| unknown |
CVE-2026-63044 — Server-Side Request Forgery (SSRF) vulnerability in Apache InLong. Any authenticated user (no admin… |
vulnerability |
nvd |
CVE-2026-63044 |
|
2026-08-20 |
| unknown |
CVE-2026-63043 — Relative Path Traversal vulnerability in Apache InLong. Arbitrary file read from the Agent host file… |
vulnerability |
nvd |
CVE-2026-63043 |
|
2026-08-20 |
| unknown |
CVE-2026-63042 — Files or Directories Accessible to External Parties vulnerability in Apache InLong. Any user who can… |
vulnerability |
nvd |
CVE-2026-63042 |
|
2026-08-20 |
| unknown |
CVE-2026-63040 — Files or Directories Accessible to External Parties vulnerability in Apache InLong. StreamSource per… |
vulnerability |
nvd |
CVE-2026-63040 |
|
2026-08-20 |
| medium |
CVE-2026-63016 — Uncontrolled Resource Consumption vulnerability in Apache InLong. Users could affect operational con… |
vulnerability |
nvd |
CVE-2026-63016 |
|
2026-08-20 |
| medium |
CVE-2026-63015 — Uncontrolled Resource Consumption vulnerability in Apache InLong. Non-template responsible persons c… |
vulnerability |
nvd |
CVE-2026-63015 |
|
2026-08-20 |
| high |
CVE-2026-19611 — A flaw was found in WildFly Elytron. Password hashing and verification normalize input with Unicode… |
vulnerability |
nvd |
CVE-2026-19611 |
|
2026-08-20 |
| high |
CVE-2026-76996 — A security flaw has been discovered in SourceCodester Simple Online Food Ordering System 1.0. Impact… |
vulnerability |
nvd |
CVE-2026-76996 |
|
2026-08-20 |
| medium |
CVE-2026-76995 — A vulnerability was identified in SourceCodester Simple Online Food Ordering System 1.0. This issue… |
vulnerability |
nvd |
CVE-2026-76995 |
|
2026-08-20 |
| medium |
CVE-2026-76993 — A vulnerability was determined in GreyDGL PentestGPT up to 1.0.0. This vulnerability affects unknown… |
vulnerability |
nvd |
CVE-2026-76993 |
|
2026-08-20 |
| medium |
CVE-2026-76991 — A vulnerability was found in itsourcecode Hospital Management System 1.0. This affects an unknown pa… |
vulnerability |
nvd |
CVE-2026-76991 |
|
2026-08-20 |
| unknown |
CVE-2026-73220 — CVAT is an open source interactive video and image annotation tool for computer vision. From 2.68.0… |
vulnerability |
nvd |
CVE-2026-73220 |
|
2026-08-20 |
| high |
CVE-2026-63490 — Handlebars.java provides logic-less and semantic Mustache templates with Java. Prior to 4.5.3, com.g… |
vulnerability |
nvd |
CVE-2026-63490 |
|
2026-08-20 |
| high |
CVE-2026-61898 — The Ubuntu-specific language helper scripts (save-to-pam-env, update-langlist) shipped with accounts… |
vulnerability |
nvd |
CVE-2026-61898 |
|
2026-08-20 |
| high |
CVE-2026-61897 — An Ubuntu-specific patch to AccountsService before 23.13.9-8ubuntu7 only partially drops privileges… |
vulnerability |
nvd |
CVE-2026-61897 |
|
2026-08-20 |
| medium |
CVE-2026-55558 — aiosmtplib is an asynchronous SMTP client for use with asyncio. Prior to 5.1.2, SMTPProtocol.start_t… |
vulnerability |
nvd |
CVE-2026-55558 |
|
2026-08-20 |
| high |
CVE-2026-49825 — lxml is a library for processing XML and HTML in the Python language. Prior to 6.1.1, link attribute… |
vulnerability |
nvd |
CVE-2026-49825 |
|
2026-08-20 |
| medium |
CVE-2026-44725 — EMQX is a scalable and reliable MQTT broker for AI, IoT, IIoT, and connected vehicles. Prior to vers… |
vulnerability |
nvd |
CVE-2026-44725 |
transport |
2026-08-20 |
| high |
CVE-2026-16927 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to gain root privileges d… |
vulnerability |
nvd |
CVE-2026-16927 |
|
2026-08-20 |
| critical |
CVE-2026-16926 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to overwrite arbitrary f… |
vulnerability |
nvd |
CVE-2026-16926 |
|
2026-08-20 |
| high |
CVE-2026-16925 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to achieve privilege esca… |
vulnerability |
nvd |
CVE-2026-16925 |
|
2026-08-20 |
| high |
CISA, NSA, FBI warn of Siemens S7 PLC exploitation using AI-generated scripts to disrupt critical industrial processes |
advisory |
vendor-blogs |
|
ics |
2026-08-20 |
| unknown |
Pakistan's Transparent Tribe Refreshes Toolset for Afghan Cyberattacks |
news |
general-news |
|
|
2026-08-20 |
| unknown |
Hackers Target Zimbra Servers in Active Exploitation Campaign |
news |
general-news |
|
|
2026-08-20 |
| critical |
Critical Elementor Pro bug exposes WordPress sites to RCE attacks |
news |
general-news |
|
rce |
2026-08-20 |
| unknown |
New Cryptographic Context Injection Attack Could Let Web Pages Steal Grok Chat Data |
news |
general-news |
|
|
2026-08-20 |
| high |
CVE-2026-76990 — A vulnerability has been found in code-projects Simple Inventory System 1.0. Affected by this issue… |
vulnerability |
nvd |
CVE-2026-76990 |
|
2026-08-20 |
| high |
CVE-2026-76833 — @cgauge/yaml npm package contains an arbitrary code execution vulnerability that allows attackers to… |
vulnerability |
nvd |
CVE-2026-76833 |
|
2026-08-20 |
| high |
CVE-2026-76635 — baserCMS before 5.3.0 contains a SQL injection vulnerability in BcDatabaseService.php that allows au… |
vulnerability |
nvd |
CVE-2026-76635 |
|
2026-08-20 |
| medium |
CVE-2026-76634 — WeGIA before 3.9.2 contains an insecure direct object reference vulnerability in the employee profil… |
vulnerability |
nvd |
CVE-2026-76634 |
|
2026-08-20 |
| high |
CVE-2026-76633 — WeGIA before 3.9.2 contains an authorization bypass vulnerability in the password change flow that a… |
vulnerability |
nvd |
CVE-2026-76633 |
|
2026-08-20 |
| unknown |
CVE-2026-70383 — Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Esto… |
vulnerability |
nvd |
CVE-2026-70383 |
|
2026-08-20 |
| unknown |
CVE-2026-64972 — ATutor is vulnerable to Reflected XSS via popup parameter in preview.php. An authenticated attacker… |
vulnerability |
nvd |
CVE-2026-64972 |
|
2026-08-20 |
| unknown |
CVE-2026-64971 — ATutor is vulnerable to Reflected XSS in restore functionality. An attacker can provide a specially… |
vulnerability |
nvd |
CVE-2026-64971 |
|
2026-08-20 |
| unknown |
CVE-2026-64970 — ATutor is vulnerable to Stored Cross Site Scripting in registration functionality. An attacker can r… |
vulnerability |
nvd |
CVE-2026-64970 |
|
2026-08-20 |
| unknown |
CVE-2026-64969 — ATutor is vulnerable to Insecure Direct Object Reference (IDOR) attack in profile picture related en… |
vulnerability |
nvd |
CVE-2026-64969 |
|
2026-08-20 |
| unknown |
CVE-2026-64968 — ATutor is vulnerable to Server-Side request forgery in import functionalities. An authenticated admi… |
vulnerability |
nvd |
CVE-2026-64968 |
|
2026-08-20 |
| unknown |
CVE-2026-64967 — A path traversal vulnerability in ATutor's error log viewer allows an attacker with administrative p… |
vulnerability |
nvd |
CVE-2026-64967 |
|
2026-08-20 |
| critical |
CVE-2026-64966 — ATutor is vulnerable to a Path Traversal vulnerability in ZIP extraction functionality. An attacker… |
vulnerability |
nvd |
CVE-2026-64966 |
rce |
2026-08-20 |
| unknown |
CVE-2026-64965 — ATutor is vulnerable to Missing Authorization Check on Test and Question Import endpoints. A low-pri… |
vulnerability |
nvd |
CVE-2026-64965 |
|
2026-08-20 |
| unknown |
CVE-2026-64964 — ATutor generates predictable email confirmation tokens due to the use of insufficiently random value… |
vulnerability |
nvd |
CVE-2026-64964 |
|
2026-08-20 |
| unknown |
CVE-2026-64963 — A path traversal vulnerability in ATutor allows an authenticated user to access files from other cou… |
vulnerability |
nvd |
CVE-2026-64963 |
|
2026-08-20 |
| unknown |
CVE-2026-64962 — ATutor is vulnerable to Cross-Site Request Forgery (CSRF) in profile update functionality. An attack… |
vulnerability |
nvd |
CVE-2026-64962 |
|
2026-08-20 |
| unknown |
CVE-2026-64961 — ATutor is vulnerable to authentication bypass . Although a token validation check is present in the… |
vulnerability |
nvd |
CVE-2026-64961 |
|
2026-08-20 |
| critical |
CVE-2026-64960 — ATutor Gameme module allows users to upload files of any type and extension without restriction. Due… |
vulnerability |
nvd |
CVE-2026-64960 |
rce |
2026-08-20 |
| critical |
CVE-2026-15706 — Missing authentication for critical function vulnerability in Baylan Measuring Instruments Industry… |
vulnerability |
nvd |
CVE-2026-15706 |
|
2026-08-20 |
| medium |
How MSPs can catch phishing attacks email filters miss |
news |
general-news |
|
phishing |
2026-08-20 |
| critical |
CVE-2026-54118 Microsoft SQL Server Remote Code Execution Vulnerability |
advisory |
vendor-blogs |
|
rce |
2026-08-20 |
| critical |
CVE-2026-33824 Windows Internet Key Exchange (IKE) Service Extensions Remote Code Execution Vulnerability |
advisory |
vendor-blogs |
|
rce |
2026-08-20 |
| unknown |
CVE-2026-69855 Microsoft Copilot in Azure Information Disclosure Vulnerability |
advisory |
vendor-blogs |
|
|
2026-08-20 |