| medium |
CVE-2026-50149 — Contour is a Kubernetes ingress controller using Envoy proxy. In versions 1.23.0 through 1.33.4, whe… |
vulnerability |
nvd |
CVE-2026-50149 |
|
2026-08-19 |
| high |
CVE-2026-49816 — Dell Command Update (DCU), versions prior to 5.7.1, contain a Deserialization of Untrusted Data vuln… |
vulnerability |
nvd |
CVE-2026-49816, CVE-2026-49817 |
|
2026-08-19 |
| high |
CVE-2026-49289 — The SimpleSAMLphp SAML2 library is a PHP library for SAML2 related functionality. In 4.19.2 and 4.20… |
vulnerability |
nvd |
CVE-2026-49289 |
|
2026-08-19 |
| high |
CVE-2026-49283 — The SimpleSAMLphp SAML2 library is a PHP library for SAML2 related functionality. Prior to versions… |
vulnerability |
nvd |
CVE-2026-49283 |
|
2026-08-19 |
| high |
CVE-2026-49253 — electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. Prior to 3… |
vulnerability |
nvd |
CVE-2026-49253, CVE-2026-49255 |
|
2026-08-19 |
| high |
CVE-2026-48711 — SSHFS is a network filesystem client for connecting to SSH servers. From version 1.4 until 3.7.6, SS… |
vulnerability |
nvd |
CVE-2026-48711 |
|
2026-08-19 |
| critical |
CVE-2026-47187 — SSHFS is a network filesystem client for connecting to SSH servers. Prior to version 3.7.6, a rogue… |
vulnerability |
nvd |
CVE-2026-47187 |
|
2026-08-19 |
| high |
CVE-2026-45742 — Gotenberg is a Docker-powered stateless API for PDF files. From 8.10.0 until 8.33.0, the newContext… |
vulnerability |
nvd |
CVE-2026-45742 |
|
2026-08-19 |
| high |
CVE-2026-45741 — Gotenberg is a Docker-powered stateless API for PDF files. In 8.32.0 and earlier, the IsPublicIP fun… |
vulnerability |
nvd |
CVE-2026-45741 |
|
2026-08-19 |
| unknown |
CVE-2026-45274 — MyBooks is anebook management web server also known as Talebook. In 3.41.2 and earlier, the SignUp.p… |
vulnerability |
nvd |
CVE-2026-45274 |
|
2026-08-19 |
| unknown |
CVE-2026-45273 — MyBooks is an ebook management web server also known as Talebook. In 3.41.2 and earlier, the AdminSe… |
vulnerability |
nvd |
CVE-2026-45273 |
|
2026-08-19 |
| unknown |
CVE-2026-45272 — MyBooks is an enhanced and easy-to-use personal ebook management web server also known as Talebook.… |
vulnerability |
nvd |
CVE-2026-45272 |
|
2026-08-19 |
| high |
CVE-2026-44829 — Gotenberg is a Docker-powered stateless API for PDF files. In 8.32.0 and earlier, filename handling… |
vulnerability |
nvd |
CVE-2026-44829 |
|
2026-08-19 |
| medium |
CVE-2026-40509 — OpenEMR before 8.3.0 contains a cross-site request forgery vulnerability in the DICOM viewer. The we… |
vulnerability |
nvd |
CVE-2026-40509 |
|
2026-08-19 |
| medium |
CVE-2026-40508 — OpenEMR before 8.3.0 contains a stored cross-site scripting vulnerability in the patient portal temp… |
vulnerability |
nvd |
CVE-2026-40508 |
|
2026-08-19 |
| medium |
CVE-2026-40507 — OpenEMR before 8.3.0 contains a reflected cross-site scripting vulnerability in the patient portal t… |
vulnerability |
nvd |
CVE-2026-40507 |
|
2026-08-19 |
| medium |
CVE-2026-32802 — Dell PowerPath, version 7.2 through to 8.0 SP1, contains an Improper Privilege Management vulnerabil… |
vulnerability |
nvd |
CVE-2026-32802 |
|
2026-08-19 |
| high |
CVE-2026-23501 — Dell RecoverPoint for VMs, versions 6.0.3 and 6.0.3.1, contains an Improper Neutralization of Specia… |
vulnerability |
nvd |
CVE-2026-23501 |
|
2026-08-19 |
| unknown |
CVE-2026-18756 — HumHub Community Edition 1.18.4 contains a reflected cross-site scripting vulnerability in the Space… |
vulnerability |
nvd |
CVE-2026-18756 |
|
2026-08-19 |
| unknown |
CVE-2026-18526 — HumHub Community Edition 1.18.4 and 1.18.4-pl1 contain a stored Cross-Site Scripting (XSS) vulnerabi… |
vulnerability |
nvd |
CVE-2026-18526 |
|
2026-08-19 |
| critical |
CVE-2026-16816 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote authenticated attacker to execute… |
vulnerability |
nvd |
CVE-2026-16816, CVE-2026-16877, CVE-2026-16911, CVE-2026-17168, CVE-2026-18824, CVE-2026-18835 |
|
2026-08-19 |
| critical |
CVE-2026-16814 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary cod… |
vulnerability |
nvd |
CVE-2026-16814, CVE-2026-16840, CVE-2026-16841, CVE-2026-16845, CVE-2026-16847, CVE-2026-16850, CVE-2026-16862, CVE-2026-16864, CVE-2026-16865, CVE-2026-16872, CVE-2026-16885, CVE-2026-16894, CVE-2026-16901, CVE-2026-16903, CVE-2026-16909, CVE-2026-16913, CVE-2026-16917, CVE-2026-16919, CVE-2026-17000, CVE-2026-17006, CVE-2026-17024, CVE-2026-17040, CVE-2026-17118, CVE-2026-17122, CVE-2026-17136, CVE-2026-17138, CVE-2026-17141, CVE-2026-17145, CVE-2026-17152, CVE-2026-17157, CVE-2026-17160, CVE-2026-17436, CVE-2026-18832, CVE-2026-19437 |
|
2026-08-19 |
| high |
CVE-2026-16703 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to gain elevated privileg… |
vulnerability |
nvd |
CVE-2026-16703, CVE-2026-16923, CVE-2026-16934, CVE-2026-16935, CVE-2026-16937, CVE-2026-16946, CVE-2026-16989, CVE-2026-16991, CVE-2026-18842 |
|
2026-08-19 |
| critical |
CVE-2026-16690 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to cause a denial of ser… |
vulnerability |
nvd |
CVE-2026-16690, CVE-2026-16706, CVE-2026-16817, CVE-2026-16818, CVE-2026-16824, CVE-2026-16827, CVE-2026-16829, CVE-2026-16831, CVE-2026-16834, CVE-2026-16836, CVE-2026-16837, CVE-2026-16846, CVE-2026-16849, CVE-2026-16851, CVE-2026-16852, CVE-2026-16866, CVE-2026-16886, CVE-2026-16924, CVE-2026-16928, CVE-2026-16958, CVE-2026-17120, CVE-2026-17121, CVE-2026-17159, CVE-2026-17163, CVE-2026-17165, CVE-2026-17170, CVE-2026-17425, CVE-2026-18670, CVE-2026-18828 |
|
2026-08-19 |
| high |
CVE-2026-16686 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to access NFS-exported f… |
vulnerability |
nvd |
CVE-2026-16686 |
|
2026-08-19 |
| critical |
CVE-2026-16656 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to gain root privileges… |
vulnerability |
nvd |
CVE-2026-16656 |
|
2026-08-19 |
| medium |
CVE-2026-15961 — IBM PowerVM Hypervisor FW1120.00, FW1110.00 through FW1110.30, and FW1060.00 through FW1060.80 IBM P… |
vulnerability |
nvd |
CVE-2026-15961 |
|
2026-08-19 |
| high |
CVE-2026-15078 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 NIM could allow a remote attacker to gain unauthorized… |
vulnerability |
nvd |
CVE-2026-15078 |
|
2026-08-19 |
| critical |
CVE-2026-15068 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 NIM could allow a remote authenticated attacker to exe… |
vulnerability |
nvd |
CVE-2026-15068 |
|
2026-08-19 |
| critical |
CVE-2026-15065 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 NIM could allow a remote attacker to bypass security r… |
vulnerability |
nvd |
CVE-2026-15065 |
|
2026-08-19 |
| high |
CVE-2026-15061 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 's nimesis registration service could allow a remote a… |
vulnerability |
nvd |
CVE-2026-15061 |
|
2026-08-19 |
| high |
CVE-2026-14970 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 NIM server process is crashing during client registrat… |
vulnerability |
nvd |
CVE-2026-14970 |
|
2026-08-19 |
| unknown |
MaaS Campaign Combines ClickFix, ErrTraffic and Cruciferra |
news |
general-news |
|
|
2026-08-19 |
| critical |
The long tail of Clop’s PTC hack is just beginning to emerge |
news |
general-news |
|
ransomware |
2026-08-19 |
| unknown |
CVE-2026-76245 — stigmem (pip package stigmem-node) version 0.9.0a1 contains a timestamp-handling mismatch in federat… |
vulnerability |
nvd |
CVE-2026-76245 |
|
2026-08-19 |
| unknown |
CVE-2026-76244 — stigmem-node contains an insecure default configuration vulnerability that allows federation traffic… |
vulnerability |
nvd |
CVE-2026-76244 |
|
2026-08-19 |
| unknown |
CVE-2026-76243 — stigmem versions before 0.9.0a2 allow unauthenticated access when authentication is disabled on non-… |
vulnerability |
nvd |
CVE-2026-76243 |
|
2026-08-19 |
| unknown |
CVE-2026-76242 — stigmem-node 0.9.0a1 accepts federation peer key material during peer registration without a separat… |
vulnerability |
nvd |
CVE-2026-76242 |
|
2026-08-19 |
| unknown |
CVE-2026-76241 — stigmem-node 0.9.0a1 allows plugin signature enforcement to be disabled via a single configuration f… |
vulnerability |
nvd |
CVE-2026-76241 |
|
2026-08-19 |
| unknown |
CVE-2026-76240 — stigmem-node 0.9.0a1 interpolates Postgres backend schema identifiers into SQL strings without defen… |
vulnerability |
nvd |
CVE-2026-76240 |
|
2026-08-19 |
| medium |
CVE-2026-76239 — Stigmem before 0.9.0a11 fails to validate the delivery_address parameter when creating webhook subsc… |
vulnerability |
nvd |
CVE-2026-76239 |
|
2026-08-19 |
| unknown |
CVE-2026-76238 — stigmem versions before 0.9.0a12 contain a broken object level authorization vulnerability in the de… |
vulnerability |
nvd |
CVE-2026-76238 |
|
2026-08-19 |
| unknown |
CVE-2026-76237 — stigmem-node before 0.9.0a12 contains a broken object level authorization (cross-tenant BOLA) vulner… |
vulnerability |
nvd |
CVE-2026-76237 |
|
2026-08-19 |
| unknown |
CVE-2026-76236 — stigmem-node before 0.9.0a12 contains a cross-tenant broken object level authorization (BOLA) flaw i… |
vulnerability |
nvd |
CVE-2026-76236 |
|
2026-08-19 |
| high |
CVE-2026-76234 — libcrux-ecdh and libcrux-ed25519 before 0.0.6, and libcrux-psq before 0.0.7, contain cryptographic i… |
vulnerability |
nvd |
CVE-2026-76234 |
|
2026-08-19 |
| medium |
CVE-2026-76233 — Renovate versions from 39.53.0 before 40.33.0 contain a command injection vulnerability in the gleam… |
vulnerability |
nvd |
CVE-2026-76233 |
|
2026-08-19 |
| medium |
CVE-2026-76232 — Renovate versions from 31.51.0 before 40.33.0 contain a command injection vulnerability in the helmv… |
vulnerability |
nvd |
CVE-2026-76232 |
|
2026-08-19 |
| medium |
CVE-2026-76231 — Renovate versions from 32.135.0 before 40.33.0 contain a command injection vulnerability in the herm… |
vulnerability |
nvd |
CVE-2026-76231 |
|
2026-08-19 |
| medium |
CVE-2026-76230 — Renovate versions from 35.63.0 before 40.33.0 contain a command injection vulnerability in the npm m… |
vulnerability |
nvd |
CVE-2026-76230 |
|
2026-08-19 |
| medium |
CVE-2026-76229 — Renovate versions from 39.218.0 before 40.33.0 contain an arbitrary command injection vulnerability… |
vulnerability |
nvd |
CVE-2026-76229 |
|
2026-08-19 |