| critical |
CVE-2026-18303 — GIMP TIF File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerab… |
vulnerability |
nvd |
CVE-2026-18303 |
rce |
2026-08-20 |
| critical |
CVE-2026-18302 — GIMP TIF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerabi… |
vulnerability |
nvd |
CVE-2026-18302, CVE-2026-18307 |
rce |
2026-08-20 |
| critical |
CVE-2026-18301 — GIMP PSD File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allow… |
vulnerability |
nvd |
CVE-2026-18301 |
rce |
2026-08-20 |
| critical |
CVE-2026-18300 — GIMP HDR File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allow… |
vulnerability |
nvd |
CVE-2026-18300 |
rce |
2026-08-20 |
| critical |
CVE-2026-18299 — GStreamer rtpsbcdepay Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows… |
vulnerability |
nvd |
CVE-2026-18299 |
rce |
2026-08-20 |
| critical |
CVE-2026-18298 — GStreamer PNG File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vuln… |
vulnerability |
nvd |
CVE-2026-18298 |
rce |
2026-08-20 |
| critical |
CVE-2026-18297 — GStreamer OGG File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vul… |
vulnerability |
nvd |
CVE-2026-18297 |
rce |
2026-08-20 |
| critical |
CVE-2026-18296 — GStreamer MRF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vuln… |
vulnerability |
nvd |
CVE-2026-18296 |
rce |
2026-08-20 |
| critical |
CVE-2026-18295 — GStreamer MRF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerabili… |
vulnerability |
nvd |
CVE-2026-18295 |
rce |
2026-08-20 |
| critical |
CVE-2026-18294 — OriginLab Origin Viewer OGW File Parsing Memory Corruption Remote Code Execution Vulnerability. This… |
vulnerability |
nvd |
CVE-2026-18294 |
rce |
2026-08-20 |
| critical |
CVE-2026-18293 — OriginLab Origin Viewer OPJ File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. Th… |
vulnerability |
nvd |
CVE-2026-18293 |
rce |
2026-08-20 |
| critical |
CVE-2026-18292 — OriginLab OriginPro OGG File Parsing Memory Corruption Remote Code Execution Vulnerability. This vul… |
vulnerability |
nvd |
CVE-2026-18292 |
rce |
2026-08-20 |
| critical |
CVE-2026-18291 — OriginLab OriginPro OGW File Parsing Memory Corruption Remote Code Execution Vulnerability. This vul… |
vulnerability |
nvd |
CVE-2026-18291 |
rce |
2026-08-20 |
| critical |
CVE-2026-18290 — OriginLab OriginPro OGG File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This v… |
vulnerability |
nvd |
CVE-2026-18290 |
rce |
2026-08-20 |
| critical |
CVE-2026-18289 — OriginLab OriginPro OPJ File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This v… |
vulnerability |
nvd |
CVE-2026-18289 |
rce |
2026-08-20 |
| critical |
CVE-2026-18288 — OriginLab OriginPro OPJU File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This… |
vulnerability |
nvd |
CVE-2026-18288 |
rce |
2026-08-20 |
| critical |
CVE-2026-18287 — Aeon load_time_series_segmentation_benchmark Code Injection Remote Code Execution Vulnerability. Thi… |
vulnerability |
nvd |
CVE-2026-18287 |
rce |
2026-08-20 |
| critical |
CVE-2026-18286 — Aeon load_human_activity_segmentation_datasets Code Injection Remote Code Execution Vulnerability. T… |
vulnerability |
nvd |
CVE-2026-18286 |
rce |
2026-08-20 |
| critical |
CVE-2026-18285 — Aeon load_rehab_pile_dataset Deserialization of Untrusted Data Remote Code Execution Vulnerability.… |
vulnerability |
nvd |
CVE-2026-18285 |
rce |
2026-08-20 |
| unknown |
CVE-2026-18284 — Sony XAV-9500ES Crash Dump Handler Command Injection Local Privilege Escalation Vulnerability. This… |
vulnerability |
nvd |
CVE-2026-18284 |
|
2026-08-20 |
| unknown |
CVE-2026-18283 — Sony XAV-9500ES udev USB Rules Authorization Bypass Vulnerability. This vulnerability allows physica… |
vulnerability |
nvd |
CVE-2026-18283 |
|
2026-08-20 |
| critical |
CVE-2026-18282 — Sony XAV-9500ES AVRCP_Br_Response_Parser Heap-based Buffer Overflow Remote Code Execution Vulnerabil… |
vulnerability |
nvd |
CVE-2026-18282 |
rce |
2026-08-20 |
| critical |
CVE-2026-18281 — Sony XAV-9500ES l2_reassemble_sdu Heap-based Buffer Overflow Remote Code Execution Vulnerability. Th… |
vulnerability |
nvd |
CVE-2026-18281 |
rce |
2026-08-20 |
| unknown |
CVE-2026-18280 — Sony XAV-9500ES gpsd Buffer Overflow Arbitrary Code Execution Vulnerability. This vulnerability allo… |
vulnerability |
nvd |
CVE-2026-18280 |
|
2026-08-20 |
| critical |
CVE-2026-18279 — Sony XAV-9500ES RTSP SETUP Buffer Overflow Remote Code Execution Vulnerability. This vulnerability a… |
vulnerability |
nvd |
CVE-2026-18279 |
rce |
2026-08-20 |
| unknown |
CVE-2026-18278 — Sony XAV-9500ES prh_l2_decode_packet Out-Of-Bounds Read Information Disclosure Vulnerability. This v… |
vulnerability |
nvd |
CVE-2026-18278 |
|
2026-08-20 |
| critical |
CVE-2026-18274 — Heimdall Data Database Proxy uploadJar Directory Traversal Remote Code Execution Vulnerability. This… |
vulnerability |
nvd |
CVE-2026-18274 |
rce |
2026-08-20 |
| unknown |
CVE-2026-18273 — Kenwood DNR1007XR USB Incorrect Default Permissions Local Privilege Escalation Vulnerability. This v… |
vulnerability |
nvd |
CVE-2026-18273 |
|
2026-08-20 |
| unknown |
CVE-2026-18272 — Kenwood DNR1007XR startUpdateProcess Command Injection Vulnerability. This vulnerability allows phys… |
vulnerability |
nvd |
CVE-2026-18272 |
|
2026-08-20 |
| unknown |
CVE-2026-18271 — Kenwood DNR1007XR vCardParser Heap-based Buffer Overflow Code Execution Vulnerability. This vulnerab… |
vulnerability |
nvd |
CVE-2026-18271 |
|
2026-08-20 |
| unknown |
CVE-2026-18270 — Kenwood DNR1007XR udhcpd Incorrect Permission Assignment Local Privilege Escalation Vulnerability. T… |
vulnerability |
nvd |
CVE-2026-18270 |
|
2026-08-20 |
| unknown |
CVE-2026-18269 — Kenwood DNR1007XR tchdr_bytestream_read Out-Of-Bounds Write Code Execution Vulnerability. This vulne… |
vulnerability |
nvd |
CVE-2026-18269 |
|
2026-08-20 |
| unknown |
CVE-2026-18268 — Kenwood DNR1007XR JKGenService Command Injection Local Privilege Escalation Vulnerability. This vuln… |
vulnerability |
nvd |
CVE-2026-18268 |
|
2026-08-20 |
| unknown |
CVE-2026-18267 — Kenwood DNR1007XR Firmware Update Link Following Code Execution Vulnerability. This vulnerability al… |
vulnerability |
nvd |
CVE-2026-18267 |
|
2026-08-20 |
| critical |
CVE-2026-18265 — OSNEXUS QuantaStor Missing Authentication Remote Code Execution Vulnerability. This vulnerability al… |
vulnerability |
nvd |
CVE-2026-18265 |
rce |
2026-08-20 |
| critical |
CVE-2026-18264 — NoMachine getstat Command Injection Remote Code Execution Vulnerability. This vulnerability allows r… |
vulnerability |
nvd |
CVE-2026-18264 |
rce |
2026-08-20 |
| critical |
CVE-2026-15686 — Adminer multi_query Incorrect Check of Function Return Value Remote Code Execution Vulnerability. Th… |
vulnerability |
nvd |
CVE-2026-15686 |
rce |
2026-08-20 |
| critical |
CVE-2026-15679 — Hugging Face PyTorch Image Models checkpoint Deserialization of Untrusted Data Remote Code Execution… |
vulnerability |
nvd |
CVE-2026-15679 |
rce |
2026-08-20 |
| unknown |
CVE-2026-13121 — Parallels RAS Client RDP Backend Service Exposed Dangerous Function Local Privilege Escalation Vulne… |
vulnerability |
nvd |
CVE-2026-13121, CVE-2026-18262, CVE-2026-18263 |
|
2026-08-20 |
| medium |
How Peer2Profit and Astroproxy Turn Your Bandwidth Into Someone Else's Product |
threat-intel |
otx |
c85c7436fdb71cf5… |
backconnect infrastructure, bandwidth-sharing, internal network exposure, privateloader, sdk analysis, proxy enumeration, peer2profit, residential proxies, astroproxy |
2026-08-20 |
| high |
Distinct Clusters Target Individuals of Interest to Russia |
threat-intel |
otx |
ca3be5885afb3eb3…, 5484009071ea96c7… |
russian cyber espionage, oauth phishing, vidar, device code phishing, headrush, app password phishing, unc6293, atomic, cherrypie, unc7005, enginelight, hospitality captive portal, unc5976, whatsapp device linking, authentication abuse, phishing, infostealer |
2026-08-20 |
| medium |
N4D Mesh Controller: New infrastructure, a UPX-packed agent labeled "go-titan," and how to hunt for it |
threat-intel |
otx |
CVE-2023-48022, CVE-2026-26220, CVE-2026-27944, CVE-2026-33032, CVE-2026-39987 | e09ac5e8c23a768a…, b8e66803519f9376… |
n4d mesh controller, cve-2023-48022, cve-2026-26220, linux malware, go-titan, cve-2026-27944, ray dashboard, cve-2026-33032, n4d, cve-2026-39987, mcp exploitation, lateral movement, ai infrastructure targeting, cloudflare tunnels, credential theft, lightllm, botnet |
2026-08-20 |
| high |
Inside Kimsuky's Abuse of Legitimate Remote Control Tools Across Northeast Asia |
threat-intel |
otx |
b9ad79eaf7a4133f…, f6f7a94c11ea0ee0… |
spear phishing, chrome remote desktop, powershell, gmail exfiltration, onedrive, northeast asia, keylogger, lnk malware, anydesk, chrome extension, apt, phishing, botnet, infostealer |
2026-08-20 |
| medium |
BRIDGEHEAD: An npm typosquatting campaign that crosses from WSL into Windows to plant a crypto-wallet stealer |
threat-intel |
otx |
6888d4c54ef2b5bf… |
rust, github-hosted-payload, browser-credentials, wsl, telegram, npm, cryptocurrency-stealer, typosquatting, in-memory-execution, supply-chain, botnet |
2026-08-20 |
| unknown |
AI-Generated Exploit Scripts Target Siemens S7 PLCs in U.S. Critical Infrastructure |
news |
general-news |
|
|
2026-08-20 |
| high |
CVE-2026-77004 — A flaw has been found in Comfast CF-N1-S 2.6.0.1. This impacts the function sprintf of the file /cgi… |
vulnerability |
nvd |
CVE-2026-77004 |
|
2026-08-20 |
| medium |
CVE-2026-76999 — A vulnerability was detected in SourceCodester CET Automated Grading System with AI Predictive Analy… |
vulnerability |
nvd |
CVE-2026-76999 |
|
2026-08-20 |
| high |
CVE-2026-76998 — A security vulnerability has been detected in SourceCodester Simple Online Food Ordering System 1.0.… |
vulnerability |
nvd |
CVE-2026-76998 |
|
2026-08-20 |
| medium |
CVE-2026-76997 — A weakness has been identified in SourceCodester Simple Online Food Ordering System 1.0. The affecte… |
vulnerability |
nvd |
CVE-2026-76997 |
|
2026-08-20 |
| high |
CVE-2026-75140 — jsoup through 1.23.2, fixed in commit 862ba2f, contains an uncontrolled resource consumption vulnera… |
vulnerability |
nvd |
CVE-2026-75140 |
|
2026-08-20 |