration, such as the Theia IDE. Both Theia's own `@theia/git` extension and…","indicators":{"cves":["CVE-2026-19884"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T16:16:55.073Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/eclipse-theia/theia/pull/16809","label":"emo@eclipse.org","domainType":"primary"},{"url":"https://github.com/eclipse-theia/theia/pull/17098","label":"emo@eclipse.org","domainType":"primary"},{"url":"https://github.com/eclipse-theia/theia/pull/17148","label":"emo@eclipse.org","domainType":"primary"},{"url":"https://gitlab.eclipse.org/security/cve-assignment/-/work_items/231","label":"emo@eclipse.org","domainType":"other"},{"url":"https://gitlab.eclipse.org/security/vulnerability-reports/-/work_items/175","label":"emo@eclipse.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-57469","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-57469 — Nozomi Networks Labs identified a CWE-352: Cross-Site Request Forgery (CSRF) vulnerability in the we…","description":"Nozomi Networks Labs identified a CWE-352: Cross-Site Request Forgery (CSRF) vulnerability in the web-based configuration backend of KUNBUS PiCtory in version 2.16.0 that allows a remote unauthenticated attacker to perform state-changing operations in the context of an authenticated operator, includ…","indicators":{"cves":["CVE-2026-57469"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T16:16:58.043Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://www.nozominetworks.com/labs/vulnerability-advisories-cve-2026-57469","label":"prodsec@nozominetworks.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-57471","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-57471 — Nozomi Networks Labs identified a CWE-22: Improper Limitation of a Pathname to a Restricted Director…","description":"Nozomi Networks Labs identified a CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in the file management functionality of the XML-RPC management interface of KUNBUS RevPiPyLoad in version 0.11.0 that allows a local unauthenticated attacker to read…","indicators":{"cves":["CVE-2026-57471","CVE-2026-57472"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T16:16:58.177Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://www.nozominetworks.com/labs/vulnerability-advisories-cve-2026-57471","label":"prodsec@nozominetworks.com","domainType":"other"},{"url":"https://www.nozominetworks.com/labs/vulnerability-advisories-cve-2026-57472","label":"prodsec@nozominetworks.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-47191","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-47191 — kas is a setup tool for bitbake based projects. Prior to version 5.3, when relying solely on a git c…","description":"kas is a setup tool for bitbake based projects. Prior to version 5.3, when relying solely on a git commit ID (SHA-1 or SHA-256) to qualify if a checkout of a repository is equivalent to the state validated while adding its commit ID to a kas configuration, users may be tricked to check out a branch…","indicators":{"cves":["CVE-2026-47191"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T17:18:15.410Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/pypa/advisory-database/tree/main/vulns/kas/PYSEC-2026-2544.yaml","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/siemens/kas/commit/4cb4a3d01122ffaec9feaae768a5814092f6f9b5","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/siemens/kas/security/advisories/GHSA-qjwp-hrq6-r26r","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-47192","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-47192 — kas is a setup tool for bitbake based projects. Starting in version 4.8 and prior to version 5.3, ka…","description":"kas is a setup tool for bitbake based projects. Starting in version 4.8 and prior to version 5.3, kas checks out and processes repositories regarding configuration includes prior to validating signatures of those repositories. This may allow to replace on original repository with one under the contr…","indicators":{"cves":["CVE-2026-47192"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T17:18:15.563Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/pypa/advisory-database/tree/main/vulns/kas/PYSEC-2026-2543.yaml","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/siemens/kas/commit/4cb4a3d01122ffaec9feaae768a5814092f6f9b5","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/siemens/kas/commit/5b2114becfc154b16ef496d24f8c2191a2297f57","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/siemens/kas/security/advisories/GHSA-4vqc-wpwg-vh7j","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/siemens/kas/security/advisories/GHSA-qjwp-hrq6-r26r","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-49986","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-49986 — The Cortex MCP server (`neuro-cortex-memory`), a cross-platform persistent memory MCP, prior to vers…","description":"The Cortex MCP server (`neuro-cortex-memory`), a cross-platform persistent memory MCP, prior to version 3.17.1 treats the `CLAUDE_PROJECT_DIR` environment variable — automatically set by Claude Code to the currently open project directory — as a trusted Cortex developer checkout. When the `open_visu…","indicators":{"cves":["CVE-2026-49986"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T17:18:27.147Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/cdeust/Cortex/releases/tag/v3.17.1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cdeust/Cortex/security/advisories/GHSA-gvpp-v77h-5w8g","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/pypa/advisory-database/tree/main/vulns/neuro-cortex-memory/PYSEC-2026-2676.yaml","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cdeust/Cortex/security/advisories/GHSA-gvpp-v77h-5w8g","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-49989","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-49989 — CrateDB is a distributed SQL database. Prior to versions 6.2.8 and 6.3.2, any authenticated user can…","description":"CrateDB is a distributed SQL database. Prior to versions 6.2.8 and 6.3.2, any authenticated user can read or delete any blob whose SHA-1 digest they know, and can plant new blobs unconditionally, in any blob table, regardless of `GRANT`s. CrateDB has two ways to access blob storage: SQL (`SELECT ...…","indicators":{"cves":["CVE-2026-49989"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T17:18:27.290Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/crate/crate/security/advisories/GHSA-2xv8-gjwh-fv8p","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/crate/crate/security/advisories/GHSA-2xv8-gjwh-fv8p","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-73107","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-73107 — Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.","description":"Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.","indicators":{"cves":["CVE-2026-73107","CVE-2026-39925","CVE-2026-18932","CVE-2026-72044","CVE-2026-72246","CVE-2026-74511","CVE-2026-60106","CVE-2026-60107","CVE-2026-54385","CVE-2026-73692","CVE-2026-73103","CVE-2026-73104","CVE-2026-73105","CVE-2026-73106","CVE-2026-73111","CVE-2026-73112","CVE-2026-74226","CVE-2026-74227","CVE-2026-74228","CVE-2026-18502","CVE-2026-18862","CVE-2026-19561","CVE-2026-19562","CVE-2026-19563","CVE-2026-76632","CVE-2026-72845","CVE-2026-46533","CVE-2026-46534","CVE-2026-46535","CVE-2026-46536","CVE-2026-46537","CVE-2026-53993","CVE-2026-6260","CVE-2026-6822","CVE-2026-8717","CVE-2026-63723","CVE-2026-72858"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T17:20:32.280Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[],"feedLabel":null},{"id":"nvd-CVE-2026-49263","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-49263 — Capstone is a disassembly framework. Prior to version 6.0.0-Alpha9, Capstone's WebAssembly backend a…","description":"Capstone is a disassembly framework. Prior to version 6.0.0-Alpha9, Capstone's WebAssembly backend accepts attacker-controlled raw WASM instruction bytes through the public `cs_disasm()` and `cs_disasm_iter()` APIs. For a large but well-formed `br_table` instruction, the WASM decoder accumulates the…","indicators":{"cves":["CVE-2026-49263"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T18:17:30.643Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/capstone-engine/capstone/blob/251c5bb4bc9bb92973e738ae3c5f4ef86f103356/ChangeLog#L102","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/capstone-engine/capstone/security/advisories/GHSA-5m9f-vqcm-g5pr","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/capstone-engine/capstone/security/advisories/GHSA-5m9f-vqcm-g5pr","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-63361","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-63361 — LimeSurvey Community Edition 7.0.5 contains an authenticated reflected cross-site scripting vulnerab…","description":"LimeSurvey Community Edition 7.0.5 contains an authenticated reflected cross-site scripting vulnerability in the HTML editor popup endpoint. The text and name query parameters are passed through a blacklist sanitizer and then rendered without context-appropriate output encoding.","indicators":{"cves":["CVE-2026-63361"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T18:18:53.650Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://fluidattacks.com/es/advisories/mercedes","label":"help@fluidattacks.com","domainType":"other"},{"url":"https://github.com/LimeSurvey/LimeSurvey","label":"help@fluidattacks.com","domainType":"primary"},{"url":"https://github.com/LimeSurvey/LimeSurvey/commit/a8993bfd05c4a11255b8400ed9c41a2c22e93aa4","label":"help@fluidattacks.com","domainType":"primary"},{"url":"https://fluidattacks.com/es/advisories/mercedes","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73850","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-73850 — Emlog is an open source website building system. In 2.6.20 and earlier, there is a SQL injection vul…","description":"Emlog is an open source website building system. In 2.6.20 and earlier, there is a SQL injection vulnerability in the queryDatabase function in ai.php.","indicators":{"cves":["CVE-2026-73850"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T18:19:10.137Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://github.com/emlog/emlog/security/advisories/GHSA-jffg-rpvp-2qx7","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/emlog/emlog/security/advisories/GHSA-jffg-rpvp-2qx7","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-18403","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-18403 — LimeSurvey Community Edition 7.0.5 contains an authenticated SQL injection vulnerability in the Cent…","description":"LimeSurvey Community Edition 7.0.5 contains an authenticated SQL injection vulnerability in the Central Participant Database (CPDB) workflow that copies survey participant tokens to the central participant list.","indicators":{"cves":["CVE-2026-18403"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T19:17:17.343Z","fetchedAt":"2026-08-21T03:01:29.053Z","references":[{"url":"https://fluidattacks.com/es/advisories/rihanna","label":"help@fluidattacks.com","domainType":"other"},{"url":"https://github.com/LimeSurvey/LimeSurvey/","label":"help@fluidattacks.com","domainType":"primary"},{"url":"https://github.com/LimeSurvey/LimeSurvey/commit/7735ce31cea1cad087b0c8556cb65a1c09e29cbd","label":"help@fluidattacks.com","domainType":"primary"},{"url":"https://fluidattacks.com/es/advisories/rihanna","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19908","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-19908 — PAX Technology Q80 XCB Daemon Missing Authentication Vulnerability. This vulnerability allows networ…","description":"PAX Technology Q80 XCB Daemon Missing Authentication Vulnerability. This vulnerability allows network-adjacent attackers to disclose sensitive information and modify configuration on affected installations of PAX Technology Q80. Authentication is not required to exploit this vulnerability.\n\nThe spec…","indicators":{"cves":["CVE-2026-19908"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T20:16:52.303Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-524/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-27871","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-27871 — Cwe-327 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Johnson Controls TL280 all…","description":"Cwe-327 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Johnson Controls TL280 allows Cryptanalytic Attack.\n\nThis issue affects TL280: before 5.63.","indicators":{"cves":["CVE-2026-27871"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T20:16:52.670Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://www.johnsoncontrols.com/trust-center/cybersecurity/security-advisories","label":"productsecurity@jci.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-34492","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-34492 — External control of file name or path vulnerability in Johnson Controls Airwall allows : File Manipu…","description":"External control of file name or path vulnerability in Johnson Controls Airwall allows : File Manipulation.\n\nThis issue affects Airwall: before 4.1.","indicators":{"cves":["CVE-2026-34492"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T20:16:52.817Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://www.johnsoncontrols.com/trust-center/cybersecurity/security-advisories","label":"productsecurity@jci.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-64887","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-64887 — Use of hard-coded cryptographic key vulnerability in Johnson Controls Airwall allows : Cryptanalytic…","description":"Use of hard-coded cryptographic key vulnerability in Johnson Controls Airwall allows : Cryptanalytic Attack.\n\nThis issue affects Airwall: before 4.1.","indicators":{"cves":["CVE-2026-64887"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T20:16:55.603Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://www.johnsoncontrols.com/trust-center/cybersecurity/security-advisories","label":"productsecurity@jci.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-67365","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-67365 — Joomla Extension - icagenda.com - Unauthenticated SQL injection in iCagenda < 4.0.0-4.0.11 - Unauthe…","description":"Joomla Extension - icagenda.com - Unauthenticated SQL injection in iCagenda < 4.0.0-4.0.11 - Unauthenticated SQL injection in mod_icagenda_calendar (iCagenda), reachable via com_ajax with no session, token or account.","indicators":{"cves":["CVE-2026-67365"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T20:16:55.850Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://www.icagenda.com/","label":"security@joomla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-71571","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-71571 — Joomla Extension - icagenda.com - Authenticated SQL injection via unescaped numeric filter in iCagen…","description":"Joomla Extension - icagenda.com -  Authenticated SQL injection via unescaped numeric filter in iCagenda < 2.0.0-4.0.11 - Backend operators with permissions to access iCagenda could inject SQL.","indicators":{"cves":["CVE-2026-71571"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T20:16:56.340Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://www.icagenda.com/","label":"security@joomla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-67366","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-67366 — Joomla Extension - icagenda.com - CSRF on frontend registration actions in iCagenda < 2.0.0-4.0.11 -…","description":"Joomla Extension - icagenda.com - CSRF on frontend registration actions in iCagenda < 2.0.0-4.0.11 - Multiple state changing operations in the frontend are callable without a CSRF token check.","indicators":{"cves":["CVE-2026-67366"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T21:17:51.040Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://www.icagenda.com/","label":"security@joomla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-71570","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-71570 — Joomla Extension - icagenda.com - ACL bypass allowing arbitrary user enumeration < 2.0.0-4.0.11 - A…","description":"Joomla Extension - icagenda.com - ACL bypass allowing arbitrary user enumeration < 2.0.0-4.0.11 - A backend operator granted access scoped to `com_icagenda` only could enumerate Joomla user profiles.","indicators":{"cves":["CVE-2026-71570"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T21:17:56.807Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://www.icagenda.com/","label":"security@joomla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73682","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-73682 — Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. CVE-2026…","description":"Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. CVE-2026-73294 published by GitHub","indicators":{"cves":["CVE-2026-73682"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T21:17:58.033Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[],"feedLabel":null},{"id":"nvd-CVE-2026-63649","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-63649 — The Windows interactive service in OpenVPN 2.4.0 through 2.6.21 and 2.7_alpha1 through 2.7.5 allows…","description":"The Windows interactive service in OpenVPN 2.4.0 through 2.6.21 and 2.7_alpha1 through 2.7.5 allows local authenticated users to bypass the trusted configuration directory constraint and load arbitrary configuration files via crafted options that bypass whitelist checks","indicators":{"cves":["CVE-2026-63649"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T23:16:32.507Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://community.openvpn.net/ReleaseHistory#openvpn-2622-released-5-august-2026","label":"security@openvpn.net","domainType":"other"},{"url":"https://community.openvpn.net/ReleaseHistory#openvpn-276-released-5-august-2026","label":"security@openvpn.net","domainType":"other"},{"url":"https://community.openvpn.net/Security%20Announcements/CVE-2026-63649","label":"security@openvpn.net","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-63650","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-63650 — OpenVPN 2.7_alpha1 through 2.7.5 using mbedTLS allows remote authenticated users to be misidentified…","description":"OpenVPN 2.7_alpha1 through 2.7.5 using mbedTLS allows remote authenticated users to be misidentified by ignoring the configured X.509 username identity lookup field","indicators":{"cves":["CVE-2026-63650"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T23:16:32.653Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://community.openvpn.net/ReleaseHistory#openvpn-276-released-5-august-2026","label":"security@openvpn.net","domainType":"other"},{"url":"https://community.openvpn.net/Security%20Announcements/CVE-2026-63650","label":"security@openvpn.net","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16007","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-16007 — AppFlowy's qcuiknote feature is affected by a SQL injection vulnerability. Authenticated users with…","description":"AppFlowy's qcuiknote feature is affected by a SQL injection vulnerability. Authenticated users with access to the feature can inject arbitrary SQL to exfiltrate data in the underlying SQL database.","indicators":{"cves":["CVE-2026-16007"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:16:56.063Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://projectblack.io/blog/appflowy-authenticated-sql-injection/","label":"ab69c47f-b95e-4bf2-b2d9-4b1fd1b24b4a","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-68455","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-68455 — In the Linux kernel, the following vulnerability has been resolved: liveupdate: validate session typ…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nliveupdate: validate session type before performing operation\n\nThe sessions ioctls are not applicable to all session types. PRESERVE_FD\nis only applicable to outgoing sessions. RETRIEVE_FD and FINISH are only\nvalid for incoming ses…","indicators":{"cves":["CVE-2026-68455"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:17:17.160Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://git.kernel.org/stable/c/3dc8a46d08a8a060d4128e9f497060b8d03c1595","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/507e3b479f9c6d85135eb5e1a77fb3fddb259ad8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-68456","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-68456 — In the Linux kernel, the following vulnerability has been resolved: usb: atm: ueagle-atm: wait for p…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nusb: atm: ueagle-atm: wait for pre-firmware load in .disconnect()\n\nueagle-atm uses the asynchronous request_firmware_nowait() in .probe(),\nbut does not wait for its completion, not even in .disconnect(); so, if the\ndevice is unplug…","indicators":{"cves":["CVE-2026-68456"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:17:32.713Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://git.kernel.org/stable/c/509b51327320bdeaef1969248177a446ded073ab","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/76861031b43a18065d13f9ffb8595d25c7576005","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bbfedc84714064ea4845e6b76f96316eb5bb65d8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c581e30ae5b332d8acef64475a211b3f82099941","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d85f19aaef42a03e3e4765d659c761c8750a7f23","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ddcdac47e1f2651c7be60e299f98faf981522797","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e2674dfbed8a30d57e2bc872c4bfa6c3eec918bf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f2a6abc670104fc3e383ee3b1cf35c070485e3df","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-68459","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-68459 — In the Linux kernel, the following vulnerability has been resolved: f2fs: fix potential deadlock in…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nf2fs: fix potential deadlock in gc_merge path of f2fs_balance_fs()\n\nWhen we mount device w/ gc_merge mount option, we may suffer below\npotential deadlock:\n\nKworker\t\t\t\t\tGC trehad\t\t\tTruncator\n- f2fs_write_cache_pages\n - f2fs_write_si…","indicators":{"cves":["CVE-2026-68459","CVE-2026-68460"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:18:15.460Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://git.kernel.org/stable/c/1436031b33fa23ab1ce7df5bc5500093413e8acf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8071500a8124e5a6d47d901a8d5ffd91743107a1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/89479a27fa4e1e11f378b3724944eabceb84f114","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8b4468ec023d0d1b4669dfb867588997cc03a06b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/aa807064473abd6f2cafe419fb77ea402d3e3104","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b885c7783c19c36c7bf899492a0bffcd68afa8c7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/eb02f218aacb36365e0ca2339cbae81fb05d31a5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/162d57d8eb8440ad2d90469bf2c116abb04a9d33","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/345c1d1ff751104ebdc32c145be80de566c5150f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/44480f7e3f8369671452c0d262831c51aa5a9c20","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/998536c96b6ad9d99cd85dea11452ab83dc7c88d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cf8b5937b7b258927ccca267995e13e76a07b38e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dd3114870771562036fdcf5abe813956f36d224d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e273116fbb6dfd7f027c0623e7c5109241be1919","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f51db99287b5acf81513ece82a0c95eb5db008e3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-68463","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-68463 — In the Linux kernel, the following vulnerability has been resolved: mmc: sdhci-esdhc-imx: use pm_run…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmmc: sdhci-esdhc-imx: use pm_runtime_resume_and_get() in suspend\n\nReplace pm_runtime_get_sync() with pm_runtime_resume_and_get() to\nsimplify error handling. pm_runtime_resume_and_get() automatically\ndrops the usage counter on failu…","indicators":{"cves":["CVE-2026-68463"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:18:39.910Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://git.kernel.org/stable/c/5b8f11cbe8ad5726b2b63ff1574d5cffa4df18c2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6355749aebf6c78081f7096a52edcd28d2aa0fab","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8da5930144712412d85e7f868693d96ec5c2018c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-68464","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-68464 — In the Linux kernel, the following vulnerability has been resolved: mmc: sdhci-esdhc-imx: disable ir…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmmc: sdhci-esdhc-imx: disable irq during suspend to fix unhandled interrupt\n\nWhen using WIFI out-of-band wakeup, an \"irq xxx: nobody cared\" warning\noccurs. This happens because the usdhc interrupt is not disabled during\nsystem susp…","indicators":{"cves":["CVE-2026-68464"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:19:25.430Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://git.kernel.org/stable/c/4f96903e2fd228aa96013372402d650f6dbe5cb3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9bf4ee05a1109d889de9151ee78bd80293923f70","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9d87eaf985cef9581b6ed99b461b38e8cd666480","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-68465","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-68465 — In the Linux kernel, the following vulnerability has been resolved: mmc: sdhci-esdhc-imx: fix esdhc_…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmmc: sdhci-esdhc-imx: fix esdhc_change_pinstate() to allow default state restore\n\nesdhc_change_pinstate() checks for pins_100mhz and pins_200mhz at the\ntop of the function and returns -EINVAL if either is not defined. This\nprevents…","indicators":{"cves":["CVE-2026-68465"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:19:34.433Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://git.kernel.org/stable/c/5adc14cd4b905629d5b9163b3a416dcab24c7ce2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/aa276aa6cbfbc5622bf974cf9be1d579ce4a5fab","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bb72b2398c05fd0a4ebf13f49c7d599d7023d484","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-68468","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-68468 — In the Linux kernel, the following vulnerability has been resolved: mtd: virt-concat: free duplicate…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmtd: virt-concat: free duplicate generated name\n\nEvery MTD registration runs mtd_virt_concat_create_join().  Once a\nvirtual concat has already been registered, the function builds the same\nname again and takes the equal-name branch…","indicators":{"cves":["CVE-2026-68468"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:19:57.520Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://git.kernel.org/stable/c/0e65079d28e5c461b6813ea5821be4dfff24ff63","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/caa0ecbeff4f7fbf70f22bd8ca598918bffb1b78","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-68469","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-68469 — In the Linux kernel, the following vulnerability has been resolved: wifi: mwifiex: fix permanently b…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: mwifiex: fix permanently busy scans after multiple roam iterations\n\nIn order for the firmware to sleep, the driver has to confirm a\npreviously received sleep request. The normal sequence of evets goes\nlike this:\nEVENT_SLEEP -…","indicators":{"cves":["CVE-2026-68469"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:19:57.620Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://git.kernel.org/stable/c/1bc55db2d34756bd53e4460dbb699619ee13cd7f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2ed36b2586f16c480ed58de303af704c2235e16d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/31a2c409f8f58d20f0f6391c151421155768ed77","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5796eabe435d83544b6fe39851ce47ca68fdb778","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6126e12bf8c87badeab41a164c9689ac88e5c160","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a59cfa165aee3e29d06145041c0ebe46a51de604","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d78a407bad6f500884a8606aea1a5a9207be4030","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/deb5f0ae384f1cf41fccaf6375266db2f2911b2b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-68475","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-68475 — In the Linux kernel, the following vulnerability has been resolved: reset: sunxi: fix memory region…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nreset: sunxi: fix memory region leak on ioremap failure\n\nIn sunxi_reset_init(), when ioremap() fails, the memory region obtained\nvia request_mem_region() is not released, leading to a resource leak.\n\nAdd an err_mem_region label to…","indicators":{"cves":["CVE-2026-68475"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:20:35.067Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://git.kernel.org/stable/c/01e43f4e7d12dae6fa82ae1b2e91c9ce07e06cd8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1a8c89f8c112c75e84ff9a140f969e372aed0c9a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/23af4ea217800a20c405d72e82b11e24e27721f3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6dc0c8cd9c8a84808c6df760024d2604bc6d31fe","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/82753ac86cb3d641b8634a61335fd0f04a61cc1a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b4d7333849839ff42e1bc802d5b5f63d71c65add","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d826d3e04c5bd9d284ba29f330246a317a8a7023","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ec836995c00a1968e403ef6beb53a73a9b0f318c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-68478","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-68478 — In the Linux kernel, the following vulnerability has been resolved: memstick: ms_block: reject a car…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmemstick: ms_block: reject a card that reports too many blocks\n\nmsb_ftl_initialize() computes the zone count from the card block count\nwith no bound:\n\n\tmsb->zone_count = msb->block_count / MS_BLOCKS_IN_ZONE;\n\t...\n\tfor (i = 0; i < m…","indicators":{"cves":["CVE-2026-68478"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:20:47.573Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://git.kernel.org/stable/c/39151f0708c84221e94cdd6aa070aba5d7cb1c01","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/47f0c7d856c67c9935546d2644f18c0d0131b449","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/718178f524b98bc920d74bc771aed823c8b81425","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8937b11f1c3896e066c3fb07387ba17bc8c50b8a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a4b9961efe8640f50800811b4a2b2046b3dc2ccc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b86666ac4009a252501cc17242582a7ec9ed976e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d5db3439ee8d1c165a09a47e984c4ba508c130df","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f1c675ecf6e5ad02722f0019f729d8bb588d502e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72004","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72004 — In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: fix memory leak…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: mac80211: fix memory leak in ieee80211_register_hw()\n\nIf kmemdup() fails while copying supported band structures, the error\npath jumps to fail_rate. This skips rate_control_deinitialize() and\nleaks the initialized local->rate…","indicators":{"cves":["CVE-2026-72004"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:20:58.987Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://git.kernel.org/stable/c/08b71bd92317f99642b842cfc0d30200868162fc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3d8b9b290421c3cd505fcd2f551f143f8142786a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/45e9ac538cdff7bce656d731114a64eda85af0d7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/95fc02722edde02946d0d475221f2b2054d3d8ba","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a02b52fe54f7b5107aefa1ce28c2f69749c57616","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a7584f261e64fe14e45bdf70f343e16c1ee3a037","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bdc0b8bfdc142439d6708b072e8159eb515ee7b0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f01eec75fd372961550b928902f3a2c11fca1daf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72006","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72006 — In the Linux kernel, the following vulnerability has been resolved: net/mlx5: free mlx5_st_idx_data…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet/mlx5: free mlx5_st_idx_data on final dealloc\n\nWorkloads that repeatedly allocate and release mkeys carrying TPH\nsteering-tag hints (e.g. churning RDMA MRs) leak one\nstruct mlx5_st_idx_data per cycle; kmemleak flags it as unrefe…","indicators":{"cves":["CVE-2026-72006"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:20:59.250Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://git.kernel.org/stable/c/262da8b6ea03d01ee7ed01ad309e4c89941f6b14","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6eb4cf2fa8997f62c11e0006dc010a1fd89c5a75","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/df6134b527a88b3e65ba6ae5073664af091d5fd2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72007","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72007 — In the Linux kernel, the following vulnerability has been resolved: pmdomain: imx: Fix i.MX8MP VC800…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\npmdomain: imx: Fix i.MX8MP VC8000E power up sequence\n\nPer errata[1]:\nERR050531: VPU_NOC power down handshake may hang during VC8000E/VPUMIX\npower up/down cycling.\nDescription: VC8000E reset de-assertion edge and AXI clock may have…","indicators":{"cves":["CVE-2026-72007"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:20:59.350Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://git.kernel.org/stable/c/25e252bcf1593b420b12a7231d9dd64b885a2ae2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4907f4c2d98b97e640191af5bcf2814ee1034b76","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4ff3960f3527189bc115a927ed3561c758f562f1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/87af3ebc112fb3f06753794390daf0f665f151b4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c498928f85651b56a4041ea165a22037eae69580","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72008","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72008 — In the Linux kernel, the following vulnerability has been resolved: pmdomain: mediatek: Fix possible…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\npmdomain: mediatek: Fix possible nullptr KP in HWV cleanup/on-check\n\nShould probe fail for HW_VOTER type power domains, this driver was\nunconditionally trying to perform cleanup for DIRECT_CTL domains,\nbut only after checking if th…","indicators":{"cves":["CVE-2026-72008"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:20:59.473Z","fetchedAt":"2026-08-21T03:01:29.054Z","references":[{"url":"https://git.kernel.org/stable/c/36c2d7728540252474752172027f0113028ab00c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a4876f11aa1d076802676e23f8af500706e780e3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72010","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72010 — In the Linux kernel, the following vulnerability has been resolved: cgroup/cpuset: rebind mm mempoli…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncgroup/cpuset: rebind mm mempolicy to effective_mems, not mems_allowed\n\nCreating a child cpuset where cpuset.mems is never set leads to a div/0\nwhen a VMA mempolicy with MPOL_F_RELATIVE_NODES rebinds in response to a\nCPU hotplug ev…","indicators":{"cves":["CVE-2026-72010"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:20:59.670Z","fetchedAt":"2026-08-21T03:01:29.055Z","references":[{"url":"https://git.kernel.org/stable/c/02f67c4f88be8e3dbd91951d13cdcc5bcc82e9c7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4b06449384b9ee5b3372bab60601ba5cd4162086","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b7adeba2a21c98c7b20f18e27e3ead86bdb5e08d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b983c56426383e4a06fa5970c4e33cee879b1482","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c17f06d8a085d6be58b544a440ce243f5e441a60","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c844b7d9a9586de15dd28c06da5cc7f6ab28787d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fc680afc510157f6b137956011c09abc23eb0842","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fcc8c310539c3cc523419113b227161a96b50550","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72011","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72011 — In the Linux kernel, the following vulnerability has been resolved: s390/diag: Add missing array_ind…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ns390/diag: Add missing array_index_nospec() call to memtop_get_page_count()\n\n'level' is user space controlled and used to read from an array. Add the\nmissing array_index_nospec() call to prevent speculative execution.","indicators":{"cves":["CVE-2026-72011"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:20:59.800Z","fetchedAt":"2026-08-21T03:01:29.055Z","references":[{"url":"https://git.kernel.org/stable/c/83fe36f81200b7a85f8efe0a68a4e58be84d5f64","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b7577fe4c47a31ca7c99714c53244a44af03cdfe","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c6b4d454865a81ceea1422243aaaedc363b6f713","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72013","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72013 — In the Linux kernel, the following vulnerability has been resolved: riscv: Prevent NULL pointer dere…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nriscv: Prevent NULL pointer dereference in machine_kexec_prepare()\n\nA NULL pointer dereference issue is noticed in riscv's\nmachine_kexec_prepare(), where image->segment[i].buf might be NULL and\ncopied unchecked.\n\nThe NULL buf comes…","indicators":{"cves":["CVE-2026-72013"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:00.033Z","fetchedAt":"2026-08-21T03:01:29.055Z","references":[{"url":"https://git.kernel.org/stable/c/606cc45e871e34b80a2f63874f069387a5b44176","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6ad6954492697681ebcfc1beb0eb384406cd4b65","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/81bbcff0c053c4f5c711c31a9b72fc492bd96c3f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b5f92cc4e24a298bf390b0b189a4b888c0900161","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c462e15497dc40abe369b3be7a2c91ac5d1be6f9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d5b2752a17efc165793ae38f2c24b5ed9c04ffde","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/eadd0c2c76aee6a738f17f251434c77db3c606c8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72015","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72015 — In the Linux kernel, the following vulnerability has been resolved: fs/resctrl: Fix double-add of ps…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nfs/resctrl: Fix double-add of pseudo-locked region's RMID to free list\n\nA pseudo-locked group's RMID is freed when it is created. On unmount\nrmdir_all_sub() unconditionally frees all RMID of all groups, resulting\nin a double-free o…","indicators":{"cves":["CVE-2026-72015"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:00.307Z","fetchedAt":"2026-08-21T03:01:29.055Z","references":[{"url":"https://git.kernel.org/stable/c/52007bfdce5310e8c8a29849bfbfb188a1e50ca0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9168176894332312c12ef052e784735dbf4ffe3f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b2fe9e140aa94b2816aab7ebc692b543e418f5e3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b9f089723aee892efc77c349ae47a6b452b293c4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f7628eea9212e185a09df3aea603ca8580b8678d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72016","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72016 — In the Linux kernel, the following vulnerability has been resolved: cpu/hotplug: Fix NULL kobject wa…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncpu/hotplug: Fix NULL kobject warning in cpuhp_smt_enable()\n\nOn arm64, when booting with `maxcpus` greater than the number of present\nCPUs (e.g., QEMU -smp cpus=4,maxcpus=8), some CPUs are marked as 'present'\nbut have not yet been…","indicators":{"cves":["CVE-2026-72016"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:00.433Z","fetchedAt":"2026-08-21T03:01:29.055Z","references":[{"url":"https://git.kernel.org/stable/c/901a489d89ee9c854624c8444090e38e70aed234","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ccdf1770a4ba27e31599d24ad970d77a371c7912","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f9a82544c7174851f5c7524622f5966dcafd3a47","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72017","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72017 — In the Linux kernel, the following vulnerability has been resolved: net: macb: drop in-flight Tx SKB…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: macb: drop in-flight Tx SKBs on close\n\nThe MACB driver has since forever leaked the outgoing SKBs that\nhave not yet been marked as completed. They live in queue->tx_skb\nwhich gets freed without remorse nor checking.\n\nmacb_free…","indicators":{"cves":["CVE-2026-72017"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:00.550Z","fetchedAt":"2026-08-21T03:01:29.055Z","references":[{"url":"https://git.kernel.org/stable/c/109241d9880488aafd8e104832b4d4859ad57244","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2143fdc0ce27adbb1caaa1a97e0bfb9f3750aef4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/26b131b2d5b55a81ef6182769d28105a870c0eb2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/27f575836cfebbf872dec020428742b10650a955","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6124bd785073659c99385094657b77382ebce11b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72022","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72022 — In the Linux kernel, the following vulnerability has been resolved: llc: fix SAP refcount leak in ll…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nllc: fix SAP refcount leak in llc_ui_autobind()\n\nllc_ui_autobind() opens a SAP after choosing a dynamic LSAP.\nllc_sap_open() returns a reference owned by the caller, and\nllc_sap_add_socket() takes a second reference for the socket'…","indicators":{"cves":["CVE-2026-72022"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:01.193Z","fetchedAt":"2026-08-21T03:01:29.055Z","references":[{"url":"https://git.kernel.org/stable/c/21a537606fe35be2b85971a5fd35c0023b6ef98f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/61a7ff4a62003b55a15022567486741b3bd83914","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/660667cd406648bbaffbd5c0d897c2263a852f11","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/79dc4b508e3f2649390a1f745f7657813e5938ec","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a2f9fa31ae021ef1fdcaf3ab17bd49f9223dd6a4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b2fc9955ddc7c4ca03be44b995193bd6486c62e1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b589a965184dde49c43b8caf5bcc65715a7b4ef2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c7881b6088276601beaccb7440b8d56eab0d65ae","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72023","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72023 — In the Linux kernel, the following vulnerability has been resolved: octeontx2-pf: fix SQB pointer le…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nocteontx2-pf: fix SQB pointer leak on init failure\n\notx2_init_hw_resources() initializes SQ aura and pool resources before\nseveral later setup steps. On failure, err_free_sq_ptrs only frees SQB\npages, leaving the per-SQ sqb_ptrs ar…","indicators":{"cves":["CVE-2026-72023"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:01.323Z","fetchedAt":"2026-08-21T03:01:29.055Z","references":[{"url":"https://git.kernel.org/stable/c/148d7ec0a3a98839c320e6cdd112e2e88bfb091b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/23d917acd9c9a9fd999688ec3fdde7aa58ab8a14","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5df30f05db96552903680a17f858d250dfd9e86e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5e023fe2569e630ba23b5558ebe4bf4837af4d16","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/62e7df6d042aeebd5efb581074e28865c04477be","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72025","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72025 — In the Linux kernel, the following vulnerability has been resolved: s390/monwriter: Reject buffer re…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ns390/monwriter: Reject buffer reuse with different data length\n\nWhen data buffers are reused, e.g. for interval sample records, the\nfirst record determines the data length, and the size of the buffer for\nuser copy. Current monwrite…","indicators":{"cves":["CVE-2026-72025"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:01.580Z","fetchedAt":"2026-08-21T03:01:29.055Z","references":[{"url":"https://git.kernel.org/stable/c/01f3ce411711c2c919598ea25320a5a48f71edbc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/036bc5661060702e798d215e81bb46da530965b3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/096dff1247037d329c04b3a5be0ecdfb1c5c7ac6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2995ccec260caa9e85b3301a4aba1e66ed80ad74","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/759d91378203ea35fa9bca6726dcf0010de081fb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ae5347f3db1782c6118f6cc0d9fd8b1d43397db3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d39cf4a6d721b1ae21eb53bbf3e8cd984253d7ab","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f0745496f7c171271cafd9457df3b914a483ddeb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72026","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72026 — In the Linux kernel, the following vulnerability has been resolved: irqchip/irq-riscv-imsic-early: F…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nirqchip/irq-riscv-imsic-early: Fix fwnode leak on state setup failure\n\nimsic_early_acpi_init() allocates a firmware node before setting up the\nIMSIC state. If imsic_setup_state() fails, the function returns without\nfreeing the allo…","indicators":{"cves":["CVE-2026-72026"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:01.730Z","fetchedAt":"2026-08-21T03:01:29.055Z","references":[{"url":"https://git.kernel.org/stable/c/1358126fbed104e5657955d3ba029b283687ba02","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a27f17bad38c5fea3c73281517869af0089a0451","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a5a367756926de1c21a013ea5ed7fc2219f4cb4f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b321a046d7717225c07ba3f4b7b0a4758c2f9d58","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72028","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72028 — In the Linux kernel, the following vulnerability has been resolved: riscv: probes: save original sp…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nriscv: probes: save original sp in rethook trampoline\n\nReading a word from the stack in a kretprobe crashes a risc-v kernel.\n\n$ cd /sys/kernel/tracing/\n$ echo 'r n_tty_write $stack0' > dynamic_events\n$ echo 1 > events/kprobes/enabl…","indicators":{"cves":["CVE-2026-72028"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:01.953Z","fetchedAt":"2026-08-21T03:01:29.055Z","references":[{"url":"https://git.kernel.org/stable/c/2faf0198168d2017cb528a79f76c560fda3b6e94","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5da5cf48a432e30ded8d58087854e5383a36eff1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/91b4d76dd07f1a1f20f73dfebb42ba04ac911a56","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bc7b086a45521a986a49045907f017e3e46c763e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c386e1c591d72eab58ee2e69105c8cbc70928857","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72030","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72030 — In the Linux kernel, the following vulnerability has been resolved: ata: libata-core: Reject an inva…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nata: libata-core: Reject an invalid concurrent positioning ranges count\n\nata_dev_config_cpr() takes the number of range descriptors from buf[0]\nof the concurrent positioning ranges log (up to 255), which the device\nreports independ…","indicators":{"cves":["CVE-2026-72030"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:09.200Z","fetchedAt":"2026-08-21T03:01:29.055Z","references":[{"url":"https://git.kernel.org/stable/c/4c1e8ccd8655ee8cf1bcb1b7dfee72c9fa941fd4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4cb4b4dd8853c4ab3057efe238b2c34277772176","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/533a0b940f901c15e5cbbd4b5d66e871c209e8ce","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b1607f0ee5f5e53e0aa66f41794085b7cc98f5d1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d43efd1b5d976203e6f1ef26f67e8b1a7bc2751b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72031","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72031 — In the Linux kernel, the following vulnerability has been resolved: ata: libata-core: Add NOLPM quir…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nata: libata-core: Add NOLPM quirk for PNY CS900 1TB SSD\n\nThe PNY CS900 1TB SSD (Phison PS3111-S11, DRAM-less) drops off the bus\nafter entering Device-Initiated Slumber during idle. With the default\nmed_power_with_dipm policy the li…","indicators":{"cves":["CVE-2026-72031"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:12.030Z","fetchedAt":"2026-08-21T03:01:29.055Z","references":[{"url":"https://git.kernel.org/stable/c/299739909c486bcea7445f5c3b066fdbc0d2df96","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/462775c620197adaabc983ce847e5b9878ff4cb0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72032","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72032 — In the Linux kernel, the following vulnerability has been resolved: net/mlx5: HWS, fix matcher leak…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet/mlx5: HWS, fix matcher leak on resize target setup failure\n\nhws_bwc_matcher_move() allocates a replacement matcher before setting it\nas the resize target. If mlx5hws_matcher_resize_set_target() fails, the\nreplacement matcher is…","indicators":{"cves":["CVE-2026-72032"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:12.143Z","fetchedAt":"2026-08-21T03:01:29.055Z","references":[{"url":"https://git.kernel.org/stable/c/1dce4f4bb3c1c02080b1a45bdd2abb2913a6642a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a751ccdc6ea9bde154f25a5ba66926f462f96c19","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ae0265f0a95aaacef59d560a3e1ea36db8be9a52","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bb09d0e64ecaa0aa0f7d1133a1696ed74dead295","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72037","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72037 — In the Linux kernel, the following vulnerability has been resolved: net: lan743x: Initialize eth_sys…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: lan743x: Initialize eth_syslock spinlock before use\n\nlan743x_hardware_init() calls pci11x1x_strap_get_status() during the\nPCI11x1x probe sequence. That helper acquires the Ethernet subsystem\nhardware lock via lan743x_hs_sysloc…","indicators":{"cves":["CVE-2026-72037"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:12.740Z","fetchedAt":"2026-08-21T03:01:29.055Z","references":[{"url":"https://git.kernel.org/stable/c/39139b1c1c2b614096519b526112c726adb12ff0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6523daa6852b1bfef32ec7a105b0217e8a115687","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/99a6f37b113c46815deb160c5012073563679ef4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b6a93a42e0e61f0ba0005a942ee3bffb16c0574e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b99e890e6b32ffa11c145a16fefcf2c7137a9578","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dfaefd9a7808736fcd2ed0de108f55c4badc15cc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72038","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72038 — In the Linux kernel, the following vulnerability has been resolved: net: liquidio: fix BAR resource…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: liquidio: fix BAR resource leak on PF number failure\n\nIf cn23xx_get_pf_num() fails, the function returns without\nunmapping either BAR. Unmap both BARs before returning from\nthe error path.\n\nFound by manual code review.","indicators":{"cves":["CVE-2026-72038"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:12.860Z","fetchedAt":"2026-08-21T03:01:29.055Z","references":[{"url":"https://git.kernel.org/stable/c/020e52aee732bb08e6b89dd02bbf88895a50fffd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4140c516473a0e116ab3a73f9320c2aa5800210b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4a45884566bab4122bbeb8fff7d2d6b5fdbded24","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/715cce38424fb2488ef2c5e6e6ffbfe1b74a9e67","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/75b924759de9427761115301308c137904aa3f99","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a22103618ee5b6ee884c374351f65fcdff7248f0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b74f293e5f38052cfa14710abfacd6b6561cc2d6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c63ee62a3c4ac1a1542f4c1a4b87e2f41df5a496","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72039","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72039 — In the Linux kernel, the following vulnerability has been resolved: bnx2x: fix potential memory leak…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbnx2x: fix potential memory leak in bnx2x_alloc_mem_bp()\n\nIf the allocation of fp[i].tpa_info fails, the error path will not free\nthe struct bnx2x_fastpath allocated earlier, as it is not linked to the\nbp structure yet. Fix that by…","indicators":{"cves":["CVE-2026-72039"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:12.987Z","fetchedAt":"2026-08-21T03:01:29.055Z","references":[{"url":"https://git.kernel.org/stable/c/356077547b1afa34a8ebae77176a577631a89041","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5576ee19a6a4aa111c61ce974e70bb79e7bb3952","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/58594ed2a2f859ffb93edbbfa4aabb7739bea383","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6c98ccdb9a0967e04a7b1866eb0d97c0c8c0e403","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6d46eaa1e4c078ad674908e24b86e431a7fd4b15","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7d8d454b5d24dbad346cd57ef315e7bf1ee8e856","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a986fde914d88af47eb78fd29c5d1af7952c3500","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c51b280b9cd3c9e97bf2cde33bb795c511f09669","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72040","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72040 — In the Linux kernel, the following vulnerability has been resolved: ipmi: fix refcount leak in i_ipm…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nipmi: fix refcount leak in i_ipmi_request()\n\nWhen a caller provides a `supplied_recv` message to i_ipmi_request(),\nthe function increments the user's `nr_msgs` reference count. If an\nerror occurs later, the out_err cleanup path onl…","indicators":{"cves":["CVE-2026-72040"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:13.123Z","fetchedAt":"2026-08-21T03:01:29.055Z","references":[{"url":"https://git.kernel.org/stable/c/0fd23994ec8c5436d9f0b50848deb87ed933e6b3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9409e18ffe7378d202efe1cf69989df9f67b0369","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a3f3859cecacb64f18fd446271ece9a3b3f2d4de","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e2a3b77df6aef031455dd83ea8ed4344b7dca1f9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f5c5065963024390ddad51bd455d1adc710de575","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72047","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72047 — In the Linux kernel, the following vulnerability has been resolved: ieee802154: ca8210: fix pointer…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nieee802154: ca8210: fix pointer truncation in kfifo on 64-bit\n\nca8210_test_int_driver_write() and ca8210_test_int_user_read() exchange\na kmalloc'd buffer pointer through a struct kfifo, but pass a literal\n'4' as the byte count to k…","indicators":{"cves":["CVE-2026-72047"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:13.933Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/093aacb0c56d5c693e3169a0224062e77c3fd0c0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1fe2643d0b24ca3cdd61a31a45c2d3233dc6cbfe","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2059c28bd725beded01277cdf1f67be33e714323","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2c1664ccfae653979b38788211240b5a1ee317ed","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/65dc342274a01616f5c17105f7360a3b4bfd7a3d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6d7f7bcf225b2d566176bf6229dbd1252940cb3c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/87dab14a4f68895d6f4d798e6ee3556cd64e8c72","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d8ce67fa6a5e6929f5414e933ff9665176c2bce6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72048","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72048 — In the Linux kernel, the following vulnerability has been resolved: ieee802154: ca8210: fix cas_ctl…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nieee802154: ca8210: fix cas_ctl leak on spi_async failure\n\nca8210_spi_transfer() allocates cas_ctl with kzalloc_obj(GFP_ATOMIC)\nand relies entirely on the SPI completion callback\nca8210_spi_transfer_complete() to free it.\n\nThe spi_…","indicators":{"cves":["CVE-2026-72048"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:14.050Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/460c5cd51e4d7d15b317f178f42cfcb666c0fe91","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7e3630fbb6aabb844bbf35746dee0bf3894100c7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b07aea90dbc6e188c74c100af64b77b9482ffc65","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b9071dc7889bef42590e04fbf3e56cc65e1e5e6e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cb5cca1d2a908ddd5e357971de0f2009617b8d6a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d4a397fe803c2d157f6ebb068b802ef75fbf109e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e09390e439bd7cca30dd10893b1f64802961667a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fe90605b651573d30be8293ff5be40e3d7023117","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72050","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72050 — In the Linux kernel, the following vulnerability has been resolved: octeontx2-af: Free BPID bitmap o…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nocteontx2-af: Free BPID bitmap on setup failure\n\nnix_setup_bpids() allocates bp->bpids with rvu_alloc_bitmap(), which uses\na plain kcalloc(). If any of the following devm_kcalloc() allocations for\nthe BPID mapping arrays fails, the…","indicators":{"cves":["CVE-2026-72050"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:14.323Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/19c148cb82d11bb7cc7d86038a94e608a297e63c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/36323f54cd323122a1be89ab2c316a6e55a94e30","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7a939b683a74bd7d7ce4e3b7f696b491c8d71af4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d0c880c9f4051100517040d065caff60e913b659","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72056","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72056 — In the Linux kernel, the following vulnerability has been resolved: net: ena: clean up XDP TX queues…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: ena: clean up XDP TX queues when regular TX setup fails\n\ncreate_queues_with_size_backoff() creates XDP TX queues before setting\nup the regular TX path. If the subsequent allocation or creation of\nregular TX queues fails, the e…","indicators":{"cves":["CVE-2026-72056"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:15.010Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/11f68ebc6891d11de5f32b7dee918c5dc18b8de1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1bd6676254b4ab6acd44b662b5e92822c036463a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/523caef03124ecc08ce62a78c617759c2d28cf1c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5daa63404b708fc74e94da8398affbb148d09044","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6596baf8041100a9d1647beb5ea8ea4496ce058f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6773d6d82bdabddab2b31605d6d7029c91dbd217","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/df65d9fea8437235e740552e542fb309765507db","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f2ff634d95f8a6c885b9ce71a64067e255bcc34a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72058","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72058 — In the Linux kernel, the following vulnerability has been resolved: net: ixp4xx_hss: fix duplicate H…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: ixp4xx_hss: fix duplicate HDLC netdev allocation\n\nixp4xx_hss_probe() allocates two HDLC netdevs. The first one is stored\nin ndev, initialized, and registered with register_hdlc_device(). The\nsecond one is stored in port->netde…","indicators":{"cves":["CVE-2026-72058"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:15.260Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/3f85fcd520aa703824b1958f35169925ddae2558","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8f4c3c384092becbf4835a3f8ed8a3df1f544578","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/91850f582783098415a334f8bd0a84c87ff15a8c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/db818b0e8af7bac16860116a19c341a63d6677b4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fd0b939ebd1eee29945a539c5ed65c35dddac8d6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ffba16e6f55948d94b7f16aa113d587c1c4c0643","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72059","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72059 — In the Linux kernel, the following vulnerability has been resolved: net: wwan: t7xx: destroy DMA poo…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: wwan: t7xx: destroy DMA pool on CLDMA late init failure\n\nt7xx_cldma_late_init() creates md_ctrl->gpd_dmapool before\ninitializing the TX and RX rings. If any ring initialization\nfails, the error path frees the already initializ…","indicators":{"cves":["CVE-2026-72059"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:15.400Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/0c0a8c7821485f32bdb4923fb22f2dd501a27d8a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2bd6f26d4ce1e87de4d736b1e8896daf3acf1c0e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cef50f9f9045ff5e6a9d62c5110522df98fca645","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e89b8829693e65217d587dceeaad4826c96c731b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ebd84cb129fac7f7933628c40fccdfa8a62805de","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fd01247bde1add970fae7f0003af085333a256e6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72060","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72060 — In the Linux kernel, the following vulnerability has been resolved: net: ethernet: ti: icssg: guard…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: ethernet: ti: icssg: guard PA stat lookups\n\nicssg_ndo_get_stats64() unconditionally calls emac_get_stat_by_name()\nwith FW PA stat names regardless of whether the PA stats block is\npresent on the hardware.  emac_get_stat_by_nam…","indicators":{"cves":["CVE-2026-72060"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:15.530Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/121c5f31c3fb70d4a23e8a084f5cb8b3ec63be8d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/27b9daba50609335db6ca81e4cccf50ded21ec76","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b3763f7e22ecaa7ad79bf44bf41816d488edbcf8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72062","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72062 — In the Linux kernel, the following vulnerability has been resolved: gpio: mt7621: avoid corruption o…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ngpio: mt7621: avoid corruption of shared interrupt trigger state\n\nThe bank-shared fields like 'rising' and 'falling' are modified using\nnon-atomic read-modify-write operations. Since every gpio chip instance\nrepresents an entire ba…","indicators":{"cves":["CVE-2026-72062"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:15.757Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/1781172526d1092323af443fa03f00e6de560401","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/207d3ebf36f654a43a934addeb4d6775cb2dd667","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/877a243006788aaa586b2d087f27c9f3628071b0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a60a40c9ba30edd06d3fb4215fdf430ed968728e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d3b9026ef78da3018a7d2c5a9c9d611de6d45c47","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72063","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72063 — In the Linux kernel, the following vulnerability has been resolved: gpio: tegra: do not call pinctrl…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ngpio: tegra: do not call pinctrl for GPIO direction\n\ntegra_gpio_direction_input() and tegra_gpio_direction_output() already\nprogram the GPIO controller direction registers directly. The additional\npinctrl_gpio_direction_input/outpu…","indicators":{"cves":["CVE-2026-72063"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:15.887Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/628c63f96f4564fa145f602af2d41daf9532201f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ac761e66708d51dac35c4c7f1891ea991dc788f0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cd17c5a1d9f186b57e9e2949be427803b7110a5c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d3e91a95b2b0fc6336dbf3ec90d831a1654d2720","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e57a4845b0da60a7b9f052160878097826320954","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72068","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72068 — In the Linux kernel, the following vulnerability has been resolved: posix-cpu-timers: Use u64 multip…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nposix-cpu-timers: Use u64 multiplication in update_rlimit_cpu()\n\nupdate_rlimit_cpu() converts the RLIMIT_CPU value to nanoseconds with\n\n        u64 nsecs = rlim_new * NSEC_PER_SEC;\n\nOn 32-bit kernels both rlim_new (unsigned long) a…","indicators":{"cves":["CVE-2026-72068"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:16.467Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/1fafc4d9b411645eb34de43362b966dc8fb3e263","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/26aff38fefb1d6cd87e22525f41cc8f1aa61b24f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/384628d6cdde0fcd76868606fad3ad8293100afb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/571e1f10b5996ba3e4dc63ea77de4aa309c384ce","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cff8281bacd2866767e6194c3079d33b6c5a74f4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ea6a188ee805e841a0e242f14d15953e0dfa74bb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/edf6babb9edd2d3e19229ade339081f439d4f478","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/feb5c87c8514444ba891b75a5a3eae57c64edaf8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72070","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72070 — In the Linux kernel, the following vulnerability has been resolved: wifi: libertas_tf: fix use-after…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: libertas_tf: fix use-after-free in lbtf_free_adapter()\n\nlbtf_free_adapter() calls timer_delete(&priv->command_timer), which does\nnot wait for a running command_timer_fn() callback. lbtf_free_adapter()\nruns on the teardown pat…","indicators":{"cves":["CVE-2026-72070"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:16.713Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/066b59e84f90d270cc15f0370166155aca507630","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4714e95f5d61cb9c5c7c6c4e68b618f37bc6ffcf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/aa6dcd5c8dd9ba1d7d0f60093bcda41c0d6d438d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bcf7968cb97ce4312588042cf2712f04caff6d8f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fcff712d0e3d183843ec3916470ee6cc3455baad","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72073","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72073 — In the Linux kernel, the following vulnerability has been resolved: mmc: vub300: fix use-after-free…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmmc: vub300: fix use-after-free on probe failure\n\nThe vub300 driver lifetime-manages its controller state using\nvub300->kref, with vub300_delete() freeing the mmc host when the last\nreference is dropped. The probe error path after…","indicators":{"cves":["CVE-2026-72073"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:17.123Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/5b82af744e06cd741938c3da54fdbe564a7e52d9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/618cf6b139503ec18ef93ffd663396aaf99b763a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a3b5f242997a3be7404112fd48784881560aea57","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72074","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72074 — In the Linux kernel, the following vulnerability has been resolved: Input: ims-pcu - fix type confus…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nInput: ims-pcu - fix type confusion in CDC union descriptor parsing\n\nThe driver currently trusts the bMasterInterface0 from the CDC union\ndescriptor without verifying that it matches the interface being\nprobed. This could lead to t…","indicators":{"cves":["CVE-2026-72074"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:17.270Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/08bf4b6ee28987570f4b3f1954427621fa291bf5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/0e8115a7ed9a99ff9495615a575a6c0f43566d10","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/163c3e7a1de6b3d5c85edb3bdf4cf087382103b0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ab87cd7789d00f441f60a016cbcff35abe76513c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b5518c5632f3485849421b9c33b4db5ae6a54ed7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ca459e237bc49567649c56bc72e4c602fb92fd67","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f4cf878dcc4f6f02e7a25294bfaed4361264995e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fa7f65c5315a25b310daae69ab527efd420e37fa","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72075","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72075 — In the Linux kernel, the following vulnerability has been resolved: Input: ims-pcu - fix race condit…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nInput: ims-pcu - fix race condition in reset_device sysfs callback\n\nThe ims_pcu_reset_device() sysfs callback calls ims_pcu_execute_command()\nwithout acquiring pcu->cmd_mutex. This can lead to data races and\ncorruption of the share…","indicators":{"cves":["CVE-2026-72075"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:17.410Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/025955847e1500ced4719ac178beff6a3b2f0e3c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/0fb84b1a3cdc74c453abc5f961c7d318c267ea4c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/129187ec3f868829f61f6f07381ca72fe642d0b7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/411b8c4b274737c3bf08e1e025801161603cfffc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/54c2237fc69541c75fe4cd321622ebb8ecc3587f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f516cba88bf952d847e5c96d0e87f17eaae7ee6f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72076","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72076 — In the Linux kernel, the following vulnerability has been resolved: Input: ims-pcu - fix out-of-boun…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nInput: ims-pcu - fix out-of-bounds read in ims_pcu_irq() debug logging\n\nThe debug logging in ims_pcu_irq() unconditionally prints data from\npcu->urb_in_buf. However, if the interrupt fired for pcu->urb_ctrl, the\nactual data resides…","indicators":{"cves":["CVE-2026-72076"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:17.537Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/20fbf3ca0259d00664d1ede88837e1f11b49a88e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3fd7c0ace245334f2a0bd29fdcb680ad56e9b275","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/403b0a6970b1084bb27907c0f8225801fdd0fe1d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4d2553e9a76a11500ec670cbe16b7fd3da4832de","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9c964fc9507aeab74376ba9f892cf84ad6950dfe","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b746e853721dee91e4234c033d1b90f4605705bb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e6153407d7edabc6ff98f0fda415d556c0bcb57a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f97bfc1a0766802a99167b3dc62d1ee7dca929fe","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72077","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72077 — In the Linux kernel, the following vulnerability has been resolved: Input: ims-pcu - fix firmware le…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nInput: ims-pcu - fix firmware leak in async update\n\nThe firmware object was not being released if validation failed.\nUse __free(firmware) to ensure the firmware is always released.","indicators":{"cves":["CVE-2026-72077"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:17.660Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/1f7bdfbe791aacad77db87f044e78ef60a93ae0d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/47a9889a9325b87698b6d6eaf3187a9af6e4773d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/99c428d7ef644d3e394f3072f905040c16dab18d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a5dd47ea3904dedb1ae7a5fe0e6b44a458f0c5ec","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d48795b5cd6828d36b707e8d62fc9e5c90e004ab","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72078","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72078 — In the Linux kernel, the following vulnerability has been resolved: Input: ims-pcu - validate contro…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nInput: ims-pcu - validate control endpoint type\n\nThe driver currently assumes that the first endpoint of the control\ninterface is an interrupt IN endpoint without verifying it. A malicious\ndevice could provide a different endpoint…","indicators":{"cves":["CVE-2026-72078"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:17.763Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/5b96b4da96313dd799a3a40dcfd598d2e2c19217","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5de5075a1f26166f172b6687cb66810a9b61e3eb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7960d99332e03705ec622d92f31e0c77de8baac6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a630508a09b0c05f14bc0843ed409221a93751aa","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/aa1885f87e60c80e59e50ffd5fb096bf02c83e05","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/baf56975806534268e24acf9a8abb1c447ce11e9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c8d3d83f2eaaf7659de76e8d44e8fc88ee346042","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cbfa059dfb48b9aa322e34fd44a093d9ca29ad7e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72079","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72079 — In the Linux kernel, the following vulnerability has been resolved: Input: ims-pcu - fix use-after-f…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nInput: ims-pcu - fix use-after-free and double-free in disconnect\n\nims_pcu_disconnect() only intended to perform cleanup when the primary\n(control) interface is unbound. However, it currently relies on the\ninterface class to distin…","indicators":{"cves":["CVE-2026-72079"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:17.893Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/293388e42e5c0865204de6f36bfb8662156fce3b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/315f269ea04bc1477ab9bf351e939623d12a1621","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/462a999917755a3bf77448dfd64307963cf0a9f0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6a6c373e6a82eddc522342c8a8db7072c65f2b56","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6aacc18004b1a915ccb8a829d30279a37988066e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/921abbb33887052e46b1b77299f87a3c741dc580","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a4b3f4d42fbf58f06f0d49e37a9d0d9392eca338","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bf0b58ba489d0bdaa18c7dd8beeaeb954dd7dbb7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72081","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72081 — In the Linux kernel, the following vulnerability has been resolved: scsi: elx: efct: Fix I/O leak on…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nscsi: elx: efct: Fix I/O leak on unsupported additional CDB\n\nefct_dispatch_fcp_cmd() allocates an efct_io before dispatching an\nunsolicited FCP command. If the command has an unsupported additional\nCDB, the function returns -EIO be…","indicators":{"cves":["CVE-2026-72081"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:18.133Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/235159f75ab6f95484494db4cc031663e5ee4680","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/42a391d508e1f52fda5d81344e100a53c00898e3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8c689a8f229223cec4a821c65cfe40f8e8c56470","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/94cbfed191248dc88c23fc881119bb399486ddfd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9cb2d5291dbfe7bed565ead3337047dee9ed1064","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9d479f50a6067954259414aa66d816c7df081286","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/df87532e9212238509f23effd0ca39d9c3062d21","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72082","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72082 — In the Linux kernel, the following vulnerability has been resolved: scsi: elx: efct: Fix refcount le…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nscsi: elx: efct: Fix refcount leak in efct_hw_io_abort()\n\nWhen efct_hw_reqtag_alloc() fails in efct_hw_io_abort(), the error path\nreturns -ENOSPC without releasing the reference obtained via\nkref_get_unless_zero() earlier in the fu…","indicators":{"cves":["CVE-2026-72082"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:18.250Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/1c6e186c722cfa9a58ebe841f91ab2ddf8570cc7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2c007acf7b31c39c08ce4959451ad00b19be4c1f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/62cf39a9770a6f29df59fd0edb0a05234a8b07f2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/747eaead2db298abfda2aa505f6d03775b40fe5f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9b871369cbb4532f6715e044d6b9c4ceb036e5b6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cf97ea7b164a1881c7219f5222219c9d0fac4204","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/faa59add4808fbf92e7d15bfd8770d2682c2b953","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72086","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72086 — In the Linux kernel, the following vulnerability has been resolved: scsi: xen: scsiback: Free the co…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nscsi: xen: scsiback: Free the command tag on the TMR submit-failure path\n\nscsiback_device_action() obtains a command tag in\nscsiback_get_pend_req() and submits a task-management request with\ntarget_submit_tmr(). When target_submit_…","indicators":{"cves":["CVE-2026-72086"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:22.593Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/1357fb32d42ad8da193e6da285f09e6452feabda","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/18d4f86816592586b38513543b5e1f9553bc271f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/255fb7b0cdc947b1c01929c7f133281342a3a6b5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4567ce79fe2f84c3dcc3a91b22a377cf482d33ad","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/66aefc277ebb796ec285d550305535dc3fc0179f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6c01f0439098f00a64b246dc27479602201382f7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fbc1bdede66d0f2cde83b75d6524ce1a815bb69f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72087","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72087 — In the Linux kernel, the following vulnerability has been resolved: scsi: lpfc: Fix memory leak in l…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nscsi: lpfc: Fix memory leak in lpfc_sli4_driver_resource_setup()\n\nThe memory allocated for mboxq using mempool_alloc() is not freed in\nsome of the early exit error paths. Fix that by moving the\nmempool_free() call to an earlier poi…","indicators":{"cves":["CVE-2026-72087"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:22.723Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/0ce5a37f7ddf2fc12210e8700350274da79fbb3a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1bd28625e25be549ee7c47532e7c3ef91c682410","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/25cac8a302626f59ca84fa3339e2506c3ac761bc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/299f5baa1321a0951cc3ebbacc72b67433a65391","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c3f4e407661542d1d284fc889cf9f27afd11b3d3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ed08497977820e002a62cb114440f365cc7a087f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72088","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72088 — In the Linux kernel, the following vulnerability has been resolved: scsi: hpsa: Fix DMA mapping leak…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nscsi: hpsa: Fix DMA mapping leak on IOACCEL2 reset path\n\nIf phys_disk->in_reset is set, the function returns directly without\nundoing the resources acquired for the command. Add the missing error\ncleanup by unmapping the IOACCEL2 S…","indicators":{"cves":["CVE-2026-72088"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:22.843Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/018cbce6ee158244bb76cf638e8e3054e240aea9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/782e1bf48672be44265c48e14602696c3c8ed904","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a61de4d7e22a9ab9a90094d0e180b378e09a1d2c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d495b403d5b357dfe506b963bd7a78ecd5c7b667","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e166bafc483e927150cb9b5f286c9191ea0df84e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e7bde072cceefc564413b46d64017c47a2e9977d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fb40928c59329a50eadb3ce8bfd7a67f490a6212","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fca5edd748f00e87f2dd55a6333722b46af30e74","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72091","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72091 — In the Linux kernel, the following vulnerability has been resolved: accel/amdxdna: reject user comma…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\naccel/amdxdna: reject user command submission without a command BO\n\namdxdna_drm_submit_execbuf() passes the user-supplied command BO handle\nstraight into amdxdna_cmd_submit() with drv_cmd == NULL. When the handle\nis AMDXDNA_INVALID…","indicators":{"cves":["CVE-2026-72091"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:23.180Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/261c1fe3327ad24508f54552c6366e3e4db82c15","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fff6509d976f6fae423a5236391ccdbd7e0e9f06","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72092","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72092 — In the Linux kernel, the following vulnerability has been resolved: accel/amdxdna: reject command su…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\naccel/amdxdna: reject command submission on devices without a submit op\n\namdxdna_cmd_submit() calls xdna->dev_info->ops->cmd_submit()\nunconditionally, but only aie2_dev_ops defines that callback.\naie4_vf_ops (the AIE4 SR-IOV virtua…","indicators":{"cves":["CVE-2026-72092"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:23.273Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/38953513d7313992676d4136cd425cdb70c6278e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/af7a4c2caa7a191d6e7ed33903b69f9901874cd0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f7d08603c87bae19ca3e424da5ab6d0aee81886e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72094","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72094 — In the Linux kernel, the following vulnerability has been resolved: dma-buf: dma-fence: Fix potentia…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndma-buf: dma-fence: Fix potential NULL pointer dereference\n\nThe commit mentioned in the fixes tag below introduced a mechanism\nthrough which fence producers can fully decouple from fence consumers.\nThis, desirable, mechanism is bas…","indicators":{"cves":["CVE-2026-72094"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:23.477Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/035219a760edb35ae9a9e96beba7f122e26a997b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/15ecfdf0ef6f6d874d0a26690d300857b39ebfd0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72096","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72096 — In the Linux kernel, the following vulnerability has been resolved: dm-verity: make error counter at…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndm-verity: make error counter atomic\n\nThe error counter \"v->corrupted_errs\" was not atomic, thus it could be\nsubject to race conditions. The call to\ndm_audit_log_target(\"max-corrupted-errors\") may be skipped due to the\nraces.","indicators":{"cves":["CVE-2026-72096"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:23.680Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/089e05b644d5aa786c21af467c80b24d691becb1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3303e5c6501e3638ded8e9402d703805b00ce64e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/752e214b2c6f15b40b0d873a2ce27733ce0884c6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8ec4d9c5a5cf4b61fc087f871465b1f79b393325","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ac99781115d37d10894653b47941d9d8fc26fa64","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72097","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72097 — In the Linux kernel, the following vulnerability has been resolved: dm-verity: fix a possible NULL p…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndm-verity: fix a possible NULL pointer dereference\n\nFix a possible NULL pointer dereference dm_verity_loadpin_is_bdev_trusted\nif the device has no table.","indicators":{"cves":["CVE-2026-72097"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:23.790Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/1f04b390add2e14c5b36829a0a1529c4eb65a2e1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/32f8231c81bd45ab92d49b646a154551f7d54f4f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7d4f1d307ac0f4f55cebeb192a90a235aa060ed1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/81f41d989a32458ff3512f6b05458eaf8926579c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e72b793ae440f6900fb17a4b8518c707b5cd3e17","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f15eaa3801f2f9207dff156f1ab3e7436ce52bb1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72101","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72101 — In the Linux kernel, the following vulnerability has been resolved: dm-integrity: fix leaking uninit…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndm-integrity: fix leaking uninitialized kernel memory\n\nIf hash size is less than device's tuple size, dm-integrity is supposed\nto zero the remaining space. There was a bug in the code that zeroing\ndidn't work. This commit fixes it.","indicators":{"cves":["CVE-2026-72101"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:24.223Z","fetchedAt":"2026-08-21T03:01:29.056Z","references":[{"url":"https://git.kernel.org/stable/c/0c4e9bb1d4101030f55c869f18bd3ece39a77bbb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/50af3e51dc709384701dbc721b4bd865285c5f2c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7bb03b2b01b814a9fc14afbfc2cbb2cca5b34750","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8f0af8493009a61b4313e0a8c6e03fbc36fd43f9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72104","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72104 — In the Linux kernel, the following vulnerability has been resolved: dm-pcache: reject option groups…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndm-pcache: reject option groups without values\n\nThe pcache target parses optional arguments as name/value pairs.  A\ntable that advertises one optional argument and supplies only a\nrecognized option name, for example \"cache_mode\", r…","indicators":{"cves":["CVE-2026-72104"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:24.563Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/0cbe13fe540330d31e5273bbf8cbd66bc7c9cb5a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1247615aadb74c89c1b2f01a6de7df9dab92ecb3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d9c631e3fbd44246a2be781d26cfacbb9b8ec127","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72106","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72106 — In the Linux kernel, the following vulnerability has been resolved: dm-ioctl: fix a possible overflo…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndm-ioctl: fix a possible overflow in list_version_get_info\n\nsizeof(tt->version) is 12 bytes, but the code writes 16 bytes into the\noutput buffer - info->vers->version[0], info->vers->version[1],\ninfo->vers->version[2] and info->ver…","indicators":{"cves":["CVE-2026-72106"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:24.803Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/29536a9ff146d9bbd618959857ed2e691cda1d21","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/76c6f845dc0c614304a6e6ee619b552f97cf24b3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d61c12573ed9768690fdcb2bc38846a1bcb01358","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/df50c24c6447c18886ed126d3d81cc7e155ea8b6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e0f5842c4e2a7dbefb52a2dc6711789bc6963e55","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72117","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72117 — In the Linux kernel, the following vulnerability has been resolved: can: bcm: fix data race on rx_st…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncan: bcm: fix data race on rx_stamp/rx_ifindex in bcm_rx_handler()\n\nFor an rx op subscribed on all interfaces (ifindex == 0), the same op\nis registered once in the shared per-netns wildcard filter list, so\nbcm_rx_handler() can run…","indicators":{"cves":["CVE-2026-72117"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:26.123Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/136de17f38630307991c59aa7080012a99451783","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4b97410f4bba18d2ee2784c8e089104f387bc27c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/58fd6cbc8541216af1d7ed272ea7ac2b66d50fd8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5f246b96ab47523ec9b8ea870b5c567a3cb1eb1c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/656ff69ef235699035e57d9e1ae417e62a38aa7f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b64f60c468d149aca22ea56bb842b9730215aaa5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c312b750bb5ac3348cfc85dab25e90937bd4d251","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c8a5d7cb095d3b12bd9dcf752d6ca0ff50872ac5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72118","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72118 — In the Linux kernel, the following vulnerability has been resolved: can: bcm: fix CAN frame rx/tx st…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncan: bcm: fix CAN frame rx/tx statistics\n\nKCSAN detected a data race within the bcm_rx_handler() when two CAN frames\nhave been simultaneously received and processed in a single rx op by two\ndifferent CPUs.\n\nUse atomic operations wi…","indicators":{"cves":["CVE-2026-72118"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:26.240Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/47fca0d1620f2d4fab0677564989ef2b9c225c66","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/640acf3566fc897065127001be875ebc5401c218","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8104bcdb2612fdda95169ddc3b49747b2ff98d24","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8b2783172d92edd650de6006ebd1c800937021ab","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/970caff5c1a63702c80e08d920256bcb5f88ecc5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/df47f07cdc801a6afe05a486b5a343c3e532a93c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e6c24ba95fc3f1b5e1dcd28b1c6e59ef61a9daa5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fd75884eae40a7be47867cbfc9fc84a80bb8ddb4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72128","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72128 — In the Linux kernel, the following vulnerability has been resolved: nvmet: fix refcount leak in nvme…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnvmet: fix refcount leak in nvmet_sq_create()\n\nIn nvmet_sq_create(), a reference on the ctrl is taken\nvia kref_get_unless_zero() before calling nvmet_check_sqid().\nIf nvmet_check_sqid() fails, the function returns the error\ndirectl…","indicators":{"cves":["CVE-2026-72128"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:30.217Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/26355295ce21cb046546085c3a81abe68160a784","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/34b9a83c50660148bde01cde16451dbe78369749","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fcef60ed5f714a24104eb021d6397a67955ebeff","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72131","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72131 — In the Linux kernel, the following vulnerability has been resolved: nvme-apple: Prevent shared tags…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnvme-apple: Prevent shared tags across queues on Apple A11\n\nOn Apple A11, tags of pending commands must be unique across the admin\nand IO queues, else the firmware crashes with\n\"duplicate tag error for tag N\", with N being the tag.…","indicators":{"cves":["CVE-2026-72131"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:30.557Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/59cef6abc924a84824b0c3f563a7fe74cd5fc7a4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6fe0687245e8406bf26143bd45eb16441bbe5280","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b7d9aaedf024bb6c0bb6a205848861d888eb1afa","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72132","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72132 — In the Linux kernel, the following vulnerability has been resolved: NFS: Charge unstable writes by r…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nNFS: Charge unstable writes by request size, not folio size\n\nnfs_folio_mark_unstable() and nfs_folio_clear_commit() charge and\nuncharge NR_WRITEBACK/WB_WRITEBACK by folio_nr_pages(folio) once per\n*request* added to or removed from…","indicators":{"cves":["CVE-2026-72132"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:30.657Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/0ffc032294a29601b1019dba91aa1a930d90df17","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1f646e23372f3444dc5f0bcb5404a49d26756add","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/27934d02cbeb8a957dd11c985a579e58d30c5270","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a192b6c149c6ea10cc88869accb78165eb454456","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a442c258320b689f13d2205eaeeddf8b0e630288","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72138","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72138 — In the Linux kernel, the following vulnerability has been resolved: xen/gntdev: fix error handling i…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nxen/gntdev: fix error handling in ioctl\n\nWhen gntdev_ioctl_map_grant_ref() fails to copy the operation result\nback to userspace after successfully adding the mapping to the list,\nthe error path returns -EFAULT without releasing the…","indicators":{"cves":["CVE-2026-72138"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:31.337Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/16d3ccdabb8dee9be2cdcd6d3f9a125572ec0454","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/18a693733f7ad004e1ab0466693121ca70cd95dd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1dd9cb98fe228e017fff9efb33862ff38c741b65","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/311011f8cc206c5af2877b03e3f627ee1b8fe024","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/45ca1afe2fd14c04e37227e79d3f8455831d8408","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/52dc40ef0cfee6ae89b7524967e73f0ba37906d7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6883269a323609f68f6faa903f8f8ff3d191cec8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6df926130aee6cab9b5d2e5b7862e49ccac348dc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72140","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72140 — In the Linux kernel, the following vulnerability has been resolved: i2c: mlxbf: Fix use-after-free i…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ni2c: mlxbf: Fix use-after-free in mlxbf_i2c_init_resource()\n\nIf devm_platform_get_and_ioremap_resource() returns an error,\nmlxbf_i2c_init_resource() frees tmp_res before reading tmp_res->io to\nget the error code. This results in a…","indicators":{"cves":["CVE-2026-72140"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:31.587Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/5290a52533e09c38374963f4bb0b35121fe555c7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6a108c9f5a81bb7b29dbb1398be0089655b6bfd2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/71356737a7a55c76fee847563e3d33f8e6dc6b6d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b398cbbbb9dd76210682a8c9aabd34c5168800b9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c4d9b6a0c9645366d9e4af8a6ac8347bd4c841aa","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ce960a1b2caa4ad08291f28d8bcf17ad5a864e54","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e6a395a71f4652261d09b572a03c96052662a056","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fb267770bf822064f510c9b46743f533d8fa8a5f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72145","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72145 — In the Linux kernel, the following vulnerability has been resolved: platform/x86/intel/tpmi: use cle…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nplatform/x86/intel/tpmi: use cleanup helpers in mem_write()\n\nIn mem_write(), the temporary array returned by\nparse_int_array_user() must be released on all exit paths.\nConvert the array variable to use cleanup.h scope-based\ncleanup…","indicators":{"cves":["CVE-2026-72145"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:32.167Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/2137f21542900233a42bf00578817f9b8dfecadc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a221557958e3a82d8565729d445a7385963f30b6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72147","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72147 — In the Linux kernel, the following vulnerability has been resolved: dmaengine: dw-edma-pcie: Reject…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndmaengine: dw-edma-pcie: Reject devices without driver data\n\ndw_edma_pcie_probe() treats the PCI device ID driver_data as the\ntemplate for the controller layout and copies it unconditionally. A\ndevice bound dynamically via sysfs ca…","indicators":{"cves":["CVE-2026-72147"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:32.373Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/043acb00e4edd4b9ffb9dd0e357482dcd9086486","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/044f7b3252d4fb2143d4999eec2800c08f1001ed","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/11d7cfe0c119691b2dafbb699bbca90258c678aa","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2733b5dcb5a4ba4446f7bac954b97e4501dcaa64","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a1042599fa8f9e313be176eb1ea1ae199f983419","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72150","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72150 — In the Linux kernel, the following vulnerability has been resolved: sunrpc: fix uninitialized xprt_c…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nsunrpc: fix uninitialized xprt_create_args structure\n\nThe xprt_create_args structure is allocated on the stack without\ninitialization in rpc_sysfs_xprt_switch_add_xprt_store(). While some\nfields are manually populated, critical fie…","indicators":{"cves":["CVE-2026-72150"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:32.727Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/17d90b68c3a3d7d7e95b49e1fe9381a723f637a8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7d3ce3bd23c062a7c1c6d372d1b08e48b9e17cc3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/933654508b2bc36e2c3c086c0365e2403fb2141f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72152","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72152 — In the Linux kernel, the following vulnerability has been resolved: tpm: tpm_tis_spi: Use wait_woken…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ntpm: tpm_tis_spi: Use wait_woken() in wait_for_tmp_stat()\n\nwait_event_interruptible_timeout() evaluates its condition after setting\nthe current task state to TASK_INTERRUPTIBLE.\n\nWith CONFIG_DEBUG_ATOMIC_SLEEP this triggers a warni…","indicators":{"cves":["CVE-2026-72152"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:32.923Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/4bb3e1bc142dc9c3240ceed1b3ab031aa9cb1723","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6b068a97958aa00a901a9b5083d74114b21f7b66","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ba33b4f9d3423accd2c91a0b0b0680cd589922f2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bb63a0530e8e6de3aaf29cd5ba487db2490128ef","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c0c9cfb3b75def8bf200a2d4db09015806acfeaf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c9acbe38797bc1aa3c22a1ab72452e210af6e0ff","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72153","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72153 — In the Linux kernel, the following vulnerability has been resolved: irqchip/crossbar: Use correct in…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nirqchip/crossbar: Use correct index in crossbar_domain_free()\n\ncrossbar_domain_free() resets the domain data and then uses the nulled\nout irq_data->hwirq member as index to reset the irq_map[] entry and to\nwrite the relevant crossb…","indicators":{"cves":["CVE-2026-72153"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:33.030Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/043db005a8d6932dc7d217c86307e9af0bc10ddc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/13bdb5140405ff283f9052e65ee1d5c2303765c7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1c48dc6a0c1ef47a9fa24611e60bc2f4ee4dd0df","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/36ca587f55a2c04468a89fd16174bb2f78dc04ec","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/424130169dc03b84ea604685409726d61bcec859","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cca649a23a5fc8aae536fc27a0546c67690a4078","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ccc3664679763d2d6f067c28729bdff627bb72d0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e5be5d452d5f1efbb3342da2b00029be6c99034e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72155","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72155 — In the Linux kernel, the following vulnerability has been resolved: mtd: spi-nor: swp: Improve locki…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmtd: spi-nor: swp: Improve locking user experience\n\nIn the case of the first block being locked (or the few first blocks),\nif the user want to fully unlock the device it has two possibilities:\n- either it asks to unlock the entire…","indicators":{"cves":["CVE-2026-72155"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:33.250Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/12d4d69221159e6d0e72400ec81195d691169b53","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6110ab5ffd84e8daa654652446a03ce2f77580a7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9a0d8dec3d11ca95d67537ea8fa6ee2730a5038a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c0806df5cf806545160f3fdac3c888926ceac557","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dc341272cf8e15a2c511db3c4df5dab8adf70ad0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e1d456b26bf23e30db305a6184e8abd9ab68bbf2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72156","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72156 — In the Linux kernel, the following vulnerability has been resolved: fpga: microchip-spi: fix zero he…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nfpga: microchip-spi: fix zero header_size OOB read in mpf_ops_parse_header()\n\nmpf_ops_parse_header() reads header_size from the bitstream at\nMPF_HEADER_SIZE_OFFSET (24). When header_size is zero, the expression\n*(buf + header_size…","indicators":{"cves":["CVE-2026-72156"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:33.373Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/0d3766fecd9b2db39a18b48021c15c522997ec25","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3da8eaf5469eda2353b72038d644fabddb848ce1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/43a1974da6bc7ce8f4d1dc1d03d56997428c29c3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a1baee24df72ec8fd1d6925c1d5162ffff4ee3bf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c9ef79e34bc1eac4fd59051e5c7b96a74e59d46f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e45ec24d8e986d79a8e07f49a816c414ad283622","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72158","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72158 — In the Linux kernel, the following vulnerability has been resolved: fpga: dfl: add bounds check in d…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nfpga: dfl: add bounds check in dfh_get_param_size()\n\ndfh_get_param_size() can return a parameter size larger than the feature\nregion because the loop bounds check is evaluated before incrementing\nsize. If the EOP (End of Parameters…","indicators":{"cves":["CVE-2026-72158"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:33.617Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/012683accbb7d2bcf1264f2a0ecd6aa1dcea4d68","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3b622aa447cf26104f96a8be39539367863bc6b6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9e8bc49f91f3f81d957c4f1c1f09fe94e2f88f6a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b2f6220e929b2a43605331d0139e65dc1640c05c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f3df5386e3bb54626c117bd85e0158d45fb4aea9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72159","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72159 — In the Linux kernel, the following vulnerability has been resolved: ocfs2: reject non-inline dinodes…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nocfs2: reject non-inline dinodes with i_size and zero i_clusters\n\nOn a volume mounted without OCFS2_FEATURE_INCOMPAT_SPARSE_ALLOC, a\nnon-inline regular file with non-zero i_size and zero i_clusters is\nstructurally malformed: the ex…","indicators":{"cves":["CVE-2026-72159"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:33.720Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/2174c68f623b74bd8690a4a6a4a52882d8ac3dc3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/38c1ef7ce50eb4af0f89038b8aba12396ddb9233","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3bfeb436d4be6a2beb56cab344770e93e6b07260","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/416d3e5f8a30ed04fe21ba7dc73c2841c3b56265","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7ebc672fab7a76e1e47e0f2fc1ee48118d27fde4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/83f6756a7b71adec0a41ae68e079a38906d59c6c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d837068eefbc2651fe5789bf75a0f945710f7b8e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ed0f938f946f16b772e99cb8c277ab57828e5be4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72161","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72161 — In the Linux kernel, the following vulnerability has been resolved: ocfs2: add journal NULL check in…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nocfs2: add journal NULL check in ocfs2_checkpoint_inode()\n\nDuring unmount, ocfs2_journal_shutdown() frees the journal and sets\nosb->journal to NULL. Later, when VFS evicts remaining cached inodes,\nocfs2_evict_inode() -> ocfs2_clear…","indicators":{"cves":["CVE-2026-72161"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:33.983Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/24daf13422e8328fd588c34a017bdef1949910e8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/499714de42ab4d2e778cbb10186684142a1222eb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/63921f790234b221e4b15c56c72888b13250f81d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7da7e4ac21895fe34cceffcfc99497cc2750da99","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a291c77c034b7a81849ce9b71cc9ecda9e587d89","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/eb6a13834c23e291f1170cb1b489ec255edfa5a3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72163","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72163 — In the Linux kernel, the following vulnerability has been resolved: ocfs2: fix NULL h_transaction de…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nocfs2: fix NULL h_transaction deref in ocfs2_assure_trans_credits\n\n[BUG]\nA direct write over unwritten extents can panic the kernel in\nocfs2_assure_trans_credits() when the journal aborts during DIO\ncompletion. The crash is a gener…","indicators":{"cves":["CVE-2026-72163"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:34.217Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/253ed993e0b36997ec7b04c1ff76103b38241de2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2d80e9c56718435a9c9f5f24dbc954989aead579","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6ad7532a23bc94076efe9f1486dd7f7493c090ff","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7146d191dae3a8efdb957993fb61a55713186266","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/942b818b396c24c452681803ff291552317d2ef1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bd73971fad89d5ee4ea0ba9b92d2ea08733c4a64","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f14aaaa130356ee4adb44de947c098637c70df8f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f9ab30c96b0f00c20c6dac93681bdae3a033d229","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72166","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72166 — In the Linux kernel, the following vulnerability has been resolved: net/9p: fix infinite loop in p9_…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet/9p: fix infinite loop in p9_client_rpc on fatal signal\n\nWhen p9_client_rpc() is called with type P9_TFLUSH and the transport\nhas no peer (e.g. fd transport backed by pipes with no 9p server),\na fatal signal causes an infinite l…","indicators":{"cves":["CVE-2026-72166"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:34.620Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/378481cc60a937ef8ea4ef6e4f95f0dbc4e21414","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4f621ae3a2d99b0bac50e8d66cbf7f68323c01e8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6b4f48728faa8bb514368f7eacda05565dea8696","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/823886a1b089b49bcd349bc8bd3417b7910cd1ac","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a8874c34c4a973f9922908a4b8be1d1278f01e42","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dc892cbb1e4341d427b1f940ebd6abd69bf8e479","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f62a1f245a71680033260a6f6d74011cc3acb3cd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72167","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72167 — In the Linux kernel, the following vulnerability has been resolved: mtd: rawnand: pl353: fix probe r…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmtd: rawnand: pl353: fix probe resource allocation\n\nDuring probe(), the devm_ioremap() is called with the parent device\ninstead of the current one. So when the module is unloaded, the register\narea isn't released.\n\nTarget the pl35x…","indicators":{"cves":["CVE-2026-72167"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:34.763Z","fetchedAt":"2026-08-21T03:01:29.057Z","references":[{"url":"https://git.kernel.org/stable/c/19ed11aee966d91beebdef9d32ce926474872f79","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3c44f6c62f652d3ac9d03beb8a199e6388256cdd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/593201a8f43864cb7e25197095f6716a589584fd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/862c6738833b5b01c801cc47023272f5eaa9a7b2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ace3a0c839f3bfe1779c6708e7709c824b96dc2f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/afddc648403511b6d2e978e73686c77549bc72b3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c4c9180b3b23f82e1ec429350b420c45c5b5100e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72168","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72168 — In the Linux kernel, the following vulnerability has been resolved: mtd: maps: vmu-flash: fix fault…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmtd: maps: vmu-flash: fix fault in unaligned fixup\n\nUse kzalloc_obj() / kzalloc_objs() to allocate the memcard structs,\ninstead of kmalloc_obj() / kmalloc_objs() to prevent access to\nuninitialized data.\n\nFixes runtime error: Fault…","indicators":{"cves":["CVE-2026-72168"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:34.890Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/01928835d80829e615a492aa66c629b953ec7bef","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/19360c25135fccb6bbafbee49a5f66baf9a311af","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/455519f6b70f46ac6cbf41a75ac76ec5e59040f2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/79d1661502c6e4b6f626185cef72cf2fa78116e1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72169","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72169 — In the Linux kernel, the following vulnerability has been resolved: kho: make sure scratch size is a…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nkho: make sure scratch size is always aligned by CMA_MIN_ALIGNMENT_BYTES\n\nWhen using scratch_scale, the scratch sizes are rounded up to\nCMA_MIN_ALIGNMENT_BYTES since they will be released as MIGRATE_CMA. This\nis not done when using…","indicators":{"cves":["CVE-2026-72169"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:34.993Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/0e39380a7316122e1b00012b3f3cd3e318b3e7d3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9fefab759f59bf891bef7be15aee4bc7caec7ec3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b8271be34bce151597da5b5179e0648c281322a4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72173","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72173 — In the Linux kernel, the following vulnerability has been resolved: fs/proc/task_mmu: do not warn on…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nfs/proc/task_mmu: do not warn on seeing non-migration pmd entry\n\nPatch series \"mm/hmm: A fix and a selftest\", v3.\n\nPatch 1 fixes a stale warning present from the time when only migration\nsoftleaf entries were supported at the PMD l…","indicators":{"cves":["CVE-2026-72173"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:35.460Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/319caaca072adc564ac9c5357ed013909f23d5ab","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cd1fc0e3c1f67c0c31dfc215e5d9b771133dedc0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72174","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72174 — In the Linux kernel, the following vulnerability has been resolved: fs/proc/task_mmu: fix hugetlb se…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nfs/proc/task_mmu: fix hugetlb self-deadlock in pagemap_scan_pte_hole()\n\nA PAGEMAP_SCAN ioctl requesting PM_SCAN_WP_MATCHING on a hugetlb VMA hangs\nthe calling thread, unkillably, as soon as the scan reaches an unpopulated\npart of t…","indicators":{"cves":["CVE-2026-72174"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:35.567Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/18b8a9700610299819d21fd0ea85d24726d17f65","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/43b987ed35be9be21a303d1036d4241fec9943df","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a6ac03652d9edc30c2912037ac83beb42cc67f8e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e92d92bbafb264dc0518d52b846a3c07ed8d523f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72176","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72176 — In the Linux kernel, the following vulnerability has been resolved: mm/damon/sysfs-schemes: put stat…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmm/damon/sysfs-schemes: put stats for scheme_add_dirs() internal error\n\ndamon_sysfs_scheme_add_dirs() setup the tried_regions directory after the\nstats directory setup is completed.  When the tried_regions directory\nsetup is failed…","indicators":{"cves":["CVE-2026-72176"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:35.810Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/05ea83ee88ca70f8932906d9f2617ff996f45b50","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/40a04601a3f66cabd6629c258a07af645a658865","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/50a753171d255895e5dd41566986b48dcec06f31","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6b6b5d7c2c957136b92c00b77b7175259f13082b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f63d6e5ba72aeacdee4fddc902bd7616cd62b919","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72177","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72177 — In the Linux kernel, the following vulnerability has been resolved: mm/damon/sysfs-schemes: fix dir…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmm/damon/sysfs-schemes: fix dir put orders in access_pattern_add_dirs()\n\nPatch series \"mm/damon/sysfs-schemes: fix wrong directories put orders in\nerror paths\".\n\nError paths of damon_sysfs_access_pattern_add_dirs() and\ndamon_sysfs_…","indicators":{"cves":["CVE-2026-72177"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:35.937Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/0710cc97962ca3bcabaa15ce7fead300faf726cd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a8c0592a80e954825f2ba29e7f32893f1df762f2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d58fdbe37a829fd2e5803dd4e5a72992dd8c5368","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e03442b0c48bdb034f5b7cf9f3b76d8025576071","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ee59df7a886a35113f309e3eb791060c46f79bb1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f18c561eb9c51f1ba3adb6117926a98a66599848","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72178","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72178 — In the Linux kernel, the following vulnerability has been resolved: mm/damon/core: always put unsucc…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmm/damon/core: always put unsuccessfully committed target pids\n\ndamon_commit_target() puts and gets the destination and the source target\npids.  It puts the destination target pid because it will be overwritten\nby the source target…","indicators":{"cves":["CVE-2026-72178"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:36.047Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/3b91c35961fa5553b4dd36db1f06e3b4acbfc05d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6a66c557a2ab2609575bafd15e093669c05f9711","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/837f619f1d98e967bd63e51ecd1e77bfa468992d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ea07e045611ca00f1ec7e448fd43e655d311158b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72179","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72179 — In the Linux kernel, the following vulnerability has been resolved: riscv: cacheinfo: Fix node refer…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nriscv: cacheinfo: Fix node reference leak in populate_cache_leaves\n\nCurrently, the while loop drops the reference to prev in each iteration.\nIf the loop terminates early due to a break, the final of_node_put(np)\ncorrectly drops the…","indicators":{"cves":["CVE-2026-72179"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:36.180Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/2560c97f63bb99b26d9f19b23a4f66ea24c9dc14","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/36e4843fe39ea2f17f4de6d59fba26271916c184","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/51afb7da697b698996351740b4f39fb05ce2afd4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/880ac50b0bfae06d7ab5f1843253adfb86aa173a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bf4a195f063b0a0805c1417f6aad1dd32ea48f0f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f322955d9a1c344ed943752f05aacea7bc22e025","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72180","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72180 — In the Linux kernel, the following vulnerability has been resolved: mm/huge_memory: preserve pmd_swp…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmm/huge_memory: preserve pmd_swp_uffd_wp on device-private PMD downgrade\n\nchange_non_present_huge_pmd() rewrites a writable device-private PMD swap\nentry into a readable one without carrying pmd_swp_uffd_wp() across.  The\nPTE-level…","indicators":{"cves":["CVE-2026-72180"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:36.293Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/2611f7521c6c124b1bef1be4fc319e0ca144502f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f7e2c21bd1f57cd5350eecdfdb5d6025ca6afbab","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72182","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72182 — In the Linux kernel, the following vulnerability has been resolved: power: supply: charger-manager:…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\npower: supply: charger-manager: fix refcount leak in is_full_charged()\n\nIn is_full_charged(), power_supply_get_by_name() is called to\nobtain a reference to the fuel_gauge power supply. If the\nvoltage check (uV >= desc->fullbatt_uV)…","indicators":{"cves":["CVE-2026-72182"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:36.510Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/193e6471e985c2f25d09b3fe96ec52f4eab89bd4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3999f47e4bbf864e3c7fbfd813fb2f651e6b5714","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4373cfa38ead58f980362c841b0d0bdf8c4d956c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6f75912cc6ff4c05ff13af351c4eea49b6b3c078","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/93b99b63ad5657225faf702670ddfeddf1f0ae29","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/afe3202c30bdff0635818ab525fe2694309d2692","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e44ad91e9f75f3e3ccbdb85ffe699471f9675e5b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e8631b883338ea4c3b5d8ddfbe16407af9f0b4b9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72184","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72184 — In the Linux kernel, the following vulnerability has been resolved: ntfs: fix hole runlist memory le…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nntfs: fix hole runlist memory leak in insert range error path\n\nntfs_non_resident_attr_insert_range() allocates hole_rl before mapping the\nwhole runlist. If ntfs_attr_map_whole_runlist() fails, the error path drops\nni->runlist.lock…","indicators":{"cves":["CVE-2026-72184"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:36.763Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/06769b8f23b4b645b270c438649fff79768fb6fe","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7d7f72cb21a829682f6d8968af4fbe413789d1fd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72187","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72187 — In the Linux kernel, the following vulnerability has been resolved: ntfs: avoid self-deadlock during…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nntfs: avoid self-deadlock during inode eviction\n\nAn attribute-list update performed while allocating clusters can drop the\nlast reference to the temporary attribute inode. Evicting that inode\ndrops its reference to the base inode a…","indicators":{"cves":["CVE-2026-72187"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:37.077Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/5a5f877c5df7605e9bae524a25ec0df9b9cb8ea8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/77dc384207d5fa63ba97c3bf3285fe1215a1cbf6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72189","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72189 — In the Linux kernel, the following vulnerability has been resolved: ntfs: fail attrlist updates when…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nntfs: fail attrlist updates when the superblock is inactive\n\ngeneric_shutdown_super() clears SB_ACTIVE before evicting cached inodes.\nIf eviction selects the fake inode for a base inode's unnamed\n$ATTRIBUTE_LIST attribute, ntfs_evi…","indicators":{"cves":["CVE-2026-72189"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:37.313Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/0ebe8f625ab0520217a425d7cd366e4670484941","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d5379035355c0dcb1e92a2544d40f48441e1d637","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72190","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72190 — In the Linux kernel, the following vulnerability has been resolved: ntfs: fix mrec_lock ABBA deadloc…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nntfs: fix mrec_lock ABBA deadlock in rename\n\nntfs_file_fsync(), ntfs_dir_fsync() and __ntfs_write_inode() lock an\ninode's mrec_lock before taking the mrec_lock of its parent directory.\n\nntfs_rename() takes old_ni->mrec_lock and old…","indicators":{"cves":["CVE-2026-72190"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:37.430Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/b3d09502b80dfe0bab9090ca532710da389f6c7f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/eb94f5a41a193a425e09a63cb75dffd151d8f42e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72205","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72205 — In the Linux kernel, the following vulnerability has been resolved: ntfs: free volume-wide resources…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nntfs: free volume-wide resources on fill_super failure\n\nntfs_fill_super()'s err_out_now path frees only the volume struct via\nkfree(vol), leaving several vol-owned allocations behind on every mount\nfailure:\n\n  - vol->nls_map, loade…","indicators":{"cves":["CVE-2026-72205"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:39.190Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/a9523a7d3b24b3a6b25ec1eb668ee6618cacf05e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/aca3d383a23cb7f3a2849c09fda3974f1838d941","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72212","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72212 — In the Linux kernel, the following vulnerability has been resolved: mm/memory_hotplug: fix incorrect…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmm/memory_hotplug: fix incorrect altmap passing in error path\n\nIn create_altmaps_and_memory_blocks(), when arch_add_memory() succeeds\nwith memmap_on_memory enabled, the vmemmap pages are allocated from\nparams.altmap.  If create_mem…","indicators":{"cves":["CVE-2026-72212"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:39.913Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/2f9e3ec17c3d2093c664c00a027588a446c39894","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2fac4afa0e2e68841334c78c1821e49f74fbc66a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3833e6abdbbfb59ec8203a84a84206cb7ffb41ac","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/722e6c54bde6391fb95f0357f555aca887c7b18c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72214","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72214 — In the Linux kernel, the following vulnerability has been resolved: power: supply: cpcap-battery: Fi…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\npower: supply: cpcap-battery: Fix missing nvmem_device_put() causing reference leak\n\nIn cpcap_battery_detect_battery_type(), the reference to an nvmem\ndevice obtained via nvmem_device_find() is not released with\nnvmem_device_put()…","indicators":{"cves":["CVE-2026-72214"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:40.130Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/700c225d829a1256b59053c34a1a9d1a6ab70b09","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a2c14ff63e0e02e3c832385e523e9cc81301171c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a3d81de441233a92ec21469cd0c4eb3c26b95cd8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b56a5cbf8f1f1a5740f1137c89b14d0373309d8d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/deaf6b3f8187231ad8f7770b10ed0be2cd47e9b2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fc65520fe0781a1ff46631f111e07b4a1c677b96","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72215","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72215 — In the Linux kernel, the following vulnerability has been resolved: MIPS: DEC: Ensure 32-bit stack l…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nMIPS: DEC: Ensure 32-bit stack location for o32 prom_printf()\n\nIn 64-bit configurations calling any firmware entry points from a kernel\nthread other than the initial one will result in a situation where the\nstack has been placed in…","indicators":{"cves":["CVE-2026-72215"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:40.233Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/1ed18b5c3be9657fe288fa4dae0bef2470598683","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/27857db30c98583e12dd8d939ba2370bce08a5be","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3394757c5d3970ab36d2aafa6dd40952b43f0d16","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3ae86630b94f72bf4012c6322f81f622dc4fdf24","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5ff79e8bdc75db51e30298a75939e2308e7658e0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9cd4a8ed12d2a6313592e43c14cca5eca6717bee","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d3fd2d358df0ca712183509cbbed6a16bde1d17e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d828bca84311e278093e60b2864a54f4bbb0c2ad","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72216","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72216 — In the Linux kernel, the following vulnerability has been resolved: remoteproc: qcom: Fix leak when…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nremoteproc: qcom: Fix leak when custom dump_segments addition fails\n\nFree allocated minidump_region 'name' in qcom_add_minidump_segments()\nwhen failing before adding the region to 'dump_segments'. Otherwise,\nthe 'name' is not track…","indicators":{"cves":["CVE-2026-72216"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:40.383Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/381c8a7a59da06293951c343857f4a2465b2c655","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/51aad3d89a2dd2bd34713785b0f2fd5177eb33b6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/65104d6eb43f066dcf73ca9ade6478824b17d867","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e5b1aaa74118e91f0c0f18b22b6f853199873db4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ecf9fc18e62c58eae1ceb65dab2bccb8a724de2d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72218","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72218 — In the Linux kernel, the following vulnerability has been resolved: lockd: Plug nlm_file refcount le…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nlockd: Plug nlm_file refcount leak on cached nlm_do_fopen() failure\n\nThe cached-file path in nlm_lookup_file() reaches the found: label\nunconditionally, even when nlm_do_fopen() fails. At that label\n*result and file->f_count are up…","indicators":{"cves":["CVE-2026-72218"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:40.613Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/3a5c55a19cad62f2973be25fe96a1a9e7f618e8a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/46d59ff421824b6483549d87f14efffbbbd1f6cb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6cd84cefd8b73e85b9eda17b319bd40a670f3a38","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/70a38f87bed7f0694fd07988b47b2db1e10d8df3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7ce4c23e783e766507b2cef27bbf97e9ca944f1a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/84008bf1860e0ef8059a7583a1163f36b704d08a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cb3420c047957e565101585bb4f15e1a6e3de6b0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fe3b45b56b6c3d4b6b341de27fa291005287a21c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72219","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72219 — In the Linux kernel, the following vulnerability has been resolved: lockd: Plug nlm_file leak when n…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nlockd: Plug nlm_file leak when nlm_do_fopen() fails\n\nA client can repeatedly drive nlm_do_fopen() failures by presenting\nfile handles that the underlying export rejects. After kzalloc_obj()\nsucceeds in nlm_lookup_file(), the freshl…","indicators":{"cves":["CVE-2026-72219"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:40.747Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/1161c4b5bd0048c8148e919f818a33cff3623ef0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1403f1221a35a6caf959bb7bf005741f17263c66","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/39f59bf67231ed2eb0cdf6337194360e964b609a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3f2dc01b9cb516d4727a3b9263ee58c71ca00ba9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bca74fff138429f3d5802865f38fc883d53a4f1a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d7c677feb3aa1f42b1026d75a8ea61338b51e4fb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ddfbd816273b4e9c9b836f5b8773664c6f40f807","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f16a1513452edb532fec81e591c64c320866719c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72223","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72223 — In the Linux kernel, the following vulnerability has been resolved: nvdimm/btt: Free arena sub-alloc…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnvdimm/btt: Free arena sub-allocations on discover_arenas() error path\n\nMemory allocated by btt_freelist_init(), btt_rtt_init(), and\nbtt_maplocks_init() is not freed on some discover_arenas() error\npaths. This leaks memory when are…","indicators":{"cves":["CVE-2026-72223"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:41.233Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/0b0d9404951aacc9717aa61e77af4a6e9e8f8249","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/13fe4cd9ddd0aacb7777812328be525a11ea3fea","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2d0364937550a7b3e2592629c2a68753ac020b28","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/30d490bb2c4cd220e7dedf862ab6a09eb5dcbad5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7563f69caa9143a491d5f26e563255c734751545","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/873ced7f345e99f7ee16f9ff226515580332ecc4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ba59b96d8d21dc8729fca44a022ca5919c1848c9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/eeb95774bc79268e2b78ebf01d8781560b5bd671","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72224","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72224 — In the Linux kernel, the following vulnerability has been resolved: nvdimm/btt: Free arenas on btt_i…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnvdimm/btt: Free arenas on btt_init() error paths\n\nThe arenas allocated by discover_arenas() or create_arenas() are not\nfreed on some error paths in btt_init(). This leaks memory when BTT\ninitialization fails.\n\nCall free_arenas() f…","indicators":{"cves":["CVE-2026-72224"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:41.370Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/0b63788093ff6ccfffe6e87de9e08aeeb406599c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1a6b6442a982d0ca5fb6a1a39b6f6dfd760eda57","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/52a7e7ece79c4b0f406149e19cd2b4b11a6c19e4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5804e6a6912b5a1e47c821777d69191d69a3fe64","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/68c967e105d50f885e02b0dbdc9211fd5f84bdcd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7e49684d90faa34ff6d5586be658e986d9d475ac","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9ab5293d9ac3f2c4232220e563d04701f5f44607","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f4ca396bdd60b4e0a665b2589bfc4ddbea9bda2b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72228","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72228 — In the Linux kernel, the following vulnerability has been resolved: batman-adv: frag: fix primary_if…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbatman-adv: frag: fix primary_if leak on failed linearization\n\nIf the skb has a frag_list, it must be linearized before it can be split\nusing skb_split(). But when this step failed, it must not only free the skb\nbut also take care…","indicators":{"cves":["CVE-2026-72228"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:49.617Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/353d2c1d5492e53ae34f490a84494124dc3d3531","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4f3bf293f7662500142234ae6f23725953690bc9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/777a88256d6f70672116e53400659cc417e1feaa","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a90f4fff9025371bce5371daa610af957de8dd6a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c1b28432fd6345e0d2308f39c507ed5750c265d2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d2148aeee93197ccf821114489775132f28eebf5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/db3c700826e8126fbdaa83468a9c4ee4ee65319f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e59b1960f71521ce4eb4397c4e82f5285601ab57","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72229","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72229 — In the Linux kernel, the following vulnerability has been resolved: batman-adv: clean untagged VLAN…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbatman-adv: clean untagged VLAN on netdev registration failure\n\nWhen an mesh interface is registered, it creates an untagged struct\nbatadv_meshif_vlan on top of it via the NETDEV_REGISTER notifier. But in\nthis process, another rece…","indicators":{"cves":["CVE-2026-72229"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:49.750Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/06ae245168268b705a204f93c318b30107d10e92","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5a82c558098889cc8bfff85cc62f563833205d91","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8669a550c752d86baebc5fdc83b8ff35c4372c0e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/86e32dfb6a6fe29898f4a562b7b6e38e480bba4d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c945f6007e7851e74706c72f98763023699bcd97","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dbca15fcbeed5276af440a53aed3901590fa7fc9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f15ca6250591cfe78408114a54eaa8d58da51bfa","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f2423da55976ea249f73029e468aefda4b94acba","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72230","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72230 — In the Linux kernel, the following vulnerability has been resolved: batman-adv: frag: free unfragmen…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbatman-adv: frag: free unfragmentable packet\n\nThe caller of batadv_frag_send_packet() assume that the skb provided to the\nfunction are always consumed. But the pre-check for an empty payload or the\nzero fragment size returned an er…","indicators":{"cves":["CVE-2026-72230"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:49.870Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/04ccbed8179e7d4d0906d00939300ddc5b48ce7e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/08047838817561cef33ada9774a2a4663d499ecb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/59e1da1ab354d1f2b7bab8d44f846262f990ad9d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/601dff01a03ecced59938cdd69eeb2c66e4158f2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6b628425aed49a1c7a4ffc997583840fc582d32b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/740542f11bf8c86411c429fbd7f84fc6bee80e76","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8f54162e07d3eea1e4ff21464cf2a815d79b6510","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a5155aeeae8ead3c6081f7f197608033e4dcfe75","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72236","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72236 — In the Linux kernel, the following vulnerability has been resolved: s390/perf_cpum_cf: Add missing a…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ns390/perf_cpum_cf: Add missing array_index_nospec() to __hw_perf_event_init()\n\nev variable is userspace controlled via event->attr.config and used\nas an array index after bounds checking, but without speculation\nbarriers.\n\nAdd the…","indicators":{"cves":["CVE-2026-72236"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:50.633Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/27206bb57c47bdbe33bccc78fa7f7e2a719a06b9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/49145bce539117db4b6e9e83c0e5ef528e361050","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a21f3615c88421df81060b6ff89220fd34094c4d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f79dff8c721bbb1f3fc312ea55e0551c2cc28801","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fa1ebae4206e6afc8caa642e9eb1bbe39a9a724f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72237","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72237 — In the Linux kernel, the following vulnerability has been resolved: perf/x86/amd/brs: Fix kernel add…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nperf/x86/amd/brs: Fix kernel address leakage\n\nA user-only branch stack can contain branches that originate from\nthe kernel. As a result, kernel addresses are exposed to user space\neven when PERF_SAMPLE_BRANCH_USER is requested. On…","indicators":{"cves":["CVE-2026-72237"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:50.733Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/046f6244da9b68e463a849b21446b9424e531491","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2e706be56f418718bb3ae66c0aa94f9b61150e6d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/47915e855fb38b42133e31ba917d99565f862154","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4f949bc3913a6e3ce3b8574ac6ed1da8ec7a5ad1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/90843d00dbc61220b66408ea0d8775cae9e51f70","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ac44b4a3d6137489f8fa2e794b12e849c6b22eaa","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72238","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72238 — In the Linux kernel, the following vulnerability has been resolved: x86/boot: Validate console=uart8…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nx86/boot: Validate console=uart8250 baud rate to fix early boot hang\n\nWhen the baud rate is empty, 0, invalid, or overflows to 0 when stored\nas an int, the system will hang during early boot because of a division\nby zero in early_s…","indicators":{"cves":["CVE-2026-72238"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:50.850Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/24fbed0a2a45f5f379ef2b53bd2abe58be1142ad","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4dad7e870c7e5178f71b5e1e4f67934b9e8cc207","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9a77a7639dfdc3eca417cd37620ce64da79c80c4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b4d05032e9af7137eab8f3af2855073f896ca843","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c1a276a731d02cbb728d0530f327a68728f2d8b0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/efa96a22613b86e05cd81229ce0be411c1a4a79a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f7c67c97b37c11f2a95c204092fb8159f2779e8f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ffa0aa5b625fe0bed7463ac613f8b06676ff4542","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72240","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72240 — In the Linux kernel, the following vulnerability has been resolved: mfd: sm501: Fix reference leak o…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmfd: sm501: Fix reference leak on failed device registration\n\nWhen platform_device_register() fails in sm501_register_device(), the\nembedded struct device in pdev has already been initialized by\ndevice_initialize(), but the failure…","indicators":{"cves":["CVE-2026-72240"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:51.063Z","fetchedAt":"2026-08-21T03:01:29.058Z","references":[{"url":"https://git.kernel.org/stable/c/0baf9d43a7b7b43df2900bd8656e75b725028b6e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/16a42c88c4667fa0bd944e438a667e059551f1f1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2ff8156fd500d54c61430b6834137fd0a07047ce","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/760a1029692f1d788dc11aa636a3bf432e58b240","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8c2f0b42fc252e1bf1c7746447091a468e784ca1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a3e340d506c1036a747fb0972aebf1063f7ef30e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bbb1ecaed4ed7680e63d3a0f143f03de32de5d6e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e2dac91380a10e9e8d5883fb73ce9d9b390a629c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72241","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72241 — In the Linux kernel, the following vulnerability has been resolved: leds: uleds: Fix potential buffe…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nleds: uleds: Fix potential buffer overread\n\nThe name string supplied by userspace is not guaranteed to be\nnull-terminated, so using strchr() on it might result in a buffer\noverread. The same thing will happen when said string is us…","indicators":{"cves":["CVE-2026-72241"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:51.183Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/263ccdd627caeda6e980ed3c6e32bb4fd6b380b1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5ad6f6c9209e5777b896def9876708853ae26d0d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5bb89e23729f3a59592d699a437bb001f24b8f67","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6dd51d84a9502553e58beade72823258871b8111","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8bf529571cca60fb8af65d6d034bdbbc99a9127c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a84c59121dfdc7b324f72dc5012aa8fe5e7d2d7b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a91ac9fdac7385cbc98aeae55b4e5302125497a2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c19fe864f667afc49d1391d764e20b66555bcf7a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72245","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72245 — In the Linux kernel, the following vulnerability has been resolved: gpu: host1x: Fix device referenc…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ngpu: host1x: Fix device reference leak in host1x_device_parse_dt() error path\n\nAfter device_initialize(), the embedded struct device in struct\nhost1x_device should be released through the device core with\nput_device().\n\nIn host1x_d…","indicators":{"cves":["CVE-2026-72245"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:51.657Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/3642d0a45214e3b4cf61bf5e75b04b490d0b3519","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4454caa204a2edb19c62754ddb96e5dbca0d2f49","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4ee41361c637eafa80f5d88b46d0016e6cdb24db","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8559b1501f77a5b5d003790bec170ca449e0c674","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a408d89e20d38d78f540e1951dc4c6056ad662e1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c4d6442ac3ed00041fe4e1df715717ed78a7d37f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e75717f9aec04355777be41070890c6a815c76df","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/edc7267b59a465c6ae7c5ffac2171c30962bd325","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72256","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72256 — In the Linux kernel, the following vulnerability has been resolved: netfilter: xt_cluster: reject te…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: xt_cluster: reject template conntracks in hash match\n\nxt_cluster_mt() treats any non-NULL nf_ct_get() result as a fully\ninitialized conntrack and passes it to xt_cluster_hash().\n\nThis causes a state confusion bug when th…","indicators":{"cves":["CVE-2026-72256"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:53.310Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/07f9ddbf5e799c24a3a52ec9bd7b729a6f6d69d5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/13ea4f86cf738c74be2146886ac261988a631e62","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4558bd7b47c7be82dffd837f27be8ea3ecee557d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4cb8b5f586e41c187942291cc0938006077fa79e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5b2d4f0010018a7aa3495aa1dbf1b7a34011e7aa","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5feba91006ec92da57acc1cc2e34df623b98541e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d5f9d050b0b267227c1f02f11021872c7768a9cc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fac2fdac3baad9ffd12b3b0bba4374d4b3585d54","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72257","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72257 — In the Linux kernel, the following vulnerability has been resolved: ASoC: qcom: q6apm: fix NULL poin…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nASoC: qcom: q6apm: fix NULL pointer dereference in graph_callback\n\nWhen q6apm_free_fragments() is called it frees rx_data.buf/tx_data.buf\nand sets them to NULL under graph->lock. A late DSP buffer-done response\ncan race with this:…","indicators":{"cves":["CVE-2026-72257"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:53.527Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/214af790e3a33ab73587de4c925c60a550eae9c6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2c715f8a1e644ce4c3e8be5b0fd3f1f4704b73b3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2e9261761b35f0b67b7487688cd1365f535be0b3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a164e744d8de1c41049bd9a1452a4b6bbf5bd8bc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ca028334343a140efda4b22e53cbce2c5e94a489","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ec369eac0795cfa8f4d3a0cd35a1e8e15f780331","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72258","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72258 — In the Linux kernel, the following vulnerability has been resolved: ASoC: mediatek: mt8183: Release…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nASoC: mediatek: mt8183: Release reserved memory on cleanup\n\nThe MT8183 AFE probe can assign reserved memory with\nof_reserved_mem_device_init(), but the assignment is never released on\ndriver removal or later probe failures.\n\nRegist…","indicators":{"cves":["CVE-2026-72258"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:53.747Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/03009465312ca35137f84cf84c95686137608deb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/48b6c39883637b444c2f976e7b8ca964b1889561","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bee65e00c0924ebecf97718d95dcf4a05ee36471","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e2d05ab62614162797fee28925279d9e8c2f200a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e42d8322b67f21493a832ec338aad1c93bd01ea7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72259","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72259 — In the Linux kernel, the following vulnerability has been resolved: ASoC: mediatek: mt8192: Release…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nASoC: mediatek: mt8192: Release reserved memory on cleanup\n\nThe MT8192 AFE probe calls of_reserved_mem_device_init() and falls\nback to preallocated buffers when no reserved memory region is\navailable. When the reserved memory assig…","indicators":{"cves":["CVE-2026-72259"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:53.907Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/4c9df23e121f1095f02cc7e1531ce3a6d74ff697","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/51c367230e30ed80b49d5330831c1f2c59405b02","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/756cfc0039fe9dc1388ea231821508a78a087afe","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/965e17ae6751c5d3302430c8ebd650e72d45a85f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/989cbe8cc86f4639f4e1fbe84ea0339759e92f1f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72260","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72260 — In the Linux kernel, the following vulnerability has been resolved: ASoC: mediatek: mt8192: Check ru…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nASoC: mediatek: mt8192: Check runtime resume during probe\n\nThe MT8192 AFE probe enables runtime PM temporarily while reinitializing\nthe regmap cache from hardware, but it uses pm_runtime_get_sync()\nwithout checking the return value…","indicators":{"cves":["CVE-2026-72260"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:54.100Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/6e2ee6eacc3ec7b339753abcf33812d27e03efe5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e0f276f1918a202e9c3ac72baffd311cecb6b8db","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e24d5dde56a50946020b134fa8448869093db76a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f6e424835cc05d215c57b6370b2c1e353dd02915","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/faa97a1a6cab01cd3e2055deb4db4e57efc43ff2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72263","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72263 — In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: topology: fix memory…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nASoC: SOF: topology: fix memory leak in snd_sof_load_topology\n\nWhen the topology filename contains \"dummy\" and tplg_cnt is 0, the\nfunction returns -EINVAL directly without freeing the tplg_files\nallocated by kcalloc() at line 2497.…","indicators":{"cves":["CVE-2026-72263"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:54.613Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/6ed7787c43ecf4ae27a3e700cab53a1ed646c7f8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d46f9f23897261da53ffbeb89d48a13982ba7d28","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72264","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72264 — In the Linux kernel, the following vulnerability has been resolved: fbdev: tridentfb: fix potential…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nfbdev: tridentfb: fix potential memory leak in trident_pci_probe()\n\nIn trident_pci_probe(), the memory allocated for modelist using\nfb_videomode_to_modelist() is not freed in subsequent error paths.\nFix that by calling fb_destroy_m…","indicators":{"cves":["CVE-2026-72264"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:54.743Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/089d149ccd7c3ac3d5e14ac65e558dcd9ec27583","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2efd9797331a559b93ab888f451838f87bd6dfa3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4ebe2c3a7db6332aab3655f8c552ca387c1dc199","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5bdb6f11ad0398b11a3ae4d9104035f9dc628cdc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7a35ec619d9af8ee128320975c1252b8ad65f1e8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/868432039a3fd7c2c0d515e48f33d5e43391666c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8d16e5bc78478176621cac0f4c381136d3c92c5f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/de9cf16e39c0378716e9764fc0fbb6d4b45a1ee1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72265","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72265 — In the Linux kernel, the following vulnerability has been resolved: fbdev: nvidia: fix potential mem…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nfbdev: nvidia: fix potential memory leak in nvidiafb_probe()\n\nIn nvidiafb_probe(), the memory allocated for modelist in\nnvidia_set_fbinfo() is not freed in the subsequent error paths.\nFix that by calling fb_destroy_modelist().","indicators":{"cves":["CVE-2026-72265"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:54.913Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/009a8514745b16c468acc25aa00539abbf38e1b5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2515cd60f6b5ad680ed164aa6bd19b05270af34c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/508704de34fb8c0dcbbf13397212363bbf0974de","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6ca48f23ce61a26349d7d084fb63b70499137c8e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7e747f7b17ccce750502fd4d0b4e866fe4f066a6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/85f5e38c162bdf9dbbe197275d416402712f3707","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e8172773e5251f4df2eed74caab6ca3195fed1ea","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ed3b3eb212441fb5f287dfd24ebafe11d634f009","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72266","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72266 — In the Linux kernel, the following vulnerability has been resolved: fbdev: vesafb: fix memory leak i…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nfbdev: vesafb: fix memory leak in vesafb_probe()\n\nSince commit 73ce73c30ba9 (\"fbdev: Transfer video= option strings to\ncaller; clarify ownership\") the string returned from fb_get_options()\nis expected to be freed by the caller. But…","indicators":{"cves":["CVE-2026-72266"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:55.090Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/124df55c7201d011a3fead2205685b6c47eae093","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/43af398217ca8940bf30643fd1150b4c655b8a88","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/58bc18e03481b62f0ec53fe47f36615d52660a7d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7b96ce9f8e47538c3c6eebbb217c94d696975cac","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b15d708995c01bbffe7dcd634a31959f6805bed3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72267","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72267 — In the Linux kernel, the following vulnerability has been resolved: fbdev: carminefb: fix potential…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nfbdev: carminefb: fix potential memory leak in alloc_carmine_fb()\n\nThe memory allocated for modelist in fb_videomode_to_modelist() is not\nfreed in the subsequent error path.\nFix that by calling fb_destroy_modelist()","indicators":{"cves":["CVE-2026-72267"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:55.250Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/6069044e74b7510bf2f034ccd049bc962fb9c765","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6fcca16a2b19c37f60693c56cbc0c923364ff3ef","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/97b6c3f6e82a526d95dcfbfcf1c42ba44c61c3d6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b51990be8411335c263b51e9f4def1e84bfaa923","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bcc43b2f7410eddb21f73e9a650499a6432c9383","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d21e6747f3f68dcce59b5d2205f98633d28f69eb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d81860691e4cfa14d596136ea2727f244e9e5950","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dae8f6ddc35cb1673dba32d2fd8f1f85cd377adf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72268","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72268 — In the Linux kernel, the following vulnerability has been resolved: fbdev: tdfxfb: fix potential mem…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nfbdev: tdfxfb: fix potential memory leak in tdfxfb_probe()\n\nIn tdfxfb_probe(), the memory allocated for modelist using\nfb_videomode_to_modelist() when CONFIG_FB_3DFX_I2C is defined, is not\nfreed in the subsequent error paths.\nFix t…","indicators":{"cves":["CVE-2026-72268"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:55.467Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/2199d70efc5bea0e9b4462a4f9e4c3d3c21c5d34","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/237611edf15172e4dc7fa9b3b71c2445602d3459","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2fd16a94bea5e0c3e93791436cf8a800b175762a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b039e0693df003c5baa1e89630344f92a78afb15","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b7b26adc2718ca8f81ca75cd03aee94269d00e8a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bb019d755366cc3e777a12d4bf457ff289837370","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dfbb1a695d8891774c80c0e2a9192afb66469eb7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e1ca9b8559e0f5959228626bdeaae530a1ee0337","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72269","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72269 — In the Linux kernel, the following vulnerability has been resolved: fbdev: uvesafb: fix potential me…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nfbdev: uvesafb: fix potential memory leak in uvesafb_probe()\n\nDue to an incorrect goto label, memory allocated for modedb and modelist\nin uvesafb_vbe_init() is not freed in some error paths. Fix this by\nupdating the goto label.","indicators":{"cves":["CVE-2026-72269"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:55.643Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/033e56fed09047ee63072e9f58789f40c1c7079d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/12fe6a56506ed3bf0aaf6130a29102ce1fce62da","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/61d46d6f5dc163aa5f3548633b5f392b021620ff","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/81985921e14f5b471fc0ffe990826d0bda52c0cf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/aa387a3e51808f580b51593e3c2f3d4703d91c1a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c53fdf7ee65af1b9b4566cc437d3754ce7b47118","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c606c28085a3106c91c6d37bbbbf97b451d572ce","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f413512c79c2d0012c6ed486e4025e1489e6d443","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72270","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72270 — In the Linux kernel, the following vulnerability has been resolved: fbdev: s3fb: fix potential memor…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nfbdev: s3fb: fix potential memory leak in s3_pci_probe()\n\nIn s3_pci_probe(), the memory allocated for modelist using\nfb_videomode_to_modelist() is not freed in subsequent error paths.\nFix that by calling fb_destroy_modelist()","indicators":{"cves":["CVE-2026-72270"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:55.873Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/0d0fa8425b29657b3d3e5bb36f50a50e57c8101f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/25b354f74b028a3f91b12e6b446256965744c477","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/37f4b8bd9e3835a7d4da26baf80b497e478d3123","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3b0ed04bc852887a9164e1bbf521652e8ef3eb92","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/56964e8039150a14462005458b25f19d6cad8f4a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ad54698255a4b988cae1ad908c158c1d4128887c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ef6c5e4607483259a0daf6584e9e34ef643a655d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fc90ec978a3cef6f6d8c6074bee538998c7c9837","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72271","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72271 — In the Linux kernel, the following vulnerability has been resolved: fbdev: i740fb: fix potential mem…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nfbdev: i740fb: fix potential memory leak in i740fb_probe()\n\nIn i740fb_probe(), the memory allocated in fb_videomode_to_modelist()\nfor modelist is not freed in the error paths. Fix that by calling\nfb_destroy_modelist().","indicators":{"cves":["CVE-2026-72271"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:56.093Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/146b708bc75f1e6cf70df31195632c9946cb70fd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2ede8fa708235c81ab18de14077f1a458bec7e22","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3c0cf89b74e7b8ebc21a1542937c8e912d19f22b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5936063409af230a2c88b8700c47b89a19fd70b5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/aebdbe61b3960cd22b8bb6e70e3d94fb3bbb202c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ccf073cd4a2f783adc40b04db3805dbddaaf9f31","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d3776b1bf9c100873c7365bd31a67ed6caacbd82","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e1ecbaeec5fbf0b0e2d5810ec574f762d148771e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72272","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72272 — In the Linux kernel, the following vulnerability has been resolved: fbdev: radeon: fix potential mem…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nfbdev: radeon: fix potential memory leak in radeonfb_pci_register()\n\nThe function radeonfb_pci_register() allocates memory for modelist\n(by calling radeon_check_modes() which calls fb_add_videomode()).\nThe memory is appended to inf…","indicators":{"cves":["CVE-2026-72272"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:56.550Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/1b1b43342fbf11eaf2a8926b9ed4805579d772ac","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1c5387451176db5def499db809d718765f359a37","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/30a2ff955b66b16d4c98dc61f4fe8b3a57c6f7bb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a94a4a0ec2684454934ba104988d6222836a572f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c2c795a320e7ef9aa69c7f4bd2c9ac07064eff9a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c622a3eed6ad26879b6c0bc208fd6e3ffc4b7de3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/df8c1101c9a08859da612b5d0a08d55d475522c6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f4dacbfd885f34222e67145294de9b8479aa021d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72273","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72273 — In the Linux kernel, the following vulnerability has been resolved: fbdev: efifb: fix memory leak in…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nfbdev: efifb: fix memory leak in efifb_probe()\n\nSince commit 73ce73c30ba9 (\"fbdev: Transfer video= option strings to\ncaller; clarify ownership\") the string returned from fb_get_options()\nis expected to be freed by the caller, but t…","indicators":{"cves":["CVE-2026-72273"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:56.887Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/475383daf5f855f5b2c3a9aa801f69b69a81799e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5276e3f75ddb51f980a8903f4b39e73cf42415e5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9b6eaf101656958397a6012bf43f6e2e42c9e5cb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fafb2e08741b20027cee77918816de29a32d6fd6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/febb5b4f67ace78d6b6862cc3c853b64710afb6c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72274","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72274 — In the Linux kernel, the following vulnerability has been resolved: fbdev: hecubafb: fix potential m…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nfbdev: hecubafb: fix potential memory leak in hecubafb_probe()\n\nThe memory allocated for pagerefs in fb_deferred_io_init() is not freed\non the error path. Fix it by calling fb_deferred_io_cleanup().","indicators":{"cves":["CVE-2026-72274"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:57.107Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/2952767e399e2796d45644ea50f442988d2bb02d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3eb2bc1009c2476426ffbaf642d7ac82f4685b4d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/612ea3a8e525580aa82f26ab873e285f5caf9d99","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7de72f7534d961b117e0b051fa8798975036f5f3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9a94b85531852eb86283eca36ab041782c6b3518","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cbef2a305a8a72969b86f96b7c07b86edde61aff","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d684ce2db92b1093bcca2b42e5160a5fe23eb496","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72275","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72275 — In the Linux kernel, the following vulnerability has been resolved: fbdev: broadsheetfb: fix potenti…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nfbdev: broadsheetfb: fix potential memory leak in broadsheetfb_probe()\n\nThe memory allocated for pagerefs in fb_deferred_io_init() is not freed\non the error path. Fix it by calling fb_deferred_io_cleanup().","indicators":{"cves":["CVE-2026-72275"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:57.353Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/07d2f9cb667c2f6331a483227c62d0a4a91ef42f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4ce94f9e3bfb37866638e4b81e2c3d8f7470a12c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/54a4cd11702d5e8bcefc3b514e338955813993a1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9d18a4e4234fd3ee0d0eed8ccbbb50cb76b2232c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e818c397548cde68d64c6abf8be0a5f3e3eef7d1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e8c9aae8c950869f65af8b9dd2f71f861ea6e433","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/edc5a845108337d0c167ab850fe9adfaea442975","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72276","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72276 — In the Linux kernel, the following vulnerability has been resolved: fbdev: metronomefb: fix potentia…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nfbdev: metronomefb: fix potential memory leak in metronomefb_probe()\n\nThe memory allocated for pagerefs in fb_deferred_io_init() is not freed\non the error path. Fix it by calling fb_deferred_io_cleanup().","indicators":{"cves":["CVE-2026-72276"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:57.590Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/01708cf3dca2f88eca26269521cbcc8e2f054ee4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6854cf33dddb212bd7c3d69189623876e7334075","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/77e26383083c59a67244fcf2e70eecd354451906","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/894632b862a39b3fe1cb5de06fbae86225ea64de","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a889978ec44fe33edb3fb7140dcbbb8e6465c1cb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d54bb39cd34f44b32d5c4a8416fff8b01a9e76be","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f779bd494f9521f89bfd4ce23953f3527341e9fd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72281","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72281 — In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: account pKVM reclaim…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nKVM: arm64: account pKVM reclaim against the VM mm\n\nProtected guest faults charge long term pins to the VM's mm. Teardown\ncan run later from file release, where current->mm may be unrelated.\n\nDrop the charge from kvm->mm instead.","indicators":{"cves":["CVE-2026-72281"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:21:58.433Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/34d8d7242c52c174add6b413d56420aa60f8054c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d098bb75d14fde2f12155f1a95ec0168160867ce","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72290","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72290 — In the Linux kernel, the following vulnerability has been resolved: KVM: s390: pci: Fix GISC refcoun…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nKVM: s390: pci: Fix GISC refcount leak on AIF enable failure\n\nkvm_s390_gisc_register() registers the guest ISC before pinning\nthe guest interrupt forwarding pages and allocating the AISB bit.\nIf any of the later setup steps fails,…","indicators":{"cves":["CVE-2026-72290"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:00.917Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/3882224b0e714f34de91e5f28307c5d3fccfe8f8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5fb75c5272950b3ebe8bdee7abfdafd44f38313b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6cd6e1c978784eec9032e2fe94a53e62b674fe3e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6e69317cd44a2f21f8f7a9d93eb3220e868adfa8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7b69729046a4c58f4cb457184e5ac4aaa179bff4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/adce12bb0e0dc82d1d6f0821c9faee3145e62a6f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72292","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72292 — In the Linux kernel, the following vulnerability has been resolved: KVM: s390: Initialize KVM_S390_G…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nKVM: s390: Initialize KVM_S390_GET_CMMA_BITS memory\n\nkvm_s390_get_cmma_bits() allocates its output buffer with vmalloc(),\nwhich does not zero the returned pages:\n\n\tvalues = vmalloc(args->count);\n\nIn the non-peek (migration) path, d…","indicators":{"cves":["CVE-2026-72292"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:01.377Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/a4a19941ccb2164edc3491faa5ac5df82e94b363","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c7dda3d0f869dc97223448a06c9a2e5235928e48","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72293","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72293 — In the Linux kernel, the following vulnerability has been resolved: KVM: s390: vsie: Add missing rad…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nKVM: s390: vsie: Add missing radix_tree_preload() in _gaccess_shadow_fault()\n\nAdd missing radix_tree_preload() in _gaccess_shadow_fault() to\nguarantee forward progress. The core of _gaccess_shadow_fault() has\nbeen split into ___gac…","indicators":{"cves":["CVE-2026-72293"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:01.583Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/0c3d4ca328e661cb4eda3bb344ea17e4b6a63171","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/668e70cc545e2659f3c4adad20a0883533042473","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72300","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72300 — In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: topology: validate ve…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nASoC: SOF: topology: validate vendor array size before parsing\n\nsof_parse_token_sets() reads array->size while iterating over topology\nprivate data. The loop condition only checks that some data remains, so a\nmalformed topology wit…","indicators":{"cves":["CVE-2026-72300"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:02.690Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/201b60c4d15538fcc3c0c2ea9b75dd7d0f58022c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7c6d2d2baeb1e62dc8c6951d27edc16c5ea6e3aa","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8468dd79cfb2ffbdeaf7c353f63d64941cb8ba05","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a40e250414b463e953c54cd2a829c9a9a49a78c3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d34deef34c99bb4b3ebd2ac51058857827a20e7e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72305","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72305 — In the Linux kernel, the following vulnerability has been resolved: VDUSE: avoid leaking information…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nVDUSE: avoid leaking information to userspace\n\nThe bounceing is not necessarily page aligned, so current VDUSE can\nleak kernel information through mapping bounce pages to\nuserspace. Allocate bounce pages with __GFP_ZERO to avoid le…","indicators":{"cves":["CVE-2026-72305"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:03.217Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/00335df9da2011e095f846d645cc2e9fd2907659","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5e88c1bc3a41d9a260dd42bae8ad18fd4f35bbe1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/690fb82c4122f8c2656fa4f842275132771b68b9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9c1523803445ee0348f62b77793266dd981596e0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fde25641cbddd0c084e3320d08f755e7e6acfae5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72306","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72306 — In the Linux kernel, the following vulnerability has been resolved: vduse: Fix race in vduse_dev_msg…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nvduse: Fix race in vduse_dev_msg_sync and vduse_dev_read_iter\n\nThere is one race case in vduse_dev_msg_sync and vduse_dev_read_iter:\n\nvduse_dev_read_iter():\n    lock(msg_lock);\n    dequeue_msg(send_list);\n    unlock(msg_lock);\nvdus…","indicators":{"cves":["CVE-2026-72306"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:03.330Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/09723f26ed801c083e914cec4cc0e1af4b933dc7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3755965adbb617f4283ac6ccd351ed0676843cba","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8062ff9d366c4bc4ae775e14eac9a769f20c60dd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ae9c13b6fd79087cc5a216ee1649b6f012c2a238","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c83ad3dfa6d9953d5ce6839416bf5a1bfc50285a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d7e7c813834c6c05c26033456ab7169e2f9c99eb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d8715b5a8fdb23fef576700e71d0c253dbeddad4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72307","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72307 — In the Linux kernel, the following vulnerability has been resolved: mlxsw: fix refcount leak in mlxs…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmlxsw: fix refcount leak in mlxsw_sp_vrs_lpm_tree_replace()\n\nWhen mlxsw_sp_vrs_lpm_tree_replace() fails after replacing some VRs,\nthe error rollback loop does not correctly revert the preceding\nreplacements. The loop decrements the…","indicators":{"cves":["CVE-2026-72307","CVE-2026-72308"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:03.440Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/21cf8dc478a49e8de039c2739b1646a774cb1944","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/220d41bdce41fe5a39a7f419faab1e907b4093c2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3a2b47d1b4b3de54d030a7fdb6a322c970513ee3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7203ac71d3895fa5948b319dd724f0e1cffbc4a1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8adebf07b46df79a0e49a6d4ae384f0db7c91db6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9e4a6185679922305ea1df68403f00ccc512656b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c2c75c45b54f3b12eafb28a4eb47f8821512c1aa","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f6454a5fbf2224ad30ec70e686a6c592561da1f2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1cf8a1af42b1f12a30b7abd34fe4fc23b3170e7e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2d8b3c3e129973a51ae924bdcf6993a76b828814","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/41c8c1d65b32beacd8d916a22457b4f6e47f45af","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8b3350eacd9df0597bfe36a594df7b9def0b3edf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cab468c3c03f4bcd7530ce2783a4140da14efb7b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72309","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72309 — In the Linux kernel, the following vulnerability has been resolved: tracing/remotes: Fix leak in tra…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ntracing/remotes: Fix leak in trace_remote_alloc_buffer() error path\n\nIf page allocation fails in trace_remote_alloc_buffer(), desc->nr_cpus\nis not yet incremented for the current CPU. As a consequence, on error,\nhalf-allocated rb_d…","indicators":{"cves":["CVE-2026-72309"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:03.673Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/81a7b7ddb07efdd8cf30eac6def18b9289b8de1e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ec082d0b978b5fb4c11205ccce63587ac94c74e1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72311","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72311 — In the Linux kernel, the following vulnerability has been resolved: drm/xe: free madvise VMA array o…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/xe: free madvise VMA array on L2 flush failure\n\nxe_vm_madvise_ioctl() allocates madvise_range.vmas in get_vmas().\nAfter get_vmas() succeeds with at least one VMA, error paths must go\nthrough free_vmas so the array is released b…","indicators":{"cves":["CVE-2026-72311"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:03.913Z","fetchedAt":"2026-08-21T03:01:29.059Z","references":[{"url":"https://git.kernel.org/stable/c/14abbed336a2d1bbd726c25d148d2ec0ff928073","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bf126747e7bff55e5ba0b1ec10fc5fce99feaed9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72316","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72316 — In the Linux kernel, the following vulnerability has been resolved: dm era: fix NULL pointer derefer…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndm era: fix NULL pointer dereference in metadata_open()\n\nmetadata_open() returns NULL when kzalloc_obj() fails, but the\ncaller era_ctr() only checks IS_ERR(md).  Since IS_ERR(NULL)\nreturns false, the NULL pointer is treated as a va…","indicators":{"cves":["CVE-2026-72316"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:04.503Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/01c49eae7c6256f2d8cc08210a2bac3ee070e43a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/14e03ecd3b1b5fc03c082b27a2f8889f8290c30e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/17eb2ab13edd0b06ce6f996c5fd450d7efabb2e8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/889374b8e4a60d13fe4a5a8ae3a311ca93d1a2c3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9ae672606c17891d90b282e3490b817620549599","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a705e056c2f3dd067fb2ff414f0537530baa090b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b69ea153d30ce19ca8997eeeca1e2219fae5a29b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bd5a80128bdfc93b1cae935a70da000b8c483e6e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72321","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72321 — In the Linux kernel, the following vulnerability has been resolved: ipv4: igmp: Fix potential memory…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nipv4: igmp: Fix potential memory leaks in igmp_mod_timer() and igmp_stop_timer()\n\nWhen a timer is deleted and not re-armed in igmp_mod_timer(), or stopped\nin igmp_stop_timer(), the code currently decrements the reference counter\nof…","indicators":{"cves":["CVE-2026-72321"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:05.103Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/3546deaa0c30a14c7cdb5dc8f2432cb428f0cd36","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/95128dc74425ec19ed4f2077ccc651e791ff4b75","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f60ec3058a85447008b88b762c859d336163acb3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72324","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72324 — In the Linux kernel, the following vulnerability has been resolved: gpio: mvebu: free generic chips…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ngpio: mvebu: free generic chips on unbind\n\nirq_alloc_domain_generic_chips() allocates generic chip data that must\nbe freed via irq_domain_remove_generic_chips(). The devres action\nmvebu_gpio_remove_irq_domain() only called irq_doma…","indicators":{"cves":["CVE-2026-72324"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:05.447Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/3649b04f86b95243fa0c845695051455fa2ba40b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3bfcce441c552133adeeb99c294d0ce8a62612ef","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b11c513ad943f35cf5e8007d3a56279c79b7ed4b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d73e4d790db611da7439e78a6ab6cb32e7885ab8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72325","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72325 — In the Linux kernel, the following vulnerability has been resolved: perf/x86/amd/core: Avoid enablin…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nperf/x86/amd/core: Avoid enabling BRS from the SVM reload path\n\nBranch Sampling (BRS) and Last Branch Record (LBR) are mutually\nexclusive hardware features, and users of both are tracked via\ncpuc->lbr_users.\n\nWhen SVM is toggled on…","indicators":{"cves":["CVE-2026-72325"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:05.547Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/07c60dda9c059c09f83d42a3ebda2e7cc1cf3bc2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/46d0fd8535edce31f15e48d2de1bdee39a4850e5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7cc438c99bba324a0562b1bafa747b10f7e251df","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e9b1a7411a667539c2f55e720bbb5f623b526a32","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72326","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72326 — In the Linux kernel, the following vulnerability has been resolved: net/sched: cake: reject overhead…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet/sched: cake: reject overhead values that underflow length\n\nCAKE accepts signed overhead values and stores them in an s16, but the\nadjusted packet length calculation uses unsigned arithmetic.  A negative\neffective length can the…","indicators":{"cves":["CVE-2026-72326"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:05.660Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/297f459865360b46a887667cbf3aac6a6f013841","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/336c1e414fc0e9844d445174e8ada2a7dd8d1c4b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7aa0e64fea778a9e3df73e64da95367ff8ad2ea5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b7f97cae7ec1b6c3c32843c42be218690d310467","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bcdf3a3664f7d2c4e37e155f30f72ef33f041804","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e1df6cff03aad8c96e55a8b2a991e505c7a3ff6f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f1e7807df5bf2d42a40266430e9f82f37633cdcf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f511dd7bf6077aa7afbe72914520553fedaacbb4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72327","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72327 — In the Linux kernel, the following vulnerability has been resolved: drm/v3d: Reject invalid indirect…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/v3d: Reject invalid indirect BO handle in indirect CSD setup\n\nv3d_get_cpu_indirect_csd_params() looks up the indirect buffer object\nfrom a userspace-supplied handle but never checks the result. A bogus\nor stale handle makes drm…","indicators":{"cves":["CVE-2026-72327"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:05.780Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/2f8b8593c7832fad655290cef9e99af05b1b52b3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5d65dade4d84913d1879f3db6a12ac007e08314b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/762116dfa72865c82151970960f7cf34f44b21c8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7c27f630dc78b673e136cab7d410399a1c52146a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72332","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72332 — In the Linux kernel, the following vulnerability has been resolved: accel/amdxdna: Prevent PM resume…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\naccel/amdxdna: Prevent PM resume deadlock in hwctx_sync_debug_bo()\n\namdxdna_hwctx_sync_debug_bo() invokes the hardware hwctx_sync_debug_bo()\ncallback while holding xdna->dev_lock.\n\nThe callback may call amdxdna_cmd_submit(), which…","indicators":{"cves":["CVE-2026-72332"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:06.310Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/2d8eeb0578ae3aadf112fd3e1997e58178f75979","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e35c9cf5512814fb04f369f2eada64f0a7164609","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72333","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72333 — In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: fix tx ident l…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nBluetooth: L2CAP: fix tx ident leak for commands without a response\n\nCommit 6c3ea155e5ee (\"Bluetooth: L2CAP: Fix not tracking outstanding\nTX ident\") changed ident allocation to use an IDA, releasing idents in\nl2cap_put_ident() when…","indicators":{"cves":["CVE-2026-72333"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:06.433Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/0c602cb8f148a36bfb39c25ade400bdadc023c4f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6e1930ece855a4c256f1c7e6632d634cfb9888b5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b8a32a5fc915b024c60f18d51b6cffd2bd64d4a6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bd1e01170341291292fd4c46b5f6949da282ca6c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d0a2b0c81f112540a337cde1c20251bf05ddf1da","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72336","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72336 — In the Linux kernel, the following vulnerability has been resolved: Bluetooth: 6lowpan: hold L2CAP c…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nBluetooth: 6lowpan: hold L2CAP conn across debugfs control\n\nget_l2cap_conn() looks up an LE hci_conn under hdev protection, but\nthen drops that protection before reading hcon->l2cap_data and before\nlowpan_control_write() later dere…","indicators":{"cves":["CVE-2026-72336"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:06.817Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/23a83bac3356e7b211bcdcf581a31f7b536a2c24","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/32c48c7f6cc8c7888e46a8c81622154ccafda5d2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/518aa9505fa10ea5662349e5d2efd8c9e32a820b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ba1f1ef6522e63aa5dd29805b4390ea2ccadf05e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d2a8dc1f619c9e0e4126bee795c39ebddd2ec8ff","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72337","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72337 — In the Linux kernel, the following vulnerability has been resolved: Bluetooth: 6lowpan: avoid untrac…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nBluetooth: 6lowpan: avoid untracked enable work\n\nlowpan_enable_set() allocates a temporary work item and schedules\ndo_enable_set() on system_wq, then returns to debugfs. The debugfs active\noperation has ended at that point, but the…","indicators":{"cves":["CVE-2026-72337"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:06.953Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/352a59dc1f4a41314b6f827c17e16af7ca88271a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/feb3fc2c38ed52003142f31e04109719b200c049","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72341","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72341 — In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: Fix publication race…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet/mlx5e: Fix publication race for priv->channel_stats[]\n\nmlx5e_channel_stats_alloc() publishes a new entry to\npriv->channel_stats[] and then increments priv->stats_nch as a\npublication token, but neither store carries any memory…","indicators":{"cves":["CVE-2026-72341"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:07.403Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/5a799714e8ca0bce9ea40694f49914cf1adbbaa9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5c7e3755abf663f033de24f917b77685e9543045","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/815515ec68f527ca755cb1e2c1ff9148f6b3ea56","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72346","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72346 — In the Linux kernel, the following vulnerability has been resolved: platform/x86: bitland-mifs-wmi:…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nplatform/x86: bitland-mifs-wmi: Fix NULL pointer dereference during suspend/resume\n\nThe driver registers two distinct WMI devices: a control device\n(BITLAND_WMI_CONTROL) and an event device (BITLAND_WMI_EVENT). During\nthe probe pha…","indicators":{"cves":["CVE-2026-72346"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:07.963Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/6f2cb20d8e286218d51754f06ee219d8ce754b18","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d3666875c75eb1bc8090343fa0d6fc8fb7924356","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72349","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72349 — In the Linux kernel, the following vulnerability has been resolved: netfilter: xt_rateest: fix u64 t…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: xt_rateest: fix u64 truncation in xt_rateest_mt()\n\nOn links faster than ~34 Gbps, where byte rate may exceed 2^32-1\n(~ 4.3 GBps), the comparison result becomes incorrect because the\ntruncated value no longer reflects the…","indicators":{"cves":["CVE-2026-72349"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:08.297Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/444853cd438201007da5359821adcc2995655ab1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5da915fc159c6b4091669447588e520183969cca","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/77e9ba358d63fe2eb03c90d29ea85651d95cf2e6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/905a927b2e6fec7b174e9e5644d271047b61378f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a3ba938f45cb00f6bf49d3aa3647df9b017f5f08","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bab305dd769d78074adca73505cc2509e1206bf2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d5cc4c12a4b90bf099199c3c49ecda7e694f2a2b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e702f6dd5d21e331f55fd9168c0210542008546d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72359","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72359 — In the Linux kernel, the following vulnerability has been resolved: drm/xe: fix NPD in bo_meminfo()…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/xe: fix NPD in bo_meminfo()\n\nWhen a buffer object is purged, its ttm.resource is set to NULL via the\nTTM pipeline gutting flow. However, the BO remains in the client's\nobject list until userspace explicitly closes the GEM handl…","indicators":{"cves":["CVE-2026-72359"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:09.337Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/5ff2212f0e0779b0b0cbf91fbf970144107c4257","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b5c55015d4164a0f206bcdcf2985da948b3c7837","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72361","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72361 — In the Linux kernel, the following vulnerability has been resolved: drm/xe/hw_engine: Fix double-fre…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/xe/hw_engine: Fix double-free of managed BO in error path\n\nThe error path in hw_engine_init() explicitly frees a BO allocated\nwith xe_managed_bo_create_pin_map() via xe_bo_unpin_map_no_vm().\nSince the managed BO already has a d…","indicators":{"cves":["CVE-2026-72361"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:09.530Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/1f6b44d555ecce61e249220f2ca4d75cdb90caf6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/23ee91355e31947595b86ebb9ef4664f20fd926d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7ac3cae7a251d28e9079de07a991bd4eb2bb7fd8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a0a56b4480a0dc921a42cd70e9fc081a12ab8359","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72362","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72362 — In the Linux kernel, the following vulnerability has been resolved: drm/xe/pt: Fix NULL pointer dere…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/xe/pt: Fix NULL pointer dereference in xe_pt_zap_ptes_entry()\n\nThe page-table walk framework may pass a NULL *child pointer for\nunpopulated entries. xe_pt_zap_ptes_entry() called container_of(*child)\nbefore checking for NULL, t…","indicators":{"cves":["CVE-2026-72362"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:09.627Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/3feeb667197bd58a17f4edfdbcad249ffcb3c864","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/78b1074966d290d4517f42bc81e13c4349368d12","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d94b9922b2ae5ee6e900f8da0bd537b251c6110c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ff330ce16c846b70164ff0eb544c81219d4c5c08","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72363","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72363 — In the Linux kernel, the following vulnerability has been resolved: netfs: Fix folio state after ENO…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfs: Fix folio state after ENOMEM whilst under writeback iteration\n\nFix the state of the current folio when ENOMEM occurs during writeback\niteration.  The folio needs to be redirtied and unlocked before the\nterminal writeback_ite…","indicators":{"cves":["CVE-2026-72363"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:09.723Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/1a4421c7a5611db554328f721a4f7642440b44bd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a9b89752c2726e88ea67994fb97a0316b24d30b7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b6a713fd34b9498ee2164d5d3e8460732a392efc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72365","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72365 — In the Linux kernel, the following vulnerability has been resolved: netfs: Fix writethrough to use c…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfs: Fix writethrough to use collection offload\n\nFix writethrough write to set NETFS_RREQ_OFFLOAD_COLLECTION on the request\nso that collection is processed asynchronously rather than only right at\nthe end - and also so that async…","indicators":{"cves":["CVE-2026-72365"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:09.923Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/0348e3fa0dfbf152af687e86ce079742b1860da9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7838131e296dfbb639ea278901a53c018322c11e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ba6a9f6533c77c628eef0c0c5c19cd316e2be1b4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72370","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72370 — In the Linux kernel, the following vulnerability has been resolved: iomap: release pages on atomic d…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\niomap: release pages on atomic dio size mismatch\n\nIf bio_iov_iter_get_pages() or the bounce helper succeeds but builds a\nshort bio, the REQ_ATOMIC size check rejects it before submission.  The\nold error path only dropped the bio re…","indicators":{"cves":["CVE-2026-72370"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:10.473Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/27ddd3442fc6f698fb8577c7cfb243ddd81ea8c0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/681e452683b69a8e1a571cba0f238f8ceacf55d2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72376","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72376 — In the Linux kernel, the following vulnerability has been resolved: afs: Fix misplaced inc of net->c…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nafs: Fix misplaced inc of net->cells_outstanding\n\nFix net->cells_outstanding being incremented before the check for failure\nof idr_alloc_cyclic(), leaving the count incremented on error.","indicators":{"cves":["CVE-2026-72376"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:11.090Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/5ea289ca751c47125f6a4138c93ba10c05cd28f0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/654a546c34f3921dd03f9ea74e60139ebffd9e20","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6e310f818abcef947a06584158b9e6c6cd0c98d3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c9c3b615a462a4023bd148f02c564e175ed10502","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72377","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72377 — In the Linux kernel, the following vulnerability has been resolved: afs: Remove setting of AS_RELEAS…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nafs: Remove setting of AS_RELEASE_ALWAYS for symlinks and mountpoints\n\nRegular AFS files correctly use afs_file_aops which have release_folio\nset as netfs_release_folio, so AS_RELEASE_ALWAYS is valid for them\nwhen fscache is enable…","indicators":{"cves":["CVE-2026-72377"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:11.180Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/81e985b4c3a6cbcc443fcdcd3ebda7fcc845d459","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9d6b0f6d437e2f8350e08678e5e1d20c11c364f3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72379","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72379 — In the Linux kernel, the following vulnerability has been resolved: fs: refuse O_TMPFILE creation wi…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nfs: refuse O_TMPFILE creation with an unmapped fsuid or fsgid\n\nvfs_tmpfile() never checked that the caller's fsuid and fsgid map into\nthe filesystem.  On an idmapped mount whose idmapping does not cover the\ncaller's fs{u,g}id, the…","indicators":{"cves":["CVE-2026-72379"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:11.387Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/47e434da476b5a8bcd1e6e52ab03c5ee7764ee78","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/503d0568a525b168d9aa5ca046ec72fc5477df84","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/539dce1144651f7976fa418e618b0b574bf15eeb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a2038514e69371eb493083a6a897ed20fcbb8acb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bac8fb0d60254846f3b56957435dcd870ae12948","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72384","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72384 — In the Linux kernel, the following vulnerability has been resolved: irqchip/ts4800: Fix missing chai…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nirqchip/ts4800: Fix missing chained handler cleanup on remove\n\nThe driver installs a chained handler for the parent interrupt during probe\nusing irq_set_chained_handler_and_data(), but the remove function does not\nclear this handle…","indicators":{"cves":["CVE-2026-72384"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:11.907Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/3f31f49afffa169cd01e6c37568c4df3eb1051af","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4e8d498d32b6c67d73bb8b317ff316ff37897a3e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/98bf7e54cec07d514b3575c11896a8b12d50ecc4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9ed0dca2aa05908b33ecf0bb15c7953947529542","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b5b2b2cb6a91908e6c23958c9ce6d5ba2fdb686c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e6b674dc341c6add7d85bec2ec22caf1aad35795","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72385","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72385 — In the Linux kernel, the following vulnerability has been resolved: tracing/fprobe: Fix NULL pointer…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ntracing/fprobe: Fix NULL pointer dereference in fprobe_fgraph_entry()\n\nfprobe_fgraph_entry() sizes a shadow-stack reservation in one walk of\nthe per-ip fprobe list and fills it in a second walk, both under\nrcu_read_lock() only. A f…","indicators":{"cves":["CVE-2026-72385"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:12.017Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/367c49d6e283c17b56a31e7a8d964a079244264c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/62988204162fc382cfc7d9a185d40a751261e3a3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d655cca1c6e67eb081214d37eb231a869ead2f97","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72386","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72386 — In the Linux kernel, the following vulnerability has been resolved: drm/panthor: Fix a leak when a g…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/panthor: Fix a leak when a group is evicted before the tiler OOM is serviced\n\nA group ref is tied to the pending tiler_oom_work, so we need to release\nit if the cancel was effective.","indicators":{"cves":["CVE-2026-72386"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:12.117Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/490fe7d00fcdac2dd0c204b0007f3a945a09f918","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6efeb9ddb4fbf5ac30aff03e8f09ffbdf966abd0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/893ed1a7c837a824b2a25543e46fbf19dc41f6b5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a9d098b346db561ec3ab24d6b1adfc4aec4c728f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72387","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72387 — In the Linux kernel, the following vulnerability has been resolved: drm/panthor: Fix potential inval…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/panthor: Fix potential invalid pointer deref in group_process_tiler_oom()\n\nIf heaps is an ERR_PTR(), panthor_heap_pool_put() will deref an invalid\npointer. Make sure we set it to NULL in that case.","indicators":{"cves":["CVE-2026-72387"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:12.210Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/053522ba615888e874adc04e675d9ed2e13f35af","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b39436d0ba1571dbcda69d20ec567344b3eecfc7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bfc5b91ab3ddddf636d8c1c050455bf4e14c912b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dd0b2976b7c0f4ea806855ed19ffad967d36610e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72388","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72388 — In the Linux kernel, the following vulnerability has been resolved: drm/panthor: Always use the IRQ-…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/panthor: Always use the IRQ-safe variant when acquiring the fence lock\n\nSince dma_fence objects can be shared with other subsystems, they may be\naccessed from hardirq context in those drivers, and we have to take\nthat into acco…","indicators":{"cves":["CVE-2026-72388"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:12.307Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/2946aa6c97ac0e0d777baef8c0e6d944da8724a3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/778c57d624974e64535ef1c9d9b4d8e5066153f4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72391","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72391 — In the Linux kernel, the following vulnerability has been resolved: net: phy: sfp: free mii_bus in s…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: phy: sfp: free mii_bus in sfp_i2c_mdiobus_destroy\n\nsfp_i2c_mdiobus_create() allocates the I2C MDIO bus with mdio_i2c_alloc(),\na plain (non-devm) allocation, and registers it. sfp_i2c_mdiobus_destroy()\nonly unregisters the bus…","indicators":{"cves":["CVE-2026-72391"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:12.627Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/2381bf3f484e8e4fd89a225445872ec14e036ab5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3183b6f5510c876a1c4b4a6bdc3d0ad8940fe742","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/86d379fcf1b79bdf4bc2ac891297f30f63d041d8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8f31efff9206f9f0adb853cad6916086aac4d5ef","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/92dd9a522f01ef57f633a8c1953cf6d48ef2bcd5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d2c37f26d1a37f8177be5f354537f8ee3ec31cc2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72392","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72392 — In the Linux kernel, the following vulnerability has been resolved: ipv6: fib6: fix NULL deref in fi…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nipv6: fib6: fix NULL deref in fib6_walk_continue() on multi-batch dump\n\ninet6_dump_fib() saves its progress in cb->args[1] as a positional\nindex within the current hash chain.  Between batches, a concurrent\nfib6_new_table() can ins…","indicators":{"cves":["CVE-2026-72392"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:12.733Z","fetchedAt":"2026-08-21T03:01:29.060Z","references":[{"url":"https://git.kernel.org/stable/c/059efb48dd746518898faaa9b965511009b59639","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/110ccbd28c9444866fcc84ba96a2ad64fa6e95ae","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/27210d433a8c5fe6bf7278a04bbaeb49a81d0290","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/89f9c5fee3c64c5cabc34e65599308fd3c879cf9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9facb861dc6b9b9ea9793ef5032a9a826f7a4229","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cb90a774a9c6c46961a44949a246fbb61f5f934c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d8a01d27873e04bebd357dc87859aa756e0b28b2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ee73a32dd258d4af66831ff006b771e19812b322","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72394","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72394 — In the Linux kernel, the following vulnerability has been resolved: hwmon: (aspeed-g6-pwm-tach) Guar…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nhwmon: (aspeed-g6-pwm-tach) Guard fan RPM calculation against divide-by-zero\n\nSashiko reports:\n\nIn the aspeed-g6-pwm-tacho driver, the aspeed_tach_val_to_rpm() function\ncalculates the fan RPM using the tachometer value. However, it…","indicators":{"cves":["CVE-2026-72394"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:12.943Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/898ca04b096b9e4640300eab91468c826a1ec92b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a3f98bd397398e2d4a7f98e006b5aaf4d54ebdf3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fb8a5afe6f1f8aa7f19c6dda23d277dd6ae5d9e1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fe87b8dc67f1b2c64e76a66e78468c533d3c44ca","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72396","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72396 — In the Linux kernel, the following vulnerability has been resolved: hwmon: adm1275: Prevent reading…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nhwmon: adm1275: Prevent reading uninitialized stack\n\nWhile adding support for the ROHM BD127X0 hot-swap controllers, sashiko\nreported an error in device-name comparison, which can lead to reading\nuninitialized stack memory.\n\nQuotin…","indicators":{"cves":["CVE-2026-72396"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:13.150Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/36554592e2f5cac16ff8bf73720d38a6d9ef4a20","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/39a581bd64a0e91112ec8017a2dd4e70c1336e99","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/553f9517813912a5ab661af5504485d96824a61c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/57d583f069fa9d3d0c0831e34b967d1f61edae94","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/82e4ab03a6ab9b87667410f5143bc484d7a62bdc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/93b96e723bdcba6172a5814262be875abcc5d269","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/aa35cee30686e6be3c890bf741429c5025d55abe","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c9e04a52663bc6651c06c2427df088b751062bd6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72401","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72401 — In the Linux kernel, the following vulnerability has been resolved: bpf: Fix insn_aux_data leak on v…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbpf: Fix insn_aux_data leak on verifier err_free_env path\n\nWhen bpf_check() allocates env->insn_aux_data successfully but later\nfails to allocate env->succ, it jumps directly to err_free_env.\n\nThe existing vfree(env->insn_aux_data)…","indicators":{"cves":["CVE-2026-72401"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:13.687Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/26490a375cb9be9bac96b5171610fd85ca6c2305","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d8df91756890de058646597367507b239a6d2025","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72402","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72402 — In the Linux kernel, the following vulnerability has been resolved: bpf: Mask pseudo pointer values…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbpf: Mask pseudo pointer values in verifier logs\n\nprint_bpf_insn() masks ldimm64 immediates for pointer-bearing pseudo\nsources when pointer leaks are not allowed, but the mask only covers\nBPF_PSEUDO_MAP_FD and BPF_PSEUDO_MAP_VALUE.…","indicators":{"cves":["CVE-2026-72402"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:13.780Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/1c53d16b174dd9e02243fc0e85089e2aa6a0d21a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/72a85e9464a5332fb2cd7efd26d9295275ceda2d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72403","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72403 — In the Linux kernel, the following vulnerability has been resolved: ALSA: FCP: Fix NULL pointer dere…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nALSA: FCP: Fix NULL pointer dereference in interface lookup\n\nA malformed USB device can provide a vendor-specific interface without\nany endpoint descriptors. fcp_find_fc_interface() currently selects the\nfirst vendor-specific inter…","indicators":{"cves":["CVE-2026-72403"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:13.870Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/3ab06151ffcb8c3aeb8f78508658b6c0f05be932","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e1e31e0ec8a609e17fd2e86b77bc00d9cbb24d7c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f28d7b5f1578a7501ab17b10643ed1e4f729187e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72413","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72413 — In the Linux kernel, the following vulnerability has been resolved: sctp: fix err_chunk memory leaks…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nsctp: fix err_chunk memory leaks in INIT handling\n\nWhen sctp_verify_init() encounters unrecognized parameters, it allocates an\nerr_chunk to report them. However, this chunk is leaked in several code\npaths:\n\n1. In sctp_sf_do_5_1B_in…","indicators":{"cves":["CVE-2026-72413"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:14.910Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/94f55994e19e8f0676990b9d5015b58ab6a97e00","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9f58a0a4d6c2ed5d341bba64f058f15d1b0c36f2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72414","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72414 — In the Linux kernel, the following vulnerability has been resolved: net: dsa: sja1105: round up PTP…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: dsa: sja1105: round up PTP perout pin duration\n\npin_duration is converted from the user-provided period to SJA1105\nclock ticks and is later passed as the cycle_time argument to\nfuture_base_time().\n\nVery small period values may…","indicators":{"cves":["CVE-2026-72414"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:15.003Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/09efce96c909dff1a9317ec3714b7ddb4751b7af","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/201dcbbfb27f3db85c8cf125a75f3164a83ceb32","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/28d13a89a211cc07caeef32069eaa847131b7351","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/410629528067029096dba7ad7bc49e4a5e92708d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9952291db7125b8a62bf19800b93dcac81fc70c0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/aaf446099ca497c8d9a8e511fedf5d0e547bf8ec","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/aee5836273b07b439fb245fb43930664d8b78518","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fc62bfd30d30af07356f0f7121c826e1e753582f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72424","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72424 — In the Linux kernel, the following vulnerability has been resolved: rtc: msc313: fix NULL deref in s…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nrtc: msc313: fix NULL deref in shared IRQ handler at probe\n\nmsc313_rtc_probe() calls devm_request_irq() with IRQF_SHARED and\n&pdev->dev as the cookie, but platform_set_drvdata() is only called\nlater after the clock setup. With a sh…","indicators":{"cves":["CVE-2026-72424"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:16.210Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/1f6a4aec0d36647eb2f67cd69db22bd28cabe2cb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/52c73b6992b46ed476590ed526faa033d4fbfc5d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a369f48be8de426a7d2bca18dbd46c2ad1138803","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bb3e624808c981fe881cb79037be63e680ed7d38","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bc1f61a9b97d65de21c2681bcf0b5b1392c58486","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ece7b9ffde23e2ccd7567761ac27463ded43932c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72428","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72428 — In the Linux kernel, the following vulnerability has been resolved: bpf: Fix stack slot index in nos…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbpf: Fix stack slot index in nospec checks\n\ncheck_stack_write_fixed_off() computes the byte slot for a fixed-offset\nstack write as -off - 1, and records each written byte in slot_type[] with\n(slot - i) % BPF_REG_SIZE.\n\nThe Spectre…","indicators":{"cves":["CVE-2026-72428"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:16.637Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/475405593de2b796224c6297aece44f321195919","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/68b41e68a62299f26cb16af422b5c7d1c69dafd9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a71eb8f730a91271cf47ce291e785b6b7e54622f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ca119656baa8f48a56e0c2f3ab63fdd33ca9e307","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d1d53aa30ab3b5ae89161c9cc840b3f7489ad386","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/db8f1dcf5950b91886b9df4270bc816370d292c1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e62268e695075a481a6c4feeb022c19cf57422a6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f1471aa76d74e0df3b2a90731ca0208f498c670b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72430","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72430 — In the Linux kernel, the following vulnerability has been resolved: net/sched: act_ct: fix nf_connla…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet/sched: act_ct: fix nf_connlabels leak on two error paths\n\ntcf_ct_fill_params() calls nf_connlabels_get() (setting put_labels) when\nTCA_CT_LABELS is present, but two later error sites use a bare return\ninstead of \"goto err\", ski…","indicators":{"cves":["CVE-2026-72430"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:16.863Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/0c3d8fc87e10e38fe054ece009d6d1f66bef2cd4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/13b561c893c741635adce3781490a7a1099106c8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/16e088016f38cf728a0de709c3335cc5a3850476","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1d51aff78f078af1a80e9496c2f4643f4c0ef0a0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72431","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72431 — In the Linux kernel, the following vulnerability has been resolved: alloc_tag: fix use-after-free in…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nalloc_tag: fix use-after-free in /proc/allocinfo after module unload\n\nallocinfo_start() only reinitializes the codetag iterator at position 0. \nFor subsequent reads (position > 0), it reuses cached iterator state from\nthe previous…","indicators":{"cves":["CVE-2026-72431"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:16.960Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/008ceffd44040f809aead6d7bef7cb1210c4149a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2956268efc457cb05d29c1bf94de1e8e684d7bbc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/37e3e8a2c3bfdd503209f043f8bbfbdcf5a1d92f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72432","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72432 — In the Linux kernel, the following vulnerability has been resolved: tpm_crb: Check ACPI_COMPANION()…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ntpm_crb: Check ACPI_COMPANION() against NULL during probe\n\nEvery platform driver can be forced to match a device that doesn't match\nits list of device IDs because of device_match_driver_override(), so\nplatform drivers that rely on…","indicators":{"cves":["CVE-2026-72432"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:17.057Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/c041d2be785feb9b5e36331921eadaefbe65349d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ddd33806b8911fa2ef849e8bbbab1e3fcb26adc0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72433","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72433 — In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_meta_bridge: fix…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: nft_meta_bridge: fix NFT_META_BRI_IIFPVID stack leak\n\nThis needs to test for nonzero retval.","indicators":{"cves":["CVE-2026-72433"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:17.137Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/27dd2997746d54ebc079bb13161cc1bdd401d4a6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4dce8bf588a89bef99b446136d15685a837e7acf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7e23965d44f06ed93fb5362fb1e321b769eecc3b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/92c9682b36f0c8f7a1f14d4558b72793f62e90a1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a853c3769b73ceb2d2b735aff621d1d51fe0553d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b1b0b9efe641afa5c2d4ba2ec77aed7b6f4bc398","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c37a39b963034cc2d141baf46017614cb1fc275f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f73b7de5338fcca7f63ca88597a050c119501531","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72437","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72437 — In the Linux kernel, the following vulnerability has been resolved: md/raid1: free r1_bio when REQ_N…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmd/raid1: free r1_bio when REQ_NOWAIT is set and read would block on retry\n\nWhen a read is retried, raid1_read_request() may be called with a\npre-allocated r1_bio. If wait_read_barrier() fails for a REQ_NOWAIT\nread, the bio is comp…","indicators":{"cves":["CVE-2026-72437"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:17.560Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/69ad6ce47f9bf2b9fe0ed69b042db993d33bbf12","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6d92dbd73d19a0622f60352ce9d9379f7a760112","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c66ed3e6371f5dba8f5d8ab810d6683ddc99201e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c6e6354295845698d2fdfa20b71fc404786f7e93","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d1eda529a4bf6b866d02755723ee0eb1f037a5ed","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/db58075bc9c2ad2731f9c063859b47104bc2e7ef","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72439","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72439 — In the Linux kernel, the following vulnerability has been resolved: md/raid10: fix writes_pending le…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmd/raid10: fix writes_pending leak on write request failures\n\nraid10_make_request() acquires a writes_pending reference with\nmd_write_start() before dispatching write requests. Several failure\npaths in raid10_write_request() comple…","indicators":{"cves":["CVE-2026-72439"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:17.753Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/e045d6ed33f8faa3e3dd6dc33c62ec01e3ad275d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f94031c94eaebe14a7c9e91720064de0c5a54a6c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72441","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72441 — In the Linux kernel, the following vulnerability has been resolved: ieee802154: fix kernel-infoleak…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nieee802154: fix kernel-infoleak in dgram_recvmsg()\n\nKMSAN reported a kernel-infoleak in move_addr_to_user():\n\nBUG: KMSAN: kernel-infoleak in instrument_copy_to_user\ninclude/linux/instrumented.h:131 [inline]\nBUG: KMSAN: kernel-infol…","indicators":{"cves":["CVE-2026-72441"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:17.937Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/09cfe665f2c5d7a8a5ed4d6b487434a011325368","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4db86f8ab11b5a41bfc36680be837e6ac1375ec6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/71b5add66c51d6764325de5f2e300bbf4f39e7a6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a2ee1a038a16e286d084bc293a7522d010a59ec3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c88e687e44cb9c7690f5039a5a5941dba1f6a204","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/de3bd9809af7555611334cb6a071806744430ef7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f14802465f5956baafe5f4b4541eb626b06b41f1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fc8766467b53335220b4b594ba15bc8f8cee0c76","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72443","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72443 — In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Kill MIDI 2.0 U…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nALSA: usb-audio: Kill MIDI 2.0 URBs before freeing endpoints\n\nMIDI 2.0 input URBs are started during snd_usb_midi_v2_create(). A\nlater setup failure can still jump to snd_usb_midi_v2_free(), which\ncurrently frees each endpoint and…","indicators":{"cves":["CVE-2026-72443"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:18.160Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/3d961032a6e58fa485b3a4c0fe0f649334d887de","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4c16176fc11a61b7545464cb47c98b0c8a055fcb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/68286258698e15fe75073fb8d017003f8e493db1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bcdd5a7363bdd287253c406a9c0205f5722058e7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f199c8a8bdd54296d3458777e70fe82a78bd9817","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72445","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72445 — In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: qcom: clear ope…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nALSA: usb-audio: qcom: clear opened when stream enable fails\n\nOn enable, subs->opened is set before the service_interval is validated;\nan invalid interval jumps to the response label without clearing it, so\nthe substream is wedged…","indicators":{"cves":["CVE-2026-72445"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:18.403Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/3c7af07943b2718087ae791cad450af5cf646d90","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/53c23d56b46b1ae51574d92110895086aead7ad7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ec6fb1ecada8ddfc3d0e1728e4792d16ae55dcdb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72447","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72447 — In the Linux kernel, the following vulnerability has been resolved: sctp: hold socket lock when dump…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nsctp: hold socket lock when dumping endpoints in sctp_diag\n\nSCTP_DIAG endpoint dumping was traversing endpoint address lists without\nholding lock_sock(), while those lists could change concurrently via\nsocket operations (e.g., bind…","indicators":{"cves":["CVE-2026-72447"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:18.600Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/207bb4ce8fe7de961ae7bb33569ad2cd61f44954","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/722576aba0a6d9423714550b1c03239b0f0def77","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7d8297e26b4e20b5d1c3c3fe51fe81a1c7fbc823","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8b38e3dcfde3077dbc03eb8ef88e03cc19f70b8a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/abe7f8828e6ac8be858870c2bf836258844f97d5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ec3c2d59a192e17e1014ba71afc368ba162ecac3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f09a245f33e567b604efa1960b7a2d25dd9c8713","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f98c294a9369b6fe89e652c06357ee594be4dfa2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72448","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72448 — In the Linux kernel, the following vulnerability has been resolved: octeontx2-pf: Fix leak of SQ tim…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nocteontx2-pf: Fix leak of SQ timestamp buffer on teardown\n\nThe send-queue timestamp ring is allocated with qmem_alloc() when\ntimestamping is used, but otx2_free_sq_res() never freed sq->timestamps,\nleaking that memory across ifdown…","indicators":{"cves":["CVE-2026-72448"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:18.723Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/19d2d36e193c3fb515c052a56bfc83d8ac7b6764","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3d45d40b872aec0073d4cf08956a6c9b87c5e396","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/452ec5058ea4ed63adae8d6beeac9ee687fe8061","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a056db30de92945ff8ee6033096678bfbae878e3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c642a530aaaeb9a3e356cedfe77955e7f983380e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d6c0b0c802d3c49b86cad665a7f3790dc55a0394","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e68ada66afcae0bc2a7c06b43c5a9a081d29e7b4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e8e9dff204e8d8553495893e1a44d2b5021648de","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72453","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72453 — In the Linux kernel, the following vulnerability has been resolved: regcache: Do not overwrite error…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nregcache: Do not overwrite error code when finalizing cache after error\n\nDuring regcache initialization, if an error occurs in the\ncache_ops->populate callback, and if cache operations include an exit\ncallback, the error code from…","indicators":{"cves":["CVE-2026-72453"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:19.290Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/9108f7fa493b4c88cbc09503e0c164244456bad5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9f171aa115ec76be02c76c5765cd2c865279e34a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72456","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72456 — In the Linux kernel, the following vulnerability has been resolved: apparmor: release exe file resou…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\napparmor: release exe file resources on path failure\n\nget_current_exe_path() takes both an exe_file reference and a path\nreference before resolving the path name. If aa_path_name() failed, it\nreturned immediately and leaked both re…","indicators":{"cves":["CVE-2026-72456"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:19.597Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/393809a05cfb60309ad63ee09138db8296d6b97e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7306c41672487a6c28430714be063bc6942c28f2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72457","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72457 — In the Linux kernel, the following vulnerability has been resolved: apparmor: fail policy unpack on…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\napparmor: fail policy unpack on accept2 allocation failure\n\nunpack_pdb() may need to allocate a missing ACCEPT2 table for older policy\ndata. If that allocation failed, it set an error message but jumped to the\nsuccess path, returni…","indicators":{"cves":["CVE-2026-72457"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:19.690Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/106e909e12baf059538f0b0f1a59f87781d25b3c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/22dc9433d458cff1270f120685114a9753e0ad1b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/45cf568241048e560a81aa2053f06a62069f5640","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72458","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72458 — In the Linux kernel, the following vulnerability has been resolved: apparmor: fix NULL pointer deref…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\napparmor: fix NULL pointer dereference in unpack_pdb\n\npdb->dfa could be NULL if unpack_dfa fails, causing a NULL pointer\ndereference.","indicators":{"cves":["CVE-2026-72458"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:19.783Z","fetchedAt":"2026-08-21T03:01:29.061Z","references":[{"url":"https://git.kernel.org/stable/c/73d86ca950b80cd39ca948e2c518d135bf2308c8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7681ca43d2b1c776e62fe77e3167835fb1ab8319","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fbfdb5a94a48797bea232791e24c38f3aa3063c8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72467","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72467 — In the Linux kernel, the following vulnerability has been resolved: xprtrdma: Check frwr_wp_create()…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nxprtrdma: Check frwr_wp_create() during connect\n\nfrwr_wp_create() creates the singleton Memory Region used to encode\npadding for Write chunks whose payload length is not XDR-aligned. Its\nfailure paths return a negative errno and le…","indicators":{"cves":["CVE-2026-72467"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:20.770Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/0f13fc7c7d2e0427517e63c739277a4cd338b0c5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3b252fe1778b2cdd68283146455929801bc2abd7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6b7be4f3feae322f1c2c40a3bdc99db93574a49e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7471e66373a4444a57ef2192f8c4081202c54f45","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dd798b76a3481e392820c3ae86ed4592858c6b0f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ef3b79edf14b6bfb0d21a26ccb0463f9cf82c6a9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72468","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72468 — In the Linux kernel, the following vulnerability has been resolved: xprtrdma: Initialize re_id befor…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nxprtrdma: Initialize re_id before removal registration\n\nrpcrdma_create_id() registers ep->re_rn with the rpcrdma ib_client\nbefore returning the new rdma_cm_id to rpcrdma_ep_create(). However\nrpcrdma_ep_create() currently stores tha…","indicators":{"cves":["CVE-2026-72468"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:20.877Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/264ccd7871915749bee55fe0c39467a7f08d5479","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/28743571c17b58c21a7216fc9faaf8028df5869b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/51248d877bbc6e604e38aeaf776c2781cb4f0dbd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bb7caa63e1db22fd03e8dc591b12169e99169dff","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72474","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72474 — In the Linux kernel, the following vulnerability has been resolved: dmaengine: dma-axi-dmac: use DMA…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndmaengine: dma-axi-dmac: use DMA pool to manange DMA descriptor\n\nFor architectures like Microblaze or arm64 (where this IP is used),\nDMA_DIRECT_REMAP is set which means that dma_alloc_coherent() might\nremap (and hence vmalloc()) so…","indicators":{"cves":["CVE-2026-72474"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:21.563Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/65e82fa24965b2eb6ad9412f6c530ed9a50a625f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9e942c8579130e62734c14338e9f451780669164","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a4f41ceecfe68e117bae9c76c5ebc5e2b353fa56","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c0e6bb2b0408fcac6382158ee2bd9fdc45eceee9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72475","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72475 — In the Linux kernel, the following vulnerability has been resolved: dmaengine: dma-axi-dmac: Properl…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndmaengine: dma-axi-dmac: Properly free struct axi_dmac_desc\n\nUse axi_dmac_free_desc() to free fully the descriptor at fail path when\ncall axi_dmac_alloc_desc() in axi_dmac_prep_peripheral_dma_vec().","indicators":{"cves":["CVE-2026-72475"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:21.660Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/36e9cbbfc09ef792918e6a276dd7e2dbca7f31ce","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4910ce1b3b35687bb2a5e742c4bfbea3c647c980","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9f1ef67c041ef592c13603957ba08b6f21010004","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f055829151eed5a9ec4af98a6c1ce75dbaf2e372","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72479","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72479 — In the Linux kernel, the following vulnerability has been resolved: iio: accel: mma8452: handle I2C…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\niio: accel: mma8452: handle I2C read error(s) in mma8452_read()\n\nCurrently, If i2c_smbus_read_i2c_block_data() fails but\nmma8452_set_runtime_pm_state() succeeds, mma8452_read() returns 0.\n\nAs a result, the caller mma8452_read_raw()…","indicators":{"cves":["CVE-2026-72479"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:22.093Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/1cddef80a180af74c33d2f26c962ce92b60fded4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5bdff291d20c31b365d9ddfe9c426fbfb41da5bb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b488055e81d9faaaf2f8aaff45f9944040ac4493","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b4932fc325e84a3233413daf230b043818c8a824","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/eed69f8a10b82989ad732ace0fb43a9fb4e7fe35","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f3d413e701c5e54bef736b638967724dda880365","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f3d905ea1e4996d933074481e80d96ecd74a9904","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f9ec3f3e9cf27dd06cd3725eeaa44e3ce46be893","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72481","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72481 — In the Linux kernel, the following vulnerability has been resolved: iio: magnetometer: ak8975: fix p…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\niio: magnetometer: ak8975: fix potential kernel stack memory leak\n\nCurrently in the AK8975 driver there are four instances where potential\nuninitialized kernel stack memory leaks can occur. If\ni2c_smbus_read_i2c_block_data_or_emula…","indicators":{"cves":["CVE-2026-72481"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:22.313Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/12848f4ded022963944c063e09a192549a4dad1e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3d57672119525c59ed73ea21accb001ccbcd6cfd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8cf346074533356d67a6a6a43a192328ad341f11","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9f920550abacedc7fc3163dea65ac2a7d0b0765d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a9a00d727b7bbc5e913a919530a9dd468935bf95","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a9cf46054f81972f8c0f1dc2a79d2a141999dbce","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b974566803bceb72f0b9b5f1d7270b79ba963766","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fb27ebf81136e796c7b719303ef6fd7e1ae5d488","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72484","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72484 — In the Linux kernel, the following vulnerability has been resolved: staging: most: video: avoid doub…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nstaging: most: video: avoid double free on video register failure\n\ncomp_register_videodev() allocates a video_device with\nvideo_device_alloc() and releases it if video_register_device() fails.\n\nThis can double free the video_device…","indicators":{"cves":["CVE-2026-72484"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:22.647Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/009d58b73500d0b49f6ae3833f8afcb0ebd9ddbb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/43078449ad6236d839e4d707954d2e36b10a6706","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/430ad4ea06a0767fb44a08e2212ceb3a996607ee","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/46ea51f5b2ee1a3b40c05b7c750cbc5cabe94062","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4928096212b78262dbbeab3b3abf2352278ce22d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7cb1c5b32a2bfde961fff8d5204526b609bcb30a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7fc162453cfb7b8e93edb16287a84ba0130cac38","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/80ed79787da3311f76b4d71d0ce7ab992a9e134d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72486","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72486 — In the Linux kernel, the following vulnerability has been resolved: mailbox: mtk-adsp: fix UAF durin…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmailbox: mtk-adsp: fix UAF during device teardown\n\nWhen the SOF audio driver fails to initialize (e.g. firmware boot\ntimeout), its devres unwind frees the snd_sof_dev object that the\nmailbox client (mtk-adsp-ipc) reaches via chan->…","indicators":{"cves":["CVE-2026-72486"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:22.860Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/25d6ea6c76e1b1b7c57337b2f8f1b6fc8d5c52bc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7d881615fb6373f71fc628b3f00186aeca87a3d5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b57d1a40bc43258372fa1f4d39305e093947a262","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b6337a08a63eef8efcffe3c01d479badda6bbbdb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e519c1d8c5efb5cd8d4c5bb3fe39b1bbb812bdb9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fc6c3deb1d4c0adebf7dee0b8af4082af3f17690","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72490","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72490 — In the Linux kernel, the following vulnerability has been resolved: staging: rtl8723bs: fix stainfo…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nstaging: rtl8723bs: fix stainfo check in rtw_aes_decrypt\n\nThe null-pointer-guard was incorrect, returning _FAIL on valid pointer.\nInvert the guard, so it returns _FAIL on invalid pointer.","indicators":{"cves":["CVE-2026-72490"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:23.307Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/9a3f9b3c47d8f071b0eb9e63906ac0448058278d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fde2296f87b72ccd72460ce13ad56e8652b321d4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72501","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72501 — In the Linux kernel, the following vulnerability has been resolved: RDMA/bnxt_re: Initialize dpi var…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nRDMA/bnxt_re: Initialize dpi variable to zero\n\ndpi is initialized only for BNXT_RE_ALLOC_WC_PAGE, but copied\nfor all the cases. So initialize the dpi to 0.","indicators":{"cves":["CVE-2026-72501"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:24.417Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/3d00b375853fbbf4157ad092884b4ed9a49429c1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/978b27d6ce538bb832ccd69e45802824e4301c4b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b87cbd4d198ae377be4815d8102fa9dfefb91dcc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74261","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74261 — In the Linux kernel, the following vulnerability has been resolved: ALSA: seq: avoid stale FIFO cell…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nALSA: seq: avoid stale FIFO cells during resize\n\nsnd_seq_fifo_resize() still needs to publish the replacement pool\nbefore it waits for FIFO users. A blocking snd_seq_read() holds\nf->use_lock while it sleeps, so concurrent senders m…","indicators":{"cves":["CVE-2026-74261"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:25.307Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/1c4c35fb68d520241f7d9f1c356b5e2370fd8364","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/98a965cb1e767b54b6bbd831b6cea26f521a8f51","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e546128291f8d688dcb931827e2efd2aa6c0734d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74263","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74263 — In the Linux kernel, the following vulnerability has been resolved: net: wwan: t7xx: check skb_clone…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: wwan: t7xx: check skb_clone in control TX\n\nt7xx_port_ctrl_tx() clones each skb fragment before passing it to the\nport transmit path. The clone is used immediately to set cloned->len, so\nan skb_clone() failure results in a NULL…","indicators":{"cves":["CVE-2026-74263"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:25.570Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/05f789fa90d95d5771230e78453cedff2486039d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/112490467586146d323cb7230b1d72137e36900c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4c1b25d85f4c9a0f85f3f8c39988ad266a3f3095","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7edd4db82f9429591de10be4c904c817f12ba029","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f7aebaee2961bfcb86f282202d3dbd9b69db1a7c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74265","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74265 — In the Linux kernel, the following vulnerability has been resolved: net: mana: initialize gdma queue…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: mana: initialize gdma queue id to INVALID_QUEUE_ID\n\nmana_gd_create_mana_wq_cq() leaves queue->id as 0 (from kzalloc_obj())\nuntil mana_create_wq_obj() assigns the firmware-returned id. If creation\nfails before that, cleanup cal…","indicators":{"cves":["CVE-2026-74265"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:25.803Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/150590d9ab0dbeb0087193058363819d4c82a00f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/372e7318af379eee29ab6e60848ce7d7db76c85a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5985474e1cb4034680fac2145497a94b0860be50","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/62ce489acb428a936bdf243e7b92b3eb341447cf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8e52a247d9aa979d43eb9ff1e445b9b3bf229d4d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a493cbb6b11acd4adc93397a4b12bd460d47620d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c6662f3ad1c7c3549a1c39545651833220b0de89","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74271","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74271 — In the Linux kernel, the following vulnerability has been resolved: power: supply: core: fix supplie…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\npower: supply: core: fix supplied_from allocations\n\nIf dts property power-supplies has multiple values, then accessing to\npsy->supplied_from[i-1] in __power_supply_populate_supplied_from will\noverrun supplied_from array.","indicators":{"cves":["CVE-2026-74271"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:26.497Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/14357ba006e1586e4b4e809c074b21baf0aa4c4b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/23a29ee1d9de38b7d6226b27653bc736b28ff05a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ae55e4bf18ee0c4c170797dd65e17dbdf644fcf2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ba61aed9a34671222d1149acfc2f0179a9ce7e80","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d0503357653ee62188987a26baa2d7f3689f367e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fefc9dad30d545be288d50a0b10d00465015fcfe","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74272","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74272 — In the Linux kernel, the following vulnerability has been resolved: cxl/region: Resolve region delet…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncxl/region: Resolve region deletion races\n\nSungwoo noticed that the sysfs trigger to delete a region may try to delete\na region multiple times. It also has no exclusion relative to the kernel\nreleasing the region via CXL root devic…","indicators":{"cves":["CVE-2026-74272"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:26.597Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/4dd86ca99ffcc413cbf79063fd9956ef54e0ca91","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/be44c1c04f85d7b7ac1c597a30b443bbd346acbd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74273","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74273 — In the Linux kernel, the following vulnerability has been resolved: cxl/region: Block region delete…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncxl/region: Block region delete during region creation\n\nExpand the range lock, rename it \"regions_lock\", to disable region deletion\nin the critical period between construct_region() and attach_target(), as\nwell as the period betwee…","indicators":{"cves":["CVE-2026-74273"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:26.697Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/b0b6a9c65cb72c901fdcc6ae83d7afd70cdca1b8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d91feb88692e81b00cd22f0125cfcd04970b4a0b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74274","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74274 — In the Linux kernel, the following vulnerability has been resolved: cxl/region: Fill first free targ…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncxl/region: Fill first free targets[] slot during auto-discovery\n\nAny invalid endpoint decoder pointer in the target array of an active\nregion is not allowed by cxl driver. This means cxl driver always\nassumes the first p->nr_targe…","indicators":{"cves":["CVE-2026-74274"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:26.793Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/6fde3fcdfec438ba0df26e25a8ac7c3707211799","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/aa8a76711c15041ec1e42c3a74c15c2df0bd31f6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74276","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74276 — In the Linux kernel, the following vulnerability has been resolved: spi: xilinx: use FIFO occupancy…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nspi: xilinx: use FIFO occupancy register to determine buffer size\n\nThe method the driver uses to determine the size of the FIFO has a\nproblem. What it currently does is this:\nIt stops the SPI hardware and writes to the TX FIFO regi…","indicators":{"cves":["CVE-2026-74276"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:26.993Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/1c9246a199e19b2fd36e94feed60e55f27103a4f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1fc6a6c0cc7796b0c1cf4eec3f0720f422f09273","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/47f3b5365536e8c38f264824ab15fdb74454e066","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4ee65558a7fda463222f5edc631b6d7862218725","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d1944b71c18e7494756bff1a6f80c25be99eaecb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d7ccd8736b67550eca746ed7fa39a36016ff114b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dfab0d4698a642bab9b895e2e6d240838cfe2cc6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e98f589d54068dfcc7da42d9b730e47b84e2991a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74278","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74278 — In the Linux kernel, the following vulnerability has been resolved: ALSA: seq: Fix kernel heap addre…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nALSA: seq: Fix kernel heap address leak in bounce_error_event()\n\nThe comment above bounce_error_event() documents that user clients\nshould receive SNDRV_SEQ_EVENT_BOUNCE with the original event embedded\nas variable-length data, whi…","indicators":{"cves":["CVE-2026-74278"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:27.213Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/0527a56cb327021cb73167cfddf0e49efa043500","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/93d260ce43a81df579c98bee92b91316df9c1c57","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dae23c545eb5a2be3b27a82fd0f611894fb8ab69","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/efc86691e4d8083d9e380ea95042c2cf679f65fd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74284","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74284 — In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_hfsc: Don't make…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet/sched: sch_hfsc: Don't make class passive twice\n\nupdate_vf() is called from two places for the same class during a single\ndequeue when the class's child qdisc (e.g. codel/fq_codel) drops its last\npackets while dequeuing:\n\n1. Th…","indicators":{"cves":["CVE-2026-74284"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:27.903Z","fetchedAt":"2026-08-21T03:01:29.062Z","references":[{"url":"https://git.kernel.org/stable/c/15720cd8fa3fc625146128f89a8e11b0449a20a7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3a49bbae676fef1ffe548971e6229ae2adeb9d10","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/66dbb13eeb2fc339f8f548a9076be4c1a94857b0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/90b662ea25f5e83bb3b8ccec5b93ced810b92fb8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9221a594c72a1446137926d4c2aa04e345f798dc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a425c82ff06cda5165e0de3de8c2a445ec1f863e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b2a017bfcf565721918ec7355a373911d2f2a227","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fc973ecd1a079b9a87c360478542f3a56dea085b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74286","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74286 — In the Linux kernel, the following vulnerability has been resolved: net: pfcp: allocate per-cpu tsta…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: pfcp: allocate per-cpu tstats for PFCP netdevs\n\nPFCP uses dev_get_tstats64() as its ndo_get_stats64 callback, but\npfcp_link_setup() does not request NETDEV_PCPU_STAT_TSTATS.  The net\ncore therefore leaves dev->tstats NULL for…","indicators":{"cves":["CVE-2026-74286"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:28.127Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/24041543da8cd84eb5d8ae738c534372fff54820","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/51a1d9836acc76a1bd16170b2f4b35f11036593f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/56b4ad500fd1282ef04db3c4beae5b54ab093a53","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/67e4b283de36d9eebf95acdea5d6674b6ef4b2f4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74290","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74290 — In the Linux kernel, the following vulnerability has been resolved: net/sched: cls_flow: Dont expose…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet/sched: cls_flow: Dont expose folded kernel pointers\n\nThe flow classifier falls back to addr_fold() for fields that are missing\nfrom packet headers. In map mode, userspace controls mask, xor, rshift,\naddend and divisor, and can…","indicators":{"cves":["CVE-2026-74290"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:28.570Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/0a8b5b74f0e6b6b9ce453bcfa4baa502c4c7577a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/19f2ecf8ea564562c7e7a919cf38068dd9aa1c96","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3d054001860270748405a3f9270c5fa0bf7ffc19","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6151159618198675e01c391676e579738286c135","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f294fc71c4a0fa4964f6428a1b4e7929c1d83125","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fb31fbe51c233f3bf47021121f63d2e42cac2d08","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74291","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74291 — In the Linux kernel, the following vulnerability has been resolved: ASoC: topology: Check PCM and DA…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nASoC: topology: Check PCM and DAI name strings before use\n\nTopology objects store several PCM and DAI names in fixed-size UAPI\narrays. Other topology parser paths validate these fields with bounded\nstrnlen() checks before using the…","indicators":{"cves":["CVE-2026-74291"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:28.670Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/b7e44d1986d6671342c19b82192189ca5db5dab7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ba37b62ed0a443b8e23f53a7477e7f2537fd34c7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74298","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74298 — In the Linux kernel, the following vulnerability has been resolved: RDMA/core: Fix FRMR set pinned p…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nRDMA/core: Fix FRMR set pinned push error path\n\nAdd destruction of FRMR handles in case the push to the pool fails.\nThis prevents resources leak in case pool page allocation fails.","indicators":{"cves":["CVE-2026-74298"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:29.420Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/41a707d0275cdec9ac125e826dd6836fa9623cbc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a487c14dda02a649d84c8303772430d32bd76eb9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74299","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74299 — In the Linux kernel, the following vulnerability has been resolved: RDMA/core: Fix FRMR aging push t…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nRDMA/core: Fix FRMR aging push to queue error flow\n\nAging pools with pinned handles requires moving handles from the\nactive queue to a non-empty inactive queue that might fail on new page\nallocation, we are currently not handling t…","indicators":{"cves":["CVE-2026-74299"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:29.517Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/c6936506ed556ce3ccad36ab999baf2764dd7d25","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/edf133d28fc43f7f8b0da43a8d5b93fdf8073d35","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74301","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74301 — In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btmtk: fix URB leak i…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nBluetooth: btmtk: fix URB leak in alloc_mtk_intr_urb error path\n\nWhen btmtk_isopkt_pad() fails, the previously allocated URB is not freed,\nleaking the urb structure. Add usb_free_urb() before returning the error.","indicators":{"cves":["CVE-2026-74301"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:29.720Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/2643524743b9cc3c6f5f34cde2a8c627d793f21c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4e354991da5890d5ce7bfea3f66fb897ae301756","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7f206a8d8d82296aa2d30bf5f3e5bb73fc44591d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f396f4005180928cd9e15e352a6512865d3bc908","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74303","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74303 — In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_qca: fix NULL poi…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nBluetooth: hci_qca: fix NULL pointer dereference in qca_dmp_hdr() for non-serdev device\n\nhu->serdev is NULL for hci_uart attached via non-serdev paths, but\nqca_dmp_hdr() unconditionally dereferences hu->serdev->dev.driver->name,\nca…","indicators":{"cves":["CVE-2026-74303","CVE-2026-74304"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:29.930Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/6b8cbcf08de0db62254d1981f83db0f94681ccd9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/809230cc25dde1d6bb00de2a1eeb5f3199402fbe","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a209744230f9ce3d7a7e9a0839944f5cb5fa02a4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d54a5fb7d821b88c7c5569d450af59dafccaf414","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e284bb94ad4512ec0bcd9b91bda99e67c507f7f8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/0704c04769ccc1a0939682db35d816dfa5fe75dc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3ec629fee178d429f01ae843e4ea888de93012bf","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74307","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74307 — In the Linux kernel, the following vulnerability has been resolved: ext4: validate donor file superb…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\next4: validate donor file superblock early in EXT4_IOC_MOVE_EXT\n\nReject the EXT4_IOC_MOVE_EXT ioctl early if the donor file does not\nbelong to the same superblock as the original file.  Currently, this\nvalidation is performed insid…","indicators":{"cves":["CVE-2026-74307"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:30.500Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/74796e886ca39fcb0d3fd36ea6a39c62784ab6fb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c143957520c6c9b5cd72e0de8b52b814f0c576fe","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fb52013cad9e9b7d3a6a14ea1bcd841e41da7c6c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74308","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74308 — In the Linux kernel, the following vulnerability has been resolved: ext4: fix kernel BUG in ext4_wri…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\next4: fix kernel BUG in ext4_write_inline_data_end\n\nWhen the data=journal mount option is used, the ext4_journalled_write_end()\nfunction incorrectly calls ext4_write_inline_data_end() without checking\nif the EXT4_STATE_MAY_INLINE_D…","indicators":{"cves":["CVE-2026-74308"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:30.653Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/0ae42b51607240990614e0843f0d3529aaff62cc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/260830a9a706f5d335398236fc788ce32f220de1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9808ae9fae996afa942bd963a39c9b1cdeebd0bd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ad09aa45965d3fafaf9963bc78109b73c0f9ac8d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f00f5c0dd55319bc33b76f72c853bda0e0a32eda","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74318","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74318 — In the Linux kernel, the following vulnerability has been resolved: btrfs: fix deadlock cloning inli…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbtrfs: fix deadlock cloning inline extent when using flushoncommit\n\nIn commit b48c980b6a7e (\"btrfs: fix deadlock between reflink and\ntransaction commit when using flushoncommit\") a deadlock was fixed\nbetween reflinks and transactio…","indicators":{"cves":["CVE-2026-74318"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:32.177Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/06283034cec0fa357cbd85784ef7d3f5b2ce0790","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2aa37c8ef1092c6f088e23a90bffefc672831c09","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/532085d00eb54c074bdeae648b194765239f4d11","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ea3452726ccb6bcaa732f43cc57bb928eca3dd59","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74319","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74319 — In the Linux kernel, the following vulnerability has been resolved: btrfs: zoned: fix deadlock waiti…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbtrfs: zoned: fix deadlock waiting for ticket during data relocation\n\nWhen performing data relocation on a zoned filesystem, BTRFS can deadlock\nin handle_reserve_tickets(). The relocation process is waiting on a space\nreservation t…","indicators":{"cves":["CVE-2026-74319"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:32.333Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/814c3b4ea357297c507158bceb07bcdc5fbe9808","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f84dbbaa988e1344634a20ddf6c7d51a99f12477","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74320","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74320 — In the Linux kernel, the following vulnerability has been resolved: fbdev: sm501fb: Fix buffer error…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nfbdev: sm501fb: Fix buffer errors in OF binding code\n\nThe code that gets the frame buffer mode from OF has 'use after free',\n'buffer overrun' and memory leaks.\n\ninfo->edid_data isn't free if the probe functions fail or if\npd->def_m…","indicators":{"cves":["CVE-2026-74320"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:32.457Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/0bc3d909a49e1fd8b8c3f2160d526e672c40621d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/47008d59c60ed896085da95f8d4dd40e1677dd3a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/48cf0f4c6581ec90104cec9c5bf794a8bf347e30","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9057e3f5db39f0ef0dac2f59f2bc59bf17e36c31","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b2ff450f7f5cfc7143cab57c3ad70293ba8b822a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d374f76e1257ecc5d691a765c512ed2c29a44741","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d8421e09382cfe0bd2a044c8b0a822f64855dd4e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/de590cdf7efec8a0b6da90ae2ab5fc5df26810b9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74324","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74324 — In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7925: validate skb…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: mt76: mt7925: validate skb length in testmode query\n\nIn mt7925_tm_query(), the response skb from mt76_mcu_send_and_get_msg()\nis used in a memcpy without validating its length:\n\n  memcpy(evt_resp, skb->data + 8, MT7925_EVT_RSP…","indicators":{"cves":["CVE-2026-74324"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:33.000Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/c386e90a7ce8ddec9f038e9437661a2821b0ce89","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c7369a00860a0704461d440e7c3bf9b49bfdbaee","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e8b214b6d6e1902025452db0a0af73dc9693e4ba","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74326","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74326 — In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7921: fix resource…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: mt76: mt7921: fix resource leak in probe error path\n\nWhen pcim_iomap_region() or devm_kmemdup() fail, the code returns\ndirectly without cleaning up previously allocated resources:\n  - mt76_device allocated by mt76_alloc_devic…","indicators":{"cves":["CVE-2026-74326"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:33.260Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/346dac35b1384af9338b34b6835e82e634ea4d2c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/79a307b2730e4b4e060cf3e19a6c21b87116ee78","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74327","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74327 — In the Linux kernel, the following vulnerability has been resolved: vmalloc: fix NULL pointer derefe…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nvmalloc: fix NULL pointer dereference in is_vm_area_hugepages()\n\nfind_vm_area() can return NULL if the given address is not a valid vmalloc\narea.  Check the return value before dereferencing it to avoid a kernel\ncrash.","indicators":{"cves":["CVE-2026-74327"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:33.383Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/55a44f5259e6a5f1d5b11cb0e19e943c9cc62280","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a1bca6b69bd934e2731d009e645038e05d57ce59","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/af71c2b88ccae44418e273bdfe0c96be8515151e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b86f98e53df4f5d57259817b8e9a00167b78bae6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bbd664b7c77f6488cd5652231c0fe01d069a73ea","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c55dd3b46c1208d6d2ea737a8aefef4aa4c70cb8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c741485fa09bf5900f76d95424d86316d0a00331","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74329","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74329 — In the Linux kernel, the following vulnerability has been resolved: watchdog: unregister PM notifier…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nwatchdog: unregister PM notifier on watchdog unregister\n\nwatchdog_register_device() registers wdd->pm_nb when\nWDOG_NO_PING_ON_SUSPEND is set, but watchdog_unregister_device() does not\nremove it. This leaves an embedded notifier blo…","indicators":{"cves":["CVE-2026-74329"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:33.640Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/298821692d447c2f7b1bc9ef41cd88a31bf56436","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5d9b58ec6f5de5e159a570d419b1b08b3b9f854b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/89184909634e50d086d86d8a0c03fc86fe8d889f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a298c7302ee9584a7a1ac1e8acbede8d98ab51a4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c70b5bb6f04f77ef90e047d7edc2f476e206909f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cd2d1b1f99308f7680d75a377daaff363f1cc736","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e690afea5c876a4abfa2978c6a664460ed7d1217","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74331","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74331 — In the Linux kernel, the following vulnerability has been resolved: firmware_loader: Fix recursive l…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nfirmware_loader: Fix recursive lock in device_cache_fw_images()\n\nA recursive locking deadlock can occur in the firmware loader's power\nmanagement notification handler.\n\nDuring system suspend or hibernation preparation, fw_pm_notify…","indicators":{"cves":["CVE-2026-74331"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:33.907Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/38149b57427c736c08d9aa4c7b87deacd53e9e63","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/490b0385e4cfac691f7b18dde821c13e77b4770b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7865a1bfd20d10c03b083a5fc392d907ca5099b3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/806cb8fabfde7f830da5ae87777d52fdf50c4774","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a5b2a68a391b05d54552f13548a72a46c65006f7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c0f2dedd41fe14dbe076c1672214802fb42cd8c8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d3ec78f8f8d48a04a9fac38d47275c34645e5103","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f25d6e4ec4c257030592bd671f113cf9584c52f0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74335","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74335 — In the Linux kernel, the following vulnerability has been resolved: bpf: Fix NULL pointer dereferenc…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbpf: Fix NULL pointer dereference in bpf_task_from_vpid()\n\nbpf_task_from_vpid() looks up a task in the pid namespace of the\ncurrent task, via find_task_by_vpid():\n\n  find_task_by_vpid(vpid)\n    find_task_by_pid_ns(vpid, task_active…","indicators":{"cves":["CVE-2026-74335"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:34.393Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/50dff00615522f3ec03449680ca23beb4cfc549c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a4c95b6221cb2972a94ed72663c09bd5b0b6dea4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b7474f4432dd9559ada03b01a8cd3472cd02c61d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74336","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74336 — In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: bound S1G TIM PV…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: mac80211: bound S1G TIM PVB walk to the TIM element\n\nieee80211_s1g_check_tim() parses the S1G Partial Virtual Bitmap (PVB) of a\nreceived TIM element. The TIM is handed in as the element payload:\nieee802_11_parse_elems_full()…","indicators":{"cves":["CVE-2026-74336"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:34.510Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/3abc13ec3ac28c343ad7e7b7496e807b924f0edd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b224d18b1e5d1cddfc67f63f41d80023b2ec8889","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74337","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74337 — In the Linux kernel, the following vulnerability has been resolved: bpf: Fix NMI/tracepoint re-entry…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbpf: Fix NMI/tracepoint re-entry deadlock on lru locks\n\nNMI and tracepoint BPF programs can re-enter the per-CPU or global\nLRU lock that bpf_lru_pop_free()/push_free() already hold on the\nsame CPU, AA-deadlocking. Lockdep reports \"…","indicators":{"cves":["CVE-2026-74337"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:34.623Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/440a2fdbb40608d55a7b11f2be53592a3785131d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/89edbdfc5d0308cef57b71359331de5c4ddbf763","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8b0510cc3a4a000d4ed1a56cd96231f3d3ba94c5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74339","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74339 — In the Linux kernel, the following vulnerability has been resolved: ALSA: seq: Clear variable event…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nALSA: seq: Clear variable event pointer on read\n\nsnd_seq_read() copies a queued variable-length event header to userspace\nbefore expanding the payload. Queued variable-length events use\nSNDRV_SEQ_EXT_CHAINED internally, and data.ex…","indicators":{"cves":["CVE-2026-74339"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:34.850Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/14fe4f75fd5309d6b75f8e840ada88912b374207","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6b52211eba213c461f68922708a99d8190c1fcd5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/705dd6dcbc0ea87351c660c1a6443f85f1001c76","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/74ac1ce1f4afdb3b80b6742fa28fb86c8c51d31b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c2ac9287e89916da684c2a548798351e63eb59ee","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e0c3edd86414534cfd179fefe45b38c29c01ae7a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f29243c211928114f8b906e0a3fee77c236f14c8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74342","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74342 — In the Linux kernel, the following vulnerability has been resolved: kernfs: link kn to its parent be…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nkernfs: link kn to its parent before the LSM init hook\n\nAfter commit 12e9e3cd03b5 (\"simpe_xattr: use per-sb cache\"),\nkernfs_xattr_set() and kernfs_xattr_get() compute the cache via\nkernfs_root(kn) before any other check.  kernfs_ro…","indicators":{"cves":["CVE-2026-74342"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:35.253Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/319b82e8b46edaf557436ad858e734e583f78ec9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6cccc49b027c7551ffc1d2532f2ef1922661f3da","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74346","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74346 — In the Linux kernel, the following vulnerability has been resolved: RDMA/irdma: Fix OOB read during…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nRDMA/irdma: Fix OOB read during CQ MR registration\n\nSashiko pointed out an unrelated bug during a previous patch:\nhttps://sashiko.dev/#/patchset/20260512183852.614045-1-jmoroni%40google.com\n\nThis change fixes the bug by eliminating…","indicators":{"cves":["CVE-2026-74346"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:35.720Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/3159c6fac43dc24b34d31971884d98a7a1bf4c4b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4385ddd654d90245eeb83b3cb539670ab5c85ba4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/54cab78df0375196aaec4e3109191653d21751df","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a80b3b13786e9ab1c52b31a1f16c7d6708fa9220","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ad360a31092a870633ec255b96f50181628b4de0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d566002de555b18cc395012c5c1cb8682fc6d2a9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d5aa82da8f65562da996d184686db9d0ea718b91","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74348","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74348 — In the Linux kernel, the following vulnerability has been resolved: ocfs2/dlm: require a ref for loc…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nocfs2/dlm: require a ref for locking_state debugfs open\n\ndebug_lockres_open() copies inode->i_private into struct debug_lockres and\ndebug_lockres_release() later drops that pointer with dlm_put().  That\nonly works if open successfu…","indicators":{"cves":["CVE-2026-74348"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:35.970Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/03ad858ce8064861ea580021976dc19b7aabb549","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5bee5d5f67aedd26d2b72e00e49dd93331fbcc30","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6cc93dea4078cbcddee63fa2234e382a76600464","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/90a6512425414098a63fc97b77bed089c75d106b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9c81c1a61a52b6ecf0d14f1dbd95f154a7a9e92a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a087b2d3411e7f9df71ba3293596923ee2c70d65","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a09831214912a1f270663d935613910fafd8d883","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/aa7883b6a3c76301a3299deb34de948e73bb6a08","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74351","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74351 — In the Linux kernel, the following vulnerability has been resolved: ocfs2: rebase copied fsdlm LVB p…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nocfs2: rebase copied fsdlm LVB pointers in locking_state\n\nThe locking_state debugfs iterator snapshots struct ocfs2_lock_res by\nvalue under ocfs2_dlm_tracking_lock and later formats that copy in\nocfs2_dlm_seq_show().  That is fine…","indicators":{"cves":["CVE-2026-74351"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:36.383Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/07aa4a8ebacde3d0ba50f60d2964f274ee7629bc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/185427b5f7a209254c85c18aad5a4a8e009b2f30","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/610a0d2a35496738e1472fb0f318d5008a1c634f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6b38a5b8ee951e5b244e9a3c3d28d0f5e7c51411","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8614a8f7e81edd34c9f67e454e7024fd12a2a341","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/93612d48fa42b3d1a637eb9279e15281c611c000","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bb44a7690a4d553da705919cf666a80f5ca9011c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e037c1250cc90e7aacb002357d1b0399fc65ecfc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74352","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74352 — In the Linux kernel, the following vulnerability has been resolved: of: reserved_mem: avoid post-ini…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nof: reserved_mem: avoid post-init UAF when alloc_reserved_mem_array() fails\n\nThe global pointer 'reserved_mem' continues to reference the\nreserved_mem_array which lives in __initdata if\nalloc_reserved_mem_array() fails. of_reserved…","indicators":{"cves":["CVE-2026-74352"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:36.543Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/6d28e6ad3c5c9248577f21057baa9bf16fa9ef3b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9af58d10d0d8c08b822de5fc99e61f31a87ede8d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cbd3102fe27bc87da244bf4c3ba670ea4698b0a8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e1686ca81dbf3edbde589b7daf312b45cbf76e03","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74353","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74353 — In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: always resume_all af…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amdkfd: always resume_all after suspend_all\n\nNeed to restore any good queues even if the suspend_all\nfailed for some.  Always run remove_queue as that will\nschedule a GPU reset is removing the queue fails.\n\nv2: move resume_all…","indicators":{"cves":["CVE-2026-74353"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:36.657Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/56ae73c92e200e630c2bdf1e98c88b86c8483b37","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9a030fcb4b192a508113787ef28fb97e27dcf6f6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b5fc19c898e08deb40b671329d99d85d2d575f0b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e29da2a4d9a3b1837dec3ce0892835d506c2a85e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74358","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74358 — In the Linux kernel, the following vulnerability has been resolved: ext4: fix fast commit wait/wake…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\next4: fix fast commit wait/wake bit mapping on 64-bit\n\nOn 64-bit, ext4 dynamic inode states live in the upper half of i_flags,\nand ext4_test_inode_state() applies the corresponding +32 offset.\n\nThe fast-commit wait and wake paths o…","indicators":{"cves":["CVE-2026-74358"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:37.313Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/8b3bc93fee6771775243665a0cf31857d6659775","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d06df6e447a8510f86db44b2522d5375362a9499","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e82d515092a0cf2bca92f399d5c330c324879cea","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74360","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74360 — In the Linux kernel, the following vulnerability has been resolved: bpf: Reject exclusive maps for b…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbpf: Reject exclusive maps for bpf_map_elem iterators\n\nExclusive maps (aka excl_prog_hash) are meant to be reachable only\nfrom the single program whose hash matches. This is enforced by\ncheck_map_prog_compatibility() when the map i…","indicators":{"cves":["CVE-2026-74360"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:37.567Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/3c56ee343f9412d81918635c3e25e22a5dd6d87e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5cf2c85b1231218a3e3e9f188afb4fe2e17903d5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c3da741d5b2119c61c4498bc936f0fc1dbc3c79b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74362","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74362 — In the Linux kernel, the following vulnerability has been resolved: ext2: fix ignored return value o…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\next2: fix ignored return value of generic_write_sync()\n\nFix ext2_dio_write_iter() to propagate the error returned by\ngeneric_write_sync() instead of silently discarding it, which could\ncause write(2) to return success to userspace…","indicators":{"cves":["CVE-2026-74362"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:37.783Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/8990dbb7065b0b002b1e58b9091a5b61f5e94dbe","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8d70b3973020e59845c0bdad90e0b9c2295fd493","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a4659be0bc7cb1856ffb15b67f903229ae8891ec","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b6bc07e49a5fbb335f56eb90cd63dec6584c77d3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ffa974b2f50ad8b911b9066d7aed84ad0afabcdb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74366","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74366 — In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix NULL deref in…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: ath12k: fix NULL deref in change_sta_links for unready link\n\n_ieee80211_set_active_links() calls _ieee80211_link_use_channel() for\neach newly-added link and WARN_ON_ONCE()s if it fails. The call uses\nassign_on_failure=true, w…","indicators":{"cves":["CVE-2026-74366"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:38.287Z","fetchedAt":"2026-08-21T03:01:29.063Z","references":[{"url":"https://git.kernel.org/stable/c/47809a7c8348bc4a332ccc26a37c7145a5f609f8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5f5be2aa3b6d730c51dd4f8b432f2ad72823e63f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cfcea221db933295bf2cd75a7f80d441c7a51e28","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74368","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74368 — In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix memory leak in…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: ath12k: fix memory leak in ath12k_wifi7_dp_rx_h_verify_tkip_mic()\n\nIn ath12k_wifi7_dp_rx_h_verify_tkip_mic(), the call to\nath12k_dp_rx_check_nwifi_hdr_len_valid() may return false when the\nNWIFI header length is invalid, caus…","indicators":{"cves":["CVE-2026-74368"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:38.530Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/5187a92099778501f21af76ed6c8415d128e7298","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/98d4f92ab6a1af2ea2ab590d7e2801b203110981","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74369","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74369 — In the Linux kernel, the following vulnerability has been resolved: liveupdate: fix u-a-f in luo_fil…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nliveupdate: fix u-a-f in luo_file_unpreserve_files() and luo_file_finish()\n\nIn luo_file_unpreserve_files() and luo_file_finish(), reorder\nmodule_put() and xa_erase() to ensure the file handler module remains\npinned while its operat…","indicators":{"cves":["CVE-2026-74369"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:38.640Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/291dcd37c8c8f8f8e1bccc92228f44bf371762a8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f7fca3db635022429382cf26e5b08b33558e375d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74370","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74370 — In the Linux kernel, the following vulnerability has been resolved: liveupdate: fix TOCTOU race in l…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nliveupdate: fix TOCTOU race in luo_session_retrieve()\n\nExtend the scope of the rwsem_read lock in luo_session_retrieve() to\noverlap with the acquisition of the session mutex. This prevents a\nconcurrent thread from releasing and fre…","indicators":{"cves":["CVE-2026-74370"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:38.750Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/d3ae9e7fddb4036f50003d7fa1ef52801fdb961b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d944170607b872a1f93713c555ad3f0efde3a9b8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74372","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74372 — In the Linux kernel, the following vulnerability has been resolved: raid1: fix nr_pending leak in RE…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nraid1: fix nr_pending leak in REQ_ATOMIC bad-block error path\n\nIn raid1_write_request(), each per-mirror loop iteration begins by\nincrementing rdev->nr_pending. If a REQ_ATOMIC write encounters a\nbadblock within the requested range…","indicators":{"cves":["CVE-2026-74372"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:38.967Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/5ac9e793ba2583d72740d929e7858a6c82e22ed5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/731485617bf862f1289c3f40ed1f800d0475826f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/909d9dc3b5730c8ed7b764c68bc788342df2a07b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74373","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74373 — In the Linux kernel, the following vulnerability has been resolved: md/raid1,raid10: fix bio account…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmd/raid1,raid10: fix bio accounting for split md cloned bios\n\nUse md_cloned_bio() to control bio accounting instead of relying\non r1bio_existed in raid1 or the io_accounting flag in raid10.\n\nThe previous logic does not reliably ref…","indicators":{"cves":["CVE-2026-74373"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:39.070Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/ba976e3501111d11c550848b3b7341a73035f582","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bb8d7ea74206b419aa05d7773a15a923b668c9f0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74375","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74375 — In the Linux kernel, the following vulnerability has been resolved: md/raid1,raid10: fix deadlock in…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmd/raid1,raid10: fix deadlock in read error recovery path\n\nraid1d and raid10d may resubmit a split md cloned bio while handling\na read error. In this case, resubmitting the bio can lead to a deadlock\nif the array is suspended befor…","indicators":{"cves":["CVE-2026-74375"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:39.277Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/38777f014c37972868f1733a651c85288bb8a757","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7b15c24f805339a585cfe7d72f446b7e88b9bcc0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74379","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74379 — In the Linux kernel, the following vulnerability has been resolved: dax/kmem: account for partial di…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndax/kmem: account for partial discontiguous resource upon removal\n\nWhen dev_dax_kmem_probe() partially succeeds (at least one range is\nmapped) but a subsequent range fails request_mem_region() or\nadd_memory_driver_managed(), the pr…","indicators":{"cves":["CVE-2026-74379"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:39.703Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/30ea97affbcce236c57287c82dc6ef7a29c63b76","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/598ed7393a639c7547b28ff3e14db9f1ac37c132","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5d3139abb9d1671fa5e42c3d6d8cb3b05479c5bb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/799e54c510a03a65a57627018a817838d72f35bd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8aa442cfce79e2d69e72fc8e0c0864ac2971149d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d47b0b8a69a13e06afafa54723f3e8c99b0c788f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ef4fc53898bd6c4d0119cc6d419ebef7f2560f31","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74381","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74381 — In the Linux kernel, the following vulnerability has been resolved: gpu: host1x: Allow entries in BO…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ngpu: host1x: Allow entries in BO caches to be freed\n\nWhen a buffer object is pinned via host1x_bo_pin() with a cache, the\nresulting mapping is kept in the cache so it can be reused on subsequent\npins. Each mapping held a reference…","indicators":{"cves":["CVE-2026-74381"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:39.927Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/0e9dd7cfb9986b78cc81eca126ccfbf57f4c0602","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3cbf5e3c46e66d9b3b6b91099bb720c6cb1be3bc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/71c017b3f83ff72638f2a1b1d6d4e7bc61d30231","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8c0d3cf0d5108c96317e0eca92b60dd368867cef","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/af755456299d44e4ed6af3b7c70a7f03ea37fdf1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/df63c76f9c8d881ca7bce1aecfba512328d0527d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74382","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74382 — In the Linux kernel, the following vulnerability has been resolved: net/sched: cls_bpf: prevent unbo…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet/sched: cls_bpf: prevent unbounded recursion in offload rollback\n\nQuan Sun reported [1] a stack overflow in cls_bpf_offload_cmd().\n\nReproducer on netdevsim: add a skip_sw cls_bpf filter, set the\nbpf_tc_accept debugfs knob to 0,…","indicators":{"cves":["CVE-2026-74382"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:40.040Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/10753da2d659dd425a6e620f47f86852d604f67f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1387f252a242a51bfbb6eace29c8f8db21b457da","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/27db54b90bcc7c37867fe664107fa25ea6a116e4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/33373e1f378a501bc51aa73312f74295c84e3101","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3fa6fb5d771c992ebedbfa7331c6bcc6f33f89b7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4a76953c3ed043797e81529b9395e9ca6f4c7609","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a018f208ab7512380bd4cf670064d48cba00a1b1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e2d3b7bab3748c811dc5750ce9a8d62bc7f90ed7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74386","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74386 — In the Linux kernel, the following vulnerability has been resolved: nvmet-tcp: fix page fragment cac…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnvmet-tcp: fix page fragment cache leak in error path\n\nIn nvmet_tcp_alloc_queue(), when a connection is closed during the\nallocation process (e.g., nvmet_tcp_set_queue_sock() returns -ENOTCONN),\nthe error handling jumps to out_dest…","indicators":{"cves":["CVE-2026-74386"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:40.513Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/4dae393956093c807212918fd91a8fc70df15338","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5fbe83a374f09561a0f0c1f4aa021501ffd681eb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a43a9abc1ebf663f0aa56a729106f68dd9c77da6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ba3209704b3cd46961e4e081af5c52a780785648","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74389","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74389 — In the Linux kernel, the following vulnerability has been resolved: RDMA/hns: Fix log flood after cm…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nRDMA/hns: Fix log flood after cmd_mbox failure\n\nhns_roce_cmd_mbox() is the command interface between driver and\nhardware. When hardware is abnormal, the unlimited error printings\nafter hns_roce_cmd_mbox() failure will cause log flo…","indicators":{"cves":["CVE-2026-74389"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:40.847Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/66f44ec974ab372e4e1ee9eac4245237c94e8f68","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7d9fbee252f84de3e6947a40eec01481c9d8afbb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bbd97d71e53e551890e4115ad9de46b5f2ac0858","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f3c9e84268e9fa613d40d6c138fb6969c35879b5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74391","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74391 — In the Linux kernel, the following vulnerability has been resolved: tracing: Bound synthetic-field s…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ntracing: Bound synthetic-field strings with seq_buf\n\nThe synthetic field helpers build a prefixed synthetic variable name and\na generated hist command in fixed MAX_FILTER_STR_VAL buffers. The\ncurrent code appends those strings with…","indicators":{"cves":["CVE-2026-74391"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:41.067Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/0c584c27f6649a93ec12061cc779a4bd8f7c1434","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/88b901fdc1662b131ff908cbd017333b61e7acc8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/baa333b2700a7fa3529d504529c8c10060fd687c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cf334620036ad2250e008c7e7bb6646a3938b7b0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f07883450eb14d1cf020b55d9f3a7ec5683bcd26","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74392","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74392 — In the Linux kernel, the following vulnerability has been resolved: dm: limit target bio polling to…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndm: limit target bio polling to one shot\n\ndm_poll_bio() is the ->poll_bio() callback for a stacked dm device.\nThe caller only knows about the dm queue, so it may decide to do a\nspinning poll if it thinks a single queue is being pol…","indicators":{"cves":["CVE-2026-74392"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:41.163Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/5aa0f9231cbacade065cedd8e9b5ebd067231171","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6c4ede3b771adbb3bf21ad4e8b8f2f6f6120c4f7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74393","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74393 — In the Linux kernel, the following vulnerability has been resolved: drm/syncobj: Fix memory leak in…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/syncobj: Fix memory leak in drm_syncobj_find_fence()\n\nCommit 18226ba52159 (\"drm/syncobj: reject invalid flags in\ndrm_syncobj_find_fence\") forgot to take into account the fact that\ndrm_syncobj_find() takes a reference to syncobj…","indicators":{"cves":["CVE-2026-74393"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:41.257Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/5c5994a1204743fa55e4c198ed93a6c36f21cd1f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7471006cd854d159723344be809e8287a2d75502","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e245f3491bf30a758786a4424854f61fee472308","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e5b93bd6fdb92aa5e4689715d7e8487d9ce66a38","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74395","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74395 — In the Linux kernel, the following vulnerability has been resolved: RDMA/mlx5: Fix devx subscribe-ev…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nRDMA/mlx5: Fix devx subscribe-event unwind NULL dereference\n\nMLX5_IB_METHOD_DEVX_SUBSCRIBE_EVENT() links event_sub into sub_list\nbefore initializing the fields used by the shared error path.\n\nIf eventfd_ctx_fdget() then fails, the…","indicators":{"cves":["CVE-2026-74395"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:41.480Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/1025dc2f7ba29b04b8687790fa91f9cd1a53141e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/43f8f7946814c8e5f464518246fdbc69b6e32326","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5100febf8e9d6c8c5ba8dc6534c6a5e3376e5989","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6e15b770461eeaa0ff73934922cb670a6a9db04e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/78b9589fda266c71f0f9d0c858d4fa7381a890a5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7921821fc2b19c01588311f6e7468ae5b68b1f61","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9be9aca28424228586fe9211c373ebdb826ebb6c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f345e744b6b087188cde2377da5cbe9713b61353","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74399","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74399 — In the Linux kernel, the following vulnerability has been resolved: evm: terminate and bound the evm…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nevm: terminate and bound the evm_xattrs read buffer\n\nevm_read_xattrs() allocates size + 1 bytes, fills them from the list of\nenabled xattrs, and then passes strlen(temp) to\nsimple_read_from_buffer(). When no configured xattrs are e…","indicators":{"cves":["CVE-2026-74399"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:41.917Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/0b9f8282b40af4a99d6243d2cb939d14ff36b049","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/11143a19f5b8dc8f414deab87571134f9f447313","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/12ad52dc45a0c8c9d25e85b4a84201de4c5420ed","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/38b7d63b23aa9d2ddde7688040e9426d32be4065","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8df81954d22a653a8b01d46692cd56f71137269b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a0f64cf8bfcb39e533d9e27aeb763a8d81b7f39d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a36cbfb85f26e6c6fb6529b1a364331b94dc88f3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74400","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74400 — In the Linux kernel, the following vulnerability has been resolved: bpf: fix crash in bpf_[set|remov…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbpf: fix crash in bpf_[set|remove]_dentry_xattr for negative dentries\n\nbpf_set_dentry_xattr and bpf_remove_dentry_xattr BPF kfuncs attempt to\nlock the inode of the supplied dentry without checking if it is\nNULL. If a negative dentr…","indicators":{"cves":["CVE-2026-74400"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:42.030Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/0160edf2af51c5fde742973742c5d10497901b21","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/07410646f6ff1d23222f105ccab778957d401bbe","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e003f3a4be738f650e283e92d07017c3fef8da52","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74402","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74402 — In the Linux kernel, the following vulnerability has been resolved: crypto: atmel-sha204a - fix bloc…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncrypto: atmel-sha204a - fix blocking and non-blocking rng logic\n\nThe blocking and non-blocking paths were failing to provide valid entropy\ndue to improper buffer management. Reading the buffer starting from byte 1,\nonly fetch the 3…","indicators":{"cves":["CVE-2026-74402"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:42.220Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/2fa302bbc62dec7cb6339c9494e0e3f2f884afeb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/319400fc5ee15db5793aa45f854968141326effc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/76269a91fd9560c5f03c3e59421a0329e39a6661","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9039bb4f238474379221fc933c34f19f0cba501b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/938ae1fb4a8f5db43b62b6206d409efbf317f0d9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/aac63bbea8fd5a34f1a4305cb73369068f952d32","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d4aa6141ff03ec82eed6fcef814300fb855ce5d8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e833e865e4944ba75120db534bd931db6cf677d3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74414","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74414 — In the Linux kernel, the following vulnerability has been resolved: hfsplus: Remove the duplicate at…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nhfsplus: Remove the duplicate attr inode dirty marking action\n\nSyzbot reported a null-ptr-deref in [1].\nIf the attributes file is not loaded during system mount, a trigger\noccurs [1] when setxattr is executed in userspace.\n\nRemove…","indicators":{"cves":["CVE-2026-74414"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:43.507Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/7a41fd2b32e5908f19a68732008d581c167279dd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b3c7ccb1a93cbb5a9a13196abf608ffa2516817e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74415","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74415 — In the Linux kernel, the following vulnerability has been resolved: spi: atcspi200: fix use-after-fr…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nspi: atcspi200: fix use-after-free when driver unbind\n\nDMA resource is initialized after SPI controller registration. So\nwhen driver unbind, this can trigger a use-after-free when DMA is\ntorn down while the controller is still aliv…","indicators":{"cves":["CVE-2026-74415"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:43.600Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/565bdf45125a05aa8f622f58f598283f46ba43f4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/af6a34c41683067a314d2b58b39edecb2e5e4ac6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74416","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74416 — In the Linux kernel, the following vulnerability has been resolved: drm/radeon: fix memory leak in r…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/radeon: fix memory leak in radeon_ring_restore() on lock failure\n\nradeon_ring_restore() takes ownership of the data buffer allocated by\nradeon_ring_backup(). The caller (radeon_gpu_reset()) only frees it in\nthe non-restore bran…","indicators":{"cves":["CVE-2026-74416"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:43.690Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/06dc892561f5a08b2493c34c8ec2cb94dea33159","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/07c213f3499dd72e2922c1c73fe9ffea24874bef","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1c9ba32308c02c198c378fcdf06be9ffc3111147","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/63912418f1fbb6456ea04bbcdf8f4d5090d23350","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/82f1d6042611d45b8b9de423bbcb4e0ced9ec62b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/919e3e398bf301c6418dffdcd5e5c4fd9be39cf7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ccc42187fc2d0720947a63ce1b9e399d2c068ff4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/eecfb76129ebef7e3aa41e18a4668cd91dfc6267","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74418","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74418 — In the Linux kernel, the following vulnerability has been resolved: dma-fence: Fix potential tracepo…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndma-fence: Fix potential tracepoint null pointer dereferences\n\nTrace_dma_fence_signaled, trace_dma_fence_wait_end and\ntrace_dma_fence_destroy can all currently dereference a null fence->ops\npointer after it has been reset on fence…","indicators":{"cves":["CVE-2026-74418"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:43.907Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/4e01fc9a5bc49b04fad403ffa71299b35e132ca8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e94b9f01543cc6a83538c2c2cc645a424d3015ca","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74420","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74420 — In the Linux kernel, the following vulnerability has been resolved: drm/gpusvm: Reject VMAs with VM_…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/gpusvm: Reject VMAs with VM_IO or VM_PFNMAP when creating SVM ranges\n\nVMAs marked with VM_IO or VM_PFNMAP are not backed by struct page\nobjects, which GPUSVM requires in order to operate correctly. In\nparticular, get_pages() re…","indicators":{"cves":["CVE-2026-74420"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:44.100Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/353f26c74660bcbd8d82cd76622748e14a5a5db3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/63f443384979563f16f70420f4fa85bba31238ca","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b82a225e57a334335a21462b75ee2223bc6efe6d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74421","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74421 — In the Linux kernel, the following vulnerability has been resolved: drm/rockchip: dw_dp: Switch to d…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/rockchip: dw_dp: Switch to drmm_kzalloc()\n\nDriver makes use of drmm_encoder_init() to initialize the encoder and\nautomatically handle the cleanup by registering drm_encoder_cleanup()\nwith drmm_add_action().\n\nHowever, the intern…","indicators":{"cves":["CVE-2026-74421"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:44.197Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/0d60b835bca42f0f790689dd47819ed881a92ccc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6b0b92d1110eccccbd5ba2949bd2b9fb6ea5fc12","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ed9da8d23020352ad24c528db09b5acdd78b81fd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74422","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74422 — In the Linux kernel, the following vulnerability has been resolved: drm/rockchip: inno-hdmi: Switch…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/rockchip: inno-hdmi: Switch to drmm_kzalloc()\n\nDriver makes use of drmm_encoder_init() to initialize the encoder and\nautomatically handle the cleanup by registering drm_encoder_cleanup()\nwith drmm_add_action().\n\nHowever, the in…","indicators":{"cves":["CVE-2026-74422"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:44.293Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/195ab348af4b2bdf5988f9397059317bb68fd797","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3cc50e7f73fcf79f28660b9d91566b13cb62e520","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74423","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74423 — In the Linux kernel, the following vulnerability has been resolved: accel/amdxdna: Fix leak when pin…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\naccel/amdxdna: Fix leak when pinning ubuf pages\n\nWhen pin_user_pages_fast() returns fewer pages than requested, the pages\nthat were successfully pinned are not released, leading to a leak.\n\nFix this by unpinning any partially pinne…","indicators":{"cves":["CVE-2026-74423"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:44.387Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/5b24e0903c58cdfd8ebfecb6ac5c5bacfd06e4e7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/68dc52f308a17c3103a349f722dd5dea32c50a88","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d946347edc4f0a7b846325323d77e936a4c90d0f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74426","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74426 — In the Linux kernel, the following vulnerability has been resolved: afs: fix NULL pointer dereferenc…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nafs: fix NULL pointer dereference in afs_get_tree()\n\nafs_alloc_sbi() uses kzalloc for memory allocation. And, if\nctx->dyn_root is not null, as->cell and as->volume are null.\nIn trace_afs_get_tree() they are dereferenced.\n\nKASAN err…","indicators":{"cves":["CVE-2026-74426"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:44.690Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/0b70716081c6462be9b2928ad736d0d527b09678","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/23b3d457d8387bcb2a61063a9e520063ada9335f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/67fb48c4a0874953212321cd5d57fdb4900dbc31","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/70b2842734d831c908474779bb8a76daf55f782c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/867b3ea146a041023bfcd258e6db516b1bb28f19","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d5b17474feed3c30991f07affa2473adbad95055","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d648cc2069eb081707c061849046d909f57c78b1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ea19edf71721cd42f923e3c70f4ff995b422fe3b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74432","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74432 — In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix leak of released call…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nrxrpc: Fix leak of released call in recvmsg(MSG_PEEK)\n\nFix rxrpc_recvmsg() to also drop the ref it holds on an already-released\ncall if MSG_PEEK is in force (the function holds a ref on the call\nirrespective of whether MSG_PEEK is…","indicators":{"cves":["CVE-2026-74432"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:45.317Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/04c7103dc0923cc6ac95b97aa66bab70da7ace84","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2b69b61057eb0b3db9ad754ef0f1436b7af3a9f5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4bdb9e471f5b1ac9cbe4add5de7ff085a0ec303c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/86eff3140c9d4b52bba13d1cba266da933403e51","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e473cd3046a1aaec1e39af5df2042ce7c04d5e74","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74437","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74437 — In the Linux kernel, the following vulnerability has been resolved: media: uvcvideo: Fix deadlock if…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nmedia: uvcvideo: Fix deadlock if uvc_status_stop is called from async_ctrl.work\n\nIf a UVC camera has an asynchronous control, uvc_status_stop may be\ncalled from async_ctrl.work:\n\nuvc_ctrl_status_event_work()\n    uvc_ctrl_status_eve…","indicators":{"cves":["CVE-2026-74437"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T06:22:45.810Z","fetchedAt":"2026-08-21T03:01:29.064Z","references":[{"url":"https://git.kernel.org/stable/c/3659deaf7bf690510899a73906b772740d94342c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6d27f92c54ce28cfbd2a8a479a96d6f4a781b7d2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7f6c5fe1633272c926361b73d83dfc6ae01b1504","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74441","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74441 — In the Linux kernel, the following vulnerability has been resolved: usb: typec: ucsi: Fix race condi…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nusb: typec: ucsi: Fix race condition and ordering in port unregistration\n\nA synchronization issue exists during port unregistration where pending\npartner work items can race against workqueue destruction, leading to\nuse-after-free…","indicators":{"cves":["CVE-2026-74441"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:48.643Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/07f8aaffee705e552c1f723ac8bf7eb137ad59c2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/11483d80267db97fbe49f2df66385434256cc3b0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3f7b3728dd9011c915cbeaea77274ebe8366550d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7aa7d4bf9d3fa9a6a47b640ad103ab433b7ff261","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bc7a0f721123ea260a42f1ded06dab844ba49434","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74442","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74442 — In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: avoid destroy_workqu…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/vmwgfx: avoid destroy_workqueue(NULL) on vkms init failure\n\nTwo paths through vmw_vkms_init() can leave vmw->crc_workq NULL while\nstill leaving the rest of the driver in a state that calls\nvmw_vkms_cleanup() at module unload:…","indicators":{"cves":["CVE-2026-74442"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:48.760Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/05eaa887e7b4f40fba425f8a1d7a5a8a043092a6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/0ee0532f1d405d37f38c44cbba87342e63d3bbd4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7c701778c6a369769992614dac8dc00c8ac72afc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/96efee36453b697ccbaf75091b7a1807c11809dd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74445","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74445 — In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: reject DX_BIND_QUERY…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/vmwgfx: reject DX_BIND_QUERY without a DX context\n\nvmw_cmd_dx_bind_query() unconditionally dereferences\nsw_context->dx_ctx_node->ctx.  Userspace can trigger a NULL pointer\ndereference from any render-node fd by submitting an ex…","indicators":{"cves":["CVE-2026-74445"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:49.067Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/0634d50e8b398c25bd07c96b048e484d22688c26","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/55ec09c9ce10b1272802c7ab6c1be2ea0dbc68db","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6b1eb0b63cc153e1c0cb5ab8350950119be11947","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7eae011829f94a76470ec76f016805f508437755","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e479240a1e076ba1104236331abd62400bf1d495","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74448","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74448 — In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: fix QID bit leak in…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amdkfd: fix QID bit leak in pqm_create_queue()\n\nWhen MES is enabled and amdgpu_amdkfd_alloc_kernel_mem() fails during\nthe first queue creation for a process, pqm_create_queue() returns\nearly via 'return retval' without going th…","indicators":{"cves":["CVE-2026-74448"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:49.390Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/2ff5bb3645c72b3690e70c513a62a86600c4632f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/38b73293f38658a4685ffcea666462024f858ad9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5f0f2ddeac738e2ca9d12cb76a1ff2904e85ecc3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7c35bf94150d872e670a6632aa819d320279effb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8924e2594a15bdbd07f8696770864366d787ab70","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74455","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74455 — In the Linux kernel, the following vulnerability has been resolved: can: peak_usb: validate uCAN rec…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncan: peak_usb: validate uCAN receive record lengths\n\npcan_usb_fd_decode_buf() walks uCAN records packed in one USB\nreceive buffer.\n\nRequire each record to contain the fixed header for its type, and verify\nCAN payload bytes before c…","indicators":{"cves":["CVE-2026-74455"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:50.120Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/2427ef427bdd78d862c7c76597bfd9eda88b81f1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/276d989cd2dd88e2b7ab2c96fd10c86836b12781","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2c8f08f3641a074da40acf05baa5a18ae2739260","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6067c878e38d02a3d5c43497347e143f85c9064a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/89c92a8052698dbbd3652a77c04d02bbd74a3275","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/93fcab2c6968446316bbb49548848df604d6346f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bf9d787b7e1ef59be19b35abca08194772deb97e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d9c115948c3dd5fcc2d0245cec5eb76c098503c8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74457","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74457 — In the Linux kernel, the following vulnerability has been resolved: can: peak_usb: add bounds check…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncan: peak_usb: add bounds check for USB channel index\n\nThe channel control index ctrl_idx is derived from rx->len which comes\ndirectly from a device USB payload. The mask 0x0f allows values 0-15, but\nthe array size of usb_if->dev[]…","indicators":{"cves":["CVE-2026-74457"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:50.333Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/0149fdb50a30944827acf9600a2cc44de0325a7f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/0c9268457bd6e4058fe55b4db01b16661c2eacf5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/18b1a868a2cda66fb438007ba47ce5f2484db381","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1acab790b7cecd4e144d1d18bdfe549e282f6b0b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/39132f166ca8ce00ae60d8a9068e06a60943cc4b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/825c903ca3c98cd0cf0e3de8ab8f2604a5339b3f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/94fb6fe83ce152532b11b36730b30f3dc0c94217","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f97b7e5e1cdaae15cd95b3a360028c7929664969","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74458","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74458 — In the Linux kernel, the following vulnerability has been resolved: can: kvaser_usb_leaf: kvaser_usb…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncan: kvaser_usb_leaf: kvaser_usb_leaf_wait_cmd(): validate received command extents\n\nThe wait and bulk receive paths walk variable-length commands from a\nUSB buffer. A nonzero command shorter than CMD_HEADER_LEN can still be\ndispat…","indicators":{"cves":["CVE-2026-74458"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:50.437Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/0293dd153f9dbc1ddf5dacdccc76b363bce4a8ee","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/185cb1fa38142a3cbf223dd8b3abb24217f330d3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/21f0465fd86d77794aaed8e05f833634f68d178d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3d0897ec623e422695d70d80ae456f89476c5328","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/695aea154bb2d453e6daada1510972fafd075285","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/72f96c2942f11a0ae8663adcb3d9ee986e07d4fa","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c00ec53d7dec08134e97071850cc00ef000c5b77","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d9e91672526ffa279709b15490118aea1bdee714","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74459","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74459 — In the Linux kernel, the following vulnerability has been resolved: can: etas_es58x: es58x_read_bulk…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncan: etas_es58x: es58x_read_bulk_callback(): fix RX buffer leak on URB resubmit failure\n\nes58x_read_bulk_callback() resubmits the RX URB after processing a received\npacket. If the resubmit succeeds, the URB remains anchored and wil…","indicators":{"cves":["CVE-2026-74459"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:50.543Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/0ef136ba052101243ba117a1aca6f4a4c3a81142","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/19c6c8c6cd5dd14fab5fcd744584812a57cbb78d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/21da1a374769751546cc131e58a4d8bd968f57b2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7a0cf2b2497c757c3cb1286eddf2986abb0d387b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b85e5c310382803d27adf6fe6554d4208bc8951c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c311f17c261fd375ddf5755f2ebe1f022c19c5b0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c7ddf119544eea2d8409e12471c3f9f36ca02e3f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74460","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74460 — In the Linux kernel, the following vulnerability has been resolved: can: ems_usb: validate CPC messa…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncan: ems_usb: validate CPC message lengths\n\nems_usb_read_bulk_callback() walks CPC messages packed in one USB\nreceive buffer.\n\nCheck that each declared message fits in the URB payload. Also require the\ntype-specific payload to cove…","indicators":{"cves":["CVE-2026-74460"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:50.663Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/02925f51377f2a42a6724f00549167499c9302e5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/0b23144c59c126beb4a7761a85a194ae0fe668a5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/0b9090717c7e2184e2c427bbcc752f295116ac1d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bb3cc8da8a2967c0f8e83d148fc6870b19fa32c6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ce8125566b1d0b0f16449407e014addf451804ea","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/db5655287d78f00daf98888a520bb8da4d30126d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/df3ac2a672a5284441f120d486acabdd6740fc2a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74462","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74462 — In the Linux kernel, the following vulnerability has been resolved: i2c: imx: mark I2C adapter when…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ni2c: imx: mark I2C adapter when hardware is powered down\n\nOn some i.MX platforms, certain I2C client drivers keep a periodic\nworkqueue which continues to trigger I2C transfers.\n\nDuring system suspend/resume, there exists a time win…","indicators":{"cves":["CVE-2026-74462"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:50.863Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/00d86dd5c2034e0e139e4806137b3b43e07ddd83","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7a5db225ab5a6b095f6c37197b3b114921d85541","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ec8e15e3e5c7e8180b13399f5a5aff8415bf16c5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74463","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74463 — In the Linux kernel, the following vulnerability has been resolved: i2c: jz4780: Cache host clock ra…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ni2c: jz4780: Cache host clock rate at probe to prevent CCF prepare_lock deadlock\n\nFix a severe AB/BA deadlock between the Common Clock Framework (CCF)\nand the I2C adapter lock, which triggers when an I2C-controlled clock\ngenerator…","indicators":{"cves":["CVE-2026-74463"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:50.963Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/14429dc1c756c35e106f01ff09cadccb82f5531d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/19b783335d62e7a2367436a6e1f1b37da1878360","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/aa1944b52d6492c48bdd17046578aa0d953546e6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b6cb47e186abba85a3b08aa3023067ab82577286","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cc111696ef420f6bb552b2526530067977f0b406","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d99607c888f26e8a4e9fe9772860cef4aff86bb4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/deffad5bb4f8b4f09e46252f24754ddc9960b244","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f96a719d9f8a797105ec5cacf568ab128e33391f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74464","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74464 — In the Linux kernel, the following vulnerability has been resolved: net: openvswitch: fix skb leak o…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: openvswitch: fix skb leak on flow key update failure during ct\n\novs_ct_execute() always steals or frees the skb on failure while\novs_flow_key_update() does not.  So, if it fails and we return right\naway, the skb ends up leaked…","indicators":{"cves":["CVE-2026-74464"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:51.077Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/22e0ca88090d89c128078062186b03bb5fdc4f98","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/393f3c72600ab6721d732a0ab245bc896c5b28fc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6cc523eaee72c4e91894136cff64946ae9de2cda","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/736e972f3f8a304158345223ac6e816166a467ce","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b77126b2915900f69f9fcf5d624a77c8e6d50c31","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bc62e843bc48f933da765ce47079fd992e535794","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e0ba8eaef2a0d02a7a485e6a7157e47272b65cea","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e84dfaac50aab45ad8c670da43e3aa1f97bd2a41","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74466","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74466 — In the Linux kernel, the following vulnerability has been resolved: s390/zcrypt: Close speculative m…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ns390/zcrypt: Close speculative mem read possibility\n\nThe domain value is extracted from a given CCA or EP11 ioctl struct\nwhen a CPRB is about to be sent. Thus this is a user controlled value.\nUnder some special conditions (custom d…","indicators":{"cves":["CVE-2026-74466"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:51.307Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/82b62eda68abfb7a33ac40f24b8c4128c2891148","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e935cd525af4c6ed2e2c6404aa27ca19c7f39ddb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74468","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74468 — In the Linux kernel, the following vulnerability has been resolved: gpio: pch: use raw_spinlock_t fo…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ngpio: pch: use raw_spinlock_t for the register lock\n\npch_irq_type() is registered as the irq_chip .irq_set_type callback and\ntakes chip->spinlock with spin_lock_irqsave().  This callback is reached\nfrom __setup_irq() -> __irq_set_t…","indicators":{"cves":["CVE-2026-74468"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:51.500Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/16da33cb36e663b6967112185e11d00ce8ff957c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/466ab0c41d5f54f71cee60619d07c4abd0ffd2cd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/935e6872db7faecfbe1a10b3f5d97a62fdff5ec9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/98f292cb6d01487d17988d9fd4e19c13e7adb156","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a02b8950d619123da64f69b70fe1dadef217dfe4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c0a4ec89fc26e4b679b04f1002c503cb2529acdc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/efc76a3f5353dd33a2e2ad48200cd4a18de30a0d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ff050589a21967883bb55f6dba42568f8367ad4a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74472","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74472 — In the Linux kernel, the following vulnerability has been resolved: ublk: reset kernel-owned dev_inf…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nublk: reset kernel-owned dev_info fields in ublk_ctrl_add_dev()\n\nublk_ctrl_add_dev() memcpy()s the userspace ublksrv_ctrl_dev_info into\nub->dev_info and then fixes up the fields the driver owns, but misses\n->state and ->ublksrv_pid…","indicators":{"cves":["CVE-2026-74472"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:51.953Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/127033b79383a3e78361d7e971588aa8849f5124","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/205feb72e5beb3140e4e1403b6cff30cf739bab9","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/787c944502e7e63d20a9201bada77e0dd924f458","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b67ce16b26ad0f14cfd6071013840aa95f823bea","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e65848e4ce352bac9e3465099354c8b8f845391f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ee41b00858ca65b4428e99efe39a4277c1f043d2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74477","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74477 — In the Linux kernel, the following vulnerability has been resolved: uprobes: Fix NULL pointer derefe…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nuprobes: Fix NULL pointer dereference in hprobe_expire()\n\nForking a task that has a pending uretprobe can oops the kernel with a\nNULL pointer dereference in the clone() path:\n\n  BUG: kernel NULL pointer dereference, address: 000000…","indicators":{"cves":["CVE-2026-74477"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:52.497Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/06c275a6c0a953ef1d763d11a6891fcc69ae2ac0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3bd35a5e272a1b7a3fb43acad9bdc599281b13fa","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cc679d7a6303e84d769f2afcde1fc51c51f127cd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74483","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74483 — In the Linux kernel, the following vulnerability has been resolved: binfmt_misc: don't leak the user…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbinfmt_misc: don't leak the user namespace when the mount fails\n\nbm_get_tree() takes a reference to the user namespace and hands it to\nget_tree_keyed() as the sget key. sget_fc() moves that reference into\nsb->s_fs_info and clears f…","indicators":{"cves":["CVE-2026-74483"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:53.163Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/87a4eb9bbb3497f749bbac612af22ddaa62d7b0d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b8206f516fe7cbe785cf44bf09c17c438d7c3cad","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74484","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74484 — In the Linux kernel, the following vulnerability has been resolved: binfmt_misc: don't let an 'F' en…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbinfmt_misc: don't let an 'F' entry pin its own instance\n\nAn entry registered with 'F' opens its interpreter at registration time\nand holds that file until the entry is freed. Any entry nobody removes\nby hand only gets closed once…","indicators":{"cves":["CVE-2026-74484"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:53.270Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/098e92fe0f1bde5af99c8cf504f13f01ef139f85","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1cc2decee06acc939337304e9b3f737fd5d8c4bd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4dad8ca637d44d5a6d5c23fa80c9e2e455198c2b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/79055d82772b9584f259b747fe40ff56a076678d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74487","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74487 — In the Linux kernel, the following vulnerability has been resolved: binfmt_misc: restore write acces…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbinfmt_misc: restore write access when removing an entry\n\nRegistering an entry with the MISC_FMT_OPEN_FILE flag opens the\ninterpreter via open_exec() which denies write access to it for as\nlong as the entry exists. Removing the ent…","indicators":{"cves":["CVE-2026-74487"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:53.593Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/3b522487a3a9162b1b519eefde7998d103e3e07b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/db1856ea9196cf6e015d12199a34c0b9313c7bfa","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/fdc1d702bf3001586221fa07e598e876a0a854c5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74491","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74491 — In the Linux kernel, the following vulnerability has been resolved: of/address: Fix NULL bus derefer…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nof/address: Fix NULL bus dereference in of_pci_range_parser_one()\n\nThe bus matching rework made of_match_bus() return NULL for nodes with\nranges/dma-ranges but no local #address-cells. parser_init() stored that\nNULL bus, and the ra…","indicators":{"cves":["CVE-2026-74491"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:54.020Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/88752b811f72aa7a16de6dad4b25031d7308673e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bba13ad17b1a11b3f1ed9b3a5d556191d7755a59","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/eddd0159a8761a16a9d183676b03cf493417816e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74494","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74494 — In the Linux kernel, the following vulnerability has been resolved: ksmbd: reject repeated SMB2 NEGO…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nksmbd: reject repeated SMB2 NEGOTIATE requests\n\nUnauthenticated client can send multiple successful SMB2 NEGOTIATE\nrequests on one connection before SESSION_SETUP. While the connection is\nin KSMBD_SESS_NEED_SETUP, smb2_handle_negot…","indicators":{"cves":["CVE-2026-74494"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:54.353Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/7e02cb30e8a1f5fc78cb10b220b06020e36d0bbe","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a60b5da05e318d9a364dbac38c347c7f24e625e7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cb469993b3a61a72653770856d37af616d72d05f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74498","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74498 — In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Fix DMA buffer…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nALSA: usb-audio: Fix DMA buffer out-of-bounds write when fill_max is set\n\nWhen a USB audio endpoint requests full packet transfers via the fill_max\ndescriptor flag, data_ep_set_params() promotes ep->curpacksize to\nep->maxpacksize.…","indicators":{"cves":["CVE-2026-74498"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:54.760Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/04595233e5606d452f9f47e6989fc7ae7440fd40","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/10c24e6fddf4bdff0b6b05a47a4347b38e6960e8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3852974608f53e530e27c21d0c6c7d79c17b3f5a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/6cbdd11f9b05b92f4aa29f09a66e19ed0e25e66c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b1770f9ac35c0ffc34914d52347c65dcd5ac049b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bd65b7191683bebd9923904f0558b9211b9129da","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d0199ae1666ff9ae2d1d568d64c3430d4c47f0e5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f9b6c9576568169139ac151f7881474f384659fd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74499","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74499 — In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: fix OOB write i…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nALSA: usb-audio: fix OOB write in snd_usbmidi_akai_output()\n\nsnd_usbmidi_akai_output() computes its fill-loop bound\n\n\tbuf_end = ep->max_transfer - MAX_AKAI_SYSEX_LEN - 1;\n\nas a signed int, so a small device-advertised bulk-OUT max_…","indicators":{"cves":["CVE-2026-74499"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:54.863Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/00cc659a42ac4e94ec880fae2c9bf22fce69c2e8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/0970274613fb463d376211450cab066d34ebfe6a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/29a4c29943631301e85f5e9d10f25741bd78e7ba","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2b7a0f330dd90dd1a7657cec0db019ee1efa4372","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/78dfdeb8d2065524ed5928d6470bf3d3244d1009","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9b22a5c8310b0d55d04f5f0159b913a2fb8b444f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b5305a0d0bb8e90a6fc9f88270d5f6c9b8c40081","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ce949d66607cfb000b8d8d84f80f35a886e72683","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74500","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74500 — In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: fix stack info…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nALSA: usb-audio: fix stack info leak in RME Digiface status\n\nsnd_rme_digiface_read_status() reads a four-word status block from the\ndevice into an uninitialised on-stack __le32 buf[4] and, whenever the\nvendor control-IN transfer do…","indicators":{"cves":["CVE-2026-74500"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:54.970Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/441aaad150c57edaf57ee482a79a3bf4c5b7e353","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7ba01e0d3539d9cf0aef3e82938f1648147744cc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/98dbfbb38e297c25c5b0af4a9018d71ac25e8554","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b3a346d5c99dd73cf84711f2a43e42691990efd2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74501","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74501 — In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: fix use-after-f…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nALSA: usb-audio: fix use-after-free in ump_to_endpoint()\n\ncreate_midi2_ump() registers a card-owned snd_ump_endpoint and stores a\nback-pointer to its per-interface snd_usb_midi2_ump object in\nump->private_data, but it never install…","indicators":{"cves":["CVE-2026-74501"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:55.093Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/49eccef6d6e1c00dac6fb2e7eb6f9206c33e1c37","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4a05b2d1b4642df74f30b6f54843e825c4a2bfd3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8a7a33b846d6ba695891b8d0040027cdbad8cd52","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ae388c0e1bf727972096f770f82d12e4f748d1b6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cc014ebf803174f0e5d15956dfc5a38413c945ae","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74502","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74502 — In the Linux kernel, the following vulnerability has been resolved: ALSA: ump: fix double free of ou…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nALSA: ump: fix double free of out_cvts on rawmidi error\n\nsnd_ump_attach_legacy_rawmidi() allocates the legacy conversion array\nump->out_cvts and, on the snd_rawmidi_new() error path, frees it with\nkfree() but leaves ump->out_cvts p…","indicators":{"cves":["CVE-2026-74502"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:55.197Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/032746c2dd9a4ea0774b04ac8a29e2ea628f106e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3302aaeac4f7ee6b775850db21d5f61064ce70ad","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/70c977815af0d997feb2d0c5d284d55689bf7051","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c57001f55f97ef856fb6527e376c5c4a056a53a4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e84d2e53a05c78a04d1343eeb0f31a79456e79fc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74504","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74504 — In the Linux kernel, the following vulnerability has been resolved: ALSA: seq: Fix division by zero…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nALSA: seq: Fix division by zero in initialize_timer()\n\nA userspace-driven ALSA timer (SND_UTIMER) lets an unprivileged user set\nthe backing snd_timer's hardware resolution to an arbitrary 64-bit value\nvia SNDRV_TIMER_IOCTL_CREATE.…","indicators":{"cves":["CVE-2026-74504"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:55.427Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/21e19688433452dfbbbe6b2bb670dea6eb92f0f6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/42c6543ff27ea280334244458d4f52ec7133cc05","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5260e195c53e898a4a76527d4bb2178f31795e78","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d0e19932875746118e298b4c974f3b2d4aeb16fc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74505","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74505 — In the Linux kernel, the following vulnerability has been resolved: ALSA: 6fire: Fix UAF at error ha…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nALSA: 6fire: Fix UAF at error handling during probe\n\nAlthough 6fire driver had a few fixes for dealing with the early error\nhandling during the probe phase, it forgot a pending URB before\nfreeing the resources, which may lead to a…","indicators":{"cves":["CVE-2026-74505"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:55.533Z","fetchedAt":"2026-08-21T03:01:29.065Z","references":[{"url":"https://git.kernel.org/stable/c/11e2953d9f4c7c3d2af94a889c2d805c537d633f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2de734dcbb210bd59983e13d36988acbcc122194","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/49bc7741cd2761c703a292dc69245041ae8a67bd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/630c8d6a93cbd9b2a207f1a67ef1fd21af098b0c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8b7ecb2446845fa8d1f1ce9aac6307caac50cfd5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a0bb5b9d39e54888385dc399c899223299201fe6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a54bf16965f896415c3337bc4fbb40fb11941d99","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d41bfea14ee6e063a953f6e72046088737c4e66c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74514","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74514 — In the Linux kernel, the following vulnerability has been resolved: KVM: s390: pci: Fix memory accou…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nKVM: s390: pci: Fix memory accounting for pinned/unpinned pages\n\nThe account_mem() and unaccount_mem() functions call get_uid() which\nincrements the reference count of struct user_struct on every invocation.\nBut we don't decrement…","indicators":{"cves":["CVE-2026-74514"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:56.530Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/36f6999ecde3976731a8bfc0b8e667da6f593069","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/47cfd75d9df7c8f425b0d769328fe43a8a8e606e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/70871b121f81d08879363cb1238a4c85c5c2800c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dc7465a364104526c56b922c9de9dfcc08a7d5f7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e3f732e086e438c52c7400bd2734bb166aa4752c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74524","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74524 — In the Linux kernel, the following vulnerability has been resolved: riscv: mm: Fix out-of-bounds pag…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nriscv: mm: Fix out-of-bounds page-table walk during memory hot-remove\n\nremove_pud_mapping() and remove_p4d_mapping() obtain a child table base\nwith pud_offset(p4dp, 0) and p4d_offset(pgd, 0), then add the index for\naddr.\n\nRISC-V fo…","indicators":{"cves":["CVE-2026-74524"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:57.660Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/1bb0ef8069ef158d245bac91ac178bb4f1a7ccd2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1da6d832eda02d908df11a30ba6a856b98a3dd76","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/54e07a158f7aea2754849d3a5a4cba1ac338ae7e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a0188cc133696627857d16054e43f9ebc7efc821","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74525","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74525 — In the Linux kernel, the following vulnerability has been resolved: net: sxgbe: free TX rings on RX…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: sxgbe: free TX rings on RX allocation failure\n\nWhen RX descriptor ring allocation fails, init_dma_desc_rings() only\nfrees the partially allocated RX rings and returns. The TX rings that\nwere allocated earlier in the same funct…","indicators":{"cves":["CVE-2026-74525"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:57.763Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/3563e2486dcd50a751dbcbc1de37e5186646dce6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/42b87cfd9666ef156637c90ff3f6f6dd9a5ad4cb","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/923389d0370b4117bd579784442e8450f9bb89be","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a07a69f472fff1c6edf77ca97616381657a8444c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b33644a4f6d8f127c62d7b39f24114d3d2499204","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c870f7e2890b9f78ac84515a9809cc5c183c975e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f2e5bb9fb710553e76a3be9097b448b4e73d8c92","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f52de3ea462229457334c9d3c0d95a7856908664","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74526","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74526 — In the Linux kernel, the following vulnerability has been resolved: scsi: mpi3mr: Fix potential dead…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nscsi: mpi3mr: Fix potential deadlock in mpi3mr_fault_uevent_emit\n\nmpi3mr_fault_uevent_emit() runs from the fault watchdog and reset paths\nwhere host I/O may already be blocked. GFP_KERNEL allocations here, both\nthe local kzalloc_ob…","indicators":{"cves":["CVE-2026-74526"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:57.883Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/ccff8c92571500fcfed21281e33daaf645bf692f","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/df817b19dac7034416d18f14347010b3e9f5cf3d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74532","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74532 — In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btintel: Validate len…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nBluetooth: btintel: Validate length before parsing diagnostics TLV\n\nbtintel_diagnostics() accesses tlv->val[0] without first validating\nthat the diagnostics VSE is long enough to contain that field, so\nmay cause reading data beyond…","indicators":{"cves":["CVE-2026-74532"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:58.500Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/6ec9c3dc52302b891513f608f5fb478349b15ab3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b640ff9af3c809ff5ea2077fbba17df1594ec1e4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c31be902ccbbb0b2c23159a1481dce80d1f9753d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c618a9a5b08ea2e17bddf4e948be9f75d408fca4","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/dd20e30bdbd707ea8ced581f3d7f9e9854634b17","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74536","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74536 — In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ISO: fix leaking sk a…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nBluetooth: ISO: fix leaking sk after socket release\n\niso_sock_kill() tests !sock_flag(sk, SOCK_ZAPPED) || sk->sk_socket ||\nsock_flag(sk, SOCK_DEAD) for early return, but this is always true since\nsock_orphan(sk) sets SOCK_DEAD, so…","indicators":{"cves":["CVE-2026-74536"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:58.940Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/96ed3c772c08e7a91c399567f412618e43231023","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ce57442a379212fe3fda59c9437ee8217eceb5b1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e30e5ca63c8fbe3cd505fbb419bb547760cda633","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e76a0ae6542ae43241b2147bacf4990e7ae5316a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74542","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74542 — In the Linux kernel, the following vulnerability has been resolved: netfs: Fix folio_queue ENOMEM in…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfs: Fix folio_queue ENOMEM in writeback by adding a mempool\n\nFix the handling of folio_queue allocation failure in writeback by adding a\nmempool and passing in gfp_t flags to the rolling buffer functions that\nallocate memory, us…","indicators":{"cves":["CVE-2026-74542"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:59.543Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/1d78d56c43ef3768183e8370e7367b162700e049","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3f6d7f8a5416d852648d15a05e895f1195ee8a85","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74543","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74543 — In the Linux kernel, the following vulnerability has been resolved: net: udp_tunnel: fix memory leak…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: udp_tunnel: fix memory leak in udp_tunnel_nic_unregister()\n\nsyzbot reported a memory leak [1] in the UDP tunnel NIC offload code.\n\nWhen device registration fails (e.g. in register_netdevice()), netdev core\nunwinds by sending a…","indicators":{"cves":["CVE-2026-74543"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:59.643Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/080695e6f005e2396f1207fd69d24c442cb230c6","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b322532a4b774db1b480a2de84125910a70739a5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b712da45bd9b9835d132e9fbc0c3e43c164cb1fd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f82a2ded3d7a9098267c84f14eafdb98c4550ac5","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74546","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74546 — In the Linux kernel, the following vulnerability has been resolved: hwmon: (adt7470) Fix divide-by-z…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nhwmon: (adt7470) Fix divide-by-zero TOCTOU crash in fan speed read\n\nIf the fan data becomes 0 between the FAN_DATA_VALID() check and the\nFAN_PERIOD_TO_RPM() conversion, it will result in a divide-by-zero crash\ndue to a race with a…","indicators":{"cves":["CVE-2026-74546"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:17:59.950Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/009240d057e26831cc925feaba4c490209c1d0ba","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1b46fe9dc8f8de59310f37e6c5e5c0e05ded46c3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/689a2ea75434131d0af58aeb7d51fde40e858b4d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/76963b04b2d1c648d69949d8dd521e1ff7f40b51","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/832069bec79cf6f903441c5769d3cdba95d0af33","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/96ad57d31763559d376416cdf3bf5ae79bbbebec","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/d328175045176f85c15c369bd21dc551351e7935","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74547","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74547 — In the Linux kernel, the following vulnerability has been resolved: hwmon: (adt7470) Fix busy-loop a…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nhwmon: (adt7470) Fix busy-loop and I2C flooding in update thread\n\nWhen userspace configures 'auto_update_interval' to 0 via sysfs, the\nbackground kthread executes schedule_timeout_interruptible(0), which\nreturns immediately.\n\nIf 'n…","indicators":{"cves":["CVE-2026-74547"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:18:00.057Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/1325975a2eab265510e6036d8bf0c0068373d332","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/1a42bd72a66205e439db1d1142442b62d393408a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2c4c4d7cadd10b50b5489183bbbb9eb95f6f8344","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/38e6b5ce5794ff09442231cc171c2be5e900bab3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4dc1518f9cc57c6db99514cafeb02dd7117d5bda","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/5ea299c3aa42a827f6a863eeead6de3525bbb17a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/82d65f7ef11edcea0228745440b8b4b1f222c34c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/cb0b7f9c43b0abbd422a7e4c2c85e91db429207c","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74552","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74552 — In the Linux kernel, the following vulnerability has been resolved: hwmon: (lm90) Only report alarms…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nhwmon: (lm90) Only report alarms if driver is ready\n\nUserspace can read sysfs attributes before driver registration is complete,\nimmediately after devm_hwmon_device_register_with_info() has been called.\nAt that time, data->hwmon_de…","indicators":{"cves":["CVE-2026-74552"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:18:00.607Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/075fce376cf852db9293481edce07c181a9b1f46","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/31ce62d36d859423dc39f9902f7c4c307b2e00e3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/4eed33c7db5c0c573928d28d8a2c003642c679b8","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/70d9a71aa407044d70b50d356b6decf6659c4d56","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/aa9429edf9fc0e90d6f4da19ea4b5495a54ab117","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f0b791a006512a48b6348494cb6960598fa99a58","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74553","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74553 — In the Linux kernel, the following vulnerability has been resolved: hwmon: (nct6775-core) Fix number…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nhwmon: (nct6775-core) Fix number of temperature registers for NCT6116\n\nUnlike NCT6106, NCT6116 only has three temperature registers, and with\nit only three temperature source and temperature source configuration\nregisters. The regi…","indicators":{"cves":["CVE-2026-74553"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:18:00.710Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/16c45bb3d3434cfb9ea264fa52090d0823240465","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/739d7fc6b6f662c8286912157f0c4912388aa292","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9a87dfaa05c3c9d3a4cdb7eafc1ab4abc84f6eef","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a42d727dae5701deac8bb2a75effadae7d681153","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a7f47f5246cd6c3199e5fb2d4109cc53e766e3f0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b0e8adb2ccb43009796897ced09f91636685c9d3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74555","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74555 — In the Linux kernel, the following vulnerability has been resolved: scsi: libsas: Fix HA resume dead…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nscsi: libsas: Fix HA resume deadlock and hisi_sas disk-wake race\n\nCommit fbefe22811c3 (\"scsi: libsas: Don't always drain event workqueue\nfor HA resume\") introduced sas_resume_ha_no_sync() to avoid a deadlock:\nthe PHYE_RESUME_TIMEOU…","indicators":{"cves":["CVE-2026-74555"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:18:00.927Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/09357f067122e2e28ec52e27013a1660a1571618","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3dbbbf656b850c9c8de05df6ad4a1dfc6ff02845","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/9e24b47ef81d43b3fb1b14294f09991640c79fcc","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b9c44a14062093e9fc2d6bddc696cfceadb482d7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/c391b5899dd46485a5893696c12ae3e95a3a7325","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e50a6523a603594a6d92cdecfe11997d639410a3","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74558","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74558 — In the Linux kernel, the following vulnerability has been resolved: xsk: reclaim invalid Tx descript…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nxsk: reclaim invalid Tx descriptors in ZC batch path\n\nThe zero-copy Tx batch parser stops when it encounters an invalid\ndescriptor. If this happens after one or more continuation descriptors,\nthe Tx consumer can be advanced past fr…","indicators":{"cves":["CVE-2026-74558"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:18:01.267Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/72f2b4516faf55d4dfac2414649d3cffa5fd2c5e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/e7ce2bad0c33471c8da4dd73dff2119a68f96f3a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74559","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74559 — In the Linux kernel, the following vulnerability has been resolved: xsk: drain continuation descs af…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nxsk: drain continuation descs after overflow in xsk_build_skb()\n\nFix generic xmit path multi-buffer logic when packets are either too big\n(count of descriptors exceed MAX_SKB_FRAGS) or an invalid descriptor is\nincluded in fragmente…","indicators":{"cves":["CVE-2026-74559"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:18:01.390Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/5e94d74e4f3baebaa083288f33b4be7ce0a34982","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bd44a6dcd4248883de90f5dad53ae80066e27096","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ceb00cb87a22c42d20c39336213db2b843ca9e34","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74566","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74566 — In the Linux kernel, the following vulnerability has been resolved: keys: make keyring key-chunk byt…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nkeys: make keyring key-chunk byte order agree with keyring_diff_objects()\n\nkeyring_get_key_chunk() loads description bytes into the index chunk low\naddress first, while keyring_diff_objects() numbers the first differing\nbit from th…","indicators":{"cves":["CVE-2026-74566"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:18:02.120Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/3d9f16c0b643ceac305526b2e2fe25c2c6166926","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/414bcf37d81ce9b3823aabc06b04c97fdcbe489b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/58565eef0f8d861aae92abfb7658458d661cee17","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7269df3e7fcfa308e6a456305162f7788747bdbd","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/7e5397a3fed0dee7779bd084bec3c0584db3c930","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/abe43c661efb753d5ee35ad8ace4bbb16fa9afd0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/bd0f976ef89dce6db458bf75bc2cf51127becc41","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/f81920917074e3c4ad4fba06fe8c56738d010606","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74571","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74571 — In the Linux kernel, the following vulnerability has been resolved: btrfs: skip global block reserve…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbtrfs: skip global block reserve accounting for rescue mounts\n\n[BUG]\nMounting with rescue=ibadroots after corrupting the block group tree\nroot triggers a NULL pointer dereference:\n\n  BUG: kernel NULL pointer dereference, address: 0…","indicators":{"cves":["CVE-2026-74571"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:18:02.733Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/076349e4c8d11f6b58c4549976a513b2b4dc6df2","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/51a0e8399858621442807a26057bcd1cd3ced046","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74577","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74577 — In the Linux kernel, the following vulnerability has been resolved: net: mpls: initialize rtm_tos in…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: mpls: initialize rtm_tos in mpls_getroute()\n\nmpls_getroute() builds the RTM_NEWROUTE reply to an RTM_GETROUTE\nrequest by filling a struct rtmsg allocated from an skb whose data\narea is not zeroed (alloc_skb(NLMSG_GOODSIZE, ...…","indicators":{"cves":["CVE-2026-74577"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T13:18:03.430Z","fetchedAt":"2026-08-21T03:01:29.066Z","references":[{"url":"https://git.kernel.org/stable/c/1fea5ff0eb4aa7e951bb3d380248566c473aa377","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/248718fd88b146d8bdc7610ecd1eb4cd16e0b5a1","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/295dd295e2137e10e9a5b1891d97e0f08de76f03","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/2dc2fffc704a4365cae1aae078ba62223aaeff93","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/466b474a8deb0c93b5280c6d261e5eda6482eca7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/95651461cf77cc6590fa08c87667717e5dcfa55d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a5cdd2407dd890f741f59b8367e4c6c101cce154","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/ba56f88aab18d982f2a21f11390f4d8a8897782a","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74764","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74764 — Pandora contains a path traversal vulnerability in its TAR archive extraction functionality. When pr…","description":"Pandora contains a path traversal vulnerability in its TAR archive extraction functionality. When processing a submitted TAR archive, the extractor passed archive member names directly to Python's tarfile.TarFile.extract() without applying an extraction filter.\n\n\nAn attacker able to submit a special…","indicators":{"cves":["CVE-2026-74764"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T22:16:55.563Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://github.com/pandora-analysis/pandora/commit/186b58d41e04248a154d274fffb5813e7fa2012e","label":"5a6e4751-2f3f-4070-9419-94fb35b644e8","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-74767","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74767 — Pandora contains a denial-of-service vulnerability in its handling of DAA (Direct Access Archive) fi…","description":"Pandora contains a denial-of-service vulnerability in its handling of DAA (Direct Access Archive) files. When extracting the internal ISO image from a DAA archive, compressed chunks were decompressed using zlib.decompress() without enforcing a limit on the resulting uncompressed data.\n\n\nAn attacker…","indicators":{"cves":["CVE-2026-74767"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T22:16:55.697Z","fetchedAt":"2026-08-21T03:01:29.067Z","references":[{"url":"https://github.com/pandora-analysis/pandora/commit/f4294a873f86fbf2569c289e329fff2f52ca50c9","label":"5a6e4751-2f3f-4070-9419-94fb35b644e8","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-74251","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74251 — Joomla Extension - phoca.cz - Unauthenticated SQL injection via attribute filter in Phoca Cart 5.0.0…","description":"Joomla Extension - phoca.cz -  Unauthenticated SQL injection via attribute filter in Phoca Cart 5.0.0-6.1.6 - The a[] (attribute) and s[] (specification) GET array parameters on Phoca Cart's public shop items page are concatenated raw into SQL WHERE clauses without parameterization or escaping. An u…","indicators":{"cves":["CVE-2026-74251"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T13:16:57.147Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://www.phoca.cz/phocacart","label":"security@joomla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74784","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74784 — Scriban before 7.2.0 contains a denial of service vulnerability in the array.insert_at function that…","description":"Scriban before 7.2.0 contains a denial of service vulnerability in the array.insert_at function that allocates unbounded null entries without respecting LoopLimit or LimitToString constraints. Attackers can supply a large index parameter to trigger OutOfMemoryException and crash the host process in…","indicators":{"cves":["CVE-2026-74784"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T14:16:56.263Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://github.com/scriban/scriban/security/advisories/GHSA-24c8-4792-22hx","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/scriban-before-denial-of-service-via-array-insert-at","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-50601","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-50601 — A security vulnerability has been identified in the Planet9 desktop application where a hardcoded re…","description":"A security vulnerability has been identified in the Planet9 desktop application where a hardcoded read-only API key permitted unauthorized access to internal repositories. An attacker could exploit this access to extract embedded administrative keys and secrets, potentially allowing them to gain adm…","indicators":{"cves":["CVE-2026-50601"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T03:16:50.703Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://community.acer.com/en/kb/articles/19869","label":"8fc372e3-d9c5-46e4-9410-38469745c639","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-50602","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-50602 — A security vulnerability has been identified in Planet9 due to incorrect file permissions assigned t…","description":"A security vulnerability has been identified in Planet9 due to incorrect file permissions assigned to an application executable used by the Planet9 background service. The service runs with SYSTEM privileges, while the affected executable grants excessive permissions to non-administrative users. As…","indicators":{"cves":["CVE-2026-50602"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T03:16:50.840Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://community.acer.com/en/kb/articles/19870","label":"8fc372e3-d9c5-46e4-9410-38469745c639","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74579","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74579 — In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_payload: fix mask…","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: nft_payload: fix mask build for partial field offload\n\nnft_payload_offload_mask() builds the offload match mask for a payload\nexpression that covers only part of a header field.  For a partial IPv6\naddress match (field_l…","indicators":{"cves":["CVE-2026-74579"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T06:19:56.417Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://git.kernel.org/stable/c/16b553c46e347bc9de9946c4960654d5884a86de","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/363c3a84a946d53e5e121c9f47c7c2b7d228c46b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/39e88f28fb32bf02bd4b525c24c842c9cff5663d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/3ee7b3f813b11f28cd6efdf7f24d64b5a7fd4dc7","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/630295d5bba1d0e0f494cc459452eb0a0058c545","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/8720df4504e0ed1781a702f65251bd47b3534d5e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/a375d8ace807767f29f276b681b6324c74929b1d","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"},{"url":"https://git.kernel.org/stable/c/b19b5d2e042c294e2cc1c908dc598f9d64015396","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-15623","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-15623 — A SQL Injection vulnerability in a legacy dashboard widget API in Google Cloud Google SecOps (Chroni…","description":"A SQL Injection vulnerability in a legacy dashboard widget API in Google Cloud Google SecOps (Chronicle SOAR) versions prior to 6.3.85 on Google Cloud Platform allows an authenticated attacker to execute blind SQL queries using a crafted request parameter.\n\n\nThis vulnerability was patched in version…","indicators":{"cves":["CVE-2026-15623"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T07:17:12.020Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://docs.cloud.google.com/chronicle/docs/soar/release-notes#May_23_2026","label":"f45cbf4e-4146-4068-b7e1-655ffc2c548c","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-22072","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-22072 — Loading arbitrary external URLs through WebView components introduces malicious JS code that can ste…","description":"Loading arbitrary external URLs through WebView components introduces malicious JS code that can steal arbitrary user tokens.","indicators":{"cves":["CVE-2026-22072"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T07:17:15.797Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://security.oppo.com/en/noticeDetail?notice_only_key=NOTICE-2088198578949595136","label":"security@oppo.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-40126","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-40126 — OutSystems Service Center is vulnerable to a DOM-based Cross-Site Scripting (XSS) attack that can be…","description":"OutSystems Service Center is vulnerable to a DOM-based Cross-Site Scripting (XSS) attack that can be exploited by a low-privileged attacker via the upload of a file with a malicious filename containing JavaScript code. The vulnerability exists in all locations where a file can be attached and prepar…","indicators":{"cves":["CVE-2026-40126"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T12:18:25.000Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://cert.pl/en/posts/2026/08/CVE-2026-40126/","label":"cvd@cert.pl","domainType":"other"},{"url":"https://success.outsystems.com/support/security/vulnerabilities/vulnerability_rpm_6669/","label":"cvd@cert.pl","domainType":"other"},{"url":"https://www.outsystems.com/downloads/ScreenDetails?ReleaseId=22953&MajorVersion=11&ComponentName=LifeTime","label":"cvd@cert.pl","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18674","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-18674 — On a Kong Mesh global control plane, resources received over the zone-to-global KDS sync are attribu…","description":"On a Kong Mesh global control plane, resources received over the zone-to-global KDS sync are attributed using the in-band, sender-controlled ControlPlane.Identifier rather than the authenticated zone identity derived from the connection. Authenticated zones can have the global control plane store an…","indicators":{"cves":["CVE-2026-18674"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T13:16:51.820Z","fetchedAt":"2026-08-21T03:01:29.068Z","references":[{"url":"https://developer.konghq.com/mesh/changelog/","label":"02762ae7-200e-4b20-9b2b-a77d5b8fc4cb","domainType":"other"},{"url":"https://github.com/kumahq/kuma/pull/17456","label":"02762ae7-200e-4b20-9b2b-a77d5b8fc4cb","domainType":"primary"},{"url":"https://github.com/kumahq/kuma/pull/17458","label":"02762ae7-200e-4b20-9b2b-a77d5b8fc4cb","domainType":"primary"},{"url":"https://github.com/kumahq/kuma/pull/17459","label":"02762ae7-200e-4b20-9b2b-a77d5b8fc4cb","domainType":"primary"},{"url":"https://github.com/kumahq/kuma/pull/17460","label":"02762ae7-200e-4b20-9b2b-a77d5b8fc4cb","domainType":"primary"},{"url":"https://github.com/kumahq/kuma/pull/17461","label":"02762ae7-200e-4b20-9b2b-a77d5b8fc4cb","domainType":"primary"},{"url":"https://github.com/kumahq/kuma/pull/17462","label":"02762ae7-200e-4b20-9b2b-a77d5b8fc4cb","domainType":"primary"},{"url":"https://github.com/kumahq/kuma/pull/17463","label":"02762ae7-200e-4b20-9b2b-a77d5b8fc4cb","domainType":"primary"},{"url":"https://github.com/kumahq/kuma/security/advisories/GHSA-m58j-fjmc-h3g4","label":"02762ae7-200e-4b20-9b2b-a77d5b8fc4cb","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-13202","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-13202 — A vulnerability in OpenText Opentext Directory Services allows Input Data Manipulation. This issue a…","description":"A vulnerability in OpenText Opentext Directory Services allows Input Data Manipulation.\n\nThis issue affects Opentext Directory Services: through 22.2.","indicators":{"cves":["CVE-2026-13202"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T15:16:53.513Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://support.opentext.com/csm?id=ot_kb_unauthenticated&sysparm_article=KB0870915","label":"security@opentext.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73851","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-73851 — Kiota is an OpenAPI based HTTP Client code generator. Prior to 1.29.1 and 1.34.0, an attacker who co…","description":"Kiota is an OpenAPI based HTTP Client code generator. Prior to 1.29.1 and 1.34.0, an attacker who controls or tampers with the OpenAPI description consumed by Kiota can supply a file reference that resolves outside the manifest package (e.g. ../../../../etc/passwd, an absolute path, or a file:// / h…","indicators":{"cves":["CVE-2026-73851"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T15:16:57.980Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/microsoft/kiota/commit/430008e9d700b3fe80f206c672415cfbd8e830e7","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/microsoft/kiota/commit/de3d18d9fe31ced4ac749728d3a2f94811f59268","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/microsoft/kiota/issues/7912","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/microsoft/kiota/pull/7910","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/microsoft/kiota/pull/7913","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/microsoft/kiota/releases/tag/v1.29.1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/microsoft/kiota/releases/tag/v1.34.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/microsoft/kiota/security/advisories/GHSA-p5rm-jg5c-8c77","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2025-27621","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2025-27621 — UpTrain is an open-source platform to evaluate and improve generative AI applications. In version 0.…","description":"UpTrain is an open-source platform to evaluate and improve generative AI applications. In version 0.7.1 and prior, the UpTrain backend creates a new default user with a static username, where the username is also used as the default API key. The UpTrain backend also has an open CORS policy. Using th…","indicators":{"cves":["CVE-2025-27621","CVE-2025-27770","CVE-2025-27771","CVE-2025-27772"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T16:16:46.290Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/uptrain-ai/uptrain/blob/a31cc14eddcb6c0b0b12cbed15f086d98c441c6f/uptrain/dashboard/backend/app.py#L105","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://securitylab.github.com/advisories/GHSL-2024-198_GHSL-2024-199_Uptrain/","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/uptrain-ai/uptrain/blob/a31cc14eddcb6c0b0b12cbed15f086d98c441c6f/uptrain/dashboard/backend/app.py#L691C22-L691C36","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/uptrain-ai/uptrain/blob/a31cc14eddcb6c0b0b12cbed15f086d98c441c6f/uptrain/dashboard/backend/app.py#L773C22-L773C30","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://securitylab.github.com/advisories/GHSL-2024-200_GHSL-2024-201_Uptrain/","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/uptrain-ai/uptrain/blob/a31cc14eddcb6c0b0b12cbed15f086d98c441c6f/uptrain/dashboard/backend/app.py#L773","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-40144","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-40144 — A memory-corruption vulnerability exists in a kernel-mode component of BeyondTrust Endpoint Privileg…","description":"A memory-corruption vulnerability exists in a kernel-mode component of BeyondTrust Endpoint Privilege Management (Windows deployments) prior to version 26.1.2. Insufficient validation of input processed by the component may result in memory being accessed outside its intended bounds.","indicators":{"cves":["CVE-2026-40144"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T16:16:56.203Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-40144","label":"13061848-ea10-403d-bd75-c83a022c2891","domainType":"primary"},{"url":"https://www.beyondtrust.com/trust-center/security-advisories/bt26-04","label":"13061848-ea10-403d-bd75-c83a022c2891","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-40145","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-40145 — A vulnerability exists in the interaction between a Endpoint Privilege Management (Windows Deploymen…","description":"A vulnerability exists in the interaction between a Endpoint Privilege Management (Windows Deployment) support utility and the agent's tamper protection controls. Under certain conditions, the protections applied to the utility process may not be enforced as intended.","indicators":{"cves":["CVE-2026-40145"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T17:16:39.787Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-40145","label":"13061848-ea10-403d-bd75-c83a022c2891","domainType":"primary"},{"url":"https://www.beyondtrust.com/trust-center/security-advisories/bt26-04","label":"13061848-ea10-403d-bd75-c83a022c2891","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-61666","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-61666 — websocket-driver is a WebSocket protocol handler with pluggable I/O. Prior to 0.8.2, WebSocket::Driv…","description":"websocket-driver is a WebSocket protocol handler with pluggable I/O. Prior to 0.8.2, WebSocket::Driver.server() passes a malformed Host header to URI.parse in lib/websocket/http/request.rb without catching URI::InvalidURIError, allowing a remote client to crash a TCP-backed WebSocket server when the…","indicators":{"cves":["CVE-2026-61666"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T17:16:39.917Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/faye/websocket-driver-ruby/commit/7d6fd87759a2fdc83590d3b49ffa661dc53fa128","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/faye/websocket-driver-ruby/security/advisories/GHSA-2x63-gw47-w4mm","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-68518","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-68518 — Glances is an open-source system cross-platform monitoring tool. Prior to 4.5.6, _sanitize_mustache_…","description":"Glances is an open-source system cross-platform monitoring tool. Prior to 4.5.6, _sanitize_mustache_dict() in glances/actions.py sanitizes individual Mustache values before chevron.render(), allowing adjacent unescaped Mustache variables to reconstruct shell operators that secure_popen() executes wh…","indicators":{"cves":["CVE-2026-68518"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T17:16:40.353Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/nicolargo/glances/commit/9c280eae5419da680827024b60f6265956e31994","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/nicolargo/glances/releases/tag/v4.5.6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/nicolargo/glances/security/advisories/GHSA-qcpp-8x79-hhp3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/nicolargo/glances/security/advisories/GHSA-qcpp-8x79-hhp3","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-54284","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-54284 — sqlparse is a non-validating SQL parser module for Python. Prior to 0.6.0, TokenList construction an…","description":"sqlparse is a non-validating SQL parser module for Python. Prior to 0.6.0, TokenList construction and string conversion in sqlparse/sql.py repeatedly flatten nested token subtrees constructed by group_parenthesis and group_case, causing quadratic CPU consumption through sqlparse.parse(), sqlparse.fo…","indicators":{"cves":["CVE-2026-54284"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T18:17:11.400Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/andialbrecht/sqlparse/commit/939b129e24c0ad5d51368b1aa72fffcaca76f06f","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/andialbrecht/sqlparse/security/advisories/GHSA-pwgv-4x5q-6m9f","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/andialbrecht/sqlparse/security/advisories/GHSA-pwgv-4x5q-6m9f","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-59894","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-59894 — sqlparse is a non-validating SQL parser module for Python. Prior to 0.6.0, sqlparse/filters/output.p…","description":"sqlparse is a non-validating SQL parser module for Python. Prior to 0.6.0, sqlparse/filters/output.py fails to escape existing backslashes before quotes in sqlparse.format output_format='python' and output_format='php' and the corresponding sqlformat -l modes, allowing crafted SQL to terminate the g…","indicators":{"cves":["CVE-2026-59894"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T18:17:35.913Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/andialbrecht/sqlparse/security/advisories/GHSA-3496-9g83-7v6x","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-68519","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-68519 — Glances is an open-source system cross-platform monitoring tool. Prior to 4.5.6, GlancesActions.run(…","description":"Glances is an open-source system cross-platform monitoring tool. Prior to 4.5.6, GlancesActions.run() in glances/actions.py ignores --disable-config-exec for on-alert action commands and invokes secure_popen() with shell operators enabled, allowing configured redirection, command chaining, or pipes…","indicators":{"cves":["CVE-2026-68519"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T18:18:06.610Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/nicolargo/glances/commit/5c07c0d96423e9d5b9de71dd92e3717c66f504bd","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/nicolargo/glances/releases/tag/v4.5.6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/nicolargo/glances/security/advisories/GHSA-59fj-m2j6-hcxh","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/nicolargo/glances/security/advisories/GHSA-59fj-m2j6-hcxh","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-71491","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-71491 — sqlparse is a non-validating SQL parser module for Python. Prior to 0.6.0, group_comments in sqlpars…","description":"sqlparse is a non-validating SQL parser module for Python. Prior to 0.6.0, group_comments in sqlparse/engine/grouping.py repeatedly rescans comment-only statements before the MAX_GROUPING_TOKENS guard, causing quadratic CPU consumption through sqlparse.parse() and sqlparse.format(sql, strip_comments…","indicators":{"cves":["CVE-2026-71491"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T18:18:12.120Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/andialbrecht/sqlparse/commit/ef2012a5eeb491e604dea2b00d516904a3830c87","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/andialbrecht/sqlparse/security/advisories/GHSA-f2ff-p2ww-7p4p","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-74254","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74254 — Joomla Extension - joomlack.fr - SQL injection in Page Builder CK < 3.6.5 - The Joomla extension Pag…","description":"Joomla Extension - joomlack.fr - SQL injection in Page Builder CK < 3.6.5 - The Joomla extension Page Builder CK is vulnerable to a SQL injection issue related to the styles model. Version 3.6.4 fixed the vector in the frontend, 3.6.5 in the backend.","indicators":{"cves":["CVE-2026-74254"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T18:18:14.903Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://www.joomlack.fr/","label":"security@joomla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-12553","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-12553 — HP has identified a potential vulnerability in HP Web Jetadmin (WJA) that may allow an unauthenticat…","description":"HP has identified a potential vulnerability in HP Web Jetadmin (WJA) that may allow an unauthenticated actor to read from or write to arbitrary files through a DLL hijacking mechanism.","indicators":{"cves":["CVE-2026-12553"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T19:16:24.560Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://support.hp.com/us-en/document/ish_15260929-15260951-16/hpsbpi04130","label":"hp-security-alert@hp.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-17639","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-17639 — Certain HP Smart Tank All-in-One printers may be potentially vulnerable to a denial of service condi…","description":"Certain HP Smart Tank All-in-One printers may be potentially vulnerable to a denial of service condition that allows an unauthenticated attacker to cause the device to become unavailable by sending multiple concurrent HTTP requests.","indicators":{"cves":["CVE-2026-17639"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T19:16:29.367Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://support.hp.com/us-en/document/ish_15407218-15407241-16/hpsbpi04142","label":"hp-security-alert@hp.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-71693","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-71693 — Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by…","description":"Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.","indicators":{"cves":["CVE-2026-71693"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T19:16:35.913Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[],"feedLabel":null},{"id":"nvd-CVE-2026-52886","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-52886 — Notepad++ is a free and open-source source code editor. Prior to 8.9.7, Notepad++ validates the back…","description":"Notepad++ is a free and open-source source code editor. Prior to 8.9.7, Notepad++ validates the backupFilePath attribute from session.xml with std::wstring::starts_with against the expected backup directory without path normalization, allowing parent-directory sequences during snapshot-mode restorat…","indicators":{"cves":["CVE-2026-52886"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T20:16:44.077Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/notepad-plus-plus/notepad-plus-plus/commit/7e66f36db666a13b09fb5c31232ab2ca1c2ebccc","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/notepad-plus-plus/notepad-plus-plus/releases/tag/v8.9.7","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/notepad-plus-plus/notepad-plus-plus/security/advisories/GHSA-rqfm-pw34-r7j6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/notepad-plus-plus/notepad-plus-plus/security/advisories/GHSA-rqfm-pw34-r7j6","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-71553","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-71553 — ApostropheCMS is an open-source Node.js content management system. In 4.32.0 and earlier, PATCH /api…","description":"ApostropheCMS is an open-source Node.js content management system. In 4.32.0 and earlier, PATCH /api/v1/article/:id accepts the inherited path toString.call and passes it through the utility module to apos.util.set() and apos.util.get(), allowing an authenticated editor to overwrite the shared Objec…","indicators":{"cves":["CVE-2026-71553"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T20:16:46.073Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/apostrophecms/apostrophe/commit/5a3746aaed49761e171c2cbfe793267c959829fd","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/apostrophecms/apostrophe/security/advisories/GHSA-vmg4-6gfg-83qx","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-71858","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-71858 — Notepad++ is a free and open-source source code editor. Prior to 8.9.7, macros loaded from an attack…","description":"Notepad++ is a free and open-source source code editor. Prior to 8.9.7, macros loaded from an attacker-controlled shortcuts.xml bypass the HMAC validation applied to UserDefinedCommands and can invoke Scintilla actions and the internal Open in Default Viewer command in an elevated Notepad++ process,…","indicators":{"cves":["CVE-2026-71858"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T20:16:46.207Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/notepad-plus-plus/notepad-plus-plus/commit/7686e5a3025eaf1fb8e024c2ceb54670ea05f5fb","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/notepad-plus-plus/notepad-plus-plus/releases/tag/v8.9.7","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/notepad-plus-plus/notepad-plus-plus/security/advisories/GHSA-f4rj-vqq4-wvg4","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/notepad-plus-plus/notepad-plus-plus/security/advisories/GHSA-f4rj-vqq4-wvg4","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-35219","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-35219 — Budibase is an open-source low-code platform. Prior to 3.41.3, automation steps in packages/server/s…","description":"Budibase is an open-source low-code platform. Prior to 3.41.3, automation steps in packages/server/src/automations/steps/outgoingWebhook.ts, packages/server/src/automations/steps/zapier.ts, packages/server/src/automations/steps/n8n.ts, packages/server/src/automations/steps/slack.ts, and packages/ser…","indicators":{"cves":["CVE-2026-35219"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:44.550Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/Budibase/budibase/commit/cc07563a6b0fc0f91c51aae295952b1295546a90","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Budibase/budibase/pull/19328","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Budibase/budibase/releases/tag/3.41.3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Budibase/budibase/security/advisories/GHSA-5fpj-28rv-84r7","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Budibase/budibase/security/advisories/GHSA-5fpj-28rv-84r7","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-47683","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-47683 — vm2 is an open source vm/sandbox for Node.js. Prior to 3.11.6, the bufferAllocLimit enforcement in l…","description":"vm2 is an open source vm/sandbox for Node.js. Prior to 3.11.6, the bufferAllocLimit enforcement in lib/setup-sandbox.js does not cover Buffer.concat(list, totalLength) or Buffer.from(arrayLike) with an attacker-controlled length, allowing sandbox code to perform large synchronous host external-memor…","indicators":{"cves":["CVE-2026-47683"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:45.363Z","fetchedAt":"2026-08-21T03:01:29.069Z","references":[{"url":"https://github.com/patriksimek/vm2/commit/3ffb315512e634cf85c447375e85d6c83d00a4bd","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/patriksimek/vm2/releases/tag/3.11.6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/patriksimek/vm2/security/advisories/GHSA-gmc2-2x9w-cgh9","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/patriksimek/vm2/security/advisories/GHSA-gmc2-2x9w-cgh9","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75529","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-75529 — Pandora is affected by a stored cross-site scripting vulnerability in the PDF download functionality…","description":"Pandora is affected by a stored cross-site scripting vulnerability in the PDF download functionality. The /task-download/<task_id>/.../pdf endpoint verifies that the submitted file is a PDF using Pandora's content-based file-type detection, but previously returned the file using send_file(task.file.…","indicators":{"cves":["CVE-2026-75529"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:58.923Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/pandora-analysis/pandora/commit/668ec65a93cee327e3d925da2698849c9e65625a","label":"5a6e4751-2f3f-4070-9419-94fb35b644e8","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75531","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-75531 — Pandora contains a stored cross-site scripting (XSS) vulnerability in the rendering of URL observabl…","description":"Pandora contains a stored cross-site scripting (XSS) vulnerability in the rendering of URL observables. A URL extracted from or associated with an analyzed file was inserted directly into the inline JavaScript onclick handler used by the Submit to Lookyloo action.\n\n\nAlthough the value was subject to…","indicators":{"cves":["CVE-2026-75531"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:16:59.067Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/pandora-analysis/pandora/commit/77a84a039e2079dba7ea0342816c9813099d75d0","label":"5a6e4751-2f3f-4070-9419-94fb35b644e8","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-11817","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-11817 — This vulnerability only affects Grafana stacks configured with multiple organizations; single-organi…","description":"This vulnerability only affects Grafana stacks configured with multiple organizations; single-organization deployments are not impacted. In a multi-organization stack, a user who is an Org Admin of a single organization can call GET /api/access-control/users/permissions/search?actionPrefix=dashboard…","indicators":{"cves":["CVE-2026-11817"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T22:16:58.870Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://grafana.com/security/security-advisories/cve-2026-11817","label":"security@grafana.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-43971","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-43971 — Improper Encoding or Escaping of Output vulnerability in ninenines cowlib allows Link header directi…","description":"Improper Encoding or Escaping of Output vulnerability in ninenines cowlib allows Link header directive smuggling via unescaped special characters in cow_link:link/1.\n\ncow_link:do_link/1 in cowlib interpolates the target URI, rel value, and attribute keys directly into the serialized Link: header val…","indicators":{"cves":["CVE-2026-43971"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T09:17:14.340Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://cna.erlef.org/cves/CVE-2026-43971.html","label":"6b3ad84c-e1a6-4bf7-a703-f496b71e49db","domainType":"other"},{"url":"https://github.com/ninenines/cowlib/commit/89da27ee4c241f5d649ba7d9b7f2188918af6cea","label":"6b3ad84c-e1a6-4bf7-a703-f496b71e49db","domainType":"primary"},{"url":"https://osv.dev/vulnerability/EEF-CVE-2026-43971","label":"6b3ad84c-e1a6-4bf7-a703-f496b71e49db","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18929","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-18929 — Carbone is vulnerable to Denial of Service due to lack of protection against zip bombs when processi…","description":"Carbone is vulnerable to Denial of Service due to lack of protection against zip bombs when processing .docx files. The library uses yazl for zip decompression without validating entry sizes, allowing an attacker to supply a malicious .docx file containing a zip bomb that decompresses to a significa…","indicators":{"cves":["CVE-2026-18929"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T10:16:46.023Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://carbone.io/","label":"cvd@cert.pl","domainType":"other"},{"url":"https://cert.pl/en/posts/2026/08/CVE-2026-18929","label":"cvd@cert.pl","domainType":"other"},{"url":"https://github.com/carboneio/carbone/commit/eb9b4cff992cc1cb1a319d7fc0cbd09160dc214e","label":"cvd@cert.pl","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75838","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-75838 — DOMPurify before 3.4.13 contains a cross-site scripting vulnerability in IN_PLACE sanitization where…","description":"DOMPurify before 3.4.13 contains a cross-site scripting vulnerability in IN_PLACE sanitization where element-removal hooks fail to neutralize detached subtrees. Attackers can supply HTML with event handlers on descendant elements that execute after sanitization completes, even though the returned ro…","indicators":{"cves":["CVE-2026-75838"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:19:34.050Z","fetchedAt":"2026-08-21T03:01:29.070Z","references":[{"url":"https://github.com/cure53/DOMPurify/security/advisories/GHSA-55q2-fjhq-7xh7","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/dompurify-before-cross-site-scripting-via-in-place-hook","label":"disclosure@vulncheck.com","domainType":"other"},{"url":"https://github.com/cure53/DOMPurify/security/advisories/GHSA-55q2-fjhq-7xh7","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-18751","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-18751 — External control of file name or path vulnerability in Citrix WorkSpace App on MacOS. This issue aff…","description":"External control of file name or path vulnerability in Citrix WorkSpace App on MacOS.\n\nThis issue affects WorkSpace App: 2607.","indicators":{"cves":["CVE-2026-18751"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:20.730Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://support.citrix.com/external/article/CTX696911","label":"secure@citrix.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-1199","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-1199 — Zabbix API and Frontend login lockout mechanism has a flaw where several unsuccessful login requests…","description":"Zabbix API and Frontend login lockout mechanism has a flaw where several unsuccessful login requests are not properly counted towards the block counter if sent simultaneously, potentially allowing for more password guesses than intended.","indicators":{"cves":["CVE-2026-1199"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:20.900Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://support.zabbix.com/browse/ZBX-28076","label":"security@zabbix.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-23922","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-23922 — The email media OAuth field 'Client secret' cannot be read after saving, but a Super Admin can leak…","description":"The email media OAuth field 'Client secret' cannot be read after saving, but a Super Admin can leak it by setting a malicious 'Token endpoint'. Changes were made to reset the client secret upon changing the token endpoint.","indicators":{"cves":["CVE-2026-23922"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:21.040Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://support.zabbix.com/browse/ZBX-28067","label":"security@zabbix.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-23929","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-23929 — Prototype pollution vulnerability in searchParamsToObject() is leading to a persistent XSS in Maps.…","description":"Prototype pollution vulnerability in searchParamsToObject() is leading to a persistent XSS in Maps. URL parameter processing was not filtering dangerous properties like __proto__, combined with jQuery's unsafe element creation that traversed the prototype chain.","indicators":{"cves":["CVE-2026-23929"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:21.170Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://support.zabbix.com/browse/ZBX-28068","label":"security@zabbix.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-23930","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-23930 — An unauthenticated user is able to cause disproportionate CPU load on the Frontend webserver by send…","description":"An unauthenticated user is able to cause disproportionate CPU load on the Frontend webserver by sending specifically crafted requests to the Frontend popup.testtriggerexpr action, leading to potential denial of service.","indicators":{"cves":["CVE-2026-23930"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:21.303Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://support.zabbix.com/browse/ZBX-28069","label":"security@zabbix.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-23931","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-23931 — The frontend validatate.api.exists action can be exploited by authenticated users to extract plainte…","description":"The frontend validatate.api.exists action can be exploited by authenticated users to extract plaintext user macro values leading to potential loss of confidentiality.","indicators":{"cves":["CVE-2026-23931"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:21.433Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://support.zabbix.com/browse/ZBX-28070","label":"security@zabbix.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-23933","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-23933 — In Zabbix 7.4 the cryptographic key used for signing Frontend sessions has been erroneously written…","description":"In Zabbix 7.4 the cryptographic key used for signing Frontend sessions has been erroneously written to the database seed. Currently the only known exploitation scenario is for deployments that utilize both - SAML authentication and guest users. In such cases the key can be used to forge valid sessio…","indicators":{"cves":["CVE-2026-23933"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:21.567Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://support.zabbix.com/browse/ZBX-28071","label":"security@zabbix.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-23934","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-23934 — An authenticated user is able to cause disproportionate CPU load on the Frontend webserver by sendin…","description":"An authenticated user is able to cause disproportionate CPU load on the Frontend webserver by sending specifically crafted requests to the Frontend validate.api.exists action, leading to potential denial of service.","indicators":{"cves":["CVE-2026-23934"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:21.717Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://support.zabbix.com/browse/ZBX-28072","label":"security@zabbix.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-23935","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-23935 — A Zabbix administrator is able to read out of bounds memory by utilizing a flaw in script item/prepr…","description":"A Zabbix administrator is able to read out of bounds memory by utilizing a flaw in script item/preprocessing (JavaScript) HttpRequest logic, leading to potential confidentiality loss.","indicators":{"cves":["CVE-2026-23935"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:21.843Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://support.zabbix.com/browse/ZBX-28073","label":"security@zabbix.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-23937","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-23937 — The Zabbix API host.get action can be exploited by authenticated users to extract a host's PSK key l…","description":"The Zabbix API host.get action can be exploited by authenticated users to extract a host's PSK key leading to potential loss of data integrity.","indicators":{"cves":["CVE-2026-23937"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:21.973Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://support.zabbix.com/browse/ZBX-28074","label":"security@zabbix.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-23938","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-23938 — An authenticated administrator is able to crash Zabbix server or proxy by creating specifically craf…","description":"An authenticated administrator is able to crash Zabbix server or proxy by creating specifically crafted preprocessing/script item JavaScript scripts, leading to potential denial of service.","indicators":{"cves":["CVE-2026-23938"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:22.103Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://support.zabbix.com/browse/ZBX-28075","label":"security@zabbix.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-45532","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-45532 — DataEase is an open source data visualization and analysis tool. Versions prior to 2.10.23 have a pa…","description":"DataEase is an open source data visualization and analysis tool. Versions prior to 2.10.23 have a path traversal vulnerability. The root cause is that on Windows, the `FILE_SEPARATOR` is `\\`, while the server only filters the `/` character during string truncation. The vulnerability has been fixed i…","indicators":{"cves":["CVE-2026-45532"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:24.610Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://github.com/dataease/dataease/releases/tag/v2.10.23","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/dataease/dataease/security/advisories/GHSA-2mqc-w4hm-f3p9","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/dataease/dataease/security/advisories/GHSA-2mqc-w4hm-f3p9","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-59781","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-59781 — When Zabbix Agent was installed on Windows into a custom installation directory, the installer did n…","description":"When Zabbix Agent was installed on Windows into a custom installation directory, the installer did not verify whether the selected directory had secure access permissions. If the target directory allowed unauthorized users to modify its contents, an attacker could place a malicious DLL that could la…","indicators":{"cves":["CVE-2026-59781"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:25.340Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://support.zabbix.com/browse/ZBX-28077","label":"security@zabbix.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74934","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74934 — Site isolation issue in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox…","description":"Site isolation issue in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74934"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:29.620Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2050584","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-75/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-76/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-79/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74945","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74945 — Information disclosure in the Graphics: Text component. This vulnerability was fixed in Firefox 154,…","description":"Information disclosure in the Graphics: Text component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74945"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:31.133Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2057808","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-75/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-76/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-79/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74948","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74948 — Information disclosure in the Graphics component. This vulnerability was fixed in Firefox 154, Firef…","description":"Information disclosure in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74948"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:31.547Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2060106","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-75/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-76/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-79/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74957","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74957 — Mitigation bypass in the Safe Browsing component. This vulnerability was fixed in Firefox 154, Firef…","description":"Mitigation bypass in the Safe Browsing component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74957"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:32.760Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2041906","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-76/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-79/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74959","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74959 — Mitigation bypass in the Storage: Cache API component. This vulnerability was fixed in Firefox 154,…","description":"Mitigation bypass in the Storage: Cache API component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74959"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:33.037Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2047853","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-76/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-79/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74960","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74960 — Site isolation issue in the WebExtensions component. This vulnerability was fixed in Firefox 154, Fi…","description":"Site isolation issue in the WebExtensions component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.","indicators":{"cves":["CVE-2026-74960"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:17:33.170Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=2049148","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-74/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-76/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-77/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-78/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-79/","label":"security@mozilla.org","domainType":"other"},{"url":"https://www.mozilla.org/security/advisories/mfsa2026-80/","label":"security@mozilla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-17084","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-17084 — The \"stringprep\" module didn't process characters from RFC 3454 tables B.2 or B.3 correctly: the lat…","description":"The \"stringprep\" module didn't process characters from RFC 3454 tables \nB.2 or B.3 correctly: the latest Unicode codepoint attributes were used \ninstead of the specified Unicode 3.2.0. This behavior would cause \nmismatches when processing domain names using IDNA 2003 (the \"idna\" \ncodec) and the in_t…","indicators":{"cves":["CVE-2026-17084"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T14:16:56.290Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://github.com/python/cpython/commit/5181304bcec9cfc3c15311741c9154cdff2e3fd7","label":"cna@python.org","domainType":"primary"},{"url":"https://github.com/python/cpython/commit/7e109d084d55e7eb25837a5f3b47ef9beee547bc","label":"cna@python.org","domainType":"primary"},{"url":"https://github.com/python/cpython/issues/155292","label":"cna@python.org","domainType":"primary"},{"url":"https://github.com/python/cpython/pull/155293","label":"cna@python.org","domainType":"primary"},{"url":"https://mail.python.org/archives/list/security-announce@python.org/thread/EUHHTC6EV7HCLSUHP25C5VHSV4V2MUZN/","label":"cna@python.org","domainType":"other"},{"url":"http://www.openwall.com/lists/oss-security/2026/08/18/2","label":"af854a3a-2127-422b-91ae-364da2661108","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-68939","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-68939 — Pyenv provides simple Python version management. Prior to 2.8.0, is_version_safe() in libexec/pyenv-…","description":"Pyenv provides simple Python version management. Prior to 2.8.0, is_version_safe() in libexec/pyenv-version-file-read accepts shell glob metacharacters in .python-version values, and unquoted PYENV_VERSION expansion in libexec/pyenv-version-name, libexec/pyenv-which, libexec/pyenv-prefix, libexec/py…","indicators":{"cves":["CVE-2026-68939"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:00.790Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://github.com/pyenv/pyenv/commit/95df7dbc7b34595b47c9b922de198547effda819","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/pyenv/pyenv/releases/tag/v2.8.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/pyenv/pyenv/security/advisories/GHSA-g478-f579-9vp9","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/pyenv/pyenv/security/advisories/GHSA-g478-f579-9vp9","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-71539","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-71539 — n8n is an open source workflow automation platform. Prior to 1.123.64, 2.29.8, and 2.30.1, the Git n…","description":"n8n is an open source workflow automation platform. Prior to 1.123.64, 2.29.8, and 2.30.1, the Git node clone operation allows an authenticated workflow user to swap a validated directory for a symlink before cloning, planting a crafted repository in the community node directory that loads as a cust…","indicators":{"cves":["CVE-2026-71539"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:01.343Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://github.com/n8n-io/n8n/releases/tag/n8n@1.123.64","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/n8n-io/n8n/releases/tag/n8n@2.29.8","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/n8n-io/n8n/releases/tag/n8n@2.30.1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/n8n-io/n8n/security/advisories/GHSA-g3r5-9h93-4j2c","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75872","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-75872 — HTML Injection in the public subscription form in maalfer MailerUp before 1.1.3 allows unauthenticat…","description":"HTML Injection in the public subscription form in maalfer MailerUp before 1.1.3 allows unauthenticated remote attackers to have the application send a message carrying arbitrary HTML, to an attacker-chosen address and from the form owner's configured sending identity, via the first_name field of the…","indicators":{"cves":["CVE-2026-75872"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:15.150Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://github.com/maalfer/mailerup/commit/da4aedc9621911df4ce0cc8f0b321dd6d10f40a5","label":"4daa8cea-433a-44bd-9456-53b127fc289a","domainType":"primary"},{"url":"https://github.com/maalfer/mailerup/releases/tag/v1.1.3","label":"4daa8cea-433a-44bd-9456-53b127fc289a","domainType":"primary"},{"url":"https://secur0.com/en/cna/cve-list/cve-2026-75872-html-injection-in-mailerup-double-optin-verification-email","label":"4daa8cea-433a-44bd-9456-53b127fc289a","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75890","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-75890 — Rejected reason: Duplicate of CVE-2026-50236. This CVE ID was reserved in error for a finding that a…","description":"Rejected reason: Duplicate of CVE-2026-50236. This CVE ID was reserved in error for a finding that already had an existing CVE assignment.","indicators":{"cves":["CVE-2026-75890"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:17:15.293Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[],"feedLabel":null},{"id":"nvd-CVE-2026-15806","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-15806 — The HTTPPasswordMgr class in the urllib.request module, along with its subclasses HTTPPasswordMgrWit…","description":"The HTTPPasswordMgr class in the urllib.request module, along with its subclasses HTTPPasswordMgrWithDefaultRealm and HTTPPasswordMgrWithPriorAuth, did not take the URL scheme into account when matching stored credentials against a requested URL. Credentials added for an https:// URL were also used…","indicators":{"cves":["CVE-2026-15806"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:17:02.220Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"https://github.com/python/cpython/commit/641be42bb07921ba0f8bffe228b1dc706b092ef6","label":"cna@python.org","domainType":"primary"},{"url":"https://github.com/python/cpython/commit/851cf9a7142ecbdd39f831055533f58284ad2bcc","label":"cna@python.org","domainType":"primary"},{"url":"https://github.com/python/cpython/commit/a0d023fbd23773e24b35d8368789470e22cda5d8","label":"cna@python.org","domainType":"primary"},{"url":"https://github.com/python/cpython/commit/a2773a34183b7d94a243bb98fd658926cc5348ce","label":"cna@python.org","domainType":"primary"},{"url":"https://github.com/python/cpython/commit/a7bb524fef61f77ede01f660ffbd591e1d5837ce","label":"cna@python.org","domainType":"primary"},{"url":"https://github.com/python/cpython/issues/155694","label":"cna@python.org","domainType":"primary"},{"url":"https://github.com/python/cpython/pull/155696","label":"cna@python.org","domainType":"primary"},{"url":"https://mail.python.org/archives/list/security-announce@python.org/thread/3OKPE5S75KDNA7FY7AI3PL2MXM2X5RB3/","label":"cna@python.org","domainType":"other"},{"url":"http://www.openwall.com/lists/oss-security/2026/08/18/3","label":"af854a3a-2127-422b-91ae-364da2661108","domainType":"other"},{"url":"https://github.com/python/cpython/issues/155694","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-19501","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-19501 — CSV export functionality in Brainstorm Force SureForms version, <= 2.12.1, fails to neutralize sprea…","description":"CSV export functionality in Brainstorm Force SureForms version, <= 2.12.1, fails to neutralize spreadsheet formula characters in user-controlled form field names before generating CSV exports, which allows a remote attacker to execute spreadsheet formulas on an administrator's workstation when the e…","indicators":{"cves":["CVE-2026-19501"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:17:02.780Z","fetchedAt":"2026-08-21T03:01:29.071Z","references":[{"url":"http://sureforms.com","label":"cret@cert.org","domainType":"other"},{"url":"https://github.com/typedefabcd1234ntd/CVE-2026-19501-poc","label":"cret@cert.org","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-62357","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-62357 — Dragonfly is an in-memory data store built for modern application workloads. Prior to 1.40.0, CMS.IN…","description":"Dragonfly is an in-memory data store built for modern application workloads. Prior to 1.40.0, CMS.INITBYDIM and CMS.INITBYPROB accept dimensions whose width times depth times sizeof(int64_t) overflows in src/core/cms.cc, allocating an undersized counter buffer while CMS.INCRBY and CMS.QUERY use the…","indicators":{"cves":["CVE-2026-62357"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:18:11.650Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/dragonflydb/dragonfly/commit/c004623249fe2151dc5d64e21364fb9fb07c90d3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/dragonflydb/dragonfly/pull/7647","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/dragonflydb/dragonfly/releases/tag/v1.40.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/dragonflydb/dragonfly/security/advisories/GHSA-cmmv-h748-v93x","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/dragonflydb/dragonfly/security/advisories/GHSA-cmmv-h748-v93x","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-63328","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-63328 — Trivy is a security scanner. Prior to 0.72.0, plugin manifest metadata is used by pkg/plugin/manager…","description":"Trivy is a security scanner. Prior to 0.72.0, plugin manifest metadata is used by pkg/plugin/manager.go to construct paths under ~/.trivy/plugins without confining plugin names to that root, allowing an attacker who persuades a user to install or run a malicious plugin to write the manifest and plug…","indicators":{"cves":["CVE-2026-63328"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:18:12.387Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/aquasecurity/trivy/commit/d4213d7735c74e57f06c02ccb39ebca67abc7959","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/aquasecurity/trivy/releases/tag/v0.72.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/aquasecurity/trivy/security/advisories/GHSA-8rc5-4fr6-64pw","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-71574","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-71574 — Joomla! Core - [20260803] - Inconsistent ACL checks for mutating webservice endpoints in Joomla 4.0.…","description":"Joomla! Core - [20260803] - Inconsistent ACL checks for mutating webservice endpoints in Joomla 4.0.0-5.4.7, 6.0.0-6.1.2 - An improper access check allows unauthorized users to perform mutation actions in webservice endpoints, where the same mutation was restricted in the backend UI.","indicators":{"cves":["CVE-2026-71574"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:18:16.457Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://developer.joomla.org/security-centre/1070-20260803-core-inconsistent-acl-checks-for-mutating-webservice-endpoints.html","label":"security@joomla.org","domainType":"other"},{"url":"https://www.joomla.org/","label":"security@joomla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72532","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72532 — Joomla! Core - [20260806] - Improper ACL checks for category webservice endpoints in Joomla 4.0.0-5.…","description":"Joomla! Core - [20260806] - Improper ACL checks for category webservice endpoints in Joomla 4.0.0-5.4.7, 6.0.0-6.1.2 - An improper access check allows unauthorized users to create categories via webservices endpoints.","indicators":{"cves":["CVE-2026-72532"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:18:16.593Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://developer.joomla.org/security-centre/1072-20260805-core-improper-acl-checks-for-category-webservice-endpoints.html","label":"security@joomla.org","domainType":"other"},{"url":"https://www.joomla.org/","label":"security@joomla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73073","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-73073 — Vim is an open source, command line text editor. Prior to 9.2.0845, StructMembers() in runtime/autol…","description":"Vim is an open source, command line text editor. Prior to 9.2.0845, StructMembers() in runtime/autoload/ccomplete.vim constructs and executes a vimgrep command using an insufficiently escaped typeref: or typename: value from a tags file, allowing an unterminated collection followed by a command sepa…","indicators":{"cves":["CVE-2026-73073"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:18:16.730Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/vim/vim/commit/2f628d8104958fa7421664f792ca6d4f7a39a10f","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/vim/vim/releases/tag/v9.2.0845","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/vim/vim/security/advisories/GHSA-cx73-phcg-3j5g","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-73337","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-73337 — Joomla! Core - [20260807] - MFA Authentication Bypass in Joomla 4.0.0-5.4.7 and 6.0.0-6.1.2 - Insuff…","description":"Joomla! Core - [20260807] - MFA Authentication Bypass in Joomla 4.0.0-5.4.7 and 6.0.0-6.1.2 - Insufficient state checks lead to a vector that allows to bypass 2FA checks.","indicators":{"cves":["CVE-2026-73337"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:18:16.893Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://developer.joomla.org/security-centre/1074-20260807-core-mfa-authentication-bypass.html","label":"security@joomla.org","domainType":"other"},{"url":"https://www.joomla.org/","label":"security@joomla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73371","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-73371 — Joomla! Core - [20260808] - Improper ACL checks for batch copy actions in Joomla 4.0.0-5.4.7, 6.0.0-…","description":"Joomla! Core - [20260808] - Improper ACL checks for batch copy actions in Joomla 4.0.0-5.4.7, 6.0.0-6.1.2 - An improper access check allows unauthorized users to perform copy batch operations on uneditable items.","indicators":{"cves":["CVE-2026-73371"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:18:17.040Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://developer.joomla.org/security-centre/1075-20260808-core-improper-acl-checks-for-batch-copy-actions.html","label":"security@joomla.org","domainType":"other"},{"url":"https://www.joomla.org/","label":"security@joomla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73373","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-73373 — Joomla! Core - [20260810] - Unrestricted uploads of SHTML files in Joomla 1.0.0-5.4.7, 6.0.0-6.1.2 -…","description":"Joomla! Core - [20260810] - Unrestricted uploads of SHTML files in Joomla 1.0.0-5.4.7, 6.0.0-6.1.2 - The default list of dangerous files did not include SHTML files. On servers that executed these files, that could lead to code execution.","indicators":{"cves":["CVE-2026-73373"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T16:18:17.173Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://developer.joomla.org/security-centre/1077-20260810-core-unrestricted-uploads-of-shtml-files.html","label":"security@joomla.org","domainType":"other"},{"url":"https://www.joomla.org/","label":"security@joomla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19869","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-19869 — @neo4j/graphql from 5.2.0 until the patched versions fails to enforce field-level @authentication ru…","description":"@neo4j/graphql from 5.2.0 until the patched versions fails to enforce field-level @authentication rules on root custom-resolver fields when a type-level @authentication rule is also present on the same operation type. When both a type-level @authentication (on Query/Mutation) and a field-level @auth…","indicators":{"cves":["CVE-2026-19869"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T17:16:57.227Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/neo4j/graphql/security/advisories/GHSA-82m8-p9px-c3x5","label":"3b236295-4ccd-4a1f-a1c1-a72eecc8d7b6","domainType":"primary"},{"url":"https://neo4j.com/security/CVE-2026-19869","label":"3b236295-4ccd-4a1f-a1c1-a72eecc8d7b6","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-54730","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-54730 — authentik is an open-source identity provider. Prior to 2026.2.6 and 2026.5.5, the enterprise Google…","description":"authentik is an open-source identity provider. Prior to 2026.2.6 and 2026.5.5, the enterprise Google Chrome device-trust stages advance the flow without confirming that the out-of-band device attestation actually ran. Affected enterprise deployments place either a Google Chrome Endpoint stage with m…","indicators":{"cves":["CVE-2026-54730"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T17:16:59.350Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/goauthentik/authentik/commit/27866a94f29d0d7f784b3c462a697a968d3f6b9c","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/goauthentik/authentik/commit/85adb0bbbd7ad4f2807ec21cf25bb42aee81afbc","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/goauthentik/authentik/pull/24053","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/goauthentik/authentik/pull/24058","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/goauthentik/authentik/releases/tag/version/2026.2.6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/goauthentik/authentik/releases/tag/version/2026.5.5","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/goauthentik/authentik/security/advisories/GHSA-3v9h-3hrm-29cx","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-57580","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-57580 — authentik is an open-source identity provider. Prior to 2026.2.6 and 2026.5.5, an inbound SAML Sourc…","description":"authentik is an open-source identity provider. Prior to 2026.2.6 and 2026.5.5, an inbound SAML Source configured with the non-default USERNAME_LINK or EMAIL_LINK user-matching mode interprets an XML comment in a NameID differently from the identity provider's signed assertion. An attacker with an ac…","indicators":{"cves":["CVE-2026-57580"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T17:16:59.667Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/goauthentik/authentik/commit/6bd00f09f1f6b5bc5212a10340418fa1b264f02c","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/goauthentik/authentik/commit/8704a1b89d7bf46bcef0d3c434c821b937fdecc3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/goauthentik/authentik/pull/24057","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/goauthentik/authentik/pull/24062","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/goauthentik/authentik/releases/tag/version/2026.2.6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/goauthentik/authentik/releases/tag/version/2026.5.5","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/goauthentik/authentik/security/advisories/GHSA-35v6-hv2g-6992","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-61634","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-61634 — The RabbitMQ Java client library allows Java and JVM-based applications to connect to and interact w…","description":"The RabbitMQ Java client library allows Java and JVM-based applications to connect to and interact with RabbitMQ nodes. Prior to 5.33.0, the AMQP connection tuning path records the negotiated AMQP frame_max value, but src/main/java/com/rabbitmq/client/impl/SocketFrameHandler.java and NettyFrameHandl…","indicators":{"cves":["CVE-2026-61634","CVE-2026-63335","CVE-2026-63336","CVE-2026-63337","CVE-2026-69219","CVE-2026-69220"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T17:16:59.960Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/rabbitmq/rabbitmq-java-client/commit/08790f09686173eb17b48d08a25edcb32e71a591","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/rabbitmq/rabbitmq-java-client/commit/b491075f42e89967610c40beded68d3680cfd472","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/rabbitmq/rabbitmq-java-client/pull/1994","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/rabbitmq/rabbitmq-java-client/pull/1995","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/rabbitmq/rabbitmq-java-client/releases/tag/v5.33.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/rabbitmq/rabbitmq-java-client/security/advisories/GHSA-5xwg-cfvj-gff5","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/rabbitmq/rabbitmq-java-client/commit/31735344d9f9dfc53740b67f06e560e8846b9322","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/rabbitmq/rabbitmq-java-client/commit/abd6d60d4e2bfc1a327dc90ab246b2e8aca1f33b","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/rabbitmq/rabbitmq-java-client/pull/1959","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/rabbitmq/rabbitmq-java-client/pull/1960","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/rabbitmq/rabbitmq-java-client/releases/tag/v5.31.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/rabbitmq/rabbitmq-java-client/security/advisories/GHSA-qx7j-jv8m-fppr","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/rabbitmq/rabbitmq-java-client/commit/1e7deb2e6020c9793a81385a53ea378ec63b9339","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/rabbitmq/rabbitmq-java-client/commit/a4bf571dd368765baaa9cecfae68ce09f1bdcc01","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/rabbitmq/rabbitmq-java-client/pull/1999","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/rabbitmq/rabbitmq-java-client/pull/2001","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/rabbitmq/rabbitmq-java-client/security/advisories/GHSA-5m9f-rphj-c435","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/rabbitmq/rabbitmq-java-client/commit/0032f75f9dc3df847f94b2b85a16119250bf63cb","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/rabbitmq/rabbitmq-java-client/commit/9f8e7efd0c648f235dc0e96232ae7efa75ea4fa8","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/rabbitmq/rabbitmq-java-client/pull/2000","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/rabbitmq/rabbitmq-java-client/pull/2002","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/rabbitmq/rabbitmq-java-client/security/advisories/GHSA-6g32-pxv4-2wfj","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/rabbitmq/rabbitmq-java-client/commit/388209356c6478088efce4d8a07b68e73837a7a0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/rabbitmq/rabbitmq-java-client/commit/6a87a8dcdc8b4cc4b961a7cdd388276446e5dfb2","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/rabbitmq/rabbitmq-java-client/pull/2007","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/rabbitmq/rabbitmq-java-client/pull/2008","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/rabbitmq/rabbitmq-java-client/releases/tag/v5.33.1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/rabbitmq/rabbitmq-java-client/security/advisories/GHSA-68mj-5wr7-6fgg","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/rabbitmq/rabbitmq-java-client/commit/09af76fce136f3136931654a0a1d43095c80e2f0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/rabbitmq/rabbitmq-java-client/commit/db89e34809fbc6ba4e946615f297f3684ccd0acc","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/rabbitmq/rabbitmq-java-client/security/advisories/GHSA-93j5-89vc-pph4","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-71572","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-71572 — Joomla! Core - [20260801] - Response header injection in download views in Joomla 3.0.0-5.4.7, 6.0.0…","description":"Joomla! Core - [20260801] - Response header injection in download views in Joomla 3.0.0-5.4.7, 6.0.0-6.1.2 - Lack of output processing allowed a header injection in the multiple download views, leading to reflected file download / content-type confusion.","indicators":{"cves":["CVE-2026-71572"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T17:17:02.113Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://developer.joomla.org/security-centre/1068-20260801-core-response-header-injection-in-download-views.html","label":"security@joomla.org","domainType":"other"},{"url":"https://www.joomla.org/","label":"security@joomla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-71573","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-71573 — Joomla! Core - [20260802] - Improper CORS origin validation in Joomla 4.0.0-5.4.7, 6.0.0-6.1.2 - An…","description":"Joomla! Core - [20260802] - Improper CORS origin validation in Joomla 4.0.0-5.4.7, 6.0.0-6.1.2 - An improper implementation prevented configured CORS origins from being properly validated in CORS requests.","indicators":{"cves":["CVE-2026-71573"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T17:17:02.243Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://developer.joomla.org/security-centre/20260802-core-improper-cors-origin-validation.html","label":"security@joomla.org","domainType":"other"},{"url":"https://www.joomla.org/","label":"security@joomla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72531","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72531 — Joomla! Core - [20260804] - Improper ACL checks for custom fields webservice endpoints in Joomla 4.0…","description":"Joomla! Core - [20260804] - Improper ACL checks for custom fields webservice endpoints in Joomla 4.0.0-5.4.7, 6.0.0-6.1.2 - An improper access check allows unauthorized users to create fields for inaccessible components.","indicators":{"cves":["CVE-2026-72531"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T17:17:02.477Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://developer.joomla.org/security-centre/20260804-core-improper-acl-checks-for-custom-fields-webservice-endpoints.html","label":"security@joomla.org","domainType":"other"},{"url":"https://www.joomla.org/","label":"security@joomla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73336","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-73336 — Joomla! Core - [20260806] - XSS through schema.org outputs in Joomla 5.1.0-5.4.7, 6.0.0-6.1.2 - Impr…","description":"Joomla! Core - [20260806] - XSS through schema.org outputs in Joomla 5.1.0-5.4.7, 6.0.0-6.1.2 - Improper escaping flags lead to an XSS vector in schema.org markup outputs.","indicators":{"cves":["CVE-2026-73336"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T17:17:02.707Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://developer.joomla.org/security-centre/1073-20260806-core-xss-through-schema-org-outputs.html","label":"security@joomla.org","domainType":"other"},{"url":"https://www.joomla.org/","label":"security@joomla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-73372","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-73372 — Joomla! Core - [20260809] - Improper ACL checks when injection schema.org contact data in Joomla 5.1…","description":"Joomla! Core - [20260809] - Improper ACL checks when injection schema.org contact data in Joomla 5.1.0-5.4.7 and 6.0.0-6.1.2 - An improper access check injects contact information for unaccessible contact items into schema.org snippets.","indicators":{"cves":["CVE-2026-73372"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T17:17:03.067Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://developer.joomla.org/security-centre/1076-20260809-core-improper-acl-checks-when-injection-schema-org-contact-data.html","label":"security@joomla.org","domainType":"other"},{"url":"https://www.joomla.org/","label":"security@joomla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18392","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-18392 — Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in…","description":"Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have been removed to prevent accidental usage.","indicators":{"cves":["CVE-2026-18392"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T18:17:26.950Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[],"feedLabel":null},{"id":"nvd-CVE-2026-50161","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-50161 — libre is a generic library for real-time communications with asynchronous input and output support.…","description":"libre is a generic library for real-time communications with asynchronous input and output support. Prior to 4.8.1, the websock_decode() function in src/websock/websock.c contains an integer overflow when validating a masked WebSocket frame that uses the 64-bit extended length encoding. The expressi…","indicators":{"cves":["CVE-2026-50161"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T18:17:53.380Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/baresip/re/commit/718b92615c7963670d26c1a2b246968b58d782e8","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/baresip/re/pull/1584","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/baresip/re/releases/tag/v4.8.1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/baresip/re/security/advisories/GHSA-hvxv-v2gp-v93h","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-50167","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-50167 — Kurrier is a modern, self-hosted workspace for email, calendar, contacts, and storage. Prior to 1.2.…","description":"Kurrier is a modern, self-hosted workspace for email, calendar, contacts, and storage. Prior to 1.2.4, Kurrier API endpoints for listing and retrieving webhook and identity resources did not enforce ownership checks for authenticated API requests. An attacker with a valid API key could use another a…","indicators":{"cves":["CVE-2026-50167"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T18:17:53.533Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/kurrier-org/kurrier/commit/22fad36fb1bc79e3038184ddd485fb235217475c","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/kurrier-org/kurrier/pull/446","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/kurrier-org/kurrier/releases/tag/v1.2.4","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/kurrier-org/kurrier/security/advisories/GHSA-f7h3-f5vh-3764","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-53533","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-53533 — aiosmtplib is an asynchronous SMTP client for use with asyncio. Prior to 5.1.1, SMTP.mail(), SMTP.rc…","description":"aiosmtplib is an asynchronous SMTP client for use with asyncio. Prior to 5.1.1, SMTP.mail(), SMTP.rcpt(), SMTP.vrfy(), and SMTP.expn() send caller-supplied addresses without rejecting embedded CR or LF bytes. Data after the line break is framed as additional standalone SMTP command lines, allowing a…","indicators":{"cves":["CVE-2026-53533"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T18:18:20.513Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/cole/aiosmtplib/commit/8eaf6efc9a8f59e2e09d3ef11246a058c46bd3ba","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cole/aiosmtplib/releases/tag/v5.1.1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cole/aiosmtplib/security/advisories/GHSA-v3q9-hj7j-63hq","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-63641","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-63641 — MagicMirror² is an open source modular smart mirror platform. Prior to 2.37.0, MagicMirror applies i…","description":"MagicMirror² is an open source modular smart mirror platform. Prior to 2.37.0, MagicMirror applies ipWhitelist only as Express middleware, while the Socket.IO server in js/server.js is attached directly to the HTTP server without equivalent IP allowlist, origin, or namespace authentication checks. I…","indicators":{"cves":["CVE-2026-63641"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T18:19:11.963Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/MagicMirrorOrg/MagicMirror/commit/58c2a5e675a7d367b64d72e1d35680d202ff5c9f","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/MagicMirrorOrg/MagicMirror/pull/4169","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/MagicMirrorOrg/MagicMirror/releases/tag/v2.37.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/MagicMirrorOrg/MagicMirror/security/advisories/GHSA-w26r-fwg8-rcp3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/MagicMirrorOrg/MagicMirror/security/advisories/GHSA-w26r-fwg8-rcp3","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-63642","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-63642 — MagicMirror² is an open source modular smart mirror platform. Prior to 2.37.0, checkArticleUrl in de…","description":"MagicMirror² is an open source modular smart mirror platform. Prior to 2.37.0, checkArticleUrl in defaultmodules/newsfeed/node_helper.js accepts the CHECK_ARTICLE_URL notification through the unauthenticated Socket.IO namespace /newsfeed and performs fetch(url, { method: \"HEAD\" }) without validating…","indicators":{"cves":["CVE-2026-63642"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T18:19:12.117Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/MagicMirrorOrg/MagicMirror/commit/58c2a5e675a7d367b64d72e1d35680d202ff5c9f","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/MagicMirrorOrg/MagicMirror/pull/4169","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/MagicMirrorOrg/MagicMirror/releases/tag/v2.37.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/MagicMirrorOrg/MagicMirror/security/advisories/GHSA-998g-7v5w-cr7g","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/MagicMirrorOrg/MagicMirror/security/advisories/GHSA-998g-7v5w-cr7g","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-63643","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-63643 — MagicMirror² is an open source modular smart mirror platform. Prior to 2.37.0, the ADD_CALENDAR hand…","description":"MagicMirror² is an open source modular smart mirror platform. Prior to 2.37.0, the ADD_CALENDAR handler in defaultmodules/calendar/node_helper.js accepts an attacker-controlled URL, authentication data, and selfSignedCert setting through the unauthenticated Socket.IO namespace /calendar. The handler…","indicators":{"cves":["CVE-2026-63643"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T18:19:12.260Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/MagicMirrorOrg/MagicMirror/commit/58c2a5e675a7d367b64d72e1d35680d202ff5c9f","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/MagicMirrorOrg/MagicMirror/pull/4169","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/MagicMirrorOrg/MagicMirror/releases/tag/v2.37.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/MagicMirrorOrg/MagicMirror/security/advisories/GHSA-w6x9-28jw-hq7j","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-67846","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-67846 — Berkeley Out-of-Order Machine (BOOM) commit 5223e44cfeb26f41380057a2eb4d651197475f69 contains a pote…","description":"Berkeley Out-of-Order Machine (BOOM) commit 5223e44cfeb26f41380057a2eb4d651197475f69 contains a potential incorrect privilege assignment issue in the v3 and v4 NBDTLB implementations. The raw mstatus.SUM value participates in the read and write permission logic without an explicit local satp.MODE va…","indicators":{"cves":["CVE-2026-67846"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T18:19:25.240Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/duan528/CVE-2026-67846-BOOM-NBDTLB","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/riscv-boom/riscv-boom","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/riscv-boom/riscv-boom/commit/5223e44cfeb26f41380057a2eb4d651197475f69","label":"cve@mitre.org","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-71878","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-71878 — Missing authentication in initial setup functionality left exposed after initial setup is completed…","description":"Missing authentication in initial setup functionality left exposed after initial setup is completed in GBIF Integrated Publishing Toolkit versions before 3.3.4 allows remote authenticated attackers to gain administrative control via authentication bypass","indicators":{"cves":["CVE-2026-71878"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T18:19:32.817Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/gbif/ipt/issues/3115","label":"mandiant-cve@google.com","domainType":"primary"},{"url":"https://github.com/mandiant/Vulnerability-Disclosures/blob/master/2026/MNDT-2026-0014.md","label":"mandiant-cve@google.com","domainType":"primary"},{"url":"https://www.gbif.org/ipt","label":"mandiant-cve@google.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-71879","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-71879 — Missing authentication in initial setup functionality left exposed until first reboot in GBIF Integr…","description":"Missing authentication in initial setup functionality left exposed until first reboot in GBIF Integrated Publishing Toolkit versions before 3.3.4 allows remote authenticated attackers to gain administrative control via authentication bypass","indicators":{"cves":["CVE-2026-71879"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T18:19:32.960Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/gbif/ipt/issues/3115","label":"mandiant-cve@google.com","domainType":"primary"},{"url":"https://github.com/mandiant/Vulnerability-Disclosures/blob/master/2026/MNDT-2026-0015.md","label":"mandiant-cve@google.com","domainType":"primary"},{"url":"https://www.gbif.org/ipt","label":"mandiant-cve@google.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-71880","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-71880 — Interpretation of untrusted input in template engine in GBIF Integrated Publishing Toolkit versions…","description":"Interpretation of untrusted input in template engine in GBIF Integrated Publishing Toolkit versions before 3.3.4 allows remote authenticated attackers to access server-side files and state via template injection","indicators":{"cves":["CVE-2026-71880"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T18:19:33.097Z","fetchedAt":"2026-08-21T03:01:29.072Z","references":[{"url":"https://github.com/gbif/ipt/issues/3118","label":"mandiant-cve@google.com","domainType":"primary"},{"url":"https://github.com/mandiant/Vulnerability-Disclosures/blob/master/2026/MNDT-2026-0016.md","label":"mandiant-cve@google.com","domainType":"primary"},{"url":"https://www.gbif.org/ipt","label":"mandiant-cve@google.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-17106","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-17106 — The tar extraction routines in moby/go-archive (Unpack, UnpackLayer, Untar/UntarUncompressed, and th…","description":"The tar extraction routines in moby/go-archive (Unpack, UnpackLayer, Untar/UntarUncompressed, and the ApplyLayer helpers) do not confine filesystem operations to the destination directory. The extractor decides where each archive entry lands using lexical string checks and then performs the filesyst…","indicators":{"cves":["CVE-2026-17106"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T19:16:45.030Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://docs.docker.com/desktop/release-notes/#4860","label":"security@docker.com","domainType":"other"},{"url":"https://docs.docker.com/engine/release-notes/29/#2970","label":"security@docker.com","domainType":"other"},{"url":"https://github.com/docker/cli/releases/tag/v29.7.0","label":"security@docker.com","domainType":"primary"},{"url":"https://github.com/docker/compose/releases/tag/v5.4.0","label":"security@docker.com","domainType":"primary"},{"url":"https://github.com/docker/sbx-releases/releases/tag/v0.38.0","label":"security@docker.com","domainType":"primary"},{"url":"https://github.com/moby/go-archive/releases/tag/v0.3.0","label":"security@docker.com","domainType":"primary"},{"url":"https://github.com/moby/go-archive/security/advisories/GHSA-hfg8-hc9c-6c3h","label":"security@docker.com","domainType":"primary"},{"url":"https://github.com/masasron/CopyEscape-CVE-2026-17106","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-52735","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-52735 — ZEBRA is a Zcash node written entirely in Rust. Prior to 4.5.0, Zebra can accept a block that zcashd…","description":"ZEBRA is a Zcash node written entirely in Rust. Prior to 4.5.0, Zebra can accept a block that zcashd rejects because the P2SH signature-operation counter undercounts redeem scripts containing a disabled opcode followed by signature opcodes. In zebra-script/src/lib.rs, p2sh_input_sigop_count used the…","indicators":{"cves":["CVE-2026-52735"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:17:17.227Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/ZcashFoundation/zebra/commit/1440b43ca7df59aca948090d45117557b217a6cd","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ZcashFoundation/zebra/releases/tag/v4.5.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ZcashFoundation/zebra/security/advisories/GHSA-gf9r-m956-97qx","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-52736","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-52736 — ZEBRA is a Zcash node written entirely in Rust. Prior to 4.5.0, a remote unauthenticated P2P peer ca…","description":"ZEBRA is a Zcash node written entirely in Rust. Prior to 4.5.0, a remote unauthenticated P2P peer can stall a Zebra node by racing an invalid block body against the valid canonical body for the same block header hash. ZIP-244 permits the attacker to mutate coinbase scriptSig authentication data whil…","indicators":{"cves":["CVE-2026-52736"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:17:17.400Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/ZcashFoundation/zebra/commit/1440b43ca7df59aca948090d45117557b217a6cd","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ZcashFoundation/zebra/releases/tag/v4.5.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ZcashFoundation/zebra/security/advisories/GHSA-4m69-67m6-prqp","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-52738","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-52738 — ZEBRA is a Zcash node written entirely in Rust. Prior to 4.5.0, a consensus-valid block containing a…","description":"ZEBRA is a Zcash node written entirely in Rust. Prior to 4.5.0, a consensus-valid block containing a long chain of transparent self-spends to one address can permanently halt Zebra nodes. In zebra-state/src/service/finalized_state/zebra_db/transparent.rs, the finalized-state writer originally applie…","indicators":{"cves":["CVE-2026-52738"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:17:17.953Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/ZcashFoundation/zebra/commit/1440b43ca7df59aca948090d45117557b217a6cd","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ZcashFoundation/zebra/releases/tag/v4.5.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ZcashFoundation/zebra/security/advisories/GHSA-w834-cf6p-9m9w","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-53453","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-53453 — Blueprint Studio is a VS Code-like file editor for Home Assistant configuration files. Prior to 2.5.…","description":"Blueprint Studio is a VS Code-like file editor for Home Assistant configuration files. Prior to 2.5.2, Blueprint Studio exposed administrator-intended backend API actions to any authenticated Home Assistant user because the backend did not consistently enforce the panel's admin-only authorization bo…","indicators":{"cves":["CVE-2026-53453","CVE-2026-53454","CVE-2026-53455","CVE-2026-53456","CVE-2026-53457","CVE-2026-53458"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:34.973Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[{"url":"https://github.com/ha-china/blueprint-studio/commit/943aed0be67f3a910b0f70a3864288d5e17e55ce","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ha-china/blueprint-studio/releases/tag/v2.5.2","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ha-china/blueprint-studio/security/advisories/GHSA-ppwq-ch6x-936g","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ha-china/blueprint-studio/security/advisories/GHSA-pgxq-h2pc-gqq8","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ha-china/blueprint-studio/security/advisories/GHSA-wjpc-mc3f-w5rg","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ha-china/blueprint-studio/security/advisories/GHSA-3vg8-xf27-7q45","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ha-china/blueprint-studio/security/advisories/GHSA-5cc6-r4rr-fpfh","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ha-china/blueprint-studio/security/advisories/GHSA-6vc4-5wqj-fm6p","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-56867","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-56867 — Rejected reason: reserved but not needed","description":"Rejected reason: reserved but not needed","indicators":{"cves":["CVE-2026-56867","CVE-2026-56868","CVE-2026-56869","CVE-2026-56870","CVE-2026-56871","CVE-2026-56872","CVE-2026-56873","CVE-2026-56874"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:16:36.750Z","fetchedAt":"2026-08-21T03:01:29.073Z","references":[],"feedLabel":null},{"id":"nvd-CVE-2026-21580","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-21580 — This Critical severity Stored XSS, PrivEsc (Privilege Escalation), and Security Misconfiguration vul…","description":"This Critical severity Stored XSS, PrivEsc (Privilege Escalation), and Security Misconfiguration vulnerability was introduced in versions 7.1.1, 7.4.0, 7.13.0, 7.17.0, 7.19.0, 8.0.0, 8.5.0, 8.9.0, 9.0.1, 9.1.0, 9.2.0, 9.3.1, 9.4.0, 9.5.1, 10.0.2, 10.1.0 and 10.2.0 of Confluence Data Center and Serve…","indicators":{"cves":["CVE-2026-21580"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T22:16:50.140Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://confluence.atlassian.com/pages/viewpage.action?pageId=1821999768","label":"security@atlassian.com","domainType":"other"},{"url":"https://jira.atlassian.com/browse/CONFSERVER-104381","label":"security@atlassian.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-21582","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-21582 — This High severity BASM (Broken Authentication & Session Management) vulnerability known as CVE-2026…","description":"This High severity BASM (Broken Authentication & Session Management) vulnerability known as CVE-2026-21582 was introduced in version 7.2.1 of Crowd Data Center.\r\n\r\nThis BASM (Broken Authentication & Session Management) vulnerability, with a CVSS Score of 8.8, allows an unauthenticated attacker to pe…","indicators":{"cves":["CVE-2026-21582"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T22:16:50.340Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://confluence.atlassian.com/pages/viewpage.action?pageId=1821999768","label":"security@atlassian.com","domainType":"other"},{"url":"https://jira.atlassian.com/browse/CWD-6562","label":"security@atlassian.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-21584","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-21584 — This High severity Improper Authorization vulnerability was introduced in versions 10.0.0, 10.1.0, 1…","description":"This High severity Improper Authorization vulnerability was introduced in versions 10.0.0, 10.1.0, 10.2.0, 11.0.0, 12.0.0, and 12.1.0 of Bamboo Data Center. \n\t\n\tThis Improper Authorization vulnerability, with a CVSS Score of 7.6, allows an authenticated attacker to gain unintended access and can lea…","indicators":{"cves":["CVE-2026-21584"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T22:16:50.460Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://confluence.atlassian.com/pages/viewpage.action?pageId=1821999768","label":"security@atlassian.com","domainType":"other"},{"url":"https://jira.atlassian.com/browse/BAM-26468","label":"security@atlassian.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-62292","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-62292 — libheif is a HEIF and AVIF file format decoder and encoder. From 1.19.0 until 1.23.1, a crafted unco…","description":"libheif is a HEIF and AVIF file format decoder and encoder. From 1.19.0 until 1.23.1, a crafted uncompressed HEIF image using generic zlib unci full-item compression can crash an application that decodes an advertised tile with heif_image_handle_decode_image_tile(). In libheif/codecs/uncompressed/un…","indicators":{"cves":["CVE-2026-62292"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T22:17:03.023Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://github.com/strukturag/libheif/commit/089a809bf6bed1abae102d5e97b6bb8c4f53b515","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/strukturag/libheif/releases/tag/v1.23.1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/strukturag/libheif/security/advisories/GHSA-73p7-m7gg-w2jv","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-11751","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-11751 — A vulnerability has been identified in armeria-xds versions prior to 1.41.0, where xDS upstream TLS…","description":"A vulnerability has been identified in armeria-xds versions prior to 1.41.0, where xDS upstream TLS peer verification may be silently disabled, allowing man-in-the-middle attacks against xDS-managed upstream connections.","indicators":{"cves":["CVE-2026-11751"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T02:16:12.530Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://github.com/line/armeria/security/advisories/GHSA-6qfw-3mvj-m6v5","label":"dl_cve@linecorp.com","domainType":"primary"},{"url":"https://line.github.io/security-advisory-blog/CVE-2026-11751/","label":"dl_cve@linecorp.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-66358","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-66358 — A cross-site scripting vulnerability exists in acmailer, which may allow an attacker to execute an a…","description":"A cross-site scripting vulnerability exists in acmailer, which may allow an attacker to execute an arbitrary script.","indicators":{"cves":["CVE-2026-66358"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T05:17:05.647Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://jvn.jp/en/jp/JVN47716829/","label":"vultures@jpcert.or.jp","domainType":"other"},{"url":"https://www.acmailer.jp/info/de.cgi?id=119","label":"vultures@jpcert.or.jp","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70408","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-70408 — An incorrect authorization vulnerability exists in acmailer, which may allow a user to create a sub-…","description":"An incorrect authorization vulnerability exists in acmailer, which may allow a user to create a sub-account that has administrative privileges.","indicators":{"cves":["CVE-2026-70408"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T05:17:05.820Z","fetchedAt":"2026-08-21T03:01:29.081Z","references":[{"url":"https://jvn.jp/en/jp/JVN47716829/","label":"vultures@jpcert.or.jp","domainType":"other"},{"url":"https://www.acmailer.jp/info/de.cgi?id=119","label":"vultures@jpcert.or.jp","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-49421","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-49421 — The kernel function that implements unlinkat(2) and funlinkat(2) validated the AT_RESOLVE_BENEATH fl…","description":"The kernel function that implements unlinkat(2) and funlinkat(2) validated the AT_RESOLVE_BENEATH flag but failed to pass it through to the underlying path lookup.  The flag was silently dropped, so path resolution was not actually restricted.\n\nA process that uses AT_RESOLVE_BENEATH with unlinkat(2)…","indicators":{"cves":["CVE-2026-49421"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:41.160Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://security.freebsd.org/advisories/FreeBSD-SA-26:42.unlinkat.asc","label":"secteam@freebsd.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-49426","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-49426 — When auditing a system call executed via ptrace(PT_SC_REMOTE), the kernel passed the return value of…","description":"When auditing a system call executed via ptrace(PT_SC_REMOTE), the kernel passed the return value of an internal setup function to AUDIT_SYSCALL_EXIT() rather than the actual result of the executed system call.  As a result, committed audit records for system calls which returned an error do not ref…","indicators":{"cves":["CVE-2026-49426"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:41.720Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://security.freebsd.org/advisories/FreeBSD-SA-26:45.audit.asc","label":"secteam@freebsd.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-49430","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-49430 — The ZFS_IOC_RECV_NEW ioctl, in the heal receive path, similarly truncated a 64-bit payload size to a…","description":"The ZFS_IOC_RECV_NEW ioctl, in the heal receive path, similarly truncated a 64-bit payload size to a 32-bit integer for allocation, then used the original 64-bit size as the length for a byteswap operation.\n\nA local user with the \"receive\" delegated ZFS permission can trigger kernel memory corruptio…","indicators":{"cves":["CVE-2026-49430"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:42.767Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://security.freebsd.org/advisories/FreeBSD-SA-26:40.zfs.asc","label":"secteam@freebsd.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-49431","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-49431 — The ZFS_IOC_SET_PROP ioctl, used by zfs-set(8), incorrectly validated the calling user such that an…","description":"The ZFS_IOC_SET_PROP ioctl, used by zfs-set(8), incorrectly validated the calling user such that an unprivileged user is able to set metadata on a dataset indicating that the dataset has received properties from a zfs-recv(8) stream.\n\nAny local user can set the internal ZFS metadata flag \"$hasrecvd\"…","indicators":{"cves":["CVE-2026-49431"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:17:43.027Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://security.freebsd.org/advisories/FreeBSD-SA-26:40.zfs.asc","label":"secteam@freebsd.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-49423","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-49423 — When building the iovec array for a received TLS 1.2 CBC record, ktls_ocf_tls_cbc_decrypt() incremen…","description":"When building the iovec array for a received TLS 1.2 CBC record, ktls_ocf_tls_cbc_decrypt() incremented the iovec index for every mbuf in the chain, including mbufs that were skipped because they contained only TLS header bytes.  This left uninitialized entries in the iovec array.  The iovec array w…","indicators":{"cves":["CVE-2026-49423"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T07:16:28.570Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://security.freebsd.org/advisories/FreeBSD-SA-26:46.ktls.asc","label":"secteam@freebsd.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-49424","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-49424 — The Linux waitid() implementation translates a FreeBSD siginfo_t struct into a stack-declared Linux…","description":"The Linux waitid() implementation translates a FreeBSD siginfo_t struct into a stack-declared Linux siginfo_t.  It did not first zero the stack struct.\n\nAn unprivileged user may observe 104 bytes of uninitialized kernel stack data, which may contain sensitive information.","indicators":{"cves":["CVE-2026-49424"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T08:17:12.060Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://security.freebsd.org/advisories/FreeBSD-SA-26:47.linux.asc","label":"secteam@freebsd.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-49425","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-49425 — The compat32 kevent() handler translates a 64-bit kevent struct into a stack- declared 32-bit struct…","description":"The compat32 kevent() handler translates a 64-bit kevent struct into a stack- declared 32-bit struct.  It did not first zero the stack struct.\n\nAn unprivileged user may observe a small amount of uninitialized kernel stack data, which may contain sensitive information.","indicators":{"cves":["CVE-2026-49425"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T08:17:12.160Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://security.freebsd.org/advisories/FreeBSD-SA-26:48.compat32.asc","label":"secteam@freebsd.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-58081","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-58081 — Several encoding modules, including HZ, UTF-7, VIQR, and ZW, did not properly check the size of the…","description":"Several encoding modules, including HZ, UTF-7, VIQR, and ZW, did not properly check the size of the caller-supplied output buffer before writing converted characters.\n\nAn application that uses iconv(3) to convert untrusted input to or from one of the affected encodings may be vulnerable to buffer ov…","indicators":{"cves":["CVE-2026-58081"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T08:17:12.263Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://security.freebsd.org/advisories/FreeBSD-SA-26:49.iconv.asc","label":"secteam@freebsd.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-58082","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-58082 — The ISO-2022 encoding module used a stack buffer sized to MB_LEN_MAX (6 bytes) for intermediate char…","description":"The ISO-2022 encoding module used a stack buffer sized to MB_LEN_MAX (6 bytes) for intermediate character output.  Some ISO-2022 variants can require up to 10 bytes per character, in which case conversions can trigger a stack buffer overflow of up to four bytes.\n\nAn application that uses iconv(3) to…","indicators":{"cves":["CVE-2026-58082"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T08:17:12.370Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://security.freebsd.org/advisories/FreeBSD-SA-26:49.iconv.asc","label":"secteam@freebsd.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-58084","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-58084 — To retrieve the previous timer value, the kernel calls realtimer_gettime(), which obtains the curren…","description":"To retrieve the previous timer value, the kernel calls realtimer_gettime(), which obtains the current time for the timer's clock.  For a timer using CLOCK_TAI this can fail when no TAI offset has been configured, but the error return was not checked, so the uninitialized output buffer was copied to…","indicators":{"cves":["CVE-2026-58084"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T08:17:12.570Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://security.freebsd.org/advisories/FreeBSD-SA-26:51.ktimer.asc","label":"secteam@freebsd.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-58086","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-58086 — As an inadvertent side effect of an unrelated code change, PRIV_KTRACE was always denied to a jailed…","description":"As an inadvertent side effect of an unrelated code change, PRIV_KTRACE was always denied to a jailed root user.  Tracing configured by a jailed root user was therefore not flagged as privileged.\n\nAn unprivileged user in a jail that has permission to debug the target process can modify the jailed roo…","indicators":{"cves":["CVE-2026-58086"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T08:17:12.777Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://security.freebsd.org/advisories/FreeBSD-SA-26:53.ktrace.asc","label":"secteam@freebsd.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-72889","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-72889 — Net::OAuth versions before 0.33 for Perl allow the sender to choose the signature algorithm in verif…","description":"Net::OAuth versions before 0.33 for Perl allow the sender to choose the signature algorithm in verify.\n\nverify resolves the signature method class from the signature_method parameter of the incoming message. signature_method is required on every request, so the algorithm used to check a signature is…","indicators":{"cves":["CVE-2026-72889"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T08:17:13.833Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://datatracker.ietf.org/doc/html/rfc5849#section-3.4.2","label":"9b29abf9-4ab0-4765-b253-1875cd9b441e","domainType":"other"},{"url":"https://datatracker.ietf.org/doc/html/rfc5849#section-3.4.3","label":"9b29abf9-4ab0-4765-b253-1875cd9b441e","domainType":"other"},{"url":"https://github.com/vurtdev/Net-OAuth/commit/c467adf45c8d77ac4b92ad78b3eebf949252ba7f.patch","label":"9b29abf9-4ab0-4765-b253-1875cd9b441e","domainType":"primary"},{"url":"https://github.com/vurtdev/Net-OAuth/security/advisories/GHSA-c8rm-g5cm-4pf5","label":"9b29abf9-4ab0-4765-b253-1875cd9b441e","domainType":"primary"},{"url":"https://metacpan.org/release/RRWO/Net-OAuth-0.33/changes","label":"9b29abf9-4ab0-4765-b253-1875cd9b441e","domainType":"other"},{"url":"http://www.openwall.com/lists/oss-security/2026/08/19/2","label":"af854a3a-2127-422b-91ae-364da2661108","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75589","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-75589 — Net::OAuth versions before 0.33 for Perl check HMAC-SHA1, HMAC-SHA256 and PLAINTEXT signatures with…","description":"Net::OAuth versions before 0.33 for Perl check HMAC-SHA1, HMAC-SHA256 and PLAINTEXT signatures with a non-constant-time comparison in verify.\n\nEach of the three compares the signature carried in the message against the locally computed one with the eq operator, which returns as soon as the two strin…","indicators":{"cves":["CVE-2026-75589"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T08:17:13.970Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/vurtdev/Net-OAuth/commit/a1a16b58add85668ef4fcda642a486ceed098eba.patch","label":"9b29abf9-4ab0-4765-b253-1875cd9b441e","domainType":"primary"},{"url":"https://github.com/vurtdev/Net-OAuth/security/advisories/GHSA-g8xr-69p3-gw56","label":"9b29abf9-4ab0-4765-b253-1875cd9b441e","domainType":"primary"},{"url":"https://metacpan.org/release/RRWO/Net-OAuth-0.33/changes","label":"9b29abf9-4ab0-4765-b253-1875cd9b441e","domainType":"other"},{"url":"http://www.openwall.com/lists/oss-security/2026/08/19/3","label":"af854a3a-2127-422b-91ae-364da2661108","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76164","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-76164 — AIL Framework contains a server-side request forgery (SSRF) vulnerability in its crawler submission…","description":"AIL Framework contains a server-side request forgery (SSRF) vulnerability in its crawler submission functionality. A low-privileged authenticated user with access to the crawler interface can submit an arbitrary URL for crawling without adequate validation of the destination host.\n\n\nThe crawler can…","indicators":{"cves":["CVE-2026-76164"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T09:17:36.830Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/ail-project/ail-framework/commit/d7b60ff9e20ee493895430b1a7c63d498a8fd780","label":"5a6e4751-2f3f-4070-9419-94fb35b644e8","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-16440","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-16440 — In Eclipse OpenJ9 versions up to 0.60, a crafted .class file with deeply nested annotations causes a…","description":"In Eclipse OpenJ9 versions up to 0.60, a crafted .class file with deeply nested annotations causes a segmentation fault.","indicators":{"cves":["CVE-2026-16440"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T11:16:46.183Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/eclipse-openj9/openj9/pull/24572","label":"emo@eclipse.org","domainType":"primary"},{"url":"https://github.com/eclipse-openj9/openj9/security/advisories/GHSA-ch6r-v7rg-4jqx","label":"emo@eclipse.org","domainType":"primary"},{"url":"https://github.com/eclipse-openj9/openj9/security/advisories/GHSA-ch6r-v7rg-4jqx","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-19489","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-19489 — Vulnerability in NetScaler ADC and NetScaler Gateway. This issue affects ADC: from 14.1 through 73.3…","description":"Vulnerability in NetScaler ADC and NetScaler Gateway.\n\nThis issue affects ADC: from 14.1 through 73.32 and from 13.1 through 63.21; Gateway: from 14.1 through 73.32 and from 13.1 through 63.21.","indicators":{"cves":["CVE-2026-19489","CVE-2026-19490"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T13:17:44.870Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX696939","label":"50a63c94-1ea7-4568-8c11-eb79e7c5a2b5","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-67363","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-67363 — Joomla Extension - balbooa.com - Pre-auth Payment Amount Tampering in Balbooa Forms < 2.4.3.2 - The…","description":"Joomla Extension - balbooa.com - Pre-auth Payment Amount Tampering in Balbooa Forms < 2.4.3.2 - The stripeCharges and payAuthorize endpoints accept the charge total from a client-controlled request parameter and forward it to the payment gateway without recomputing it from the form's configured prod…","indicators":{"cves":["CVE-2026-67363"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T13:17:50.820Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://www.balbooa.com/","label":"security@joomla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-67364","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-67364 — Joomla Extension - balbooa.com - Pre-auth PHP Code Injection in Balbooa Forms < 2.4.3.2 - CWE-94 / C…","description":"Joomla Extension - balbooa.com - Pre-auth PHP Code Injection in Balbooa Forms < 2.4.3.2 - CWE-94 / CWE-95 | CVSS 3.1: 9.8 Critical (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H)\nThe form's optional custom-PHP post-submission handler is executed via eval(). The [URL parameter = X] shortcode is substituted wit…","indicators":{"cves":["CVE-2026-67364"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T13:17:50.957Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://www.balbooa.com/","label":"security@joomla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-50719","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-50719 — The Ingenic T41, and probably also T32, T40, and A1 SoC boot ROMs parse and execute an attacker-cont…","description":"The Ingenic T41, and probably also T32, T40, and A1 SoC boot ROMs parse and execute an attacker-controlled init table from the SPL header before checking the secure boot state and before invoking signature verification. The init table parser supports full-address 32-bit write operations, allowing mo…","indicators":{"cves":["CVE-2026-50719"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:31.977Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://opensensor.io/security/ingenic-t32-t40-t41-a1-init-table-bypass","label":"cve@mitre.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-50720","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-50720 — The Ingenic T31 SoC boot ROM flash-boot verification path compares only a single 32-bit word of the…","description":"The Ingenic T31 SoC boot ROM flash-boot verification path compares only a single 32-bit word of the RSA signature output against a single 32-bit word of the SHA-256 payload digest, rather than compare the full data. This allows an attacker with physical write access to boot media to forge modified S…","indicators":{"cves":["CVE-2026-50720"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:32.130Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://opensensor.io/security/ingenic-t31-bootrom-partial-verification","label":"cve@mitre.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-51366","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-51366 — SQL Injection vulnerability in Bottinelli Informatica Vedo Suite v.1.2.5 allows a remote attacker to…","description":"SQL Injection vulnerability in Bottinelli Informatica Vedo Suite v.1.2.5 allows a remote attacker to execute arbitrary code via the api_vedo/chat endpoint and the utente_chat parameter","indicators":{"cves":["CVE-2026-51366"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:32.283Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://blog.elmec.com/cve-2026-51366-sql-injection-leading-to-remote-code-execution","label":"cve@mitre.org","domainType":"other"},{"url":"https://www.bottinelliinformatica.it/it/vedo-suite/","label":"cve@mitre.org","domainType":"other"},{"url":"https://www.cybergon.com/","label":"cve@mitre.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-51367","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-51367 — An issue in Bottinelli Informatica Vedo Suite v.1.2.5 allows a remote attacker to obtain sensitive i…","description":"An issue in Bottinelli Informatica Vedo Suite v.1.2.5 allows a remote attacker to obtain sensitive information via the api_vedo/chat endpoint and the utente_chat parameter","indicators":{"cves":["CVE-2026-51367"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:32.460Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://blog.elmec.com/cve-2026-51367-insecure-direct-object-reference-idor-leading-to-unauthorized-data-access","label":"cve@mitre.org","domainType":"other"},{"url":"https://www.bottinelliinformatica.it/it/vedo-suite/","label":"cve@mitre.org","domainType":"other"},{"url":"https://www.cybergon.com/","label":"cve@mitre.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-65609","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-65609 — nnn is vulnerable to Out-of-Bound write vulnerability. Due to lack of validation of attacker-control…","description":"nnn is vulnerable to Out-of-Bound write vulnerability. Due to lack of validation of attacker-controlled length fields deserialized from a session file, a crafted session file can cause nnn to write data beyond the bounds of fixed-size global buffers when loaded with the -s option. An attacker who ca…","indicators":{"cves":["CVE-2026-65609"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:38.060Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://cert.pl/en/posts/2026/08/CVE-2026-65609","label":"cvd@cert.pl","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-65610","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-65610 — nnn stores homelen variable as uchar_t, which can only represent values in the range 0-255. An attac…","description":"nnn stores homelen variable as uchar_t, which can only represent values in the range 0-255. An attacker who can influence the victim's execution environment can provide an arbitrary HOME path with length that is truncated to 0. The expression (homelen - 1) is promoted to signed int and becomes -1 an…","indicators":{"cves":["CVE-2026-65610"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:38.227Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://cert.pl/en/posts/2026/08/CVE-2026-65609","label":"cvd@cert.pl","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-65611","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-65611 — nnn does not sanitize the path variable. An attacker can create a directory on a shared filesystem,…","description":"nnn does not sanitize the path variable. An attacker can create a directory on a shared filesystem, removable media, or inside an extracted archive whose name contains a single quote followed by shell syntax. If the victim enters that directory in nnn and uses the batch copy or move workflow, the cr…","indicators":{"cves":["CVE-2026-65611"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:38.373Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://cert.pl/en/posts/2026/08/CVE-2026-65609","label":"cvd@cert.pl","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-65612","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-65612 — nnn does not sanitize the filename variable. An attacker can place a file with a crafted name on a s…","description":"nnn does not sanitize the filename variable. An attacker can place a file with a crafted name on a shared filesystem, removable media, or inside an extracted archive whose name contains a single quote followed by shell syntax. If the victim navigates\nto that file and opens it with preview-tabbed, th…","indicators":{"cves":["CVE-2026-65612"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:38.523Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://cert.pl/en/posts/2026/08/CVE-2026-65609","label":"cvd@cert.pl","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-71694","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-71694 — An issue in Berkeley Out-of-Order Machine (BOOM) / BoomTile RTL benchmark v1.2 2d08d0d8b456321217521…","description":"An issue in Berkeley Out-of-Order Machine (BOOM) / BoomTile RTL benchmark v1.2 2d08d0d8b4563212175212f9db0e69f6e68c9619 allows a remote attacker to execute arbitrary code via the CSR trap-return state restoration logic, MRET handling logic, mstatus.MPRV update path, CSRFile logic in ProcessorFuzz BO…","indicators":{"cves":["CVE-2026-71694"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:39.333Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/bu-icsg/ProcessorFuzz","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/duan528/BOOM-MRET-MPRV-Vulnerability-Report","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/riscv-boom/riscv-boom","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/riscv/riscv-isa-manual","label":"cve@mitre.org","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-74803","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74803 — Joomla Extension - yootheme.com - Unauthenticated arbitrary file upload in Zoo < 4.1.64 - The image…","description":"Joomla Extension - yootheme.com - Unauthenticated arbitrary file upload in Zoo < 4.1.64 - The image element accepts arbitrary files when the client-supplied Content-Type falls within the image MIME group.","indicators":{"cves":["CVE-2026-74803"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:39.487Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://www.yootheme.com/","label":"security@joomla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-74804","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74804 — Joomla Extension - yootheme.com - Unauthenticated SQL injection in ItemController::element() in Zoo…","description":"Joomla Extension - yootheme.com - Unauthenticated SQL injection in ItemController::element() in Zoo < 4.1.64 - The filter_type request value is interpolated into the query as a.type = \"...\" and the type_filter array as a.type IN (\"...\"), with no quoting or escaping.","indicators":{"cves":["CVE-2026-74804"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:39.643Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://www.yootheme.com/","label":"security@joomla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75114","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-75114 — Joomla Extension - yootheme.com - Open redirect in CommentController::twitterAuthenticate() in Zoo <…","description":"Joomla Extension - yootheme.com - Open redirect in CommentController::twitterAuthenticate() in Zoo < 4.1.64 - The referer request parameter is passed straight to setRedirect() with no validation.","indicators":{"cves":["CVE-2026-75114"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:40.353Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://www.yootheme.com/","label":"security@joomla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76236","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-76236 — stigmem-node before 0.9.0a12 contains a cross-tenant broken object level authorization (BOLA) flaw i…","description":"stigmem-node before 0.9.0a12 contains a cross-tenant broken object level authorization (BOLA) flaw in the RTBF (right-to-be-forgotten) tombstone mechanism. issue_tombstone defaulted the tenant to \"default\" instead of the caller's tenant, allowing deletion records to be written to the wrong tenant, a…","indicators":{"cves":["CVE-2026-76236"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:54.810Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/eidetic-labs/stigmem/security/advisories/GHSA-x26h-xmv8-gxf7","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/stigmem-before-0a12-cross-tenant-bola-via-tombstones","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76237","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-76237 — stigmem-node before 0.9.0a12 contains a broken object level authorization (cross-tenant BOLA) vulner…","description":"stigmem-node before 0.9.0a12 contains a broken object level authorization (cross-tenant BOLA) vulnerability in the quarantine review endpoints. On multi-tenant deployments running the opt-in stigmem-plugin-multi-tenant, the list/count queries and _get_quarantined_fact in routes/quarantine.py lacked…","indicators":{"cves":["CVE-2026-76237"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:55.840Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/eidetic-labs/stigmem/security/advisories/GHSA-xhv3-q4xx-349r","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/stigmem-before-0a12-cross-tenant-bola-via-quarantine","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76238","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-76238 — stigmem versions before 0.9.0a12 contain a broken object level authorization vulnerability in the de…","description":"stigmem versions before 0.9.0a12 contain a broken object level authorization vulnerability in the decay sweep endpoint that allows authenticated attackers with write credentials for one tenant to execute decay operations affecting all tenants. Attackers can submit POST requests to the decay sweep en…","indicators":{"cves":["CVE-2026-76238"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:56.013Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/eidetic-labs/stigmem/security/advisories/GHSA-6gqw-jqv7-v88m","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/stigmem-before-0a12-cross-tenant-bola-via-decay-sweep","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76240","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-76240 — stigmem-node 0.9.0a1 interpolates Postgres backend schema identifiers into SQL strings without defen…","description":"stigmem-node 0.9.0a1 interpolates Postgres backend schema identifiers into SQL strings without defensive quoting. In the affected code path the schema value is operator-controlled, but the unsafe pattern could allow SQL injection if a schema name were derived from tenant, request, or user input. Fix…","indicators":{"cves":["CVE-2026-76240"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:56.300Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/eidetic-labs/stigmem/security/advisories/GHSA-9pc9-4crj-mhpj","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/stigmem-postgres-sql-injection-via-schema-identifier","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76241","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-76241 — stigmem-node 0.9.0a1 allows plugin signature enforcement to be disabled via a single configuration f…","description":"stigmem-node 0.9.0a1 allows plugin signature enforcement to be disabled via a single configuration flag without a second explicit acknowledgment. If that setting is carried into an environment where plugin directories are writable by less-trusted users, unsigned (potentially malicious) plugin code c…","indicators":{"cves":["CVE-2026-76241"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:56.430Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/eidetic-labs/stigmem/security/advisories/GHSA-w7pm-9g55-mxfm","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/stigmem-plugin-signature-enforcement-bypass-via-configuration","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76242","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-76242 — stigmem-node 0.9.0a1 accepts federation peer key material during peer registration without a separat…","description":"stigmem-node 0.9.0a1 accepts federation peer key material during peer registration without a separate administrator out-of-band fingerprint approval step. On nodes that accept federation peer registration over a network where initial registration can be intercepted or misdirected, an attacker can re…","indicators":{"cves":["CVE-2026-76242"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:56.567Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/eidetic-labs/stigmem/security/advisories/GHSA-9vp8-3hmv-8fgh","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/stigmem-federation-peer-registration-authentication-bypass","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76243","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-76243 — stigmem versions before 0.9.0a2 allow unauthenticated access when authentication is disabled on non-…","description":"stigmem versions before 0.9.0a2 allow unauthenticated access when authentication is disabled on non-loopback deployments. Attackers can perform read, write, and federation operations with anonymous identity when nodes are exposed outside local development environments.","indicators":{"cves":["CVE-2026-76243"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:56.693Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/eidetic-labs/stigmem/security/advisories/GHSA-fp6w-8wpg-74g5","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/stigmem-before-0a2-authentication-bypass-via-disabled-auth","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76244","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-76244 — stigmem-node contains an insecure default configuration vulnerability that allows federation traffic…","description":"stigmem-node contains an insecure default configuration vulnerability that allows federation traffic to traverse networks without mTLS protection when non-loopback endpoints are enabled. Operators who explicitly disabled mTLS while binding federation to non-loopback addresses expose federation traff…","indicators":{"cves":["CVE-2026-76244"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:56.827Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/eidetic-labs/stigmem/security/advisories/GHSA-jmfc-hfjq-pxcp","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/stigmem-node-insecure-federation-transport-configuration","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76245","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-76245 — stigmem (pip package stigmem-node) version 0.9.0a1 contains a timestamp-handling mismatch in federat…","description":"stigmem (pip package stigmem-node) version 0.9.0a1 contains a timestamp-handling mismatch in federation peer-token validation that can cause valid peer tokens to be incorrectly treated as expired. This affects the availability and reliability of authenticated federation flows on nodes using federati…","indicators":{"cves":["CVE-2026-76245"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:17:56.957Z","fetchedAt":"2026-08-21T03:01:29.082Z","references":[{"url":"https://github.com/eidetic-labs/stigmem/security/advisories/GHSA-xh5j-xjfq-qvvx","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/stigmem-federation-peer-token-timestamp-validation-bypass","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18526","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-18526 — HumHub Community Edition 1.18.4 and 1.18.4-pl1 contain a stored Cross-Site Scripting (XSS) vulnerabi…","description":"HumHub Community Edition 1.18.4 and 1.18.4-pl1 contain a stored Cross-Site Scripting (XSS) vulnerability in the oEmbed confirmation rendering workflow.","indicators":{"cves":["CVE-2026-18526"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:16:58.010Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://fluidattacks.com/advisories/greeicy","label":"help@fluidattacks.com","domainType":"other"},{"url":"https://github.com/humhub/humhub","label":"help@fluidattacks.com","domainType":"primary"},{"url":"https://github.com/humhub/humhub/pull/8373","label":"help@fluidattacks.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-18756","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-18756 — HumHub Community Edition 1.18.4 contains a reflected cross-site scripting vulnerability in the Space…","description":"HumHub Community Edition 1.18.4 contains a reflected cross-site scripting vulnerability in the Space membership-request workflow. An attacker can place attacker-controlled button configuration in the options query-string parameter of space/membership/request-membership-form, lure an authenticated no…","indicators":{"cves":["CVE-2026-18756"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:16:58.150Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://fluidattacks.com/es/advisories/turizo","label":"help@fluidattacks.com","domainType":"other"},{"url":"https://github.com/humhub/humhub","label":"help@fluidattacks.com","domainType":"primary"},{"url":"https://github.com/humhub/humhub/pull/8381","label":"help@fluidattacks.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-45272","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-45272 — MyBooks is an enhanced and easy-to-use personal ebook management web server also known as Talebook.…","description":"MyBooks is an enhanced and easy-to-use personal ebook management web server also known as Talebook. In 3.41.2 and earlier, the AdminSettings.post handler in webserver/handlers/admin.py accepts SOCIAL_AUTH key names without validating quotes or newline characters, and SettingsLoader.dumpfile in webse…","indicators":{"cves":["CVE-2026-45272"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:17:04.163Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/PoxenStudio/mybooks/commit/a1780c98b00566af7da2fc099fe38500efc02e92","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/PoxenStudio/mybooks/releases/tag/3.42.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/PoxenStudio/mybooks/security/advisories/GHSA-4wfr-9gcv-j638","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-45273","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-45273 — MyBooks is an ebook management web server also known as Talebook. In 3.41.2 and earlier, the AdminSe…","description":"MyBooks is an ebook management web server also known as Talebook. In 3.41.2 and earlier, the AdminSettings.post handler for POST /api/admin/settings in webserver/handlers/admin.py applies the auth decorator but does not check the self.admin_user property, unlike the corresponding GET handler. Any au…","indicators":{"cves":["CVE-2026-45273"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:17:04.313Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/PoxenStudio/mybooks/commit/a1780c98b00566af7da2fc099fe38500efc02e92","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/PoxenStudio/mybooks/releases/tag/3.42.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/PoxenStudio/mybooks/security/advisories/GHSA-354j-9hx8-3p45","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/PoxenStudio/mybooks/security/advisories/GHSA-354j-9hx8-3p45","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-45274","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-45274 — MyBooks is anebook management web server also known as Talebook. In 3.41.2 and earlier, the SignUp.p…","description":"MyBooks is anebook management web server also known as Talebook. In 3.41.2 and earlier, the SignUp.post handler for POST /api/user/sign_up in webserver/handlers/user.py does not enforce the ALLOW_REGISTER configuration flag, even though the frontend hides registration controls when the flag is false…","indicators":{"cves":["CVE-2026-45274"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:17:04.450Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/PoxenStudio/mybooks/commit/a1780c98b00566af7da2fc099fe38500efc02e92","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/PoxenStudio/mybooks/releases/tag/3.42.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/PoxenStudio/mybooks/security/advisories/GHSA-3q85-5vj5-qx5v","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/PoxenStudio/mybooks/security/advisories/GHSA-3q85-5vj5-qx5v","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-52792","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-52792 — Algernon is a small self-contained pure-Go web server. Prior to 1.17.9, Algernon on Windows selects…","description":"Algernon is a small self-contained pure-Go web server. Prior to 1.17.9, Algernon on Windows selects a file handler in engine/handlers.go by calling filepath.Ext() without first rejecting NTFS-equivalent names such as x.lua::$DATA, x.lua., and x.lua . An unauthenticated client can append one of these…","indicators":{"cves":["CVE-2026-52792"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:17:09.667Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/xyproto/algernon/commit/a6b0724928a0c35a29640b18ad5bd547f5e2efa6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/xyproto/algernon/releases/tag/v1.17.9","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/xyproto/algernon/security/advisories/GHSA-mm6c-5j6x-hq8m","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/xyproto/algernon/security/advisories/GHSA-mm6c-5j6x-hq8m","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75949","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-75949 — Joomla Extension - cmsjunkie.com - Arbitrary file upload / deletion (path traversal) in J-BusinessDi…","description":"Joomla Extension - cmsjunkie.com -  Arbitrary file upload / deletion (path traversal) in J-BusinessDirectory < 6.2.3 - Upload/remove accepted a client-controlled root (_path_type could point at the component site/admin trees), did not enforce path containment, and used a weak extension check. CSRF t…","indicators":{"cves":["CVE-2026-75949"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:18:09.440Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://www.cmsjunkie.com/","label":"security@joomla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75950","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-75950 — Joomla Extension - cmsjunkie.com - Unauthenticated listing ownership takeover in J-BusinessDirectory…","description":"Joomla Extension - cmsjunkie.com - Unauthenticated listing ownership takeover in J-BusinessDirectory < 6.2.3 - Ownership could be changed using attacker-supplied company and user IDs, including for listings that already had an owner. 6.2.3 binds the action to the authenticated user and only allows u…","indicators":{"cves":["CVE-2026-75950"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:18:09.570Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://www.cmsjunkie.com/","label":"security@joomla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75951","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-75951 — Joomla Extension - cmsjunkie.com - Insecure Direct Object Reference (multiple frontend/API actions)…","description":"Joomla Extension - cmsjunkie.com - Insecure Direct Object Reference (multiple frontend/API actions) in J-BusinessDirectory < 6.2.3","indicators":{"cves":["CVE-2026-75951"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:18:09.693Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://www.cmsjunkie.com/","label":"security@joomla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75952","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-75952 — Joomla Extension - cmsjunkie.com - Cross-site request forgery in J-BusinessDirectory < 6.2.3 - Token…","description":"Joomla Extension - cmsjunkie.com -  Cross-site request forgery in J-BusinessDirectory < 6.2.3 - Tokens were missing on many AJAX/state-changing tasks: contact/quote forms, cart, bookmarks, uploads, messages, AI text generation, and several administrator actions (app install, demo-data wipe, cache/st…","indicators":{"cves":["CVE-2026-75952"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:18:09.813Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://www.cmsjunkie.com/","label":"security@joomla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75953","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-75953 — Joomla Extension - cmsjunkie.com - Open mail relay in J-BusinessDirectory < 6.2.3 - Recipient addres…","description":"Joomla Extension - cmsjunkie.com -  Open mail relay in J-BusinessDirectory < 6.2.3 - Recipient address was taken from the request (contact_id_offer / contact_id_event) instead of the server-side offer/event record, so mail could be sent to an arbitrary address.","indicators":{"cves":["CVE-2026-75953"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:18:09.940Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://www.cmsjunkie.com/","label":"security@joomla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75954","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-75954 — Joomla Extension - cmsjunkie.com - SQL injection in trips search in J-BusinessDirectory < 6.2.3 - Se…","description":"Joomla Extension - cmsjunkie.com -  SQL injection in trips search in J-BusinessDirectory < 6.2.3 - Search keywords and ORDER BY were concatenated into SQL. 6.2.3 quotes keywords and allow-lists the sort clause.","indicators":{"cves":["CVE-2026-75954"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:18:10.053Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://www.cmsjunkie.com/","label":"security@joomla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75955","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-75955 — Joomla Extension - cmsjunkie.com - Reflected XSS / XML injection in J-BusinessDirectory < 6.2.3 - co…","description":"Joomla Extension - cmsjunkie.com - Reflected XSS / XML injection in J-BusinessDirectory < 6.2.3 - companyName from the request was written unescaped into an XML attribute.","indicators":{"cves":["CVE-2026-75955"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:18:10.183Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://www.cmsjunkie.com/","label":"security@joomla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75956","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-75956 — Joomla Extension - cmsjunkie.com - DOS vector in pagination parameter handling in J-BusinessDirector…","description":"Joomla Extension - cmsjunkie.com - DOS vector in pagination parameter handling in J-BusinessDirectory < 6.2.3 - Pagination values were not strictly typed. Array/non-numeric values (for example limitstart[]) could trigger PHP type errors in arithmetic, and limit was not validated before use in list q…","indicators":{"cves":["CVE-2026-75956"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:18:10.313Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://www.cmsjunkie.com/","label":"security@joomla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76203","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-76203 — Incorrect Behavior Order: Validate Before Canonicalize in the report theme CSS sanitizer in maalfer…","description":"Incorrect Behavior Order: Validate Before Canonicalize in the report theme CSS sanitizer\nin maalfer Pentestify 1.2.0 through 2.3.2 allows an authenticated user to force outbound\nHTTP requests from other users' browsers, disclosing their IP address and User-Agent, via\nCSS hex escapes that reconstruct…","indicators":{"cves":["CVE-2026-76203"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:18:10.450Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/ccyl13/Pentestify/commit/1ed1aadadb02e959af470aac9958462048f7f5f5","label":"4daa8cea-433a-44bd-9456-53b127fc289a","domainType":"primary"},{"url":"https://secur0.com/en/cna/cve-list/cve-2026-76203-css-sanitizer-bypass-pentestify-report-themes","label":"4daa8cea-433a-44bd-9456-53b127fc289a","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18430","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-18430 — HumHub 1.18.4 contains a stored cross-site scripting vulnerability in the comment-deletion notificat…","description":"HumHub 1.18.4 contains a stored cross-site scripting vulnerability in the comment-deletion notification flow. A Space administrator can delete another user's comment, choose to notify the original author, and place HTML/JavaScript in the deletion reason.","indicators":{"cves":["CVE-2026-18430"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T16:17:06.463Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://fluidattacks.com/es/advisories/personajes","label":"help@fluidattacks.com","domainType":"other"},{"url":"https://github.com/humhub/humhub","label":"help@fluidattacks.com","domainType":"primary"},{"url":"https://github.com/humhub/humhub/pull/8365","label":"help@fluidattacks.com","domainType":"primary"},{"url":"https://fluidattacks.com/es/advisories/personajes","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19672","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-19672 — The tarfile module's tar and data extraction filters created directories outside the destination for…","description":"The tarfile module's tar and data\n extraction filters created directories outside the destination for \nmembers whose name leaves the destination and returns to it, such as ../evil/../dest/sub/file. The containment check used the resolved path, but intermediate directories were created from the name…","indicators":{"cves":["CVE-2026-19672"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T16:17:06.593Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/python/cpython/pull/156000","label":"cna@python.org","domainType":"primary"},{"url":"https://github.com/python/cpython/pull/156000","label":"cna@python.org","domainType":"primary"},{"url":"https://mail.python.org/archives/list/security-announce@python.org/thread/J2WT2ALRWEXQJOB3C7Q2HYWUXP3CINWO/","label":"cna@python.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-62672","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-62672 — Grav is a file-based Web platform. Prior to 2.0.4, Grav allowlists the regex_replace filter and func…","description":"Grav is a file-based Web platform. Prior to 2.0.4, Grav allowlists the regex_replace filter and function in system/config/security.yaml, and GravExtension::regexReplace() passes an editor-controlled pattern directly to preg_replace(). When security.twig_content.process_enabled is enabled, an authent…","indicators":{"cves":["CVE-2026-62672"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T16:18:20.000Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/getgrav/grav/commit/907116268ad4f48be7472c57f64981918578599a","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav/releases/tag/2.0.4","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-37f3-6p89-6qr9","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-37f3-6p89-6qr9","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-62673","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-62673 — Grav is a file-based Web platform. Prior to 2.0.4, the Grav .htaccess and webserver-configs/htaccess…","description":"Grav is a file-based Web platform. Prior to 2.0.4, the Grav .htaccess and webserver-configs/htaccess.txt security rules omit the Apache [NC] flag and therefore compare sensitive directory and file-extension patterns case-sensitively. On a case-insensitive filesystem, an unauthenticated requester can…","indicators":{"cves":["CVE-2026-62673"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T16:18:20.353Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/getgrav/grav/commit/8c9d1e7b6fd66ecea80a4bc3783fd41d36e22fb1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav/releases/tag/2.0.4","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-vwg3-w8w3-pc79","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-64850","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-64850 — Grav is a file-based Web platform. Prior to 2.0.7, Grav Blueprint::dynamicData() in system/src/Grav/…","description":"Grav is a file-based Web platform. Prior to 2.0.7, Grav Blueprint::dynamicData() in system/src/Grav/Common/Data/Blueprint.php sends an editor-controlled Class::method provider and arguments to call_user_func_array() without rejecting dangerous callback parameters. An account with admin.pages or api.…","indicators":{"cves":["CVE-2026-64850"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T16:18:39.760Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/getgrav/grav/commit/acffa34cbb0787fee87c609e0d6289e904fee33c","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav/releases/tag/2.0.7","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-fj2p-qj2f-74v5","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-fj2p-qj2f-74v5","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-64851","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-64851 — Grav Shortcode Core Plugin allows for the development shortcode plugins that utilize the common form…","description":"Grav Shortcode Core Plugin allows for the development shortcode plugins that utilize the common format utilized by WordPress and BBCode. Prior to 6.2.2, Grav Shortcode Core passes shortcode syntax through Security::detectXss() because it contains no literal less-than character, then ColorShortcode.p…","indicators":{"cves":["CVE-2026-64851"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T16:18:39.897Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/getgrav/grav-plugin-shortcode-core/commit/2a55eac8a2cc7f6c2d4923ab2fa7991039620597","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav-plugin-shortcode-core/releases/tag/6.2.2","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-q5fw-vpqc-fgph","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/getgrav/grav/security/advisories/GHSA-q5fw-vpqc-fgph","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-50173","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-50173 — Flow-Like is a platform for building end-to-end use cases. Prior to version 1.0.4, `GET /api/v1/apps…","description":"Flow-Like is a platform for building end-to-end use cases. Prior to version 1.0.4, `GET /api/v1/apps/{app_id}/invoke/presign` grants Azure Blob Storage SAS credentials with write and delete access to app content to any app member that has `ExecuteEvents`, even when that member lacks `ReadFiles` and…","indicators":{"cves":["CVE-2026-50173"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T17:18:57.250Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/Rheosoph/flow-like/security/advisories/GHSA-99w9-5gvv-4v78","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Rheosoph/flow-like/security/advisories/GHSA-99w9-5gvv-4v78","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2025-14600","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2025-14600 — An insecure deserialization vulnerability in vsDesk allows a remote attacker to gain unauthorized ad…","description":"An insecure deserialization vulnerability in vsDesk allows a remote attacker to gain unauthorized administrative access. By manipulating application configuration data, an attacker can force the system to authenticate against an arbitrary LDAP server and provision a new administrative account.\n\n\n\n\nA…","indicators":{"cves":["CVE-2025-14600"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T18:16:30.270Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/klsecservices/Advisories/blob/master/KLSA-00296-Admin-Account-Takeover-via-Path-Traversal-in-vsDesk.md","label":"vulnerability@kaspersky.com","domainType":"primary"},{"url":"https://vsdesk.ru/news/vyshla-novaya-versiya-140422","label":"vulnerability@kaspersky.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2025-14603","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2025-14603 — The application component processes user-supplied parameters insecurely, passing them into SQL queri…","description":"The application component processes user-supplied parameters insecurely, passing them into SQL queries. This can enable blind SQL injection, potentially exposing database contents or causing the application to become unresponsive. \nApply patch from vendor  https://vsdesk.ru/ . Versions 14.0101 and o…","indicators":{"cves":["CVE-2025-14603"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T18:16:31.087Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/klsecservices/Advisories/blob/master/KLSA-00295-Blind-SQLi-via-User-Input-in-vsDesk.md","label":"vulnerability@kaspersky.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-55191","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-55191 — FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.27.0, FreeRDP clients th…","description":"FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.27.0, FreeRDP clients that negotiate RDPGFX AVC444 with an H.264 decoder backend calculate the intermediate YUV444 allocation size in libfreerdp/codec/h264.c with 32-bit multiplication in avc444_ensure_buffer. A malicious RD…","indicators":{"cves":["CVE-2026-55191"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T18:16:44.427Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/FreeRDP/FreeRDP/commit/97f40b9e766af375f4e41ac6a3f4397d708d249c","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeRDP/FreeRDP/pull/12873","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeRDP/FreeRDP/releases/tag/3.27.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-vx73-w5q6-7jqr","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-vx73-w5q6-7jqr","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-55192","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-55192 — FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.27.0, FreeRDP H.264 deco…","description":"FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.27.0, FreeRDP H.264 decoder backends can return YUV planes sized from the bitstream without comparing the decoded width and height to the RDPGFX surface dimensions used to validate region rectangles. A malicious RDP server c…","indicators":{"cves":["CVE-2026-55192"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T18:16:44.580Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/FreeRDP/FreeRDP/commit/0cd45b70bb1fe6befd258ff64c46461947e99adb","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeRDP/FreeRDP/pull/12873","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeRDP/FreeRDP/releases/tag/3.27.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-3mmf-qh4f-frm6","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-55193","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-55193 — FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.27.0, FreeRDP clients us…","description":"FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.27.0, FreeRDP clients using TS Gateway accept a server-controlled max_xmit_frag value in libfreerdp/core/gateway/rpc_bind.c without bounding it to the 4088-byte ReceiveFragment allocation. A malicious gateway can advertise 6…","indicators":{"cves":["CVE-2026-55193"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T18:16:44.720Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/FreeRDP/FreeRDP/commit/a863ef1cf1cdabf9019280e5658f806e73bb50e8","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeRDP/FreeRDP/pull/12873","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeRDP/FreeRDP/releases/tag/3.27.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-7rp4-66mc-j9vx","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-55194","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-55194 — FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.27.0, rpc_client_recv_fr…","description":"FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.27.0, rpc_client_recv_fragment in libfreerdp/core/gateway/rpc_client.c ensures the response reassembly stream capacity using only the server-declared alloc_hint rather than the actual StubLength about to be written. A malici…","indicators":{"cves":["CVE-2026-55194"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T18:16:44.857Z","fetchedAt":"2026-08-21T03:01:29.083Z","references":[{"url":"https://github.com/FreeRDP/FreeRDP/commit/9f2da52c2341cc14a96ad12e69c5b83d0bcd8b5a","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeRDP/FreeRDP/pull/12873","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeRDP/FreeRDP/releases/tag/3.27.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-9gxm-3mf5-f5cx","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-55648","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-55648 — FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.27.0, freerdp_image_copy…","description":"FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.27.0, freerdp_image_copy_from_icon_data in libfreerdp/codec/color.c calculates nWidth multiplied by nHeight multiplied by FreeRDPGetBytesPerPixel(format) in 32-bit arithmetic. A malicious RDP server can send a RAIL TS_ICON_I…","indicators":{"cves":["CVE-2026-55648"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T18:16:45.177Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://github.com/FreeRDP/FreeRDP/commit/e4ae473da2926724d9b6329778797a3bdea79eb3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeRDP/FreeRDP/pull/12877","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeRDP/FreeRDP/releases/tag/3.27.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-5c5v-f78v-h2f6","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-63633","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-63633 — FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.28.0, freerdp_dsp_decode…","description":"FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.28.0, freerdp_dsp_decode_opus in libfreerdp/codec/dsp.c calls Stream_EnsureRemainingCapacity on context->common.buffer even though opus_decode writes decoded PCM into the caller-supplied out stream. A malicious RDP server th…","indicators":{"cves":["CVE-2026-63633"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T18:17:10.017Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://github.com/FreeRDP/FreeRDP/commit/0ed1f95d36913581cf31124f94eb5843d4263eae","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeRDP/FreeRDP/pull/12993","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeRDP/FreeRDP/releases/tag/3.28.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-72j9-356v-88xq","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-63652","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-63652 — FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.28.0, rdpsnd_server_recv…","description":"FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.28.0, rdpsnd_server_recv_formats in channels/rdpsnd/server/rdpsnd_main.c frees context->client_formats on a malformed Client Audio Formats PDU without clearing the owning pointer or num_client_formats. An authenticated RDP c…","indicators":{"cves":["CVE-2026-63652"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T18:17:10.167Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://github.com/FreeRDP/FreeRDP/commit/caf653c0ba1c75ec8f298d1baa59770102a5d14c","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeRDP/FreeRDP/pull/12993","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeRDP/FreeRDP/releases/tag/3.28.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-9g22-w2gr-vcmp","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-9g22-w2gr-vcmp","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-73541","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-73541 — Allocation of Resources Without Limits or Throttling in ZenHive mpp allows an unauthenticated remote…","description":"Allocation of Resources Without Limits or Throttling in ZenHive mpp allows an unauthenticated remote client to drain the fee-payer wallet through concurrent sponsored payments, denying service to legitimate payers once it is empty.\n\nMPP.Methods.Tempo.FeePayerPolicy enforces its ceilings (max_gas, ma…","indicators":{"cves":["CVE-2026-73541"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T18:17:25.627Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://cna.erlef.org/cves/CVE-2026-73541.html","label":"6b3ad84c-e1a6-4bf7-a703-f496b71e49db","domainType":"other"},{"url":"https://github.com/ZenHive/mpp/commit/ddc46868fba57ccebb567c04709812b466123076","label":"6b3ad84c-e1a6-4bf7-a703-f496b71e49db","domainType":"primary"},{"url":"https://github.com/ZenHive/mpp/security/advisories/GHSA-j4j7-7xpr-c7cr","label":"6b3ad84c-e1a6-4bf7-a703-f496b71e49db","domainType":"primary"},{"url":"https://osv.dev/vulnerability/EEF-CVE-2026-73541","label":"6b3ad84c-e1a6-4bf7-a703-f496b71e49db","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19198","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-19198 — Akaunting 3.1.21 contains an authenticated improper authorization vulnerability in the common BulkAc…","description":"Akaunting 3.1.21 contains an authenticated improper authorization vulnerability in the common BulkActions dispatcher.This issue affects Akaunting: 3.1.21.","indicators":{"cves":["CVE-2026-19198"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T19:17:12.383Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://fluidattacks.com/advisories/badbo","label":"help@fluidattacks.com","domainType":"other"},{"url":"https://github.com/akaunting/akaunting","label":"help@fluidattacks.com","domainType":"primary"},{"url":"https://github.com/akaunting/akaunting/releases/tag/3.2.1","label":"help@fluidattacks.com","domainType":"primary"},{"url":"https://fluidattacks.com/advisories/badbo","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-55483","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-55483 — Snipe-IT is an IT asset/license management system. Prior to 8.6.0, an authenticated user with users.…","description":"Snipe-IT is an IT asset/license management system. Prior to 8.6.0, an authenticated user with users.create permission can submit the admin permission while creating a user because store() in app/Http/Controllers/Users/UsersController.php strips superuser permission but does not strip admin permissio…","indicators":{"cves":["CVE-2026-55483"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T19:17:20.123Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://github.com/grokability/snipe-it/commit/aea3877718158cc2a10c2dde4597b1f439f5f6cb","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/grokability/snipe-it/releases/tag/v8.6.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/grokability/snipe-it/security/advisories/GHSA-hf68-g98v-wp9g","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-55643","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-55643 — Snipe-IT is an IT asset/license management system. Prior to 8.6.3, a company-scoped user in FMCS flo…","description":"Snipe-IT is an IT asset/license management system. Prior to 8.6.3, a company-scoped user in FMCS floater mode can access users whose company_id is null because broad API queries and bulk web actions do not consistently apply isCurrentUserHasAccess. The /api/v1/users and /api/v1/users/{id}/licenses e…","indicators":{"cves":["CVE-2026-55643"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T19:17:20.533Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://github.com/grokability/snipe-it/commit/fbe05a8df4742729a9b0756c016d45f48246cc7b","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/grokability/snipe-it/releases/tag/v8.6.3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/grokability/snipe-it/security/advisories/GHSA-c6w2-j4wq-mvwg","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-55694","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-55694 — Snipe-IT is an IT asset/license management system. Prior to 8.6.3, a restricted user can request /ap…","description":"Snipe-IT is an IT asset/license management system. Prior to 8.6.3, a restricted user can request /api/v1/users/{target_id}/eulas to obtain another user's randomized EULA filename and then download the signed file through /account/stored-eula-file/{filename}. The primary /stored-eula-file/{filename}…","indicators":{"cves":["CVE-2026-55694"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T19:17:20.680Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://github.com/grokability/snipe-it/commit/f15d78621b003be30ac114ba68626683894935ef","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/grokability/snipe-it/releases/tag/v8.6.3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/grokability/snipe-it/security/advisories/GHSA-3hgv-jr5j-cg9x","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/grokability/snipe-it/security/advisories/GHSA-3hgv-jr5j-cg9x","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-61807","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-61807 — Snipe-IT is an IT asset/license management system. Prior to 8.6.2, a stored manufacturer or supplier…","description":"Snipe-IT is an IT asset/license management system. Prior to 8.6.2, a stored manufacturer or supplier name passed as the table component $name becomes data-selected-count-id in resources/views/partials/bootstrap-table.blade.php. Client-side code reads the browser-decoded countId, uses it as a selecto…","indicators":{"cves":["CVE-2026-61807"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T19:17:21.433Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://github.com/grokability/snipe-it/commit/d12ad3d53869443b96b663ba3ce2673ef343da71","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/grokability/snipe-it/releases/tag/v8.6.2","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/grokability/snipe-it/security/advisories/GHSA-c8qc-wf67-342w","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75618","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-75618 — Tapo C100/C101 V5 contains a null pointer dereference vulnerability in the RTSP service. An attacker…","description":"Tapo C100/C101 V5 contains a null pointer dereference vulnerability in the RTSP service. An attacker on the local network can send specially crafted requests that cause the service to dereference an invalid pointer, resulting in a service crash and device reboot. Successful exploitation can disrupt…","indicators":{"cves":["CVE-2026-75618"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T19:17:24.630Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://www.tp-link.com/en/support/download/tapo-c100/#Firmware-Release-Notes","label":"f23511db-6c3e-4e32-a477-6aa17d310630","domainType":"other"},{"url":"https://www.tp-link.com/us/support/download/tapo-c100/#Firmware-Release-Notes","label":"f23511db-6c3e-4e32-a477-6aa17d310630","domainType":"other"},{"url":"https://www.tp-link.com/us/support/download/tapo-c101/#Firmware-Release-Notes","label":"f23511db-6c3e-4e32-a477-6aa17d310630","domainType":"other"},{"url":"https://www.tp-link.com/us/support/faq/5251/","label":"f23511db-6c3e-4e32-a477-6aa17d310630","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75619","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-75619 — Tapo C100/C101 V5 contains a heap-based buffer overflow vulnerability in the RTSP service. An authen…","description":"Tapo\nC100/C101 V5 contains a heap-based buffer overflow vulnerability in the RTSP\nservice. An authenticated attacker on the local network can send specially\ncrafted RTSP frame data containing oversized length values, resulting in\nout-of-bounds heap writes. \n\n\n\n\n\nSuccessful\nexploitation can crash the…","indicators":{"cves":["CVE-2026-75619"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T19:17:24.760Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://www.tp-link.com/en/support/download/tapo-c100/#Firmware-Release-Notes","label":"f23511db-6c3e-4e32-a477-6aa17d310630","domainType":"other"},{"url":"https://www.tp-link.com/us/support/download/tapo-c100/#Firmware-Release-Notes","label":"f23511db-6c3e-4e32-a477-6aa17d310630","domainType":"other"},{"url":"https://www.tp-link.com/us/support/download/tapo-c101/#Firmware-Release-Notes","label":"f23511db-6c3e-4e32-a477-6aa17d310630","domainType":"other"},{"url":"https://www.tp-link.com/us/support/faq/5251/","label":"f23511db-6c3e-4e32-a477-6aa17d310630","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-17590","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-17590 — Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-32475. Reason:…","description":"Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-32475. Reason: This candidate is a reservation duplicate of CVE-2026-32475. Notes: All CVE users should reference CVE-2026-32475 instead of this candidate. All references and descriptions in this candidate have been…","indicators":{"cves":["CVE-2026-17590"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:13.273Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[],"feedLabel":null},{"id":"nvd-CVE-2026-19505","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-19505 — Improper cryptographic signature verification in `jst_functions.c` in RDK-B WebUI `rdkb-2025q4-kirks…","description":"Improper cryptographic signature verification in `jst_functions.c` in RDK-B WebUI `rdkb-2025q4-kirkstone.04.10.26` allows a remote attacker to bypass authentication and obtain administrative access via a forged JWT containing an invalid RSA signature.","indicators":{"cves":["CVE-2026-19505"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:14.150Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://developer.rdkcentral.com/documentation/documentation/rdk_broadband_documentation/components/webui/","label":"cret@cert.org","domainType":"other"},{"url":"https://whitehats.pwr.edu.pl//blog/2026-08-19-multiple-vulnerabilities-in-rdkb/","label":"cret@cert.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19506","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-19506 — Race condition in `check.jst` in RDK-B WebUI `rdkb-2025q4-kirkstone.04.10.26` allows a remote attack…","description":"Race condition in `check.jst` in RDK-B WebUI `rdkb-2025q4-kirkstone.04.10.26` allows a remote attacker to gain unauthorized access via concurrent authentication requests that exploit shared authentication state.","indicators":{"cves":["CVE-2026-19506"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:14.293Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://developer.rdkcentral.com/documentation/documentation/rdk_broadband_documentation/components/webui/","label":"cret@cert.org","domainType":"other"},{"url":"https://whitehats.pwr.edu.pl//blog/2026-08-19-multiple-vulnerabilities-in-rdkb/","label":"cret@cert.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19507","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-19507 — Uncontrolled resource consumption in `check.jst` in RDK-B WebUI `rdkb-2025q4-kirkstone.04.10.26` all…","description":"Uncontrolled resource consumption in `check.jst` in RDK-B WebUI `rdkb-2025q4-kirkstone.04.10.26` allows a remote unauthenticated attacker to cause denial of service via excessively large password values.","indicators":{"cves":["CVE-2026-19507"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:14.513Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://developer.rdkcentral.com/documentation/documentation/rdk_broadband_documentation/components/webui/","label":"cret@cert.org","domainType":"other"},{"url":"https://whitehats.pwr.edu.pl//blog/2026-08-19-multiple-vulnerabilities-in-rdkb/","label":"cret@cert.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19508","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-19508 — Heap-based buffer overflow in the multipart form-data parser in `jst_post.c` in RDK-B WebUI `rdkb-20…","description":"Heap-based buffer overflow in the multipart form-data parser in `jst_post.c` in RDK-B WebUI `rdkb-2025q4-kirkstone.04.10.26` allows a remote unauthenticated attacker to cause memory corruption and denial of service, and potentially execute arbitrary code, via a crafted multipart/form-data request.","indicators":{"cves":["CVE-2026-19508"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:14.647Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://developer.rdkcentral.com/documentation/documentation/rdk_broadband_documentation/components/webui/","label":"cret@cert.org","domainType":"other"},{"url":"https://whitehats.pwr.edu.pl//blog/2026-08-19-multiple-vulnerabilities-in-rdkb/","label":"cret@cert.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19509","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-19509 — Improper input validation in `ajaxSet_wireless_network_configuration.jst` in RDK-B WebUI `rdkb-2025q…","description":"Improper input validation in `ajaxSet_wireless_network_configuration.jst` in RDK-B WebUI `rdkb-2025q4-kirkstone.04.10.26` allows an authenticated attacker to cause denial of service via a crafted `ssid_number` parameter.","indicators":{"cves":["CVE-2026-19509"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:14.770Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://developer.rdkcentral.com/documentation/documentation/rdk_broadband_documentation/components/webui/","label":"cret@cert.org","domainType":"other"},{"url":"https://whitehats.pwr.edu.pl//blog/2026-08-19-multiple-vulnerabilities-in-rdkb/","label":"cret@cert.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-54742","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-54742 — Lemmy is a link aggregator and forum for the fediverse. From 0.19.18 until 0.19.19 and 1.0.0-alpha.2…","description":"Lemmy is a link aggregator and forum for the fediverse. From 0.19.18 until 0.19.19 and 1.0.0-alpha.20, a community moderator can feature or unfeature posts in other communities through federated CollectionAdd and CollectionRemove activities using CollectionType::Featured. After verify_mod_action aut…","indicators":{"cves":["CVE-2026-54742"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:17.093Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://github.com/LemmyNet/lemmy/commit/108d78c592cc88bac2b0bf52ca6631be54f6fb23","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/LemmyNet/lemmy/commit/abe256243822526dcd4bca857f7c0adeb49944f5","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/LemmyNet/lemmy/pull/6500","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/LemmyNet/lemmy/pull/6501","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/LemmyNet/lemmy/releases/tag/0.19.19","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/LemmyNet/lemmy/releases/tag/1.0.0-alpha.20","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/LemmyNet/lemmy/security/advisories/GHSA-gwfj-h8r7-792v","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://join-lemmy.org/news/2026-06-09_-_Lemmy_Release_v0.19.19","label":"security-advisories@github.com","domainType":"other"},{"url":"https://github.com/LemmyNet/lemmy/security/advisories/GHSA-gwfj-h8r7-792v","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-55090","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-55090 — Etherpad is a real-time collaborative editor. Prior to 3.3.0, getHTMLFromAtext in src/node/utils/Exp…","description":"Etherpad is a real-time collaborative editor. Prior to 3.3.0, getHTMLFromAtext in src/node/utils/ExportHtml.ts interpolates values from the exportHtmlAdditionalTagsWithData plugin hook into span data attributes without HTML attribute escaping. A pad editor can place an attacker-controlled value into…","indicators":{"cves":["CVE-2026-55090"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:18.233Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://github.com/ether/etherpad/commit/86c56cf827dd6e5ff1b6cd3760f87adc47f58bb1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ether/etherpad/pull/7905","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ether/etherpad/releases/tag/v3.3.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/ether/etherpad/security/advisories/GHSA-2jp7-wwpg-3p9w","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-61711","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-61711 — BuildKit is a toolkit for converting source code to build artifacts in an efficient, expressive and…","description":"BuildKit is a toolkit for converting source code to build artifacts in an efficient, expressive and repeatable manner. Prior to 0.31.1, a custom frontend could place an invalid SecurityMode value in a crafted build request, and executor/oci/spec_linux.go treated the unsupported value as a non-sandbo…","indicators":{"cves":["CVE-2026-61711","CVE-2026-61712","CVE-2026-75593"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:19.567Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://github.com/moby/buildkit/commit/3ea6dd0ce7d269cdb8aa23348718e2c1bf64f109","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/moby/buildkit/commit/64bbec89ca43dd95b2853edeca240c33c6729910","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/moby/buildkit/releases/tag/v0.31.1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/moby/buildkit/security/advisories/GHSA-7236-3392-c5c6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/moby/buildkit/commit/408266e4ba254cecabedaacdad6905de4d2a75a1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/moby/buildkit/commit/69a3924648e485acb3faad3081e03a8554431255","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/moby/buildkit/security/advisories/GHSA-72x6-4j93-7w86","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/moby/buildkit/releases/tag/v0.31.2","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/moby/buildkit/security/advisories/GHSA-g2h8-426c-7976","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-63188","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-63188 — Logto is the modern, open-source auth infrastructure for SaaS and AI apps. Prior to 0.3.9, the Logto…","description":"Logto is the modern, open-source auth infrastructure for SaaS and AI apps. Prior to 0.3.9, the Logto Tunnel npm package enabled createStaticFileProxy from packages/tunnel/src/commands/tunnel/index.ts and passed request.url from static asset requests through packages/tunnel/src/commands/tunnel/utils.…","indicators":{"cves":["CVE-2026-63188"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:20.230Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://github.com/logto-io/logto/commit/5686815955534f803d3d50738259efd0f741e62c","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/logto-io/logto/pull/9113","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/logto-io/logto/releases/tag/@logto/tunnel@0.3.9","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/logto-io/logto/security/advisories/GHSA-rxjr-6c9q-h67x","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-68560","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-68560 — Wekan is open source kanban built with Meteor. Prior to 9.75, models/fileValidation.js interpolated…","description":"Wekan is open source kanban built with Meteor. Prior to 9.75, models/fileValidation.js interpolated the uploaded fileObj.path into the administrator-configured externalCommandLine at its {file} placeholder and executed the result through asyncExec, which is promisify(exec) and invokes `/bin/sh -c`.…","indicators":{"cves":["CVE-2026-68560"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:21.250Z","fetchedAt":"2026-08-21T03:01:29.084Z","references":[{"url":"https://github.com/wekan/wekan/commit/1a222c4477e68c76fd6a866954b535fba0a78d05","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wekan/wekan/releases/tag/v9.75","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/wekan/wekan/security/advisories/GHSA-x3xm-pxrv-jg7p","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75112","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-75112 — A security issue exists within OTTO® Fleet Manager. The vulnerability stems from the use of an insuf…","description":"A security issue exists within OTTO® Fleet Manager. The vulnerability stems from the use of an insufficient work factor in the bcrypt password hashing implementation, which could reduce the computational cost required for an attacker to perform offline brute-force attacks against stored password has…","indicators":{"cves":["CVE-2026-75112"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:23.037Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://www.rockwellautomation.com/en-us/trust-center/security-advisories/advisory.SD1791.html","label":"PSIRT@rockwellautomation.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-76647","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-76647 — Leantime JSON-RPC API through version 3.9.0 contains a missing authorization vulnerability in the JS…","description":"Leantime JSON-RPC API through version 3.9.0 contains a missing authorization vulnerability in the JSON-RPC dispatcher in app/Domain/Api/Controllers/Jsonrpc.php. The dispatcher does not enforce authorization before invoking service-layer methods, allowing an authenticated user to call methods or act…","indicators":{"cves":["CVE-2026-76647"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:17:24.013Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://leantime.io/unlocking-leantimes-power-a-guide-to-the-json-rpc-api/","label":"cret@cert.org","domainType":"other"},{"url":"https://vokecyber.com/blog/leantime-jsonrpc-editown-account-takeover","label":"cret@cert.org","domainType":"other"},{"url":"https://vokecyber.com/research/leantime-jsonrpc-editown-account-takeover","label":"cret@cert.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-54741","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-54741 — Lemmy is a link aggregator and forum for the fediverse. Prior to 0.19.19 and 1.0.0-alpha.18, Lemmy b…","description":"Lemmy is a link aggregator and forum for the fediverse. Prior to 0.19.19 and 1.0.0-alpha.18, Lemmy blocks new private messages from a sender after the recipient blocks that sender, but the edit path skips the same block check. create_private_message checks the recipient's block list with PersonActio…","indicators":{"cves":["CVE-2026-54741"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T21:16:58.510Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://github.com/LemmyNet/lemmy/commit/051b317c9d14b91972bb372c67f319d6900beb93","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/LemmyNet/lemmy/commit/2d169d630b86b9351e4b1dca451214b741f46150","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/LemmyNet/lemmy/pull/6472","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/LemmyNet/lemmy/pull/6476","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/LemmyNet/lemmy/releases/tag/0.19.19","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/LemmyNet/lemmy/releases/tag/1.0.0-alpha.18","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/LemmyNet/lemmy/security/advisories/GHSA-46g9-847m-qf8r","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/LemmyNet/lemmy/security/advisories/GHSA-46g9-847m-qf8r","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-54743","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-54743 — Lemmy is a link aggregator and forum for the fediverse. Prior to lemmy-ui 0.19.19-beta.1, LemmyNet/l…","description":"Lemmy is a link aggregator and forum for the fediverse. Prior to lemmy-ui 0.19.19-beta.1, LemmyNet/lemmy-ui renders Markdown in src/shared/markdown.ts for post bodies, comment bodies, private messages, and community and site sidebars through mdToHtml, which returns a raw __html object that Inferno i…","indicators":{"cves":["CVE-2026-54743"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T21:16:58.657Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://github.com/LemmyNet/lemmy-ui/commit/81a3fe07f2a5acc11188320534aa6bf937ebf7ff","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/LemmyNet/lemmy-ui/pull/4213","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/LemmyNet/lemmy/releases/tag/0.19.19-beta.1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/LemmyNet/lemmy/security/advisories/GHSA-2g66-9fr3-ppwj","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-61556","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-61556 — LiquidJS is a Shopify / GitHub Pages compatible template engine in pure JavaScript. From 10.26.0 unt…","description":"LiquidJS is a Shopify / GitHub Pages compatible template engine in pure JavaScript. From 10.26.0 until 10.27.1, the strip_html filter in src/filters/html.ts can enter an infinite loop when an input string contains <, includes at least one preceding character, and has no later >. In strip_html, the s…","indicators":{"cves":["CVE-2026-61556"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T21:17:03.633Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://github.com/harttle/liquidjs/commit/5c3522f33928aae66f0fe85c36e1d9015c768fe2","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/harttle/liquidjs/pull/917","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/harttle/liquidjs/releases/tag/v10.27.1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/harttle/liquidjs/security/advisories/GHSA-m7fp-h3p4-hr49","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-68554","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-68554 — Coturn is a free open source implementation of TURN and STUN Server. Prior to 4.15.0, an on-path att…","description":"Coturn is a free open source implementation of TURN and STUN Server. Prior to 4.15.0, an on-path attacker can append attributes after MESSAGE-INTEGRITY to an authenticated STUN request on plain UDP or TCP, adjust the STUN header length, and recompute the unkeyed FINGERPRINT while the original HMAC r…","indicators":{"cves":["CVE-2026-68554"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T21:17:28.310Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://github.com/coturn/coturn/commit/ab762f334f511ea37ab4b703a47d5d683a5be978","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/coturn/coturn/releases/tag/4.15.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/coturn/coturn/security/advisories/GHSA-5538-7cxj-5jcc","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/coturn/coturn/security/advisories/GHSA-5538-7cxj-5jcc","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75595","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-75595 — Netty is an asynchronous, event-driven network application framework. Prior to 4.1.137.Fina and 4.2.…","description":"Netty is an asynchronous, event-driven network application framework. Prior to 4.1.137.Fina and 4.2.17.Final, io.netty.handler.ssl.SslClientHelloHandler#decode checks the wrong offset before reading the four-byte TLS handshake header, so a ClientHello whose handshake header spans records can cause a…","indicators":{"cves":["CVE-2026-75595"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T21:17:37.563Z","fetchedAt":"2026-08-21T03:01:29.085Z","references":[{"url":"https://github.com/netty/netty/commit/1b5abc6443b63726c72cdd285af2feb7ddbb8ff7","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/netty/netty/commit/9e0519239108a69b7e9bbc5e9182ee139a0d7961","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/netty/netty/pull/17213","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/netty/netty/pull/17217","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/netty/netty/releases/tag/netty-4.1.137.Final","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/netty/netty/releases/tag/netty-4.2.17.Final","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/netty/netty/security/advisories/GHSA-c4c3-7fpv-j4q5","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-76878","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-76878 — In OpenStack Aodh before 22.0.1, the alarm list API bypasses project scoping when the all_projects q…","description":"In OpenStack Aodh before 22.0.1, the alarm list API bypasses project scoping when the all_projects query parameter is set to false. The API checks for the presence of the all_projects key rather than its value; a true value enforces the administrator-only policy, but a false value removes the key an…","indicators":{"cves":["CVE-2026-76878"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T22:17:28.310Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://launchpad.net/bugs/2161276","label":"cve@mitre.org","domainType":"other"},{"url":"https://launchpad.net/bugs/2161771","label":"cve@mitre.org","domainType":"other"},{"url":"https://lists.openstack.org/archives/list/openstack-announce@lists.openstack.org/thread/O6PKAUNMNZP6FRHLUUGBYELCRBEPB52B/","label":"cve@mitre.org","domainType":"other"},{"url":"https://security.openstack.org/ossa/OSSA-2026-036.html","label":"cve@mitre.org","domainType":"other"},{"url":"https://www.openwall.com/lists/oss-security/2026/08/19/5","label":"cve@mitre.org","domainType":"other"},{"url":"http://www.openwall.com/lists/oss-security/2026/08/20/21","label":"af854a3a-2127-422b-91ae-364da2661108","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-8619","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-8619 — An unauthenticated denial-of-service vulnerability was identified in TP-Link TL-MR100 v3.2, TL-MR150…","description":"An\nunauthenticated denial-of-service vulnerability was identified in TP-Link TL-MR100 v3.2, TL-MR150 v3.2, TL-MR6400 v8.0 and Archer MR600 v2, due to improper handling of exceptional request conditions\nthat may lead to a NULL pointer dereference. \nA remote attacker on an adjacent network can send a…","indicators":{"cves":["CVE-2026-8619"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T00:16:53.157Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://www.tp-link.com/en/support/download/archer-mr600/v2/#Firmware","label":"f23511db-6c3e-4e32-a477-6aa17d310630","domainType":"other"},{"url":"https://www.tp-link.com/en/support/download/tl-mr100/v3.20/#Firmware","label":"f23511db-6c3e-4e32-a477-6aa17d310630","domainType":"other"},{"url":"https://www.tp-link.com/en/support/download/tl-mr150/v3.20/#Firmware","label":"f23511db-6c3e-4e32-a477-6aa17d310630","domainType":"other"},{"url":"https://www.tp-link.com/en/support/download/tl-mr6400/v8/#Firmware","label":"f23511db-6c3e-4e32-a477-6aa17d310630","domainType":"other"},{"url":"https://www.tp-link.com/us/support/faq/5253/","label":"f23511db-6c3e-4e32-a477-6aa17d310630","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75628","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-75628 — Punk::OAuth2 versions before 0.03 for Perl allow an attacker-chosen off-site redirect after login be…","description":"Punk::OAuth2 versions before 0.03 for Perl allow an attacker-chosen off-site redirect after login because same_origin_path accepts a backslash or tab in the return parameter.\n\noauth2_login reads the return parameter from the initiation request, runs same_origin_path over it, and stores the survivor…","indicators":{"cves":["CVE-2026-75628"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T01:16:53.803Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://datatracker.ietf.org/doc/html/rfc9700#section-4.11.1","label":"9b29abf9-4ab0-4765-b253-1875cd9b441e","domainType":"other"},{"url":"https://metacpan.org/release/LNATION/Punk-OAuth2-0.02/source/include/pox/pox_util.h#L94","label":"9b29abf9-4ab0-4765-b253-1875cd9b441e","domainType":"other"},{"url":"https://metacpan.org/release/LNATION/Punk-OAuth2-0.03/changes","label":"9b29abf9-4ab0-4765-b253-1875cd9b441e","domainType":"other"},{"url":"https://url.spec.whatwg.org/#concept-basic-url-parser","label":"9b29abf9-4ab0-4765-b253-1875cd9b441e","domainType":"other"},{"url":"https://url.spec.whatwg.org/#relative-slash-state","label":"9b29abf9-4ab0-4765-b253-1875cd9b441e","domainType":"other"},{"url":"http://www.openwall.com/lists/oss-security/2026/08/20/1","label":"af854a3a-2127-422b-91ae-364da2661108","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2025-14602","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2025-14602 — The application generates uploaded file names using a weak and predictable method based on the reque…","description":"The application generates uploaded file names using a weak and predictable method based on the request timestamp. This allows a remote attacker to accurately guess or brute-force the generated filename within a short time window. An attacker can successfully locate and access uploaded files, which c…","indicators":{"cves":["CVE-2025-14602"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T07:16:30.623Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://github.com/klsecservices/Advisories/blob/master/KLSA-00294-Weak-File-Name-Generation-in-vsDesk.md","label":"vulnerability@kaspersky.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-14163","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-14163 — In affected versions of Octopus Server under certain circumstances it is possible for sensitive vari…","description":"In affected versions of Octopus Server under certain circumstances it is possible for sensitive variables to be printed in the deployment variable snapshot in clear-text.","indicators":{"cves":["CVE-2026-14163"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T07:16:32.250Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://advisories.octopus.com/post/2026/sa2026-07/","label":"security@octopus.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-71368","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-71368 — F-RevoCRM contains a cross-site scripting vulnerability. If a user views a crafted page while logged…","description":"F-RevoCRM contains a cross-site scripting vulnerability. If a user views a crafted page while logged in to the affected product, unintended operations may be performed.","indicators":{"cves":["CVE-2026-71368"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T07:16:32.400Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://f-revocrm.jp/2026/08/47374/","label":"vultures@jpcert.or.jp","domainType":"other"},{"url":"https://jvn.jp/en/jp/JVN58692577/","label":"vultures@jpcert.or.jp","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2025-14601","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2025-14601 — An OS command injection vulnerability in vsDesk allows an authenticated attacker with administrative…","description":"An OS command injection vulnerability in vsDesk allows an authenticated attacker with administrative privileges to execute arbitrary operating system commands due to insufficient input filtering. An attacker can exploit this flaw to disrupt web server operations, expose sensitive data, or potentiall…","indicators":{"cves":["CVE-2025-14601"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T08:16:46.273Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://github.com/klsecservices/Advisories/blob/master/KLSA-00343-vsDesk-Task-Scheduler-OS-Command-Injection.md","label":"vulnerability@kaspersky.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-75948","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-75948 — Joomla Extension - icagenda.com - Authenticated Stored XSS in iCagenda 4.0.8 to 4.0.12 - The fronten…","description":"Joomla Extension - icagenda.com -  Authenticated Stored XSS in iCagenda 4.0.8 to 4.0.12 - The frontend \"Submit an Event\" form stores the `image` and `file` fields as raw strings with no output-side HTML-attribute escaping.","indicators":{"cves":["CVE-2026-75948"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T08:16:47.640Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://www.icagenda.com/","label":"security@joomla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76564","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-76564 — Joomla Extension - phoca.cz - Stored XSS via User-Agent header in Admin Order View in Phoca Cart 5.0…","description":"Joomla Extension - phoca.cz -  Stored XSS via User-Agent header in Admin Order View in Phoca Cart 5.0.0-6.1.7","indicators":{"cves":["CVE-2026-76564"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T08:16:47.770Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://www.phoca.cz/phocacart","label":"security@joomla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76565","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-76565 — Joomla Extension - phoca.cz - Reflected XSS via price_from & price_to filter parameters in Phoca Car…","description":"Joomla Extension - phoca.cz - Reflected XSS via price_from & price_to filter parameters in Phoca Cart 5.0.0-6.1.7","indicators":{"cves":["CVE-2026-76565"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T08:16:47.900Z","fetchedAt":"2026-08-21T03:01:29.086Z","references":[{"url":"https://www.phoca.cz/phocacart","label":"security@joomla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76569","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-76569 — Joomla Extension - phoca.cz - Reflected XSS via the search GET parameter in Phoca Download 5.0.0-6.1…","description":"Joomla Extension - phoca.cz - Reflected XSS via the search GET parameter in Phoca Download 5.0.0-6.1.4","indicators":{"cves":["CVE-2026-76569"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T08:16:48.040Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://www.phoca.cz/phocacart","label":"security@joomla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76610","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-76610 — Joomla Extension - yootheme.com - Unauthenticated tag modifications in Zoo < 4.1.65 - The comment co…","description":"Joomla Extension - yootheme.com - Unauthenticated tag modifications in Zoo < 4.1.65 - The comment controller endpoint lacked ACL checks, allowing unauthorized tag modifications by unauthenticated users.","indicators":{"cves":["CVE-2026-76610"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T09:16:48.037Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://www.yootheme.com/","label":"security@joomla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77026","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-77026 — Joomla Extension - tassos.gr - Client-controlled validation bypass in Convert Forms extension < 5.2.…","description":"Joomla Extension - tassos.gr - Client-controlled validation bypass in Convert Forms extension < 5.2.5 - The front-end Submissions view did not enforce access control. An unauthenticated visitor could therefore list a form's submissions.","indicators":{"cves":["CVE-2026-77026"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T11:16:21.947Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://www.tassos.gr/joomla-extensions/convert-forms","label":"security@joomla.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77069","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-77069 — n8n before 1.123.69, 2.33.4, and 2.34.1 contains an SSRF protection bypass in the OAuth2 credential…","description":"n8n before 1.123.69, 2.33.4, and 2.34.1 contains an SSRF protection bypass in the OAuth2 credential authorization-code-to-access-token exchange. While OAuth2 discovery and dynamic-client-registration requests use n8n's SSRF-protected HTTP client, the token exchange uses a separate client with no SSR…","indicators":{"cves":["CVE-2026-77069"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:38.097Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://github.com/n8n-io/n8n/security/advisories/GHSA-c4f6-59xq-95ww","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/n8n-before-ssrf-protection-bypass-via-oauth2","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77070","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-77070 — n8n before 1.123.69, 2.33.4, and 2.34.1 contains a NoSQL injection vulnerability in the MongoDB node…","description":"n8n before 1.123.69, 2.33.4, and 2.34.1 contains a NoSQL injection vulnerability in the MongoDB node's Find, Delete, and Aggregate operations, which parse the Query parameter as JSON after expression resolution without sanitizing MongoDB operators. An attacker who can influence the resolved query (e…","indicators":{"cves":["CVE-2026-77070"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:38.227Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://github.com/n8n-io/n8n/security/advisories/GHSA-953p-jm2c-8h5j","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/n8n-before-nosql-injection-via-mongodb-node","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77071","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-77071 — n8n before 1.123.69, 2.33.4, and 2.34.1 contains a PostgREST filter injection vulnerability in the S…","description":"n8n before 1.123.69, 2.33.4, and 2.34.1 contains a PostgREST filter injection vulnerability in the Supabase node's Row Get Many, Delete, and Update operations, which built filter queries by concatenating an expression-bindable value without escaping. An attacker could inject a condition that widened…","indicators":{"cves":["CVE-2026-77071"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:38.353Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://github.com/n8n-io/n8n/security/advisories/GHSA-f4f3-2g67-4vhm","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/n8n-before-postgrest-filter-injection-via-supabase","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77072","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-77072 — n8n before 1.123.69, 2.33.4, and 2.34.1 contains a stored cross-site scripting vulnerability in the…","description":"n8n before 1.123.69, 2.33.4, and 2.34.1 contains a stored cross-site scripting vulnerability in the Form node's completion page. The completion page applied its sandboxing Content-Security-Policy only when respondWith was not set to 'redirect', but responseText was always rendered as raw HTML. An au…","indicators":{"cves":["CVE-2026-77072"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:38.487Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://github.com/n8n-io/n8n/security/advisories/GHSA-rmr5-775f-jvm2","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/n8n-before-stored-xss-via-form-completion-page","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77073","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-77073 — n8n versions before 2.34.1 contain a credential validation bypass in the MCP create_workflow_from_co…","description":"n8n versions before 2.34.1 contain a credential validation bypass in the MCP create_workflow_from_code tool when authentication type is set to an expression. Attackers with a valid MCP Bearer API key and knowledge of a target credential ID can persist unauthorized cross-project credential references…","indicators":{"cves":["CVE-2026-77073"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:38.613Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://github.com/n8n-io/n8n/security/advisories/GHSA-vfrj-582q-mvcp","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/n8n-before-cross-project-credential-access-via-mcp","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77074","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-77074 — n8n versions before 1.123.69 contain a server-side request forgery vulnerability in the Edit Image n…","description":"n8n versions before 1.123.69 contain a server-side request forgery vulnerability in the Edit Image node's Draw Text operation that allows authenticated users to inject MVG primitives. Attackers can craft malicious text values to issue blind outbound HTTP requests to arbitrary addresses or access loc…","indicators":{"cves":["CVE-2026-77074"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:38.740Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://github.com/n8n-io/n8n/security/advisories/GHSA-233r-fpgw-fx8x","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/n8n-before-ssrf-via-edit-image-node","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77075","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-77075 — n8n before 1.123.69, 2.x before 2.33.4, and 2.34.x before 2.34.1 contain an expression injection vul…","description":"n8n before 1.123.69, 2.x before 2.33.4, and 2.34.x before 2.34.1 contain an expression injection vulnerability in resource-locator field link preview rendering. The editor spliced the field's stored value directly into the node type's URL template without checking for expression syntax. An authentic…","indicators":{"cves":["CVE-2026-77075"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:38.870Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://github.com/n8n-io/n8n/security/advisories/GHSA-fh4c-9rr2-p7qc","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/n8n-before-expression-injection-via-resource-locator","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77076","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-77076 — n8n versions before 1.123.69, 2.33.4, and 2.34.1 contain an information disclosure vulnerability in…","description":"n8n versions before 1.123.69, 2.33.4, and 2.34.1 contain an information disclosure vulnerability in the GraphQL node. When a GraphQL request fails at the connection level, the node re-throws the underlying HTTP client error unchanged instead of wrapping it in n8n's standard error type. That error co…","indicators":{"cves":["CVE-2026-77076"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:38.997Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://github.com/n8n-io/n8n/security/advisories/GHSA-9fqj-7wc5-cwhx","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/n8n-before-credential-leak-via-graphql-node-error","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77077","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-77077 — n8n versions before 1.123.69, 2.33.4, and 2.34.1 contain a JavaScript task runner VM sandbox escape.…","description":"n8n versions before 1.123.69, 2.33.4, and 2.34.1 contain a JavaScript task runner VM sandbox escape. The runner's prototype-freezing routine covers globalThis functions but not internal module constructors such as EventEmitter, allowing an authenticated user with Code node access to exploit prototyp…","indicators":{"cves":["CVE-2026-77077"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:39.127Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://github.com/n8n-io/n8n/security/advisories/GHSA-m3hg-p5r9-fg9h","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/n8n-before-remote-code-execution-via-eventemitter-prototype-pollution","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77079","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-77079 — n8n before 2.34.1 and 2.33.4 contains an authorization bypass in the custom project role deletion (r…","description":"n8n before 2.34.1 and 2.33.4 contains an authorization bypass in the custom project role deletion (reassignment) path. When deleting a custom project role with a reassignment target, the code validated only that the target role existed and was project-scoped, performing no project-level authorizatio…","indicators":{"cves":["CVE-2026-77079"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:39.263Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://github.com/n8n-io/n8n/security/advisories/GHSA-xhmh-8fgr-xqhj","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/n8n-before-authorization-bypass-via-custom-role-deletion","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77080","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-77080 — n8n before 1.123.69, 2.x before 2.33.4, and 2.34.x before 2.34.1 contain an arbitrary file read and…","description":"n8n before 1.123.69, 2.x before 2.33.4, and 2.34.x before 2.34.1 contain an arbitrary file read and write vulnerability in the Snowflake node, which passes free-form Execute Query input, including client-side commands, directly to the Snowflake SDK without applying n8n's file-access restrictions. An…","indicators":{"cves":["CVE-2026-77080"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:39.430Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://github.com/n8n-io/n8n/security/advisories/GHSA-r4j2-j3wm-q689","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/n8n-before-arbitrary-file-read-and-write-via-snowflake","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77081","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-77081 — n8n before 1.123.69, 2.x before 2.33.4, and 2.x before 2.34.1 contain an allowed-domains bypass in t…","description":"n8n before 1.123.69, 2.x before 2.33.4, and 2.x before 2.34.1 contain an allowed-domains bypass in the GraphQL node. When the node's Authentication parameter is set to expression mode, every authentication-gated credential selector is treated as active; if two credentials of different types are atta…","indicators":{"cves":["CVE-2026-77081"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:39.590Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://github.com/n8n-io/n8n/security/advisories/GHSA-wcv8-x773-j96r","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/n8n-before-allowed-domains-bypass-via-graphql-node","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77082","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-77082 — n8n before 1.123.69, 2.x before 2.33.4, and 2.34.x before 2.34.1 contains a regular expression denia…","description":"n8n before 1.123.69, 2.x before 2.33.4, and 2.34.x before 2.34.1 contains a regular expression denial of service (ReDoS) vulnerability in the Filter and Switch nodes, which compile user-supplied regex patterns with new RegExp() and execute them synchronously on the worker thread without complexity v…","indicators":{"cves":["CVE-2026-77082"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:39.717Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://github.com/n8n-io/n8n/security/advisories/GHSA-q3fv-295f-qfpf","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/n8n-before-redos-via-filter-and-switch-node","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77083","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-77083 — n8n is a workflow automation platform. In versions prior to 1.123.69, 2.33.4, and 2.34.1, the JavaSc…","description":"n8n is a workflow automation platform. In versions prior to 1.123.69, 2.33.4, and 2.34.1, the JavaScript Code node's VM sandbox did not freeze the sandbox's Function.prototype, allowing an authenticated user with the ability to create and execute workflows to pollute it from within a Code node execu…","indicators":{"cves":["CVE-2026-77083"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:39.840Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://github.com/n8n-io/n8n/security/advisories/GHSA-c9c6-rq46-h25v","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/n8n-before-code-node-sandbox-escape-via-function.prototype-pollution","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77084","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-77084 — n8n before 1.123.69 (and 2.x before 2.33.4 / 2.34.1) contains a code execution vulnerability in the…","description":"n8n before 1.123.69 (and 2.x before 2.33.4 / 2.34.1) contains a code execution vulnerability in the Git node. The Git node executed certain repository-local git configuration values without neutralizing them, so any subsequent Git node operation against a repository containing a malicious value woul…","indicators":{"cves":["CVE-2026-77084"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:39.970Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://github.com/n8n-io/n8n/security/advisories/GHSA-m87g-qr43-ccvc","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/n8n-before-remote-code-execution-via-git-node-configuration-values","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77085","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-77085 — n8n before 2.34.1 and 2.33.x before 2.33.4 contains an SSRF protection bypass in the SearXNG Agent t…","description":"n8n before 2.34.1 and 2.33.x before 2.33.4 contains an SSRF protection bypass in the SearXNG Agent tool. The tool sent requests to the user-supplied API URL using a raw HTTP client that did not route through n8n's centralized SSRF protection. On instances with N8N_SSRF_PROTECTION_ENABLED=true, an au…","indicators":{"cves":["CVE-2026-77085"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:16:40.110Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://github.com/n8n-io/n8n/security/advisories/GHSA-9rp2-wm75-c5fj","label":"disclosure@vulncheck.com","domainType":"primary"},{"url":"https://www.vulncheck.com/advisories/n8n-before-ssrf-protection-bypass-via-searxng-tool","label":"disclosure@vulncheck.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77118","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-77118 — A heap out-of-bounds write exists in the Photo CD (PCD) decoder of GraphicsMagick. In DecodeImage()…","description":"A heap out-of-bounds write exists in the Photo CD (PCD) decoder of GraphicsMagick. In DecodeImage() (coders/pcd.c), the Huffman delta loop advances its output pointer with q++ after every decoded delta and never checks it against the end of the heap-allocated luma/chroma plane buffers. The pointer i…","indicators":{"cves":["CVE-2026-77118"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T13:19:07.077Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://foss.heptapod.net/graphicsmagick/graphicsmagick/-/commit/937cdd9920bd96","label":"22e2d327-25fe-45d7-9f0c-dcd23b7108df","domainType":"other"},{"url":"https://foss.heptapod.net/graphicsmagick/graphicsmagick/-/raw/GraphicsMagick-1_3_48/ChangeLog","label":"22e2d327-25fe-45d7-9f0c-dcd23b7108df","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-7485","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-7485 — Incorrect authorization in frozen BI aggregations in Checkmk <2.5.0p2, <2.4.0p29, <2.3.0p47, and all…","description":"Incorrect authorization in frozen BI aggregations in Checkmk <2.5.0p2, <2.4.0p29, <2.3.0p47, and all 2.2.0 versions allows an authenticated user with restricted host and service visibility to learn the names and the existence of hosts and services they are not authorized to see.","indicators":{"cves":["CVE-2026-7485"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T13:19:07.817Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://checkmk.com/werk/16917","label":"security@checkmk.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-64961","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-64961 — ATutor is vulnerable to authentication bypass . Although a token validation check is present in the…","description":"ATutor is vulnerable to authentication bypass . Although a token validation check is present in the auto-login functionality, the values required for token validation remain uninitialized in certain code paths. An unauthenticated attacker who can determine a user's identifier and registration timest…","indicators":{"cves":["CVE-2026-64961"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:17:44.577Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://atutor.github.io/","label":"cvd@cert.pl","domainType":"other"},{"url":"https://cert.pl/en/posts/2026/08/CVE-2026-64960","label":"cvd@cert.pl","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-64962","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-64962 — ATutor is vulnerable to Cross-Site Request Forgery (CSRF) in profile update functionality. An attack…","description":"ATutor is vulnerable to Cross-Site Request Forgery (CSRF) in profile update functionality. An attacker can craft a malicious website which, when visited by an authenticated victim, submits a forged request to the system. Due to the lack of proper CSRF token implementation, the forged request is proc…","indicators":{"cves":["CVE-2026-64962"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:17:44.713Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://atutor.github.io/","label":"cvd@cert.pl","domainType":"other"},{"url":"https://cert.pl/en/posts/2026/08/CVE-2026-64960","label":"cvd@cert.pl","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-64963","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-64963 — A path traversal vulnerability in ATutor allows an authenticated user to access files from other cou…","description":"A path traversal vulnerability in ATutor allows an authenticated user to access files from other course directories when the AT_FORCE_GET_FILE configuration option is enabled. This can lead to unauthorized access to files and disclosure of information about the filesystem structure.\n\n\n\n\n\n\n\n\nProduct…","indicators":{"cves":["CVE-2026-64963"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:17:44.850Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://atutor.github.io/","label":"cvd@cert.pl","domainType":"other"},{"url":"https://cert.pl/en/posts/2026/08/CVE-2026-64960","label":"cvd@cert.pl","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-64964","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-64964 — ATutor generates predictable email confirmation tokens due to the use of insufficiently random value…","description":"ATutor generates predictable email confirmation tokens due to the use of insufficiently random values in the account confirmation functionality. Due to the use of predictable values related to user registration, an attacker who knows or can predict these values can guess valid account activation tok…","indicators":{"cves":["CVE-2026-64964"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:17:44.990Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://atutor.github.io/","label":"cvd@cert.pl","domainType":"other"},{"url":"https://cert.pl/en/posts/2026/08/CVE-2026-64960","label":"cvd@cert.pl","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-64965","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-64965 — ATutor is vulnerable to Missing Authorization Check on Test and Question Import endpoints. A low-pri…","description":"ATutor is vulnerable to Missing Authorization Check on Test and Question Import endpoints.  A low-privileged authenticated user (e.g. a student) enrolled in a course can bypass authorization checks by sending requests directly to the backend import endpoints, allowing the unauthorized import of test…","indicators":{"cves":["CVE-2026-64965"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:17:45.133Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://atutor.github.io/","label":"cvd@cert.pl","domainType":"other"},{"url":"https://cert.pl/en/posts/2026/08/CVE-2026-64960","label":"cvd@cert.pl","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-64967","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-64967 — A path traversal vulnerability in ATutor's error log viewer allows an attacker with administrative p…","description":"A path traversal vulnerability in ATutor's error log viewer allows an attacker with administrative privileges to access arbitrary files outside the intended logs directory. This can lead to unauthorized access to sensitive files and other resources accessible to the web server process.\n\n\n\n\n\n\nProduct…","indicators":{"cves":["CVE-2026-64967"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:17:45.410Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://atutor.github.io/","label":"cvd@cert.pl","domainType":"other"},{"url":"https://cert.pl/en/posts/2026/08/CVE-2026-64960","label":"cvd@cert.pl","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-64968","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-64968 — ATutor is vulnerable to Server-Side request forgery in import functionalities. An authenticated admi…","description":"ATutor is vulnerable to Server-Side request forgery in import functionalities. An authenticated administrator can make the server request arbitrary internal HTTP endpoints, cloud metadata services, or local files via file:// if the PHP\nenvironment permits URL wrappers.\n\n\nProduct is no longer activel…","indicators":{"cves":["CVE-2026-64968"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:17:45.543Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://atutor.github.io/","label":"cvd@cert.pl","domainType":"other"},{"url":"https://cert.pl/en/posts/2026/08/CVE-2026-64960","label":"cvd@cert.pl","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-64969","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-64969 — ATutor is vulnerable to Insecure Direct Object Reference (IDOR) attack in profile picture related en…","description":"ATutor is vulnerable to Insecure Direct Object Reference (IDOR) attack in profile picture related endpoints. Any authenticated user, including a student, can supply another user's member_id in a POST request to the profile album endpoint and permanently delete that user's profile picture, including…","indicators":{"cves":["CVE-2026-64969"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:17:45.680Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://atutor.github.io/","label":"cvd@cert.pl","domainType":"other"},{"url":"https://cert.pl/en/posts/2026/08/CVE-2026-64960","label":"cvd@cert.pl","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-64970","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-64970 — ATutor is vulnerable to Stored Cross Site Scripting in registration functionality. An attacker can r…","description":"ATutor is vulnerable to Stored Cross Site Scripting in registration functionality.  An attacker can register a new account and enter a JavaScript payload in the phone field during registration. When any authenticated user visits the attacker's public profile, the profile template echoes the phone va…","indicators":{"cves":["CVE-2026-64970"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:17:45.810Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://atutor.github.io/","label":"cvd@cert.pl","domainType":"other"},{"url":"https://cert.pl/en/posts/2026/08/CVE-2026-64960","label":"cvd@cert.pl","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-64971","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-64971 — ATutor is vulnerable to Reflected XSS in restore functionality. An attacker can provide a specially…","description":"ATutor is vulnerable to Reflected XSS in restore functionality. An attacker can provide a specially crafted URL that, when opened, results in arbitrary JavaScript execution in the victim's browser.\nProduct is no longer actively supported and the vulnerabilities have not been fixed. Only version 2.2.…","indicators":{"cves":["CVE-2026-64971"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:17:45.943Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://atutor.github.io/","label":"cvd@cert.pl","domainType":"other"},{"url":"https://cert.pl/en/posts/2026/08/CVE-2026-64960","label":"cvd@cert.pl","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-64972","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-64972 — ATutor is vulnerable to Reflected XSS via popup parameter in preview.php. An authenticated attacker…","description":"ATutor is vulnerable to Reflected XSS via popup parameter in preview.php. An authenticated attacker can inject a double quote into the popup parameter, break out of the attribute value, and append a new event handler such as onload. The related preview_top.php file sanitises these parameters, but th…","indicators":{"cves":["CVE-2026-64972"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:17:46.077Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://atutor.github.io/","label":"cvd@cert.pl","domainType":"other"},{"url":"https://cert.pl/en/posts/2026/08/CVE-2026-64960","label":"cvd@cert.pl","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-70383","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-70383 — Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Esto…","description":"Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Estonian Information System Authority (RIA) DigiDoc4 client.\n\nThis issue affects DigiDoc4: from 4.0.0 before 4.11.0.","indicators":{"cves":["CVE-2026-70383"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:17:58.050Z","fetchedAt":"2026-08-21T03:01:29.087Z","references":[{"url":"https://github.com/open-eid/DigiDoc4-Client","label":"a6d3dc9e-0591-4a13-bce7-0f5b31ff6158","domainType":"primary"},{"url":"https://github.com/open-eid/DigiDoc4-Client/pull/1402","label":"a6d3dc9e-0591-4a13-bce7-0f5b31ff6158","domainType":"primary"},{"url":"https://github.com/open-eid/libdigidocpp/pull/736","label":"a6d3dc9e-0591-4a13-bce7-0f5b31ff6158","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-73220","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-73220 — CVAT is an open source interactive video and image annotation tool for computer vision. From 2.68.0…","description":"CVAT is an open source interactive video and image annotation tool for computer vision. From 2.68.0 until 2.70.0, the audio-task annotation guide renderer in cvat-ui/src/audio/components/annotation-page/audio-workspace/top-bar/audio-right-group.tsx passes attacker-controlled guide Markdown to MDEdit…","indicators":{"cves":["CVE-2026-73220"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T15:18:37.200Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/cvat-ai/cvat/commit/33aaa1987ea89a4d229bf4c19fcbe6b04ed55b42","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cvat-ai/cvat/pull/10893","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cvat-ai/cvat/releases/tag/v2.70.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cvat-ai/cvat/security/advisories/GHSA-chxx-45vm-qhc9","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-63040","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-63040 — Files or Directories Accessible to External Parties vulnerability in Apache InLong. StreamSource per…","description":"Files or Directories Accessible to External Parties vulnerability in Apache InLong. StreamSource performs no authorization check, any authenticated user can logically delete ALL stream sources.\n\nThis issue affects Apache InLong: from 2.0.0 before 2.4.0.\n\n\n\nUsers are advised to upgrade to Apache InLo…","indicators":{"cves":["CVE-2026-63040"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T16:17:29.993Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://lists.apache.org/thread/sbqrk88cjv3r9rnqfqgn31ox4711offy","label":"security@apache.org","domainType":"other"},{"url":"http://www.openwall.com/lists/oss-security/2026/08/20/14","label":"af854a3a-2127-422b-91ae-364da2661108","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-63042","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-63042 — Files or Directories Accessible to External Parties vulnerability in Apache InLong. Any user who can…","description":"Files or Directories Accessible to External Parties vulnerability in Apache InLong. Any user who can authenticate to the manager can create, modify and delete Data Node definitions.\n\nThis issue affects Apache InLong: from 2.0.0 before 2.4.0.\n\n\n\nUsers are advised to upgrade to Apache InLong's  2.4.0…","indicators":{"cves":["CVE-2026-63042"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T16:17:30.163Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://lists.apache.org/thread/wxs4jfjkoo6rlyovhrx8bo74rfmzwbk7","label":"security@apache.org","domainType":"other"},{"url":"http://www.openwall.com/lists/oss-security/2026/08/20/15","label":"af854a3a-2127-422b-91ae-364da2661108","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-63043","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-63043 — Relative Path Traversal vulnerability in Apache InLong. Arbitrary file read from the Agent host file…","description":"Relative Path Traversal vulnerability in Apache InLong. Arbitrary file read from the Agent host filesystem.\n\nThis issue affects Apache InLong: from 2.0.0 before 2.4.0.\n\n\n\nUsers are advised to upgrade to Apache InLong's  2.4.0 or cherry-pick [1] to solve it.\n\n[1]  https://github.com/apache/inlong/pul…","indicators":{"cves":["CVE-2026-63043"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T16:17:30.327Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://lists.apache.org/thread/0ohn861tzd9g7nsosd6oz3of6dvhvqnk","label":"security@apache.org","domainType":"other"},{"url":"http://www.openwall.com/lists/oss-security/2026/08/20/16","label":"af854a3a-2127-422b-91ae-364da2661108","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-63044","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-63044 — Server-Side Request Forgery (SSRF) vulnerability in Apache InLong. Any authenticated user (no admin…","description":"Server-Side Request Forgery (SSRF) vulnerability in Apache InLong.  Any authenticated user (no admin role required) can cause the InLong Manager server to make outbound HTTP requests or TCP connections to\narbitrary internal hosts and ports.\n\nThis issue affects Apache InLong: from 2.0.0 before 2.4.0.…","indicators":{"cves":["CVE-2026-63044"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T16:17:30.483Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://lists.apache.org/thread/b3rtzssd8hdk0dyq4y6mpdx6jj5ro4g6","label":"security@apache.org","domainType":"other"},{"url":"http://www.openwall.com/lists/oss-security/2026/08/20/17","label":"af854a3a-2127-422b-91ae-364da2661108","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-13121","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-13121 — Parallels RAS Client RDP Backend Service Exposed Dangerous Function Local Privilege Escalation Vulne…","description":"Parallels RAS Client RDP Backend Service Exposed Dangerous Function Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Parallels RAS Client. An attacker must first obtain the ability to execute low-privileged code o…","indicators":{"cves":["CVE-2026-13121","CVE-2026-18262","CVE-2026-18263"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:20.787Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-554/","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-555/","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-556/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18267","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-18267 — Kenwood DNR1007XR Firmware Update Link Following Code Execution Vulnerability. This vulnerability al…","description":"Kenwood DNR1007XR Firmware Update Link Following Code Execution Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DNR1007XR devices. Authentication is not required to exploit this vulnerability.\n\nThe specific flaw exi…","indicators":{"cves":["CVE-2026-18267"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:23.140Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://www.kenwood.com/cs/ce/mm/firmware/2020/2020f/eng.html","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-484/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18268","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-18268 — Kenwood DNR1007XR JKGenService Command Injection Local Privilege Escalation Vulnerability. This vuln…","description":"Kenwood DNR1007XR JKGenService Command Injection Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Kenwood DNR1007XR devices. An attacker must first obtain the ability to execute low-privileged code on the target s…","indicators":{"cves":["CVE-2026-18268"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:23.277Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://www.kenwood.com/cs/ce/mm/firmware/2020/2020f/eng.html","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-485/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18269","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-18269 — Kenwood DNR1007XR tchdr_bytestream_read Out-Of-Bounds Write Code Execution Vulnerability. This vulne…","description":"Kenwood DNR1007XR tchdr_bytestream_read Out-Of-Bounds Write Code Execution Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DNR1007XR devices. Authentication is not required to exploit this vulnerability.\n\nThe specif…","indicators":{"cves":["CVE-2026-18269"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:23.393Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://www.kenwood.com/cs/ce/mm/firmware/2020/2020f/eng.html","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-486/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18270","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-18270 — Kenwood DNR1007XR udhcpd Incorrect Permission Assignment Local Privilege Escalation Vulnerability. T…","description":"Kenwood DNR1007XR udhcpd Incorrect Permission Assignment Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Kenwood DNR1007XR devices. An attacker must first obtain the ability to execute low-privileged code on the…","indicators":{"cves":["CVE-2026-18270"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:23.513Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://www.kenwood.com/cs/ce/mm/firmware/2020/2020f/eng.html","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-487/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18271","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-18271 — Kenwood DNR1007XR vCardParser Heap-based Buffer Overflow Code Execution Vulnerability. This vulnerab…","description":"Kenwood DNR1007XR vCardParser Heap-based Buffer Overflow Code Execution Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DNR1007XR devices. Authentication is not required to exploit this vulnerability.\n\nThe specific…","indicators":{"cves":["CVE-2026-18271"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:23.640Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://www.kenwood.com/cs/ce/mm/firmware/2020/2020f/eng.html","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-488/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18272","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-18272 — Kenwood DNR1007XR startUpdateProcess Command Injection Vulnerability. This vulnerability allows phys…","description":"Kenwood DNR1007XR startUpdateProcess Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DNR1007XR devices. Authentication is not required to exploit this vulnerability.\n\nThe specific flaw exists withi…","indicators":{"cves":["CVE-2026-18272"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:23.757Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://www.kenwood.com/cs/ce/mm/firmware/2020/2020f/eng.html","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-489/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18273","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-18273 — Kenwood DNR1007XR USB Incorrect Default Permissions Local Privilege Escalation Vulnerability. This v…","description":"Kenwood DNR1007XR USB Incorrect Default Permissions Local Privilege Escalation Vulnerability. This vulnerability allows physically present attackers to escalate privileges on affected installations of Kenwood DNR1007XR devices. An attacker must first obtain the ability to execute low-privileged code…","indicators":{"cves":["CVE-2026-18273"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:23.880Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://www.kenwood.com/cs/ce/mm/firmware/2020/2020f/eng.html","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-490/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18278","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-18278 — Sony XAV-9500ES prh_l2_decode_packet Out-Of-Bounds Read Information Disclosure Vulnerability. This v…","description":"Sony XAV-9500ES prh_l2_decode_packet Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of Sony XAV-9500ES devices. An attacker must first obtain the ability to pair a malicious Blu…","indicators":{"cves":["CVE-2026-18278"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:24.123Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://www.sony.com/electronics/support/mobile-cd-players-digital-media-players-xav-series/xav-9500es/software/00274922","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-471/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18280","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-18280 — Sony XAV-9500ES gpsd Buffer Overflow Arbitrary Code Execution Vulnerability. This vulnerability allo…","description":"Sony XAV-9500ES gpsd Buffer Overflow Arbitrary Code Execution Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Sony XAV-9500ES devices. Authentication is not required to exploit this vulnerability.\n\nThe specific flaw exists…","indicators":{"cves":["CVE-2026-18280"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:24.403Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://www.sony.com/electronics/support/mobile-cd-players-digital-media-players-xav-series/xav-9500es/software/00274922","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-473/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18283","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-18283 — Sony XAV-9500ES udev USB Rules Authorization Bypass Vulnerability. This vulnerability allows physica…","description":"Sony XAV-9500ES udev USB Rules Authorization Bypass Vulnerability. This vulnerability allows physically present attackers to bypass authorization on affected installations on Sony XAV-9500ES devices. Authentication is not required to exploit this vulnerability.\n\nThe specific flaw exists within the u…","indicators":{"cves":["CVE-2026-18283"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:24.763Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://www.sony.com/electronics/support/mobile-cd-players-digital-media-players-xav-series/xav-9500es/software/00274922","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-476/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-18284","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-18284 — Sony XAV-9500ES Crash Dump Handler Command Injection Local Privilege Escalation Vulnerability. This…","description":"Sony XAV-9500ES Crash Dump Handler Command Injection Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Sony XAV-9500ES devices. An attacker must first obtain the ability to execute low-privileged code on the target…","indicators":{"cves":["CVE-2026-18284"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:24.883Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://www.sony.com/electronics/support/mobile-cd-players-digital-media-players-xav-series/xav-9500es/software/00274922","label":"zdi-disclosures@trendmicro.com","domainType":"other"},{"url":"https://www.zerodayinitiative.com/advisories/ZDI-26-477/","label":"zdi-disclosures@trendmicro.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-40345","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-40345 — deepmerge-ts is a typescript library providing functionality to deep merging of javascript objects.…","description":"deepmerge-ts is a typescript library providing functionality to deep merging of javascript objects. Prior to 8.0.0, the deepmerge, deepmergeCustom, deepmergeInto, and deepmergeIntoCustom APIs do not track visited objects or object pairs when recursively merging records. When two input values contain…","indicators":{"cves":["CVE-2026-40345"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:17:29.783Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/RebeccaStevens/deepmerge-ts/commit/398492757b3f22a0d7d89b09ce1ae9cd32806c9a","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/RebeccaStevens/deepmerge-ts/pull/707","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/RebeccaStevens/deepmerge-ts/releases/tag/v8.0.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/RebeccaStevens/deepmerge-ts/security/advisories/GHSA-ggr8-5vv4-36mx","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-54136","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-54136 — Windmill is an open-source developer platform for internal code: APIs, background jobs, workflows an…","description":"Windmill is an open-source developer platform for internal code: APIs, background jobs, workflows and UIs. Prior to 1.715.0, a resource-scoped API token could read script contents outside its allowed path scope through GET /api/w/{workspace}/scripts/list_search. The route-level scope middleware vali…","indicators":{"cves":["CVE-2026-54136"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:18:17.737Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/windmill-labs/windmill/commit/7edf3f02122e20fde1e95e0252e7bda641075326","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/windmill-labs/windmill/pull/9426","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/windmill-labs/windmill/releases/tag/v1.715.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/windmill-labs/windmill/security/advisories/GHSA-2ppx-66jv-wpw5","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-55095","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-55095 — OpenProject is open-source, web-based project management software. In version 17.5.1 and earlier, an…","description":"OpenProject is open-source, web-based project management software. In version 17.5.1 and earlier, an authenticated non-admin project member can request the inplace-edit dialog for a raw custom_field_ project attribute. The dialog path resolves the project custom field by its raw identifier without e…","indicators":{"cves":["CVE-2026-55095"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:18:24.947Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/opf/openproject/releases/tag/v17.6.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/opf/openproject/security/advisories/GHSA-63fg-pgqj-3qf8","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-63481","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-63481 — Hurl is a command line tool that runs and tests HTTP requests defined in plain text files. In versio…","description":"Hurl is a command line tool that runs and tests HTTP requests defined in plain text files. In version 8.0.1 and earlier, the redirect handling in packages/hurl/src/http/client.rs strips Authorization and Cookie headers and basic-auth credentials when a redirect changes host, but it carries RequestSp…","indicators":{"cves":["CVE-2026-63481"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:19:15.037Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/Orange-OpenSource/hurl/commit/ed91c894c2cf11704422010554037e3ba70b446e","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Orange-OpenSource/hurl/pull/5119","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Orange-OpenSource/hurl/releases/tag/8.0.1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/Orange-OpenSource/hurl/security/advisories/GHSA-7w2g-9mf9-324m","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-71492","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-71492 — Banks generates meaningful LLM prompts using a simple template language. Prior to version 2.4.5, Dir…","description":"Banks generates meaningful LLM prompts using a simple template language. Prior to version 2.4.5, DirectoryPromptRegistry.set() in src/banks/registries/directory.py interpolates attacker-controlled Prompt.name and Prompt.version values into a Path without canonicalization or containment validation. R…","indicators":{"cves":["CVE-2026-71492"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:19:40.930Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/masci/banks/commit/a215f6d779966945c56e0af5abed1ae5916fd9d3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/masci/banks/pull/77","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/masci/banks/releases/tag/v2.4.5","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/masci/banks/security/advisories/GHSA-x8wg-4xgc-vr54","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/masci/banks/security/advisories/GHSA-x8wg-4xgc-vr54","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-53425","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-53425 — Insufficient Verification of Data Authenticity vulnerability in dropbox samly allows an attacker to…","description":"Insufficient Verification of Data Authenticity vulnerability in dropbox samly allows an attacker to establish an authenticated session using a SAML response the service provider never requested.\n\nSamly.SPHandler.validate_authresp/3 in lib/samly/sp_handler.ex validates a SAML response for the SP-init…","indicators":{"cves":["CVE-2026-53425"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T18:16:27.850Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://cna.erlef.org/cves/CVE-2026-53425.html","label":"6b3ad84c-e1a6-4bf7-a703-f496b71e49db","domainType":"other"},{"url":"https://osv.dev/vulnerability/EEF-CVE-2026-53425","label":"6b3ad84c-e1a6-4bf7-a703-f496b71e49db","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-63379","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-63379 — Libevent is an event notification library. Prior to 2.1.13 and 2.2.2-alpha, libevent processes chunk…","description":"Libevent is an event notification library. Prior to 2.1.13 and 2.2.2-alpha, libevent processes chunked HTTP trailers in http.c through evhttp_read_trailer and merges them into request headers. The fix introduces evhttp_parse_headers_impl_ and a temporary trailer header list. An unauthenticated remot…","indicators":{"cves":["CVE-2026-63379"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T18:16:35.200Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/libevent/libevent/commit/87e8e44fa774e9677b089b1a5114ee68aefa1636","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libevent/libevent/commit/b847071141b3827900d536594ec9045eb0a4c485","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libevent/libevent/releases/tag/release-2.1.13-stable","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libevent/libevent/releases/tag/release-2.2.2-alpha","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libevent/libevent/security/advisories/GHSA-2gmv-p5m7-98p6","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-63380","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-63380 — Libevent is an event notification library. Prior to 2.2.2-alpha, libevent can dereference invalid li…","description":"Libevent is an event notification library. Prior to 2.2.2-alpha, libevent can dereference invalid list pointers in ws.c when evws_new_session enters its error path after evhttp_start_ws_ succeeds but bufferevent_enable_locking_ fails. evws_connection_free sees a non-null http_server and unconditiona…","indicators":{"cves":["CVE-2026-63380"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T18:16:35.357Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/libevent/libevent/commit/825c18bd99f556b59d61200523237f264d5cc734","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libevent/libevent/releases/tag/release-2.2.2-alpha","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libevent/libevent/security/advisories/GHSA-3rpf-frgx-xq34","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-63381","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-63381 — Libevent is an event notification library. Prior to 2.1.13 and 2.2.2-alpha, libevent has a use-after…","description":"Libevent is an event notification library. Prior to 2.1.13 and 2.2.2-alpha, libevent has a use-after-free in buffer.c when evbuffer_add_buffer_reference processes an output buffer whose out_total_len is zero. evbuffer_free_all_chains frees the initial empty chain without resetting outbuf->first, out…","indicators":{"cves":["CVE-2026-63381"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T18:16:35.530Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/libevent/libevent/commit/5cb95ba2f804f8aff46f88d58391c71e1251cd1c","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libevent/libevent/commit/9db091b04f569be3a700fa9860ef02f90b830af9","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libevent/libevent/releases/tag/release-2.1.13-stable","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libevent/libevent/releases/tag/release-2.2.2-alpha","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libevent/libevent/security/advisories/GHSA-c2pj-cg4r-88c8","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-63382","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-63382 — Libevent is an event notification library. Prior to 2.1.13 and 2.2.2-alpha, the libevent evhttp pars…","description":"Libevent is an event notification library. Prior to 2.1.13 and 2.2.2-alpha, the libevent evhttp parser in http.c inconsistently handles duplicate Transfer-Encoding headers, comma-separated Transfer-Encoding values, and bare line feeds in chunked framing. evhttp_find_header can select only the first…","indicators":{"cves":["CVE-2026-63382"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T18:16:35.700Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/libevent/libevent/commit/10abb34b8dc3e1184de315dd261ce4b77563cda6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libevent/libevent/commit/5119ceb00557bf007f9065709e852686f3c0bb6e","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libevent/libevent/commit/83ba67373032334559b82409db035dd8c3cc1660","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libevent/libevent/commit/ac38703b2d312200c4f967f02936af0118d384a0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libevent/libevent/releases/tag/release-2.1.13-stable","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libevent/libevent/releases/tag/release-2.2.2-alpha","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libevent/libevent/security/advisories/GHSA-q39v-w2g7-gr8j","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libevent/libevent/security/advisories/GHSA-q39v-w2g7-gr8j","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-63383","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-63383 — Libevent is an event notification library. Prior to 2.1.13 and 2.2.2-alpha, libevent can read beyond…","description":"Libevent is an event notification library. Prior to 2.1.13 and 2.2.2-alpha, libevent can read beyond a contiguous evbuffer region in event_tagging.c when decode_tag_internal requests at most five bytes from evbuffer_pullup but iterates using the full logical buffer length. A fragmented evbuffer cont…","indicators":{"cves":["CVE-2026-63383"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T18:16:35.917Z","fetchedAt":"2026-08-21T03:01:29.088Z","references":[{"url":"https://github.com/libevent/libevent/commit/91ed8745eebabdd27592a83d350338a8c4626321","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libevent/libevent/commit/e1f9e21887c6b104e206a718385ba3ffc75180cb","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libevent/libevent/releases/tag/release-2.1.13-stable","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libevent/libevent/releases/tag/release-2.2.2-alpha","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libevent/libevent/security/advisories/GHSA-fj29-64w6-73h6","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libevent/libevent/security/advisories/GHSA-fj29-64w6-73h6","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-63384","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-63384 — Libevent is an event notification library. Prior to 2.1.13 and 2.2.2-alpha, libevent has an incorrec…","description":"Libevent is an event notification library. Prior to 2.1.13 and 2.2.2-alpha, libevent has an incorrect integer conversion in event_tagging.c when evtag_unmarshal_header uses evtag_decode_int to decode an attacker-controlled uint32 payload length and returns it as a signed int. Values above INT_MAX be…","indicators":{"cves":["CVE-2026-63384"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T18:16:36.367Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://github.com/libevent/libevent/commit/109c16499282959d70f56ec3baf4c8b1e6646bda","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libevent/libevent/commit/5e3c6ebe342b34c5a9bcf48e9a32ad6708b9c416","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libevent/libevent/releases/tag/release-2.1.13-stable","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libevent/libevent/releases/tag/release-2.2.2-alpha","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libevent/libevent/security/advisories/GHSA-45c6-qx49-89m8","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libevent/libevent/security/advisories/GHSA-45c6-qx49-89m8","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-63385","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-63385 — Libevent is an event notification library. Prior to 2.1.13 and 2.2.2-alpha, libevent has two HTTP pa…","description":"Libevent is an event notification library. Prior to 2.1.13 and 2.2.2-alpha, libevent has two HTTP parsing weaknesses in http.c. evhttp_decode_uri_internal decodes percent-encoded %00 bytes into literal NUL characters, which can cause downstream C string operations to truncate a path and bypass valid…","indicators":{"cves":["CVE-2026-63385"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T18:16:36.543Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://github.com/libevent/libevent/commit/758be0c0f69c1934ef9a84ab39e9f9e5fde2e6d0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libevent/libevent/commit/9170dd35e64714613e8d13b290587cfc28e258e2","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libevent/libevent/releases/tag/release-2.1.13-stable","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libevent/libevent/releases/tag/release-2.2.2-alpha","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libevent/libevent/security/advisories/GHSA-jcwh-pvf2-73p2","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-73251","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-73251 — Mongoose is an embedded web server and network library. Prior to 7.23, a network attacker can impers…","description":"Mongoose is an embedded web server and network library. Prior to 7.23, a network attacker can impersonate a TLS server to a Mongoose client configured with a multi-certificate CA bundle. In src/tls_builtin.c, the mg_tls_init() function stores the bundle in tls->ca_bundle_der while tls->ca_der.len re…","indicators":{"cves":["CVE-2026-73251"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T18:16:45.743Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://github.com/cesanta/mongoose/commit/2988bc9df3a5efc9539471cb7455975fa25df483","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cesanta/mongoose/releases/tag/7.23","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cesanta/mongoose/security/advisories/GHSA-qj6j-2692-v2r8","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cesanta/mongoose/security/advisories/GHSA-qj6j-2692-v2r8","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cesanta/mongoose/security/advisories/GHSA-qj6j-2692-v2r8","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cesanta/mongoose/security/advisories/GHSA-qj6j-2692-v2r8","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-73253","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-73253 — Mongoose is an embedded web server and network library. Prior to version 7.22, an on-path network at…","description":"Mongoose is an embedded web server and network library. Prior to version 7.22, an on-path network attacker with a wildcard certificate for a parent domain can impersonate deeper subdomains to a client using the built-in TLS stack. The mg_tls_verify_cert_san() and mg_tls_verify_cert_cn() functions in…","indicators":{"cves":["CVE-2026-73253"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T18:16:45.940Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://github.com/cesanta/mongoose/commit/a9df523f76f43a38bd53b4232b9cfd4c16869e71","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cesanta/mongoose/pull/3611","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cesanta/mongoose/releases/tag/7.22","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cesanta/mongoose/security/advisories/GHSA-jp6g-796f-39vp","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/cesanta/mongoose/security/advisories/GHSA-jp6g-796f-39vp","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-15743","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-15743 — Catalyst::Plugin::Static::Simple versions through 0.38 for Perl mark responses as publicly cacheable…","description":"Catalyst::Plugin::Static::Simple versions through 0.38 for Perl mark responses as publicly cacheable.\n\nThe _serve_static method always sets the Cache-Control header to \"public\", with no means of overriding it.  This advises proxies that the content may be stored in a shared cache, and may be reused…","indicators":{"cves":["CVE-2026-15743"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T19:16:48.700Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://datatracker.ietf.org/doc/html/rfc9111","label":"9b29abf9-4ab0-4765-b253-1875cd9b441e","domainType":"other"},{"url":"https://github.com/perl-catalyst/Catalyst-Plugin-Static-Simple/pull/3","label":"9b29abf9-4ab0-4765-b253-1875cd9b441e","domainType":"primary"},{"url":"https://security.metacpan.org/patches/C/Catalyst-Plugin-Static-Simple/0.38/CVE-2026-15743-r1.patch","label":"9b29abf9-4ab0-4765-b253-1875cd9b441e","domainType":"other"},{"url":"http://www.openwall.com/lists/oss-security/2026/08/20/18","label":"af854a3a-2127-422b-91ae-364da2661108","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19586","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-19586 — A pre-authentication OS command injection vulnerability has been identified in Omada gateways config…","description":"A pre-authentication OS command injection vulnerability has been identified in Omada gateways configured to operate as an OpenVPN Server due to insufficient validation of client-supplied data during OpenVPN connection establishment. An unauthenticated remote attacker may provide specially crafted in…","indicators":{"cves":["CVE-2026-19586"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T19:16:51.103Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://www.omadanetworks.com/en/support/download/","label":"f23511db-6c3e-4e32-a477-6aa17d310630","domainType":"other"},{"url":"https://www.omadanetworks.com/us/support/download/","label":"f23511db-6c3e-4e32-a477-6aa17d310630","domainType":"other"},{"url":"https://www.tp-link.com/us/support/faq/5256/","label":"f23511db-6c3e-4e32-a477-6aa17d310630","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19683","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-19683 — A vulnerability exists in the Dynamic DNS (DDNS) functionality of TP-Link Omada Gateways. During com…","description":"A vulnerability exists in the Dynamic DNS (DDNS) functionality of TP-Link Omada Gateways. During communication with a third-party DDNS service, authentication credentials are transmitted over an unencrypted channel. An attacker who can observe or manipulate traffic between an affected device and the…","indicators":{"cves":["CVE-2026-19683"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T19:16:51.303Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://www.omadanetworks.com/en/support/download/","label":"f23511db-6c3e-4e32-a477-6aa17d310630","domainType":"other"},{"url":"https://www.omadanetworks.com/us/support/download/","label":"f23511db-6c3e-4e32-a477-6aa17d310630","domainType":"other"},{"url":"https://www.tp-link.com/us/support/faq/5256/","label":"f23511db-6c3e-4e32-a477-6aa17d310630","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-50190","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-50190 — Shaarli is a personal bookmarking service. Versions prior to 0.16.3 are vulnerable to stored XSS in…","description":"Shaarli is a personal bookmarking service. Versions prior to 0.16.3 are vulnerable to stored XSS in `application/front/controller/visitor/BookmarkListController.php`. The `permalink` handler concatenates the raw `$bookmark->getTitle()` into the `pagetitle` template variable and the RainTPL template…","indicators":{"cves":["CVE-2026-50190"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T19:16:53.907Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://github.com/shaarli/Shaarli/security/advisories/GHSA-xm98-h5jj-64xv","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/shaarli/Shaarli/security/advisories/GHSA-xm98-h5jj-64xv","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-53569","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-53569 — Frappe is a full-stack web application framework. In version 16.31.0 and earlier, the whitelisted to…","description":"Frappe is a full-stack web application framework. In version 16.31.0 and earlier, the whitelisted toggle_like and mark_as_seen endpoints in frappe/desk/like.py and frappe/desk/doctype/note/note.py do not enforce read permission before modifying _liked_by metadata or a Note seen state. An authenticat…","indicators":{"cves":["CVE-2026-53569"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T19:16:54.350Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://github.com/frappe/frappe/commit/91155d12deba4426cf33196805da77bc78c5cde1","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frappe/frappe/commit/aeb93abe6b217ea0ae27253ef105ad6d0803613e","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frappe/frappe/pull/39760","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frappe/frappe/security/advisories/GHSA-rx6h-4p83-m76x","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-62315","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-62315 — Frappe is a full-stack web application framework. In version 16.31.0 and earlier, frappe.client.set_…","description":"Frappe is a full-stack web application framework. In version 16.31.0 and earlier, frappe.client.set_value in frappe/client.py checks a dictionary supplied through the fieldname parameter against forbidden standard and child-table fields before parsing the dictionary into individual field names. An a…","indicators":{"cves":["CVE-2026-62315"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T19:16:56.980Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://github.com/frappe/frappe/commit/2a04fae9353c02f0a9ce9f40f92c1eba6765c77b","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frappe/frappe/pull/38951","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frappe/frappe/security/advisories/GHSA-2c6h-wv85-fxvj","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-63654","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-63654 — Frappe is a full-stack web application framework. In version 16.31.0 and earlier, the whitelisted fr…","description":"Frappe is a full-stack web application framework. In version 16.31.0 and earlier, the whitelisted frappe.model.workflow.bulk_workflow_approval endpoint in frappe/model/workflow.py accepts safe HTTP methods for state-changing workflow approvals because the endpoint is not restricted to POST. An attac…","indicators":{"cves":["CVE-2026-63654"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T19:16:57.570Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://github.com/frappe/frappe/commit/8465376ad9f81775c20892338f920c695b88fb1f","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frappe/frappe/pull/41361","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frappe/frappe/security/advisories/GHSA-cgwf-xgph-hxgm","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-66001","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-66001 — Frappe is a full-stack web application framework. Prior to 15.114.0 and 16.26.0, the approve and aut…","description":"Frappe is a full-stack web application framework. Prior to 15.114.0 and 16.26.0, the approve and authorize functions in frappe/integrations/oauth2.py allow the OAuth2 consent flow to proceed without restricting approve to POST, without a csrf_token in frappe/templates/includes/oauth_confirmation.htm…","indicators":{"cves":["CVE-2026-66001"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T19:16:58.020Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://github.com/frappe/frappe/commit/336c7d335db762b494acdfe43aea69d459fd51d7","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frappe/frappe/commit/d7460769f999c68d3121b680119f8724ddd3eb9d","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frappe/frappe/commit/eb9c1446cac13236c6d573b136786db2e46254fa","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frappe/frappe/pull/40073","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frappe/frappe/pull/40700","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frappe/frappe/pull/40701","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frappe/frappe/releases/tag/v15.114.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frappe/frappe/releases/tag/v16.26.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frappe/frappe/security/advisories/GHSA-2ph8-x773-8p2x","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-66002","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-66002 — Frappe is a full-stack web application framework. Prior to 15.115.0 and 16.27.0, the public request-…","description":"Frappe is a full-stack web application framework. Prior to 15.115.0 and 16.27.0, the public request-data web form and PersonalDataDownloadRequest class in frappe/website/doctype/personal_data_download_request/personal_data_download_request.py return distinguishable response shapes for registered and…","indicators":{"cves":["CVE-2026-66002"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T19:16:58.187Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://github.com/frappe/frappe/commit/30fe0b4118ff94c95c239dce4bc74ec4ca10a827","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frappe/frappe/commit/47a396ec59f5362029feb349eb2b9d10a21afcf8","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frappe/frappe/commit/4b32a4e0072e61ce0abcb0d09cfd1f14724fe896","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frappe/frappe/pull/40787","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frappe/frappe/pull/40814","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frappe/frappe/pull/40815","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frappe/frappe/releases/tag/v15.115.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frappe/frappe/releases/tag/v16.27.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/frappe/frappe/security/advisories/GHSA-c2xv-c53h-qvr5","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-9033","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-9033 — An unauthenticated attacker with network access to the captive portal service of an affected device…","description":"An unauthenticated attacker with network access to the captive portal service of an affected device can terminate active captive portal sessions, including forcing logout of specific users or clearing all active sessions. Affected users must re-authenticate to regain access. \n\n\n\nSuccessful exploitat…","indicators":{"cves":["CVE-2026-9033"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T19:17:04.950Z","fetchedAt":"2026-08-21T03:01:29.089Z","references":[{"url":"https://www.omadanetworks.com/en/support/download/","label":"f23511db-6c3e-4e32-a477-6aa17d310630","domainType":"other"},{"url":"https://www.omadanetworks.com/us/support/download/","label":"f23511db-6c3e-4e32-a477-6aa17d310630","domainType":"other"},{"url":"https://www.tp-link.com/us/support/faq/5256/","label":"f23511db-6c3e-4e32-a477-6aa17d310630","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-19755","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-19755 — NoSleep 1.5.1 exposes a privileged XPC Mach service and accepts raw dictionary messages containing a…","description":"NoSleep 1.5.1 exposes a privileged XPC Mach service and accepts raw dictionary messages containing attacker-controlled command and NSBundlePath values.This issue affects NoSleep: 1.5.1.","indicators":{"cves":["CVE-2026-19755"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T21:17:06.283Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://fluidattacks.com/advisories/iggy","label":"help@fluidattacks.com","domainType":"other"},{"url":"https://github.com/integralpro/nosleep/","label":"help@fluidattacks.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-43798","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-43798 — A single crafted SSH message gives an unauthenticated network attacker an out-of-bounds stack write…","description":"A single crafted SSH message gives an unauthenticated network attacker an out-of-bounds stack write of attacker-controlled length and content against any application built on swift-nio-ssh. This vulnerability is addressed in swift-nio-ssh version 0.14.1.","indicators":{"cves":["CVE-2026-43798"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T21:17:06.580Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://github.com/apple/swift-nio-ssh/security/advisories/GHSA-998x-vgvp-xwpc","label":"product-security@apple.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-52021","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-52021 — An issue in code100xDevs 100xdevs CMS v.1.0 (2026-04-30) allows a remote attacker to obtain sensitiv…","description":"An issue in code100xDevs 100xdevs CMS v.1.0 (2026-04-30) allows a remote attacker to obtain sensitive information via the src/middleware.ts, and src/app/api/mobile/search/route.ts components.","indicators":{"cves":["CVE-2026-52021"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T21:17:06.687Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://gist.github.com/itsmohitnarayan/e456399f083130962bab6c710f208437","label":"cve@mitre.org","domainType":"primary"},{"url":"https://github.com/code100x/cms","label":"cve@mitre.org","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-70651","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-70651 — libvips is a fast image processing library with low memory needs. Prior to version 8.18.3, libvips b…","description":"libvips is a fast image processing library with low memory needs. Prior to version 8.18.3, libvips built without libtiff support but with ImageMagick support can overflow the combined frame height while loading a crafted multi-page TIFF through VipsForeignLoadMagick. The vulnerable calculations in l…","indicators":{"cves":["CVE-2026-70651","CVE-2026-70652"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T21:17:08.120Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://github.com/libvips/libvips/commit/05719ca3d5852acdeb6714de2e8e769c9a5d2c11","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libvips/libvips/pull/5040","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libvips/libvips/releases/tag/v8.18.3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libvips/libvips/security/advisories/GHSA-7p29-wg2h-36q4","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libvips/libvips/commit/cff17794f0698a4f47c74bb31c9700b2c83252a8","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libvips/libvips/pull/5039","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libvips/libvips/security/advisories/GHSA-h27h-jf9v-m8rg","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-70653","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-70653 — libvips is a fast image processing library with low memory needs. Prior to version 8.18.3, the old-s…","description":"libvips is a fast image processing library with low memory needs. Prior to version 8.18.3, the old-style Radiance RLE decoder in libvips/foreign/radiance.c can process a repeat marker at the beginning of a scanline in scanline_read_old and read q[-1] before any prior pixel exists. A crafted Radiance…","indicators":{"cves":["CVE-2026-70653"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T21:17:08.427Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://github.com/libvips/libvips/commit/dc945573e15d598054e701c65b90a35b16b19304","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libvips/libvips/pull/5037","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libvips/libvips/releases/tag/v8.18.3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libvips/libvips/security/advisories/GHSA-fh99-55jf-5hj3","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-70654","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-70654 — libvips is a fast image processing library with low memory needs. Prior to version 8.18.3, applicati…","description":"libvips is a fast image processing library with low memory needs. Prior to version 8.18.3, applications that define unusual custom libvips sources and use them to process untrusted uncompressed PPM images can trigger a max/min error in vips_source_read_to_memory in libvips/iofuncs/source.c. The func…","indicators":{"cves":["CVE-2026-70654"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T21:17:08.567Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://github.com/libvips/libvips/commit/80e021c6cdda0f80b756c2109d99839c94c03258","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libvips/libvips/pull/5038","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libvips/libvips/releases/tag/v8.18.3","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/libvips/libvips/security/advisories/GHSA-rjmm-3qch-m9rg","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-74836","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-74836 — Allocation of Resources Without Limits or Throttling vulnerability in mtrudel bandit allows an unaut…","description":"Allocation of Resources Without Limits or Throttling vulnerability in mtrudel bandit allows an unauthenticated remote attacker to pin an unbounded number of HTTP/2 stream processes indefinitely via connection-level flow control. When a stream's response body outruns the HTTP/2 connection-level send…","indicators":{"cves":["CVE-2026-74836"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T21:17:09.407Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://cna.erlef.org/cves/CVE-2026-74836.html","label":"6b3ad84c-e1a6-4bf7-a703-f496b71e49db","domainType":"other"},{"url":"https://github.com/mtrudel/bandit/commit/f6914aad14bb1365dd6f306aa592cfb0819bed3e","label":"6b3ad84c-e1a6-4bf7-a703-f496b71e49db","domainType":"primary"},{"url":"https://github.com/mtrudel/bandit/security/advisories/GHSA-xj8g-532w-jv94","label":"6b3ad84c-e1a6-4bf7-a703-f496b71e49db","domainType":"primary"},{"url":"https://osv.dev/vulnerability/EEF-CVE-2026-74836","label":"6b3ad84c-e1a6-4bf7-a703-f496b71e49db","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-75484","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-75484 — Improper Neutralization of CRLF Sequences ('CRLF Injection') vulnerability in mtrudel bandit allows…","description":"Improper Neutralization of CRLF Sequences ('CRLF Injection') vulnerability in mtrudel bandit allows an unauthenticated remote attacker to smuggle CR, LF, or NUL characters into application-visible request headers via HTTP/2. Bandit.HTTP2.Stream.read_headers/1 validates pseudo-header placement and un…","indicators":{"cves":["CVE-2026-75484"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T21:17:09.597Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://cna.erlef.org/cves/CVE-2026-75484.html","label":"6b3ad84c-e1a6-4bf7-a703-f496b71e49db","domainType":"other"},{"url":"https://github.com/mtrudel/bandit/commit/d38cf046c9a3cae4d0f88001c2ceb4143f86366b","label":"6b3ad84c-e1a6-4bf7-a703-f496b71e49db","domainType":"primary"},{"url":"https://github.com/mtrudel/bandit/security/advisories/GHSA-x3gh-xhj4-3vq8","label":"6b3ad84c-e1a6-4bf7-a703-f496b71e49db","domainType":"primary"},{"url":"https://osv.dev/vulnerability/EEF-CVE-2026-75484","label":"6b3ad84c-e1a6-4bf7-a703-f496b71e49db","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76017","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-76017 — Use after free in Chromoting in Google Chrome prior to 151.0.7922.173 allowed a remote attacker to e…","description":"Use after free in Chromoting in Google Chrome prior to 151.0.7922.173 allowed a remote attacker to execute arbitrary code outside the sandbox via crafted network traffic. (Chromium security severity: Critical)","indicators":{"cves":["CVE-2026-76017"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T21:17:09.800Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_0404570826.html","label":"chrome-cve-admin@google.com","domainType":"other"},{"url":"https://issues.chromium.org/issues/522819252","label":"chrome-cve-admin@google.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76020","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-76020 — Race condition in V8 in Google Chrome prior to 151.0.7922.173 allowed a remote attacker to execute a…","description":"Race condition in V8 in Google Chrome prior to 151.0.7922.173 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)","indicators":{"cves":["CVE-2026-76020"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T21:17:10.167Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_0404570826.html","label":"chrome-cve-admin@google.com","domainType":"other"},{"url":"https://issues.chromium.org/issues/541837151","label":"chrome-cve-admin@google.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76021","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-76021 — Use after free in DOM in Google Chrome prior to 151.0.7922.173 allowed a remote attacker to execute…","description":"Use after free in DOM in Google Chrome prior to 151.0.7922.173 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)","indicators":{"cves":["CVE-2026-76021"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T21:17:10.280Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_0404570826.html","label":"chrome-cve-admin@google.com","domainType":"other"},{"url":"https://issues.chromium.org/issues/541854084","label":"chrome-cve-admin@google.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76022","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-76022 — Buffer overflow in Network in Google Chrome prior to 151.0.7922.173 allowed a remote attacker to exe…","description":"Buffer overflow in Network in Google Chrome prior to 151.0.7922.173 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)","indicators":{"cves":["CVE-2026-76022"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T21:17:10.420Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_0404570826.html","label":"chrome-cve-admin@google.com","domainType":"other"},{"url":"https://issues.chromium.org/issues/543798025","label":"chrome-cve-admin@google.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76023","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-76023 — Improper resource control in Linux Toolkit Theming in Google Chrome prior to 151.0.7922.173 allowed…","description":"Improper resource control in Linux Toolkit Theming in Google Chrome prior to 151.0.7922.173 allowed a remote attacker who had compromised the renderer process to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)","indicators":{"cves":["CVE-2026-76023"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T21:17:10.553Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_0404570826.html","label":"chrome-cve-admin@google.com","domainType":"other"},{"url":"https://issues.chromium.org/issues/545124048","label":"chrome-cve-admin@google.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2025-52182","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2025-52182 — The Library Corporation LS2 Admin v5.7 to v5.8.0 was discovered to contain an information disclosure…","description":"The Library Corporation LS2 Admin v5.7 to v5.8.0 was discovered to contain an information disclosure vulnerability.","indicators":{"cves":["CVE-2025-52182"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:05.863Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://gist.github.com/joachimjohannesen/a0781100d374b86450a81a54c959f59c","label":"cve@mitre.org","domainType":"primary"},{"url":"https://ocipubdemo.tlcdelivers.com/admin/locationConfiguration/export","label":"cve@mitre.org","domainType":"other"},{"url":"https://ocipubdemo.tlcdelivers.com/scripts/TlcIndigo/ls2admin/Control/ExportReportControl.js","label":"cve@mitre.org","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-50192","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-50192 — Kerberos Agent is an open source video (surveillance) management agent. Prior to version 3.6.26, the…","description":"Kerberos Agent is an open source video (surveillance) management agent. Prior to version 3.6.26, the Kerberos Hub upload path sends the agent's Hub credentials in the custom `X-Kerberos-Hub-PrivateKey` and `X-Kerberos-Hub-PublicKey` request headers to the operator-configured Hub URL (`config.HubURI`…","indicators":{"cves":["CVE-2026-50192"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:20.390Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://github.com/kerberos-io/agent/commit/51f1a52e170f21c1264c6de1dc781d5b5e2a5d09","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/kerberos-io/agent/security/advisories/GHSA-h5gx-45rj-2h5j","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-54505","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-54505 — TREK is a collaborative travel planner. Prior to 3.1.0, when the Journey add-on is enabled, TREK int…","description":"TREK is a collaborative travel planner. Prior to 3.1.0, when the Journey add-on is enabled, TREK interpolates the unescaped activeSuggestion.title value into journey.frontpage.suggestionText through client/src/i18n/TranslationContext.tsx and renders the result with dangerouslySetInnerHTML in client/…","indicators":{"cves":["CVE-2026-54505"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:21.263Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://github.com/liketrek/TREK/commit/ad893eb1cc75b6d56f402d73a6d41bd48ba7ae11","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/liketrek/TREK/pull/1185","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/liketrek/TREK/releases/tag/v3.1.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/liketrek/TREK/security/advisories/GHSA-g8rf-gqrw-4qf9","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-54508","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-54508 — TREK is a collaborative travel planner. Prior to 3.1.0, TREK validates only the initial URL before n…","description":"TREK is a collaborative travel planner. Prior to 3.1.0, TREK validates only the initial URL before native redirect following in importGoogleList() and importNaverList() in server/src/services/placeService.ts and resolveGoogleMapsUrl() in server/src/services/mapsService.ts. The affected sinks call ch…","indicators":{"cves":["CVE-2026-54508"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:21.410Z","fetchedAt":"2026-08-21T03:01:29.098Z","references":[{"url":"https://github.com/liketrek/TREK/commit/ad893eb1cc75b6d56f402d73a6d41bd48ba7ae11","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/liketrek/TREK/pull/1185","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/liketrek/TREK/releases/tag/v3.1.0","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/liketrek/TREK/security/advisories/GHSA-f5vh-p2h5-x735","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-55893","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-55893 — Capstone is a disassembly framework. In 6.0.0-Alpha9 and earlier, Capstone's arch/SH/SHDisassembler.…","description":"Capstone is a disassembly framework. In 6.0.0-Alpha9 and earlier, Capstone's arch/SH/SHDisassembler.c SH floating-point decoders such as opFADD, opFMUL, and opFSUB call set_reg() and set_reg_n() using sh_info.op.op_count without checking the fixed-size operands[] array. Repeated crafted instructions…","indicators":{"cves":["CVE-2026-55893","CVE-2026-55894"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:22.787Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://github.com/capstone-engine/capstone/commit/09e76802380b9e94d9720c44458d9d5282219e7e","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/capstone-engine/capstone/commit/e17ee44a8307ea33375b4727ac4f987650bf7bed","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/capstone-engine/capstone/pull/2968","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/capstone-engine/capstone/pull/2969","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/capstone-engine/capstone/releases/tag/6.0.0-Alpha10","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/capstone-engine/capstone/security/advisories/GHSA-3hpv-wr3j-rxwh","label":"security-advisories@github.com","domainType":"primary"},{"url":"https://github.com/capstone-engine/capstone/security/advisories/GHSA-gf2c-xwcp-hvf4","label":"security-advisories@github.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-64773","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-64773 — An attacker that can reach a container's published TCP port may be able to force the host's forwardi…","description":"An attacker that can reach a container's published TCP port may be able to force the host's forwarding process to buffer an unbounded amount of that client's data in memory, for as long as the backend container connection takes to complete — with no cap on how much accumulates or how long the wait c…","indicators":{"cves":["CVE-2026-64773"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:17:48.603Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://github.com/apple/container/security/advisories/GHSA-wg28-286f-56v6","label":"product-security@apple.com","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-77644","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-77644 — A critical bypass access control vulnerability has been reported in PTC Windchill Risk and Reliabili…","description":"A critical bypass access control vulnerability has been reported in PTC Windchill Risk and Reliability (WRR) Enterprise Edition.","indicators":{"cves":["CVE-2026-77644"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:18:06.357Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://www.ptc.com/en/support/article/CS474818","label":"0b655efc-079c-4cb9-9e8d-164871239f4e","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77646","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-77646 — A Server-Side Request Forgery (SSRF) vulnerability has been reported in PTC Windchill PDMLink and PT…","description":"A Server-Side Request Forgery (SSRF) vulnerability has been reported in PTC Windchill PDMLink and PTC FlexPLM. The vulnerability may be exploited through the deserialization of untrusted data.","indicators":{"cves":["CVE-2026-77646"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T22:18:06.657Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://www.ptc.com/en/support/article/CS474826","label":"0b655efc-079c-4cb9-9e8d-164871239f4e","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-77113","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-77113 — Path traversal in apport-unpack in Canonical Apport before 2.36.0, 2.34.2, and 2.28.4 on Linux allow…","description":"Path traversal in apport-unpack in Canonical Apport before 2.36.0, 2.34.2, and 2.28.4 on Linux allows an attacker to create or overwrite arbitrary files with the privileges of the executing user via an attacker controlled key names in crash report files.","indicators":{"cves":["CVE-2026-77113"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T23:16:28.387Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://github.com/canonical/apport/pull/646","label":"security@ubuntu.com","domainType":"primary"},{"url":"https://launchpad.net/bugs/2161697","label":"security@ubuntu.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-16520","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-16520 — Improper input validation and Exposure of sensitive information through data queries vulnerability i…","description":"Improper input validation and Exposure of sensitive information through data queries vulnerability in Genians Genian NAC V4.0, Genians Genian NAC V5.0, and Genians Genian ZTNA V6.0 allows SQL Injection and Authentication Bypass.\n\nThis issue affects Genian NAC V4.0: from 4.0.0 before 4.0.175(Revision…","indicators":{"cves":["CVE-2026-16520"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-21T00:16:31.623Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://docs.genians.com/release/ko/advisories/GN-SA-2026-003.html","label":"09832df1-09c1-45b4-8a85-16c601d30feb","domainType":"other"},{"url":"https://github.com/genians/security-research/security/advisories/GHSA-f6f5-wx2h-ccfw","label":"09832df1-09c1-45b4-8a85-16c601d30feb","domainType":"primary"}],"feedLabel":null},{"id":"nvd-CVE-2026-20679","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-20679 — The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.7.5, macOS Son…","description":"The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.7.5, macOS Sonoma 14.8.5, macOS Tahoe 26.4. Processing a maliciously crafted file may lead to unexpected app termination.","indicators":{"cves":["CVE-2026-20679"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-21T01:16:59.830Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://support.apple.com/en-us/126794","label":"product-security@apple.com","domainType":"other"},{"url":"https://support.apple.com/en-us/126795","label":"product-security@apple.com","domainType":"other"},{"url":"https://support.apple.com/en-us/126796","label":"product-security@apple.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-43679","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-43679 — This issue was addressed with improved permissions checking. This issue is fixed in watchOS 26.4. An…","description":"This issue was addressed with improved permissions checking. This issue is fixed in watchOS 26.4. An attacker with physical access to a locked Apple Watch may be able to view user contacts.","indicators":{"cves":["CVE-2026-43679"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-21T01:17:01.723Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://support.apple.com/en-us/126798","label":"product-security@apple.com","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76155","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-76155 — Use of default credentials in Datiphy Data Management Center from v8.3.0 through v8.5.1 allows a rem…","description":"Use of default credentials in Datiphy Data Management Center from v8.3.0 through v8.5.1 allows a remote attacker to gain administrative access to the management platform by logging in with default administrator credentials.","indicators":{"cves":["CVE-2026-76155"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-21T02:16:25.840Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://zuso.ai/advisory","label":"ART@zuso.ai","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76156","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-76156 — OS command injection in the api endpoint of Datiphy Data Management Center from v8.3.0 through v8.5.…","description":"OS command injection in the api endpoint of Datiphy Data Management Center from v8.3.0 through v8.5.1 allows an authenticated administrator to execute arbitrary operating system commands as root.","indicators":{"cves":["CVE-2026-76156"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-21T02:16:27.090Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://zuso.ai/advisory","label":"ART@zuso.ai","domainType":"other"}],"feedLabel":null},{"id":"nvd-CVE-2026-76157","source":"nvd","category":"vulnerability","severity":"unknown","title":"CVE-2026-76157 — Missing authentication for a critical function in the upload API endpoint of Datiphy Data Management…","description":"Missing authentication for a critical function in the upload API endpoint of Datiphy Data Management Center from v8.3.0 through v8.5.1 allows an unauthenticated remote attacker to upload arbitrary files to the server's configured upload directory.","indicators":{"cves":["CVE-2026-76157"],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-21T02:16:27.260Z","fetchedAt":"2026-08-21T03:01:29.099Z","references":[{"url":"https://zuso.ai/advisory","label":"ART@zuso.ai","domainType":"other"}],"feedLabel":null},{"id":"vendor-cve-2026-62834-azure-data-factory-elevation-of-privilege-vulnerability","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-62834 Azure Data Factory Elevation of Privilege Vulnerability","description":"Improper verification of cryptographic signature in Azure Data Factory allows an unauthorized attacker to elevate privileges over a network.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-62834","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-65801-microsoft-exchange-online-elevation-of-privilege-vulnerability","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-65801 Microsoft Exchange Online Elevation of Privilege Vulnerability","description":"Server-side request forgery (ssrf) in Microsoft Exchange Online allows an unauthorized attacker to elevate privileges over a network.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-65801","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-68789-azure-sql-database-elevation-of-privilege-vulnerability","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-68789 Azure SQL Database Elevation of Privilege Vulnerability","description":"Improper neutralization of special elements used in an sql command ('sql injection') in Azure SQL Database allows an authorized attacker to elevate privileges over a network.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-68789","label":"Microsoft MSRC","domainType":"primary"},{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-66309","label":"Microsoft MSRC","domainType":"primary"},{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-68782","label":"Microsoft MSRC","domainType":"primary"},{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69502","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-69519-azure-stack-hci-information-disclosure-vulnerability","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-69519 Azure Stack HCI Information Disclosure Vulnerability","description":"Observable response discrepancy in Azure Stack HCI allows an unauthorized attacker to disclose information over a network.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69519","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-69851-microsoft-entra-id-elevation-of-privilege-vulnerability","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-69851 Microsoft Entra ID Elevation of Privilege Vulnerability","description":"Server-side request forgery (ssrf) in Azure Active Directory allows an authorized attacker to elevate privileges over a network.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69851","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-62703-windows-dwm-core-library-information-disclosure-vulnerability","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-62703 Windows DWM Core Library Information Disclosure Vulnerability","description":"Updated an acknowledgement. This is an informational change only.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-62703","label":"Microsoft MSRC","domainType":"primary"},{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-48566","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-62747-windows-device-association-service-elevation-of-privilege-vulnera","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-62747 Windows Device Association Service Elevation of Privilege Vulnerability","description":"Updated an acknowledgement. This is an informational change only.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-62747","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-62754-windows-kerberos-elevation-of-privilege-vulnerability","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-62754 Windows Kerberos Elevation of Privilege Vulnerability","description":"Updated links to security updates.  This is an informational change only.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-62754","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-62755-windows-dhcp-client-elevation-of-privilege-vulnerability","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-62755 Windows DHCP Client Elevation of Privilege Vulnerability","description":"Updated an acknowledgement. This is an informational change only.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-62755","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-65786-desktop-window-manager-elevation-of-privilege-vulnerability","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-65786 Desktop Window Manager Elevation of Privilege Vulnerability","description":"Updated an acknowledgement. This is an informational change only.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-65786","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-55015-microsoft-remote-help-denial-of-service-vulnerability","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-55015 Microsoft Remote Help Denial of Service Vulnerability","description":"Uncontrolled search path element in Windows Remote Help allows an authorized attacker to deny service locally.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-55015","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-55013-windows-remote-help-defense-spoofing-vulnerability","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-55013 Windows Remote Help Defense Spoofing Vulnerability","description":"Uncontrolled search path element in Windows Remote Help Defense allows an authorized attacker to perform spoofing locally.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-55013","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-62728-windows-common-log-file-system-driver-elevation-of-privilege-vuln","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-62728 Windows Common Log File System Driver Elevation of Privilege Vulnerability","description":"Updated an acknowledgement. This is an informational change only.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-62728","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-70105-microsoft-word-information-disclosure-vulnerability","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-70105 Microsoft Word Information Disclosure Vulnerability","description":"Information published. This CVE was addressed by updates that were released in August 2026, but the CVE was inadvertently omitted from the August 2026 Security Updates. This is an informational change only. Customers who have already installed the August 2026 updates do not need to take any further…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-70105","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-63509-microsoft-fabric-elevation-of-privilege-vulnerability","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-63509 Microsoft Fabric Elevation of Privilege Vulnerability","description":"Relative path traversal in Microsoft Fabric allows an authorized attacker to elevate privileges over a network.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-63509","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-65816-azure-arc-elevation-of-privilege-vulnerability","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-65816 Azure Arc Elevation of Privilege Vulnerability","description":"Use of incorrectly-resolved name or reference in Azure Arc allows an unauthorized attacker to elevate privileges over a network.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-65816","label":"Microsoft MSRC","domainType":"primary"},{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69555","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-66800-azure-data-factory-information-disclosure-vulnerability","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-66800 Azure Data Factory Information Disclosure Vulnerability","description":"Server-side request forgery (ssrf) in Azure Data Factory allows an unauthorized attacker to disclose information over a network.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-66800","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-69400-azure-logic-apps-elevation-of-privilege-vulnerability","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-69400 Azure Logic Apps Elevation of Privilege Vulnerability","description":"Improper limitation of a pathname to a restricted directory ('path traversal') in Azure Logic Apps allows an unauthorized attacker to elevate privileges over a network.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69400","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-69558-microsoft-partner-center-information-disclosure-vulnerability","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-69558 Microsoft Partner Center Information Disclosure Vulnerability","description":"Authorization bypass through user-controlled key in Microsoft Partner Center allows an unauthorized attacker to disclose information over a network.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69558","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-69543-azure-virtual-machines-elevation-of-privilege-vulnerability","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-69543 Azure Virtual Machines Elevation of Privilege Vulnerability","description":"Server-side request forgery (ssrf) in Azure Virtual Machines allows an authorized attacker to elevate privileges over a network.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69543","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-69855-microsoft-copilot-in-azure-information-disclosure-vulnerability","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-69855 Microsoft Copilot in Azure Information Disclosure Vulnerability","description":"Server-side request forgery (ssrf) in Microsoft Copilot in Azure allows an authorized attacker to disclose information over a network.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69855","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-70338-microsoft-powershell-security-feature-bypass-vulnerability","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-70338 Microsoft PowerShell Security Feature Bypass Vulnerability","description":"Acknowledgement Updated","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-70338","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-62705-microsoft-brokering-file-system-elevation-of-privilege-vulnerabil","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-62705 Microsoft Brokering File System Elevation of Privilege Vulnerability","description":"Corrected the CVE title from **Windows Bind Filter Driver Elevation of Privilege Vulnerability** to **Microsoft Brokering File System Elevation of Privilege Vulnerability** and updated the acknowledgement. These are informational changes only.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-62705","label":"Microsoft MSRC","domainType":"primary"},{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-62722","label":"Microsoft MSRC","domainType":"primary"},{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-49162","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-69414-microsoft-defender-elevation-of-privilege-vulnerability","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-69414 Microsoft Defender Elevation of Privilege Vulnerability","description":"CWE added. Informational change only.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69414","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-65675-copilot-chat-security-feature-bypass-vulnerability","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-65675 CoPilot Chat Security Feature Bypass Vulnerability","description":"CWE added. Informational change only.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-65675","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-50383-windows-print-spooler-information-disclosure-vulnerability","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-50383 Windows Print Spooler Information Disclosure Vulnerability","description":"Acknowledgement Updated","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-50383","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-49798-windows-kernel-elevation-of-privilege-vulnerability","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-49798 Windows Kernel Elevation of Privilege Vulnerability","description":"Acknowledgement Updated","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-49798","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-58647-microsoft-powerbi-report-server-spoofing-vulnerability","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-58647 Microsoft PowerBI Report Server Spoofing Vulnerability","description":"Corrected the Power BI Report Server version in the Security Updates table to use the public release version instead of the internal build number. This is an informational change only.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-58647","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-42912-windows-telephony-service-elevation-of-privilege-vulnerability","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-42912 Windows Telephony Service Elevation of Privilege Vulnerability","description":"Acknowledgement Updated","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-42912","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-24301-microsoft-copilot-information-disclosure-vulnerability","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-24301 Microsoft Copilot Information Disclosure Vulnerability","description":"Improper neutralization of special elements used in a command ('command injection') in Microsoft Copilot allows an unauthorized attacker to disclose information over a network.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-24301","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-66804-microsoft-windows-cross-device-service-elevation-of-privilege-vul","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-66804 Microsoft Windows Cross Device Service Elevation of Privilege Vulnerability","description":"Acknowledgement Updated","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-66804","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-47632-azure-connected-machine-agent-elevation-of-privilege-vulnerabilit","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-47632 Azure Connected Machine Agent Elevation of Privilege Vulnerability","description":"Corrected the affected product from **Azure Monitor Agent Metrics Extension** to **Azure Connected Machine Agent** and updated the Security Updates table. This is an informational change only.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-47632","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-50419-windows-kernel-information-disclosure-vulnerability","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-50419 Windows Kernel Information Disclosure Vulnerability","description":"Acknowledgement Updated","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-50419","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-58612-powershell-information-disclosure-vulnerability","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-58612 PowerShell Information Disclosure Vulnerability","description":"Acknowledgement Updated","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-58612","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-62886-net-elevation-of-privilege-vulnerability","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-62886 .NET Elevation of Privilege Vulnerability","description":"Acknowledgement Updated","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-62886","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-65769-microsoft-teams-ios-information-disclosure-vulnerability","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-65769 Microsoft Teams iOS Information Disclosure Vulnerability","description":"Corrected build number for the security update.  This in an informational change only.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-65769","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-57104-azure-storage-explorer-elevation-of-privilege-vulnerability","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-57104 Azure Storage Explorer Elevation of Privilege Vulnerability","description":"Corrected build number for the security update.  This in an informational change only.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-57104","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-65767-microsoft-teams-for-android-spoofing-vulnerability","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-65767 Microsoft Teams for Android Spoofing Vulnerability","description":"Corrected build number for the security update.  This in an informational change only.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-16T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-65767","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-61347-windows-event-logging-service-information-disclosure-vulnerabilit","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-61347 Windows Event Logging Service Information Disclosure Vulnerability","description":"Acknowledgement Updated","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-61347","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-62746-win32k-information-disclosure-vulnerability","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-62746 Win32k Information Disclosure Vulnerability","description":"Acknowledgement Updated","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-62746","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-62777-windows-license-manager-elevation-of-privilege-vulnerability","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-62777 Windows License Manager Elevation of Privilege Vulnerability","description":"Acknowledgement Updated","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-62777","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-65671-remote-access-api-elevation-of-privilege-vulnerability","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-65671 Remote Access API Elevation of Privilege Vulnerability","description":"Acknowledgement Updated","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-65671","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-68821-windows-package-manager-elevation-of-privilege-vulnerability","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-68821 Windows Package Manager Elevation of Privilege Vulnerability","description":"Acknowledgement Updated","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-68821","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-chromium-cve-2026-19560-use-after-free-in-blink","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"Chromium: CVE-2026-19560 Use after free in Blink","description":"This CVE was assigned by Chrome.  Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T23:37:22.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-19560","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-chromium-cve-2026-19559-use-after-free-in-html","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"Chromium: CVE-2026-19559 Use after free in HTML","description":"This CVE was assigned by Chrome.  Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T23:37:19.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-19559","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-chromium-cve-2026-19558-use-after-free-in-extensions","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"Chromium: CVE-2026-19558 Use after free in Extensions","description":"This CVE was assigned by Chrome.  Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T23:37:16.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-19558","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-chromium-cve-2026-19557-use-after-free-in-tabstrip","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"Chromium: CVE-2026-19557 Use after free in TabStrip","description":"This CVE was assigned by Chrome.  Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T23:37:14.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-19557","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-chromium-cve-2026-19556-use-after-free-in-v8","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"Chromium: CVE-2026-19556 Use after free in V8","description":"This CVE was assigned by Chrome.  Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T23:37:11.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-19556","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-59126-windows-event-logging-service-elevation-of-privilege-vulnerabilit","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-59126 Windows Event Logging Service Elevation of Privilege Vulnerability","description":"Acknowledgement Updated","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-59126","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-59119-powershell-elevation-of-privilege-vulnerability","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-59119 PowerShell Elevation of Privilege Vulnerability","description":"The security updates for Powershell have been updated.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-59119","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-cve-2026-32153-windows-speech-runtime-elevation-of-privilege-vulnerability","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"CVE-2026-32153 Windows Speech Runtime Elevation of Privilege Vulnerability","description":"Acknowledgement Updated","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T14:00:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-32153","label":"Microsoft MSRC","domainType":"primary"}],"feedLabel":null},{"id":"vendor-is-cyber-missing-the-marque","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"Is Cyber missing the Marque?","description":"In this week's newsletter, new author Mick Baccio introduces himself and explores the operational and security implications of the new White House memorandum regarding private sector participation in government-authorized offensive cyber operations.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T18:00:18.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://blog.talosintelligence.com/is-cyber-missing-the-marque/","label":"Cisco Talos","domainType":"other"}],"feedLabel":null},{"id":"vendor-uat-10147-chinese-speaking-adversary-integrates-agentic-ai-into-post-compromise-","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"UAT-10147: Chinese-speaking adversary integrates agentic AI into post-compromise operations","description":"Cisco Talos discovered a Chinese-speaking cybercrime group, tracked as UAT-10147, that targets a wide range of vulnerable web servers. This is an overview of the campaign, examining the countries affected, potential impact of BadIIS infections, the attack chain, and post-compromise tactics.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T10:00:32.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://blog.talosintelligence.com/uat-10147-chinese-speaking-adversary-integrates-agentic-ai-into-post-compromise-operations/","label":"Cisco Talos","domainType":"other"}],"feedLabel":null},{"id":"vendor-describing-attacks-with-crime-script-analysis","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"Describing attacks with crime script analysis","description":"Martin explores how using crime script analysis to describe an attack with everyday language makes the situation accessible to non-technical audiences and identify points where the crime can be disrupted.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T10:00:52.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://blog.talosintelligence.com/describing-attacks-with-crime-script-analysis/","label":"Cisco Talos","domainType":"other"}],"feedLabel":null},{"id":"vendor-sd1791-otto-fleet-manager-weak-password-hashing-configuration","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"SD1791 | OTTO® Fleet Manager – Weak Password Hashing Configuration","description":"CVE-2026-75112: CVSS v4.0 6.9, CVSS v3.1 6.8 | https://cveawg.mitre.org/api/cve/CVE-2026-75112Published Date: Wed Aug 19 18:20:00 UTC 2026","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T18:20:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://www.rockwellautomation.com/en-us/trust-center/security-advisories/advisory.SD1791.html","label":"Rockwell Automation","domainType":"primary"}],"feedLabel":null},{"id":"vendor-nist-offers-resource-constrained-bacs-operators-practical-steps-to-address-ot-cy","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"NIST offers resource-constrained BACS operators practical steps to address OT cybersecurity threats and risks","description":"The National Institute of Standards and Technology published a quick-start infographic with immediate, actionable cybersecurity steps for owners...\nThe post NIST offers resource-constrained BACS operators practical steps to address OT cybersecurity threats and risks appeared first on Industrial Cybe…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T09:29:36.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://industrialcyber.co/nist/nist-offers-resource-constrained-bacs-operators-practical-steps-to-address-ot-cybersecurity-threats-and-risks/","label":"Industrial Cyber","domainType":"other"}],"feedLabel":null},{"id":"vendor-bitdefender-traces-silkparasite-cyberespionage-campaign-across-central-asia-to-s","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"Bitdefender traces SilkParasite cyberespionage campaign across Central Asia to seven RAT families, China-nexus tooling","description":"Bitdefender Labs identified SilkParasite, a cyberespionage operation assessed with medium confidence as China-nexus, targeting government bodies across Central...\nThe post Bitdefender traces SilkParasite cyberespionage campaign across Central Asia to seven RAT families, China-nexus tooling appeared…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T09:29:17.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://industrialcyber.co/ransomware/bitdefender-traces-silkparasite-cyberespionage-campaign-across-central-asia-to-seven-rat-families-china-nexus-tooling/","label":"Industrial Cyber","domainType":"other"}],"feedLabel":null},{"id":"vendor-senators-introduce-bipartisan-quantum-guard-act-to-boost-us-electric-grid-agains","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"Senators introduce bipartisan Quantum-GUARD Act to boost US electric grid against emerging quantum cyber threats","description":"Two U.S. Senators introduced bipartisan legislation aimed at strengthening the electric grid against cybersecurity threats from advancing quantum...\nThe post Senators introduce bipartisan Quantum-GUARD Act to boost US electric grid against emerging quantum cyber threats appeared first on Industrial…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T11:42:15.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://industrialcyber.co/utilities-energy-power-water-waste/senators-introduce-bipartisan-quantum-guard-act-to-boost-us-electric-grid-against-emerging-quantum-cyber-threats/","label":"Industrial Cyber","domainType":"other"}],"feedLabel":null},{"id":"vendor-georgia-cyber-resiliency-center-aligns-rural-healthcare-cybersecurity-cyber-resi","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"Georgia Cyber Resiliency Center aligns rural healthcare cybersecurity, cyber resilience with CMS Rural Health Transformation goals","description":"The Cyber Resiliency Center (CRC), part of the Georgia Cyber Center at Augusta University, announced an alignment of...\nThe post Georgia Cyber Resiliency Center aligns rural healthcare cybersecurity, cyber resilience with CMS Rural Health Transformation goals appeared first on Industrial Cyber.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T10:02:15.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://industrialcyber.co/news/georgia-cyber-resiliency-center-aligns-rural-healthcare-cybersecurity-cyber-resilience-with-cms-rural-health-transformation-goals/","label":"Industrial Cyber","domainType":"other"}],"feedLabel":null},{"id":"vendor-from-hype-to-operational-reality-what-we-learned-at-ai-in-ot-cyber","source":"vendor-blogs","category":"advisory","severity":"unknown","title":"From Hype to Operational Reality: What We Learned at AI in OT Cyber","description":"I have moderated a lot of events over the years, but this one felt different while it was...\nThe post From Hype to Operational Reality: What We Learned at AI in OT Cyber appeared first on Industrial Cyber.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T12:30:00.000Z","fetchedAt":"2026-08-21T03:00:09.022Z","references":[{"url":"https://industrialcyber.co/features/from-hype-to-operational-reality-what-we-learned-at-ai-in-ot-cyber/","label":"Industrial Cyber","domainType":"other"}],"feedLabel":null},{"id":"news-citrix-urges-admins-to-patch-new-netscaler-flaws-as-soon-as-possible","source":"general-news","category":"news","severity":"unknown","title":"Citrix urges admins to patch new NetScaler flaws as soon as possible","description":"Citrix has warned customers to immediately secure their systems against two vulnerabilities affecting NetScaler Gateway secure remote access solutions and NetScaler ADC networking appliances. [...]","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:14:38.000Z","fetchedAt":"2026-08-21T03:00:02.308Z","references":[{"url":"https://www.bleepingcomputer.com/news/security/citrix-urges-admins-to-patch-new-netscaler-flaws-as-soon-as-possible/","label":"BleepingComputer","domainType":"media"}],"feedLabel":null},{"id":"news-cisa-warns-of-hackers-exploiting-critical-mlflow-vulnerability","source":"general-news","category":"news","severity":"unknown","title":"CISA warns of hackers exploiting critical MLflow vulnerability","description":"The Cybersecurity and Infrastructure Security Agency (CISA) warned federal agencies that threat actors are now exploiting a critical vulnerability in the MLflow open-source AI engineering platform. [...]","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T11:06:14.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.bleepingcomputer.com/news/security/cisa-warns-of-hackers-exploiting-critical-mlflow-vulnerability/","label":"BleepingComputer","domainType":"media"}],"feedLabel":null},{"id":"news-new-manic-android-malware-can-exfiltrate-data-through-nearby-devices","source":"general-news","category":"news","severity":"unknown","title":"New Manic Android malware can exfiltrate data through nearby devices","description":"A new Android malware named Manic targeting users in multiple European countries has a fallback data exfiltration mechanism that uses nearby infected devices. [...]","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T10:02:02.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.bleepingcomputer.com/news/security/new-manic-android-malware-can-exfiltrate-data-through-nearby-devices/","label":"BleepingComputer","domainType":"media"}],"feedLabel":null},{"id":"news-microsoft-says-august-windows-updates-may-cause-gaming-issues","source":"general-news","category":"news","severity":"unknown","title":"Microsoft says August Windows updates may cause gaming issues","description":"Microsoft is investigating a potential issue with the August 2026 updates that may prevent some games from launching or cause them to crash on affected Windows 11 systems. [...]","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T06:51:03.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.bleepingcomputer.com/news/microsoft/microsoft-august-windows-updates-may-cause-gaming-issues-reboots/","label":"BleepingComputer","domainType":"media"}],"feedLabel":null},{"id":"news-healthtech-firm-carecloud-data-breach-impacts-3-7-million-patients","source":"general-news","category":"news","severity":"unknown","title":"Healthtech firm CareCloud data breach impacts 3.7 million patients","description":"U.S. healthcare IT company CareCloud disclosed that the data breach incident it suffered earlier this year has impacted more than 3.7 million individuals. [...]","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T20:07:12.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.bleepingcomputer.com/news/security/healthtech-firm-carecloud-data-breach-impacts-37-million-patients/","label":"BleepingComputer","domainType":"media"}],"feedLabel":null},{"id":"news-us-warns-of-ai-powered-attacks-on-siemens-plcs-in-critical-infrastructure","source":"general-news","category":"news","severity":"unknown","title":"US warns of AI-powered attacks on Siemens PLCs in critical infrastructure","description":"U.S. cybersecurity agencies warn that threat actors are using AI-generated scripts to exploit Siemens S7 Series programmable logic controllers (PLCs) in U.S. critical infrastructure. [...]","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T17:50:01.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.bleepingcomputer.com/news/security/us-warns-of-ai-powered-attacks-on-siemens-plcs-in-critical-infrastructure/","label":"BleepingComputer","domainType":"media"}],"feedLabel":null},{"id":"news-ai-generated-exploit-scripts-target-siemens-s7-plcs-in-u-s-critical-infrastructu","source":"general-news","category":"news","severity":"unknown","title":"AI-Generated Exploit Scripts Target Siemens S7 PLCs in U.S. Critical Infrastructure","description":"The U.S. government on Wednesday warned of an \"active threat\" targeting critical infrastructure organizations in the country using artificial intelligence (AI)-generated exploit scripts.\n\nThe activity is targeting Siemens S7 SeriesProgrammable Logic Controllers (PLCs) to conduct reconnaissance and c…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T16:59:44.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/ai-generated-exploit-scripts-target.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-new-cryptographic-context-injection-attack-could-let-web-pages-steal-grok-chat-d","source":"general-news","category":"news","severity":"unknown","title":"New Cryptographic Context Injection Attack Could Let Web Pages Steal Grok Chat Data","description":"Adversa AI has disclosed an attack technique that it says can cause xAI's Grok chatbot to send a user's name, approximate location, subscription tier, and the prompts from the ongoing conversation to an attacker-controlled server after the user asks it to summarize an ordinary web page.\n\nThe AI secu…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:36:27.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/new-cryptographic-context-injection.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-critical-netscaler-flaw-can-bypass-authentication-on-certain-gateway-and-aaa-ser","source":"general-news","category":"news","severity":"unknown","title":"Critical NetScaler Flaw Can Bypass Authentication on Certain Gateway and AAA Servers","description":"Citrix has released updates to address two security flaws impacting NetScaler ADC and NetScaler Gateway deployments, including a critical-severity authentication bypass vulnerability.\n\nAccording to the cloud computing and virtualization technology company, the issues affect customer-managed NetScale…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T13:35:13.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/critical-netscaler-flaw-can-bypass.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-zombie-card-attack-can-revive-expired-visa-cards-for-contactless-payments","source":"general-news","category":"news","severity":"unknown","title":"Zombie Card Attack Can Revive Expired Visa Cards for Contactless Payments","description":"Researchers at the University of Massachusetts Amherst have demonstrated an attack that revives expired Visa contactless credit cards for real in-store purchases by rewriting the expiration date a point-of-sale (POS) terminal reads over near-field communication (NFC), without breaking any of the car…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:01:24.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/zombie-card-attack-can-revive-expired.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-why-shady-ai-is-security-s-next-big-governance-problem","source":"general-news","category":"news","severity":"unknown","title":"Why \"Shady AI\" is Security's Next Big Governance Problem","description":"In March 2026, an internal AI agent at Meta triggered a “Sev 1” incident after sensitive company and user data was exposed to employees who weren’t authorized to access it. \n\nThe incident began when a Meta employee posted a technical question on an internal forum. An engineer used an approved AI age…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T11:45:00.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/why-shady-ai-is-securitys-next-big.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-cdn-tsunami-attack-abuses-http-3-translation-for-up-to-350x-dos-amplification","source":"general-news","category":"news","severity":"unknown","title":"CDN Tsunami Attack Abuses HTTP/3 Translation for Up to 350x DoS Amplification","description":"Cybersecurity researchers have disclosed two denial-of-service (DoS) attacks that exploit how major content delivery networks (CDNs) convert client-facing HTTP/3 traffic into HTTP/1.1 requests to the websites they front, amplifying a low-bandwidth request stream by up to 350x against the origin serv…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T11:39:35.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/cdn-tsunami-attack-abuses-http3.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-manic-android-malware-exfiltrates-data-from-offline-phones-via-nearby-infected-d","source":"general-news","category":"news","severity":"unknown","title":"Manic Android Malware Exfiltrates Data From Offline Phones via Nearby Infected Devices","description":"A new Android threat codenamed Manic has been observed actively targeting Ukrainian banks, government and identity services, and messaging applications, as well as Russian and European financial institutions, global fintech and cryptocurrency services, and military-focused communications.\n\n\"Manic si…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T11:26:08.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/manic-android-malware-exfiltrates-data.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-nasa-ait-gui-flaws-could-let-unauthenticated-attackers-issue-spacecraft-commands","source":"general-news","category":"news","severity":"unknown","title":"NASA AIT-GUI Flaws Could Let Unauthenticated Attackers Issue Spacecraft Commands","description":"Security researchers at Cycode have disclosed a chain of flaws in AIT-GUI, the browser-based operator console for NASA/JPL's open-source AMMOS Instrument Toolkit, that allow an unauthenticated attacker to issue arbitrary commands to the software's spacecraft and instrument command bus.\n\nThe chain, t…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T11:05:11.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/nasa-ait-gui-flaws-could-let.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-toxicpanda-2-0-and-golddigger-expand-android-banking-attacks-with-on-device-frau","source":"general-news","category":"news","severity":"unknown","title":"ToxicPanda 2.0 and GoldDigger Expand Android Banking Attacks with On-Device Fraud","description":"Cybersecurity researchers have shed light on an updated version of ToxicPanda (aka TgToxic) that comes with \"significant enhancements,\" including a set of 167 remote commands and expands its targeting footprint globally.\n\nZimperium zLabs, in a Wednesday report, said the Android malware also features…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T10:38:28.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/toxicpanda-20-and-golddigger-expand.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-cloudflare-workers-spectre-attack-leaks-jwt-from-co-located-worker-at-12-bits-se","source":"general-news","category":"news","severity":"unknown","title":"Cloudflare Workers Spectre Attack Leaks JWT From Co-Located Worker at 12 Bits/Second","description":"Cybersecurity researchers have disclosed details of a remote Spectre attack against Cloudflare Workers that leaked a JSON Web Token (JWT) from a co-located Worker in the production environment at up to 12 bits per second, 360 times the rate of an earlier attack demonstrated in 2021.\n\nThe end-to-end…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T19:02:40.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/cloudflare-workers-spectre-attack-leaks.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-openai-pauses-frontier-rl-training-as-it-tightens-defenses-against-unsafe-ai-beh","source":"general-news","category":"news","severity":"unknown","title":"OpenAI Pauses Frontier RL Training as It Tightens Defenses Against Unsafe AI Behavior","description":"OpenAI on Tuesday revealed that it paused reinforcement learning (RL) training for its latest artificial intelligence (AI) models for two weeks while it shored up additional defenses and increased the scope of its monitoring to avert another Hugging Face-like incident.\n\n\"As models become more capabl…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T18:06:44.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/openai-pauses-frontier-rl-training-as.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-hackers-compromised-14-500-dahua-devices-using-credential-attacks-auth-bypasses-","source":"general-news","category":"news","severity":"unknown","title":"Hackers Compromised 14,500+ Dahua Devices Using Credential Attacks, Auth Bypasses, and P2P","description":"Cybersecurity researchers at Hunt.io have disclosed details of a campaign that they say compromised more than 14,530 Dahua devices between June 17 and July 22, 2026, using credential attacks, two authentication-bypass flaws, and a peer-to-peer (P2P) relay technique.\n\nThe activity, codenamed Operatio…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T11:34:28.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/hackers-compromised-14500-dahua-devices.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-stopandprotect-uses-nearly-2-000-hacked-wordpress-sites-to-spread-malware-and-st","source":"general-news","category":"news","severity":"unknown","title":"StopAndProtect Uses Nearly 2,000 Hacked WordPress Sites to Spread Malware and Steal Data","description":"Cybersecurity researchers have flagged a global cybercrime operation that abuses thousands of hacked WordPress websites as infrastructure to disseminate malware, commandeer infected hosts, store stolen documents, screenshots, and activity logs created to track the status of the activity.\n\n\"The opera…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T11:25:28.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/stopandprotect-uses-nearly-2000-hacked.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-critical-macos-sharepoint-vcenter-and-microsoft-ike-flaws-under-active-exploitat","source":"general-news","category":"news","severity":"unknown","title":"Critical macOS, SharePoint, vCenter, and Microsoft IKE Flaws Under Active Exploitation","description":"The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added four critical vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog, stating they are being exploited in the wild.\n\nThe shortcomings added to the KEV catalog are listed below -\n\n\n  CVE-2026-65400 (CVSS s…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T11:01:48.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/critical-macos-sharepoint-vcenter-and.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-microsoft-links-30-rotating-domains-to-macsync-stealer-infrastructure","source":"general-news","category":"news","severity":"unknown","title":"Microsoft Links 30+ Rotating Domains to MacSync Stealer Infrastructure","description":"Microsoft Defender Experts have linked more than 30 web domains to MacSync Stealer, a macOS-focused information stealer, after correlating recurring endpoint and network behaviors across changing infrastructure, tracing the malware from payload retrieval through data collection, staging, and exfiltr…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T06:01:53.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/microsoft-links-30-rotating-domains-to.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-one-attacker-has-scraped-both-salesforce-and-servicenow-portals-since-2025","source":"general-news","category":"news","severity":"unknown","title":"One Attacker Has Scraped Both Salesforce and ServiceNow Portals Since 2025","description":"A single piece of infrastructure has been pulling records out of Salesforce and ServiceNow customer portals across multiple industries for more than a year, according to research published this week by agent security platform Reco.\n\nThe activity, which Reco has named the City Forum campaign after a…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T11:30:00.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/one-attacker-has-scraped-both.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-critical-gitlab-graphql-flaw-could-let-unauthenticated-attackers-delete-public-p","source":"general-news","category":"news","severity":"unknown","title":"Critical GitLab GraphQL Flaw Could Let Unauthenticated Attackers Delete Public Projects","description":"GitLab has released security updates to address a critical vulnerability impacting its Community Edition (CE) and Enterprise Edition (EE) software that, under certain conditions, could allow an unauthenticated attacker to remotely modify or delete public projects and user data.\n\nThe flaw, tracked as…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:03:04.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/critical-gitlab-graphql-flaw-could-let.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-snowflake-github-actions-flaw-lets-crafted-issues-trigger-command-injection","source":"general-news","category":"news","severity":"unknown","title":"Snowflake GitHub Actions Flaw Lets Crafted Issues Trigger Command Injection","description":"Cybersecurity researchers at Wiz have disclosed a new GitHub Actions workflow injection vulnerability in Snowflake's public snowflakedb/snowflake-connector-net repository that it said could be exploited through a crafted GitHub issue to execute commands in a workflow containing internal Jira credent…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T18:44:17.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/snowflake-github-actions-flaw-lets_0330881554.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-sap-commerce-cloud-cve-2026-58231-targeted-in-exploitation-attempts-days-after-p","source":"general-news","category":"news","severity":"unknown","title":"SAP Commerce Cloud CVE-2026-58231 Targeted in Exploitation Attempts Days After Patch","description":"A maximum-severity security vulnerability impacting SAP Commerce Cloud is witnessing active exploitation efforts.\n\nThe vulnerability, tracked as CVE-2026-58231, is rated 10.0 on the CVSS scoring system. It relates to an instance of insufficient authorization checks and input validation.\n\n\"SAP Commer…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T08:38:46.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/sap-commerce-cloud-cve-2026-58231.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-apple-macos-screen-sharing-flaw-exploited-on-internet-exposed-macs-to-install-mo","source":"general-news","category":"news","severity":"unknown","title":"Apple macOS Screen Sharing Flaw Exploited on Internet-Exposed Macs to Install Monero Miner","description":"A recently patched security flaw in Apple macOS has come under active exploitation in the wild to deploy a cryptocurrency miner, the Netherlands National Cyber Security Centre (NCSC-NL) has warned.\n\nThe vulnerability in question is CVE-2026-65400 (CVSS score: 9.8), a critical authentication issue im…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-15T07:24:04.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/apple-macos-screen-sharing-flaw.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-hackers-spend-nearly-7-million-on-expired-domains-to-redirect-traffic-to-scams-a","source":"general-news","category":"news","severity":"unknown","title":"Hackers Spend Nearly $7 Million on Expired Domains to Redirect Traffic to Scams and Malware","description":"Threat actors are acquiring expired domains to inherit website traffic and reputation to redirect victims to scams and malware on a large scale.\n\nDNS threat intelligence firm Infoblox has given the name dropcatch domains to those that get a second chance, where an expired domain becomes available fo…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T18:48:46.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/hackers-spend-nearly-7-million-on.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-chrome-devtools-technique-enables-authenticated-session-hijacking-in-live-window","source":"general-news","category":"news","severity":"unknown","title":"Chrome DevTools Technique Enables Authenticated Session Hijacking in Live Windows Browsers","description":"Cybersecurity researchers have detailed a post-exploitation technique that enables the Chrome DevTools Protocol (CDP) inside a running Google Chrome or Microsoft Edge process on Windows, allowing an operator to access cookies, saved data, and authenticated browser sessions.\n\nThe technique assumes th…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T11:07:45.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://thehackernews.com/2026/08/chrome-devtools-technique-enables.html","label":"The Hacker News","domainType":"media"}],"feedLabel":null},{"id":"news-new-custody-framework-constrains-ai-agents-inside-the-network","source":"general-news","category":"news","severity":"unknown","title":"New CUSTODY Framework Constrains AI Agents Inside the Network","description":"Enterprise cybersecurity expert Jake Williams joins the Dark Reading News Desk to explain why he decided to release his new agentic AI framework in the wake of the OpenAI attacks on Hugging Face.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T20:42:18.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.darkreading.com/perimeter/new-custody-framework-constrains-ai-agents-inside-network","label":"Dark Reading","domainType":"media"}],"feedLabel":null},{"id":"news-n-able-bug-exposes-password-vault-master-keys","source":"general-news","category":"news","severity":"unknown","title":"N-able Bug Exposes Password Vault Master Keys","description":"The popular \"Passportal\" password manager, favored by MSPs and SMBs, remains risky even after its patch, thanks to its cloud-based design. Should these products stay away from the cloud entirely?","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T17:39:24.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.darkreading.com/vulnerabilities-threats/n-able-bug-password-vault-master-keys","label":"Dark Reading","domainType":"media"}],"feedLabel":null},{"id":"news-pakistan-s-transparent-tribe-refreshes-toolset-for-afghan-cyberattacks","source":"general-news","category":"news","severity":"unknown","title":"Pakistan's Transparent Tribe Refreshes Toolset for Afghan Cyberattacks","description":"A nation-state threat actor is picking on immature organizations run by the Taliban, but failing against more prepared government agencies in India.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:59:22.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.darkreading.com/cyberattacks-data-breaches/pakistan-transparent-tribe-afghan-cyberattacks","label":"Dark Reading","domainType":"media"}],"feedLabel":null},{"id":"news-grandoreiro-malware-resurfaces-with-mexico-campaign","source":"general-news","category":"news","severity":"unknown","title":"'Grandoreiro' Malware Resurfaces With Mexico Campaign","description":"The banking Trojan, post-law enforcement takedown, is sprucing itself up with features that make detection and analysis harder.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T13:30:00.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.darkreading.com/cyberattacks-data-breaches/grandoreiro-resurfaces-mexico-campaign","label":"Dark Reading","domainType":"media"}],"feedLabel":null},{"id":"news-agentic-ai-presents-new-insider-threat-model-for-orgs","source":"general-news","category":"news","severity":"unknown","title":"Agentic AI Presents New Insider Threat Model for Orgs","description":"Katie Moussouris of Luta Security talks with the Dark Reading News Desk about how enterprises will now need to monitor risks posed by their own agents in the wake of the recent Hugging Face attack.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T19:54:43.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.darkreading.com/cyberattacks-data-breaches/agentic-ai-new-insider-threat-model","label":"Dark Reading","domainType":"media"}],"feedLabel":null},{"id":"news-china-linked-hacker-shows-ai-capabilities-in-apac-attack","source":"general-news","category":"news","severity":"unknown","title":"China-Linked Hacker Shows AI Capabilities in APAC Attack","description":"In the first purported \"near-autonomous\" attack on a nation-state, a Chinese-language operator used a complex AI framework to target and compromise government agencies, likely in Taiwan.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T01:00:00.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.darkreading.com/cyberattacks-data-breaches/china-linked-hacker-ai-capabilities-apac-attack","label":"Dark Reading","domainType":"media"}],"feedLabel":null},{"id":"news-critical-gitlab-zero-click-flaw-poses-mitigation-challenges","source":"general-news","category":"news","severity":"unknown","title":"Critical GitLab Zero-Click Flaw Poses Mitigation Challenges","description":"A lack of technical details could make it hard for organizations running self-managed GitLab versions to detect potential exploitation of CVE-2026-19478.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T21:25:58.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.darkreading.com/application-security/critical-gitlab-zero-click-flaw-mitigation-challenges","label":"Dark Reading","domainType":"media"}],"feedLabel":null},{"id":"news-cosnitch-attack-tricked-copilot-into-mapping-out-architecture","source":"general-news","category":"news","severity":"unknown","title":"'CoSnitch' Attack Tricked Copilot Into Mapping Out Architecture","description":"Researchers discovered a \"meta-hacking\" technique that can manipulate the AI service into revealing its own security weaknesses.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T20:17:24.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.darkreading.com/vulnerabilities-threats/cosnitch-attack-copilot-mapping-out-architecture","label":"Dark Reading","domainType":"media"}],"feedLabel":null},{"id":"news-the-industrial-accidents-behind-rogue-ai-agent-attacks-and-the-sandbox-failures-","source":"general-news","category":"news","severity":"unknown","title":"The 'Industrial Accidents' Behind Rogue AI Agent Attacks — and the Sandbox Failures Exposed","description":"Rich Mogull, chief analyst with the Cloud Security Alliance, joins the Dark Reading News Desk with what defenders need to take away from AI agents escaping their environments to launch attacks.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T19:09:51.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.darkreading.com/vulnerabilities-threats/industrial-accidents-rogue-ai-agent-attacks-sandbox-failures","label":"Dark Reading","domainType":"media"}],"feedLabel":null},{"id":"news-silent-twinloot-cyber-threat-operates-entirely-from-microsoft-s-cloud","source":"general-news","category":"news","severity":"unknown","title":"Silent 'TwinLoot' Cyber Threat Operates Entirely From Microsoft's Cloud","description":"The Python-based malware framework takes living-off-the-land tactics to a new heights of stealth, with a modular implant that steals credentials and achieves persistence.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T13:00:00.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.darkreading.com/cloud-security/silent-twinloot-threat-operates-microsoft-cloud","label":"Dark Reading","domainType":"media"}],"feedLabel":null},{"id":"news-video-call-exploit-chains-two-flaws-in-unisoc-modems","source":"general-news","category":"news","severity":"unknown","title":"Video Call Exploit Chains Two Flaws in Unisoc Modems","description":"Researchers found that by combining two vulnerabilities, they could take over an Android device by delivering a payload and getting the victim to answer their phone.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T21:37:23.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.darkreading.com/mobile-security/video-call-exploit-chains-two-flaws-unisoc-modems","label":"Dark Reading","domainType":"media"}],"feedLabel":null},{"id":"news-turf-war-between-claude-agents-leads-to-self-replicating-malware","source":"general-news","category":"news","severity":"unknown","title":"'Turf War' Between Claude Agents Leads to Self-Replicating Malware","description":"Three testing models with the same goal but different directives engaged in \"increasingly aggressive\" territorial attacks on one another, according to Anthropic.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T20:26:34.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.darkreading.com/threat-intelligence/turf-war-claude-agents-self-replicating-malware","label":"Dark Reading","domainType":"media"}],"feedLabel":null},{"id":"news-hugging-face-breach-raises-big-questions-about-ai-security-controls","source":"general-news","category":"news","severity":"unknown","title":"Hugging Face Breach Raises Big Questions About AI Security Controls","description":"Adam Shostack, president of Shostack & Associates and an affiliate professor at the University of Washington, talks with the Dark Reading News Desk about why he was \"blown away\" by OpenAI's revelations regarding the Hugging Face attack.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T19:22:56.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.darkreading.com/vulnerabilities-threats/adam-shostack-talks-hugging-face-phantom-b","label":"Dark Reading","domainType":"media"}],"feedLabel":null},{"id":"news-mission-driven-security-inside-a-global-bank-s-defense","source":"general-news","category":"news","severity":"unknown","title":"Mission-Driven Security: Inside a Global Bank's Defense","description":"In this video interview, Standard Chartered's group CISO shares insights on transitioning from technical roles to strategic leadership, the importance of business-savvy security executives, and how AI is reshaping both defensive capabilities and adversarial tactics in banking.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T19:24:18.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.darkreading.com/cybersecurity-operations/mission-driven-security-inside-global-bank-defense","label":"Dark Reading","domainType":"media"}],"feedLabel":null},{"id":"news-amid-ai-driven-bug-hunt-tsunami-nist-looks-to-ai","source":"general-news","category":"news","severity":"unknown","title":"Amid AI-Driven Bug-Hunt Tsunami, NIST Looks to … AI","description":"Driven by AI-augmented research and scanning, vulnerability volumes continue to surge, driving the National Institute of Standards and Technology to ask whether AI could be the answer.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T17:32:46.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.darkreading.com/vulnerabilities-threats/ai-driven-bug-tsunami-nist-looks-to-ai","label":"Dark Reading","domainType":"media"}],"feedLabel":null},{"id":"news-scottish-govt-suffers-potentially-widening-data-breach-at-prosecutor-s-office","source":"general-news","category":"news","severity":"unknown","title":"Scottish Govt Suffers Potentially Widening Data Breach at Prosecutor's Office","description":"One Caledonian government agency reported a breach, thanks to a third party that may have serviced other agencies as well.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-14T15:58:50.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.darkreading.com/cyberattacks-data-breaches/scottish-govt-data-breach-prosecutors-office","label":"Dark Reading","domainType":"media"}],"feedLabel":null},{"id":"news-hackers-target-zimbra-servers-in-active-exploitation-campaign","source":"general-news","category":"news","severity":"unknown","title":"Hackers Target Zimbra Servers in Active Exploitation Campaign","description":"Exploitation of the Zimbra Collaboration vulnerability CVE-2026-73570 has been observed by Poland’s CERT Polska.\nThe post Hackers Target Zimbra Servers in Active Exploitation Campaign appeared first on SecurityWeek.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T14:50:49.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.securityweek.com/hackers-target-zimbra-servers-in-active-exploitation-campaign/","label":"SecurityWeek","domainType":"media"}],"feedLabel":null},{"id":"news-atlassian-splunk-patch-dozens-of-critical-high-severity-vulnerabilities","source":"general-news","category":"news","severity":"unknown","title":"Atlassian, Splunk Patch Dozens of Critical, High-Severity Vulnerabilities","description":"The flaws could be exploited to execute arbitrary code, access sensitive information, and elevate privileges.\nThe post Atlassian, Splunk Patch Dozens of Critical, High-Severity Vulnerabilities appeared first on SecurityWeek.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:24:53.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.securityweek.com/atlassian-splunk-patch-dozens-of-critical-high-severity-vulnerabilities/","label":"SecurityWeek","domainType":"media"}],"feedLabel":null},{"id":"news-mlflow-vulnerability-exploited-for-cloud-credential-theft","source":"general-news","category":"news","severity":"unknown","title":"MLflow Vulnerability Exploited for Cloud Credential Theft","description":"The critical-severity flaw allows attackers to send HTTP requests to internal endpoints and extract sensitive information.\nThe post MLflow Vulnerability Exploited for Cloud Credential Theft appeared first on SecurityWeek.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T12:05:55.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.securityweek.com/mlflow-vulnerability-exploited-for-cloud-credential-theft/","label":"SecurityWeek","domainType":"media"}],"feedLabel":null},{"id":"news-openai-overhauls-model-security-with-sandboxing-30-minute-alerts-and-training-pa","source":"general-news","category":"news","severity":"unknown","title":"OpenAI Overhauls Model Security With Sandboxing, 30-Minute Alerts, and Training Pauses","description":"The action taken by OpenAI comes in light of the Hugging Face incident and the discovery of the Astra model’s advanced capabilities. \nThe post OpenAI Overhauls Model Security With Sandboxing, 30-Minute Alerts, and Training Pauses appeared first on SecurityWeek.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T10:36:14.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.securityweek.com/openai-overhauls-model-security-with-sandboxing-30-minute-alerts-and-training-pauses/","label":"SecurityWeek","domainType":"media"}],"feedLabel":null},{"id":"news-exploitation-expected-for-critical-authentication-bypass-patched-in-citrix-netsc","source":"general-news","category":"news","severity":"unknown","title":"Exploitation Expected for Critical Authentication Bypass Patched in Citrix NetScaler","description":"Remote, unauthenticated attackers could exploit the critical-severity flaw without user interaction.\nThe post Exploitation Expected for Critical Authentication Bypass Patched in Citrix NetScaler appeared first on SecurityWeek.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T08:33:25.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.securityweek.com/exploitation-expected-for-critical-authentication-bypass-patched-in-citrix-netscaler/","label":"SecurityWeek","domainType":"media"}],"feedLabel":null},{"id":"news-critical-gitlab-flaw-exploited-shortly-after-disclosure","source":"general-news","category":"news","severity":"unknown","title":"Critical GitLab Flaw Exploited Shortly After Disclosure","description":"CVE-2026-19478 can be exploited without authentication to modify or delete public projects and user data.\nThe post Critical GitLab Flaw Exploited Shortly After Disclosure appeared first on SecurityWeek.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T07:48:24.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.securityweek.com/critical-gitlab-flaw-exploited-shortly-after-disclosure/","label":"SecurityWeek","domainType":"media"}],"feedLabel":null},{"id":"news-updated-toxicpanda-variant-targets-140-banking-and-crypto-apps","source":"general-news","category":"news","severity":"unknown","title":"Updated ToxicPanda Variant Targets 140+ Banking and Crypto Apps","description":"Zimperium lifts the lid on the ToxicPanda 2.0 Android banking Trojan","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T10:00:00.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.infosecurity-magazine.com/news/updated-toxicpanda-140-banking/","label":"InfoSecurity Magazine","domainType":"media"}],"feedLabel":null},{"id":"news-exclusive-linux-foundation-s-akrites-to-go-live-in-september","source":"general-news","category":"news","severity":"unknown","title":"Exclusive: Linux Foundation's Akrites to Go Live in September","description":"The Linux Foundation's Akrites initiative will become operational in September, when it will begin accepting AI-powered vulnerability reports for open-source projects","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:30:00.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.infosecurity-magazine.com/news/linux-foundations-akrites-go-live/","label":"InfoSecurity Magazine","domainType":"media"}],"feedLabel":null},{"id":"news-maas-campaign-combines-clickfix-errtraffic-and-cruciferra","source":"general-news","category":"news","severity":"unknown","title":"MaaS Campaign Combines ClickFix, ErrTraffic and Cruciferra","description":"eSentire uncovered a malware campaign combining ClickFix lures with ErrTraffic and Cruciferra","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T15:00:00.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.infosecurity-magazine.com/news/maas-clickfix-errtraffic-cruciferra/","label":"InfoSecurity Magazine","domainType":"media"}],"feedLabel":null},{"id":"news-openai-tightens-ai-safeguards-following-hugging-face-incident","source":"general-news","category":"news","severity":"unknown","title":"OpenAI Tightens AI Safeguards Following Hugging Face Incident","description":"OpenAI is strengthening safeguards for its most advanced AI models, citing growing risks as frontier systems gain more powerful cyber capabilities","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T12:00:00.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.infosecurity-magazine.com/news/openai-tightens-ai-safeguards/","label":"InfoSecurity Magazine","domainType":"media"}],"feedLabel":null},{"id":"news-enterprise-applications-carry-4-31x-more-critical-and-high-vulnerabilities","source":"general-news","category":"news","severity":"unknown","title":"Enterprise Applications Carry 4.31x More Critical and High Vulnerabilities","description":"Enterprise software creation has accelerated as vulnerability levels rise, Sonatype finds","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T15:00:00.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.infosecurity-magazine.com/news/enterprise-apps-critical-high/","label":"InfoSecurity Magazine","domainType":"media"}],"feedLabel":null},{"id":"news-nasa-ground-control-software-flaw-enables-unauthenticated-commands","source":"general-news","category":"news","severity":"unknown","title":"NASA Ground Control Software Flaw Enables Unauthenticated Commands","description":"Critical AIT-GUI flaws expose spacecraft commands and scripts to unauthenticated attackers","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T14:30:00.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.infosecurity-magazine.com/news/nasa-ground-control-software-flaw/","label":"InfoSecurity Magazine","domainType":"media"}],"feedLabel":null},{"id":"news-cyber-incident-disrupts-student-services-at-ut-san-antonio","source":"general-news","category":"news","severity":"unknown","title":"Cyber Incident Disrupts Student Services at UT San Antonio ","description":"UT San Antonio has taken IT systems offline following a cyber incident, disrupting student registration and tuition payments days before term is due to resume","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-18T11:20:00.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.infosecurity-magazine.com/news/cyber-incident-ut-san-antonio/","label":"InfoSecurity Magazine","domainType":"media"}],"feedLabel":null},{"id":"news-wordpress-plugin-flaw-exposes-40-000-sites-to-admin-takeover","source":"general-news","category":"news","severity":"unknown","title":"WordPress Plugin Flaw Exposes 40,000 Sites to Admin Takeover","description":"Critical User Profile Builder flaw let unauthenticated attackers access administrator accounts","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T13:30:00.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.infosecurity-magazine.com/news/wordpress-plugin-flaw-40000-sites/","label":"InfoSecurity Magazine","domainType":"media"}],"feedLabel":null},{"id":"news-safepal-data-breach-hits-tens-of-thousands-of-customers","source":"general-news","category":"news","severity":"unknown","title":"SafePal Data Breach Hits Tens of Thousands of Customers","description":"Nearly 40,000 customers of hardware wallet provider SafePal have been impacted by a data breach","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T09:10:00.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.infosecurity-magazine.com/news/safepal-data-breach-tens-thousands/","label":"InfoSecurity Magazine","domainType":"media"}],"feedLabel":null},{"id":"news-corero-brings-cloud-based-ai-threat-analysis-to-smartwall-one","source":"general-news","category":"news","severity":"unknown","title":"Corero brings cloud-based AI threat analysis to SmartWall ONE","description":"Corero Network Security has announced AI-Augmented Cloud-Assist for SmartWall ONE, extending its automated DDoS protection with cloud-delivered AI analysis, threat intelligence, and policy optimization. As cybercriminals increasingly leverage AI to develop and evolve attack campaigns, defenders must…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T11:22:26.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.helpnetsecurity.com/2026/08/20/corero-ai-cloud-assist/","label":"Help Net Security","domainType":"media"}],"feedLabel":null},{"id":"news-researchers-find-a-loophole-that-lets-expired-credit-cards-make-unauthorized-pay","source":"general-news","category":"news","severity":"unknown","title":"Researchers find a loophole that lets expired credit cards make unauthorized payments","description":"A team from the University of Massachusetts Amherst has shown that a contactless credit card keeps working past its printed expiration date, even after the cardholder gets a replacement. They named it the Zombie Card attack and presented the findings at USENIX Security 2026. The question behind the…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T04:30:44.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.helpnetsecurity.com/2026/08/20/zombie-credit-card-attack-expired/","label":"Help Net Security","domainType":"media"}],"feedLabel":null},{"id":"news-8-539-reasons-to-rethink-how-vulnerabilities-get-patched","source":"general-news","category":"news","severity":"unknown","title":"8,539 reasons to rethink how vulnerabilities get patched","description":"The window for responding to newly disclosed security flaws is getting shorter. Exploit code can appear quickly, exploitability can be tested soon after disclosure, and organizations have a growing number of weaknesses to sort through. Rapid7’s Q2 2026 Threat Landscape Report counted 8,539 high- and…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T04:00:40.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://www.helpnetsecurity.com/2026/08/20/rapid7-vulnerability-patch-cycles-report/","label":"Help Net Security","domainType":"media"}],"feedLabel":null},{"id":"news-china-s-silkparasite-espionage-operation-targeting-central-asia-with-ai-assisted","source":"general-news","category":"news","severity":"unknown","title":"China’s ‘SilkParasite’ espionage operation targeting Central Asia with AI-assisted malware","description":"Suspected military-grade hackers based in China used artificial intelligence to develop malware in a campaign to penetrate Central Asian governments.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T19:30:00.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://therecord.media/china-cyber-espionage-central-asia","label":"The Record","domainType":"media"}],"feedLabel":null},{"id":"news-electronic-health-record-company-carecloud-says-3-7-million-people-affected-by-b","source":"general-news","category":"news","severity":"unknown","title":"Electronic health record company CareCloud says 3.7 million people affected by breach","description":"Healthcare software firm CareCloud filed documents with the Department of Health and Human Services confirming that 3,756,469 people had information leaked after a hacker spent eight hours in one of the company’s electronic health record environments.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T18:10:00.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://therecord.media/electronic-health-record-company-carecloud-data-breach","label":"The Record","domainType":"media"}],"feedLabel":null},{"id":"news-nsa-fbi-warns-of-hackers-using-ai-generated-tools-in-attacks-on-critical-infrast","source":"general-news","category":"news","severity":"unknown","title":"NSA, FBI warns of hackers using AI-generated tools in attacks on critical infrastructure technology","description":"The National Security Agency (NSA), FBI and other federal agencies said the campaign is targeting Siemens S7 Series PLCs and was being fueled by “AI-assisted development” alongside exploitation of known vulnerabilities.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T17:58:00.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://therecord.media/nsa-fbi-warns-of-hackers-using-ai-generated-tools-critical-infrastructure","label":"The Record","domainType":"media"}],"feedLabel":null},{"id":"news-latvian-officials-resign-after-cyberattack-exposes-data-on-1-2-million-people","source":"general-news","category":"news","severity":"unknown","title":"Latvian officials resign after cyberattack exposes data on 1.2 million people","description":"Latvia’s road traffic agency confirmed that hackers stole data connected to about two-thirds of the country’s population in a major cyberattack that has prompted calls for senior officials to resign.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T13:45:00.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://therecord.media/latvia-cyberattack-vehicle-data","label":"The Record","domainType":"media"}],"feedLabel":null},{"id":"news-the-push-to-designate-ai-as-the-next-critical-infrastructure-sector","source":"general-news","category":"news","severity":"unknown","title":"The push to designate AI as the next critical infrastructure sector","description":"The designation would unlock a range of federal services, tools and resources for an industry that policymakers view as increasingly tied to national and economic security.\nThe post The push to designate AI as the next critical infrastructure sector appeared first on CyberScoop.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-20T13:31:17.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://cyberscoop.com/ai-critical-infrastructure-designation-cisa-report/","label":"CyberScoop","domainType":"media"}],"feedLabel":null},{"id":"news-ai-fueled-attacks-pose-active-threat-to-water-other-sectors-u-s-agencies-warn","source":"general-news","category":"news","severity":"unknown","title":"AI-fueled attacks pose ‘active threat’ to water, other sectors, U.S. agencies warn","description":"The agencies said the hackers are taking aim at Siemens S7 Series programmable logic controllers in what could be a first.\nThe post AI-fueled attacks pose ‘active threat’ to water, other sectors, U.S. agencies warn appeared first on CyberScoop.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-19T18:45:53.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://cyberscoop.com/hackers-use-ai-target-siemens-plcs-critical-infrastructure/","label":"CyberScoop","domainType":"media"}],"feedLabel":null},{"id":"news-details-emerge-on-blackfile-s-recent-attacks-on-financial-companies","source":"general-news","category":"news","severity":"unknown","title":"Details emerge on BlackFile’s recent attacks on financial companies","description":"BlackFile’s four affiliate groups are still targeting victims, including medical technology organizations. Several potential victims received new extortion demands last week, according to Google.\nThe post Details emerge on BlackFile’s recent attacks on financial companies appeared first on CyberScoo…","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T20:41:00.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://cyberscoop.com/blackfile-cyberattacks-financial-sector/","label":"CyberScoop","domainType":"media"}],"feedLabel":null},{"id":"news-irregular-says-human-oversight-responsible-for-ai-sandbox-escape-incidents","source":"general-news","category":"news","severity":"unknown","title":"Irregular says ‘human oversight’ responsible for AI sandbox escape incidents","description":"In a post-mortem, the frontier AI testing company said internet access for models is necessary to fully test out their cybersecurity capabilities.\nThe post Irregular says ‘human oversight’ responsible for AI sandbox escape incidents appeared first on CyberScoop.","indicators":{"cves":[],"ips":[],"domains":[],"urls":[],"hashes":{"md5":null,"sha1":null,"sha256":null}},"tags":[],"malwareFamily":null,"confidence":null,"publishedAt":"2026-08-17T20:36:56.000Z","fetchedAt":"2026-08-21T03:00:02.309Z","references":[{"url":"https://cyberscoop.com/irregular-ai-sandbox-escape-human-oversight/","label":"CyberScoop","domainType":"media"}],"feedLabel":null}],"llmPrompt":"You are a cybersecurity analyst. Summarize this daily threat intelligence report for 2026-08-21.\nTotal items collected: 3339 from sources: cisa-kev: 8, nvd: 3068, cisa-advisories: 7, vendor-blogs: 87, malware-bazaar: 9, abuse-ipdb: 20, threatfox: 2, otx: 33, general-news: 112.\n\nTop threats by severity:\n1. [CRITICAL] CVE-2026-72530 — TrueConf Server Code Injection Vulnerability\n2. [CRITICAL] CVE-2026-72529 — TrueConf Server Missing Authentication for Critical Function Vulnerability\n3. [CRITICAL] CVE-2026-64849 — MLflow Server-Side Request Forgery Vulnerability\n4. [CRITICAL] Siemens Simcenter Nastran\n5. [CRITICAL] CVE-2026-12949 — The Wishlist Member plugin for WordPress is vulnerable to Account Takeover via Insufficient Verifica…\n6. [CRITICAL] CVE-2026-72811 — SiYuan versions <= v3.7.2 contain a SQL injection vulnerability in the backlink/mention search query…\n7. [CRITICAL] CVE-2026-72822 — The getgrav/grav-plugin-api Composer package before 1.0.13 (affected <= 1.0.12) fails to enforce API…\n8. [CRITICAL] CVE-2026-72823 — The Grav API plugin (getgrav/grav-plugin-api) before 1.0.13 contains an API-key scope cap bypass in…\n9. [CRITICAL] CVE-2026-72826 — The getgrav/grav-plugin-api plugin before 1.0.13 fails to validate that the scopes of a newly create…\n10. [CRITICAL] CVE-2026-72830 — Grav API plugin versions before 1.0.13 fail to enforce API key scope caps in ConfigController super-…\n\nProvide: (1) Executive summary (2-3 sentences), (2) Key threats to watch,\n(3) Recommended actions for security teams, (4) Notable trends.\nBe concise and actionable. Focus on what matters most to defenders."}