← Dashboard

Search Threat Intelligence

Filter and explore the collected OSINT data

JSON | Markdown

Showing 401–450 of 3432 total

Severity Title Category Source Indicators Tags Published
unknown CVE-2026-63044 — Server-Side Request Forgery (SSRF) vulnerability in Apache InLong. Any authenticated user (no admin… vulnerability nvd CVE-2026-63044 2026-08-20
unknown CVE-2026-63043 — Relative Path Traversal vulnerability in Apache InLong. Arbitrary file read from the Agent host file… vulnerability nvd CVE-2026-63043 2026-08-20
unknown CVE-2026-63042 — Files or Directories Accessible to External Parties vulnerability in Apache InLong. Any user who can… vulnerability nvd CVE-2026-63042 2026-08-20
unknown CVE-2026-63040 — Files or Directories Accessible to External Parties vulnerability in Apache InLong. StreamSource per… vulnerability nvd CVE-2026-63040 2026-08-20
medium CVE-2026-63016 — Uncontrolled Resource Consumption vulnerability in Apache InLong. Users could affect operational con… vulnerability nvd CVE-2026-63016 2026-08-20
medium CVE-2026-63015 — Uncontrolled Resource Consumption vulnerability in Apache InLong. Non-template responsible persons c… vulnerability nvd CVE-2026-63015 2026-08-20
high CVE-2026-19611 — A flaw was found in WildFly Elytron. Password hashing and verification normalize input with Unicode… vulnerability nvd CVE-2026-19611 2026-08-20
high CVE-2026-76996 — A security flaw has been discovered in SourceCodester Simple Online Food Ordering System 1.0. Impact… vulnerability nvd CVE-2026-76996 2026-08-20
medium CVE-2026-76995 — A vulnerability was identified in SourceCodester Simple Online Food Ordering System 1.0. This issue… vulnerability nvd CVE-2026-76995 2026-08-20
medium CVE-2026-76993 — A vulnerability was determined in GreyDGL PentestGPT up to 1.0.0. This vulnerability affects unknown… vulnerability nvd CVE-2026-76993 2026-08-20
medium CVE-2026-76991 — A vulnerability was found in itsourcecode Hospital Management System 1.0. This affects an unknown pa… vulnerability nvd CVE-2026-76991 2026-08-20
unknown CVE-2026-73220 — CVAT is an open source interactive video and image annotation tool for computer vision. From 2.68.0… vulnerability nvd CVE-2026-73220 2026-08-20
high CVE-2026-63490 — Handlebars.java provides logic-less and semantic Mustache templates with Java. Prior to 4.5.3, com.g… vulnerability nvd CVE-2026-63490 2026-08-20
high CVE-2026-61898 — The Ubuntu-specific language helper scripts (save-to-pam-env, update-langlist) shipped with accounts… vulnerability nvd CVE-2026-61898 2026-08-20
high CVE-2026-61897 — An Ubuntu-specific patch to AccountsService before 23.13.9-8ubuntu7 only partially drops privileges… vulnerability nvd CVE-2026-61897 2026-08-20
medium CVE-2026-55558 — aiosmtplib is an asynchronous SMTP client for use with asyncio. Prior to 5.1.2, SMTPProtocol.start_t… vulnerability nvd CVE-2026-55558 2026-08-20
high CVE-2026-49825 — lxml is a library for processing XML and HTML in the Python language. Prior to 6.1.1, link attribute… vulnerability nvd CVE-2026-49825 2026-08-20
medium CVE-2026-44725 — EMQX is a scalable and reliable MQTT broker for AI, IoT, IIoT, and connected vehicles. Prior to vers… vulnerability nvd CVE-2026-44725 transport 2026-08-20
high CVE-2026-16927 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to gain root privileges d… vulnerability nvd CVE-2026-16927 2026-08-20
critical CVE-2026-16926 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to overwrite arbitrary f… vulnerability nvd CVE-2026-16926 2026-08-20
high CVE-2026-16925 — IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to achieve privilege esca… vulnerability nvd CVE-2026-16925 2026-08-20
high CISA, NSA, FBI warn of Siemens S7 PLC exploitation using AI-generated scripts to disrupt critical industrial processes advisory vendor-blogs ics 2026-08-20
unknown Pakistan's Transparent Tribe Refreshes Toolset for Afghan Cyberattacks news general-news 2026-08-20
unknown Hackers Target Zimbra Servers in Active Exploitation Campaign news general-news 2026-08-20
critical Critical Elementor Pro bug exposes WordPress sites to RCE attacks news general-news rce 2026-08-20
unknown New Cryptographic Context Injection Attack Could Let Web Pages Steal Grok Chat Data news general-news 2026-08-20
high CVE-2026-76990 — A vulnerability has been found in code-projects Simple Inventory System 1.0. Affected by this issue… vulnerability nvd CVE-2026-76990 2026-08-20
high CVE-2026-76833 — @cgauge/yaml npm package contains an arbitrary code execution vulnerability that allows attackers to… vulnerability nvd CVE-2026-76833 2026-08-20
high CVE-2026-76635 — baserCMS before 5.3.0 contains a SQL injection vulnerability in BcDatabaseService.php that allows au… vulnerability nvd CVE-2026-76635 2026-08-20
medium CVE-2026-76634 — WeGIA before 3.9.2 contains an insecure direct object reference vulnerability in the employee profil… vulnerability nvd CVE-2026-76634 2026-08-20
high CVE-2026-76633 — WeGIA before 3.9.2 contains an authorization bypass vulnerability in the password change flow that a… vulnerability nvd CVE-2026-76633 2026-08-20
unknown CVE-2026-70383 — Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Esto… vulnerability nvd CVE-2026-70383 2026-08-20
unknown CVE-2026-64972 — ATutor is vulnerable to Reflected XSS via popup parameter in preview.php. An authenticated attacker… vulnerability nvd CVE-2026-64972 2026-08-20
unknown CVE-2026-64971 — ATutor is vulnerable to Reflected XSS in restore functionality. An attacker can provide a specially… vulnerability nvd CVE-2026-64971 2026-08-20
unknown CVE-2026-64970 — ATutor is vulnerable to Stored Cross Site Scripting in registration functionality. An attacker can r… vulnerability nvd CVE-2026-64970 2026-08-20
unknown CVE-2026-64969 — ATutor is vulnerable to Insecure Direct Object Reference (IDOR) attack in profile picture related en… vulnerability nvd CVE-2026-64969 2026-08-20
unknown CVE-2026-64968 — ATutor is vulnerable to Server-Side request forgery in import functionalities. An authenticated admi… vulnerability nvd CVE-2026-64968 2026-08-20
unknown CVE-2026-64967 — A path traversal vulnerability in ATutor's error log viewer allows an attacker with administrative p… vulnerability nvd CVE-2026-64967 2026-08-20
critical CVE-2026-64966 — ATutor is vulnerable to a Path Traversal vulnerability in ZIP extraction functionality. An attacker… vulnerability nvd CVE-2026-64966 rce 2026-08-20
unknown CVE-2026-64965 — ATutor is vulnerable to Missing Authorization Check on Test and Question Import endpoints. A low-pri… vulnerability nvd CVE-2026-64965 2026-08-20
unknown CVE-2026-64964 — ATutor generates predictable email confirmation tokens due to the use of insufficiently random value… vulnerability nvd CVE-2026-64964 2026-08-20
unknown CVE-2026-64963 — A path traversal vulnerability in ATutor allows an authenticated user to access files from other cou… vulnerability nvd CVE-2026-64963 2026-08-20
unknown CVE-2026-64962 — ATutor is vulnerable to Cross-Site Request Forgery (CSRF) in profile update functionality. An attack… vulnerability nvd CVE-2026-64962 2026-08-20
unknown CVE-2026-64961 — ATutor is vulnerable to authentication bypass . Although a token validation check is present in the… vulnerability nvd CVE-2026-64961 2026-08-20
critical CVE-2026-64960 — ATutor Gameme module allows users to upload files of any type and extension without restriction. Due… vulnerability nvd CVE-2026-64960 rce 2026-08-20
critical CVE-2026-15706 — Missing authentication for critical function vulnerability in Baylan Measuring Instruments Industry… vulnerability nvd CVE-2026-15706 2026-08-20
medium How MSPs can catch phishing attacks email filters miss news general-news phishing 2026-08-20
critical CVE-2026-54118 Microsoft SQL Server Remote Code Execution Vulnerability advisory vendor-blogs rce 2026-08-20
critical CVE-2026-33824 Windows Internet Key Exchange (IKE) Service Extensions Remote Code Execution Vulnerability advisory vendor-blogs rce 2026-08-20
unknown CVE-2026-69855 Microsoft Copilot in Azure Information Disclosure Vulnerability advisory vendor-blogs 2026-08-20