| unknown |
AI-fueled attacks pose ‘active threat’ to water, other sectors, U.S. agencies warn |
news |
general-news |
|
|
2026-08-19 |
| unknown |
SD1791 | OTTO® Fleet Manager – Weak Password Hashing Configuration |
advisory |
vendor-blogs |
|
|
2026-08-19 |
| high |
CVE-2026-75149 — marimo before 0.23.15 contains a code injection vulnerability in the notebook configuration handler… |
vulnerability |
nvd |
CVE-2026-75149 |
|
2026-08-19 |
| critical |
CVE-2026-73829 — Time-of-check Time-of-use (TOCTOU) Race Condition in ZenHive mpp allows an unauthenticated remote cl… |
vulnerability |
nvd |
CVE-2026-73829 |
ransomware |
2026-08-19 |
| unknown |
CVE-2026-73541 — Allocation of Resources Without Limits or Throttling in ZenHive mpp allows an unauthenticated remote… |
vulnerability |
nvd |
CVE-2026-73541 |
|
2026-08-19 |
| critical |
CVE-2026-73136 — Authentication Bypass by Capture-replay in ZenHive mpp allows an unauthenticated third party to obta… |
vulnerability |
nvd |
CVE-2026-73136 |
ransomware |
2026-08-19 |
| medium |
CVE-2026-69159 — FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.29.0, planar_decompress_… |
vulnerability |
nvd |
CVE-2026-69159 |
|
2026-08-19 |
| critical |
CVE-2026-67581 — Authentication Bypass by Capture-replay in ZenHive mpp allows an unauthenticated remote client to ob… |
vulnerability |
nvd |
CVE-2026-67581 |
ransomware |
2026-08-19 |
| critical |
CVE-2026-66794 — A flaw was found in the `cluster-proxy-addon` component of Multicluster Engine for Kubernetes. This… |
vulnerability |
nvd |
CVE-2026-66794 |
|
2026-08-19 |
| unknown |
CVE-2026-63652 — FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.28.0, rdpsnd_server_recv… |
vulnerability |
nvd |
CVE-2026-63652 |
|
2026-08-19 |
| unknown |
CVE-2026-63633 — FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.28.0, freerdp_dsp_decode… |
vulnerability |
nvd |
CVE-2026-63633 |
|
2026-08-19 |
| medium |
CVE-2026-63117 — FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.28.0, an authenticated R… |
vulnerability |
nvd |
CVE-2026-63117 |
|
2026-08-19 |
| high |
CVE-2026-62680 — Orval generates type-safe JavaScript clients in TypeScript from OpenAPI v3 and Swagger v2 specificat… |
vulnerability |
nvd |
CVE-2026-62680, CVE-2026-62681, CVE-2026-62682, CVE-2026-71864, CVE-2026-71865, CVE-2026-71866, CVE-2026-71867, CVE-2026-71868, CVE-2026-71869, CVE-2026-71871, CVE-2026-72716, CVE-2026-72717 |
|
2026-08-19 |
| high |
CVE-2026-61518 — ISPConfig contains an authenticated SQL injection vulnerability in the Remote API. The primary_id pa… |
vulnerability |
nvd |
CVE-2026-61518 |
|
2026-08-19 |
| unknown |
CVE-2026-55648 — FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.27.0, freerdp_image_copy… |
vulnerability |
nvd |
CVE-2026-55648 |
|
2026-08-19 |
| medium |
CVE-2026-55564 — FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.27.0, the glyph_cache_ge… |
vulnerability |
nvd |
CVE-2026-55564 |
ransomware |
2026-08-19 |
| unknown |
CVE-2026-55194 — FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.27.0, rpc_client_recv_fr… |
vulnerability |
nvd |
CVE-2026-55194 |
|
2026-08-19 |
| unknown |
CVE-2026-55193 — FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.27.0, FreeRDP clients us… |
vulnerability |
nvd |
CVE-2026-55193 |
|
2026-08-19 |
| unknown |
CVE-2026-55192 — FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.27.0, FreeRDP H.264 deco… |
vulnerability |
nvd |
CVE-2026-55192 |
|
2026-08-19 |
| unknown |
CVE-2026-55191 — FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.27.0, FreeRDP clients th… |
vulnerability |
nvd |
CVE-2026-55191 |
|
2026-08-19 |
| critical |
CVE-2026-32475 — Unrestricted Upload of File with Dangerous Type vulnerability in Elementor Elementor Pro allows Usin… |
vulnerability |
nvd |
CVE-2026-32475 |
|
2026-08-19 |
| high |
CVE-2026-19875 — IBM Langflow OSS 1.0.0 through 1.10.0 could allow a remote attacker to overwrite administrator email… |
vulnerability |
nvd |
CVE-2026-19875 |
|
2026-08-19 |
| high |
CVE-2026-19234 — Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, and FW1060.00 through FW1060.80 is af… |
vulnerability |
nvd |
CVE-2026-19234, CVE-2026-19321 |
|
2026-08-19 |
| medium |
CVE-2026-18874 — A flaw was found in volsync-addon-controller. This vulnerability allows an attacker to inject malici… |
vulnerability |
nvd |
CVE-2026-18874 |
|
2026-08-19 |
| high |
CVE-2026-17183 — An authenticated user with permission to create or edit alert rules can bypass datasource query auth… |
vulnerability |
nvd |
CVE-2026-17183 |
|
2026-08-19 |
| unknown |
CVE-2025-14603 — The application component processes user-supplied parameters insecurely, passing them into SQL queri… |
vulnerability |
nvd |
CVE-2025-14603 |
|
2026-08-19 |
| unknown |
CVE-2025-14600 — An insecure deserialization vulnerability in vsDesk allows a remote attacker to gain unauthorized ad… |
vulnerability |
nvd |
CVE-2025-14600 |
|
2026-08-19 |
| unknown |
Electronic health record company CareCloud says 3.7 million people affected by breach |
news |
general-news |
|
|
2026-08-19 |
| unknown |
OpenAI Pauses Frontier RL Training as It Tightens Defenses Against Unsafe AI Behavior |
news |
general-news |
|
|
2026-08-19 |
| unknown |
NSA, FBI warns of hackers using AI-generated tools in attacks on critical infrastructure technology |
news |
general-news |
|
|
2026-08-19 |
| low |
CVE-2026-75583 — keeper.sh's calendar module version prior to 2.18.14 contains a server-side request forgery (SSRF) g… |
vulnerability |
nvd |
CVE-2026-75583 |
|
2026-08-19 |
| high |
CVE-2026-75147 — FFmpeg before commit 983dae9 contains an out-of-bounds read in the AV1 RTP packetizer (libavformat/r… |
vulnerability |
nvd |
CVE-2026-75147 |
|
2026-08-19 |
| high |
CVE-2026-75146 — FFmpeg before commit 65b0dab contains an out-of-bounds read in the DASH demuxer (libavformat/dashdec… |
vulnerability |
nvd |
CVE-2026-75146 |
|
2026-08-19 |
| medium |
CVE-2026-75145 — FFmpeg before commit b4c199c contains an incorrect integer narrowing conversion in the AV1 RTP packe… |
vulnerability |
nvd |
CVE-2026-75145 |
|
2026-08-19 |
| high |
CVE-2026-75144 — FFmpeg before commit 1cdeb3c contains a heap buffer overflow vulnerability in the VC-2/Dirac RTP pac… |
vulnerability |
nvd |
CVE-2026-75144 |
botnet |
2026-08-19 |
| critical |
CVE-2026-75143 — FFmpeg before commit 1c10bcc contains a heap buffer overflow in the RIST protocol reader (libavforma… |
vulnerability |
nvd |
CVE-2026-75143 |
|
2026-08-19 |
| high |
CVE-2026-75142 — FFmpeg before commit 9d786e4 contains a stack buffer overflow in the MPEG-PS muxer (libavformat/mpeg… |
vulnerability |
nvd |
CVE-2026-75142 |
|
2026-08-19 |
| high |
CVE-2026-75141 — FFmpeg before commit acf5d7c contains a heap buffer overflow in the hvcC box writer. When writing an… |
vulnerability |
nvd |
CVE-2026-75141 |
|
2026-08-19 |
| critical |
CVE-2026-71470 — A flaw was found in the search-v2-operator. This vulnerability allows a privileged user, specificall… |
vulnerability |
nvd |
CVE-2026-71470 |
|
2026-08-19 |
| unknown |
CVE-2026-50173 — Flow-Like is a platform for building end-to-end use cases. Prior to version 1.0.4, `GET /api/v1/apps… |
vulnerability |
nvd |
CVE-2026-50173 |
|
2026-08-19 |
| medium |
CVE-2026-20327 — A vulnerability in the web-based management interface of Cisco Unified Intelligence Center could all… |
vulnerability |
nvd |
CVE-2026-20327 |
|
2026-08-19 |
| high |
CVE-2026-20320 — A vulnerability in the Open Client Interface (OCI) XML Parser of Cisco BroadWorks could allow an una… |
vulnerability |
nvd |
CVE-2026-20320 |
|
2026-08-19 |
| medium |
CVE-2026-20314 — A vulnerability in Cisco Packaged Contact Center Enterprise (Packaged CCE) and Cisco Unified Contact… |
vulnerability |
nvd |
CVE-2026-20314 |
|
2026-08-19 |
| medium |
CVE-2026-20302 — A vulnerability in the USB driver of Cisco RoomOS could allow an unauthenticated, local attacker wit… |
vulnerability |
nvd |
CVE-2026-20302 |
|
2026-08-19 |
| medium |
CVE-2026-20232 — A vulnerability in the web-based management interface of Cisco Industrial Ethernet (IE) 1000 Series… |
vulnerability |
nvd |
CVE-2026-20232 |
|
2026-08-19 |
| critical |
CVE-2026-20231 — As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Wo… |
vulnerability |
nvd |
CVE-2026-20231, CVE-2026-20315, CVE-2026-20317, CVE-2026-20318, CVE-2026-20319 |
|
2026-08-19 |
| medium |
CVE-2026-20177 — A vulnerability in the handling of management plane packets by Cisco Industrial Ethernet (IE) 1000 S… |
vulnerability |
nvd |
CVE-2026-20177 |
|
2026-08-19 |
| critical |
CVE-2026-20030 — As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Crosswork… |
vulnerability |
nvd |
CVE-2026-20030, CVE-2026-20357, CVE-2026-20358, CVE-2026-20359 |
|
2026-08-19 |
| medium |
SilkParasite Threatens Central Asian Orgs With Flurry of RATs |
news |
general-news |
|
phishing |
2026-08-19 |
| unknown |
CVE-2026-64851 — Grav Shortcode Core Plugin allows for the development shortcode plugins that utilize the common form… |
vulnerability |
nvd |
CVE-2026-64851 |
|
2026-08-19 |