| critical |
CVE-2026-73256 — Mongoose is an embedded web server and network library. Prior to 7.22, a remote unauthenticated atta… |
vulnerability |
nvd |
CVE-2026-73256 |
|
2026-08-20 |
| medium |
CVE-2026-73255 — Mongoose is an embedded web server and network library. Prior to 7.22, an attacker who can control a… |
vulnerability |
nvd |
CVE-2026-73255 |
|
2026-08-20 |
| medium |
CVE-2026-73254 — Mongoose is an embedded web server and network library. Prior to 7.22, an attacker who can create a… |
vulnerability |
nvd |
CVE-2026-73254 |
|
2026-08-20 |
| unknown |
CVE-2026-73253 — Mongoose is an embedded web server and network library. Prior to version 7.22, an on-path network at… |
vulnerability |
nvd |
CVE-2026-73253 |
|
2026-08-20 |
| unknown |
CVE-2026-73251 — Mongoose is an embedded web server and network library. Prior to 7.23, a network attacker can impers… |
vulnerability |
nvd |
CVE-2026-73251 |
|
2026-08-20 |
| medium |
CVE-2026-72847 — broot renders each file and directory name in its interactive tree view exactly as read from the fil… |
vulnerability |
nvd |
CVE-2026-72847 |
|
2026-08-20 |
| medium |
CVE-2026-72844 — The Lean 4 kernel does not verify that the structure named in a projection expression matches the ty… |
vulnerability |
nvd |
CVE-2026-72844 |
|
2026-08-20 |
| high |
CVE-2026-63495 — Libevent is an event notification library. From 2.2.0-alpha-dev until 2.2.2-alpha, the libevent WebS… |
vulnerability |
nvd |
CVE-2026-63495 |
|
2026-08-20 |
| high |
CVE-2026-63388 — Libevent is an event notification library. Prior to 2.1.13 and 2.2.2-alpha, libevent has a heap out-… |
vulnerability |
nvd |
CVE-2026-63388 |
|
2026-08-20 |
| high |
CVE-2026-63387 — Libevent is an event notification library. Prior to 2.1.13 and 2.2.2-alpha, libevent has an off-by-o… |
vulnerability |
nvd |
CVE-2026-63387 |
|
2026-08-20 |
| unknown |
CVE-2026-63385 — Libevent is an event notification library. Prior to 2.1.13 and 2.2.2-alpha, libevent has two HTTP pa… |
vulnerability |
nvd |
CVE-2026-63385 |
|
2026-08-20 |
| unknown |
CVE-2026-63384 — Libevent is an event notification library. Prior to 2.1.13 and 2.2.2-alpha, libevent has an incorrec… |
vulnerability |
nvd |
CVE-2026-63384 |
|
2026-08-20 |
| unknown |
CVE-2026-63383 — Libevent is an event notification library. Prior to 2.1.13 and 2.2.2-alpha, libevent can read beyond… |
vulnerability |
nvd |
CVE-2026-63383 |
|
2026-08-20 |
| unknown |
CVE-2026-63382 — Libevent is an event notification library. Prior to 2.1.13 and 2.2.2-alpha, the libevent evhttp pars… |
vulnerability |
nvd |
CVE-2026-63382 |
|
2026-08-20 |
| unknown |
CVE-2026-63381 — Libevent is an event notification library. Prior to 2.1.13 and 2.2.2-alpha, libevent has a use-after… |
vulnerability |
nvd |
CVE-2026-63381 |
|
2026-08-20 |
| unknown |
CVE-2026-63380 — Libevent is an event notification library. Prior to 2.2.2-alpha, libevent can dereference invalid li… |
vulnerability |
nvd |
CVE-2026-63380 |
|
2026-08-20 |
| unknown |
CVE-2026-63379 — Libevent is an event notification library. Prior to 2.1.13 and 2.2.2-alpha, libevent processes chunk… |
vulnerability |
nvd |
CVE-2026-63379 |
|
2026-08-20 |
| medium |
CVE-2026-54625 — django CMS is a content management system powered by Django. Prior to 5.0.8 and in 5.1.0a1, the djan… |
vulnerability |
nvd |
CVE-2026-54625 |
|
2026-08-20 |
| high |
CVE-2026-54623 — django CMS is an easy-to-use and developer-friendly enterprise content management system powered by… |
vulnerability |
nvd |
CVE-2026-54623, CVE-2026-54622, CVE-2026-54624, CVE-2026-61663, CVE-2026-63003, CVE-2026-75526 |
|
2026-08-20 |
| unknown |
CVE-2026-53425 — Insufficient Verification of Data Authenticity vulnerability in dropbox samly allows an attacker to… |
vulnerability |
nvd |
CVE-2026-53425 |
|
2026-08-20 |
| critical |
CVE-2026-53424 — Authentication Bypass by Capture-replay vulnerability in dropbox samly allows an attacker to authent… |
vulnerability |
nvd |
CVE-2026-53424 |
ransomware |
2026-08-20 |
| critical |
CVE-2026-2334 — An issue was discovered in vsDesk v14.0101. An authenticated attacker with administrative privileges… |
vulnerability |
nvd |
CVE-2026-2334 |
rce |
2026-08-20 |
| unknown |
Is Cyber missing the Marque? |
advisory |
vendor-blogs |
|
|
2026-08-20 |
| medium |
Hackers poison arrayref Rust crate to push infostealer malware |
news |
general-news |
|
infostealer |
2026-08-20 |
| unknown |
N-able Bug Exposes Password Vault Master Keys |
news |
general-news |
|
|
2026-08-20 |
| critical |
ThreatsDay: Gogs 10.0 RCE, n8n Workflow-to-RCE, $10M Reward, GLM-5.3 AI Exploit, and More |
news |
general-news |
|
rce |
2026-08-20 |
| high |
CVE-2026-77176 — A flaw was found in Kata Containers. In configurations utilizing genpolicy for Confidential Containe… |
vulnerability |
nvd |
CVE-2026-77176 |
|
2026-08-20 |
| medium |
CVE-2026-77025 — A weakness has been identified in itsourcecode Hospital Management System 1.0. This affects an unkno… |
vulnerability |
nvd |
CVE-2026-77025 |
|
2026-08-20 |
| critical |
CVE-2026-77022 — A security flaw has been discovered in Comfast CF-N1-S 2.6.0.1. Affected by this issue is the functi… |
vulnerability |
nvd |
CVE-2026-77022, CVE-2026-77683 |
|
2026-08-20 |
| high |
CVE-2026-77020 — A vulnerability was identified in CodeAstro Apartment Visitor Management System 1.0. Affected by thi… |
vulnerability |
nvd |
CVE-2026-77020 |
|
2026-08-20 |
| high |
CVE-2026-77019 — A vulnerability was determined in CodeAstro Apartment Visitor Management System 1.0. Affected is an… |
vulnerability |
nvd |
CVE-2026-77019 |
|
2026-08-20 |
| unknown |
CVE-2026-71492 — Banks generates meaningful LLM prompts using a simple template language. Prior to version 2.4.5, Dir… |
vulnerability |
nvd |
CVE-2026-71492 |
|
2026-08-20 |
| critical |
CVE-2026-71428 — The unstructured library provides open-source components for ingesting and pre-processing images and… |
vulnerability |
nvd |
CVE-2026-71428 |
|
2026-08-20 |
| high |
CVE-2026-69183 — Monkeytype is a minimalistic and customizable typing test. In 26.26.0 and earlier, the backend rate-… |
vulnerability |
nvd |
CVE-2026-69183 |
|
2026-08-20 |
| high |
CVE-2026-65842 — Plate is a rich-text editor with AI and shadcn/ui. Prior to 53.3.2, @platejs/docx-io fetches remote… |
vulnerability |
nvd |
CVE-2026-65842 |
|
2026-08-20 |
| low |
CVE-2026-64846 — Nix is a package manager for Linux and other Unix systems. Prior to 2.35.0, a malicious derivation e… |
vulnerability |
nvd |
CVE-2026-64846 |
|
2026-08-20 |
| unknown |
CVE-2026-63481 — Hurl is a command line tool that runs and tests HTTP requests defined in plain text files. In versio… |
vulnerability |
nvd |
CVE-2026-63481 |
|
2026-08-20 |
| high |
CVE-2026-61704 — Link Preview JS extracts web links information. Prior to 4.0.4, the resolveDNSHost mitigation in ind… |
vulnerability |
nvd |
CVE-2026-61704 |
|
2026-08-20 |
| medium |
CVE-2026-61625 — VictoriaMetrics is a scalable solution for monitoring and managing time series data. Prior to 1.122.… |
vulnerability |
nvd |
CVE-2026-61625 |
|
2026-08-20 |
| critical |
CVE-2026-55642 — dbx is a cross-platform database client for databases. Prior to 0.5.51, dbx-web auth_middleware in c… |
vulnerability |
nvd |
CVE-2026-55642 |
|
2026-08-20 |
| medium |
CVE-2026-55586 — SumatraPDF is a multi-format reader for Windows. In 3.6.1 and earlier, a crafted CHM file can supply… |
vulnerability |
nvd |
CVE-2026-55586 |
|
2026-08-20 |
| unknown |
CVE-2026-55095 — OpenProject is open-source, web-based project management software. In version 17.5.1 and earlier, an… |
vulnerability |
nvd |
CVE-2026-55095 |
|
2026-08-20 |
| medium |
CVE-2026-54770 — WebOb provides objects for HTTP requests and responses. Prior to 1.8.11, Response._make_location_abs… |
vulnerability |
nvd |
CVE-2026-54770 |
phishing |
2026-08-20 |
| high |
CVE-2026-54616 — NanaZip is the 7-Zip derivative intended for the modern Windows experience. From version 1.0.88.0 un… |
vulnerability |
nvd |
CVE-2026-54616 |
|
2026-08-20 |
| high |
CVE-2026-54449 — LangBot is a global IM bot platform designed for LLMs. In version 4.10.7 and earlier, any authentica… |
vulnerability |
nvd |
CVE-2026-54449 |
|
2026-08-20 |
| unknown |
CVE-2026-54136 — Windmill is an open-source developer platform for internal code: APIs, background jobs, workflows an… |
vulnerability |
nvd |
CVE-2026-54136 |
|
2026-08-20 |
| unknown |
CVE-2026-40345 — deepmerge-ts is a typescript library providing functionality to deep merging of javascript objects.… |
vulnerability |
nvd |
CVE-2026-40345 |
|
2026-08-20 |
| critical |
CVE-2026-18309 — GIMP APNG File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allo… |
vulnerability |
nvd |
CVE-2026-18309 |
rce |
2026-08-20 |
| critical |
CVE-2026-18306 — GIMP SGI File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allow… |
vulnerability |
nvd |
CVE-2026-18306 |
rce |
2026-08-20 |
| critical |
CVE-2026-18304 — GIMP TIF File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allow… |
vulnerability |
nvd |
CVE-2026-18304, CVE-2026-18305, CVE-2026-18308 |
rce |
2026-08-20 |