| unknown |
CVE-2026-73372 — Joomla! Core - [20260809] - Improper ACL checks when injection schema.org contact data in Joomla 5.1… |
vulnerability |
nvd |
CVE-2026-73372 |
|
2026-08-18 |
| unknown |
CVE-2026-73336 — Joomla! Core - [20260806] - XSS through schema.org outputs in Joomla 5.1.0-5.4.7, 6.0.0-6.1.2 - Impr… |
vulnerability |
nvd |
CVE-2026-73336 |
|
2026-08-18 |
| unknown |
CVE-2026-72531 — Joomla! Core - [20260804] - Improper ACL checks for custom fields webservice endpoints in Joomla 4.0… |
vulnerability |
nvd |
CVE-2026-72531 |
|
2026-08-18 |
| unknown |
CVE-2026-71573 — Joomla! Core - [20260802] - Improper CORS origin validation in Joomla 4.0.0-5.4.7, 6.0.0-6.1.2 - An… |
vulnerability |
nvd |
CVE-2026-71573 |
|
2026-08-18 |
| unknown |
CVE-2026-71572 — Joomla! Core - [20260801] - Response header injection in download views in Joomla 3.0.0-5.4.7, 6.0.0… |
vulnerability |
nvd |
CVE-2026-71572 |
|
2026-08-18 |
| high |
CVE-2026-70415 — Dell PowerStore SDNAS contains a Buffer Copy without Checking Size of Input vulnerability in the NFS… |
vulnerability |
nvd |
CVE-2026-70415 |
|
2026-08-18 |
| critical |
CVE-2026-67271 — Dell PowerStore SDNAS, contains an Out-of-bounds Write vulnerability in the SMB/CIFS. An unauthentic… |
vulnerability |
nvd |
CVE-2026-67271 |
rce |
2026-08-18 |
| high |
CVE-2026-66783 — A flaw was found in the `submariner-operator` component of Red Hat Advanced Cluster Management for K… |
vulnerability |
nvd |
CVE-2026-66783 |
|
2026-08-18 |
| high |
CVE-2026-66782 — A flaw was found in the Submariner operator. This vulnerability allows for the exposure of a long-li… |
vulnerability |
nvd |
CVE-2026-66782 |
|
2026-08-18 |
| medium |
CVE-2026-66781 — A flaw was found in the Submariner operator. The Submariner Custom Resource (CR), used for configuri… |
vulnerability |
nvd |
CVE-2026-66781 |
|
2026-08-18 |
| unknown |
CVE-2026-61634 — The RabbitMQ Java client library allows Java and JVM-based applications to connect to and interact w… |
vulnerability |
nvd |
CVE-2026-61634, CVE-2026-63335, CVE-2026-63336, CVE-2026-63337, CVE-2026-69219, CVE-2026-69220 |
|
2026-08-18 |
| high |
CVE-2026-61574 — authentik is an open-source identity provider. Prior to 2026.2.6 and 2026.5.5, the Remote Access Con… |
vulnerability |
nvd |
CVE-2026-61574 |
|
2026-08-18 |
| unknown |
CVE-2026-57580 — authentik is an open-source identity provider. Prior to 2026.2.6 and 2026.5.5, an inbound SAML Sourc… |
vulnerability |
nvd |
CVE-2026-57580 |
|
2026-08-18 |
| medium |
CVE-2026-55106 — authentik is an open-source identity provider. Prior to 2026.2.6 and 2026.5.5, a diagnostic action o… |
vulnerability |
nvd |
CVE-2026-55106 |
|
2026-08-18 |
| unknown |
CVE-2026-54730 — authentik is an open-source identity provider. Prior to 2026.2.6 and 2026.5.5, the enterprise Google… |
vulnerability |
nvd |
CVE-2026-54730 |
|
2026-08-18 |
| medium |
CVE-2026-52606 — A reflected cross-site scripting (XSS) vulnerability in reportico-web <= 8.1.0 allows remote attacke… |
vulnerability |
nvd |
CVE-2026-52606, CVE-2026-52609 |
|
2026-08-18 |
| critical |
CVE-2026-50576 — ePA 3.x Integration implements the authorization workflow and writes Medical Information Objects to… |
vulnerability |
nvd |
CVE-2026-50576, CVE-2026-50577, CVE-2026-50578, CVE-2026-52723 |
|
2026-08-18 |
| medium |
CVE-2026-50126 — Adaguc-server is an open source geographical information system to visualize, combine, compare and s… |
vulnerability |
nvd |
CVE-2026-50126 |
|
2026-08-18 |
| medium |
CVE-2026-48744 — Saleor is an e-commerce platform. From 3.14.67 until 3.21.67, 3.22.63, and 3.23.22, a broken authori… |
vulnerability |
nvd |
CVE-2026-48744 |
|
2026-08-18 |
| medium |
CVE-2026-30250 — Cross-site scripting vulnerability in the user documentation field in Beta Systems Software AG ANOW!… |
vulnerability |
nvd |
CVE-2026-30250 |
|
2026-08-18 |
| unknown |
CVE-2026-19869 — @neo4j/graphql from 5.2.0 until the patched versions fails to enforce field-level @authentication ru… |
vulnerability |
nvd |
CVE-2026-19869 |
|
2026-08-18 |
| critical |
CVE-2026-18963 — A flaw was found in the reset-credentials flow of the keycloak-services component, which is the core… |
vulnerability |
nvd |
CVE-2026-18963 |
|
2026-08-18 |
| critical |
Ransom Busters Claims It Hacked Ransomware Servers, Asks Victims for Up to $60,000 |
news |
general-news |
|
ransomware |
2026-08-18 |
| high |
CVE-2026-75926 — Hugo 0.161.0 placed the Node asset pipelines behind the Node.js permission model so that code runnin… |
vulnerability |
nvd |
CVE-2026-75926 |
|
2026-08-18 |
| high |
CVE-2026-75915 — CodeWhale versions before 0.8.64 contain an environment variable exposure vulnerability in the js_ex… |
vulnerability |
nvd |
CVE-2026-75915 |
|
2026-08-18 |
| high |
CVE-2026-75914 — CodeWhale versions before 0.8.64 contain a path traversal vulnerability in the image_analyze tool th… |
vulnerability |
nvd |
CVE-2026-75914 |
|
2026-08-18 |
| critical |
CVE-2026-75913 — CodeWhale (codewhale / codewhale-tui) versions >= 0.8.41 and < 0.8.64 contain an argument injection… |
vulnerability |
nvd |
CVE-2026-75913 |
|
2026-08-18 |
| high |
CVE-2026-75912 — CodeWhale versions before 0.8.64 contain an argument injection vulnerability in the git_blame tool t… |
vulnerability |
nvd |
CVE-2026-75912 |
|
2026-08-18 |
| high |
CVE-2026-75911 — CodeWhale versions before 0.8.64 fail to properly validate the allow_shell configuration parameter f… |
vulnerability |
nvd |
CVE-2026-75911 |
|
2026-08-18 |
| low |
CVE-2026-75904 — libmodplug through 0.8.9.1 contains an out-of-bounds read in pat_smplooped in src/load_pat.cpp. The… |
vulnerability |
nvd |
CVE-2026-75904 |
ransomware |
2026-08-18 |
| high |
CVE-2026-75859 — CodeWhale versions before 0.8.64 fail to validate file paths in the project config instructions fiel… |
vulnerability |
nvd |
CVE-2026-75859 |
|
2026-08-18 |
| high |
CVE-2026-75858 — CodeWhale (packages codewhale / codewhale-tui) versions >= 0.8.41 and < 0.8.64 contain a remote code… |
vulnerability |
nvd |
CVE-2026-75858 |
rce |
2026-08-18 |
| high |
CVE-2026-75857 — CodeWhale versions >= 0.8.41 and < 0.8.64 contain a vulnerability in the exec_shell_interact (alias… |
vulnerability |
nvd |
CVE-2026-75857 |
|
2026-08-18 |
| high |
CVE-2026-75856 — CodeWhale before 0.8.64 contains a server-side request forgery bypass vulnerability in DNS pinning l… |
vulnerability |
nvd |
CVE-2026-75856 |
|
2026-08-18 |
| medium |
CVE-2026-73834 — A flaw was found in the must-gather component of Red Hat Advanced Cluster Management for Kubernetes.… |
vulnerability |
nvd |
CVE-2026-73834, CVE-2026-75485 |
|
2026-08-18 |
| unknown |
CVE-2026-73373 — Joomla! Core - [20260810] - Unrestricted uploads of SHTML files in Joomla 1.0.0-5.4.7, 6.0.0-6.1.2 -… |
vulnerability |
nvd |
CVE-2026-73373 |
|
2026-08-18 |
| unknown |
CVE-2026-73371 — Joomla! Core - [20260808] - Improper ACL checks for batch copy actions in Joomla 4.0.0-5.4.7, 6.0.0-… |
vulnerability |
nvd |
CVE-2026-73371 |
|
2026-08-18 |
| unknown |
CVE-2026-73337 — Joomla! Core - [20260807] - MFA Authentication Bypass in Joomla 4.0.0-5.4.7 and 6.0.0-6.1.2 - Insuff… |
vulnerability |
nvd |
CVE-2026-73337 |
|
2026-08-18 |
| unknown |
CVE-2026-73073 — Vim is an open source, command line text editor. Prior to 9.2.0845, StructMembers() in runtime/autol… |
vulnerability |
nvd |
CVE-2026-73073 |
|
2026-08-18 |
| unknown |
CVE-2026-72532 — Joomla! Core - [20260806] - Improper ACL checks for category webservice endpoints in Joomla 4.0.0-5.… |
vulnerability |
nvd |
CVE-2026-72532 |
|
2026-08-18 |
| unknown |
CVE-2026-71574 — Joomla! Core - [20260803] - Inconsistent ACL checks for mutating webservice endpoints in Joomla 4.0.… |
vulnerability |
nvd |
CVE-2026-71574 |
|
2026-08-18 |
| medium |
CVE-2026-71477 — mise manages dev tools like node, python, cmake, and terraform. Prior to 2026.7.1, release tar archi… |
vulnerability |
nvd |
CVE-2026-71477 |
|
2026-08-18 |
| high |
CVE-2026-71365 — A server-side request forgery (SSRF) vulnerability was found in AWX's webhook status callback mechan… |
vulnerability |
nvd |
CVE-2026-71365 |
|
2026-08-18 |
| unknown |
CVE-2026-63328 — Trivy is a security scanner. Prior to 0.72.0, plugin manifest metadata is used by pkg/plugin/manager… |
vulnerability |
nvd |
CVE-2026-63328 |
|
2026-08-18 |
| low |
CVE-2026-62684 — File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing… |
vulnerability |
nvd |
CVE-2026-62684 |
|
2026-08-18 |
| unknown |
CVE-2026-62357 — Dragonfly is an in-memory data store built for modern application workloads. Prior to 1.40.0, CMS.IN… |
vulnerability |
nvd |
CVE-2026-62357 |
|
2026-08-18 |
| high |
CVE-2026-55839 — Kestra is an open-source, event-driven orchestration platform. Prior to 1.3.24, Kestra's custom Mark… |
vulnerability |
nvd |
CVE-2026-55839 |
|
2026-08-18 |
| high |
CVE-2026-49221 — Vvveb is a powerful and easy to use CMS with page builder to build websites, blogs or ecommerce stor… |
vulnerability |
nvd |
CVE-2026-49221, CVE-2026-49226, CVE-2026-49227, CVE-2026-49222, CVE-2026-49223, CVE-2026-49224, CVE-2026-49225, CVE-2026-49228 |
|
2026-08-18 |
| medium |
CVE-2026-47245 — MyBB is free and open source forum software. Prior to 1.8.40, the User CP Buddy/Ignore List componen… |
vulnerability |
nvd |
CVE-2026-47245 |
|
2026-08-18 |
| medium |
CVE-2026-46482 — ### Impact The registration component does not validate the text-based _Security Question_ CAPTCHA c… |
vulnerability |
nvd |
CVE-2026-46482 |
|
2026-08-18 |