| unknown |
CVE-2026-56867 — Rejected reason: reserved but not needed |
vulnerability |
nvd |
CVE-2026-56867, CVE-2026-56868, CVE-2026-56869, CVE-2026-56870, CVE-2026-56871, CVE-2026-56872, CVE-2026-56873, CVE-2026-56874, CVE-2026-56875 |
|
2026-08-18 |
| medium |
CVE-2026-55593 — Froxlor is open source server administration software. Prior to 2.3.8, the standalone lib/ajax.php e… |
vulnerability |
nvd |
CVE-2026-55593 |
|
2026-08-18 |
| medium |
CVE-2026-54543 — Froxlor is open source server administration software. Prior to 2.3.8, the DomainZones.add API comma… |
vulnerability |
nvd |
CVE-2026-54543 |
|
2026-08-18 |
| high |
CVE-2026-54348 — Froxlor is open source server administration software. Prior to 2.3.8, the Admins.add and Admins.upd… |
vulnerability |
nvd |
CVE-2026-54348 |
|
2026-08-18 |
| high |
CVE-2026-54347 — Froxlor is open source server administration software. Prior to 2.3.8, DNS TXT record content accept… |
vulnerability |
nvd |
CVE-2026-54347 |
|
2026-08-18 |
| high |
CVE-2026-53759 — linuxfabrik-lib provides Python modules for database access, caching, shell execution, and API integ… |
vulnerability |
nvd |
CVE-2026-53759, CVE-2026-55426, CVE-2026-73974 |
|
2026-08-18 |
| unknown |
CVE-2026-53453 — Blueprint Studio is a VS Code-like file editor for Home Assistant configuration files. Prior to 2.5.… |
vulnerability |
nvd |
CVE-2026-53453, CVE-2026-53454, CVE-2026-53455, CVE-2026-53456, CVE-2026-53457, CVE-2026-53458 |
|
2026-08-18 |
| medium |
CVE-2026-52817 — Linuxfabrik Monitoring Plugins provides monitoring plugins for Icinga, Nagios, and related systems.… |
vulnerability |
nvd |
CVE-2026-52817, CVE-2026-73973 |
apt |
2026-08-18 |
| high |
CVE-2026-52793 — Froxlor is open source server administration software. Prior to 2.3.7, the API authentication path i… |
vulnerability |
nvd |
CVE-2026-52793 |
|
2026-08-18 |
| medium |
CVE-2026-41921 — Koha before 26.05.02, 25.11.07, and 25.05.13 contains a stored cross-site scripting vulnerability in… |
vulnerability |
nvd |
CVE-2026-41921 |
|
2026-08-18 |
| medium |
CVE-2026-18504 — fastify is a fast and low overhead web framework for Node.js. Versions of fastify before 5.12.1 are… |
vulnerability |
nvd |
CVE-2026-18504 |
|
2026-08-18 |
| medium |
CVE-2026-16732 — fastify is a fast and low overhead web framework for Node.js. Impact: the fix for CVE-2026-3635 adde… |
vulnerability |
nvd |
CVE-2026-16732 |
|
2026-08-18 |
| high |
CVE-2026-15571 — A flaw was found in the legacy client-initiated account-linking endpoint of Keycloak, a widely used… |
vulnerability |
nvd |
CVE-2026-15571 |
|
2026-08-18 |
| medium |
CVE-2026-12632 — Zephyr's Precision Time Protocol receive handler ptp_msg_post_recv() in subsys/net/lib/ptp/msg.c tak… |
vulnerability |
nvd |
CVE-2026-12632 |
|
2026-08-18 |
| medium |
CVE-2026-12631 — The Zephyr kernel validates the k_thread_join() and k_thread_abort() system calls (declared __syscal… |
vulnerability |
nvd |
CVE-2026-12631 |
|
2026-08-18 |
| high |
CopyCop Targets AI Investment in Armenia |
threat-intel |
otx |
|
ai infrastructure, media impersonation, geopolitical realignment, disinformation, copycop, armenia, storm-1516, influence operations |
2026-08-18 |
| high |
Mirage2FA Hijacks Companies’ Microsoft 365 Sessions, with Over 4K Victims in the US |
threat-intel |
otx |
192.52.166.55, 209.205.197.130, 181.214.165.173, 83.147.53.130, 209.205.192.6, 139.28.36.38, 98.144.204.109 |
microsoft 365, websocket, adversary-in-the-middle, credential theft, html smuggling, phishing-as-a-service, session hijacking, 2fa bypass, phishing |
2026-08-18 |
| medium |
CVE-2026-76032 — Pydio Cells 5.0.0 through 5.0.2 returns share-link details to any authenticated user. The REST handl… |
vulnerability |
nvd |
CVE-2026-76032 |
|
2026-08-18 |
| high |
CVE-2026-75936 — Improper handling of highly compressed data in the GZIP auto-decompression handler in Amazon ion-jav… |
vulnerability |
nvd |
CVE-2026-75936 |
|
2026-08-18 |
| high |
CVE-2026-75935 — Uncontrolled memory allocation in the binary Ion stream cursor in Amazon ion-java before 1.12.0 migh… |
vulnerability |
nvd |
CVE-2026-75935 |
|
2026-08-18 |
| critical |
CVE-2026-75877 — A flaw has been found in TRENDnet TV-IP751WIC 11.03.03. This vulnerability affects the function Syst… |
vulnerability |
nvd |
CVE-2026-75877 |
|
2026-08-18 |
| medium |
CVE-2026-75876 — A security vulnerability has been detected in xianrendzw EasyReport up to 2.0.17.0522_Beta. Affected… |
vulnerability |
nvd |
CVE-2026-75876 |
|
2026-08-18 |
| medium |
CVE-2026-73529 — Plainpad through 1.1.1, fixed in commit d3823fc, contains a missing rate limiting vulnerability that… |
vulnerability |
nvd |
CVE-2026-73529 |
|
2026-08-18 |
| high |
CVE-2026-71676 — Buffer Overflow vulnerability in Open5GS v.2.7.0 allows a remote attacker to cause a denial of servi… |
vulnerability |
nvd |
CVE-2026-71676 |
|
2026-08-18 |
| high |
CVE-2026-71675 — An issue in Open5GS v.2.7.0 allows a remote attacker to cause a denial of service via the ngap_send_… |
vulnerability |
nvd |
CVE-2026-71675 |
|
2026-08-18 |
| high |
CVE-2026-71417 — Lemur manages TLS certificate creation. Prior to 1.9.3, POST /api/1/certificates/upload allowed a no… |
vulnerability |
nvd |
CVE-2026-71417 |
|
2026-08-18 |
| medium |
CVE-2026-71322 — Lemur manages TLS certificate creation. Prior to 1.9.3, CertificateExport placed its CertificatePerm… |
vulnerability |
nvd |
CVE-2026-71322 |
|
2026-08-18 |
| unknown |
'CoSnitch' Attack Tricked Copilot Into Mapping Out Architecture |
news |
general-news |
|
|
2026-08-18 |
| medium |
CVE-2026-71317 — Lemur manages TLS certificate creation. Prior to 1.9.3, POST /api/1/authorities with type=subca did… |
vulnerability |
nvd |
CVE-2026-71317 |
|
2026-08-18 |
| high |
CVE-2026-71308 — Lemur manages TLS certificate creation. From 0.5.0 until 1.9.3, certificate create, upload, and edit… |
vulnerability |
nvd |
CVE-2026-71308 |
|
2026-08-18 |
| high |
CVE-2026-71307 — Lemur manages TLS certificate creation. Prior to 1.9.3, GET /api/1/destinations and GET /api/1/desti… |
vulnerability |
nvd |
CVE-2026-71307 |
|
2026-08-18 |
| high |
CVE-2026-71303 — Lemur manages TLS certificate creation. Prior to 1.9.3, _validate_acme_url enforced ACME_DIRECTORY_H… |
vulnerability |
nvd |
CVE-2026-71303 |
|
2026-08-18 |
| high |
CVE-2026-70666 — Lemur manages TLS certificate creation. Prior to 1.9.3, an authority-role member could update acme_u… |
vulnerability |
nvd |
CVE-2026-70666 |
|
2026-08-18 |
| high |
CVE-2026-65985 — FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. In 1.3.2 and earlier, the… |
vulnerability |
nvd |
CVE-2026-65985, CVE-2026-67440, CVE-2026-67443 |
ics |
2026-08-18 |
| high |
CVE-2026-65984 — FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. In 1.3.2 and earlier, POST… |
vulnerability |
nvd |
CVE-2026-65984 |
ics |
2026-08-18 |
| high |
CVE-2026-59915 — Dell Alienware Command Center (AWCC), versions prior to 6.14.20.0, contain a Least Privilege Violati… |
vulnerability |
nvd |
CVE-2026-59915 |
|
2026-08-18 |
| critical |
CVE-2026-57826 — An issue was discovered in openHiTLS 0.2.0 through 0.3.2. In the X.509 certificate chain verificatio… |
vulnerability |
nvd |
CVE-2026-57826 |
|
2026-08-18 |
| high |
CVE-2026-52829 — ZEBRA is a Zcash node written entirely in Rust. Prior to 4.5.0, an unauthenticated IPv4 peer can det… |
vulnerability |
nvd |
CVE-2026-52829 |
|
2026-08-18 |
| medium |
CVE-2026-52739 — ZEBRA is a Zcash node written entirely in Rust. Prior to 4.5.0, a malicious block producer can termi… |
vulnerability |
nvd |
CVE-2026-52739 |
|
2026-08-18 |
| unknown |
CVE-2026-52738 — ZEBRA is a Zcash node written entirely in Rust. Prior to 4.5.0, a consensus-valid block containing a… |
vulnerability |
nvd |
CVE-2026-52738 |
|
2026-08-18 |
| medium |
CVE-2026-52737 — ZEBRA is a Zcash node written entirely in Rust. Prior to 4.5.0, a malicious unauthenticated P2P peer… |
vulnerability |
nvd |
CVE-2026-52737 |
|
2026-08-18 |
| unknown |
CVE-2026-52736 — ZEBRA is a Zcash node written entirely in Rust. Prior to 4.5.0, a remote unauthenticated P2P peer ca… |
vulnerability |
nvd |
CVE-2026-52736 |
|
2026-08-18 |
| unknown |
CVE-2026-52735 — ZEBRA is a Zcash node written entirely in Rust. Prior to 4.5.0, Zebra can accept a block that zcashd… |
vulnerability |
nvd |
CVE-2026-52735 |
|
2026-08-18 |
| medium |
CVE-2026-52734 — ZEBRA is a Zcash node written entirely in Rust. Prior to 4.5.0, an unauthenticated P2P peer can caus… |
vulnerability |
nvd |
CVE-2026-52734 |
|
2026-08-18 |
| medium |
CVE-2026-52733 — ZEBRA is a Zcash node written entirely in Rust. Prior to 4.5.0, a natural or attacker-influenced cha… |
vulnerability |
nvd |
CVE-2026-52733 |
|
2026-08-18 |
| medium |
CVE-2026-52732 — ZEBRA is a Zcash node written entirely in Rust. Prior to 4.5.0, one unauthenticated P2P peer can mon… |
vulnerability |
nvd |
CVE-2026-52732 |
|
2026-08-18 |
| medium |
CVE-2026-52731 — ZEBRA is a Zcash node written entirely in Rust. Prior to 4.5.0, an attacker authenticated to an enab… |
vulnerability |
nvd |
CVE-2026-52731 |
|
2026-08-18 |
| high |
CVE-2026-52480 — An issue in SJRC F11 SJ-GPS-PRO firmware build 2019-09-17 allows a remote attacker to obtain sensiti… |
vulnerability |
nvd |
CVE-2026-52480, CVE-2026-52481 |
|
2026-08-18 |
| medium |
CVE-2026-49500 — Dell Alienware Command Center (AWCC), versions prior to 6.14.20.0, contain an Improper Link Resoluti… |
vulnerability |
nvd |
CVE-2026-49500 |
|
2026-08-18 |
| medium |
CVE-2026-47721 — FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. Prior to 1.3.2, POST /api/… |
vulnerability |
nvd |
CVE-2026-47721 |
ics |
2026-08-18 |